![]() |
|
Log-Analyse und Auswertung: Trojaner, Virus?Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #5 |
![]() | ![]() Trojaner, Virus? 2. Teil vom RSIT: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}] JQSIEStartDetectorImpl Class - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-05-29 73728] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - Easy-WebPrint - C:\Programme\Canon\Easy-WebPrint\Toolband.dll [2004-08-26 405504] {FF284F5C-7CF9-4682-8701-D467C1DBB99F} - Übersetzer - C:\Programme\PRMT6\PRMTIE\prmtie.dll [2003-04-23 434176] {31CF9EBE-5755-4A1D-AC25-2834D952D9B4} {DE9C389F-3316-41A7-809B-AA305ED9D922} - AOL Toolbar - C:\Programme\AOL\AOL Toolbar 4.0\aoltb.dll [2007-03-14 970752] {69b6939f-c70d-45c5-9bbd-e2e2cc3dd8e5} {2318C2B1-4965-11d4-9B18-009027A5CD4F} [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "AOLDialer"=C:\Programme\Gemeinsame Dateien\AOL\ACS\AOLDial.exe [2007-06-21 70952] "HostManager"=C:\Programme\Gemeinsame Dateien\AOL\1182878989\ee\AOLSoftware.exe [2006-11-17 50736] "QuickTime Task"=C:\Programme\QuickTime\qttask.exe [2005-01-01 98304] "avgnt"=C:\Programme\Avira\AntiVir Desktop\avgnt.exe [2009-03-19 209153] "PowerStrip"=c:\programme\powerstrip\pstrip.exe [2005-06-28 642560] " Malwarebytes Anti-Malware (reboot)"=C:\Programme\Malwarebytes' Anti-Malware\mbam.exe [2009-09-10 1312080] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "TuneUp MemOptimizer"=C:\Programme\TuneUp Utilities 2006\MemOptimizer.exe [2006-10-02 305152] "H/PC Connection Agent"=C:\Programme\Microsoft ActiveSync\wcescomm.exe [2005-11-15 1204224] "MSMSGS"=C:\Programme\Messenger\msmsgs.exe [2008-04-14 1695232] "AOL Fast Start"=C:\Programme\AOL 9.0 VRa\AOL.EXE [2007-06-21 50480] "ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360] "WAB"=C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Macromedia\Common\4392002619.exe [2009-09-11 3072] "rundll32.exe"= [] C:\Dokumente und Einstellungen\Besitzer\Startmenü\Programme\Autostart WISO Mein Sparbuch heute.lnk - C:\Programme\WISO\Sparbuch 2009-neu\meinsparbuchheute.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent] C:\WINDOWS\system32\Ati2evxx.dll [2004-08-03 86016] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon] C:\WINDOWS\system32\WgaLogon.dll [2007-02-15 236928] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=91000000 "NoDriveAutorun"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "HonorAutoRunSetting"= [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\Programme\Microsoft ActiveSync\rapimgr.exe"="C:\Programme\Microsoft ActiveSync\rapimgr.exe:*:Enabled:ActiveSync RAPI Manager" "C:\Programme\AOL 9.0b\waol.exe"="C:\Programme\AOL 9.0b\waol.exe:*:Enabled:AOL 9.0b" "C:\Programme\AOL 9.0c\waol.exe"="C:\Programme\AOL 9.0c\waol.exe:*:Enabled:AOL 9.0c" "C:\Programme\Gemeinsame Dateien\aol\ACS\AOLDial.exe"="C:\Programme\Gemeinsame Dateien\aol\ACS\AOLDial.exe:*:Enabled:AOL" "C:\Programme\Gemeinsame Dateien\aol\ACS\AOLacsd.exe"="C:\Programme\Gemeinsame Dateien\aol\ACS\AOLacsd.exe:*:Enabled:AOL" "C:\Programme\AOL 9.0e\waol.exe"="C:\Programme\AOL 9.0e\waol.exe:*:Enabled:AOL" "C:\Programme\Gemeinsame Dateien\aol\1182878989\ee\aolsoftware.exe"="C:\Programme\Gemeinsame Dateien\aol\1182878989\ee\aolsoftware.exe:*:Enabled:AOL Shared Components" "C:\Programme\AOL 9.0 VR\waol.exe"="C:\Programme\AOL 9.0 VR\waol.exe:*:Enabled:AOL" "C:\Programme\Gemeinsame Dateien\aol\TopSpeed\3.0\aoltpsd3.exe"="C:\Programme\Gemeinsame Dateien\aol\TopSpeed\3.0\aoltpsd3.exe:*:Enabled:AOL TopSpeed" "C:\Programme\Gemeinsame Dateien\aol\Loader\aolload.exe"="C:\Programme\Gemeinsame Dateien\aol\Loader\aolload.exe:*:Enabled:AOL Loader" "C:\Programme\Gemeinsame Dateien\aol\System Information\sinf.exe"="C:\Programme\Gemeinsame Dateien\aol\System Information\sinf.exe:*:Enabled:AOL System Information" "C:\Programme\AOL 9.0 VRa\waol.exe"="C:\Programme\AOL 9.0 VRa\waol.exe:*:Enabled:AOL" "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "C:\WINDOWS\Explorer.EXE"="C:\WINDOWS\Explorer.EXE:*:Enabled:enable" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\Programme\Gemeinsame Dateien\aol\ACS\AOLacsd.exe"="C:\Programme\Gemeinsame Dateien\aol\ACS\AOLacsd.exe:*:Enabled:AOL" "C:\Programme\Gemeinsame Dateien\aol\ACS\AOLDial.exe"="C:\Programme\Gemeinsame Dateien\aol\ACS\AOLDial.exe:*:Enabled:AOL" "C:\Programme\AOL 9.0e\waol.exe"="C:\Programme\AOL 9.0e\waol.exe:*:Enabled:AOL" "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{566db190-bf38-11da-908f-000a3a5c4e11}] shell\AutoRun\command - E:\preinst.exe ======File associations====== .scr - open - "%1" %* ======List of files/folders created in the last 1 months====== 2009-09-11 21:19:24 ----A---- C:\WINDOWS\OEWABLog.txt 2009-09-11 21:18:48 ----D---- C:\WINDOWS\Prefetch 2009-09-11 20:35:58 ----D---- C:\WINDOWS\LastGood.Tmp 2009-09-11 20:31:15 ----A---- C:\WINDOWS\setuplog.txt 2009-09-11 20:28:20 ----D---- C:\WINDOWS\l2schemas 2009-09-11 20:28:19 ----D---- C:\WINDOWS\system32\de 2009-09-11 20:11:24 ----D---- C:\WINDOWS\network diagnostic 2009-09-11 18:44:20 ----HDC---- C:\WINDOWS\ie8 2009-09-11 18:09:56 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$ 2009-09-11 18:08:38 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$ 2009-09-11 18:07:44 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$ 2009-09-11 16:54:19 ----D---- C:\rsit 2009-09-11 16:53:09 ----D---- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Malwarebytes 2009-09-11 16:52:52 ----D---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes 2009-09-11 16:52:51 ----D---- C:\Programme\Malwarebytes' Anti-Malware 2009-09-11 16:49:51 ----D---- C:\Programme\CCleaner 2009-09-09 17:22:27 ----D---- C:\Programme\Trend Micro 2009-09-05 11:07:16 ----A---- C:\WINDOWS\rasqervy.dll 2009-09-05 11:07:14 ----A---- C:\WINDOWS\sdfinacs.dll 2009-09-05 11:04:32 ----A---- C:\WINDOWS\sdfixwcs.dll 2009-09-03 16:35:23 ----A---- C:\WINDOWS\wuasirvy.dll 2009-08-26 18:00:58 ----HDC---- C:\WINDOWS\$NtUninstallKB970653-v3$ 2009-08-23 11:59:00 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$ 2009-08-14 17:04:59 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$ 2009-08-14 17:04:51 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$ 2009-08-14 17:04:44 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$ 2009-08-14 17:04:37 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$ 2009-08-14 17:04:24 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9L$ 2009-08-14 17:04:19 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$ 2009-08-14 17:04:11 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$ 2009-08-14 17:01:32 ----HDC---- C:\WINDOWS\$NtUninstallKB958470$ 2009-08-14 17:01:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$ ======List of files/folders modified in the last 1 months====== 2009-12-31 17:21:20 ----A---- C:\WINDOWS\system32\oeminfo.ini 2009-09-11 21:38:01 ----A---- C:\WINDOWS\win.ini 2009-09-11 21:28:32 ----D---- C:\WINDOWS 2009-09-11 21:23:27 ----D---- C:\WINDOWS\system32 2009-09-11 21:23:18 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2009-09-11 21:22:07 ----D---- C:\WINDOWS\Temp 2009-09-11 21:21:16 ----D---- C:\WINDOWS\Debug 2009-09-11 21:20:15 ----D---- C:\WINDOWS\system32\CatRoot2 2009-09-11 21:18:20 ----D---- C:\WINDOWS\system32\Setup 2009-09-11 21:18:20 ----D---- C:\WINDOWS\AppPatch 2009-09-11 21:18:20 ----D---- C:\Programme\messenger 2009-09-11 21:18:19 ----D---- C:\WINDOWS\system32\wbem 2009-09-11 21:18:18 ----RSD---- C:\WINDOWS\Fonts 2009-09-11 21:18:11 ----D---- C:\WINDOWS\system32\drivers 2009-09-11 21:18:11 ----D---- C:\WINDOWS\system32\de-de 2009-09-11 21:18:10 ----RSHDC---- C:\WINDOWS\system32\dllcache 2009-09-11 21:18:10 ----HD---- C:\WINDOWS\inf 2009-09-11 21:18:10 ----D---- C:\WINDOWS\Media 2009-09-11 21:18:10 ----D---- C:\WINDOWS\Help 2009-09-11 21:18:10 ----D---- C:\Programme\Internet Explorer 2009-09-11 21:17:30 ----A---- C:\WINDOWS\SchedLgU.Txt 2009-09-11 20:50:15 ----D---- C:\WINDOWS\system32\CatRoot 2009-09-11 20:49:23 ----D---- C:\Programme\Outlook Express 2009-09-11 20:41:29 ----D---- C:\WINDOWS\Security 2009-09-11 20:30:14 ----D---- C:\WINDOWS\WinSxS 2009-09-11 20:29:44 ----D---- C:\WINDOWS\ime 2009-09-11 20:28:37 ----D---- C:\WINDOWS\system32\usmt 2009-09-11 20:28:18 ----D---- C:\WINDOWS\system32\bits 2009-09-11 20:28:17 ----D---- C:\WINDOWS\PeerNet 2009-09-11 20:28:16 ----D---- C:\Programme\Movie Maker 2009-09-11 20:17:39 ----D---- C:\WINDOWS\system32\Restore 2009-09-11 20:17:39 ----D---- C:\WINDOWS\system32\npp 2009-09-11 20:17:34 ----D---- C:\WINDOWS\msagent 2009-09-11 20:17:29 ----D---- C:\WINDOWS\srchasst 2009-09-11 20:17:26 ----D---- C:\Programme\NetMeeting 2009-09-11 20:17:21 ----D---- C:\WINDOWS\system32\Com 2009-09-11 20:17:13 ----D---- C:\Programme\Windows Media Player 2009-09-11 20:17:10 ----D---- C:\Programme\Windows NT 2009-09-11 20:17:01 ----D---- C:\Programme\Gemeinsame Dateien\System 2009-09-11 20:16:20 ----D---- C:\WINDOWS\system32\oobe 2009-09-11 20:16:10 ----D---- C:\WINDOWS\system 2009-09-11 20:07:15 ----D---- C:\WINDOWS\system32\ReinstallBackups 2009-09-11 20:06:29 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$ 2009-09-11 19:56:31 ----D---- C:\WINDOWS\EHome 2009-09-11 18:42:07 ----D---- C:\WINDOWS\Minidump 2009-09-11 18:36:15 ----D---- C:\My Music 2009-09-11 18:33:26 ----D---- C:\Programme\PowerStrip 2009-09-11 18:09:45 ----HD---- C:\WINDOWS\$hf_mig$ 2009-09-11 17:45:40 ----D---- C:\WINDOWS\lhsp 2009-09-11 17:42:47 ----D---- C:\Eigene Fotos 2009-09-11 16:52:51 ----RD---- C:\Programme 2009-09-09 19:55:33 ----D---- C:\Programme\Yahoo! 2009-09-09 19:54:54 ----D---- C:\Programme\Bluefish Games 2009-09-09 19:53:35 ----D---- C:\MW4U 2009-09-09 19:52:49 ----D---- C:\WINDOWS\system32\MAGIX 2009-09-09 17:32:38 ----SD---- C:\WINDOWS\Downloaded Program Files 2009-09-09 17:30:32 ----D---- C:\Programme\Eazel-DE 2009-09-07 19:20:32 ----D---- C:\WINDOWS\Microsoft.NET 2009-09-05 19:55:27 ----SHD---- C:\WINDOWS\Installer 2009-09-05 19:55:27 ----SHD---- C:\Config.Msi 2009-09-05 18:33:27 ----D---- C:\Programme\Mozilla Firefox 2009-09-02 16:12:11 ----D---- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Macromedia 2009-08-30 08:53:31 ----A---- C:\WINDOWS\NeroDigital.ini 2009-08-28 23:38:20 ----A---- C:\WINDOWS\system32\MRT.exe 2009-08-28 11:06:55 ----D---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\AOL 2009-08-23 10:51:16 ----RSD---- C:\WINDOWS\assembly 2009-08-14 17:01:34 ----D---- C:\WINDOWS\ServicePackFiles 2009-08-13 17:31:37 ----A---- C:\WINDOWS\ModemLog_GPRS via COM.txt ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R1 AmdK7;AMD K7-Prozessortreiber; C:\WINDOWS\System32\DRIVERS\amdk7.sys [2008-04-14 41856] R1 avgio;avgio; \??\C:\Programme\Avira\AntiVir Desktop\avgio.sys [] R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2009-04-29 96104] R1 MPFIREWL;MPFIREWL; C:\WINDOWS\System32\Drivers\MpFirewall.sys [2003-10-31 55936] R1 PCLEPCI;PCLEPCI; \??\C:\WINDOWS\System32\drivers\pclepci.sys [] R1 SSHDRV85;SSHDRV85; \??\C:\WINDOWS\System32\drivers\SSHDRV85.sys [] R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2009-06-09 28520] R1 WS2IFSL;Windows Socket 2.0 Non-IFS-Dienstanbieter-Unterstützungsumgebung; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2002-08-29 12032] R2 ACEDRV05;ACEDRV05; \??\C:\WINDOWS\System32\drivers\ACEDRV05.sys [] R2 ASCTRM;ASCTRM; C:\WINDOWS\system32\drivers\ASCTRM.sys [2005-01-01 8552] R2 Aspi32;Aspi32; C:\WINDOWS\System32\drivers\aspi32.sys [2002-07-17 16512] R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2009-08-05 55656] R2 PStrip;PStrip; C:\WINDOWS\system32\drivers\PStrip.sys [2004-11-09 21968] R2 rttfsfilt;R-TT FS Filter; C:\WINDOWS\System32\DRIVERS\rttfsfilt.sys [2004-02-13 27936] R3 Afc;PPdus ASPI Shell; C:\WINDOWS\system32\drivers\Afc.sys [2005-02-23 11776] R3 Arp1394;1394-ARP-Clientprotokoll; C:\WINDOWS\System32\DRIVERS\arp1394.sys [2008-04-13 60800] R3 ati2mtag;ati2mtag; C:\WINDOWS\System32\DRIVERS\ati2mtag.sys [2004-08-03 768512] R3 FETNDIS;VIA Rhine Family Fast Ethernet Adapter Driver; C:\WINDOWS\System32\DRIVERS\fetnd5b.sys [2002-09-11 40448] R3 L8042Kbd;Logitech SetPoint Keyboard Driver; C:\WINDOWS\System32\DRIVERS\L8042Kbd.sys [2004-06-08 13105] R3 L8042mou;Logitech SetPoint PS/2 Mouse Filter Driver; C:\WINDOWS\System32\DRIVERS\L8042mou.Sys [2004-06-08 54817] R3 LMouKE;Logitech SetPoint Mouse Filter Driver; C:\WINDOWS\System32\DRIVERS\LMouKE.Sys [2004-06-08 71533] R3 MODEMCSA;Unimodem-Datenstromfiltergerät; C:\WINDOWS\system32\drivers\MODEMCSA.sys [2001-08-17 16128] R3 MxlW2k;MxlW2k; C:\WINDOWS\system32\drivers\MxlW2k.sys [2006-06-25 28352] R3 NIC1394;1394-Netzwerktreiber; C:\WINDOWS\System32\DRIVERS\nic1394.sys [2008-04-13 61824] R3 Ptserial;W2K Pctel Serial Device Driver; C:\WINDOWS\System32\DRIVERS\ptserial.sys [2002-07-09 135980] R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2002-08-29 5888] R3 usbehci;Miniporttreiber für erweiterten Microsoft USB 2.0-Hostcontroller; C:\WINDOWS\System32\DRIVERS\usbehci.sys [2008-04-13 30208] R3 usbhub;Microsoft USB-Standardhubtreiber; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2008-04-13 59520] R3 usbstor;USB-Massenspeichertreiber; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-13 26368] R3 usbuhci;Miniporttreiber für universellen Microsoft USB-Hostcontroller; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-13 20608] R3 VIAudio;VIA AC'97 Audio Controller (WDM); C:\WINDOWS\system32\drivers\viaudio.sys [2002-09-15 64128] R3 wanatw;WAN Miniport (ATW); C:\WINDOWS\System32\DRIVERS\wanatw4.sys [2003-01-10 33588] S1 kbdhid;Tastatur-HID-Treiber; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720] S3 AVMUNET;AVM FRITZ!Box; C:\WINDOWS\System32\DRIVERS\avmunet.sys [2005-02-22 15104] S3 BtAudio;Bluetooth Audio; C:\WINDOWS\System32\DRIVERS\btaudio.sys [] S3 BTDriver;Bluetooth Virtual Communications Driver; C:\WINDOWS\System32\DRIVERS\btport.sys [] S3 BTWDNDIS;Bluetooth LAN Access Server; C:\WINDOWS\System32\DRIVERS\btwdndis.sys [] S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [] S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [2008-04-13 17024] S3 HidUsb;Microsoft HID Class-Treiber; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368] S3 mouhid;Maus-HID-Treiber; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-08-18 12288] S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504] S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\System32\DRIVERS\NABTSFEC.sys [2008-04-13 85248] S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [2008-04-13 10880] S3 nv;nv; C:\WINDOWS\System32\DRIVERS\nv4_mini.sys [2004-08-04 1897408] S3 PcdrNt;PcdrNt; C:\WINDOWS\System32\drivers\PcdrNt.sys [2000-03-22 44192] S3 PDNMp50;PDNMp50 NDIS Protocol Driver; \??\C:\WINDOWS\system32\drivers\PDNMp50.sys [] S3 PDNSp50;PDNSp50 NDIS Protocol Driver; \??\C:\WINDOWS\system32\drivers\PDNSp50.sys [] S3 rtl8139;NT-Treiber für Realtek RTL8139(A/B/C)-basierten PCI-Fast Ethernet-Adapter; C:\WINDOWS\System32\DRIVERS\RTL8139.SYS [2004-08-04 20992] S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\System32\DRIVERS\SLIP.sys [2008-04-13 11136] S3 streamip;BDA IPSink; C:\WINDOWS\System32\DRIVERS\StreamIP.sys [2008-04-13 15232] S3 usb_rndisx;USB RNDIS Adapter; C:\WINDOWS\System32\DRIVERS\usb8023x.sys [2005-10-21 12800] S3 usbccgp;Microsoft Standard-USB-Haupttreiber; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2008-04-13 32128] S3 usbprint;Microsoft USB-Druckerklasse; C:\WINDOWS\System32\DRIVERS\usbprint.sys [2008-04-13 25856] S3 usbscan;USB-Scannertreiber; C:\WINDOWS\System32\DRIVERS\usbscan.sys [2008-04-13 15104] S3 usbser;Siemens SX1; C:\WINDOWS\System32\DRIVERS\usbser.sys [2008-04-13 26112] S3 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\System32\DRIVERS\wceusbsh.sys [2005-06-14 104576] S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\System32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200] S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568] S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944] S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys [] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AntiVirMailService;Avira AntiVir MailGuard; C:\Programme\Avira\AntiVir Desktop\avmailc.exe [2009-06-09 194817] R2 AntiVirSchedulerService;Avira AntiVir Planer; C:\Programme\Avira\AntiVir Desktop\sched.exe [2009-06-09 108289] R2 AntiVirService;Avira AntiVir Guard; C:\Programme\Avira\AntiVir Desktop\avguard.exe [2009-08-05 185089] R2 AntiVirWebService;Avira AntiVir WebGuard; C:\Programme\Avira\AntiVir Desktop\AVWEBGRD.EXE [2009-06-09 434945] R2 AOL ACS;AOL Connectivity Service; C:\Programme\Gemeinsame Dateien\AOL\ACS\AOLAcsd.exe [2006-10-23 46640] R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\System32\Ati2evxx.exe [2004-08-03 389120] R2 AVM IGD CTRL Service;AVM IGD CTRL Service; C:\Programme\FRITZ!DSL\IGDCTRL.EXE [2005-11-21 81920] R2 CCALib8;Canon Camera Access Library 8; C:\Programme\Canon\CAL\CALMAIN.exe [2007-01-31 96370] R2 JavaQuickStarterService;Java Quick Starter; C:\Programme\Java\jre6\bin\jqs.exe [2009-05-29 152984] R2 MpfService;McAfee.com Personal Firewall Service; C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe [2003-10-31 184320] R2 O&O Defrag;O&O Defrag; C:\WINDOWS\system32\oodag.exe [2007-01-12 707344] R2 UxTuneUp;TuneUp Designerweiterung; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336] R2 WANMiniportService;WAN Miniport (ATW) Service; C:\WINDOWS\wanmpsvc.exe [2003-08-27 65536] S2 AOLService;AOL Privacy Protection Service; C:\PROGRA~1\GEMEIN~1\aol\AOLPRI~1\\aolserv.exe [2004-06-29 184373] S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2004-08-03 516096] S3 aspnet_state;ASP.NET-Zustandsdienst; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312] S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632] S3 de_serv;AVM FRITZ!web Routing Service; C:\Programme\Gemeinsame Dateien\AVM\de_serv.exe [2005-11-21 315392] S3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance; C:\MAGIX\Common\Database\bin\fbserver.exe [2005-11-17 1527900] S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104] S3 gusvc;Google Software Updater; C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe [] S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664] S3 SandraDataSrv;Sandra Data Service; C:\Programme\SiSoftware\SiSoftware Sandra Lite 2005.SR1\RpcDataSrv.exe [2005-01-29 173040] S3 SandraTheSrv;Sandra Service; C:\Programme\SiSoftware\SiSoftware Sandra Lite 2005.SR1\RpcSandraSrv.exe [2005-01-29 1033192] S3 UPnPService;UPnPService; C:\Programme\Gemeinsame Dateien\MAGIX Shared\UPnPService\UPnPService.exe [2006-12-14 544768] S3 WMPNetworkSvc;Windows Media Player-Netzwerkfreigabedienst; C:\Programme\Windows Media Player\WMPNetwk.exe [2006-11-03 920576] S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336] S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096] -----------------EOF----------------- |
Themen zu Trojaner, Virus? |
10 tan, abgesicherten modus, adobe, antivir guard, avg, avira, besitzer, bho, canon, desktop, dsl, e-banking, einstellungen, fast start, firewall, google, helper, hijack, hijackthis, hkus\s-1-5-18, internet, internet explorer, logfile, magix, object, pdf, plug-in, privacy protection, programme, sparbuch, starten., system, systemcheck, tan's, trojaner, virus, windows, wiso |