10.08.2007, 19:42
|
#1 |
| bitte um auswertung Zitat:
Version info: Result ToDo
Good
Your used version of a-squared HiJackFree: 3.0.0.387
The current version of a-squared HiJackFree: 3.0.0.382
Good
Your used operating system version: Windows XP Service Pack 2
The current version of your operating system: Windows XP Service Pack 2
Registry Autoruns: Result ToDo
Good
Name: avgnt
Path: C:\Programme\AntiVir PersonalEdition Classic\avgnt.exe
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Good: 1 - Bad: 0
View Details
Good
Name: Cmaudio
Path: RunDll32 cmicnfg.cpl,CMICtrlWnd
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Good: 1 - Bad: 0
View Details
Bad
Name: New.net Startup
Path: rundll32 C:\Programme\NEWDOT~1\NEWDOT~1.DLL,ClientStartup
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Good: 0 - Bad: 1
View Details Requires Attention!
Compare details with your local values
and/or search at Google
Not Sure - may be bad
Name: NvCplDaemon
Path: RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Good: 2 - Bad: 1
View Details Requires Attention!
Compare details with your local values
and/or search at Google
Not Sure - may be bad
Name: ctfmon.exe
Path: C:\WINDOWS\system32\ctfmon.exe
Location: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Good: 3 - Bad: 3
View Details Requires Attention!
Compare details with your local values
and/or search at Google
Not Sure - may be bad
Name: MsnMsgr
Path: C:\Programme\MSN Messenger\MsnMsgr.Exe
Location: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Good: 1 - Bad: 9
View Details Requires Attention!
Compare details with your local values
and/or search at Google
Tricky and Other Autoruns: Result ToDo
Unknown - may be bad
Name: shell
Path: Explorer.exe
Location: system.ini
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: NUL
Path: C:\DOKUME~1\DENNIS~1.DEN\LOKALE~1\Temp\nstmp\uninstall.exe
Location: wininit.ini
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: NUL
Path: C:\DOKUME~1\DENNIS~1.DEN\LOKALE~1\Temp\nstmp\uninstall.exe
Location: wininit.ini
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: NUL
Path: C:\DOKUME~1\DENNIS~1.DEN\LOKALE~1\Temp\nstmp\uninstall.exe
Location: wininit.ini
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: SET BLASTER
Path: A220 I5 D1 P330 T3
Location: autoexec.nt
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: dos
Path: high, umb
Location: config.nt
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: device
Path: %SystemRoot%\system32\himem.sys
Location: config.nt
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: files
Path: 20
Location: config.nt
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: Y'z Dock öffnen (2)
Path:
Location: C:\Dokumente und Einstellungen\Dennis.DENNIS\Startmenü\Programme\Autostart\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: VIA RAID TOOL
Path:
Location: C:\Dokumente und Einstellungen\All Users.WINDOWS\Startmenü\Programme\Autostart\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: Microsoft Office
Path:
Location: C:\Dokumente und Einstellungen\All Users.WINDOWS\Startmenü\Programme\Autostart\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: SA
Path:
Location: C:\WINDOWS\tasks\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: 1-Klick-Wartung
Path:
Location: C:\WINDOWS\tasks\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: A4CE488A91D1F9CE
Path:
Location: C:\WINDOWS\tasks\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: CTFMON.EXE
Path: C:\WINDOWS\System32\CTFMON.EXE
Location: HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Run
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: Nokia.PCSync
Path: E:\Programme\Nokia\Nokia PC Suite 6\PcSync2.exe
Location: HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Run
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: Shell
Path: Explorer.exe
Location: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: $LT;{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}
Path: C:\WINDOWS\system32\ieudinit.exe
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: $GT;{22d6f312-b0f6-11d0-94ab-0080c74c7e95}
Path: C:\WINDOWS\inf\unregmp2.exe
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: $GT;{26923b43-4d38-484f-9b9e-de460746276c}
Path: C:\WINDOWS\system32\shmgrate.exe
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: $GT;{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS
Path: RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: $GT;{881dd1c5-3dcf-431b-b061-f3f88e8be88a}
Path: C:\WINDOWS\system32\shmgrate.exe
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: {22d6f312-b0f6-11d0-94ab-0080c74c7e95}
Path: rundll32.exe advpack.dll
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: {2C7339CF-2B09-4501-B3F3-F3508C9228ED}
Path: C:\WINDOWS\system32\regsvr32.exe
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: {44BBA840-CC51-11CF-AAFA-00AA00B6015C}
Path: C:\Programme\Outlook Express\setup50.exe
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: {44BBA842-CC51-11CF-AAFA-00AA00B6015B}
Path: rundll32.exe advpack.dll
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: {5945c046-1e7d-11d1-bc44-00c04fd912be}
Path: rundll32.exe advpack.dll
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: {6BF52A52-394A-11d3-B153-00C04F79FAA6}
Path: rundll32.exe advpack.dll
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: {7790769C-0471-11d2-AF11-00C04FA35D02}
Path: C:\Programme\Outlook Express\setup50.exe
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: {89820200-ECBD-11cf-8B85-00AA005B4340}
Path: regsvr32.exe
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: {89820200-ECBD-11cf-8B85-00AA005B4383}
Path: C:\WINDOWS\system32\ie4uinit.exe
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: VBScript-Skriptdatei
Path: C:\WINDOWS\System32\WScript.exe
Location: HKEY_CLASSES_ROOT\vbsfile\shell\open\command\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: Codierte VBScript-Skriptdatei
Path: C:\WINDOWS\System32\WScript.exe
Location: HKEY_CLASSES_ROOT\vbefile\shell\open\command\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: JScript-Skriptdatei
Path: C:\WINDOWS\System32\WScript.exe
Location: HKEY_CLASSES_ROOT\jsfile\shell\open\command\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: Codierte JScript-Skriptdatei
Path: C:\WINDOWS\System32\WScript.exe
Location: HKEY_CLASSES_ROOT\jsefile\shell\open\command\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: Windows Script Host-Einstellungsdatei
Path: C:\WINDOWS\System32\WScript.exe
Location: HKEY_CLASSES_ROOT\wshfile\shell\open\command\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: Windows-Skriptdatei
Path: C:\WINDOWS\System32\WScript.exe
Location: HKEY_CLASSES_ROOT\wsffile\shell\open\command\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: Anwendung
Path: %1
Location: HKEY_CLASSES_ROOT\exefile\shell\open\command\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: Anwendung für MS-DOS
Path: %1
Location: HKEY_CLASSES_ROOT\comfile\shell\open\command\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: Stapelverarbeitungsdatei für MS-DOS
Path: %1
Location: HKEY_CLASSES_ROOT\batfile\shell\open\command\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: Bildschirmschoner
Path: %1
Location: HKEY_CLASSES_ROOT\scrfile\shell\open\command\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: Verknüpfung mit einer Anwendung für MS-DOS
Path: %1
Location: HKEY_CLASSES_ROOT\piffile\shell\open\command\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: PostBootReminder
Path: C:\WINDOWS\system32\SHELL32.dll
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: CDBurn
Path: C:\WINDOWS\system32\SHELL32.dll
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: WebCheck
Path: C:\WINDOWS\System32\webcheck.dll
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: SysTray
Path: C:\WINDOWS\System32\stobject.dll
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: UPnPMonitor
Path: C:\WINDOWS\system32\upnpui.dll
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\
Not checked Unknown Item
Search at Google
Unknown - may be bad
Name: WPDShServiceObj
Path: C:\WINDOWS\system32\WPDShServiceObj.dll
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\
Not checked Unknown Item
Search at Google
Layered Service Providers (LSP): Result ToDo
Good
Name: mswsock.dll
Path: %SystemRoot%\system32\
Location: HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\
Good: 1 - Bad: 0
View Details
Good
Name: rsvpsp.dll
Path: %SystemRoot%\system32\
Location: HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\
Good: 1 - Bad: 0
View Details
Explorer And Browser Addons: Result ToDo
Unknown - may be bad
Name: XTTBPos00 Class
Path: F:\ICQLite\ICQToolbar\toolbaru.dll
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
ClsID: {055FD26D-3A88-4e15-963D-DC8493744B1D}
Good: 0 - Bad: 0
Unknown Item
Search at Google
Good
Name:
Path:
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
ClsID: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
Good: 1 - Bad: 0
View Details
Bad
Name: URLLink
Path: C:\Programme\NewDotNet\newdotnet7_48.dll
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
ClsID: {4A2AACF3-ADF6-11D5-98A9-00E018981B9E}
Good: 0 - Bad: 1
View Details Requires Attention!
Compare details with your local values
and/or search at Google
Unknown - may be bad
Name: SSVHelper Class
Path: C:\Programme\Java\jre1.6.0_01\bin\ssv.dll
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
ClsID: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Name:
Path:
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
ClsID: {7E853D72-626A-48EC-A868-BA8D5E23E045}
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Name: Windows Live Sign-in Helper
Path: C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
ClsID: {9030D464-4C02-4ABF-8ECC-5164760863C6}
Good: 0 - Bad: 0
Unknown Item
Search at Google
Good
Name:
Path:
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
ClsID: {AA58ED58-01DD-4d91-8333-CF10577473F7}
Good: 1 - Bad: 0
View Details
Unknown - may be bad
Name: CoTGT_BHO Class
Path: C:\Programme\TGTSoft\StyleXP\TGT_BHO.dll
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
ClsID: {C333CF63-767F-4831-94AC-E683D962C63C}
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Name: URL Exec Hook
Path: shell32.dll
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
ClsID: {AEB6717E-7E19-11d0-97EE-00C04FD91972}
Good: 0 - Bad: 0
Unknown Item
Search at Google
Local Open Ports: Result ToDo
Good
Port: 135 TCP
Path: C:\WINDOWS\system32\svchost.exe (Process ID: 1000)
Good: 1 - Bad: 0
View Details
Good
Port: 139 TCP
Path: system (Process ID: 4)
Good: 1 - Bad: 0
View Details
Good
Port: 445 TCP
Path: system (Process ID: 4)
Good: 1 - Bad: 0
View Details
Not Sure - may be bad
Port: 1029 TCP
Path: C:\WINDOWS\System32\alg.exe (Process ID: 1972)
Good: 1 - Bad: 1
View Details Requires Attention!
Compare details with your local values
and/or search at Google
Good
Port: 1030 TCP
Path: C:\Programme\AntiVir PersonalEdition Classic\avgnt.exe (Process ID: 1524)
Good: 1 - Bad: 0
View Details
Unknown - may be bad
Port: 1495 TCP
Path: D:\Programme\QIP\qip.exe (Process ID: 1892)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 1686 TCP
Path: d:\Programme\Hamachi\hamachi.exe (Process ID: 920)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 1782 TCP
Path: E:\Programme\Mozilla Firefox\firefox.exe (Process ID: 3784)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 1783 TCP
Path: E:\Programme\Mozilla Firefox\firefox.exe (Process ID: 3784)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Bad
Port: 1784 TCP
Path: E:\Programme\Mozilla Firefox\firefox.exe (Process ID: 3784)
Good: 0 - Bad: 1
View Details Requires Attention!
Compare details with your local values
and/or search at Google
Unknown - may be bad
Port: 1785 TCP
Path: E:\Programme\Mozilla Firefox\firefox.exe (Process ID: 3784)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 1900 TCP
Path: system (Process ID: 4)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 1917 TCP
Path: D:\Programme\QIP\qip.exe (Process ID: 1892)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2093 TCP
Path: E:\Programme\Mozilla Firefox\firefox.exe (Process ID: 3784)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2137 TCP
Path: E:\Programme\Mozilla Firefox\firefox.exe (Process ID: 3784)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2137 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2176 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2181 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2184 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2185 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2186 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2187 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2188 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2189 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2190 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2191 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2192 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2193 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2194 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2195 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2196 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2197 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2198 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2199 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
Port: 2200 TCP
Path: system (Process ID: 0)
Good: 0 - Bad: 0
Unknown Item
Search at Google
Unknown - may be bad
| fortsetzung kommt... |