|
Plagegeister aller Art und deren Bekämpfung: Evtl. System DLL verbogen worden - Internet Explorer wird immerzu versucht zu öffnenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
06.07.2010, 15:02 | #1 |
| Evtl. System DLL verbogen worden - Internet Explorer wird immerzu versucht zu öffnen Hallo erstmal, HijackThis werd ich gleich versuchen und dann posten. (siehe unten). Habe folgendes Problem: Seit einiger Zeit wird (da der Internet Explorer von mir mittels Comodo Firewall geblockt wird, da ich ausschließlich Firefox benutze) den IE trotzdem bei jedem Programmstart (egal welche Software) versucht zu öffnen. Sehe ich anhand Log der Comodo Firewall. Desweiteren wird beim Windowsstart ebenso durch Winlogon.exe versucht den IE zu öffnen. Und zu guter letzt wird in unregelmäßigen Abständen durch die Explorer.exe versucht den IE zu öffnen. Folgende Massnahmen wurden schon durchgeführt. Prüfung (regelmäßig) mit Malware Antibyte (kein Treffer), PC Tools Spyware Doktor (regelmäßig) hatte einen Treffer, erledigt und entsorgt (mittels PC Tools... und Unlocker löschte auch den Recycler und aus der System Volume...),sorry weiss nicht mehr wie der hiess, da Software deinstalliert. Drittens mittels Rootkit Hook Analyzer (ohne Befund), ebenso Spybot ohne Befund. MBR ist sauber, auch schon ausprobiert. Tja nun mit meinem Latein am Ende, stört zwar nicht wirklich, bremst aber System ein wenig aus. Habe auch versucht mittels diverser Prozessanalysen was herauszufinden, ohne Erfolg. HijackThis : HiJackthis Logfile: Code:
ATTFilter Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 16:19:33, on 06.07.2010 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Unable to get Internet Explorer version! Boot mode: Normal Running processes: C:\WINDOWS3\System32\smss.exe C:\WINDOWS3\system32\csrss.exe C:\WINDOWS3\system32\winlogon.exe C:\WINDOWS3\system32\services.exe C:\WINDOWS3\system32\lsass.exe C:\WINDOWS3\system32\svchost.exe C:\WINDOWS3\system32\svchost.exe C:\Programme\COMODO\COMODO Internet Security\cmdagent.exe C:\WINDOWS3\system32\svchost.exe C:\WINDOWS3\system32\svchost.exe C:\WINDOWS3\system32\svchost.exe C:\WINDOWS3\system32\spoolsv.exe C:\WINDOWS3\system32\svchost.exe C:\WINDOWS3\system32\netdde.exe C:\Programme\Java\jre6\bin\jqs.exe C:\Programme\Spyware Doctor\pctsAuxs.exe C:\Programme\Spyware Doctor\pctsSvc.exe C:\WINDOWS3\System32\snmp.exe C:\WINDOWS3\system32\svchost.exe C:\Programme\Verbindungsassistent\WTGService.exe C:\WINDOWS3\Explorer.EXE C:\Programme\Spyware Doctor\pctsTray.exe C:\Programme\COMODO\COMODO Internet Security\cfp.exe C:\WINDOWS3\system32\ctfmon.exe C:\WINDOWS3\System32\alg.exe C:\Programme\Mozilla\firefox.exe C:\Programme\Verbindungsassistent\Verbindungsassistent.exe C:\WINDOWS3\system32\taskmgr.com C:\Dokumente und Einstellungen\Administrator.MEINE-GOLDELIUS\Desktop\Neuer Ordner\HiJackThis204.exe C:\Programme\Microsoft Office\OFFICE11\WINWORD.EXE C:\WINDOWS3\system32\wbem\wmiprvse.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - (no file) O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Adobe Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Programme\Adobe\Adobe Acrobat 6.0\Acrobat\AcroIEFavClient.dll O2 - BHO: (no name) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - (no file) O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Programme\Free Download Manager\iefdm2.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre6\bin\jp2ssv.dll O2 - BHO: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - (no file) O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: (no name) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - (no file) O3 - Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file) O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Programme\Adobe\Adobe Acrobat 6.0\Acrobat\AcroIEFavClient.dll O4 - HKLM\..\Run: [ISTray] "C:\Programme\Spyware Doctor\pctsTray.exe" O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Programme\COMODO\COMODO Internet Security\cfp.exe" -h O4 - HKLM\..\Run: [ATIPTA] C:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS3\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS3\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS3\system32\CTFMON.EXE (User 'LOKALER DIENST') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS3\system32\CTFMON.EXE (User 'NETZWERKDIENST') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS3\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS3\system32\CTFMON.EXE (User 'Default user') O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'Default user') O8 - Extra context menu item: Alles mit FDM herunterladen - file://C:\Programme\Free Download Manager\dlall.htm O8 - Extra context menu item: Auswahl mit FDM herunterladen - file://C:\Programme\Free Download Manager\dlselected.htm O8 - Extra context menu item: Datei mit FDM herunterladen - file://C:\Programme\Free Download Manager\dllink.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Videos mit FDM herunterladen - file://C:\Programme\Free Download Manager\dlfvideo.htm O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS3\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS3\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe O17 - HKLM\System\CCS\Services\Tcpip\..\{D87A3F14-5072-428D-B8F2-9692A3A4DDD5}: NameServer = 156.154.70.25,156.154.71.25 O17 - HKLM\System\CCS\Services\Tcpip\..\{EB870125-6269-4B40-AD95-B554EF151B9B}: NameServer = 212.23.97.2 212.23.97.3 O20 - AppInit_DLLs: C:\WINDOWS3\system32\guard32.dll O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS3\system32\browseui.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS3\system32\browseui.dll O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Programme\COMODO\COMODO Internet Security\cmdagent.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Programme\Java\jre6\bin\jqs.exe O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Programme\Spyware Doctor\pctsAuxs.exe O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Programme\Spyware Doctor\pctsSvc.exe O23 - Service: WTGService - Unknown owner - C:\Programme\Verbindungsassistent\WTGService.exe -- End of file - 6669 bytes Geändert von Brianson (06.07.2010 um 15:22 Uhr) |
06.07.2010, 15:20 | #2 |
/// Malware-holic | Evtl. System DLL verbogen worden - Internet Explorer wird immerzu versucht zu öffnen download malwarebytes:
__________________Malwarebytes instalieren, dann öffnen, registerkarte aktualisierung, programm updaten. dann registerkarte scanner, komplett scan, funde löschen, log posten. ootl: Systemscan mit OTL download otl: http://filepony.de/download-otl/ Doppelklick auf die OTL.exe (user von Windows 7 und Vista: Rechtsklick als Administrator ausführen) 1. Oben findest Du ein Kästchen mit Output. Wähle bitte Minimal Output 2. Hake an "scan all users" 3. Unter "Extra Registry wähle: "Use Safelist" "LOP Check" "Purity Check" 4. Kopiere in die Textbox: netsvcs msconfig safebootminimal safebootnetwork activex drivers32 %ALLUSERSPROFILE%\Application Data\*. %ALLUSERSPROFILE%\Application Data\*.exe /s %APPDATA%\*. %APPDATA%\*.exe /s %SYSTEMDRIVE%\*.exe /md5start userinit.exe eventlog.dll scecli.dll netlogon.dll cngaudit.dll ws2ifsl.sys sceclt.dll ntelogon.dll logevent.dll iaStor.sys nvstor.sys atapi.sys IdeChnDr.sys viasraid.sys AGP440.sys vaxscsi.sys nvatabus.sys viamraid.sys nvata.sys nvgts.sys iastorv.sys ViPrt.sys eNetHook.dll ahcix86.sys KR10N.sys nvstor32.sys ahcix86s.sys /md5stop %systemroot%\system32\drivers\*.sys /lockedfiles %systemroot%\System32\config\*.sav %systemroot%\*. /mp /s %systemroot%\system32\*.dll /lockedfiles CREATERESTOREPOINT 5. Klicke "Scan" 6. 2 reporte werden erstellt: OTL.Txt Extras.Txt bitte poste beide |
06.07.2010, 15:26 | #3 |
| Evtl. System DLL verbogen worden - Internet Explorer wird immerzu versucht zu öffnen Malware wurder regelmäig (jeden Tag) upgedatet, keine BEFUNDE - das andere versuche ich gleich. Danke erstmal !!! ;-)
__________________ |
06.07.2010, 16:24 | #4 |
| Evtl. System DLL verbogen worden - Internet Explorer wird immerzu versucht zu öffnen extras.txt part 1 OTL Extras logfile created on: 06.07.2010 16:29:27 - Run 1 OTL by OldTimer - Version 3.2.7.1 Folder = C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhhh\Desktop\Neuer Ordner Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 1.023,00 Mb Total Physical Memory | 301,00 Mb Available Physical Memory | 29,00% Memory free 3,00 Gb Paging File | 2,00 Gb Available in Paging File | 74,00% Paging File free Paging file location(s): C:\pagefile.sys 2500 3072 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS3 | %ProgramFiles% = C:\Programme Drive C: | 55,89 Gb Total Space | 14,37 Gb Free Space | 25,71% Space Free | Partition Type: NTFS Drive D: | 688,33 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Drive E: | 6,34 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Drive F: | 3,68 Gb Total Space | 0,89 Gb Free Space | 24,18% Space Free | Partition Type: FAT32 G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: MEINE-hhhhh Current User Name: Administrator Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Minimal ========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .html [@ = htmlfile] -- C:\Programme\Internet Explorer\IEXPLORE.EXE File not found .url [@ = InternetShortcut] -- C:\WINDOWS3\System32\ieframe.dll () [HKEY_USERS\S-1-5-21-1757981266-1409082233-1417001333-500\SOFTWARE\Classes\<extension>] .html [@ = htmlfile] -- Reg Error: Key error. File not found ========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* htmlfile [edit] -- "C:\Programme\Microsoft Office\OFFICE11\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [open] -- "C:\Programme\Internet Explorer\IEXPLORE.EXE" -nohome File not found htmlfile [opennew] -- "C:\Programme\Internet Explorer\IEXPLORE.EXE" %1 File not found htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" () http [open] -- "C:\Programme\Internet Explorer\IEXPLORE.EXE" -nohome File not found https [open] -- "C:\Programme\Internet Explorer\IEXPLORE.EXE" -nohome File not found InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l () piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Programme\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /k "cd %L" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Programme\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Programme\Internet Explorer\IEXPLORE.EXE" %1 File not found CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Programme\Internet Explorer\iexplore.exe" File not found ========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 0 "AntiVirusDisableNotify" = 0 "FirewallDisableNotify" = 0 "UpdatesDisableNotify" = 0 "AntiVirusOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List] "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007 "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008 "1723:TCP" = 1723:TCP:*:Enabled:@xpsp2res.dll,-22015 "1701:UDP" = 1701:UDP:*:Enabled:@xpsp2res.dll,-22016 "500:UDP" = 500:UDP:*:Enabled:@xpsp2res.dll,-22017 "139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004 "445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005 "137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001 "138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007 "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008 "1723:TCP" = 1723:TCP:*:Enabled:@xpsp2res.dll,-22015 "1701:UDP" = 1701:UDP:*:Enabled:@xpsp2res.dll,-22016 "500:UDP" = 500:UDP:*isabled:@xpsp2res.dll,-22017 "25641:TCP" = 25641:TCP:*:Enabled:BitComet 25641 TCP "25641:UDP" = 25641:UDP:*:Enabled:BitComet 25641 UDP "139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004 "445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005 "137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001 "138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002 ========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] "C:\PROGRA~1\GEMEIN~1\MICROW~1\Agent\MWAGENT.EXE" = C:\PROGRA~1\GEMEIN~1\MICROW~1\Agent\MWAGENT.EXE:*:Enabled:MicroWorld Management Agent -- (MicroWorld Technologies Inc.) [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\WINDOWS3\system32\mmc.exe" = C:\WINDOWS3\system32\mmc.exe:*:Enabled:Microsoft Management Console -- (Microsoft Corporation) "C:\Program Files\Free Download Manager\fdm.exe" = C:\Program Files\Free Download Manager\fdm.exe:*:Enabled:Free Download Manager -- () "C:\Programme\Java\jre6\bin\javaw.exe" = C:\Programme\Java\jre6\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary -- (Sun Microsystems, Inc.) "C:\Programme\BitComet\BitComet.exe" = C:\Programme\BitComet\BitComet.exe:*:Enabled:BitComet.exe -- File not found "C:\Programme\Opera\opera.exe" = C:\Programme\Opera\opera.exe:*:Enabled:Opera Internet Browser -- File not found "C:\Programme\Mozilla\firefox.exe" = C:\Programme\Mozilla\firefox.exe:*:Enabled:Mozilla Firefox -- (Mozilla Corporation) "C:\Programme\Gemeinsame Dateien\MicroWorld\Agent\MWAGENT.EXE" = C:\Programme\Gemeinsame Dateien\MicroWorld\Agent\MWAGENT.EXE:*isabled:MicroWorld Management Agent -- (MicroWorld Technologies Inc.) "C:\Programme\aMSN\bin\wish.exe" = C:\Programme\aMSN\bin\wish.exe:*isabled:Wish Application -- (ActiveState Corporation) |
06.07.2010, 16:25 | #5 |
| Evtl. System DLL verbogen worden - Internet Explorer wird immerzu versucht zu öffnen extras.txt part 2 ========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{05ADEEC8-BD58-43D9-A9E3-1F53B0DA117A}" = Opera 10.51 "{09436295-C739-4D18-B89F-93A9EDDD1346}" = winqfx16bit "{0BEDBD4E-2D34-47B5-9973-57E62B29307C}" = ATI Control Panel "{0E0479F8-180F-4054-B4F7-17EE657F90BF}" = TIPCI "{20C45B32-5AB6-46A4-94EF-58950CAF05E5}" = EPSON Attach To Email "{22A76B5C-C90F-4C9D-9279-6C8C72AD6604}" = Duden Korrektor 3.0 (30-Tage-Version) "{26A24AE4-039D-4CA4-87B4-2F83216015FF}" = Java(TM) 6 Update 15 "{2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}" = EPSON Scan Assistant "{2EB81825-E9EE-44F4-8F51-1240C3898DC6}" = EPSON File Manager "{350C97B3-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{5791B7D3-8B34-4218-9750-6A8E45D0AD32}" = pdfforge Toolbar v1.1.2 "{67EDD823-135A-4D59-87BD-950616D6E857}" = EPSON Copy Utility 3 "{68A35043-C55A-4237-88C9-37EE1C63ED71}" = Microsoft Visual J# 2.0 Redistributable Package "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{90110409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003 "{909B62B0-8ACA-4061-A83B-09CAEF609619}" = MSXML 6.0 Parser "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{A462213D-EED4-42C2-9A60-7BDD4D4B0B17}" = C-Major Audio "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable "{AC76BA86-7AD7-1031-7B44-000000000001}" = Adobe Reader 6.0 - Deutsch "{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}" = Microsoft Primary Interoperability Assemblies 2005 "{D3B3B9B2-FE73-44CB-8C0A-F737D92F991B}" = Broadcom Gigabit Integrated Controller "{D52ECEBC-9B20-41A5-81C4-A62DE2367419}" = Adobe Creative Suite "{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}" = Windows Media Encoder 9 Series "2Tox_AppBooster_PRO_is1" = 2tox.com AppBooster "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Adobe SVG Viewer" = Adobe SVG Viewer 3.0 "All ATI Software" = ATI - Dienstprogramm zur Deinstallation der Software "aMSN" = aMSN 0.98.3 "ATI Display Driver" = ATI Display Driver "AVS Media Player_is1" = AVS Media Player 3.1 "COMODO Internet Security" = COMODO Internet Security "EPSON Printer and Utilities" = EPSON-Drucker-Software "EPSON Scanner" = EPSON Scan "ERUNT_is1" = ERUNT 1.1j "Firefox Windows Media Player XPI" = Firefox Windows Media Player XPI "Free Download Manager_is1" = Free Download Manager 3.0 "HookAnalyzer_is1" = RootKit Hook Analyzer 3.02 "InstallShield_{0E0479F8-180F-4054-B4F7-17EE657F90BF}" = Texas Instruments PCIxx21/x515/xx12 drivers. "InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5}" = EPSON Attach To Email "InstallShield_{22A76B5C-C90F-4C9D-9279-6C8C72AD6604}" = Duden Korrektor 3.0 (30-Tage-Version) "IrfanView" = IrfanView (remove only) "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft Visual J# 2.0 Redistributable Package" = Microsoft Visual J# 2.0 Redistributable Package "MozBackup" = MozBackup 1.4.10 "Mozilla Firefox (3.5.10)" = Mozilla Firefox (3.5.10) "ProtectDisc Driver 11" = ProtectDisc Driver, Version 11 "Revo Uninstaller" = Revo Uninstaller 1.89 "Software Informer_is1" = Software Informer 1.0 BETA "Spyware Doctor" = Spyware Doctor 7.0 "TextMaker Viewer" = TextMaker Viewer "Tweak-XP Pro 4" = Tweak-XP Pro 4 "Unlocker" = Unlocker 1.8.7 "Verbindungsassistent" = Verbindungsassistent "VLC media player" = VLC media player 1.0.5 "Windows Media Encoder 9" = Windows Media Encoder 9 Series "xqdcXSP_is1" = XQDC X-Setup Pro 9.2.100 "Xvid_is1" = Xvid 1.2.2 final uninstall ========== Last 10 Event Log Errors ========== [ Application Events ] Error - 06.07.2010 02:10:36 | Computer Name = MEINE-hhhh | Source = WmiAdapter | ID = 4099 Description = Dienst konnte nicht geöffnet werden. Error - 06.07.2010 02:10:37 | Computer Name = MEINE-hhhh | Source = WmiAdapter | ID = 4099 Description = Dienst konnte nicht geöffnet werden. Error - 06.07.2010 02:10:38 | Computer Name = MEINE-hhhh | Source = WmiAdapter | ID = 4099 Description = Dienst konnte nicht geöffnet werden. Error - 06.07.2010 02:10:40 | Computer Name = MEINE-hhhh | Source = WmiAdapter | ID = 4099 Description = Dienst konnte nicht geöffnet werden. Error - 06.07.2010 02:10:42 | Computer Name = MEINE-hhhh | Source = WmiAdapter | ID = 4099 Description = Dienst konnte nicht geöffnet werden. Error - 06.07.2010 02:10:43 | Computer Name = MEINE-hhhh | Source = WmiAdapter | ID = 4099 Description = Dienst konnte nicht geöffnet werden. Error - 06.07.2010 02:10:44 | Computer Name = MEINE-hhhh | Source = WmiAdapter | ID = 4099 Description = Dienst konnte nicht geöffnet werden. Error - 06.07.2010 02:10:46 | Computer Name = MEINE-hhhh | Source = WmiAdapter | ID = 4099 Description = Dienst konnte nicht geöffnet werden. Error - 06.07.2010 02:10:46 | Computer Name = MEINE-hhhh | Source = WmiAdapter | ID = 4099 Description = Dienst konnte nicht geöffnet werden. Error - 06.07.2010 02:10:47 | Computer Name = MEINE-hhhh | Source = WmiAdapter | ID = 4099 Description = Dienst konnte nicht geöffnet werden. [ System Events ] Error - 05.07.2010 12:01:40 | Computer Name = MEINE-hhhh | Source = Service Control Manager | ID = 7034 Description = Dienst "Windows Installer" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error - 05.07.2010 12:01:43 | Computer Name = hhhh | Source = DCOM | ID = 10000 Description = Ein DCOM-Server konnte nicht gestartet werden: {A5B020FD-E04B-4E67-B65A-E7DEED25B2CF}. Fehler: "%2" aufgetreten beim Starten dieses Befehls: C:\WINDOWS3\system32\WISPTIS.EXE -Embedding Error - 05.07.2010 12:05:03 | Computer Name = hhhh | Source = Service Control Manager | ID = 7034 Description = Dienst "Windows Installer" wurde unerwartet beendet. Dies ist bereits 2 Mal passiert. Error - 05.07.2010 12:06:17 | Computer Name = MEINE-hhhh | Source = DCOM | ID = 10000 Description = Ein DCOM-Server konnte nicht gestartet werden: {A5B020FD-E04B-4E67-B65A-E7DEED25B2CF}. Fehler: "%2" aufgetreten beim Starten dieses Befehls: C:\WINDOWS3\system32\WISPTIS.EXE -Embedding Error - 05.07.2010 12:16:18 | Computer Name = MEINE-hhhh | Source = Service Control Manager | ID = 7034 Description = Dienst "Windows Installer" wurde unerwartet beendet. Dies ist bereits 3 Mal passiert. Error - 06.07.2010 02:12:16 | Computer Name = hhhh | Source = Service Control Manager | ID = 7026 Description = Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: IntelIde Pcmcia Error - 06.07.2010 10:36:36 | Computer Name = MEINE-hhhh | Source = ipnathlp | ID = 32003 Description = Der Übersetzer für Netzwerkadressen (NAT) konnte keine Anfrage des Übersetzungsmoduls des Kernelmodus stellen. Möglicherweise liegen eine falsche Konfiguration, unzureichende Ressourcen oder ein interner Fehler vor. Die Daten enthalten den Fehlercode. Error - 06.07.2010 10:37:13 | Computer Name = MEINE-hhhh | Source = SideBySide | ID = 16842811 Description = Resolve Partial Assembly ist für Microsoft.Windows.Common-Controls fehlgeschlagen. Referenzfehlermeldung: Nicht genügend Systemressourcen, um den angeforderten Dienst auszuführen. . Error - 06.07.2010 10:37:13 | Computer Name = MEINE-hhhh | Source = SideBySide | ID = 16842811 Description = Generate Activation Context ist für C:\WINDOWS3\system32\ieframe.dll fehlgeschlagen. Referenzfehlermeldung: Der Vorgang wurde erfolgreich beendet. . Error - 06.07.2010 10:41:33 | Computer Name = MEINE-hhhh | Source = SideBySide | ID = 16842811 Description = Resolve Partial Assembly ist für Microsoft.Windows.Common-Controls fehlgeschlagen. Referenzfehlermeldung: Nicht genügend Systemressourcen, um den angeforderten Dienst auszuführen. . < End of report > Geändert von Brianson (06.07.2010 um 17:20 Uhr) |
06.07.2010, 16:27 | #6 |
| Evtl. System DLL verbogen worden - Internet Explorer wird immerzu versucht zu öffnen OTL Part 1 OTL logfile created on: 06.07.2010 16:29:27 - Run 1 OTL by OldTimer - Version 3.2.7.1 Folder = C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Desktop\Neuer Ordner Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 1.023,00 Mb Total Physical Memory | 301,00 Mb Available Physical Memory | 29,00% Memory free 3,00 Gb Paging File | 2,00 Gb Available in Paging File | 74,00% Paging File free Paging file location(s): C:\pagefile.sys 2500 3072 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS3 | %ProgramFiles% = C:\Programme Drive C: | 55,89 Gb Total Space | 14,37 Gb Free Space | 25,71% Space Free | Partition Type: NTFS Drive D: | 688,33 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Drive E: | 6,34 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Drive F: | 3,68 Gb Total Space | 0,89 Gb Free Space | 24,18% Space Free | Partition Type: FAT32 G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: MEINE-hhhhh Current User Name: Administrator Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Minimal ========== Processes (SafeList) ========== PRC - C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Desktop\Neuer Ordner\OTL.exe (OldTimer Tools) PRC - C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Desktop\Neuer Ordner\HiJackThis204.exe (Trend Micro Inc.) PRC - C:\Programme\COMODO\COMODO Internet Security\cmdagent.exe (COMODO) PRC - C:\Programme\COMODO\COMODO Internet Security\cfp.exe (COMODO) PRC - C:\Programme\Mozilla\firefox.exe (Mozilla Corporation) PRC - C:\Programme\Verbindungsassistent\Verbindungsassistent.exe (WebToGo Mobile Internet GmbH) PRC - C:\Programme\Verbindungsassistent\WTGService.exe () PRC - C:\Programme\Spyware Doctor\pctsTray.exe (PC Tools) PRC - C:\Programme\Free Download Manager\fdm.exe (FreeDownloadManager.ORG) PRC - C:\Programme\Spyware Doctor\pctsSvc.exe (PC Tools) PRC - C:\Programme\Spyware Doctor\pctsAuxs.exe (PC Tools) PRC - C:\WINDOWS3\explorer.exe (Microsoft Corporation) PRC - C:\WINDOWS3\system32\TASKMGR.COM (Microsoft Corporation) PRC - C:\WINDOWS3\system32\snmp.exe (Microsoft Corporation) PRC - C:\Programme\Microsoft Office\OFFICE11\WINWORD.EXE (Microsoft Corporation) ========== Modules (SafeList) ========== MOD - C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Desktop\Neuer Ordner\OTL.exe (OldTimer Tools) MOD - C:\WINDOWS3\system32\guard32.dll (COMODO) MOD - C:\Programme\Spyware Doctor\smum32.dll (PC Tools) MOD - C:\Programme\Spyware Doctor\PCTGMhk.dll (PC Tools) MOD - C:\WINDOWS3\system32\msscript.ocx (Microsoft Corporation) ========== Win32 Services (SafeList) ========== SRV - (cmdAgent) -- C:\Programme\COMODO\COMODO Internet Security\cmdagent.exe (COMODO) SRV - (WTGService) -- C:\Programme\Verbindungsassistent\WTGService.exe () SRV - (MWAgent) -- C:\Programme\Gemeinsame Dateien\MicroWorld\Agent\MWASER.EXE (MicroWorld Technologies Inc.) SRV - (sdCoreService) -- C:\Programme\Spyware Doctor\pctsSvc.exe (PC Tools) SRV - (sdAuxService) -- C:\Programme\Spyware Doctor\pctsAuxs.exe (PC Tools) SRV - (Application Updater) -- C:\Programme\Application Updater\ApplicationUpdater.exe (Spigot, Inc.) SRV - (SNMP) -- C:\WINDOWS3\system32\snmp.exe (Microsoft Corporation) SRV - (Bluetooth Hid Switch Service) -- C:\Programme\BlueTooth\HidSwitchService\HidSw.exe (Cambridge Silicon Radio) ========== Driver Services (SafeList) ========== DRV - (MEMSWEEP2) -- C:\WINDOWS3\System32\75.tmp File not found DRV - (cmdGuard) -- C:\WINDOWS3\system32\drivers\cmdguard.sys (COMODO) DRV - (Inspect) -- C:\WINDOWS3\System32\DRIVERS\inspect.sys (COMODO) DRV - (cmdHlp) -- C:\WINDOWS3\system32\drivers\cmdhlp.sys (COMODO) DRV - (PCTCore) -- C:\WINDOWS3\system32\drivers\PCTCore.sys (PC Tools) DRV - (Tcpip6) -- C:\WINDOWS3\system32\drivers\tcpip6.sys (Microsoft Corporation) DRV - (acedrv11) -- C:\WINDOWS3\system32\drivers\acedrv11.sys (Protect Software GmbH) DRV - (bdfsfltr) -- C:\WINDOWS3\system32\drivers\bdfsfltr.sys (BitDefender S.R.L. Bucharest, ROMANIA) DRV - (hwdatacard) -- C:\WINDOWS3\system32\drivers\ewusbmdm.sys (Huawei Technologies Co., Ltd.) DRV - (BCM43XX) -- C:\WINDOWS3\system32\drivers\BCMWL5.SYS (Broadcom Corporation) DRV - (b57w2k) -- C:\WINDOWS3\system32\drivers\b57xp32.sys (Broadcom Corporation) DRV - (GTIPCI21) -- C:\WINDOWS3\system32\drivers\gtipci21.sys (Texas Instruments) DRV - (Tosrfusb) -- C:\WINDOWS3\system32\drivers\tosrfusb.sys (TOSHIBA CORPORATION) DRV - (Tosrfhid) -- C:\WINDOWS3\system32\drivers\tosrfhid.sys (TOSHIBA Corporation.) DRV - (Tosrfbd) -- C:\WINDOWS3\system32\drivers\tosrfbd.sys (TOSHIBA CORPORATION) DRV - (tosporte) -- C:\WINDOWS3\system32\drivers\tosporte.sys (TOSHIBA Corporation) DRV - (BCOREUSB) -- C:\WINDOWS3\system32\drivers\BCOREUSB.sys (CSR) DRV - (Tosrfbnp) -- C:\WINDOWS3\system32\drivers\tosrfbnp.sys (TOSHIBA Corporation) DRV - (Tosrfcom) -- C:\WINDOWS3\system32\drivers\tosrfcom.sys (TOSHIBA Corporation) DRV - (toshidpt) -- C:\WINDOWS3\system32\drivers\toshidpt.sys (TOSHIBA Corporation.) DRV - (ati2mtag) -- C:\WINDOWS3\system32\drivers\ati2mtag.sys (ATI Technologies Inc.) DRV - (TosRfSnd) Bluetooth Audio Device (WDM) -- C:\WINDOWS3\system32\drivers\tosrfsnd.sys (TOSHIBA Corporation) DRV - (STAC97) -- C:\WINDOWS3\system32\drivers\STAC97.sys (SigmaTel, Inc.) DRV - (tosrfnds) -- C:\WINDOWS3\system32\drivers\tosrfnds.sys (TOSHIBA Corporation.) DRV - (SMCIRDA) -- C:\WINDOWS3\system32\drivers\smcirda.sys (SMC) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = Google IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Google IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = Google Toolbar IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1757981266-1409082233-1417001333-500\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Google IE - HKU\S-1-5-21-1757981266-1409082233-1417001333-500\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = IE - HKU\S-1-5-21-1757981266-1409082233-1417001333-500\..\URLSearchHook: {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - Reg Error: Key error. File not found IE - HKU\S-1-5-21-1757981266-1409082233-1417001333-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF - prefs.js..browser.search.selectedEngine: "Ixquick - Deutsch" FF - prefs.js..browser.startup.homepage: "www.google.de" FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.2 FF - prefs.js..extensions.enabledItems: {fce36c1e-58d8-498a-b2a5-66ad1cedebbb}:0.76 FF - prefs.js..extensions.enabledItems: fdm_ffext@freedownloadmanager.org:1.3.4 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: {B17C1C5A-04B1-11DB-9804-B622A1EF5492}:1.2 FF - prefs.js..extensions.enabledItems: {37E4D8EA-8BDA-4831-8EA1-89053939A250}:3.0.0.1 FF - prefs.js..extensions.enabledItems: {2A1D5949-B519-4924-BF62-8522FE0D5274}:0.13 FF - prefs.js..extensions.enabledItems: {8dbb6d8e-e4a6-4e3b-9753-af78b226441c}:2.5.6.0 FF - prefs.js..extensions.enabledItems: trackmenot@mrl.nyu.edu:0.6.721 FF - HKLM\software\mozilla\Mozilla Firefox 3.5.10\extensions\\Components: C:\Programme\Mozilla\components [2010.06.29 12:54:29 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.5.10\extensions\\Plugins: C:\Programme\Mozilla\plugins [2010.06.24 07:02:07 | 000,000,000 | ---D | M] [2010.02.20 10:25:32 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Mozilla\Extensions [2010.06.29 16:16:38 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Mozilla\Firefox\Profiles\bxjlbk6a.default\extensions [2010.02.20 20:05:21 | 000,000,000 | ---D | M] (PDFescape Extension) -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Mozilla\Firefox\Profiles\bxjlbk6a.default\extensions\{2A1D5949-B519-4924-BF62-8522FE0D5274} [2010.02.20 20:05:22 | 000,000,000 | ---D | M] (PDF Download) -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Mozilla\Firefox\Profiles\bxjlbk6a.default\extensions\{37E4D8EA-8BDA-4831-8EA1-89053939A250} [2010.04.13 17:55:21 | 000,000,000 | ---D | M] (ReloadEvery) -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Mozilla\Firefox\Profiles\bxjlbk6a.default\extensions\{888d99e7-e8b5-46a3-851e-1ec45da1e644} [2010.03.10 13:34:07 | 000,000,000 | ---D | M] (Softonic Deutsch Toolbar) -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Mozilla\Firefox\Profiles\bxjlbk6a.default\extensions\{8dbb6d8e-e4a6-4e3b-9753-af78b226441c} [2010.06.29 14:17:33 | 000,000,000 | ---D | M] (No name found) -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Mozilla\Firefox\Profiles\bxjlbk6a.default\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB} [2010.06.29 16:16:48 | 000,000,000 | ---D | M] (No name found) -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Mozilla\Firefox\Profiles\bxjlbk6a.default\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}-trash [2010.02.21 15:08:28 | 000,000,000 | ---D | M] (Password Exporter) -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Mozilla\Firefox\Profiles\bxjlbk6a.default\extensions\{B17C1C5A-04B1-11DB-9804-B622A1EF5492} [2010.05.01 19:10:41 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Mozilla\Firefox\Profiles\bxjlbk6a.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} [2010.02.20 20:05:20 | 000,000,000 | ---D | M] (CustomizeGoogle) -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Mozilla\Firefox\Profiles\bxjlbk6a.default\extensions\{fce36c1e-58d8-498a-b2a5-66ad1cedebbb} [2010.06.22 13:15:53 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Mozilla\Firefox\Profiles\bxjlbk6a.default\extensions\trackmenot@mrl.nyu.edu [2010.07.26 14:10:27 | 000,001,609 | ---- | M] () -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Mozilla\Firefox\Profiles\bxjlbk6a.default\searchplugins\ixquick---deutsch.xml [2010.02.20 13:56:39 | 000,000,000 | ---D | M] -- C:\Programme\Mozilla Firefox\extensions [2009.07.15 21:08:31 | 000,001,392 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\amazondotcom-de.xml [2009.07.15 21:08:31 | 000,002,344 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\eBay-de.xml [2009.07.15 21:08:31 | 000,006,805 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\leo_ende_de.xml [2009.07.15 21:08:31 | 000,000,986 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\wikipedia-de.xml [2009.07.15 21:08:31 | 000,000,801 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\yahoo-de.xml O1 HOSTS File: ([2010.07.04 17:12:11 | 000,411,398 | R--- | M]) - C:\WINDOWS3\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: 127.0.0.1 007guard.com - 007guard and Windows Vista O1 - Hosts: 127.0.0.1 007guard.com O1 - Hosts: 127.0.0.1 008i.com O1 - Hosts: 127.0.0.1 008k.com O1 - Hosts: 127.0.0.1 008k.com O1 - Hosts: 127.0.0.1 00hq.com O1 - Hosts: 127.0.0.1 00hq.com O1 - Hosts: 127.0.0.1 010402.com O1 - Hosts: 127.0.0.1 www.032439.com O1 - Hosts: 127.0.0.1 032439.com O1 - Hosts: 127.0.0.1 0scan.com O1 - Hosts: 127.0.0.1 0scan.com O1 - Hosts: 127.0.0.1 1000gratisproben.com O1 - Hosts: 127.0.0.1 www.1000gratisproben.com O1 - Hosts: 127.0.0.1 1001namen.com O1 - Hosts: 127.0.0.1 1001namen.com O1 - Hosts: 127.0.0.1 100888290cs.com O1 - Hosts: 127.0.0.1 www.100888290cs.com O1 - Hosts: 127.0.0.1 100sexlinks.com O1 - Hosts: 127.0.0.1 100sexlinks.com O1 - Hosts: 127.0.0.1 10sek.com O1 - Hosts: 127.0.0.1 10sek.com O1 - Hosts: 127.0.0.1 www.1-2005-search.com O1 - Hosts: 127.0.0.1 1-2005-search.com O1 - Hosts: 14217 more lines... O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Adobe Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) O2 - BHO: (AcroIEToolbarHelper Class) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Programme\Adobe\Adobe Acrobat 6.0\Acrobat\AcroIEFavClient.dll () O2 - BHO: (no name) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - No CLSID value found. O2 - BHO: (FDMIECookiesBHO Class) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Programme\Free Download Manager\iefdm2.dll () O2 - BHO: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - No CLSID value found. O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Programme\Adobe\Adobe Acrobat 6.0\Acrobat\AcroIEFavClient.dll () O3 - HKLM\..\Toolbar: (no name) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - No CLSID value found. O3 - HKLM\..\Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found. O4 - HKLM..\Run: [COMODO Internet Security] C:\Programme\COMODO\COMODO Internet Security\cfp.exe (COMODO) O4 - HKLM..\Run: [ISTray] C:\Programme\Spyware Doctor\pctsTray.exe (PC Tools) O4 - HKLM..\Run: [MSConfig] C:\WINDOWS3\PCHealth\HelpCtr\Binaries\MSConfig.exe (Microsoft Corporation) O4 - HKU\.DEFAULT..\Run: [EPSON Stylus DX6000 Series] C:\WINDOWS3\System32\spool\DRIVERS\W32X86\3\E_FATIBIE.EXE (SEIKO EPSON CORPORATION) O4 - HKU\S-1-5-18..\Run: [EPSON Stylus DX6000 Series] C:\WINDOWS3\System32\spool\DRIVERS\W32X86\3\E_FATIBIE.EXE (SEIKO EPSON CORPORATION) O4 - HKU\.DEFAULT..\RunOnce: [nltide_2] File not found O4 - HKU\S-1-5-18..\RunOnce: [nltide_2] File not found O4 - Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\Bluetooth Manager.lnk = C:\Programme\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 153 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 153 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1757981266-1409082233-1417001333-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: Alles mit FDM herunterladen - C:\Programme\Free Download Manager\dlall.htm () O8 - Extra context menu item: Auswahl mit FDM herunterladen - C:\Programme\Free Download Manager\dlselected.htm () O8 - Extra context menu item: Datei mit FDM herunterladen - C:\Programme\Free Download Manager\dllink.htm () O8 - Extra context menu item: Videos mit FDM herunterladen - C:\Programme\Free Download Manager\dlfvideo.htm () O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Programme\Gemeinsame Dateien\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.) O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Programme\Gemeinsame Dateien\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.) O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Programme\Gemeinsame Dateien\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.) O10 - Protocol_Catalog9\Catalog_Entries\000000000036 - C:\Programme\Gemeinsame Dateien\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.) O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71} hxxp://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB (Reg Error: Key error.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15) O16 - DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15) O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Web Components\11\OWC11.DLL (Microsoft Corporation) O18 - Protocol\Filter\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE11\MSOXMLMF.DLL (Microsoft Corporation) O20 - AppInit_DLLs: (C:\WINDOWS3\system32\guard32.dll) - C:\WINDOWS3\system32\guard32.dll (COMODO) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS3\explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS3\System32\ati2evxx.dll (ATI Technologies Inc.) O24 - Desktop Components:0 (Die derzeitige Homepage) - About:Home O24 - Desktop WallPaper: C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Lokale Einstellungen\Anwendungsdaten\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Lokale Einstellungen\Anwendungsdaten\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009.09.27 20:26:37 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2001.07.28 16:07:56 | 000,001,806 | ---- | M] () - C:\autoexec.nt -- [ NTFS ] O32 - AutoRun File - [2010.06.02 08:49:56 | 000,000,085 | R--- | M] () - D:\autorun.inf -- [ CDFS ] O32 - AutoRun File - [2008.04.24 01:44:40 | 000,114,688 | R--- | M] (Huawei Technologies Co., Ltd.) - E:\AutoRun.exe -- [ CDFS ] O32 - AutoRun File - [2008.06.02 18:16:48 | 000,000,045 | R--- | M] () - E:\AUTORUN.INF -- [ CDFS ] O33 - MountPoints2\{33a2eb51-51f1-11df-ba9e-001422c506e2}\Shell - "" = AutoRun O33 - MountPoints2\{33a2eb51-51f1-11df-ba9e-001422c506e2}\Shell\AutoRun - "" = Auto&Play O33 - MountPoints2\{33a2eb51-51f1-11df-ba9e-001422c506e2}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2008.04.24 01:44:40 | 000,114,688 | R--- | M] (Huawei Technologies Co., Ltd.) O33 - MountPoints2\{4835d961-8299-11df-bb23-001422c506e2}\Shell - "" = AutoRun O33 - MountPoints2\{4835d961-8299-11df-bb23-001422c506e2}\Shell\AutoRun - "" = Auto&Play O33 - MountPoints2\{4835d961-8299-11df-bb23-001422c506e2}\Shell\AutoRun\command - "" = E:\setup_vmc_lite.exe -- File not found O33 - MountPoints2\{4835d962-8299-11df-bb23-001422c506e2}\Shell - "" = AutoRun O33 - MountPoints2\{4835d962-8299-11df-bb23-001422c506e2}\Shell\AutoRun - "" = Auto&Play O33 - MountPoints2\{4835d962-8299-11df-bb23-001422c506e2}\Shell\AutoRun\command - "" = E:\setup_vmc_lite.exe -- File not found O33 - MountPoints2\{704bea10-22e6-11df-ba3f-001422c506e2}\Shell\AutoRun\command - "" = G:\Menu.exe -- File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* NetSvcs: 6to4 - File not found NetSvcs: HidServ - File not found NetSvcs: Ias - File not found NetSvcs: Iprip - File not found NetSvcs: NWCWorkstation - File not found NetSvcs: Nwsapagent - File not found NetSvcs: WmdmPmSp - File not found MsConfig - Services: "wltrysvc" MsConfig - Services: "WZCSVC" MsConfig - Services: "wuauserv" MsConfig - Services: "Irmon" MsConfig - Services: "ERSvc" MsConfig - Services: "BthServ" MsConfig - Services: "Bluetooth Hid Switch Service" MsConfig - Services: "SCardSvr" MsConfig - Services: "FastUserSwitchingCompatibility" MsConfig - Services: "UPS" MsConfig - Services: "Ati HotKey Poller" MsConfig - Services: "Application Updater" MsConfig - Services: "mnmsrvc" MsConfig - Services: "RemoteRegistry" MsConfig - Services: "WMPNetworkSvc" MsConfig - Services: "NetTcpPortSharing" MsConfig - Services: "FontCache3.0.0.0" MsConfig - Services: "WmiApSrv" MsConfig - StartUpFolder: C:^Dokumente und Einstellungen^Administrator.MEINE-hhhhh^Startmenü^Programme^Autostart^ERUNT AutoBackup.lnk - C:\Programme\ERUNT\AUTOBACK.EXE - () MsConfig - StartUpFolder: C:^Dokumente und Einstellungen^Administrator.MEINE-hhhhh^Startmenü^Programme^Autostart^Traffic Counter.lnk - C:\Programme\TrafficCounter\TrafficCounter.exe - File not found MsConfig - StartUpFolder: C:^Dokumente und Einstellungen^All Users.WINDOWS3^Startmenü^Programme^Autostart^Acrobat Assistant.lnk - C:\Programme\Adobe\Adobe Acrobat 6.0\Distillr\acrotray.exe - (Adobe Systems Inc.) MsConfig - StartUpFolder: C:^Dokumente und Einstellungen^All Users.WINDOWS3^Startmenü^Programme^Autostart^Adobe Gamma Loader.lnk - C:\Programme\Gemeinsame Dateien\Adobe\Calibration\Adobe Gamma Loader.exe - (Adobe Systems, Inc.) MsConfig - StartUpReg: a-squared - hkey= - key= - C:\PROGRAMME\EMSISOFT ANTI-MALWARE\a2guard.exe File not found MsConfig - StartUpReg: Broadcom Wireless Manager UI - hkey= - key= - File not found MsConfig - StartUpReg: fsm - hkey= - key= - File not found MsConfig - StartUpReg: SBAMTray - hkey= - key= - C:\Programme\Sunbelt Software\CounterSpy\SBAMTray.exe File not found MsConfig - StartUpReg: UnlockerAssistant - hkey= - key= - C:\Programme\Unlocker\UnlockerAssistant.exe () MsConfig - State: "system.ini" - 0 MsConfig - State: "win.ini" - 0 MsConfig - State: "bootini" - 2 MsConfig - State: "services" - 2 MsConfig - State: "startup" - 2 SafeBootMin: Base - Driver Group SafeBootMin: Boot Bus Extender - Driver Group SafeBootMin: Boot file system - Driver Group SafeBootMin: File system - Driver Group SafeBootMin: Filter - Driver Group SafeBootMin: PCI Configuration - Driver Group SafeBootMin: PNP Filter - Driver Group SafeBootMin: Primary disk - Driver Group SafeBootMin: SCSI Class - Driver Group SafeBootMin: sermouse.sys - Driver SafeBootMin: System Bus Extender - Driver Group SafeBootMin: vds - Service SafeBootMin: vga.sys - Driver SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootNet: Base - Driver Group SafeBootNet: Boot Bus Extender - Driver Group SafeBootNet: Boot file system - Driver Group SafeBootNet: File system - Driver Group SafeBootNet: Filter - Driver Group SafeBootNet: NDIS Wrapper - Driver Group SafeBootNet: NetBIOSGroup - Driver Group SafeBootNet: NetDDEGroup - Driver Group SafeBootNet: Network - Driver Group SafeBootNet: NetworkProvider - Driver Group SafeBootNet: nm - File not found SafeBootNet: nm.sys - File not found SafeBootNet: PCI Configuration - Driver Group SafeBootNet: PNP Filter - Driver Group SafeBootNet: PNP_TDI - Driver Group SafeBootNet: Primary disk - Driver Group SafeBootNet: SCSI Class - Driver Group SafeBootNet: sermouse.sys - Driver SafeBootNet: Streams Drivers - Driver Group SafeBootNet: System Bus Extender - Driver Group SafeBootNet: TDI - Driver Group SafeBootNet: vga.sys - Driver SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices |
06.07.2010, 16:30 | #7 |
| Evtl. System DLL verbogen worden - Internet Explorer wird immerzu versucht zu öffnen OTL Part 2 ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Java (Sun) ActiveX: {10072CEC-8CC1-11D1-986E-00A0C955B42F} - Vektorgrafik-Rendering (VML) ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - NetShow ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 6.4 ActiveX: {283807B5-2C60-11D0-A31D-00AA00B92C03} - DirectAnimation ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll ActiveX: {36f8ec70-c29a-11d1-b5c7-0000f8051515} - Dynamic HTML-Datenbindung für Java ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack ActiveX: {3bf42070-b3b1-11d1-b5c5-0000f8051515} - Uniscribe ActiveX: {4278c270-a269-11d1-b5bf-0000f8051515} - Erweitertes Authoring ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install ActiveX: {44BBA842-CC51-11CF-AAFA-00AA00B6015B} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS3\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - DirectShow ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help ActiveX: {4f216970-c90c-11d1-b5c7-0000f8051515} - DirectAnimation Java Classes ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.7 ActiveX: {5056b317-8d4c-43ee-8543-b9d1e234b8f4} - Sicherheitsupdate für Windows XP (KB923789) ActiveX: {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS3\INF\msmsgs.inf,BLC.QuietInstall.PerUser ActiveX: {5A8D6EE0-3E18-11D0-821E-444553540000} - ICW ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player 11 ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access ActiveX: {7131646D-CD3C-40F4-97B9-CD9E4E6262EF} - .NET Framework ActiveX: {73FA19D0-2D75-11D2-995D-00C04F98BBC9} - Web Folders ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\WINDOWS3\system32\ie4uinit.exe -BaseSettings ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - c:\WINDOWS3\system32\Rundll32.exe c:\WINDOWS3\system32\mscories.dll,Install ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding ActiveX: {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F} - .NET Framework ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts ActiveX: {CC2A9BA0-3BDD-11D0-821E-444553540000} - Taskplaner ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker v2.1 ActiveX: {D27CDB6E-AE6D-11cf-96B8-444553540000} - Shockwave Flash ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface ActiveX: <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:\WINDOWS3\system32\ieudinit.exe ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS3\inf\unregmp2.exe /ShowWMP ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - %systemroot%\system32\shmgrate.exe OCInstallUserConfigIE ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP ActiveX: >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} - %systemroot%\system32\shmgrate.exe OCInstallUserConfigOE Drivers32: msacm.iac2 - C:\WINDOWS3\system32\iac25_32.ax (Intel Corporation) Drivers32: msacm.l3acm - C:\WINDOWS3\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS) Drivers32: msacm.sl_anet - C:\WINDOWS3\System32\sl_anet.acm (Sipro Lab Telecom Inc.) Drivers32: msacm.trspch - C:\WINDOWS3\System32\tssoft32.acm (DSP GROUP, INC.) Drivers32: vidc.cvid - C:\WINDOWS3\System32\iccvid.dll (Radius Inc.) Drivers32: vidc.iv31 - C:\WINDOWS3\System32\ir32_32.dll () Drivers32: vidc.iv32 - C:\WINDOWS3\System32\ir32_32.dll () Drivers32: vidc.iv41 - C:\WINDOWS3\System32\ir41_32.ax (Intel Corporation) Drivers32: vidc.iv50 - C:\WINDOWS3\System32\ir50_32.dll (Intel Corporation) Drivers32: VIDC.WMV3 - C:\WINDOWS3\System32\wmv9vcm.dll (Microsoft Corporation) Drivers32: vidc.XVID - C:\WINDOWS3\System32\xvidvfw.dll () CREATERESTOREPOINT Restore point Set: OTL Restore Point (84174628787847168) ========== Files/Folders - Created Within 30 Days ========== File not found -- C:\WINDOWS3\System32\zipfldr.dll File not found -- C:\WINDOWS3\System32\ZIPDLL.DLL File not found -- C:\WINDOWS3\System32\xvidvfw.dll File not found -- C:\WINDOWS3\System32\xvidcore.dll File not found -- C:\WINDOWS3\System32\xvid.ax File not found -- C:\Programme\X-Setup Pro File not found -- C:\Dokumente und Einstellungen\All Users.WINDOWS3\Anwendungsdaten\X-Setup Pro File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\X-Setup Pro File not found -- C:\WINDOWS3\System32\xpssvcs.dll File not found -- C:\WINDOWS3\System32\xpsshhdr.dll File not found -- C:\WINDOWS3\System32\xpsp4res.dll File not found -- C:\WINDOWS3\System32\xpsp3res.dll File not found -- C:\WINDOWS3\System32\xpsp2res.dll File not found -- C:\WINDOWS3\System32\xpsp1res.dll File not found -- C:\WINDOWS3\System32\xpob2res.dll File not found -- C:\WINDOWS3\System32\xolehlp.dll File not found -- C:\WINDOWS3\System32\xmlprovi.dll File not found -- C:\WINDOWS3\System32\xmlprov.dll File not found -- C:\WINDOWS3\System32\xmllite.dll File not found -- C:\WINDOWS3\System32\xenroll.dll File not found -- C:\WINDOWS3\System32\xcopy.exe File not found -- C:\WINDOWS3\System32\xactsrv.dll File not found -- C:\WINDOWS3\System32\wzcsvc.dll File not found -- C:\WINDOWS3\System32\wzcsapi.dll File not found -- C:\WINDOWS3\System32\wzcdlg.dll File not found -- C:\WINDOWS3\System32\wuweb.dll File not found -- C:\WINDOWS3\System32\wups2.dll File not found -- C:\WINDOWS3\System32\wups.dll File not found -- C:\WINDOWS3\System32\wupdmgr.exe File not found -- C:\WINDOWS3\System32\wudfx.dll File not found -- C:\WINDOWS3\System32\wudfsvc.dll File not found -- C:\WINDOWS3\System32\wudfplatform.dll File not found -- C:\WINDOWS3\System32\wudfhost.exe File not found -- C:\WINDOWS3\System32\wudfcoinstaller.dll File not found -- C:\WINDOWS3\System32\wucltui.dll.mui File not found -- C:\WINDOWS3\System32\wucltui.dll File not found -- C:\WINDOWS3\System32\wuauserv.dll File not found -- C:\WINDOWS3\System32\wuaueng1.dll File not found -- C:\WINDOWS3\System32\wuaueng.dll.mui File not found -- C:\WINDOWS3\System32\wuaueng.dll File not found -- C:\WINDOWS3\System32\wuaucpl.cpl.mui File not found -- C:\WINDOWS3\System32\wuaucpl.cpl.manifest File not found -- C:\WINDOWS3\System32\wuaucpl.cpl File not found -- C:\WINDOWS3\System32\wuauclt1.exe File not found -- C:\WINDOWS3\System32\wuauclt.exe File not found -- C:\WINDOWS3\System32\wuapi.dll.mui File not found -- C:\WINDOWS3\System32\wuapi.dll File not found -- C:\WINDOWS3\System32\wtsapi32.dll File not found -- C:\WINDOWS3\System32\wstrenderer.ax File not found -- C:\WINDOWS3\System32\wstpager.ax File not found -- C:\WINDOWS3\System32\wstdecod.dll File not found -- C:\WINDOWS3\System32\wsock32.dll File not found -- C:\WINDOWS3\System32\wsnmp32.dll File not found -- C:\WINDOWS3\System32\wshtcpip.dll File not found -- C:\WINDOWS3\System32\WshRm.dll File not found -- C:\WINDOWS3\System32\wshom.ocx File not found -- C:\WINDOWS3\System32\wshnetbs.dll File not found -- C:\WINDOWS3\System32\wshisn.dll File not found -- C:\WINDOWS3\System32\wshirda.dll File not found -- C:\WINDOWS3\System32\wship6.dll File not found -- C:\WINDOWS3\System32\wshext.dll File not found -- C:\WINDOWS3\System32\wshde.dll File not found -- C:\WINDOWS3\System32\wshcon.dll File not found -- C:\WINDOWS3\System32\wshbth.dll File not found -- C:\WINDOWS3\System32\wshatm.dll File not found -- C:\WINDOWS3\System32\wsecedit.dll File not found -- C:\WINDOWS3\System32\wscui.cpl File not found -- C:\WINDOWS3\System32\wscsvc.dll File not found -- C:\WINDOWS3\System32\wscript.exe File not found -- C:\WINDOWS3\System32\wscntfy.exe File not found -- C:\WINDOWS3\System32\ws2help.dll File not found -- C:\WINDOWS3\System32\ws2_32.dll File not found -- C:\WINDOWS3\System32\write.exe File not found -- C:\WINDOWS3\System32\wpnpinst.exe File not found -- C:\WINDOWS3\System32\WPDSp.dll File not found -- C:\WINDOWS3\System32\wpdshserviceobj.dll File not found -- C:\WINDOWS3\System32\wpdshextres.dll File not found -- C:\WINDOWS3\System32\wpdshextautoplay.exe File not found -- C:\WINDOWS3\System32\wpdshext.dll File not found -- C:\WINDOWS3\System32\wpdmtpus.dll File not found -- C:\WINDOWS3\System32\wpdmtp.dll File not found -- C:\WINDOWS3\System32\wpdconns.dll File not found -- C:\WINDOWS3\System32\wpd_ci.dll File not found -- C:\WINDOWS3\System32\wpabaln.exe File not found -- C:\WINDOWS3\System32\wpa.dbl File not found -- C:\WINDOWS3\System32\wowfaxui.dll File not found -- C:\WINDOWS3\System32\wowfax.dll File not found -- C:\WINDOWS3\System32\wowexec.exe File not found -- C:\WINDOWS3\System32\wowdeb.exe File not found -- C:\WINDOWS3\System32\wow32.dll File not found -- C:\WINDOWS3\System32\wmvxencd.dll File not found -- C:\WINDOWS3\System32\wmvsencd.dll File not found -- C:\WINDOWS3\System32\wmvsdecd.dll File not found -- C:\WINDOWS3\System32\wmvencod.dll File not found -- C:\WINDOWS3\System32\wmvds32.ax File not found -- C:\WINDOWS3\System32\wmvdmoe2.dll File not found -- C:\WINDOWS3\System32\wmvdmod.dll File not found -- C:\WINDOWS3\System32\wmvdecod.dll File not found -- C:\WINDOWS3\System32\WMVCore.dll File not found -- C:\WINDOWS3\System32\wmvadve.dll File not found -- C:\WINDOWS3\System32\wmvadvd.dll File not found -- C:\WINDOWS3\System32\wmv9vcm.dll File not found -- C:\WINDOWS3\System32\wmv8ds32.ax File not found -- C:\WINDOWS3\WMSysPr9.prx File not found -- C:\WINDOWS3\System32\wmstream.dll File not found -- C:\WINDOWS3\System32\wmspdmoe.dll File not found -- C:\WINDOWS3\System32\wmspdmod.dll File not found -- C:\WINDOWS3\System32\wmserror.dll File not found -- C:\WINDOWS3\System32\wmsdmoe2.dll File not found -- C:\WINDOWS3\System32\wmsdmoe.dll File not found -- C:\WINDOWS3\System32\wmsdmod.dll File not found -- C:\WINDOWS3\System32\wmpui.dll File not found -- C:\WINDOWS3\System32\wmpsrcwp.dll File not found -- C:\WINDOWS3\System32\wmpshell.dll File not found -- C:\WINDOWS3\wmprfDEU.prx File not found -- C:\WINDOWS3\System32\wmpps.dll File not found -- C:\WINDOWS3\System32\wmpmde.dll File not found -- C:\WINDOWS3\System32\wmploc.dll File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Desktop\wmplayer.exe.lnk File not found -- C:\WINDOWS3\System32\wmphoto.dll File not found -- C:\WINDOWS3\System32\WMPEncEn.dll File not found -- C:\WINDOWS3\System32\wmpeffects.dll File not found -- C:\WINDOWS3\System32\wmpdxm.dll File not found -- C:\WINDOWS3\System32\wmpcore.dll File not found -- C:\WINDOWS3\System32\wmpcd.dll File not found -- C:\WINDOWS3\System32\wmpasf.dll File not found -- C:\WINDOWS3\System32\wmp.ocx File not found -- C:\WINDOWS3\System32\wmp.dll File not found -- C:\WINDOWS3\System32\WMNetmgr.dll File not found -- C:\WINDOWS3\System32\wmiscmgr.dll File not found -- C:\WINDOWS3\System32\wmiprop.dll File not found -- C:\WINDOWS3\System32\wmimgmt.msc File not found -- C:\WINDOWS3\System32\wmidx.dll File not found -- C:\WINDOWS3\System32\wmi.dll File not found -- C:\WINDOWS3\System32\wmerror.dll File not found -- C:\WINDOWS3\System32\wmerrDEU.dll File not found -- C:\WINDOWS3\System32\wmdrmsdk.dll File not found -- C:\WINDOWS3\System32\wmdrmnet.dll File not found -- C:\WINDOWS3\System32\wmdrmdev.dll File not found -- C:\WINDOWS3\System32\wmdmps.dll File not found -- C:\WINDOWS3\System32\wmdmlog.dll File not found -- C:\WINDOWS3\System32\wmasf.dll File not found -- C:\WINDOWS3\System32\wmadmoe.dll File not found -- C:\WINDOWS3\System32\wmadmod.dll File not found -- C:\WINDOWS3\System32\wlnotify.dll File not found -- C:\WINDOWS3\System32\wldap32.dll File not found -- C:\WINDOWS3\System32\wlanapi.dll File not found -- C:\WINDOWS3\System32\wkssvc.dll File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Desktop\WinXDVD.exe.lnk File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Desktop\WINWORD.EXE.lnk File not found -- C:\WINDOWS3\System32\winver.exe File not found -- C:\WINDOWS3\System32\wintrust.dll File not found -- C:\WINDOWS3\System32\winstrm.dll File not found -- C:\WINDOWS3\System32\winsta.dll File not found -- C:\WINDOWS3\System32\winsrv.dll File not found -- C:\WINDOWS3\System32\winspool.exe File not found -- C:\WINDOWS3\System32\winspool.drv File not found -- C:\WINDOWS3\System32\winsock.dll File not found -- C:\WINDOWS3\System32\winshfhc.dll File not found -- C:\WINDOWS3\System32\winscard.dll File not found -- C:\WINDOWS3\winsbak2.reg File not found -- C:\WINDOWS3\winsbak.reg File not found -- C:\WINDOWS3\System32\wins.mib File not found -- C:\WINDOWS3\System32\winrnr.dll File not found -- C:\WINDOWS3\System32\winoldap.mod File not found -- C:\WINDOWS3\System32\winntbbu.dll File not found -- C:\WINDOWS3\winnt256.bmp File not found -- C:\WINDOWS3\winnt.bmp File not found -- C:\WINDOWS3\System32\winnls.dll File not found -- C:\WINDOWS3\System32\winmsd.exe File not found -- C:\WINDOWS3\System32\winmm.dll File not found -- C:\WINDOWS3\System32\winmine.exe File not found -- C:\WINDOWS3\System32\winlogon.exe File not found -- C:\WINDOWS3\System32\winipsec.dll File not found -- C:\WINDOWS3\wininit.ini File not found -- C:\WINDOWS3\System32\wininet.dll File not found -- C:\WINDOWS3\System32\winhttp.dll File not found -- C:\WINDOWS3\winhlp32.exe File not found -- C:\WINDOWS3\System32\winhlp32.exe File not found -- C:\WINDOWS3\System32\winhelp.hlp File not found -- C:\WINDOWS3\winhelp.exe File not found -- C:\WINDOWS3\System32\winfxdocobj.exe File not found -- C:\WINDOWS3\System32\winfax.dll File not found -- C:\WINDOWS3\WindowsShell.Manifest File not found -- C:\WINDOWS3\System32\WindowsLogon.manifest File not found -- C:\WINDOWS3\System32\windowscodecsext.dll File not found -- C:\WINDOWS3\System32\windowscodecs.dll File not found -- C:\WINDOWS3\System32\winchat.exe File not found -- C:\WINDOWS3\System32\winbrand.dll File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Desktop\winamp.exe.lnk File not found -- C:\WINDOWS3\System32\win32spl.dll File not found -- C:\WINDOWS3\System32\win32k.sys File not found -- C:\WINDOWS3\System32\win.com File not found -- C:\WINDOWS3\System32\wifeman.dll File not found -- C:\WINDOWS3\System32\wiavusd.dll File not found -- C:\WINDOWS3\System32\wiavideo.dll File not found -- C:\WINDOWS3\System32\wiashext.dll File not found -- C:\WINDOWS3\System32\wiasf.ax File not found -- C:\WINDOWS3\System32\wiaservc.dll File not found -- C:\WINDOWS3\System32\wiascr.dll File not found -- C:\WINDOWS3\System32\wiadss.dll File not found -- C:\WINDOWS3\System32\wiadefui.dll File not found -- C:\WINDOWS3\System32\wiaacmgr.exe File not found -- C:\WINDOWS3\System32\wfwnet.drv File not found -- C:\WINDOWS3\System32\wfospf.mib File not found -- C:\WINDOWS3\System32\wextract.exe File not found -- C:\WINDOWS3\System32\webvw.dll File not found -- C:\WINDOWS3\System32\webhits.dll File not found -- C:\WINDOWS3\System32\webfldrs.msi File not found -- C:\WINDOWS3\System32\webclnt.dll File not found -- C:\WINDOWS3\System32\webcheck.dll File not found -- C:\WINDOWS3\System32\wdmaud.drv File not found -- C:\WINDOWS3\System32\wdl.trm File not found -- C:\WINDOWS3\System32\wdigest.dll File not found -- C:\WINDOWS3\System32\wdfmgr.exe File not found -- C:\WINDOWS3\System32\wdfapi.dll File not found -- C:\WINDOWS3\System32\wbdbase.sve File not found -- C:\WINDOWS3\System32\wbdbase.nld File not found -- C:\WINDOWS3\System32\wbdbase.ita File not found -- C:\WINDOWS3\System32\wbdbase.fra File not found -- C:\WINDOWS3\System32\wbdbase.esn File not found -- C:\WINDOWS3\System32\wbdbase.enu File not found -- C:\WINDOWS3\System32\wbdbase.deu File not found -- C:\WINDOWS3\System32\wbcache.sve File not found -- C:\WINDOWS3\System32\wbcache.nld File not found -- C:\WINDOWS3\System32\wbcache.ita File not found -- C:\WINDOWS3\System32\wbcache.fra File not found -- C:\WINDOWS3\System32\wbcache.esn File not found -- C:\WINDOWS3\System32\wbcache.enu File not found -- C:\WINDOWS3\System32\wbcache.deu File not found -- C:\WINDOWS3\System32\wavemsp.dll File not found -- C:\WINDOWS3\System32\watchdog.sys File not found -- C:\WINDOWS3\System32\w3ssl.dll File not found -- C:\WINDOWS3\System32\w3ctrs.h File not found -- C:\WINDOWS3\System32\w32topl.dll File not found -- C:\WINDOWS3\System32\w32tm.exe File not found -- C:\WINDOWS3\System32\w32time.dll File not found -- C:\WINDOWS3\System32\vwipxspx.exe File not found -- C:\WINDOWS3\System32\vwipxspx.dll File not found -- C:\WINDOWS3\System32\vssvc.exe File not found -- C:\WINDOWS3\System32\vssapi.dll File not found -- C:\WINDOWS3\System32\vssadmin.exe File not found -- C:\WINDOWS3\System32\vss_ps.dll File not found -- C:\WINDOWS3\System32\VSFLEX3.OCX File not found -- C:\Programme\VS Revo Group File not found -- C:\Dokumente und Einstellungen\All Users.WINDOWS3\Anwendungsdaten\Vodafone File not found -- C:\WINDOWS3\vmmreg32.dll File not found -- C:\Dokumente und Einstellungen\All Users.WINDOWS3\Desktop\VLC media player.lnk File not found -- C:\WINDOWS3\System32\vjoy.dll File not found -- C:\WINDOWS3\System32\vidcap.ax File not found -- C:\WINDOWS3\System32\vga64k.dll File not found -- C:\WINDOWS3\System32\vga256.dll File not found -- C:\WINDOWS3\System32\vga.drv File not found -- C:\WINDOWS3\System32\vga.dll File not found -- C:\WINDOWS3\System32\vfpodbc.dll File not found -- C:\WINDOWS3\System32\version.dll File not found -- C:\WINDOWS3\System32\verifier.exe File not found -- C:\WINDOWS3\System32\verifier.dll File not found -- C:\WINDOWS3\System32\verclsid.exe File not found -- C:\Dokumente und Einstellungen\All Users.WINDOWS3\Desktop\Verbindungsassistent.lnk File not found -- C:\Programme\Verbindungsassistent File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Verbindungsassistent File not found -- C:\WINDOWS3\System32\ver.dll File not found -- C:\WINDOWS3\System32\VEN2232.OLB File not found -- C:\WINDOWS3\System32\vdmredir.dll File not found -- C:\WINDOWS3\System32\vdmdbg.dll File not found -- C:\WINDOWS3\System32\vcdex.dll File not found -- C:\WINDOWS3\System32\vbsde.dll File not found -- C:\WINDOWS3\System32\vbscript.dll File not found -- C:\WINDOWS3\System32\vbisurf.ax File not found -- C:\WINDOWS3\System32\vbicodec.ax File not found -- C:\WINDOWS3\System32\VBAME.DLL File not found -- C:\WINDOWS3\System32\vbajet32.dll File not found -- C:\WINDOWS3\System32\VBAEND32.OLB File not found -- C:\WINDOWS3\System32\VBAEN32.OLB File not found -- C:\WINDOWS3\System32\vb6de.dll File not found -- C:\WINDOWS3\System32\v7vga.rom File not found -- C:\WINDOWS3\System32\uxtheme.dll File not found -- C:\WINDOWS3\System32\uWDF.exe File not found -- C:\WINDOWS3\System32\utilman.exe File not found -- C:\WINDOWS3\System32\utildll.dll File not found -- C:\WINDOWS3\System32\usrvpa.dll File not found -- C:\WINDOWS3\System32\usrvoica.dll File not found -- C:\WINDOWS3\System32\usrv80a.dll File not found -- C:\WINDOWS3\System32\usrv42a.dll File not found -- C:\WINDOWS3\System32\usrsvpia.dll File not found -- C:\WINDOWS3\System32\usrshuta.exe File not found -- C:\WINDOWS3\System32\usrsdpia.dll File not found -- C:\WINDOWS3\System32\usrrtosa.dll File not found -- C:\WINDOWS3\System32\usrprbda.exe File not found -- C:\WINDOWS3\System32\usrmlnka.exe File not found -- C:\WINDOWS3\System32\usrlbva.dll File not found -- C:\WINDOWS3\System32\usrfaxa.dll File not found -- C:\WINDOWS3\System32\usrdtea.dll File not found -- C:\WINDOWS3\System32\usrdpa.dll File not found -- C:\WINDOWS3\System32\usrcoina.dll File not found -- C:\WINDOWS3\System32\usrcntra.dll File not found -- C:\WINDOWS3\System32\usp10.dll File not found -- C:\WINDOWS3\System32\userinit.exe File not found -- C:\WINDOWS3\System32\userenv.dll File not found -- C:\WINDOWS3\System32\user32.dll File not found -- C:\WINDOWS3\System32\user.exe File not found -- C:\WINDOWS3\System32\usbui.dll File not found -- C:\WINDOWS3\System32\usbmon.dll File not found -- C:\WINDOWS3\System32\urlmon.dll File not found -- C:\WINDOWS3\System32\url.dll File not found -- C:\WINDOWS3\System32\ureg.dll File not found -- C:\WINDOWS3\System32\ups.exe File not found -- C:\WINDOWS3\System32\upnpui.dll File not found -- C:\WINDOWS3\System32\upnphost.dll File not found -- C:\WINDOWS3\System32\upnpcont.exe File not found -- C:\WINDOWS3\System32\upnp.dll File not found -- C:\WINDOWS3\System32\UNZDLL.DLL File not found -- C:\WINDOWS3\unTMV.exe File not found -- C:\WINDOWS3\System32\untfs.dll File not found -- C:\WINDOWS3\System32\unrar.dll File not found -- C:\WINDOWS3\System32\unlodctr.exe File not found -- C:\WINDOWS3\System32\uniplat.dll File not found -- C:\WINDOWS3\System32\unimdmat.dll File not found -- C:\WINDOWS3\System32\unimdm.tsp File not found -- C:\WINDOWS3\System32\unicode.nls File not found -- C:\WINDOWS3\System32\umpnpmgr.dll File not found -- C:\WINDOWS3\System32\umdmxfrm.dll File not found -- C:\WINDOWS3\System32\umandlg.dll File not found -- C:\WINDOWS3\System32\ulib.dll File not found -- C:\WINDOWS3\System32\UIAutomationCore.dll File not found -- C:\WINDOWS3\System32\ufat.dll File not found -- C:\WINDOWS3\System32\udhisapi.dll File not found -- C:\WINDOWS3\System32\tzchange.exe File not found -- C:\WINDOWS3\System32\typeperf.exe File not found -- C:\WINDOWS3\System32\typelib.dll File not found -- C:\WINDOWS3\System32\txptabs.ocx File not found -- C:\WINDOWS3\System32\TXPstart.exe File not found -- C:\WINDOWS3\System32\txp4.cpl File not found -- C:\WINDOWS3\System32\txflog.dll File not found -- C:\WINDOWS3\twunk_32.exe File not found -- C:\WINDOWS3\twunk_16.exe File not found -- C:\WINDOWS3\System32\twext.dll File not found -- C:\WINDOWS3\System32\TweakUI.exe File not found -- C:\WINDOWS3\twain_32.dll File not found -- C:\WINDOWS3\twain.dll File not found -- C:\WINDOWS3\System32\TsWpfWrp.exe File not found -- C:\WINDOWS3\System32\tssoft32.acm File not found -- C:\WINDOWS3\System32\tspkg.dll File not found -- C:\WINDOWS3\System32\tslicc.ocx File not found -- C:\WINDOWS3\System32\tsgqec.dll File not found -- C:\WINDOWS3\System32\tsddd.dll File not found -- C:\WINDOWS3\System32\tscfgwmi.dll File not found -- C:\WINDOWS3\System32\tsbyuv.dll File not found -- C:\WINDOWS3\System32\tsappcmp.dll File not found -- C:\WINDOWS3\System32\trkwks.dll File not found -- C:\WINDOWS3\System32\tree.com File not found -- C:\WINDOWS3\System32\traffic.dll File not found -- C:\WINDOWS3\System32\tracert6.exe File not found -- C:\WINDOWS3\System32\tracert.exe File not found -- C:\WINDOWS3\System32\tracerpt.exe File not found -- C:\WINDOWS3\System32\tourstart.exe File not found -- C:\WINDOWS3\System32\TosSndPlug.dll File not found -- C:\WINDOWS3\System32\TosSndAPI.dll File not found -- C:\WINDOWS3\System32\TosLaneAPI.dll File not found -- C:\WINDOWS3\System32\TosHidAPI.dll File not found -- C:\WINDOWS3\System32\TosGnsAPI.dll File not found -- C:\WINDOWS3\System32\TosCommAPI.dll File not found -- C:\WINDOWS3\System32\tosBtShell.dll File not found -- C:\WINDOWS3\System32\TosBtSDDB.dll File not found -- C:\WINDOWS3\System32\TosBtHSPAPI.dll File not found -- C:\WINDOWS3\System32\TosBtHcrpAPI.dll File not found -- C:\WINDOWS3\System32\TosBtExt.dll File not found -- C:\WINDOWS3\System32\TosBtECCAPI.dll File not found -- C:\WINDOWS3\System32\TosBtCapApi.dll File not found -- C:\WINDOWS3\System32\TosBtAPI.dll File not found -- C:\WINDOWS3\System32\TosBtAerialAPI.dll File not found -- C:\WINDOWS3\System32\TosBtAcc.dll File not found -- C:\WINDOWS3\System32\TosBdAPI.dll File not found -- C:\WINDOWS3\System32\TosAvdtAPI.dll File not found -- C:\WINDOWS3\System32\TosAvctAPI.dll File not found -- C:\WINDOWS3\System32\TosAvAPI.dll File not found -- C:\WINDOWS3\System32\TosAcpiAPI.dll File not found -- C:\WINDOWS3\System32\toolhelp.dll File not found -- C:\WINDOWS3\System32\tlntsvrp.dll File not found -- C:\WINDOWS3\System32\tlntsvr.exe File not found -- C:\WINDOWS3\System32\tlntsess.exe File not found -- C:\WINDOWS3\System32\tlntadmn.exe File not found -- C:\WINDOWS3\System32\timer.drv File not found -- C:\WINDOWS3\System32\timedate.cpl File not found -- C:\WINDOWS3\System32\ticrf.rat File not found -- C:\WINDOWS3\System32\themeui.dll File not found -- C:\WINDOWS3\System32\tftp.exe File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Eigene Dateien\TextMaker Viewer.tmd File not found -- C:\WINDOWS3\System32\termsrv.dll File not found -- C:\WINDOWS3\System32\termmgr.dll File not found -- C:\WINDOWS3\System32\termcap File not found -- C:\WINDOWS3\System32\telnet.exe File not found -- C:\WINDOWS3\System32\telephon.cpl File not found -- C:\WINDOWS3\System32\tdc.ocx File not found -- C:\WINDOWS3\System32\tcpsvcs.exe File not found -- C:\WINDOWS3\System32\tcpmonui.dll File not found -- C:\WINDOWS3\System32\tcpmon.dll File not found -- C:\WINDOWS3\System32\tcpmib.dll File not found -- C:\WINDOWS3\System32\tcmsetup.exe File not found -- C:\WINDOWS3\System32\TBTMonUI.dll File not found -- C:\WINDOWS3\System32\tbtmon98Language.dll File not found -- C:\WINDOWS3\System32\TBTMon.dll File not found -- C:\WINDOWS3\System32\taskmgr.exe File not found -- C:\WINDOWS3\System32\TASKMGR.COM File not found -- C:\WINDOWS3\System32\taskman.exe File not found -- C:\WINDOWS3\System32\tasklist.exe File not found -- C:\WINDOWS3\System32\taskkill.exe File not found -- C:\WINDOWS3\System32\tapiui.dll File not found -- C:\WINDOWS3\System32\tapisrv.dll File not found -- C:\WINDOWS3\System32\tapiperf.dll File not found -- C:\WINDOWS3\System32\tapi32.dll File not found -- C:\WINDOWS3\System32\tapi3.dll File not found -- C:\WINDOWS3\System32\tapi.dll File not found -- C:\WINDOWS3\System32\tabctl32.ocx File not found -- C:\WINDOWS3\System32\t2embed.dll File not found -- C:\WINDOWS3\System32\T.COM File not found -- C:\WINDOWS3\System32\systray.exe File not found -- C:\WINDOWS3\System32\systeminfo.exe File not found -- C:\WINDOWS3\System32\system.drv File not found -- C:\WINDOWS3\System32\syssetup.dll File not found -- C:\WINDOWS3\System32\sysprtj.sep File not found -- C:\WINDOWS3\System32\sysprint.sep File not found -- C:\WINDOWS3\System32\sysocmgr.exe File not found -- C:\WINDOWS3\System32\sysmon.ocx File not found -- C:\WINDOWS3\System32\syskey.exe File not found -- C:\WINDOWS3\System32\sysinv.dll File not found -- C:\WINDOWS3\System32\sysedit.exe File not found -- C:\WINDOWS3\System32\sysdm.cpl File not found -- C:\WINDOWS3\System32\syncui.dll File not found -- C:\WINDOWS3\System32\synceng.dll File not found -- C:\WINDOWS3\System32\syncapp.exe File not found -- C:\WINDOWS3\System32\sxs.dll File not found -- C:\WINDOWS3\System32\Sx_intf.dll File not found -- C:\WINDOWS3\System32\sx_hyph.dll File not found -- C:\WINDOWS3\System32\swprv.dll File not found -- C:\WINDOWS3\System32\svcpack.dll File not found -- C:\WINDOWS3\System32\svchost.exe File not found -- C:\Programme\Sunbelt Software File not found -- C:\Dokumente und Einstellungen\All Users.WINDOWS3\Anwendungsdaten\Sunbelt File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Sunbelt File not found -- C:\WINDOWS3\System32\subst.exe File not found -- C:\WINDOWS3\System32\strmfilt.dll File not found -- C:\WINDOWS3\System32\strmdll.dll File not found -- C:\WINDOWS3\System32\streamci.dll File not found -- C:\WINDOWS3\System32\storprop.dll File not found -- C:\WINDOWS3\System32\storage.dll File not found -- C:\WINDOWS3\System32\stobject.dll File not found -- C:\WINDOWS3\System32\stimon.exe File not found -- C:\WINDOWS3\System32\sti_ci.dll File not found -- C:\WINDOWS3\System32\sti.dll File not found -- C:\WINDOWS3\System32\stdole32.tlb File not found -- C:\WINDOWS3\System32\stdole2.tlb File not found -- C:\WINDOWS3\System\stdole.tlb File not found -- C:\WINDOWS3\System32\stclient.dll File not found -- C:\WINDOWS3\System32\stac97co.dll File not found -- C:\WINDOWS3\System32\stac97.cpl File not found -- C:\WINDOWS3\System32\SSubTmr6.dll File not found -- C:\WINDOWS3\System32\sstext3d.scr File not found -- C:\WINDOWS3\System32\ssstars.scr File not found -- C:\WINDOWS3\System32\sspipes.scr File not found -- C:\WINDOWS3\System32\ssmyst.scr File not found -- C:\WINDOWS3\System32\ssmypics.scr File not found -- C:\WINDOWS3\System32\ssmarque.scr File not found -- C:\WINDOWS3\System32\ssflwbox.scr File not found -- C:\WINDOWS3\System32\ssdpsrv.dll File not found -- C:\WINDOWS3\System32\ssdpapi.dll File not found -- C:\WINDOWS3\System32\ssbezier.scr File not found -- C:\WINDOWS3\System32\ss3dfo.scr File not found -- C:\WINDOWS3\System32\srvsvc.dll File not found -- C:\WINDOWS3\System32\srsvc.dll File not found -- C:\WINDOWS3\System32\srrstr.dll File not found -- C:\WINDOWS3\System32\srclient.dll File not found -- C:\WINDOWS3\System32\sqlwoa.dll File not found -- C:\WINDOWS3\System32\sqlwid.dll File not found -- C:\WINDOWS3\System32\sqlunirl.dll File not found -- C:\WINDOWS3\System32\sqlsrv32.rll File not found -- C:\WINDOWS3\System32\sqlsrv32.dll File not found -- C:\WINDOWS3\System32\sqlsodbc.chm File not found -- C:\WINDOWS3\System32\SQLServerManager.msc File not found -- C:\WINDOWS3\System32\sqlctr90.dll |
06.07.2010, 16:33 | #8 |
/// Malware-holic | Evtl. System DLL verbogen worden - Internet Explorer wird immerzu versucht zu öffnen hast du 3 windows instalationen oder hast du windows einfach immer neu drüber gespielt. wenn letzteres gilt, würde ich mal n backup deiner daten machen und nach nem format c: windows neu aufspielen. danach läuft der pc schneller und du hast auch wesendlich mehr verfügbaren festplatten speicher. |
06.07.2010, 16:34 | #9 |
| Evtl. System DLL verbogen worden - Internet Explorer wird immerzu versucht zu öffnen ========== Files Created - No Company Name ========== [2010.07.02 19:27:10 | 000,000,000 | ---- | C] () -- C:\backup.reg [2010.07.02 19:25:54 | 000,135,168 | ---- | C] () -- C:\zip.exe [2010.07.02 19:25:54 | 000,019,286 | ---- | C] () -- C:\cleanup.exe [2010.07.02 19:25:54 | 000,000,574 | ---- | C] () -- C:\cleanup.bat [2010.06.10 19:22:54 | 000,007,387 | ---- | C] () -- C:\WINDOWS3\System32\drivers\pctgntdi.cat [2010.06.10 19:22:45 | 000,007,412 | ---- | C] () -- C:\WINDOWS3\System32\drivers\PCTAppEvent.cat [2010.06.10 19:22:45 | 000,007,383 | ---- | C] () -- C:\WINDOWS3\System32\drivers\pctcore.cat [2010.06.10 19:22:36 | 000,007,383 | ---- | C] () -- C:\WINDOWS3\System32\drivers\pctplsg.cat [2010.05.22 16:39:20 | 001,161,736 | ---- | C] () -- C:\WINDOWS3\System32\contfilt.dll [2010.02.20 19:39:32 | 000,770,048 | ---- | C] () -- C:\WINDOWS3\System32\BCMLogon.dll [2010.02.20 18:07:46 | 000,754,688 | ---- | C] () -- C:\WINDOWS3\System32\bcmwl564.sys [2010.02.20 18:07:46 | 000,604,928 | ---- | C] () -- C:\WINDOWS3\System32\BCMWL5.SYS [2010.02.19 21:30:06 | 000,625,664 | ---- | C] () -- C:\WINDOWS3\System32\catsrvut.dll [2010.02.19 21:30:05 | 001,267,200 | ---- | C] () -- C:\WINDOWS3\System32\comsvcs.dll [2010.02.19 21:05:04 | 000,348,160 | ---- | C] () -- C:\WINDOWS3\System32\localspl.dll [2010.02.19 21:05:04 | 000,226,304 | ---- | C] () -- C:\WINDOWS3\System32\localsec.dll [2010.02.19 21:05:04 | 000,012,288 | ---- | C] () -- C:\WINDOWS3\System32\localui.dll [2010.02.19 21:05:02 | 000,226,064 | ---- | C] () -- C:\WINDOWS3\System32\lanman.drv [2010.02.19 21:05:01 | 000,002,000 | ---- | C] () -- C:\WINDOWS3\System32\keyboard.drv [2010.02.19 21:04:53 | 006,066,176 | ---- | C] () -- C:\WINDOWS3\System32\ieframe.dll [2010.02.19 21:04:28 | 000,027,200 | R--- | C] () -- C:\WINDOWS3\System32\ctl3dv2.dll [2010.02.19 21:04:27 | 000,604,160 | ---- | C] () -- C:\WINDOWS3\System32\crypt32.dll [2010.02.19 21:04:25 | 000,033,744 | ---- | C] () -- C:\WINDOWS3\System32\commdlg.dll [2010.02.19 21:04:25 | 000,030,160 | ---- | C] () -- C:\WINDOWS3\System32\compobj.dll [2010.02.19 21:04:25 | 000,010,544 | ---- | C] () -- C:\WINDOWS3\System32\comm.drv [2010.02.19 21:04:24 | 000,617,472 | ---- | C] () -- C:\WINDOWS3\System32\comctl32.dll [2010.02.19 21:04:22 | 002,091,520 | ---- | C] () -- C:\WINDOWS3\System32\cdosys.dll [2010.02.19 21:04:18 | 001,025,024 | ---- | C] () -- C:\WINDOWS3\System32\browseui.dll [2010.02.19 21:04:16 | 000,109,504 | ---- | C] () -- C:\WINDOWS3\System32\avifile.dll [2010.02.19 21:04:16 | 000,070,368 | ---- | C] () -- C:\WINDOWS3\System32\avicap.dll [2009.12.17 11:23:38 | 006,680,576 | ---- | C] () -- C:\WINDOWS3\System32\atioglx1.dll [2009.12.17 11:23:38 | 004,820,992 | ---- | C] () -- C:\WINDOWS3\System32\atioglxx.dll [2009.12.17 11:23:37 | 002,307,424 | ---- | C] () -- C:\WINDOWS3\System32\ati3duag.dll [2008.05.04 19:08:49 | 000,692,224 | ---- | C] () -- C:\WINDOWS3\System32\ciaResSvr20.dll [2008.05.04 19:08:49 | 000,020,480 | ---- | C] () -- C:\WINDOWS3\System32\CPUINFO2.DLL ========== LOP Check ========== File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\BitComet File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Booster File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Canneverbe Limited File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\DeepBurner File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\EPSON File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Foxit Software File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Free Download Manager File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Opera File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\ProtectDisc File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Software Informer File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Verbindungsassistent File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Verbindungsassistent(2) File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Vodafone File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\X-Setup Pro File not found -- C:\Dokumente und Einstellungen\All Users.WINDOWS3\Anwendungsdaten\Canneverbe Limited File not found -- C:\Dokumente und Einstellungen\All Users.WINDOWS3\Anwendungsdaten\DATA BECKER File not found -- C:\Dokumente und Einstellungen\All Users.WINDOWS3\Anwendungsdaten\DATA BECKER Downloads File not found -- C:\Dokumente und Einstellungen\All Users.WINDOWS3\Anwendungsdaten\EPSON File not found -- C:\Dokumente und Einstellungen\All Users.WINDOWS3\Anwendungsdaten\FreeDownloadManager.ORG File not found -- C:\Dokumente und Einstellungen\All Users.WINDOWS3\Anwendungsdaten\MicroWorld File not found -- C:\Dokumente und Einstellungen\All Users.WINDOWS3\Anwendungsdaten\TEMP File not found -- C:\Dokumente und Einstellungen\All Users.WINDOWS3\Anwendungsdaten\Vodafone File not found -- C:\Dokumente und Einstellungen\All Users.WINDOWS3\Anwendungsdaten\X-Setup Pro ========== Purity Check ========== ========== Custom Scans ========== < %ALLUSERSPROFILE%\Application Data\*. > < %ALLUSERSPROFILE%\Application Data\*.exe /s > < %APPDATA%\*. > File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Adobe File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\AdobeUM File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\BitComet File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Booster File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Canneverbe Limited File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\DeepBurner File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Download Manager File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\EPSON File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Foxit Software File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Free Download Manager File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Identities File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Macromedia File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Malwarebytes File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Microsoft File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Mozilla File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Opera File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\PC Tools File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\ProtectDisc File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Software Informer File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Sun File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Sunbelt File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Verbindungsassistent File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Verbindungsassistent(2) File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\vlc File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Vodafone File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\Winamp File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\WinRAR File not found -- C:\Dokumente und Einstellungen\Administrator.MEINE-hhhhh\Anwendungsdaten\X-Setup Pro < %APPDATA%\*.exe /s > < %SYSTEMDRIVE%\*.exe > File not found -- C:\cleanup.exe File not found -- C:\Del_CD_ROM.exe File not found -- C:\InstallWTGService.exe File not found -- C:\OSU.exe File not found -- C:\Uninstaller.exe File not found -- C:\Verbindungsassistent.exe File not found -- C:\Verbindungsassistent_SMSMMS.exe File not found -- C:\vssvc.exe File not found -- C:\WTGService.exe File not found -- C:\WTGVistaUtil.exe File not found -- C:\zip.exe < %systemroot%\system32\drivers\*.sys /lockedfiles > File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\acedrv11.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\acpi.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\acpiec.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\aec.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\afd.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\agp440.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\agpcpq.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\alim1541.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\amdagp.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\amdk6.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\amdk7.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\arp1394.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\asyncmac.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\atapi.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ati1btxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ati1mdxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ati1pdxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ati1raxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ati1rvxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ati1snxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ati1ttxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ati1tuxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ati1xbxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ati1xsxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ati2mtaa.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ati2mtag.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\atinbtxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\atinmdxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\atinpdxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\atinraxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\atinrvxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\atinsnxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\atinttxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\atintuxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\atinxbxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\atinxsxx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\atmarpc.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\atmepvc.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\atmlane.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\atmuni.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\audstub.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\b57xp32.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\battc.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\BCMWL5.SYS File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\bcmwl564.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\BCOREUSB.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\bdfsfltr.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\beep.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\bridge.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\bthenum.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\bthmodem.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\bthpan.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\bthport.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\bthprint.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\bthusb.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\cbidf2k.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\cdaudio.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\cdfs.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\cdrom.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\cinemst2.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\classpnp.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\CmBatt.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\cmdguard.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\cmdhlp.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\compbatt.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\cpqdap01.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\crusoe.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\disk.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\diskdump.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\dmboot.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\dmio.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\dmload.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\DMusic.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\drmk.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\drmkaud.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\dxapi.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\dxg.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\dxgthk.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ewdcsc.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ewusbmdm.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\fastfat.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\fdc.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\fips.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\flpydisk.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\fltMgr.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\fsvga.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\fs_rec.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ftdisk.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\gagp30kx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\gtipci21.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\hdaudbus.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\hidbth.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\hidclass.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\hidir.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\hidparse.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\hidusb.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\hsfbs2s2.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\hsfcxts2.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\hsfdpsp2.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\http.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\i8042prt.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\imapi.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\inspect.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\intelide.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\intelppm.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ip6fw.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ipfltdrv.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ipinip.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ipnat.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ipsec.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\irbus.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\irda.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\isapnp.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\kbdclass.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\kmixer.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ks.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ksecdd.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\mbam.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\mbamswissarmy.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\mcd.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\mdmxsdk.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\mf.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\mnmdd.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\mod7700.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\modem.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\mouclass.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\mouhid.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\mountmgr.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\mqac.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\mrxdav.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\mrxsmb.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\msfs.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\msgpc.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\MSKSSRV.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\MSPCLOCK.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\MSPQM.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\mssmbios.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\mtlmnt5.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\mtlstrm.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\mtxparhm.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\mup.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\mutohpen.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ndis.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ndistapi.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ndisuio.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ndiswan.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ndproxy.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\netbios.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\netbt.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\nic1394.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\nikedrv.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\nmnt.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\npfs.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ntfs.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ntmtlfax.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\null.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\nv4_mini.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\nwlnkflt.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\nwlnkfwd.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\nwlnkipx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\nwlnknb.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\nwlnkspx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\nwrdr.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\oprghdlr.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\p3.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\parport.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\partmgr.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\parvdm.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\pci.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\pciide.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\pciidex.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\pcmcia.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\PCTAppEvent.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\PCTCore.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\pctgntdi.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\pctplsg.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\portcls.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\processr.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\psched.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ptilink.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\rasacd.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\rasirda.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\rasl2tp.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\raspppoe.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\raspptp.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\raspti.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\rawwan.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\rdbss.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\rdpcdd.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\rdpdr.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\rdpwd.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\recagent.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\redbook.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\rfcomm.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\rio8drv.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\riodrv.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\rmcast.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\rndismp.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\rndismpx.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\rootmdm.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\rspsc32.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\s3gnbm.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\scsiport.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\sdbus.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\secdrv.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\serenum.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\serial.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\sffdisk.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\sffp_mmc.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\sffp_sd.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\sfloppy.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\sisagp.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\slnt7554.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\slntamr.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\slnthal.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\slwdmsup.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\smbali.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\smcirda.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\smclib.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\sonydcam.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\splitter.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\sr.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\srv.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\STAC97.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\stream.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\swenum.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\swmidi.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\sysaudio.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tape.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tcpip.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tcpip6.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tdi.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tdpipe.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tdtcp.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\termdd.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tosbtsd2.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tosdbt.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tosdvd.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\toshidpt.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tosporte.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tosrfbd.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tosrfbnp.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tosrfcom.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tosrfec.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tosrfhid.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tosrflan.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tosrfnds.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tosrfpcc.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tosrfsnd.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tosrfusb.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tostrans.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tsbvcap.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\tunmp.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\uagp35.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\udfs.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\update.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\usb8023.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\usb8023x.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\usbcamd.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\usbcamd2.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\usbccgp.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\usbd.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\usbehci.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\usbhub.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\usbintel.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\usbport.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\usbprint.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\usbscan.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\usbstor.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\usbuhci.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\usbvideo.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\vdmindvd.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\vga.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\viaagp.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\videoprt.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\volsnap.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\wacompen.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\wadv07nt.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\wadv08nt.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\wadv09nt.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\wadv11nt.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\wanarp.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\watv06nt.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\watv10nt.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\wdmaud.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\wmilib.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\wpdusb.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\ws2ifsl.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\wudfpf.sys File not found Unable to obtain MD5 -- C:\WINDOWS3\System32\drivers\wudfrd.sys < %systemroot%\System32\config\*.sav > File not found -- C:\WINDOWS3\System32\config\default.sav File not found -- C:\WINDOWS3\System32\config\software.sav File not found -- C:\WINDOWS3\System32\config\system.sav < %systemroot%\*. /mp /s > < %systemroot%\system32\*.dll /lockedfiles > [2008.04.14 14:00:00 | 001,384,479 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\WINDOWS3\system32\msvbvm60.dll ========== Alternate Data Streams ========== @Alternate Data Stream - 88 bytes -> C:\WINDOWS3\System32\smss.exe:SummaryInformation < End of report > |
06.07.2010, 16:55 | #10 |
/// Malware-holic | Evtl. System DLL verbogen worden - Internet Explorer wird immerzu versucht zu öffnen ok hast du meine frage gesehen die ich gestellt hab? |
06.07.2010, 17:04 | #11 |
| Evtl. System DLL verbogen worden - Internet Explorer wird immerzu versucht zu öffnen Welche Frage, Malwarebyte hatte ich bereits laufen lassen, keine Befunde. Berichte lösche ich immer sofort, ausser wenn was gefunden wurde. |
06.07.2010, 17:25 | #12 |
/// Malware-holic | Evtl. System DLL verbogen worden - Internet Explorer wird immerzu versucht zu öffnen ich meine beitrag nummer 8 |
06.07.2010, 17:34 | #13 | |
| Evtl. System DLL verbogen worden - Internet Explorer wird immerzu versucht zu öffnenZitat:
Datenbackup hab ich schon lange gemacht, aber wenn dort auch was ist ??? Ich trau langsam den ganzen Antiviren, Antitrojaner Progs nicht mehr. Und ehrlich gesagt, hab ich keine Bock auf schon wieder neuaufsetzen, solange er noch ruhig läuft. Jetzt seit 02-2010. Erstemal das was nicht stimmt. |
06.07.2010, 17:41 | #14 |
/// Malware-holic | Evtl. System DLL verbogen worden - Internet Explorer wird immerzu versucht zu öffnen das daten backup kann man ja dann prüfen, wen der pc zurückgesetzt ist. im entefekt musst du es wissen, aber wenn du schon n backup hast, ist das bereinigen definitiv ne längere arbeit als das system zurückzusetzen |
07.07.2010, 12:26 | #15 |
| Evtl. System DLL verbogen worden - Internet Explorer wird immerzu versucht zu öffnen So nach diversen Prozessanalysen hab ich dann noch ne andre trojaner, wurm software namens emco malware destroyer (wurde mir empfohlen) getestet und siehe da, ein wurm namens nmc.xyz wurde in der registry, den dll datein und an anderen orten gefunden. jetzt erstmal vor beseitigung systemwiederherstellungspunkt erstellen und dann neustart zum löschen. na mal sehen |
Themen zu Evtl. System DLL verbogen worden - Internet Explorer wird immerzu versucht zu öffnen |
browseui preloader, comodo, dll, dll-bibliothek, explorer, explorer.exe, firefox, firewall, folge, free download, geblockt, hkus\s-1-5-18, hook, internet, internet explorer, locker, log, malware, nicht mehr, ohne befund, plug-in, problem, programmstart, recycler, rootkit, software, spybot, spyware, system, trojaner, unlocker, unregelmäßige, winlogon.exe |