|
Plagegeister aller Art und deren Bekämpfung: "Copy of Shortcut to (1).ink" (virus?) auf USBstick- Datenübertragung ohne virenübertragung möglich?Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
29.12.2010, 00:49 | #1 |
| "Copy of Shortcut to (1).ink" (virus?) auf USBstick- Datenübertragung ohne virenübertragung möglich? Hallo ich bin ein vollkommener Laie auf dem Themengebiet computer und habe nun, schätze ich, einen Virus auf meinem USB-stick. Dieser zeigt sich dadurch, dass ich 5 unlöschbare dateien auf meinem Stick habe, die ich vorher nicht drauf hatte, namens: Copy of Shortcut to (1).ink Copy of Shortcut to (2).ink Copy of Shortcut to (3).ink Copy of Shortcut to (4).ink und zusätzlich gibt es noch den Ordner "RECYCLER", den man auch nicht löschen kann. Ich bin mir sicher, dass dieser Virus(wenn es denn einer ist?!) von meinem eigenen PC auf den Stick gekommen ist, weil ich einen neuen USBstick gekauft habe, eingesteckt habe und dieser auch sofort diese dateien drauf hatte. nun habe ich einen neuen laptop und will Bilder, Musik und Word-Dokumente von meinem alten PC mit dem Virus auf meinen neuen laptop übertragen. Nun zu meiner Frage: kann ich die Dateien trotz dem Virus auf dem Stick und dem Computer auf meinen laptop übertragen oder ist der laptop dann auch gleich infiziert. Wenn ja, was gibt es für andere Möglichkeiten meine alten Dateien "gesund" auf den laptop zu übertragen? Und weitere Frage: kann ich den USB-Stick noch weiterhin benutzen oder muss ich ihn wegwerfen? Ich verwende auf dem neuen Laptop und altem PC windows vista. es wäre echt super, wenn mir jemand helfen könnte! schon mal danke im vorraus |
29.12.2010, 14:49 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | "Copy of Shortcut to (1).ink" (virus?) auf USBstick- Datenübertragung ohne virenübertragung möglich? Hallo und
__________________Bitte routinemäßig einen Vollscan mit Malwarebytes machen und Log posten. Den Stick natürlich mit scannen lassen. Denk daran, dass Malwarebytes vor jedem Scan manuell aktualisiert werden muss! Falls Logs aus älteren Scans mit Malwarebytes vorhanden sind, bitte auch davon alle posten! Danach OTL: Systemscan mit OTL Lade Dir bitte OTL von Oldtimer herunter und speichere es auf Deinem Desktop
__________________ |
29.12.2010, 18:44 | #3 |
| "Copy of Shortcut to (1).ink" (virus?) auf USBstick- Datenübertragung ohne virenübertragung möglich? Hallo Arne
__________________danke für deine antwort probelm ist jetzt nur, dass ich erst in eingen tagen wieder an meinen alten PC rankomme und von dem neuen laptop bringt das ja wohl nichts...(?!) liebe grüße |
29.12.2010, 20:15 | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ | "Copy of Shortcut to (1).ink" (virus?) auf USBstick- Datenübertragung ohne virenübertragung möglich? Ich warte so lange... Nicht dass ich nichts zu tun hätte, aber ich seh mir die Logs an wenn du sie hast
__________________ Logfiles bitte immer in CODE-Tags posten |
31.12.2010, 12:42 | #5 |
| "Copy of Shortcut to (1).ink" (virus?) auf USBstick- Datenübertragung ohne virenübertragung möglich? wie lieb, danke ich poste die Logs dann, wenn ich wieder dran bin... Lg |
03.01.2011, 15:45 | #6 |
| "Copy of Shortcut to (1).ink" (virus?) auf USBstick- Datenübertragung ohne virenübertragung möglich? Hallo... soo hier habe ich erstmal den log von malwarebytes... Malwarebytes' Anti-Malware 1.50.1.1100 Malwarebytes Datenbank Version: 5447 Windows 6.0.6000 Internet Explorer 7.0.6000.16916 03.01.2011 15:36:04 mbam-log-2011-01-03 (15-36-04).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|G:\|) Durchsuchte Objekte: 302660 Laufzeit: 1 Stunde(n), 28 Minute(n), 56 Sekunde(n) Infizierte Speicherprozesse: 1 Infizierte Speichermodule: 0 Infizierte Registrierungsschlüssel: 0 Infizierte Registrierungswerte: 2 Infizierte Dateiobjekte der Registrierung: 0 Infizierte Verzeichnisse: 0 Infizierte Dateien: 591 Infizierte Speicherprozesse: c:\Users\***_2\AppData\Roaming\svchost.exe (Spyware.Passwords.XGen) -> 2952 -> Unloaded process successfully. Infizierte Speichermodule: (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\svchost (Spyware.Passwords.XGen) -> Value: svchost -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\{4A5D547C-7F12-82F4-9142-A3416677D20D} (Trojan.ZbotR.Gen) -> Value: {4A5D547C-7F12-82F4-9142-A3416677D20D} -> Delete on reboot. Infizierte Dateiobjekte der Registrierung: (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: (Keine bösartigen Objekte gefunden) Infizierte Dateien: c:\Users\***_2\AppData\Roaming\svchost.exe (Spyware.Passwords.XGen) -> Quarantined and deleted successfully. c:\Users\***_2\AppData\Local\Temp\tmp3fddc99a\all-zahlung.exe (Trojan.Agent) -> Quarantined and deleted successfully. c:\Users\***_2\AppData\Local\Temp\tmp52e364ab\KillEXE.exe (Trojan.Banker) -> Quarantined and deleted successfully. c:\Users\***_2\AppData\Local\Temp\tmp748db23c\KillEXE.exe (Trojan.Banker) -> Quarantined and deleted successfully. c:\Users\***_2\AppData\Local\Temp\tmpf7cae3bd\Output.exe (Spyware.Passwords.XGen) -> Quarantined and deleted successfully. c:\Users\***_2\AppData\Local\Temp\tmpfac652b3\ALL.exe (Spyware.Passwords.XGen) -> Quarantined and deleted successfully. c:\Users\***_2\AppData\Roaming\microsoft\Windows\start menu\Programs\Startup\wgbefygb.exe (Trojan.Agent) -> Delete on reboot. g:\RECYCLER\s-3-5-21-6034713586-0544507367-814511413-6417\npaFKXqO.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-3-5-21-6034713586-0544507367-814511413-6417\RkVDeVwO.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-3-5-21-6034713586-0544507367-814511413-6417\FDnrNEUe.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\hNbQCgHB.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\eYjRSSQX.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\pTUqAQAa.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\FgwLmooA.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\gVriaPqj.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\WqvWaPfF.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\jeUeUdfe.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\mbHKEdFR.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\SthNPDuM.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\EPSuyYTk.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\CphDTucs.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\KIKsasxy.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\DOjerwRt.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\BlEQLtjj.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ifriuVLL.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\spnFVmtn.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\GdTgwbjW.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\GuinVVbY.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\TXudQkkf.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\pEhPvKCA.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\eOecrjSE.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\rHdtjEbD.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\tpYadLsx.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\iCAYJGot.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\hfsvJWEy.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ZqefyvEQ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\msPVCtQw.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\XWFMOJDo.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\thrrBKue.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\gjhxgHhn.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\IadYPTCM.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\qcgaspBe.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\KoShoWyK.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\VDsHjxTJ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\OmXjmnGC.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\woxhbEFj.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\AsorvyAq.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\AxeGRdTy.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\pNmNUVxl.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\LoSuXvye.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\txqpVAFp.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\jfULtCGF.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ypTIUPyV.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\oPKblnAi.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ODupLCND.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ewmthEPy.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\gtQZWFYU.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\qGDHBLCx.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\CwEdmEeh.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\aatYMRpm.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\RgVtNwCI.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\GKNWlcNf.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\TCiqINSg.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\lBvTvptE.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\palkUOqH.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\xNDPjmxY.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\QrJyJxro.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\eyhgTIfW.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\BiVgOFSZ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\TbyauUqB.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\kRrWTROU.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ZWnlokSm.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\FtSVilOW.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\NEweUPvB.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\CKNKTQrk.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\dTbuZcra.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\WcRBiDZQ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\fCKORbwA.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\jDJIjpgx.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\pCLmgVdI.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\rdfjwdwu.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\XvCxWUlY.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\tOYjXlmL.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\MdBgseVM.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\oVHkVXqa.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\sGdnaPGQ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\rmLYyuYu.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\GowDkWKC.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\uIqFeGTM.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ksyPFqGl.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ALxYDLps.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\khYDYCLP.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\lnGTqfFr.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ngEnHNEo.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\aVCaSPuV.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\VEtWWMjy.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\hOJPgGqi.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\WsDrKVuX.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\MrdYfnqc.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\WFpLvlOk.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\DCXWaRux.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\jVYdHxMa.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\uxlOJjGe.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\wrBxMiDq.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\bwyKpmeo.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\brvhsUIg.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\RMPshygk.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\xwSerbTc.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\LRdNVAps.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\HdZKruDm.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\cjmFHpgY.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\IlqlHcjc.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\nTHnrOfR.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\UUPNreBb.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\qBtqXCum.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\cRDblloj.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\tdHGQhwy.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\LHuSFFOi.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\XvYgExOu.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\MqEnNLel.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\GGdiXtan.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\PPqiTxZP.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\eoTxytNM.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\FfTBSExG.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\fcvdFVeO.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ULbckAxR.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\tgfFwSFf.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\yHMDFLVP.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\TZtQVpox.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\iOMoKCQA.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\PJIcdsHf.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\AiGEYiXk.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\CmmjXWBm.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\MvhuKNeF.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\HAwPIGCd.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\UKSfjkkQ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\BPNdGbWv.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\LBaTCheM.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\DlPJAyGD.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\IVBayWWn.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\uQMHUpkX.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\OMYyckFU.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\mSoKJDth.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\fUmncYel.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\TDOPHRYa.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\syPsqLOF.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\jJQCcSNe.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\sfMAOkXN.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\WRhMJGNw.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\LETTKERu.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\TqYOfgMj.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\AAUdfcBx.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\XwCYLVyX.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\prufRVhe.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\OhlFyCWg.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\eGyDLRoK.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ZEeagjFr.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\IbYTlZuP.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\BDmObRNr.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\KGGLaHCY.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\vZupuInr.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\PvAjObrN.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\pAYarEvn.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\hisjcDED.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ELqPOIQG.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\pBYXWYvA.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\rZiKWOOj.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\TAyHLBJc.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\vkWAQujH.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\cQqMRWoG.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\kYZmPWUi.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ZWxxGsqX.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\hBUPrWdd.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\qDSUrtoN.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\UJGSKvnU.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\BuIvWPpb.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\RZvtIOiW.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\esDREViZ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\QSVHFWkF.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\JiyKUDyI.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\gUdRckts.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\uTDuMoIw.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\jqtaXUqN.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\LeVcLccl.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\UDJMeERH.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\CUjMxBTl.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\MHllsqYM.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ZroRpFAa.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\SCFVBukw.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\OwLSvisC.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\pRKosMVd.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\IbJtqJwM.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\GYFCncQq.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\gLVmYond.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\qRLsREiK.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\xPRNZqxk.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ZbxOBwQk.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ZYGFpHrH.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\nNTFTWnK.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\SSoqwRQj.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\xafHdqcN.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\XqraySGy.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\hORchDGy.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\bvEilSYv.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\TLgBlALF.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\MTUrhmyJ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\nPPEQKOf.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\fUIMUdcm.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\nLpycTeg.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ucVDqJgs.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\cwtVPcqx.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\NoJqqQSG.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\gTINVSkm.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\RmERdRUX.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\MFODwYGV.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\OQSFiLyf.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\duyQUBSF.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ktpVJodP.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\fbPOSsRr.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\GromlNgQ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\rdKvtVYC.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\RjpQjBhX.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\VYAGSaQQ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\StgSGAMs.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\pmmCMTyD.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\AgWeoTxG.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\MlIitUBb.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\XWEuVUJn.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\eURxwXyZ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\OniYRiCK.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ClToQBBr.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\sXxNoSPN.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\bbbcFGPR.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\oKlgpKZx.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\xgPxCQTQ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\PRxrOCSJ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\pfrCQgXM.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\lMtowrBC.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\IFSyLdSC.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\jLNAPmJy.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\VieIBgsu.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ZFPLSxpV.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\KloUdAVS.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\mVpMBZGL.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\SnbrqUCB.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\LnModEjL.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\yxeXiDPX.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\IYBnQYfK.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ljbJSieX.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\RJdpDrdy.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\kddCQRcx.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\nioYmUiO.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\wkQFTuRA.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\NcaSNbTk.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\fZbDLepq.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\wHdAFtVi.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\vfbobBkI.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\jmOumScR.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\qMJybLWI.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\pvlPluUS.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\qSocRDjO.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\MTKxNcOC.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\lrJxnZFG.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\vyASIEUC.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\KrSCmWEN.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\OSletcQf.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\iXMJSoLq.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\lwKsjBPq.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\mXsktMIC.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\nfOBoJUM.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\LTSmwsHv.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\LDFglgZq.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\XRSpMbkf.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\JwhscPBW.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\JOLrxUoU.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\crFnvEXT.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\CFTwdqIB.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\LRHUTKFk.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\RvxXYSVO.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\DhCoQCUO.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\IGRnBMbx.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\kQpplFay.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\sumxbjIf.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\iPclcdfb.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\IPFNFutB.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\cDuiFKen.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\juEiaMav.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\gwPnBtTZ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\NXGlHGCt.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\rldTwrtx.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\JcnrJfJR.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\VCEBfEQW.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\phNtZRiI.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\rFJTYqaU.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\xKceWLUk.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\JQYdJeNr.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\RNRJKWjS.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\KXeKFIBR.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\xaeVcYrC.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\XDcWlpPC.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\BpnbTQLv.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\hAOAdBDC.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\KvvFwlbH.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\CKMxTJYq.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ytpPjkUr.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\mpJZDnBf.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\FNGRsgkm.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\kvcvCuwt.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\pNAUtUdD.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\wZmkxlJN.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\qWSsvdda.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\KRLePqso.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\jQWFPTiw.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\xvnZYlev.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\TtZVSvCD.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\gMpLhiTJ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\jSXZkPff.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\AaiyrPvj.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\PbHcNXNN.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ONestnUN.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\mMUBlSyS.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\aUFKVfSd.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\AExgAOmo.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\BDuZWGcc.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\LDEgbDEO.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\wLbEUZcL.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\uBOaKAtl.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\KVwqiNYk.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\XNGAPeHF.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\xuEBPyCk.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\dJjWiXPJ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\iBShlCeY.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\JohDrjeP.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\OAogwuWS.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\SRNUFbCJ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\OYHYxGLd.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\WESksaJr.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\GbWfSpao.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ytxmjHTX.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\rPoGCQgA.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\QXtLCWhT.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\VJRCTnUp.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\htQLNCWi.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\SbUanqZH.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\HurXOCOB.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\nsNCkgvM.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\DeqHeYZR.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\RmESUbUe.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ZBcqMvro.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\dxSyCmpY.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\vHWjHJCi.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\McUPUdva.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\UFwypWeL.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\eFCnpcyy.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\hkSyNMQj.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\VcdOEmqm.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\WacsyAJe.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\MWTAXBqS.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\EPxrYxmW.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\pKwdFaUS.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ehrDKIMB.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\FhMKjsei.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\hJBIUgDF.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\fTGlLKyD.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\UJnJqMkf.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\EmCPonHX.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\uhcSfwqL.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\nkGEbUJR.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\kqqNJctb.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\jBpxAfQl.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\urXecliT.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ZHsbRtJW.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\oOaAiLvy.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\paZtrLKE.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\fnICTReH.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\usfqwSns.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\dBUnCtSD.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\IhLasIEB.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\bJMfYadp.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\Gtigghek.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\jeMWXVQw.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\nueFTjMU.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\lgKVDSEl.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ZxLVYqqo.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\qaqFnxjg.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\DnQqElaE.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\uvWoYwID.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\XxFZnrOP.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\iIwseRUE.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\qpFRADab.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\UroVVQmg.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\KFMsBRtm.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\RAtsCiHU.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\CCTVOxKH.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\PCQlRnlM.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\JuCwJQsd.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\QMjfNqvp.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\kQnVaKau.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\oXomuNtO.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\utUGUScC.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\uYUApMXJ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\fIYODsfb.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\qRIMgFHN.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\wwfYcXuJ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\OLPHoLiD.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\EVKtcLQy.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\JPcJERxs.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\khucLGyO.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\PPtltcfT.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\rkOnRIBr.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\vBnMNsco.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\OFwHOKPZ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\GfNKbIyL.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\rXMyAXFu.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\SiRRlvYM.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\hSGYWaWo.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\UaCDYCVo.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\kkYHuZct.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\jpvLxuTl.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\LYwOXhLL.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\CcKefCCj.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\FlgOLPeo.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\XLeZZfLS.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\dCNvTyKN.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\NAcLrjbv.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\mouBOKgl.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\aetTiSsE.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\EcToUOQs.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\qqUiHZpL.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\oueNWGni.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\RTComKOL.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\YnLhpEmI.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\iKiIicUK.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\qhQUKLIq.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\WDCpIyCL.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\cwrxyVuG.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\GodCAGQp.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\xFfrrCBL.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\UTFQPxwO.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\CFmJOrlW.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\UmsIlQyS.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\iJMZRvxw.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\TwiCCndi.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\JYVNJXMn.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\QvBeyggm.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\CBNPexyf.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\NiKyiCyP.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\rsUYZNCJ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\MyEHXcMW.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\XWpOHKpD.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\OQTaVZvu.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\gqkQvLCc.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\WtyaKPRd.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\KvsEeZFH.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\RwZaZtvt.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\uiaZLbHK.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ebGwdEMe.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\uLZHvhvR.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\xGjTflMt.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\QQueCspj.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\LfiBNUIb.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\VqJhjxyd.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\nnjXGOJn.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\panLsxuv.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\TimORyHp.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\oTqpRlFk.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\hGQvpXTB.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\lXOahNTm.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\gcMiypHN.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\fheKILFK.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\BmaDETFt.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\tgGWJXwN.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\juKxgrbE.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\VvpiqwDI.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\nmqEpafB.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ZZLeiEYK.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\UaSSbQBh.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\oLfFofms.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\GHwJfEHO.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\HsGIUyLq.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\KwbTLfLH.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\HXaGWvOG.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\bSbPOMAp.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\rJJTNJun.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\QTCUdPlI.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\HnUyQawU.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\dVdikNaM.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\UCejptLA.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\QsnAqXjS.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\OrWnJpln.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\NkpMVlSj.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\XOIYmmFC.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\jWChRNOx.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\WuBkkWjU.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\NdDdTWnd.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\TvEjjesU.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\iFdhviWP.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\aZxqurmm.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\lKAYfepW.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\AyyAiQre.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\XOGvEbuO.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\LgAPEKQU.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ZthaLXQf.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\hQKaiinX.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\bKIEIfoU.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\kXnUEyhY.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\fwJfSjgZ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\SNlymNMf.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\tEBqEgBr.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\iFMpjKkn.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\reipBrqL.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\drwvoTZy.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\WQtSorDt.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ewkltHyv.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\NgmeHxrY.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\yJOXBnsc.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\hNfaImkI.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ZjlLLiyI.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\WJhQhpBE.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\LopREpUA.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ABXNdWet.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\hnsxMNLd.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\rfSuIWRl.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\EfvOKqbF.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\VWuCENAo.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\mfyDewRd.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\oJdqdpma.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\FonVrYyq.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\lXYJlNWv.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ELVSJopp.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\hZybYxWb.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\IFaPRiup.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ZchSBtqt.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\AADhAoaR.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ZsGpTwvb.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\oUKjqCPC.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\Ydfaaxql.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\kDuLdfrZ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\GaiUCpBB.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\JntoFsef.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\RTOORprb.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\XgiiqCfv.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\BDXJGmlT.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\OJbseYHD.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\SoKNhcdh.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\wFjQqxed.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\oppRGhJy.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\XyIfDKaq.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\dUoHkoCk.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ILtGIyvV.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\EkMAPYSR.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\fDCJeMqx.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ufFOGwEB.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\onXLOgLT.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\oIgXicKo.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\NctHuutk.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\nFcNEpec.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\kivdjqBA.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\lavrlFJg.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\sRJbeVRa.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\anlxSpYI.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\BDduajft.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ABmDiPFM.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\DibEgkTh.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\KCbLDZhY.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\wnCPxJkH.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\NlBjrvyo.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\TFcPAtQK.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\tnqQQaqR.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\FXZuVNNu.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\cIxVWbdT.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\wUgZZNhJ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\ItPyjhjK.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\rBXHqJKx.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\tJmjKBnQ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\RDWOfIks.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\JdvwVoJH.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\fJMrnUQR.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\EgBXkuxO.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\LwMJMBwU.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\KgCZPGrQ.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\OuJhiBvN.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\JmyqJjWA.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\JPJXORTN.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\GRnufLpE.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\DlQBGuDH.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\MXSfBwBK.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\UkXkDDrA.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\EbUJRqSt.exe (Trojan.Agent) -> Quarantined and deleted successfully. g:\RECYCLER\s-0-4-25-0850163323-1863300617-816525668-7246\IGKPNguj.exe (Trojan.Agent) -> Quarantined and deleted successfully. c:\Users\***_2\AppData\Roaming\Wielw\aqim.exe (Trojan.ZbotR.Gen) -> Quarantined and deleted successfully. |
03.01.2011, 19:59 | #7 |
/// Winkelfunktion /// TB-Süch-Tiger™ | "Copy of Shortcut to (1).ink" (virus?) auf USBstick- Datenübertragung ohne virenübertragung möglich? Die OTL-Logs kommen auch noch?
__________________ Logfiles bitte immer in CODE-Tags posten |
03.01.2011, 22:11 | #8 |
| "Copy of Shortcut to (1).ink" (virus?) auf USBstick- Datenübertragung ohne virenübertragung möglich? soo.. jetzt noch die OTLs... zu Hause hat mein explorer gesponnen und ich konnte sie nicht nach den Malwarebytes schicken... sorry...OTL Logfile: Code:
ATTFilter OTL logfile created on: 03.01.2011 15:58:31 - Run 1 OTL by OldTimer - Version 3.2.20.1 Folder = C:\Users\***_2\Downloads Windows Vista Home Premium Edition (Version = 6.0.6000) - Type = NTWorkstation Internet Explorer (Version = 7.0.6000.16916) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 59,00% Memory free 6,00 Gb Paging File | 5,00 Gb Available in Paging File | 82,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 216,41 Gb Total Space | 142,84 Gb Free Space | 66,01% Space Free | Partition Type: NTFS Drive D: | 107,22 Gb Total Space | 107,12 Gb Free Space | 99,91% Space Free | Partition Type: NTFS Drive G: | 7,45 Gb Total Space | 7,44 Gb Free Space | 99,84% Space Free | Partition Type: FAT32 Computer Name: *** | User Name: ***_2 | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - C:\Programme\iTunesHelper.exe File not found PRC - C:\Users\***_2\Downloads\OTL.exe (OldTimer Tools) PRC - C:\Programme\Google\Google Toolbar\GoogleToolbarUser_32.exe (Google Inc.) PRC - C:\Windows\System32\Macromed\Flash\FlashUtil10i_ActiveX.exe (Adobe Systems, Inc.) PRC - C:\Programme\DivX\DivX Update\DivXUpdate.exe () PRC - C:\Programme\McAfee Security Scan\2.0.181\SSScheduler.exe (McAfee, Inc.) PRC - C:\Programme\Internet Explorer\iexplore.exe (Microsoft Corporation) PRC - C:\Programme\Internet Explorer\ieuser.exe (Microsoft Corporation) PRC - C:\Programme\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Microsoft Corporation) PRC - C:\Programme\Windows Live\Toolbar\wltuser.exe (Microsoft Corporation) PRC - C:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.) PRC - C:\Programme\Samsung\Samsung New PC Studio\NPSAgent.exe (Samsung Electronics Co., Ltd.) PRC - C:\Windows\System32\FsUsbExService.Exe (Teruten) PRC - C:\Windows\explorer.exe (Microsoft Corporation) PRC - C:\Programme\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) PRC - C:\Programme\Windows Sidebar\sidebar.exe (Microsoft Corporation) PRC - C:\Programme\G DATA AntiVirus\AVKTray\AVKTray.exe (G DATA Software AG) PRC - C:\Programme\G DATA AntiVirus\AVK\AVKWCtl.exe (G DATA Software AG) PRC - C:\Programme\G DATA AntiVirus\AVK\AVKService.exe (G DATA Software AG) PRC - C:\Programme\Common Files\G DATA\AVKProxy\AVKProxy.exe (G DATA Software AG) PRC - C:\Programme\Windows Defender\MSASCui.exe (Microsoft Corporation) PRC - C:\Windows\RtHDVCpl.exe (Realtek Semiconductor) PRC - C:\Programme\Common Files\Lexware\Update Manager\LxUpdateManager.exe (Lexware GmbH & Co. KG) PRC - C:\Programme\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe (Sony Ericsson Mobile Communications AB) PRC - C:\Programme\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe () PRC - C:\Programme\Common Files\Teleca Shared\Generic.exe (Teleca AB) PRC - C:\Programme\Brother\ControlCenter3\BrccMCtl.exe (Brother Industries, Ltd.) PRC - C:\Programme\ScanSoft\PaperPort\pptd40nt.exe (Nuance Communications, Inc.) PRC - C:\FirstSteps\OnlineDiagnostic\TestManager\TestHandler.exe (Fujitsu Siemens Computers) PRC - C:\Programme\Windows Media Player\wmpnetwk.exe (Microsoft Corporation) PRC - C:\Programme\Windows Media Player\wmpnscfg.exe (Microsoft Corporation) ========== Modules (SafeList) ========== MOD - C:\Users\***_2\Downloads\OTL.exe (OldTimer Tools) MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.20656_none_463680b8218be5a3\comctl32.dll (Microsoft Corporation) ========== Win32 Services (SafeList) ========== SRV - (McComponentHostService) -- C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe (McAfee, Inc.) SRV - (fsssvc) -- C:\Program Files\Windows Live\Family Safety\fsssvc.exe (Microsoft Corporation) SRV - (SeaPort) -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Microsoft Corporation) SRV - (FsUsbExService) -- C:\Windows\System32\FsUsbExService.Exe (Teruten) SRV - (AVKWCtl) -- C:\Programme\G DATA AntiVirus\AVK\AVKWCtl.exe (G DATA Software AG) SRV - (AVKService) -- C:\Programme\G DATA AntiVirus\AVK\AVKService.exe (G DATA Software AG) SRV - (AVKProxy) -- C:\Program Files\Common Files\G DATA\AVKProxy\AVKProxy.exe (G DATA Software AG) SRV - (WinDefend) -- C:\Programme\Windows Defender\MpSvc.dll (Microsoft Corporation) SRV - (TestHandler) -- C:\FirstSteps\OnlineDiagnostic\TestManager\TestHandler.exe (Fujitsu Siemens Computers) ========== Driver Services (SafeList) ========== DRV - (NwlnkFwd) -- C:\Windows\System32\DRIVERS\nwlnkfwd.sys File not found DRV - (NwlnkFlt) -- C:\Windows\System32\DRIVERS\nwlnkflt.sys File not found DRV - (IpInIp) -- C:\Windows\System32\DRIVERS\ipinip.sys File not found DRV - (blbdrive) -- C:\Windows\System32\drivers\blbdrive.sys File not found DRV - (fssfltr) -- C:\Windows\System32\drivers\fssfltr.sys (Microsoft Corporation) DRV - (FsUsbExDisk) -- C:\Windows\System32\FsUsbExDisk.Sys () DRV - (sscdmdm) -- C:\Windows\System32\drivers\sscdmdm.sys (MCCI Corporation) DRV - (sscdmdfl) -- C:\Windows\System32\drivers\sscdmdfl.sys (MCCI Corporation) DRV - (sscdbus) SAMSUNG USB Composite Device driver (WDM) -- C:\Windows\System32\drivers\sscdbus.sys (MCCI Corporation) DRV - (GDTdiInterceptor) -- C:\Windows\System32\drivers\GDTdiIcpt.sys (G DATA Software AG) DRV - (GDMnIcpt) -- C:\Windows\System32\drivers\MiniIcpt.sys (G DATA Software AG) DRV - (HookCentre) -- C:\Windows\System32\drivers\HookCentre.sys (G DATA Software AG) DRV - (viaide) -- C:\Windows\system32\drivers\viaide.sys (VIA Technologies, Inc.) DRV - (cmdide) -- C:\Windows\system32\drivers\cmdide.sys (CMD Technology, Inc.) DRV - (aliide) -- C:\Windows\system32\drivers\aliide.sys (Acer Laboratories Inc.) DRV - (gdwfpcd) -- C:\Windows\System32\drivers\gdwfpcd32.sys (G DATA Software AG) DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- C:\Windows\System32\drivers\RTKVHDA.sys (Realtek Semiconductor Corp.) DRV - (iaStor) -- C:\Windows\system32\drivers\iastor.sys (Intel Corporation) DRV - (nvrd32) -- C:\Windows\system32\drivers\nvrd32.sys (NVIDIA Corporation) DRV - (nvstor32) -- C:\Windows\system32\drivers\nvstor32.sys (NVIDIA Corporation) DRV - (s816mdm) -- C:\Windows\System32\drivers\s816mdm.sys (MCCI Corporation) DRV - (s816mgmt) Sony Ericsson Device 816 USB WMC Device Management Drivers (WDM) -- C:\Windows\System32\drivers\s816mgmt.sys (MCCI Corporation) DRV - (s816unic) Sony Ericsson Device 816 USB Ethernet Emulation SEMCMR7 (WDM) -- C:\Windows\System32\drivers\s816unic.sys (MCCI) DRV - (s816obex) -- C:\Windows\System32\drivers\s816obex.sys (MCCI Corporation) DRV - (s816nd5) Sony Ericsson Device 816 USB Ethernet Emulation SEMCMR7 (NDIS) -- C:\Windows\System32\drivers\s816nd5.sys (MCCI Corporation) DRV - (s816mdfl) -- C:\Windows\System32\drivers\s816mdfl.sys (MCCI Corporation) DRV - (s816bus) Sony Ericsson Device 816 driver (WDM) -- C:\Windows\System32\drivers\s816bus.sys (MCCI Corporation) DRV - (JRAID) -- C:\Windows\system32\drivers\jraid.sys (JMicron Technology Corp.) DRV - (nvlddmkm) -- C:\Windows\System32\drivers\nvlddmkm.sys (NVIDIA Corporation) DRV - (ViPrt) -- C:\Windows\system32\DRIVERS\ViPrt.sys (VIA Technologies, Inc.) DRV - (ViBus) -- C:\Windows\system32\DRIVERS\ViBus.sys (VIA Technologies, Inc.) DRV - (ql2300) -- C:\Windows\system32\drivers\ql2300.sys (QLogic Corporation) DRV - (adp94xx) -- C:\Windows\system32\drivers\adp94xx.sys (Adaptec, Inc.) DRV - (elxstor) -- C:\Windows\system32\drivers\elxstor.sys (Emulex) DRV - (adpahci) -- C:\Windows\system32\drivers\adpahci.sys (Adaptec, Inc.) DRV - (uliahci) -- C:\Windows\system32\drivers\uliahci.sys (ULi Electronics Inc.) DRV - (iaStorV) -- C:\Windows\system32\drivers\iastorv.sys (Intel Corporation) DRV - (adpu320) -- C:\Windows\system32\drivers\adpu320.sys (Adaptec, Inc.) DRV - (ulsata2) -- C:\Windows\system32\drivers\ulsata2.sys (Promise Technology, Inc.) DRV - (vsmraid) -- C:\Windows\system32\drivers\vsmraid.sys (VIA Technologies Inc.,Ltd) DRV - (ql40xx) -- C:\Windows\system32\drivers\ql40xx.sys (QLogic Corporation) DRV - (UlSata) -- C:\Windows\system32\drivers\ulsata.sys (Promise Technology, Inc.) DRV - (adpu160m) -- C:\Windows\system32\drivers\adpu160m.sys (Adaptec, Inc.) DRV - (nvraid) -- C:\Windows\system32\drivers\nvraid.sys (NVIDIA Corporation) DRV - (nfrd960) -- C:\Windows\system32\drivers\nfrd960.sys (IBM Corporation) DRV - (iirsp) -- C:\Windows\system32\drivers\iirsp.sys (Intel Corp./ICP vortex GmbH) DRV - (SiSRaid4) -- C:\Windows\system32\drivers\sisraid4.sys (Silicon Integrated Systems) DRV - (nvstor) -- C:\Windows\system32\drivers\nvstor.sys (NVIDIA Corporation) DRV - (aic78xx) -- C:\Windows\system32\drivers\djsvs.sys (Adaptec, Inc.) DRV - (arcsas) -- C:\Windows\system32\drivers\arcsas.sys (Adaptec, Inc.) DRV - (LSI_SCSI) -- C:\Windows\system32\drivers\lsi_scsi.sys (LSI Logic) DRV - (SiSRaid2) -- C:\Windows\system32\drivers\sisraid2.sys (Silicon Integrated Systems Corp.) DRV - (HpCISSs) -- C:\Windows\system32\drivers\hpcisss.sys (Hewlett-Packard Company) DRV - (arc) -- C:\Windows\system32\drivers\arc.sys (Adaptec, Inc.) DRV - (iteraid) -- C:\Windows\system32\drivers\iteraid.sys (Integrated Technology Express, Inc.) DRV - (iteatapi) -- C:\Windows\system32\drivers\iteatapi.sys (Integrated Technology Express, Inc.) DRV - (LSI_SAS) -- C:\Windows\system32\drivers\lsi_sas.sys (LSI Logic) DRV - (Symc8xx) -- C:\Windows\system32\drivers\symc8xx.sys (LSI Logic) DRV - (LSI_FC) -- C:\Windows\system32\drivers\lsi_fc.sys (LSI Logic) DRV - (Sym_u3) -- C:\Windows\system32\drivers\sym_u3.sys (LSI Logic) DRV - (Mraid35x) -- C:\Windows\system32\drivers\mraid35x.sys (LSI Logic Corporation) DRV - (Sym_hi) -- C:\Windows\system32\drivers\sym_hi.sys (LSI Logic) DRV - (megasas) -- C:\Windows\system32\drivers\megasas.sys (LSI Logic Corporation) DRV - (Brserid) Brother MFC Serial Port Interface Driver (WDM) -- C:\Windows\system32\drivers\brserid.sys (Brother Industries Ltd.) DRV - (BrUsbSer) -- C:\Windows\system32\drivers\brusbser.sys (Brother Industries Ltd.) DRV - (BrFiltUp) -- C:\Windows\system32\drivers\brfiltup.sys (Brother Industries, Ltd.) DRV - (BrFiltLo) -- C:\Windows\system32\drivers\brfiltlo.sys (Brother Industries, Ltd.) DRV - (BrSerWdm) -- C:\Windows\system32\drivers\brserwdm.sys (Brother Industries Ltd.) DRV - (BrUsbMdm) -- C:\Windows\system32\drivers\brusbmdm.sys (Brother Industries Ltd.) DRV - (ntrigdigi) -- C:\Windows\system32\drivers\ntrigdigi.sys (N-trig Innovative Technologies) DRV - (E1G60) Intel(R) -- C:\Windows\System32\drivers\E1G60I32.sys (Intel Corporation) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = hxxp://deutch.ircfast.com/de/index.php?rvs=hompag IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://deutch.ircfast.com/de/index.php?rvs=hompag IE - HKLM\..\URLSearchHook: {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Programme\DVDVideoSoftTB\tbDVD0.dll (Conduit Ltd.) IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT2269050 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1 IE - HKCU\..\URLSearchHook: {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Programme\DVDVideoSoftTB\tbDVD0.dll (Conduit Ltd.) IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 O1 HOSTS File: ([2006.09.18 22:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O2 - BHO: (G DATA WebFilter) - {0124123D-61B4-456f-AF86-78C53A0790C5} - C:\Programme\G DATA AntiVirus\Webfilter\AvkWebIE.dll (G DATA Software AG) O2 - BHO: (Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (AskBar BHO) - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Programme\AskBarDis\bar\bin\askBar.dll (Ask.com) O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Programme\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.) O2 - BHO: (Windows Live Family Safety Browser Helper Class) - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Programme\Windows Live\Family Safety\fssbho.dll (Microsoft Corporation) O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found. O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Programme\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (DVDVideoSoftTB Toolbar) - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Programme\DVDVideoSoftTB\tbDVD0.dll (Conduit Ltd.) O2 - BHO: (Windows Live Anmelde-Hilfsprogramm) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Programme\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programme\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll (Google Inc.) O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Programme\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation) O3 - HKLM\..\Toolbar: (no name) - - No CLSID value found. O3 - HKLM\..\Toolbar: (G DATA WebFilter) - {0124123D-61B4-456f-AF86-78C53A0790C5} - C:\Programme\G DATA AntiVirus\Webfilter\AvkWebIE.dll (G DATA Software AG) O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Programme\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation) O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Programme\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) O3 - HKLM\..\Toolbar: (Ask Toolbar) - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Programme\AskBarDis\bar\bin\askBar.dll (Ask.com) O3 - HKLM\..\Toolbar: (DVDVideoSoftTB Toolbar) - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Programme\DVDVideoSoftTB\tbDVD0.dll (Conduit Ltd.) O3 - HKCU\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Programme\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation) O3 - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Programme\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) O3 - HKCU\..\Toolbar\WebBrowser: (Ask Toolbar) - {3041D03E-FD4B-44E0-B742-2D9B88305F98} - C:\Programme\AskBarDis\bar\bin\askBar.dll (Ask.com) O3 - HKCU\..\Toolbar\WebBrowser: (DVDVideoSoftTB Toolbar) - {872B5B88-9DB5-4310-BDD0-AC189557E5F5} - C:\Programme\DVDVideoSoftTB\tbDVD0.dll (Conduit Ltd.) O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [AVKTray] C:\Program Files\G DATA AntiVirus\AVKTray\AVKTray.exe (G DATA Software AG) O4 - HKLM..\Run: [BrMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe (Brother Industries, Ltd.) O4 - HKLM..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe (Brother Industries, Ltd.) O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe () O4 - HKLM..\Run: [fssui] C:\Program Files\Windows Live\Family Safety\fsui.exe (Microsoft Corporation) O4 - HKLM..\Run: [IndexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe (Nuance Communications, Inc.) O4 - HKLM..\Run: [iTunesHelper] C:\Program Files\iTunesHelper.exe (Apple Computer, Inc.) O4 - HKLM..\Run: [LexwareInfoService] C:\Program Files\Common Files\Lexware\Update Manager\LxUpdateManager.exe (Lexware GmbH & Co. KG) O4 - HKLM..\Run: [Malwarebytes' Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation) O4 - HKLM..\Run: [NeroFilterCheck] C:\Programme\Common Files\Nero\Lib\NeroCheck.exe (Nero AG) O4 - HKLM..\Run: [NPSStartup] File not found O4 - HKLM..\Run: [NvCplDaemon] C:\Windows\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\Windows\System32\NvMcTray.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [NvSvc] C:\Windows\System32\nvsvc.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe (Nuance Communications, Inc.) O4 - HKLM..\Run: [PPort11reminder] C:\Program Files\ScanSoft\PaperPort\Ereg\Ereg.exe (Nuance Communications, Inc.) O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor) O4 - HKLM..\Run: [Sony Ericsson PC Suite] C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe () O4 - HKLM..\Run: [SSBkgdUpdate] C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe (Nuance Communications, Inc.) O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation) O4 - HKCU..\Run: [{4A5D547C-7F12-82F4-9142-A3416677D20D}] C:\Users\***_2\AppData\Roaming\Wielw\aqim.exe File not found O4 - HKCU..\Run: [AutoStartNPSAgent] C:\Programme\Samsung\Samsung New PC Studio\NPSAgent.exe (Samsung Electronics Co., Ltd.) O4 - HKCU..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.) O4 - HKCU..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation) O4 - HKCU..\Run: [WMPNSCFG] C:\Programme\Windows Media Player\wmpnscfg.exe (Microsoft Corporation) O4 - Startup: C:\Users\***_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk = C:\Programme\ERUNT\AUTOBACK.EXE () O4 - Startup: C:\Users\***_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk = C:\Programme\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: LogonHoursAction = 2 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DontDisplayLogonHoursWarnings = 1 O8 - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\***_2\AppData\Roaming\DVDVideoSoftIEHelpers\youtubetomp3.htm () O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll (Google Inc.) O8 - Extra context menu item: Nach Microsoft E&xel exportieren - C:\Programme\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) O9 - Extra Button: In Blog veröffentlichen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programme\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : In Windows Live Writer in Blog veröffentliche&n - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programme\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation) O9 - Extra Button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Programme\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.) O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Programme\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programme\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation) O13 - gopher Prefix: missing O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control) O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} hxxp://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab (Solitaire Showdown Class) O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} hxxp://static.pe.schuelervz.net/photouploader/ImageUploader5.cab?nocache=1226012884 (Image Uploader Control) O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} hxxp://messenger.zone.msn.com/DE-DE/a-UNO1/GAME_UNO1.cab (UnoCtrl Class) O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} hxxp://download.divx.com/player/DivXBrowserPlugin.cab (DivXBrowserPlugin Object) O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} hxxp://static.pe.schuelervz.net/photouploader/ImageUploader4.cab?nocache=1202411381 (Image Uploader Control) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab (Java Plug-in 1.6.0_11) O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} hxxp://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab (Reg Error: Key error.) O16 - DPF: {BA162249-F2C5-4851-8ADC-FC58CB424243} hxxp://static.pe.schuelervz.net/photouploader/ImageUploader5.cab?nocache=1213708490 (Image Uploader Control) O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab (MessengerStatsClient Class) O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab (Java Plug-in 1.6.0_02) O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07) O16 - DPF: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab (Java Plug-in 1.6.0_11) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab (Java Plug-in 1.6.0_11) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 O18 - Protocol\Handler\haufereader - No CLSID value found O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation) O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Programme\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programme\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Programme\Windows Live\Mail\mailcomm.dll (Microsoft Corporation) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\img7.jpg O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\img7.jpg O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2006.09.18 22:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O32 - AutoRun File - [2011.01.03 15:36:54 | 000,000,003 | RHS- | M] () - G:\autorun.inf -- [ FAT32 ] O33 - MountPoints2\{26d2d637-8647-11de-a665-0019dbf9cfe7}\Shell\AutoRun\command - "" = G:\Menu.exe -- File not found O33 - MountPoints2\{29a9a307-0598-11de-b143-0019dbf9cfe7}\Shell\1\Command - "" = G:\.\recycled\info.exe -- File not found O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* ========== Files/Folders - Created Within 30 Days ========== [2010.12.29 01:25:19 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT [2010.12.29 01:24:32 | 000,000,000 | ---D | C] -- C:\Programme\ERUNT [2010.12.29 01:24:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ERUNT [2010.12.29 01:11:48 | 000,000,000 | ---D | C] -- C:\Users\***_2\AppData\Roaming\Malwarebytes [2010.12.29 01:11:42 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys [2010.12.29 01:11:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware [2010.12.29 01:11:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2010.12.29 01:11:38 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys [2010.12.29 01:11:38 | 000,000,000 | ---D | C] -- C:\Programme\Malwarebytes' Anti-Malware [2010.12.29 01:10:30 | 000,000,000 | ---D | C] -- C:\Programme\7-Zip [2010.12.29 01:10:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip [2006.06.14 16:48:00 | 014,276,608 | ---- | C] (Apple Computer, Inc.) -- C:\Programme\iTunes.exe [2006.06.14 16:35:34 | 000,102,400 | ---- | C] (Apple Computer, Inc.) -- C:\Programme\iTunesMiniPlayer.dll [2006.06.14 16:24:14 | 000,278,528 | ---- | C] (Apple Computer, Inc.) -- C:\Programme\iTunesHelper.exe [2004.07.15 10:08:18 | 000,434,176 | ---- | C] (Gracenote (formerly CDDB, Inc.)) -- C:\Programme\CDDBControlApple.dll ========== Files - Modified Within 30 Days ========== [2011.01.03 16:20:00 | 000,000,448 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{240A7D0D-5008-46B4-8697-F5A1D0960D0A}.job [2011.01.03 16:20:00 | 000,000,440 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{FB51F764-B14D-4C88-8E60-41C8B60CBD58}.job [2011.01.03 16:04:00 | 000,001,096 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2011.01.03 15:39:03 | 000,001,092 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2011.01.03 15:38:16 | 000,003,200 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 [2011.01.03 15:38:16 | 000,003,200 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 [2011.01.03 15:38:13 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011.01.03 15:36:54 | 000,070,670 | --S- | M] () -- C:\Users\***_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\wgbefygb.exe [2011.01.03 13:59:45 | 000,000,912 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2011.01.03 13:53:16 | 000,641,106 | ---- | M] () -- C:\Windows\System32\perfh007.dat [2011.01.03 13:53:16 | 000,609,944 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2011.01.03 13:53:16 | 000,116,500 | ---- | M] () -- C:\Windows\System32\perfc007.dat [2011.01.03 13:53:16 | 000,103,726 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2010.12.29 01:24:35 | 000,000,919 | ---- | M] () -- C:\Users\***_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk [2010.12.20 18:09:00 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys [2010.12.20 18:08:40 | 000,020,952 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys [2010.12.05 06:50:24 | 000,017,538 | ---- | M] () -- C:\Tabelle 18.docx [2010.12.05 06:50:24 | 000,017,538 | ---- | M] () -- C:\Tabelle 18 - Kopie.docx [2010.12.05 06:50:24 | 000,017,538 | ---- | M] () -- C:\Tabelle 18 - Kopie (2).docx [2010.12.05 06:50:15 | 000,017,532 | ---- | M] () -- C:\Tabelle 17.docx [2010.12.05 06:50:15 | 000,017,532 | ---- | M] () -- C:\Tabelle 17 - Kopie.docx [2010.12.05 06:50:15 | 000,017,532 | ---- | M] () -- C:\Tabelle 17 - Kopie (2).docx [2010.12.05 06:50:05 | 000,017,524 | ---- | M] () -- C:\Tabelle 16.docx [2010.12.05 06:50:05 | 000,017,524 | ---- | M] () -- C:\Tabelle 16 - Kopie.docx [2010.12.05 06:50:05 | 000,017,524 | ---- | M] () -- C:\Tabelle 16 - Kopie (2).docx [2010.12.05 06:49:51 | 000,017,518 | ---- | M] () -- C:\Tabelle 15.docx [2010.12.05 06:49:51 | 000,017,518 | ---- | M] () -- C:\Tabelle 15 - Kopie.docx [2010.12.05 06:49:51 | 000,017,518 | ---- | M] () -- C:\Tabelle 15 - Kopie (2).docx [2010.12.05 06:49:38 | 000,017,511 | ---- | M] () -- C:\Tabelle 14.docx [2010.12.05 06:49:38 | 000,017,511 | ---- | M] () -- C:\Tabelle 14 - Kopie.docx [2010.12.05 06:49:38 | 000,017,511 | ---- | M] () -- C:\Tabelle 14 - Kopie (2).docx [2010.12.05 06:49:22 | 000,017,506 | ---- | M] () -- C:\Tabelle 13.docx [2010.12.05 06:49:22 | 000,017,506 | ---- | M] () -- C:\Tabelle 13 - Kopie.docx [2010.12.05 06:49:22 | 000,017,506 | ---- | M] () -- C:\Tabelle 13 - Kopie (2).docx [2010.12.05 06:49:12 | 000,017,500 | ---- | M] () -- C:\Tabelle 12.docx [2010.12.05 06:49:12 | 000,017,500 | ---- | M] () -- C:\Tabelle 12 - Kopie.docx [2010.12.05 06:49:12 | 000,017,500 | ---- | M] () -- C:\Tabelle 12 - Kopie (2).docx [2010.12.05 06:48:59 | 000,017,494 | ---- | M] () -- C:\Tabelle 11.docx [2010.12.05 06:48:59 | 000,017,494 | ---- | M] () -- C:\Tabelle 11 - Kopie.docx [2010.12.05 06:48:59 | 000,017,494 | ---- | M] () -- C:\Tabelle 11 - Kopie (2).docx [2010.12.05 06:38:34 | 000,017,472 | ---- | M] () -- C:\Tabelle 10.docx [2010.12.05 06:38:34 | 000,017,472 | ---- | M] () -- C:\Tabelle 10 - Kopie.docx [2010.12.05 06:38:34 | 000,017,472 | ---- | M] () -- C:\Tabelle 10 - Kopie (3).docx [2010.12.05 06:38:34 | 000,017,472 | ---- | M] () -- C:\Tabelle 10 - Kopie (2).docx [2010.12.05 06:38:34 | 000,017,472 | ---- | M] () -- C:\Tabelle 10 - Kopie - Kopie.docx [2010.12.05 06:38:34 | 000,017,472 | ---- | M] () -- C:\Tabelle 10 - Kopie - Kopie (2).docx [2010.12.05 06:36:54 | 000,017,488 | ---- | M] () -- C:\Tabelle 9.docx [2010.12.05 06:36:54 | 000,017,488 | ---- | M] () -- C:\Tabelle 9 - Kopie.docx [2010.12.05 06:36:54 | 000,017,488 | ---- | M] () -- C:\Tabelle 9 - Kopie (3).docx [2010.12.05 06:36:54 | 000,017,488 | ---- | M] () -- C:\Tabelle 9 - Kopie (2).docx [2010.12.05 06:36:54 | 000,017,488 | ---- | M] () -- C:\Tabelle 9 - Kopie - Kopie.docx [2010.12.05 06:36:54 | 000,017,488 | ---- | M] () -- C:\Tabelle 9 - Kopie - Kopie (2).docx [2010.12.05 06:32:59 | 000,017,501 | ---- | M] () -- C:\Tabelle 7.docx [2010.12.05 06:32:59 | 000,017,501 | ---- | M] () -- C:\Tabelle 7 - Kopie.docx [2010.12.05 06:32:59 | 000,017,501 | ---- | M] () -- C:\Tabelle 7 - Kopie (3).docx [2010.12.05 06:32:59 | 000,017,501 | ---- | M] () -- C:\Tabelle 7 - Kopie (2).docx [2010.12.05 06:32:59 | 000,017,501 | ---- | M] () -- C:\Tabelle 7 - Kopie - Kopie.docx [2010.12.05 06:32:59 | 000,017,501 | ---- | M] () -- C:\Tabelle 7 - Kopie - Kopie (2).docx [2010.12.05 06:31:30 | 000,017,480 | ---- | M] () -- C:\Tabelle 6.docx [2010.12.05 06:31:30 | 000,017,480 | ---- | M] () -- C:\Tabelle 6 - Kopie.docx [2010.12.05 06:31:30 | 000,017,480 | ---- | M] () -- C:\Tabelle 6 - Kopie (3).docx [2010.12.05 06:31:30 | 000,017,480 | ---- | M] () -- C:\Tabelle 6 - Kopie (2).docx [2010.12.05 06:31:30 | 000,017,480 | ---- | M] () -- C:\Tabelle 6 - Kopie - Kopie.docx [2010.12.05 06:30:54 | 000,017,474 | ---- | M] () -- C:\Tabelle 5.docx [2010.12.05 06:30:54 | 000,017,474 | ---- | M] () -- C:\Tabelle 5 - Kopie.docx [2010.12.05 06:30:17 | 000,017,479 | ---- | M] () -- C:\Tabelle 3.docx [2010.12.05 06:30:17 | 000,017,479 | ---- | M] () -- C:\Tabelle 3 - Kopie.docx [2010.12.05 06:29:54 | 000,017,469 | ---- | M] () -- C:\Tabelle 4.docx [2010.12.05 06:29:54 | 000,017,469 | ---- | M] () -- C:\Tabelle 4 - Kopie.docx [2010.12.05 06:29:23 | 000,017,472 | ---- | M] () -- C:\Tabelle 8.docx [2010.12.05 06:29:23 | 000,017,472 | ---- | M] () -- C:\Tabelle 8 - Kopie.docx [2010.12.05 06:29:23 | 000,017,472 | ---- | M] () -- C:\Tabelle 8 - Kopie (3).docx [2010.12.05 06:29:23 | 000,017,472 | ---- | M] () -- C:\Tabelle 8 - Kopie (2).docx [2010.12.05 06:29:23 | 000,017,472 | ---- | M] () -- C:\Tabelle 8 - Kopie - Kopie.docx [2010.12.05 06:29:23 | 000,017,472 | ---- | M] () -- C:\Tabelle 8 - Kopie - Kopie (2).docx [2010.12.05 06:28:41 | 000,017,474 | ---- | M] () -- C:\Tabelle 2.docx [2010.12.05 06:28:41 | 000,017,474 | ---- | M] () -- C:\Tabelle 2 - Kopie (2).docx [2010.12.05 06:27:50 | 000,017,446 | ---- | M] () -- C:\Tabelle-Telefon.docx [2010.12.05 06:27:50 | 000,017,446 | ---- | M] () -- C:\Tabelle-Telefon - Kopie.docx [2010.12.05 06:27:50 | 000,017,446 | ---- | M] () -- C:\Tabelle-Telefon - Kopie (2).docx ========== Files Created - No Company Name ========== [2011.01.03 16:00:31 | 000,070,670 | --S- | C] () -- C:\Users\***_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\wgbefygb.exe [2011.01.03 13:59:45 | 000,000,912 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2010.12.29 01:24:35 | 000,000,919 | ---- | C] () -- C:\Users\***_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk [2010.12.05 06:57:33 | 000,017,538 | ---- | C] () -- C:\Tabelle 18 - Kopie (2).docx [2010.12.05 06:57:33 | 000,017,532 | ---- | C] () -- C:\Tabelle 17 - Kopie (2).docx [2010.12.05 06:57:33 | 000,017,524 | ---- | C] () -- C:\Tabelle 16 - Kopie (2).docx [2010.12.05 06:57:33 | 000,017,518 | ---- | C] () -- C:\Tabelle 15 - Kopie (2).docx [2010.12.05 06:57:33 | 000,017,511 | ---- | C] () -- C:\Tabelle 14 - Kopie (2).docx [2010.12.05 06:57:33 | 000,017,506 | ---- | C] () -- C:\Tabelle 13 - Kopie (2).docx [2010.12.05 06:57:33 | 000,017,500 | ---- | C] () -- C:\Tabelle 12 - Kopie (2).docx [2010.12.05 06:57:33 | 000,017,494 | ---- | C] () -- C:\Tabelle 11 - Kopie (2).docx [2010.12.05 06:57:33 | 000,017,472 | ---- | C] () -- C:\Tabelle 10 - Kopie (3).docx [2010.12.05 06:57:33 | 000,017,446 | ---- | C] () -- C:\Tabelle-Telefon - Kopie (2).docx [2010.12.05 06:57:32 | 000,017,501 | ---- | C] () -- C:\Tabelle 7 - Kopie (3).docx [2010.12.05 06:57:32 | 000,017,501 | ---- | C] () -- C:\Tabelle 7 - Kopie - Kopie (2).docx [2010.12.05 06:57:32 | 000,017,488 | ---- | C] () -- C:\Tabelle 9 - Kopie (3).docx [2010.12.05 06:57:32 | 000,017,488 | ---- | C] () -- C:\Tabelle 9 - Kopie - Kopie (2).docx [2010.12.05 06:57:32 | 000,017,480 | ---- | C] () -- C:\Tabelle 6 - Kopie (3).docx [2010.12.05 06:57:32 | 000,017,480 | ---- | C] () -- C:\Tabelle 6 - Kopie - Kopie.docx [2010.12.05 06:57:32 | 000,017,472 | ---- | C] () -- C:\Tabelle 8 - Kopie (3).docx [2010.12.05 06:57:32 | 000,017,472 | ---- | C] () -- C:\Tabelle 8 - Kopie - Kopie (2).docx [2010.12.05 06:57:32 | 000,017,472 | ---- | C] () -- C:\Tabelle 10 - Kopie - Kopie (2).docx [2010.12.05 06:57:29 | 000,017,538 | ---- | C] () -- C:\Tabelle 18 - Kopie.docx [2010.12.05 06:57:29 | 000,017,532 | ---- | C] () -- C:\Tabelle 17 - Kopie.docx [2010.12.05 06:57:29 | 000,017,524 | ---- | C] () -- C:\Tabelle 16 - Kopie.docx [2010.12.05 06:57:29 | 000,017,518 | ---- | C] () -- C:\Tabelle 15 - Kopie.docx [2010.12.05 06:57:29 | 000,017,511 | ---- | C] () -- C:\Tabelle 14 - Kopie.docx [2010.12.05 06:57:29 | 000,017,506 | ---- | C] () -- C:\Tabelle 13 - Kopie.docx [2010.12.05 06:57:29 | 000,017,500 | ---- | C] () -- C:\Tabelle 12 - Kopie.docx [2010.12.05 06:57:29 | 000,017,494 | ---- | C] () -- C:\Tabelle 11 - Kopie.docx [2010.12.05 06:57:29 | 000,017,488 | ---- | C] () -- C:\Tabelle 9 - Kopie (2).docx [2010.12.05 06:57:29 | 000,017,472 | ---- | C] () -- C:\Tabelle 10 - Kopie (2).docx [2010.12.05 06:57:29 | 000,017,472 | ---- | C] () -- C:\Tabelle 10 - Kopie - Kopie.docx [2010.12.05 06:57:29 | 000,017,446 | ---- | C] () -- C:\Tabelle-Telefon - Kopie.docx [2010.12.05 06:57:28 | 000,017,501 | ---- | C] () -- C:\Tabelle 7 - Kopie (2).docx [2010.12.05 06:57:28 | 000,017,501 | ---- | C] () -- C:\Tabelle 7 - Kopie - Kopie.docx [2010.12.05 06:57:28 | 000,017,488 | ---- | C] () -- C:\Tabelle 9 - Kopie - Kopie.docx [2010.12.05 06:57:28 | 000,017,480 | ---- | C] () -- C:\Tabelle 6 - Kopie (2).docx [2010.12.05 06:57:28 | 000,017,472 | ---- | C] () -- C:\Tabelle 8 - Kopie (2).docx [2010.12.05 06:57:28 | 000,017,472 | ---- | C] () -- C:\Tabelle 8 - Kopie - Kopie.docx [2010.12.05 06:55:47 | 000,017,501 | ---- | C] () -- C:\Tabelle 7.docx [2010.12.05 06:55:47 | 000,017,501 | ---- | C] () -- C:\Tabelle 7 - Kopie.docx [2010.12.05 06:55:47 | 000,017,480 | ---- | C] () -- C:\Tabelle 6.docx [2010.12.05 06:55:46 | 000,017,538 | ---- | C] () -- C:\Tabelle 18.docx [2010.12.05 06:55:46 | 000,017,532 | ---- | C] () -- C:\Tabelle 17.docx [2010.12.05 06:55:46 | 000,017,524 | ---- | C] () -- C:\Tabelle 16.docx [2010.12.05 06:55:46 | 000,017,518 | ---- | C] () -- C:\Tabelle 15.docx [2010.12.05 06:55:46 | 000,017,511 | ---- | C] () -- C:\Tabelle 14.docx [2010.12.05 06:55:46 | 000,017,506 | ---- | C] () -- C:\Tabelle 13.docx [2010.12.05 06:55:46 | 000,017,500 | ---- | C] () -- C:\Tabelle 12.docx [2010.12.05 06:55:46 | 000,017,494 | ---- | C] () -- C:\Tabelle 11.docx [2010.12.05 06:55:46 | 000,017,480 | ---- | C] () -- C:\Tabelle 6 - Kopie.docx [2010.12.05 06:55:46 | 000,017,479 | ---- | C] () -- C:\Tabelle 3.docx [2010.12.05 06:55:46 | 000,017,479 | ---- | C] () -- C:\Tabelle 3 - Kopie.docx [2010.12.05 06:55:46 | 000,017,474 | ---- | C] () -- C:\Tabelle 5.docx [2010.12.05 06:55:46 | 000,017,474 | ---- | C] () -- C:\Tabelle 5 - Kopie.docx [2010.12.05 06:55:46 | 000,017,474 | ---- | C] () -- C:\Tabelle 2.docx [2010.12.05 06:55:46 | 000,017,474 | ---- | C] () -- C:\Tabelle 2 - Kopie (2).docx [2010.12.05 06:55:46 | 000,017,469 | ---- | C] () -- C:\Tabelle 4.docx [2010.12.05 06:55:46 | 000,017,469 | ---- | C] () -- C:\Tabelle 4 - Kopie.docx [2010.12.05 06:55:46 | 000,017,446 | ---- | C] () -- C:\Tabelle-Telefon.docx [2010.12.05 06:55:45 | 000,017,488 | ---- | C] () -- C:\Tabelle 9.docx [2010.12.05 06:55:45 | 000,017,488 | ---- | C] () -- C:\Tabelle 9 - Kopie.docx [2010.12.05 06:55:45 | 000,017,472 | ---- | C] () -- C:\Tabelle 8.docx [2010.12.05 06:55:45 | 000,017,472 | ---- | C] () -- C:\Tabelle 8 - Kopie.docx [2010.12.05 06:55:45 | 000,017,472 | ---- | C] () -- C:\Tabelle 10.docx [2010.12.05 06:55:45 | 000,017,472 | ---- | C] () -- C:\Tabelle 10 - Kopie.docx [2010.10.29 14:06:55 | 000,110,592 | ---- | C] () -- C:\Windows\System32\FsUsbExDevice.Dll [2010.10.29 14:06:55 | 000,036,608 | ---- | C] () -- C:\Windows\System32\FsUsbExDisk.Sys [2010.10.29 14:06:29 | 000,002,528 | ---- | C] () -- C:\Users\***_2\AppData\Roaming\$_hpcst$.hpc [2009.12.27 00:10:12 | 000,106,496 | ---- | C] () -- C:\Windows\System32\BrMuSNMP.dll [2008.03.31 20:28:39 | 000,000,425 | ---- | C] () -- C:\Windows\BRWMARK.INI [2008.03.31 20:28:39 | 000,000,027 | ---- | C] () -- C:\Windows\BRPP2KA.INI [2008.03.31 19:19:52 | 000,000,884 | ---- | C] () -- C:\Windows\Brpfx04a.ini [2008.03.31 19:19:52 | 000,000,163 | ---- | C] () -- C:\Windows\brpcfx.ini [2008.03.31 19:16:12 | 000,031,664 | ---- | C] () -- C:\Windows\maxlink.ini [2008.03.15 19:50:48 | 000,000,198 | ---- | C] () -- C:\Windows\ODBCINST.ini [2008.02.11 16:24:42 | 000,344,064 | ---- | C] () -- C:\Windows\System32\BH_DATA110VC8.dll [2007.12.14 01:15:03 | 000,069,632 | ---- | C] () -- C:\Windows\System32\vuins32.dll [2007.11.16 00:50:14 | 000,057,344 | ---- | C] () -- C:\Windows\System32\FKStampPainter20.dll [2007.11.15 21:31:34 | 000,208,896 | ---- | C] () -- C:\Windows\System32\LXPrnUtil10.dll [2007.11.15 21:27:40 | 000,303,104 | ---- | C] () -- C:\Windows\System32\dnt27VC8.dll [2007.11.15 21:25:28 | 000,090,112 | ---- | C] () -- C:\Windows\System32\dntvmc27VC8.dll [2007.11.15 21:25:12 | 000,086,016 | ---- | C] () -- C:\Windows\System32\dntvm27VC8.dll [2007.10.25 16:26:10 | 000,005,632 | ---- | C] () -- C:\Windows\System32\drivers\StarOpen.sys [2006.11.02 13:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll [2006.11.02 08:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini [2006.08.11 09:52:02 | 000,012,288 | ---- | C] () -- C:\Windows\System32\EvOnlDiag.dll [2006.06.08 12:33:00 | 000,006,816 | ---- | C] () -- C:\Programme\About iTunes.rtf [2005.11.09 12:13:48 | 000,282,624 | ---- | C] () -- C:\Windows\System32\dnt27VC7.dll [2005.11.09 12:11:46 | 000,086,016 | ---- | C] () -- C:\Windows\System32\dntvmc27VC7.dll [2005.11.09 12:11:30 | 000,077,824 | ---- | C] () -- C:\Windows\System32\dntvm27VC7.dll [2005.08.09 17:33:10 | 000,008,356 | ---- | C] () -- C:\Programme\Acknowledgements.rtf [2004.03.08 14:07:14 | 000,049,152 | ---- | C] () -- C:\Programme\ITDetector.ocx [2001.12.12 13:41:36 | 000,041,472 | ---- | C] () -- C:\Windows\System32\W32btstp.dll [2001.12.12 13:41:36 | 000,025,088 | ---- | C] () -- C:\Windows\System32\W32btxlt.dll ========== LOP Check ========== [2010.08.16 17:53:09 | 000,000,000 | ---D | M] -- C:\Users\***_2\AppData\Roaming\DVDVideoSoftIEHelpers [2010.01.14 15:10:08 | 000,000,000 | ---D | M] -- C:\Users\***_2\AppData\Roaming\Lexware [2010.09.23 18:53:36 | 000,000,000 | ---D | M] -- C:\Users\***_2\AppData\Roaming\PC-FAX TX [2010.10.29 14:06:26 | 000,000,000 | ---D | M] -- C:\Users\***_2\AppData\Roaming\Samsung [2010.09.23 18:56:31 | 000,000,000 | ---D | M] -- C:\Users\***_2\AppData\Roaming\ScanSoft [2010.07.02 13:39:17 | 000,000,000 | ---D | M] -- C:\Users\***_2\AppData\Roaming\Teleca [2010.12.24 17:26:49 | 000,000,000 | ---D | M] -- C:\Users\***_2\AppData\Roaming\Vuaq [2011.01.03 15:36:01 | 000,000,000 | ---D | M] -- C:\Users\***_2\AppData\Roaming\Wielw [2011.01.03 15:37:15 | 000,032,620 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [2011.01.03 16:20:00 | 000,000,448 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{240A7D0D-5008-46B4-8697-F5A1D0960D0A}.job [2011.01.03 16:20:00 | 000,000,440 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{FB51F764-B14D-4C88-8E60-41C8B60CBD58}.job ========== Purity Check ========== < End of report > |
03.01.2011, 22:14 | #9 |
| "Copy of Shortcut to (1).ink" (virus?) auf USBstick- Datenübertragung ohne virenübertragung möglich? und OTL log2....OTL EXTRAS Logfile: Code:
ATTFilter OTL Extras logfile created on: 03.01.2011 15:58:32 - Run 1 OTL by OldTimer - Version 3.2.20.1 Folder = C:\Users\***_2\Downloads Windows Vista Home Premium Edition (Version = 6.0.6000) - Type = NTWorkstation Internet Explorer (Version = 7.0.6000.16916) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 59,00% Memory free 6,00 Gb Paging File | 5,00 Gb Available in Paging File | 82,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 216,41 Gb Total Space | 142,84 Gb Free Space | 66,01% Space Free | Partition Type: NTFS Drive D: | 107,22 Gb Total Space | 107,12 Gb Free Space | 99,91% Space Free | Partition Type: NTFS Drive G: | 7,45 Gb Total Space | 7,44 Gb Free Space | 99,84% Space Free | Partition Type: FAT32 Computer Name: *** | User Name: ***_2 | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) ========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- C:\PROGRA~1\MICROS~2\Office12\ONENOTE.EXE "%L" (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 ========== Authorized Applications List ========== ========== Vista Active Open Ports Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{00AE199C-7021-4676-8F89-AB00AC5B336B}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{1174A668-F179-44CC-ADAF-4937580431B5}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=datei- und druckerfreigabe (spoolerdienst - rpc-epmap) | "{14552F66-F790-4EF2-85D6-C0CA5C6AA585}" = lport=445 | protocol=6 | dir=in | app=system | "{14F08A1A-BF4C-4308-A71D-388C5A30205A}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{253F8E50-E2AA-408F-A420-25A660F84A7B}" = rport=137 | protocol=17 | dir=out | app=system | "{26CF1836-A0D3-442C-AF94-4F0A49009F6F}" = lport=138 | protocol=17 | dir=in | app=system | "{30C8C80F-F556-4D0F-8BD8-A9DA8DE80D2B}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=c:\windows\system32\spoolsv.exe | "{382ACA60-1F9E-465C-BDAB-8FA8E641B26C}" = rport=10243 | protocol=6 | dir=out | app=system | "{5CDC7C1F-BCA2-4BCD-AC58-D1641EA31A50}" = lport=2869 | protocol=6 | dir=in | app=system | "{6894BCB1-2E7E-4B4F-9E06-BCC803B0CBFB}" = rport=445 | protocol=6 | dir=out | app=system | "{68B61C2F-19A6-49A2-BAA9-9A26E0E4FA6A}" = lport=2869 | protocol=6 | dir=in | app=system | "{69524EAC-EC87-4AA9-8F1E-43991033BB7C}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | "{6D2BCFE8-440E-4233-B151-310684128AC1}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{7347EDD0-F710-4D2A-BDEE-A6AA7DFC13BA}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{8314F307-CAFA-4A71-83F7-429D2878EB0F}" = lport=139 | protocol=6 | dir=in | app=system | "{8D9ACD44-B100-4C9F-8F6A-9270FA7A7D73}" = rport=138 | protocol=17 | dir=out | app=system | "{94709653-A9CF-4C5A-81F4-98D72C76242C}" = lport=137 | protocol=17 | dir=in | app=system | "{993A63C4-B7A8-482E-BAAB-67091DF937D6}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{A0579B80-3345-4E14-A367-DD53D2E5D2EF}" = lport=2869 | protocol=6 | dir=in | app=system | "{A06B9053-8B4B-42F0-BDEC-C97FF156FCEC}" = lport=135 | protocol=6 | dir=in | svc=rpcss | app=c:\windows\system32\svchost.exe | "{A06E9306-DE5A-4D2B-849B-1997C23BBE0F}" = lport=2869 | protocol=6 | dir=in | app=system | "{AB7B3DFF-1090-4069-8650-163C9F1194D5}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | "{AFFED766-D67E-4CC6-8180-F9B7E050DF1E}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | "{D57D5C6F-4471-4080-B4F0-40F278BDF3DB}" = rport=139 | protocol=6 | dir=out | app=system | "{D9990E30-B824-490C-947B-F7299C0FEEB9}" = lport=10243 | protocol=6 | dir=in | app=system | "{EC3A37CB-68EA-457E-8188-84825C3940CD}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | "{ED428B3F-1318-484F-B605-A82B6E16BFB6}" = lport=2869 | protocol=6 | dir=in | app=system | "{F2CDA193-3D11-46A8-87AA-1E1A5A956005}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | ========== Vista Active Application Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{06F5C4F7-9B48-4457-B350-CEBF7779CF60}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{0CE8EEE3-1D86-496E-AA32-DF5A7B5C62E5}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{0F57C602-0DB9-42B3-AB62-8E18187D7EEA}" = protocol=1 | dir=in | name=datei- und druckerfreigabe (echoanforderung - icmpv4 eingehend) | "{35DBFC64-AB97-4A7E-9901-7D402D40C09A}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{3A7B8CA8-2497-4A6C-8AE4-A348E9409DE1}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{3C177458-5CC7-4FCB-BAC0-50A7EFFA9EC8}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe | "{429CFE0D-9107-4986-88FA-261721F9C114}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{450B255B-924A-462F-9190-209D5990B3CD}" = dir=in | app=c:\program files\windows live\sync\windowslivesync.exe | "{45879664-DB10-4151-9F7B-83297A40D53C}" = dir=in | app=c:\program files\windows live\messenger\livecall.exe | "{45D8393F-073D-4111-BE64-7DC3EE751BAA}" = protocol=17 | dir=in | app=c:\program files\itunes.exe | "{4D72042C-50E2-4F40-83AE-778130E97BF9}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{4DA79445-829B-40C4-869E-EF369C61DF29}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{53678C10-4982-4197-9C86-2653D720278C}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{58281BE5-9A35-4E13-82E6-283CAF9A2174}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe | "{5928E995-5ACE-4A0A-A180-4BAFA67AD6E7}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{5D9A49DD-F611-4934-BDE4-846380F13037}" = protocol=6 | dir=out | app=system | "{5FCBEB01-3758-46E3-AE26-C71F9A79F08E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{72266809-5718-4292-8021-911C70F7D57F}" = protocol=6 | dir=in | app=c:\program files\itunes.exe | "{728CD5E5-8F6F-4D6F-B0D5-9A913198D8A4}" = protocol=6 | dir=in | app=c:\windows\system32\plasrv.exe | "{75A5F2EE-8125-4938-9A4C-F885D637A01D}" = protocol=6 | dir=in | app=c:\program files\samsung\samsung new pc studio\npsvsvr.exe | "{7CD5568C-8548-4B9F-95AF-AFF6DD8B2782}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{82534BC2-518D-4339-B458-EC08B6505B38}" = protocol=17 | dir=in | app=c:\program files\samsung\samsung new pc studio\npsasvr.exe | "{93920EDE-15FC-4E52-8896-CB6C1301B62B}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{974B4191-8F7F-4045-8D6C-6D11CA98A55B}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{9AD5A101-A959-4888-A788-3693FDD2510B}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{9CEDD3D8-83CF-4EFF-BD57-465004172502}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{A00E590A-A982-4986-A40C-22ED8F1BA593}" = protocol=1 | dir=out | name=datei- und druckerfreigabe (echoanforderung - icmpv4 ausgehend) | "{B23D0159-F4A5-4CF7-9CDA-D5BE7F230020}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{BBF4C00D-4D4C-472E-86F7-22665FAD246A}" = dir=in | app=c:\program files\windows live\messenger\livecall.exe | "{BC50F817-F8A0-41EC-98F5-7778D446E6E6}" = protocol=17 | dir=in | app=c:\program files\samsung\samsung new pc studio\npsvsvr.exe | "{BFEEC4D7-BF3F-47CC-9D8B-CC854E6D28B5}" = dir=in | app=c:\program files\windows live\messenger\livecall.exe | "{C0B8E9BD-79D7-4040-A1FD-2A9F5830BE15}" = protocol=58 | dir=out | name=datei- und druckerfreigabe (echoanforderung - icmpv6 ausgehend) | "{D44EBF82-06AA-40A0-AB73-3422FAA6ED98}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{E9626AF9-AAEF-43FD-ADFC-81405FE6954D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{EC8906F9-4617-4FB1-8A8E-9E508C936E32}" = protocol=58 | dir=in | name=datei- und druckerfreigabe (echoanforderung - icmpv6 eingehend) | "{EFBD4469-3F3B-4D46-BF9F-925DEB2B8D9A}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe | "{F34F803C-C639-4D55-9F6D-F10CAA682FA1}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{F44A9FFA-01E2-431F-9C4A-86AE1FDC50AA}" = protocol=6 | dir=in | app=c:\program files\samsung\samsung new pc studio\npsasvr.exe | "{F8E49DFD-4FA3-4370-8D98-CD94F507E352}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe | "{FD3AE49A-9766-44B0-99E1-2987D193F3C8}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "TCP Query User{1697A96E-875B-42D6-9B9D-BBA6A4CA5B5D}C:\windows\system32\taskeng.exe" = protocol=6 | dir=in | app=c:\windows\system32\taskeng.exe | "TCP Query User{2BEFE1EB-48C7-4EE1-BA7F-0B299BFA43C1}C:\windows\explorer.exe" = protocol=6 | dir=in | app=c:\windows\explorer.exe | "TCP Query User{5A06E469-DF0C-41D2-89BB-329DB485E2CD}C:\windows\explorer.exe" = protocol=6 | dir=in | app=c:\windows\explorer.exe | "TCP Query User{AEB15A5B-4CA3-46F2-B853-7BC3F089D1F9}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "TCP Query User{F50E6AFE-8A06-4367-9A8B-CF3730E628DC}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "UDP Query User{7DC58D24-DDC7-4408-81F1-3A2E040CEA70}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "UDP Query User{9BA2F8EF-DB6F-4DE3-88EC-37A8B919A5E4}C:\windows\explorer.exe" = protocol=17 | dir=in | app=c:\windows\explorer.exe | "UDP Query User{9FBC0A72-628A-4087-B251-3066C78EA9E1}C:\windows\explorer.exe" = protocol=17 | dir=in | app=c:\windows\explorer.exe | "UDP Query User{B5ADA06E-799B-4A20-8009-5421005A08A0}C:\windows\system32\taskeng.exe" = protocol=17 | dir=in | app=c:\windows\system32\taskeng.exe | "UDP Query User{C6C6A764-DDD4-4D71-98AC-83EB3168594F}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe | ========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00D0200F-3B4D-4A2F-869E-533ED835A943}" = Hervorhebe-Funktion (Windows Live Toolbar) "{043671DC-DE3A-4A5B-B7A2-34F7DF6F5523}" = Haufe iDesk-Browser "{04830D0F-F980-4EC0-89F1-594F2FD2A1B5}" = ElsterFormular 2008/2009 "{052FDD78-A6EA-3187-8386-C82F4CA3A929}" = Microsoft .NET Framework 3.5 Language Pack SP1 - deu "{102C0111-5FEA-425C-88AC-B0BB6E60EC33}" = Lexware financial office 2008 "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live-Uploadtool "{218761F6-CBF6-4973-B910-A33E6563A1EA}" = Windows Live Toolbar-Erweiterung (Windows Live Toolbar) "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{26A24AE4-039D-4CA4-87B4-2F83216011FF}" = Java(TM) 6 Update 11 "{2BA722D1-48D1-406E-9123-8AE5431D63EF}" = Windows Live Fotogalerie "{2DD6C198-FA9A-40B4-8DE5-CE5206E3EB34}" = Smart Menus (Windows Live Toolbar) "{3248F0A8-6813-11D6-A77B-00B0D0160020}" = Java(TM) 6 Update 2 "{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java(TM) 6 Update 7 "{332CC6BF-E6C7-48EE-BA3D-435E576AD67F}" = PaperPort Image Printer "{3EFEF049-23D4-4B46-8903-4592FEA51018}" = Windows Live Movie Maker "{41E654A9-26D0-4EAC-854B-0FA824FFFABB}" = Windows Live Messenger "{41EBCCBE-1FAD-40AD-A8B6-BD292DB683A4}" = Lexware financial office Aktualisierung Februar 2008, Version 12.20 "{45210A57-46AF-4A0E-A68E-960C1A3CD793}" = PowerInfo Auskunft 2002 "{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}" = Microsoft Search Enhancement Pack "{520CC748-9867-498E-A257-B6112952A65E}" = Lexware financial office plus 2008 "{539B0A82-CF4A-42CC-A46C-F417099FB0D7}" = Lexware online banking "{541DEAC0-5F3D-45E6-B7CB-94ECF3B96748}" = Skype web features "{54C0D94A-F467-4ABC-9D02-6E58748668D4}" = iTunes "{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}" = Microsoft Office Live Add-in 1.3 "{5DB88ED8-3487-4BDE-A8C5-7F4D016BE737}" = Lexware financial office Aktualisierung Februar 2008, Version 12.20 "{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053 "{5FC68772-6D56-41C6-9DF1-24E868198AE6}" = Windows Live Call "{6803A6E6-48FF-48AB-B558-7B651BBE1031}" = Nero 8 Essentials "{70B7A167-0B88-445D-A3EA-97C73AA88CAC}" = Windows Live Toolbar "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{7561209C-6D13-4202-89EC-69CEC16A9A98}" = Lexware know how personal "{76618402-179D-4699-A66B-D351C59436BC}" = Windows Live Sync "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{786C4AD1-DCBA-49A6-B0EF-B317A344BD66}" = Windows Live Favorites für Windows Live Toolbar "{83E2CFA9-E0EB-4E08-9F85-43E577FF3D60}" = Windows Live Anmelde-Assistent "{86C5FBB1-83D3-4E79-B60C-FB43BF003AE9}" = Lexware know how buchhaltung "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8A74E887-8F0F-4017-AF53-CBA42211AAA5}" = Microsoft Sync Framework Runtime Native v1.0 (x86) "{8B50F367-2686-4256-BA05-708B299961DF}" = Lexware Elster "{90120000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2007 "{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2007 "{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2007 "{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007 "{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2007 "{90120000-001F-0410-0000-0000000FF1CE}_HOMESTUDENTR_{322296D4-1EAE-4030-9FBC-D2787EB25FA2}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2007 "{90120000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2007 "{90120000-006E-0407-0000-0000000FF1CE}_HOMESTUDENTR_{26454C26-D259-4543-AA60-3189E09C5F76}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00A1-0407-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (German) 2007 "{90120000-00A1-0407-0000-0000000FF1CE}_HOMESTUDENTR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00B2-0407-0000-0000000FF1CE}" = Microsoft – Speichern als PDF oder XPS – Add-In für 2007 Microsoft Office-Programme "{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007 "{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581) "{9353F6E9-13B7-43B4-8FA5-CB46CA22671B}" = Haufe Formular-Manager "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{994223F3-A99B-4DDD-9E1D-0190A17C6860}" = Windows Live Family Safety "{A0383B7D-81A2-49D3-BE06-C0FD9EFB9DFC}" = Corel Painter IX "{A3FEC306-FBFF-4B0D-95B9-F9C67C65079E}" = Brother MFL-Pro Suite "{A4E86B6A-6EEC-41FD-8960-26947F0E3353}" = Haufe iDesk-Service "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1031-7B44-A81200000003}" = Adobe Reader 8.1.2 - Deutsch "{B6C89654-A6A2-477C-873B-724EC1C56407}" = ScanSoft PaperPort 11 "{BD57EA4D-026E-4F08-9B93-080E282B81FE}" = iPod for Windows 2006-06-28 "{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}" = Microsoft Sync Framework Services Native v1.0 (x86) "{BEDFB0D0-CA1E-4CBA-9664-B25A74019D0C}" = Lexware Info Service "{C21D5524-A970-42FA-AC8A-59B8C7CDCA31}" = QuickTime "{C4D738F7-996A-4C81-B8FA-C4E26D767E41}" = Windows Live Mail "{C5FA15A8-5849-4595-AFAD-C414A31A7516}" = G DATA AntiVirus "{C60BA916-9E44-4DA4-B11A-9E27B7624EF5}" = Sony Ericsson Drivers "{C92E7DF1-624A-4D95-A4C4-18CB491B44A4}" = Sony Ericsson Device Data "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.1 "{D59AC9E9-FFAE-471B-B1FF-4B311D23417A}" = Sony Ericsson PC Suite "{D6BF6477-8369-489F-8DE6-3731F4B88560}" = Sony Ericsson PC Suite "{D8C1AD64-FD05-4588-9572-D7168241A371}" = Lexware know how warenwirtschaft "{E0A4805D-280A-4DD7-9E74-3A5F85E302A1}" = Windows Live Writer "{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update "{E728E952-DD4F-4BCD-A5C8-40FBFEFF91FE}" = OpenOffice.org Installer 1.0 "{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio "{F8FF18EE-264A-43FD-B2F6-5EAD40798C2F}" = Windows Live Essentials "6194C28A8F62DD817EA1B918E6E46E806A21B452" = Windows-Treiberpaket - MobileTop (sshpmdm) Modem (02/23/2007 2.5.0.0) "65B6FE5418CE28F4D72543FB2D964C3CEC83F161" = Windows-Treiberpaket - MobileTop (sshpusb) USB (02/23/2007 2.5.0.0) "7-Zip" = 7-Zip 4.65 "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Shockwave Player" = Adobe Shockwave Player "Ask Toolbar_is1" = Ask Toolbar "Big Fish Games Center" = Big Fish Games Center (remove only) "Big Fish Games Sudoku" = Big Fish Games Sudoku (remove only) "Cradle of Rome" = Cradle of Rome (remove only) "DivX Setup.divx.com" = DivX-Setup "DVDVideoSoftTB Toolbar" = DVDVideoSoftTB Toolbar "ERUNT_is1" = ERUNT 1.1j "Free Audio CD Burner_is1" = Free Audio CD Burner version 1.4 "Free YouTube Download_is1" = Free YouTube Download 2.2 "Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.8 "Google Chrome" = Google Chrome "HOMESTUDENTR" = Microsoft Office Home and Student 2007 "InstallShield_{54C0D94A-F467-4ABC-9D02-6E58748668D4}" = iTunes "InstallShield_{BD57EA4D-026E-4F08-9B93-080E282B81FE}" = iPod for Windows 2006-06-28 "InstallShield_{C21D5524-A970-42FA-AC8A-59B8C7CDCA31}" = QuickTime "InstallShield_{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio "Luxor Amun Rising" = Luxor Amun Rising (remove only) "Mahjong Towers Eternity EU" = Mahjong Towers Eternity EU (remove only) "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "McAfee Security Scan" = McAfee Security Scan Plus "Microsoft .NET Framework 3.5 Language Pack SP1 - deu" = Microsoft .NET Framework 3.5 Language Pack SP1 - DEU "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft Picture It!" = Microsoft Picture It! 99 "Miro" = Miro - Deutsche Welle Player "Mystery Case Files - Prime Suspects" = Mystery Case Files - Prime Suspects (remove only) "NVIDIA Drivers" = NVIDIA Drivers "Poker Superstars II" = Poker Superstars II (remove only) "RollerCoaster Tycoon Setup" = Roll "SAMSUNG Mobile Composite Device" = SAMSUNG Mobile Composite Device Software "SAMSUNG Mobile Modem" = SAMSUNG Mobile Modem Driver Set "Samsung Mobile phone USB driver" = Samsung Mobile phone USB driver Software "SAMSUNG Mobile USB Modem" = SAMSUNG Mobile USB Modem Software "SAMSUNG Mobile USB Modem 1.0" = SAMSUNG Mobile USB Modem 1.0 Software "Uninstall_is1" = Uninstall 1.0.0.1 "Virtual Villagers" = Virtual Villagers (remove only) "VN_VUIns_Rhine_VIA" = VIA Rhine-Family Fast-Ethernet Adapter "WinLiveSuite_Wave3" = Windows Live Essentials ========== HKEY_CURRENT_USER Uninstall List ========== [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Yahoo! BrowserPlus" = Yahoo! BrowserPlus 2.9.8 ========== Last 10 Event Log Errors ========== [ Application Events ] Error - 13.06.2009 01:58:19 | Computer Name = *** | Source = Microsoft-Windows-CAPI2 | ID = 131083 Description = Error - 13.06.2009 01:59:55 | Computer Name = *** | Source = SecurityCenter | ID = 3 Description = Das Windows-Sicherheitscenter konnte keine Ereignisabfragen mit der WMI herstellen, um Antivirus, AntiSpyware- und Firewallprogramme von Drittanbietern zu überwachen. Error - 13.06.2009 02:03:30 | Computer Name = *** | Source = WerSvc | ID = 5007 Description = Error - 13.06.2009 02:35:40 | Computer Name = *** | Source = WerSvc | ID = 5007 Description = Error - 13.06.2009 02:37:36 | Computer Name = *** | Source = SecurityCenter | ID = 3 Description = Das Windows-Sicherheitscenter konnte keine Ereignisabfragen mit der WMI herstellen, um Antivirus, AntiSpyware- und Firewallprogramme von Drittanbietern zu überwachen. Error - 13.06.2009 02:37:38 | Computer Name = *** | Source = Microsoft-Windows-CAPI2 | ID = 131083 Description = Error - 13.06.2009 07:40:42 | Computer Name = *** | Source = Microsoft-Windows-CAPI2 | ID = 131083 Description = Error - 13.06.2009 07:42:14 | Computer Name = *** | Source = SecurityCenter | ID = 3 Description = Das Windows-Sicherheitscenter konnte keine Ereignisabfragen mit der WMI herstellen, um Antivirus, AntiSpyware- und Firewallprogramme von Drittanbietern zu überwachen. Error - 13.06.2009 07:45:10 | Computer Name = *** | Source = WerSvc | ID = 5007 Description = Error - 13.06.2009 10:11:03 | Computer Name = *** | Source = MsiInstaller | ID = 10005 Description = [ OSession Events ] Error - 14.01.2008 15:23:20 | Computer Name = *** | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 469 seconds with 60 seconds of active time. This session ended with a crash. Error - 14.01.2008 15:34:26 | Computer Name = *** | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 38 seconds with 0 seconds of active time. This session ended with a crash. Error - 14.01.2008 15:35:19 | Computer Name = *** | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 10 seconds with 0 seconds of active time. This session ended with a crash. Error - 14.01.2008 15:37:29 | Computer Name = *** | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 31 seconds with 0 seconds of active time. This session ended with a crash. Error - 15.01.2008 16:06:23 | Computer Name = *** | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 933 seconds with 720 seconds of active time. This session ended with a crash. Error - 15.01.2008 16:07:12 | Computer Name = *** | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 41 seconds with 0 seconds of active time. This session ended with a crash. Error - 25.07.2008 10:23:38 | Computer Name = *** | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6308.5000, Microsoft Office Version: 12.0.4518.1014. This session lasted 1603 seconds with 240 seconds of active time. This session ended with a crash. Error - 03.11.2009 14:41:43 | Computer Name = *** | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6504.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 577 seconds with 240 seconds of active time. This session ended with a crash. Error - 05.12.2010 01:40:10 | Computer Name = *** | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6514.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 728 seconds with 720 seconds of active time. This session ended with a crash. [ System Events ] Error - 28.12.2010 16:30:25 | Computer Name = *** | Source = DCOM | ID = 10016 Description = Error - 28.12.2010 16:30:25 | Computer Name = *** | Source = DCOM | ID = 10016 Description = Error - 28.12.2010 16:39:54 | Computer Name = *** | Source = Microsoft-Windows-LanguagePackSetup | ID = 1001 Description = Error - 28.12.2010 16:50:24 | Computer Name = *** | Source = DCOM | ID = 10016 Description = Error - 28.12.2010 16:50:24 | Computer Name = *** | Source = DCOM | ID = 10016 Description = Error - 28.12.2010 20:18:36 | Computer Name = *** | Source = EventLog | ID = 6008 Description = Das System wurde zuvor am 29.12.2010 um 01:15:42 unerwartet heruntergefahren. Error - 28.12.2010 20:33:41 | Computer Name = *** | Source = Microsoft-Windows-LanguagePackSetup | ID = 1001 Description = Error - 29.12.2010 16:36:43 | Computer Name = *** | Source = Microsoft-Windows-LanguagePackSetup | ID = 1001 Description = Error - 03.01.2011 09:04:19 | Computer Name = *** | Source = Microsoft-Windows-LanguagePackSetup | ID = 1001 Description = Error - 03.01.2011 10:53:16 | Computer Name = *** | Source = Microsoft-Windows-LanguagePackSetup | ID = 1001 Description = < End of report > |
03.01.2011, 23:01 | #10 |
/// Winkelfunktion /// TB-Süch-Tiger™ | "Copy of Shortcut to (1).ink" (virus?) auf USBstick- Datenübertragung ohne virenübertragung möglich? Beende alle Programme, starte OTL und kopiere folgenden Text in die "Custom Scan/Fixes" Box (unten in OTL): (das ":OTL" muss mitkopiert werden!!!) Hinweis: Falls Du Deinen Benutzernamen unkenntlich gemacht hast, musst Du das Ausgesternte in Deinen richtigen Benutzernamen wieder verwandeln, sonst funktioniert das Script nicht!! Code:
ATTFilter :OTL O4 - HKLM..\Run: [NPSStartup] File not found O4 - HKCU..\Run: [{4A5D547C-7F12-82F4-9142-A3416677D20D}] C:\Users\***_2\AppData\Roaming\Wielw\aqim.exe File not found O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2006.09.18 22:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O32 - AutoRun File - [2011.01.03 15:36:54 | 000,000,003 | RHS- | M] () - G:\autorun.inf -- [ FAT32 ] O33 - MountPoints2\{26d2d637-8647-11de-a665-0019dbf9cfe7}\Shell\AutoRun\command - "" = G:\Menu.exe -- File not found O33 - MountPoints2\{29a9a307-0598-11de-b143-0019dbf9cfe7}\Shell\1\Command - "" = G:\.\recycled\info.exe -- File not found [2011.01.03 16:00:31 | 000,070,670 | --S- | C] () -- C:\Users\***_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\wgbefygb.exe :Commands [purity] [resethosts] [emptytemp] Das Logfile müsste geöffnet werden, wenn Du nach dem Fixen auf ok klickst, poste das bitte. Evtl. wird der Rechner neu gestartet.
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu "Copy of Shortcut to (1).ink" (virus?) auf USBstick- Datenübertragung ohne virenübertragung möglich? |
alten, andere, bilder, computer, dateien, datenübertragung, frage, gekauft, infiziert., laptop, löschbare, löschen, musik, namens, neue, neuen, nicht löschen, ordner, recycler, shortcut, super, theme, trotz, usbstick, virus, virus?, windows, übertragung, zusätzlich |