C
comint
Gast
Hallo
Wie möchte/müsste man mit beiliegendem „Teil“ verfahren?
Avira AntiRootkit Tool (1.3.0.1)
========================================================================================================
- Scan started Donnerstag, 6. Oktober 2011 - 05:39:20
========================================================================================================
--------------------------------------------------------------------------------------------------------
Configuration:
--------------------------------------------------------------------------------------------------------
- [X] Scan files
- [X] Scan registry
- [X] Scan processes
- [ ] Fast scan
- Working disk total size : 74.52 GB
- Working disk free size : 63.60 GB (85 %)
--------------------------------------------------------------------------------------------------------
Results:
Value data length mismatch (12 <> 20): HKEY_USERS\S-1-5-21-448539723-1957994488-682003330-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs -> mrulistex
--------------------------------------------------------------------------------------------------------
Files: 0/265736
Registry items: 1/210117
Processes: 0/42
Scan time: 00:04:14
--------------------------------------------------------------------------------------------------------
Active processes:
- System (PID 4)
- rsmsink.exe (PID 3140)
- lsass.exe (PID 640)
- jusched.exe (PID 2036)
- svchost.exe (PID 1928)
- svchost.exe (PID 984)
- mouse32a.exe (PID 192)
- explorer.exe (PID 1372)
- vlc.exe (PID 2604)
- ctfmon.exe (PID 220)
- plugin-container.exe (PID 680)
- avgnt.exe (PID 1908)
- Babylon.exe (PID 1900)
- vssvc.exe (PID 3360)
- dllhost.exe (PID 3532)
- svchost.exe (PID 1232)
- firefox.exe (PID 3332)
- recordingmanager.exe (PID 4044)
- svchost.exe (PID 812)
- smss.exe (PID 492)
- winlogon.exe (PID 584)
- spoolsv.exe (PID 1576)
- csrss.exe (PID 548)
- services.exe (PID 628)
- avguard.exe (PID 1492)
- msdtc.exe (PID 3860)
- ati2evxx.exe (PID 796)
- svchost.exe (PID 892)
- svchost.exe (PID 1056)
- jqs.exe (PID 1280)
- ati2evxx.exe (PID 1296)
- sched.exe (PID 1624)
- svchost.exe (PID 1688)
- pxfkdrpc.exe (PID 3764) (Avira AntiRootkit Tool)
- avshadow.exe (PID 1780)
- dllhost.exe (PID 3552)
- realsched.exe (PID 1988)
- LwbWheel.exe (PID 2000)
- wscntfy.exe (PID 2144)
- alg.exe (PID 2480)
- wmiapsrv.exe (PID 2732)
- avirarkd.exe (PID 544)
========================================================================================================
- Scan finished Donnerstag, 6. Oktober 2011 - 05:43:35
========================================================================================================
VG
Wie möchte/müsste man mit beiliegendem „Teil“ verfahren?
Avira AntiRootkit Tool (1.3.0.1)
========================================================================================================
- Scan started Donnerstag, 6. Oktober 2011 - 05:39:20
========================================================================================================
--------------------------------------------------------------------------------------------------------
Configuration:
--------------------------------------------------------------------------------------------------------
- [X] Scan files
- [X] Scan registry
- [X] Scan processes
- [ ] Fast scan
- Working disk total size : 74.52 GB
- Working disk free size : 63.60 GB (85 %)
--------------------------------------------------------------------------------------------------------
Results:
Value data length mismatch (12 <> 20): HKEY_USERS\S-1-5-21-448539723-1957994488-682003330-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs -> mrulistex
--------------------------------------------------------------------------------------------------------
Files: 0/265736
Registry items: 1/210117
Processes: 0/42
Scan time: 00:04:14
--------------------------------------------------------------------------------------------------------
Active processes:
- System (PID 4)
- rsmsink.exe (PID 3140)
- lsass.exe (PID 640)
- jusched.exe (PID 2036)
- svchost.exe (PID 1928)
- svchost.exe (PID 984)
- mouse32a.exe (PID 192)
- explorer.exe (PID 1372)
- vlc.exe (PID 2604)
- ctfmon.exe (PID 220)
- plugin-container.exe (PID 680)
- avgnt.exe (PID 1908)
- Babylon.exe (PID 1900)
- vssvc.exe (PID 3360)
- dllhost.exe (PID 3532)
- svchost.exe (PID 1232)
- firefox.exe (PID 3332)
- recordingmanager.exe (PID 4044)
- svchost.exe (PID 812)
- smss.exe (PID 492)
- winlogon.exe (PID 584)
- spoolsv.exe (PID 1576)
- csrss.exe (PID 548)
- services.exe (PID 628)
- avguard.exe (PID 1492)
- msdtc.exe (PID 3860)
- ati2evxx.exe (PID 796)
- svchost.exe (PID 892)
- svchost.exe (PID 1056)
- jqs.exe (PID 1280)
- ati2evxx.exe (PID 1296)
- sched.exe (PID 1624)
- svchost.exe (PID 1688)
- pxfkdrpc.exe (PID 3764) (Avira AntiRootkit Tool)
- avshadow.exe (PID 1780)
- dllhost.exe (PID 3552)
- realsched.exe (PID 1988)
- LwbWheel.exe (PID 2000)
- wscntfy.exe (PID 2144)
- alg.exe (PID 2480)
- wmiapsrv.exe (PID 2732)
- avirarkd.exe (PID 544)
========================================================================================================
- Scan finished Donnerstag, 6. Oktober 2011 - 05:43:35
========================================================================================================
VG
Zuletzt bearbeitet: