Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: DAU hat Befallsverdacht, Avira blind+mehrere seltsame .exe

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 27.11.2008, 12:35   #1
Lemuren-Frau
 
DAU hat Befallsverdacht, Avira blind+mehrere seltsame .exe - Standard

DAU hat Befallsverdacht, Avira blind+mehrere seltsame .exe



Hallo, ich bin jetzt das erste Mal hier und hatte beim googeln das Gefühl bekommen, hier Kompetenz antreffen zu können? (betrachtet mich wie im Titel gesagt einfach mal als DAU)
Es ging letzte Woche damit los, dass mein Avira AntiVir Personal -free antivirus diverse Fehlermeldungen machte, die offenbar mit defekten oder fehlenden .dll-Dateinen zusammenhingen, was mich schon stutzig machte, Avira hatte sich auch an diesem tag schon geupdatet.
Mit dem darauffolgenden Update schien aber wieder alles in Ordnung, auch das Avira-Rettungskit, dass mein Freund mal über das System hat laufen lassen kontne nix finden, sowie der komplete Systemscan den ich am 26.11. nochmal gemacht hatte
Jetzt allerdings, es geht soweit (noch???) alles normal, friert die Kiste für Zeiträume von bis zu 1 Minute ein, ohne dass die Festplatte aktiv ist (kein blinkendes Lämpchen) und hat sich bisher auch immer wieder gefangen. Das äußert sich darin, dass der Cursor und Videos festhängen, Musik hab ich net ausprobiert bisher.
Als absolut inkompetente Person fiel mir im Taskmanager auf, dass genau zu diesen Momenten die CPU-Auslastung meist in die Höhe schnellt und diverse mir nichts-sagende .exe's am laufen sind, sowie mind. 5x der svchost.
zur verdeutlichung poste ich mal nen screenshot davon(geschwärzt is nur mein Username):

das avira-log müsste ich auch noch haben, wenn mir jemand sagt wo? (habs nich gelöscht oder so) könnt ihr auch gerne haben.
googeln zu diesen .exe'n hat im Fazit ergeben, dass die meisten davon wohl normale systemprozesse sind, aber auch getarnte Viren/trojaner und der ganze shit sein können(vor allem hier hat sich letzteres herauskristallisiert ;-) ), weshalb ich jetzt etwas ratlos und nervös bin. Avira findet nix, weshalb ich gerne erstmal Tipps für ein gutes Diagnose-Programm hätte und Anweisungen für weitere Schritte (sowie zur Vorbeugung weiterer solcher unschönen Sachen).
Achso, ich habe Windows XP SP2, was sich, soweit ichs mitkriege auch regelmäßig aktualisiert...

Ich kann nicht ausschließen, dass mein System verseucht und "ungepflegt" ist, wie ich es hier auch schon gelesen hatte, aber würde trotzdem drum bitten, nach detaillierterer Diagnose Hilfe nicht zu verweigern

Alt 27.11.2008, 13:08   #2
Chris4You
 
DAU hat Befallsverdacht, Avira blind+mehrere seltsame .exe - Standard

DAU hat Befallsverdacht, Avira blind+mehrere seltsame .exe



Hi,

folge dem Link "HJ" in meiner Signatur und erstelle gemäß den Boardregeln ein HJ-Logfile;

Bitte dann auch gleich noch MAM und Prevx laufen lassen:
Malwarebytes Antimalware (MAM).
Anleitung&Download hier: http://www.trojaner-board.de/51187-malwarebytes-anti-malware.html
Fullscan und alles bereinigen lassen! Log posten.

Prevx:
http://www.prevx.com/freescan.asp

Poste auch diese Logs.

chris
__________________

__________________

Alt 30.11.2008, 18:56   #3
Lemuren-Frau
 
DAU hat Befallsverdacht, Avira blind+mehrere seltsame .exe - Standard

DAU hat Befallsverdacht, Avira blind+mehrere seltsame .exe



halloli! sorry, war 2 Tage spontan unterwegs und bin erst heut dazu gekommen (naja, is ja MEINE Kiste, ich glaub den helferchen hier is das ziemlich egal ;-))

hier das HJT-log:
Code:
ATTFilter
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:38:02, on 30.11.2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\Explorer.EXE
C:\Programme\Java\jre1.6.0_07\bin\jusched.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Programme\iTunes\iTunesHelper.exe
C:\Programme\Adobe\Reader 8.0\Reader\Reader_sl.exe
C:\Programme\buffed.de\Blasc\BLASC.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programme\Dropbox\Dropbox.exe
C:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Programme\Bonjour\mDNSResponder.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Programme\Mozilla Firefox\firefox.exe
C:\Programme\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Programme\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Dokumente und Einstellungen\XXX\Desktop\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Programme\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [avgnt] "C:\Programme\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programme\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Programme\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programme\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [BLASC] "C:\Programme\buffed.de\Blasc\BLASC.exe" silent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Dropbox.lnk = C:\Programme\Dropbox\Dropbox.exe
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - D:\Programme\ICQ6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - D:\Programme\ICQ6\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\GEMEIN~1\Skype\SKYPE4~1.DLL
O23 - Service: AntiVir PersonalEdition Classic Planer (AntiVirScheduler) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour-Dienst (Bonjour Service) - Apple Inc. - C:\Programme\Bonjour\mDNSResponder.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod-Dienst (iPod Service) - Apple Inc. - C:\Programme\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 6148 bytes
         
hier von MAM:
Code:
ATTFilter
Malwarebytes' Anti-Malware 1.30
Datenbank Version: 1437
Windows 5.1.2600 Service Pack 3

30.11.2008 17:54:16
mbam-log-2008-11-30 (17-54-16).txt

Scan-Methode: Vollständiger Scan (C:\|D:\|E:\|)
Durchsuchte Objekte: 97157
Laufzeit: 1 hour(s), 10 minute(s), 1 second(s)

Infizierte Speicherprozesse: 0
Infizierte Speichermodule: 0
Infizierte Registrierungsschlüssel: 0
Infizierte Registrierungswerte: 0
Infizierte Dateiobjekte der Registrierung: 0
Infizierte Verzeichnisse: 0
Infizierte Dateien: 0

Infizierte Speicherprozesse:
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule:
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel:
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte:
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung:
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse:
(Keine bösartigen Objekte gefunden)

Infizierte Dateien:
(Keine bösartigen Objekte gefunden)
         
geht gleich weiter...
__________________

Alt 30.11.2008, 19:07   #4
Lemuren-Frau
 
DAU hat Befallsverdacht, Avira blind+mehrere seltsame .exe - Standard

DAU hat Befallsverdacht, Avira blind+mehrere seltsame .exe



und hier auch prevx, da es leider deutlich zu lang war, etwas zerstückelt...(hoff, das is ok so)
Code:
ATTFilter
Prevx Scan Log - Version v3.0.0.188
Log Generated: 30/11/2008 18:42, Type: 0,0
Some non-malicious files are not included in this log.

Last Scan: Sun 2008-11-30 17:56:16 Westeuropäische Normalzeit. Number of Scans: 1. Last Scan Duration: 1 minute 15 seconds.
[G<R00000088>] C:\WINDOWS\System32\Drivers\sptd.sys	[PX5: BD6E5EC2F0328E87F1980A3577FE2A00CB8C0F3C]
[U] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\aegen.dll	[PX5: 0AD1767873B54AA0F11D0460A11E52007C2F034E]
[U] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\aecore.dll	[PX5: 141258B7751C34F2A1A302B776FDDC00635F5906]
[U] (ACTIVE) C:\Programme\buffed.de\Blasc\sqlite3.dll	[PX5: 2ABDBC0300D9AD69005E057471F5AC00FDE47791]
[U] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\aehelp.dll	[PX5: 21A5510977C58E21D1E6016864074E007A55699F]
[U] (ACTIVE) c:\programme\avira\antivir personaledition classic\ccgen.dll	[PX5: A0A6A92401CE36CA216C04AC8F483E00600DB702]
[U] (ACTIVE) C:\Programme\buffed.de\Blasc\Plugins\PWoW.dll	[PX5: 3AB3E53E00EB0929DA5318F867E1FD00D0B925E3]
[U] (ACTIVE) C:\Programme\buffed.de\Blasc\Plugins\PWoWAddOns.dll	[PX5: CF373E7400C3F9B918DB2195C7389900800D9DB1]
[UN] C:\Programme\FUJITSU SIEMENS\IH85\IH85.exe	[PX5: 2ECC093500E617F780920365DF498C009F2B0571]
[U] C:\Programme\Avira\AntiVir PersonalEdition Classic\aegen.dll.tmp	[PX5: F9EE42D87465F678F10E043838903800DB31A637]
[U] C:\Programme\Avira\AntiVir PersonalEdition Classic\aecore.dll.tmp	[PX5: 141258B776D1D5BAA11F02B776FDDC004C299AAB]
[U] C:\Programme\Dropbox\Uninstall.exe	[PX5: 99AF1DAF6978F791F25800630AB89D00F070D733]
[U] C:\Programme\buffed.de\Blasc\BLASC.exe	[PX5: 53F457BC003BE6E746B92266F2B63300A725CB59]
[U] C:\Programme\DAEMON Tools Toolbar\uninst.exe	[PX5: C9E1ACA7C8E7F06319F906EE2751BB00A7A6F8A0]
[G] (ACTIVE) C:\Programme\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll	[PX5: 4CBC19FB0092A5A476A30522BAD957002B8B558A]
[G] (ACTIVE) C:\Programme\OpenOffice.org 3\Basis\program\shlxthdl\stlport_vc7145.dll	[PX5: 497C2DCF0081828E1ABD099E8EA2FA00251D49C2]
[G] (ACTIVE) C:\WINDOWS\system32\advpack.dll	[PX5: DC4315B8008B9684E84501F479D3BA00F1D8E619]
[G] (ACTIVE) c:\programme\avira\antivir personaledition classic\cclicrc.dll	[PX5: 63EDF61201582C7F174200A7C38992009C65CA60]
[G] (ACTIVE) c:\windows\system32\CFGMGR32.dll	[PX5: 272F02CA00E3AFF442630050939AA3002C4BA733]
[G] (ACTIVE) C:\WINDOWS\system32\PROFMAP.dll	[PX5: 07FCFC7000CDCC066C2000894E4EFD003E257252]
[G] (ACTIVE) C:\WINDOWS\system32\Normaliz.dll	[PX5: E3FC1A7000BA1C775C420052AC60C600F74EBAFC]
[G] (ACTIVE) C:\WINDOWS\System32\winrnr.dll	[PX5: 468687C10004FECC421A00697B8182009B31EAD1]
[G] (ACTIVE) c:\windows\system32\dot3dlg.dll	[PX5: 3EEF7CC000420A93240400DE440E5B004CA90E99]
[G] (ACTIVE) C:\WINDOWS\system32\sfc.dll	[PX5: D093E86500CD4F7F14A5004526F09B00860EB37B]
[G] (ACTIVE) C:\WINDOWS\system32\WTSAPI32.dll	[PX5: B2CD3414004CDD7F48CB005616214100F48B11F2]
[G] (ACTIVE) C:\WINDOWS\system32\basesrv.dll	[PX5: 7D49093C00A64B1CCE2F0066A018EC0006ACFF57]
[G] (ACTIVE) C:\WINDOWS\System32\smss.exe	[PX5: FB45C9580064EFA6C69B00AD18ED0300012E4680]
[G] (ACTIVE) c:\windows\system32\WMI.dll	[PX5: EDD06271008F3ECC16E900F942A73D0055071478]
[G] (ACTIVE) C:\WINDOWS\System32\MSIDLE.DLL	[PX5: 8D9BC73A00FC50431AD0008F659B3F0037DD4CE8]
[G] (ACTIVE) C:\WINDOWS\system32\MSIMG32.dll	[PX5: 0067C3C80035875412DB00CC1C82B7003DBBB0CE]
[G] (ACTIVE) C:\WINDOWS\system32\NDdeApi.dll	[PX5: 6D123DD5004030CE48FF00F38B279F008421A864]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\schedr.dll	[PX5: 5DCA8EFB0150A4DF216800682761D1001054D847]
[G] (ACTIVE) C:\WINDOWS\system32\rasadhlp.dll	[PX5: 1685D8060035502F1E80003B3C2E07008B47C23F]
[G] (ACTIVE) C:\WINDOWS\system32\VERSION.dll	[PX5: 72DD0533003F26F04A6F00F9C3C0BF003B413586]
[G] (ACTIVE) C:\WINDOWS\system32\WS2HELP.dll	[PX5: AD124A0A009EF71D4EA700FE4A89D2005852AE59]
[G] (ACTIVE) C:\WINDOWS\system32\DCIMAN32.dll	[PX5: 688804750067BA2C22B100023FA008007A24570B]
[G] (ACTIVE) C:\WINDOWS\system32\PSAPI.DLL	[PX5: E35D9B0B00FEA8935A5E00283FFF70000A2B815C]
[G] (ACTIVE) C:\WINDOWS\system32\SensApi.dll	[PX5: 455F872300FC071D1CBC003301197800F642E234]
[G] (ACTIVE) C:\WINDOWS\system32\CSRSRV.dll	[PX5: 375E3F310082596D7E60004BC56D2200007617F0]
[G] (ACTIVE) C:\WINDOWS\system32\FLTLIB.DLL	[PX5: C919EAFD008A68E842D500011C74CC00E2E6E6B0]
[G] (ACTIVE) C:\WINDOWS\system32\csrss.exe	[PX5: BE8293BF00483640186400665DD0AE0034F49399]
[G] (ACTIVE) C:\WINDOWS\system32\cryptdll.dll	[PX5: 80ACCE7800B6D5B482590026E5E734008C217799]
[G] (ACTIVE) C:\WINDOWS\system32\WLDAP32.dll	[PX5: 49EEF90F005A3487A41A02DEA0C6E600A4CFEDEC]
[G] (ACTIVE) C:\WINDOWS\AppPatch\AcAdProc.dll	[PX5: 0C686A9B009AA14A9AEE002C692B9000F10AE61B]
[G] (ACTIVE) C:\WINDOWS\system32\msacm32.drv	[PX5: 9617902F00A2596F522700876A3BC900E9999C01]
[G] (ACTIVE) C:\WINDOWS\system32\Secur32.dll	[PX5: B6851599004C11B4DCA90060E400BA00A4E527B6]
[G] (ACTIVE) C:\WINDOWS\system32\NCObjAPI.DLL	[PX5: 01D4154100EB5CEB8E4000F24F2FFA00E332FA61]
[G] (ACTIVE) C:\WINDOWS\system32\pjlmon.dll	[PX5: DA0A31BF004022E93C5D007A98E64D00A45CED31]
[G] (ACTIVE) c:\windows\system32\dot3api.dll	[PX5: 71128D6F004CA248668C000DB250470033DEF747]
[G] (ACTIVE) C:\WINDOWS\system32\wdmaud.drv	[PX5: 7C29226C00CFB9ED5C2500DA53C34B009615E2D7]
[G] (ACTIVE) C:\WINDOWS\system32\mdimon.dll	[PX5: 4A580D5700F10E5846F3006043C178003D6E741C]
[G] (ACTIVE) C:\WINDOWS\system32\IMAGEHLP.dll	[PX5: 31EAA7E00066DD3B342C025E6B2639006AF91436]
[G] (ACTIVE) C:\WINDOWS\system32\AUTHZ.dll	[PX5: AEC5EF3300676DC7F465009F20FAD4005B215EA5]
[G] (ACTIVE) C:\WINDOWS\system32\ShimEng.dll	[PX5: 1C9AA7B7006D94B3FEA200EF5E2DC900079A41E3]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\AVPREF.DLL	[PX5: A35F45C701B8E20197C2009D4FEC220096A67B25]
[G] (ACTIVE) C:\WINDOWS\system32\NETRAP.dll	[PX5: 7BD47931004396CE2EEE00654B7F8500B8D88AD5]
[G] (ACTIVE) C:\WINDOWS\System32\HID.DLL	[PX5: 27345A4C004D2A5B5219007AE0F02D00D52DF24C]
[G] (ACTIVE) c:\programme\avira\antivir personaledition classic\ccgrdrc.dll	[PX5: 3F844311015D3C19559500A28E5DD600AFA6A874]
[G] (ACTIVE) C:\WINDOWS\System32\ntlsapi.dll	[PX5: 1E16247D006C52E520B8003B3C2E07009CDD41E6]
[G] (ACTIVE) C:\WINDOWS\system32\usbmon.dll	[PX5: C0F977570090645242A2001FC9FD440095E435FC]
[G] (ACTIVE) c:\programme\avira\antivir personaledition classic\ccupdrc.dll	[PX5: F41D4B9601F6037533F200E10A891B00E97F9C4C]
[G] (ACTIVE) C:\WINDOWS\system32\wdigest.dll	[PX5: F988CE02000F7D99C069008FD3C5EC00B0773B42]
[G] (ACTIVE) C:\Programme\iTunes\iTunesMiniPlayer.Resources\de.lproj\iTunesMiniPlayerLocalized.dll	[PX5: 630E36D60031DF15A85E004BF4B4EC00C816DB0A]
[G] (ACTIVE) C:\WINDOWS\System32\uniplat.dll	[PX5: 5B7464BC009D7920361E002562779F001178FB89]
[G] (ACTIVE) C:\WINDOWS\system32\SHFolder.dll	[PX5: E9FF9A7E00A5382262C4007711870C00FB010AE5]
[G] (ACTIVE) c:\windows\system32\POWRPROF.dll	[PX5: FB52B6EF002782D744D000ECE4E087002622F28D]
[G] (ACTIVE) c:\windows\system32\eappprxy.dll	[PX5: B5B118B100E1958BA0E000B6C12776002533ACE8]
[G] (ACTIVE) c:\windows\system32\EapolQec.dll	[PX5: 729DEDAE00DEA0D77890009BBC24A00092018B9C]
[G] (ACTIVE) C:\WINDOWS\system32\NTDSAPI.dll	[PX5: 07B48BBB0081D6640634017A9884350059F516B0]
[G] (ACTIVE) C:\WINDOWS\system32\comdlg32.dll	[PX5: DFEDBCC600D07DEE4CB204F8B09434007075F2D4]
[G] (ACTIVE) C:\WINDOWS\system32\wbem\wbemprox.dll	[PX5: 594EEB9300BADFCB4A7400EE068B8E00C16EF5E0]
[G] (ACTIVE) C:\WINDOWS\system32\MSACM32.dll	[PX5: 8C2F248D004E00D51AE10174AB0E1E00306145D9]
[G] (ACTIVE) C:\WINDOWS\system32\IMM32.DLL	[PX5: DE894E6A004C133EAE5F0127B1D37300A446BC45]
[G] (ACTIVE) C:\WINDOWS\system32\Apphelp.dll	[PX5: 7DD420CF00F6748FEC9D0116E0C40B00A325496B]
[G] (ACTIVE) C:\WINDOWS\system32\Wship6.dll	[PX5: A4306CB0008D3F7738790085CD064F00CCE57CAB]
[G] (ACTIVE) C:\WINDOWS\system32\MPR.dll	[PX5: 4BB7612A004791DCEAB900563FC45B0075C656B3]
[G] (ACTIVE) C:\WINDOWS\system32\eventlog.dll	[PX5: 7C69063F00BA2375DC74007BBE4EA800D23DC340]
[G] (ACTIVE) C:\WINDOWS\system32\msprivs.dll	[PX5: 10CAD90A00073085BC3600D4B298BF0006BB0264]
[G] (ACTIVE) c:\programme\avira\antivir personaledition classic\ccgenrc.dll	[PX5: 1D6A835D015D42F149B800BA66859B00C44D29D2]
[G] (ACTIVE) C:\WINDOWS\system32\REGAPI.dll	[PX5: E257AF2200174BFAC256002B1BA1D1008398C862]
[G] (ACTIVE) C:\WINDOWS\system32\WINSTA.dll	[PX5: E4556540006E880CD2DD007315E8F000277C5CC5]
[G] (ACTIVE) C:\WINDOWS\system32\BatMeter.dll	[PX5: 03B602730025CC1B723100F989DCB0000BBFA09C]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\SMTPLIB.DLL	[PX5: 875FB297016B68E5716800C6F106B600C50FD755]
[G] (ACTIVE) C:\Programme\buffed.de\Blasc\borlndmm.dll	[PX5: CEE031A10002171D7465008C96B07E00DFDED1FD]
[G] (ACTIVE) c:\windows\system32\WZCSAPI.DLL	[PX5: EAAA9185007EAF39CEFC00F785D6240006E94ACA]
[G] (ACTIVE) C:\WINDOWS\system32\WSOCK32.dll	[PX5: 45BA2927007169C960BA00C31EB3D1007AED61F7]
[G] (ACTIVE) C:\WINDOWS\system32\LINKINFO.dll	[PX5: 539681F400FCDCEB4E6600F551963000F272EF09]
[G] (ACTIVE) c:\windows\system32\ICAAPI.dll	[PX5: 8928CE3100EAC8F02C87008DAB5E1600161C7F05]
[G] (ACTIVE) C:\WINDOWS\system32\rtutils.dll	[PX5: 049A61CD00F34E57AC8300EE0FFA3000BD0AEFEA]
[G] (ACTIVE) C:\WINDOWS\system32\midimap.dll	[PX5: E37168F0002D88084A000079BA6DCB001B9B0AF3]
[G] (ACTIVE) C:\WINDOWS\system32\WS2_32.dll	[PX5: 81E3E33C008BA131420C0107E70611008B287080]
[G] (ACTIVE) C:\WINDOWS\system32\SAMLIB.dll	[PX5: 7E86234100ACD5EAFAE80049DF596300F893541C]
[G] (ACTIVE) C:\WINDOWS\system32\MSASN1.dll	[PX5: 46DF0ED40018FDFEE099001A630D94005AA44EAA]
[G] (ACTIVE) C:\WINDOWS\system32\sfc_os.dll	[PX5: 287A2FBA00DAE2732CCC02CA0CDC6C00AD0C14C0]
[G] (ACTIVE) C:\Programme\iPod\bin\iPodService.Resources\iPodService.DLL	[PX5: 630E36D60031DF15A65E004BF4B4EC002BE24EFC]
[G] (ACTIVE) C:\WINDOWS\system32\iertutil.dll	[PX5: 1954CD5600886212164A040782A731000490B9A7]
[G] (ACTIVE) c:\windows\system32\QUtil.dll	[PX5: C27F28110061D5042CC8013CAAB355001F75C49F]
[G] (ACTIVE) C:\WINDOWS\system32\umpnpmgr.dll	[PX5: F26B5FC800CD9457E63C01BA0719BB000ED1F250]
[G] (ACTIVE) C:\Programme\iTunes\iTunesHelper.Resources\iTunesHelper.DLL	[PX5: 630E36D60031DF15A65E004BF4B4EC008E73DA27]
[G] (ACTIVE) C:\WINDOWS\system32\ATL.DLL	[PX5: 91C463D0003E5DB4E61400DBA98FC500D3AE0C97]
[G] (ACTIVE) C:\WINDOWS\system32\MPRAPI.dll	[PX5: 5AD434F900DC05C1548501D46231C1006DA63F46]
[G] (ACTIVE) C:\WINDOWS\system32\WINMM.dll	[PX5: 64AE7BA100D255FEB85E022FF504C100BBAF28E2]
[G] (ACTIVE) C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\1031\mdmui.dll	[PX5: B3E9819B0078472D602C00A964141A0065A341CA]
[G] (ACTIVE) C:\WINDOWS\system32\ntdll.dll	[PX5: 490F683C006E3FB12AE50B0B9F728800E55A6FA4]
[G] (ACTIVE) C:\WINDOWS\System32\ipconf.tsp	[PX5: 5739206800948E3844C300EB712199009C58B67E]
[GP] (ACTIVE) C:\WINDOWS\system32\SHLWAPI.dll	[PX5: EB207029008EC10A3E1007E66D5C9B00E3166ECE]
[G] (ACTIVE) C:\WINDOWS\system32\tcpmon.dll	[PX5: D5B87970002C2E3FB8D700587ACBD3005F80B05D]
[G] (ACTIVE) C:\WINDOWS\System32\spool\PRTPROCS\W32X86\filterpipelineprintproc.dll	[PX5: 6DA5BCE4007EBCEA6E41005A64E55E00E9442EE2]
[G] (ACTIVE) C:\WINDOWS\system32\WINIPSEC.DLL	[PX5: 8230C0BD009308737E250027020E0600F440DB9C]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\plds4.dll	[PX5: 092F5C700097CFB544A800B5EA10A9008B2FCB4A]
[G] (ACTIVE) C:\WINDOWS\system32\cnbjmon.dll	[PX5: D997FEC800F1AEB8CA9E008F576BDD00F60F908B]
[G] (ACTIVE) C:\WINDOWS\system32\pstorsvc.dll	[PX5: 2D6F1A5D003BAF8D88DB00EE09F32000EE1CA6F3]
[G] (ACTIVE) C:\WINDOWS\system32\msctfime.ime	[PX5: 5ED5136E000EAC65B44402319E5E5000B5E57813]
[G] (ACTIVE) C:\WINDOWS\system32\KERNEL32.dll	[PX5: 74382DCB004F949A3AA0100AF3F4F100C9852AF2]
[G] (ACTIVE) C:\WINDOWS\System32\hidphone.tsp	[PX5: 292033550089A325744B00A7927557004EBEEEC1]
[G] (ACTIVE) C:\WINDOWS\system32\schannel.dll	[PX5: 6362B6100094E25D348E02CF7F69F500AAFE5DA1]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\guardmsg.dll	[PX5: EF288B7201010401D1A2000965ABD5004B5A1C3B]
[G] (ACTIVE) C:\WINDOWS\system32\RPCRT4.dll	[PX5: 4DF9047C00234976EC8F081C474F67001CC7CEFE]
[G] (ACTIVE) C:\WINDOWS\system32\ODBC32.dll	[PX5: D9425BC300A20CECD09203E21CA1570048C3552F]
[G] (ACTIVE) C:\WINDOWS\system32\httpapi.dll	[PX5: CF02726200C6A2C1603A00CA651F5B0047673AF9]
[G] (ACTIVE) C:\WINDOWS\system32\GDI32.dll	[PX5: 1A0E4F430027C9985A7104DBB2C2BB00BE7E682A]
[G] (ACTIVE) C:\WINDOWS\system32\WINTRUST.dll	[PX5: 5E7560A700DC07F9B27E02AF374E86006F94FF62]
[G] (ACTIVE) C:\WINDOWS\system32\msvcrt.dll	[PX5: 6786FBCD00A604243CC605978A362F001BD3A2EF]
[G] (ACTIVE) C:\WINDOWS\system32\USER32.dll	[PX5: 2DA8671600E358F2DA0308CE4094B900A5DD0C3E]
[G] (ACTIVE) C:\WINDOWS\system32\NTMARTA.DLL	[PX5: 103F31EB005C7928D26401D253026600349DBBCC]
[G] (ACTIVE) C:\WINDOWS\System32\drprov.dll	[PX5: ECFB8E7F00FF7DB3380D00F1008EDD00B7BA4629]
[G] (ACTIVE) C:\WINDOWS\system32\OLEAUT32.dll	[PX5: 5BE4D86D00939B5B6CB5087362AE530076A78D0B]
[G] (ACTIVE) C:\Programme\iTunes\iTunesHelper.Resources\de.lproj\iTunesHelperLocalized.DLL	[PX5: 630E36D60031DF15AA5E004BF4B4EC00294EE567]
[G] (ACTIVE) C:\WINDOWS\system32\ole32.dll	[PX5: A75F0D6500863731A6D713E8E1EB5600BF16EBC2]
[G] (ACTIVE) C:\WINDOWS\system32\WINSCARD.DLL	[PX5: 2EFFA3490038778B886A011ECBF6F3001B3D44BA]
[G] (ACTIVE) C:\WINDOWS\system32\SSDPAPI.dll	[PX5: 3742A04B004E209788FA00CB5E48EB00CB2778D8]
[G] (ACTIVE) c:\programme\avira\antivir personaledition classic\cclic.dll	[PX5: 6A623A0F012A03CDD1F000219044290019BF39DC]
[G] (ACTIVE) C:\WINDOWS\system32\DNSAPI.dll	[PX5: AAB816C7003C4D3542E702845D4F1A00A4AA022E]
[G] (ACTIVE) C:\WINDOWS\System32\kmddsp.tsp	[PX5: C64D3EA900402D46821300D9EF24C400D4F1591B]
[G] (ACTIVE) C:\WINDOWS\System32\rasman.dll	[PX5: 8181A9B800E5FB53F01C00AE34FFD900E6C41C39]
[G] (ACTIVE) C:\WINDOWS\system32\wbem\wbemsvc.dll	[PX5: 8E6D204000CE40BCAA76006700EBC70003E3215C]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\unacev2.dll	[PX5: 39713B85000FE97F2E430131F74A9D001029A567]
[G] (ACTIVE) C:\WINDOWS\system32\winsrv.dll	[PX5: B457DDEA0035449E7C8C04797EE436002581862A]
[G] (ACTIVE) C:\WINDOWS\system32\iphlpapi.dll	[PX5: AF86EB500078A26F766401E3B6F17D0071B4C5F1]
[G] (ACTIVE) C:\WINDOWS\system32\uxtheme.dll	[PX5: E191505E00BBB03958B103BE7B8EFF00066F9B33]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\plc4.dll	[PX5: C8454CB6005857CB50680022F621E4003C2F75C6]
[G] (ACTIVE) C:\WINDOWS\system32\odbcint.dll	[PX5: 59E430A700DD1ACE905301F2FE4B8E00ADAFCBAA]
[G] (ACTIVE) C:\WINDOWS\System32\mspatcha.dll	[PX5: 314DAB670045199774E6004A1DC5D200E65DB9B0]
[G] (ACTIVE) C:\WINDOWS\System32\spool\PRTPROCS\W32X86\mdippr.dll	[PX5: 90B16E50005219F14AEA007FE239C5004092D249]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\aebb.dll	[PX5: 18BC3638723DD02ED18F001F1F716A00015AC3D5]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\avevtlog.dll	[PX5: E4999D070107A0F8D11B01A88AF70D00E46ADB02]
[G] (ACTIVE) C:\WINDOWS\system32\MSVCP60.dll	[PX5: 090AF7DB0085FF5E50E7067651E60D003AC20489]
[G] (ACTIVE) C:\WINDOWS\system32\wbem\ncprov.dll	[PX5: B3F198FA00247EA8B87700EAF2009B003965E74F]
[G] (ACTIVE) C:\Programme\Bonjour\mdnsNSP.dll	[PX5: A46F2185008C67B6406E0296A9BB2F00A22A94DE]
[G] (ACTIVE) C:\WINDOWS\system32\USERENV.dll	[PX5: E7F19F8900EA6D073E8C0BF3FBEB9E000A8A5B95]
[G] (ACTIVE) C:\WINDOWS\system32\rsaenh.dll	[PX5: 47100BA200180DA62E1F0385EB4B3E0076D11132]
[G] (ACTIVE) C:\WINDOWS\system32\COMCTL32.dll	[PX5: A200C0680069F52E6CC909A0C42D3900F91D92D1]
[G] (ACTIVE) C:\WINDOWS\system32\ntshrui.dll	[PX5: F625A02F00C2B99B3A80022B6D036C00DA389D52]
[G] (ACTIVE) C:\WINDOWS\System32\TAPI32.dll	[PX5: 6747953E00D12E04C6C3028105804300C3C28A03]
[G] (ACTIVE) C:\WINDOWS\system32\winlogon.exe	[PX5: AA387905009EAAB8D41307D21BFA85009C7E313C]
[G] (ACTIVE) C:\WINDOWS\System32\davclnt.dll	[PX5: E78990D400F98A4F64DC00655BF9DD00D6D84DD5]
[G] (ACTIVE) C:\WINDOWS\system32\actxprxy.dll	[PX5: 65497B2000E9F863802F012F08B74A00A780959A]
[G] (ACTIVE) C:\WINDOWS\system32\netlogon.dll	[PX5: A5DD04C6004FDB6F360906B16CD04D00EFFB7529]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\components\browserdirprovider.dll	[PX5: 4CA5218500AE94405AE3007E1958B7009F60356E]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\avipc.dll	[PX5: 1D9A633A0191AE09215E013A325AB300C26116FB]
[G] (ACTIVE) C:\WINDOWS\system32\MSGINA.dll	[PX5: 5B6B1E6B0014E05B58060FEF3CD38900E70C5DDE]
[G] (ACTIVE) C:\WINDOWS\System32\ntlanman.dll	[PX5: 31A75778008AA2B7ACCF00C188BD500081D4B620]
[G] (ACTIVE) C:\WINDOWS\system32\adsldpc.dll	[PX5: EA0C258E0008FCEE30D50231EE163000A28BB096]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\AVGIO.DLL	[PX5: 192B2C4B01BADD4FE52501C1544ACD0039E655AA]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\xpcom.dll	[PX5: 81D085100012757D467E00FFF6B80A006800CEE0]
[G] (ACTIVE) C:\WINDOWS\system32\sxs.dll	[PX5: 89167B8100413314ECA50A88BCBCE40014660229]
[G] (ACTIVE) C:\WINDOWS\system32\SAMSRV.dll	[PX5: CB2FA7AF0028417D8EAD06FC703CDE008955CF74]
[G] (ACTIVE) C:\Programme\iPod\bin\iPodService.Resources\de.lproj\iPodServiceLocalized.DLL	[PX5: 630E36D60031DF15AA5E004BF4B4EC001F89ECBF]
[G] (ACTIVE) C:\WINDOWS\system32\MTXCLU.DLL	[PX5: 81050678004E17F2040801CA1F9EC40089D22505]
[G] (ACTIVE) c:\programme\avira\antivir personaledition classic\ccupdate.dll	[PX5: 973EDB9C01526883B1290119AB2922009DB20F23]
[G] (ACTIVE) C:\WINDOWS\system32\kerberos.dll	[PX5: D7193478007062089267042E84CF2D009870F055]
[G] (ACTIVE) C:\WINDOWS\system32\WININET.dll	[PX5: A1EDF5D900CBF48E9C730C937265010048DAB96F]
[G] (ACTIVE) C:\WINDOWS\system32\urlmon.dll	[PX5: DB02971700EBD324B21B11CA5820BE008643B8D2]
[G] (ACTIVE) C:\WINDOWS\System32\RESUTILS.DLL	[PX5: F2D36F49008D6958E69600F5D513D400CB703D24]
[G] (ACTIVE) C:\WINDOWS\system32\CRYPTUI.dll	[PX5: 5CBB9AE4002726441AB6089E6BE11100E8A81786]
         

Alt 30.11.2008, 19:11   #5
Lemuren-Frau
 
DAU hat Befallsverdacht, Avira blind+mehrere seltsame .exe - Standard

DAU hat Befallsverdacht, Avira blind+mehrere seltsame .exe



Code:
ATTFilter
[G] (ACTIVE) C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll	[PX5: D7B3752300A22AAC168F10E8A4E5E500891DF5E2]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\aescn.dll	[PX5: 9B81DCDB734835E4E18C015DEDC822006C470CFE]
[G] (ACTIVE) C:\WINDOWS\System32\CLUSAPI.DLL	[PX5: B291499B0034534BE4A9009BD1249B005B851E07]
[G] (ACTIVE) C:\Programme\iTunes\iTunesMiniPlayer.dll	[PX5: 29032D6528FCD361057D021120902900490B38AD]
[G] (ACTIVE) C:\WINDOWS\system32\SHDOCVW.dll	[PX5: 6685A3F4008C4BAFE0D616AF3E9B7500E8BF51F3]
[G] (ACTIVE) C:\WINDOWS\system32\ACTIVEDS.dll	[PX5: D700777A00DC016AF47A02BD2C239E00374E9363]
[G] (ACTIVE) C:\WINDOWS\system32\olepro32.dll	[PX5: 085F089B0040C9E44CF5016F0F338800AAE76EB6]
[G] (ACTIVE) C:\Programme\iTunes\iTunesMiniPlayer.Resources\iTunesMiniPlayer.dll	[PX5: 630E36D60031DF15FA5E014BF4B4EC003FAA23DF]
[G] (ACTIVE) C:\WINDOWS\system32\NETAPI32.dll	[PX5: 7462A9A400E8222A267705499E2BE8002FA1E77A]
[G] (ACTIVE) C:\WINDOWS\system32\MSCTF.dll	[PX5: 9D20B65B00A516738C610420E8ED5800461CFF33]
[G] (ACTIVE) C:\WINDOWS\system32\SETUPAPI.dll	[PX5: 51C1A562001856B31AA00F7F17668400B9D79325]
[G] (ACTIVE) C:\WINDOWS\System32\Cabinet.dll	[PX5: 70818B4300A72F48EC3600BB4C69F100A03196E6]
[G] (ACTIVE) C:\WINDOWS\system32\OLEACC.dll	[PX5: DAC67D9C001AD2307E7802080A43C800D59DF1B7]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\aevdf.dll	[PX5: 3C37389574AA1471910D015F83B1170083ECD5F3]
[G] (ACTIVE) C:\WINDOWS\system32\colbact.DLL	[PX5: 36AFE03B0044534EEC0200549544D3007E5AD192]
[G] (ACTIVE) C:\WINDOWS\system32\SCESRV.dll	[PX5: 0EC9506E0005E759025F055D41E6A70089615DED]
[G] (ACTIVE) C:\WINDOWS\system32\LSASRV.dll	[PX5: 692BA195008867003A440B99F80427000134B5A0]
[G] (ACTIVE) C:\WINDOWS\system32\SPOOLSS.DLL	[PX5: 62D1B31E00EE8159263C018BE5239F00D0B96C98]
[G] (ACTIVE) c:\windows\system32\eappcfg.dll	[PX5: 2693409800D94666F010010EB1BC590026B05CF0]
[G] (ACTIVE) C:\WINDOWS\System32\RASQEC.DLL	[PX5: 53C6A0B6008F1934F21100FA8D119600BC4407AE]
[G] (ACTIVE) c:\windows\system32\credui.dll	[PX5: 16B4232A0039577A86D4026AB3E3C800B332B74D]
[G] (ACTIVE) C:\WINDOWS\system32\psbase.dll	[PX5: 2CF279C0002ADB4F84E701EE6403F00046EF149E]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\sqlite3.dll	[PX5: C028A8800040DCC9302C050FDBBC76001DFC5407]
[G] (ACTIVE) C:\WINDOWS\system32\inetpp.dll	[PX5: 826C00810085A7D4263C018F879DB800AD2A4437]
[G] (ACTIVE) C:\WINDOWS\System32\ndptsp.tsp	[PX5: 0A67D46200760302E0EB008DBDBE4700FAA9BEE9]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\MSVCP71.dll	[PX5: F133D4F000B92F08A0E107FD67B66E0015498C05]
[G] (ACTIVE) C:\WINDOWS\system32\COMRes.dll	[PX5: 98DADC0600EB0B1EECB90C7CE8FD78003B24F2AC]
[G] (ACTIVE) C:\WINDOWS\system32\wbem\wbemcons.dll	[PX5: 1BB7C3390069E1FB18EE014DE14F77007B476D77]
[G] (ACTIVE) C:\WINDOWS\System32\RASAPI32.dll	[PX5: 81938A77006AA0579EC20327E3F9F300A5E7DAB7]
[G] (ACTIVE) C:\WINDOWS\system32\wbem\wmiutils.dll	[PX5: A52A2E220075CB7386AB01C2FF7F2300D98F91B2]
[G] (ACTIVE) C:\WINDOWS\system32\CLBCATQ.DLL	[PX5: CF1F95BE004402F39C04073EB1C251003EA1BE05]
[G] (ACTIVE) C:\WINDOWS\system32\themeui.dll	[PX5: 10EC616000D813E8F212052F1F780400ECA8B36E]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\MSVCR71.dll	[PX5: 3FEE1145002F2EB8504E05ED76DA9100776D97E7]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\shlext.dll	[PX5: FE997410012EA45B016301F2644AFF002A9A53D4]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\cclib.dll	[PX5: 17ACDE3301AF7B3B7116025F2CA25F00EB4DFD85]
[G] (ACTIVE) C:\WINDOWS\system32\NVRSDE.DLL	[PX5: 3B971DBE009FD22F402E0435B79B39007CD64CCB]
[G] (ACTIVE) C:\WINDOWS\system32\stobject.dll	[PX5: BEC0C4FD00E8AA93DE3E011031D9FC00E6488D0C]
[G] (ACTIVE) C:\WINDOWS\system32\xpsp2res.dll	[PX5: 8567541700904EB980392D6118710400AB65737C]
[G] (ACTIVE) C:\WINDOWS\system32\dbghelp.dll	[PX5: 91B5A18F00966143C46309486170A800AD4F4C92]
[G] (ACTIVE) C:\WINDOWS\System32\rastapi.dll	[PX5: DA53DCCE0038C241E48C00017D49170074BAF733]
[G] (ACTIVE) C:\WINDOWS\System32\strmfilt.dll	[PX5: 07F25EE80085918828010181325424001FA00848]
[G] (ACTIVE) C:\WINDOWS\AppPatch\AcGenral.DLL	[PX5: 5DCF1420002F50A046C31CA2E1097600283E731D]
[G] (ACTIVE) C:\WINDOWS\system32\MLANG.dll	[PX5: FA800C5B000E39E7F2A5081BB23083005059BB14]
[G] (ACTIVE) c:\windows\system32\OneX.DLL	[PX5: 7E9435BE00CA20B5386A023B7D6A72009623FDB5]
[G] (ACTIVE) C:\WINDOWS\system32\win32spl.dll	[PX5: 9E3DE8EF00A8987690D901D2FE148400F964A1DD]
[G] (ACTIVE) C:\WINDOWS\System32\NETUI0.dll	[PX5: AC7B8BD900170E0D405501B8EB643B00994E9ED1]
[G] (ACTIVE) c:\windows\system32\mscms.dll	[PX5: 35E0CEA200497CAF221B011739894D002FD2E99B]
[G] (ACTIVE) c:\windows\system32\mstlsapi.dll	[PX5: 4B8C1F2A0066862BC683018DF5C29C003827A5F4]
[G] (ACTIVE) C:\Programme\Dropbox\DropboxExt.dll	[PX5: E29E5E7900BC1DD5301E020CD8B230008404A2DC]
[G] (ACTIVE) C:\WINDOWS\system32\dssenh.dll	[PX5: 852136D500ADC2641E2C02C25D98CE00E20035FE]
[G] (ACTIVE) c:\windows\system32\ESENT.dll	[PX5: 4F9A0C2300B9848CB2D310B15E9BF500D8248434]
[G] (ACTIVE) C:\WINDOWS\system32\hnetcfg.dll	[PX5: DFF404EF00D5216252CA0593B29571006A8F0068]
[G] (ACTIVE) C:\Programme\Dropbox\MSVCR71.dll	[PX5: 3FEE1145002F2EB8504E05ED76DA9100776D97E7]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\smime3.dll	[PX5: EC11C83D00BB751C960501110CD3270069F50660]
[G] (ACTIVE) C:\WINDOWS\system32\ipsecsvc.dll	[PX5: B3292B4D00DA3D2FD4AB0232C541B2005344BE09]
[G] (ACTIVE) C:\WINDOWS\System32\unimdm.tsp	[PX5: 14083CE000C882AC2ADE0300545DFA008D5180D9]
[G] (ACTIVE) C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\MSDBG2.DLL	[PX5: F2337AB200FE47FFB09F029EF85AC3003A9783CA]
[G] (ACTIVE) C:\WINDOWS\system32\webcheck.dll	[PX5: 388257FA00192D7A90D0031FCD39D300AC9DC6B5]
[G] (ACTIVE) C:\WINDOWS\system32\wbem\wbemcomn.dll	[PX5: B9266543001A677146DB033616DE1B00978F0FE9]
[G] (ACTIVE) C:\WINDOWS\system32\wbem\wbemess.dll	[PX5: 5480DC92002C7BB42E1804DE84259E006627EC72]
[G] (ACTIVE) C:\WINDOWS\system32\upnp.dll	[PX5: BA462CD500A38FFD0AC00202E8E8690077D8640B]
[G] (ACTIVE) C:\WINDOWS\system32\oakley.DLL	[PX5: C70A272600FBC2D8246004A3D277A0009CCF96C3]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\aerdl.dll	[PX5: 77AC0D37750439F0B1B9067478853300ADAFDF39]
[G] (ACTIVE) C:\WINDOWS\system32\asycfilt.dll	[PX5: E0E5E94A00A45089FE7E008423E99900BD499E77]
[G] (ACTIVE) c:\programme\avira\antivir personaledition classic\ccguard.dll	[PX5: FD16253F01001A87412D035FB0D3E8003BD97831]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\aescript.dll	[PX5: D3C69E797C60AC31115405C46A896800655C26D1]
[G] (ACTIVE) C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.1433_x-ww_5cf844d2\MSVCR80.dll	[PX5: 4B6AF860005E2DB6B4260971351F230010BD1760]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\nssutil3.dll	[PX5: 11F439A3001A7A6D5650019B574341002937E22E]
[G] (ACTIVE) C:\WINDOWS\system32\ddraw.dll	[PX5: 2E9F116C00BCCD84447A043780B00B00BCF3B0BD]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\aeemu.dll	[PX5: 9512BD83748EE606010B067179C2FF008879FDB3]
[G] (ACTIVE) C:\WINDOWS\system32\DSOUND.dll	[PX5: E7FECCA200E133FF9CF505CDEDCE150078286FC4]
[G] (ACTIVE) C:\WINDOWS\system32\MSUTB.dll	[PX5: 0583ADBA001BA329FE4002AE00DBE5001CCA9FC0]
[G] (ACTIVE) C:\WINDOWS\system32\nvapi.dll	[PX5: 86211B3500CD4817805406DEF21D88008AEA06D8]
[G] (ACTIVE) C:\WINDOWS\System32\h323.tsp	[PX5: DBC63E5500803FCF10D404ECB82ACC00DAA1DC86]
[G] (ACTIVE) C:\WINDOWS\System32\Wbem\esscli.dll	[PX5: CF7EB821009C2A45C883036D945A7800629D79E0]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\MFC71U.DLL	[PX5: 037598C700D68B82FC2F0F8DECC9D10082E94C28]
[G] (ACTIVE) C:\Programme\7-Zip\7-zip.dll	[PX5: 98C116BB00C1B9741E7C02308518A300BD437AB4]
[G] (ACTIVE) c:\windows\system32\certcli.dll	[PX5: E7C594D500C2E884068C0387EBA55E00ADF9B8EA]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\aeoffice.dll	[PX5: A12729377A345CD101A903A23672FC0042EC343F]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\aepack.dll	[PX5: 0226F08F77B6EE81012606E2FC2B3A004AE6F2D9]
[G] (ACTIVE) C:\WINDOWS\system32\BROWSEUI.dll	[PX5: C773CBCA0000412DA44A0F9F1F568600A46B1A60]
[G] (ACTIVE) C:\WINDOWS\system32\wbem\repdrvfs.dll	[PX5: 40E1983B00E85A10B80202084D5F760001704E69]
[G] (ACTIVE) C:\Programme\Dropbox\MSVCP71.dll	[PX5: F133D4F000B92F08A0E107FD67B66E0015498C05]
[G] (ACTIVE) C:\WINDOWS\System32\Wbem\wbemcore.dll	[PX5: 90531C5F00AAB9241C4608EC2A1F9700C3A36AF1]
[G] (ACTIVE) C:\WINDOWS\System32\WINHTTP.dll	[PX5: BB651ADA00B3C5C6685A0559638A010018141823]
[G] (ACTIVE) C:\WINDOWS\system32\msxml3.dll	[PX5: 3F4B0D090073985EE41610582F5A9C00153AA322]
[G] (ACTIVE) C:\WINDOWS\System32\RASDLG.dll	[PX5: E2092F8B00A01AAD7C3B0A5BDCAC8A001E91975C]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}\components\PNRComponent.dll	[PX5: 0BA3487D28BCAE7B3570030685E3670076E19452]
[G] (ACTIVE) C:\Programme\Avira\AntiVir PersonalEdition Classic\aeheur.dll	[PX5: E62DA04A769C17F4B130161ECA1AA50007B79E05]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\nssdbm3.dll	[PX5: CAA16E3800B18F0F962501C585F85800DD713E52]
[G] (ACTIVE) C:\WINDOWS\system32\netcfgx.dll	[PX5: EFBC0C4E00C4B16BAC9209872C35B200C9845BA7]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\ssl3.dll	[PX5: 04F1CADC003EC9CD166B02F0EA086D004E957655]
[G] (ACTIVE) C:\WINDOWS\system32\localspl.dll	[PX5: 0EB138870041769146F80591CFED9500E68D84A5]
[G] (ACTIVE) C:\WINDOWS\system32\VSSAPI.DLL	[PX5: 6557221700972B6F92EF06D590C2BA00CCD6BC35]
[G] (ACTIVE) C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\bin\iTunesMobileDevice.dll	[PX5: B0A951DA00C2E650F0A21133A9A2DD005068DD3C]
[G] (ACTIVE) C:\WINDOWS\system32\comsvcs.dll	[PX5: 3799621700BF391356BD13C3A2BA720041748BBA]
[G] (ACTIVE) C:\WINDOWS\system32\nvshell.dll	[PX5: 2371381B0051C449206907CC2BD4670094A48BBD]
[G] (ACTIVE) C:\WINDOWS\system32\wbem\wmiprvsd.dll	[PX5: 21FB34940058F5F3AC26060BFCD3790099B384A7]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\softokn3.dll	[PX5: 22B1C4BE00BE00D4500D02BD679E870036D17BA2]
[G] (ACTIVE) C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.5581_x-ww_dfbc4fc4\gdiplus.dll	[PX5: D40D77690095FE6250A31A5EAC36480049B9DCB5]
[G] (ACTIVE) C:\WINDOWS\system32\USP10.dll	[PX5: E2105C2C00E0804132C2069936D4B600079B0920]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\nss3.dll	[PX5: D25AD7BA0026B19AA67C0A63FBD49A0091A2F218]
[G] (ACTIVE) C:\WINDOWS\System32\Wbem\FastProx.dll	[PX5: 967DD85A0003775C345B070E48234400FEC90A67]
[G] (ACTIVE) c:\windows\system32\netshell.dll	[PX5: DD9C9FFA00054A0A4A1D1ADE20BD7C0071329D37]
[G] (ACTIVE) C:\WINDOWS\system32\wuapi.dll	[PX5: FE6A27ECC84EE0C79A4B086FFBD8350080D1B17F]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\components\brwsrcmp.dll	[PX5: EA8C17E8005ECC650E84023855F0ED0073D331F3]
[G] (ACTIVE) C:\WINDOWS\System32\NETUI1.dll	[PX5: 51414B620008B511C00603D770750A0085F5E4AA]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\nspr4.dll	[PX5: 1692218D00E80891066F039E9379F500EB857B56]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\freebl3.dll	[PX5: E755870B00FA669A90BE03FD27F4F300E103BCBD]
[G] (ACTIVE) C:\Programme\Dropbox\PYTHON25.DLL	[PX5: 352DB7EB00CBA119506620CF148E3C00721DF62E]
[G] (ACTIVE) C:\Programme\Skype\Toolbars\Shared\SPhoneParser.dll	[PX5: E8692B2E28BDFE7485F6163E7149DB002A8C50A2]
[G] (ACTIVE) C:\WINDOWS\system32\wuaueng.dll	[PX5: 2DF531D9C890A8E9A4F01BFEDA36D40091700053]
[G] (ACTIVE) C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\PDFShell.dll	[PX5: 8C22B1270080452CB0520538F9A2700042807472]
[G] (ACTIVE) c:\windows\system32\msi.dll	[PX5: 5E723F4A008F80A262032B270B9C1B009FDADDF5]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\js3250.dll	[PX5: 9EA6BBE7002492AEA4890AAE324F31009BFBAB8B]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\xul.dll	[PX5: 2FCCEC7A00D94207768E947D03373C00C038CC29]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\MOZCRT19.dll	[PX5: 7FE9272D00C862D3D6D40A7D01277700D62F40A6]
[G] (ACTIVE) C:\Programme\DAEMON Tools Toolbar\FirefoxDTT\components\DTToolbarFF.dll	[PX5: 06C54AEE006B813380400C1AA57D600032407762]
[G] (ACTIVE) C:\WINDOWS\system32\ieframe.dll	[PX5: 701C70C600893B92901F5CD0F9577200B45445AD]
[G] (ACTIVE) C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\PDFShell.DEU	[PX5: F72304EE00ACA291C020047F39292200A0688922]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\sqlite3.dll	[PX5: E8F90401006EBA2E0A2A06B39D6AD400659503C7]
[G] (ACTIVE) C:\WINDOWS\system32\security.dll	[PX5: D587419D00FD90FA160D007F8D738E00C52A2494]
[G] (ACTIVE) C:\WINDOWS\system32\msv1_0.dll	[PX5: 3CD0C8FC008A58EA065402F6DD6A1C00360929DB]
[G] (ACTIVE) C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_d08d0375\MSVCR90.dll	[PX5: 1BBB144B00175D8E02B20A1557CAF5004A87A04E]
[G] (ACTIVE) c:\programme\avira\antivir personaledition classic\ccmsg.dll	[PX5: 1A3A755C01F877C26158020312C16E0021599483]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\nssckbi.dll	[PX5: 04F3D2ED00913186A6F2046369AF160060EC7594]
[G] (ACTIVE) C:\Programme\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}\components\NPComponent.dll	[PX5: 12C0173900A7A51490D701140B19200060280F7F]
[G] C:\Programme\Gemeinsame Dateien\Microsoft Shared\GRPHFLT\GIFIMP32.FLT	[PX5: 1AFC15B74018C35CBC32022DB710D4006CD1306D]
[G] D:\Programme\ICQ6\ICQ.exe	[PX5: 3FA9C493F824BE71A4E5025EB0295700711885A5]
[G] C:\WINDOWS\system32\drivers\atv01nt5.dll	[PX5: A94A4696BFCAC54652B100A888619100994DDD6E]
[G] C:\Programme\Gemeinsame Dateien\Microsoft Shared\GRPHFLT\PNG32.FLT	[PX5: 41F3277C382B7705807402C1B6DDD1006450149D]
[G] C:\WINDOWS\system32\format.com	[PX5: EDA0EAD700A7F67D74C700F808956B00024FC7F9]
[G] C:\WINDOWS\system32\ddeml.dll	[PX5: 87F926CB00F2CB349A1200182C741300BAE396F9]
[G] C:\WINDOWS\system32\drivers\adv09nt5.dll	[PX5: E173D95F7FF335B60E3300DD69199800B79BCD14]
[G] C:\Programme\OpenOffice.org 3\program\scalc.exe	[PX5: 8DBB2896002CB3FDA4AA0421405A9C00A570969D]
[G] C:\WINDOWS\system32\drivers\adv02nt5.dll	[PX5: 861945D37F6CE6440F3500984FB4FE00B79BCD14]
[G] C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll	[PX5: E2013C5B089BFF1A8CEF0C4A6B2DEC00D18DCB05]
[G] D:\Programme\World of Warcraft\Repair.exe	[PX5: 3E083A4590C2163992790D6518DF72008BEF348D]
[G] C:\WINDOWS\system32\avifile.dll	[PX5: 4ED3A0D9C077CED2ABD5016052733100D7A4582F]
[G] C:\WINDOWS\system32\drivers\atmuni.sys	[PX5: 92E7BF650082565E607E05AD216E0900953642D5]
[G] C:\Programme\OpenOffice.org 3\program\sdraw.exe	[PX5: 8DBB2896002CB3FDA4AA0421405A9C001688F9AD]
[G] C:\Programme\Microsoft Office\OFFICE11\MSQRY32.EXE	[PX5: 742FB872380EAE8EBA4809A85C15F50021837323]
[G] C:\WINDOWS\system32\drivers\adv01nt5.dll	[PX5: F3CEDD4B9F8B578F10D400C06F170800891B8370]
[G] C:\WINDOWS\system32\drivers\adv07nt5.dll	[PX5: A921A5C03FFE4E930E2D00DEA00D0C00B79BCD14]
[G] C:\WINDOWS\system32\rshx32.dll	[PX5: 8B7909D5006C06E99ECF006D2B1208006987F845]
[G] C:\WINDOWS\Fonts\vgaoem.fon	[PX5: 6CA95C4D3080777B140100C1C8350800A078F465]
[G] C:\WINDOWS\system32\chcp.com	[PX5: 62142BAC004172551EE000230CC13000F18FD81F]
[G] C:\Programme\OpenOffice.org 3\program\simpress.exe	[PX5: 5816A477000B4331A4A304B1BC4CAE0014BACDBE]
[G] C:\WINDOWS\system32\avicap.dll	[PX5: 6D67EC12E084E54E124201FFF5F62900B422894F]
[G] C:\WINDOWS\system32\msdtcuiu.DLL	[PX5: 7847D9250018EFEB78A002A17015FF001CDF7F68]
[G] C:\WINDOWS\system32\drivers\watv06nt.sys	[PX5: D04CA646FF640CF256F2007383ABD9003A191E15]
[G] C:\Programme\OpenOffice.org 3\program\smath.exe	[PX5: 8DBB2896002CB3FDA4AA0421405A9C00F296511E]
[G] C:\WINDOWS\system32\ctl3dv2.dll	[PX5: C84734B440655DC66A4D00304EF8AC0014627D07]
[G] C:\WINDOWS\system32\drivers\adv08nt5.dll	[PX5: FE00241D3F1E00A10CCF000606C17100B79BCD14]
[G] C:\WINDOWS\System32\msgsvc.dll	[PX5: 5E02C29800B6B931848C0041CB447100259D104B]
[G] C:\Programme\Gemeinsame Dateien\Microsoft Shared\TextConv\WPFT532.CNV	[PX5: 923DBD7838D7A7439A38025CE44456005A8A3D08]
[G] C:\WINDOWS\system32\drivers\hidir.sys	[PX5: 385910E500491C2A4B2500B2238855006E25FC7E]
[G] C:\WINDOWS\system32\drivers\wadv08nt.sys	[PX5: 4CF103A01F6123B62CFA0037B0C1FD00836A25AA]
[G] C:\WINDOWS\system32\drivers\atv10nt5.dll	[PX5: 8814C54C7F821B6843840006D80676002F5F56FB]
[G] C:\WINDOWS\system32\netfxperf.dll	[PX5: 1A2876B000187B0FA4C400FED64B190026A3520D]
[G] C:\Dokumente und Einstellungen\XXX\Desktop\mbam-setup.exe	[PX5: 14A6205A784CA6053365247FD347C700DDB760CC]
[G] C:\Programme\OpenOffice.org 3\program\sbase.exe	[PX5: 8DBB2896002CB3FDA4AA0421405A9C0068E6FB5E]
[G] C:\WINDOWS\system32\drivers\smbali.sys	[PX5: 12482C94000568C617170054DB39780005417B03]
[G] C:\Programme\OpenOffice.org 3\program\swriter.exe	[PX5: EDCBF0EF00684533A4A20417F52FEB001F78DD6D]
[G] C:\WINDOWS\system32\drivers\mbamswissarmy.sys	[PX5: 980187E66004A2499637002917ED420048D12749]
[G] C:\WINDOWS\system32\drivers\siint5.dll	[PX5: F141B3BE3D6D02440F8A00D5CEF19500B79BCD14]
[G] C:\WINDOWS\system32\drivers\adv05nt5.dll	[PX5: 5D753EE01F6F42CF0E95003194A3FE00B79BCD14]
[G] C:\WINDOWS\system32\compobj.dll	[PX5: DA21156DD0BCD8E77562007DCF26A600F4FFDA3F]
[G] C:\WINDOWS\system32\comm.drv	[PX5: 0D8B262B3068553F296F004B25B4F300F3172575]
[G] C:\WINDOWS\system32\drivers\wadv09nt.sys	[PX5: 5DB73A5C5FAB7A1D2EB000A4DD02C800BA660E95]
[G] C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe	[PX5: 0B79358100442047E06C01F0E7ED00004891594A]
[G] C:\Programme\Gemeinsame Dateien\Microsoft Shared\TextConv\MSWRD832.CNV	[PX5: 6C2F7F9440015FF64E040324CD763100560F8A2D]
[G] C:\Programme\Gemeinsame Dateien\Microsoft Shared\GRPHFLT\EPSIMP32.FLT	[PX5: 32EC21B04088A41B7E7F0662DE1C0A00D4DD3EE4]
[G] C:\Programme\Gemeinsame Dateien\Microsoft Shared\GRPHFLT\PICTIM32.FLT	[PX5: 168D41BF40C98F78F08400114D3B660085EFA7F6]
[G] C:\WINDOWS\system32\drivers\cbidf2k.sys	[PX5: 7B8DA5F780B7DA7536FE00ABA71B6C00B12776D7]
[GP] C:\Dokumente und Einstellungen\Svenja\Desktop\HijackThis.exe	[PX5: 44C120F738065514211C067B4ABA7A00E4635499]
[G] D:\Programme\DAEMON Tools Lite\daemon.exe	[PX5: 12CB0C34C838A12E7DEB07667FADCB00370957F4]
[G] C:\Programme\Gemeinsame Dateien\System\MSMAPI\1031\MSMAPI32.DLL	[PX5: 2102B4E2406E900DAC4F14346227380077939227]
[G] C:\WINDOWS\system32\drivers\adv11nt5.dll	[PX5: 7673ED26BF9B09EC0EC100AA8F307F00B79BCD14]
[G] C:\WINDOWS\system32\deskadp.dll	[PX5: 7A38AB6600182B994245005EACC722004D7AB589]
[G] C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_perf.dll	[PX5: D02390E008FB20CA826900411A055A001971C16C]
[G] C:\Programme\Gemeinsame Dateien\Microsoft Shared\TextConv\WPFT632.CNV	[PX5: 56A8074B385454D6267C03466E1D9E003A4F97E7]
[G] C:\Programme\Adobe\Reader 8.0\Reader\pdfprevhndlrshim.exe	[PX5: D64B58E780614F3D051A01CB4B8F080090E529DA]
[G] C:\Programme\Gemeinsame Dateien\Microsoft Shared\GRPHFLT\JPEGIM32.FLT	[PX5: 561D8D31404D74297C1F02EBE625B60058210F09]
[G] C:\WINDOWS\system32\drivers\bthusb.sys	[PX5: 44B073E300227E634AF300C25065D300C03386E0]
         


Alt 30.11.2008, 19:14   #6
Lemuren-Frau
 
DAU hat Befallsverdacht, Avira blind+mehrere seltsame .exe - Icon17

DAU hat Befallsverdacht, Avira blind+mehrere seltsame .exe



*ächz* is das wirklich richtig???
Code:
ATTFilter
[G] C:\WINDOWS\Temp\ChCfg.exe	[PX5: C72A025700A98D81C045002B8A363B00E1D790AD]
[G] C:\WINDOWS\Temp\RtlCPAPI.dll	[PX5: 3CA7E4E90052A9914051029C05318100021E77EE]
[GP] C:\Dokumente und Einstellungen\XXX\Desktop\AE3CAE6CE2D8437CA8F5.EXE	[PX5: A2E11EDF38B0A6820CBE0EE1744D9C00E27A54E4]
[G] D:\Programme\World of Warcraft\Launcher.exe	[PX5: ECC011229090225B127325E1B994E40089CD27A3]
[G] C:\Programme\OpenOffice.org 3\program\soffice.exe	[PX5: 946C12B4006701B648B8711E165EC000F6F003B4]
[G] C:\WINDOWS\system32\DRIVERS\asyncmac.sys	[PX5: 8BD45D2B002F3B40389D007E91CC5900FB93CEA1]
[G] C:\Programme\Microsoft Office\OFFICE11\MLSHEXT.DLL	[PX5: 0091C8B33890487E7441005EBAC683003FAF2F5F]
[G] D:\Programme\DAEMON Tools Lite\uninst.exe	[PX5: 53CB81C1C8695ED4C7F40521E4A6000082C8E34F]
[G] C:\WINDOWS\system32\dfshim.dll	[PX5: 5D816A89F88B3539795201C0903C31004ADCA8C6]
[G] C:\WINDOWS\system32\drivers\bthenum.sys	[PX5: 67DA124780F37F2D4207001BE7C4FB00803D6E14]
[G] C:\WINDOWS\system32\drivers\wadv11nt.sys	[PX5: 3270838B9F1CA4BC2ECD00F52065DC007F926E55]
[G] C:\WINDOWS\system32\drivers\atmepvc.sys	[PX5: 7363E81E80EDA4EC7A0200CE34E22400450A279B]
[G] C:\Programme\Gemeinsame Dateien\Microsoft Shared\GRPHFLT\WPGIMP32.FLT	[PX5: 0482384B40B5A2FFB88401F208DE1300C2F44335]
[G] C:\Programme\Microsoft Office\OFFICE11\OLKFSTUB.DLL	[PX5: F83A17B8406E6E31922F03C00831BB00DE8F4C3C]
[G] C:\WINDOWS\system32\drivers\cpqdap01.sys	[PX5: C60D75F500CE16D02E4100D9B4337E008A228DE3]
[G] C:\Programme\Gemeinsame Dateien\Microsoft Shared\GRPHFLT\CGMIMP32.FLT	[PX5: 2EA2961840E7075058DC0406A6CCE0008E22AD8C]
[G] C:\WINDOWS\system32\drivers\cinemst2.sys	[PX5: 7C4B5F6480542F0A010D0467679A3400E2B14447]
[G] C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys	[PX5: E130718C809C039180F700DA0AC8EE00F2B31814]
[G] C:\WINDOWS\system32\system.drv	[PX5: D4BD27742043BEDB0DB0000478EA5C00B79BCD14]
[G] C:\WINDOWS\system32\drivers\smclib.sys	[PX5: 8A9722BD003AC63939580092009AC20088FC78D8]
[G] C:\WINDOWS\system32\mciwave.drv	[PX5: 4D15592B0006473D6E3900034B93AF002C41B6EA]
[G] C:\WINDOWS\system32\ole2.dll	[PX5: F2FC4A2A40B7B6B59BDF00629364AB00A54AED31]
[G] C:\WINDOWS\system32\diskcomp.com	[PX5: FD83E24A00E33AB824A100536EC85C00ACA1D94F]
[G] C:\WINDOWS\system32\drivers\tsbvcap.sys	[PX5: 87882BA880A89CF8537500BE0BB03800CD0425CD]
[G] C:\WINDOWS\System32\drivers\pxark.sys	[PX5: D076AA7838DB721B680900755BE35D001F1A8ACE]
[G] C:\WINDOWS\system32\win87em.dll	[PX5: 22C03F9D0005E87A34B40075B0F00E00517D625F]
[G] C:\WINDOWS\system32\deskperf.dll	[PX5: B2508B8100733CAC4876006C35B4E700DCAEC44A]
[G] C:\WINDOWS\System32\ipxrtmgr.dll	[PX5: 5953F71D007462269CAE00DA44218A00935EB80C]
[G] C:\WINDOWS\System32\mprddm.dll	[PX5: 1E87929000E2C2940E20019F10EC7C002A004CC0]
[G] C:\WINDOWS\system32\docprop.dll	[PX5: 5AEBC5B500133D42BA050002FAF14D00FA76FAEE]
[G] C:\WINDOWS\system32\lanman.drv	[PX5: 979919E9109F8F89739803C59F91BE005572B13A]
[G] C:\WINDOWS\system32\drivers\rio8drv.sys	[PX5: 689BF8B80051228F2F8000540597A5009049C8B5]
[G] C:\WINDOWS\system32\msacm.dll	[PX5: 9509859960B48961EF3C0048E192C7001E1E2D02]
[G] C:\WINDOWS\system32\pmspl.dll	[PX5: 98CDEBDE0094268EB67200C1C6BF85009014DA93]
[G] C:\WINDOWS\system32\ntsd.exe	[PX5: 3A2AF65D002D211C7C10004432E9BD00A739BA2A]
[G] C:\WINDOWS\system32\drivers\atinttxx.sys	[PX5: 4D021E9A00CC1BA9364D00987AB05B00A6802140]
[G] C:\WINDOWS\system32\drivers\vdmindvd.sys	[PX5: 5DFBB3300012B79DE3E300778EC928004FCDB2AF]
[G] C:\WINDOWS\system32\drivers\rndismpx.sys	[PX5: 120F9F0E8086D832779500950845710052090A7D]
[G] C:\WINDOWS\system32\shell.dll	[PX5: CE2E2C35000BF1E3147B0046192BB900FA35E49E]
[G] C:\WINDOWS\system32\wfwnet.drv	[PX5: E9641F0220200734353000D28FC59A003BEC664C]
[G] C:\WINDOWS\system32\drivers\ip6fw.sys	[PX5: 93047826004370A18F5A0004B987DC008A8F55C7]
[G] C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys	[PX5: A826BA3A803B83AE30C000488911C200DC3CA878]
[G] C:\WINDOWS\system32\diskcopy.com	[PX5: 9F11BE870016CEF71C05003B3C2E0700C99A33B9]
[G] C:\WINDOWS\system32\olesvr.dll	[PX5: CE221EF60049CF2B5E3B009B247C6A00F018477F]
[G] C:\WINDOWS\System32\rasrad.dll	[PX5: 9C52DCEB003455235C82002AF9A1AB0080B59E34]
[G] C:\WINDOWS\system32\mciseq.drv	[PX5: 29BE5A79D02501D962B1006D9F644A004DC598FB]
[G] C:\WINDOWS\system32\drivers\rawwan.sys	[PX5: 3623B25780ED679386B1006F511AA700A8DBED63]
[G] C:\WINDOWS\system32\drivers\bthprint.sys	[PX5: 15F50C358083D21A8E0C007F137244008C573A12]
[G] C:\WINDOWS\system32\drivers\atinxbxx.sys	[PX5: D3D6841600E9C8A17C9D00EE54392C008BFD8C61]
[G] C:\WINDOWS\system32\drivers\oprghdlr.sys	[PX5: 691E96B980EF4DD30D2300DD63265E00B79BCD14]
[G] C:\WINDOWS\system32\graftabl.com	[PX5: 0FE61FD6007A5D06668800223CE439009567DF04]
[G] C:\WINDOWS\system32\drivers\nikedrv.sys	[PX5: 31AFD82600B7B0E92F3400332F79D6008B90E2A9]
[G] C:\WINDOWS\system32\timer.drv	[PX5: 02AC84D6D0483D2F0F9400A4426B8E001D5BAD12]
[G] C:\WINDOWS\system32\drivers\vchnt5.dll	[PX5: 0ED594033D76220A2CCA00C298481800F7EE2D11]
[G] C:\WINDOWS\system32\drivers\riodrv.sys	[PX5: 31AFD82600B7B0E92F3400332F79D600DA0E26E7]
[G] C:\WINDOWS\system32\perfts.dll	[PX5: AE9073F600B211AB30C8004AEAD2430041B25501]
[G] C:\WINDOWS\System32\rasctrs.dll	[PX5: 7B40074900CC7ADA3009003B3C2E070046B8FF7A]
[G] C:\WINDOWS\system32\drivers\acpiec.sys	[PX5: F21BE3DC800E8A0A2F3C009238A73C00223D7063]
[G] C:\WINDOWS\system32\tapiperf.dll	[PX5: 0EC337E800BC7520160C0089D5B62C00FD76F1A6]
[G] C:\WINDOWS\system32\drivers\ati1ttxx.sys	[PX5: 9031E7695FDBA0F15365004FF9F694004110881D]
[G] C:\WINDOWS\system32\drivers\rootmdm.sys	[PX5: F3E7979300A8EEA3177100743639FF0080591A18]
[G] C:\WINDOWS\system32\netapi.dll	[PX5: 3B2621E2C04DF3B2A77E0156CAF52A00A1424563]
[G] C:\WINDOWS\system32\sound.drv	[PX5: E70CAE91D00DCE52067C00647C846400B79BCD14]
[G] C:\WINDOWS\system32\mciavi.drv	[PX5: FD5C7DEA20EEA2C72056011DA830F200A7FFE5D6]
[G] C:\WINDOWS\System32\rsvpperf.dll	[PX5: 751D458900EFCBBC26D2003B3C2E070032CD163F]
[G] C:\WINDOWS\system32\drivers\nwlnknb.sys	[PX5: 04BB889700AAB944F73D0096D8122400A0912260]
[G] C:\WINDOWS\system32\drivers\watv10nt.sys	[PX5: BC7A9CF57F55E4C36384008A4A3A0700A414BF9F]
[G] C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys	[PX5: B9B73139006979BB7FBC0031EA7E320032D237D0]
[G] C:\WINDOWS\system32\mouse.drv	[PX5: D9EA0CB2F0FB384407BE00D28D0C0C00B79BCD14]
[G] C:\WINDOWS\system32\drivers\hidbth.sys	[PX5: C468F04A00AB923165CD0019D9EDE70098F4ADD1]
[G] C:\WINDOWS\system32\msvideo.dll	[PX5: 0BB88544806833B9F080012F00509C00B96AD7CE]
[G] C:\WINDOWS\system32\ole2nls.dll	[PX5: 09B13294B021FA9E558F026E08072F00900228B5]
[G] C:\WINDOWS\system32\typelib.dll	[PX5: C0620321C004C14EB60D020DCCE16200701F9AEA]
[G] C:\WINDOWS\system32\mode.com	[PX5: 2E93A30400625BBF4CE400E712EA2900571D8A05]
[G] C:\WINDOWS\system32\drivers\mcd.sys	[PX5: 874B185900D5916B1EF900C2FE181D00136FAB22]
[G] C:\WINDOWS\system32\icmui.dll	[PX5: C81096D600DADF76D847006AF0AEED0042A28F75]
[G] C:\WINDOWS\system32\winoldap.mod	[PX5: E19A53B2202676D208C7002132DA8800B79BCD14]
[G] C:\WINDOWS\system32\drivers\tosdvd.sys	[PX5: 628D18D7002B7E40CAFC00177DE27100B717B0CE]
[G] C:\WINDOWS\system32\keyboard.drv	[PX5: 159F7A82D0C5E0D3077700FE801B1000B79BCD14]
[G] C:\WINDOWS\system32\olecli.dll	[PX5: F5FB40F500858B0244DF0121D0BC3200B432085A]
[G] C:\WINDOWS\system32\win.com	[PX5: 4E1E179E00A1B00F481B003D92602E007B8F5F12]
[G] C:\WINDOWS\system32\winsock.dll	[PX5: FCF9BBDC30E28D0D0BF200D9F4D9CD00B79BCD14]
[G] C:\WINDOWS\system32\drivers\tunmp.sys	[PX5: CBD0AEE30035D6A5300B00CF5C41910059532CD5]
[G] C:\WINDOWS\system32\ipxrip.dll	[PX5: CD9AADBA00C352F754B30034163CEA000C139306]
[G] C:\WINDOWS\system32\ipxsap.dll	[PX5: FAD746B9007BD227043401F58EDD66009BF1A3C3]
[G] C:\WINDOWS\system32\storage.dll	[PX5: 60BAD4D270E3252C10B800A49D4C780095AFB292]
[G] C:\WINDOWS\system32\toolhelp.dll	[PX5: 87219368400265353643009B30E21C003936EBD7]
[G] C:\WINDOWS\system32\drivers\sffp_sd.sys	[PX5: 2962F907000470602BFC005958959E005F3F9EDD]
[G] C:\WINDOWS\system32\ole2disp.dll	[PX5: 3E66404830EBCC7296B902E3361C6400BE12EFF7]
[G] C:\WINDOWS\omniuns.exe	[PX5: AB106A170031E2ED909A00800561AD00D82DC19A]
[G] C:\WINDOWS\system32\ntlanui2.dll	[PX5: 31B28537003D84B73AA5000A7557EF00D6C5C63D]
[G] C:\WINDOWS\system32\drivers\nwlnkspx.sys	[PX5: 38D410228045AB3DDA820098A4E752008EA9780C]

[G] C:\WINDOWS\system32\drivers\wadv07nt.sys	[PX5: 1E0FE3D21FE339D22E2B008596227200617F8D26]
[G] C:\WINDOWS\system32\drivers\atinpdxx.sys	[PX5: 56DABC9E00199F9D38D000631CEE050045090A25]
[G] C:\Programme\Gemeinsame Dateien\Microsoft Shared\TEXTCONV\works632.cnv	[PX5: D77CAA94A8086C398A38002DDDE82A0023C9226D]
[G] C:\WINDOWS\system32\drivers\ati1tuxx.sys	[PX5: 6F56F7AF6FA57A868E0B00B0DBF03B006604A40C]
[G] C:\Programme\Gemeinsame Dateien\Microsoft Shared\TextConv\mswrd632.wpc	[PX5: 255241CE4A8E0D0D40E903D813E15E00082B1C8A]
[G] C:\WINDOWS\system32\drivers\atintuxx.sys	[PX5: 9CDDA52F00E9E7A81E4101F1C5DBF60019525D37]
[G] C:\WINDOWS\system32\DRIVERS\usbccgp.sys	[PX5: D222D7908042C86E7D3300BF92539B00369250E9]
[G] C:\Programme\Malwarebytes' Anti-Malware\mbam.exe	[PX5: EF759AD990C48E6F3E8413A1A443BB006185BE47]
[G] C:\WINDOWS\system32\drivers\bthmodem.sys	[PX5: C7B309490098C8E694F000B44D666B00097E910F]
[G] C:\Programme\Gemeinsame Dateien\Microsoft Shared\TextConv\write32.wpc	[PX5: 71A6A3C449C4AC08B01A01656F55D1003BF2D4E6]
[G] C:\Programme\Gemeinsame Dateien\Microsoft Shared\TextConv\html32.cnv	[PX5: 4D9506A93851A104C41B044B3348F800866F87E0]
[G] C:\WINDOWS\vidcap32.exe	[PX5: 0C975A26003C384DB09C04DF162E4B00DDC96415]
[G] C:\WINDOWS\system32\drivers\scsiport.sys	[PX5: 5DC8AF70801E084478BD01B28E7A760029179ED8]
[G] C:\WINDOWS\system32\odbcad32.exe	[PX5: 17F26BA200E9D72D8056002DDDE82A0023E704D8]
[G] C:\WINDOWS\system32\drivers\gagp30kx.sys	[PX5: 642F878C801E7D44B50600016FDC9C0046817CE7]
[G] C:\WINDOWS\system32\shscrap.dll	[PX5: 03DBCB6C003C209D6E710057E4BF38005981B31E]
[G] C:\WINDOWS\system32\drivers\usb8023x.sys	[PX5: 3E77E626002C4E4732F6001737A36500BD2ED064]
[G] C:\WINDOWS\system32\drivers\amdk7.sys	[PX5: 0601E31D804CB085A3E4003936D92B0047400BB9]
[G] C:\WINDOWS\system32\drivers\intelppm.sys	[PX5: 39699AD400D9AE559E810028B2FB85001494EA9F]
[G] C:\WINDOWS\system32\drivers\wacompen.sys	[PX5: BD7D24B780B23628379400D942852C00086B47B3]
[G] C:\WINDOWS\system32\drivers\usbcamd2.sys	[PX5: 2C68E76080C0840A6439007754862A00AB77FF15]
[G] C:\Programme\Outlook Express\wabfind.dll	[PX5: 0442061800C19A9380580042741F6000B701FBE7]
[G] C:\WINDOWS\system32\sclgntfy.dll	[PX5: B7AE331900B0655F5AC000FE3D9C0B004B0D353F]
[G] C:\WINDOWS\system32\drivers\sffp_mmc.sys	[PX5: 0D9613CE000C9FDF284300164391810062DCB727]
[G] C:\WINDOWS\system32\drivers\atv02nt5.dll	[PX5: 2CF903F35FE772BB2CB900906A3B9C00B64531A8]
[G] C:\WINDOWS\system32\mmsystem.dll	[PX5: B5997EF700CA605710E601C8EB6DD70066F2F55A]
[G] C:\WINDOWS\system32\drivers\ati1raxx.sys	[PX5: D7E83838CFFBCC21778E006C6ECA69008610B277]
[G] C:\WINDOWS\system32\netdde.exe	[PX5: 1F9E723900C79A35BED30180B0E270001C295367]
[G] C:\WINDOWS\system32\drivers\agpcpq.sys	[PX5: 3C2A452B80CBBE67AF240060110ED70068FEC41D]
[G] C:\WINDOWS\system32\drivers\fsvga.sys	[PX5: 78ACD409008333CF30C90046F776F800DD6B1647]
[G] C:\WINDOWS\System32\wshnetbs.dll	[PX5: 0B83A119000A99EB1CE9006990E88A003BE97930]
[G] C:\WINDOWS\System32\rasauto.dll	[PX5: 11EB74EB00C81E315A980140CAE22100E577557B]
[G] C:\WINDOWS\system32\drivers\ati1snxx.sys	[PX5: B555A9DCFFB1FA6F666D00BC1653D600EE3B9E3F]
[G] C:\WINDOWS\system32\drivers\viaagp.sys	[PX5: D6E79603001AC593A55800BA66876F00A4E86821]
[G] C:\WINDOWS\system32\drivers\ati1xsxx.sys	[PX5: 725DA013AF89D09387CF00DFF7253B006BDDF179]
[G] C:\WINDOWS\system32\drivers\atinrvxx.sys	[PX5: B2CFA5AF0036DB7A9A1C01285BA8AA00C6DEC091]
[G] C:\WINDOWS\system32\drivers\atinraxx.sys	[PX5: FEA5AA1600EC2AE1CC0900185C854A00422223CC]
[G] C:\WINDOWS\system32\utilman.exe	[PX5: B9D56641005C0FE1C43100A2BB056500AEACD58E]
[G] C:\WINDOWS\system32\DRIVERS\atmarpc.sys	[PX5: C41A09F600246E0AEA81009B2DE4BF0010DB722C]
[G] C:\WINDOWS\system32\wowdeb.exe	[PX5: C1613D5DB0A80A260ABB006471357400B79BCD14]
[G] C:\WINDOWS\system32\drivers\amdk6.sys	[PX5: D629DD7000980835A20200E8789C9F00FF9CB74E]
[G] C:\WINDOWS\system32\drivers\rndismp.sys	[PX5: 120F9F0E8086D8327795009508457100EA4A9887]
[G] C:\WINDOWS\system32\drivers\p3.sys	[PX5: BBAD548C00B89633B7F100DD557C7000FCC8487D]
[G] C:\WINDOWS\system32\drivers\atinmdxx.sys	[PX5: F01147EA00BE7AB736CC00E44C302A00BEEA352D]
[G] C:\WINDOWS\system32\drivers\sonydcam.sys	[PX5: 7C98490200F27A6F636900C11EF4E300DD4774BE]
[G] C:\WINDOWS\system32\DRIVERS\usbprint.sys	[PX5: 7960B0440094064A6580004CDAAF0B00A19B6FCE]
[G] C:\WINDOWS\system32\drivers\agp440.sys	[PX5: 92796BB0806349F8A56F00F55D76CD005A64789A]
[G] C:\WINDOWS\system32\drivers\ati1pdxx.sys	[PX5: E991404B0FFD6FF82F7000461A312B002816CEC0]
[G] C:\WINDOWS\system32\drivers\stream.sys	[PX5: FDEA7CEA00E734D3C1DE0004BF4241007DE59088]
[G] C:\WINDOWS\system32\drivers\uagp35.sys	[PX5: 9D095C07801C22E3AE6600D63D61E600782D745D]
[G] C:\WINDOWS\system32\drivers\mdmxsdk.sys	[PX5: F550CBF45C4DEEBE2EDE0064049C6200A1C01EF8]
[G] C:\WINDOWS\system32\drivers\sisagp.sys	[PX5: 67D98FA600CA352AA02400A357FF240007CD1A59]
[G] C:\Programme\Java\jre1.6.0_07\bin\npjpi160_07.dll	[PX5: B593EB2E90871CEA05FD02BFFC7D1B0085986292]
[G] C:\WINDOWS\system32\drivers\alim1541.sys	[PX5: 9F57E1E200726D99A7A3005976AF0500D3B95DEC]
[G] C:\WINDOWS\system32\rcimlby.exe	[PX5: D799DE4F00C4E8218CF9005304D1CF0044C5E5FA]
[G] C:\WINDOWS\system32\krnl386.exe	[PX5: 0363E948E0B228E169DC012D6A7C590010AD67B4]
[G] C:\WINDOWS\Temp\alcrmv.exe	[PX5: 0D50D28F00FD85BA509203963A6A3F00A212638C]
[G] C:\WINDOWS\system32\drivers\nvtcp.sys	[PX5: F013953A009CB6AB8E71019D33F1BD0052FD5DC1]
[G] C:\WINDOWS\system32\drivers\ati1btxx.sys	[PX5: 9CA86B132F837EAADD9A003E210F24004C5E2C40]
[G] C:\WINDOWS\system32\SlayerXP.dll	[PX5: FAC2ED310070C9AE64380036AB5FCC0089903415]
[G] C:\WINDOWS\system32\drivers\amdagp.sys	[PX5: E6EB08360057179FA86C00430CC301004CB71E2C]
[G] C:\WINDOWS\system32\osk.exe	[PX5: CBB8A2A8003F814F4E8B03D4BA13D200C687D5AF]
[G] C:\WINDOWS\system32\drivers\usbcamd.sys	[PX5: 2C68E76000C0840A6439007754862A00090E71FE]
[G] C:\Programme\Gemeinsame Dateien\Microsoft Shared\GRPHFLT\CDRIMP32.FLT	[PX5: 08219BE240C6598FDAA4068E99590D000C696554]
[G] C:\WINDOWS\system32\drivers\atv04nt5.dll	[PX5: 3A7C21F37F7A525863F4009E8193B800B057BF4C]
[G] C:\WINDOWS\system32\RDPCFGEX.DLL	[PX5: BC51E2AB00FD6DEA12E800C1F661D90061E914A0]
[G] C:\WINDOWS\system32\drivers\mtlmnt5.sys	[PX5: FE91AA0DDE37188CEE5701B0C30E4C00F5593D00]
[G] C:\WINDOWS\system32\docprop2.dll	[PX5: 8E82DE1F00AADC85BEE4005581292C00CECF402D]
[G] C:\WINDOWS\system32\drivers\ws2ifsl.sys	[PX5: E3FE23AC0026FAFE2FF10052E88519002DA1A545]
[G] C:\WINDOWS\system32\rdpwsx.dll	[PX5: 789D96CB884F68D4543F012785E3EC00D5A13194]
[G] C:\WINDOWS\system32\drivers\ati1xbxx.sys	[PX5: 50BEFAA40FC66AE3731C0014DEE71F00327B8872]
[G] C:\WINDOWS\system32\Perfctrs.dll	[PX5: EAB3F414002ADE89A4FE0036DB397400969D2200]
[G] C:\WINDOWS\system32\perfdisk.dll	[PX5: 8440AB7D009F91A86A460075B75083005DEE8F02]
[G] C:\Programme\Adobe\Reader 8.0\Reader\pdfprevhndlr.dll	[PX5: 3BD592F470063CF846ED01556DDA8700DCEF7EC5]
[G] C:\WINDOWS\system32\edit.com	[PX5: B542A12F6E6E0DA415520148D1845800ED9F60B4]
[G] C:\WINDOWS\system32\perfproc.dll	[PX5: 78DFA9F200CE69AD8A650088744CE300483CFB80]
[G] C:\WINDOWS\system32\drivers\atinsnxx.sys	[PX5: B12DD4A0005F1C4B7090009378B5920090FEE997]
[G] C:\WINDOWS\system32\drivers\sffdisk.sys	[PX5: BCD0F07C80BDA6002E68000865B1AD002DF173D8]
[GP] C:\Programme\PrevxCSI\prevxcsi.exe	[PX5: A2E11EDF38B0A6820CBE0EE1744D9C00E27A54E4]
[G] C:\WINDOWS\system32\tree.com	[PX5: 734B6CB6006AF7FF3248003E203A110024D98C11]
[G] C:\WINDOWS\system32\dsuiext.dll	[PX5: D89119F400524A6FBCAA013BC61AF40090B77AB2]
[G] C:\Programme\Malwarebytes' Anti-Malware\unins000.exe	[PX5: 7CABF2D39064C37182CF0A561A0FFB004BB782D6]
[G] C:\WINDOWS\system32\drivers\recagent.sys	[PX5: 8230DA32D0FF3CCB359200458A49D1005077BCC7]
[G] C:\WINDOWS\system32\ntbackup.exe	[PX5: 54AE54EE003EE690C26B12529D4ED500DD6D2A9B]
[G] C:\WINDOWS\system32\drivers\MSPCLOCK.sys	[PX5: E3D3244C00A7CE72157A001337247B008F8E8497]
[G] C:\WINDOWS\system32\drivers\MSPQM.sys	[PX5: E79874108063B1F513260078C414AC00D0AB678F]
[G] C:\WINDOWS\System32\mmcshext.dll	[PX5: 5948CFBE0081997CF09A00154A627D0075954BB2]
[G] C:\WINDOWS\system32\wmpshell.dll	[PX5: 0A366402001F08BF90E5011E9D1B630081B39E30]
[G] C:\WINDOWS\system32\drivers\avgntdd.sys	[PX5: 4FDDF02D4079335D9FA90087A8D32500ECC7975A]
[G] C:\WINDOWS\system32\drivers\tape.sys	[PX5: 1278B1EF80B32A683A3F0096934CD200CD93C3A7]
[G] C:\WINDOWS\system32\drivers\arp1394.sys	[PX5: 7E81EB6A803135EBEDB20074BBAF54000B42EB7B]
[G] C:\WINDOWS\system32\DRIVERS\StreamIP.sys	[PX5: 37C869AE80A1D1423BD000F9D6694800DEF3C0AC]
[G] C:\WINDOWS\system32\msieftp.dll	[PX5: 28CAA45D00E765D0DC37038003089A00026BEFDB]
[G] C:\WINDOWS\system32\wuaueng.dll.mui	[PX5: 94DBD4FFC8FC882352D000668064F8009D5B0CD5]
[G] C:\WINDOWS\system32\drivers\ati2mtag.sys	[PX5: C185A3E2009B7986B6DD0A998E71E700044A0DCE]
[G] C:\WINDOWS\system32\drivers\sdbus.sys	[PX5: 12F9511E8033D35E354601CEF3B0FF0072197919]
[G] C:\WINDOWS\system32\wbem\wmiaprpl.dll	[PX5: F4C3195000E647D75A47012FE129F7006FC03698]
[G] C:\WINDOWS\system32\mspmsnsv.dll	[PX5: F36CC8AD00A28FA7CEB800C2B340630002F7BDCB]
[G] C:\WINDOWS\system32\drivers\imagedrv.sys	[PX5: E383C2F480AFC2491541008E40C3620095FC446B]
[G] C:\WINDOWS\system32\rdpclip.exe	[PX5: 28E9F670009AF4A4F6E6004A66FE4E007F33E5C6]
[G] C:\WINDOWS\system32\drivers\rfcomm.sys	[PX5: 0E12D86100621870E7AC00D7154E22001793DABF]
[G] C:\WINDOWS\system32\drivers\crusoe.sys	[PX5: DD5C92A780A171379F24001BB46BB9007EDAD51E]
[G] C:\WINDOWS\system32\drivers\tdpipe.sys	[PX5: 3FCBC6C1086354332FFD003DE3512D00E0553E49]
[G] C:\WINDOWS\system32\drivers\nwlnkipx.sys	[PX5: B455E8AE00B6DCC159C401E18C4FD600E4472A6B]
[G] C:\WINDOWS\system32\drivers\MSTEE.sys	[PX5: EF9F4FE18003FE44154E00AC0DDE680015F5CFF9]
[G] C:\WINDOWS\system32\advpack.dll.mui	[PX5: 8EA2349D00EE752F300900BE3B1D080091D368DA]
[G] C:\WINDOWS\system32\more.com	[PX5: 496131F100912B7542E2005C7E1CE100C6B7D270]
[G] C:\WINDOWS\system32\clipsrv.exe	[PX5: AA6A22C300FC51CC827400A5E8550500B195D2BB]
[G] C:\Programme\Gemeinsame Dateien\Microsoft Shared\TextConv\WRD6ER32.CNV	[PX5: C3C71C92400AE19A461E003B3C2E07005391A6FD]
[G] C:\WINDOWS\system32\DRIVERS\usbscan.sys	[PX5: A345B33E004758873B29000DE02C9B00FEA79BC2]
[G] C:\WINDOWS\system32\remotepg.dll	[PX5: 0ADF9AFA004986FAF08A00BD5618C100F6DCFF42]
[G] C:\WINDOWS\system32\cleanmgr.exe	[PX5: 1DFB49E000389E7F00100105A3F022009EA097BD]
[G] C:\WINDOWS\system32\drivers\atinbtxx.sys	[PX5: 734A4454007FFA55E29F00FF52B7680047F5F3B1]
[G] C:\WINDOWS\system32\mshta.exe	[PX5: E471D23E00EB3DB3B2DC00A2C177ED0052C33CB2]
[G] C:\WINDOWS\system32\drivers\slnthal.sys	[PX5: 4125157DC0CA9DDC747D01DF9E13BE000301B563]
[G] C:\WINDOWS\system32\netplwiz.dll	[PX5: 7066B7A6006BA6CB7C370D6D761E9400DB7EE16D]
[G] C:\WINDOWS\system32\drivers\mqac.sys	[PX5: EAEA039A80F16E11699801DE4E83680080DEFF6E]
[G] C:\WINDOWS\system32\drivers\atinxsxx.sys	[PX5: CEDD5F03008A5FA5F8E5006BA33674000902F33E]
[G] C:\WINDOWS\system32\drivers\usbintel.sys	[PX5: 46A2709400A8B9863E99007B5ED70B00A3584D07]
[G] C:\WINDOWS\system32\DRIVERS\SLIP.sys	[PX5: C05453A580D50DE62B1A00E6C96F3800A046263E]
[G] C:\WINDOWS\system32\drivers\tdtcp.sys	[PX5: 8942980688A6EF76558200032BC6D800DD26DD28]
[G] C:\WINDOWS\system32\drivers\bthpan.sys	[PX5: 5BE273B80025E0C98B4301B3B287960093A3D165]
[G] C:\WINDOWS\system32\drivers\MSKSSRV.sys	[PX5: 1206502B8070367E1DC0005B0E279D003A9EE63B]
[G] C:\WINDOWS\system32\drivers\s3gnbm.sys	[PX5: 61E69E1D00FCADE18C3D02DB5DBD000075CEE0EF]
[G] C:\WINDOWS\system32\drivers\modem.sys	[PX5: F22F2ACE8067686F7617004AA04CD4006926539B]
[G] C:\WINDOWS\system32\drivers\irbus.sys	[PX5: F2826D6200C57828B62F004A2636B3005BFDCEA1]
[G] C:\WINDOWS\system32\rsvpsp.dll	[PX5: 207DDCE400DFBAF46A9901E930F30400B01B2AF5]
[G] C:\WINDOWS\system32\sendmail.dll	[PX5: 8088824600394EBAD8B8000ECF53A80050A09EDB]
[G] C:\WINDOWS\system32\drivers\usb8023.sys	[PX5: 3E77E626002C4E4732F6001737A36500DF1D4C45]
[G] C:\WINDOWS\system32\drivers\pcmcia.sys	[PX5: E57DBA640058975ED777010270809800FCD4E5A8]
[G] C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS	[PX5: B2CFBF060074D4084BB4001A2B9A350050720EA5]
[G] C:\WINDOWS\system32\drivers\mutohpen.sys	[PX5: F0516BDE807DC7ED312D00118D1A3F00F3D76BCF]
[G] C:\WINDOWS\system32\cabview.dll	[PX5: A51B5F1E005CD2A84CA3017840ED7F000F7C10FB]
[G] C:\WINDOWS\system32\dfsshlex.dll	[PX5: 6935BB0F004A750A70830023BC27D6007F3E5BBF]
[G] C:\WINDOWS\system32\drivers\ati1rvxx.sys	[PX5: 791DC4AAAF43CE30F814008CD5B52900B5EE141F]
[G] C:\WINDOWS\system32\drivers\nic1394.sys	[PX5: 6A6B604D8063736BF1A600F2F0678F005B5068A6]
[G] C:\WINDOWS\system32\drivers\ati1mdxx.sys	[PX5: 9A0348305FAB82F42D270060B8503E0045CF641B]
[G] C:\WINDOWS\system32\drivers\ati2mtaa.sys	[PX5: 0FF8649100F26F76FEF504C73380B9002E57B758]
[G] C:\WINDOWS\system32\drivers\slwdmsup.sys	[PX5: 16863D5CB8EACC283314005DED01E500658864AF]
[G] C:\WINDOWS\system32\dot3gpclnt.dll	[PX5: 55E7E93B0015BDC99C0300EE727DCA000ECED423]
[G] C:\WINDOWS\system32\cryptext.dll	[PX5: 2D486C1500171D51D61500F532FE7C00678D22EB]
[G] C:\WINDOWS\system32\drivers\mf.sys	[PX5: 3D97E98E00A086C1F9650053183C0E004DCD4DB3]
[G] C:\WINDOWS\system32\dssec.dll	[PX5: 082A2FB500F7D81FCC3800C338A20A00EADBD389]
[G] C:\WINDOWS\amcap.exe	[PX5: 63B4E50310BD5E7E7FB5004D3754B20023E13408]
[G] C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys	[PX5: 37E661E8003A144B4DFD01732787D60045EBBBCB]
[G] C:\WINDOWS\system32\drivers\nmnt.sys	[PX5: 4F6E51DE803D5E299DD30090E390240049FFAF2D]
[G] C:\WINDOWS\System32\mprdim.dll	[PX5: 9A6C9B7E00FD4834D0D2009663D73D00F21E858F]
[G] C:\WINDOWS\system32\drivers\hsfbs2s2.sys	[PX5: AF892C8C80AD05195B84032B43A9B8008B0F4B6A]
[G] C:\WINDOWS\system32\drivers\atmlane.sys	[PX5: 0680DC6000035655DA6F006BFFA72D00CBE1BD17]
[G] C:\WINDOWS\system32\drivers\avgntmgr.sys	[PX5: ACFEEBF140BFB8705331007B127CAA0020F6F7C9]
[G] C:\WINDOWS\System32\eapsvc.dll	[PX5: 55C4B6D70041A858842400698E9354000D94173B]
[G] C:\WINDOWS\Temp\soundman.exe	[PX5: D201120B003ED584D0B70850E2D418008F3014FE]
[G] C:\WINDOWS\system32\mmc.exe	[PX5: BB63859C0072C504981A15CD595BC900ED685C37]
[G] C:\Programme\Java\jre1.6.0_07\bin\regutils.dll	[PX5: FEA8AD1200F75EBCA06F03CC5A44B300600C4F43]
         

Antwort

Themen zu DAU hat Befallsverdacht, Avira blind+mehrere seltsame .exe
.dll-datei, aktiv, antivir, antivirus, avira, bli, cpu-auslastung, cursor, diverse, erste mal, festplatte, friert, gelöscht, heulen, hängen, immer wieder, kis, mehrere, musik, ratlos, screenshot, sp2, system, taskmanager, tipps, verseucht, windows, windows xp, wo?




Ähnliche Themen: DAU hat Befallsverdacht, Avira blind+mehrere seltsame .exe


  1. Virus infiziert mehrere Systeme, verbreitet sich scheinbar auch übers Netzwerk. Virenprogramme "blind"
    Log-Analyse und Auswertung - 04.03.2015 (17)
  2. Seltsame Fehlermeldung von Avira und PC ist seit neuestem sehr langsam...
    Plagegeister aller Art und deren Bekämpfung - 31.01.2015 (40)
  3. Mehrere Funde von Java-Viren durch Avira
    Log-Analyse und Auswertung - 23.02.2014 (16)
  4. Mehrere Trojaner von Avira gefunden
    Log-Analyse und Auswertung - 10.04.2013 (7)
  5. AVIRA findet mehrere Trojaner
    Plagegeister aller Art und deren Bekämpfung - 23.02.2013 (4)
  6. Avira fand mehrere ADWARE/Yontoo.Gen + Install Core.Gen
    Log-Analyse und Auswertung - 17.02.2013 (8)
  7. Mehrere verschiedene Funde von Avira
    Plagegeister aller Art und deren Bekämpfung - 27.11.2012 (28)
  8. Malwarebytes Fund Backdoor.Agent / Avira mehrere Funde
    Plagegeister aller Art und deren Bekämpfung - 08.08.2012 (3)
  9. Avira hat mehrere Schädlinge gefunden
    Plagegeister aller Art und deren Bekämpfung - 29.06.2012 (1)
  10. Mehrere Trojanerwarnungen in AVIRA und Malwarebytes
    Plagegeister aller Art und deren Bekämpfung - 18.06.2012 (1)
  11. Blind und Taub
    Netzwerk und Hardware - 07.01.2012 (4)
  12. avira meldet mehrere funde mit ADWARE im namen - gefährlich?
    Plagegeister aller Art und deren Bekämpfung - 13.04.2011 (15)
  13. Avira AntiVir Update funktioniert nicht, seltsame Fehlermeldung
    Antiviren-, Firewall- und andere Schutzprogramme - 18.03.2011 (30)
  14. avira meldet mehrere trojaner
    Log-Analyse und Auswertung - 23.08.2010 (40)
  15. Seltsame Fehlermeldung+Avira nicht erkannt von Sicherheitssystem
    Alles rund um Windows - 25.05.2010 (4)
  16. Avira endeckt mehrere Probleme (Swizzor, Malware...)
    Log-Analyse und Auswertung - 12.08.2008 (2)

Zum Thema DAU hat Befallsverdacht, Avira blind+mehrere seltsame .exe - Hallo, ich bin jetzt das erste Mal hier und hatte beim googeln das Gefühl bekommen, hier Kompetenz antreffen zu können? (betrachtet mich wie im Titel gesagt einfach mal als DAU) - DAU hat Befallsverdacht, Avira blind+mehrere seltsame .exe...
Archiv
Du betrachtest: DAU hat Befallsverdacht, Avira blind+mehrere seltsame .exe auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.