Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Browser öffnet sich von selbst mit Werbung

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.

Antwort
Alt 06.05.2010, 23:16   #1
znubone
 
Browser öffnet sich von selbst mit Werbung - Standard

Browser öffnet sich von selbst mit Werbung



Hallo Leute,



habe ein problem.


soweit ich mozilla eine weile benutze, öffnen sich immerwieder Tabs mit irgendwelchen Webungen, meistens casino seiten, aber auch komischerweise zb alice oder suzuki, aber sonst halt viele komische seiten. immer wenn sich ein tab öffnet steht in der explorereingabeleiste erst eine andere addresse, die leider immer so schnell verschwindet, das ich nicht alles lesen kann, der anfang ist aufjeden fall hxxp://direct... ! von da wird man rasend schnell auf diese webeseiten weitergeleitet. hoffe ihr könnt mir helfen, habe schon alles mögliche an anti malware und anti spy software ausprobiert, nie wird etwas gefunden. antivir versagt auch.


hier mein hijacklog:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:04:02, on 06.05.2010
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Windows\PixArt\Pac207\Monitor.exe
C:\Program Files\ICQ6.5\ICQ.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Alice Software\AliceEinwahl.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [Monitor] C:\Windows\PixArt\PAC207\Monitor.exe
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ6.5\ICQ.exe" silent
O4 - HKCU\..\Run: [EA Core] "C:\Program Files\Electronic Arts\EA Link\Core.exe" -silent
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETZWERKDIENST')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETZWERKDIENST')
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O13 - Gopher Prefix:
O17 - HKLM\System\CCS\Services\Tcpip\..\{627D4580-897C-419E-BC2A-47C42A4F18E1}: NameServer = 213.191.92.86 62.109.123.196
O17 - HKLM\System\CS1\Services\Tcpip\..\{627D4580-897C-419E-BC2A-47C42A4F18E1}: NameServer = 213.191.92.86 62.109.123.196
O17 - HKLM\System\CS2\Services\Tcpip\..\{627D4580-897C-419E-BC2A-47C42A4F18E1}: NameServer = 213.191.92.86 62.109.123.196
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: Avira AntiVir Planer (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: NMSAccess - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

--
End of file - 5464 bytes



vielen dank für eure hilfe.


mfg


der znub.

Alt 07.05.2010, 12:36   #2
znubone
 
Browser öffnet sich von selbst mit Werbung - Standard

Browser öffnet sich von selbst mit Werbung



ich nochmal....


habe jez die seite rausgefunden die mich ständig öffnet und weiterleitet

ACHTUNG NICHT RAUFKLICKEN
hxxp://www.directrdr.com



habe die seite auch gegooglet, und ja ich hab mir was eingefangen, nur leider sind die ganzen seiten über diesen trojaner auf englisch und ich hab so gut wie keine ahnung von

kann mir keiner helfen?
__________________


Alt 07.05.2010, 12:48   #3
znubone
 
Browser öffnet sich von selbst mit Werbung - Standard

Browser öffnet sich von selbst mit Werbung



OTL Log:


OTL Extras logfile created on: 07.05.2010 12:45:15 - Run 1
OTL by OldTimer - Version 3.2.4.1 Folder = C:\Users\Atze Schmitty\Downloads
Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 67,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 80,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 445,44 Gb Total Space | 393,12 Gb Free Space | 88,25% Space Free | Partition Type: NTFS
Drive D: | 20,21 Gb Total Space | 20,12 Gb Free Space | 99,56% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: ATZESCHMITTY-PC
Current User Name: Atze Schmitty
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.html [@ = htmlfile] -- Reg Error: Key error. File not found

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- Reg Error: Key error.
htmlfile [opennew] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome File not found
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome File not found
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- Reg Error: Key error.
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Key error.

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam(TM)
"{0E2B767B-EA6A-489B-BF83-8083FE1DB661}" = Pcsx2 0.9.6
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live-Uploadtool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{26A24AE4-039D-4CA4-87B4-2F83216015FF}" = Java(TM) 6 Update 15
"{338F08AB-C262-42C7-B000-34DE1A475273}" = Ad-Aware Email Scanner for Outlook
"{3AC8457C-0385-4BEA-A959-E095F05D6D67}" = Battlefield: Bad Company™ 2
"{3F262ADC-5AD2-48E5-A586-44315E04A9E2}" = Microsoft Picture It!-Bibliothek 10
"{41E654A9-26D0-4EAC-854B-0FA824FFFABB}" = Windows Live Messenger
"{42756145-9997-4D28-809B-8756BFD00106}" = Microsoft Picture It! Foto Premium 10
"{4CAEAC10-9C93-448C-B0A6-2B3ACFFDAF2F}" = EMU7800 v0.91
"{52B97218-98CB-4B8B-9283-D213C85E1AA4}" = Windows Live Anmelde-Assistent
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{5FC68772-6D56-41C6-9DF1-24E868198AE6}" = Windows Live Call
"{60DE4033-9503-48D1-A483-7846BD217CA9}" = ICQ6.5
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9580813D-94B1-4C28-9426-A441E2BB29A5}" = Counter-Strike: Source
"{9F7FC79B-3059-4264-9450-39EB368E3225}" = Microsoft Digital Image Library 9 - Blocker
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}" = Nokia Connectivity Cable Driver
"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.2
"{D5A9DA4B-E4F9-FB49-017D-769FC540F1F0}" = EA Download Manager UI
"{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}" = Ad-Aware
"{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{F5577101-33CC-4711-8235-3A95BCD49DB0}" = EA Link
"{F8FF18EE-264A-43FD-B2F6-5EAD40798C2F}" = Windows Live Essentials
"7-Zip" = 7-Zip 4.65
"ActiveScan 2.0" = Panda ActiveScan 2.0
"Ad-Aware" = Ad-Aware
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Alice" = Alice-Installationsdateien entfernen
"Alice Software" = Alice Software 4.10.0
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
"CCleaner" = CCleaner
"CleanUp!" = CleanUp!
"com.ea.Vault.919CACB699904AC5D41B606703500DD39747C02D.1" = EA Download Manager UI
"DAEMON Tools Toolbar" = DAEMON Tools Toolbar
"DivX Setup.divx.com" = DivX-Setup
"EA Download Manager" = EA Download Manager
"HijackThis" = HijackThis 2.0.2
"InstallShield_{F5577101-33CC-4711-8235-3A95BCD49DB0}" = EA Link
"JDownloader" = JDownloader
"Mozilla Firefox (3.6.3)" = Mozilla Firefox (3.6.3)
"PCSX2-beta-r1888" = PCSX2 - Playstation 2 Emulator
"PictureItPrem_v10" = Microsoft Picture It! Foto Premium 10
"PunkBusterSvc" = PunkBuster Services
"Security Task Manager" = Security Task Manager 1.7h
"SopCast" = SopCast 3.2.9
"TVUPlayer" = TVUPlayer 2.5.2.2
"VLC media player" = VLC media player 1.0.5
"Winamp" = Winamp
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinRAR archiver" = WinRAR

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Winamp Detect" = Winamp Anwendungserkennung

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 06.05.2010 12:42:06 | Computer Name = AtzeSchmitty-PC | Source = VSS | ID = 8194
Description =

Error - 06.05.2010 12:42:06 | Computer Name = AtzeSchmitty-PC | Source = VSS | ID = 8193
Description =

Error - 06.05.2010 12:42:06 | Computer Name = AtzeSchmitty-PC | Source = VSS | ID = 8193
Description =

Error - 06.05.2010 12:53:01 | Computer Name = AtzeSchmitty-PC | Source = VSS | ID = 8193
Description =

Error - 06.05.2010 12:57:40 | Computer Name = AtzeSchmitty-PC | Source = VSS | ID = 8193
Description =

Error - 06.05.2010 13:31:57 | Computer Name = AtzeSchmitty-PC | Source = Lavasoft Ad-Aware Service | ID = 0
Description =

Error - 06.05.2010 14:54:17 | Computer Name = AtzeSchmitty-PC | Source = VSS | ID = 8194
Description =

Error - 06.05.2010 14:54:17 | Computer Name = AtzeSchmitty-PC | Source = VSS | ID = 8193
Description =

Error - 06.05.2010 14:54:18 | Computer Name = AtzeSchmitty-PC | Source = VSS | ID = 8193
Description =

Error - 06.05.2010 15:24:46 | Computer Name = AtzeSchmitty-PC | Source = VSS | ID = 8193
Description =

[ System Events ]
Error - 06.05.2010 14:42:03 | Computer Name = AtzeSchmitty-PC | Source = atikmdag | ID = 43029
Description = Display is not active

Error - 06.05.2010 14:42:59 | Computer Name = AtzeSchmitty-PC | Source = Server | ID = 2505
Description = Aufgrund eines doppelten Netzwerknamens konnte zu der Transportschicht
\Device\NetBT_Tcpip_{627D4580-897C-419E-BC2A-47C42A4F18E1} vom Serverdienst nicht
gebunden werden. Der Serverdienst konnte nicht gestartet werden.

Error - 06.05.2010 14:57:09 | Computer Name = AtzeSchmitty-PC | Source = atikmdag | ID = 52236
Description = CPLIB :: General - Invalid Parameter

Error - 06.05.2010 14:57:09 | Computer Name = AtzeSchmitty-PC | Source = atikmdag | ID = 43029
Description = Display is not active

Error - 06.05.2010 15:18:52 | Computer Name = AtzeSchmitty-PC | Source = atikmdag | ID = 52236
Description = CPLIB :: General - Invalid Parameter

Error - 06.05.2010 15:18:52 | Computer Name = AtzeSchmitty-PC | Source = atikmdag | ID = 43029
Description = Display is not active

Error - 06.05.2010 15:19:42 | Computer Name = AtzeSchmitty-PC | Source = Server | ID = 2505
Description = Aufgrund eines doppelten Netzwerknamens konnte zu der Transportschicht
\Device\NetBT_Tcpip_{627D4580-897C-419E-BC2A-47C42A4F18E1} vom Serverdienst nicht
gebunden werden. Der Serverdienst konnte nicht gestartet werden.

Error - 06.05.2010 18:27:53 | Computer Name = AtzeSchmitty-PC | Source = Schannel | ID = 36888
Description = Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus
lautet: 10.

Error - 07.05.2010 06:18:33 | Computer Name = AtzeSchmitty-PC | Source = atikmdag | ID = 52236
Description = CPLIB :: General - Invalid Parameter

Error - 07.05.2010 06:18:33 | Computer Name = AtzeSchmitty-PC | Source = atikmdag | ID = 43029
Description = Display is not active


< End of report >
__________________

Alt 07.05.2010, 12:49   #4
znubone
 
Browser öffnet sich von selbst mit Werbung - Standard

Browser öffnet sich von selbst mit Werbung



OTL logfile created on: 07.05.2010 12:45:15 - Run 1
OTL by OldTimer - Version 3.2.4.1 Folder = C:\Users\Atze Schmitty\Downloads
Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 67,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 80,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 445,44 Gb Total Space | 393,12 Gb Free Space | 88,25% Space Free | Partition Type: NTFS
Drive D: | 20,21 Gb Total Space | 20,12 Gb Free Space | 99,56% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: ATZESCHMITTY-PC
Current User Name: Atze Schmitty
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Processes (SafeList) ==========

PRC - C:\Users\Atze Schmitty\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Programme\Steam\Steam.exe (Valve Corporation)
PRC - C:\Programme\Lavasoft\Ad-Aware\AAWTray.exe (Lavasoft)
PRC - C:\Programme\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft)
PRC - C:\Programme\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
PRC - C:\Programme\DivX\DivX Update\DivXUpdate.exe ()
PRC - C:\Programme\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Programme\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
PRC - C:\Programme\CDBurnerXP\NMSAccessU.exe ()
PRC - C:\Programme\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
PRC - C:\Programme\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
PRC - C:\Programme\Avira\AntiVir Desktop\avshadow.exe (Avira GmbH)
PRC - C:\Programme\Winamp\winampa.exe (Nullsoft, Inc.)
PRC - C:\Programme\ICQ6.5\ICQ.exe (ICQ, LLC.)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Windows\System32\atieclxx.exe (AMD)
PRC - C:\Windows\System32\atiesrxx.exe (AMD)
PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation)
PRC - C:\Programme\Windows Sidebar\sidebar.exe (Microsoft Corporation)
PRC - C:\Windows\System32\conhost.exe (Microsoft Corporation)
PRC - C:\Programme\Alice Software\AliceEinwahl.exe (Hansenet)


========== Modules (SafeList) ==========

MOD - C:\Users\Atze Schmitty\Downloads\OTL.exe (OldTimer Tools)
MOD - C:\Windows\System32\sspicli.dll (Microsoft Corporation)
MOD - C:\Windows\System32\sechost.dll (Microsoft Corporation)
MOD - C:\Windows\System32\samcli.dll (Microsoft Corporation)
MOD - C:\Windows\System32\profapi.dll (Microsoft Corporation)
MOD - C:\Windows\System32\netutils.dll (Microsoft Corporation)
MOD - C:\Windows\System32\KernelBase.dll (Microsoft Corporation)
MOD - C:\Windows\System32\dwmapi.dll (Microsoft Corporation)
MOD - C:\Windows\System32\devobj.dll (Microsoft Corporation)
MOD - C:\Windows\System32\cryptbase.dll (Microsoft Corporation)
MOD - C:\Windows\System32\cfgmgr32.dll (Microsoft Corporation)
MOD - C:\Windows\System32\msscript.ocx (Microsoft Corporation)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll (Microsoft Corporation)


========== Win32 Services (SafeList) ==========

SRV - (Lavasoft Ad-Aware Service) -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft)
SRV - (AntiVirService) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
SRV - (Steam Client Service) -- C:\Program Files\Common Files\Steam\SteamService.exe (Valve Corporation)
SRV - (NMSAccess) -- C:\Programme\CDBurnerXP\NMSAccessU.exe ()
SRV - (AntiVirSchedulerService) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
SRV - (AMD External Events Utility) -- C:\Windows\System32\atiesrxx.exe (AMD)
SRV - (WwanSvc) -- C:\Windows\System32\wwansvc.dll (Microsoft Corporation)
SRV - (WbioSrvc) -- C:\Windows\System32\wbiosrvc.dll (Microsoft Corporation)
SRV - (Power) -- C:\Windows\System32\umpo.dll (Microsoft Corporation)
SRV - (Themes) -- C:\Windows\System32\themeservice.dll (Microsoft Corporation)
SRV - (sppuinotify) -- C:\Windows\System32\sppuinotify.dll (Microsoft Corporation)
SRV - (RpcEptMapper) -- C:\Windows\System32\RpcEpMap.dll (Microsoft Corporation)
SRV - (SensrSvc) -- C:\Windows\System32\sensrsvc.dll (Microsoft Corporation)
SRV - (PeerDistSvc) -- C:\Windows\System32\PeerDistSvc.dll (Microsoft Corporation)
SRV - (PNRPsvc) -- C:\Windows\System32\pnrpsvc.dll (Microsoft Corporation)
SRV - (p2pimsvc) -- C:\Windows\System32\pnrpsvc.dll (Microsoft Corporation)
SRV - (HomeGroupProvider) -- C:\Windows\System32\provsvc.dll (Microsoft Corporation)
SRV - (PNRPAutoReg) -- C:\Windows\System32\pnrpauto.dll (Microsoft Corporation)
SRV - (WinDefend) -- C:\Programme\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (HomeGroupListener) -- C:\Windows\System32\ListSvc.dll (Microsoft Corporation)
SRV - (FontCache) -- C:\Windows\System32\FntCache.dll (Microsoft Corporation)
SRV - (Dhcp) -- C:\Windows\System32\dhcpcore.dll (Microsoft Corporation)
SRV - (defragsvc) -- C:\Windows\System32\defragsvc.dll (Microsoft Corporation)
SRV - (BDESVC) -- C:\Windows\System32\bdesvc.dll (Microsoft Corporation)
SRV - (AxInstSV) ActiveX-Installer (AxInstSV) -- C:\Windows\System32\AxInstSv.dll (Microsoft Corporation)
SRV - (AppIDSvc) -- C:\Windows\System32\appidsvc.dll (Microsoft Corporation)
SRV - (sppsvc) -- C:\Windows\System32\sppsvc.exe (Microsoft Corporation)


========== Driver Services (SafeList) ==========

DRV - (SBRE) -- C:\Windows\System32\drivers\SBREDrv.sys (Sunbelt Software)
DRV - (sptd) -- C:\Windows\System32\Drivers\sptd.sys ()
DRV - (avipbb) -- C:\Windows\System32\drivers\avipbb.sys (Avira GmbH)
DRV - (avgntflt) -- C:\Windows\System32\drivers\avgntflt.sys (Avira GmbH)
DRV - (Lbd) -- C:\Windows\system32\DRIVERS\Lbd.sys (Lavasoft AB)
DRV - (KSecPkg) -- C:\Windows\System32\Drivers\ksecpkg.sys (Microsoft Corporation)
DRV - (StarOpen) -- C:\Windows\System32\drivers\StarOpen.sys ()
DRV - (atikmdag) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV - (cmdide) -- C:\Windows\system32\DRIVERS\cmdide.sys (CMD Technology, Inc.)
DRV - (adpahci) -- C:\Windows\system32\DRIVERS\adpahci.sys (Adaptec, Inc.)
DRV - (adp94xx) -- C:\Windows\system32\DRIVERS\adp94xx.sys (Adaptec, Inc.)
DRV - (amdsbs) -- C:\Windows\system32\DRIVERS\amdsbs.sys (AMD Technologies Inc.)
DRV - (adpu320) -- C:\Windows\system32\DRIVERS\adpu320.sys (Adaptec, Inc.)
DRV - (arcsas) -- C:\Windows\system32\DRIVERS\arcsas.sys (Adaptec, Inc.)
DRV - (amdsata) -- C:\Windows\system32\DRIVERS\amdsata.sys (Advanced Micro Devices)
DRV - (arc) -- C:\Windows\system32\DRIVERS\arc.sys (Adaptec, Inc.)
DRV - (amdxata) -- C:\Windows\system32\DRIVERS\amdxata.sys (Advanced Micro Devices)
DRV - (aliide) -- C:\Windows\system32\DRIVERS\aliide.sys (Acer Laboratories Inc.)
DRV - (nvstor) -- C:\Windows\system32\DRIVERS\nvstor.sys (NVIDIA Corporation)
DRV - (nvraid) -- C:\Windows\system32\DRIVERS\nvraid.sys (NVIDIA Corporation)
DRV - (nfrd960) -- C:\Windows\system32\DRIVERS\nfrd960.sys (IBM Corporation)
DRV - (LSI_SAS) -- C:\Windows\system32\DRIVERS\lsi_sas.sys (LSI Corporation)
DRV - (iaStorV) -- C:\Windows\system32\DRIVERS\iaStorV.sys (Intel Corporation)
DRV - (MegaSR) -- C:\Windows\system32\DRIVERS\MegaSR.sys (LSI Corporation, Inc.)
DRV - (LSI_SCSI) -- C:\Windows\system32\DRIVERS\lsi_scsi.sys (LSI Corporation)
DRV - (LSI_FC) -- C:\Windows\system32\DRIVERS\lsi_fc.sys (LSI Corporation)
DRV - (LSI_SAS2) -- C:\Windows\system32\DRIVERS\lsi_sas2.sys (LSI Corporation)
DRV - (iirsp) -- C:\Windows\system32\DRIVERS\iirsp.sys (Intel Corp./ICP vortex GmbH)
DRV - (megasas) -- C:\Windows\system32\DRIVERS\megasas.sys (LSI Corporation)
DRV - (hwpolicy) -- C:\Windows\System32\drivers\hwpolicy.sys (Microsoft Corporation)
DRV - (elxstor) -- C:\Windows\system32\DRIVERS\elxstor.sys (Emulex)
DRV - (aic78xx) -- C:\Windows\system32\DRIVERS\djsvs.sys (Adaptec, Inc.)
DRV - (HpSAMD) -- C:\Windows\system32\DRIVERS\HpSAMD.sys (Hewlett-Packard Company)
DRV - (FsDepends) -- C:\Windows\System32\drivers\fsdepends.sys (Microsoft Corporation)
DRV - (vsmraid) -- C:\Windows\system32\DRIVERS\vsmraid.sys (VIA Technologies Inc.,Ltd)
DRV - (vmbus) -- C:\Windows\system32\DRIVERS\vmbus.sys (Microsoft Corporation)
DRV - (vhdmp) -- C:\Windows\system32\DRIVERS\vhdmp.sys (Microsoft Corporation)
DRV - (storflt) -- C:\Windows\system32\DRIVERS\vmstorfl.sys (Microsoft Corporation)
DRV - (vdrvroot) -- C:\Windows\system32\DRIVERS\vdrvroot.sys (Microsoft Corporation)
DRV - (storvsc) -- C:\Windows\system32\DRIVERS\storvsc.sys (Microsoft Corporation)
DRV - (WIMMount) -- C:\Windows\System32\drivers\wimmount.sys (Microsoft Corporation)
DRV - (viaide) -- C:\Windows\system32\DRIVERS\viaide.sys (VIA Technologies, Inc.)
DRV - (ql2300) -- C:\Windows\system32\DRIVERS\ql2300.sys (QLogic Corporation)
DRV - (rdyboost) -- C:\Windows\System32\drivers\rdyboost.sys (Microsoft Corporation)
DRV - (ql40xx) -- C:\Windows\system32\DRIVERS\ql40xx.sys (QLogic Corporation)
DRV - (SiSRaid4) -- C:\Windows\system32\DRIVERS\sisraid4.sys (Silicon Integrated Systems)
DRV - (pcw) -- C:\Windows\System32\drivers\pcw.sys (Microsoft Corporation)
DRV - (SiSRaid2) -- C:\Windows\system32\DRIVERS\SiSRaid2.sys (Silicon Integrated Systems Corp.)
DRV - (stexstor) -- C:\Windows\system32\DRIVERS\stexstor.sys (Promise Technology)
DRV - (CNG) -- C:\Windows\System32\Drivers\cng.sys (Microsoft Corporation)
DRV - (Brserid) Brother MFC Serial Port Interface Driver (WDM) -- C:\Windows\System32\Drivers\Brserid.sys (Brother Industries Ltd.)
DRV - (rdpbus) -- C:\Windows\System32\drivers\rdpbus.sys (Microsoft Corporation)
DRV - (RDPREFMP) -- C:\Windows\System32\drivers\RDPREFMP.sys (Microsoft Corporation)
DRV - (RasAgileVpn) WAN Miniport (IKEv2) -- C:\Windows\System32\drivers\agilevpn.sys (Microsoft Corporation)
DRV - (WfpLwf) -- C:\Windows\System32\drivers\wfplwf.sys (Microsoft Corporation)
DRV - (NdisCap) -- C:\Windows\System32\drivers\ndiscap.sys (Microsoft Corporation)
DRV - (vwifibus) -- C:\Windows\System32\drivers\vwifibus.sys (Microsoft Corporation)
DRV - (1394ohci) -- C:\Windows\System32\drivers\1394ohci.sys (Microsoft Corporation)
DRV - (UmPass) -- C:\Windows\system32\DRIVERS\umpass.sys (Microsoft Corporation)
DRV - (mshidkmdf) -- C:\Windows\System32\drivers\mshidkmdf.sys (Microsoft Corporation)
DRV - (MTConfig) -- C:\Windows\system32\DRIVERS\MTConfig.sys (Microsoft Corporation)
DRV - (CompositeBus) -- C:\Windows\System32\drivers\CompositeBus.sys (Microsoft Corporation)
DRV - (AppID) -- C:\Windows\system32\drivers\appid.sys (Microsoft Corporation)
DRV - (scfilter) -- C:\Windows\System32\drivers\scfilter.sys (Microsoft Corporation)
DRV - (s3cap) -- C:\Windows\system32\DRIVERS\vms3cap.sys (Microsoft Corporation)
DRV - (VMBusHID) -- C:\Windows\system32\DRIVERS\VMBusHID.sys (Microsoft Corporation)
DRV - (discache) -- C:\Windows\System32\drivers\discache.sys (Microsoft Corporation)
DRV - (HidBatt) -- C:\Windows\system32\DRIVERS\HidBatt.sys (Microsoft Corporation)
DRV - (AcpiPmi) -- C:\Windows\system32\DRIVERS\acpipmi.sys (Microsoft Corporation)
DRV - (AmdPPM) -- C:\Windows\System32\drivers\amdppm.sys (Microsoft Corporation)
DRV - (hcw85cir) -- C:\Windows\system32\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV - (BrUsbMdm) -- C:\Windows\System32\Drivers\BrUsbMdm.sys (Brother Industries Ltd.)
DRV - (BrUsbSer) -- C:\Windows\System32\Drivers\BrUsbSer.sys (Brother Industries Ltd.)
DRV - (BrSerWdm) -- C:\Windows\System32\Drivers\BrSerWdm.sys (Brother Industries Ltd.)
DRV - (BrFiltLo) -- C:\Windows\system32\DRIVERS\BrFiltLo.sys (Brother Industries, Ltd.)
DRV - (BrFiltUp) -- C:\Windows\system32\DRIVERS\BrFiltUp.sys (Brother Industries, Ltd.)
DRV - (RTL8167) -- C:\Windows\System32\drivers\Rt86win7.sys (Realtek Corporation )
DRV - (b57nd60x) -- C:\Windows\System32\drivers\b57nd60x.sys (Broadcom Corporation)
DRV - (ebdrv) -- C:\Windows\system32\DRIVERS\evbdx.sys (Broadcom Corporation)
DRV - (b06bdrv) -- C:\Windows\system32\DRIVERS\bxvbdx.sys (Broadcom Corporation)
DRV - (pavboot) -- C:\Windows\system32\drivers\pavboot.sys (Panda Security, S.L.)
DRV - (ssmdrv) -- C:\Windows\System32\drivers\ssmdrv.sys (Avira GmbH)
DRV - (UsbserFilt) -- C:\Windows\System32\drivers\usbser_lowerfltj.sys (Windows (R) Codename Longhorn DDK provider)
DRV - (nmwcdc) -- C:\Windows\System32\drivers\ccdcmbo.sys (Nokia)
DRV - (upperdev) -- C:\Windows\System32\drivers\usbser_lowerflt.sys (Windows (R) Codename Longhorn DDK provider)
DRV - (nmwcd) -- C:\Windows\System32\drivers\ccdcmb.sys (Nokia)
DRV - (PAC207) -- C:\Windows\System32\drivers\PFC027.SYS (PixArt Imaging Inc.)
DRV - (PDNMp50) -- C:\Windows\System32\drivers\PDNMp50.sys (Printing Communications Assoc., Inc. (PCAUSA))
DRV - (PDNSp50) -- C:\Windows\System32\drivers\PDNSp50.sys (Printing Communications Assoc., Inc. (PCAUSA))


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========


IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 4A 73 F4 9F 1F ED CA 01 [binary data]
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.update: false

FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.05.06 21:26:06 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010.05.06 21:25:59 | 000,000,000 | ---D | M]

[2010.05.06 21:26:11 | 000,000,000 | ---D | M] -- C:\Users\Atze Schmitty\AppData\Roaming\mozilla\Extensions
[2010.05.06 21:26:11 | 000,000,000 | ---D | M] -- C:\Users\Atze Schmitty\AppData\Roaming\mozilla\Firefox\Profiles\z21jzwvu.default\extensions
[2010.05.06 21:52:58 | 000,000,000 | ---D | M] -- C:\Programme\Mozilla Firefox\extensions
[2010.01.12 22:03:50 | 000,063,488 | ---- | M] (Nullsoft, Inc.) -- C:\Programme\Mozilla Firefox\plugins\npwachk.dll
[2010.04.01 18:54:38 | 000,001,392 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\amazondotcom-de.xml
[2010.04.01 18:54:38 | 000,002,344 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\eBay-de.xml
[2010.04.01 18:54:38 | 000,006,805 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\leo_ende_de.xml
[2010.04.01 18:54:38 | 000,001,178 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\wikipedia-de.xml
[2010.04.01 18:54:38 | 000,001,105 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\yahoo-de.xml

O1 HOSTS File: ([2009.06.10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (Windows Live Anmelde-Hilfsprogramm) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Programme\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Programme\DAEMON Tools Toolbar\DTToolbar.dll ()
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe (Nullsoft, Inc.)
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKCU..\Run: [EA Core] C:\Program Files\Electronic Arts\EA Link\Core.exe (Electronic Arts)
O4 - HKCU..\Run: [ICQ] C:\Program Files\ICQ6.5\ICQ.exe (ICQ, LLC.)
O4 - HKCU..\Run: [Steam] c:\program files\steam\steam.exe (Valve Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O9 - Extra Button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programme\ICQ6.5\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programme\ICQ6.5\ICQ.exe (ICQ, LLC.)
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programme\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O30 - LSA: Security Packages - (pku2u) - C:\Windows\System32\pku2u.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.06.10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{b70d8d35-4654-11df-bd64-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{b70d8d35-4654-11df-bd64-806e6f6e6963}\Shell\AutoRun\command - "" = E:\autorun.bat -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2010.05.06 21:18:42 | 000,000,000 | ---D | C] -- C:\Avenger
[2010.05.06 21:03:51 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\Desktop\Security Task Manager 1.7H
[2010.05.06 20:48:21 | 000,000,000 | ---D | C] -- C:\ProgramData\SecTaskMan
[2010.05.06 20:48:17 | 000,000,000 | ---D | C] -- C:\Programme\Security Task Manager
[2010.05.06 19:59:09 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Roaming\Canneverbe Limited
[2010.05.06 19:59:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Canneverbe Limited
[2010.05.06 19:58:09 | 000,000,000 | ---D | C] -- C:\Programme\CDBurnerXP
[2010.05.06 19:32:58 | 000,064,288 | ---- | C] (Lavasoft AB) -- C:\Windows\System32\drivers\Lbd.sys
[2010.05.06 19:32:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\DRVSTORE
[2010.05.06 19:32:55 | 000,095,024 | ---- | C] (Sunbelt Software) -- C:\Windows\System32\drivers\SBREDrv.sys
[2010.05.06 19:31:27 | 000,000,000 | -H-D | C] -- C:\ProgramData\{74D08EB8-01D1-4BAE-91E3-F30C1B031AC6}
[2010.05.06 19:31:23 | 000,000,000 | ---D | C] -- C:\Programme\Lavasoft
[2010.05.06 19:31:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Lavasoft
[2010.05.06 19:22:42 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Roaming\QuickScan
[2010.05.06 19:12:50 | 000,000,000 | ---D | C] -- C:\Programme\CleanUp!
[2010.05.06 18:58:16 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Local\IsolatedStorage
[2010.05.06 18:57:52 | 000,000,000 | ---D | C] -- C:\Programme\EMU7800
[2010.05.06 18:53:41 | 000,000,000 | ---D | C] -- C:\Programme\pcsx2-r1888
[2010.05.06 18:53:14 | 000,000,000 | ---D | C] -- C:\Programme\Pcsx2
[2010.05.06 18:42:31 | 000,000,000 | ---D | C] -- C:\Programme\DAEMON Tools Toolbar
[2010.05.06 18:41:58 | 000,000,000 | ---D | C] -- C:\Programme\DAEMON Tools Lite
[2010.05.06 18:41:49 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Roaming\DAEMON Tools Lite
[2010.05.06 18:41:48 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite
[2010.05.06 16:52:40 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\Desktop\Sega
[2010.05.06 16:50:59 | 000,000,000 | ---D | C] -- C:\Programme\7-Zip
[2010.05.06 16:19:27 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\Desktop\SNES Emulator
[2010.05.06 16:13:28 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\Desktop\Neuer Ordner
[2010.05.05 19:23:12 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\Tracing
[2010.05.05 19:22:02 | 000,000,000 | ---D | C] -- C:\Programme\Microsoft
[2010.05.05 19:21:51 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\microsoft
[2010.05.05 19:21:44 | 000,000,000 | ---D | C] -- C:\Programme\Windows Live SkyDrive
[2010.05.05 19:21:26 | 000,000,000 | ---D | C] -- C:\Programme\Windows Live
[2010.05.05 19:21:04 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2010.05.05 19:19:33 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\Windows Live
[2010.05.05 17:16:32 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Local\ElevatedDiagnostics
[2010.05.05 15:59:17 | 000,028,552 | ---- | C] (Panda Security, S.L.) -- C:\Windows\System32\drivers\pavboot.sys
[2010.05.05 15:59:00 | 000,000,000 | ---D | C] -- C:\Programme\Panda Security
[2010.05.05 15:54:17 | 000,000,000 | ---D | C] -- C:\Programme\Trend Micro
[2010.05.05 13:35:19 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Roaming\Malwarebytes
[2010.05.05 13:35:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010.05.05 00:48:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\appmgmt
[2010.04.30 18:12:20 | 000,000,000 | ---D | C] -- C:\Windows\PixArt
[2010.04.29 13:25:42 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Roaming\Avira
[2010.04.28 21:25:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\TVUAx
[2010.04.28 19:17:13 | 000,000,000 | ---D | C] -- C:\Programme\Spybot - Search & Destroy
[2010.04.28 16:52:26 | 001,037,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\lsasrv.dll
[2010.04.28 16:52:26 | 000,133,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\ksecpkg.sys
[2010.04.26 15:22:49 | 000,000,000 | ---D | C] -- C:\Programme\Google
[2010.04.24 15:36:37 | 000,000,000 | ---D | C] -- C:\Programme\SopCast
[2010.04.22 20:02:02 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\DivX Shared
[2010.04.22 20:01:45 | 000,000,000 | ---D | C] -- C:\Programme\DivX
[2010.04.22 20:01:32 | 000,000,000 | ---D | C] -- C:\ProgramData\DivX
[2010.04.17 18:26:14 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Local\TVU Networks
[2010.04.17 18:26:14 | 000,000,000 | ---D | C] -- C:\ProgramData\TVU Networks
[2010.04.15 00:34:02 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Roaming\dvdcss
[2010.04.15 00:33:51 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Roaming\vlc
[2010.04.15 00:32:24 | 000,000,000 | ---D | C] -- C:\Programme\VideoLAN
[2010.04.15 00:32:05 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\Filme
[2010.04.15 00:29:50 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Roaming\WinRAR
[2010.04.15 00:29:47 | 000,000,000 | ---D | C] -- C:\Programme\WinRAR
[2010.04.14 20:58:34 | 000,000,000 | ---D | C] -- C:\Programme\Microsoft Picture It! 10
[2010.04.14 18:57:52 | 000,000,000 | ---D | C] -- C:\Windows\Sun
[2010.04.14 17:07:03 | 000,000,000 | ---D | C] -- C:\Programme\Winamp Detect
[2010.04.14 17:06:58 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\PX Storage Engine
[2010.04.14 17:06:56 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Roaming\Winamp
[2010.04.14 17:06:56 | 000,000,000 | ---D | C] -- C:\Programme\Winamp
[2010.04.14 16:27:36 | 000,000,000 | ---D | C] -- C:\Programme\TVUPlayer
[2010.04.14 13:09:45 | 003,954,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
[2010.04.14 13:09:45 | 003,899,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
[2010.04.14 13:09:44 | 000,427,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vbscript.dll
[2010.04.13 01:48:43 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\browserchoice.exe
[2010.04.13 00:20:24 | 000,000,000 | ---D | C] -- C:\Programme\CCleaner
[2010.04.13 00:12:22 | 000,606,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll
[2010.04.13 00:12:21 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2010.04.13 00:12:21 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2010.04.13 00:12:19 | 002,614,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2010.04.13 00:12:15 | 001,320,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CertEnroll.dll
[2010.04.13 00:12:15 | 000,507,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winload.exe
[2010.04.13 00:12:14 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmploc.DLL
[2010.04.13 00:12:14 | 000,442,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winresume.exe
[2010.04.13 00:12:13 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript.dll
[2010.04.13 00:12:12 | 000,293,888 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll
[2010.04.13 00:12:12 | 000,108,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\t2embed.dll
[2010.04.13 00:12:12 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fontsub.dll
[2010.04.13 00:12:09 | 001,328,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\quartz.dll
[2010.04.13 00:12:09 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\avifil32.dll
[2010.04.13 00:12:09 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mciavi32.dll
[2010.04.13 00:12:07 | 000,641,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CPFilters.dll
[2010.04.13 00:12:06 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\psisdecd.dll
[2010.04.13 00:12:06 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdri.dll
[2010.04.13 00:12:06 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSNP.ax
[2010.04.13 00:12:05 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll
[2010.04.13 00:12:02 | 000,369,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc.dll
[2010.04.13 00:12:02 | 000,365,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_isv.dll
[2010.04.13 00:12:02 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_isv.exe
[2010.04.13 00:12:02 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate.exe
[2010.04.13 00:12:02 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp.exe
[2010.04.13 00:12:02 | 000,277,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp_isv.exe
[2010.04.13 00:12:02 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp_isv.dll
[2010.04.13 00:12:02 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp.dll
[2010.04.12 20:49:30 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Local\PunkBuster
[2010.04.12 20:49:24 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\Documents\BFBC2
[2010.04.12 20:49:13 | 000,000,000 | RH-D | C] -- C:\Users\Atze Schmitty\AppData\Roaming\SecuROM
[2010.04.12 20:49:10 | 000,000,000 | -HSD | C] -- C:\ProgramData\SecuROM
[2010.04.12 20:42:50 | 001,974,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_42.dll
[2010.04.12 20:42:50 | 000,515,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_5.dll
[2010.04.12 20:42:50 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_5.dll
[2010.04.12 20:42:49 | 005,501,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dcsx_42.dll
[2010.04.12 20:42:49 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_42.dll
[2010.04.12 20:42:49 | 001,846,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_41.dll
[2010.04.12 20:42:49 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_42.dll
[2010.04.12 20:42:49 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_41.dll
[2010.04.12 20:42:49 | 000,235,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx11_42.dll
[2010.04.12 20:42:48 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_41.dll
[2010.04.12 20:42:48 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_4.dll
[2010.04.12 20:42:48 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_4.dll
[2010.04.12 20:42:48 | 000,069,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_3.dll
[2010.04.12 20:42:48 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_6.dll
[2010.04.12 20:42:47 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_40.dll
[2010.04.12 20:42:47 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_40.dll
[2010.04.12 20:42:47 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_3.dll
[2010.04.12 20:42:47 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_40.dll
[2010.04.12 20:42:47 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_3.dll
[2010.04.12 20:42:47 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_2.dll
[2010.04.12 20:42:47 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_5.dll
[2010.04.12 20:42:46 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_39.dll
[2010.04.12 20:42:46 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_39.dll
[2010.04.12 20:42:46 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_2.dll
[2010.04.12 20:42:46 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_1.dll
[2010.04.12 20:42:46 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_39.dll
[2010.04.12 20:42:46 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_2.dll
[2010.04.12 20:42:46 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_1.dll
[2010.04.12 20:42:46 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_1.dll
[2010.04.12 20:42:46 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_0.dll
[2010.04.12 20:42:45 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_38.dll
[2010.04.12 20:42:45 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_38.dll
[2010.04.12 20:42:45 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_0.dll
[2010.04.12 20:42:45 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_38.dll
[2010.04.12 20:42:45 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_0.dll
[2010.04.12 20:42:45 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_4.dll
[2010.04.12 20:42:45 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_3.dll
[2010.04.12 20:42:44 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_37.dll
[2010.04.12 20:42:44 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_37.dll
[2010.04.12 20:42:44 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_36.dll
[2010.04.12 20:42:44 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_37.dll
[2010.04.12 20:42:44 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_36.dll
[2010.04.12 20:42:44 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_10.dll
[2010.04.12 20:42:43 | 003,734,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_36.dll
[2010.04.12 20:42:43 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_35.dll
[2010.04.12 20:42:43 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_35.dll
[2010.04.12 20:42:43 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_35.dll
[2010.04.12 20:42:43 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_9.dll
[2010.04.12 20:42:42 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_34.dll
[2010.04.12 20:42:42 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_34.dll
[2010.04.12 20:42:42 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_34.dll
[2010.04.12 20:42:42 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_8.dll
[2010.04.12 20:42:42 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_7.dll
[2010.04.12 20:42:42 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_3.dll
[2010.04.12 20:42:42 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_2.dll
[2010.04.12 20:42:41 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_33.dll
[2010.04.12 20:42:41 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_33.dll
[2010.04.12 20:42:41 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_33.dll
[2010.04.12 20:42:41 | 000,440,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10.dll
[2010.04.12 20:42:41 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_6.dll
[2010.04.12 20:42:41 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_5.dll
[2010.04.12 20:42:40 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_32.dll
[2010.04.12 20:42:40 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_31.dll
[2010.04.12 20:42:40 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_4.dll
[2010.04.12 20:42:40 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_3.dll
[2010.04.12 20:42:40 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_2.dll
[2010.04.12 20:42:40 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_2.dll
[2010.04.12 20:42:40 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_1.dll
[2010.04.12 20:42:40 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\x3daudio1_1.dll
[2010.04.12 20:42:39 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_1.dll
[2010.04.12 20:42:35 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_30.dll
[2010.04.12 20:42:35 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_29.dll
[2010.04.12 20:42:35 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_0.dll
[2010.04.12 20:42:35 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\x3daudio1_0.dll
[2010.04.12 20:42:34 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_25.dll
[2010.04.12 20:42:34 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_28.dll
[2010.04.12 20:42:34 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_27.dll
[2010.04.12 20:42:34 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_26.dll
[2010.04.12 20:42:33 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_24.dll
[2010.04.12 20:05:26 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Roaming\skypePM
[2010.04.12 20:01:25 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\Steam
[2010.04.12 19:59:00 | 000,000,000 | ---D | C] -- C:\Programme\JDownloader
[2010.04.12 19:58:55 | 000,411,368 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\deploytk.dll
[2010.04.12 19:58:55 | 000,149,280 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaws.exe
[2010.04.12 19:58:55 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaw.exe
[2010.04.12 19:58:55 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\java.exe
[2010.04.12 19:58:41 | 000,000,000 | ---D | C] -- C:\Programme\Java
[2010.04.12 19:58:10 | 000,000,000 | ---D | C] -- C:\Windows\Panther
[2010.04.12 19:57:57 | 000,000,000 | -HSD | C] -- C:\Boot
[2010.04.12 19:52:09 | 000,000,000 | ---D | C] -- C:\Programme\Steam
[2010.04.12 19:47:31 | 000,000,000 | ---D | C] -- C:\ProgramData\EA Core
[2010.04.12 19:46:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2010.04.12 19:46:05 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\Adobe AIR
[2010.04.12 19:45:27 | 000,000,000 | ---D | C] -- C:\Programme\Electronic Arts
[2010.04.12 19:45:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Electronic Arts
[2010.04.12 19:45:10 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Roaming\Skype
[2010.04.12 19:45:01 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Local\Downloaded Installations
[2010.04.12 19:45:00 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\InstallShield
[2010.04.12 19:44:44 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\Skype
[2010.04.12 19:44:43 | 000,000,000 | R--D | C] -- C:\Programme\Skype
[2010.04.12 19:44:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype
[2010.04.12 19:40:45 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\Documents\ICQ
[2010.04.12 19:38:56 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Roaming\Macromedia
[2010.04.12 19:38:55 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Roaming\Adobe
[2010.04.12 19:38:21 | 000,000,000 | -H-D | C] -- C:\Programme\InstallShield Installation Information
[2010.04.12 19:37:30 | 000,000,000 | ---D | C] -- C:\Programme\ICQ6Toolbar
[2010.04.12 19:37:28 | 000,000,000 | ---D | C] -- C:\ProgramData\ICQ
[2010.04.12 19:37:18 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Roaming\ICQ
[2010.04.12 19:36:52 | 000,000,000 | ---D | C] -- C:\Programme\ICQ6.5
[2010.04.12 19:36:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed
[2010.04.12 19:34:38 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Roaming\Mozilla
[2010.04.12 19:34:38 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Local\Mozilla
[2010.04.12 19:34:32 | 000,000,000 | ---D | C] -- C:\Programme\Mozilla Firefox
[2010.04.12 19:32:22 | 000,124,784 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\avipbb.sys
[2010.04.12 19:32:22 | 000,060,936 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\avgntflt.sys
[2010.04.12 19:32:22 | 000,051,992 | ---- | C] (AVIRA GmbH) -- C:\Windows\System32\drivers\avgntdd.sys
[2010.04.12 19:32:22 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\ssmdrv.sys
[2010.04.12 19:32:22 | 000,017,016 | ---- | C] (AVIRA GmbH) -- C:\Windows\System32\drivers\avgntmgr.sys
[2010.04.12 19:32:22 | 000,000,000 | ---D | C] -- C:\Programme\Avira
[2010.04.12 19:32:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
[2010.04.12 19:29:22 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2010.04.12 19:28:17 | 000,181,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MpSigStub.exe
[2010.04.12 19:19:00 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Roaming\Hansenet
[2010.04.12 19:19:00 | 000,000,000 | ---D | C] -- C:\Programme\Alice Software
[2010.04.12 19:14:21 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\Alice
[2010.04.12 19:14:17 | 000,000,000 | ---D | C] -- C:\Programme\Alice
[2010.04.12 19:10:46 | 000,000,000 | R--D | C] -- C:\Users\Atze Schmitty\Searches
[2010.04.12 19:10:38 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Roaming\Identities
[2010.04.12 19:10:37 | 000,000,000 | R--D | C] -- C:\Users\Atze Schmitty\Contacts
[2010.04.12 19:10:31 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Local\VirtualStore
[2010.04.12 19:10:26 | 000,000,000 | --SD | C] -- C:\Users\Atze Schmitty\AppData\Roaming\Microsoft
[2010.04.12 19:10:26 | 000,000,000 | R--D | C] -- C:\Users\Atze Schmitty\Videos
[2010.04.12 19:10:26 | 000,000,000 | R--D | C] -- C:\Users\Atze Schmitty\Saved Games
[2010.04.12 19:10:26 | 000,000,000 | R--D | C] -- C:\Users\Atze Schmitty\Pictures
[2010.04.12 19:10:26 | 000,000,000 | R--D | C] -- C:\Users\Atze Schmitty\Music
[2010.04.12 19:10:26 | 000,000,000 | R--D | C] -- C:\Users\Atze Schmitty\Links
[2010.04.12 19:10:26 | 000,000,000 | R--D | C] -- C:\Users\Atze Schmitty\Favorites
[2010.04.12 19:10:26 | 000,000,000 | R--D | C] -- C:\Users\Atze Schmitty\Downloads
[2010.04.12 19:10:26 | 000,000,000 | R--D | C] -- C:\Users\Atze Schmitty\Documents
[2010.04.12 19:10:26 | 000,000,000 | R--D | C] -- C:\Users\Atze Schmitty\Desktop
[2010.04.12 19:10:26 | 000,000,000 | -HSD | C] -- C:\Users\Atze Schmitty\Vorlagen
[2010.04.12 19:10:26 | 000,000,000 | -HSD | C] -- C:\Users\Atze Schmitty\AppData\Local\Verlauf
[2010.04.12 19:10:26 | 000,000,000 | -HSD | C] -- C:\Users\Atze Schmitty\AppData\Local\Temporary Internet Files
[2010.04.12 19:10:26 | 000,000,000 | -HSD | C] -- C:\Users\Atze Schmitty\Startmenü
[2010.04.12 19:10:26 | 000,000,000 | -HSD | C] -- C:\Users\Atze Schmitty\SendTo
[2010.04.12 19:10:26 | 000,000,000 | -HSD | C] -- C:\Users\Atze Schmitty\Recent
[2010.04.12 19:10:26 | 000,000,000 | -HSD | C] -- C:\Users\Atze Schmitty\Netzwerkumgebung
[2010.04.12 19:10:26 | 000,000,000 | -HSD | C] -- C:\Users\Atze Schmitty\Lokale Einstellungen
[2010.04.12 19:10:26 | 000,000,000 | -HSD | C] -- C:\Users\Atze Schmitty\Documents\Eigene Videos
[2010.04.12 19:10:26 | 000,000,000 | -HSD | C] -- C:\Users\Atze Schmitty\Documents\Eigene Musik
[2010.04.12 19:10:26 | 000,000,000 | -HSD | C] -- C:\Users\Atze Schmitty\Eigene Dateien
[2010.04.12 19:10:26 | 000,000,000 | -HSD | C] -- C:\Users\Atze Schmitty\Documents\Eigene Bilder
[2010.04.12 19:10:26 | 000,000,000 | -HSD | C] -- C:\Users\Atze Schmitty\Druckumgebung
[2010.04.12 19:10:26 | 000,000,000 | -HSD | C] -- C:\Users\Atze Schmitty\Cookies
[2010.04.12 19:10:26 | 000,000,000 | -HSD | C] -- C:\Users\Atze Schmitty\AppData\Local\Anwendungsdaten
[2010.04.12 19:10:26 | 000,000,000 | -HSD | C] -- C:\Users\Atze Schmitty\Anwendungsdaten
[2010.04.12 19:10:26 | 000,000,000 | -H-D | C] -- C:\Users\Atze Schmitty\AppData
[2010.04.12 19:10:26 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Local\Temp
[2010.04.12 19:10:26 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Local\Microsoft
[2010.04.12 19:10:26 | 000,000,000 | ---D | C] -- C:\Users\Atze Schmitty\AppData\Roaming\Media Center Programs
[2010.04.12 19:06:59 | 000,000,000 | -HSD | C] -- C:\ProgramData\Vorlagen
[2010.04.12 19:06:59 | 000,000,000 | -HSD | C] -- C:\ProgramData\Startmenü
[2010.04.12 19:06:59 | 000,000,000 | -HSD | C] -- C:\Recovery
[2010.04.12 19:06:59 | 000,000,000 | -HSD | C] -- C:\Programme
[2010.04.12 19:06:59 | 000,000,000 | -HSD | C] -- C:\Programme\Gemeinsame Dateien
[2010.04.12 19:06:59 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoriten
[2010.04.12 19:06:59 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Videos
[2010.04.12 19:06:59 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Musik
[2010.04.12 19:06:59 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Bilder
[2010.04.12 19:06:59 | 000,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen
[2010.04.12 19:06:59 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumente
[2010.04.12 19:06:59 | 000,000,000 | -HSD | C] -- C:\ProgramData\Anwendungsdaten
[2010.04.12 19:01:55 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2010.04.12 18:59:51 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
[2010.04.12 18:59:16 | 000,000,000 | -HSD | C] -- C:\System Volume Information

========== Files - Modified Within 30 Days ==========

[2010.05.07 12:46:08 | 002,097,152 | -HS- | M] () -- C:\Users\Atze Schmitty\NTUSER.DAT
[2010.05.07 12:25:31 | 001,472,002 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2010.05.07 12:25:31 | 000,643,628 | ---- | M] () -- C:\Windows\System32\perfh007.dat
[2010.05.07 12:25:31 | 000,606,992 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010.05.07 12:25:31 | 000,126,188 | ---- | M] () -- C:\Windows\System32\perfc007.dat
[2010.05.07 12:25:31 | 000,103,370 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010.05.07 12:24:04 | 000,014,016 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2010.05.07 12:24:04 | 000,014,016 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2010.05.07 12:18:48 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010.05.07 12:18:33 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010.05.07 12:18:28 | 2201,812,992 | -HS- | M] () -- C:\hiberfil.sys
[2010.05.07 01:54:21 | 001,783,531 | -H-- | M] () -- C:\Users\Atze Schmitty\AppData\Local\IconCache.db
[2010.05.07 00:30:23 | 000,137,256 | ---- | M] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2010.05.07 00:30:13 | 000,218,808 | ---- | M] () -- C:\Windows\System32\PnkBstrB.xtr
[2010.05.06 21:26:02 | 000,001,885 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2010.05.06 21:06:34 | 000,384,864 | ---- | M] () -- C:\Users\Atze Schmitty\Desktop\Projekt1.jpg
[2010.05.06 21:04:29 | 000,000,465 | ---- | M] () -- C:\Windows\win.ini
[2010.05.06 19:59:07 | 000,094,064 | ---- | M] () -- C:\Users\Atze Schmitty\AppData\Local\GDIPFONTCACHEV1.DAT
[2010.05.06 19:58:12 | 000,001,895 | ---- | M] () -- C:\Users\Public\Desktop\CDBurnerXP.lnk
[2010.05.06 19:32:53 | 000,095,024 | ---- | M] (Sunbelt Software) -- C:\Windows\System32\drivers\SBREDrv.sys
[2010.05.06 19:32:52 | 000,015,880 | ---- | M] () -- C:\Windows\System32\lsdelete.exe
[2010.05.06 19:31:26 | 000,001,108 | ---- | M] () -- C:\Users\Public\Desktop\Ad-Aware.lnk
[2010.05.06 18:42:30 | 000,001,896 | ---- | M] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2010.05.06 18:42:18 | 000,691,696 | ---- | M] () -- C:\Windows\System32\drivers\sptd.sys
[2010.05.05 19:49:20 | 001,006,525 | ---- | M] () -- C:\Users\Atze Schmitty\DSCI0014.JPG
[2010.05.05 15:54:18 | 000,002,039 | ---- | M] () -- C:\Users\Atze Schmitty\HijackThis.lnk
[2010.05.05 13:35:13 | 000,000,979 | ---- | M] () -- C:\Users\Atze Schmitty\Malwarebytes' Anti-Malware.lnk
[2010.05.01 17:52:53 | 000,000,000 | ---- | M] () -- C:\Windows\nsreg.dat
[2010.04.30 18:17:12 | 000,149,021 | ---- | M] () -- C:\Users\Atze Schmitty\Projekt2.jpg
[2010.04.28 19:17:21 | 000,001,216 | ---- | M] () -- C:\Users\Atze Schmitty\Spybot - Search & Destroy.lnk
[2010.04.26 23:28:53 | 000,307,698 | ---- | M] () -- C:\Users\Atze Schmitty\Projekt1.jpg
[2010.04.19 18:50:49 | 000,000,193 | ---- | M] () -- C:\Windows\WORDPAD.INI
[2010.04.15 12:54:14 | 000,356,216 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010.04.14 17:07:03 | 000,000,937 | ---- | M] () -- C:\Users\Public\Desktop\Winamp.lnk
[2010.04.13 16:52:37 | 000,000,056 | -H-- | M] () -- C:\Windows\System32\ezsidmv.dat
[2010.04.13 12:56:04 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_ccdcmb_01005.Wdf
[2010.04.13 01:48:08 | 000,524,288 | -HS- | M] () -- C:\Users\Atze Schmitty\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms
[2010.04.13 01:48:08 | 000,524,288 | -HS- | M] () -- C:\Users\Atze Schmitty\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms
[2010.04.13 01:48:08 | 000,065,536 | -HS- | M] () -- C:\Users\Atze Schmitty\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf
[2010.04.13 00:20:25 | 000,001,831 | ---- | M] () -- C:\Users\Atze Schmitty\Desktop\CCleaner.lnk
[2010.04.12 20:48:30 | 000,001,796 | ---- | M] () -- C:\Users\Atze Schmitty\Desktop\BFBC2.lnk
[2010.04.12 20:47:32 | 000,138,056 | ---- | M] () -- C:\Users\Atze Schmitty\AppData\Roaming\PnkBstrK.sys
[2010.04.12 20:47:16 | 002,434,856 | ---- | M] () -- C:\Windows\System32\pbsvc_bc2.exe
[2010.04.12 19:59:17 | 000,001,005 | ---- | M] () -- C:\Users\Atze Schmitty\Desktop\JDownloader.lnk
[2010.04.12 19:58:43 | 000,149,280 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaws.exe
[2010.04.12 19:58:43 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaw.exe
[2010.04.12 19:58:43 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\System32\java.exe
[2010.04.12 19:58:42 | 000,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\System32\deploytk.dll
[2010.04.12 19:57:58 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK
[2010.04.12 19:52:10 | 000,000,652 | ---- | M] () -- C:\Users\Public\Desktop\Steam.lnk
[2010.04.12 19:44:45 | 000,002,505 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2010.04.12 19:38:28 | 000,001,770 | ---- | M] () -- C:\Users\Public\Desktop\ICQ6.5.lnk
[2010.04.12 19:25:40 | 000,000,840 | ---- | M] () -- C:\Users\Atze Schmitty\Desktop\Alice-Einwahl.lnk
[2010.04.12 19:10:26 | 000,000,020 | -HS- | M] () -- C:\Users\Atze Schmitty\ntuser.ini
[2010.04.12 19:08:05 | 000,171,136 | RHS- | M] () -- C:\w7ldr
[2010.04.12 19:02:41 | 000,057,050 | ---- | M] () -- C:\Windows\System32\license.rtf
[2010.04.12 19:01:44 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin
[2010.04.12 19:01:06 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf

========== Files Created - No Company Name ==========

[2010.05.06 21:26:02 | 000,001,885 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2010.05.06 21:17:05 | 000,731,136 | ---- | C] () -- C:\Users\Atze Schmitty\Desktop\avenger.exe
[2010.05.06 21:06:34 | 000,384,864 | ---- | C] () -- C:\Users\Atze Schmitty\Desktop\Projekt1.jpg
[2010.05.06 19:58:12 | 000,001,895 | ---- | C] () -- C:\Users\Public\Desktop\CDBurnerXP.lnk
[2010.05.06 19:58:10 | 000,007,168 | ---- | C] () -- C:\Windows\System32\drivers\StarOpen.sys
[2010.05.06 19:49:54 | 000,015,880 | ---- | C] () -- C:\Windows\System32\lsdelete.exe
[2010.05.06 19:31:26 | 000,001,108 | ---- | C] () -- C:\Users\Public\Desktop\Ad-Aware.lnk
[2010.05.06 18:42:30 | 000,001,896 | ---- | C] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2010.05.06 18:42:18 | 000,691,696 | ---- | C] () -- C:\Windows\System32\drivers\sptd.sys
[2010.05.06 18:40:52 | 1608,843,264 | ---- | C] () -- C:\Users\Atze Schmitty\Desktop\ATARI2600.ISO
[2010.05.05 19:41:39 | 001,006,525 | ---- | C] () -- C:\Users\Atze Schmitty\DSCI0014.JPG
[2010.05.05 15:54:18 | 000,002,039 | ---- | C] () -- C:\Users\Atze Schmitty\HijackThis.lnk
[2010.05.05 13:35:13 | 000,000,979 | ---- | C] () -- C:\Users\Atze Schmitty\Malwarebytes' Anti-Malware.lnk
[2010.05.04 20:25:26 | 002,785,150 | ---- | C] () -- C:\Users\Atze Schmitty\Die Genauen feat Battle Kuh - Wir.mp3
[2010.05.02 22:35:01 | 735,719,424 | ---- | C] () -- C:\Users\Atze Schmitty\vcf-morgans.avi
[2010.05.01 17:52:53 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2010.05.01 02:29:05 | 1471,647,744 | ---- | C] () -- C:\Users\Atze Schmitty\Die neun Pforten - DVD-Rip German AC3 XviD.avi
[2010.04.30 23:16:04 | 1368,408,064 | ---- | C] () -- C:\Users\Atze Schmitty\Paranormal Activity HD2Xvid-Oxy.avi
[2010.04.30 18:17:12 | 000,149,021 | ---- | C] () -- C:\Users\Atze Schmitty\Projekt2.jpg
[2010.04.28 19:17:21 | 000,001,216 | ---- | C] () -- C:\Users\Atze Schmitty\Spybot - Search & Destroy.lnk
[2010.04.26 23:28:52 | 000,307,698 | ---- | C] () -- C:\Users\Atze Schmitty\Projekt1.jpg
[2010.04.19 17:22:26 | 000,000,193 | ---- | C] () -- C:\Windows\WORDPAD.INI
[2010.04.14 17:07:03 | 000,000,937 | ---- | C] () -- C:\Users\Public\Desktop\Winamp.lnk
[2010.04.13 16:52:37 | 000,000,056 | -H-- | C] () -- C:\Windows\System32\ezsidmv.dat
[2010.04.13 12:56:04 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_ccdcmb_01005.Wdf
[2010.04.13 00:20:25 | 000,001,831 | ---- | C] () -- C:\Users\Atze Schmitty\Desktop\CCleaner.lnk
[2010.04.12 20:49:33 | 000,218,808 | ---- | C] () -- C:\Windows\System32\PnkBstrB.xtr
[2010.04.12 20:48:30 | 000,001,796 | ---- | C] () -- C:\Users\Atze Schmitty\Desktop\BFBC2.lnk
[2010.04.12 20:47:32 | 000,138,056 | ---- | C] () -- C:\Users\Atze Schmitty\AppData\Roaming\PnkBstrK.sys
[2010.04.12 20:47:32 | 000,137,256 | ---- | C] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2010.04.12 20:47:18 | 000,218,808 | ---- | C] () -- C:\Windows\System32\PnkBstrB.exe
[2010.04.12 20:47:16 | 002,434,856 | ---- | C] () -- C:\Windows\System32\pbsvc_bc2.exe
[2010.04.12 20:47:16 | 000,075,064 | ---- | C] () -- C:\Windows\System32\PnkBstrA.exe
[2010.04.12 19:59:17 | 000,001,005 | ---- | C] () -- C:\Users\Atze Schmitty\Desktop\JDownloader.lnk
[2010.04.12 19:57:58 | 000,008,192 | RHS- | C] () -- C:\BOOTSECT.BAK
[2010.04.12 19:57:57 | 000,383,562 | RHS- | C] () -- C:\bootmgr
[2010.04.12 19:52:10 | 000,000,652 | ---- | C] () -- C:\Users\Public\Desktop\Steam.lnk
[2010.04.12 19:44:45 | 000,002,505 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk
[2010.04.12 19:38:28 | 000,001,770 | ---- | C] () -- C:\Users\Public\Desktop\ICQ6.5.lnk
[2010.04.12 19:19:31 | 000,000,840 | ---- | C] () -- C:\Users\Atze Schmitty\Desktop\Alice-Einwahl.lnk
[2010.04.12 19:10:26 | 002,097,152 | -HS- | C] () -- C:\Users\Atze Schmitty\NTUSER.DAT
[2010.04.12 19:10:26 | 000,524,288 | -HS- | C] () -- C:\Users\Atze Schmitty\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms
[2010.04.12 19:10:26 | 000,524,288 | -HS- | C] () -- C:\Users\Atze Schmitty\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms
[2010.04.12 19:10:26 | 000,262,144 | -HS- | C] () -- C:\Users\Atze Schmitty\ntuser.dat.LOG1
[2010.04.12 19:10:26 | 000,065,536 | -HS- | C] () -- C:\Users\Atze Schmitty\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf
[2010.04.12 19:10:26 | 000,000,020 | -HS- | C] () -- C:\Users\Atze Schmitty\ntuser.ini
[2010.04.12 19:10:26 | 000,000,000 | -HS- | C] () -- C:\Users\Atze Schmitty\ntuser.dat.LOG2
[2010.04.12 19:08:05 | 000,171,136 | RHS- | C] () -- C:\w7ldr
[2010.04.12 19:01:44 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2010.04.12 19:01:06 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2010.04.12 18:59:16 | 2201,812,992 | -HS- | C] () -- C:\hiberfil.sys
[2009.07.14 01:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
[2009.07.14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
[2006.11.02 09:27:46 | 000,000,518 | ---- | C] () -- C:\Windows\System32\SP207.INI

========== Alternate Data Streams ==========

@Alternate Data Stream - 304 bytes -> C:\Users\Atze Schmitty\Projekt2.jpg:SummaryInformation
@Alternate Data Stream - 304 bytes -> C:\Users\Atze Schmitty\Projekt1.jpg:SummaryInformation
@Alternate Data Stream - 304 bytes -> C:\Users\Atze Schmitty\DSCI0014.JPG:SummaryInformation
@Alternate Data Stream - 304 bytes -> C:\Users\Atze Schmitty\Desktop\Projekt1.jpg:SummaryInformation
< End of report >

Antwort

Themen zu Browser öffnet sich von selbst mit Werbung
ad-aware, anfang, anti malware, antivir, antivir guard, avg, avira, bho, browser, cdburnerxp, desktop, firefox, hijackthis, icq, internet, internet explorer, malware, messenger, micro, microsoft, mozilla, seiten, software, spy software, system, system32, von selbst, werbung, windows, öffnet



Ähnliche Themen: Browser öffnet sich von selbst mit Werbung


  1. IE öffnet sich ständig selbst - Werbung Internet Explorer
    Log-Analyse und Auswertung - 30.01.2015 (5)
  2. Browser öffnet neue Tabs und schließt sich selbst
    Plagegeister aller Art und deren Bekämpfung - 30.12.2014 (17)
  3. Windows 7: Chrome öffnet sich von selbst und leitet Seiten auf Werbung um
    Log-Analyse und Auswertung - 08.07.2014 (8)
  4. Internetexplorer öffnet sich selbst mit Werbung
    Diskussionsforum - 27.04.2014 (1)
  5. Internet Explorer öffnet sich von selbst und spammt Werbung
    Log-Analyse und Auswertung - 29.04.2013 (12)
  6. Internet Browser Öffnet sich ganz plötzlich von selbst
    Plagegeister aller Art und deren Bekämpfung - 25.11.2012 (2)
  7. Internet Explorer öffnet sich manchmal von selbst ( mit Werbung ) !
    Plagegeister aller Art und deren Bekämpfung - 02.10.2011 (5)
  8. Internet Explorer öffnet sich von selbst und zeigt Werbung an
    Plagegeister aller Art und deren Bekämpfung - 16.02.2011 (8)
  9. Ahoihoi, Inetexplorer öffnet sich alle 10 min von selbst mit sämtlicher werbung
    Log-Analyse und Auswertung - 13.07.2010 (9)
  10. Internet Explorer öffnet sich selbst + Werbung
    Plagegeister aller Art und deren Bekämpfung - 06.07.2010 (4)
  11. Internet Explorer öffnet sich von selbst (Werbung)
    Log-Analyse und Auswertung - 04.05.2010 (5)
  12. Internetexplorer öffnet sich von selbst -> Werbung
    Log-Analyse und Auswertung - 05.02.2010 (1)
  13. IE öffnet sich einfach selbst mit Werbung
    Log-Analyse und Auswertung - 09.12.2009 (6)
  14. IE öffnet sich selbst und zeigt nur Werbung
    Log-Analyse und Auswertung - 05.10.2009 (1)
  15. Internet Explorer öffnet sich von selbst mit Werbung !!!
    Log-Analyse und Auswertung - 07.11.2008 (1)
  16. IE öffnet sich von selbst mit Werbung...
    Log-Analyse und Auswertung - 11.01.2008 (5)
  17. IE - Internet Explorer öffnet sich von selbst mit allerlei Werbung
    Log-Analyse und Auswertung - 20.09.2007 (3)

Zum Thema Browser öffnet sich von selbst mit Werbung - Hallo Leute, habe ein problem. soweit ich mozilla eine weile benutze, öffnen sich immerwieder Tabs mit irgendwelchen Webungen, meistens casino seiten, aber auch komischerweise zb alice oder suzuki, aber sonst - Browser öffnet sich von selbst mit Werbung...
Archiv
Du betrachtest: Browser öffnet sich von selbst mit Werbung auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.