Hilft dir das weiter ?? Hatte gerade alles gelöscht !!
ZoneAlarm Protokoll-Client v6.1.744.001
Windows XP-5.1.2600-Service Pack 2-SP
type,date,time,source,destination,transport (Sicherheit)
type,date,time,virus name,file name,mode,eE-Mail-ID (Antivirus)
type,date,time,source,destination,action,service (IM-Sicherheit)
type,date,time,source,destination,program,action (Schutz gegen gefährlichen Code)
type,date,time,action,product,file,event,subevent,class,data,data,... (OSFirewall)
type,date,time,name,type,mode (Anti-Spyware)
OSFW,2006/06/13,15:57:24 +2:00 GMT,UNKNOWN(0),Anwendung für Dienste und Controller,C:\WINDOWS\system32\services.exe,DRIVER,LOAD,SRC,\Registry\Machine\System\CurrentControlSet\Services\SAVRT
PE,2006/06/13,15:57:38 +2:00 GMT,Generic Host Process for Win32 Services,192.168.1.1:53,N/A
ACCESS,2006/06/13,15:57:38 +2:00 GMT,Generic Host Process for Win32 Services konnte die Berechtigung für eine Verbindung hergestellt hat, um nicht erhalten, das Internet (192.168.1.1:DNS); Zugriff war verweigert.,N/A,N/A
PE,2006/06/13,15:57:40 +2:00 GMT,Generic Host Process for Win32 Services,192.168.1.1:53,N/A
ACCESS,2006/06/13,15:57:40 +2:00 GMT,Generic Host Process for Win32 Services konnte die Berechtigung für Daten gesendet hat an nicht erhalten, das Internet (192.168.1.1:DNS); Zugriff war verweigert.,N/A,N/A
PE,2006/06/13,15:57:42 +2:00 GMT,Generic Host Process for Win32 Services,192.168.1.1:53,N/A
PE,2006/06/13,15:57:42 +2:00 GMT,Generic Host Process for Win32 Services,192.168.1.1:53,N/A
PE,2006/06/13,15:57:42 +2:00 GMT,Generic Host Process for Win32 Services,192.168.1.1:53,N/A
PE,2006/06/13,15:57:42 +2:00 GMT,Generic Host Process for Win32 Services,192.168.1.1:53,N/A
PE,2006/06/13,15:57:44 +2:00 GMT,Generic Host Process for Win32 Services,192.168.1.1:53,N/A
PE,2006/06/13,15:57:46 +2:00 GMT,Generic Host Process for Win32 Services,192.168.1.1:53,N/A
PE,2006/06/13,15:57:46 +2:00 GMT,Generic Host Process for Win32 Services,192.168.1.1:53,N/A
PE,2006/06/13,15:57:50 +2:00 GMT,Generic Host Process for Win32 Services,192.168.1.1:53,N/A
PE,2006/06/13,15:57:54 +2:00 GMT,Generic Host Process for Win32 Services,192.168.1.1:53,N/A
PE,2006/06/13,15:57:56 +2:00 GMT,Generic Host Process for Win32 Services,192.168.1.1:53,N/A
ACCESS,2006/06/13,15:57:56 +2:00 GMT,Generic Host Process for Win32 Services konnte die Berechtigung für Daten gesendet hat an nicht erhalten, das Internet (192.168.1.1:DNS); Zugriff war verweigert.,N/A,N/A
PE,2006/06/13,15:57:56 +2:00 GMT,Generic Host Process for Win32 Services,192.168.1.1:53,N/A
PE,2006/06/13,15:57:58 +2:00 GMT,Generic Host Process for Win32 Services,192.168.1.1:53,N/A
PE,2006/06/13,15:58:02 +2:00 GMT,Generic Host Process for Win32 Services,192.168.1.1:53,N/A
PE,2006/06/13,15:58:04 +2:00 GMT,Generic Host Process for Win32 Services,0.0.0.0:135,N/A
PE,2006/06/13,15:58:04 +2:00 GMT,LEXPPS.EXE,0.0.0.0:1025,N/A
PE,2006/06/13,15:58:20 +2:00 GMT,Windows Genuine Advantage Notification,207.46.196.55:80,N/A
PE,2006/06/13,16:02:58 +2:00 GMT,Mozilla Thunderbird,127.0.0.1:1057,N/A
PE,2006/06/13,16:03:14 +2:00 GMT,Symantec User Session,194.25.134.47:110,N/A
PE,2006/06/13,16:03:36 +2:00 GMT,Firefox,127.0.0.1:1067,N/A
PE,2006/06/13,16:03:46 +2:00 GMT,Firefox,80.150.6.138:80,N/A
ACCESS,2006/06/13,19:04:54 +2:00 GMT,Microsoft Windows Media-Konfigurationsdienstprogramm wurde blockiert von eine Verbindung hergestellt hat, um, das Internet (194.97.50.135:DNS).,N/A,N/A
OSFW,2006/06/13,19:48:28 +2:00 GMT,UNKNOWN(0),Generic Host Process for Win32 Services,C:\WINDOWS\system32\svchost.exe,PROCESS,OPENPROCESS,SRC,"C:\PROGRA~1\MICROS~4\Office10\OUTLOOK.EXE"
OSFW,2006/06/13,19:51:22 +2:00 GMT,UNKNOWN(0),Microsoft Agent Server,C:\WINDOWS\msagent\agentsvr.exe,MESSAGE,Unknown Sub Event(3),SRC,"C:\PROGRA~1\MICROS~4\Office10\OUTLOOK.EXE"
OSFW,2006/06/13,19:51:32 +2:00 GMT,UNKNOWN(0),Microsoft Word,C:\Programme\Microsoft Office\Office10\WINWORD.EXE,MESSAGE,Unknown Sub Event(3),SRC,C:\WINDOWS\msagent\AgentSvr.exe -Embedding
OSFW,2006/06/13,21:37:24 +2:00 GMT,UNKNOWN(0),Banking Application,C:\PROGRAMME\STARMONEY 5.0 S-EDITION\STARMONEY.EXE,EXECUTION,GLOBALWINDOWSHOOK,SRC
OSFW,2006/06/13,21:40:30 +2:00 GMT,UNKNOWN(0),Banking Application,C:\Programme\StarMoney 5.0 S-Edition\StartStarMoney.exe,PROCESS,SPAWNPROCESS,SRC,C:\PROGRAMME\STARMONEY 5.0 S-EDITION\STARMONEY.EXE,4c8717c6-50e14369-784dbb81-f61aae8e,9c-5f256bb9-53d865e1
OSFW,2006/06/13,21:48:52 +2:00 GMT,UNKNOWN(0),Windows Explorer,C:\WINDOWS\explorer.exe,MESSAGE,Unknown Sub Event(3),DST,"C:\Programme\StarMoney 5.0 S-Edition\StarMoney.exe" direkt
FWROUTE,2006/06/13,22:38:46 +2:00 GMT,192.168.1.1:0,192.168.1.33:0,ICMP (type:8/subtype:0)
FWROUTE,2006/06/13,22:38:46 +2:00 GMT,192.168.1.33:3095,192.168.1.1:53,UDP
OSFW,2006/06/13,22:42:40 +2:00 GMT,UNKNOWN(0),TCP/UDP endpoint viewer,C:\DownSave\IPVIEW\Tcpview.exe,PROCESS,TERMINATEPROCESS,SRC,C:\WINDOWS\System32\svchost.exe -k NetworkService
OSFW,2006/06/13,23:25:52 +2:00 GMT,UNKNOWN(0),Internet Explorer,C:\Programme\Internet Explorer\iexplore.exe,PHYSMEM,MAP,SRC
OSFW,2006/06/13,23:31:00 +2:00 GMT,UNKNOWN(0),Windows Service Pack Setup,C:\WINDOWS\SoftwareDistribution\Download\feec5f521472d353f6cb6c94b9aa396b\update\update.exe,PROCESS,OPENPROCESS,SRC,C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestT