Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: img068438960802010.jpg.scr Troja?

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 17.05.2010, 18:17   #31
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
img068438960802010.jpg.scr Troja? - Standard

img068438960802010.jpg.scr Troja?



Ich seh bei GMER zB keine Kennzeichnung für das tatsächliche Ende des Log (EOF=ed of file). Dann diese vielen Zeilen wo fach nur ".text" steht (mit WindowBlinds, ob das typisch dafür ist weiß ich aber nicht)
Sind jetzt noch Probleme am Rechner oder andere Auffälligkeiten da?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 17.05.2010, 18:20   #32
GJM
 
img068438960802010.jpg.scr Troja? - Standard

img068438960802010.jpg.scr Troja?



hat mich auch gwundert aber wenn ich die codebox kopier und z.b in word einfüge kommt alles so wie es in GMER aufgelistet war
__________________


Alt 17.05.2010, 18:25   #33
GJM
 
img068438960802010.jpg.scr Troja? - Standard

img068438960802010.jpg.scr Troja?



bisher sind keine probleme mehr gekommen (auser Imgrd.exe was ja geklärt ist )

aber n EOF find ich in word auch nicht¿¿
hab aber alles kopiert was GMER ausgespuckt hat (geht ja nicht anders).
hoffe ich hab nix falsch gemacht.

lass ihn aber nochmal durchrennen zur sicherheit^^
oder is das nicht nötig?
__________________

Alt 17.05.2010, 19:52   #34
GJM
 
img068438960802010.jpg.scr Troja? - Standard

img068438960802010.jpg.scr Troja?



Fehler gefunden.
meine Dummheit mal wieder
hier ist der Rest... (könnte sein das die obersten schon in der Unteren Codebox stehn.
Code:
ATTFilter
.text                                                                                                                                 C:\Windows\Explorer.EXE[3908] USER32.dll!SetWindowPlacement                                                                                                   75937963 5 Bytes  JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Windows\Explorer.EXE[3908] USER32.dll!MoveWindow                                                                                                           7593989F 5 Bytes  JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Windows\Explorer.EXE[3908] USER32.dll!SetWindowPos                                                                                                         759435E3 5 Bytes  JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Windows\Explorer.EXE[3908] USER32.dll!DeferWindowPos                                                                                                       7594467F 5 Bytes  JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Windows\Explorer.EXE[3908] USER32.dll!DrawTextW                                                                                                            759497D3 5 Bytes  JMP 66043768 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Windows\Explorer.EXE[3908] USER32.dll!EndPaint                                                                                                             7594A28F 5 Bytes  JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Windows\Explorer.EXE[3908] USER32.dll!BeginPaint                                                                                                           7594A2A3 5 Bytes  JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Windows\Explorer.EXE[3908] USER32.dll!GetWindowRect                                                                                                        75950E21 5 Bytes  JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Windows\Explorer.EXE[3908] USER32.dll!GetWindowPlacement                                                                                                   759638E3 5 Bytes  JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] USER32.dll!SetWindowPlacement                                                             75937963 5 Bytes  JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] USER32.dll!MoveWindow                                                                     7593989F 5 Bytes  JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] USER32.dll!SetWindowPos                                                                   759435E3 5 Bytes  JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] USER32.dll!DeferWindowPos                                                                 7594467F 5 Bytes  JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] USER32.dll!EndPaint                                                                       7594A28F 5 Bytes  JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] USER32.dll!BeginPaint                                                                     7594A2A3 5 Bytes  JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] USER32.dll!GetWindowRect                                                                  75950E21 5 Bytes  JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] USER32.dll!GetWindowPlacement                                                             759638E3 5 Bytes  JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Program Files\Avira\AntiVir Desktop\avgnt.exe[4016] USER32.dll!SetWindowPlacement                                                                          75937963 5 Bytes  JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Program Files\Avira\AntiVir Desktop\avgnt.exe[4016] USER32.dll!MoveWindow                                                                                  7593989F 5 Bytes  JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Program Files\Avira\AntiVir Desktop\avgnt.exe[4016] USER32.dll!SetWindowPos                                                                                759435E3 5 Bytes  JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Program Files\Avira\AntiVir Desktop\avgnt.exe[4016] USER32.dll!DeferWindowPos                                                                              7594467F 5 Bytes  JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Program Files\Avira\AntiVir Desktop\avgnt.exe[4016] USER32.dll!EndPaint                                                                                    7594A28F 5 Bytes  JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Program Files\Avira\AntiVir Desktop\avgnt.exe[4016] USER32.dll!BeginPaint                                                                                  7594A2A3 5 Bytes  JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Program Files\Avira\AntiVir Desktop\avgnt.exe[4016] USER32.dll!GetWindowRect                                                                               75950E21 5 Bytes  JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\Program Files\Avira\AntiVir Desktop\avgnt.exe[4016] USER32.dll!GetWindowPlacement                                                                          759638E3 5 Bytes  JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\hp\kbd\kbd.exe[4252] USER32.dll!SetWindowPlacement                                                                                                         75937963 5 Bytes  JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\hp\kbd\kbd.exe[4252] USER32.dll!MoveWindow                                                                                                                 7593989F 5 Bytes  JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\hp\kbd\kbd.exe[4252] USER32.dll!SetWindowPos                                                                                                               759435E3 5 Bytes  JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\hp\kbd\kbd.exe[4252] USER32.dll!DeferWindowPos                                                                                                             7594467F 5 Bytes  JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\hp\kbd\kbd.exe[4252] USER32.dll!EndPaint                                                                                                                   7594A28F 5 Bytes  JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\hp\kbd\kbd.exe[4252] USER32.dll!BeginPaint                                                                                                                 7594A2A3 5 Bytes  JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\hp\kbd\kbd.exe[4252] USER32.dll!GetWindowRect                                                                                                              75950E21 5 Bytes  JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text                                                                                                                                 C:\hp\kbd\kbd.exe[4252] USER32.dll!GetWindowPlacement                                                                                                         759638E3 5 Bytes  JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)

---- Kernel IAT/EAT - GMER 1.0.15 ----

IAT                                                                                                                                   \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortWritePortUchar]                                                                                     [8060D6D2] \SystemRoot\System32\Drivers\spfz.sys
IAT                                                                                                                                   \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortReadPortUchar]                                                                                      [8060D040] \SystemRoot\System32\Drivers\spfz.sys
IAT                                                                                                                                   \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortWritePortBufferUshort]                                                                              [8060D7FC] \SystemRoot\System32\Drivers\spfz.sys
IAT                                                                                                                                   \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortReadPortUshort]                                                                                     [8060D0BE] \SystemRoot\System32\Drivers\spfz.sys
IAT                                                                                                                                   \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortReadPortBufferUshort]                                                                               [8060D13C] \SystemRoot\System32\Drivers\spfz.sys
IAT                                                                                                                                   \SystemRoot\system32\DRIVERS\i8042prt.sys[HAL.dll!READ_PORT_UCHAR]                                                                                            [8061D048] \SystemRoot\System32\Drivers\spfz.sys
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortNotification]                                                                                    F73BFF33
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortWritePortUchar]                                                                                  B85F0B75
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortWritePortUlong]                                                                                  FFFFFFFE
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortGetPhysicalAddress]                                                                              08C25D5E
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortConvertPhysicalAddressToUlong]                                                                   5D8B5300
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortGetScatterGatherList]                                                                            74DF3B0C
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortReadPortUchar]                                                                                   01FB8311
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortStallExecution]                                                                                  5F5B0C74
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortGetParentBusType]                                                                                FFFFFEB8
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortRequestCallback]                                                                                 C25D5EFF
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortWritePortBufferUshort]                                                                           7E390008
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortGetUnCachedExtension]                                                                            C7077524
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortCompleteRequest]                                                                                 81642446
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortMoveMemory]                                                                                      7E398D0C
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortCompleteAllActiveRequests]                                                                       C7077528
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortReleaseRequestSenseIrb]                                                                          81902846
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortBuildRequestSenseIrb]                                                                            468B8D0C
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortReadPortUshort]                                                                                  244E8B2C
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortReadPortBufferUshort]                                                                            7468016A
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortInitialize]                                                                                      500000FA
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortGetDeviceBase]                                                                                   C73BD1FF
IAT                                                                                                                                   \SystemRoot\System32\Drivers\akywmzmu.SYS[ataport.SYS!AtaPortDeviceStateChange]                                                                               5F5B0C75

---- User IAT/EAT - GMER 1.0.15 ----

IAT                                                                                                                                   C:\Windows\system32\wuauclt.exe[636] @ C:\Windows\system32\SHELL32.dll [USER32.dll!GetWindowDC]                                                               [6602A2F5] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\ehome\ehmsas.exe[808] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA]                                                               [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\ehome\ehmsas.exe[808] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW]                                                               [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\ehome\ehmsas.exe[808] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA]                                                                 [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\ehome\ehmsas.exe[808] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW]                                                                 [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\ehome\ehmsas.exe[808] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryW]                                                                  [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\ehome\ehmsas.exe[808] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryA]                                                                  [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\Windows Defender\MSASCui.exe[3008] @ C:\Windows\system32\SHELL32.dll [USER32.dll!GetWindowDC]                                                [6602A2F5] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\Common Files\SolidWorks Installations-Manager\Scheduler\sldIMScheduler.exe[3208] @ C:\Windows\system32\SHELL32.dll [USER32.dll!GetWindowDC]  [6602A2F5] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\HP\HP Software Update\hpwuSchd2.exe[3216] @ C:\Windows\system32\SHELL32.dll [USER32.dll!GetWindowDC]                                         [6602A2F5] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\RtHDVCpl.exe[3220] @ C:\Windows\system32\SHELL32.dll [USER32.dll!GetWindowDC]                                                                      [6602A2F5] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\schtasks.exe[3236] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA]                                                         [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\schtasks.exe[3236] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW]                                                         [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\schtasks.exe[3236] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA]                                                           [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\schtasks.exe[3236] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW]                                                           [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\schtasks.exe[3236] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryW]                                                            [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\schtasks.exe[3236] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryA]                                                            [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\schtasks.exe[3236] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA]                                                          [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\schtasks.exe[3236] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW]                                                          [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\schtasks.exe[3236] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!LoadLibraryA]                                                           [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\schtasks.exe[3236] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!LoadLibraryW]                                                           [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\schtasks.exe[3236] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryW]                                                         [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\schtasks.exe[3236] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryA]                                                         [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\schtasks.exe[3236] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW]                                                          [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\schtasks.exe[3236] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA]                                                          [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe[3336] @ C:\Windows\system32\SHELL32.dll [USER32.dll!GetWindowDC]                             [6602A2F5] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\Common Files\Java\Java Update\jusched.exe[3380] @ C:\Windows\system32\SHELL32.dll [USER32.dll!GetWindowDC]                                   [6602A2F5] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\System32\wpcumi.exe[3392] @ C:\Windows\system32\SHELL32.dll [USER32.dll!GetWindowDC]                                                               [6602A2F5] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\ehome\ehtray.exe[3516] @ C:\Windows\system32\SHELL32.dll [USER32.dll!GetWindowDC]                                                                  [6602A2F5] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA]                            [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW]                            [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA]                              [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW]                              [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW]                             [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA]                             [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] @ C:\Windows\system32\shell32.dll [KERNEL32.dll!LoadLibraryW]                             [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] @ C:\Windows\system32\shell32.dll [KERNEL32.dll!LoadLibraryA]                             [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] @ C:\Windows\system32\shell32.dll [USER32.dll!GetWindowDC]                                [6602A2F5] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryW]                               [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryA]                               [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!LoadLibraryA]                             [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA]                             [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW]                             [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\taskeng.exe[3720] @ C:\Windows\system32\SHELL32.dll [USER32.dll!GetWindowDC]                                                              [6602A2F5] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\conime.exe[3768] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA]                                                           [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\conime.exe[3768] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW]                                                           [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\conime.exe[3768] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA]                                                             [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\conime.exe[3768] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW]                                                             [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\conime.exe[3768] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryW]                                                              [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\conime.exe[3768] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryA]                                                              [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\system32\Dwm.exe[3864] @ C:\Windows\system32\ole32.dll [USER32.dll!GetSysColor]                                                                    [66043493] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [KERNEL32.dll!LoadLibraryA]                                                                           [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [KERNEL32.dll!LoadLibraryW]                                                                           [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [USER32.dll!LoadImageW]                                                                               [66005BB2] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [USER32.dll!GetWindowDC]                                                                              [6602A2F5] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [USER32.dll!UpdateLayeredWindow]                                                                      [660420BC] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdiplusShutdown]                                                                         [739A7817] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCloneImage]                                                                          [739FA86D] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDrawImageRectI]                                                                      [739ABB22] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipSetInterpolationMode]                                                                [7399F695] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdiplusStartup]                                                                          [739A75E9] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateFromHDC]                                                                       [7399E7CA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateBitmapFromStreamICM]                                                           [739D8395] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateBitmapFromStream]                                                              [739ADA60] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipGetImageHeight]                                                                      [7399FFFA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipGetImageWidth]                                                                       [7399FF61] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDisposeImage]                                                                        [739971CF] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipLoadImageFromFileICM]                                                                [73A2CAE2] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipLoadImageFromFile]                                                                   [739CC8D8] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDeleteGraphics]                                                                      [7399D968] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipFree]                                                                                [73996853] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipAlloc]                                                                               [7399687E] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipSetCompositingMode]                                                                  [739A2AD1] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA]                                                                  [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW]                                                                  [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA]                                                                    [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW]                                                                    [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!LoadLibraryA]                                                                     [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!LoadLibraryW]                                                                     [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!LoadLibraryA]                                                                    [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!LoadLibraryW]                                                                    [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!LoadLibraryA]                                                                    [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!LoadLibraryW]                                                                    [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW]                                                                   [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA]                                                                   [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW]                                                                   [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA]                                                                   [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\SHELL32.dll [USER32.dll!GetWindowDC]                                                                      [6602A2F5] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\SHELL32.dll [USER32.dll!LoadImageW]                                                                       [66005BB2] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryW]                                                                     [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryA]                                                                     [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\CRYPT32.dll [KERNEL32.dll!LoadLibraryA]                                                                   [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!LoadLibraryA]                                                                   [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA]                                                                   [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW]                                                                   [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!LoadLibraryA]                                                                    [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!LoadLibraryW]                                                                    [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
         

Alt 17.05.2010, 19:56   #35
GJM
 
img068438960802010.jpg.scr Troja? - Standard

img068438960802010.jpg.scr Troja?



und der (Definitiv) Letzte Teil
Code:
ATTFilter
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\SAMLIB.dll [KERNEL32.dll!LoadLibraryA]                                                                    [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryW]                                                                  [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryA]                                                                  [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\WININET.dll [KERNEL32.dll!LoadLibraryW]                                                                   [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\system32\WININET.dll [KERNEL32.dll!LoadLibraryA]                                                                   [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Windows\Explorer.EXE[3908] @ C:\Windows\System32\IPHLPAPI.DLL [KERNEL32.dll!LoadLibraryA]                                                                  [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA]                            [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW]                            [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA]                              [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW]                              [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW]                             [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA]                             [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] @ C:\Windows\system32\shell32.dll [KERNEL32.dll!LoadLibraryW]                             [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] @ C:\Windows\system32\shell32.dll [KERNEL32.dll!LoadLibraryA]                             [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] @ C:\Windows\system32\shell32.dll [USER32.dll!GetWindowDC]                                [6602A2F5] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryW]                               [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryA]                               [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!LoadLibraryA]                             [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA]                             [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW]                             [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!LoadLibraryA]                              [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!LoadLibraryW]                              [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryW]                            [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[3936] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryA]                            [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\Program Files\Avira\AntiVir Desktop\avgnt.exe[4016] @ C:\Windows\system32\SHELL32.dll [USER32.dll!GetWindowDC]                                             [6602A2F5] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA]                                                                        [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW]                                                                        [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA]                                                                          [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW]                                                                          [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW]                                                                         [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA]                                                                         [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\SHELL32.dll [USER32.dll!GetWindowDC]                                                                            [6602A2F5] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW]                                                                         [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA]                                                                         [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryW]                                                                           [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryA]                                                                           [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\WININET.dll [KERNEL32.dll!LoadLibraryW]                                                                         [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\WININET.dll [KERNEL32.dll!LoadLibraryA]                                                                         [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!LoadLibraryA]                                                                         [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA]                                                                         [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW]                                                                         [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\ws2_32.dll [KERNEL32.dll!LoadLibraryA]                                                                          [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\ws2_32.dll [KERNEL32.dll!LoadLibraryW]                                                                          [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryW]                                                                        [6604206A] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
IAT                                                                                                                                   C:\hp\kbd\kbd.exe[4252] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryA]                                                                        [66041FFF] C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)

---- Devices - GMER 1.0.15 ----

Device                                                                                                                                \FileSystem\Ntfs \Ntfs                                                                                                                                        850FA1F8
Device                                                                                                                                \FileSystem\fastfat \FatCdrom                                                                                                                                 869161F8
Device                                                                                                                                \Driver\sptd \Device\87921635                                                                                                                                 spfz.sys
Device                                                                                                                                \Driver\volmgr \Device\VolMgrControl                                                                                                                          850F61F8
Device                                                                                                                                \Driver\usbohci \Device\USBPDO-0                                                                                                                              86CEA1F8
Device                                                                                                                                \Driver\usbehci \Device\USBPDO-1                                                                                                                              86CE91F8
Device                                                                                                                                \Driver\USBSTOR \Device\00000061                                                                                                                              87E9C1F8
Device                                                                                                                                \Driver\USBSTOR \Device\00000062                                                                                                                              87E9C1F8
Device                                                                                                                                \Driver\USBSTOR \Device\00000063                                                                                                                              87E9C1F8
Device                                                                                                                                \Driver\volmgr \Device\HarddiskVolume1                                                                                                                        850F61F8
Device                                                                                                                                \Driver\nvstor32 \Device\00000058                                                                                                                             850F91F8
Device                                                                                                                                \Driver\USBSTOR \Device\00000064                                                                                                                              87E9C1F8
Device                                                                                                                                \Driver\volmgr \Device\HarddiskVolume2                                                                                                                        850F61F8
Device                                                                                                                                \Driver\cdrom \Device\CdRom0                                                                                                                                  86D9B1F8
Device                                                                                                                                \Driver\nvstor32 \Device\00000059                                                                                                                             850F91F8
Device                                                                                                                                \Driver\USBSTOR \Device\00000065                                                                                                                              87E9C1F8
Device                                                                                                                                \Driver\volmgr \Device\HarddiskVolume3                                                                                                                        850F61F8
Device                                                                                                                                \Driver\cdrom \Device\CdRom1                                                                                                                                  86D9B1F8
Device                                                                                                                                \Driver\atapi \Device\Ide\IdePort0                                                                                                                            850F81F8
Device                                                                                                                                \Driver\atapi \Device\Ide\IdePort1                                                                                                                            850F81F8
Device                                                                                                                                \Driver\volmgr \Device\HarddiskVolume4                                                                                                                        850F61F8
Device                                                                                                                                \Driver\volmgr \Device\HarddiskVolume5                                                                                                                        850F61F8
Device                                                                                                                                \Driver\volmgr \Device\HarddiskVolume6                                                                                                                        850F61F8
Device                                                                                                                                \Driver\volmgr \Device\HarddiskVolume7                                                                                                                        850F61F8
Device                                                                                                                                \Driver\netbt \Device\NetBt_Wins_Export                                                                                                                       87D711F8
Device                                                                                                                                \Driver\PCI_PNP9628 \Device\0000004b                                                                                                                          spfz.sys
Device                                                                                                                                \Driver\Smb \Device\NetbiosSmb                                                                                                                                87D851F8
Device                                                                                                                                \Driver\nvstor32 \Device\RaidPort0                                                                                                                            850F91F8
Device                                                                                                                                \Driver\nvstor32 \Device\RaidPort1                                                                                                                            850F91F8
Device                                                                                                                                \Driver\disk \Device\Harddisk0\DR0                                                                                                                            aksfridge.sys (Ancillary Function Driver/Aladdin Knowledge Systems Ltd.)
Device                                                                                                                                \Driver\iScsiPrt \Device\RaidPort2                                                                                                                            86DE11F8
Device                                                                                                                                \Driver\netbt \Device\NetBT_Tcpip_{6813E9F3-5445-4C54-8457-EC4B7DD04830}                                                                                      87D711F8
Device                                                                                                                                \Driver\disk \Device\Harddisk1\DR1                                                                                                                            aksfridge.sys (Ancillary Function Driver/Aladdin Knowledge Systems Ltd.)
Device                                                                                                                                \Driver\disk \Device\Harddisk2\DR2                                                                                                                            aksfridge.sys (Ancillary Function Driver/Aladdin Knowledge Systems Ltd.)
Device                                                                                                                                \Driver\usbohci \Device\USBFDO-0                                                                                                                              86CEA1F8
Device                                                                                                                                \Driver\disk \Device\Harddisk3\DR3                                                                                                                            aksfridge.sys (Ancillary Function Driver/Aladdin Knowledge Systems Ltd.)
Device                                                                                                                                \Driver\usbehci \Device\USBFDO-1                                                                                                                              86CE91F8
Device                                                                                                                                \Driver\disk \Device\Harddisk4\DR4                                                                                                                            aksfridge.sys (Ancillary Function Driver/Aladdin Knowledge Systems Ltd.)
Device                                                                                                                                \Driver\akywmzmu \Device\Scsi\akywmzmu1Port5Path0Target0Lun0                                                                                                  86DDC1F8
Device                                                                                                                                \Driver\akywmzmu \Device\Scsi\akywmzmu1                                                                                                                       86DDC1F8
Device                                                                                                                                \FileSystem\fastfat \Fat                                                                                                                                      869161F8

AttachedDevice                                                                                                                        \FileSystem\fastfat \Fat                                                                                                                                      fltmgr.sys (Microsoft Dateisystem-Filter-Manager/Microsoft Corporation)
AttachedDevice                                                                                                                        \FileSystem\fastfat \Fat                                                                                                                                      fltmgr.sys (Microsoft Dateisystem-Filter-Manager/Microsoft Corporation)

Device                                                                                                                                \FileSystem\cdfs \Cdfs                                                                                                                                        86DC31F8

---- Registry - GMER 1.0.15 ----

Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s1                                                                                                            771343423
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s2                                                                                                            285507792
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@h0                                                                                                            2
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04                                                                              
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0                                                                           1
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew                                                                        0x0A 0xC2 0x6A 0x26 ...
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4                                                                              
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@p0                                                                           C:\Program Files\DAEMON Tools Lite\
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0                                                                           0
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh                                                                        0x89 0x76 0xFF 0x54 ...
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001                                                                     
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@a0                                                                  0x20 0x01 0x00 0x00 ...
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@khjeh                                                               0x97 0x27 0x01 0xDB ...
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40                                                               
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40@khjeh                                                         0x63 0xA8 0x6D 0xD5 ...
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{6813e9f3-5445-4c54-8457-ec4b7dd04830}@Dhcpv6Iaid                                         201334412
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{6813e9f3-5445-4c54-8457-ec4b7dd04830}@Dhcpv6State                                        0
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{9c642153-bfe0-4511-a0b6-e778ddd5ea9e}@Dhcpv6Iaid                                         117445666
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{9c642153-bfe0-4511-a0b6-e778ddd5ea9e}@Dhcpv6State                                        0
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{9f98399b-54d1-4569-ab76-4696de168d4a}@Dhcpv6Iaid                                         218111050
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{9f98399b-54d1-4569-ab76-4696de168d4a}@Dhcpv6State                                        0
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{beca6706-d782-4505-b84f-16ec8552dba2}@Dhcpv6Iaid                                         234888266
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{beca6706-d782-4505-b84f-16ec8552dba2}@Dhcpv6State                                        0
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{c63b0c6d-b05e-4279-b83a-3c11e53510cb}@Dhcpv6Iaid                                         268566612
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{c63b0c6d-b05e-4279-b83a-3c11e53510cb}@Dhcpv6State                                        0
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{f50c0996-5b4a-4c6a-a322-6e991d4caa0e}@Dhcpv6Iaid                                         100668450
Reg                                                                                                                                   HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{f50c0996-5b4a-4c6a-a322-6e991d4caa0e}@Dhcpv6State                                        0
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 (not active ControlSet)                                                          
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0                                                                               1
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew                                                                            0x0A 0xC2 0x6A 0x26 ...
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4 (not active ControlSet)                                                          
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@p0                                                                               C:\Program Files\DAEMON Tools Lite\
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0                                                                               0
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh                                                                            0x89 0x76 0xFF 0x54 ...
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001 (not active ControlSet)                                                 
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@a0                                                                      0x20 0x01 0x00 0x00 ...
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@khjeh                                                                   0x97 0x27 0x01 0xDB ...
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40 (not active ControlSet)                                           
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40@khjeh                                                             0x63 0xA8 0x6D 0xD5 ...
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\Tcpip6\Parameters\Interfaces\{6813e9f3-5445-4c54-8457-ec4b7dd04830}@Dhcpv6Iaid                                             201334412
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\Tcpip6\Parameters\Interfaces\{6813e9f3-5445-4c54-8457-ec4b7dd04830}@Dhcpv6State                                            0
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\Tcpip6\Parameters\Interfaces\{9c642153-bfe0-4511-a0b6-e778ddd5ea9e}@Dhcpv6Iaid                                             117445666
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\Tcpip6\Parameters\Interfaces\{9c642153-bfe0-4511-a0b6-e778ddd5ea9e}@Dhcpv6State                                            0
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\Tcpip6\Parameters\Interfaces\{9f98399b-54d1-4569-ab76-4696de168d4a}@Dhcpv6Iaid                                             218111050
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\Tcpip6\Parameters\Interfaces\{9f98399b-54d1-4569-ab76-4696de168d4a}@Dhcpv6State                                            0
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\Tcpip6\Parameters\Interfaces\{beca6706-d782-4505-b84f-16ec8552dba2}@Dhcpv6Iaid                                             234888266
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\Tcpip6\Parameters\Interfaces\{beca6706-d782-4505-b84f-16ec8552dba2}@Dhcpv6State                                            0
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\Tcpip6\Parameters\Interfaces\{c63b0c6d-b05e-4279-b83a-3c11e53510cb}@Dhcpv6Iaid                                             268566612
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\Tcpip6\Parameters\Interfaces\{c63b0c6d-b05e-4279-b83a-3c11e53510cb}@Dhcpv6State                                            0
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\Tcpip6\Parameters\Interfaces\{f50c0996-5b4a-4c6a-a322-6e991d4caa0e}@Dhcpv6Iaid                                             100668450
Reg                                                                                                                                   HKLM\SYSTEM\ControlSet003\Services\Tcpip6\Parameters\Interfaces\{f50c0996-5b4a-4c6a-a322-6e991d4caa0e}@Dhcpv6State                                            0

---- EOF - GMER 1.0.15 ----
         


Geändert von GJM (17.05.2010 um 20:03 Uhr)

Alt 17.05.2010, 20:37   #36
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
img068438960802010.jpg.scr Troja? - Standard

img068438960802010.jpg.scr Troja?



Solchen langen Logs kann man auch einfach mal zippen und hier anhängen oder bei file-upload.net hochladen....
__________________
--> img068438960802010.jpg.scr Troja?

Alt 17.05.2010, 22:15   #37
GJM
 
img068438960802010.jpg.scr Troja? - Standard

img068438960802010.jpg.scr Troja?



hab mir übrlegt dich zu fragen ob ich´s dir per e-mail schiken kann^^
aber die methode is noch besser^^

kannte des nur mit Rapidshare
und da wurde mir schon oft von abgeraten weil es unsicher sei.

und auf die idee es einfach zu zippen und als anhang hochzuladen kam ich natürlich nicht.

-gott bestrafe meine dummheit-

Alt 18.05.2010, 10:54   #38
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
img068438960802010.jpg.scr Troja? - Standard

img068438960802010.jpg.scr Troja?



Rapidshare ist nicht per se unsicher, es kommt immer drauf an, welche Dateien man sich runterlädt. Logdateien sind reine Textdateien und somit sicher.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 18.05.2010, 16:21   #39
GJM
 
img068438960802010.jpg.scr Troja? - Standard

img068438960802010.jpg.scr Troja?



Das is ma gut zu wissen^^
mir wurde wie gesagt generell abgeraten von Rapidshare
soll den log. so nochma hochladen oder passt des jetzt au so?

hoffe ma da gibt´s nix auffälliges den der Updater geht immer noch nicht.
kann es auch sein das irgend ein Prog da was gelöscht hat?
oder sogar der Troja¿? (is aber unwahrscheinlich denke ich)

vielen dank nochmal für die schnelle hilfe.
auch wenn ich nicht grad der schnellste bin xD

Alt 18.05.2010, 17:51   #40
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
img068438960802010.jpg.scr Troja? - Standard

img068438960802010.jpg.scr Troja?



Ja, aber bitte nicht rapidshare, hatte da öfter Probleme, bequemer ist File-Upload.net
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 18.05.2010, 18:42   #41
GJM
 
img068438960802010.jpg.scr Troja? - Standard

img068438960802010.jpg.scr Troja?



ok hier der link
hxxp://www.file-upload.net/download-2527237/GMER.txt.html

Alt 18.05.2010, 19:19   #42
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
img068438960802010.jpg.scr Troja? - Standard

img068438960802010.jpg.scr Troja?



Das Log ist zwar lang, aber letzenendes sieht es für mich unauffällig aus. Noch probleme?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 18.05.2010, 19:20   #43
GJM
 
img068438960802010.jpg.scr Troja? - Standard

img068438960802010.jpg.scr Troja?



Alles ok.
Nur der Updater funzt nich.

Alt 18.05.2010, 19:34   #44
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
img068438960802010.jpg.scr Troja? - Standard

img068438960802010.jpg.scr Troja?



Zitat:
@cosinus
wollte gerade mal wieder n Windowsupdate machen und musste feststellen das sich das Windows-Update zwar öffnen lässt aber die seite nicht geladen werden kann.
Absicht? oder is des eher schlecht?
Fällt mir so gerade auf. Vista aktualisiert man nicht über die Windows-Updateseite!!
Halte Dich mal an diesen Leitfaden bzgl Updates:

Microsoftupdate

Windows XP: Besuch mit dem IE die MS-Updateseite und lass Dir alle wichtigen Updates installieren.

Windows Vista/7: Anleitung Windows-Update



PDF-Reader aktualisieren
Dein Adobe Reader ist nicht aktuell, was ein großes Sicherheitsrisiko darstellt. Du solltest daher besser die alte Version über Systemsteuerung => Software deinstallieren, indem Du dort auf "Adobe Reader x.0" klickst und das Programm entfernst.

Ich empfehle einen alternativen PDF-Reader wie SumatraPDF oder Foxit PDF Reader, beide sind sehr viel schlanker und flotter als der AdobeReader.

Bitte überprüf bei der Gelegenheit auch die Aktualität des Flashplayers, hier der direkte Downloadlink => http://filepony.de/?q=Flash+Player


Java-Update
Veraltete Java-Installationen sind ein Sicherheitsrisiko, daher solltest Du die alten Versionen löschen (falls vorhanden) und auf die neuste aktualisieren. Beende dazu alle Programme (v.a. die Browser), klick danach auf Start, Systemsteuerung, Software und deinstalliere darüber alle aufgelisteten Java-Versionen. Lad Dir danach von hier das aktuelle Java SE Runtime Environment (JRE) herunter und installiere es.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 18.05.2010, 19:48   #45
GJM
 
img068438960802010.jpg.scr Troja? - Standard

img068438960802010.jpg.scr Troja?



Genau dieses meine ich da kommt immer n leeres Fenster
in der mitte steht ,,Die seite konnte nicht geladen werden´´

hier ma n screenshot von dem Fenster ->
egal über welchen weg ich darauf geh... immer das selbe
Miniaturansicht angehängter Grafiken
img068438960802010.jpg.scr Troja?-unbenannt.jpg  

Antwort

Themen zu img068438960802010.jpg.scr Troja?
.jpg.scr, ausgeführt, datei, dateien, eimer, erfahrung, euro, frage, freund, gesuch, gesucht, google, helft, link, nicht öffnen, ordner, problem, runter, teure, troja, trojas, verdammt, wenig, öffnen




Ähnliche Themen: img068438960802010.jpg.scr Troja?


  1. troja fakems und firefox keine rückmeldung
    Log-Analyse und Auswertung - 16.12.2012 (15)
  2. BKA Virus Troja windows xp
    Plagegeister aller Art und deren Bekämpfung - 10.08.2011 (1)
  3. 100 tan troja
    Log-Analyse und Auswertung - 06.07.2011 (7)
  4. troja.win.32.generic!sb.0
    Log-Analyse und Auswertung - 24.09.2010 (12)
  5. AW: img068438960802010.jpg.scr Troja?
    Mülltonne - 29.04.2010 (0)
  6. Troja.JS.Redirector.ar - bin völlig verzweifelt...
    Plagegeister aller Art und deren Bekämpfung - 25.01.2010 (5)
  7. Troja
    Log-Analyse und Auswertung - 13.07.2009 (11)
  8. win32.troja-gen im System gemeldet
    Log-Analyse und Auswertung - 28.10.2008 (10)
  9. win32.troja-gen gefunden
    Mülltonne - 28.10.2008 (0)
  10. Troja fällt!?
    Log-Analyse und Auswertung - 20.07.2008 (0)
  11. VTSQO.dll, troja.win32.inject, virtumonde
    Plagegeister aller Art und deren Bekämpfung - 27.12.2007 (0)
  12. Besuch aus Troja
    Log-Analyse und Auswertung - 13.06.2007 (2)
  13. Troja ist da - bitte Hilfe!
    Log-Analyse und Auswertung - 07.05.2006 (18)
  14. Troja.popuper
    Plagegeister aller Art und deren Bekämpfung - 20.09.2005 (1)
  15. Troja befall
    Plagegeister aller Art und deren Bekämpfung - 30.06.2005 (2)
  16. Einstand/Troja liegt nicht in Asche!!
    Log-Analyse und Auswertung - 26.03.2005 (22)

Zum Thema img068438960802010.jpg.scr Troja? - Ich seh bei GMER zB keine Kennzeichnung für das tatsächliche Ende des Log (EOF=ed of file). Dann diese vielen Zeilen wo fach nur ".text" steht (mit WindowBlinds, ob das typisch - img068438960802010.jpg.scr Troja?...
Archiv
Du betrachtest: img068438960802010.jpg.scr Troja? auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.