Seite 1 von 2 12 LetzteLetzte
Ergebnis 1 bis 10 von 16

Thema: Project1 in der Taskleiste

  1. #1
    Einsteiger
    Registriert seit
    06.08.2006
    Beiträge
    8

    Project1 in der Taskleiste

    Hallo!

    Seit einiger Zeit taucht sobald der PC Gestartet wird ein Fenster mit dem Namen Project1 auf.

    Darin steht folgendes:
    Laufzeitfehler '13':
    Typen unverträglich

    Sobald ich das Fenster schließe taucht schon wieder ein neues auf.

    Auch hat sich meine Browserstartseite automatisch zu "about:blank" geändert, wo immer etwas von einem "browser hijack attempt" steht.

    Also, ich hoffe ihr könnt mir helfen. Ich vermute dass auf meinem PC mehr als nur eine Sache faul ist.
    Hier mein Logfile:

    Code:
    Logfile of HijackThis v1.99.1
    Scan saved at 21:00:02, on 06.08.2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
    
    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\System32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Programme\Gemeinsame Dateien\Symantec Shared\ccSetMgr.exe
    C:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\Explorer.EXE
    C:\Programme\Gemeinsame Dateien\Symantec Shared\ccProxy.exe
    C:\Programme\Symantec AntiVirus\DefWatch.exe
    C:\WINDOWS\system32\CBA\pds.exe
    C:\Programme\Symantec AntiVirus\Rtvscan.exe
    C:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\SymWSC.exe
    C:\WINDOWS\system32\RunDll32.exe
    C:\Programme\Gemeinsame Dateien\Nokia\Services\ServiceLayer.exe
    C:\Programme\Gemeinsame Dateien\Nokia\NCLTools\NclTray.exe
    C:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe
    C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe
    C:\Programme\Microsoft IntelliPoint\point32.exe
    C:\Programme\Gemeinsame Dateien\Real\Update_OB\realevent.exe
    C:\PROGRA~1\GEMEIN~1\Nokia\Services\SERVIC~1.EXE
    C:\Programme\Microsoft Hardware\Keyboard\type32.exe
    C:\Programme\Gemeinsame Dateien\ACD Systems\DE\DevDetect.exe
    C:\Programme\Java\jre1.5.0_04\bin\jusched.exe
    C:\Programme\iTunes\iTunesHelper.exe
    C:\Programme\QuickTime\qttask.exe
    C:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe
    C:\PROGRA~1\SYMANT~1\VPTray.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Programme\Spybot - Search & Destroy\TeaTimer.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Programme\iPod\bin\iPodService.exe
    C:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    C:\Programme\Nokia\PC Suite for Nokia N-Gage\connmngmntbox.exe
    C:\Programme\Nokia\PC Suite for Nokia N-Gage\ectaskscheduler.exe
    C:\PROGRA~1\Nokia\PCSUIT~1\Elogerr.exe
    C:\Programme\Intuwave\Shared\mRouterRunTime\mRouterRuntime.exe
    C:\PROGRA~1\Nokia\PCSUIT~1\BROADC~1.EXE
    C:\PROGRA~1\Nokia\PCSUIT~1\SCRFS.exe
    C:\WINDOWS\system32\smartdrv.exe
    C:\WINDOWS\system32\officescan.exe
    C:\Dokumente und Einstellungen\Jeff\Desktop\HijackThis.exe
    
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.seekerbar.com/ie.aspx?tb_id=50154
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://securityresponse.symantec.com...r/fix_homepage
    R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://minisearch.startnow.com/
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :
    O1 - Hosts: nd.com
    O1 - Hosts: nd.com
    O1 - Hosts: ind.com
    O1 - Hosts: ind.com
    O1 - Hosts: find.com
    O1 - Hosts: find.com
    O1 - Hosts: yfind.com
    O1 - Hosts: enu.com
    O1 - Hosts: nu.com
    O1 - Hosts: nu.com
    O1 - Hosts: enu.com
    O1 - Hosts: enu.com
    O1 - Hosts: henu.com
    O1 - Hosts: henu.com
    O1 - Hosts: .whenu.com
    O1 - Hosts: .whenu.com
    O1 - Hosts: nc.whenu.com
    O1 - Hosts: nc.whenu.com
    O1 - Hosts: inc.whenu.com
    O1 - Hosts: inc.whenu.com
    O1 - Hosts: m
    O1 - Hosts: m
    O1 - Hosts: m
    O1 - Hosts: m
    O1 - Hosts: om
    O1 - Hosts: om
    O1 - Hosts: com
    O1 - Hosts: com
    O1 - Hosts: com
    O1 - Hosts: com
    O1 - Hosts: .com
    O1 - Hosts: .com
    O1 - Hosts: d.com
    O1 - Hosts: d.com
    O1 - Hosts: d.com
    O1 - Hosts: d.com
    O1 - Hosts: nd.com
    O1 - Hosts: nd.com
    O1 - Hosts: ind.com
    O1 - Hosts: ind.com
    O1 - Hosts: find.com
    O1 - Hosts: find.com
    O1 - Hosts: yfind.com
    O1 - Hosts: yfind.com
    O1 - Hosts: tyfind.com
    O1 - Hosts: tyfind.com
    O1 - Hosts: styfind.com
    O1 - Hosts: styfind.com
    O1 - Hosts: estyfind.com
    O1 - Hosts: estyfind.com
    O1 - Hosts: .zestyfind.com
    O1 - Hosts: .zestyfind.com
    O1 - Hosts: ww.zestyfind.com
    O1 - Hosts: ww.zestyfind.com
    O1 - Hosts: .com
    O1 - Hosts: ar.com
    O1 - Hosts: lbar.com
    O1 - Hosts: oolbar.com
    O1 - Hosts: rtoolbar.com
    O1 - Hosts: sertoolbar.com
    O1 - Hosts: 127.0.0.
    O1 - Hosts: owsertoolbar.com
    O1 - Hosts: 127.0.
    O1 - Hosts: .browsertoolbar.com
    O1 - Hosts: w2.browsertoolbar.com
    O1 - Hosts: ww2.browsertoolbar.com
    O1 - Hosts: 127.
    O1 - Hosts: .www2.browsertoolbar.com
    O1 - Hosts: w.www2.browsertoolbar.com
    O1 - Hosts: 127.0.
    O1 - Hosts: 1
    O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Programme\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll
    O2 - BHO: (no name) - {77701e16-9bfe-4b63-a5b4-7bd156758a37} - (no file)
    O2 - BHO: Web assistant - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Programme\Gemeinsame Dateien\Symantec Shared\AdBlocking\NISShExt.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programme\google\googletoolbar2.dll
    O2 - BHO: office_pnl.office_panel - {B53455DB-5527-4041-AC41-F86E6947AA47} - C:\WINDOWS\system32\office_pnl.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programme\google\googletoolbar2.dll
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn\yt.dll
    O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Programme\Gemeinsame Dateien\Symantec Shared\AdBlocking\NISShExt.dll
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [ServiceLayer] C:\Programme\Gemeinsame Dateien\Nokia\Services\ServiceLayer.exe
    O4 - HKLM\..\Run: [Nokia Tray Application] C:\Programme\Gemeinsame Dateien\Nokia\NCLTools\NclTray.exe
    O4 - HKLM\..\Run: [ATIPTA] C:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe
    O4 - HKLM\..\Run: [TkBellExe] "C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [IntelliPoint] "C:\Programme\Microsoft IntelliPoint\point32.exe"
    O4 - HKLM\..\Run: [Cryptographic Service] C:\WINDOWS\System32\hiiedky.exe
    O4 - HKLM\..\Run: [*mcip] C:\WINDOWS\AppPatch\mcip.exe
    O4 - HKLM\..\Run: [*avdvd] C:\WINDOWS\avdvd.exe
    O4 - HKLM\..\Run: [*tasklog] C:\WINDOWS\AppPatch\tasklog.exe
    O4 - HKLM\..\Run: [*svrtcp] C:\WINDOWS\svrtcp.exe
    O4 - HKLM\..\Run: [*util] C:\WINDOWS\Web\printers\util.exe
    O4 - HKLM\..\Run: [*win] C:\WINDOWS\Fonts\win.exe
    O4 - HKLM\..\Run: [*svcutil] C:\WINDOWS\Help\svcutil.exe
    O4 - HKLM\..\Run: [*diskip] C:\WINDOWS\assembly\temp\diskip.exe
    O4 - HKLM\..\Run: [*cmdlog] C:\WINDOWS\system\cmdlog.exe
    O4 - HKLM\..\Run: [IntelliType] "C:\Programme\Microsoft Hardware\Keyboard\type32.exe"
    O4 - HKLM\..\Run: [Device Detector] DevDetect.exe -autorun
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programme\Java\jre1.5.0_04\bin\jusched.exe
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Programme\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [ccApp] "C:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Enterprise
    O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programme\Spybot - Search & Destroy\TeaTimer.exe
    O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Programme\Gemeinsame Dateien\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: Adobe Reader - Schnellstart.lnk = C:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft Office\Office\OSA9.EXE
    O4 - Global Startup: PCSuiteForNokiaN-Gage Detect.lnk = ?
    O4 - Global Startup: PCSuiteForNokiaN-Gage TS.lnk = ?
    O8 - Extra context menu item: &Google Search - res://c:\programme\google\GoogleToolbar2.dll/cmsearch.html
    O8 - Extra context menu item: &Translate English Word - res://c:\programme\google\GoogleToolbar2.dll/cmwordtrans.html
    O8 - Extra context menu item: Backward Links - res://c:\programme\google\GoogleToolbar2.dll/cmbacklinks.html
    O8 - Extra context menu item: Cached Snapshot of Page - res://c:\programme\google\GoogleToolbar2.dll/cmcache.html
    O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O8 - Extra context menu item: Similar Pages - res://c:\programme\google\GoogleToolbar2.dll/cmsimilar.html
    O8 - Extra context menu item: Translate Page into English - res://c:\programme\google\GoogleToolbar2.dll/cmtrans.html
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_04\bin\npjpi150_04.dll
    O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_04\bin\npjpi150_04.dll
    O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe (file missing)
    O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
    O16 - DPF: {26CBF141-7D0F-46E1-AA06-718958B6E4D2} - http://download.ebay.com/turbo_lister/DE/install.cab
    O16 - DPF: {3FE16C08-D6A7-4133-84FC-D5BFB4F7D886} (WebGameLoader Class) - http://www.miniclip.com/ricochet/Ref...GameLoader.cab
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O18 - Filter: text/html - {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - (no file)
    O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
    O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\ccProxy.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\ccSetMgr.exe
    O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Programme\Symantec AntiVirus\DefWatch.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: Intel PDS - LANDesk Software Ltd. - C:\WINDOWS\system32\CBA\pds.exe
    O23 - Service: iPodService - Apple Computer, Inc. - C:\Programme\iPod\bin\iPodService.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\SNDSrvc.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Programme\Symantec AntiVirus\Rtvscan.exe
    O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\SymWSC.exe
    Danke im Voraus
    sleevenote
    Geändert von Speedy (07.08.2006 um 00:28 Uhr) Grund: tag code eingefügt, wie auch bei den nachfolgenden logfiles !

  2. #2
    Moderator (global) Team-Mitglied Avatar von Speedy
    Registriert seit
    07.08.2004
    Ort
    Linz
    Beiträge
    23.539

    AW: Project1 in der Taskleiste

    hi

    versetze mit hilfe der systemwiederherstellung (gilt nur für win me und win xp) den rechner in einen früheren zustand (als das system noch in ordnung war ), programme die in der zwischenzeit installiert wurden gehen dabei verloren. man kann diesen vorgang auch wieder rückgängig machen, sollte man keinen erfolg damit erzielt haben.
    lg
    www.Speedyweb.at.tf
    Die Durchführung meiner Tipps erfolgt auf eigene Verantwortung!
    HijackThis (Downloads und Anleitungen z.B. was ist fixen usw.)
    HijackThis-Chat oder willst du hier mitmachen Stellenausschreibung
    hilfestellung zur systembereinigung nur über das öffentliche forum und keinesfalls über privatnachrichten oder email !!

  3. #3
    Einsteiger
    Registriert seit
    06.08.2006
    Beiträge
    8

    AW: Project1 in der Taskleiste

    Ich habe leider heute in einem erfolglosen Reperaturversuch die Systemwiederherstellung deaktiviert, jetzt habe ich natürlich keine Wiederherstellungspunkte, aber ich war der Meinung dass eine Wiederherstellung wohl nicht funktionieren würde...

    Gibt es andere Möglichkeiten?

    danke
    sleevenote

  4. #4
    Moderator (global) Team-Mitglied Avatar von Speedy
    Registriert seit
    07.08.2004
    Ort
    Linz
    Beiträge
    23.539

    AW: Project1 in der Taskleiste

    Zitat Zitat von sleevenote Beitrag anzeigen
    ....aber ich war der Meinung dass eine Wiederherstellung wohl nicht funktionieren würde...
    danke
    sleevenote
    wenn die malware in der swh verankert ist , wenn noch ein punkt ohne malware vorhanden wäre

    diese datei(en) hier bei virustotal oder bei Jotti überprüfen lassen, ergebnis (egal wie es aussieht) posten.

    C:\WINDOWS\system32\smartdrv.exe
    C:\WINDOWS\system32\officescan.exe
    C:\WINDOWS\system32\office_pnl.dll
    C:\WINDOWS\System32\hiiedky.exe
    C:\WINDOWS\system\cmdlog.exe
    C:\WINDOWS\assembly\temp\diskip.exe

    fixe mit HijackThis die nachfolgenden einträge

    01 ALLE
    02 ALLE
    O4 - HKLM\..\Run: [Cryptographic Service] C:\WINDOWS\System32\hiiedky.exe
    O4 - HKLM\..\Run: [*mcip] C:\WINDOWS\AppPatch\mcip.exe
    O4 - HKLM\..\Run: [*avdvd] C:\WINDOWS\avdvd.exe
    O4 - HKLM\..\Run: [*tasklog] C:\WINDOWS\AppPatch\tasklog.exe
    O4 - HKLM\..\Run: [*svrtcp] C:\WINDOWS\svrtcp.exe
    O4 - HKLM\..\Run: [*util] C:\WINDOWS\Web\printers\util.exe
    O4 - HKLM\..\Run: [*win] C:\WINDOWS\Fonts\win.exe
    O4 - HKLM\..\Run: [*svcutil] C:\WINDOWS\Help\svcutil.exe
    O4 - HKLM\..\Run: [*diskip] C:\WINDOWS\assembly\temp\diskip.exe
    O4 - HKLM\..\Run: [*cmdlog] C:\WINDOWS\system\cmdlog.exe
    O16 ALLE
    O18 - Filter: text/html - {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - (no file)

    download von ewido, installieren, update ziehen, im abgesicherten modus das system scannen und bereinigen lassen, bericht posten.

    download von counterspy, installieren, starten, wähle nun >> run a spyware scan now <<
    wenn der scan beendet ist, wählst du >> remove << , starte nun den rechner neu und poste das logfile. wurde etwas gefunden, den scan wiederholen und das neue logfile ebenfalls posten, vorgang so oft wiederholen, bis nichts mehr gefunden wird.

    download den ccleaner, installieren, starten -> unter options settings -> german einstellen, nun bereinige damit dein system (windows, applications, registry) (quick-tour und screenshots) Achtung-> die toolbar nicht installieren
    aktiviere so viele kästchen wie möglich und lass die fehler in der registry beheben !
    wechsle im ccleaner nach extras -> programme deinstallieren -> als textdatei speichern -> poste auch dieses logfile.

    poste ein aktuelles hjt logfile
    lg
    www.Speedyweb.at.tf
    Die Durchführung meiner Tipps erfolgt auf eigene Verantwortung!
    HijackThis (Downloads und Anleitungen z.B. was ist fixen usw.)
    HijackThis-Chat oder willst du hier mitmachen Stellenausschreibung
    hilfestellung zur systembereinigung nur über das öffentliche forum und keinesfalls über privatnachrichten oder email !!

  5. #5
    Einsteiger
    Registriert seit
    06.08.2006
    Beiträge
    8

    AW: Project1 in der Taskleiste

    Also, hier die Ergebnisse des virustotal scans:

    C:\WINDOWS\system32\smartdrv.exe:
    BitDefender 7.2 08.06.2006 Adware.Trojfact.A
    Panda 9.0.0.4 08.06.2006 Suspicious file
    Sophos 4.08.0 08.06.2006 Troj/Tfactory-A
    VirusBuster 4.3.7:9 08.06.2006 Trojan.DL.Agent.DTE
    alle andern haben nix gefunden.

    C:\WINDOWS\system32\officescan.exe
    BitDefender 7.2 08.06.2006 Adware.TrojFact.A
    Panda 9.0.0.4 08.06.2006 Suspicious file
    Sophos 4.08.0 08.06.2006 Troj/Tfactory-A
    VirusBuster 4.3.7:9 08.06.2006 Trojan.Renos.AK
    alle andern wieder nix

    C:\WINDOWS\system32\office_pnl.dll
    BitDefender 7.2 08.06.2006 Adware.Trojfact.B
    eTrust-InoculateIT 23.72.88 08.06.2006 Win32/Renos.0dv!DLL!Trojan
    Ewido 4.0 08.06.2006 Not-A-Virus.Hoax.Win32.Renos.dm
    Fortinet 2.77.0.0 08.06.2006 Misc/Renos
    Kaspersky 4.0.2.24 08.06.2006 not-virus:Hoax.Win32.Renos.dm
    Sophos 4.08.0 08.06.2006 Troj/Tfactory-A
    VirusBuster 4.3.7:9 08.06.2006 Trojan.Renos.AJ

    C:\WINDOWS\System32\hiiedky.exe existiert bei mir nicht?!?

    C:\WINDOWS\system\cmdlog.exe gibts bei mir auch nicht?!?

    C:\WINDOWS\assembly\temp\diskip.exe hier gibts bei mir nichtmal das \temp\ verzeichnis.

    ich weiß auch nicht warum ich die dateien nicht finde. versteckte dateien werden angezeigt...

    ich werde nun die hijackthis-dateien die sie gepostet haben fixen.

    edit:
    ich habe alle genannten dateien gefixt, auch die, die ich vorher nicht gefunden habe waren wieder da.
    ich moment bin ich dabei das system im abgesicherten modus mit ewido zu scannen (schreib das von einem anderen computer).
    Geändert von sleevenote (06.08.2006 um 21:48 Uhr)

  6. #6
    Moderator (global) Team-Mitglied Avatar von Speedy
    Registriert seit
    07.08.2004
    Ort
    Linz
    Beiträge
    23.539

    AW: Project1 in der Taskleiste

    hi

    das zu postende logfile von virustotal soll so wie hier aussehen !

    Zitat Zitat von Beispiel
    Complete scanning result of "SmitfraudFix.zip", received in VirusTotal at 07.20.2006, 23:57:11 (CET).

    Antivirus Version Update Result
    AntiVir 6.35.0.21 07.20.2006 no virus found
    Authentium 4.93.8 07.20.2006 no virus found
    Avast 4.7.844.0 07.19.2006 no virus found
    AVG 386 07.20.2006 no virus found
    BitDefender 7.2 07.20.2006 no virus found
    CAT-QuickHeal 8.00 07.20.2006 no virus found
    ClamAV devel-20060426 07.20.2006 no virus found
    DrWeb 4.33 07.20.2006 no virus found
    eTrust-InoculateIT 23.72.74 07.20.2006 no virus found
    eTrust-Vet 12.6.2303 07.20.2006 no virus found
    Ewido 4.0 07.20.2006 no virus found
    Fortinet 2.77.0.0 07.20.2006 no virus found
    F-Prot 3.16f 07.20.2006 no virus found
    F-Prot4 4.2.1.29 07.20.2006 no virus found
    Ikarus 0.2.65.0 07.20.2006 no virus found
    Kaspersky 4.0.2.24 07.20.2006 no virus found
    McAfee 4811 07.20.2006 potentially unwanted program PrcViewer
    Microsoft 1.1508 07.20.2006 no virus found
    NOD32v2 1.1671 07.20.2006 Win32/PrcView
    Norman 5.90.23 07.20.2006 no virus found
    Panda 9.0.0.4 07.20.2006 Application/Processor
    Sophos 4.07.0 07.20.2006 no virus found
    Symantec 8.0 07.20.2006 no virus found
    TheHacker 5.9.8.178 07.19.2006 Aplicacion/Processor.20
    UNA 1.83 07.20.2006 no virus found
    VBA32 3.11.0 07.20.2006 no virus found
    VirusBuster 4.3.7:9 07.20.2006 no virus found

    Aditional Information
    File size: 263907 bytes
    MD5: 8e78bda2c8a92b6f65ccb596f0dd00b6
    SHA1: b4ccc286e2f828fd3935d2f97b5d017d427582f4
    packers: UPX
    lg
    www.Speedyweb.at.tf
    Die Durchführung meiner Tipps erfolgt auf eigene Verantwortung!
    HijackThis (Downloads und Anleitungen z.B. was ist fixen usw.)
    HijackThis-Chat oder willst du hier mitmachen Stellenausschreibung
    hilfestellung zur systembereinigung nur über das öffentliche forum und keinesfalls über privatnachrichten oder email !!

  7. #7
    Einsteiger
    Registriert seit
    06.08.2006
    Beiträge
    8

    AW: Project1 in der Taskleiste

    Okay,hier ist also was ich bis jetzt getan hab:

    Die Dateien mit virustotal gescannt (nur die ersten 2 deiner 4 aufgelisteten dateien sind noch vorhanden)
    hier die ergebnisse:


    Code:
    scanning result of "smartdrv.exe", received in VirusTotal at 08.07.2006, 00:49:24 (CET).
    
    Antivirus Version Update Result 
    AntiVir 6.35.1.0 08.06.2006  no virus found 
    Authentium 4.93.8 08.06.2006  no virus found 
    Avast 4.7.844.0 08.04.2006  no virus found 
    AVG 386 08.05.2006  no virus found 
    BitDefender 7.2 08.07.2006 Adware.Trojfact.A 
    CAT-QuickHeal 8.00 08.04.2006  no virus found 
    ClamAV devel-20060426 08.06.2006  no virus found 
    DrWeb 4.33 08.06.2006  no virus found 
    eTrust-InoculateIT 23.72.88 08.06.2006  no virus found 
    eTrust-Vet 12.6.2324 08.04.2006  no virus found 
    Ewido 4.0 08.06.2006  no virus found 
    Fortinet 2.77.0.0 08.06.2006  no virus found 
    F-Prot 3.16f 08.06.2006  no virus found 
    F-Prot4 4.2.1.29 08.06.2006  no virus found 
    Ikarus 0.2.65.0 08.04.2006  no virus found 
    Kaspersky 4.0.2.24 08.07.2006  no virus found 
    McAfee 4822 08.04.2006  no virus found 
    Microsoft 1.1508 08.04.2006  no virus found 
    NOD32v2 1.1694 08.05.2006  no virus found 
    Norman 5.90.23 08.04.2006  no virus found 
    Panda 9.0.0.4 08.06.2006 Suspicious file 
    Sophos 4.08.0 08.06.2006 Troj/Tfactory-A 
    Symantec 8.0 08.06.2006  no virus found 
    TheHacker 5.9.8.186 08.04.2006  no virus found 
    UNA 1.83 08.04.2006  no virus found 
    VBA32 3.11.0 08.06.2006  no virus found 
    VirusBuster 4.3.7:9 08.06.2006 Trojan.DL.Agent.DTE
    Code:
    Complete scanning result of "officescan.exe", received in VirusTotal at 08.07.2006, 00:52:27 (CET).
    
    Antivirus Version Update Result 
    AntiVir 6.35.1.0 08.06.2006  no virus found 
    Authentium 4.93.8 08.06.2006  no virus found 
    Avast 4.7.844.0 08.04.2006  no virus found 
    AVG 386 08.05.2006  no virus found 
    BitDefender 7.2 08.07.2006 Adware.TrojFact.A 
    CAT-QuickHeal 8.00 08.04.2006  no virus found 
    ClamAV devel-20060426 08.06.2006  no virus found 
    DrWeb 4.33 08.06.2006  no virus found 
    eTrust-InoculateIT 23.72.88 08.06.2006  no virus found 
    eTrust-Vet 12.6.2324 08.04.2006  no virus found 
    Ewido 4.0 08.06.2006  no virus found 
    Fortinet 2.77.0.0 08.06.2006  no virus found 
    F-Prot 3.16f 08.06.2006  no virus found 
    F-Prot4 4.2.1.29 08.06.2006  no virus found 
    Ikarus 0.2.65.0 08.04.2006  no virus found 
    Kaspersky 4.0.2.24 08.07.2006  no virus found 
    McAfee 4822 08.04.2006  no virus found 
    Microsoft 1.1508 08.04.2006  no virus found 
    NOD32v2 1.1694 08.05.2006  no virus found 
    Norman 5.90.23 08.04.2006  no virus found 
    Panda 9.0.0.4 08.06.2006 Suspicious file 
    Sophos 4.08.0 08.06.2006 Troj/Tfactory-A 
    Symantec 8.0 08.06.2006  no virus found 
    TheHacker 5.9.8.186 08.04.2006  no virus found 
    UNA 1.83 08.04.2006  no virus found 
    VBA32 3.11.0 08.06.2006  no virus found 
    VirusBuster 4.3.7:9 08.06.2006 Trojan.Renos.AK 
    
    
    Aditional Information 
    File size: 94208 bytes 
    MD5: 866c840392b5c227502d68dd994a78da 
    SHA1: a3fc70b60ee979b88e39c04d6876d2833b337132 
    packers: UPX
    Die von dir angegebenen Sachen mit hjt gefixt

    einen scan mit ewido im abgesicherten modus gemacht,hier der log:


    Code:
    ---------------------------------------------------------
    ewido anti-spyware - Scan-Bericht
    ---------------------------------------------------------
    
     + Erstellt um:	23:29:43 06.08.2006
    
     + Scan-Ergebnis:	
    
    
    
    HKLM\SOFTWARE\NIX Solutions -> Adware.DailyToolbar : Mit Backup gesäubert (unter Quarantäne gestellt).
    HKU\S-1-5-21-1547161642-492894223-1060284298-1003\Software\RX Toolbar -> Adware.RXToolbar : Mit Backup gesäubert (unter Quarantäne gestellt).
    HKLM\SOFTWARE\Classes\Common.Buttons -> Adware.WebSearch : Mit Backup gesäubert (unter Quarantäne gestellt).
    HKLM\SOFTWARE\Classes\PROTOCOLS\Name-Space Handler\res -> Adware.WebSearch : Mit Backup gesäubert (unter Quarantäne gestellt).
    C:\WINDOWS\system32\cavbsjwb.exe -> Downloader.VB.ajp : Mit Backup gesäubert (unter Quarantäne gestellt).
    HKU\S-1-5-21-1547161642-492894223-1060284298-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E52DEDBB-D168-4BDB-B229-C48160800E81} -> Hijacker.Generic : Mit Backup gesäubert (unter Quarantäne gestellt).
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\evawalue.dat -> Logger.Agent.l : Mit Backup gesäubert (unter Quarantäne gestellt).
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\tnofc.dat -> Logger.Agent.l : Mit Backup gesäubert (unter Quarantäne gestellt).
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\vrdyek.dat -> Logger.Agent.l : Mit Backup gesäubert (unter Quarantäne gestellt).
    C:\Programme\Bethesda Softworks\Morrowind\TRAINER.EXE -> Logger.Banker : Mit Backup gesäubert (unter Quarantäne gestellt).
    C:\Dokumente und Einstellungen\Jeff\Desktop\backups\backup-20060806-223230-837.dll -> Not-A-Virus.Hoax.Win32.Renos.dm : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Desktop\backups\backup-20060806-223305-548.dll -> Not-A-Virus.Hoax.Win32.Renos.dm : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Desktop\backups\backup-20060806-223448-722.dll -> Not-A-Virus.Hoax.Win32.Renos.dm : Gesäubert.
    C:\WINDOWS\system32\office_pnl.dll -> Not-A-Virus.Hoax.Win32.Renos.dm : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@2o7[1].txt -> TrackingCookie.2o7 : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@aoluk.122.2o7[1].txt -> TrackingCookie.2o7 : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@cbs.112.2o7[1].txt -> TrackingCookie.2o7 : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@cnn.122.2o7[1].txt -> TrackingCookie.2o7 : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@hotelscom.122.2o7[1].txt -> TrackingCookie.2o7 : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@microsofteup.112.2o7[1].txt -> TrackingCookie.2o7 : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@microsoftwga.112.2o7[1].txt -> TrackingCookie.2o7 : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@opodo.122.2o7[1].txt -> TrackingCookie.2o7 : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@2o7[2].txt -> TrackingCookie.2o7 : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@cnn.122.2o7[1].txt -> TrackingCookie.2o7 : Gesäubert.
    C:\RECYCLER\NPROTECT\01926691.TXT -> TrackingCookie.2o7 : Gesäubert.
    :mozilla.35:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Adjuggler : Gesäubert.
    :mozilla.35:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Adjuggler : Gesäubert.
    :mozilla.36:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Adjuggler : Gesäubert.
    :mozilla.76:C:\Dokumente und Einstellungen\Jeff\Anwendungsdaten\Mozilla\Firefox\Profiles\m75s91e8.default\cookies.txt -> TrackingCookie.Adjuggler : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@rotator.adjuggler[1].txt -> TrackingCookie.Adjuggler : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@adtech[2].txt -> TrackingCookie.Adtech : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@adtech[2].txt -> TrackingCookie.Adtech : Gesäubert.
    :mozilla.31:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Advertising : Gesäubert.
    :mozilla.31:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Advertising : Gesäubert.
    :mozilla.32:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Advertising : Gesäubert.
    :mozilla.32:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Advertising : Gesäubert.
    :mozilla.32:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Advertising : Gesäubert.
    :mozilla.33:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Advertising : Gesäubert.
    :mozilla.33:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Advertising : Gesäubert.
    :mozilla.33:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Advertising : Gesäubert.
    :mozilla.34:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Advertising : Gesäubert.
    :mozilla.34:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Advertising : Gesäubert.
    :mozilla.34:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Advertising : Gesäubert.
    :mozilla.35:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Advertising : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@advertising[1].txt -> TrackingCookie.Advertising : Gesäubert.
    C:\RECYCLER\NPROTECT\01926590.TXT -> TrackingCookie.Advertising : Gesäubert.
    C:\RECYCLER\NPROTECT\01926591.TXT -> TrackingCookie.Advertising : Gesäubert.
    :mozilla.27:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Bluestreak : Gesäubert.
    :mozilla.27:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Bluestreak : Gesäubert.
    :mozilla.28:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Bluestreak : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@bluestreak[2].txt -> TrackingCookie.Bluestreak : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@bluestreak[2].txt -> TrackingCookie.Bluestreak : Gesäubert.
    C:\RECYCLER\NPROTECT\01932891.TXT -> TrackingCookie.Bluestreak : Gesäubert.
    C:\RECYCLER\NPROTECT\01932892.TXT -> TrackingCookie.Bluestreak : Gesäubert.
    C:\RECYCLER\NPROTECT\01932897.TXT -> TrackingCookie.Bluestreak : Gesäubert.
    C:\RECYCLER\NPROTECT\01932898.TXT -> TrackingCookie.Bluestreak : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@citi.bridgetrack[1].txt -> TrackingCookie.Bridgetrack : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@com[1].txt -> TrackingCookie.Com : Gesäubert.
    :mozilla.14:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Doubleclick : Gesäubert.
    :mozilla.14:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Doubleclick : Gesäubert.
    :mozilla.15:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Doubleclick : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@doubleclick[1].txt -> TrackingCookie.Doubleclick : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@estat[1].txt -> TrackingCookie.Estat : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@www.etracker[1].txt -> TrackingCookie.Etracker : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@as-eu.falkag[1].txt -> TrackingCookie.Falkag : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@as1.falkag[2].txt -> TrackingCookie.Falkag : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@as-eu.falkag[1].txt -> TrackingCookie.Falkag : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@as1.falkag[2].txt -> TrackingCookie.Falkag : Gesäubert.
    C:\RECYCLER\NPROTECT\01926410.TXT -> TrackingCookie.Falkag : Gesäubert.
    C:\RECYCLER\NPROTECT\01926411.TXT -> TrackingCookie.Falkag : Gesäubert.
    C:\RECYCLER\NPROTECT\01926412.TXT -> TrackingCookie.Falkag : Gesäubert.
    C:\RECYCLER\NPROTECT\01926413.TXT -> TrackingCookie.Falkag : Gesäubert.
    C:\RECYCLER\NPROTECT\01926414.TXT -> TrackingCookie.Falkag : Gesäubert.
    C:\RECYCLER\NPROTECT\01926971.TXT -> TrackingCookie.Falkag : Gesäubert.
    C:\RECYCLER\NPROTECT\01926973.TXT -> TrackingCookie.Falkag : Gesäubert.
    C:\RECYCLER\NPROTECT\01926974.TXT -> TrackingCookie.Falkag : Gesäubert.
    C:\RECYCLER\NPROTECT\01926975.TXT -> TrackingCookie.Falkag : Gesäubert.
    C:\RECYCLER\NPROTECT\01932997.TXT -> TrackingCookie.Falkag : Gesäubert.
    C:\RECYCLER\NPROTECT\01932998.TXT -> TrackingCookie.Falkag : Gesäubert.
    C:\RECYCLER\NPROTECT\01932999.TXT -> TrackingCookie.Falkag : Gesäubert.
    C:\RECYCLER\NPROTECT\01933000.TXT -> TrackingCookie.Falkag : Gesäubert.
    C:\RECYCLER\NPROTECT\01933001.TXT -> TrackingCookie.Falkag : Gesäubert.
    C:\RECYCLER\NPROTECT\01933004.TXT -> TrackingCookie.Falkag : Gesäubert.
    C:\RECYCLER\NPROTECT\01933005.TXT -> TrackingCookie.Falkag : Gesäubert.
    C:\RECYCLER\NPROTECT\01933006.TXT -> TrackingCookie.Falkag : Gesäubert.
    C:\RECYCLER\NPROTECT\01933007.TXT -> TrackingCookie.Falkag : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@ehg-tmgolf.hitbox[2].txt -> TrackingCookie.Hitbox : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@hitbox[2].txt -> TrackingCookie.Hitbox : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@max.i12[1].txt -> TrackingCookie.I12 : Gesäubert.
    :mozilla.44:C:\Dokumente und Einstellungen\Jeff\Anwendungsdaten\Mozilla\Firefox\Profiles\m75s91e8.default\cookies.txt -> TrackingCookie.Ivwbox : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@ivwbox[2].txt -> TrackingCookie.Ivwbox : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@ivwbox[1].txt -> TrackingCookie.Ivwbox : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@komtrack[2].txt -> TrackingCookie.Komtrack : Gesäubert.
    :mozilla.55:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Liveperson : Gesäubert.
    :mozilla.55:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Liveperson : Gesäubert.
    :mozilla.56:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Liveperson : Gesäubert.
    :mozilla.56:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Liveperson : Gesäubert.
    :mozilla.56:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Liveperson : Gesäubert.
    :mozilla.57:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Liveperson : Gesäubert.
    :mozilla.77:C:\Dokumente und Einstellungen\Jeff\Anwendungsdaten\Mozilla\Firefox\Profiles\m75s91e8.default\cookies.txt -> TrackingCookie.Liveperson : Gesäubert.
    :mozilla.78:C:\Dokumente und Einstellungen\Jeff\Anwendungsdaten\Mozilla\Firefox\Profiles\m75s91e8.default\cookies.txt -> TrackingCookie.Liveperson : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@server.iad.liveperson[1].txt -> TrackingCookie.Liveperson : Gesäubert.
    :mozilla.21:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Mediaplex : Gesäubert.
    :mozilla.21:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Mediaplex : Gesäubert.
    :mozilla.22:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Mediaplex : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@mediaplex[1].txt -> TrackingCookie.Mediaplex : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@www.myaffiliateprogram[1].txt -> TrackingCookie.Myaffiliateprogram : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@need2find[2].txt -> TrackingCookie.Need2find : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@need2find[2].txt -> TrackingCookie.Need2find : Gesäubert.
    C:\RECYCLER\NPROTECT\01925155.TXT -> TrackingCookie.Need2find : Gesäubert.
    C:\RECYCLER\NPROTECT\01932696.TXT -> TrackingCookie.Need2find : Gesäubert.
    C:\RECYCLER\NPROTECT\01933110.TXT -> TrackingCookie.Need2find : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@oewabox[1].txt -> TrackingCookie.Oewabox : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@oewabox[2].txt -> TrackingCookie.Oewabox : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@data3.perf.overture[1].txt -> TrackingCookie.Overture : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@overture[1].txt -> TrackingCookie.Overture : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@perf.overture[1].txt -> TrackingCookie.Overture : Gesäubert.
    :mozilla.10:C:\Dokumente und Einstellungen\Jeff\Anwendungsdaten\Mozilla\Firefox\Profiles\m75s91e8.default\cookies.txt -> TrackingCookie.Pointroll : Gesäubert.
    :mozilla.11:C:\Dokumente und Einstellungen\Jeff\Anwendungsdaten\Mozilla\Firefox\Profiles\m75s91e8.default\cookies.txt -> TrackingCookie.Pointroll : Gesäubert.
    :mozilla.15:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Pointroll : Gesäubert.
    :mozilla.15:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Pointroll : Gesäubert.
    :mozilla.16:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Pointroll : Gesäubert.
    :mozilla.16:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Pointroll : Gesäubert.
    :mozilla.16:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Pointroll : Gesäubert.
    :mozilla.17:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Pointroll : Gesäubert.
    :mozilla.17:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Pointroll : Gesäubert.
    :mozilla.17:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Pointroll : Gesäubert.
    :mozilla.18:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Pointroll : Gesäubert.
    :mozilla.18:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Pointroll : Gesäubert.
    :mozilla.18:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Pointroll : Gesäubert.
    :mozilla.19:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Pointroll : Gesäubert.
    :mozilla.8:C:\Dokumente und Einstellungen\Jeff\Anwendungsdaten\Mozilla\Firefox\Profiles\m75s91e8.default\cookies.txt -> TrackingCookie.Pointroll : Gesäubert.
    :mozilla.9:C:\Dokumente und Einstellungen\Jeff\Anwendungsdaten\Mozilla\Firefox\Profiles\m75s91e8.default\cookies.txt -> TrackingCookie.Pointroll : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@ads.pointroll[2].txt -> TrackingCookie.Pointroll : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@ppms.popularix[2].txt -> TrackingCookie.Popularix : Gesäubert.
    :mozilla.19:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Questionmarket : Gesäubert.
    :mozilla.19:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Questionmarket : Gesäubert.
    :mozilla.20:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Questionmarket : Gesäubert.
    :mozilla.20:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Questionmarket : Gesäubert.
    :mozilla.20:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Questionmarket : Gesäubert.
    :mozilla.21:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Questionmarket : Gesäubert.
    :mozilla.51:C:\Dokumente und Einstellungen\Jeff\Anwendungsdaten\Mozilla\Firefox\Profiles\m75s91e8.default\cookies.txt -> TrackingCookie.Questionmarket : Gesäubert.
    :mozilla.52:C:\Dokumente und Einstellungen\Jeff\Anwendungsdaten\Mozilla\Firefox\Profiles\m75s91e8.default\cookies.txt -> TrackingCookie.Questionmarket : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@questionmarket[1].txt -> TrackingCookie.Questionmarket : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@questionmarket[1].txt -> TrackingCookie.Questionmarket : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@stats1.reliablestats[1].txt -> TrackingCookie.Reliablestats : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@revenue[1].txt -> TrackingCookie.Revenue : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@ads0.revenue[1].txt -> TrackingCookie.Revenue : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@revenue[1].txt -> TrackingCookie.Revenue : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@edge.ru4[1].txt -> TrackingCookie.Ru4 : Gesäubert.
    :mozilla.23:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Serving-sys : Gesäubert.
    :mozilla.23:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Serving-sys : Gesäubert.
    :mozilla.24:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Serving-sys : Gesäubert.
    :mozilla.24:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Serving-sys : Gesäubert.
    :mozilla.24:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Serving-sys : Gesäubert.
    :mozilla.25:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Serving-sys : Gesäubert.
    :mozilla.25:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Serving-sys : Gesäubert.
    :mozilla.25:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Serving-sys : Gesäubert.
    :mozilla.26:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Serving-sys : Gesäubert.
    :mozilla.26:C:\RECYCLER\NPROTECT\01932976.MOZ -> TrackingCookie.Serving-sys : Gesäubert.
    :mozilla.26:C:\RECYCLER\NPROTECT\01932977.MOZ -> TrackingCookie.Serving-sys : Gesäubert.
    :mozilla.27:C:\RECYCLER\NPROTECT\01932974.MOZ -> TrackingCookie.Serving-sys : Gesäubert.
    :mozilla.57:C:\Dokumente und Einstellungen\Jeff\Anwendungsdaten\Mozilla\Firefox\Profiles\m75s91e8.default\cookies.txt -> TrackingCookie.Serving-sys : Gesäubert.
    :mozilla.58:C:\Dokumente und Einstellungen\Jeff\Anwendungsdaten\Mozilla\Firefox\Profiles\m75s91e8.default\cookies.txt -> TrackingCookie.Serving-sys : Gesäubert.
    :mozilla.59:C:\Dokumente und Einstellungen\Jeff\Anwendungsdaten\Mozilla\Firefox\Profiles\m75s91e8.default\cookies.txt -> TrackingCookie.Serving-sys : Gesäubert.
    :mozilla.60:C:\Dokumente und Einstellungen\Jeff\Anwendungsdaten\Mozilla\Firefox\Profiles\m75s91e8.default\cookies.txt -> TrackingCookie.Serving-sys : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@serving-sys[2].txt -> TrackingCookie.Serving-sys : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@serving-sys[2].txt -> TrackingCookie.Serving-sys : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@cs.sexcounter[2].txt -> TrackingCookie.Sexcounter : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@adopt.specificclick[1].txt -> TrackingCookie.Specificclick : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@spylog[1].txt -> TrackingCookie.Spylog : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@statcounter[2].txt -> TrackingCookie.Statcounter : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@tacoda[1].txt -> TrackingCookie.Tacoda : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@targetnet[1].txt -> TrackingCookie.Targetnet : Gesäubert.
    :mozilla.75:C:\Dokumente und Einstellungen\Jeff\Anwendungsdaten\Mozilla\Firefox\Profiles\m75s91e8.default\cookies.txt -> TrackingCookie.Tfag : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@valueclick[2].txt -> TrackingCookie.Valueclick : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@count.xhit[2].txt -> TrackingCookie.Xhit : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\Cookies\jeff@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@c1.zedo[1].txt -> TrackingCookie.Zedo : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@c5.zedo[2].txt -> TrackingCookie.Zedo : Gesäubert.
    C:\Dokumente und Einstellungen\Jeff\Cookies\jeff@zedo[2].txt -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926140.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926141.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926143.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926145.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926146.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926147.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926148.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926149.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926150.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926151.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926152.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926153.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926154.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926158.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926159.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926160.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926161.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926162.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926163.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926164.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926179.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926180.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926181.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926182.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926183.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926184.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926185.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926186.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926187.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926188.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926189.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926190.TXT -> TrackingCookie.Zedo : Gesäubert.
    C:\RECYCLER\NPROTECT\01926191.TXT -> TrackingCookie.Zedo : Gesäubert.
    
    ::Berichtende
    1 Scan mit Counterspy gemacht, hier der bericht:

    Code:
    Spyware Scan Details
    Start Date: 06.08.2006 23:48:35
    End Date: 07.08.2006 00:44:29
    Total Time: 55 mins 54 secs 
    
    Detected spyware
    
    KaZaA P2P Program  more information...
    Details: KaZaA is a peer-to-peer (P2P) application that allows its users to join together in a network via the Internet and share files from each other's hard drives.
    Status: Ignored
    
    Infected files detected
    c:\programme\kazaa\plugins.htm
    c:\programme\kazaa\versions.dat
    c:\programme\kazaa\bgp2p\plugins\ace.xmd
    c:\programme\kazaa\bgp2p\plugins\arc.xmd
    c:\programme\kazaa\bgp2p\plugins\arj.xmd
    c:\programme\kazaa\bgp2p\plugins\bach.xmd
    c:\programme\kazaa\bgp2p\plugins\bzip2.xmd
    c:\programme\kazaa\bgp2p\plugins\cab.xmd
    c:\programme\kazaa\bgp2p\plugins\cevakrnl.cvd
    c:\programme\kazaa\bgp2p\plugins\cevakrnl.ivd
    c:\programme\kazaa\bgp2p\plugins\cevakrnl.rvd
    c:\programme\kazaa\bgp2p\plugins\cevakrnl.xmd
    c:\programme\kazaa\bgp2p\plugins\ceva_dll.cvd
    c:\programme\kazaa\bgp2p\plugins\ceva_vfs.cvd
    c:\programme\kazaa\bgp2p\plugins\chm.xmd
    c:\programme\kazaa\bgp2p\plugins\cpio.xmd
    c:\programme\kazaa\bgp2p\plugins\cran.cvd
    c:\programme\kazaa\bgp2p\plugins\cran.xmd
    c:\programme\kazaa\bgp2p\plugins\dbx.xmd
    c:\programme\kazaa\bgp2p\plugins\docfile.xmd
    c:\programme\kazaa\bgp2p\plugins\emalware.cvd
    c:\programme\kazaa\bgp2p\plugins\emalware.ivd
    c:\programme\kazaa\bgp2p\plugins\emalware.xmd
    c:\programme\kazaa\bgp2p\plugins\epoc.xmd
    c:\programme\kazaa\bgp2p\plugins\gzip.xmd
    c:\programme\kazaa\bgp2p\plugins\ha.xmd
    c:\programme\kazaa\bgp2p\plugins\hlp.xmd
    c:\programme\kazaa\bgp2p\plugins\hpe.cvd
    c:\programme\kazaa\bgp2p\plugins\hpe.xmd
    c:\programme\kazaa\bgp2p\plugins\hqx.xmd
    c:\programme\kazaa\bgp2p\plugins\html.xmd
    c:\programme\kazaa\bgp2p\plugins\imp.xmd
    c:\programme\kazaa\bgp2p\plugins\inno.xmd
    c:\programme\kazaa\bgp2p\plugins\instyler.xmd
    c:\programme\kazaa\bgp2p\plugins\iso.xmd
    c:\programme\kazaa\bgp2p\plugins\java.cvd
    c:\programme\kazaa\bgp2p\plugins\java.xmd
    c:\programme\kazaa\bgp2p\plugins\lha.xmd
    c:\programme\kazaa\bgp2p\plugins\lnk.xmd
    c:\programme\kazaa\bgp2p\plugins\mbox.xmd
    c:\programme\kazaa\bgp2p\plugins\mbx.xmd
    c:\programme\kazaa\bgp2p\plugins\mdx.xmd
    c:\programme\kazaa\bgp2p\plugins\mdx_97.cvd
    c:\programme\kazaa\bgp2p\plugins\mdx_97.ivd
    c:\programme\kazaa\bgp2p\plugins\mdx_w95.cvd
    c:\programme\kazaa\bgp2p\plugins\mdx_x95.cvd
    c:\programme\kazaa\bgp2p\plugins\mdx_xf.cvd
    c:\programme\kazaa\bgp2p\plugins\mime.xmd
    c:\programme\kazaa\bgp2p\plugins\mso.xmd
    c:\programme\kazaa\bgp2p\plugins\na.cvd
    c:\programme\kazaa\bgp2p\plugins\na.xmd
    c:\programme\kazaa\bgp2p\plugins\nelf.cvd
    c:\programme\kazaa\bgp2p\plugins\nelf.xmd
    c:\programme\kazaa\bgp2p\plugins\objd.xmd
    c:\programme\kazaa\bgp2p\plugins\pdf.xmd
    c:\programme\kazaa\bgp2p\plugins\pst.xmd
    c:\programme\kazaa\bgp2p\plugins\rar.xmd
    c:\programme\kazaa\bgp2p\plugins\rpm.xmd
    c:\programme\kazaa\bgp2p\plugins\rtf.xmd
    c:\programme\kazaa\bgp2p\plugins\rup.cvd
    c:\programme\kazaa\bgp2p\plugins\rup.xmd
    c:\programme\kazaa\bgp2p\plugins\sdx.cvd
    c:\programme\kazaa\bgp2p\plugins\sdx.ivd
    c:\programme\kazaa\bgp2p\plugins\sdx.xmd
    c:\programme\kazaa\bgp2p\plugins\sfx.xmd
    c:\programme\kazaa\bgp2p\plugins\swf.xmd
    c:\programme\kazaa\bgp2p\plugins\tar.xmd
    c:\programme\kazaa\bgp2p\plugins\td0.xmd
    c:\programme\kazaa\bgp2p\plugins\thebat.xmd
    c:\programme\kazaa\bgp2p\plugins\tnef.xmd
    c:\programme\kazaa\bgp2p\plugins\unpack.cvd
    c:\programme\kazaa\bgp2p\plugins\unpack.ivd
    c:\programme\kazaa\bgp2p\plugins\unpack.xmd
    c:\programme\kazaa\bgp2p\plugins\update.txt
    c:\programme\kazaa\bgp2p\plugins\uudecode.xmd
    c:\programme\kazaa\bgp2p\plugins\ve.cvd
    c:\programme\kazaa\bgp2p\plugins\ve.ivd
    c:\programme\kazaa\bgp2p\plugins\ve.xmd
    c:\programme\kazaa\bgp2p\plugins\vedata.cvd
    c:\programme\kazaa\bgp2p\plugins\viza.xmd
    c:\programme\kazaa\bgp2p\plugins\wise.xmd
    c:\programme\kazaa\bgp2p\plugins\xishield.xmd
    c:\programme\kazaa\bgp2p\plugins\z.xmd
    c:\programme\kazaa\bgp2p\plugins\zip.xmd
    c:\programme\kazaa\bgp2p\plugins\zoo.xmd
    c:\programme\kazaa\bgp2p\plugins.htm
    c:\programme\kazaa\bgp2p\versions.dat
    c:\programme\kazaa\data\{4c913e54-46d4-6112-c023-2f9b93ddb86f}
    c:\programme\kazaa\data\{5270e3a8-45ed-82bf-2792-b2d730f5f4cd}
    c:\programme\kazaa\data\{d76f501c-97a9-92f4-fb68-229f4fe6e93a}
    c:\programme\kazaa\data\{e3083579-4a63-5d26-0665-5225c25e4ce3}
    c:\programme\kazaa\db\ctx4-040731.cab
    c:\programme\kazaa\db\ctx4-050622.cab
    c:\programme\kazaa\db\data1024.dbb
    c:\programme\kazaa\db\data256.dbb
    c:\programme\kazaa\db\k7tqkgkk_tssv125.dat
    c:\programme\kazaa\db\np.tmp
    c:\programme\kazaa\db\ova4-050709.cab
    c:\programme\kazaa\db\tsi4-040802.cab
    c:\programme\kazaa\db\tsi4-040809.cab
    c:\programme\kazaa\db\tsi4-050622a.cab
    c:\programme\kazaa\db\tsi4-050622b.cab
    c:\programme\kazaa\db\tss4.cab
    c:\programme\kazaa\my shared folder\01 - jacqueline.wma
    c:\programme\kazaa\my shared folder\01 reconsider me.mp3
    c:\programme\kazaa\my shared folder\04 - matinee.mp3
    c:\programme\kazaa\my shared folder\05-auf acshe.mp3
    c:\programme\kazaa\my shared folder\07-this fire.wma
    c:\programme\kazaa\my shared folder\10 come on home.wma
    c:\programme\kazaa\my shared folder\11 40 ft.mp3
    c:\programme\kazaa\my shared folder\download10921567931396307.dat
    c:\programme\kazaa\my shared folder\flaming lips - i got a girl.mp3
    c:\programme\kazaa\my shared folder\franz ferdinand - cheating on you.mp3
    c:\programme\kazaa\my shared folder\franz ferdinand - darts of pleasure (1).mp3
    c:\programme\kazaa\my shared folder\franz ferdinand - michael.mp3
    c:\programme\kazaa\my shared folder\franz ferdinand - take me out.mp3
    c:\programme\kazaa\my shared folder\franz ferdinand - tell her tonight.mp3
    c:\programme\kazaa\my shared folder\geri halliwell - it's raining men.mp3
    c:\programme\kazaa\my shared folder\gerry rafferty - baker street.mp3
    c:\programme\kazaa\my shared folder\kazaa270_en.exe
    c:\programme\kazaa\my shared folder\kazaa300_en.exe
    c:\programme\kazaa\my shared folder\kmd263_de (1).exe
    c:\programme\kazaa\my shared folder\kmd263_de.exe
    c:\programme\kazaa\my shared folder\shins - chutes too narrow - 01 - kissing the lipless.mp3
    c:\programme\kazaa\my shared folder\shins-gone for good.mp3
    c:\programme\kazaa\my shared folder\spring break pussy.wmv
    c:\programme\kazaa\my shared folder\the flaming lips - fight test.mp3
    
    Infected registry entries detected
    HKEY_CURRENT_USER\Software\Kazaa 
    HKEY_CURRENT_USER\Software\Kazaa\Advanced Status Installed
    HKEY_CURRENT_USER\Software\Kazaa\Settings +
    HKEY_CURRENT_USER\Software\Kazaa\Settings Date 
    HKEY_CURRENT_USER\Software\Kazaa\Settings UseCount 0
    HKEY_CURRENT_USER\Software\Kazaa\Transfer +
    HKEY_CURRENT_USER\Software\Kazaa\Transfer NoUploadLimitWhenIdle 1
    HKEY_CURRENT_USER\Software\Kazaa\UserDetails +
    HKEY_CURRENT_USER\Software\Kazaa Tmp 0
    HKEY_LOCAL_MACHINE\software\magnet\handlers\kazaa 
    HKEY_LOCAL_MACHINE\software\magnet\handlers\kazaa Kazaa Media Desktop
    HKEY_CLASSES_ROOT\clsid\{66fc8717-efa7-4546-8c4a-e224f3a80c76} 
    HKEY_CLASSES_ROOT\clsid\{66fc8717-efa7-4546-8c4a-e224f3a80c76}\TreatAs {0494D0DB-F8E0-41ad-92A3-14154ECE70AC}
    HKEY_CLASSES_ROOT\clsid\{66fc8717-efa7-4546-8c4a-e224f3a80c76} 
    HKEY_LOCAL_MACHINE\software\sharman networks ltd 
    
    
    Morpheus P2P Program  more information...
    Details: P2P file sharing program that installs a number of adware programs. Morpheus also displays its own popup advertsing.
    Status: Ignored
    
    Infected files detected
    c:\programme\streamcast\morpheus\crashdump.xml
    c:\programme\streamcast\morpheus\downloads\jet - move on.mp3
    c:\programme\streamcast\morpheus\downloads\taylor rain (little lace panties #5) - (part 4).wmv
    c:\programme\streamcast\morpheus\folder.ico
    c:\programme\streamcast\morpheus\gnucdna.dll
    c:\programme\streamcast\morpheus\mldonkey\mldonkey\mlnet_strings.en
    c:\programme\streamcast\morpheus\morpheus.ico
    c:\dokumente und einstellungen\jeff\anwendungsdaten\morpheus\audiorecent.m3u
    c:\dokumente und einstellungen\jeff\anwendungsdaten\morpheus\chatservers.ini
    c:\dokumente und einstellungen\jeff\anwendungsdaten\morpheus\chc0.cfg
    c:\dokumente und einstellungen\jeff\anwendungsdaten\morpheus\morphblocked.net
    c:\dokumente und einstellungen\jeff\anwendungsdaten\morpheus\morphcache.net
    c:\dokumente und einstellungen\jeff\anwendungsdaten\morpheus\morphconfig.ini
    c:\dokumente und einstellungen\jeff\anwendungsdaten\morpheus\morphproxy.net
    c:\dokumente und einstellungen\jeff\anwendungsdaten\morpheus\settings0.cfg
    c:\dokumente und einstellungen\jeff\anwendungsdaten\morpheus\videorecent.m3u
    c:\dokumente und einstellungen\jeff\anwendungsdaten\morpheus\webcache.net
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - baby shambles sessions (cd 1).m3u
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - babyshambles 1.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - babyshambles 2.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - back from the dead.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - do you know me.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - don't look back into the sun 1.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - don't look back into the sun 2.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - i love you (but you're green).mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - in love with a feeling 1.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - in love with a feeling 2.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - instrumental 1.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - instrumental 2.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - that bowery song.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - the last post on the bugle.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - the man who would be king.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - the road to ruin 1.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - the road to ruin 2.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - untitled 1.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - untitled 108.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - untitled 2.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - untitled 3.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 1\the libertines - what katie did.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 2\adam green - what a waster.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 2\the libertines - albion 1.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 2\the libertines - albion 2.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 2\the libertines - albion intro.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 2\the libertines - baby shambles sessions (cd 2).m3u
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 2\the libertines - france 1.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 2\the libertines - france 2.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 2\the libertines - france 3.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 2\the libertines - instrumental 1.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 2\the libertines - instrumental 2.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 2\the libertines - instrumental 3.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 2\the libertines - lots and lots of songs.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 2\the libertines - lots of songs.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 2\the libertines - skag & bone man.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 2\the libertines - the good old days.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 2\the libertines - who's got the crack.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 3\the libertines - baby shambles sessions (cd 3).m3u
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 3\the libertines - i got sweets.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 3\the libertines - playing around with piano.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 3\the libertines - the libertines do the coral.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\.btdownloads\the libertines - baby shambles sessions\the libertines\baby shambles sessions\cd 3\the libertines - untitled.mp3
    c:\dokumente und einstellungen\jeff\my documents\morpheus shared\downloads\torrents\the%20libertines%20-%20baby%20shambles%20sessions[1].torrent
    c:\programme\morpheus\audio.ico
    c:\programme\morpheus\bittorrent_license.txt
    c:\programme\morpheus\chc0.cfg
    c:\programme\morpheus\epoker.ico
    c:\programme\morpheus\folder_morpheus.ico
    c:\programme\morpheus\m5shell.dll
    c:\programme\morpheus\morphcache.net
    c:\programme\morpheus\morphconfig.ini
    c:\programme\morpheus\morphconfigex.ini
    c:\programme\morpheus\morpheus.exe
    c:\programme\morpheus\morpheusthemedefault.dll
    c:\programme\morpheus\morphultracache.net
    c:\programme\morpheus\neowebcache.net
    c:\programme\morpheus\proto.dll
    c:\programme\morpheus\python23.dll
    c:\programme\morpheus\python23.zip
    c:\programme\morpheus\python_license.txt
    c:\programme\morpheus\select.pyd
    c:\programme\morpheus\temp.tmp
    c:\programme\morpheus\torrent.ico
    c:\programme\morpheus\uninstmorpheus.exe
    c:\programme\morpheus\video.ico
    c:\programme\morpheus\webcache.net
    c:\programme\morpheus\zlib.pyd
    c:\programme\morpheus\_socket.pyd
    c:\programme\morpheus\_sre.pyd
    c:\programme\morpheus\schemas\application.xml
    c:\programme\morpheus\schemas\application.xsd
    c:\programme\morpheus\schemas\audio.xml
    c:\programme\morpheus\schemas\audio.xsd
    c:\programme\morpheus\schemas\document.xml
    c:\programme\morpheus\schemas\document.xsd
    c:\programme\morpheus\schemas\image.xml
    c:\programme\morpheus\schemas\image.xsd
    c:\programme\morpheus\schemas\morph.xml
    c:\programme\morpheus\schemas\morph.xsd
    c:\programme\morpheus\schemas\rom.xml
    c:\programme\morpheus\schemas\rom.xsd
    c:\programme\morpheus\schemas\video.xml
    c:\programme\morpheus\schemas\video.xsd
    c:\programme\morpheus\skindata\default\about.htm
    c:\programme\morpheus\skindata\default\background.bmp
    c:\programme\morpheus\skindata\default\bitzi-pattern.gif
    c:\programme\morpheus\skindata\default\bitzi-tear.gif
    c:\programme\morpheus\skindata\default\bitzi_perforation.gif
    c:\programme\morpheus\skindata\default\bluebar.gif
    c:\programme\morpheus\skindata\default\browser-divider.bmp
    c:\programme\morpheus\skindata\default\browser-dpr-back.bmp
    c:\programme\morpheus\skindata\default\browser-dpr-blank-32x17.bmp
    c:\programme\morpheus\skindata\default\browser-dpr-blank-33x17.bmp
    c:\programme\morpheus\skindata\default\browser-dpr-forward.bmp
    c:\programme\morpheus\skindata\default\browser-dpr-home.bmp
    c:\programme\morpheus\skindata\default\browser-dpr-refresh.bmp
    c:\programme\morpheus\skindata\default\browser-dpr-stop.bmp
    c:\programme\morpheus\skindata\default\browser-na-back.bmp
    c:\programme\morpheus\skindata\default\browser-na-blank-32x17.bmp
    c:\programme\morpheus\skindata\default\browser-na-blank-33x17.bmp
    c:\programme\morpheus\skindata\default\browser-na-forward.bmp
    c:\programme\morpheus\skindata\default\browser-na-home.bmp
    c:\programme\morpheus\skindata\default\browser-na-refresh.bmp
    c:\programme\morpheus\skindata\default\browser-na-stop.bmp
    c:\programme\morpheus\skindata\default\browser-normal-back.bmp
    c:\programme\morpheus\skindata\default\browser-normal-blank-32x17.bmp
    c:\programme\morpheus\skindata\default\browser-normal-blank-33x17.bmp
    c:\programme\morpheus\skindata\default\browser-normal-forward.bmp
    c:\programme\morpheus\skindata\default\browser-normal-home.bmp
    c:\programme\morpheus\skindata\default\browser-normal-refresh.bmp
    c:\programme\morpheus\skindata\default\browser-normal-stop.bmp
    c:\programme\morpheus\skindata\default\browser-over-back.bmp
    c:\programme\morpheus\skindata\default\browser-over-forward.bmp
    c:\programme\morpheus\skindata\default\browser-over-home.bmp
    c:\programme\morpheus\skindata\default\browser-over-refresh.bmp
    c:\programme\morpheus\skindata\default\browser-over-stop.bmp
    c:\programme\morpheus\skindata\default\button-dark.bmp
    c:\programme\morpheus\skindata\default\button.bmp
    c:\programme\morpheus\skindata\default\buttondown-dark.bmp
    c:\programme\morpheus\skindata\default\buttondown.bmp
    c:\programme\morpheus\skindata\default\buttondownmask.bmp
    c:\programme\morpheus\skindata\default\buttonmask.bmp
    c:\programme\morpheus\skindata\default\chat.css
    c:\programme\morpheus\skindata\default\chatcombo.bmp
    c:\programme\morpheus\skindata\default\chatheader.bmp
    c:\programme\morpheus\skindata\default\chatsplitter.bmp
    c:\programme\morpheus\skindata\default\checkbox_blank.bmp
    c:\programme\morpheus\skindata\default\checkbox_blank_disabled.bmp
    c:\programme\morpheus\skindata\default\checkbox_checked.bmp
    c:\programme\morpheus\skindata\default\checkbox_checked_disabled.bmp
    c:\programme\morpheus\skindata\default\currentmediastatic.bmp
    c:\programme\morpheus\skindata\default\doc-morpheus.ico
    c:\programme\morpheus\skindata\default\downloads.bmp
    c:\programme\morpheus\skindata\default\downloadspressed.bmp
    c:\programme\morpheus\skindata\default\file.gif
    c:\programme\morpheus\skindata\default\fileavailability.html
    c:\programme\morpheus\skindata\default\fileavailabilitytorrent.html
    c:\programme\morpheus\skindata\default\filebitzi.html
    c:\programme\morpheus\skindata\default\filebitziwaiting.html
    c:\programme\morpheus\skindata\default\filedetails.html
    c:\programme\morpheus\skindata\default\filedetails.jpg
    c:\programme\morpheus\skindata\default\filetipdetail.html
    c:\programme\morpheus\skindata\default\file_info_bg.gif
    c:\programme\morpheus\skindata\default\header.bmp
    c:\programme\morpheus\skindata\default\headerblock.bmp
    c:\programme\morpheus\skindata\default\headerblock.gif
    c:\programme\morpheus\skindata\default\headerdowned.bmp
    c:\programme\morpheus\skindata\default\header_chat.bmp
    c:\programme\morpheus\skindata\default\header_chat_dp.bmp
    c:\programme\morpheus\skindata\default\header_close.bmp
    c:\programme\morpheus\skindata\default\header_close_dp.bmp
    c:\programme\morpheus\skindata\default\header_help.bmp
    c:\programme\morpheus\skindata\default\header_help_dp.bmp
    c:\programme\morpheus\skindata\default\header_maximize.bmp
    c:\programme\morpheus\skindata\default\header_maximize_dp.bmp
    c:\programme\morpheus\skindata\default\header_minimize.bmp
    c:\programme\morpheus\skindata\default\header_minimize_dp.bmp
    c:\programme\morpheus\skindata\default\header_morpheusultra.bmp
    c:\programme\morpheus\skindata\default\header_morpheusultra_dp.bmp
    c:\programme\morpheus\skindata\default\header_preferences.bmp
    c:\programme\morpheus\skindata\default\header_preferences_dp.bmp
    c:\programme\morpheus\skindata\default\header_restore.bmp
    c:\programme\morpheus\skindata\default\header_restore_dp.bmp
    c:\programme\morpheus\skindata\default\hscrollbar.bmp
    c:\programme\morpheus\skindata\default\hthumb.bmp
    c:\programme\morpheus\skindata\default\image-morpheus.ico
    c:\programme\morpheus\skindata\default\images\arrow.gif
    c:\programme\morpheus\skindata\default\images\getmorpheusultra.gif
    c:\programme\morpheus\skindata\default\images\monochrome_morpheus.gif
    c:\programme\morpheus\skindata\default\images\monochrome_morpheus.jpg
    c:\programme\morpheus\skindata\default\images\monochrome_morpheus_ultra.gif
    c:\programme\morpheus\skindata\default\images\monochrome_morpheus_ultra.jpg
    c:\programme\morpheus\skindata\default\images\welcome.gif
    c:\programme\morpheus\skindata\default\left.bmp
    c:\programme\morpheus\skindata\default\leftdown.bmp
    c:\programme\morpheus\skindata\default\lightblue.gif
    c:\programme\morpheus\skindata\default\listsel.bmp
    c:\programme\morpheus\skindata\default\logo.html
    c:\programme\morpheus\skindata\default\logoultra.html
    c:\programme\morpheus\skindata\default\mainframe.bmp
    c:\programme\morpheus\skindata\default\mainframemask.bmp
    c:\programme\morpheus\skindata\default\menuhighlight.bmp
    c:\programme\morpheus\skindata\default\menunormal.bmp
    c:\programme\morpheus\skindata\default\mini.bmp
    c:\programme\morpheus\skindata\default\minidown.bmp
    c:\programme\morpheus\skindata\default\morphdlg.bmp
    c:\programme\morpheus\skindata\default\morphdlgmask.bmp
    c:\programme\morpheus\skindata\default\playerdisplay.bmp
    c:\programme\morpheus\skindata\default\player_mute.bmp
    c:\programme\morpheus\skindata\default\player_mute_dp.bmp
    c:\programme\morpheus\skindata\default\player_next.bmp
    c:\programme\morpheus\skindata\default\player_next_dp.bmp
    c:\programme\morpheus\skindata\default\player_next_mask.bmp
    c:\programme\morpheus\skindata\default\player_pause.bmp
    c:\programme\morpheus\skindata\default\player_pause_dp.bmp
    c:\programme\morpheus\skindata\default\player_play.bmp
    c:\programme\morpheus\skindata\default\player_play_dp.bmp
    c:\programme\morpheus\skindata\default\player_prev.bmp
    c:\programme\morpheus\skindata\default\player_prev_dp.bmp
    c:\programme\morpheus\skindata\default\player_prev_mask.bmp
    c:\programme\morpheus\skindata\default\player_sound.bmp
    c:\programme\morpheus\skindata\default\player_sound_dp.bmp
    c:\programme\morpheus\skindata\default\player_stop.bmp
    c:\programme\morpheus\skindata\default\player_stop_dp.bmp
    c:\programme\morpheus\skindata\default\playlistcombobox.bmp
    c:\programme\morpheus\skindata\default\playlistitem.bmp
    c:\programme\morpheus\skindata\default\playlistselecteditem.bmp
    c:\programme\morpheus\skindata\default\playlisttop.bmp
    c:\programme\morpheus\skindata\default\playlistviewbk.bmp
    c:\programme\morpheus\skindata\default\playlist_add.bmp
    c:\programme\morpheus\skindata\default\playlist_add_dp.bmp
    c:\programme\morpheus\skindata\default\playlist_repeat.bmp
    c:\programme\morpheus\skindata\default\playlist_repeat_dp.bmp
    c:\programme\morpheus\skindata\default\playlist_shuffle.bmp
    c:\programme\morpheus\skindata\default\playlist_shuffle_dp.bmp
    c:\programme\morpheus\skindata\default\playlist_subtract.bmp
    c:\programme\morpheus\skindata\default\playlist_subtract_dp.bmp
    c:\programme\morpheus\skindata\default\pricedownarrow.bmp
    c:\programme\morpheus\skindata\default\pricemask.bmp
    c:\programme\morpheus\skindata\default\pricerightarrow.bmp
    c:\programme\morpheus\skindata\default\progressbackground.bmp
    c:\programme\morpheus\skindata\default\progresscomplete.bmp
    c:\programme\morpheus\skindata\default\progressscale.bmp
    c:\programme\morpheus\skindata\default\radio_blank.bmp
    c:\programme\morpheus\skindata\default\radio_blank_disabled.bmp
    c:\programme\morpheus\skindata\default\radio_checked.bmp
    c:\programme\morpheus\skindata\default\radio_checked_disabled.bmp
    c:\programme\morpheus\skindata\default\rectanglebutton.bmp
    c:\programme\morpheus\skindata\default\rom-morpheus.ico
    c:\programme\morpheus\skindata\default\schememenu.bmp
    c:\programme\morpheus\skindata\default\schememenuhl.bmp
    c:\programme\morpheus\skindata\default\search2start.html
    c:\programme\morpheus\skindata\default\searchdetailtooltip.html
    c:\programme\morpheus\skindata\default\searcheslistbottom.bmp
    c:\programme\morpheus\skindata\default\searcheslistmiddle.bmp
    c:\programme\morpheus\skindata\default\searcheslistselected.bmp
    c:\programme\morpheus\skindata\default\searcheslistsingle.bmp
    c:\programme\morpheus\skindata\default\searcheslisttop.bmp
    c:\programme\morpheus\skindata\default\searchessplitter.bmp
    c:\programme\morpheus\skindata\default\search_extendsearch.bmp
    c:\programme\morpheus\skindata\default\search_extendsearch_dp.bmp
    c:\programme\morpheus\skindata\default\search_filetype.bmp
    c:\programme\morpheus\skindata\default\search_filetype_dp.bmp
    c:\programme\morpheus\skindata\default\search_searchbutton.bmp
    c:\programme\morpheus\skindata\default\search_searchbutton_dp.bmp
    c:\programme\morpheus\skindata\default\skin.xml
    c:\programme\morpheus\skindata\default\slider.bmp
    c:\programme\morpheus\skindata\default\smallclose.bmp
    c:\programme\morpheus\skindata\default\smallclosepressed.bmp
    c:\programme\morpheus\skindata\default\spacer.gif
    c:\programme\morpheus\skindata\default\splitterbuttondown.bmp
    c:\programme\morpheus\skindata\default\splitterbuttondownpressed.bmp
    c:\programme\morpheus\skindata\default\splitterbuttonup.bmp
    c:\programme\morpheus\skindata\default\splitterbuttonuppressed.bmp
    c:\programme\morpheus\skindata\default\standard.css
    c:\programme\morpheus\skindata\default\statusbar.bmp
    c:\programme\morpheus\skindata\default\tabactive.bmp
    c:\programme\morpheus\skindata\default\tabactivemask.bmp
    c:\programme\morpheus\skindata\default\tabinactive.bmp
    c:\programme\morpheus\skindata\default\tabinactivemask.bmp
    c:\programme\morpheus\skindata\default\tabledge.bmp
    c:\programme\morpheus\skindata\default\tabledgeinactive.bmp
    c:\programme\morpheus\skindata\default\tabledgemask.bmp
    c:\programme\morpheus\skindata\default\tile.bmp
    c:\programme\morpheus\skindata\default\tooltip.css
    c:\programme\morpheus\skindata\default\tooltip.jpg
    c:\programme\morpheus\skindata\default\tooltipapp.jpg
    c:\programme\morpheus\skindata\default\tooltipaud.jpg
    c:\programme\morpheus\skindata\default\tooltipdoc.jpg
    c:\programme\morpheus\skindata\default\tooltipimg.jpg
    c:\programme\morpheus\skindata\default\tooltiprom.jpg
    c:\programme\morpheus\skindata\default\tooltipvid.jpg
    c:\programme\morpheus\skindata\default\tray.bmp
    c:\programme\morpheus\skindata\default\traybottompanel.bmp
    c:\programme\morpheus\skindata\default\ui.xml
    c:\programme\morpheus\skindata\default\videodisplaybuttonsarea.bmp
    c:\programme\morpheus\skindata\default\video_fullscreen.bmp
    c:\programme\morpheus\skindata\default\video_fullscreen_dp.bmp
    c:\programme\morpheus\skindata\default\video_undock_dp.bmp
    c:\programme\morpheus\skindata\default\vscrollbar.bmp
    c:\programme\morpheus\skindata\default\vsplitter.bmp
    c:\programme\morpheus\skindata\default\vtabactive.bmp
    c:\programme\morpheus\skindata\default\vtabinactive.bmp
    c:\programme\morpheus\skindata\default\vtabmask.bmp
    c:\programme\morpheus\skindata\default\vthumb.bmp
    c:\programme\morpheus\skindata\default\welcome.html
    c:\programme\morpheus\skindata\default\widestatic.bmp
    c:\dokumente und einstellungen\jeff\anwendungsdaten\microsoft\internet explorer\quick launch\morpheus.lnk
    
    Infected registry entries detected
    HKEY_CLASSES_ROOT\AppID\{C630FBBF-E340-49DF-B4CB-06FB9EE34BB6} 
    HKEY_CLASSES_ROOT\AppID\{C630FBBF-E340-49DF-B4CB-06FB9EE34BB6} DeskBandSearch
    HKEY_CLASSES_ROOT\CLSID\{F5382384-CC9B-432C-B5DA-6666D477D21E} 
    HKEY_CLASSES_ROOT\CLSID\{F5382384-CC9B-432C-B5DA-6666D477D21E}\InprocServer32 C:\Programme\Morpheus\Proto.dll
    HKEY_CLASSES_ROOT\CLSID\{F5382384-CC9B-432C-B5DA-6666D477D21E}\ProgID Proto.ResourceProtocol.1
    HKEY_CLASSES_ROOT\CLSID\{F5382384-CC9B-432C-B5DA-6666D477D21E}\TypeLib {2573E1B7-096C-4C18-B7B7-7ABE4FFBC86E}
    HKEY_CLASSES_ROOT\CLSID\{F5382384-CC9B-432C-B5DA-6666D477D21E}\VersionIndependentProgID Proto.ResourceProtocol
    HKEY_CLASSES_ROOT\CLSID\{F5382384-CC9B-432C-B5DA-6666D477D21E} ResourceProtocol Class
    HKEY_CLASSES_ROOT\CLSID\{F5382384-CC9B-432C-B5DA-6666D477D21E} AppID {1E280034-9463-4458-B23D-7EDADE25D77A}
    HKEY_CLASSES_ROOT\Interface\{C6570AE1-05A5-4E8E-A292-8460325518D2} 
    HKEY_CLASSES_ROOT\Interface\{C6570AE1-05A5-4E8E-A292-8460325518D2}\ProxyStubClsid {00020424-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{C6570AE1-05A5-4E8E-A292-8460325518D2}\ProxyStubClsid32 {00020424-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{C6570AE1-05A5-4E8E-A292-8460325518D2}\TypeLib {DD95F7E2-D1E5-4572-8D89-11FDE5F68C30}
    HKEY_CLASSES_ROOT\Interface\{C6570AE1-05A5-4E8E-A292-8460325518D2}\TypeLib Version 1.0
    HKEY_CLASSES_ROOT\Interface\{C6570AE1-05A5-4E8E-A292-8460325518D2} ISearchBand
    HKEY_CLASSES_ROOT\Morpheus 
    HKEY_CLASSES_ROOT\Morpheus\DefaultIcon "C:\Programme\Morpheus\morpheus.exe"
    HKEY_CLASSES_ROOT\Morpheus\shell\open\command "C:\Programme\Morpheus\morpheus.exe" "%1"
    HKEY_CLASSES_ROOT\Morpheus URL: Morpheus Protocol
    HKEY_CLASSES_ROOT\Morpheus URL Protocol 
    HKEY_CLASSES_ROOT\TypeLib\{DD95F7E2-D1E5-4572-8D89-11FDE5F68C30} 
    HKEY_CLASSES_ROOT\TypeLib\{DD95F7E2-D1E5-4572-8D89-11FDE5F68C30}\1.0\0\win32 C:\Programme\StreamCast\Morpheus\DeskBandSearch.dll
    HKEY_CLASSES_ROOT\TypeLib\{DD95F7E2-D1E5-4572-8D89-11FDE5F68C30}\1.0\FLAGS 0
    HKEY_CLASSES_ROOT\TypeLib\{DD95F7E2-D1E5-4572-8D89-11FDE5F68C30}\1.0\HELPDIR C:\Programme\StreamCast\Morpheus\
    HKEY_CLASSES_ROOT\TypeLib\{DD95F7E2-D1E5-4572-8D89-11FDE5F68C30}\1.0 DeskBandSearch 1.0 Type Library
    HKEY_LOCAL_MACHINE\SOFTWARE\Morpheus 
    HKEY_LOCAL_MACHINE\SOFTWARE\Morpheus\Net G2 0
    HKEY_LOCAL_MACHINE\SOFTWARE\Morpheus TryToUseUPNP 0
    HKEY_LOCAL_MACHINE\SOFTWARE\Morpheus version 5.0
    HKEY_LOCAL_MACHINE\SOFTWARE\Morpheus Install_Dir C:\Programme\Morpheus
    HKEY_LOCAL_MACHINE\SOFTWARE\Morpheus First_Run true
    HKEY_LOCAL_MACHINE\SOFTWARE\Morpheus NotWarnMagnetOnInstall true
    HKEY_LOCAL_MACHINE\SOFTWARE\Morpheus RunOnStartup 0
    HKEY_LOCAL_MACHINE\SOFTWARE\Morpheus SetExtAssociation 0
    HKEY_LOCAL_MACHINE\SOFTWARE\Morpheus HandleTorrent 1
    HKEY_LOCAL_MACHINE\SOFTWARE\Morpheus HandleMagnet 1
    HKEY_LOCAL_MACHINE\SOFTWARE\Morpheus AvgInKbps 67
    HKEY_CURRENT_USER\Software\Morpheus 
    HKEY_CURRENT_USER\Software\Morpheus\GUI\SearchRecent Oasis Oasis
    HKEY_CURRENT_USER\Software\Morpheus\GUI PlayListShuffle 0
    HKEY_CURRENT_USER\Software\Morpheus\GUI PlayListRepeat 0
    HKEY_CURRENT_USER\Software\Morpheus\GUI VideoShuffle 0
    HKEY_CURRENT_USER\Software\Morpheus\GUI VideoRepeat 0
    HKEY_CURRENT_USER\Software\Morpheus\Location Country 
    HKEY_CURRENT_USER\Software\Morpheus\Location City 
    HKEY_CURRENT_USER\Software\Morpheus\morphtorrent .torrent Handler bittorrent
    HKEY_CURRENT_USER\Software\Morpheus\morphtorrent .torrent Type 0
    HKEY_CURRENT_USER\Software\Morpheus\Net G2 1
    HKEY_CURRENT_USER\Software\Morpheus TryToUseUPNP 1
    HKEY_CURRENT_USER\Software\Morpheus SearchIconSpinTimeout 120000
    HKEY_CURRENT_USER\Software\Morpheus MQ_G2Net 5
    HKEY_CURRENT_USER\Software\Morpheus MQ_GnutellaNet 5
    HKEY_CURRENT_USER\Software\Morpheus MQ_NeoNet 3
    HKEY_CURRENT_USER\Software\Morpheus MQ_UnknownNet 10
    HKEY_CURRENT_USER\Software\Morpheus IconCacheLocation IconCache\
    HKEY_CURRENT_USER\Software\Morpheus First_Run 100
    HKEY_CURRENT_USER\Software\Morpheus allowmaximizewhenopen 1
    HKEY_CURRENT_USER\Software\Morpheus SearchToolTip 0
    HKEY_CURRENT_USER\Software\Morpheus PlayStartupSound 1
    HKEY_CURRENT_USER\Software\Morpheus RunOnStartup 0
    HKEY_CURRENT_USER\Software\Morpheus TrayOnMinimize 1
    HKEY_CURRENT_USER\Software\Morpheus TrayOnClose 0
    HKEY_CURRENT_USER\Software\Morpheus ClearSearchHistoryOnExit 0
    HKEY_CURRENT_USER\Software\Morpheus enablesearchhistory 1
    HKEY_CURRENT_USER\Software\Morpheus NoBannerVerionDownloadStarted 0
    HKEY_CURRENT_USER\Software\Morpheus ShowSearchesInHome 0
    HKEY_CURRENT_USER\Software\Morpheus SetExtAssociation 0
    HKEY_CURRENT_USER\Software\Morpheus UseProxyForDownload 0
    HKEY_CURRENT_USER\Software\Morpheus DefaultProxy 
    HKEY_CURRENT_USER\Software\Morpheus ChatColorScheme 2
    HKEY_CURRENT_USER\Software\Morpheus PaidVerExeName 
    HKEY_CURRENT_USER\Software\Morpheus IsWipeUsed 0
    HKEY_CURRENT_USER\Software\Morpheus AutoupdateWebCache 0
    HKEY_CURRENT_USER\Software\Morpheus WebCacheURL 
    HKEY_CURRENT_USER\Software\Morpheus NodeCapability 1
    HKEY_CURRENT_USER\Software\Morpheus NodeCapabilityG2 1
    HKEY_CURRENT_USER\Software\Morpheus MaxPaidResults 5
    HKEY_CURRENT_USER\Software\Morpheus BTUpCount 0
    HKEY_CURRENT_USER\Software\Morpheus BTBUpload 0
    HKEY_CURRENT_USER\Software\Morpheus BTUpCountEnable 0
    HKEY_CURRENT_USER\Software\Morpheus BTBUploadEnable 0
    HKEY_CURRENT_USER\Software\Morpheus BTLowerPortEnable 1
    HKEY_CURRENT_USER\Software\Morpheus BTLowerPort 13809
    HKEY_CURRENT_USER\Software\Morpheus BTHighPort 13906
    HKEY_CURRENT_USER\Software\Morpheus OpenwithinMorpheus 1
    HKEY_CURRENT_USER\Software\Morpheus ClearVideoHistoryonStart 0
    HKEY_CURRENT_USER\Software\Morpheus ClearAudioHistoryonStart 0
    HKEY_CURRENT_USER\Software\Morpheus HandleMagnet 1
    HKEY_CURRENT_USER\Software\Morpheus HandleTorrent 1
    HKEY_CURRENT_USER\Software\Morpheus HandleMagnetDontShow 1
    HKEY_CURRENT_USER\Software\Morpheus HandleTorrentDontShow 0
    HKEY_CURRENT_USER\Software\Morpheus PRCode 0
    HKEY_CURRENT_USER\Software\Morpheus CurName -1
    HKEY_CURRENT_USER\Software\Morpheus PRPassword 
    HKEY_CURRENT_USER\Software\Morpheus SkinPath 
    HKEY_CURRENT_USER\Software\Morpheus MoreSearchID 0
    HKEY_CLASSES_ROOT\AppID\{1E280034-9463-4458-B23D-7EDADE25D77A} 
    HKEY_CLASSES_ROOT\AppID\{1E280034-9463-4458-B23D-7EDADE25D77A} PluggableIP
    HKEY_CLASSES_ROOT\AppID\{EA7AA9FF-166A-4C5A-8569-963DE41AAC74} 
    HKEY_CLASSES_ROOT\AppID\{EA7AA9FF-166A-4C5A-8569-963DE41AAC74} M5Shell
    HKEY_CLASSES_ROOT\AppID\M5Shell.DLL 
    HKEY_CLASSES_ROOT\AppID\M5Shell.DLL AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\AppID\Proto.DLL 
    HKEY_CLASSES_ROOT\AppID\Proto.DLL AppID {1E280034-9463-4458-B23D-7EDADE25D77A}
    HKEY_CLASSES_ROOT\CLSID\{0C0423F7-7A04-4D32-9BDC-006DB1D0A1E2} 
    HKEY_CLASSES_ROOT\CLSID\{0C0423F7-7A04-4D32-9BDC-006DB1D0A1E2}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{0C0423F7-7A04-4D32-9BDC-006DB1D0A1E2}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{0C0423F7-7A04-4D32-9BDC-006DB1D0A1E2}\ProgID DataAccess.ResultsetAdapterFactory.1
    HKEY_CLASSES_ROOT\CLSID\{0C0423F7-7A04-4D32-9BDC-006DB1D0A1E2}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{0C0423F7-7A04-4D32-9BDC-006DB1D0A1E2}\VersionIndependentProgID DataAccess.ResultsetAdapterFactory
    HKEY_CLASSES_ROOT\CLSID\{0C0423F7-7A04-4D32-9BDC-006DB1D0A1E2} ResultsetAdapterFactory Class
    HKEY_CLASSES_ROOT\CLSID\{0D568FFD-296A-4906-B2AA-0ACEC8C15B2C} 
    HKEY_CLASSES_ROOT\CLSID\{0D568FFD-296A-4906-B2AA-0ACEC8C15B2C}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{0D568FFD-296A-4906-B2AA-0ACEC8C15B2C}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{0D568FFD-296A-4906-B2AA-0ACEC8C15B2C}\ProgID M5ShellLib.AppServices.1
    HKEY_CLASSES_ROOT\CLSID\{0D568FFD-296A-4906-B2AA-0ACEC8C15B2C}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{0D568FFD-296A-4906-B2AA-0ACEC8C15B2C}\VersionIndependentProgID M5ShellLib.AppServices
    HKEY_CLASSES_ROOT\CLSID\{0D568FFD-296A-4906-B2AA-0ACEC8C15B2C} AppServices Class
    HKEY_CLASSES_ROOT\CLSID\{0D568FFD-296A-4906-B2AA-0ACEC8C15B2C} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{11FB1B30-ABB9-4A77-A237-538C7F465EEC} 
    HKEY_CLASSES_ROOT\CLSID\{11FB1B30-ABB9-4A77-A237-538C7F465EEC}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{11FB1B30-ABB9-4A77-A237-538C7F465EEC}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{11FB1B30-ABB9-4A77-A237-538C7F465EEC}\ProgID M5ShellLib.Images.1
    HKEY_CLASSES_ROOT\CLSID\{11FB1B30-ABB9-4A77-A237-538C7F465EEC}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{11FB1B30-ABB9-4A77-A237-538C7F465EEC}\VersionIndependentProgID M5ShellLib.Images
    HKEY_CLASSES_ROOT\CLSID\{11FB1B30-ABB9-4A77-A237-538C7F465EEC} Images Class
    HKEY_CLASSES_ROOT\CLSID\{11FB1B30-ABB9-4A77-A237-538C7F465EEC} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{1BC5B47C-5D81-4370-8A72-B8A9B2B610D9} 
    HKEY_CLASSES_ROOT\CLSID\{1BC5B47C-5D81-4370-8A72-B8A9B2B610D9}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{1BC5B47C-5D81-4370-8A72-B8A9B2B610D9}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{1BC5B47C-5D81-4370-8A72-B8A9B2B610D9}\ProgID M5ShellLib.Headers.1
    HKEY_CLASSES_ROOT\CLSID\{1BC5B47C-5D81-4370-8A72-B8A9B2B610D9}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{1BC5B47C-5D81-4370-8A72-B8A9B2B610D9}\VersionIndependentProgID M5ShellLib.Headers
    HKEY_CLASSES_ROOT\CLSID\{1BC5B47C-5D81-4370-8A72-B8A9B2B610D9} Headers Class
    HKEY_CLASSES_ROOT\CLSID\{1BC5B47C-5D81-4370-8A72-B8A9B2B610D9} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{1E3C6834-7B22-4787-AE1C-A750D0FA0D6B} 
    HKEY_CLASSES_ROOT\CLSID\{1E3C6834-7B22-4787-AE1C-A750D0FA0D6B}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{1E3C6834-7B22-4787-AE1C-A750D0FA0D6B}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{1E3C6834-7B22-4787-AE1C-A750D0FA0D6B}\ProgID M5ShellLib.Searches.1
    HKEY_CLASSES_ROOT\CLSID\{1E3C6834-7B22-4787-AE1C-A750D0FA0D6B}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{1E3C6834-7B22-4787-AE1C-A750D0FA0D6B}\VersionIndependentProgID M5ShellLib.Searches
    HKEY_CLASSES_ROOT\CLSID\{1E3C6834-7B22-4787-AE1C-A750D0FA0D6B} Searches Class
    HKEY_CLASSES_ROOT\CLSID\{1E3C6834-7B22-4787-AE1C-A750D0FA0D6B} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{2313B221-9F3C-405E-B143-AB47887C3121} 
    HKEY_CLASSES_ROOT\CLSID\{2313B221-9F3C-405E-B143-AB47887C3121}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{2313B221-9F3C-405E-B143-AB47887C3121}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{2313B221-9F3C-405E-B143-AB47887C3121}\ProgID M5ShellLib.NetController.1
    HKEY_CLASSES_ROOT\CLSID\{2313B221-9F3C-405E-B143-AB47887C3121}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{2313B221-9F3C-405E-B143-AB47887C3121}\VersionIndependentProgID M5ShellLib.NetController
    HKEY_CLASSES_ROOT\CLSID\{2313B221-9F3C-405E-B143-AB47887C3121} NetController Class
    HKEY_CLASSES_ROOT\CLSID\{2313B221-9F3C-405E-B143-AB47887C3121} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{24D10ECA-8DD5-4A48-99D3-334C3DD9B6F6} 
    HKEY_CLASSES_ROOT\CLSID\{24D10ECA-8DD5-4A48-99D3-334C3DD9B6F6}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{24D10ECA-8DD5-4A48-99D3-334C3DD9B6F6}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{24D10ECA-8DD5-4A48-99D3-334C3DD9B6F6}\ProgID DataAccess.Column.1
    HKEY_CLASSES_ROOT\CLSID\{24D10ECA-8DD5-4A48-99D3-334C3DD9B6F6}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{24D10ECA-8DD5-4A48-99D3-334C3DD9B6F6}\VersionIndependentProgID DataAccess.Column
    HKEY_CLASSES_ROOT\CLSID\{24D10ECA-8DD5-4A48-99D3-334C3DD9B6F6} Column Class
    HKEY_CLASSES_ROOT\CLSID\{26D18B46-800B-4C55-977F-B69E45064ED8} 
    HKEY_CLASSES_ROOT\CLSID\{26D18B46-800B-4C55-977F-B69E45064ED8}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{26D18B46-800B-4C55-977F-B69E45064ED8}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{26D18B46-800B-4C55-977F-B69E45064ED8}\ProgID M5ShellLib.Meta.1
    HKEY_CLASSES_ROOT\CLSID\{26D18B46-800B-4C55-977F-B69E45064ED8}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{26D18B46-800B-4C55-977F-B69E45064ED8}\VersionIndependentProgID M5ShellLib.Meta
    HKEY_CLASSES_ROOT\CLSID\{26D18B46-800B-4C55-977F-B69E45064ED8} Meta Class
    HKEY_CLASSES_ROOT\CLSID\{26D18B46-800B-4C55-977F-B69E45064ED8} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{31D94EC3-16B4-4398-92A3-04974163124E} 
    HKEY_CLASSES_ROOT\CLSID\{31D94EC3-16B4-4398-92A3-04974163124E}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{31D94EC3-16B4-4398-92A3-04974163124E}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{31D94EC3-16B4-4398-92A3-04974163124E}\ProgID M5ShellLib.Metas.1
    HKEY_CLASSES_ROOT\CLSID\{31D94EC3-16B4-4398-92A3-04974163124E}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{31D94EC3-16B4-4398-92A3-04974163124E}\VersionIndependentProgID M5ShellLib.Metas
    HKEY_CLASSES_ROOT\CLSID\{31D94EC3-16B4-4398-92A3-04974163124E} Metas Class
    HKEY_CLASSES_ROOT\CLSID\{31D94EC3-16B4-4398-92A3-04974163124E} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{324463FD-4238-4B56-93AD-09337F0AC59F} 
    HKEY_CLASSES_ROOT\CLSID\{324463FD-4238-4B56-93AD-09337F0AC59F}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{324463FD-4238-4B56-93AD-09337F0AC59F}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{324463FD-4238-4B56-93AD-09337F0AC59F}\ProgID M5ShellLib.Peer.1
    HKEY_CLASSES_ROOT\CLSID\{324463FD-4238-4B56-93AD-09337F0AC59F}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{324463FD-4238-4B56-93AD-09337F0AC59F}\VersionIndependentProgID M5ShellLib.Peer
    HKEY_CLASSES_ROOT\CLSID\{324463FD-4238-4B56-93AD-09337F0AC59F} Peer Class
    HKEY_CLASSES_ROOT\CLSID\{324463FD-4238-4B56-93AD-09337F0AC59F} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{3B27374C-5310-48ED-B8B5-291E7FE4B838} 
    HKEY_CLASSES_ROOT\CLSID\{3B27374C-5310-48ED-B8B5-291E7FE4B838}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{3B27374C-5310-48ED-B8B5-291E7FE4B838}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{3B27374C-5310-48ED-B8B5-291E7FE4B838}\ProgID M5ShellLib.Filters.1
    HKEY_CLASSES_ROOT\CLSID\{3B27374C-5310-48ED-B8B5-291E7FE4B838}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{3B27374C-5310-48ED-B8B5-291E7FE4B838}\VersionIndependentProgID M5ShellLib.Filters
    HKEY_CLASSES_ROOT\CLSID\{3B27374C-5310-48ED-B8B5-291E7FE4B838} Filters Class
    HKEY_CLASSES_ROOT\CLSID\{3B27374C-5310-48ED-B8B5-291E7FE4B838} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{3F01122F-0C9A-4621-A7FD-99C6EFAE8363} 
    HKEY_CLASSES_ROOT\CLSID\{3F01122F-0C9A-4621-A7FD-99C6EFAE8363}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{3F01122F-0C9A-4621-A7FD-99C6EFAE8363}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{3F01122F-0C9A-4621-A7FD-99C6EFAE8363}\ProgID M5ShellLib.ResponseHeaders.1
    HKEY_CLASSES_ROOT\CLSID\{3F01122F-0C9A-4621-A7FD-99C6EFAE8363}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{3F01122F-0C9A-4621-A7FD-99C6EFAE8363}\VersionIndependentProgID M5ShellLib.ResponseHeaders
    HKEY_CLASSES_ROOT\CLSID\{3F01122F-0C9A-4621-A7FD-99C6EFAE8363} ResponseHeaders Class
    HKEY_CLASSES_ROOT\CLSID\{3F01122F-0C9A-4621-A7FD-99C6EFAE8363} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{430106F1-5EF4-4D2E-8C52-7E3CEAB65DBD} 
    HKEY_CLASSES_ROOT\CLSID\{430106F1-5EF4-4D2E-8C52-7E3CEAB65DBD}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{430106F1-5EF4-4D2E-8C52-7E3CEAB65DBD}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{430106F1-5EF4-4D2E-8C52-7E3CEAB65DBD}\ProgID DataAccess.PluggableProtocol.1
    HKEY_CLASSES_ROOT\CLSID\{430106F1-5EF4-4D2E-8C52-7E3CEAB65DBD}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{430106F1-5EF4-4D2E-8C52-7E3CEAB65DBD}\VersionIndependentProgID DataAccess.PluggableProtocol
    HKEY_CLASSES_ROOT\CLSID\{430106F1-5EF4-4D2E-8C52-7E3CEAB65DBD} PluggableProtocol Class
    HKEY_CLASSES_ROOT\CLSID\{444BEA16-E6DF-45AF-A4D4-B0F81ABA7CA0} 
    HKEY_CLASSES_ROOT\CLSID\{444BEA16-E6DF-45AF-A4D4-B0F81ABA7CA0}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{444BEA16-E6DF-45AF-A4D4-B0F81ABA7CA0}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{444BEA16-E6DF-45AF-A4D4-B0F81ABA7CA0}\ProgID DataAccess.MyFilesRow.1
    HKEY_CLASSES_ROOT\CLSID\{444BEA16-E6DF-45AF-A4D4-B0F81ABA7CA0}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{444BEA16-E6DF-45AF-A4D4-B0F81ABA7CA0}\VersionIndependentProgID DataAccess.MyFilesRow
    HKEY_CLASSES_ROOT\CLSID\{444BEA16-E6DF-45AF-A4D4-B0F81ABA7CA0} MyFilesRow Class
    HKEY_CLASSES_ROOT\CLSID\{477AC035-C5D3-43CC-A24C-5925D217C252} 
    HKEY_CLASSES_ROOT\CLSID\{477AC035-C5D3-43CC-A24C-5925D217C252}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{477AC035-C5D3-43CC-A24C-5925D217C252}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{477AC035-C5D3-43CC-A24C-5925D217C252}\ProgID DataAccess.Row.1
    HKEY_CLASSES_ROOT\CLSID\{477AC035-C5D3-43CC-A24C-5925D217C252}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{477AC035-C5D3-43CC-A24C-5925D217C252}\VersionIndependentProgID DataAccess.Row
    HKEY_CLASSES_ROOT\CLSID\{477AC035-C5D3-43CC-A24C-5925D217C252} Row Class
    HKEY_CLASSES_ROOT\CLSID\{4CC764A2-B256-4DA9-94FB-537D633E7DCE} 
    HKEY_CLASSES_ROOT\CLSID\{4CC764A2-B256-4DA9-94FB-537D633E7DCE}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{4CC764A2-B256-4DA9-94FB-537D633E7DCE}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{4CC764A2-B256-4DA9-94FB-537D633E7DCE}\ProgID M5ShellLib.Sources.1
    HKEY_CLASSES_ROOT\CLSID\{4CC764A2-B256-4DA9-94FB-537D633E7DCE}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{4CC764A2-B256-4DA9-94FB-537D633E7DCE}\VersionIndependentProgID M5ShellLib.Sources
    HKEY_CLASSES_ROOT\CLSID\{4CC764A2-B256-4DA9-94FB-537D633E7DCE} Sources Class
    HKEY_CLASSES_ROOT\CLSID\{4CC764A2-B256-4DA9-94FB-537D633E7DCE} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{4D42EA2E-9D32-4b07-AE00-8797C6B1BAA3} 
    HKEY_CLASSES_ROOT\CLSID\{4D42EA2E-9D32-4b07-AE00-8797C6B1BAA3}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{4D42EA2E-9D32-4b07-AE00-8797C6B1BAA3}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{4D42EA2E-9D32-4b07-AE00-8797C6B1BAA3}\ProgID M5ShellLib.M5ChatEngine.1
    HKEY_CLASSES_ROOT\CLSID\{4D42EA2E-9D32-4b07-AE00-8797C6B1BAA3}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{4D42EA2E-9D32-4b07-AE00-8797C6B1BAA3}\VersionIndependentProgID M5ShellLib.M5ChatEngine
    HKEY_CLASSES_ROOT\CLSID\{4D42EA2E-9D32-4b07-AE00-8797C6B1BAA3} M5ChatEngine Class
    HKEY_CLASSES_ROOT\CLSID\{4D42EA2E-9D32-4b07-AE00-8797C6B1BAA3} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{513CA31C-93BB-422A-A5FD-63A8B7D21CE0} 
    HKEY_CLASSES_ROOT\CLSID\{513CA31C-93BB-422A-A5FD-63A8B7D21CE0}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{513CA31C-93BB-422A-A5FD-63A8B7D21CE0}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{513CA31C-93BB-422A-A5FD-63A8B7D21CE0}\ProgID M5ShellLib.Schemas.1
    HKEY_CLASSES_ROOT\CLSID\{513CA31C-93BB-422A-A5FD-63A8B7D21CE0}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{513CA31C-93BB-422A-A5FD-63A8B7D21CE0}\VersionIndependentProgID M5ShellLib.Schemas
    HKEY_CLASSES_ROOT\CLSID\{513CA31C-93BB-422A-A5FD-63A8B7D21CE0} Schemas Class
    HKEY_CLASSES_ROOT\CLSID\{513CA31C-93BB-422A-A5FD-63A8B7D21CE0} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{51FC6685-6FA7-45CF-86E1-9605B9080F73} 
    HKEY_CLASSES_ROOT\CLSID\{51FC6685-6FA7-45CF-86E1-9605B9080F73}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{51FC6685-6FA7-45CF-86E1-9605B9080F73}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{51FC6685-6FA7-45CF-86E1-9605B9080F73}\ProgID DataAccess.MyFilesAdapterFactory.1
    HKEY_CLASSES_ROOT\CLSID\{51FC6685-6FA7-45CF-86E1-9605B9080F73}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{51FC6685-6FA7-45CF-86E1-9605B9080F73}\VersionIndependentProgID DataAccess.MyFilesAdapterFactory
    HKEY_CLASSES_ROOT\CLSID\{51FC6685-6FA7-45CF-86E1-9605B9080F73} MyFilesAdapterFactory Class
    HKEY_CLASSES_ROOT\CLSID\{5FAD1E5E-E7DE-434F-B2AE-EE9244BDA638} 
    HKEY_CLASSES_ROOT\CLSID\{5FAD1E5E-E7DE-434F-B2AE-EE9244BDA638}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{5FAD1E5E-E7DE-434F-B2AE-EE9244BDA638}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{5FAD1E5E-E7DE-434F-B2AE-EE9244BDA638}\ProgID DataAccess.Sections.1
    HKEY_CLASSES_ROOT\CLSID\{5FAD1E5E-E7DE-434F-B2AE-EE9244BDA638}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{5FAD1E5E-E7DE-434F-B2AE-EE9244BDA638}\VersionIndependentProgID DataAccess.Sections
    HKEY_CLASSES_ROOT\CLSID\{5FAD1E5E-E7DE-434F-B2AE-EE9244BDA638} Sections Class
    HKEY_CLASSES_ROOT\CLSID\{642D692A-C61C-4241-AF83-4FD8BDD715B2} 
    HKEY_CLASSES_ROOT\CLSID\{642D692A-C61C-4241-AF83-4FD8BDD715B2}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{642D692A-C61C-4241-AF83-4FD8BDD715B2}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{642D692A-C61C-4241-AF83-4FD8BDD715B2}\ProgID DataAccess.TransfersAdapter.1
    HKEY_CLASSES_ROOT\CLSID\{642D692A-C61C-4241-AF83-4FD8BDD715B2}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{642D692A-C61C-4241-AF83-4FD8BDD715B2}\VersionIndependentProgID DataAccess.TransfersAdapter
    HKEY_CLASSES_ROOT\CLSID\{642D692A-C61C-4241-AF83-4FD8BDD715B2} TransfersAdapter Class
    HKEY_CLASSES_ROOT\CLSID\{65BEE5C4-37C8-447F-9707-CD7B21AD67E4} 
    HKEY_CLASSES_ROOT\CLSID\{65BEE5C4-37C8-447F-9707-CD7B21AD67E4}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{65BEE5C4-37C8-447F-9707-CD7B21AD67E4}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{65BEE5C4-37C8-447F-9707-CD7B21AD67E4}\ProgID M5ShellLib.Search.1
    HKEY_CLASSES_ROOT\CLSID\{65BEE5C4-37C8-447F-9707-CD7B21AD67E4}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{65BEE5C4-37C8-447F-9707-CD7B21AD67E4}\VersionIndependentProgID M5ShellLib.Search
    HKEY_CLASSES_ROOT\CLSID\{65BEE5C4-37C8-447F-9707-CD7B21AD67E4} Search Class
    HKEY_CLASSES_ROOT\CLSID\{65BEE5C4-37C8-447F-9707-CD7B21AD67E4} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{703EFEAB-7F84-4BE9-B978-FF4C6A8BA794} 
    HKEY_CLASSES_ROOT\CLSID\{703EFEAB-7F84-4BE9-B978-FF4C6A8BA794}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{703EFEAB-7F84-4BE9-B978-FF4C6A8BA794}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{703EFEAB-7F84-4BE9-B978-FF4C6A8BA794}\ProgID M5ShellLib.Parameters.1
    HKEY_CLASSES_ROOT\CLSID\{703EFEAB-7F84-4BE9-B978-FF4C6A8BA794}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{703EFEAB-7F84-4BE9-B978-FF4C6A8BA794}\VersionIndependentProgID M5ShellLib.Parameters
    HKEY_CLASSES_ROOT\CLSID\{703EFEAB-7F84-4BE9-B978-FF4C6A8BA794} Parameters Class
    HKEY_CLASSES_ROOT\CLSID\{703EFEAB-7F84-4BE9-B978-FF4C6A8BA794} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{75CB2D18-1182-44F0-B510-491D7817F4CB} 
    HKEY_CLASSES_ROOT\CLSID\{75CB2D18-1182-44F0-B510-491D7817F4CB}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{75CB2D18-1182-44F0-B510-491D7817F4CB}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{75CB2D18-1182-44F0-B510-491D7817F4CB}\ProgID DataAccess.FilterColumn.1
    HKEY_CLASSES_ROOT\CLSID\{75CB2D18-1182-44F0-B510-491D7817F4CB}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{75CB2D18-1182-44F0-B510-491D7817F4CB}\VersionIndependentProgID DataAccess.FilterColumn
    HKEY_CLASSES_ROOT\CLSID\{75CB2D18-1182-44F0-B510-491D7817F4CB} FilterColumn Class
    HKEY_CLASSES_ROOT\CLSID\{80385330-087A-4d61-8956-BAEEE05CA33C} 
    HKEY_CLASSES_ROOT\CLSID\{80385330-087A-4d61-8956-BAEEE05CA33C}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{80385330-087A-4d61-8956-BAEEE05CA33C}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{80385330-087A-4d61-8956-BAEEE05CA33C}\ProgID M5ShellLib.M5ChatServer.1
    HKEY_CLASSES_ROOT\CLSID\{80385330-087A-4d61-8956-BAEEE05CA33C}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{80385330-087A-4d61-8956-BAEEE05CA33C}\VersionIndependentProgID M5ShellLib.M5ChatServer
    HKEY_CLASSES_ROOT\CLSID\{80385330-087A-4d61-8956-BAEEE05CA33C} M5ChatServer Class
    HKEY_CLASSES_ROOT\CLSID\{80385330-087A-4d61-8956-BAEEE05CA33C} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{814FE9E3-E0BA-4FAF-B5DA-8F7B1AB1F4B1} 
    HKEY_CLASSES_ROOT\CLSID\{814FE9E3-E0BA-4FAF-B5DA-8F7B1AB1F4B1}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{814FE9E3-E0BA-4FAF-B5DA-8F7B1AB1F4B1}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{814FE9E3-E0BA-4FAF-B5DA-8F7B1AB1F4B1}\ProgID M5ShellLib.WebSearch.1
    HKEY_CLASSES_ROOT\CLSID\{814FE9E3-E0BA-4FAF-B5DA-8F7B1AB1F4B1}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{814FE9E3-E0BA-4FAF-B5DA-8F7B1AB1F4B1}\VersionIndependentProgID M5ShellLib.WebSearch
    HKEY_CLASSES_ROOT\CLSID\{814FE9E3-E0BA-4FAF-B5DA-8F7B1AB1F4B1} WebSearch Class
    HKEY_CLASSES_ROOT\CLSID\{814FE9E3-E0BA-4FAF-B5DA-8F7B1AB1F4B1} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{8633B121-42DC-4A78-A8BD-651357771E77} 
    HKEY_CLASSES_ROOT\CLSID\{8633B121-42DC-4A78-A8BD-651357771E77}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{8633B121-42DC-4A78-A8BD-651357771E77}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{8633B121-42DC-4A78-A8BD-651357771E77}\ProgID M5ShellLib.Parameter.1
    HKEY_CLASSES_ROOT\CLSID\{8633B121-42DC-4A78-A8BD-651357771E77}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{8633B121-42DC-4A78-A8BD-651357771E77}\VersionIndependentProgID M5ShellLib.Parameter
    HKEY_CLASSES_ROOT\CLSID\{8633B121-42DC-4A78-A8BD-651357771E77} Parameter Class
    HKEY_CLASSES_ROOT\CLSID\{8633B121-42DC-4A78-A8BD-651357771E77} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{895C2476-7DDA-440E-B300-208DA45DCF18} 
    HKEY_CLASSES_ROOT\CLSID\{895C2476-7DDA-440E-B300-208DA45DCF18}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{895C2476-7DDA-440E-B300-208DA45DCF18}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{895C2476-7DDA-440E-B300-208DA45DCF18}\ProgID M5ShellLib.Field.1
    HKEY_CLASSES_ROOT\CLSID\{895C2476-7DDA-440E-B300-208DA45DCF18}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{895C2476-7DDA-440E-B300-208DA45DCF18}\VersionIndependentProgID M5ShellLib.Field
    HKEY_CLASSES_ROOT\CLSID\{895C2476-7DDA-440E-B300-208DA45DCF18} Field Class
    HKEY_CLASSES_ROOT\CLSID\{895C2476-7DDA-440E-B300-208DA45DCF18} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{8A32E183-25EB-402F-82D5-D3E75215BF3F} 
    HKEY_CLASSES_ROOT\CLSID\{8A32E183-25EB-402F-82D5-D3E75215BF3F}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{8A32E183-25EB-402F-82D5-D3E75215BF3F}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{8A32E183-25EB-402F-82D5-D3E75215BF3F}\ProgID M5ShellLib.Query.1
    HKEY_CLASSES_ROOT\CLSID\{8A32E183-25EB-402F-82D5-D3E75215BF3F}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{8A32E183-25EB-402F-82D5-D3E75215BF3F}\VersionIndependentProgID M5ShellLib.Query
    HKEY_CLASSES_ROOT\CLSID\{8A32E183-25EB-402F-82D5-D3E75215BF3F} Query Class
    HKEY_CLASSES_ROOT\CLSID\{8A32E183-25EB-402F-82D5-D3E75215BF3F} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{8EABEED3-993D-4FC9-BDC9-132DE204F606} 
    HKEY_CLASSES_ROOT\CLSID\{8EABEED3-993D-4FC9-BDC9-132DE204F606}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{8EABEED3-993D-4FC9-BDC9-132DE204F606}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{8EABEED3-993D-4FC9-BDC9-132DE204F606}\ProgID M5ShellLib.Network.1
    HKEY_CLASSES_ROOT\CLSID\{8EABEED3-993D-4FC9-BDC9-132DE204F606}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{8EABEED3-993D-4FC9-BDC9-132DE204F606}\VersionIndependentProgID M5ShellLib.Network
    HKEY_CLASSES_ROOT\CLSID\{8EABEED3-993D-4FC9-BDC9-132DE204F606} Network Class
    HKEY_CLASSES_ROOT\CLSID\{8EABEED3-993D-4FC9-BDC9-132DE204F606} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{90A23A0D-C222-4016-A99A-57E56BD44877} 
    HKEY_CLASSES_ROOT\CLSID\{90A23A0D-C222-4016-A99A-57E56BD44877}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{90A23A0D-C222-4016-A99A-57E56BD44877}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{90A23A0D-C222-4016-A99A-57E56BD44877}\ProgID M5ShellLib.Uploads.1
    HKEY_CLASSES_ROOT\CLSID\{90A23A0D-C222-4016-A99A-57E56BD44877}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{90A23A0D-C222-4016-A99A-57E56BD44877}\VersionIndependentProgID M5ShellLib.Uploads
    HKEY_CLASSES_ROOT\CLSID\{90A23A0D-C222-4016-A99A-57E56BD44877} Uploads Class
    HKEY_CLASSES_ROOT\CLSID\{90A23A0D-C222-4016-A99A-57E56BD44877} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{92A77B10-8C47-4A73-8822-F13D5F5E2AC2} 
    HKEY_CLASSES_ROOT\CLSID\{92A77B10-8C47-4A73-8822-F13D5F5E2AC2}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{92A77B10-8C47-4A73-8822-F13D5F5E2AC2}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{92A77B10-8C47-4A73-8822-F13D5F5E2AC2}\ProgID M5ShellLib.Networks.1
    HKEY_CLASSES_ROOT\CLSID\{92A77B10-8C47-4A73-8822-F13D5F5E2AC2}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{92A77B10-8C47-4A73-8822-F13D5F5E2AC2}\VersionIndependentProgID M5ShellLib.Networks
    HKEY_CLASSES_ROOT\CLSID\{92A77B10-8C47-4A73-8822-F13D5F5E2AC2} Networks Class
    HKEY_CLASSES_ROOT\CLSID\{92A77B10-8C47-4A73-8822-F13D5F5E2AC2} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{947D05CA-CE16-40EE-9031-2C3C57F00AE6} 
    HKEY_CLASSES_ROOT\CLSID\{947D05CA-CE16-40EE-9031-2C3C57F00AE6}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{947D05CA-CE16-40EE-9031-2C3C57F00AE6}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{947D05CA-CE16-40EE-9031-2C3C57F00AE6}\ProgID DataAccess.ResultsetAdapter.1
    HKEY_CLASSES_ROOT\CLSID\{947D05CA-CE16-40EE-9031-2C3C57F00AE6}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{947D05CA-CE16-40EE-9031-2C3C57F00AE6}\VersionIndependentProgID DataAccess.ResultsetAdapter
    HKEY_CLASSES_ROOT\CLSID\{947D05CA-CE16-40EE-9031-2C3C57F00AE6} ResultsetAdapter Class
    HKEY_CLASSES_ROOT\CLSID\{9C4B87BB-1C6D-4C1D-9447-A054C17BA247} 
    HKEY_CLASSES_ROOT\CLSID\{9C4B87BB-1C6D-4C1D-9447-A054C17BA247}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{9C4B87BB-1C6D-4C1D-9447-A054C17BA247}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{9C4B87BB-1C6D-4C1D-9447-A054C17BA247}\ProgID DataAccess.Preferences.1
    HKEY_CLASSES_ROOT\CLSID\{9C4B87BB-1C6D-4C1D-9447-A054C17BA247}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{9C4B87BB-1C6D-4C1D-9447-A054C17BA247}\VersionIndependentProgID DataAccess.Preferences
    HKEY_CLASSES_ROOT\CLSID\{9C4B87BB-1C6D-4C1D-9447-A054C17BA247} Preferences Class
    HKEY_CLASSES_ROOT\CLSID\{9FDAD0C2-9FB3-47A4-8B30-C4FA2FADC9E9} 
    HKEY_CLASSES_ROOT\CLSID\{9FDAD0C2-9FB3-47A4-8B30-C4FA2FADC9E9}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{9FDAD0C2-9FB3-47A4-8B30-C4FA2FADC9E9}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{9FDAD0C2-9FB3-47A4-8B30-C4FA2FADC9E9}\ProgID DataAccess.FilterRow.1
    HKEY_CLASSES_ROOT\CLSID\{9FDAD0C2-9FB3-47A4-8B30-C4FA2FADC9E9}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{9FDAD0C2-9FB3-47A4-8B30-C4FA2FADC9E9}\VersionIndependentProgID DataAccess.FilterRow
    HKEY_CLASSES_ROOT\CLSID\{9FDAD0C2-9FB3-47A4-8B30-C4FA2FADC9E9} FilterRow Class
    HKEY_CLASSES_ROOT\CLSID\{A5B2CD2A-AA46-4DA8-8D06-AB56938DEC0A} 
    HKEY_CLASSES_ROOT\CLSID\{A5B2CD2A-AA46-4DA8-8D06-AB56938DEC0A}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{A5B2CD2A-AA46-4DA8-8D06-AB56938DEC0A}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{A5B2CD2A-AA46-4DA8-8D06-AB56938DEC0A}\ProgID DataAccess.DataField.1
    HKEY_CLASSES_ROOT\CLSID\{A5B2CD2A-AA46-4DA8-8D06-AB56938DEC0A}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{A5B2CD2A-AA46-4DA8-8D06-AB56938DEC0A}\VersionIndependentProgID DataAccess.DataField
    HKEY_CLASSES_ROOT\CLSID\{A5B2CD2A-AA46-4DA8-8D06-AB56938DEC0A} DataField Class
    HKEY_CLASSES_ROOT\CLSID\{A758E17B-86ED-498E-8C00-4BE44CFDDCAB} 
    HKEY_CLASSES_ROOT\CLSID\{A758E17B-86ED-498E-8C00-4BE44CFDDCAB}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{A758E17B-86ED-498E-8C00-4BE44CFDDCAB}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{A758E17B-86ED-498E-8C00-4BE44CFDDCAB}\ProgID M5ShellLib.MetaValues.1
    HKEY_CLASSES_ROOT\CLSID\{A758E17B-86ED-498E-8C00-4BE44CFDDCAB}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{A758E17B-86ED-498E-8C00-4BE44CFDDCAB}\VersionIndependentProgID M5ShellLib.MetaValues
    HKEY_CLASSES_ROOT\CLSID\{A758E17B-86ED-498E-8C00-4BE44CFDDCAB} MetaValues Class
    HKEY_CLASSES_ROOT\CLSID\{A758E17B-86ED-498E-8C00-4BE44CFDDCAB} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{AD221EED-B528-4A12-B15B-3C58F9640A37} 
    HKEY_CLASSES_ROOT\CLSID\{AD221EED-B528-4A12-B15B-3C58F9640A37}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{AD221EED-B528-4A12-B15B-3C58F9640A37}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{AD221EED-B528-4A12-B15B-3C58F9640A37}\ProgID DataAccess.MyFilesAdapter.1
    HKEY_CLASSES_ROOT\CLSID\{AD221EED-B528-4A12-B15B-3C58F9640A37}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{AD221EED-B528-4A12-B15B-3C58F9640A37}\VersionIndependentProgID DataAccess.MyFilesAdapter
    HKEY_CLASSES_ROOT\CLSID\{AD221EED-B528-4A12-B15B-3C58F9640A37} MyFilesAdapter Class
    HKEY_CLASSES_ROOT\CLSID\{BA20AECE-61D3-4912-BE15-DCACAB97D094} 
    HKEY_CLASSES_ROOT\CLSID\{BA20AECE-61D3-4912-BE15-DCACAB97D094}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{BA20AECE-61D3-4912-BE15-DCACAB97D094}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{BA20AECE-61D3-4912-BE15-DCACAB97D094}\ProgID M5ShellLib.Upload.1
    HKEY_CLASSES_ROOT\CLSID\{BA20AECE-61D3-4912-BE15-DCACAB97D094}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{BA20AECE-61D3-4912-BE15-DCACAB97D094}\VersionIndependentProgID M5ShellLib.Upload
    HKEY_CLASSES_ROOT\CLSID\{BA20AECE-61D3-4912-BE15-DCACAB97D094} Upload Class
    HKEY_CLASSES_ROOT\CLSID\{BA20AECE-61D3-4912-BE15-DCACAB97D094} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{C19543F1-160B-4582-B385-857A0C5A0448} 
    HKEY_CLASSES_ROOT\CLSID\{C19543F1-160B-4582-B385-857A0C5A0448}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{C19543F1-160B-4582-B385-857A0C5A0448}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{C19543F1-160B-4582-B385-857A0C5A0448}\ProgID M5ShellLib.Scheme.1
    HKEY_CLASSES_ROOT\CLSID\{C19543F1-160B-4582-B385-857A0C5A0448}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{C19543F1-160B-4582-B385-857A0C5A0448}\VersionIndependentProgID M5ShellLib.Scheme
    HKEY_CLASSES_ROOT\CLSID\{C19543F1-160B-4582-B385-857A0C5A0448} Scheme Class
    HKEY_CLASSES_ROOT\CLSID\{C19543F1-160B-4582-B385-857A0C5A0448} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{C4F11413-9084-45EB-B1FA-103F67E98F4E} 
    HKEY_CLASSES_ROOT\CLSID\{C4F11413-9084-45EB-B1FA-103F67E98F4E}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{C4F11413-9084-45EB-B1FA-103F67E98F4E}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{C4F11413-9084-45EB-B1FA-103F67E98F4E}\ProgID DataAccess.Section.1
    HKEY_CLASSES_ROOT\CLSID\{C4F11413-9084-45EB-B1FA-103F67E98F4E}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{C4F11413-9084-45EB-B1FA-103F67E98F4E}\VersionIndependentProgID DataAccess.Section
    HKEY_CLASSES_ROOT\CLSID\{C4F11413-9084-45EB-B1FA-103F67E98F4E} Section Class
    HKEY_CLASSES_ROOT\CLSID\{C6041B9F-116B-4108-B343-45A979B506F8} 
    HKEY_CLASSES_ROOT\CLSID\{C6041B9F-116B-4108-B343-45A979B506F8}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{C6041B9F-116B-4108-B343-45A979B506F8}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{C6041B9F-116B-4108-B343-45A979B506F8}\ProgID DataAccess.TransfersAdapterFactory.1
    HKEY_CLASSES_ROOT\CLSID\{C6041B9F-116B-4108-B343-45A979B506F8}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{C6041B9F-116B-4108-B343-45A979B506F8}\VersionIndependentProgID DataAccess.TransfersAdapterFactory
    HKEY_CLASSES_ROOT\CLSID\{C6041B9F-116B-4108-B343-45A979B506F8} TransfersAdapterFactory Class
    HKEY_CLASSES_ROOT\CLSID\{D24F6664-A567-46A9-8B51-7AFE94407329} 
    HKEY_CLASSES_ROOT\CLSID\{D24F6664-A567-46A9-8B51-7AFE94407329}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{D24F6664-A567-46A9-8B51-7AFE94407329}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{D24F6664-A567-46A9-8B51-7AFE94407329}\ProgID M5ShellLib.Request.1
    HKEY_CLASSES_ROOT\CLSID\{D24F6664-A567-46A9-8B51-7AFE94407329}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{D24F6664-A567-46A9-8B51-7AFE94407329}\VersionIndependentProgID M5ShellLib.Request
    HKEY_CLASSES_ROOT\CLSID\{D24F6664-A567-46A9-8B51-7AFE94407329} Request Class
    HKEY_CLASSES_ROOT\CLSID\{D24F6664-A567-46A9-8B51-7AFE94407329} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{D8E1617B-A1A1-4958-AD02-08D5AD9C5B6A} 
    HKEY_CLASSES_ROOT\CLSID\{D8E1617B-A1A1-4958-AD02-08D5AD9C5B6A}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{D8E1617B-A1A1-4958-AD02-08D5AD9C5B6A}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{D8E1617B-A1A1-4958-AD02-08D5AD9C5B6A}\ProgID M5ShellLib.Requests.1
    HKEY_CLASSES_ROOT\CLSID\{D8E1617B-A1A1-4958-AD02-08D5AD9C5B6A}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{D8E1617B-A1A1-4958-AD02-08D5AD9C5B6A}\VersionIndependentProgID M5ShellLib.Requests
    HKEY_CLASSES_ROOT\CLSID\{D8E1617B-A1A1-4958-AD02-08D5AD9C5B6A} Requests Class
    HKEY_CLASSES_ROOT\CLSID\{D8E1617B-A1A1-4958-AD02-08D5AD9C5B6A} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{DB73AEF3-2E2E-430F-9E49-5F3943BD53B1} 
    HKEY_CLASSES_ROOT\CLSID\{DB73AEF3-2E2E-430F-9E49-5F3943BD53B1}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{DB73AEF3-2E2E-430F-9E49-5F3943BD53B1}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{DB73AEF3-2E2E-430F-9E49-5F3943BD53B1}\ProgID M5ShellLib.Peers.1
    HKEY_CLASSES_ROOT\CLSID\{DB73AEF3-2E2E-430F-9E49-5F3943BD53B1}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{DB73AEF3-2E2E-430F-9E49-5F3943BD53B1}\VersionIndependentProgID M5ShellLib.Peers
    HKEY_CLASSES_ROOT\CLSID\{DB73AEF3-2E2E-430F-9E49-5F3943BD53B1} Peers Class
    HKEY_CLASSES_ROOT\CLSID\{DB73AEF3-2E2E-430F-9E49-5F3943BD53B1} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{DBB0E655-B5DF-4DF7-9A12-D0E577650655} 
    HKEY_CLASSES_ROOT\CLSID\{DBB0E655-B5DF-4DF7-9A12-D0E577650655}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{DBB0E655-B5DF-4DF7-9A12-D0E577650655}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{DBB0E655-B5DF-4DF7-9A12-D0E577650655}\ProgID M5ShellLib.Source.1
    HKEY_CLASSES_ROOT\CLSID\{DBB0E655-B5DF-4DF7-9A12-D0E577650655}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{DBB0E655-B5DF-4DF7-9A12-D0E577650655}\VersionIndependentProgID M5ShellLib.Source
    HKEY_CLASSES_ROOT\CLSID\{DBB0E655-B5DF-4DF7-9A12-D0E577650655} Source Class
    HKEY_CLASSES_ROOT\CLSID\{DBB0E655-B5DF-4DF7-9A12-D0E577650655} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{DD5F1BAF-BEA2-48B2-97D2-F0622A0AB79D} 
    HKEY_CLASSES_ROOT\CLSID\{DD5F1BAF-BEA2-48B2-97D2-F0622A0AB79D}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{DD5F1BAF-BEA2-48B2-97D2-F0622A0AB79D}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{DD5F1BAF-BEA2-48B2-97D2-F0622A0AB79D}\ProgID DataAccess.DetailAttributes.1
    HKEY_CLASSES_ROOT\CLSID\{DD5F1BAF-BEA2-48B2-97D2-F0622A0AB79D}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{DD5F1BAF-BEA2-48B2-97D2-F0622A0AB79D}\VersionIndependentProgID DataAccess.DetailAttributes
    HKEY_CLASSES_ROOT\CLSID\{DD5F1BAF-BEA2-48B2-97D2-F0622A0AB79D} DetailAttributes Class
    HKEY_CLASSES_ROOT\CLSID\{E1186645-3752-406C-A3B1-3E95D62964DB} 
    HKEY_CLASSES_ROOT\CLSID\{E1186645-3752-406C-A3B1-3E95D62964DB}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{E1186645-3752-406C-A3B1-3E95D62964DB}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{E1186645-3752-406C-A3B1-3E95D62964DB}\ProgID DataAccess.DetailAttribute.1
    HKEY_CLASSES_ROOT\CLSID\{E1186645-3752-406C-A3B1-3E95D62964DB}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{E1186645-3752-406C-A3B1-3E95D62964DB}\VersionIndependentProgID DataAccess.DetailAttribute
    HKEY_CLASSES_ROOT\CLSID\{E1186645-3752-406C-A3B1-3E95D62964DB} DetailAttribute Class
    HKEY_CLASSES_ROOT\CLSID\{EF904337-9862-40DA-B448-C65F2D3F47DC} 
    HKEY_CLASSES_ROOT\CLSID\{EF904337-9862-40DA-B448-C65F2D3F47DC}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{EF904337-9862-40DA-B448-C65F2D3F47DC}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{EF904337-9862-40DA-B448-C65F2D3F47DC}\ProgID DataAccess.TransferRow.1
    HKEY_CLASSES_ROOT\CLSID\{EF904337-9862-40DA-B448-C65F2D3F47DC}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{EF904337-9862-40DA-B448-C65F2D3F47DC}\VersionIndependentProgID DataAccess.TransferRow
    HKEY_CLASSES_ROOT\CLSID\{EF904337-9862-40DA-B448-C65F2D3F47DC} TransferRow Class
    HKEY_CLASSES_ROOT\CLSID\{F18B8B3D-5FD0-4b3a-B66D-F37282201298} 
    HKEY_CLASSES_ROOT\CLSID\{F18B8B3D-5FD0-4b3a-B66D-F37282201298}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{F18B8B3D-5FD0-4b3a-B66D-F37282201298}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{F18B8B3D-5FD0-4b3a-B66D-F37282201298}\ProgID M5ShellLib.M5ChatOptions.1
    HKEY_CLASSES_ROOT\CLSID\{F18B8B3D-5FD0-4b3a-B66D-F37282201298}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{F18B8B3D-5FD0-4b3a-B66D-F37282201298}\VersionIndependentProgID M5ShellLib.M5ChatOptions
    HKEY_CLASSES_ROOT\CLSID\{F18B8B3D-5FD0-4b3a-B66D-F37282201298} M5ChatOptions Class
    HKEY_CLASSES_ROOT\CLSID\{F18B8B3D-5FD0-4b3a-B66D-F37282201298} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\CLSID\{F54A208E-A072-4040-9F82-ADB9EAC503E4} 
    HKEY_CLASSES_ROOT\CLSID\{F54A208E-A072-4040-9F82-ADB9EAC503E4}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{F54A208E-A072-4040-9F82-ADB9EAC503E4}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{F54A208E-A072-4040-9F82-ADB9EAC503E4}\ProgID DataAccess.Cell.1
    HKEY_CLASSES_ROOT\CLSID\{F54A208E-A072-4040-9F82-ADB9EAC503E4}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{F54A208E-A072-4040-9F82-ADB9EAC503E4}\VersionIndependentProgID DataAccess.Cell
    HKEY_CLASSES_ROOT\CLSID\{F54A208E-A072-4040-9F82-ADB9EAC503E4} Cell Class
    HKEY_CLASSES_ROOT\CLSID\{F9F17F21-1E3E-42BB-8DA3-FC51C616C2C5} 
    HKEY_CLASSES_ROOT\CLSID\{F9F17F21-1E3E-42BB-8DA3-FC51C616C2C5}\InprocServer32 C:\Programme\Morpheus\M5Shell.dll
    HKEY_CLASSES_ROOT\CLSID\{F9F17F21-1E3E-42BB-8DA3-FC51C616C2C5}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{F9F17F21-1E3E-42BB-8DA3-FC51C616C2C5}\ProgID M5ShellLib.Filter.1
    HKEY_CLASSES_ROOT\CLSID\{F9F17F21-1E3E-42BB-8DA3-FC51C616C2C5}\TypeLib {4A987127-EE51-4C87-AAC3-144294F54BE3}
    HKEY_CLASSES_ROOT\CLSID\{F9F17F21-1E3E-42BB-8DA3-FC51C616C2C5}\VersionIndependentProgID M5ShellLib.Filter
    HKEY_CLASSES_ROOT\CLSID\{F9F17F21-1E3E-42BB-8DA3-FC51C616C2C5} Filter Class
    HKEY_CLASSES_ROOT\CLSID\{F9F17F21-1E3E-42BB-8DA3-FC51C616C2C5} AppID {EA7AA9FF-166A-4C5A-8569-963DE41AAC74}
    HKEY_CLASSES_ROOT\DataAccess.Cell 
    HKEY_CLASSES_ROOT\DataAccess.Cell\CLSID {F54A208E-A072-4040-9F82-ADB9EAC503E4}
    HKEY_CLASSES_ROOT\DataAccess.Cell\CurVer DataAccess.Cell.1
    HKEY_CLASSES_ROOT\DataAccess.Cell Cell Class
    HKEY_CLASSES_ROOT\DataAccess.Cell.1 
    HKEY_CLASSES_ROOT\DataAccess.Cell.1\CLSID {F54A208E-A072-4040-9F82-ADB9EAC503E4}
    HKEY_CLASSES_ROOT\DataAccess.Cell.1 Cell Class
    HKEY_CLASSES_ROOT\DataAccess.Column 
    HKEY_CLASSES_ROOT\DataAccess.Column\CLSID {24D10ECA-8DD5-4A48-99D3-334C3DD9B6F6}
    HKEY_CLASSES_ROOT\DataAccess.Column\CurVer DataAccess.Column.1
    HKEY_CLASSES_ROOT\DataAccess.Column Column Class
    HKEY_CLASSES_ROOT\DataAccess.Column.1 
    HKEY_CLASSES_ROOT\DataAccess.Column.1\CLSID {24D10ECA-8DD5-4A48-99D3-334C3DD9B6F6}
    HKEY_CLASSES_ROOT\DataAccess.Column.1 Column Class
    HKEY_CLASSES_ROOT\DataAccess.DataField 
    HKEY_CLASSES_ROOT\DataAccess.DataField\CLSID {A5B2CD2A-AA46-4DA8-8D06-AB56938DEC0A}
    HKEY_CLASSES_ROOT\DataAccess.DataField\CurVer DataAccess.DataField.1
    HKEY_CLASSES_ROOT\DataAccess.DataField DataField Class
    HKEY_CLASSES_ROOT\DataAccess.DataField.1 
    HKEY_CLASSES_ROOT\DataAccess.DataField.1\CLSID {A5B2CD2A-AA46-4DA8-8D06-AB56938DEC0A}
    HKEY_CLASSES_ROOT\DataAccess.DataField.1 DataField Class
    HKEY_CLASSES_ROOT\DataAccess.DetailAttribute 
    HKEY_CLASSES_ROOT\DataAccess.DetailAttribute\CLSID {E1186645-3752-406C-A3B1-3E95D62964DB}
    HKEY_CLASSES_ROOT\DataAccess.DetailAttribute\CurVer DataAccess.DetailAttribute.1
    HKEY_CLASSES_ROOT\DataAccess.DetailAttribute DetailAttribute Class
    HKEY_CLASSES_ROOT\DataAccess.DetailAttribute.1 
    HKEY_CLASSES_ROOT\DataAccess.DetailAttribute.1\CLSID {E1186645-3752-406C-A3B1-3E95D62964DB}
    HKEY_CLASSES_ROOT\DataAccess.DetailAttribute.1 DetailAttribute Class
    HKEY_CLASSES_ROOT\DataAccess.DetailAttributes 
    HKEY_CLASSES_ROOT\DataAccess.DetailAttributes\CLSID {DD5F1BAF-BEA2-48B2-97D2-F0622A0AB79D}
    HKEY_CLASSES_ROOT\DataAccess.DetailAttributes\CurVer DataAccess.DetailAttributes.1
    HKEY_CLASSES_ROOT\DataAccess.DetailAttributes DetailAttributes Class
    HKEY_CLASSES_ROOT\DataAccess.DetailAttributes.1 
    HKEY_CLASSES_ROOT\DataAccess.DetailAttributes.1\CLSID {DD5F1BAF-BEA2-48B2-97D2-F0622A0AB79D}
    HKEY_CLASSES_ROOT\DataAccess.DetailAttributes.1 DetailAttributes Class
    HKEY_CLASSES_ROOT\DataAccess.FilterColumn 
    HKEY_CLASSES_ROOT\DataAccess.FilterColumn\CLSID {75CB2D18-1182-44F0-B510-491D7817F4CB}
    HKEY_CLASSES_ROOT\DataAccess.FilterColumn\CurVer DataAccess.FilterColumn.1
    HKEY_CLASSES_ROOT\DataAccess.FilterColumn FilterColumn Class
    HKEY_CLASSES_ROOT\DataAccess.FilterColumn.1 
    HKEY_CLASSES_ROOT\DataAccess.FilterColumn.1\CLSID {75CB2D18-1182-44F0-B510-491D7817F4CB}
    HKEY_CLASSES_ROOT\DataAccess.FilterColumn.1 FilterColumn Class
    HKEY_CLASSES_ROOT\DataAccess.FilterRow 
    HKEY_CLASSES_ROOT\DataAccess.FilterRow\CLSID {9FDAD0C2-9FB3-47A4-8B30-C4FA2FADC9E9}
    HKEY_CLASSES_ROOT\DataAccess.FilterRow\CurVer DataAccess.FilterRow.1
    HKEY_CLASSES_ROOT\DataAccess.FilterRow FilterRow Class
    HKEY_CLASSES_ROOT\DataAccess.FilterRow.1 
    HKEY_CLASSES_ROOT\DataAccess.FilterRow.1\CLSID {9FDAD0C2-9FB3-47A4-8B30-C4FA2FADC9E9}
    HKEY_CLASSES_ROOT\DataAccess.FilterRow.1 FilterRow Class
    HKEY_CLASSES_ROOT\DataAccess.MyFilesAdapter 
    HKEY_CLASSES_ROOT\DataAccess.MyFilesAdapter\CLSID {AD221EED-B528-4A12-B15B-3C58F9640A37}
    HKEY_CLASSES_ROOT\DataAccess.MyFilesAdapter\CurVer DataAccess.MyFilesAdapter.1
    HKEY_CLASSES_ROOT\DataAccess.MyFilesAdapter MyFilesAdapter Class
    HKEY_CLASSES_ROOT\DataAccess.MyFilesAdapter.1 
    HKEY_CLASSES_ROOT\DataAccess.MyFilesAdapter.1\CLSID {AD221EED-B528-4A12-B15B-3C58F9640A37}
    HKEY_CLASSES_ROOT\DataAccess.MyFilesAdapter.1 MyFilesAdapter Class
    HKEY_CLASSES_ROOT\DataAccess.MyFilesAdapterFactory 
    HKEY_CLASSES_ROOT\DataAccess.MyFilesAdapterFactory\CLSID {51FC6685-6FA7-45CF-86E1-9605B9080F73}
    HKEY_CLASSES_ROOT\DataAccess.MyFilesAdapterFactory\CurVer DataAccess.MyFilesAdapterFactory.1
    HKEY_CLASSES_ROOT\DataAccess.MyFilesAdapterFactory MyFilesAdapterFactory Class
    HKEY_CLASSES_ROOT\DataAccess.MyFilesAdapterFactory.1 
    HKEY_CLASSES_ROOT\DataAccess.MyFilesAdapterFactory.1\CLSID {51FC6685-6FA7-45CF-86E1-9605B9080F73}
    HKEY_CLASSES_ROOT\DataAccess.MyFilesAdapterFactory.1 MyFilesAdapterFactory Class
    HKEY_CLASSES_ROOT\DataAccess.MyFilesRow 
    HKEY_CLASSES_ROOT\DataAccess.MyFilesRow\CLSID {444BEA16-E6DF-45AF-A4D4-B0F81ABA7CA0}
    HKEY_CLASSES_ROOT\DataAccess.MyFilesRow\CurVer DataAccess.MyFilesRow.1
    HKEY_CLASSES_ROOT\DataAccess.MyFilesRow MyFilesRow Class
    HKEY_CLASSES_ROOT\DataAccess.MyFilesRow.1 
    HKEY_CLASSES_ROOT\DataAccess.MyFilesRow.1\CLSID {444BEA16-E6DF-45AF-A4D4-B0F81ABA7CA0}
    HKEY_CLASSES_ROOT\DataAccess.MyFilesRow.1 MyFilesRow Class
    HKEY_CLASSES_ROOT\DataAccess.PluggableProtocol 
    HKEY_CLASSES_ROOT\DataAccess.PluggableProtocol\CLSID {430106F1-5EF4-4D2E-8C52-7E3CEAB65DBD}
    HKEY_CLASSES_ROOT\DataAccess.PluggableProtocol\CurVer DataAccess.PluggableProtocol.1
    HKEY_CLASSES_ROOT\DataAccess.PluggableProtocol PluggableProtocol Class
    HKEY_CLASSES_ROOT\DataAccess.PluggableProtocol.1 
    HKEY_CLASSES_ROOT\DataAccess.PluggableProtocol.1\CLSID {430106F1-5EF4-4D2E-8C52-7E3CEAB65DBD}
    HKEY_CLASSES_ROOT\DataAccess.PluggableProtocol.1 PluggableProtocol Class
    HKEY_CLASSES_ROOT\DataAccess.Preferences 
    HKEY_CLASSES_ROOT\DataAccess.Preferences\CLSID {9C4B87BB-1C6D-4C1D-9447-A054C17BA247}
    HKEY_CLASSES_ROOT\DataAccess.Preferences\CurVer DataAccess.Preferences.1
    HKEY_CLASSES_ROOT\DataAccess.Preferences Preferences Class
    HKEY_CLASSES_ROOT\DataAccess.Preferences.1 
    HKEY_CLASSES_ROOT\DataAccess.Preferences.1\CLSID {9C4B87BB-1C6D-4C1D-9447-A054C17BA247}
    HKEY_CLASSES_ROOT\DataAccess.Preferences.1 Preferences Class
    HKEY_CLASSES_ROOT\DataAccess.ResultsetAdapter 
    HKEY_CLASSES_ROOT\DataAccess.ResultsetAdapter\CLSID {947D05CA-CE16-40EE-9031-2C3C57F00AE6}
    HKEY_CLASSES_ROOT\DataAccess.ResultsetAdapter\CurVer DataAccess.ResultsetAdapter.1
    HKEY_CLASSES_ROOT\DataAccess.ResultsetAdapter ResultsetAdapter Class
    HKEY_CLASSES_ROOT\DataAccess.ResultsetAdapter.1 
    HKEY_CLASSES_ROOT\DataAccess.ResultsetAdapter.1\CLSID {947D05CA-CE16-40EE-9031-2C3C57F00AE6}
    HKEY_CLASSES_ROOT\DataAccess.ResultsetAdapter.1 ResultsetAdapter Class
    HKEY_CLASSES_ROOT\DataAccess.ResultsetAdapterFactory 
    HKEY_CLASSES_ROOT\DataAccess.ResultsetAdapterFactory\CLSID {0C0423F7-7A04-4D32-9BDC-006DB1D0A1E2}
    HKEY_CLASSES_ROOT\DataAccess.ResultsetAdapterFactory\CurVer DataAccess.ResultsetAdapterFactory.1
    HKEY_CLASSES_ROOT\DataAccess.ResultsetAdapterFactory ResultsetAdapterFactory Class
    HKEY_CLASSES_ROOT\DataAccess.ResultsetAdapterFactory.1 
    HKEY_CLASSES_ROOT\DataAccess.ResultsetAdapterFactory.1\CLSID {0C0423F7-7A04-4D32-9BDC-006DB1D0A1E2}
    HKEY_CLASSES_ROOT\DataAccess.ResultsetAdapterFactory.1 ResultsetAdapterFactory Class
    HKEY_CLASSES_ROOT\DataAccess.Row 
    HKEY_CLASSES_ROOT\DataAccess.Row\CLSID {477AC035-C5D3-43CC-A24C-5925D217C252}
    HKEY_CLASSES_ROOT\DataAccess.Row\CurVer DataAccess.Row.1
    HKEY_CLASSES_ROOT\DataAccess.Row Row Class
    HKEY_CLASSES_ROOT\DataAccess.Row.1 
    HKEY_CLASSES_ROOT\DataAccess.Row.1\CLSID {477AC035-C5D3-43CC-A24C-5925D217C252}
    HKEY_CLASSES_ROOT\DataAccess.Row.1 Row Class
    HKEY_CLASSES_ROOT\DataAccess.Section 
    HKEY_CLASSES_ROOT\DataAccess.Section\CLSID {C4F11413-9084-45EB-B1FA-103F67E98F4E}
    HKEY_CLASSES_ROOT\DataAccess.Section\CurVer DataAccess.Section.1
    HKEY_CLASSES_ROOT\DataAccess.Section Section Class
    HKEY_CLASSES_ROOT\DataAccess.Section.1 
    HKEY_CLASSES_ROOT\DataAccess.Section.1\CLSID {C4F11413-9084-45EB-B1FA-103F67E98F4E}
    HKEY_CLASSES_ROOT\DataAccess.Section.1 Section Class
    HKEY_CLASSES_ROOT\DataAccess.Sections 
    HKEY_CLASSES_ROOT\DataAccess.Sections\CLSID {5FAD1E5E-E7DE-434F-B2AE-EE9244BDA638}
    HKEY_CLASSES_ROOT\DataAccess.Sections\CurVer DataAccess.Sections.1
    HKEY_CLASSES_ROOT\DataAccess.Sections Sections Class
    HKEY_CLASSES_ROOT\DataAccess.Sections.1 
    HKEY_CLASSES_ROOT\DataAccess.Sections.1\CLSID {5FAD1E5E-E7DE-434F-B2AE-EE9244BDA638}
    HKEY_CLASSES_ROOT\DataAccess.Sections.1 Sections Class
    HKEY_CLASSES_ROOT\DataAccess.TransferRow 
    HKEY_CLASSES_ROOT\DataAccess.TransferRow\CLSID {EF904337-9862-40DA-B448-C65F2D3F47DC}
    HKEY_CLASSES_ROOT\DataAccess.TransferRow\CurVer DataAccess.TransferRow.1
    HKEY_CLASSES_ROOT\DataAccess.TransferRow TransferRow Class
    HKEY_CLASSES_ROOT\DataAccess.TransferRow.1 
    HKEY_CLASSES_ROOT\DataAccess.TransferRow.1\CLSID {EF904337-9862-40DA-B448-C65F2D3F47DC}
    HKEY_CLASSES_ROOT\DataAccess.TransferRow.1 TransferRow Class
    HKEY_CLASSES_ROOT\DataAccess.TransfersAdapter 
    HKEY_CLASSES_ROOT\DataAccess.TransfersAdapter\CLSID {642D692A-C61C-4241-AF83-4FD8BDD715B2}
    HKEY_CLASSES_ROOT\DataAccess.TransfersAdapter\CurVer DataAccess.TransfersAdapter.1
    HKEY_CLASSES_ROOT\DataAccess.TransfersAdapter TransfersAdapter Class
    HKEY_CLASSES_ROOT\DataAccess.TransfersAdapter.1 
    HKEY_CLASSES_ROOT\DataAccess.TransfersAdapter.1\CLSID {642D692A-C61C-4241-AF83-4FD8BDD715B2}
    HKEY_CLASSES_ROOT\DataAccess.TransfersAdapter.1 TransfersAdapter Class
    HKEY_CLASSES_ROOT\DataAccess.TransfersAdapterFactory 
    HKEY_CLASSES_ROOT\DataAccess.TransfersAdapterFactory\CLSID {C6041B9F-116B-4108-B343-45A979B506F8}
    HKEY_CLASSES_ROOT\DataAccess.TransfersAdapterFactory\CurVer DataAccess.TransfersAdapterFactory.1
    HKEY_CLASSES_ROOT\DataAccess.TransfersAdapterFactory TransfersAdapterFactory Class
    HKEY_CLASSES_ROOT\DataAccess.TransfersAdapterFactory.1 
    HKEY_CLASSES_ROOT\DataAccess.TransfersAdapterFactory.1\CLSID {C6041B9F-116B-4108-B343-45A979B506F8}
    HKEY_CLASSES_ROOT\DataAccess.TransfersAdapterFactory.1 TransfersAdapterFactory Class
    HKEY_CLASSES_ROOT\M5ChatEngine.M5ChatEngine 
    HKEY_CLASSES_ROOT\M5ChatEngine.M5ChatEngine\CLSID {4D42EA2E-9D32-4b07-AE00-8797C6B1BAA3}
    HKEY_CLASSES_ROOT\M5ChatEngine.M5ChatEngine\CurVer M5ChatEngine.M5ChatEngine.1
    HKEY_CLASSES_ROOT\M5ChatEngine.M5ChatEngine M5ChatEngine Class
    HKEY_CLASSES_ROOT\M5ChatEngine.M5ChatEngine.1 
    HKEY_CLASSES_ROOT\M5ChatEngine.M5ChatEngine.1\CLSID {4D42EA2E-9D32-4b07-AE00-8797C6B1BAA3}
    HKEY_CLASSES_ROOT\M5ChatEngine.M5ChatEngine.1 M5ChatEngine Class
    HKEY_CLASSES_ROOT\M5ChatOptions.M5ChatOptions 
    HKEY_CLASSES_ROOT\M5ChatOptions.M5ChatOptions\CLSID {F18B8B3D-5FD0-4b3a-B66D-F37282201298}
    HKEY_CLASSES_ROOT\M5ChatOptions.M5ChatOptions\CurVer M5ChatOptions.M5ChatOptions.1
    HKEY_CLASSES_ROOT\M5ChatOptions.M5ChatOptions M5ChatOptions Class
    HKEY_CLASSES_ROOT\M5ChatOptions.M5ChatOptions.1 
    HKEY_CLASSES_ROOT\M5ChatOptions.M5ChatOptions.1\CLSID {F18B8B3D-5FD0-4b3a-B66D-F37282201298}
    HKEY_CLASSES_ROOT\M5ChatOptions.M5ChatOptions.1 M5ChatOptions Class
    HKEY_CLASSES_ROOT\M5ChatServer.M5ChatServer 
    HKEY_CLASSES_ROOT\M5ChatServer.M5ChatServer\CLSID {80385330-087A-4d61-8956-BAEEE05CA33C}
    HKEY_CLASSES_ROOT\M5ChatServer.M5ChatServer\CurVer M5ChatServer.M5ChatServer.1
    HKEY_CLASSES_ROOT\M5ChatServer.M5ChatServer M5ChatServer Class
    HKEY_CLASSES_ROOT\M5ChatServer.M5ChatServer.1 
    HKEY_CLASSES_ROOT\M5ChatServer.M5ChatServer.1\CLSID {80385330-087A-4d61-8956-BAEEE05CA33C}
    HKEY_CLASSES_ROOT\M5ChatServer.M5ChatServer.1 M5ChatServer Class
    HKEY_CLASSES_ROOT\M5ShellLib.AppServices 
    HKEY_CLASSES_ROOT\M5ShellLib.AppServices\CLSID {0D568FFD-296A-4906-B2AA-0ACEC8C15B2C}
    HKEY_CLASSES_ROOT\M5ShellLib.AppServices\CurVer M5ShellLib.AppServices.1
    HKEY_CLASSES_ROOT\M5ShellLib.AppServices AppServices Class
    HKEY_CLASSES_ROOT\M5ShellLib.AppServices.1 
    HKEY_CLASSES_ROOT\M5ShellLib.AppServices.1\CLSID {0D568FFD-296A-4906-B2AA-0ACEC8C15B2C}
    HKEY_CLASSES_ROOT\M5ShellLib.AppServices.1 AppServices Class
    HKEY_CLASSES_ROOT\M5ShellLib.Field 
    HKEY_CLASSES_ROOT\M5ShellLib.Field\CLSID {895C2476-7DDA-440E-B300-208DA45DCF18}
    HKEY_CLASSES_ROOT\M5ShellLib.Field\CurVer M5ShellLib.Field.1
    HKEY_CLASSES_ROOT\M5ShellLib.Field Field Class
    HKEY_CLASSES_ROOT\M5ShellLib.Field.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Field.1\CLSID {895C2476-7DDA-440E-B300-208DA45DCF18}
    HKEY_CLASSES_ROOT\M5ShellLib.Field.1 Field Class
    HKEY_CLASSES_ROOT\M5ShellLib.Filter 
    HKEY_CLASSES_ROOT\M5ShellLib.Filter\CLSID {F9F17F21-1E3E-42BB-8DA3-FC51C616C2C5}
    HKEY_CLASSES_ROOT\M5ShellLib.Filter\CurVer M5ShellLib.Filter.1
    HKEY_CLASSES_ROOT\M5ShellLib.Filter Filter Class
    HKEY_CLASSES_ROOT\M5ShellLib.Filter.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Filter.1\CLSID {F9F17F21-1E3E-42BB-8DA3-FC51C616C2C5}
    HKEY_CLASSES_ROOT\M5ShellLib.Filter.1 Filter Class
    HKEY_CLASSES_ROOT\M5ShellLib.Filters 
    HKEY_CLASSES_ROOT\M5ShellLib.Filters\CLSID {3B27374C-5310-48ED-B8B5-291E7FE4B838}
    HKEY_CLASSES_ROOT\M5ShellLib.Filters\CurVer M5ShellLib.Filters.1
    HKEY_CLASSES_ROOT\M5ShellLib.Filters Filters Class
    HKEY_CLASSES_ROOT\M5ShellLib.Filters.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Filters.1\CLSID {3B27374C-5310-48ED-B8B5-291E7FE4B838}
    HKEY_CLASSES_ROOT\M5ShellLib.Filters.1 Filters Class
    HKEY_CLASSES_ROOT\M5ShellLib.Headers 
    HKEY_CLASSES_ROOT\M5ShellLib.Headers\CLSID {1BC5B47C-5D81-4370-8A72-B8A9B2B610D9}
    HKEY_CLASSES_ROOT\M5ShellLib.Headers\CurVer M5ShellLib.Headers.1
    HKEY_CLASSES_ROOT\M5ShellLib.Headers Headers Class
    HKEY_CLASSES_ROOT\M5ShellLib.Headers.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Headers.1\CLSID {1BC5B47C-5D81-4370-8A72-B8A9B2B610D9}
    HKEY_CLASSES_ROOT\M5ShellLib.Headers.1 Headers Class
    HKEY_CLASSES_ROOT\M5ShellLib.Images 
    HKEY_CLASSES_ROOT\M5ShellLib.Images\CLSID {11FB1B30-ABB9-4A77-A237-538C7F465EEC}
    HKEY_CLASSES_ROOT\M5ShellLib.Images\CurVer M5ShellLib.Images.1
    HKEY_CLASSES_ROOT\M5ShellLib.Images Images Class
    HKEY_CLASSES_ROOT\M5ShellLib.Images.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Images.1\CLSID {11FB1B30-ABB9-4A77-A237-538C7F465EEC}
    HKEY_CLASSES_ROOT\M5ShellLib.Images.1 Images Class
    HKEY_CLASSES_ROOT\M5ShellLib.Meta 
    HKEY_CLASSES_ROOT\M5ShellLib.Meta\CLSID {26D18B46-800B-4C55-977F-B69E45064ED8}
    HKEY_CLASSES_ROOT\M5ShellLib.Meta\CurVer M5ShellLib.Meta.1
    HKEY_CLASSES_ROOT\M5ShellLib.Meta Meta Class
    HKEY_CLASSES_ROOT\M5ShellLib.Meta.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Meta.1\CLSID {26D18B46-800B-4C55-977F-B69E45064ED8}
    HKEY_CLASSES_ROOT\M5ShellLib.Meta.1 Meta Class
    HKEY_CLASSES_ROOT\M5ShellLib.Metas 
    HKEY_CLASSES_ROOT\M5ShellLib.Metas\CLSID {31D94EC3-16B4-4398-92A3-04974163124E}
    HKEY_CLASSES_ROOT\M5ShellLib.Metas\CurVer M5ShellLib.Metas.1
    HKEY_CLASSES_ROOT\M5ShellLib.Metas Metas Class
    HKEY_CLASSES_ROOT\M5ShellLib.Metas.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Metas.1\CLSID {31D94EC3-16B4-4398-92A3-04974163124E}
    HKEY_CLASSES_ROOT\M5ShellLib.Metas.1 Metas Class
    HKEY_CLASSES_ROOT\M5ShellLib.MetaValues 
    HKEY_CLASSES_ROOT\M5ShellLib.MetaValues\CLSID {A758E17B-86ED-498E-8C00-4BE44CFDDCAB}
    HKEY_CLASSES_ROOT\M5ShellLib.MetaValues\CurVer M5ShellLib.MetaValues.1
    HKEY_CLASSES_ROOT\M5ShellLib.MetaValues MetaValues Class
    HKEY_CLASSES_ROOT\M5ShellLib.MetaValues.1 
    HKEY_CLASSES_ROOT\M5ShellLib.MetaValues.1\CLSID {A758E17B-86ED-498E-8C00-4BE44CFDDCAB}
    HKEY_CLASSES_ROOT\M5ShellLib.MetaValues.1 MetaValues Class
    HKEY_CLASSES_ROOT\M5ShellLib.NetController 
    HKEY_CLASSES_ROOT\M5ShellLib.NetController\CLSID {2313B221-9F3C-405E-B143-AB47887C3121}
    HKEY_CLASSES_ROOT\M5ShellLib.NetController\CurVer M5ShellLib.NetController.1
    HKEY_CLASSES_ROOT\M5ShellLib.NetController NetController Class
    HKEY_CLASSES_ROOT\M5ShellLib.NetController.1 
    HKEY_CLASSES_ROOT\M5ShellLib.NetController.1\CLSID {2313B221-9F3C-405E-B143-AB47887C3121}
    HKEY_CLASSES_ROOT\M5ShellLib.NetController.1 NetController Class
    HKEY_CLASSES_ROOT\M5ShellLib.Network 
    HKEY_CLASSES_ROOT\M5ShellLib.Network\CLSID {8EABEED3-993D-4FC9-BDC9-132DE204F606}
    HKEY_CLASSES_ROOT\M5ShellLib.Network\CurVer M5ShellLib.Network.1
    HKEY_CLASSES_ROOT\M5ShellLib.Network Network Class
    HKEY_CLASSES_ROOT\M5ShellLib.Network.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Network.1\CLSID {8EABEED3-993D-4FC9-BDC9-132DE204F606}
    HKEY_CLASSES_ROOT\M5ShellLib.Network.1 Network Class
    HKEY_CLASSES_ROOT\M5ShellLib.Networks 
    HKEY_CLASSES_ROOT\M5ShellLib.Networks\CLSID {92A77B10-8C47-4A73-8822-F13D5F5E2AC2}
    HKEY_CLASSES_ROOT\M5ShellLib.Networks\CurVer M5ShellLib.Networks.1
    HKEY_CLASSES_ROOT\M5ShellLib.Networks Networks Class
    HKEY_CLASSES_ROOT\M5ShellLib.Networks.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Networks.1\CLSID {92A77B10-8C47-4A73-8822-F13D5F5E2AC2}
    HKEY_CLASSES_ROOT\M5ShellLib.Networks.1 Networks Class
    HKEY_CLASSES_ROOT\M5ShellLib.Parameter 
    HKEY_CLASSES_ROOT\M5ShellLib.Parameter\CLSID {8633B121-42DC-4A78-A8BD-651357771E77}
    HKEY_CLASSES_ROOT\M5ShellLib.Parameter\CurVer M5ShellLib.Parameter.1
    HKEY_CLASSES_ROOT\M5ShellLib.Parameter Parameter Class
    HKEY_CLASSES_ROOT\M5ShellLib.Parameter.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Parameter.1\CLSID {8633B121-42DC-4A78-A8BD-651357771E77}
    HKEY_CLASSES_ROOT\M5ShellLib.Parameter.1 Parameter Class
    HKEY_CLASSES_ROOT\M5ShellLib.Parameters 
    HKEY_CLASSES_ROOT\M5ShellLib.Parameters\CLSID {703EFEAB-7F84-4BE9-B978-FF4C6A8BA794}
    HKEY_CLASSES_ROOT\M5ShellLib.Parameters\CurVer M5ShellLib.Parameters.1
    HKEY_CLASSES_ROOT\M5ShellLib.Parameters Parameters Class
    HKEY_CLASSES_ROOT\M5ShellLib.Parameters.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Parameters.1\CLSID {703EFEAB-7F84-4BE9-B978-FF4C6A8BA794}
    HKEY_CLASSES_ROOT\M5ShellLib.Parameters.1 Parameters Class
    HKEY_CLASSES_ROOT\M5ShellLib.Peer 
    HKEY_CLASSES_ROOT\M5ShellLib.Peer\CLSID {324463FD-4238-4B56-93AD-09337F0AC59F}
    HKEY_CLASSES_ROOT\M5ShellLib.Peer\CurVer M5ShellLib.Peer.1
    HKEY_CLASSES_ROOT\M5ShellLib.Peer Peer Class
    HKEY_CLASSES_ROOT\M5ShellLib.Peer.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Peer.1\CLSID {324463FD-4238-4B56-93AD-09337F0AC59F}
    HKEY_CLASSES_ROOT\M5ShellLib.Peer.1 Peer Class
    HKEY_CLASSES_ROOT\M5ShellLib.Peers 
    HKEY_CLASSES_ROOT\M5ShellLib.Peers\CLSID {DB73AEF3-2E2E-430F-9E49-5F3943BD53B1}
    HKEY_CLASSES_ROOT\M5ShellLib.Peers\CurVer M5ShellLib.Peers.1
    HKEY_CLASSES_ROOT\M5ShellLib.Peers Peers Class
    HKEY_CLASSES_ROOT\M5ShellLib.Peers.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Peers.1\CLSID {DB73AEF3-2E2E-430F-9E49-5F3943BD53B1}
    HKEY_CLASSES_ROOT\M5ShellLib.Peers.1 Peers Class
    HKEY_CLASSES_ROOT\M5ShellLib.Query 
    HKEY_CLASSES_ROOT\M5ShellLib.Query\CLSID {8A32E183-25EB-402F-82D5-D3E75215BF3F}
    HKEY_CLASSES_ROOT\M5ShellLib.Query\CurVer M5ShellLib.Query.1
    HKEY_CLASSES_ROOT\M5ShellLib.Query Query Class
    HKEY_CLASSES_ROOT\M5ShellLib.Query.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Query.1\CLSID {8A32E183-25EB-402F-82D5-D3E75215BF3F}
    HKEY_CLASSES_ROOT\M5ShellLib.Query.1 Query Class
    HKEY_CLASSES_ROOT\M5ShellLib.Request 
    HKEY_CLASSES_ROOT\M5ShellLib.Request\CLSID {D24F6664-A567-46A9-8B51-7AFE94407329}
    HKEY_CLASSES_ROOT\M5ShellLib.Request\CurVer M5ShellLib.Request.1
    HKEY_CLASSES_ROOT\M5ShellLib.Request Request Class
    HKEY_CLASSES_ROOT\M5ShellLib.Request.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Request.1\CLSID {D24F6664-A567-46A9-8B51-7AFE94407329}
    HKEY_CLASSES_ROOT\M5ShellLib.Request.1 Request Class
    HKEY_CLASSES_ROOT\M5ShellLib.Requests 
    HKEY_CLASSES_ROOT\M5ShellLib.Requests\CLSID {D8E1617B-A1A1-4958-AD02-08D5AD9C5B6A}
    HKEY_CLASSES_ROOT\M5ShellLib.Requests\CurVer M5ShellLib.Requests.1
    HKEY_CLASSES_ROOT\M5ShellLib.Requests Requests Class
    HKEY_CLASSES_ROOT\M5ShellLib.Requests.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Requests.1\CLSID {D8E1617B-A1A1-4958-AD02-08D5AD9C5B6A}
    HKEY_CLASSES_ROOT\M5ShellLib.Requests.1 Requests Class
    HKEY_CLASSES_ROOT\M5ShellLib.ResponseHeaders 
    HKEY_CLASSES_ROOT\M5ShellLib.ResponseHeaders\CLSID {3F01122F-0C9A-4621-A7FD-99C6EFAE8363}
    HKEY_CLASSES_ROOT\M5ShellLib.ResponseHeaders\CurVer M5ShellLib.ResponseHeaders.1
    HKEY_CLASSES_ROOT\M5ShellLib.ResponseHeaders ResponseHeaders Class
    HKEY_CLASSES_ROOT\M5ShellLib.ResponseHeaders.1 
    HKEY_CLASSES_ROOT\M5ShellLib.ResponseHeaders.1\CLSID {3F01122F-0C9A-4621-A7FD-99C6EFAE8363}
    HKEY_CLASSES_ROOT\M5ShellLib.ResponseHeaders.1 ResponseHeaders Class
    HKEY_CLASSES_ROOT\M5ShellLib.Schemas 
    HKEY_CLASSES_ROOT\M5ShellLib.Schemas\CLSID {513CA31C-93BB-422A-A5FD-63A8B7D21CE0}
    HKEY_CLASSES_ROOT\M5ShellLib.Schemas\CurVer M5ShellLib.Schemas.1
    HKEY_CLASSES_ROOT\M5ShellLib.Schemas Schemas Class
    HKEY_CLASSES_ROOT\M5ShellLib.Schemas.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Schemas.1\CLSID {513CA31C-93BB-422A-A5FD-63A8B7D21CE0}
    HKEY_CLASSES_ROOT\M5ShellLib.Schemas.1 Schemas Class
    HKEY_CLASSES_ROOT\M5ShellLib.Scheme 
    HKEY_CLASSES_ROOT\M5ShellLib.Scheme\CLSID {C19543F1-160B-4582-B385-857A0C5A0448}
    HKEY_CLASSES_ROOT\M5ShellLib.Scheme\CurVer M5ShellLib.Scheme.1
    HKEY_CLASSES_ROOT\M5ShellLib.Scheme Scheme Class
    HKEY_CLASSES_ROOT\M5ShellLib.Scheme.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Scheme.1\CLSID {C19543F1-160B-4582-B385-857A0C5A0448}
    HKEY_CLASSES_ROOT\M5ShellLib.Scheme.1 Scheme Class
    HKEY_CLASSES_ROOT\M5ShellLib.Search 
    HKEY_CLASSES_ROOT\M5ShellLib.Search\CLSID {65BEE5C4-37C8-447F-9707-CD7B21AD67E4}
    HKEY_CLASSES_ROOT\M5ShellLib.Search\CurVer M5ShellLib.Search.1
    HKEY_CLASSES_ROOT\M5ShellLib.Search Search Class
    HKEY_CLASSES_ROOT\M5ShellLib.Search.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Search.1\CLSID {65BEE5C4-37C8-447F-9707-CD7B21AD67E4}
    HKEY_CLASSES_ROOT\M5ShellLib.Search.1 Search Class
    HKEY_CLASSES_ROOT\M5ShellLib.Searches 
    HKEY_CLASSES_ROOT\M5ShellLib.Searches\CLSID {1E3C6834-7B22-4787-AE1C-A750D0FA0D6B}
    HKEY_CLASSES_ROOT\M5ShellLib.Searches\CurVer M5ShellLib.Searches.1
    HKEY_CLASSES_ROOT\M5ShellLib.Searches Searches Class
    HKEY_CLASSES_ROOT\M5ShellLib.Searches.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Searches.1\CLSID {1E3C6834-7B22-4787-AE1C-A750D0FA0D6B}
    HKEY_CLASSES_ROOT\M5ShellLib.Searches.1 Searches Class
    HKEY_CLASSES_ROOT\M5ShellLib.Source 
    HKEY_CLASSES_ROOT\M5ShellLib.Source\CLSID {DBB0E655-B5DF-4DF7-9A12-D0E577650655}
    HKEY_CLASSES_ROOT\M5ShellLib.Source\CurVer M5ShellLib.Source.1
    HKEY_CLASSES_ROOT\M5ShellLib.Source Source Class
    HKEY_CLASSES_ROOT\M5ShellLib.Source.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Source.1\CLSID {DBB0E655-B5DF-4DF7-9A12-D0E577650655}
    HKEY_CLASSES_ROOT\M5ShellLib.Source.1 Source Class
    HKEY_CLASSES_ROOT\M5ShellLib.Sources 
    HKEY_CLASSES_ROOT\M5ShellLib.Sources\CLSID {4CC764A2-B256-4DA9-94FB-537D633E7DCE}
    HKEY_CLASSES_ROOT\M5ShellLib.Sources\CurVer M5ShellLib.Sources.1
    HKEY_CLASSES_ROOT\M5ShellLib.Sources Sources Class
    HKEY_CLASSES_ROOT\M5ShellLib.Sources.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Sources.1\CLSID {4CC764A2-B256-4DA9-94FB-537D633E7DCE}
    HKEY_CLASSES_ROOT\M5ShellLib.Sources.1 Sources Class
    HKEY_CLASSES_ROOT\M5ShellLib.Upload 
    HKEY_CLASSES_ROOT\M5ShellLib.Upload\CLSID {BA20AECE-61D3-4912-BE15-DCACAB97D094}
    HKEY_CLASSES_ROOT\M5ShellLib.Upload\CurVer M5ShellLib.Upload.1
    HKEY_CLASSES_ROOT\M5ShellLib.Upload Upload Class
    HKEY_CLASSES_ROOT\M5ShellLib.Upload.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Upload.1\CLSID {BA20AECE-61D3-4912-BE15-DCACAB97D094}
    HKEY_CLASSES_ROOT\M5ShellLib.Upload.1 Upload Class
    HKEY_CLASSES_ROOT\M5ShellLib.Uploads 
    HKEY_CLASSES_ROOT\M5ShellLib.Uploads\CLSID {90A23A0D-C222-4016-A99A-57E56BD44877}
    HKEY_CLASSES_ROOT\M5ShellLib.Uploads\CurVer M5ShellLib.Uploads.1
    HKEY_CLASSES_ROOT\M5ShellLib.Uploads Uploads Class
    HKEY_CLASSES_ROOT\M5ShellLib.Uploads.1 
    HKEY_CLASSES_ROOT\M5ShellLib.Uploads.1\CLSID {90A23A0D-C222-4016-A99A-57E56BD44877}
    HKEY_CLASSES_ROOT\M5ShellLib.Uploads.1 Uploads Class
    HKEY_CLASSES_ROOT\M5ShellLib.WebSearch 
    HKEY_CLASSES_ROOT\M5ShellLib.WebSearch\CLSID {814FE9E3-E0BA-4FAF-B5DA-8F7B1AB1F4B1}
    HKEY_CLASSES_ROOT\M5ShellLib.WebSearch\CurVer M5ShellLib.WebSearch.1
    HKEY_CLASSES_ROOT\M5ShellLib.WebSearch WebSearch Class
    HKEY_CLASSES_ROOT\M5ShellLib.WebSearch.1 
    HKEY_CLASSES_ROOT\M5ShellLib.WebSearch.1\CLSID {814FE9E3-E0BA-4FAF-B5DA-8F7B1AB1F4B1}
    HKEY_CLASSES_ROOT\M5ShellLib.WebSearch.1 WebSearch Class
    HKEY_CLASSES_ROOT\morphtorrent 
    HKEY_CLASSES_ROOT\morphtorrent\DefaultIcon "C:\Programme\Morpheus\Torrent.ico"
    HKEY_CLASSES_ROOT\morphtorrent\shell\open\command "C:\Programme\Morpheus\morpheus.exe" "%1"
    HKEY_CLASSES_ROOT\morphtorrent EditFlags hex:00,00,01,00
    HKEY_CLASSES_ROOT\morphtorrent TORRENT File
    HKEY_CLASSES_ROOT\PluggableIP.ResourceProtocol 
    HKEY_CLASSES_ROOT\PluggableIP.ResourceProtocol\CLSID {F5382384-CC9B-432C-B5DA-6666D477D21E}
    HKEY_CLASSES_ROOT\PluggableIP.ResourceProtocol\CurVer Proto.ResourceProtocol.1
    HKEY_CLASSES_ROOT\PluggableIP.ResourceProtocol ResourceProtocol Class
    HKEY_CLASSES_ROOT\PluggableIP.ResourceProtocol.1 
    HKEY_CLASSES_ROOT\PluggableIP.ResourceProtocol.1\CLSID {F5382384-CC9B-432C-B5DA-6666D477D21E}
    HKEY_CLASSES_ROOT\PluggableIP.ResourceProtocol.1 ResourceProtocol Class
    HKEY_CLASSES_ROOT\TypeLib\{2573E1B7-096C-4C18-B7B7-7ABE4FFBC86E} 
    HKEY_CLASSES_ROOT\TypeLib\{2573E1B7-096C-4C18-B7B7-7ABE4FFBC86E}\1.0\0\win32 C:\Programme\Morpheus\Proto.dll
    HKEY_CLASSES_ROOT\TypeLib\{2573E1B7-096C-4C18-B7B7-7ABE4FFBC86E}\1.0\FLAGS 0
    HKEY_CLASSES_ROOT\TypeLib\{2573E1B7-096C-4C18-B7B7-7ABE4FFBC86E}\1.0\HELPDIR C:\Programme\Morpheus\
    HKEY_CLASSES_ROOT\TypeLib\{2573E1B7-096C-4C18-B7B7-7ABE4FFBC86E}\1.0 Morpheus 5.0 Pluggable Internet Protocol Type Library
    
    
    NetPumper Adware Bundler  more information...
    Details: Bundles with a number of adware components.
    Status: Ignored
    
    Infected files detected
    c:\dokumente und einstellungen\jeff\anwendungsdaten\netpumper\jeff.ini
    
    Infected registry entries detected
    HKEY_LOCAL_MACHINE\SOFTWARE\NetPumper 
    HKEY_LOCAL_MACHINE\SOFTWARE\NetPumper\Affiliated\free\Firstrun state 2
    HKEY_LOCAL_MACHINE\SOFTWARE\NetPumper\Affiliated\free state 2
    HKEY_LOCAL_MACHINE\SOFTWARE\NetPumper\Affiliated\free pkid 
    HKEY_LOCAL_MACHINE\SOFTWARE\NetPumper\Affiliated\free alid Drodiers
    HKEY_LOCAL_MACHINE\SOFTWARE\NetPumper\Affiliated\free iid {8A81BC60-88BF-4C15-A2FB-866CBD53F35F}
    HKEY_LOCAL_MACHINE\SOFTWARE\NetPumper VersionInfo wOrlNNMFh-RFSvrxbwOfCrys-0tM-IFZmaD614mqG83z3bz9cujmJKLL17e9kWizSeRp1NM9-ImoD0pmUIxo8BcKTK7J4eeJwOFvRZvdju6CstRVTnXwk8KaYZM5rbnqxLSdGDzKziJ1qRgv1agvCNRTKrDWlEEa77bEoNu6pIXsxHckyZTAqh6BigKdltqgSkVTzMbWaE7z
    HKEY_CLASSES_ROOT\Interface\{A8B0F390-E6BF-4027-A4D4-1E4363F5E27B} 
    HKEY_CLASSES_ROOT\Interface\{A8B0F390-E6BF-4027-A4D4-1E4363F5E27B}\ProxyStubClsid {00020424-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{A8B0F390-E6BF-4027-A4D4-1E4363F5E27B}\ProxyStubClsid32 {00020424-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{A8B0F390-E6BF-4027-A4D4-1E4363F5E27B}\TypeLib {1145A909-A836-44B8-B03A-48D858B0F43E}
    HKEY_CLASSES_ROOT\Interface\{A8B0F390-E6BF-4027-A4D4-1E4363F5E27B}\TypeLib Version 1.1
    HKEY_CLASSES_ROOT\Interface\{A8B0F390-E6BF-4027-A4D4-1E4363F5E27B} IAddUrl
    HKEY_CLASSES_ROOT\Interface\{A9E33220-0B05-11D7-88D2-444553540000} 
    HKEY_CLASSES_ROOT\Interface\{A9E33220-0B05-11D7-88D2-444553540000}\ProxyStubClsid {00020424-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{A9E33220-0B05-11D7-88D2-444553540000}\ProxyStubClsid32 {00020424-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{A9E33220-0B05-11D7-88D2-444553540000}\TypeLib {1145A909-A836-44B8-B03A-48D858B0F43E}
    HKEY_CLASSES_ROOT\Interface\{A9E33220-0B05-11D7-88D2-444553540000}\TypeLib Version 1.1
    HKEY_CLASSES_ROOT\Interface\{A9E33220-0B05-11D7-88D2-444553540000} IAddPackage
    HKEY_CLASSES_ROOT\Interface\{E0ABBF96-17DC-44CA-96D0-6217064A97BA} 
    HKEY_CLASSES_ROOT\Interface\{E0ABBF96-17DC-44CA-96D0-6217064A97BA}\ProxyStubClsid {00020424-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{E0ABBF96-17DC-44CA-96D0-6217064A97BA}\ProxyStubClsid32 {00020424-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{E0ABBF96-17DC-44CA-96D0-6217064A97BA}\TypeLib {F7258F6E-9F60-49C0-8C82-F0A0993D68E0}
    HKEY_CLASSES_ROOT\Interface\{E0ABBF96-17DC-44CA-96D0-6217064A97BA}\TypeLib Version 1.0
    HKEY_CLASSES_ROOT\Interface\{E0ABBF96-17DC-44CA-96D0-6217064A97BA} INetscapeInterface
    HKEY_CLASSES_ROOT\TypeLib\{F7258F6E-9F60-49C0-8C82-F0A0993D68E0} 
    HKEY_CLASSES_ROOT\TypeLib\{F7258F6E-9F60-49C0-8C82-F0A0993D68E0}\1.0\0\win32 C:\Programme\NetPumper\NetPumperNNProxy.dll
    HKEY_CLASSES_ROOT\TypeLib\{F7258F6E-9F60-49C0-8C82-F0A0993D68E0}\1.0\FLAGS 0
    HKEY_CLASSES_ROOT\TypeLib\{F7258F6E-9F60-49C0-8C82-F0A0993D68E0}\1.0\HELPDIR C:\Programme\NetPumper\
    HKEY_CLASSES_ROOT\TypeLib\{F7258F6E-9F60-49C0-8C82-F0A0993D68E0}\1.0 NetPumperNNProxy Library
    HKEY_CURRENT_USER\Software\NetPumper 
    HKEY_CURRENT_USER\Software\NetPumper\Jeff Field1 369251724
    HKEY_CURRENT_USER\Software\NetPumper\Jeff Field2 1411110030
    HKEY_CURRENT_USER\Software\NetPumper\Jeff Field3 482193174
    HKEY_CURRENT_USER\Software\NetPumper\Jeff Field4 144768406
    
    
    Bullguard Potentially Unwanted Program  more information...
    Details: Bullguard is a software suite that includes antivirus, firewall, spam filter and online backup.
    Status: Ignored
    
    Infected files detected
    c:\windows\temp\bullguard\bulldownload.exe
    c:\dokumente und einstellungen\jeff\desktop\bullguard.exe
    
    
    My Way Speedbar Potentially Unwanted Program  more information...
    Details: MyWay Speedbar is a search toolbar that installs into Internet Explorer and Netscape Navigator, adding search functions and popup blocking.
    Status: Ignored
    
    
    Alexa Toolbar Potential Privacy Risk  more information...
    Details: Alexa is a free, ad-based product which installs itself into your Internet Explorer or Netscape browser. It ads a bar which has a series of links into your browser which gives quite a bit of information about each web page that you visit.
    Status: Ignored
    
    Infected files detected
    c:\windows\system32\alxres.dll
    
    
    WStart.BHO Browser Plug-in  more information...
    Status: Quarantined
    
    Infected files detected
    c:\windows\system32\wstart.dll
    
    
    ABetterInternet Adware (General)  more information...
    Details: ABetterInternet shows advertisements based on the web pages you view and the web sites you visit.
    Status: Quarantined
    
    Infected files detected
    c:\windows\susp.exe
    
    
    Bridge/WinFavorites Adware (General)  more information...
    Details: Bridge monitors your Internet surfing activities. It can log keystrokes and sending them to a webserver online. Also is known to popup advertising.
    Status: Quarantined
    
    Infected files detected
    c:\windows\system32\a.exe
    c:\windows\system32\bridge.dll
    c:\windows\system32\jao.dll
    
    
    ClickAlchemy Adware (General)  more information...
    Details: Alchemy is an adware component that is related to Transponder and TwainTech Adware.
    Status: Quarantined
    
    Infected files detected
    c:\windows\alchem.ini
    
    
    Twain Tech Adware (General)  more information...
    Details: Twain-Tech is an adware based Internet Explorer browser helper object that deliver targeted ads based on a user’s browsing patters. Twain-Tech does not provide any other relevant purpose other then to display pop-up ads.
    Status: Quarantined
    
    Infected files detected
    c:\windows\smdat32m.sys
    
    
    Transponder.BTGrab Adware (General)  more information...
    Details: Transponder.BTGrab is an ad supported Browser Helper Object (BHO).
    Status: Quarantined
    
    Infected files detected
    c:\windows\btgrab.dll
    
    
    Vx2.ZServ Trojan  more information...
    Details: Part of the Vx2 Transponder infection.
    Status: Quarantined
    
    Infected files detected
    c:\windows\zserv.dll
    
    
    Transponder.Pynix Adware (General)  more information...
    Status: Quarantined
    
    Infected files detected
    c:\windows\pynix.dll
    
    
    Transponder.DLMax Adware (General)  more information...
    Details: Transponder is an Internet Explorer Browser Helper Object (BHO) that monitors web pages requested and data entered into forms.
    Status: Quarantined
    
    Infected files detected
    c:\windows\dlmax.dll
    
    
    Unclassified.Trojan.43 Trojan  more information...
    Status: Quarantined
    
    Infected files detected
    c:\windows\system32\txfdb32.dll
    
    
    Xplugin Trojan Downloader  more information...
    Details: Xplugin is an adware type program, which offers the application in which it is included at the only cost of viewing a series of adult advertisements.
    Status: Quarantined
    
    Infected files detected
    c:\windows\system32\tcpservice2.exe
    
    Infected registry entries detected
    HKEY_CLASSES_ROOT\clsid\{9896231A-C487-43A5-8369-6EC9B0A96CC0} 
    HKEY_CLASSES_ROOT\clsid\{9896231A-C487-43A5-8369-6EC9B0A96CC0} 
    
    
    DesktopScam Trojan Downloader  more information...
    Details: DesktopScam is a trojan that is downloaded with rogue security applicatons in order to frighten the affected user into purchasing the rogue program.
    Status: Quarantined
    
    Infected files detected
    c:\windows\system32\runsrv32.dll
    c:\windows\system32\udpmod.dll
    
    
    Unclassified.Trojan.D Trojan  more information...
    Status: Quarantined
    
    Infected files detected
    C:\Dokumente und Einstellungen\Jeff\Lokale Einstellungen\Temp\djebws400.exe
    
    
    CoolWebSearch.CameUp Hijacker  more information...
    Details: CoolWebSearch.CameUp hijacks Internet Explorers start page, not allowing the user to change this URL. It also adds a toolbar and searchbar to drive users to advertising oriented web sites.
    Status: Quarantined
    
    Infected registry entries detected
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main Search Page_bak 
    
    
    AntiLeech Plugin Adware (General)  more information...
    Details: Plugin is an Ad-Ware software which enables the broadcasting of advertisements, and execution of e-commerce and other internet related services on the user-interface of the software.
    Status: Quarantined
    
    Infected registry entries detected
    HKEY_CLASSES_ROOT\AntiLeech.ALIE.1 
    HKEY_CLASSES_ROOT\AntiLeech.ALIE.1\CLSID {056738EE-E15C-11D6-B876-0050BF5D85C7}
    HKEY_CLASSES_ROOT\AntiLeech.ALIE.1 Anti-Leech Plug-in
    HKEY_CLASSES_ROOT\AntiLeech.ALIE 
    HKEY_CLASSES_ROOT\AntiLeech.ALIE\CLSID {056738EE-E15C-11D6-B876-0050BF5D85C7}
    HKEY_CLASSES_ROOT\AntiLeech.ALIE\CurVer AntiLeech.ALIE.1
    HKEY_CLASSES_ROOT\AntiLeech.ALIE Anti-Leech Plug-in
    HKEY_CLASSES_ROOT\CLSID\{056738EE-E15C-11D6-B876-0050BF5D85C7} 
    HKEY_CLASSES_ROOT\CLSID\{056738EE-E15C-11D6-B876-0050BF5D85C7}\InprocServer32 C:\PROGRA~1\ANTI-L~1\alie.dll
    HKEY_CLASSES_ROOT\CLSID\{056738EE-E15C-11D6-B876-0050BF5D85C7}\InprocServer32 ThreadingModel Apartment
    HKEY_CLASSES_ROOT\CLSID\{056738EE-E15C-11D6-B876-0050BF5D85C7}\ProgID AntiLeech.ALIE.1
    HKEY_CLASSES_ROOT\CLSID\{056738EE-E15C-11D6-B876-0050BF5D85C7}\TypeLib {056738E1-E15C-11D6-B876-0050BF5D85C7}
    HKEY_CLASSES_ROOT\CLSID\{056738EE-E15C-11D6-B876-0050BF5D85C7}\VersionIndependentProgID AntiLeech.ALIE
    HKEY_CLASSES_ROOT\CLSID\{056738EE-E15C-11D6-B876-0050BF5D85C7} Anti-Leech Plug-in
    
    
    StartNow Hyperbar Toolbar  more information...
    Details: Hijacks Internet Epxlorer search and homepage URLs.
    Status: Quarantined
    
    Infected registry entries detected
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\884CEC7D4C15914478A89C8FB3FF8E2F 
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\884CEC7D4C15914478A89C8FB3FF8E2F B5890EDE256D37548AE908C32B952774 
    
    
    Altnet P2P Networking Low Risk Adware  more information...
    Details: Altnet P2P Networking is a program that uses peer-to-peer functionality to enable the delivery of content, including advertising, to PC desktops. This content may be used by other programs.
    Status: Ignored
    
    Infected registry entries detected
    HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app management\arpcache\p2p networking 
    HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app management\arpcache\p2p networking SlowInfoCache 
    HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app management\arpcache\p2p networking Changed 0
    
    
    IST.ISTbar Hijacker  more information...
    Details: ISTbar is an Internet Explorer Hijacker, which modifies your homepages and searches without a user’s consent using an Internet Explorer toolbar.
    Status: Quarantined
    
    Infected registry entries detected
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ISTsvc 
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ISTsvc SlowInfoCache 
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ISTsvc Changed 0
    
    
    AvenueMedia.InternetOptimizer Browser Plug-in  more information...
    Details: Internet Optimizer, also known as DyFuCA, is an adware application that hijacks the user's browser error page.
    Status: Quarantined
    
    Infected registry entries detected
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Internet Optimizer Active Alert 
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Internet Optimizer Active Alert SlowInfoCache 
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Internet Optimizer Active Alert Changed 0
    
    
    Warez P2P P2P Program  more information...
    Details: Warez P2P is a file sharing program that allows the user to participate in online file sharing networks.
    Status: Ignored
    
    Infected registry entries detected
    HKEY_CLASSES_ROOT\warez.DocHostUIHandler\Clsid 
    HKEY_CLASSES_ROOT\warez.DocHostUIHandler\Clsid {3F2BBC05-40DF-11D2-9455-00104BC936FF}
    HKEY_CLASSES_ROOT\warezq\shell\open\command 
    HKEY_CLASSES_ROOT\warezq\shell\open\command "C:\Programme\Warez P2P Client\warez.exe" "%L"
    HKEY_CLASSES_ROOT\warez\shell\open\command 
    HKEY_CLASSES_ROOT\warez\shell\open\command "C:\Programme\Warez P2P Client\warez.exe" "%L"
    HKEY_CLASSES_ROOT\warezp\shell\open\command 
    HKEY_CLASSES_ROOT\warezp\shell\open\command "C:\Programme\Warez P2P Client\warez.exe" "%L"
    HKEY_CLASSES_ROOT\warep\shell\open\command 
    HKEY_CLASSES_ROOT\warep\shell\open\command "C:\Programme\Warez P2P Client\warez.exe" "%L"
    HKEY_CLASSES_ROOT\warezo\shell\open\command 
    HKEY_CLASSES_ROOT\warezo\shell\open\command "C:\Programme\Warez P2P Client\warez.exe" "%L"
    HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF} 
    HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF}\LocalServer32 C:\PROGRA~1\WAREZP~1\warez.exe
    HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF}\ProgID warez.DocHostUIHandler
    HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF} Implements DocHostUIHandler
    HKEY_CLASSES_ROOT\warez.DocHostUIHandler 
    HKEY_CLASSES_ROOT\warez.DocHostUIHandler\Clsid {3F2BBC05-40DF-11D2-9455-00104BC936FF}
    HKEY_CLASSES_ROOT\warez.DocHostUIHandler Implements DocHostUIHandler
    HKEY_CLASSES_ROOT\warez 
    HKEY_CLASSES_ROOT\warez\shell\open\command "C:\Programme\Warez P2P Client\warez.exe" "%L"
    HKEY_CLASSES_ROOT\warez URL:Warez protocol
    HKEY_CLASSES_ROOT\warez URL Protocol 
    HKEY_CLASSES_ROOT\warezo 
    HKEY_CLASSES_ROOT\warezo\shell\open\command "C:\Programme\Warez P2P Client\warez.exe" "%L"
    HKEY_CLASSES_ROOT\warezo URL:Warez Of1
    HKEY_CLASSES_ROOT\warezo URL Protocol 
    HKEY_CLASSES_ROOT\warezp 
    HKEY_CLASSES_ROOT\warezp\shell\open\command "C:\Programme\Warez P2P Client\warez.exe" "%L"
    HKEY_CLASSES_ROOT\warezp URL:Warez Of2
    HKEY_CLASSES_ROOT\warezp URL Protocol 
    HKEY_CLASSES_ROOT\warezq 
    HKEY_CLASSES_ROOT\warezq\shell\open\command "C:\Programme\Warez P2P Client\warez.exe" "%L"
    HKEY_CLASSES_ROOT\warezq URL:Warez_Query protocol
    HKEY_CLASSES_ROOT\warezq URL Protocol 
    HKEY_CLASSES_ROOT\wareo 
    HKEY_CLASSES_ROOT\wareo\shell\open\command "C:\Programme\Warez P2P Client\warez.exe" "%L"
    HKEY_CLASSES_ROOT\warep 
    HKEY_CLASSES_ROOT\warep\shell\open\command "C:\Programme\Warez P2P Client\warez.exe" "%L"
    
    
    DailyToolbar Toolbar  more information...
    Details: DailyToolbar is a pornographic-related toolbar that periodically generates pop-up advertisements.
    Status: Quarantined
    
    Infected registry entries detected
    HKEY_CLASSES_ROOT\AppID\{951B3138-AE8E-4676-A05A-250A5F111631} 
    HKEY_CLASSES_ROOT\AppID\{951B3138-AE8E-4676-A05A-250A5F111631} 
    
    
    IBIS.WebSearch Toolbar Toolbar  more information...
    Details: WebSearch Toolbar is an Internet Explorer search hijacker.
    Status: Quarantined
    
    Infected registry entries detected
    HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\main searchassistant http://www.seekerbar.com/ie.aspx?tb_id=50154
    
    
    IBIS.WinTools Browser Plug-in  more information...
    Details: Bubba WinTools purpose is currently unknown. Bubba.wintools installs a Browser Helper Object, a URLSearchHook and drops several files in Common files\WinTools\. Bubba.wintools runs at startup
    Status: Quarantined
    
    Infected registry entries detected
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WinTools 
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WinTools SlowInfoCache 
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WinTools Changed 0
    
    
    TMKSoft.Admess Adware (General)  more information...
    Details: Admess opens Web pages and displays advertisements with adult content. Admess is related to Xplugin by the same vendor.
    Status: Quarantined
    
    Infected registry entries detected
    HKEY_CLASSES_ROOT\CLSID\{9896231A-C487-43A5-8369-6EC9B0A96CC0} 
    HKEY_CLASSES_ROOT\CLSID\{9896231A-C487-43A5-8369-6EC9B0A96CC0} 
    HKEY_CLASSES_ROOT\AppID\{F6BDB4E5-D6AA-4D1F-8B67-BCB0F2246E21} 
    HKEY_CLASSES_ROOT\AppID\{F6BDB4E5-D6AA-4D1F-8B67-BCB0F2246E21} 
    HKEY_CLASSES_ROOT\AppID\WStart.DLL 
    HKEY_CLASSES_ROOT\AppID\WStart.DLL WStart wstart.dll
    
    
    WhenU.WeatherCast Low Risk Adware  more information...
    Details: WeatherCast is an ad supported desktop weather program that that puts an icon in the system tray displaying the local temperature. It also offers current weather data and forecasts. Weathercast is often bundled with the Save advertising program and/or th
    Status: Ignored
    
    Infected registry entries detected
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WeatherCast 
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WeatherCast SlowInfoCache 
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WeatherCast Changed 0
    
    
    iMesh P2P Program  more information...
    Details: iMesh is a peer-to-peer (P2P) application that allows its users to join together in a network via the Internet and share files from each other's hard drives.
    Status: Ignored
    
    Infected files detected
    C:\Programme\StreamCast\Morpheus\GnucDNA.dll
    
    Infected registry entries detected
    HKEY_CLASSES_ROOT\Interface\{0BE385A3-85A5-4722-B677-68DAE891FF21} 
    HKEY_CLASSES_ROOT\Interface\{0BE385A3-85A5-4722-B677-68DAE891FF21}\ProxyStubClsid {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{0BE385A3-85A5-4722-B677-68DAE891FF21}\ProxyStubClsid32 {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{0BE385A3-85A5-4722-B677-68DAE891FF21}\TypeLib {2850BDC7-2330-4E31-9FA0-88268846539A}
    HKEY_CLASSES_ROOT\Interface\{0BE385A3-85A5-4722-B677-68DAE891FF21}\TypeLib Version 1.0
    HKEY_CLASSES_ROOT\Interface\{0BE385A3-85A5-4722-B677-68DAE891FF21} _IDownloadEvent
    HKEY_CLASSES_ROOT\Interface\{272C0D60-0561-4C83-B3DB-EB0A71F9D2EB} 
    HKEY_CLASSES_ROOT\Interface\{272C0D60-0561-4C83-B3DB-EB0A71F9D2EB}\ProxyStubClsid {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{272C0D60-0561-4C83-B3DB-EB0A71F9D2EB}\ProxyStubClsid32 {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{272C0D60-0561-4C83-B3DB-EB0A71F9D2EB}\TypeLib {2850BDC7-2330-4E31-9FA0-88268846539A}
    HKEY_CLASSES_ROOT\Interface\{272C0D60-0561-4C83-B3DB-EB0A71F9D2EB}\TypeLib Version 1.0
    HKEY_CLASSES_ROOT\Interface\{272C0D60-0561-4C83-B3DB-EB0A71F9D2EB} IUpload
    HKEY_CLASSES_ROOT\Interface\{284477E4-A7CB-4055-9E1B-0EA7CBA28945} 
    HKEY_CLASSES_ROOT\Interface\{284477E4-A7CB-4055-9E1B-0EA7CBA28945}\ProxyStubClsid {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{284477E4-A7CB-4055-9E1B-0EA7CBA28945}\ProxyStubClsid32 {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{284477E4-A7CB-4055-9E1B-0EA7CBA28945}\TypeLib {2850BDC7-2330-4E31-9FA0-88268846539A}
    HKEY_CLASSES_ROOT\Interface\{284477E4-A7CB-4055-9E1B-0EA7CBA28945}\TypeLib Version 1.0
    HKEY_CLASSES_ROOT\Interface\{284477E4-A7CB-4055-9E1B-0EA7CBA28945} _IShareEvent
    HKEY_CLASSES_ROOT\Interface\{70CA4938-6A0F-4641-A9A9-C936E4C1E7DE} 
    HKEY_CLASSES_ROOT\Interface\{70CA4938-6A0F-4641-A9A9-C936E4C1E7DE}\ProxyStubClsid {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{70CA4938-6A0F-4641-A9A9-C936E4C1E7DE}\ProxyStubClsid32 {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{70CA4938-6A0F-4641-A9A9-C936E4C1E7DE}\TypeLib {2850BDC7-2330-4E31-9FA0-88268846539A}
    HKEY_CLASSES_ROOT\Interface\{70CA4938-6A0F-4641-A9A9-C936E4C1E7DE}\TypeLib Version 1.0
    HKEY_CLASSES_ROOT\Interface\{70CA4938-6A0F-4641-A9A9-C936E4C1E7DE} _IUpdateEvent
    HKEY_CLASSES_ROOT\Interface\{7468213E-010E-4EC6-A17D-642E909BA7EC} 
    HKEY_CLASSES_ROOT\Interface\{7468213E-010E-4EC6-A17D-642E909BA7EC}\ProxyStubClsid {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{7468213E-010E-4EC6-A17D-642E909BA7EC}\ProxyStubClsid32 {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{7468213E-010E-4EC6-A17D-642E909BA7EC}\TypeLib {2850BDC7-2330-4E31-9FA0-88268846539A}
    HKEY_CLASSES_ROOT\Interface\{7468213E-010E-4EC6-A17D-642E909BA7EC}\TypeLib Version 1.0
    HKEY_CLASSES_ROOT\Interface\{7468213E-010E-4EC6-A17D-642E909BA7EC} _INetworkEvent
    HKEY_CLASSES_ROOT\Interface\{B86F4810-19A9-4050-9AC9-B5CF60B5799A} 
    HKEY_CLASSES_ROOT\Interface\{B86F4810-19A9-4050-9AC9-B5CF60B5799A}\ProxyStubClsid {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{B86F4810-19A9-4050-9AC9-B5CF60B5799A}\ProxyStubClsid32 {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{B86F4810-19A9-4050-9AC9-B5CF60B5799A}\TypeLib {2850BDC7-2330-4E31-9FA0-88268846539A}
    HKEY_CLASSES_ROOT\Interface\{B86F4810-19A9-4050-9AC9-B5CF60B5799A}\TypeLib Version 1.0
    HKEY_CLASSES_ROOT\Interface\{B86F4810-19A9-4050-9AC9-B5CF60B5799A} ICache
    HKEY_CLASSES_ROOT\Interface\{BB5B7E14-F8B4-4365-A24D-F4965C33E1EE} 
    HKEY_CLASSES_ROOT\Interface\{BB5B7E14-F8B4-4365-A24D-F4965C33E1EE}\ProxyStubClsid {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{BB5B7E14-F8B4-4365-A24D-F4965C33E1EE}\ProxyStubClsid32 {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{BB5B7E14-F8B4-4365-A24D-F4965C33E1EE}\TypeLib {2850BDC7-2330-4E31-9FA0-88268846539A}
    HKEY_CLASSES_ROOT\Interface\{BB5B7E14-F8B4-4365-A24D-F4965C33E1EE}\TypeLib Version 1.0
    HKEY_CLASSES_ROOT\Interface\{BB5B7E14-F8B4-4365-A24D-F4965C33E1EE} IShare
    HKEY_CLASSES_ROOT\Interface\{C13D4627-02F5-4B03-897A-BF6A90022DD2} 
    HKEY_CLASSES_ROOT\Interface\{C13D4627-02F5-4B03-897A-BF6A90022DD2}\ProxyStubClsid {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{C13D4627-02F5-4B03-897A-BF6A90022DD2}\ProxyStubClsid32 {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{C13D4627-02F5-4B03-897A-BF6A90022DD2}\TypeLib {2850BDC7-2330-4E31-9FA0-88268846539A}
    HKEY_CLASSES_ROOT\Interface\{C13D4627-02F5-4B03-897A-BF6A90022DD2}\TypeLib Version 1.0
    HKEY_CLASSES_ROOT\Interface\{C13D4627-02F5-4B03-897A-BF6A90022DD2} ISearch
    HKEY_CLASSES_ROOT\Interface\{C636F1FC-6AE4-4E6A-90AB-6D61D821A0DD} 
    HKEY_CLASSES_ROOT\Interface\{C636F1FC-6AE4-4E6A-90AB-6D61D821A0DD}\ProxyStubClsid {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{C636F1FC-6AE4-4E6A-90AB-6D61D821A0DD}\ProxyStubClsid32 {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{C636F1FC-6AE4-4E6A-90AB-6D61D821A0DD}\TypeLib {2850BDC7-2330-4E31-9FA0-88268846539A}
    HKEY_CLASSES_ROOT\Interface\{C636F1FC-6AE4-4E6A-90AB-6D61D821A0DD}\TypeLib Version 1.0
    HKEY_CLASSES_ROOT\Interface\{C636F1FC-6AE4-4E6A-90AB-6D61D821A0DD} IUpdate
    HKEY_CLASSES_ROOT\Interface\{CB971AC0-6408-40DA-A540-92F9F256F51F} 
    HKEY_CLASSES_ROOT\Interface\{CB971AC0-6408-40DA-A540-92F9F256F51F}\ProxyStubClsid {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{CB971AC0-6408-40DA-A540-92F9F256F51F}\ProxyStubClsid32 {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{CB971AC0-6408-40DA-A540-92F9F256F51F}\TypeLib {2850BDC7-2330-4E31-9FA0-88268846539A}
    HKEY_CLASSES_ROOT\Interface\{CB971AC0-6408-40DA-A540-92F9F256F51F}\TypeLib Version 1.0
    HKEY_CLASSES_ROOT\Interface\{CB971AC0-6408-40DA-A540-92F9F256F51F} _IUploadEvent
    HKEY_CLASSES_ROOT\Interface\{D5694DFE-43B6-4E05-AA29-8C556C968973} 
    HKEY_CLASSES_ROOT\Interface\{D5694DFE-43B6-4E05-AA29-8C556C968973}\ProxyStubClsid {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{D5694DFE-43B6-4E05-AA29-8C556C968973}\ProxyStubClsid32 {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{D5694DFE-43B6-4E05-AA29-8C556C968973}\TypeLib {2850BDC7-2330-4E31-9FA0-88268846539A}
    HKEY_CLASSES_ROOT\Interface\{D5694DFE-43B6-4E05-AA29-8C556C968973}\TypeLib Version 1.0
    HKEY_CLASSES_ROOT\Interface\{D5694DFE-43B6-4E05-AA29-8C556C968973} IPrefs
    HKEY_CLASSES_ROOT\Interface\{E2032EC2-A9AC-4ED7-9BDB-EBECACF076F2} 
    HKEY_CLASSES_ROOT\Interface\{E2032EC2-A9AC-4ED7-9BDB-EBECACF076F2}\ProxyStubClsid {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{E2032EC2-A9AC-4ED7-9BDB-EBECACF076F2}\ProxyStubClsid32 {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{E2032EC2-A9AC-4ED7-9BDB-EBECACF076F2}\TypeLib {2850BDC7-2330-4E31-9FA0-88268846539A}
    HKEY_CLASSES_ROOT\Interface\{E2032EC2-A9AC-4ED7-9BDB-EBECACF076F2}\TypeLib Version 1.0
    HKEY_CLASSES_ROOT\Interface\{E2032EC2-A9AC-4ED7-9BDB-EBECACF076F2} _ISearchEvent
    HKEY_CLASSES_ROOT\Interface\{EBAB4A71-8C34-461A-B57D-DD041D439555} 
    HKEY_CLASSES_ROOT\Interface\{EBAB4A71-8C34-461A-B57D-DD041D439555}\ProxyStubClsid {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{EBAB4A71-8C34-461A-B57D-DD041D439555}\ProxyStubClsid32 {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{EBAB4A71-8C34-461A-B57D-DD041D439555}\TypeLib {2850BDC7-2330-4E31-9FA0-88268846539A}
    HKEY_CLASSES_ROOT\Interface\{EBAB4A71-8C34-461A-B57D-DD041D439555}\TypeLib Version 1.0
    HKEY_CLASSES_ROOT\Interface\{EBAB4A71-8C34-461A-B57D-DD041D439555} IDownload
    HKEY_CLASSES_ROOT\Interface\{F06FEA43-0CC3-4BF6-A85B-5EFB1C07AA4B} 
    HKEY_CLASSES_ROOT\Interface\{F06FEA43-0CC3-4BF6-A85B-5EFB1C07AA4B}\ProxyStubClsid {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{F06FEA43-0CC3-4BF6-A85B-5EFB1C07AA4B}\ProxyStubClsid32 {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{F06FEA43-0CC3-4BF6-A85B-5EFB1C07AA4B}\TypeLib {2850BDC7-2330-4E31-9FA0-88268846539A}
    HKEY_CLASSES_ROOT\Interface\{F06FEA43-0CC3-4BF6-A85B-5EFB1C07AA4B}\TypeLib Version 1.0
    HKEY_CLASSES_ROOT\Interface\{F06FEA43-0CC3-4BF6-A85B-5EFB1C07AA4B} IMeta
    HKEY_CLASSES_ROOT\Interface\{FC94A0F7-9C7C-4AE2-9106-5C212332B209} 
    HKEY_CLASSES_ROOT\Interface\{FC94A0F7-9C7C-4AE2-9106-5C212332B209}\ProxyStubClsid {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{FC94A0F7-9C7C-4AE2-9106-5C212332B209}\ProxyStubClsid32 {00020420-0000-0000-C000-000000000046}
    HKEY_CLASSES_ROOT\Interface\{FC94A0F7-9C7C-4AE2-9106-5C212332B209}\TypeLib {2850BDC7-2330-4E31-9FA0-88268846539A}
    HKEY_CLASSES_ROOT\Interface\{FC94A0F7-9C7C-4AE2-9106-5C212332B209}\TypeLib Version 1.0
    HKEY_CLASSES_ROOT\Interface\{FC94A0F7-9C7C-4AE2-9106-5C212332B209} INetwork
    
    
    DownloadWare Adware (General)  more information...
    Details: DownloadWare is a process that runs on Windows startup. If a network connection is available it will connect to its servers, which can direct it to download and install software from advertisers. It may be installed through an ActiveX control.
    Status: Quarantined
    
    Infected registry entries detected
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\DownloadWare 
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\DownloadWare SlowInfoCache 
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\DownloadWare Changed 0
    
    
    180solutions.SearchAssistant Adware (General)  more information...
    Details: 180search Assistant is an adware application that monitors users' search queries and web surfing in order to display targeted advertising.
    Status: Quarantined
    
    Infected registry entries detected
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\msbb 
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\msbb SlowInfoCache 
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\msbb Changed 0
    
    
    Need2FindBar Potentially Unwanted Program  more information...
    Details: Need2FindBar is a browser helper object (BHO) toolbar that has a search function.
    Status: Ignored
    
    Infected registry entries detected
    HKEY_CLASSES_ROOT\CLSID\{F78B32D6-D6D8-4137-A18F-91EBE1A4AEDB} 
    HKEY_CLASSES_ROOT\CLSID\{F78B32D6-D6D8-4137-A18F-91EBE1A4AEDB}\TreatAs {4D1C4E8B-A32A-416b-BCDB-33B3EF3617D3}
    HKEY_CLASSES_ROOT\CLSID\{F78B32D6-D6D8-4137-A18F-91EBE1A4AEDB} 
    
    
    Pinch Alpha 1.8 Trojan  more information...
    Details: Pinch Alpha 1.8 is a trojan
    Status: Quarantined
    
    Infected registry entries detected
    HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF} 
    HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF}\LocalServer32 C:\PROGRA~1\WAREZP~1\warez.exe
    HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF}\ProgID warez.DocHostUIHandler
    HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF} Implements DocHostUIHandler
    
    
    Phone Dialer Porn Dialer  more information...
    Details: Dialer changes your modem's dial-up settings and attempts to connect to a premium or international phone number.
    Status: Quarantined
    
    Infected registry entries detected
    HKEY_CLASSES_ROOT\gmst File\shell\open 
    HKEY_CLASSES_ROOT\gmst File\shell\open\command C:\Program Files\GMSoft\Dialers\Sexy_at\Sexy_at.exe %1
    HKEY_CLASSES_ROOT\MIME\Database\Content Type\application/x-gmst Extension .gmst
    
    
    Messenger Plus! Adware Bundler  more information...
    Details: Messenger Plus! is a add-on for MSN Messenger. Messenger Plus! installs an OPTIONAL adware called C2Media which is also known as LOP.com.
    Status: Ignored
    
    Infected registry entries detected
    HKEY_CLASSES_ROOT\.plp 
    HKEY_CLASSES_ROOT\.plp ACDSee 7.0.plp
    
    
    TurkSpy Backdoor  more information...
    Details: TurkSpy is a Backdoor Trojan that when run, provides an attacker with the capability of remotely controlling a machine.
    Status: Quarantined
    
    Infected registry entries detected
    HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF} 
    HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF}\LocalServer32 C:\PROGRA~1\WAREZP~1\warez.exe
    HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF}\ProgID warez.DocHostUIHandler
    HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF} Implements DocHostUIHandler
    
    
    RXToolbar Toolbar  more information...
    Details: RXToolbar is an Internet Explorer toolbar that shows links for the current page being viewed, targetted through www.searchenginebar.com.
    Status: Quarantined
    
    Infected registry entries detected
    HKEY_CLASSES_ROOT\RXResult.RXResultTracker 
    HKEY_CLASSES_ROOT\RXResult.RXResultTracker\CLSID {59879FA4-4790-461c-A1CC-4EC4DE4CA483}
    HKEY_CLASSES_ROOT\RXResult.RXResultTracker RXResultTracker Class
    HKEY_CLASSES_ROOT\RXResult.RXResultFilter 
    HKEY_CLASSES_ROOT\RXResult.RXResultFilter\CLSID {2AB289AE-4B90-4281-B2AE-1F4BB034B647}
    HKEY_CLASSES_ROOT\RXResult.RXResultFilter RXResultFilter Class
    HKEY_CLASSES_ROOT\RXResult.RXResultFilter.1 
    HKEY_CLASSES_ROOT\RXResult.RXResultFilter.1\CLSID {2AB289AE-4B90-4281-B2AE-1F4BB034B647}
    HKEY_CLASSES_ROOT\RXResult.RXResultFilter.1 RXResultFilter Class
    HKEY_CLASSES_ROOT\RXResult.RXResultTracker.1 
    HKEY_CLASSES_ROOT\RXResult.RXResultTracker.1\CLSID {59879FA4-4790-461c-A1CC-4EC4DE4CA483}
    HKEY_CLASSES_ROOT\RXResult.RXResultTracker.1 RXResultTracker Class
    
    
    BlueStream Adware (General)  more information...
    Details: BlueStream is an ActiveX control used by webpage to display ads on your desktop. It may be installed by drive-by download.
    Status: Quarantined
    
    Infected registry entries detected
    HKEY_CLASSES_ROOT\clsid\{24D1BDCE-D835-11D6-BF84-0050047EA0E7} 
    HKEY_CLASSES_ROOT\clsid\{24D1BDCE-D835-11D6-BF84-0050047EA0E7}\MiscStatus\1 131473
    HKEY_CLASSES_ROOT\clsid\{24D1BDCE-D835-11D6-BF84-0050047EA0E7}\MiscStatus 0
    HKEY_CLASSES_ROOT\clsid\{24D1BDCE-D835-11D6-BF84-0050047EA0E7}\ToolboxBitmap32 C:\WINDOWS\Downloaded Program Files\Rovion.dll, 101
    HKEY_CLASSES_ROOT\clsid\{24D1BDCE-D835-11D6-BF84-0050047EA0E7}\TypeLib {47A661BC-D548-40E9-BAFF-1D62C9459876}
    HKEY_CLASSES_ROOT\clsid\{24D1BDCE-D835-11D6-BF84-0050047EA0E7}\Version 1.0
    HKEY_CLASSES_ROOT\clsid\{24D1BDCE-D835-11D6-BF84-0050047EA0E7} BlueStream_Flash Class
    
    
    Advertising.com Cookie (General)  more information...
    Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count 
    Status: Deleted
    
    Infected cookies detected
    c:\dokumente und einstellungen\jeff\cookies\jeff@advertising[2].txt

    Und hier nun mein aktueller hjt-log:


    Code:
    Logfile of HijackThis v1.99.1
    Scan saved at 01:03:12, on 07.08.2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
    
    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\System32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Programme\Gemeinsame Dateien\Symantec Shared\ccSetMgr.exe
    C:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Programme\Symantec AntiVirus\DefWatch.exe
    C:\Programme\ewido anti-spyware 4.0\guard.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\CBA\pds.exe
    C:\Programme\Symantec AntiVirus\Rtvscan.exe
    C:\WINDOWS\system32\RunDll32.exe
    C:\Programme\Gemeinsame Dateien\Nokia\Services\ServiceLayer.exe
    C:\Programme\Gemeinsame Dateien\Nokia\NCLTools\NclTray.exe
    C:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe
    C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe
    C:\Programme\Microsoft IntelliPoint\point32.exe
    C:\Programme\Microsoft Hardware\Keyboard\type32.exe
    C:\Programme\Java\jre1.5.0_04\bin\jusched.exe
    C:\Programme\iTunes\iTunesHelper.exe
    C:\Programme\QuickTime\qttask.exe
    C:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe
    C:\PROGRA~1\SYMANT~1\VPTray.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Programme\Nokia\PC Suite for Nokia N-Gage\connmngmntbox.exe
    C:\Programme\Nokia\PC Suite for Nokia N-Gage\ectaskscheduler.exe
    C:\Programme\Intuwave\Shared\mRouterRunTime\mRouterRuntime.exe
    C:\PROGRA~1\Nokia\PCSUIT~1\Elogerr.exe
    C:\PROGRA~1\Nokia\PCSUIT~1\BROADC~1.EXE
    C:\PROGRA~1\Nokia\PCSUIT~1\SCRFS.exe
    C:\Programme\iPod\bin\iPodService.exe
    C:\Programme\Sunbelt Software\CounterSpy\Consumer\SunServer.exe
    C:\WINDOWS\explorer.exe
    C:\Programme\Internet Explorer\iexplore.exe
    C:\Programme\ewido anti-spyware 4.0\ewido.exe
    C:\Programme\Sunbelt Software\CounterSpy\Consumer\sunThreatEngine.exe
    C:\Programme\Sunbelt Software\CounterSpy\Consumer\SunProtectionServer.exe
    C:\WINDOWS\system32\msiexec.exe
    C:\Dokumente und Einstellungen\Jeff\Desktop\HijackThis.exe
    
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.cnn.com/
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://securityresponse.symantec.com...r/fix_homepage
    R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://minisearch.startnow.com/
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programme\google\googletoolbar2.dll
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [ServiceLayer] C:\Programme\Gemeinsame Dateien\Nokia\Services\ServiceLayer.exe
    O4 - HKLM\..\Run: [Nokia Tray Application] C:\Programme\Gemeinsame Dateien\Nokia\NCLTools\NclTray.exe
    O4 - HKLM\..\Run: [ATIPTA] C:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe
    O4 - HKLM\..\Run: [TkBellExe] "C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [IntelliPoint] "C:\Programme\Microsoft IntelliPoint\point32.exe"
    O4 - HKLM\..\Run: [IntelliType] "C:\Programme\Microsoft Hardware\Keyboard\type32.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programme\Java\jre1.5.0_04\bin\jusched.exe
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Programme\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [ccApp] "C:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
    O4 - HKLM\..\Run: [SunServer] C:\Programme\Sunbelt Software\CounterSpy\Consumer\sunserver.exe
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programme\Spybot - Search & Destroy\TeaTimer.exe
    O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Programme\Gemeinsame Dateien\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: Adobe Reader - Schnellstart.lnk = C:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft Office\Office\OSA9.EXE
    O4 - Global Startup: PCSuiteForNokiaN-Gage Detect.lnk = ?
    O4 - Global Startup: PCSuiteForNokiaN-Gage TS.lnk = ?
    O8 - Extra context menu item: &Google Search - res://c:\programme\google\GoogleToolbar2.dll/cmsearch.html
    O8 - Extra context menu item: &Translate English Word - res://c:\programme\google\GoogleToolbar2.dll/cmwordtrans.html
    O8 - Extra context menu item: Backward Links - res://c:\programme\google\GoogleToolbar2.dll/cmbacklinks.html
    O8 - Extra context menu item: Cached Snapshot of Page - res://c:\programme\google\GoogleToolbar2.dll/cmcache.html
    O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O8 - Extra context menu item: Similar Pages - res://c:\programme\google\GoogleToolbar2.dll/cmsimilar.html
    O8 - Extra context menu item: Translate Page into English - res://c:\programme\google\GoogleToolbar2.dll/cmtrans.html
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_04\bin\npjpi150_04.dll
    O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_04\bin\npjpi150_04.dll
    O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe (file missing)
    O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
    O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\ccSetMgr.exe
    O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Programme\Symantec AntiVirus\DefWatch.exe
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Programme\ewido anti-spyware 4.0\guard.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: Intel PDS - LANDesk Software Ltd. - C:\WINDOWS\system32\CBA\pds.exe
    O23 - Service: iPodService - Apple Computer, Inc. - C:\Programme\iPod\bin\iPodService.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Programme\Symantec AntiVirus\Rtvscan.exe
    O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\SymWSC.exe
    soll ich fortfahren wie auf ihrer anleitung (neuerlicher counterspy-scan), oder anders?

    mfg
    sleevenote
    Geändert von Speedy (07.08.2006 um 00:25 Uhr)

  8. #8
    Moderator (global) Team-Mitglied Avatar von Speedy
    Registriert seit
    07.08.2004
    Ort
    Linz
    Beiträge
    23.539

    AW: Project1 in der Taskleiste

    hi

    meine texte sind eventuell nicht so leicht verständlich, aber beim großteil der user passt es.
    was ist hier los ?

    diese datei(en) hier bei virustotal oder bei Jotti überprüfen lassen, ergebnis (egal wie es aussieht) posten.
    --> hat nur durch neuerliche aufforderung gefunzt -> und auch das nur teilweise !

    und nun ?
    download von counterspy, installieren, starten, wähle nun >> run a spyware scan now <<
    wenn der scan beendet ist, wählst du >> remove << , starte nun den rechner neu und poste das logfile. wurde etwas gefunden, den scan wiederholen und das neue logfile ebenfalls posten, vorgang so oft wiederholen, bis nichts mehr gefunden wird.
    Die Dateien mit virustotal gescannt (nur die ersten 2 deiner 4 aufgelisteten dateien sind noch vorhanden)
    hier die ergebnisse:
    1. C:\WINDOWS\system32\smartdrv.exe
    2. C:\WINDOWS\system32\officescan.exe
    3. C:\WINDOWS\system32\office_pnl.dll
    4. C:\WINDOWS\System32\hiiedky.exe
    5. C:\WINDOWS\system\cmdlog.exe
    6. C:\WINDOWS\assembly\temp\diskip.exe

    sorry, ich klinke mich hier aus, ist mir zu mühsam , frag einen feund, der dir helfen kann, dann machen wir hier weiter.
    Geändert von Speedy (07.08.2006 um 00:27 Uhr)
    lg
    www.Speedyweb.at.tf
    Die Durchführung meiner Tipps erfolgt auf eigene Verantwortung!
    HijackThis (Downloads und Anleitungen z.B. was ist fixen usw.)
    HijackThis-Chat oder willst du hier mitmachen Stellenausschreibung
    hilfestellung zur systembereinigung nur über das öffentliche forum und keinesfalls über privatnachrichten oder email !!

  9. #9
    Einsteiger
    Registriert seit
    06.08.2006
    Beiträge
    8

    AW: Project1 in der Taskleiste

    Es tut mir aufrichtig leid, dass mit dem remove ist mir momente zu spät klargeworden. sorry.

    ich meinte nur 2 deiner 6 aufgelisteten dateien sind noch vorhanden, war ein tippfehler. falls sie mir noch eine chance geben möchten, ich wäre sehr froh drum. falls sie einverstanden sind: was soll ich jetzt machen?
    falls nicht, dann tut es mir leid.

  10. #10
    Moderator (global) Team-Mitglied Avatar von Speedy
    Registriert seit
    07.08.2004
    Ort
    Linz
    Beiträge
    23.539

    AW: Project1 in der Taskleiste

    wiederhole die scanns mit counterspy, aber remove solange, bis nichts mehr gefunden wird !

    dann, aber genau nach anleitung den ccleaner ausführen !

    1. download von filelist.zip auf deinen desktop
    2. entpacke das programm auf dem desktop
    3. starte nun mit einem doppelklick auf die datei filelist.bat das stapelverarbeitungsprogramm
    4. es öffnet sich nun dein bevorzugter editor (textprogramm)
    5. markiere den gesamten inhalt und wähle kopieren, füge nun alles hier in deinem beitrag ein
    6. formatiere nun deinen beitrag, es sollten von jedem ordnerinhalt nur die letzten 30 tage im logfile verbleiben, den rest löschen!
      (achtung: wird das hier nicht eingehalten, gibt es von mir keinen weiteren support)
    7. thx für die filelist.bat an karl83
      Verzeichnis von C:\
      Verzeichnis von C:\WINDOWS
      Verzeichnis von C:\WINDOWS\system32
      Verzeichnis von C:\WINDOWS\Prefetch
      Verzeichnis von C:\WINDOWS\tasks
      Verzeichnis von C:\WINDOWS\Temp
      Verzeichnis von C:\DOKUME~1\Profil~1\LOKALE~1\Temp
    lg
    www.Speedyweb.at.tf
    Die Durchführung meiner Tipps erfolgt auf eigene Verantwortung!
    HijackThis (Downloads und Anleitungen z.B. was ist fixen usw.)
    HijackThis-Chat oder willst du hier mitmachen Stellenausschreibung
    hilfestellung zur systembereinigung nur über das öffentliche forum und keinesfalls über privatnachrichten oder email !!

Seite 1 von 2 12 LetzteLetzte

Aktive Benutzer

Aktive Benutzer

Aktive Benutzer in diesem Thema: 1 (Registrierte Benutzer: 0, Gäste: 1)

Ähnliche Themen

  1. Virus Alert! in der Taskleiste!
    Von Baffi0 im Forum Archiv
    Antworten: 12
    Letzter Beitrag: 16.07.2006, 17:31
  2. Rollstuhl in der Taskleiste
    Von poppey im Forum Archiv
    Antworten: 30
    Letzter Beitrag: 19.05.2006, 11:35
  3. Rotes Symbol in der Taskleiste - BackdoorTrojaner?
    Von dsl-schnecke im Forum Archiv
    Antworten: 14
    Letzter Beitrag: 24.04.2006, 20:15
  4. rotes kreuz in der taskleiste
    Von SoulSaber im Forum Archiv
    Antworten: 1
    Letzter Beitrag: 23.11.2005, 14:55
  5. Antworten: 3
    Letzter Beitrag: 16.05.2005, 20:56

Berechtigungen

  • Neue Themen erstellen: Nein
  • Themen beantworten: Nein
  • Anhänge hochladen: Nein
  • Beiträge bearbeiten: Nein
  •