paranetic | 24.01.2008 17:33 | combofix-log: Code:
ComboFix 08-01-23.2 - xxx 2008-01-24 16:33:02.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.49.1031.18.610 [GMT 1:00]
ausgeführt von:: C:\Dokumente und Einstellungen\xxx\Desktop\ComboFix.exe
* Neuer Wiederherstellungspunkt wurde erstellt WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
(((((((((((((((((((((((((((((((((((( Weitere L”schungen ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Microsoft\Network\Downloader\qmgr0.dat
C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Microsoft\Network\Downloader\qmgr1.dat
C:\WINDOWS\regedit.com
C:\WINDOWS\system32\_003531_.tmp.dll
C:\WINDOWS\system32\_003687_.tmp.dll
C:\WINDOWS\system32\_003688_.tmp.dll
C:\WINDOWS\system32\_003689_.tmp.dll
C:\WINDOWS\system32\_003690_.tmp.dll
C:\WINDOWS\system32\driver
C:\WINDOWS\system32\driver\btcusb.inf
C:\WINDOWS\system32\taskmgr.com
----- BITS: Possible infected sites -----
hxxp://gpdl.google.com
.
((((((((((((((((((((((( Dateien erstellt von 2007-12-24 bis 2008-01-24 ))))))))))))))))))))))))))))))
.
2008-01-24 16:38 . 2008-01-24 16:38 5,112 --a------ C:\WINDOWS\GPCIDrv.sys
2008-01-24 16:38 . 2008-01-24 16:38 4 --a------ C:\WINDOWS\system32\GVTunner.ref
2008-01-24 16:38 . 2008-01-24 16:38 4 --a------ C:\WINDOWS\system32\GVGenl.ref
2008-01-24 16:31 . 2000-08-31 08:00 51,200 --a------ C:\WINDOWS\Nircmd.exe
2008-01-22 23:01 . 2008-01-22 23:02 253,952 --a------ C:\WINDOWS\system32\andt.sys
2008-01-21 14:48 . 2008-01-21 14:48 <DIR> d-------- C:\WINDOWS\Blaiz Enterprises
2008-01-19 18:28 . 2008-01-19 18:28 46 --a------ C:\WINDOWS\system32\DonationCoder_urlsnooper_InstallInfo.dat
2008-01-19 18:15 . 2008-01-19 18:28 <DIR> d-------- C:\Programme\WinPcap
2008-01-19 14:01 . 2008-01-19 14:01 <DIR> d-a------ C:\WINDOWS\zts2.exe
2008-01-19 14:01 . 2008-01-19 14:01 <DIR> d-a------ C:\WINDOWS\system32\vcmgcd32.dll
2008-01-19 14:01 . 2008-01-19 14:01 <DIR> d-a------ C:\WINDOWS\system32\iifgfgf.dll
2008-01-19 14:01 . 2008-01-19 14:01 <DIR> d-a------ C:\WINDOWS\rundll16.exe
2008-01-19 14:01 . 2008-01-19 14:01 <DIR> d-a------ C:\WINDOWS\rundl132.dll
2008-01-19 14:01 . 2008-01-19 14:01 <DIR> d-a------ C:\WINDOWS\logo1_.exe
2008-01-19 12:06 . 2008-01-23 16:53 45,056 --a------ C:\WINDOWS\system32\Indt2.sys
2008-01-19 12:03 . 2008-01-19 12:03 253,952 --a------ C:\WINDOWS\system32\ndt2.sys
2008-01-18 21:47 . 2008-01-24 14:10 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2008-01-18 21:47 . 2008-01-18 21:47 1,409 --a------ C:\WINDOWS\QTFont.for
2008-01-18 14:36 . 2008-01-18 14:36 332 --a------ C:\WINDOWS\DEFESMS.HTML
2008-01-18 14:36 . 2008-01-18 14:36 289 --a------ C:\WINDOWS\DEFESMS.VX
2008-01-18 13:23 . 2008-01-24 09:35 4,827 --a------ C:\WINDOWS\escan.dbf
2008-01-18 12:23 . 2008-01-18 12:23 20 --a------ C:\WINDOWS\WIN.PRO
2008-01-18 12:22 . 2008-01-18 12:22 13,816 --a------ C:\WINDOWS\WSSPORD.DAT
2008-01-18 12:21 . 2008-01-24 16:37 7,503,904 --ahs---- C:\WINDOWS\system32\drivers\fidbox.dat
2008-01-18 12:21 . 2008-01-24 16:36 97,268 --ahs---- C:\WINDOWS\system32\drivers\fidbox.idx
2008-01-18 12:10 . 2008-01-18 12:11 7,009,412 --a------ C:\WINDOWS\REGBK03.ZIP
2008-01-18 11:54 . 2007-12-10 16:00 413 --a------ C:\bootini.ins
2008-01-18 11:52 . 2007-07-12 19:32 509,952 --a------ C:\WINDOWS\system32\eInstall.exe
2008-01-18 11:51 . 2008-01-18 11:51 <DIR> d-------- C:\WINDOWS\system32\ES_SETUP
2008-01-18 11:51 . 2008-01-18 11:53 <DIR> d-------- C:\AVPDOS
2008-01-18 11:51 . 2002-12-18 17:58 32,768 --a------ C:\WINDOWS\system32\esmxlog.dll
2008-01-15 20:12 . 2008-01-15 20:12 <DIR> d-------- C:\Programme\Gemeinsame Dateien\Skype
2008-01-15 20:09 . 2008-01-15 20:09 <DIR> d-------- C:\Programme\Windows Installer Clean Up
2008-01-14 18:42 . 2008-01-14 18:42 413,696 --a------ C:\WINDOWS\system32\wrap_oal.dll
2008-01-14 18:42 . 2008-01-14 18:42 110,592 --a------ C:\WINDOWS\system32\OpenAL32.dll
2008-01-02 15:00 . 2007-06-13 14:10 1,036,288 -----c--- C:\WINDOWS\system32\dllcache\explorer.exe
2008-01-02 14:35 . 2007-10-11 00:46 6,065,664 -----c--- C:\WINDOWS\system32\dllcache\ieframe.dll
2008-01-02 14:35 . 2007-07-01 04:31 2,455,488 -----c--- C:\WINDOWS\system32\dllcache\ieapfltr.dat
2008-01-02 14:35 . 2007-07-01 04:36 1,040,384 -----c--- C:\WINDOWS\system32\dllcache\ieframe.dll.mui
2008-01-02 14:35 . 2007-10-11 00:46 459,264 -----c--- C:\WINDOWS\system32\dllcache\msfeeds.dll
2008-01-02 14:35 . 2007-06-27 15:04 383,488 -----c--- C:\WINDOWS\system32\dllcache\ieapfltr.dll
2008-01-02 14:35 . 2007-10-11 00:46 267,776 -----c--- C:\WINDOWS\system32\dllcache\iertutil.dll
2008-01-02 14:35 . 2007-10-11 00:46 63,488 -----c--- C:\WINDOWS\system32\dllcache\icardie.dll
2008-01-02 14:35 . 2007-10-11 00:46 52,224 -----c--- C:\WINDOWS\system32\dllcache\msfeedsbs.dll
2008-01-02 14:35 . 2007-10-10 11:59 13,824 -----c--- C:\WINDOWS\system32\dllcache\ieudinit.exe
2008-01-02 08:57 . 2008-01-02 08:57 40 --a------ C:\WINDOWS\system32\drmgs.sys
2008-01-02 08:55 . 2008-01-02 08:55 <DIR> d-------- C:\WINDOWS\WinAVI Video Converter 9.0
2007-12-31 11:38 . 2007-12-31 11:38 359,808 --a------ C:\WINDOWS\system32\drivers\TCPIP.SYS.ORIGINAL
2007-12-30 18:55 . 2007-12-30 18:55 <DIR> d-------- C:\Programme\Gemeinsame Dateien\Blizzard Entertainment
.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-01-24 15:38 17,962 ----a-w C:\WINDOWS\system32\drivers\GVTDrv.sys
2008-01-18 10:53 --------- d-----w C:\Programme\Gemeinsame Dateien\MicroWorld
2008-01-15 19:09 --------- d-----w C:\Programme\MSECACHE
2008-01-14 17:52 107,888 ----a-w C:\WINDOWS\system32\CmdLineExt.dll
2008-01-14 17:42 --------- d-----w C:\Programme\OpenAL
2007-12-31 10:38 359,808 ----a-w C:\WINDOWS\system32\drivers\TCPIP.SYS
2007-12-20 07:33 --------- d-----w C:\Programme\Spyware Doctor
2007-12-14 19:57 449 ----a-w C:\Programme\INSTALL.LOG
2007-12-11 22:34 200,704 -c--a-w C:\WINDOWS\system32\ssldivx.dll
2007-12-11 22:34 1,044,480 -c--a-w C:\WINDOWS\system32\libdivx.dll
2007-12-09 16:27 --------- d-----w C:\Programme\Apple Software Update
2007-12-05 22:21 --------- d--h--w C:\Programme\InstallShield Installation Information
2007-11-25 12:01 0 ---ha-w C:\WINDOWS\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2007-11-25 12:01 0 ---ha-w C:\WINDOWS\system32\drivers\Msft_Kernel_ggsemc_01005.Wdf
2007-11-25 11:57 20,520 ----a-w C:\WINDOWS\system32\drivers\ggsemc.sys
2007-11-25 11:57 13,352 ----a-w C:\WINDOWS\system32\drivers\ggflt.sys
2007-11-25 11:57 1,419,232 ----a-w C:\WINDOWS\system32\wdfcoinstaller01005.dll
2007-11-25 11:55 --------- d-----w C:\Programme\Gemeinsame Dateien\Teleca Shared
2007-11-25 10:46 --------- d-----w C:\Programme\Gemeinsame Dateien\Tobit
2007-11-14 22:30 103,736 ----a-w C:\WINDOWS\system32\PnkBstrB.exe
2007-11-14 22:19 66,872 ----a-w C:\WINDOWS\system32\PnkBstrA.exe
2007-10-29 22:42 1,293,312 ----a-w C:\WINDOWS\system32\quartz.dll
2007-10-25 08:28 222,720 ----a-w C:\WINDOWS\system32\wmasf.dll
2006-05-03 09:06 163,328 --sh--r C:\WINDOWS\system32\flvDX.dll
2007-02-21 10:47 31,232 --sh--r C:\WINDOWS\system32\msfDX.dll
.
(((((((((((((((((((((((((((( Autostart Punkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Hinweis* leere Eintrage & legitime Standardeintrage werden nicht angezeigt.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WallPaper"="G:\WALLPA~1\WALLPA~1.exe" [2001-06-10 17:28 246272]
"EssentialPIM Pro"="G:\EssentialPIM\EssentialPIM.exe" [2007-10-02 14:16 3307901]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-03 23:57 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"="SOUNDMAN.EXE" [2005-06-20 20:42 77824 C:\WINDOWS\soundman.exe]
"LogitechVideoRepair"="C:\Programme\Logitech\Video\ISStart.exe" [2005-06-08 14:24 458752]
"LogitechVideoTray"="C:\Programme\Logitech\Video\LogiTray.exe" [2005-06-08 14:14 217088]
"LVCOMS"="C:\Programme\Gemeinsame Dateien\Logitech\QCDriver3\LVCOMS.EXE" [2002-12-10 16:54 127022]
"PTBSync"="G:\PTBSync\PTBSync.exe" [2006-11-07 19:15 321536]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-09-17 01:07 8491008]
"FinePrint Dispatcher v5"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\fpdisp5a.exe" [2005-05-31 22:23 483328]
"VGAUtil"="C:\Programme\GigaByte\VGA Utility Manager\G-VGA.exe" [2007-08-23 09:09 544768]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2007-09-17 01:07 81920]
"avgnt"="G:\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2007-12-15 21:29 249896]
"SunJavaUpdateSched"="G:\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11 132496]
"eScan Updater"="g:\eScan\TRAYICOS.exe" [2007-08-04 19:20 1305600]
"eScan Server"="g:\eScan\ESERV.exe" [2007-08-13 17:58 1799680]
"MailScan Dispatcher"="g:\eScan\LAUNCH.EXE" [2007-08-06 20:58 163840]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-03 23:57 15360]
"Picasa Media Detector"="G:\Picasa2\PicasaMediaDetector.exe" [2007-09-28 02:17 443968]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"SynchronousMachineGroupPolicy"= 0 (0x0)
"SynchronousUserGroupPolicy"= 0 (0x0)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoSMMyDocs"= 01000000
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"= g:\outpos~1\g:\outpos~1\wl_hook.dll
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Notification Packages REG_MULTI_SZ scecli scecli
[HKLM\~\startupfolder\C:^Dokumente und Einstellungen^All Users^Startmenü^Programme^Autostart^Adobe Acrobat - Schnellstart.lnk]
backup=C:\WINDOWS\pss\Adobe Acrobat - Schnellstart.lnkCommon Startup
[HKLM\~\startupfolder\C:^Dokumente und Einstellungen^All Users^Startmenü^Programme^Autostart^Adobe Reader - Schnellstart.lnk]
backup=C:\WINDOWS\pss\Adobe Reader - Schnellstart.lnkCommon Startup
[HKLM\~\startupfolder\C:^Dokumente und Einstellungen^All Users^Startmenü^Programme^Autostart^Google Updater.lnk]
path=C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\Google Updater.lnk
backup=C:\WINDOWS\pss\Google Updater.lnkCommon Startup
[HKLM\~\startupfolder\C:^Dokumente und Einstellungen^All Users^Startmenü^Programme^Autostart^OnlineControl.lnk]
path=C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\OnlineControl.lnk
backup=C:\WINDOWS\pss\OnlineControl.lnkCommon Startup
[HKLM\~\startupfolder\C:^Dokumente und Einstellungen^xxx^Startmenü^Programme^Autostart^WISO Bewerbung 2007 Reminder.lnk]
backup=C:\WINDOWS\pss\WISO Bewerbung 2007 Reminder.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
--a--c--- 2006-06-01 12:32 94208 C:\Programme\Gemeinsame Dateien\Ahead\Lib\NMBgMonitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CloneCDTray]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Creative Detector]
--------- 2004-12-02 18:23 102400 G:\Creative\MediaSource\Detector\CTDetect.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools]
--a------ 2007-04-03 23:29 165784 G:\DAEMON Tools\daemon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Device Detection]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EssentialPIM]
--a------ 2007-10-02 14:16 3307901 G:\EssentialPIM\EssentialPIM.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FileZilla Server Interface]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ Lite]
G:\ICQ5\ICQLite.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM]
--a------ 2006-09-10 21:56 218032 C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\isuspm.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup]
--a------ 2006-09-10 21:56 218032 C:\PROGRA~1\GEMEIN~1\INSTAL~1\UPDATE~1\isuspm.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\kgsystray]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
--a--c--- 2006-01-12 15:40 155648 C:\Programme\Gemeinsame Dateien\Ahead\Lib\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDFPrint]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
--a------ 2007-10-19 20:16 286720 G:\QuickTime\QTTask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Resume copy]
--a--c--- 2007-01-04 22:21 73728 C:\WINDOWS\copyfstq.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SmartSync - ScheduleSync]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Ulead AutoDetector]
--a--c--- 2005-05-23 08:57 90112 C:\Programme\Gemeinsame Dateien\Ulead Systems\AutoDetector\Monitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Ulead Calendar Checker]
--a------ 2005-08-22 09:10 69632 G:\Ulead Photo Express 6\CalCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UVS10 Preload]
--------- 2006-03-07 00:52 36864 g:\Ulead VideoStudio 10\uvPL.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VC8Player]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WengoPhoneNG]
G:\WengoPhone\qtwengophone.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"LogitechSoftwareUpdate"=C:\Programme\Logitech\Video\ManifestEngine.exe boot
"Skype"="C:\Programme\Skype\Phone\Skype.exe" /nosplash /minimized
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"ISUSPM Startup"=C:\PROGRA~1\GEMEIN~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
"ISUSScheduler"="C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch.exe" -start
"LogitechGalleryRepair"=G:\Logitech\ImageStudio\ISStart.exe
"LogitechImageStudioTray"=G:\Logitech\ImageStudio\LogiTray.exe
"LVCOMSX"=C:\WINDOWS\system32\LVCOMSX.EXE
"NvCplDaemon"=RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
"NvMediaCenter"=RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
"NVRTCLK"=C:\WINDOWS\System32\NVRTCLK\NVRTClk.exe
"nwiz"=nwiz.exe /install
"Acrobat Assistant 7.0"="G:\Acrobat 7.0\Distillr\Acrotray.exe"
R1 oreans32;oreans32;C:\WINDOWS\system32\drivers\oreans32.sys [2006-10-24 22:23]
R1 SSHDRV82;SSHDRV82;C:\WINDOWS\system32\drivers\SSHDRV82.sys [2007-05-12 06:46]
R2 ACEDRV06;ACEDRV06;C:\WINDOWS\system32\drivers\ACEDRV06.sys [2007-07-24 06:58]
R2 eScan-eServ;eScan Management-Console;g:\eScan\TRAYESER.EXE [2007-08-06 20:52]
R2 eScan-trayicos;eScan Server-Updater;g:\eScan\TRAYSSER.EXE [2007-08-06 20:53]
R2 PortTalk;PortTalk;C:\WINDOWS\system32\Drivers\PtbTalk.sys [2006-11-07 19:15]
R2 vnccom;vnccom;C:\WINDOWS\system32\Drivers\vnccom.SYS [2004-06-26 13:22]
R3 GPCIDrv;GPCIDrv;C:\WINDOWS\GPCIDrv.sys [2008-01-24 16:38]
R3 GVTDrv;GVTDrv;C:\WINDOWS\system32\Drivers\GVTDrv.sys [2008-01-24 16:38]
R3 vncdrv;vncdrv;C:\WINDOWS\system32\DRIVERS\vncdrv.sys [2004-06-26 13:22]
S2 perfmons;perfmons Service;C:\WINDOWS\system32\perfs.exe []
S2 Routing;Routing Service;C:\WINDOWS\system32\routing.exe []
S3 BTNetFilter;Bluetooth Network Filter;C:\WINDOWS\system32\drivers\BTNetFilter.sys [2004-12-16 15:32]
S3 FWLANUSB;AVM FRITZ!WLAN;C:\WINDOWS\system32\DRIVERS\fwlanusb.sys [2006-02-23 16:16]
S3 ggflt;SEMC USB Flash Driver Filter;C:\WINDOWS\system32\DRIVERS\ggflt.sys [2007-11-25 12:57]
S3 GVCplDrv;GVCplDrv;C:\WINDOWS\system32\drivers\GVCplDrv.sys [2004-05-02 09:47]
S3 NETMDSHA;MDSHA031;C:\WINDOWS\system32\Drivers\MDSHA031.sys [2003-05-19 09:05]
S3 NPF;NetGroup Packet Filter Driver;C:\WINDOWS\system32\drivers\npf.sys [2005-08-02 22:10]
*Newly Created Service* - GPCIDRV
.
Inhalt des "geplante Tasks" Ordners
"2008-01-11 16:15:00 C:\WINDOWS\Tasks\1-Click Maintenance.job"
- G:\TuneUp Utilities 2007\SystemOptimizer.exe
"2008-01-19 15:29:10 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Programme\Apple Software Update\SoftwareUpdate.exe
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-01-24 16:39:05
Windows 5.1.2600 Service Pack 2 NTFS
Scanne versteckte Prozesse...
Scanne versteckte Autostart Eintr„ge...
Scanne versteckte Dateien...
Scan erfolgreich abgeschlossen
versteckte Dateien: 0
**************************************************************************
. |