Saturday

Symantec virus search

. Trouble spirit of all kinds and their Bek?fung. are completely again here and can?r Google to nothing?r the TR/Sniffer.2 find and like one it eliminated. Property to be only read, da?die Sniffer also from Spyware programs not be discovered and not removed. Anti-virus installed and after the message l?hen PE clicked. Afterwards no more message came?r this Trojaner, but that was not hei?n, da?ich it is the matter. Someone had already times this Trojaner and successfully eliminated. W?sch? if me someone help k?te. Poste asks a Hijackthis log and makes an it CAN has Escan after instruction made and there became the following Meldung.1 - your version should up-to-date sein.2180) - your version should up-to-date sein.exe - this entry became of our visitors as well eingestuft.exe - system process - Client server Runtime.exe - this entry became of our visitors as well eingestuft.exe - this entry became of our visitors as well eingestuft.exe - this entry became of our visitors as well eingestuft.exe - this entry became of our visitors as well eingestuft.exe - this entry became of our visitors as well eingestuft.exe - this entry became of our visitors as well eingestuft.exe - this entry became of our visitors as well eingestuft.exe - this Entry became of our visitors as well eingestuft.exe - this entry was classified of our visitors as good. [ Y ] C:\Programme\AntiVir personnel edition Classic\sched.exe - this entry was classified of our visitors as good. [ AVSCAN ] C:\Programme\AntiVir personnel edition Classic\avguard.exe - this entry became of our visitors as well eingestuft.exe - this entry became schä.dlich of our visitors as well eingestuft.exe - this entry became of our visitors as well eingestuft.EXE - possible. According to our data base this process l?t nomalerweise in c:\archiv~1\escan \.?erpr?n you whether you know the file and f?en you ggf.EXE - this entry became of our visitors as well eingestuft.exe - possible schä.dlich. According to our data base this process nomalerweise in c:\programme\kaspersky lab\kaspersky anti-virus for workstation l?t \.?erpr?n you whether you know the file and f?en you if necessary [ Y ] C:\Programme\Gemeinsame Dateien\LightScribe\LSSrvc.exe - this entry was classified of our visitors as good. [ Y ] C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7Debug\mdm. [ Y ] C:\Programme\Gemeinsame Dateien\MicroWorld\Agent\MWASER.EXE - this entry was classified of our visitors as good. [ Y ] C:\Programme\Gemeinsame Dateien\MicroWorld\Agent\MWAgent.exe - not gef?lich however unnö.tig. This entry became of our visitors as well eingestuft.exe - this entry became of our visitors as well eingestuft.exe - this entry became of our visitors as well eingestuft.exe - this is an unknown quantity process. This entry became of our visitors as well eingestuft.EXE - this entry was classified of our visitors as good. [ Y ] C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch.exe - Install Shield software Update.exe - this is an unknown quantity process. This entry became schä.dlich of our visitors as well eingestuft.exe - possible. According to our data base this process l?t nomalerweise in c:\programme\scansoft\paperp~1 \.?erpr?n you whether you know the file and f?en you if necessary this entry became of our visitors as well eingestuft.exe - this entry was classified of our visitors as good. [ AVSCAN ] C:\Programme\AntiVir personnel edition Classic\avgnt.exe - this entry was classified of our visitors as good. [ Y ] C:\Programme\Gemeinsame Dateien\Microsoft Shared\Works Shared\WkUFind.EXE - possible schä.dlich. According to our data base this process l?t nomalerweise in c:\archiv~1\escan \.?erpr?n you whether you know the file and f?en you ggf.EXE - possible schä.dlich. According to our data base this process l?t nomalerweise in c:\archiv~1\escan \.?erpr?n you whether you know the file and f?en you ggf.exe - this entry became of our visitors as well eingestuft.EXE - possible schä.dlich. According to our data base this process l?t nomalerweise in c:\archiv~1\escan \.?erpr?n you whether you know the file and f?en you ggf.EXE - possible schä.dlich. According to our data base this process l?t nomalerweise in c:\archiv~1\escan \.?erpr?n you whether you know the file and f?en you if necessary [ Y ] C:\Programme\Gemeinsame Dateien\Ahead\Lib\NMBgMonitor.EXE - possible schä.dlich. According to our data base this process l?t nomalerweise in c:\archiv~1\escan \.?erpr?n you whether you know the file and f?en you ggf.exe - possible schä.dlich. According to our data base this process nomalerweise l?t into c:\bases_x \.?erpr?n you whether you know the file and f?en you ggf.exe - automatic offering software, their employment against the AGB of eBay versto?n.exe - possible schä.dlich. According to our data base this process nomalerweise in c:\programme\kaspersky lab\kaspersky anti-virus for workstation l?t \.?erpr?n you whether you know the file and f?en you if necessary [ Y ] C:\Programme\Gemeinsame Dateien\Microsoft Shared\Works Shared\wkcalrem. [ Y ] C:\Programme\Gemeinsame Dateien\Ahead\Lib\NMIndexStoreSvr.exe - this entry was classified of our visitors as good. [ Y ] C:\Programme\CASIO\Photo Loader\Plauto.exe - this entry was classified of our visitors as good. [ Y ] C:\Programme\Telefonauskunft f?den PC\Telefonauskunft f?den PC 2005\KSTART32.EXE - possible schä.dlich. According to our data base this process l?t nomalerweise in c:\programme\klicktel\klicktel autumn 2005 \.?erpr?n you whether you know the file and f?en you ggf.exe - this entry became of our visitors as well eingestuft.exe -?erfl?iger Windows service, if you do not use ICS. This entry became of our visitors as well eingestuft.exe - this entry was classified of our visitors as good. [ Y ] C:\Dokumente and Einstellungen\Gabriele Br?ner\Eigene Dateien\Downloadordner\HijackThis.exe - doubt it that HijackThis must run in its own file. Backups kö.nnen only in such a way to be provided. Tool, with which they produced this log file. The program should be so put on. [ Y ] G 1 - HKCU\Software\Microsoft\Internet Explorer\Main, search bar = - this side was identified as good. [ Y ] R0 - HKCU\Software\Microsoft\Internet Explorer\Main, start PAGE = - this side was identified as good. Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Programme\Yahoo. [ Y ] CO2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 5.dll - Adobe Acrobat reader. [ Y ] CO2 - BHO: eBay Toolbar Helper - {22D8E815-4A5E-4DFB-845E-AAB64207F5BD} - C:\Programme\eBay\eBay Toolbar2\eBayTB. [ Y ] CO2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~1\tools\iesdsg. [ Y ] CO2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1.dll - this entry was classified of our visitors as good. [ Y ] CO2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Programme\MSN Apps\ST\01. [ Y ] CO2 - BHO: PCTools Browser monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb. [ Y ] CO2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\MSN Apps\MSN Toolbar\01. [ Y ] O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Programme\eBay\eBay Toolbar2\eBayTB. [ Y ] O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\MSN Apps\MSN Toolbar\01.dll - MSN Toolbar,: [ ehTray ] C:\WINDOWS\ehome\ehtray.exe - eHome Media center PC related - what does it DO and is it required.\Run: [ SunJavaUpdateSched ] "C:\Programme\Java\jre1.exe - this entry became of our visitors as well eingestuft.EXE - this entry was classified of our visitors as good. This entry became of our visitors as well classifying DLL, NvStartup - not well-known program. This entry became of our visitors as well eingestuft.exe /install - this entry became from our visitors as good eingestuft.\Run: [ PinnacleDriverCheck ] C:\WINDOWS\system32\PSDrvCheck.exe CheckReg - part OF Pinnacle of system InstantCD/DVD and InstantCopy CD/DVD copying software that verifies drive settings. Once loaded it doesn\'t use any resources so you CAN leave it enabled.\Run: [ ISUSPM Startup ] "C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\isuspm.exe" startup - not gef?lich however unnö.tig. InstallShield update service related. Automatically of searches for and by form any update ton the software.\Run: [ ISUSScheduler ] "C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch.exe" start - not gef?lich however unnö.tig.\Run: [ SSBkgdUpdate ] "C:\Programme\Gemeinsame Dateien\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.\Run: [ PAPER haven PTD ] C:\Programme\ScanSoft\PaperPort\pptd40nt.exe - not gef?lich however unnö.tig. "PAPER haven" software associated with scanners.\Run: [ index search ] C:\Programme\ScanSoft\PaperPort\IndexSearch.exe - not gef?lich however unnö.tig. Associated with PAPER haven scanner software from ScanSoft.exe /autorun - not gef?lich however unnö.tig. Bread ago scanner ' control center ' application. CAN started manually.\Run: [ WinampAgent ] C:\Programme\Winamp\winampa.exe - this entry became from our visitors as good eingestuft.\Run: [ avgnt ] "C:\Programme\AntiVir personnel edition Classic\avgnt.exe" /min - this entry became from our visitors as good eingestuft.\Run: [ Microsoft Works update Detection ] C:\Programme\Gemeinsame Dateien\Microsoft Shared\Works Shared\WkUFind.\Run: [ NeroFilterCheck ] C:\Programme\Gemeinsame Dateien\Ahead\Lib\NeroCheck.exe - Associated with ".Nero Burning Rom". CD writing software.\Run: [ spywarefighterguard ] C:\Programme\SPYWAREfighter\spftray.\Run: [ May LS CAN dispatcher ] "C:\Base\eScan\LAUNCH.EXE" - May LS CAN dispatcher splits each email message into various components look for as the header.\Run: [ it CAN Updater ] C:\Base\eScan\TRAYICOS.EXE /App - it CAN anti-virus more updater - allows users tons automatically down load update and set the car time interval for downloads.\Run: [ it CAN monitor ] C:\Base\eScan\AVPMWrap.exe - this entry became from our visitors as good eingestuft.\Run: [ IncrediMail ] C:\Programme\IncrediMail\bin\IncMail. Allows you tons more measuringclosely send instant messages.\Run: [ Spyware Doctor ] "C:\Programme\Spyware Doctor\swdoctor.exe" /Q - Spyware Doctor spyware remover.\Run: [ BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} ] "C:\Programme\Gemeinsame Dateien\Ahead\Lib\NMBgMonitor.exe" - this entry became of our visitors /minimize - Paragon load as well eingestuft.exe ] C:\PROGRA~1\Paragon\LASTMI~1\plmg.exe minute of Bidder - auction software assistant. - the entry is unnö.tig and can be removed. [ Y ] O4 - Global Startup: Adobe gamma Loader.lnk = C:\Programme\Gemeinsame Dateien\Adobe\Calibration\Adobe gamma Loader.exe - Adjusts monitor colours across all programs [ Y ] O4 - global Startup: Memories in Microsoft Works calendar. - the entry is unnö.tig and can be removed. [ Y ] O4 - Global Startup: Photo Loader resident.lnk = C:\Programme\CASIO\Photo Loader\Plauto.exe - not gef?lich however unnö.tig. Hook UP your camera ton the USB port.lnk = C:\Programme\Brother\Brmfcmon\BrMfcWnd.exe - not gef?lich however unnö.tig. Bread ago scanner status monitor - CAN started manually [ Y ] O8 - extra context menu item: &eBay search - Toolbar2\eBayTb.html - which became entry &eBay search as property recognized. ] O8 - Specially menu item context: Article hinzuf?n - - if the entry ' article hinzuf?n ' does not admit is, fixes. Unknown Eintr? in the ' right click Men?des IE always with HijackThis fix. [ Y ] O8 - Specially menu item context: To Microsoft &Excel export - - the entry to Microsoft &Excel to export as property one recognized. [ Y ] O8 - Specially menu item context: ?fnen with WordPerfect - C:\Programme\WordPerfect Office X3\Programs\WPLauncher.hta - which entry?fnen with WordPerfect became as property recognized. [ Y ] O9 - Specially button: (NO name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.dll - which became entry as property recognized. [ Y ] O9 - Specially ' Tools ' menuitem: Sun Java console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.dll - which became entry Sun Java console as property recognized. [ Y ] O9 - Specially button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll - which became entry Spyware Doctor as property recognized. [ Y ] O9 - Specially button: Article hinzuf?n - {866875B8-9855-48f8-BAAB-8002C325BE69} - C:\Programme\Paragon\Last minute of Gebot\plmg.exe - this entry was classified of our visitors as good. [ Y ] O9 - Specially ' Tools ' menuitem: Article hinzuf?n - {866875B8-9855-48f8-BAAB-8002C325BE69} - C:\Programme\Paragon\Last minute of Gebot\plmg.exe - which became entry article hinzuf?n as property recognized. [ Y ] O9 - Specially button: Investigates - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL - which became entry investigating as property recognized. Than property one recognized more measuringclosely. Than property one recognized more measuringclosely. [ Y ] O9 - Specially button: More measuringclosely - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe - which became entry of measuringclose as property recognized. [ Y ] O9 - Specially ' Tools ' menuitem: Windows of measuringclose - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe - this entry was classified of our visitors as good. [ Y ] O10 - Unknown file in Winsock LSP: c:\windows\system32\mwtsp.dll - Entry should be good. This Eintr? should not be gelö.scht manually. Best Mö.glichkeit to the repair offers LSPFix of Cexx. [ Y ] O10 - Unknown file in Winsock LSP: c:\windows\system32\mwtsp.dll - Entry should be good. This Eintr? should not be gelö.scht manually. Best Mö.glichkeit to the repair offers LSPFix of Cexx. [ Y ] O10 - Unknown file in Winsock LSP: c:\windows\system32\mwtsp.dll - Entry should be good. This Eintr? should not be gelö.scht manually. Best Mö.glichkeit to the repair offers LSPFix of Cexx.spop: C:\Programme\Internet Explorer\Plugins\NPDocBox.dll - most Eintr? in this section are safe. Only OnFlow f? here a unerw?chtes Plugin. OnFlow Plugins have the extension *. [ Y ] O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec anti-virus scanner) - - this entry was identified as good. [ Y ] O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec call SI utility Class) - - this entry was classified of our visitors as good. [ Y ] O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll - this entry was classified of our visitors as good. [ Y ] O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll - this entry was classified of our visitors as good. [ Y ] O23 - Service: Adobe Active file monitor (AdobeActiveFileMonitor) - Unknown more owner - C:\Programme\Adobe\Photoshop of element 3.exe) was identified as good. [ Y ] O23 - Service: AntiVir personnel edition Classic planner (AntiVirScheduler) - Avira GmbH - C:\Programme\AntiVir personnel edition Classic\sched.exe) was identified as good. This entry was classified of our visitors as good. [ AVSCAN ] O23 - Service: AntiVir personnel edition Classic Guard (AntiVirService) - AVIRA GmbH - C:\Programme\AntiVir personnel edition Classic\avguard.exe) was identified as good. This entry was classified of our visitors as good. [ Y ] O23 - Service: Bread ago Popup Suspend service for resource manager (brmfrmps) - Unknown more owner - C:\WINDOWS\system32\Brmfrmps.exe "service (file MISSING) - this service (Brmfrmps.exe) was identified as good. This entry was classified of our visitors as good. [ Y ] O23 - Service: BrSplService (bread ago XP spl service) - Industries Ltd. - C:\WINDOWS\system32\brsvc01a.exe) was identified as good. [ Y ] O23 - Service: it CAN server Updater (eScan trayicos) - MicroWorld Technologies Inc.EXE) was identified as good. [ Y ] O23 - Service: Google Updater service (gusvc) - Google - C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe) was identified as good. [ Y ] O23 - Service: InstallDriver Table manager (IDriverT) - macro vision corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe) was identified as good. [ AVSCAN ] O23 - Service: it CAN monitor service (KAVMonitorService) - Kaspersky Labs.exe) was identified as good. [ Y ] O23 - Service: LightScribeService Direct Disc Labeling service (LightScribeService) - HEWLETT-PACKARD company - C:\Programme\Gemeinsame Dateien\LightScribe\LSSrvc.exe) was identified as good. [ Y ] O23 - Service: MWAgent - MicroWorld Technologies Inc.. - C:\Programme\Gemeinsame Dateien\MicroWorld\Agent\MWASER.EXE) was identified as good. This entry was classified of our visitors as good. [ Y ] O23 - Service: NBService - Nero AG - C:\Programme\Nero\Nero 7\Nero BackItUp\NBService.exe) was identified as good. This entry was classified of our visitors as good. [ Y ] O23 - Service: NVIDIA display Driver service (NVSvc) - NVIDIA corporation - C:\WINDOWS\system32\nvsvc32.exe) was identified as good. This entry was classified of our visitors as good. [ Y ] O23 - Service: Photoshop of element DEVICE Connect (PhotoshopElementsDeviceConnect) - Unknown more owner - C:\Programme\Adobe\Photoshop of element 3.exe) was identified as good. [ Y ] O23 - Service: SPYWAREfighterRP - SpamFighter APS - C:\Programme\SPYWAREfighter\spfprc.exe) was identified as good. [ Y ] O23 - Service: X10 DEVICE network service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe) was identified as good. I cannot begin with the whole Eintr?n anything, I hope you can es.Poste please the results escans in form find.W? it more simply if you the normal HJT log file post w?est, and not the on-line evaluation. Hello, which you mean with find. Under searches on C: \ is not found and which log file is I posts before he on the Website is evaluated. You times please the guidance reads to it CAN WHOLE DETAILS. Vintages if for you here someone forms to help is then must you that to hearts take itself I has a play by email of the acquaintance to get yesterday. Since then I clicked there drauf, make my PC strange things. The WebCam switches off more?er one in, then again. With the virus search this Trojaner was then found. Times the part run let and thus this log file to get. C:\Programme\AntiVir personnel edition Classic\sched. C:\Programme\AntiVir personnel edition Classic\avguard. C:\Programme\Intel\Intel Application Accelerator\iaantmon. C:\Programme\Cyberlink\Shared files\RichVideo. C:\Programme\ATI Technologies\ATI control Panel\atiptaxx. C:\Programme\Intel\Intel Application Accelerator\iaanotif. C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch. C:\Programme\AntiVir personnel edition Classic\avgnt. C:\Programme\Gemeinsame Dateien\Ulead Systems\AutoDetector\monitor. D:\GMX\GMX SMS Manager\SMSMngr. C:\DOKUME~1\Home\LOKALE~1\Temp\Adobelm_Cleanup. C:\Programme\Gemeinsame Dateien\Adobe of system Shared\Service\Adobelmsvc. C:\DOKUME~1\Home\LOKALE~1\Temp\Adobelm_Cleanup. C:\Programme\AntiVir personnel edition Classic\avscan. G 1 - HKCU\Software\Microsoft\Internet Explorer\Main, search bar = h **. g 1 - HKCU\Software\Microsoft\Internet Explorer\Main, search PAGE = h **. R0 - HKCU\Software\Microsoft\Internet Explorer\Main, start PAGE = h **. g 1 - HKLM\Software\Microsoft\Internet Explorer\Main, Default_Page_URL =. g 1 - HKLM\Software\Microsoft\Internet Explorer\Main, Default_Search_URL =. g 1 - HKLM\Software\Microsoft\Internet Explorer\Main, search PAGE = h **. R0 - HKLM\Software\Microsoft\Internet Explorer\Main, start PAGE = h **. g 1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings, ProxyOverride = *. CO2 - BHO: MyWebSearch search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} -. CO2 - BHO: Adobe pdf reader left Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Adobe\Adobe Acrobat. CO2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Programme\MyWebSearch\bar\2. CO2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\PROGRA~1\MACROG~1\SWEETI~1\toolbar. CO2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - D:\FlashGet\jccatch. CO2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1. CO2 - BHO: Adobe pdf Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - D:\Adobe\Adobe Acrobat. CO2 - BHO: FlashGet GetFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - D:\FlashGet\getflash. C:\Programme\Canon\Easy WebPrint\Toolband. O3 - Toolbar: Adobe pdf - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - D:\Adobe\Adobe Acrobat. O3 - Toolbar: SweetIM For InterNet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938}.\Run: [ SunJavaUpdateSched ] "C:\Programme\Java\jre1.\Run: [ ATIPTA ] C:\Programme\ATI Technologies\ATI control Panel\atiptaxx.\Run: [ IAAnotif ] C:\Programme\Intel\Intel Application Accelerator\iaanotif.\Run: [ CloneCDTray ] "D:\SlySoft\CloneCD\CloneCDTray.\Run: [ VirtualCloneDrive ] "D:\Slysoft\VirtualCloneDrive\VCDDaemon.\Run: [ NeroFilterCheck ] C:\Programme\Gemeinsame Dateien\Ahead\Lib\NeroCheck.\Run: [ ISUSPM Startup ] C:\PROGRA~1\GEMEIN~1\INSTAL~1\UPDATE~1\ISUSPM.\Run: [ ISUSScheduler ] "C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch.\Run: [ CorelDRAW Graphics Suite 11b ] D:\Corel\Corel Graphics 12\Languages\DE\Programs\Registration. /title="CorelDRAW Graphics Suite 12" /date=070607 serial=DR12WRJ-1875116-MUU lang=DE.\Run: [ remote control ] D:\CyberLink\PowerDVD\PDVDServ.\Run: [ LANGUAGE stronghold CUT ] D:\CyberLink\PowerDVD\Language\Language.\Run: [ Win_key ] C:\WINDOWS\system32\Winlogon.\Run: [ avgnt ] "C:\Programme\AntiVir personnel edition Classic\avgnt.\Run: [ QuickTime task ] "D:\QuickTime\qttask.\Run: [ KernelFaultCheck ] %systemroot%\system32\dumprep 0 k.\Run: [ MyWebSearch email Plugin ] C:\PROGRA~1\MYWEBS~1\bar\2.\Run: [ My Web search bar search Scope monitor ] "C:\PROGRA~1\MYWEBS~1\bar\2.\Run: [ PinnacleDriverCheck ] C:\WINDOWS\system32\PSDrvCheck.\Run: [ Ulead AutoDetector v2 ] C:\Programme\Gemeinsame Dateien\Ulead Systems\AutoDetector\monitor.\Run: [ Win_key ] C:\WINDOWS\system32\Winlogon.\Run: [ updateMgr ] "D:\Adobe\Adobe Acrobat 7.\Run: [ MyWebSearch email Plugin ] C:\PROGRA~1\MYWEBS~1\bar\2.\Run: [ GMX SMS manager ] D:\GMX\GMX SMS Manager\SMSMngr.\Run: [ ICQ ] "D:\Messenger\ICQ6\ICQ.\Run: [ MSMSGS ] "C:\Programme\Messenger\msmsgs.\Run: [ starting key ] C:\WINDOWS\system32\server.lnk = D:\CDRom Lock\CDRom LOCK. O4 - Global Startup: Adobe Acrobat - Schnellstart.lnk = C:\Programme\Gemeinsame Dateien\Adobe\Calibration\Adobe gamma Loader.lnk = D:\Vidalia gate Privoxy\Privoxy\privoxy. O8 - Specially menu item context: load &Alles with FlashGet - D:\FlashGet\jc_all. O8 - Specially menu item context: &Mit FlashGet load - D:\FlashGet\jc_link. O8 - Specially menu item context: &Search - h **. O8 - extra context menu item: Ausgew?te Verkn?ungen in Adobe pdf convert - Acrobat. O8 - Specially menu item context: Ausgew?te Verkn?ungen into existing pdf file convert -. O8 - extra context menu item: Convert selection in Adobe pdf - Acrobat. O8 - Specially menu item context: Convert selection into existing pdf file - Acrobat. O8 - Specially menu item context: Easy WebPrint - pressures -. O8 - Specially menu item context: Easy WebPrint - high-speed pressure -. O8 - Specially menu item context: Easy WebPrint - preview -. O8 - Specially menu item context: Easy WebPrint - to pressure list hinzuf?n -. O8 - Specially menu item context: In Adobe convert pdf - Acrobat. O8 - Specially menu item context: Into existing pdf file convert - Acrobat. O8 - Specially menu item context: To Microsoft &Excel export -. O8 - Specially menu item context: Verkn?ungsziel in Adobe pdf convert - Acrobat. O8 - Specially menu item context: Verkn?ungsziel into existing pdf file convert - Acrobat. O9 - Specially button: (NO name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -. O9 - extra ' Tools ' menuitem: Sun Java console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -. O9 - extra button: Investigates - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\MICROS~1\OFFICE11\REFIEBAR. O9 - Specially button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Messenger\ICQLite\ICQLite. O9 - Specially ' Tools ' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Messenger\ICQLite\ICQLite. O9 - Specially button: SchnapperPro - {D6243B39-211B-440E-B4C5-26D2A579CAC8} - D:\eBay\SchnapperPro\SchnapperPro. O9 - Specially button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - D:\FlashGet\FlashGet. O9 - Specially ' Tools ' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - D:\FlashGet\FlashGet. O9 - Specially button: (NO name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag. O9 - Specially ' Tools ' menuitem: @xpsp3res. O9 - Specially button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - D:\Messenger\ICQ6\ICQ. O9 - Specially ' Tools ' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - D:\Messenger\ICQ6\ICQ. O9 - Specially button: More measuringclosely - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs. O9 - Specially ' Tools ' menuitem: Windows of measuringclose - {FB5F1910-F110-11d2-BB9E-00C04F795683} -. O10 - Unknown file in Winsock LSP: c:\programme\bonjour\mdnsnsp.UVR: C:\Programme\Internet Explorer\Plugins\NPUPano.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.com/AppDirectory/P4Apps/PhotoSwap/DigWXMSN. O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object).com/get/shockwave/cabs/flash/swflash. O18 - Protocol: live call - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1. O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1. O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon. O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj. O23 - Service: Adobe LM service - Adobe of system - C:\Programme\Gemeinsame Dateien\Adobe of system. O23 - Service: AntiVir personnel edition Classic planner (AntiVirScheduler) - Avira GmbH - C:\Programme\AntiVir. O23 - Service: AntiVir personnel edition Classic Guard (AntiVirService) - Avira GmbH - C:\Programme\AntiVir. O23 - Service: Ati HotKey Poller - Unknown more owner - C:\WINDOWS\system32\Ati2evxx. O23 - Service: ATI Smart - Unknown more owner - C:\WINDOWS\system32\ati2sgag.6844F930_1628_4223_B5CC_5BB94B879762 # # (Bonjour service) - Apple computer, Inc. O23 - service: FLEXnet Licensing service - macro vision Europe Ltd. O23 - service: IAA Event monitor (IAANTMon) - Intel corporation - C:\Programme\Intel\Intel Application. O23 - Service: IPod service (iPod service) - Apple Inc. O23 - service: NBService - Nero AG - D:\Nero 7\Nero BackItUp\NBService. O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown more owner - C:\Programme\Cyberlink\Shared. Er?ne asks a new Thread. Someone by E-Mail to this topic refer. Trouble spirit of all kinds and their Bek?fung.

No comments: