Qui il log di combofix:
ComboFix 09-11-19.03 - mimmo 19.11.2009 21:45.1.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.49.1031.18.3325.2117 [GMT 1:00]
ausgeführt von:: c:\users\mimmo\Downloads\ComboFix.exe
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.
(((((((((((((((((((((((((((((((((((( Weitere Löschungen ))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\program files\Search Settings
c:\program files\Search Settings\kb127\SearchSettingsRes409.dll
c:\program files\Search Settings\SearchSettings.exe
c:\users\mimmo\AppData\Roaming\Desktopicon
c:\users\mimmo\AppData\Roaming\Desktopicon\config.ini
c:\users\mimmo\AppData\Roaming\Desktopicon\eBayShortcuts.exe
.
((((((((((((((((((((((( Dateien erstellt von 2009-10-19 bis 2009-11-19 ))))))))))))))))))))))))))))))
.
2009-11-19 20:51 . 2009-11-19 20:51 -------- d-----w- c:\users\Default\AppData\Local\temp
2009-11-19 20:51 . 2009-11-19 20:52 -------- d-----w- c:\users\mimmo\AppData\Local\temp
2009-11-19 17:29 . 2009-11-19 17:29 -------- d-----w- c:\program files\FileHippo.com
2009-11-19 16:35 . 2009-11-19 16:35 604488 ----a-w- c:\windows\system32\TUProgSt.exe
2009-11-19 16:35 . 2009-07-15 09:48 17224 ----a-w- c:\windows\system32\authuitu.dll
2009-11-19 16:35 . 2009-07-15 09:48 29000 ----a-w- c:\windows\system32\uxtuneup.dll
2009-11-19 16:34 . 2009-11-19 16:34 361288 ----a-w- c:\windows\system32\TuneUpDefragService.exe
2009-11-19 16:33 . 2009-11-19 16:34 49152 d-----w- c:\program files\TuneUp Utilities 2009
2009-11-19 15:29 . 2009-11-19 15:29 -------- d-----w- c:\users\mimmo\AppData\Roaming\Malwarebytes
2009-11-19 15:29 . 2009-09-10 13:54 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-11-19 15:29 . 2009-11-19 17:35 4096 d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-11-19 15:29 . 2009-09-10 13:53 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-11-19 07:25 . 2009-07-28 15:33 55656 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2009-11-19 07:25 . 2009-03-30 09:33 96104 ----a-w- c:\windows\system32\drivers\avipbb.sys
2009-11-19 07:25 . 2009-11-19 07:25 -------- d-----w- c:\program files\Avira
2009-11-18 18:40 . 2009-11-18 18:40 -------- d-----w- c:\users\mimmo\AppData\Local\Opera
2009-11-18 16:25 . 2009-11-18 16:25 4096 d-----w- c:\program files\BurnAware Free
2009-11-17 05:09 . 2009-11-17 05:09 -------- d-----w- c:\program files\Windows Portable Devices
2009-11-17 05:07 . 2009-10-01 01:02 30208 ----a-w- c:\windows\system32\WPDShextAutoplay.exe
2009-11-17 05:07 . 2009-10-01 01:02 31232 ----a-w- c:\windows\system32\BthMtpContextHandler.dll
2009-11-17 05:07 . 2009-10-01 01:01 60928 ----a-w- c:\windows\system32\PortableDeviceConnectApi.dll
2009-11-17 05:07 . 2009-10-01 01:01 81920 ----a-w- c:\windows\system32\wpdbusenum.dll
2009-11-17 05:07 . 2009-10-01 01:02 2537472 ----a-w- c:\windows\system32\wpdshext.dll
2009-11-17 05:07 . 2009-10-01 01:02 334848 ----a-w- c:\windows\system32\PortableDeviceApi.dll
2009-11-17 05:07 . 2009-10-01 01:02 87552 ----a-w- c:\windows\system32\WPDShServiceObj.dll
2009-11-17 05:07 . 2009-10-01 01:01 546816 ----a-w- c:\windows\system32\wpd_ci.dll
2009-11-17 05:07 . 2009-10-01 01:01 160256 ----a-w- c:\windows\system32\PortableDeviceTypes.dll
2009-11-17 05:07 . 2009-10-01 01:01 350208 ----a-w- c:\windows\system32\WPDSp.dll
2009-11-17 05:07 . 2009-10-01 01:01 196608 ----a-w- c:\windows\system32\PortableDeviceWMDRM.dll
2009-11-17 05:07 . 2009-10-01 01:01 100864 ----a-w- c:\windows\system32\PortableDeviceClassExtension.dll
2009-11-17 05:06 . 2009-10-08 21:07 4096 ----a-w- c:\windows\system32\oleaccrc.dll
2009-11-17 05:06 . 2009-10-08 21:08 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll
2009-11-17 05:06 . 2009-10-08 21:08 234496 ----a-w- c:\windows\system32\oleacc.dll
2009-11-11 07:54 . 2009-08-14 13:27 2036736 ----a-w- c:\windows\system32\win32k.sys
2009-11-11 07:54 . 2009-08-10 12:35 355328 ----a-w- c:\windows\system32\WSDApi.dll
2009-11-10 16:58 . 2009-11-10 16:58 680 ----a-w- c:\users\mimmo\AppData\Local\d3d9caps.dat
2009-11-06 10:14 . 2009-11-06 10:16 -------- d-----w- C:\$AVG
2009-10-28 04:38 . 2009-09-10 14:58 310784 ----a-w- c:\windows\system32\unregmp2.exe
2009-10-28 04:38 . 2009-09-10 14:59 8147456 ----a-w- c:\windows\system32\wmploc.DLL
.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-11-19 20:52 . 2009-03-14 15:23 4096 d-----w- c:\users\mimmo\AppData\Roaming\Skype
2009-11-19 20:39 . 2008-11-24 17:37 618204 ----a-w- c:\windows\system32\perfh007.dat
2009-11-19 20:39 . 2008-11-24 17:37 122636 ----a-w- c:\windows\system32\perfc007.dat
2009-11-19 20:30 . 2009-03-14 08:46 4096 d-----w- c:\program files\Google
2009-11-19 20:11 . 2009-08-14 09:59 4096 d-----w- c:\users\mimmo\AppData\Roaming\vlc
2009-11-19 20:01 . 2009-03-14 15:24 4096 d-----w- c:\users\mimmo\AppData\Roaming\skypePM
2009-11-19 19:09 . 2009-04-13 08:01 81920 d-----w- c:\users\mimmo\AppData\Roaming\uTorrent
2009-11-17 05:09 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat
2009-11-17 05:09 . 2009-11-17 05:09 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_07_00.Wdf
2009-11-14 14:52 . 2009-03-14 17:58 8192 d-----w- c:\users\mimmo\AppData\Roaming\LimeWire
2009-11-11 10:57 . 2006-11-02 11:18 4096 d-----w- c:\program files\Windows Mail
2009-11-06 10:35 . 2009-10-07 06:25 28672 d-----w- c:\program files\JetAudio
2009-11-02 19:42 . 2009-10-06 08:00 195456 ------w- c:\windows\system32\MpSigStub.exe
2009-10-29 08:11 . 2009-03-14 15:22 286720 ----a-w- c:\windows\iun506.exe
2009-10-17 19:58 . 2008-11-25 06:32 -------- d-----w- c:\program files\Common Files\Adobe
2009-10-13 06:15 . 2009-10-13 06:15 -------- d-----w- c:\program files\MSECache
2009-10-10 11:00 . 2009-03-18 17:14 4096 d-----w- c:\users\mimmo\AppData\Roaming\dvdcss
2009-10-09 06:42 . 2009-08-15 11:38 4096 d-----w- c:\program files\Common Files\DVDVideoSoft
2009-10-09 06:42 . 2009-08-15 11:38 4096 d-----w- c:\program files\DVDVideoSoft
2009-10-07 06:26 . 2009-03-14 19:35 -------- d-----w- c:\users\mimmo\AppData\Roaming\COWON
2009-10-07 06:25 . 2009-10-07 06:25 4096 d-----w- c:\program files\Common Files\COWON
2009-10-07 06:25 . 2008-12-10 14:19 4096 d--h--w- c:\program files\InstallShield Installation Information
2009-10-07 06:24 . 2009-10-07 06:24 -------- d-----w- c:\users\mimmo\AppData\Roaming\InstallShield
2009-10-06 13:49 . 2009-10-06 13:49 -------- d-----w- c:\program files\EASEUS
2009-10-06 12:57 . 2008-12-10 15:13 4096 d-----w- c:\program files\Microsoft Silverlight
2009-09-25 02:10 . 2009-11-17 05:08 974848 ----a-w- c:\windows\system32\WindowsCodecs.dll
2009-09-25 02:07 . 2009-11-17 05:08 189440 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2009-09-25 02:04 . 2009-11-17 05:08 321024 ----a-w- c:\windows\system32\PhotoMetadataHandler.dll
2009-09-25 01:49 . 2009-11-17 05:08 1554432 ----a-w- c:\windows\system32\xpsservices.dll
2009-09-25 01:48 . 2009-11-17 05:08 351232 ----a-w- c:\windows\system32\XpsPrint.dll
2009-09-25 01:38 . 2009-11-17 05:08 847360 ----a-w- c:\windows\system32\OpcServices.dll
2009-09-25 01:36 . 2009-11-17 05:08 280064 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2009-09-25 01:35 . 2009-11-17 05:08 135680 ----a-w- c:\windows\system32\XpsRasterService.dll
2009-09-25 01:33 . 2009-11-17 05:08 195584 ----a-w- c:\windows\system32\dxdiagn.dll
2009-09-25 01:33 . 2009-11-17 05:08 829440 ----a-w- c:\windows\system32\d3d10warp.dll
2009-09-25 01:33 . 2009-11-17 05:08 369664 ----a-w- c:\windows\system32\WMPhoto.dll
2009-09-25 01:32 . 2009-11-17 05:08 252928 ----a-w- c:\windows\system32\dxdiag.exe
2009-09-25 01:31 . 2009-11-17 05:08 519680 ----a-w- c:\windows\system32\d3d11.dll
2009-09-25 01:31 . 2009-11-17 05:08 486912 ----a-w- c:\windows\system32\d3d10level9.dll
2009-09-25 01:31 . 2009-11-17 05:08 161280 ----a-w- c:\windows\system32\d3d10_1.dll
2009-09-25 01:31 . 2009-11-17 05:08 218112 ----a-w- c:\windows\system32\d3d10_1core.dll
2009-09-25 01:31 . 2009-11-17 05:08 1030144 ----a-w- c:\windows\system32\d3d10.dll
2009-09-25 01:31 . 2009-11-17 05:08 828928 ----a-w- c:\windows\system32\d2d1.dll
2009-09-25 01:30 . 2009-11-17 05:08 481792 ----a-w- c:\windows\system32\dxgi.dll
2009-09-25 01:30 . 2009-11-17 05:08 190464 ----a-w- c:\windows\system32\d3d10core.dll
2009-09-25 01:27 . 2009-11-17 05:08 634880 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2009-09-25 01:27 . 2009-11-17 05:08 37888 ----a-w- c:\windows\system32\cdd.dll
2009-09-25 01:27 . 2009-11-17 05:08 793088 ----a-w- c:\windows\system32\FntCache.dll
2009-09-25 01:27 . 2009-11-17 05:08 1064448 ----a-w- c:\windows\system32\DWrite.dll
2009-09-24 22:54 . 2009-11-17 05:08 258048 ----a-w- c:\windows\system32\winspool.drv
2009-09-24 22:54 . 2009-11-17 05:08 667648 ----a-w- c:\windows\system32\printfilterpipelinesvc.exe
2009-09-24 22:54 . 2009-11-17 05:08 26112 ----a-w- c:\windows\system32\printfilterpipelineprxy.dll
2009-09-14 09:29 . 2009-10-16 17:48 144896 ----a-w- c:\windows\system32\drivers\srv2.sys
2009-09-10 16:48 . 2009-10-16 17:49 218624 ----a-w- c:\windows\system32\msv1_0.dll
2009-09-10 02:01 . 2009-11-17 05:08 3023360 ----a-w- c:\windows\system32\UIRibbon.dll
2009-09-10 02:00 . 2009-11-17 05:08 1164800 ----a-w- c:\windows\system32\UIRibbonRes.dll
2009-09-10 02:00 . 2009-11-17 05:08 92672 ----a-w- c:\windows\system32\UIAnimation.dll
2009-09-04 11:41 . 2009-10-16 17:49 60928 ----a-w- c:\windows\system32\msasn1.dll
2009-08-29 00:27 . 2009-10-06 08:02 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll
2009-08-29 00:14 . 2009-10-06 08:02 28672 ----a-w- c:\windows\system32\Apphlpdm.dll
2009-08-27 05:22 . 2009-10-22 02:59 916480 ----a-w- c:\windows\system32\wininet.dll
2009-08-27 05:17 . 2009-10-22 02:59 71680 ----a-w- c:\windows\system32\iesetup.dll
2009-08-27 05:17 . 2009-10-22 02:59 109056 ----a-w- c:\windows\system32\iesysprep.dll
2009-08-27 03:42 . 2009-10-22 02:59 133632 ----a-w- c:\windows\system32\ieUnatt.exe
2008-11-12 13:12 . 2008-11-12 13:01 8192 --sha-w- c:\windows\Users\Default\NTUSER.DAT
.
(((((((((((((((((((((((((((( Autostartpunkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2009-10-09 25623336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2008-12-02 6695456]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2009-03-02 209153]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184]
"Skytel"="c:\program files\Realtek\Audio\HDA\Skytel.exe" [2008-12-02 1833504]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\progra~1\Google\GOOGLE~1\GoogleDesktopNetwork3.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^FSC RC.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\FSC RC.lnk
backup=c:\windows\pss\FSC RC.lnk.CommonStartup
backupExtension=.CommonStartup
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"swg"=c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
"ehTray.exe"=c:\windows\ehome\ehTray.exe
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
"FileHippo.com"="c:\program files\FileHippo.com\UpdateChecker.exe" /background
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
"FaxCenterServer"="c:\program files\Lexmark Fax Solutions\fm3032.exe" /s
"Google Desktop Search"="c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
"LVCOMSX"=c:\windows\system32\LVCOMSX.EXE
"NBKeyScan"="c:\program files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
"PAC7302_Monitor"=c:\windows\PixArt\PAC7302\Monitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"VistaSp2"=hex(b):0e,75,27,9d,99,0a,ca,01
R2 AntiVirSchedulerService;Avira AntiVir Planer;c:\program files\Avira\AntiVir Desktop\sched.exe [19.11.2009 08:25 108289]
R2 lxdn_device;lxdn_device;c:\windows\system32\lxdncoms.exe -service --> c:\windows\system32\lxdncoms.exe -service [?]
R2 TuneUp.ProgramStatisticsSvc;TuneUp Program Statistics Service;c:\windows\System32\TUProgSt.exe [19.11.2009 17:35 604488]
R3 AVerAF15;AVerMedia BDA Digital Tuner;c:\windows\System32\drivers\AVerAF15.sys [14.03.2009 18:02 269056]
R3 PAC7302;PAC7302 VGA SoC PC-Camera;c:\windows\System32\drivers\PAC7302.SYS [04.08.2009 11:56 458752]
S2 gupdate1c9c015ae2f3252;Google Update Service (gupdate1c9c015ae2f3252);c:\program files\Google\Update\GoogleUpdate.exe [18.04.2009 12:06 133104]
S2 lxdnCATSCustConnectService;lxdnCATSCustConnectService;c:\windows\System32\spool\drivers\w32x86\3\lxdnserv.exe [28.02.2008 00:07 98984]
S3 camfilt2;camfilt2;c:\windows\System32\drivers\camfilt2.sys [16.03.2009 05:10 98432]
S3 epmntdrv;epmntdrv;c:\windows\System32\epmntdrv.sys [06.10.2009 14:49 9728]
S3 EuGdiDrv;EuGdiDrv;c:\windows\System32\EuGdiDrv.sys [06.10.2009 14:49 3072]
S3 FontCache;Windows-Dienst für Schriftartencache;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [21.01.2008 03:23 21504]
S3 fssfltr;FssFltr;c:\windows\System32\drivers\fssfltr.sys [13.05.2009 15:28 55280]
S3 fsssvc;Windows Live Family Safety;c:\program files\Windows Live\Family Safety\fsssvc.exe [06.02.2009 17:08 533360]
S3 GoogleDesktopManager-093009-130223;Google Desktop Manager 5.9.909.30391;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [14.03.2009 09:46 30192]
S3 LTXMD_VAC;Litex Media Virtual Audio Cable (WDM);c:\windows\System32\drivers\lmvac.sys [14.04.2009 16:26 18912]
S3 netr28u;RT2870 USB Wireless LAN Card Driver for Vista;c:\windows\System32\drivers\netr28u.sys [28.11.2008 15:06 554496]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Inhalt des "geplante Tasks" Ordners
2009-11-19 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-03-14 11:05]
2009-11-19 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-04-18 11:06]
2009-11-19 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-04-18 11:06]
2009-11-19 c:\windows\Tasks\Manutenzione in 1 clic.job
- c:\program files\TuneUp Utilities 2009\OneClickStarter.exe [2009-07-16 10:28]
2009-11-19 c:\windows\Tasks\User_Feed_Synchronization-{103B65BD-4798-4CA0-9487-EB211B637804}.job
- c:\windows\system32\msfeedssync.exe [2009-10-22 03:41]
2009-11-19 c:\windows\Tasks\User_Feed_Synchronization-{E89741E3-8630-4907-BE38-191653C76178}.job
- c:\windows\system32\msfeedssync.exe [2009-10-22 03:41]
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = hxxp://www.corriere.it/
mStart Page = hxxp://www.arcor.de
mWindow Title = Arcor AG & Co. KG
uSearchURL,(Default) = hxxp://www.google.com/search/?q=%s
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: Nach Microsoft &Excel exportieren - c:\progra~1\MICROS~3\Office10\EXCEL.EXE/3000
IE: Nach Microsoft E&xel exportieren - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: Save YouTube Video - c:\program files\Common Files\DVDVideoSoft\Dll\IEContextMenuY.dll/scriptY2MP4.htm
TCP: {12D8A2BC-576F-42A0-9EE5-8A5D1AAA3E6A} = 195.50.140.178 195.50.140.114
FF - ProfilePath - c:\users\mimmo\AppData\Roaming\Mozilla\Firefox\Profiles\x3a87bpf.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.live.com/results.aspx?FORM=IEFM1&q=
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.corriere.it/
FF - prefs.js: keyword.URL - hxxp://de.yhs.search.yahoo.com/avg/search?fr=yhs-avg&type=yahoo_avg_hs2-tb-web_de&p=
FF - component: c:\documents and settings\All Users\Application Data\Google\Toolbar for Firefox\{3112ca9c-de6d-4884-a869-9855de68056c}\components\googletoolbarloader.dll
FF - component: c:\documents and settings\All Users\Application Data\Google\Toolbar for Firefox\{3112ca9c-de6d-4884-a869-9855de68056c}\components\metricsloader.dll
FF - component: c:\program files\Common Files\DVDVideoSoft\Dll\FFContextMenuY\components\FFContextMenu.dll
FF - component: c:\users\mimmo\AppData\Roaming\Mozilla\Firefox\Profiles\x3a87bpf.default\extensions\{AA994882-F391-4d2e-806F-8908DA4814ED}\components\kikin.dll
FF - plugin: c:\program files\Google\Google Updater\2.4.1536.6592\npCIDetect13.dll
FF - plugin: c:\program files\Google\Picasa3\npPicasa2.dll
FF - plugin: c:\program files\Google\Picasa3\npPicasa3.dll
FF - plugin: c:\program files\Google\Update\1.2.183.13\npGoogleOneClick8.dll
FF - plugin: c:\program files\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: c:\users\mimmo\AppData\Roaming\Mozilla\Firefox\Profiles\x3a87bpf.default\extensions\moveplayer@movenetworks.com\platform\WINNT_x86-msvc\plugins\npmnqmp071303000004.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- FIREFOX Richtlinien ----
FF - user.js: network.http.max-connections-per-server - 8
FF - user.js: content.max.tokenizing.time - 200000
FF - user.js: content.notify.interval - 100000
FF - user.js: nglayout.initialpaint.delay - 300
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: content.switch.threshold - 650000
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
AddRemove-_{ADDBE07D-95B8-4789-9C76-187FFF9624B4} - c:\program files\Corel\CorelDRAW Essential Edition 3\Programs\MSILauncher {ADDBE07D-95B8-4789-9C76-187FFF9624B4}
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2009-11-19 21:51
Windows 6.0.6002 Service Pack 2 NTFS
Scanne versteckte Prozesse...
Scanne versteckte Autostarteinträge...
Scanne versteckte Dateien...
Scan erfolgreich abgeschlossen
versteckte Dateien: 0
**************************************************************************
.
Zeit der Fertigstellung: 2009-11-19 21:53
ComboFix-quarantined-files.txt 2009-11-19 20:53
Vor Suchlauf: 10 Verzeichnis(se), 525.235.027.968 Bytes frei
Nach Suchlauf: 15 Verzeichnis(se), 525.193.682.944 Bytes frei
- - End Of File - - 79B13A607B9B00AE0E67D82D1327553C