Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Windows 7 schwarzer Bildschirm mit Maus nach dem booten

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 06.11.2012, 19:53   #31
derzapfer
 
Windows 7 schwarzer Bildschirm mit Maus nach dem booten - Standard

Windows 7 schwarzer Bildschirm mit Maus nach dem booten



Hi Cosinus,

ich habe so ein wenig den Überblick verloren bei all den Schädlingssuchprogrammen die ich habe, auf deine anraten hin, laufen lassen. Meine aber da wäre das eine oder andere Mal gewesen, wo Du schrobst, ich solle nichts löschen, wo aber ein Fund gewesen sei... ich hoffe das war verständlich :-)...
LG und danke ...
derzapfer

Code:
ATTFilter
# AdwCleaner v2.005 - Datei am 06/11/2012 um 19:44:13 erstellt
# Aktualisiert am 14/10/2012 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzer : xxx- DERNEUSTE-PC
# Bootmodus : Normal
# Ausgeführt unter : C:\Users\xxx\Downloads\AdwCleaner2005.exe
# Option [Löschen]


**** [Dienste] ****


***** [Dateien / Ordner] *****

Datei Gelöscht : C:\Program Files (x86)\Mozilla FireFox\searchplugins\Search_Results.xml
Datei Gelöscht : C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\rnt99qkn.default\searchplugins\Askcom.xml
Datei Gelöscht : C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\rnt99qkn.default\searchplugins\Search_Results.xml
Datei Gelöscht : C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\rnt99qkn.default\searchplugins\SweetIm.xml
Datei Gelöscht : C:\Users\xxx\Desktop\Search The Web.url
Datei Gelöscht : C:\Users\xxx\Desktop\sweetpcfix.url
Ordner Gelöscht : C:\Program Files (x86)\Ask.com
Ordner Gelöscht : C:\Program Files (x86)\SweetIM
Ordner Gelöscht : C:\ProgramData\boost_interprocess
Ordner Gelöscht : C:\Users\xxx~1\AppData\Local\Temp\AskSearch
Ordner Gelöscht : C:\Users\xxx\AppData\LocalLow\AskToolbar
Ordner Gelöscht : C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\rnt99qkn.default\extensions\toolbar@ask.com
Ordner Gelöscht : C:\Users\xxx\AppData\Roaming\OpenCandy
Ordner Gelöscht : C:\Users\Gast\AppData\LocalLow\AskToolbar
Ordner Gelöscht : C:\Users\Itunes_Juliana\AppData\LocalLow\AskToolbar
Ordner Gelöscht : C:\windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}

***** [Registrierungsdatenbank] *****

Daten Gelöscht : HKLM\..\Windows [AppInit_DLLs] = C:\PROGRA~2\IMESHA~1\Mediabar\Datamngr\datamngr.dll C:\PROGRA~2\IMESHA~1\Mediabar\Datamngr\IEBHO.dll
Schlüssel Gelöscht : HKCU\Software\APN
Schlüssel Gelöscht : HKCU\Software\APN DTX
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\AskToolbar
Schlüssel Gelöscht : HKCU\Software\Ask.com
Schlüssel Gelöscht : HKCU\Software\Ask.com.tmp
Schlüssel Gelöscht : HKCU\Software\DataMngr
Schlüssel Gelöscht : HKCU\Software\DataMngr_Toolbar
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BE7A24F5-69CB-4708-B77B-B1EDA6043B95}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BE7A24F5-69CB-4708-B77B-B1EDA6043B95}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
Schlüssel Gelöscht : HKLM\Software\APN
Schlüssel Gelöscht : HKLM\Software\AskToolbar
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Schlüssel Gelöscht : HKLM\Software\DataMngr
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{474597C5-AB09-49D6-A4D5-2E8D7341384E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{474597C5-AB09-49D6-A4D5-2E8D7341384E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{BE7A24F5-69CB-4708-B77B-B1EDA6043B95}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BE7A24F5-69CB-4708-B77B-B1EDA6043B95}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{00000000-6E41-4FD3-8538-502F5495E5FC}]
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnUpdater]
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [DataMngr]
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Sweetpacks Communicator]
Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]

***** [Internet Browser] *****

-\\ Internet Explorer v9.0.8112.16421

Ersetzt : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.imesh.net --> hxxp://www.google.com

-\\ Mozilla Firefox v16.0.2 (de)

Profilname : default 
Datei : C:\Users\derneuste\AppData\Roaming\Mozilla\Firefox\Profiles\rnt99qkn.default\prefs.js

Gelöscht : user_pref("browser.search.defaultengine", "Ask.com");
Gelöscht : user_pref("browser.search.defaultenginename", "Ask.com");
Gelöscht : user_pref("browser.search.order.1", "Ask.com");
Gelöscht : user_pref("browser.search.selectedEngine", "Ask.com");
Gelöscht : user_pref("extensions.asktb.InstallDir", "C:\\Program Files (x86)\\Ask.com\\");
Gelöscht : user_pref("extensions.asktb.apn_dbr", "ff_16.0.2");
Gelöscht : user_pref("extensions.asktb.cbid", "^ABT");
Gelöscht : user_pref("extensions.asktb.config-updated", false);
Gelöscht : user_pref("extensions.asktb.crumb", "2012.11.04+05.33.31-toolbar009iad-DE-RG9ydG11bmQsR2VybWFueQ%3D%[...]
Gelöscht : user_pref("extensions.asktb.default-channel-url-mask", "hxxp://avira-int.ask.com/web?q={query}&qsrc=[...]
Gelöscht : user_pref("extensions.asktb.domain", "avira-int.ask.com");
Gelöscht : user_pref("extensions.asktb.domainName", "avira-int.ask.com");
Gelöscht : user_pref("extensions.asktb.dtid", "^YYYYYY^YY^DE");
Gelöscht : user_pref("extensions.asktb.ff-original-keyword-url", "hxxp://dts.search-results.com/sr?src=ffb&gct=[...]
Gelöscht : user_pref("extensions.asktb.fresh-install", false);
Gelöscht : user_pref("extensions.asktb.guid", "44a357d9-393a-40f1-b0d6-cd7765c20ae9");
Gelöscht : user_pref("extensions.asktb.hxxp-header-whitelist-hosts", "[\"static-dev.en.dev.ask.com\", \"ask.com[...]
Gelöscht : user_pref("extensions.asktb.if", "first");
Gelöscht : user_pref("extensions.asktb.l", "dis");
Gelöscht : user_pref("extensions.asktb.last-config-req", "1352141241128");
Gelöscht : user_pref("extensions.asktb.locale", "de_DE");
Gelöscht : user_pref("extensions.asktb.localePref", true);
Gelöscht : user_pref("extensions.asktb.location", "Dortmund,Germany");
Gelöscht : user_pref("extensions.asktb.notification-shown", true);
Gelöscht : user_pref("extensions.asktb.o", "APN10395");
Gelöscht : user_pref("extensions.asktb.overlay-reloaded-using-restart", true);
Gelöscht : user_pref("extensions.asktb.qsrc", "2871");
Gelöscht : user_pref("extensions.asktb.r", "2");
Gelöscht : user_pref("extensions.asktb.sa", "YES");
Gelöscht : user_pref("extensions.asktb.saguid", "8B05E438-3C3B-4CAF-9782-6361CCDB8502");
Gelöscht : user_pref("extensions.asktb.search-suggestions-enabled", true);
Gelöscht : user_pref("extensions.asktb.silent-upgrade-from-pre-newtabs-build", false);
Gelöscht : user_pref("extensions.asktb.socialmini-native-on", true);
Gelöscht : user_pref("extensions.asktb.themeid", "");
Gelöscht : user_pref("extensions.asktb.timeinstalled", "04.11.2012 14:34:27");
Gelöscht : user_pref("extensions.asktb.to", "");
Gelöscht : user_pref("extensions.asktb.v", "3.15.4.100015");
Gelöscht : user_pref("extensions.asktb.version", "5.15.4.23930");
Gelöscht : user_pref("extensions.enabledAddons", "{1FD91A9C-410C-4090-BBCC-55D3450EF433}:1.0,wrc@avast.com:7.0.[...]
Gelöscht : user_pref("keyword.URL", "hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=AVR-3&o=APN10395&loc[...]

Profilname : default 
Datei : C:\Users\Itunes_Juliana\AppData\Roaming\Mozilla\Firefox\Profiles\33wl3otb.default\prefs.js

Gelöscht : user_pref("browser.search.selectedEngine", "Ask.com");
Gelöscht : user_pref("browser.search.order.1", "Ask.com");
Gelöscht : user_pref("browser.search.defaultengine", "Ask.com");
Gelöscht : user_pref("browser.search.defaultenginename", "Ask.com");
Gelöscht : user_pref("keyword.URL", "hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=AVR-3&o=APN10395&loc[...]
Gelöscht : user_pref("extensions.asktb.ff-original-keyword-url", "");

Profilname : default 
Datei : C:\Users\Gast\AppData\Roaming\Mozilla\Firefox\Profiles\kpdwgzwt.default\prefs.js

Gelöscht : user_pref("browser.search.selectedEngine", "Ask.com");
Gelöscht : user_pref("browser.search.order.1", "Ask.com");
Gelöscht : user_pref("browser.search.defaultengine", "Ask.com");
Gelöscht : user_pref("browser.search.defaultenginename", "Ask.com");
Gelöscht : user_pref("keyword.URL", "hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=AVR-3&o=APN10395&loc[...]
Gelöscht : user_pref("extensions.asktb.ff-original-keyword-url", "");

*************************

AdwCleaner[R1].txt - [12047 octets] - [05/11/2012 18:47:55]
AdwCleaner[R2].txt - [12108 octets] - [05/11/2012 18:52:45]
AdwCleaner[S1].txt - [11217 octets] - [06/11/2012 19:44:13]

########## EOF - C:\AdwCleaner[S1].txt - [11278 octets] ##########
         

Alt 06.11.2012, 20:41   #32
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 7 schwarzer Bildschirm mit Maus nach dem booten - Standard

Windows 7 schwarzer Bildschirm mit Maus nach dem booten



Zitat:
ich habe so ein wenig den Überblick verloren bei all den Schädlingssuchprogrammen die ich habe,
Du machst auch nicht das was in meinen Anleitungen steht!

Zitat:
# Ausgeführt unter : C:\Users\xxx\Downloads\AdwCleaner2005.exe
Der adwClaner sollte auf den Desktop, damit einfach eine alte Version beim nächsten Download überschrieben werden kann! Du hälst dich aber nicht dran und legst es woanders ab!
__________________

__________________

Alt 06.11.2012, 21:36   #33
derzapfer
 
Windows 7 schwarzer Bildschirm mit Maus nach dem booten - Standard

Windows 7 schwarzer Bildschirm mit Maus nach dem booten



Werde die Datei auf den Desktop legen...
Das Scanergebnis wird das wohl aber nicht beeinflusst haben!!

Gruss dz
__________________

Alt 06.11.2012, 22:30   #34
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 7 schwarzer Bildschirm mit Maus nach dem booten - Standard

Windows 7 schwarzer Bildschirm mit Maus nach dem booten



Ja du hast aber eine alte Version vom adwCleaner deswegen benutzt!
Bitte lösche alle adwcleaner-Dateien!

Bitte mal den aktuellen adwCleaner v2.007 runterladen, also die alte adwcleaner löschen und neu runterladen

adwCleaner - Toolbars und ungewollte Start-/Suchseiten aufspüren

Downloade Dir bitte AdwCleaner auf deinen Desktop.

Falls der adwCleaner schon mal in der runtergeladen wurde, bitte die alte adwcleaner.exe löschen und neu runterladen!!
  • Starte die adwcleaner.exe mit einem Doppelklick.
  • Klicke auf Suche.
  • Nach Ende des Suchlaufs öffnet sich eine Textdatei.
  • Poste mir den Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner[Rx].txt. (x=fortlaufende Nummer)
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 07.11.2012, 06:50   #35
derzapfer
 
Windows 7 schwarzer Bildschirm mit Maus nach dem booten - Standard

Windows 7 schwarzer Bildschirm mit Maus nach dem booten



Morgen Cosinus,

hier das log mit dem neuen Programm...

Gruss
dz

Code:
ATTFilter
# AdwCleaner v2.007 - Datei am 06/11/2012 um 22:36:57 erstellt
# Aktualisiert am 06/11/2012 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzer : xxx
# Bootmodus : Normal
# Ausgeführt unter : C:\Users\xxx\Desktop\Virensuchprogramme zT alt\adwcleaner.exe
# Option [Löschen]


**** [Dienste] ****


***** [Dateien / Ordner] *****

Ordner Gelöscht : C:\Program Files (x86)\Ask.com

***** [Registrierungsdatenbank] *****

Schlüssel Gelöscht : HKCU\Software\Ask.com.tmp
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BFF6B2CA-366C-4A90-B685-D87776DEB0D2}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BFF6B2CA-366C-4A90-B685-D87776DEB0D2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{BFF6B2CA-366C-4A90-B685-D87776DEB0D2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BFF6B2CA-366C-4A90-B685-D87776DEB0D2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BFF6B2CA-366C-4A90-B685-D87776DEB0D2}
Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{BFF6B2CA-366C-4A90-B685-D87776DEB0D2}]

***** [Internet Browser] *****

-\\ Internet Explorer v9.0.8112.16421

[OK] Die Registrierungsdatenbank ist sauber.

-\\ Mozilla Firefox v16.0.2 (de)

Profilname : default 
Datei : C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\rnt99qkn.default\prefs.js

[OK] Die Datei ist sauber.

Profilname : default 
Datei : C:\Users\yyy\AppData\Roaming\Mozilla\Firefox\Profiles\33wl3otb.default\prefs.js

[OK] Die Datei ist sauber.

Profilname : default 
Datei : C:\Users\Gast\AppData\Roaming\Mozilla\Firefox\Profiles\kpdwgzwt.default\prefs.js

[OK] Die Datei ist sauber.

*************************

AdwCleaner[R1].txt - [12047 octets] - [05/11/2012 18:47:55]
AdwCleaner[R2].txt - [12108 octets] - [05/11/2012 18:52:45]
AdwCleaner[S1].txt - [11328 octets] - [06/11/2012 19:44:13]
AdwCleaner[S2].txt - [2125 octets] - [06/11/2012 22:36:57]

########## EOF - C:\AdwCleaner[S2].txt - [2185 octets] ##########
         


Alt 07.11.2012, 12:25   #36
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 7 schwarzer Bildschirm mit Maus nach dem booten - Standard

Windows 7 schwarzer Bildschirm mit Maus nach dem booten



Eine Kontrolle mit OTL bitte:
  • Doppelklick auf die OTL.exe
  • Vista User: Rechtsklick auf die OTL.exe und "als Administrator ausführen" wählen
  • Setze oben mittig den Haken bei Scanne alle Benutzer
  • Oben findest Du ein Kästchen mit Output. Wähle bitte Minimal Output
  • Unter Extra Registry, wähle bitte Use SafeList
  • Klicke nun auf Run Scan links oben
  • Wenn der Scan beendet wurde werden 2 Logfiles erstellt
  • Poste die Logfiles hier in CODE-Tags in den Thread.
__________________
--> Windows 7 schwarzer Bildschirm mit Maus nach dem booten

Alt 07.11.2012, 20:04   #37
derzapfer
 
Windows 7 schwarzer Bildschirm mit Maus nach dem booten - Standard

Windows 7 schwarzer Bildschirm mit Maus nach dem booten



Hallo Cosinus,

haben wir das nihct schon mal gemacht ?
Hier das neue posting
otl
Code:
ATTFilter
OTL logfile created on: 07.11.2012 19:52:28 - Run 3
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\derneuste\Desktop\Virensuchprogramme zT alt
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
3,50 Gb Total Physical Memory | 2,20 Gb Available Physical Memory | 62,82% Memory free
6,99 Gb Paging File | 5,46 Gb Available in Paging File | 78,09% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 467,66 Gb Total Space | 336,62 Gb Free Space | 71,98% Space Free | Partition Type: NTFS
Drive E: | 244,14 Gb Total Space | 175,88 Gb Free Space | 72,04% Space Free | Partition Type: NTFS
Drive J: | 204,71 Gb Total Space | 50,67 Gb Free Space | 24,75% Space Free | Partition Type: NTFS
Drive L: | 298,01 Gb Total Space | 150,59 Gb Free Space | 50,53% Space Free | Partition Type: FAT32
 
Computer Name: DERNEUSTE-PC | User Name: derneuste | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - C:\Users\derneuste\Desktop\Virensuchprogramme zT alt\OTL(1).exe (OldTimer Tools)
PRC - C:\Programme\AVAST Software\Avast\AvastUI.exe (AVAST Software)
PRC - C:\Programme\AVAST Software\Avast\AvastSvc.exe (AVAST Software)
PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
PRC - E:\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
PRC - E:\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG)
PRC - E:\Avira\AntiVir Desktop\avwebgrd.exe (Avira Operations GmbH & Co. KG)
PRC - E:\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Renesas Electronics Corporation)
 
 
========== Modules (No Company Name) ==========
 
MOD - C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll ()
MOD - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\MSPTLS.DLL ()
MOD - C:\PROGRA~2\MICROS~1\Office12\ADDINS\UMOUTL~1.DLL ()
MOD - C:\PROGRA~2\MICROS~1\Office12\OUTLCTL.DLL ()
MOD - C:\PROGRA~2\MICROS~1\Office12\ADDINS\COLLEA~1.DLL ()
 
 
========== Services (SafeList) ==========
 
SRV:64bit: - (AMD FUEL Service) -- c:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Advanced Micro Devices, Inc.)
SRV - (avast! Antivirus) -- C:\Programme\AVAST Software\Avast\AvastSvc.exe (AVAST Software)
SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
SRV - (MBAMService) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (MBAMScheduler) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
SRV - (AntiVirSchedulerService) -- E:\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG)
SRV - (AntiVirWebService) -- E:\Avira\AntiVir Desktop\avwebgrd.exe (Avira Operations GmbH & Co. KG)
SRV - (AntiVirService) -- E:\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG)
SRV - (NitroReaderDriverReadSpool2) -- C:\Programme\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe (Nitro PDF Software)
SRV - (wlidsvc) -- C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.)
SRV - (wlcrasvc) -- C:\Programme\Windows Live\Mesh\wlcrasvc.exe (Microsoft Corporation)
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
 
 
========== Driver Services (SafeList) ==========
 
DRV:64bit: - (aswSnx) -- C:\windows\SysNative\drivers\aswSnx.sys (AVAST Software)
DRV:64bit: - (aswSP) -- C:\windows\SysNative\drivers\aswSP.sys (AVAST Software)
DRV:64bit: - (aswMonFlt) -- C:\Windows\SysNative\drivers\aswMonFlt.sys (AVAST Software)
DRV:64bit: - (aswFsBlk) -- C:\windows\SysNative\drivers\aswFsBlk.sys (AVAST Software)
DRV:64bit: - (MBAMProtector) -- C:\Windows\SysNative\drivers\mbam.sys (Malwarebytes Corporation)
DRV:64bit: - (GEARAspiWDM) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys (GEAR Software Inc.)
DRV:64bit: - (avipbb) -- C:\Windows\SysNative\drivers\avipbb.sys (Avira GmbH)
DRV:64bit: - (avgntflt) -- C:\Windows\SysNative\drivers\avgntflt.sys (Avira GmbH)
DRV:64bit: - (Fs_Rec) -- C:\windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
DRV:64bit: - (inpoutx64) -- C:\Windows\SysNative\drivers\inpoutx64.sys (Highresolution Enterprises [www.highrez.co.uk])
DRV:64bit: - (RTHDMIAzAudService) -- C:\Windows\SysNative\drivers\RtHDMIVX.sys (Realtek Semiconductor Corp.)
DRV:64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek                                            )
DRV:64bit: - (avkmgr) -- C:\Windows\SysNative\drivers\avkmgr.sys (Avira GmbH)
DRV:64bit: - (nusb3xhc) -- C:\Windows\SysNative\drivers\nusb3xhc.sys (Renesas Electronics Corporation)
DRV:64bit: - (nusb3hub) -- C:\Windows\SysNative\drivers\nusb3hub.sys (Renesas Electronics Corporation)
DRV:64bit: - (Netaapl) -- C:\Windows\SysNative\drivers\netaapl64.sys (Apple Inc.)
DRV:64bit: - (ahcix64s) -- C:\Windows\SysNative\drivers\ahcix64s.sys (Advanced Micro Devices, Inc)
DRV:64bit: - (fssfltr) -- C:\Windows\SysNative\drivers\fssfltr.sys (Microsoft Corporation)
DRV:64bit: - (amd_sata) -- C:\Windows\SysNative\drivers\amd_sata.sys (Advanced Micro Devices)
DRV:64bit: - (amd_xata) -- C:\Windows\SysNative\drivers\amd_xata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxhc) -- C:\Windows\SysNative\drivers\amdxhc.sys (Advanced Micro Devices, INC.)
DRV:64bit: - (amdhub30) -- C:\Windows\SysNative\drivers\amdhub30.sys (Advanced Micro Devices, INC.)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (TsUsbGD) -- C:\Windows\SysNative\drivers\TsUsbGD.sys (Microsoft Corporation)
DRV:64bit: - (amdiox64) -- C:\Windows\SysNative\drivers\amdiox64.sys (Advanced Micro Devices)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (61883) -- C:\Windows\SysNative\drivers\61883.sys (Microsoft Corporation)
DRV:64bit: - (Avc) -- C:\Windows\SysNative\drivers\avc.sys (Microsoft Corporation)
DRV:64bit: - (MSDV) -- C:\Windows\SysNative\drivers\msdv.sys (Microsoft Corporation)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = 
IE:64bit: - HKLM\..\SearchScopes\{EFA2FEF8-C124-4225-9FCD-B5184E23CC78}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&form=MNMTDF&pc=MANM&src=IE-SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://nmd.msn.com
IE - HKLM\..\SearchScopes,DefaultScope = 
IE - HKLM\..\SearchScopes\{2E03954E-89B9-46F7-AA70-B14847C6067C}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&form=MNMTDF&pc=MANM&src=IE-SearchBox
 
 
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = 
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = 
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = 
 
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = 
 
IE - HKU\S-1-5-21-2060105697-235347385-2913916759-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
IE - HKU\S-1-5-21-2060105697-235347385-2913916759-1001\..\SearchScopes,DefaultScope = 
IE - HKU\S-1-5-21-2060105697-235347385-2913916759-1001\..\SearchScopes\{40FCBC03-113D-4A4E-9A0D-771855886A78}: "URL" = hxxp://websearch.ask.com/redirect?client=ie&tb=AVR-3&o=APN10395&src=kw&q={searchTerms}&locale=&apn_ptnrs=^ABT&apn_dtid=^YYYYYY^YY^DE&apn_uid=44a357d9-393a-40f1-b0d6-cd7765c20ae9&apn_sauid=8B05E438-3C3B-4CAF-9782-6361CCDB8502
IE - HKU\S-1-5-21-2060105697-235347385-2913916759-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
========== FireFox ==========
 
FF - prefs.js..browser.startup.homepage: "www.google.de"
FF - prefs.js..extensions.enabledAddons: wrc@avast.com:7.0.1474
FF - prefs.js..extensions.enabledAddons: {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}:20120926
FF - user.js - File not found
 
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=:  File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\itunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5: C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nitropdf.com/NitroPDF: E:\PDF_Nitro\npnitromozilla.dll ( )
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2012.11.02 21:54:57 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 16.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012.10.26 21:56:42 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 16.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012.10.26 21:56:39 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 16.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012.10.26 21:56:42 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 16.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012.10.26 21:56:39 | 000,000,000 | ---D | M]
 
[2012.09.18 19:39:53 | 000,000,000 | ---D | M] (No name found) -- C:\Users\derneuste\AppData\Roaming\mozilla\Extensions
[2012.11.06 19:44:16 | 000,000,000 | ---D | M] (No name found) -- C:\Users\derneuste\AppData\Roaming\mozilla\Firefox\Profiles\rnt99qkn.default\extensions
[2012.11.04 13:30:26 | 000,000,000 | ---D | M] (WOT) -- C:\Users\derneuste\AppData\Roaming\mozilla\Firefox\Profiles\rnt99qkn.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
[2012.10.26 21:56:38 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
[2012.11.02 21:54:57 | 000,000,000 | ---D | M] (avast! WebRep) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF
[2012.10.26 21:56:42 | 000,261,600 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2012.09.06 03:07:37 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
[2012.09.06 03:07:37 | 000,002,465 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2012.09.06 03:07:37 | 000,001,153 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
[2012.09.06 03:07:37 | 000,006,805 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
[2012.09.06 03:07:37 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml
[2012.09.06 03:07:37 | 000,001,105 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml
 
O1 HOSTS File: ([2009.06.10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Programme\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:64bit: - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Programme\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3:64bit: - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Programme\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Programme\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:64bit: - HKLM..\Run: [RtHDVBg_Dolby] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: []  File not found
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [avgnt] E:\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [iSaverCtrl] C:\Program Files (x86)\iSaver\iSaverCtrl.exe --startup File not found
O4 - HKLM..\Run: [NUSB3MON] c:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Renesas Electronics Corporation)
O4 - HKLM..\Run: [StartCCC] c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2060105697-235347385-2913916759-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8:64bit: - Extra context menu item: Nach Microsoft E&xel exportieren - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Nach Microsoft E&xel exportieren - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - E:\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - E:\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - E:\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - E:\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - E:\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - E:\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000007 - E:\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000008 - E:\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000020 - E:\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - E:\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - E:\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - E:\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - E:\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - E:\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - E:\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - E:\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - E:\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - E:\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{AFBD353B-2ECF-40CF-A0A7-08855C94329C}: NameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D30CE1CA-0DAE-4325-A5E1-A1AC77CE0A0E}: DhcpNameServer = 10.111.81.129 10.129.32.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18:64bit: - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\IMESHA~1\Mediabar\Datamngr\x64\datamngr.dll) - C:\PROGRA~2\IMESHA~1\Mediabar\Datamngr\x64\datamngr.dll (iMesh, Inc)
O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\IMESHA~1\Mediabar\Datamngr\x64\IEBHO.dll) - C:\PROGRA~2\IMESHA~1\Mediabar\Datamngr\x64\IEBHO.dll (iMesh, Inc)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
========== Files/Folders - Created Within 30 Days ==========
 
[2012.11.06 20:08:09 | 000,000,000 | ---D | C] -- C:\temp
[2012.11.05 19:31:16 | 000,370,288 | ---- | C] (AVAST Software) -- C:\windows\SysNative\drivers\aswSP.sys
[2012.11.05 19:31:16 | 000,025,232 | ---- | C] (AVAST Software) -- C:\windows\SysNative\drivers\aswFsBlk.sys
[2012.11.05 19:31:15 | 000,984,144 | ---- | C] (AVAST Software) -- C:\windows\SysNative\drivers\aswSnx.sys
[2012.11.04 14:34:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
[2012.11.04 14:16:37 | 000,000,000 | ---D | C] -- C:\ProgramData\SecTaskMan
[2012.11.04 14:16:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security Task Manager
[2012.11.04 14:16:34 | 000,000,000 | ---D | C] -- C:\Program Files\Security Task Manager
[2012.11.03 23:23:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in
[2012.11.02 21:55:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus
[2012.11.02 21:55:15 | 000,285,328 | ---- | C] (AVAST Software) -- C:\windows\SysNative\aswBoot.exe
[2012.11.02 21:55:15 | 000,071,600 | ---- | C] (AVAST Software) -- C:\windows\SysNative\drivers\aswMonFlt.sys
[2012.11.02 21:54:29 | 000,041,224 | ---- | C] (AVAST Software) -- C:\windows\avastSS.scr
[2012.11.02 21:54:28 | 000,227,648 | ---- | C] (AVAST Software) -- C:\windows\SysWow64\aswBoot.exe
[2012.11.02 21:54:14 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2012.11.02 21:54:14 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2012.10.30 18:40:15 | 000,000,000 | ---D | C] -- C:\TDSSKiller_Quarantine
[2012.10.30 18:32:09 | 000,000,000 | ---D | C] -- C:\Users\derneuste\Desktop\Virensuchprogramme zT alt
[2012.10.29 22:30:22 | 000,000,000 | ---D | C] -- C:\Users\derneuste\AppData\Roaming\JAM Software
[2012.10.29 22:30:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TreeSize Professional
[2012.10.29 22:30:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\JAM Software
[2012.10.29 19:16:29 | 000,000,000 | ---D | C] -- C:\Users\derneuste\AppData\Local\{80886A99-B8E8-423C-A76E-B5C67B5625BB}
[2012.10.29 19:14:23 | 000,000,000 | ---D | C] -- C:\Users\derneuste\Local Settings
[2012.10.29 19:14:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
[2012.10.29 19:14:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\7-Zip
[2012.10.26 21:56:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2012.10.26 06:45:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ESET
[2012.10.26 06:36:36 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2012.10.25 20:51:21 | 000,518,144 | ---- | C] (SteelWerX) -- C:\windows\SWREG.exe
[2012.10.25 20:51:21 | 000,406,528 | ---- | C] (SteelWerX) -- C:\windows\SWSC.exe
[2012.10.25 20:51:21 | 000,060,416 | ---- | C] (NirSoft) -- C:\windows\NIRCMD.exe
[2012.10.25 20:46:58 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012.10.25 20:46:46 | 000,000,000 | ---D | C] -- C:\windows\erdnt
[2012.10.22 18:16:14 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mbam.sys
[2012.10.21 18:43:27 | 000,000,000 | ---D | C] -- C:\windows\Minidump
[2012.10.21 18:11:32 | 000,245,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\OxpsConverter.exe
[2012.10.21 18:11:22 | 005,559,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntoskrnl.exe
[2012.10.21 18:11:22 | 003,914,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ntoskrnl.exe
[2012.10.21 18:11:19 | 003,968,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ntkrnlpa.exe
[2012.10.21 18:11:00 | 001,162,240 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\kernel32.dll
[2012.10.21 18:11:00 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KernelBase.dll
[2012.10.21 18:10:59 | 000,338,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\conhost.exe
[2012.10.21 18:10:59 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wow64.dll
[2012.10.21 18:10:59 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winsrv.dll
[2012.10.21 18:10:58 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wow64win.dll
[2012.10.21 18:10:58 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\setup16.exe
[2012.10.21 18:10:58 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntvdm64.dll
[2012.10.21 18:10:58 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ntvdm64.dll
[2012.10.21 18:10:58 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wow64cpu.dll
[2012.10.21 18:10:58 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\instnm.exe
[2012.10.21 18:10:58 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
[2012.10.21 18:10:58 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wow32.dll
[2012.10.21 18:10:58 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
[2012.10.21 18:10:58 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
[2012.10.21 18:10:58 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
[2012.10.21 18:10:58 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
[2012.10.21 18:10:58 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
[2012.10.21 18:10:58 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
[2012.10.21 18:10:58 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
[2012.10.21 18:10:57 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
[2012.10.21 18:10:57 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-security-base-l1-1-0.dll
[2012.10.21 18:10:57 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-file-l1-1-0.dll
[2012.10.21 18:10:57 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
[2012.10.21 18:10:57 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
[2012.10.21 18:10:57 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
[2012.10.21 18:10:57 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
[2012.10.21 18:10:57 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
[2012.10.21 18:10:57 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
[2012.10.21 18:10:57 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
[2012.10.21 18:10:57 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
[2012.10.21 18:10:57 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
[2012.10.21 18:10:57 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
[2012.10.21 18:10:57 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
[2012.10.21 18:10:57 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
[2012.10.21 18:10:57 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.21 18:10:57 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
[2012.10.21 18:10:57 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
[2012.10.21 18:10:57 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-util-l1-1-0.dll
[2012.10.21 18:10:57 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-string-l1-1-0.dll
[2012.10.21 18:10:57 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-io-l1-1-0.dll
[2012.10.21 18:10:57 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
[2012.10.21 18:10:57 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
[2012.10.21 18:10:57 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
[2012.10.21 18:10:57 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
[2012.10.21 18:10:57 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
[2012.10.21 18:10:57 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-console-l1-1-0.dll
[2012.10.21 18:10:57 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\user.exe
[2012.10.21 18:10:29 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wintrust.dll
[2012.10.21 18:04:10 | 001,464,320 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\crypt32.dll
[2012.10.21 18:04:08 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\cryptnet.dll
[2012.10.13 12:53:43 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
[2012.10.13 12:53:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Silverlight
[2012.10.13 11:48:38 | 000,000,000 | ---D | C] -- C:\Users\derneuste\AppData\Roaming\Malwarebytes
[2012.10.13 11:48:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2012.10.13 11:48:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2012.10.13 11:48:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2012.10.12 17:59:38 | 000,000,000 | ---D | C] -- C:\Kaspersky Rescue Disk 10.0
 
========== Files - Modified Within 30 Days ==========
 
[2012.11.07 19:49:39 | 000,016,976 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012.11.07 19:49:39 | 000,016,976 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012.11.07 19:42:12 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2012.11.07 19:42:08 | 2816,389,120 | -HS- | M] () -- C:\hiberfil.sys
[2012.11.06 20:09:23 | 000,001,097 | ---- | M] () -- C:\Users\derneuste\Desktop\SopCast.lnk
[2012.11.05 19:48:34 | 000,000,471 | ---- | M] () -- C:\windows\BRWMARK.INI
[2012.11.05 19:31:17 | 000,001,965 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2012.11.05 19:31:15 | 000,000,000 | ---- | M] () -- C:\windows\SysWow64\config.nt
[2012.11.01 18:36:01 | 000,000,512 | ---- | M] () -- C:\Users\derneuste\Desktop\MBR.dat
[2012.10.30 23:51:55 | 000,984,144 | ---- | M] (AVAST Software) -- C:\windows\SysNative\drivers\aswSnx.sys
[2012.10.30 23:51:55 | 000,370,288 | ---- | M] (AVAST Software) -- C:\windows\SysNative\drivers\aswSP.sys
[2012.10.30 23:51:55 | 000,071,600 | ---- | M] (AVAST Software) -- C:\windows\SysNative\drivers\aswMonFlt.sys
[2012.10.30 23:51:53 | 000,025,232 | ---- | M] (AVAST Software) -- C:\windows\SysNative\drivers\aswFsBlk.sys
[2012.10.30 23:51:07 | 000,041,224 | ---- | M] (AVAST Software) -- C:\windows\avastSS.scr
[2012.10.30 23:50:59 | 000,227,648 | ---- | M] (AVAST Software) -- C:\windows\SysWow64\aswBoot.exe
[2012.10.30 23:50:30 | 000,285,328 | ---- | M] (AVAST Software) -- C:\windows\SysNative\aswBoot.exe
[2012.10.21 18:43:18 | 233,669,028 | ---- | M] () -- C:\windows\MEMORY.DMP
[2012.10.11 20:29:33 | 000,696,760 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\SysWow64\FlashPlayerApp.exe
 
========== Files Created - No Company Name ==========
 
[2012.11.02 21:55:18 | 000,001,965 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2012.11.02 21:55:15 | 000,000,000 | ---- | C] () -- C:\windows\SysWow64\config.nt
[2012.11.01 17:55:41 | 000,000,512 | ---- | C] () -- C:\Users\derneuste\Desktop\MBR.dat
[2012.10.25 20:51:21 | 000,256,000 | ---- | C] () -- C:\windows\PEV.exe
[2012.10.25 20:51:21 | 000,208,896 | ---- | C] () -- C:\windows\MBR.exe
[2012.10.25 20:51:21 | 000,098,816 | ---- | C] () -- C:\windows\sed.exe
[2012.10.25 20:51:21 | 000,080,412 | ---- | C] () -- C:\windows\grep.exe
[2012.10.25 20:51:21 | 000,068,096 | ---- | C] () -- C:\windows\zip.exe
[2012.10.21 18:43:18 | 233,669,028 | ---- | C] () -- C:\windows\MEMORY.DMP
[2012.10.21 18:01:27 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
[2012.02.04 10:31:40 | 000,496,640 | ---- | C] () -- C:\windows\SysWow64\lame_enc.dll
[2012.02.04 10:31:40 | 000,131,176 | ---- | C] () -- C:\windows\SysWow64\mp3gain.exe
[2012.02.04 10:31:40 | 000,086,016 | ---- | C] () -- C:\windows\SysWow64\akrip32.dll
[2012.02.04 10:31:39 | 000,580,096 | ---- | C] () -- C:\windows\SysWow64\lame.exe
[2012.02.04 10:31:39 | 000,307,200 | ---- | C] () -- C:\windows\SysWow64\Mp3Ctrl.dll
[2012.02.04 10:31:38 | 000,003,180 | ---- | C] () -- C:\Users\derneuste\AppData\Local\ZortamMp3MediaStudio.iss
[2012.01.25 13:00:51 | 000,367,104 | ---- | C] () -- C:\windows\dmexmenu.dll
[2012.01.25 13:00:51 | 000,072,791 | ---- | C] () -- C:\windows\dmexlanguage.ini
[2012.01.12 08:02:30 | 000,000,471 | ---- | C] () -- C:\windows\BRWMARK.INI
[2012.01.12 08:02:30 | 000,000,034 | ---- | C] () -- C:\windows\SysWow64\bd4040cn.dat
[2012.01.12 08:02:30 | 000,000,026 | ---- | C] () -- C:\windows\BRPP2KA.INI
[2011.12.31 12:53:44 | 000,007,643 | ---- | C] () -- C:\Users\derneuste\AppData\Local\Resmon.ResmonCfg
[2011.12.19 13:21:19 | 000,000,000 | ---- | C] () -- C:\windows\ativpsrm.bin
[2011.12.14 07:53:04 | 000,204,960 | ---- | C] () -- C:\windows\SysWow64\ativvsvl.dat
[2011.12.14 07:53:04 | 000,157,152 | ---- | C] () -- C:\windows\SysWow64\ativvsva.dat
[2011.12.14 07:53:03 | 000,003,917 | ---- | C] () -- C:\windows\SysWow64\atipblag.dat
[2011.11.09 22:39:44 | 000,059,904 | ---- | C] () -- C:\windows\SysWow64\OpenVideo.dll
[2011.11.09 22:39:32 | 000,054,784 | ---- | C] () -- C:\windows\SysWow64\OVDecode.dll
 
========== ZeroAccess Check ==========
 
[2009.07.14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012.06.09 06:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012.06.09 05:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.21 04:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
 
========== Alternate Data Streams ==========
 
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:8331D35A
@Alternate Data Stream - 100 bytes -> C:\ProgramData\TEMP:EBC2DB92

< End of report >
         
und extras

Code:
ATTFilter
OTL Extras logfile created on: 07.11.2012 19:52:28 - Run 3
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\derneuste\Desktop\Virensuchprogramme zT alt
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
3,50 Gb Total Physical Memory | 2,20 Gb Available Physical Memory | 62,82% Memory free
6,99 Gb Paging File | 5,46 Gb Available in Paging File | 78,09% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 467,66 Gb Total Space | 336,62 Gb Free Space | 71,98% Space Free | Partition Type: NTFS
Drive E: | 244,14 Gb Total Space | 175,88 Gb Free Space | 72,04% Space Free | Partition Type: NTFS
Drive J: | 204,71 Gb Total Space | 50,67 Gb Free Space | 24,75% Space Free | Partition Type: NTFS
Drive L: | 298,01 Gb Total Space | 150,59 Gb Free Space | 50,53% Space Free | Partition Type: FAT32
 
Computer Name: DERNEUSTE-PC | User Name: derneuste | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Extra Registry (SafeList) ==========
 
 
========== File Associations ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\windows\SysNative\rundll32.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation)
 
[HKEY_USERS\S-1-5-21-2060105697-235347385-2913916759-1001\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
 
========== Shell Spawning ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [MediaMonkey.1Play] -- "E:\MediaMonkey\MediaMonkey.exe" "%1"
Directory [MediaMonkey.2PlayNext] -- "E:\MediaMonkey\MediaMonkey.exe" /NEXT "%1"
Directory [MediaMonkey.3Enqueue] -- "E:\MediaMonkey\MediaMonkey.exe" /ADD "%1"
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [MediaMonkey.1Play] -- "E:\MediaMonkey\MediaMonkey.exe" "%1"
Directory [MediaMonkey.2PlayNext] -- "E:\MediaMonkey\MediaMonkey.exe" /NEXT "%1"
Directory [MediaMonkey.3Enqueue] -- "E:\MediaMonkey\MediaMonkey.exe" /ADD "%1"
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
========== Security Center Settings ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
 
========== System Restore Settings ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
 
========== Firewall Settings ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
 
========== Authorized Applications List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
 
 
========== Vista Active Open Ports Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{20FBB5EB-99A0-42DB-B29B-95E7493D03C1}" = lport=2869 | protocol=6 | dir=in | app=system | 
"{3049C825-D488-4DA3-B3B4-E62169485D48}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{3E5E5400-4E04-47FB-95D4-DF1A6E006C90}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{3FF94C8B-00F0-46C9-911B-3E87AB25F5AE}" = rport=10243 | protocol=6 | dir=out | app=system | 
"{443C821F-B87B-4683-8158-0719BE06533A}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{541CBC2C-8E3D-4A8F-8B4F-E3E1A946F2E4}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{616EF830-2F7F-45B2-A679-76DE25C640BE}" = lport=137 | protocol=17 | dir=in | app=system | 
"{641E1BD0-D187-40D8-95B8-092D9ACBDC7E}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{72931074-907F-40D8-8A23-157338BC3F28}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{72FF699C-8D56-4230-9B11-510A19251D2D}" = lport=138 | protocol=17 | dir=in | app=system | 
"{7F3614BF-5281-4C04-A7E2-DD16B9CD9850}" = lport=139 | protocol=6 | dir=in | app=system | 
"{9318B394-96C6-4024-BBD5-16CF086326FB}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | 
"{9542F82F-9EA5-47AD-91CF-1E7EE4D9C617}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{A3427852-3B59-478A-A1DF-B7E7D1101C73}" = rport=139 | protocol=6 | dir=out | app=system | 
"{A47E5180-433B-40D8-B75A-AD1B6504D072}" = rport=138 | protocol=17 | dir=out | app=system | 
"{C421D11C-1E92-4CBE-A8C4-ED8C05C05BFC}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{CC796F37-CD1A-495C-A23F-B7CB548E84DE}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | 
"{D5315284-EAA7-4D13-9D3F-582A0EF644E2}" = lport=445 | protocol=6 | dir=in | app=system | 
"{D825BDAE-DAAA-4C4E-8473-2AC56FE32FFD}" = rport=137 | protocol=17 | dir=out | app=system | 
"{D9787DF8-5048-4AF2-9D7E-F972D343BFBE}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{E6707DF3-D2F5-4D3E-B9EE-C67DAEB68B3A}" = lport=10243 | protocol=6 | dir=in | app=system | 
"{EC614620-0EFF-4FA9-B710-800E536C7328}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe | 
"{ED53443E-B4D5-4D02-B872-6E58EFB04165}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{F2C2D1A2-3F78-41CD-9106-6C81FC3236C7}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | 
"{F5E788DC-F8D7-48D5-BD05-072D82B724D1}" = rport=445 | protocol=6 | dir=out | app=system | 
"{F7385103-B4F1-40E5-BB33-BDC5EE9C7FF2}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | 
 
========== Vista Active Application Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{1D374B86-FC52-419F-8603-A722EE4085F7}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{1F2378A4-4081-4E83-81A0-3B7D2B245129}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{250142E6-F321-443E-8D5B-16842CF9ED2E}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | 
"{2D87A4E1-7D02-4A93-BD88-A002DDE44F0F}" = protocol=17 | dir=in | app=c:\windows\syswow64\msiexec.exe | 
"{371AB414-A435-42CE-ADCA-44C8498F4AFD}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"{389694AA-D77B-439E-B449-291B7EA9F70D}" = protocol=6 | dir=out | app=system | 
"{54479F16-3E01-4524-8B74-32BF1DBF84A6}" = protocol=6 | dir=in | app=c:\program files (x86)\imesh applications\imesh\imesh.exe | 
"{5677E414-FBBD-4C44-B810-BF16E846F41D}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{5C8EE087-996C-4F98-8D0E-0F144FE8316C}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{652BFB55-E392-48B0-9B70-2B71E9133F0C}" = protocol=17 | dir=in | app=c:\program files (x86)\sweetim\communicator\sweetpacksupdatemanager.exe | 
"{6AEFD876-EBBD-4955-B174-55DE88A6B62C}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | 
"{6C9D638C-23AF-472F-AF46-AF01F6F949AB}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | 
"{6EBABDD9-D621-49A1-ABE6-DF17830C529F}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe | 
"{72F7AF9B-56C5-4F74-82EB-F9318DE10F9A}" = protocol=6 | dir=in | app=c:\program files (x86)\imesh applications\mediabar\datamngr\srtool~1\dtuser.exe | 
"{7481F9BD-F521-46D8-8996-3876B4A8068F}" = protocol=6 | dir=in | app=c:\program files (x86)\sweetim\communicator\sweetpacksupdatemanager.exe | 
"{7FD5A2D2-E5BC-42BA-9C9A-0D932661AAED}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"{8238485B-D43B-42E2-AE8D-6EE5790CB605}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe | 
"{9A6FDA7E-27D7-45F8-8192-71FF87F099F6}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{9FBB6CE4-6D9A-46C0-9F44-E907F7ED79CF}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{A17550BF-9949-43D5-94BF-8969B65E5EE4}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{A9324A41-5C3E-4729-ABEA-BB1166D42831}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{AC22DDDB-ABF5-4054-84A9-A3C30FDD7B20}" = protocol=6 | dir=in | app=c:\windows\syswow64\msiexec.exe | 
"{B9FB8E14-C17B-4C1F-B867-E40435A00313}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{CB5EA568-2DF1-426C-91BE-A2791B106193}" = protocol=17 | dir=in | app=c:\program files (x86)\imesh applications\imesh\imesh.exe | 
"{D1089845-536B-4F00-B456-0F0551821569}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | 
"{DB9EA595-9769-4435-A662-D7AD0B6D6329}" = protocol=6 | dir=in | app=c:\program files (x86)\imesh applications\imesh\imesh.exe | 
"{DD2A2C6C-C8C9-48D1-A1B0-57303F662869}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | 
"{DD3E584B-BF79-4266-AC72-14AC62268CC7}" = dir=in | app=c:\itunes\itunes.exe | 
"{DEBE0657-84DB-46E9-AAE5-60C98D865A8F}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | 
"{DECD30F1-09CE-4C4A-915F-BA18A46643D6}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | 
"{E53FE676-3212-4EF7-ABFA-71C80F7BABC7}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{E9E324A2-0936-44CB-958B-588C08C624BB}" = protocol=17 | dir=in | app=c:\program files (x86)\imesh applications\mediabar\datamngr\srtool~1\dtuser.exe | 
"{EE3ECBA6-B08C-4C12-92D8-41F42E4D445B}" = protocol=17 | dir=in | app=c:\program files (x86)\imesh applications\imesh\imesh.exe | 
"{FA7C3A6D-6ED3-4894-A276-AA5C7FCF7A6B}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"TCP Query User{175A9775-18B5-499F-850A-DACD0D211EB5}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe | 
"TCP Query User{1EF5D62F-49DD-4F04-A2DE-15E037520870}C:\program files (x86)\temp\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files (x86)\temp\sopcast\sopcast.exe | 
"TCP Query User{31217E38-C89C-48CA-856A-6D986AEE867C}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe | 
"TCP Query User{448A4D01-04BF-45DE-BC71-D6B18C784FA9}C:\program files (x86)\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe | 
"UDP Query User{4EF07B70-FBB6-4CB2-B8EC-BB747B39570F}C:\program files (x86)\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe | 
"UDP Query User{655AF68B-CC63-4542-84EA-76534E115BB2}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe | 
"UDP Query User{70B8D477-D557-4A2D-8139-6291FE55BB74}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe | 
"UDP Query User{F04A1F94-E3A2-454C-8403-FF5C396F23AF}C:\program files (x86)\temp\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files (x86)\temp\sopcast\sopcast.exe | 
 
========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0886900B-B2F3-452C-B580-60F1253F7F80}" = Native Instruments Controller Editor
"{0B8565BA-BAD5-4732-B122-5FD78EFC50A9}" = Native Instruments Service Center
"{0E3DAF3D-FF69-345A-A99E-1FED304CA083}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"{11BA2B00-1495-47B8-BFA8-D08C605AB2CC}" = Windows Live Family Safety
"{1493B2AE-0261-47D2-B1AA-F4DAD0F6C48B}" = iTunes
"{180C8888-50F1-426B-A9DC-AB83A1989C65}" = Windows Live Language Selector
"{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant
"{4BC310C4-B898-46E2-B5FB-B85A30AA7142}" = iCloud
"{4D533F05-A3F6-F8A9-F1F6-FA6812089D36}" = AMD Drag and Drop Transcoding
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{62478EFF-4C2D-7C34-3CE4-23E1CF4A53DD}" = ccc-utility64
"{7446FE8D-C1F9-4D42-AAAE-5DBCE58605A6}" = Apple Mobile Device Support
"{76A9BB62-F6BC-83B7-B774-B4ED34009E62}" = AMD Fuel
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0407-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (German) 2007
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{A08E9F7F-D07D-4029-973D-D9DB7DF4A285}" = Nitro Reader 2
"{A8EC0CC0-AD8D-4244-B080-424EDF7A7634}" = Native Instruments Traktor 2
"{CE42CFF5-F477-D440-6CFB-6CBAE0008B91}" = AMD Catalyst Install Manager
"{CEA21F20-DBF4-464C-8B81-28B8508AFDDD}" = Windows Live Family Safety
"{D5876F0A-B2E9-4376-B9F5-CD47B7B8D820}" = Windows Live Remote Client Resources
"{D930AF5C-5193-4616-887D-B974CEFC4970}" = Windows Live Remote Service Resources
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319
"{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client
"{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin 64-bit
"Free PDF to Word Converter_is1" = Free PDF to Word Converter 5.1.0.383
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0481A2EA-DA1D-4D10-A7C3-F8237948F6B5}" = Messenger Companion
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0D4D67AB-C830-1787-5868-7EB8CDE396FD}" = Catalyst Control Center InstallProxy
"{0E64B098-8018-4256-BA23-C316A43AD9B0}" = QuickTime
"{12FCEE02-33A5-478A-A0B1-219E07BA0B47}" = MP3-Tag-Editor 3.10
"{1BA1DBDC-5431-46FD-A66F-A17EB1C439EE}" = Windows Live Messenger
"{1DDB95A4-FD7B-4517-B3F1-2BCAA96879E6}" = Windows Live Writer Resources
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{2911F8A7-8513-7A0C-E02B-B4BF3260376D}" = CCC Help Hungarian
"{2ECA81CA-D932-4AD3-AD59-BF5CCF099C83}" = Catalyst Control Center - Branding
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{337944EB-8A7B-9A4F-5616-BE20776318B0}" = Catalyst Control Center Graphics Previews Common
"{376924D9-9D83-366E-8DF4-3785F7200572}" = CCC Help Greek
"{37B33B16-2535-49E7-8990-32668708A0A3}" = Windows Live UX Platform Language Pack
"{37D77500-8BAB-D917-A1E5-80DB5DBC90A4}" = CCC Help Polish
"{3DBF3B04-45ED-7839-A732-572F5132C87E}" = CCC Help French
"{3FCB5D68-F2EC-00BC-4F00-A921C894A670}" = Catalyst Control Center Localization All
"{4D161755-840F-40E8-B0F4-DAB6D1A15978}" = Heja BVB 
"{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver
"{5449FB4F-1802-4D5B-A6D8-087DB1142147}" = Realtek HDMI Audio Driver for ATI
"{58184585-45B7-AC59-3367-CC89814C2657}" = AMD VISION Engine Control Center
"{5E1375CB-6792-4464-8715-CC3EC83D48FA}" = VirtualDJ Home FREE
"{63EC2120-1742-4625-AA47-C6A8AEC9C64C}" = Apple Application Support
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}" = Windows Live Messenger Companion Core
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{859D4022-B76D-40DE-96EF-C90CDA263F44}" = Windows Live Writer
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{8B558624-36B9-7D51-AA9F-339E85E3C6CA}" = CCC Help Portuguese
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{90120000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2007
"{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0015-0407-0000-0000000FF1CE}" = Microsoft Office Access MUI (German) 2007
"{90120000-0015-0407-0000-0000000FF1CE}_PROPLUS_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2007
"{90120000-0016-0407-0000-0000000FF1CE}_PROPLUS_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2007
"{90120000-0018-0407-0000-0000000FF1CE}_PROPLUS_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0407-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (German) 2007
"{90120000-0019-0407-0000-0000000FF1CE}_PROPLUS_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0407-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (German) 2007
"{90120000-001A-0407-0000-0000000FF1CE}_PROPLUS_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2007
"{90120000-001B-0407-0000-0000000FF1CE}_PROPLUS_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_PROPLUS_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_PROPLUS_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_PROPLUS_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2007
"{90120000-001F-0410-0000-0000000FF1CE}_PROPLUS_{A23BFC95-4A73-410F-9248-4C2B48E38C49}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002A-0000-1000-0000000FF1CE}_PROPLUS_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0407-1000-0000000FF1CE}_PROPLUS_{A6353E8F-5B8D-47CC-8737-DFF032ED3973}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2007
"{90120000-0044-0407-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (German) 2007
"{90120000-0044-0407-0000-0000000FF1CE}_PROPLUS_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2007
"{90120000-006E-0407-0000-0000000FF1CE}_PROPLUS_{A6353E8F-5B8D-47CC-8737-DFF032ED3973}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
"{960C091F-A830-2964-D775-05ECD97484B5}" = CCC Help Spanish
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{A4A9D179-DF6D-3876-F1C4-F4D2F5B77F23}" = CCC Help English
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AC76BA86-7AD7-1031-7B44-AA1000000001}" = Adobe Reader X (10.1.4) - Deutsch
"{ACFBE99B-6981-4513-B17E-A2683CEB9EE5}" = Windows Live Mesh
"{B113D18C-67B0-4FB7-B329-E89B66194AE6}" = Windows Live Fotogalerie
"{B1239994-A850-44E2-BED8-E70A21124E16}" = Windows Live Mail
"{C2AB7DC4-489E-4BE9-887A-52262FBADBE0}" = Windows Live Photo Common
"{C5398A89-516C-4DAF-BA07-EE7949090E56}" = Windows Live Mesh ActiveX control for remote connections
"{CA142FB8-084F-4B22-BCC7-890B0F42A0DF}" = Maximized Software iCoverArt
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{DB32230C-5CE1-8112-F793-A8124B25A60B}" = CCC Help Italian
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{DF9E978D-54DA-6E2B-E699-D161E31DA144}" = CCC Help German
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E4E88B54-4777-4659-967A-2EED1E6AFD83}" = Windows Live Movie Maker
"{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}" = Microsoft Office Live Add-in 1.5
"{F95E4EE0-0C6E-4273-B6B9-91FD6F071D76}" = Windows Live Essentials
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"7-Zip" = 7-Zip 9.20
"Album Art Downloader XUI" = Album Art Downloader XUI 0.43
"Album Cover Finder_is1" = Album Cover Finder v.7.1.3
"Amazon MP3-Downloader" = Amazon MP3-Downloader 1.0.9
"avast" = avast! Free Antivirus
"Avira AntiVir Desktop" = Avira Free Antivirus
"CDex" = CDex - Open Source Digital Audio CD Extractor
"DMEXMENU" = DMEX Menu Extention (Uninstall only)
"ESET Online Scanner" = ESET Online Scanner v3
"Exact Audio Copy" = Exact Audio Copy 1.0beta3
"imeshtoolbar2" = Search-Results Toolbar
"InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware Version 1.65.1.1000
"MediaMonkey_is1" = MediaMonkey 4.0
"Mozilla Firefox 16.0.2 (x86 de)" = Mozilla Firefox 16.0.2 (x86 de)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Native Instruments Controller Editor" = Native Instruments Controller Editor
"Native Instruments Service Center" = Native Instruments Service Center
"Native Instruments Traktor 2" = Native Instruments Traktor 2
"PROPLUS" = Microsoft Office Professional Plus 2007
"Security Task Manager" = Security Task Manager 1.8d
"SopCast" = SopCast 3.5.0
"TagScanner_is1" = TagScanner 5.1.607
"TreeSize Professional_is1" = TreeSize Professional V5.5.5
"Virtual DJ Home Edition - Atomix Productions" = Virtual DJ Home Edition - Atomix Productions
"WinLiveSuite" = Windows Live Essentials
"xp-AntiSpy" = xp-AntiSpy 3.98-1
"Zortam Mp3 Media Studio_is1" = Zortam Mp3 Media Studio 13.35
 
========== Last 20 Event Log Errors ==========
 
[ Application Events ]
Error - 29.10.2012 15:38:27 | Computer Name = derneuste-PC | Source = WinMgmt | ID = 10
Description = 
 
Error - 29.10.2012 15:42:08 | Computer Name = derneuste-PC | Source = Microsoft-Windows-LoadPerf | ID = 3002
Description = Der Textzeichenfolgenwert zur Beschreibung des Leistungsindikators
 in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge
 ist "??A ". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch
 formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die
 letzten gültigen Indexwerte enthalten.
 
Error - 30.10.2012 13:31:50 | Computer Name = derneuste-PC | Source = WinMgmt | ID = 10
Description = 
 
Error - 30.10.2012 13:36:44 | Computer Name = derneuste-PC | Source = Microsoft-Windows-LoadPerf | ID = 3002
Description = Der Textzeichenfolgenwert zur Beschreibung des Leistungsindikators
 in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge
 ist "??A ". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch
 formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die
 letzten gültigen Indexwerte enthalten.
 
Error - 30.10.2012 13:43:29 | Computer Name = derneuste-PC | Source = WinMgmt | ID = 10
Description = 
 
Error - 30.10.2012 13:46:10 | Computer Name = derneuste-PC | Source = Microsoft-Windows-LoadPerf | ID = 3002
Description = Der Textzeichenfolgenwert zur Beschreibung des Leistungsindikators
 in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge
 ist "??A ". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch
 formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die
 letzten gültigen Indexwerte enthalten.
 
Error - 30.10.2012 14:13:16 | Computer Name = derneuste-PC | Source = SideBySide | ID = 16842832
Description = Fehler beim Generieren des Aktivierungskontexts für "c:\program files
 (x86)\ESET\eset online scanner\ESETSmartInstaller.exe". Fehler in  Manifest- oder
 Richtliniendatei "" in Zeile .  Eine für die Anwendung erforderliche Komponentenversion
 steht in Konflikt mit  einer anderen, bereits aktiven Komponentenversion.  In Konflikt
 stehende Komponenten:.  Komponente 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente
 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
 
Error - 30.10.2012 14:15:23 | Computer Name = derneuste-PC | Source = SideBySide | ID = 16842832
Description = Fehler beim Generieren des Aktivierungskontexts für "c:\Users\derneuste\Desktop\esetsmartinstaller_enu.exe".
 Fehler in  Manifest- oder Richtliniendatei "" in Zeile .  Eine für die Anwendung erforderliche
 Komponentenversion steht in Konflikt mit  einer anderen, bereits aktiven Komponentenversion.
In
 Konflikt stehende Komponenten:.  Komponente 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente
 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
 
Error - 31.10.2012 11:45:06 | Computer Name = derneuste-PC | Source = WinMgmt | ID = 10
Description = 
 
Error - 31.10.2012 11:47:41 | Computer Name = derneuste-PC | Source = Microsoft-Windows-LoadPerf | ID = 3002
Description = Der Textzeichenfolgenwert zur Beschreibung des Leistungsindikators
 in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge
 ist "??A ". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch
 formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die
 letzten gültigen Indexwerte enthalten.
 
[ OSession Events ]
Error - 01.09.2012 10:38:49 | Computer Name = derneuste-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 8265
 seconds with 0 seconds of active time.  This session ended with a crash.
 
[ System Events ]
Error - 25.10.2012 21:56:45 | Computer Name = derneuste-PC | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der
 aufgrund folgenden Fehlers nicht gestartet wurde:   %%1068
 
Error - 30.10.2012 13:32:14 | Computer Name = derneuste-PC | Source = WMPNetworkSvc | ID = 866300
Description = 
 
Error - 03.11.2012 15:20:11 | Computer Name = derneuste-PC | Source = WMPNetworkSvc | ID = 866300
Description = 
 
Error - 04.11.2012 11:00:21 | Computer Name = derneuste-PC | Source = Service Control Manager | ID = 7011
Description = Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung
 von Dienst eventlog erreicht.
 
Error - 04.11.2012 11:00:51 | Computer Name = derneuste-PC | Source = Service Control Manager | ID = 7011
Description = Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung
 von Dienst Schedule erreicht.
 
Error - 04.11.2012 11:00:51 | Computer Name = derneuste-PC | Source = Service Control Manager | ID = 7011
Description = Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung
 von Dienst eventlog erreicht.
 
Error - 04.11.2012 13:00:49 | Computer Name = derneuste-PC | Source = Ntfs | ID = 262281
Description = Auf dem Volume "O:" konnte der Transaktionsressourcen-Manager aufgrund
 eines nicht wiederholbaren Fehlers nicht gestartet werden. Der Fehlercode ist in
 den Daten enthalten.
 
Error - 04.11.2012 13:05:15 | Computer Name = derneuste-PC | Source = Ntfs | ID = 262281
Description = Auf dem Volume "K:" konnte der Transaktionsressourcen-Manager aufgrund
 eines nicht wiederholbaren Fehlers nicht gestartet werden. Der Fehlercode ist in
 den Daten enthalten.
 
Error - 04.11.2012 13:07:21 | Computer Name = derneuste-PC | Source = Ntfs | ID = 262281
Description = Auf dem Volume "K:" konnte der Transaktionsressourcen-Manager aufgrund
 eines nicht wiederholbaren Fehlers nicht gestartet werden. Der Fehlercode ist in
 den Daten enthalten.
 
Error - 04.11.2012 13:12:30 | Computer Name = derneuste-PC | Source = Ntfs | ID = 262281
Description = Auf dem Volume "O:" konnte der Transaktionsressourcen-Manager aufgrund
 eines nicht wiederholbaren Fehlers nicht gestartet werden. Der Fehlercode ist in
 den Daten enthalten.
 
 
< End of report >
         
Danke ...

Alt 07.11.2012, 21:29   #38
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 7 schwarzer Bildschirm mit Maus nach dem booten - Standard

Windows 7 schwarzer Bildschirm mit Maus nach dem booten



Zitat:
haben wir das nihct schon mal gemacht ?
Was verstehst du an Kontrolle nicht?

Sieht ok aus. Wir sollten fast durch sein. Mach bitte zur Kontrolle einen Quickscan mit Malwarebytes - denk bitte vorher daran, Malwarebytes über den Updatebutton zu aktualisieren

Anschließend über den OnlineScanner von ESET eine zusätzliche Meinung zu holen ist auch nicht verkehrt:


ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 09.11.2012, 17:52   #39
derzapfer
 
Windows 7 schwarzer Bildschirm mit Maus nach dem booten - Standard

Windows 7 schwarzer Bildschirm mit Maus nach dem booten



Hallo Cosinus,

der eset hat doch einiges gefunden...extern zwar abe ...

Code:
ATTFilter
ESETSmartInstaller@High as downloader log:
all ok
# version=7
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6583
# api_version=3.0.2
# EOSSerial=f2b4fd59fecc6d4cb474400ce6aeebe7
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2012-10-26 12:19:13
# local_time=2012-10-26 02:19:13 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=1792 16777215 100 0 0 0 0 0
# compatibility_mode=5893 16776573 100 94 0 102860425 0 0
# compatibility_mode=8192 67108863 100 0 236 236 0 0
# scanned=448401
# found=387
# cleaned=0
# scan_time=23399
C:\Program Files (x86)\iMesh Applications\Mediabar\Datamngr\datamngr.dll	a variant of Win32/Toolbar.SearchSuite application (unable to clean)	00000000000000000000000000000000	I
C:\Program Files (x86)\iMesh Applications\Mediabar\Datamngr\datamngrUI.exe	a variant of Win32/Toolbar.SearchSuite.A application (unable to clean)	00000000000000000000000000000000	I
C:\Program Files (x86)\iMesh Applications\Mediabar\Datamngr\DnsBHO.dll	a variant of Win32/Toolbar.SearchSuite application (unable to clean)	00000000000000000000000000000000	I
C:\Program Files (x86)\iMesh Applications\Mediabar\Datamngr\IEBHO.dll	a variant of Win32/Toolbar.SearchSuite application (unable to clean)	00000000000000000000000000000000	I
C:\Users\derneuste\Downloads\SoftonicDownloader_fuer_album-cover-finder.exe	Win32/SoftonicDownloader.C application (unable to clean)	00000000000000000000000000000000	I
C:\Users\derneuste\Downloads\SoftonicDownloader_fuer_tagscanner.exe	Win32/SoftonicDownloader.C application (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
J:\DERNEUSTE-PC\Backup Set 2012-04-16 080434\Backup Files 2012-04-16 080434\Backup files 17.zip	Win32/SoftonicDownloader.C application (unable to clean)	00000000000000000000000000000000	I
J:\DERNEUSTE-PC\Backup Set 2012-10-09 072555\Backup Files 2012-10-09 072555\Backup files 16.zip	Win32/SoftonicDownloader.C application (unable to clean)	00000000000000000000000000000000	I
J:\DERNEUSTE-PC\Backup Set 2012-10-21 190012\Backup Files 2012-10-21 190012\Backup files 15.zip	Win32/SoftonicDownloader.C application (unable to clean)	00000000000000000000000000000000	I
M:\Musik\2010\Musik\Noch brennen\SoftonicDownloader_fuer_pdf-split-and-merge.exe	a variant of Win32/SoftonicDownloader.A application (unable to clean)	00000000000000000000000000000000	I
M:\Musik\2010\Musik\Noch brennen\SoftonicDownloader_fuer_pdf24-pdf-creator.exe	a variant of Win32/SoftonicDownloader.A application (unable to clean)	00000000000000000000000000000000	I
M:\bilder\Hochzeit\Software\SoftonicDownloader50481.exe	a variant of Win32/SoftonicDownloader.A application (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\creditreform\Favoriten.zip	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\20110215 mit Hochzeit und Lequöre\bilder\Bilder\bilder\Software\SoftonicDownloader50481.exe	a variant of Win32/SoftonicDownloader.A application (unable to clean)	00000000000000000000000000000000	I
${Memory}	a variant of Win32/Toolbar.SearchSuite application	00000000000000000000000000000000	I
ESETSmartInstaller@High as downloader log:
all ok
# version=7
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6583
# api_version=3.0.2
# EOSSerial=f2b4fd59fecc6d4cb474400ce6aeebe7
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2012-11-09 06:29:34
# local_time=2012-11-09 07:29:34 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=1792 16777215 100 0 0 0 0 0
# compatibility_mode=5893 16776573 100 94 46227 104029472 0 0
# compatibility_mode=8192 67108863 100 0 1169283 1169283 0 0
# scanned=395380
# found=388
# cleaned=0
# scan_time=42952
C:\Program Files (x86)\iMesh Applications\Mediabar\Datamngr\datamngr.dll	a variant of Win32/Toolbar.SearchSuite application (unable to clean)	00000000000000000000000000000000	I
C:\Program Files (x86)\iMesh Applications\Mediabar\Datamngr\datamngrUI.exe	a variant of Win32/Toolbar.SearchSuite.A application (unable to clean)	00000000000000000000000000000000	I
C:\Program Files (x86)\iMesh Applications\Mediabar\Datamngr\DnsBHO.dll	a variant of Win32/Toolbar.SearchSuite application (unable to clean)	00000000000000000000000000000000	I
C:\Program Files (x86)\iMesh Applications\Mediabar\Datamngr\IEBHO.dll	a variant of Win32/Toolbar.SearchSuite application (unable to clean)	00000000000000000000000000000000	I
C:\Users\derneuste\AppData\Local\Temp\biclient.exe	a variant of Win32/Somoto.A application (unable to clean)	00000000000000000000000000000000	I
C:\Users\derneuste\Downloads\SoftonicDownloader_fuer_album-cover-finder.exe	Win32/SoftonicDownloader.C application (unable to clean)	00000000000000000000000000000000	I
C:\Users\derneuste\Downloads\SoftonicDownloader_fuer_tagscanner.exe	Win32/SoftonicDownloader.C application (unable to clean)	00000000000000000000000000000000	I
C:\Users\derneuste\Local Settings\Application Data\7-Zip Uninstaller\biclient.exe	a variant of Win32/Somoto.A application (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Sonstiges\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\computer\Sonstiges1\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges08\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Sonstiges\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Sonstiges1\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
E:\Laptop 25122010\Favoriten\Rest\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
J:\DERNEUSTE-PC\Backup Set 2012-10-21 190012\Backup Files 2012-10-21 190012\Backup files 15.zip	Win32/SoftonicDownloader.C application (unable to clean)	00000000000000000000000000000000	I
L:\DERNEUSTE-PC\Backup Set 2012-10-29 193113\Backup Files 2012-10-29 193113\Backup files 14.zip	a variant of Win32/Somoto.A application (unable to clean)	00000000000000000000000000000000	I
L:\DERNEUSTE-PC\Backup Set 2012-10-29 193113\Backup Files 2012-10-29 193113\Backup files 16.zip	Win32/SoftonicDownloader.C application (unable to clean)	00000000000000000000000000000000	I
M:\Musik\2010\Musik\Noch brennen\SoftonicDownloader_fuer_pdf-split-and-merge.exe	a variant of Win32/SoftonicDownloader.A application (unable to clean)	00000000000000000000000000000000	I
M:\Musik\2010\Musik\Noch brennen\SoftonicDownloader_fuer_pdf24-pdf-creator.exe	a variant of Win32/SoftonicDownloader.A application (unable to clean)	00000000000000000000000000000000	I
M:\bilder\Hochzeit\Software\SoftonicDownloader50481.exe	a variant of Win32/SoftonicDownloader.A application (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\Neuer Ordner\Haus\Favoriten\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\VC511\creditreform\Favoriten.zip	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick Corsair\Neuer Ordner\Haus\Favoriten\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Haus Neu\Favoriten\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\Favoriten\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Sonstiges\Favoriten\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Technology\Adware Remover.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Technology\Anti-Virus.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Technology\PC Cleaner.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Technology\Tech & gadgets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Auctions.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Books.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Computers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Discount.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Flowers.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Golf.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Jewelry.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Movies.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Music.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Online Store.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Perfume.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Shop\Sleepwear.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Living\Dating.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Living\Find a Degree.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Living\Find a job.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Living\Home.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Living\Insurance.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Going Places\Air Tickets.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Going Places\Car Rentals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Going Places\Hotel Deals.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Going Places\Luggage.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Going Places\Travel.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Fun & Games\Betting.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Fun & Games\Casino Palace.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Fun & Games\Casino.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Fun & Games\Games.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\Stick\stick_alt\Fav neu\Favoriten\Fun & Games\Horoscope.lnk	LNK/URL.B trojan (unable to clean)	00000000000000000000000000000000	I
M:\20110215 mit Hochzeit \bilder\Bilder\bilder\Software\SoftonicDownloader50481.exe	a variant of Win32/SoftonicDownloader.A application (unable to clean)	00000000000000000000000000000000	I
         
Und Malwarebyte ....

Code:
ATTFilter
Malwarebytes Anti-Malware 1.65.1.1000
www.malwarebytes.org

Datenbank Version: v2012.11.07.08

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
derneuste :: DERNEUSTE-PC [Administrator]

09.11.2012 17:57:34
mbam-log-2012-11-09 (17-57-34).txt

Art des Suchlaufs: Quick-Scan
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 247208
Laufzeit: 2 Minute(n), 11 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 0
(Keine bösartigen Objekte gefunden)

(Ende)
         
Eset hat 380 Schädlinge gefunden. Die lösche ich jetzt erst mal.
malwarebyte, vermutlich weil es nicht alle angeschlossenen LW gescannt hat, hat nichts gefunden...

Gruss
Dz

Alt 09.11.2012, 20:17   #40
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 7 schwarzer Bildschirm mit Maus nach dem booten - Standard

Windows 7 schwarzer Bildschirm mit Maus nach dem booten



Hast du dir auch mal angeschaut was da für Funde bei waren
Sehr viel Müll war dabei, woher diese ganzen Verknüpfungen (.lnk Dateien) kommen kannst nur du wissen.

Ein paar Überreste und auch etwas von Softonic

Finger weg von Softonic!!
Softonic ist eine Toolbar- und Adwareschleuder! Finger weg! Software lädt man sich mit oberster Priorität direkt vom Hersteller oder von Filepony aber nicht von solchen Toolbarklitschen wie Softonic!
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 10.11.2012, 09:00   #41
derzapfer
 
Windows 7 schwarzer Bildschirm mit Maus nach dem booten - Standard

Windows 7 schwarzer Bildschirm mit Maus nach dem booten



Hallo Cosinus,

ich bin da schon eher vorsichtig. Chip.de und Pc-welt sind auch OK.
Habe keine einzige Tollbar.
Die installieren sich aber schon mal, wenn man unaufmerksam sich durch eine Installationsroutine klickt...
Dennoch danke für den Rat.

Wie geht es jetzt weiter ?
Seit den letzten 10 Boots gabs auch keine Probleme mehr...
Ist er geheilt ?

Schönen Samstag ggf auch WE
dz

Alt 11.11.2012, 19:47   #42
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 7 schwarzer Bildschirm mit Maus nach dem booten - Standard

Windows 7 schwarzer Bildschirm mit Maus nach dem booten



Sieht sonst soweit alles ok aus

Wegen Cookies und anderer Dinge im Web: Um die Pest von vornherein zu blocken (also TrackingCookies, Werbebanner etc.) müsstest du dir mal sowas wie MVPS Hosts File anschauen => Blocking Unwanted Parasites with a Hosts File - sinnvollerweise solltest du alle 4 Wochen mal bei MVPS nachsehen, ob er eine neue Hosts Datei herausgebracht hat.

Ansonsten gibt es noch gute Cookiemanager, Erweiterungen für den Firefox zB wäre da CookieCuller
Wenn du aber damit leben kannst, dich bei jeder Browsersession überall neu einzuloggen (zB Facebook, Ebay, GMX, oder auch Trojaner-Board) dann stell den Browser einfach so ein, dass einfach alles beim Beenden des Browser inkl. Cookies gelöscht wird.

Ist dein System nun wieder in Ordnung oder gibt's noch andere Funde oder Probleme?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 12.11.2012, 08:32   #43
derzapfer
 
Windows 7 schwarzer Bildschirm mit Maus nach dem booten - Standard

Windows 7 schwarzer Bildschirm mit Maus nach dem booten



Hallo Cosinus,

danke erst mal für Deine Hilfe(n)....
Habe heute nacht noch mal malwarebyte drüber laufen lassen - keine Funde...
Das System schein sauber zu sein.

habe jetzt nur noch das Problem, dass der PC, seit den Attacken, einige meiner (neueren) Sticks und meine neue externe FP nicht erkennt, andere, die er schon von vorher kannte, funktionieren einwandfrei ...
Bin mal gespannt, ob die Kiste auch weiterhin läuft, wenn ich den Graphikkartentreiber wieder installiert habe. Den habe ich ja anfänglich ins Nirvana geschickt...

Aber da bin ich gerade dran Chipsatz und Motherboard etc. Unterlagen zu bekommen...

Weenn Du noch eine einfacherer Idee hast, die externen Speicher ans Laufen zu bringen, ich bin für alles offen.

Ansonsten werde ich Dich auf dem Laufenden halten ...

Vielen lieben dank, werde Dich/Euch weiterempfehlen...

Derzapfer

Alt 12.11.2012, 11:06   #44
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 7 schwarzer Bildschirm mit Maus nach dem booten - Standard

Windows 7 schwarzer Bildschirm mit Maus nach dem booten



Zitat:
einige meiner (neueren) Sticks und meine neue externe FP nicht erkennt,
Ist mir ein wenig zu unkonkret. Wo erscheinen diese Datenträger denn nicht? Als Laufwerk? Werden sie in der Datenträgerverwatung angezeigt?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 12.11.2012, 11:49   #45
derzapfer
 
Windows 7 schwarzer Bildschirm mit Maus nach dem booten - Standard

Windows 7 schwarzer Bildschirm mit Maus nach dem booten



Wenn ich meine neue externe TB Festplatte über das y-Kabel an USB anschliesse, leuchtet die On/Off Diode der FP dauerhaft auf, der PC quittiert die ganze Sache aber nur mit einem (negativen) Ton. Diese FP taucht werder im Explorer noch in der Datenträgerverwaltung auf. Habe schon alle Kombinationen von USB-Buchsen und dem y-Steckern versucht. Immer das gleiche. Habe andere externen Festplatten an den USB-Schnittstellen angeschlossen, die haben funktioniert. Die Funktioneren allerdings sowieso an dem PC.
Habe die TB FP mit zur Arbeit genommen, und dort an diverse PCs gehängt, hat immer sofort funktioniert...
Werde heute mal die alle Treiber neu installieren und dann wieder berichten.
gruss
dz

Antwort

Themen zu Windows 7 schwarzer Bildschirm mit Maus nach dem booten
anmelden, anmeldung, bildschirm, bildschirm schwarz, booten, booten schlägt fehl, bootvorgang, farben, gen, hallo zusammen, hängen, icon, internet, kaspersky, kleine, maus, maus sichtbar, meldung, nichts, problem, rechner, schwarzer bikdschirm, schwarzer bildschirm, system, viren, windows, windows 7, zugriff




Ähnliche Themen: Windows 7 schwarzer Bildschirm mit Maus nach dem booten


  1. Windows 7: Schwarzer LogIn-Bildschirm nur mit weißer Maus
    Log-Analyse und Auswertung - 28.07.2015 (12)
  2. Vorübergehender Schwarzer Bildschirm mit beweglicher Maus nach Anmeldung
    Log-Analyse und Auswertung - 10.07.2015 (17)
  3. Windows 7 nach Anmelden Schwarzer Bildschirm mit Maus / nach einer Zeit Windows Funktioniert nicht mehr
    Alles rund um Windows - 09.02.2015 (1)
  4. Windows 8: Schwarzer Bildschirm, sehe nur noch die Maus und kann nicht booten :(
    Log-Analyse und Auswertung - 04.02.2015 (9)
  5. Windows 7 Laptop Schwarzer Bildschirm, weiße Maus direkt beim Knopf drücken
    Alles rund um Windows - 06.08.2014 (9)
  6. Windows 8 Schwarzer Bildschirm mit Maus (bei Anmeldung)
    Log-Analyse und Auswertung - 25.07.2014 (3)
  7. Windows 8: Schwarzer Bildschirm mit beweglicher Maus
    Plagegeister aller Art und deren Bekämpfung - 31.03.2014 (7)
  8. weißer bildschirm, schwarzer bildschirm, maus laggs nach systemstart, mausbewegungen in boxen.
    Plagegeister aller Art und deren Bekämpfung - 02.12.2013 (3)
  9. Windows Vista schwarzer Bildschirm nur Maus
    Plagegeister aller Art und deren Bekämpfung - 28.09.2013 (11)
  10. Win7 Home Prem. Schwarzer Bildschirm (mit Maus) nach dem Anmelden
    Log-Analyse und Auswertung - 20.09.2013 (41)
  11. Windows 7 bootet nicht mehr (schwarzer Bildschirm, weiße Maus)
    Plagegeister aller Art und deren Bekämpfung - 30.07.2013 (7)
  12. Virus! Nur schwarzer Bildschirm mit Maus! Windows Vista
    Log-Analyse und Auswertung - 19.07.2013 (5)
  13. Virus! Nur schwarzer Bildschirm mit Maus! Windows Vista
    Mülltonne - 19.07.2013 (1)
  14. weisser Bildschirm nach booten von Windows 7
    Plagegeister aller Art und deren Bekämpfung - 30.06.2013 (16)
  15. weisser Bildschirm nach dem booten von windows 7
    Plagegeister aller Art und deren Bekämpfung - 26.06.2013 (1)
  16. Windows 7 startet nicht mehr, schwarzer Bildschirm beim Booten mit weißem Mauszeiger
    Log-Analyse und Auswertung - 19.03.2013 (0)
  17. Windowsstart schwarzer Bildschirm, Maus funktioniert
    Plagegeister aller Art und deren Bekämpfung - 05.01.2013 (8)

Zum Thema Windows 7 schwarzer Bildschirm mit Maus nach dem booten - Hi Cosinus, ich habe so ein wenig den Überblick verloren bei all den Schädlingssuchprogrammen die ich habe, auf deine anraten hin, laufen lassen. Meine aber da wäre das eine oder - Windows 7 schwarzer Bildschirm mit Maus nach dem booten...
Archiv
Du betrachtest: Windows 7 schwarzer Bildschirm mit Maus nach dem booten auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.