|
Plagegeister aller Art und deren Bekämpfung: Ich glaub ich hab nen Virus!Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
09.05.2011, 20:20 | #16 |
| Ich glaub ich hab nen Virus! Kaspesky Log: Code:
ATTFilter 2011/05/09 21:18:56.0025 8048 TDSS rootkit removing tool 2.5.0.0 May 1 2011 14:20:16 2011/05/09 21:18:56.0040 8048 ================================================================================ 2011/05/09 21:18:56.0040 8048 SystemInfo: 2011/05/09 21:18:56.0040 8048 2011/05/09 21:18:56.0040 8048 OS Version: 6.1.7600 ServicePack: 0.0 2011/05/09 21:18:56.0040 8048 Product type: Workstation 2011/05/09 21:18:56.0040 8048 ComputerName: ALEX-PC 2011/05/09 21:18:56.0040 8048 UserName: Alex 2011/05/09 21:18:56.0040 8048 Windows directory: C:\Windows 2011/05/09 21:18:56.0040 8048 System windows directory: C:\Windows 2011/05/09 21:18:56.0040 8048 Processor architecture: Intel x86 2011/05/09 21:18:56.0040 8048 Number of processors: 2 2011/05/09 21:18:56.0040 8048 Page size: 0x1000 2011/05/09 21:18:56.0040 8048 Boot type: Normal boot 2011/05/09 21:18:56.0040 8048 ================================================================================ 2011/05/09 21:19:05.0728 8048 Initialize success 2011/05/09 21:19:10.0798 4484 ================================================================================ 2011/05/09 21:19:10.0798 4484 Scan started 2011/05/09 21:19:10.0798 4484 Mode: Manual; 2011/05/09 21:19:10.0798 4484 ================================================================================ 2011/05/09 21:19:11.0437 4484 1394ohci (6d2aca41739bfe8cb86ee8e85f29697d) C:\Windows\system32\DRIVERS\1394ohci.sys 2011/05/09 21:19:11.0500 4484 3xHybrid (55e1acba424e14af3523df741d86f60a) C:\Windows\system32\DRIVERS\3xHybrid.sys 2011/05/09 21:19:11.0578 4484 ACPI (f0e07d144c8685b8774bc32fc8da4df0) C:\Windows\system32\DRIVERS\ACPI.sys 2011/05/09 21:19:11.0625 4484 AcpiPmi (98d81ca942d19f7d9153b095162ac013) C:\Windows\system32\DRIVERS\acpipmi.sys 2011/05/09 21:19:11.0718 4484 adp94xx (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys 2011/05/09 21:19:11.0843 4484 adpahci (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys 2011/05/09 21:19:11.0890 4484 adpu320 (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys 2011/05/09 21:19:11.0968 4484 AFD (ddc040fdb01ef1712a6b13e52afb104c) C:\Windows\system32\drivers\afd.sys 2011/05/09 21:19:11.0999 4484 agp440 (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\DRIVERS\agp440.sys 2011/05/09 21:19:12.0046 4484 aic78xx (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys 2011/05/09 21:19:12.0124 4484 aliide (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\DRIVERS\aliide.sys 2011/05/09 21:19:12.0155 4484 amdagp (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\DRIVERS\amdagp.sys 2011/05/09 21:19:12.0202 4484 amdide (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\DRIVERS\amdide.sys 2011/05/09 21:19:12.0233 4484 AmdK8 (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys 2011/05/09 21:19:12.0280 4484 AmdPPM (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys 2011/05/09 21:19:12.0342 4484 amdsata (19ce906b4cdc11fc4fef5745f33a63b6) C:\Windows\system32\drivers\amdsata.sys 2011/05/09 21:19:12.0389 4484 amdsbs (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys 2011/05/09 21:19:12.0467 4484 amdxata (869e67d66be326a5a9159fba8746fa70) C:\Windows\system32\drivers\amdxata.sys 2011/05/09 21:19:12.0545 4484 AnyDVD (2859c5ec3943911bf1e6458089a75f35) C:\Windows\system32\Drivers\AnyDVD.sys 2011/05/09 21:19:12.0592 4484 AppID (feb834c02ce1e84b6a38f953ca067706) C:\Windows\system32\drivers\appid.sys 2011/05/09 21:19:12.0685 4484 arc (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys 2011/05/09 21:19:12.0717 4484 arcsas (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys 2011/05/09 21:19:12.0795 4484 AsyncMac (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys 2011/05/09 21:19:12.0841 4484 atapi (338c86357871c167a96ab976519bf59e) C:\Windows\system32\DRIVERS\atapi.sys 2011/05/09 21:19:12.0951 4484 b06bdrv (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys 2011/05/09 21:19:12.0997 4484 b57nd60x (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys 2011/05/09 21:19:13.0060 4484 Beep (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys 2011/05/09 21:19:13.0122 4484 blbdrive (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys 2011/05/09 21:19:13.0216 4484 bowser (9a5c671b7fbae4865149bb11f59b91b2) C:\Windows\system32\DRIVERS\bowser.sys 2011/05/09 21:19:13.0247 4484 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys 2011/05/09 21:19:13.0278 4484 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys 2011/05/09 21:19:13.0341 4484 Brserid (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys 2011/05/09 21:19:13.0387 4484 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys 2011/05/09 21:19:13.0419 4484 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys 2011/05/09 21:19:13.0450 4484 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys 2011/05/09 21:19:13.0512 4484 BTHMODEM (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys 2011/05/09 21:19:13.0575 4484 cdfs (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys 2011/05/09 21:19:13.0621 4484 cdrom (ba6e70aa0e6091bc39de29477d866a77) C:\Windows\system32\DRIVERS\cdrom.sys 2011/05/09 21:19:13.0668 4484 circlass (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys 2011/05/09 21:19:13.0699 4484 CLFS (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys 2011/05/09 21:19:13.0762 4484 CmBatt (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys 2011/05/09 21:19:13.0777 4484 cmdide (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\DRIVERS\cmdide.sys 2011/05/09 21:19:13.0809 4484 CNG (1b675691ed940766149c93e8f4488d68) C:\Windows\system32\Drivers\cng.sys 2011/05/09 21:19:13.0840 4484 Compbatt (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys 2011/05/09 21:19:13.0871 4484 CompositeBus (f1724ba27e97d627f808fb0ba77a28a6) C:\Windows\system32\DRIVERS\CompositeBus.sys 2011/05/09 21:19:13.0902 4484 crcdisk (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys 2011/05/09 21:19:13.0980 4484 DfsC (8e09e52ee2e3ceb199ef3dd99cf9e3fb) C:\Windows\system32\Drivers\dfsc.sys 2011/05/09 21:19:14.0027 4484 discache (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys 2011/05/09 21:19:14.0058 4484 Disk (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys 2011/05/09 21:19:14.0121 4484 drmkaud (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys 2011/05/09 21:19:14.0167 4484 DXGKrnl (1679a4669326cb1a67cc95658d273234) C:\Windows\System32\drivers\dxgkrnl.sys 2011/05/09 21:19:14.0386 4484 ebdrv (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys 2011/05/09 21:19:14.0557 4484 ElbyCDFL (ce37e3d51912e59c80c6d84337c0b4cd) C:\Windows\system32\Drivers\ElbyCDFL.sys 2011/05/09 21:19:14.0620 4484 ElbyCDIO (64664287ca449c060fe46941dd67dd5f) C:\Windows\system32\Drivers\ElbyCDIO.sys 2011/05/09 21:19:14.0682 4484 elxstor (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys 2011/05/09 21:19:14.0729 4484 ErrDev (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\DRIVERS\errdev.sys 2011/05/09 21:19:14.0807 4484 exfat (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys 2011/05/09 21:19:14.0854 4484 fastfat (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys 2011/05/09 21:19:14.0916 4484 fdc (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys 2011/05/09 21:19:14.0979 4484 FileInfo (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys 2011/05/09 21:19:15.0010 4484 Filetrace (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys 2011/05/09 21:19:15.0057 4484 flpydisk (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys 2011/05/09 21:19:15.0119 4484 FltMgr (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys 2011/05/09 21:19:15.0181 4484 FsDepends (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys 2011/05/09 21:19:15.0228 4484 Fs_Rec (a574b4360e438977038aae4bf60d79a2) C:\Windows\system32\drivers\Fs_Rec.sys 2011/05/09 21:19:15.0291 4484 fvevol (dafbd9fe39197495aed6d51f3b85b5d2) C:\Windows\system32\DRIVERS\fvevol.sys 2011/05/09 21:19:15.0337 4484 gagp30kx (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys 2011/05/09 21:19:15.0400 4484 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys 2011/05/09 21:19:15.0493 4484 hamachi (833051c6c6c42117191935f734cfbd97) C:\Windows\system32\DRIVERS\hamachi.sys 2011/05/09 21:19:15.0587 4484 HCW85BDA (e73b3865f5bce5b445d18ef39380844a) C:\Windows\system32\drivers\HCW85BDA.sys 2011/05/09 21:19:15.0665 4484 hcw85cir (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys 2011/05/09 21:19:15.0712 4484 HDAudBus (717a2207fd6f13ad3e664c7d5a43c7bf) C:\Windows\system32\DRIVERS\HDAudBus.sys 2011/05/09 21:19:15.0743 4484 HidBatt (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys 2011/05/09 21:19:15.0790 4484 HidBth (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys 2011/05/09 21:19:15.0837 4484 HidIr (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys 2011/05/09 21:19:15.0899 4484 HidUsb (25072fb35ac90b25f9e4e3bacf774102) C:\Windows\system32\DRIVERS\hidusb.sys 2011/05/09 21:19:16.0008 4484 HpSAMD (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\DRIVERS\HpSAMD.sys 2011/05/09 21:19:16.0055 4484 HTTP (c531c7fd9e8b62021112787c4e2c5a5a) C:\Windows\system32\drivers\HTTP.sys 2011/05/09 21:19:16.0117 4484 hwpolicy (8305f33cde89ad6c7a0763ed0b5a8d42) C:\Windows\system32\drivers\hwpolicy.sys 2011/05/09 21:19:16.0149 4484 i8042prt (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\DRIVERS\i8042prt.sys 2011/05/09 21:19:16.0227 4484 iaStorV (71f1a494fedf4b33c02c4a6a28d6d9e9) C:\Windows\system32\drivers\iaStorV.sys 2011/05/09 21:19:16.0289 4484 iirsp (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys 2011/05/09 21:19:16.0461 4484 IntcAzAudAddService (3914ea9111dbeffaf1c68200817768ad) C:\Windows\system32\drivers\RTKVHDA.sys 2011/05/09 21:19:16.0554 4484 intelide (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\DRIVERS\intelide.sys 2011/05/09 21:19:16.0617 4484 intelppm (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys 2011/05/09 21:19:16.0663 4484 IpFilterDriver (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys 2011/05/09 21:19:16.0710 4484 IPMIDRV (e4454b6c37d7ffd5649611f6496308a7) C:\Windows\system32\DRIVERS\IPMIDrv.sys 2011/05/09 21:19:16.0757 4484 IPNAT (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys 2011/05/09 21:19:16.0804 4484 IRENUM (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys 2011/05/09 21:19:16.0851 4484 isapnp (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\DRIVERS\isapnp.sys 2011/05/09 21:19:16.0897 4484 iScsiPrt (ed46c223ae46c6866ab77cdc41c404b7) C:\Windows\system32\DRIVERS\msiscsi.sys 2011/05/09 21:19:16.0960 4484 kbdclass (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\DRIVERS\kbdclass.sys 2011/05/09 21:19:16.0991 4484 kbdhid (3d9f0ebf350edcfd6498057301455964) C:\Windows\system32\DRIVERS\kbdhid.sys 2011/05/09 21:19:17.0069 4484 KL1 (94d67d49bd9503bb1d838405d80f2058) C:\Windows\system32\DRIVERS\kl1.sys 2011/05/09 21:19:17.0100 4484 kl2 (713576569667ac9e0f8556076004a96b) C:\Windows\system32\DRIVERS\kl2.sys 2011/05/09 21:19:17.0163 4484 KLIF (39920d69eaedb51757527aa54fe25216) C:\Windows\system32\DRIVERS\klif.sys 2011/05/09 21:19:17.0209 4484 KLIM6 (cf88b4985d957eee45c9939092e87c92) C:\Windows\system32\DRIVERS\klim6.sys 2011/05/09 21:19:17.0241 4484 klmouflt (3de1771c135328420315e21dde229bba) C:\Windows\system32\DRIVERS\klmouflt.sys 2011/05/09 21:19:17.0287 4484 KSecDD (e36a061ec11b373826905b21be10948f) C:\Windows\system32\Drivers\ksecdd.sys 2011/05/09 21:19:17.0334 4484 KSecPkg (365c6154bbbc5377173f1ca7bfb6cc59) C:\Windows\system32\Drivers\ksecpkg.sys 2011/05/09 21:19:17.0443 4484 lltdio (f7611ec07349979da9b0ae1f18ccc7a6) C:\Windows\system32\DRIVERS\lltdio.sys 2011/05/09 21:19:17.0521 4484 LSI_FC (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys 2011/05/09 21:19:17.0568 4484 LSI_SAS (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys 2011/05/09 21:19:17.0599 4484 LSI_SAS2 (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys 2011/05/09 21:19:17.0646 4484 LSI_SCSI (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys 2011/05/09 21:19:17.0693 4484 luafv (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys 2011/05/09 21:19:17.0740 4484 LVPr2Mon (1a7db7a00a4b0d8da24cd691a4547291) C:\Windows\system32\DRIVERS\LVPr2Mon.sys 2011/05/09 21:19:17.0802 4484 LVRS (b895839b8743e400d7c7dae156f74e7e) C:\Windows\system32\DRIVERS\lvrs.sys 2011/05/09 21:19:17.0880 4484 LVUSBSta (23f8ef78bb9553e465a476f3cee5ca18) C:\Windows\system32\drivers\LVUSBSta.sys 2011/05/09 21:19:17.0943 4484 megasas (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys 2011/05/09 21:19:17.0989 4484 MegaSR (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys 2011/05/09 21:19:18.0052 4484 Modem (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys 2011/05/09 21:19:18.0099 4484 monitor (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys 2011/05/09 21:19:18.0130 4484 mouclass (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\DRIVERS\mouclass.sys 2011/05/09 21:19:18.0161 4484 mouhid (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys 2011/05/09 21:19:18.0208 4484 mountmgr (921c18727c5920d6c0300736646931c2) C:\Windows\system32\drivers\mountmgr.sys 2011/05/09 21:19:18.0255 4484 mpio (2af5997438c55fb79d33d015c30e1974) C:\Windows\system32\DRIVERS\mpio.sys 2011/05/09 21:19:18.0301 4484 mpsdrv (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys 2011/05/09 21:19:18.0348 4484 MRxDAV (b1be47008d20e43da3adc37c24cdb89d) C:\Windows\system32\drivers\mrxdav.sys 2011/05/09 21:19:18.0426 4484 mrxsmb (b4c76ef46322a9711c7b0f4e21ef6ea5) C:\Windows\system32\DRIVERS\mrxsmb.sys 2011/05/09 21:19:18.0457 4484 mrxsmb10 (e593d45024a3fdd11e93cc4a6ca91101) C:\Windows\system32\DRIVERS\mrxsmb10.sys 2011/05/09 21:19:18.0504 4484 mrxsmb20 (a9f86c82c9cc3b679cc3957e1183a30f) C:\Windows\system32\DRIVERS\mrxsmb20.sys 2011/05/09 21:19:18.0535 4484 msahci (4326d168944123f38dd3b2d9c37a0b12) C:\Windows\system32\DRIVERS\msahci.sys 2011/05/09 21:19:18.0582 4484 msdsm (455029c7174a2dbb03dba8a0d8bddd9a) C:\Windows\system32\DRIVERS\msdsm.sys 2011/05/09 21:19:18.0660 4484 Msfs (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys 2011/05/09 21:19:18.0691 4484 mshidkmdf (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys 2011/05/09 21:19:18.0723 4484 msisadrv (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\DRIVERS\msisadrv.sys 2011/05/09 21:19:18.0816 4484 MSKSSRV (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys 2011/05/09 21:19:18.0863 4484 MSPCLOCK (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys 2011/05/09 21:19:18.0910 4484 MSPQM (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys 2011/05/09 21:19:18.0941 4484 MsRPC (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys 2011/05/09 21:19:18.0988 4484 mssmbios (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\DRIVERS\mssmbios.sys 2011/05/09 21:19:19.0019 4484 MSTEE (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys 2011/05/09 21:19:19.0066 4484 MTConfig (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys 2011/05/09 21:19:19.0113 4484 Mup (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys 2011/05/09 21:19:19.0175 4484 NativeWifiP (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys 2011/05/09 21:19:19.0253 4484 NDIS (23759d175a0a9baaf04d05047bc135a8) C:\Windows\system32\drivers\ndis.sys 2011/05/09 21:19:19.0315 4484 NdisCap (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys 2011/05/09 21:19:19.0362 4484 NdisTapi (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys 2011/05/09 21:19:19.0393 4484 Ndisuio (b30ae7f2b6d7e343b0df32e6c08fce75) C:\Windows\system32\DRIVERS\ndisuio.sys 2011/05/09 21:19:19.0440 4484 NdisWan (267c415eadcbe53c9ca873dee39cf3a4) C:\Windows\system32\DRIVERS\ndiswan.sys 2011/05/09 21:19:19.0471 4484 NDProxy (af7e7c63dcef3f8772726f86039d6eb4) C:\Windows\system32\drivers\NDProxy.sys 2011/05/09 21:19:19.0534 4484 NetBIOS (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys 2011/05/09 21:19:19.0581 4484 NetBT (dd52a733bf4ca5af84562a5e2f963b91) C:\Windows\system32\DRIVERS\netbt.sys 2011/05/09 21:19:19.0705 4484 netr73 (76b1157ef850830c5ece61d3e591ca8b) C:\Windows\system32\DRIVERS\netr73.sys 2011/05/09 21:19:19.0783 4484 nfrd960 (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys 2011/05/09 21:19:19.0830 4484 Npfs (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys 2011/05/09 21:19:19.0893 4484 nsiproxy (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys 2011/05/09 21:19:19.0986 4484 Ntfs (187002ce05693c306f43c873f821381f) C:\Windows\system32\drivers\Ntfs.sys 2011/05/09 21:19:20.0064 4484 Null (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys 2011/05/09 21:19:20.0127 4484 NVENETFD (b5e37e31c053bc9950455a257526514b) C:\Windows\system32\DRIVERS\nvm62x32.sys 2011/05/09 21:19:20.0454 4484 nvlddmkm (73a70f1d89c942eedd99a3f10459b051) C:\Windows\system32\DRIVERS\nvlddmkm.sys 2011/05/09 21:19:20.0766 4484 NVNET (1de923088878b495cd4219e47ba34eb8) C:\Windows\system32\DRIVERS\nvmf6232.sys 2011/05/09 21:19:20.0844 4484 nvraid (f1b0bed906f97e16f6d0c3629d2f21c6) C:\Windows\system32\drivers\nvraid.sys 2011/05/09 21:19:20.0891 4484 nvstor (4520b63899e867f354ee012d34e11536) C:\Windows\system32\drivers\nvstor.sys 2011/05/09 21:19:20.0922 4484 nvstor32 (7eba6c9a0a295b1559efb9062e701218) C:\Windows\system32\DRIVERS\nvstor32.sys 2011/05/09 21:19:20.0985 4484 nv_agp (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\DRIVERS\nv_agp.sys 2011/05/09 21:19:21.0047 4484 ohci1394 (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\DRIVERS\ohci1394.sys 2011/05/09 21:19:21.0141 4484 Parport (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys 2011/05/09 21:19:21.0172 4484 partmgr (ff4218952b51de44fe910953a3e686b9) C:\Windows\system32\drivers\partmgr.sys 2011/05/09 21:19:21.0234 4484 Parvdm (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys 2011/05/09 21:19:21.0281 4484 pci (c858cb77c577780ecc456a892e7e7d0f) C:\Windows\system32\DRIVERS\pci.sys 2011/05/09 21:19:21.0312 4484 pciide (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\DRIVERS\pciide.sys 2011/05/09 21:19:21.0359 4484 pcmcia (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys 2011/05/09 21:19:21.0406 4484 pcouffin (5b6c11de7e839c05248ced8825470fef) C:\Windows\system32\Drivers\pcouffin.sys 2011/05/09 21:19:21.0453 4484 pcw (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys 2011/05/09 21:19:21.0499 4484 PEAUTH (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys 2011/05/09 21:19:21.0546 4484 pepifilter (a05f0d7419cf4680eedd5736e6549e7b) C:\Windows\system32\DRIVERS\lv302af.sys 2011/05/09 21:19:21.0671 4484 Ph3xIB32 (8b7aec0aba77de5d2feac1824c15a3fa) C:\Windows\system32\DRIVERS\Ph3xIB32.sys 2011/05/09 21:19:21.0827 4484 PID_PEPI (4bb5ac2dd485b8eefccb977ee66a68ad) C:\Windows\system32\DRIVERS\LV302V32.SYS 2011/05/09 21:19:22.0030 4484 PptpMiniport (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys 2011/05/09 21:19:22.0061 4484 Processor (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys 2011/05/09 21:19:22.0139 4484 Ps2 (390c204ced3785609ab24e9c52054a84) C:\Windows\system32\DRIVERS\PS2.sys 2011/05/09 21:19:22.0186 4484 Psched (6270ccae2a86de6d146529fe55b3246a) C:\Windows\system32\DRIVERS\pacer.sys 2011/05/09 21:19:22.0217 4484 PxHelp20 (49452bfcec22f36a7a9b9c2181bc3042) C:\Windows\system32\Drivers\PxHelp20.sys 2011/05/09 21:19:22.0295 4484 ql2300 (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys 2011/05/09 21:19:22.0389 4484 ql40xx (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys 2011/05/09 21:19:22.0420 4484 QWAVEdrv (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys 2011/05/09 21:19:22.0467 4484 RasAcd (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys 2011/05/09 21:19:22.0529 4484 RasAgileVpn (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys 2011/05/09 21:19:22.0576 4484 Rasl2tp (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys 2011/05/09 21:19:22.0623 4484 RasPppoe (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys 2011/05/09 21:19:22.0654 4484 RasSstp (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys 2011/05/09 21:19:22.0701 4484 rdbss (835d7e81bf517a3b72384bdcc85e1ce6) C:\Windows\system32\DRIVERS\rdbss.sys 2011/05/09 21:19:22.0747 4484 rdpbus (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys 2011/05/09 21:19:22.0779 4484 RDPCDD (1e016846895b15a99f9a176a05029075) C:\Windows\system32\DRIVERS\RDPCDD.sys 2011/05/09 21:19:22.0857 4484 RDPENCDD (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys 2011/05/09 21:19:22.0888 4484 RDPREFMP (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys 2011/05/09 21:19:22.0935 4484 RDPWD (801371ba9782282892d00aadb08ee367) C:\Windows\system32\drivers\RDPWD.sys 2011/05/09 21:19:22.0997 4484 rdyboost (4ea225bf1cf05e158853f30a99ca29a7) C:\Windows\system32\drivers\rdyboost.sys 2011/05/09 21:19:23.0106 4484 rspndr (032b0d36ad92b582d869879f5af5b928) C:\Windows\system32\DRIVERS\rspndr.sys 2011/05/09 21:19:23.0169 4484 sbp2port (34ee0c44b724e3e4ce2eff29126de5b5) C:\Windows\system32\DRIVERS\sbp2port.sys 2011/05/09 21:19:23.0231 4484 scfilter (a95c54b2ac3cc9c73fcdf9e51a1d6b51) C:\Windows\system32\DRIVERS\scfilter.sys 2011/05/09 21:19:23.0309 4484 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys 2011/05/09 21:19:23.0371 4484 Serenum (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys 2011/05/09 21:19:23.0418 4484 Serial (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys 2011/05/09 21:19:23.0434 4484 sermouse (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys 2011/05/09 21:19:23.0527 4484 sfdrv01 (4c0d673281178cb496011a2e28571fc8) C:\Windows\system32\drivers\sfdrv01.sys 2011/05/09 21:19:23.0559 4484 sffdisk (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\DRIVERS\sffdisk.sys 2011/05/09 21:19:23.0590 4484 sffp_mmc (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\DRIVERS\sffp_mmc.sys 2011/05/09 21:19:23.0621 4484 sffp_sd (a0708bbd07d245c06ff9de549ca47185) C:\Windows\system32\DRIVERS\sffp_sd.sys 2011/05/09 21:19:23.0637 4484 sfhlp02 (15be2b5e4dc5b8623cf167720682abc9) C:\Windows\system32\drivers\sfhlp02.sys 2011/05/09 21:19:23.0668 4484 sfloppy (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys 2011/05/09 21:19:23.0683 4484 sfsync02 (efebbc1d13fdb77a6af4eddfc7232edf) C:\Windows\system32\drivers\sfsync02.sys 2011/05/09 21:19:23.0730 4484 sfvfs02 (4edf98028a05263b515b17b3e7b52509) C:\Windows\system32\drivers\sfvfs02.sys 2011/05/09 21:19:23.0761 4484 sisagp (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\DRIVERS\sisagp.sys 2011/05/09 21:19:23.0808 4484 SiSRaid2 (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys 2011/05/09 21:19:23.0839 4484 SiSRaid4 (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys 2011/05/09 21:19:23.0871 4484 Smb (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys 2011/05/09 21:19:23.0917 4484 spldr (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys 2011/05/09 21:19:23.0995 4484 srv (4a9b0f215de2519e2363f91df25c1e97) C:\Windows\system32\DRIVERS\srv.sys 2011/05/09 21:19:24.0058 4484 srv2 (14c44875518ae1c982e54ea8c5f7fe28) C:\Windows\system32\DRIVERS\srv2.sys 2011/05/09 21:19:24.0105 4484 srvnet (07a14223b0a50e76ade003fdf95d4fec) C:\Windows\system32\DRIVERS\srvnet.sys 2011/05/09 21:19:24.0198 4484 stexstor (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys 2011/05/09 21:19:24.0261 4484 swenum (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\DRIVERS\swenum.sys 2011/05/09 21:19:24.0401 4484 Tcpip (bb7f39c31c4a4417fd318e7cd184e225) C:\Windows\system32\drivers\tcpip.sys 2011/05/09 21:19:24.0510 4484 TCPIP6 (bb7f39c31c4a4417fd318e7cd184e225) C:\Windows\system32\DRIVERS\tcpip.sys 2011/05/09 21:19:24.0573 4484 tcpipreg (e64444523add154f86567c469bc0b17f) C:\Windows\system32\drivers\tcpipreg.sys 2011/05/09 21:19:24.0619 4484 TDPIPE (1875c1490d99e70e449e3afae9fcbadf) C:\Windows\system32\drivers\tdpipe.sys 2011/05/09 21:19:24.0666 4484 TDTCP (7551e91ea999ee9a8e9c331d5a9c31f3) C:\Windows\system32\drivers\tdtcp.sys 2011/05/09 21:19:24.0697 4484 tdx (cb39e896a2a83702d1737bfd402b3542) C:\Windows\system32\DRIVERS\tdx.sys 2011/05/09 21:19:24.0744 4484 TermDD (c36f41ee20e6999dbf4b0425963268a5) C:\Windows\system32\DRIVERS\termdd.sys 2011/05/09 21:19:24.0869 4484 tssecsrv (98ae6fa07d12cb4ec5cf4a9bfa5f4242) C:\Windows\system32\DRIVERS\tssecsrv.sys 2011/05/09 21:19:24.0931 4484 tunnel (3e461d890a97f9d4c168f5fda36e1d00) C:\Windows\system32\DRIVERS\tunnel.sys 2011/05/09 21:19:24.0963 4484 uagp35 (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys 2011/05/09 21:19:25.0009 4484 udfs (09cc3e16f8e5ee7168e01cf8fcbe061a) C:\Windows\system32\DRIVERS\udfs.sys 2011/05/09 21:19:25.0103 4484 uliagpkx (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\DRIVERS\uliagpkx.sys 2011/05/09 21:19:25.0134 4484 umbus (049b3a50b3d646baeeee9eec9b0668dc) C:\Windows\system32\DRIVERS\umbus.sys 2011/05/09 21:19:25.0181 4484 UmPass (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys 2011/05/09 21:19:25.0290 4484 USBAAPL (d4fb6ecc60a428564ba8768b0e23c0fc) C:\Windows\system32\Drivers\usbaapl.sys 2011/05/09 21:19:25.0337 4484 usbaudio (2436a42aab4ad48a9b714e5b0f344627) C:\Windows\system32\drivers\usbaudio.sys 2011/05/09 21:19:25.0384 4484 usbccgp (8455c4ed038efd09e99327f9d2d48ffa) C:\Windows\system32\DRIVERS\usbccgp.sys 2011/05/09 21:19:25.0431 4484 usbcir (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\DRIVERS\usbcir.sys 2011/05/09 21:19:25.0477 4484 usbehci (ff32d4f3ec3c68b2ca61782c7964f54e) C:\Windows\system32\DRIVERS\usbehci.sys 2011/05/09 21:19:25.0524 4484 usbhub (b0dfc7b484e0ca0c27bda5433b82d94a) C:\Windows\system32\DRIVERS\usbhub.sys 2011/05/09 21:19:25.0571 4484 usbohci (a6fb7957ea7afb1165991e54ce934b74) C:\Windows\system32\DRIVERS\usbohci.sys 2011/05/09 21:19:25.0602 4484 usbprint (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys 2011/05/09 21:19:25.0665 4484 usbscan (576096ccbc07e7c4ea4f5e6686d6888f) C:\Windows\system32\DRIVERS\usbscan.sys 2011/05/09 21:19:25.0711 4484 USBSTOR (1c4287739a93594e57e2a9e6a3ed7353) C:\Windows\system32\drivers\USBSTOR.SYS 2011/05/09 21:19:25.0758 4484 usbuhci (78780c3ebce17405b1ccd07a3a8a7d72) C:\Windows\system32\DRIVERS\usbuhci.sys 2011/05/09 21:19:25.0852 4484 VClone (e986f81fa0b3aed21f188a0fd044d80e) C:\Windows\system32\DRIVERS\VClone.sys 2011/05/09 21:19:25.0899 4484 vdrvroot (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\DRIVERS\vdrvroot.sys 2011/05/09 21:19:25.0945 4484 vga (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys 2011/05/09 21:19:25.0992 4484 VgaSave (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys 2011/05/09 21:19:26.0039 4484 vhdmp (3be6e1f3a4f1afec8cee0d7883f93583) C:\Windows\system32\DRIVERS\vhdmp.sys 2011/05/09 21:19:26.0101 4484 viaagp (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\DRIVERS\viaagp.sys 2011/05/09 21:19:26.0133 4484 ViaC7 (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys 2011/05/09 21:19:26.0179 4484 viaide (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\DRIVERS\viaide.sys 2011/05/09 21:19:26.0226 4484 volmgr (384e5a2aa49934295171e499f86ba6f3) C:\Windows\system32\DRIVERS\volmgr.sys 2011/05/09 21:19:26.0273 4484 volmgrx (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys 2011/05/09 21:19:26.0335 4484 volsnap (58df9d2481a56edde167e51b334d44fd) C:\Windows\system32\DRIVERS\volsnap.sys 2011/05/09 21:19:26.0382 4484 vsmraid (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys 2011/05/09 21:19:26.0445 4484 vwifibus (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\system32\DRIVERS\vwifibus.sys 2011/05/09 21:19:26.0491 4484 vwififlt (7090d3436eeb4e7da3373090a23448f7) C:\Windows\system32\DRIVERS\vwififlt.sys 2011/05/09 21:19:26.0538 4484 WacomPen (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys 2011/05/09 21:19:26.0585 4484 WANARP (692a712062146e96d28ba0b7d75de31b) C:\Windows\system32\DRIVERS\wanarp.sys 2011/05/09 21:19:26.0616 4484 Wanarpv6 (692a712062146e96d28ba0b7d75de31b) C:\Windows\system32\DRIVERS\wanarp.sys 2011/05/09 21:19:26.0679 4484 Wd (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys 2011/05/09 21:19:26.0725 4484 WDC_SAM (d6efaf429fd30c5df613d220e344cce7) C:\Windows\system32\DRIVERS\wdcsam.sys 2011/05/09 21:19:26.0757 4484 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys 2011/05/09 21:19:26.0850 4484 WfpLwf (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys 2011/05/09 21:19:26.0881 4484 WIMMount (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys 2011/05/09 21:19:26.0991 4484 WinUsb (30fc6e5448d0cbaaa95280eeef7fedae) C:\Windows\system32\DRIVERS\WinUsb.sys 2011/05/09 21:19:27.0037 4484 WmiAcpi (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\DRIVERS\wmiacpi.sys 2011/05/09 21:19:27.0115 4484 ws2ifsl (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys 2011/05/09 21:19:27.0162 4484 WudfPf (6f9b6c0c93232cff47d0f72d6db1d21e) C:\Windows\system32\drivers\WudfPf.sys 2011/05/09 21:19:27.0193 4484 WUDFRd (f91ff1e51fca30b3c3981db7d5924252) C:\Windows\system32\DRIVERS\WUDFRd.sys 2011/05/09 21:19:27.0334 4484 ================================================================================ 2011/05/09 21:19:27.0334 4484 Scan finished 2011/05/09 21:19:27.0334 4484 ================================================================================ |
10.05.2011, 09:47 | #17 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Ich glaub ich hab nen Virus! Dann bitte jetzt CF ausführen:
__________________ComboFix Ein Leitfaden und Tutorium zur Nutzung von ComboFix
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat!
__________________ |
10.05.2011, 12:47 | #18 |
| Ich glaub ich hab nen Virus! Hier das cofi-Log:
__________________Code:
ATTFilter ComboFix 11-05-09.02 - Alex 10.05.2011 13:33:39.1.2 - x86 Microsoft Windows 7 Home Premium 6.1.7600.0.1252.49.1031.18.3071.2020 [GMT 2:00] ausgeführt von:: c:\users\Alex\Desktop\cofi.exe AV: Kaspersky Internet Security *Disabled/Updated* {56547CC9-C9B2-849D-8FEF-A496150D6A06} FW: Kaspersky Internet Security *Disabled* {6E6FFDEC-83DD-85C5-A4B0-0DA3EBDE2D7D} SP: Kaspersky Internet Security *Disabled/Updated* {ED359D2D-EF88-8B13-B55F-9FE46E8A20BB} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\users\Alex\AppData\Roaming\inst.exe c:\windows\system32\jusched.exe . . ((((((((((((((((((((((( Dateien erstellt von 2011-04-10 bis 2011-05-10 )))))))))))))))))))))))))))))) . . 2011-05-10 11:43 . 2011-05-10 11:43 -------- d-----w- c:\users\Alex\AppData\Local\temp 2011-05-10 11:26 . 2011-05-10 11:26 -------- d-----w- c:\program files\CCleaner 2011-05-09 13:48 . 2011-05-09 13:48 -------- d-----w- C:\_OTL 2011-05-08 14:12 . 2011-05-08 14:12 -------- d-----w- c:\users\Alex\AppData\Roaming\Malwarebytes 2011-05-08 14:12 . 2010-12-20 16:09 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys 2011-05-08 14:12 . 2011-05-08 14:12 -------- d-----w- c:\programdata\Malwarebytes 2011-05-08 14:12 . 2011-05-08 14:12 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware 2011-05-08 14:12 . 2010-12-20 16:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys 2011-05-08 12:34 . 2011-05-08 12:34 -------- d-----w- c:\program files\18 WoS Voll aufs Gas 2011-05-06 11:32 . 2011-04-11 07:04 7071056 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{F6B93263-E3AB-426A-ADD7-AB33A66AD44E}\mpengine.dll 2011-05-04 14:07 . 2011-05-04 14:08 -------- d-----w- c:\users\Alex\AppData\Local\Microsoft Games 2011-04-28 16:51 . 2011-05-08 10:30 -------- d-----w- c:\programdata\TrackMania 2011-04-28 14:59 . 2011-04-28 14:59 -------- d-sh--w- c:\programdata\SecuROM 2011-04-28 14:56 . 2009-03-16 12:18 69448 ----a-w- c:\windows\system32\XAPOFX1_3.dll 2011-04-28 14:56 . 2009-03-16 12:18 517448 ----a-w- c:\windows\system32\XAudio2_4.dll 2011-04-28 14:56 . 2009-03-16 12:18 235352 ----a-w- c:\windows\system32\xactengine3_4.dll 2011-04-28 14:56 . 2009-03-09 13:27 4178264 ----a-w- c:\windows\system32\D3DX9_41.dll 2011-04-28 14:56 . 2009-03-16 12:18 22360 ----a-w- c:\windows\system32\X3DAudio1_6.dll 2011-04-28 14:46 . 2011-04-28 14:46 -------- d--h--r- c:\users\Alex\AppData\Roaming\SecuROM 2011-04-27 05:11 . 2011-02-18 05:33 31232 ----a-w- c:\windows\system32\prevhost.exe 2011-04-27 05:10 . 2011-03-11 05:44 146304 ----a-w- c:\windows\system32\drivers\storport.sys 2011-04-27 05:10 . 2011-03-11 05:44 143744 ----a-w- c:\windows\system32\drivers\nvstor.sys 2011-04-27 05:10 . 2011-03-11 05:44 1210240 ----a-w- c:\windows\system32\drivers\ntfs.sys 2011-04-27 05:10 . 2011-03-11 05:44 117120 ----a-w- c:\windows\system32\drivers\nvraid.sys 2011-04-27 05:10 . 2011-03-11 05:43 80256 ----a-w- c:\windows\system32\drivers\amdsata.sys 2011-04-27 05:10 . 2011-03-11 05:39 1686016 ----a-w- c:\windows\system32\esent.dll 2011-04-27 05:10 . 2011-03-11 05:43 332160 ----a-w- c:\windows\system32\drivers\iaStorV.sys 2011-04-27 05:10 . 2011-03-11 05:43 22400 ----a-w- c:\windows\system32\drivers\amdxata.sys 2011-04-27 05:10 . 2011-03-11 05:37 74240 ----a-w- c:\windows\system32\fsutil.exe 2011-04-27 05:10 . 2011-03-12 11:31 442880 ----a-w- c:\windows\system32\XpsPrint.dll 2011-04-27 05:10 . 2011-02-26 05:33 2614784 ----a-w- c:\windows\explorer.exe 2011-04-18 15:15 . 2011-04-18 17:02 -------- d-----w- c:\users\Alex\AppData\Roaming\DVDVideoSoft 2011-04-18 10:41 . 2011-04-18 12:23 -------- d-----w- C:\Referat 2011-04-17 09:36 . 2011-04-29 19:22 -------- d-----w- c:\users\Alex\AppData\Roaming\dvdcss 2011-04-15 21:01 . 2011-04-18 15:16 -------- d-----w- c:\program files\Common Files\DVDVideoSoft 2011-04-15 21:01 . 2011-04-18 15:15 -------- d-----w- c:\program files\DVDVideoSoft 2011-04-15 20:51 . 2011-04-15 20:51 -------- d-----w- c:\program files\eRightSoft 2011-04-14 11:24 . 2011-02-23 05:05 309760 ----a-w- c:\windows\system32\drivers\srv2.sys 2011-04-14 11:24 . 2011-02-23 05:06 311296 ----a-w- c:\windows\system32\drivers\srv.sys 2011-04-14 11:24 . 2011-02-23 05:05 113664 ----a-w- c:\windows\system32\drivers\srvnet.sys . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2011-04-28 15:00 . 2009-08-18 10:30 564632 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\wlidui.dll 2011-04-28 15:00 . 2009-08-18 10:24 18328 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll 2011-04-15 04:17 . 2011-02-04 20:07 2300696 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll 2011-04-15 04:17 . 2011-02-10 13:25 42776 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM-2\StartResources.dll 2011-04-11 04:11 . 2011-04-04 03:38 2300696 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\markup.dll 2011-04-11 04:11 . 2011-02-04 20:06 42776 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll 2011-04-11 04:11 . 2011-02-10 13:25 1220416 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll 2011-04-09 16:55 . 2011-04-09 16:55 15453336 ----a-w- c:\windows\system32\xlive.dll 2011-04-09 16:55 . 2011-04-09 16:55 13642904 ----a-w- c:\windows\system32\xlivefnt.dll 2011-04-08 04:43 . 2011-02-04 20:06 1220416 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll 2011-02-19 05:33 . 2011-03-09 15:36 802304 ----a-w- c:\windows\system32\FntCache.dll 2011-02-19 05:32 . 2011-03-09 15:36 1074176 ----a-w- c:\windows\system32\DWrite.dll 2011-02-19 05:32 . 2011-03-09 15:36 739840 ----a-w- c:\windows\system32\d2d1.dll 2011-02-18 15:36 . 2011-02-18 15:36 41984 ----a-w- c:\windows\system32\drivers\usbaapl.sys 2011-02-18 15:36 . 2011-02-18 15:36 4184352 ----a-w- c:\windows\system32\usbaaplrc.dll 2011-02-11 20:47 . 2011-02-11 20:47 2300696 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-5\markup.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Skype"="c:\program files\Skype\Phone\Skype.exe" [2011-01-26 15026056] "LightScribe Control Panel"="c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe" [2009-06-17 2363392] "EADM"="c:\program files\Electronic Arts\EADM\EADMUI.exe" [2011-03-03 11509760] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="RtHDVCpl.exe" [2007-07-06 4669440] "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-05-11 40048] "HP Health Check Scheduler"="c:\program files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe" [2007-05-24 71176] "HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2005-02-16 49152] "hpsysdrv"="c:\hp\support\hpsysdrv.exe" [2007-04-18 65536] "KBD"="c:\hp\KBD\KbdStub.EXE" [2006-12-08 65536] "OsdMaestro"="c:\program files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe" [2007-02-15 118784] "SunJavaUpdateReg"="c:\windows\system32\jureg.exe" [2007-04-07 54936] "AVP"="c:\program files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe" [2010-11-02 365336] "LogitechQuickCamRibbon"="c:\program files\Logitech\Logitech WebCam Software\LWS.exe" [2009-10-14 2793304] "LXCGCATS"="c:\windows\system32\spool\DRIVERS\W32X86\3\LXCGtime.dll" [2007-02-22 73728] "lxcgmon.exe"="c:\program files\Lexmark 2300 Series\lxcgmon.exe" [2007-04-29 205744] "EzPrint"="c:\program files\Lexmark 2300 Series\ezprint.exe" [2007-04-29 103344] "HPUsageTracking"="c:\program files\HP\HP UT\bin\hppusg.exe" [2009-05-11 24576] "BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 91520] "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-05-14 248552] "Nero MediaHome 4"="c:\program files\Nero\Nero MediaHome 4\NeroMediaHome.exe" [2010-03-08 5174568] "TkBellExe"="c:\program files\Real\RealPlayer\Update\realsched.exe" [2011-02-23 273544] "VirtualCloneDrive"="c:\program files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" [2006-04-29 94208] "CloneCDTray"="c:\program files\SlySoft\CloneCD\CloneCDTray.exe" [2006-09-28 57344] "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-11-29 421888] "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2011-03-07 421160] "Malwarebytes' Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2010-12-20 963976] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ Acrobat Assistant.lnk - c:\program files\Adobe\Acrobat 6.0\Distillr\acrotray.exe [2003-5-15 217193] Adobe Gamma Loader.exe.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2011-1-23 110592] Microsoft Office.lnk - c:\program files\Microsoft Office\Office10\OSA.EXE [2001-2-13 83360] WDDMStatus.lnk - c:\program files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe [2009-11-13 2057536] WDSmartWare.lnk - c:\program files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe [2009-11-13 9117504] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"=c:\progra~1\KASPER~1\KASPER~1\kloehk.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "aux2"=wdmaud.drv . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus] "DisableMonitoring"=dword:00000001 . R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2011-03-27 136176] R3 EagleXNt;EagleXNt;c:\windows\system32\drivers\EagleXNt.sys [x] R3 gupdatem;Google Update-Dienst (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2011-03-27 136176] R3 HCW85BDA;Hauppauge WinTV 885 Video Capture;c:\windows\system32\drivers\HCW85BDA.sys [2007-06-11 968064] R3 npggsvc;nProtect GameGuard Service;c:\windows\system32\GameMon.des [2010-06-07 3549224] R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000] R3 Ph3xIB32;Philips 713x Inbox PCI TV Card;c:\windows\system32\DRIVERS\Ph3xIB32.sys [2009-07-13 1311232] S1 kl2;kl2;c:\windows\system32\DRIVERS\kl2.sys [2010-06-09 11352] S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys [2010-04-22 22104] S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-13 48128] S2 Akamai;Akamai NetSession Interface;c:\windows\System32\svchost.exe [2009-07-14 20992] S2 HPBtnSrv;HP Chasis Button Service;c:\hp\HPEZBTN\HPBtnSrv.exe [2007-05-29 198240] S2 NAUpdate;Nero Update;c:\program files\Nero\Update\NASvc.exe [2010-05-04 503080] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-01-07 378984] S2 WDDMService;WD SmartWare Drive Manager;c:\program files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [2009-11-13 110592] S2 WDSmartWareBackgroundService;WD SmartWare Background Service;c:\program files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [2009-06-16 20480] S3 3xHybrid;CTX SAA713x PCI Card;c:\windows\system32\DRIVERS\3xHybrid.sys [2009-09-24 1006816] S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys [2009-11-02 19984] S3 netr73;USB-Drahtlos-802.11 b/g-Adaptertreiber für Vista;c:\windows\system32\DRIVERS\netr73.sys [2009-07-13 545792] S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam.sys [2009-02-13 11520] . . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] Akamai REG_MULTI_SZ Akamai . [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}] 2009-06-17 11:11 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe . Inhalt des "geplante Tasks" Ordners . 2011-05-10 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files\Google\Update\GoogleUpdate.exe [2011-03-27 08:48] . 2011-05-10 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files\Google\Update\GoogleUpdate.exe [2011-03-27 08:48] . . ------- Zusätzlicher Suchlauf ------- . uStart Page = hxxp://www.google.de/ mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=DE_DE&c=74&bd=Pavilion&pf=desktop uInternet Settings,ProxyOverride = *.local IE: add to &BOM - c:\\PROGRA~1\\BIET-O~1\\\\AddToBOM.hta IE: An OneNote s&enden - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105 IE: Free YouTube Download - c:\users\Alex\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm IE: Free YouTube to MP3 Converter - c:\users\Alex\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm IE: Nach Microsoft &Excel exportieren - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 IE: Nach Microsoft E&xcel exportieren - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000 IE: Nach Microsoft E&xel exportieren - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000 FF - ProfilePath - c:\users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\t7fkiur8.default\ FF - prefs.js: browser.search.selectedEngine - iload.to FF - prefs.js: browser.startup.homepage - hxxp://www.google.de/ FF - prefs.js: network.proxy.type - 0 FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF - Ext: Anti-Banner: KavAntiBanner@Kaspersky.ru - c:\program files\Mozilla Firefox\extensions\KavAntiBanner@Kaspersky.ru FF - Ext: Modul zur Link-Untersuchung: linkfilter@kaspersky.ru - c:\program files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru FF - Ext: Java Console: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} FF - Ext: DVDVideoSoft Menu: {ACAA314B-EEBA-48e4-AD47-84E31C44796C} - %profile%\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C} . - - - - Entfernte verwaiste Registrierungseinträge - - - - . MSConfigStartUp-EA Core - c:\program files\Electronic Arts\EADM\Core.exe MSConfigStartUp-RGSC - c:\program files\Spiele\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe . . . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\npggsvc] "ImagePath"="c:\windows\system32\GameMon.des -service" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\S-1-5-21-4146598908-1969735870-1766285717-1000\Software\SecuROM\License information*] "datasecu"=hex:b1,a3,0a,37,f4,69,89,17,f0,fe,c6,50,46,f3,d9,07,f7,10,16,d4,6b, 7c,63,61,55,60,45,40,95,b4,fc,20,8b,87,c2,5c,8e,ca,5b,11,52,5b,e3,81,dc,93,\ "rkeysecu"=hex:2f,0f,d5,3e,02,2b,06,63,b1,0b,dd,b6,71,e2,54,98 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2011-05-10 13:44:49 ComboFix-quarantined-files.txt 2011-05-10 11:44 . Vor Suchlauf: 11 Verzeichnis(se), 201.278.644.224 Bytes frei Nach Suchlauf: 19 Verzeichnis(se), 201.201.664.000 Bytes frei . - - End Of File - - 6802386696D4201F4EA9B2E737086261 |
10.05.2011, 13:07 | #19 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Ich glaub ich hab nen Virus! Combofix - Scripten 1. Starte das Notepad (Start / Ausführen / notepad[Enter]) 2. Jetzt füge mit copy/paste den ganzen Inhalt der untenstehenden Codebox in das Notepad Fenster ein. Code:
ATTFilter File:: c:\windows\system32\drivers\EagleXNt.sys Driver:: EagleXNt 4. Deaktivere den Guard Deines Antivirenprogramms und eine eventuell vorhandene Software Firewall. (Auch Guards von Ad-, Spyware Programmen und den Tea Timer (wenn vorhanden) !) 5. Dann ziehe die CFScript.txt auf die cofi.exe, so wie es im unteren Bild zu sehen ist. Damit wird Combofix neu gestartet. 6. Nach dem Neustart (es wird gefragt ob Du neustarten willst), poste bitte die folgenden Log Dateien: Combofix.txt Hinweis: Das obige Script ist nur für diesen einen User in dieser Situtation erstellt worden. Es ist auf keinen anderen Rechner portierbar und darf nicht anderweitig verwandt werden, da es das System nachhaltig schädigen kann!
__________________ Logfiles bitte immer in CODE-Tags posten |
10.05.2011, 13:41 | #20 |
| Ich glaub ich hab nen Virus! Hier das neue Log-File: Code:
ATTFilter ComboFix 11-05-09.02 - Alex 10.05.2011 14:12:38.2.2 - x86 Microsoft Windows 7 Home Premium 6.1.7600.0.1252.49.1031.18.3071.1879 [GMT 2:00] ausgeführt von:: c:\users\Alex\Desktop\cofi.exe Benutzte Befehlsschalter :: c:\users\Alex\Desktop\CFScript.txt AV: Kaspersky Internet Security *Disabled/Updated* {56547CC9-C9B2-849D-8FEF-A496150D6A06} FW: Kaspersky Internet Security *Disabled* {6E6FFDEC-83DD-85C5-A4B0-0DA3EBDE2D7D} SP: Kaspersky Internet Security *Disabled/Updated* {ED359D2D-EF88-8B13-B55F-9FE46E8A20BB} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . FILE :: "c:\windows\system32\drivers\EagleXNt.sys" . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . . ((((((((((((((((((((((((((((((((((((((( Treiber/Dienste ))))))))))))))))))))))))))))))))))))))))))))))))) . . -------\Legacy_EAGLEXNT -------\Service_EagleXNt . . ((((((((((((((((((((((( Dateien erstellt von 2011-04-10 bis 2011-05-10 )))))))))))))))))))))))))))))) . . 2011-05-10 12:25 . 2011-05-10 12:27 -------- d-----w- c:\users\NeroMediaHomeUser.4\AppData\Local\temp 2011-05-10 12:25 . 2011-05-10 12:25 -------- d-----w- c:\users\Default\AppData\Local\temp 2011-05-10 11:31 . 2011-05-10 11:44 -------- d-----w- C:\cofi 2011-05-10 11:26 . 2011-05-10 11:26 -------- d-----w- c:\program files\CCleaner 2011-05-09 13:48 . 2011-05-09 13:48 -------- d-----w- C:\_OTL 2011-05-08 14:12 . 2011-05-08 14:12 -------- d-----w- c:\users\Alex\AppData\Roaming\Malwarebytes 2011-05-08 14:12 . 2010-12-20 16:09 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys 2011-05-08 14:12 . 2011-05-08 14:12 -------- d-----w- c:\programdata\Malwarebytes 2011-05-08 14:12 . 2011-05-08 14:12 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware 2011-05-08 14:12 . 2010-12-20 16:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys 2011-05-08 12:34 . 2011-05-08 12:34 -------- d-----w- c:\program files\18 WoS Voll aufs Gas 2011-05-06 11:32 . 2011-04-11 07:04 7071056 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{F6B93263-E3AB-426A-ADD7-AB33A66AD44E}\mpengine.dll 2011-05-04 14:07 . 2011-05-04 14:08 -------- d-----w- c:\users\Alex\AppData\Local\Microsoft Games 2011-04-28 16:51 . 2011-05-08 10:30 -------- d-----w- c:\programdata\TrackMania 2011-04-28 14:59 . 2011-04-28 14:59 -------- d-sh--w- c:\programdata\SecuROM 2011-04-28 14:56 . 2009-03-16 12:18 69448 ----a-w- c:\windows\system32\XAPOFX1_3.dll 2011-04-28 14:56 . 2009-03-16 12:18 517448 ----a-w- c:\windows\system32\XAudio2_4.dll 2011-04-28 14:56 . 2009-03-16 12:18 235352 ----a-w- c:\windows\system32\xactengine3_4.dll 2011-04-28 14:56 . 2009-03-09 13:27 4178264 ----a-w- c:\windows\system32\D3DX9_41.dll 2011-04-28 14:56 . 2009-03-16 12:18 22360 ----a-w- c:\windows\system32\X3DAudio1_6.dll 2011-04-28 14:46 . 2011-04-28 14:46 -------- d--h--r- c:\users\Alex\AppData\Roaming\SecuROM 2011-04-27 05:11 . 2011-02-18 05:33 31232 ----a-w- c:\windows\system32\prevhost.exe 2011-04-27 05:10 . 2011-03-11 05:44 146304 ----a-w- c:\windows\system32\drivers\storport.sys 2011-04-27 05:10 . 2011-03-11 05:44 143744 ----a-w- c:\windows\system32\drivers\nvstor.sys 2011-04-27 05:10 . 2011-03-11 05:44 1210240 ----a-w- c:\windows\system32\drivers\ntfs.sys 2011-04-27 05:10 . 2011-03-11 05:44 117120 ----a-w- c:\windows\system32\drivers\nvraid.sys 2011-04-27 05:10 . 2011-03-11 05:43 80256 ----a-w- c:\windows\system32\drivers\amdsata.sys 2011-04-27 05:10 . 2011-03-11 05:39 1686016 ----a-w- c:\windows\system32\esent.dll 2011-04-27 05:10 . 2011-03-11 05:43 332160 ----a-w- c:\windows\system32\drivers\iaStorV.sys 2011-04-27 05:10 . 2011-03-11 05:43 22400 ----a-w- c:\windows\system32\drivers\amdxata.sys 2011-04-27 05:10 . 2011-03-11 05:37 74240 ----a-w- c:\windows\system32\fsutil.exe 2011-04-27 05:10 . 2011-03-12 11:31 442880 ----a-w- c:\windows\system32\XpsPrint.dll 2011-04-27 05:10 . 2011-02-26 05:33 2614784 ----a-w- c:\windows\explorer.exe 2011-04-18 15:15 . 2011-04-18 17:02 -------- d-----w- c:\users\Alex\AppData\Roaming\DVDVideoSoft 2011-04-18 10:41 . 2011-04-18 12:23 -------- d-----w- C:\Referat 2011-04-17 09:36 . 2011-04-29 19:22 -------- d-----w- c:\users\Alex\AppData\Roaming\dvdcss 2011-04-15 21:01 . 2011-04-18 15:16 -------- d-----w- c:\program files\Common Files\DVDVideoSoft 2011-04-15 21:01 . 2011-04-18 15:15 -------- d-----w- c:\program files\DVDVideoSoft 2011-04-15 20:51 . 2011-04-15 20:51 -------- d-----w- c:\program files\eRightSoft 2011-04-14 11:24 . 2011-02-23 05:05 309760 ----a-w- c:\windows\system32\drivers\srv2.sys 2011-04-14 11:24 . 2011-02-23 05:06 311296 ----a-w- c:\windows\system32\drivers\srv.sys 2011-04-14 11:24 . 2011-02-23 05:05 113664 ----a-w- c:\windows\system32\drivers\srvnet.sys . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2011-04-28 15:00 . 2009-08-18 10:30 564632 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\wlidui.dll 2011-04-28 15:00 . 2009-08-18 10:24 18328 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll 2011-04-15 04:17 . 2011-02-04 20:07 2300696 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll 2011-04-15 04:17 . 2011-02-10 13:25 42776 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM-2\StartResources.dll 2011-04-11 04:11 . 2011-04-04 03:38 2300696 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\markup.dll 2011-04-11 04:11 . 2011-02-04 20:06 42776 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll 2011-04-11 04:11 . 2011-02-10 13:25 1220416 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll 2011-04-09 16:55 . 2011-04-09 16:55 15453336 ----a-w- c:\windows\system32\xlive.dll 2011-04-09 16:55 . 2011-04-09 16:55 13642904 ----a-w- c:\windows\system32\xlivefnt.dll 2011-04-08 04:43 . 2011-02-04 20:06 1220416 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll 2011-02-19 05:33 . 2011-03-09 15:36 802304 ----a-w- c:\windows\system32\FntCache.dll 2011-02-19 05:32 . 2011-03-09 15:36 1074176 ----a-w- c:\windows\system32\DWrite.dll 2011-02-19 05:32 . 2011-03-09 15:36 739840 ----a-w- c:\windows\system32\d2d1.dll 2011-02-18 15:36 . 2011-02-18 15:36 41984 ----a-w- c:\windows\system32\drivers\usbaapl.sys 2011-02-18 15:36 . 2011-02-18 15:36 4184352 ----a-w- c:\windows\system32\usbaaplrc.dll 2011-02-11 20:47 . 2011-02-11 20:47 2300696 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-5\markup.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Skype"="c:\program files\Skype\Phone\Skype.exe" [2011-01-26 15026056] "LightScribe Control Panel"="c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe" [2009-06-17 2363392] "EADM"="c:\program files\Electronic Arts\EADM\EADMUI.exe" [2011-03-03 11509760] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="RtHDVCpl.exe" [2007-07-06 4669440] "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-05-11 40048] "HP Health Check Scheduler"="c:\program files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe" [2007-05-24 71176] "HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2005-02-16 49152] "hpsysdrv"="c:\hp\support\hpsysdrv.exe" [2007-04-18 65536] "KBD"="c:\hp\KBD\KbdStub.EXE" [2006-12-08 65536] "OsdMaestro"="c:\program files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe" [2007-02-15 118784] "SunJavaUpdateReg"="c:\windows\system32\jureg.exe" [2007-04-07 54936] "AVP"="c:\program files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe" [2010-11-02 365336] "LogitechQuickCamRibbon"="c:\program files\Logitech\Logitech WebCam Software\LWS.exe" [2009-10-14 2793304] "LXCGCATS"="c:\windows\system32\spool\DRIVERS\W32X86\3\LXCGtime.dll" [2007-02-22 73728] "lxcgmon.exe"="c:\program files\Lexmark 2300 Series\lxcgmon.exe" [2007-04-29 205744] "EzPrint"="c:\program files\Lexmark 2300 Series\ezprint.exe" [2007-04-29 103344] "HPUsageTracking"="c:\program files\HP\HP UT\bin\hppusg.exe" [2009-05-11 24576] "BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 91520] "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-05-14 248552] "Nero MediaHome 4"="c:\program files\Nero\Nero MediaHome 4\NeroMediaHome.exe" [2010-03-08 5174568] "TkBellExe"="c:\program files\Real\RealPlayer\Update\realsched.exe" [2011-02-23 273544] "VirtualCloneDrive"="c:\program files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" [2006-04-29 94208] "CloneCDTray"="c:\program files\SlySoft\CloneCD\CloneCDTray.exe" [2006-09-28 57344] "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-11-29 421888] "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2011-03-07 421160] "Malwarebytes' Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2010-12-20 963976] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ Acrobat Assistant.lnk - c:\program files\Adobe\Acrobat 6.0\Distillr\acrotray.exe [2003-5-15 217193] Adobe Gamma Loader.exe.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2011-1-23 110592] Microsoft Office.lnk - c:\program files\Microsoft Office\Office10\OSA.EXE [2001-2-13 83360] WDDMStatus.lnk - c:\program files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe [2009-11-13 2057536] WDSmartWare.lnk - c:\program files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe [2009-11-13 9117504] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"=c:\progra~1\KASPER~1\KASPER~1\kloehk.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "aux2"=wdmaud.drv . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus] "DisableMonitoring"=dword:00000001 . R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2011-03-27 136176] R3 gupdatem;Google Update-Dienst (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2011-03-27 136176] R3 HCW85BDA;Hauppauge WinTV 885 Video Capture;c:\windows\system32\drivers\HCW85BDA.sys [2007-06-11 968064] R3 npggsvc;nProtect GameGuard Service;c:\windows\system32\GameMon.des [2010-06-07 3549224] R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000] R3 Ph3xIB32;Philips 713x Inbox PCI TV Card;c:\windows\system32\DRIVERS\Ph3xIB32.sys [2009-07-13 1311232] S1 kl2;kl2;c:\windows\system32\DRIVERS\kl2.sys [2010-06-09 11352] S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys [2010-04-22 22104] S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-13 48128] S2 Akamai;Akamai NetSession Interface;c:\windows\System32\svchost.exe [2009-07-14 20992] S2 HPBtnSrv;HP Chasis Button Service;c:\hp\HPEZBTN\HPBtnSrv.exe [2007-05-29 198240] S2 NAUpdate;Nero Update;c:\program files\Nero\Update\NASvc.exe [2010-05-04 503080] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-01-07 378984] S2 WDDMService;WD SmartWare Drive Manager;c:\program files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [2009-11-13 110592] S2 WDSmartWareBackgroundService;WD SmartWare Background Service;c:\program files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [2009-06-16 20480] S3 3xHybrid;CTX SAA713x PCI Card;c:\windows\system32\DRIVERS\3xHybrid.sys [2009-09-24 1006816] S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys [2009-11-02 19984] S3 netr73;USB-Drahtlos-802.11 b/g-Adaptertreiber für Vista;c:\windows\system32\DRIVERS\netr73.sys [2009-07-13 545792] S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam.sys [2009-02-13 11520] . . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] Akamai REG_MULTI_SZ Akamai . [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}] 2009-06-17 11:11 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe . Inhalt des "geplante Tasks" Ordners . 2011-05-10 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files\Google\Update\GoogleUpdate.exe [2011-03-27 08:48] . 2011-05-10 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files\Google\Update\GoogleUpdate.exe [2011-03-27 08:48] . . ------- Zusätzlicher Suchlauf ------- . uStart Page = hxxp://www.google.de/ mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=DE_DE&c=74&bd=Pavilion&pf=desktop uInternet Settings,ProxyOverride = *.local IE: add to &BOM - c:\\PROGRA~1\\BIET-O~1\\\\AddToBOM.hta IE: An OneNote s&enden - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105 IE: Free YouTube Download - c:\users\Alex\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm IE: Free YouTube to MP3 Converter - c:\users\Alex\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm IE: Nach Microsoft &Excel exportieren - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 IE: Nach Microsoft E&xcel exportieren - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000 IE: Nach Microsoft E&xel exportieren - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000 FF - ProfilePath - c:\users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\t7fkiur8.default\ FF - prefs.js: browser.search.selectedEngine - iload.to FF - prefs.js: browser.startup.homepage - hxxp://www.google.de/ FF - prefs.js: network.proxy.type - 0 FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF - Ext: Anti-Banner: KavAntiBanner@Kaspersky.ru - c:\program files\Mozilla Firefox\extensions\KavAntiBanner@Kaspersky.ru FF - Ext: Modul zur Link-Untersuchung: linkfilter@kaspersky.ru - c:\program files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru FF - Ext: Java Console: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} FF - Ext: DVDVideoSoft Menu: {ACAA314B-EEBA-48e4-AD47-84E31C44796C} - %profile%\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C} . . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\npggsvc] "ImagePath"="c:\windows\system32\GameMon.des -service" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\S-1-5-21-4146598908-1969735870-1766285717-1000\Software\SecuROM\License information*] "datasecu"=hex:b1,a3,0a,37,f4,69,89,17,f0,fe,c6,50,46,f3,d9,07,f7,10,16,d4,6b, 7c,63,61,55,60,45,40,95,b4,fc,20,8b,87,c2,5c,8e,ca,5b,11,52,5b,e3,81,dc,93,\ "rkeysecu"=hex:2f,0f,d5,3e,02,2b,06,63,b1,0b,dd,b6,71,e2,54,98 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Weitere laufende Prozesse ------------------------ . c:\windows\system32\nvvsvc.exe c:\program files\NVIDIA Corporation\Display\NvXDSync.exe c:\windows\system32\nvvsvc.exe c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe c:\program files\Bonjour\mDNSResponder.exe c:\program files\Common Files\LightScribe\LSSrvc.exe c:\windows\system32\lxcgcoms.exe c:\program files\Nero\Nero MediaHome 4\NMMediaServerService.exe c:\windows\system32\taskhost.exe c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE c:\windows\system32\spool\DRIVERS\W32X86\3\HP1006MC.EXE c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe c:\windows\system32\taskhost.exe c:\windows\system32\conhost.exe c:\windows\system32\WUDFHost.exe c:\windows\RtHDVCpl.exe c:\windows\system32\schtasks.exe c:\windows\system32\conhost.exe c:\program files\Windows Media Player\wmpnetwk.exe c:\program files\iPod\bin\iPodService.exe c:\program files\Hewlett-Packard\HP Health Check\hphc_service.exe . ************************************************************************** . Zeit der Fertigstellung: 2011-05-10 14:40:18 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2011-05-10 12:40 ComboFix2.txt 2011-05-10 11:44 . Vor Suchlauf: 19 Verzeichnis(se), 201.242.181.632 Bytes frei Nach Suchlauf: 20 Verzeichnis(se), 200.741.298.176 Bytes frei . - - End Of File - - DF390F949202FDE660D4A9021D21D94D |
10.05.2011, 14:09 | #21 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Ich glaub ich hab nen Virus! Ok. Bitte nun Logs mit GMER und OSAM erstellen und posten. GMER stürzt häufiger ab, wenn das Tool auch beim 2. Mal nicht will, lass es einfach weg und führ nur OSAM aus - die Online-Abfrage durch OSAM bitte überspringen. Bei OSAM bitte darauf auch achten, dass Du das Log auch als *.log und nicht *.html oder so abspeicherst. Downloade Dir danach bitte MBRCheck (by a_d_13) und speichere die Datei auf dem Desktop.
__________________ --> Ich glaub ich hab nen Virus! |
10.05.2011, 14:27 | #22 |
| Ich glaub ich hab nen Virus! GMER hat sich aufgehangen! Osam Log: Code:
ATTFilter Report of OSAM: Autorun Manager v5.0.11926.0 hxxp://www.online-solutions.ru/en/ Saved at 15:25:31 on 10.05.2011 OS: Windows 7 Home Premium Edition (Build 7600), 32-bit Default Browser: Mozilla Corporation Firefox 3.6.17 Scanner Settings [x] Rootkits detection (hidden registry) [x] Rootkits detection (hidden files) [x] Retrieve files information [x] Check Microsoft signatures Filters [ ] Trusted entries [ ] Empty entries [x] Hidden registry entries (rootkit activity) [x] Exclusively opened files [x] Not found files [x] Files without detailed information [x] Existing files [ ] Non-startable services [ ] Non-startable drivers [x] Active entries [x] Disabled entries [AppInit DLLs] -----( HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows )----- "AppInit_DLLs" - "Kaspersky Lab ZAO" - C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll [Common] -----( %SystemRoot%\Tasks )----- "GoogleUpdateTaskMachineCore.job" - "Google Inc." - C:\Program Files\Google\Update\GoogleUpdate.exe "GoogleUpdateTaskMachineUA.job" - "Google Inc." - C:\Program Files\Google\Update\GoogleUpdate.exe [Control Panel Objects] -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls )----- "mlcfg32.cpl" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office14\MLCFG32.CPL "Nero BurnRights 10" - "Nero AG" - C:\Program Files\Nero\Nero 10\Nero BurnRights\NeroBurnRights_10.cpl "QuickTime" - "Apple Inc." - C:\Program Files\QuickTime\QTSystem\QuickTime.cpl [Drivers] -----( HKLM\SYSTEM\CurrentControlSet\Services )----- "AnyDVD" (AnyDVD) - "SlySoft, Inc." - C:\Windows\System32\Drivers\AnyDVD.sys "catchme" (catchme) - ? - C:\Users\Alex\AppData\Local\Temp\catchme.sys (File not found) "ElbyCDFL" (ElbyCDFL) - "SlySoft, Inc." - C:\Windows\System32\Drivers\ElbyCDFL.sys "ElbyCDIO Driver" (ElbyCDIO) - "Elaborate Bytes AG" - C:\Windows\System32\Drivers\ElbyCDIO.sys "Hamachi Network Interface" (hamachi) - "LogMeIn, Inc." - C:\Windows\System32\DRIVERS\hamachi.sys "PxHelp20" (PxHelp20) - "Sonic Solutions" - C:\Windows\System32\Drivers\PxHelp20.sys "StarForce Protection Environment Driver (version 1.x)" (sfdrv01) - "Protection Technology" - C:\Windows\System32\drivers\sfdrv01.sys "StarForce Protection Helper Driver (version 2.x)" (sfhlp02) - "Protection Technology" - C:\Windows\System32\drivers\sfhlp02.sys "StarForce Protection Synchronization Driver (version 2.x)" (sfsync02) - "Protection Technology" - C:\Windows\System32\drivers\sfsync02.sys "StarForce Protection VFS Driver (version 2.x)" (sfvfs02) - "Protection Technology" - C:\Windows\System32\drivers\sfvfs02.sys "VClone" (VClone) - "Elaborate Bytes AG" - C:\Windows\System32\DRIVERS\VClone.sys [Explorer] -----( HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components )----- {10880D85-AAD9-4558-ABDC-2AB1552D831F} "LightScribe Control Panel" - "Hewlett-Packard Company" - "C:\Program Files\Common Files\LightScribe\LSRunOnce.exe" {44BBA840-CC51-11CF-AAFA-00AA00B6015C} "Microsoft Windows" - "Microsoft Corporation" - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE -----( HKLM\Software\Classes\Folder\shellex\ColumnHandlers )----- {F9DB5320-233E-11D1-9F84-707F02C10627} "{F9DB5320-233E-11D1-9F84-707F02C10627}" - ? - (File not found | COM-object registry key not found) -----( HKLM\Software\Classes\Protocols\Filter )----- {807553E5-5146-11D5-A672-00B0D022E945} "text/xml" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL -----( HKLM\Software\Classes\Protocols\Handler )----- {32505114-5902-49B2-880A-1F7738E5A384} "Data Page Plugable Protocal mso-offdap11 Handler" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\WEBCOM~1\11\OWC11.DLL {3D9F03FA-7A94-11D3-BE81-0050048385D1} "Data Page Pluggable Protocol mso-offdap Handler" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL {314111c7-a502-11d2-bbca-00c04f8ec294} "HxProtocol Class" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} "IEProtocolHandler Class" - "Skype Technologies" - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL {0A9007C0-4076-11D3-8789-0000F8105754} "Microsoft Infotech Storage Protocol for IE 4.0" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll {CD00020A-8B95-11D1-82DB-00C04FB1625D} "Microsoft PKM KnowledgePluggable Class" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL {91774881-D725-4E58-B298-07617B9B86A8} "Skype IE add-on Pluggable Protocol" - "Skype Technologies S.A." - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )----- {911051fa-c21c-4246-b470-070cd8df6dc4} ".cab or .zip files" - ? - (File not found | COM-object registry key not found) {D25B2CAB-8A9A-4517-A9B2-CB5F68A5A802} "Acrobat Elements Context Menu" - "Adobe Systems Inc." - C:\Program Files\Adobe\Acrobat 6.0\Acrobat Elements\ContextMenu.dll {1b24a030-9b20-49bc-97ac-1be4426f9e59} "ActiveDirectory Folder" - ? - (File not found | COM-object registry key not found) {34449847-FD14-4fc8-A75A-7432F5181EFB} "ActiveDirectory Folder" - ? - (File not found | COM-object registry key not found) {D66DC78C-4F61-447F-942B-3FB6980118CF} "CInfoTipShellExt Class" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\VISSHE.DLL {0F8604A5-4ECE-4DE1-BA7D-CF10F8AA4F48} "Contacts folder" - ? - (File not found | COM-object registry key not found) {A70C977A-BF00-412C-90B7-034C51DA2439} "DesktopContext Class" - "NVIDIA Corporation" - C:\Program Files\NVIDIA Corporation\Display\nvui.dll {2C2577C2-63A7-40e3-9B7F-586602617ECB} "Explorer Query Band" - ? - (File not found | COM-object registry key not found) {506F4668-F13E-4AA1-BB04-B43203AB3CC0} "ImageExtractorShellExt Class" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\VISSHE.DLL {B9E1D2CB-CCFF-4AA6-9579-D7A4754030EF} "iTunes" - "Apple Inc." - C:\Program Files\iTunes\iTunesMiniPlayer.dll {42042206-2D85-11D3-8CFF-005004838597} "Microsoft Office HTML Icon Handler" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\msohevi.dll {993BE281-6695-4BA5-8A2A-7AACBFAAB69E} "Microsoft Office Metadata Handler" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\msoshext.dll {C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97} "Microsoft Office Thumbnail Handler" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\msoshext.dll {00020D75-0000-0000-C000-000000000046} "Microsoft Outlook" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office14\MLSHEXT.DLL {F764812A-132C-4013-9960-5CBBEB408A0E} "NeroShellExt Class" - "Nero AG" - C:\Program Files\Common Files\Nero\NeroShellExt\NeroShellExt.dll {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} "NVIDIA CPL Context Menu Extension" - "NVIDIA Corporation" - C:\Windows\system32\nvshext.dll {0006F045-0000-0000-C000-000000000046} "Outlook File Icon Extension" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\OLKFSTUB.DLL {F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4} "RealOne Player Context Menu Class" - "RealNetworks, Inc." - C:\Program Files\Real\RealPlayer\rpshell.dll {C8494E42-ACDD-4739-B0FB-217361E4894F} "Sam Account Folder" - ? - (File not found | COM-object registry key not found) {E29F9716-5C08-4FCD-955A-119FDB5A522D} "Sam Account Folder" - ? - (File not found | COM-object registry key not found) {7F67036B-66F1-411A-AD85-759FB9C5B0DB} "ShellViewRTF" - "XSS" - C:\Windows\System32\ShellvRTF.dll {B7056B8E-4F99-44f8-8CBD-282390FE5428} "VirtualCloneDrive Shell Extension" - "Elaborate Bytes AG" - C:\Program Files\Elaborate Bytes\VirtualCloneDrive\ElbyVCDShell.dll {BDEADF00-C265-11D0-BCED-00A0C90AB50F} "Webordner" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL {da67b8ad-e81b-4c70-9b91b417b5e33527} "Windows Search Shell Service" - ? - (File not found | COM-object registry key not found) {B41DB860-8EE4-11D2-9906-E49FADC173CA} "WinRAR" - "Alexander Roshal" - C:\Program Files\WinRAR\rarext.dll [Internet Explorer] -----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )----- {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} "Java Plug-in 1.6.0_01" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab {8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 1.6.0_22" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} "Java Plug-in 1.6.0_22" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} "Java Plug-in 1.6.0_22" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\npjpi160_22.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab -----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions )----- {4248FE82-7FCB-46AC-B270-339F08212110} "&Virtuelle Tastatur" - "Kaspersky Lab ZAO" - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll {CCF151D8-D089-449F-A5A4-D9909053F20F} "Li&nks untersuchen" - "Kaspersky Lab ZAO" - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll {FF059E31-CC5A-4E2E-BF3B-96E929D65503} "Recherchieren" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL {898EA8C8-E7FF-479B-8935-AEC46303B9E5} "Skype Plug-In" - "Skype Technologies S.A." - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )----- {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} "AcroIEHlprObj Class" - "Adobe Systems Incorporated" - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll {E33CF602-D945-461A-83F0-819F76A199F8} "FilterBHO Class" - "Kaspersky Lab ZAO" - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} "IEVkbdBHO Class" - "Kaspersky Lab ZAO" - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\ievkbd.dll {DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\jp2ssv.dll {B4F3A835-0E21-4959-BA22-42B3008E02FF} "Office Document Cache Handler" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} "Skype Plug-In" - "Skype Technologies S.A." - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll {9030D464-4C02-4ABF-8ECC-5164760863C6} "Windows Live ID Sign-in Helper" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [LSA Providers] -----( HKLM\SYSTEM\CurrentControlSet\Control\Lsa )----- "Security Packages" - "Microsoft Corporation" - C:\Windows\system32\livessp.dll [Logon] -----( %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup )----- "desktop.ini" - ? - C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini -----( %AllUsersProfile%\Microsoft\Windows\Start Menu\Programs\Startup )----- "Acrobat Assistant.lnk" - "Adobe Systems Inc." - C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe (Shortcut exists | File exists) "Adobe Gamma Loader.exe.lnk" - "Adobe Systems, Inc." - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Shortcut exists | File exists) "desktop.ini" - ? - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini "Microsoft Office.lnk" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office10\OSA.EXE (Shortcut exists | File exists) "WDDMStatus.lnk" - "WDC" - C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (Shortcut exists | File exists) "WDSmartWare.lnk" - "Western Digital" - C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Shortcut exists | File exists) -----( HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run )----- "EADM" - "Electronic Arts" - "C:\Program Files\Electronic Arts\EADM\EADMUI.exe" "LightScribe Control Panel" - "Hewlett-Packard Company" - C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden "Skype" - "Skype Technologies S.A." - "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized -----( HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd )----- "StartupPrograms" - ? - rdpclip (File not found) -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )----- "Adobe Reader Speed Launcher" - "Adobe Systems Incorporated" - "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" "AVP" - "Kaspersky Lab ZAO" - "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe" "BCSSync" - "Microsoft Corporation" - "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices "CloneCDTray" - "SlySoft, Inc." - "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s "EzPrint" - "Lexmark International Inc." - "C:\Program Files\Lexmark 2300 Series\ezprint.exe" "HP Health Check Scheduler" - "Hewlett-Packard" - c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe "HP Software Update" - "Hewlett-Packard Co." - c:\Program Files\HP\HP Software Update\HPWuSchd2.exe "hpsysdrv" - "Hewlett-Packard Company" - c:\hp\support\hpsysdrv.exe "HPUsageTracking" - "Hewlett-Packard Company" - C:\Program Files\HP\HP UT\bin\hppusg.exe "C:\Program Files\HP\HP UT\" "iTunesHelper" - "Apple Inc." - "C:\Program Files\iTunes\iTunesHelper.exe" "KBD" - ? - C:\HP\KBD\KbdStub.EXE (File found, but it contains no detailed information) "LogitechQuickCamRibbon" - "Logitech Inc." - "C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe" /hide "lxcgmon.exe" - "Lexmark International, Inc." - "C:\Program Files\Lexmark 2300 Series\lxcgmon.exe" "Malwarebytes' Anti-Malware (reboot)" - "Malwarebytes Corporation" - "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript "Nero MediaHome 4" - "Nero AG" - "C:\Program Files\Nero\Nero MediaHome 4\NeroMediaHome.exe" /AUTORUN "OsdMaestro" - "OsdMaestro" - "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe" "QuickTime Task" - "Apple Inc." - "C:\Program Files\QuickTime\QTTask.exe" -atboottime "SunJavaUpdateReg" - "Sun Microsystems, Inc." - "C:\Windows\system32\jureg.exe" "SunJavaUpdateSched" - "Sun Microsystems, Inc." - "C:\Program Files\Common Files\Java\Java Update\jusched.exe" "TkBellExe" - "RealNetworks, Inc." - "C:\Program Files\Real\RealPlayer\Update\realsched.exe" -osboot "VirtualCloneDrive" - "Elaborate Bytes AG" - "C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s [Print Monitors] -----( HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors )----- "Adobe PDF Port" - "Adobe Systems Incorporated." - C:\Windows\system32\AdobePDF.dll "Microsoft Document Imaging Writer Monitor" - "Microsoft Corporation" - C:\Windows\system32\mdimon.dll [Services] -----( HKLM\SYSTEM\CurrentControlSet\Services )----- "@C:\Program Files\Nero\Update\NASvc.exe,-200" (NAUpdate) - "Nero AG" - C:\Program Files\Nero\Update\NASvc.exe "Akamai NetSession Interface" (Akamai) - ? - c:\program files\common files\akamai\netsession_win_3f211bc.dll (File found, but it contains no detailed information) "Apple Mobile Device" (Apple Mobile Device) - "Apple Inc." - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe "ASP.NET-Zustandsdienst" (aspnet_state) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe "Dienst "Bonjour"" (Bonjour Service) - "Apple Inc." - C:\Program Files\Bonjour\mDNSResponder.exe "Google Update Service (gupdate)" (gupdate) - "Google Inc." - C:\Program Files\Google\Update\GoogleUpdate.exe "Google Update-Dienst (gupdatem)" (gupdatem) - "Google Inc." - C:\Program Files\Google\Update\GoogleUpdate.exe "HP Chasis Button Service" (HPBtnSrv) - ? - c:\hp\HPEZBTN\HPBtnSrv.exe (File found, but it contains no detailed information) "HP Health Check Service" (HP Health Check Service) - "Hewlett-Packard" - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe "InstallDriver Table Manager" (IDriverT) - "Macrovision Corporation" - c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe "iPod-Dienst" (iPod Service) - "Apple Inc." - C:\Program Files\iPod\bin\iPodService.exe "Kaspersky Anti-Virus Service" (AVP) - "Kaspersky Lab ZAO" - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe "LightScribeService Direct Disc Labeling Service" (LightScribeService) - "Hewlett-Packard Company" - C:\Program Files\Common Files\LightScribe\LSSrvc.exe "Microsoft .NET Framework NGEN v4.0.30319_X86" (clr_optimization_v4.0.30319_32) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe "Microsoft Office Diagnostics Service" (odserv) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE "Nero MediaHome 4 Service" (NeroMediaHomeService.4) - "Nero AG" - C:\Program Files\Nero\Nero MediaHome 4\NMMediaServerService.exe "nProtect GameGuard Service" (npggsvc) - "INCA Internet Co., Ltd." - C:\Windows\system32\GameMon.des "NVIDIA Driver Helper Service" (NVSvc) - "NVIDIA Corporation" - C:\Windows\system32\nvvsvc.exe "NVIDIA Stereoscopic 3D Driver Service" (Stereo Service) - "NVIDIA Corporation" - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe "Office Source Engine" (ose) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE "Office Software Protection Platform" (osppsvc) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE "Process Monitor" (LVPrcSrv) - "Logitech Inc." - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe "RoxMediaDB9" (RoxMediaDB9) - "Sonic Solutions" - c:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe "stllssvr" (stllssvr) - "MicroVision Development, Inc." - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe "WD SmartWare Background Service" (WDSmartWareBackgroundService) - "Memeo" - C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe "WD SmartWare Drive Manager" (WDDMService) - "WDC" - C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe "Windows Live ID Sign-in Assistant" (wlidsvc) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [Winlogon] -----( HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify )----- "klogon" - "Kaspersky Lab ZAO" - C:\Windows\system32\klogon.dll [Winsock Providers] -----( HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries )----- "mdnsNSP" - "Apple Inc." - C:\Program Files\Bonjour\mdnsNSP.dll "WindowsLive Local NSP" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL "WindowsLive NSP" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL ===[ Logfile end ]=========================================[ Logfile end ]=== If You have questions or want to get some help, You can visit hxxp://forum.online-solutions.ru ----------------------------------------------------------------- MBR-Check-Log: Code:
ATTFilter MBRCheck, version 1.2.3 (c) 2010, AD Command-line: Windows Version: Windows 7 Home Premium Edition Windows Information: (build 7600), 32-bit Base Board Manufacturer: ASUSTek Computer INC. BIOS Manufacturer: Phoenix Technologies, LTD System Manufacturer: HP-Pavilion System Product Name: GU557AA-ABD m9070.de Logical Drives Mask: 0x00003ffc Kernel Drivers (total 216): 0x82E42000 \SystemRoot\system32\ntkrnlpa.exe 0x82E0B000 \SystemRoot\system32\halmacpi.dll 0x80B98000 \SystemRoot\system32\kdcom.dll 0x83831000 \SystemRoot\system32\mcupdate_AuthenticAMD.dll 0x8383C000 \SystemRoot\system32\PSHED.dll 0x8384D000 \SystemRoot\system32\BOOTVID.dll 0x83855000 \SystemRoot\system32\CLFS.SYS 0x83897000 \SystemRoot\system32\CI.dll 0x83942000 \SystemRoot\system32\drivers\Wdf01000.sys 0x839B3000 \SystemRoot\system32\drivers\WDFLDR.SYS 0x83A16000 \SystemRoot\system32\DRIVERS\ACPI.sys 0x83A5E000 \SystemRoot\system32\DRIVERS\WMILIB.SYS 0x83A67000 \SystemRoot\system32\DRIVERS\msisadrv.sys 0x83A6F000 \SystemRoot\system32\DRIVERS\pci.sys 0x83A99000 \SystemRoot\system32\DRIVERS\vdrvroot.sys 0x83AA4000 \SystemRoot\System32\drivers\partmgr.sys 0x83AB5000 \SystemRoot\system32\DRIVERS\volmgr.sys 0x83AC5000 \SystemRoot\System32\drivers\volmgrx.sys 0x83B10000 \SystemRoot\system32\DRIVERS\pciide.sys 0x83B17000 \SystemRoot\system32\DRIVERS\PCIIDEX.SYS 0x83B25000 \SystemRoot\System32\drivers\mountmgr.sys 0x83B44000 \SystemRoot\system32\DRIVERS\atapi.sys 0x83B4D000 \SystemRoot\system32\DRIVERS\ataport.SYS 0x83B70000 \SystemRoot\system32\drivers\nvstor.sys 0x83B95000 \SystemRoot\system32\drivers\storport.sys 0x83BDC000 \SystemRoot\system32\DRIVERS\nvstor32.sys 0x83A00000 \SystemRoot\system32\drivers\amdxata.sys 0x839C1000 \SystemRoot\system32\drivers\fltmgr.sys 0x83800000 \SystemRoot\system32\drivers\fileinfo.sys 0x83A09000 \SystemRoot\System32\Drivers\PxHelp20.sys 0x8B804000 \SystemRoot\System32\Drivers\Ntfs.sys 0x8B933000 \SystemRoot\System32\Drivers\msrpc.sys 0x8B95E000 \SystemRoot\System32\Drivers\ksecdd.sys 0x8B971000 \SystemRoot\System32\Drivers\cng.sys 0x8B9CE000 \SystemRoot\System32\drivers\pcw.sys 0x8B9DC000 \SystemRoot\System32\Drivers\Fs_Rec.sys 0x8BA0D000 \SystemRoot\system32\drivers\ndis.sys 0x8BAC4000 \SystemRoot\system32\drivers\NETIO.SYS 0x8BB02000 \SystemRoot\System32\Drivers\ksecpkg.sys 0x8BC0E000 \SystemRoot\System32\drivers\tcpip.sys 0x8BD57000 \SystemRoot\System32\drivers\fwpkclnt.sys 0x8BD88000 \SystemRoot\system32\DRIVERS\volsnap.sys 0x8BDC7000 \SystemRoot\System32\Drivers\spldr.sys 0x8BDE3000 \SystemRoot\System32\drivers\sfhlp02.sys 0x8BB27000 \SystemRoot\System32\drivers\rdyboost.sys 0x8BB54000 \SystemRoot\System32\Drivers\mup.sys 0x8BE1C000 \SystemRoot\system32\DRIVERS\kl1.sys 0x8C33E000 \SystemRoot\System32\drivers\hwpolicy.sys 0x8C346000 \SystemRoot\System32\DRIVERS\fvevol.sys 0x8C378000 \SystemRoot\system32\DRIVERS\disk.sys 0x8C389000 \SystemRoot\system32\DRIVERS\CLASSPNP.SYS 0x8C3F3000 \SystemRoot\system32\DRIVERS\VClone.sys 0x8BB64000 \SystemRoot\system32\DRIVERS\SCSIPORT.SYS 0x8BB8A000 \SystemRoot\system32\DRIVERS\cdrom.sys 0x91837000 \SystemRoot\system32\DRIVERS\klif.sys 0x918BA000 \SystemRoot\System32\Drivers\Null.SYS 0x918C1000 \SystemRoot\System32\Drivers\Beep.SYS 0x918C8000 \SystemRoot\System32\drivers\vga.sys 0x918D4000 \SystemRoot\System32\drivers\VIDEOPRT.SYS 0x918F5000 \SystemRoot\System32\drivers\watchdog.sys 0x91902000 \SystemRoot\System32\DRIVERS\RDPCDD.sys 0x9190A000 \SystemRoot\system32\drivers\rdpencdd.sys 0x91912000 \SystemRoot\system32\drivers\rdprefmp.sys 0x9191A000 \SystemRoot\System32\Drivers\Msfs.SYS 0x91925000 \SystemRoot\System32\Drivers\Npfs.SYS 0x91933000 \SystemRoot\system32\DRIVERS\tdx.sys 0x9194A000 \SystemRoot\system32\DRIVERS\TDI.SYS 0x91955000 \SystemRoot\system32\DRIVERS\kl2.sys 0x9195B000 \SystemRoot\system32\drivers\afd.sys 0x919B5000 \SystemRoot\System32\DRIVERS\netbt.sys 0x919E7000 \SystemRoot\system32\DRIVERS\wfplwf.sys 0x91800000 \SystemRoot\system32\DRIVERS\pacer.sys 0x9181F000 \SystemRoot\system32\DRIVERS\klim6.sys 0x919EE000 \SystemRoot\system32\DRIVERS\vwififlt.sys 0x91827000 \SystemRoot\system32\DRIVERS\netbios.sys 0x8BE00000 \SystemRoot\system32\DRIVERS\wanarp.sys 0x8BDCF000 \SystemRoot\system32\DRIVERS\termdd.sys 0x8BBA9000 \SystemRoot\system32\DRIVERS\rdbss.sys 0x8BDEB000 \SystemRoot\system32\drivers\nsiproxy.sys 0x8BDF5000 \SystemRoot\system32\DRIVERS\mssmbios.sys 0x8BC00000 \SystemRoot\System32\Drivers\ElbyCDIO.sys 0x8BBEA000 \SystemRoot\System32\drivers\discache.sys 0x8B9E5000 \SystemRoot\System32\Drivers\dfsc.sys 0x83811000 \SystemRoot\system32\DRIVERS\blbdrive.sys 0x92438000 \SystemRoot\system32\DRIVERS\tunnel.sys 0x92459000 \SystemRoot\system32\DRIVERS\amdk8.sys 0x9246B000 \SystemRoot\system32\DRIVERS\i8042prt.sys 0x92483000 \SystemRoot\system32\DRIVERS\PS2.sys 0x92488000 \SystemRoot\system32\DRIVERS\kbdclass.sys 0x92495000 \SystemRoot\system32\DRIVERS\usbohci.sys 0x9249F000 \SystemRoot\system32\DRIVERS\USBPORT.SYS 0x924EA000 \SystemRoot\system32\DRIVERS\usbehci.sys 0x924F9000 \SystemRoot\system32\DRIVERS\1394ohci.sys 0x92C2E000 \SystemRoot\system32\DRIVERS\3xHybrid.sys 0x92D23000 \SystemRoot\system32\DRIVERS\ks.sys 0x92D57000 \SystemRoot\system32\DRIVERS\BdaSup.SYS 0x92D5A000 \SystemRoot\system32\DRIVERS\HDAudBus.sys 0x92D79000 \SystemRoot\System32\Drivers\ElbyCDFL.sys 0x92D80000 \SystemRoot\System32\Drivers\AnyDVD.sys 0x92D99000 \SystemRoot\system32\DRIVERS\GEARAspiWDM.sys 0x92D9F000 \SystemRoot\system32\DRIVERS\nvmf6232.sys 0x94C00000 \SystemRoot\system32\DRIVERS\nvlddmkm.sys 0x955FA000 \SystemRoot\System32\Drivers\nvBridge.kmd 0x92530000 \SystemRoot\System32\drivers\dxgkrnl.sys 0x94422000 \SystemRoot\System32\drivers\dxgmms1.sys 0x9445B000 \SystemRoot\system32\DRIVERS\CompositeBus.sys 0x94468000 \SystemRoot\system32\DRIVERS\AgileVpn.sys 0x9447A000 \SystemRoot\system32\DRIVERS\rasl2tp.sys 0x94492000 \SystemRoot\system32\DRIVERS\ndistapi.sys 0x9449D000 \SystemRoot\system32\DRIVERS\ndiswan.sys 0x944BF000 \SystemRoot\system32\DRIVERS\raspppoe.sys 0x944D7000 \SystemRoot\system32\DRIVERS\raspptp.sys 0x944EE000 \SystemRoot\system32\DRIVERS\rassstp.sys 0x94505000 \SystemRoot\System32\Drivers\pcouffin.sys 0x94511000 \SystemRoot\system32\DRIVERS\mouclass.sys 0x9451E000 \SystemRoot\system32\DRIVERS\swenum.sys 0x94520000 \SystemRoot\system32\DRIVERS\circlass.sys 0x9452E000 \SystemRoot\system32\DRIVERS\umbus.sys 0x9453C000 \SystemRoot\system32\DRIVERS\usbhub.sys 0x94580000 \SystemRoot\System32\Drivers\NDProxy.SYS 0x82629000 \SystemRoot\system32\drivers\RTKVHDA.sys 0x828C6000 \SystemRoot\system32\drivers\portcls.sys 0x828F5000 \SystemRoot\system32\drivers\drmk.sys 0x9B750000 \SystemRoot\System32\win32k.sys 0x8290E000 \SystemRoot\System32\drivers\Dxapi.sys 0x82918000 \SystemRoot\System32\Drivers\crashdmp.sys 0x82925000 \SystemRoot\System32\Drivers\dump_diskdump.sys 0x8292F000 \SystemRoot\System32\Drivers\dump_nvstor32.sys 0x8294C000 \SystemRoot\System32\Drivers\dump_dumpfve.sys 0x8295D000 \SystemRoot\system32\DRIVERS\monitor.sys 0x9B9B0000 \SystemRoot\System32\TSDDD.dll 0x82968000 \SystemRoot\system32\drivers\USBSTOR.SYS 0x8297F000 \SystemRoot\system32\drivers\USBD.SYS 0x9B9E0000 \SystemRoot\System32\cdd.dll 0x82981000 \SystemRoot\system32\DRIVERS\usbccgp.sys 0x82998000 \SystemRoot\system32\drivers\LVUSBSta.sys 0x9DC0D000 \SystemRoot\system32\DRIVERS\LV302V32.SYS 0x9DE7F000 \SystemRoot\system32\DRIVERS\lv302af.sys 0x9DE81000 \SystemRoot\system32\drivers\usbaudio.sys 0x9DE95000 \SystemRoot\system32\DRIVERS\lvrs.sys 0x9DF2D000 \SystemRoot\system32\drivers\luafv.sys 0x9DF48000 \SystemRoot\system32\drivers\WudfPf.sys 0x9DF62000 \SystemRoot\system32\DRIVERS\netr73.sys 0x9DFF0000 \SystemRoot\system32\DRIVERS\lltdio.sys 0x9DC00000 \SystemRoot\system32\DRIVERS\vwifibus.sys 0x829A1000 \SystemRoot\system32\DRIVERS\nwifi.sys 0x829E7000 \SystemRoot\system32\DRIVERS\ndisuio.sys 0x82600000 \SystemRoot\system32\DRIVERS\rspndr.sys 0x9DC0A000 \SystemRoot\system32\DRIVERS\wdcsam.sys 0x9FE2C000 \SystemRoot\system32\drivers\HTTP.sys 0x9FEB1000 \SystemRoot\system32\DRIVERS\usbcir.sys 0x9FECC000 \SystemRoot\system32\DRIVERS\usbscan.sys 0x9FEDA000 \SystemRoot\system32\DRIVERS\usbprint.sys 0x9FEE5000 \SystemRoot\system32\DRIVERS\hidusb.sys 0x9FEF0000 \SystemRoot\system32\DRIVERS\HIDCLASS.SYS 0x9FF03000 \SystemRoot\system32\DRIVERS\HIDPARSE.SYS 0x9FF0A000 \SystemRoot\system32\DRIVERS\kbdhid.sys 0x9FF16000 \SystemRoot\system32\DRIVERS\mouhid.sys 0x9FF21000 \SystemRoot\system32\DRIVERS\klmouflt.sys 0x9FF2A000 \SystemRoot\system32\DRIVERS\hidir.sys 0x9FF39000 \SystemRoot\system32\DRIVERS\bowser.sys 0x9FF52000 \SystemRoot\System32\drivers\mpsdrv.sys 0x9FF64000 \SystemRoot\system32\DRIVERS\mrxsmb.sys 0x9FF87000 \SystemRoot\system32\DRIVERS\mrxsmb10.sys 0x9FFC2000 \SystemRoot\system32\DRIVERS\mrxsmb20.sys 0x9FE00000 \SystemRoot\System32\Drivers\usbaapl.sys 0xA9819000 \SystemRoot\system32\drivers\peauth.sys 0xA98B0000 \SystemRoot\System32\Drivers\secdrv.SYS 0xA98BA000 \SystemRoot\System32\DRIVERS\srvnet.sys 0xA98DB000 \SystemRoot\System32\drivers\tcpipreg.sys 0xA98E8000 \SystemRoot\System32\DRIVERS\srv2.sys 0xA9937000 \SystemRoot\System32\DRIVERS\srv.sys 0xA9989000 \SystemRoot\system32\DRIVERS\LVPr2Mon.sys 0x9B600000 \SystemRoot\System32\ATMFD.DLL 0xA998E000 \SystemRoot\system32\DRIVERS\WUDFRd.sys 0x94591000 \SystemRoot\system32\drivers\spsys.sys 0xA99AF000 \SystemRoot\system32\DRIVERS\asyncmac.sys 0x77100000 \Windows\System32\ntdll.dll 0x481F0000 \Windows\System32\smss.exe 0x77340000 \Windows\System32\apisetschema.dll 0x00DD0000 \Windows\System32\autochk.exe 0x77260000 \Windows\System32\msctf.dll 0x770B0000 \Windows\System32\Wldap32.dll 0x76FE0000 \Windows\System32\user32.dll 0x76F80000 \Windows\System32\difxapi.dll 0x76F00000 \Windows\System32\comdlg32.dll 0x76E20000 \Windows\System32\kernel32.dll 0x76DF0000 \Windows\System32\imagehlp.dll 0x76D60000 \Windows\System32\oleaut32.dll 0x77250000 \Windows\System32\nsi.dll 0x77240000 \Windows\System32\psapi.dll 0x76CB0000 \Windows\System32\msvcrt.dll 0x76B50000 \Windows\System32\ole32.dll 0x76B30000 \Windows\System32\sechost.dll 0x76AF0000 \Windows\System32\ws2_32.dll 0x769B0000 \Windows\System32\urlmon.dll 0x75D60000 \Windows\System32\shell32.dll 0x75D40000 \Windows\System32\imm32.dll 0x75CE0000 \Windows\System32\shlwapi.dll 0x75C40000 \Windows\System32\advapi32.dll 0x75BB0000 \Windows\System32\clbcatq.dll 0x75AB0000 \Windows\System32\wininet.dll 0x75910000 \Windows\System32\setupapi.dll 0x75870000 \Windows\System32\usp10.dll 0x75820000 \Windows\System32\gdi32.dll 0x75770000 \Windows\System32\rpcrt4.dll 0x75760000 \Windows\System32\normaliz.dll 0x75560000 \Windows\System32\iertutil.dll 0x75550000 \Windows\System32\lpk.dll 0x75500000 \Windows\System32\KernelBase.dll 0x753E0000 \Windows\System32\crypt32.dll 0x75350000 \Windows\System32\comctl32.dll 0x75320000 \Windows\System32\cfgmgr32.dll 0x75300000 \Windows\System32\devobj.dll 0x752D0000 \Windows\System32\wintrust.dll 0x752C0000 \Windows\System32\msasn1.dll Processes (total 87): 0 System Idle Process 4 System 320 C:\Windows\System32\smss.exe 484 csrss.exe 544 C:\Windows\System32\wininit.exe 552 csrss.exe 604 C:\Windows\System32\services.exe 628 C:\Windows\System32\winlogon.exe 668 C:\Windows\System32\lsass.exe 676 C:\Windows\System32\lsm.exe 796 C:\Windows\System32\svchost.exe 860 C:\Windows\System32\nvvsvc.exe 900 C:\Windows\System32\svchost.exe 960 C:\Windows\System32\svchost.exe 1044 C:\Windows\System32\svchost.exe 1072 C:\Windows\System32\svchost.exe 1188 C:\Windows\System32\audiodg.exe 1232 C:\Windows\System32\svchost.exe 1332 C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe 1344 C:\Windows\System32\nvvsvc.exe 1432 C:\Windows\System32\svchost.exe 1644 C:\Windows\System32\spoolsv.exe 1680 C:\Windows\System32\svchost.exe 1804 C:\Windows\System32\svchost.exe 1824 C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 1892 C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe 1976 C:\Program Files\Bonjour\mDNSResponder.exe 2024 C:\hp\HPEZBTN\HPBtnSrv.exe 356 C:\Program Files\Common Files\LightScribe\LSSrvc.exe 492 C:\Program Files\Common Files\logishrd\LVMVFM\LVPrcSrv.exe 556 C:\Windows\System32\lxcgcoms.exe 1780 C:\Program Files\Nero\Nero MediaHome 4\NMMediaServerService.exe 1732 C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe 2052 C:\Windows\System32\svchost.exe 2096 C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe 2124 C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe 2212 C:\Windows\System32\taskhost.exe 2320 C:\Windows\explorer.exe 2388 C:\Windows\System32\dwm.exe 2456 C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE 2660 HP1006MC.EXE 3052 C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE 3392 C:\Windows\System32\SearchIndexer.exe 3584 C:\Windows\System32\svchost.exe 3676 C:\Windows\System32\taskhost.exe 3824 C:\Windows\System32\svchost.exe 2468 C:\Windows\RtHDVCpl.exe 3000 C:\Program Files\HP\HP Software Update\hpwuSchd2.exe 3100 C:\hp\support\hpsysdrv.exe 2916 C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe 2300 C:\Windows\System32\schtasks.exe 2104 C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe 1560 C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe 1040 C:\Windows\System32\conhost.exe 1092 C:\Program Files\Lexmark 2300 Series\lxcgmon.exe 3988 C:\Program Files\Lexmark 2300 Series\ezprint.exe 4220 C:\Program Files\HP\HP UT\bin\hppusg.exe 4304 C:\Program Files\Common Files\Java\Java Update\jusched.exe 4436 C:\Program Files\Real\RealPlayer\Update\realsched.exe 4536 C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe 4724 C:\Program Files\iTunes\iTunesHelper.exe 4824 C:\Program Files\Skype\Phone\Skype.exe 4860 C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe 4956 C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe 5052 C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe 5064 C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe 5576 C:\Program Files\iPod\bin\iPodService.exe 4488 C:\Program Files\Windows Media Player\wmpnetwk.exe 5536 WUDFHost.exe 6040 C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtblfs.exe 5264 C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Service.exe 5704 C:\Program Files\Nero\Update\NASvc.exe 5000 C:\Windows\System32\sppsvc.exe 1256 C:\Windows\System32\svchost.exe 1952 C:\hp\KBD\kbd.exe 6056 C:\Windows\System32\wuauclt.exe 5336 WmiPrvSE.exe 4992 C:\Program Files\Mozilla Firefox\plugin-container.exe 2616 C:\Windows\System32\SearchProtocolHost.exe 5984 C:\Windows\System32\SearchFilterHost.exe 5904 C:\Windows\System32\msdt.exe 2900 dllhost.exe 5804 dllhost.exe 640 C:\Windows\System32\sdiagnhost.exe 4988 C:\Users\Alex\Desktop\MBRCheck.exe 2568 C:\Windows\System32\conhost.exe 3232 C:\Windows\System32\conhost.exe \\.\C: --> \\.\PhysicalDrive0 at offset 0x00000000`00007e00 (NTFS) \\.\D: --> \\.\PhysicalDrive0 at offset 0x00000072`9cae6000 (NTFS) \\.\K: --> \\.\PhysicalDrive1 at offset 0x00000000`00100000 (NTFS) \\.\M: --> \\.\PhysicalDrive2 at offset 0x00000000`00100000 (NTFS) \\.\N: --> \\.\PhysicalDrive2 at offset 0x0000017a`17100000 (NTFS) PhysicalDrive0 Model Number: ST3500630AS, Rev: 3.CH PhysicalDrive1 Model Number: Ext HardDisk, Rev: PhysicalDrive2 Model Number: WDMy Book 1111, Rev: 1032 Size Device Name MBR Status -------------------------------------------- 465 GB \\.\PhysicalDrive0 Windows 7 MBR code detected SHA1: 4379A3D43019B46FA357F7DD6A53B45A3CA8FB79 465 GB \\.\PhysicalDrive1 RE: Windows XP MBR code detected SHA1: DA38B874B7713D1B51CBC449F4EF809B0DEC644A 1862 GB \\.\PhysicalDrive2 RE: Windows XP MBR code detected SHA1: DA38B874B7713D1B51CBC449F4EF809B0DEC644A Done! |
10.05.2011, 15:07 | #23 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Ich glaub ich hab nen Virus! Sieht ok aus. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SUPERAntiSpyware und poste die Logs. Denk dran beide Tools zu updaten vor dem Scan!!
__________________ Logfiles bitte immer in CODE-Tags posten |
10.05.2011, 18:36 | #24 |
| Ich glaub ich hab nen Virus! Malwarebytes Log: Code:
ATTFilter Malwarebytes' Anti-Malware 1.50.1.1100 www.malwarebytes.org Datenbank Version: 6546 Windows 6.1.7600 Internet Explorer 8.0.7600.16385 10.05.2011 19:34:46 mbam-log-2011-05-10 (19-34-39).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|K:\|M:\|N:\|) Durchsuchte Objekte: 669003 Laufzeit: 2 Stunde(n), 32 Minute(n), 19 Sekunde(n) Infizierte Speicherprozesse: 0 Infizierte Speichermodule: 0 Infizierte Registrierungsschlüssel: 0 Infizierte Registrierungswerte: 0 Infizierte Dateiobjekte der Registrierung: 0 Infizierte Verzeichnisse: 0 Infizierte Dateien: 0 Infizierte Speicherprozesse: (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: (Keine bösartigen Objekte gefunden) Infizierte Dateien: (Keine bösartigen Objekte gefunden) |
Themen zu Ich glaub ich hab nen Virus! |
absturz, arten, firefox, funktionier, funktioniert, gefunde, gelöscht, heute, leute, office, rojaner gefunden, spiele, spielen, starte, starten, stunde, troja, trojaner, trojaner gefunden, versuch, versucht, virus, world |