title image


Smiley Re: mit deiner Beschreibung kann aber wirklich keiner was anfangen
Hallo, habe ich gemacht,



Logfile of HijackThis v1.99.1

Scan saved at 07:35:51, on 3.4.2006

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)



Running processes:

C:\windows\System32\smss.exe

C:\windows\system32\winlogon.exe

C:\windows\system32\services.exe

C:\windows\system32\lsass.exe

C:\windows\system32\svchost.exe

C:\windows\System32\svchost.exe

C:\windows\system32\spoolsv.exe

C:\Programme\AntiVir PersonalEdition Classic\sched.exe

C:\Programme\AntiVir PersonalEdition Classic\avguard.exe

C:\Programme\Ashampoo\Ashampoo Magic Defrag\bin\aDefragService.exe

C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\MDM.EXE

C:\windows\System32\svchost.exe

C:\WINDOWS\system32\ZONELABS\vsmon.exe

C:\windows\System32\mqsvc.exe

C:\windows\System32\mqtgsvc.exe

C:\windows\system32\ZoneLabs\isafe.exe

C:\windows\system32\wscntfy.exe

C:\windows\Explorer.EXE

D:\Programme_D\Zone Labs\ZoneAlarm\zlclient.exe

C:\Programme\AntiVir PersonalEdition Classic\avgnt.exe

C:\Programme\Microsoft ActiveSync\WCESCOMM.EXE

D:\Programme_D\MemOptimizer.exe

D:\Programme_D\WinSweep\WSPopup.Exe

D:\Programme_D\WinSweep\winjam.exe

D:\Programme_D\Spybot - Search & Destroy\TeaTimer.exe

D:\Programme_D\WinSweep\WSProxy.Exe

C:\Programme\Ashampoo\Ashampoo Magic Defrag\bin\aDefragCtrl.exe

C:\windows\system32\javaw.exe

D:\Programme\OFFICE11\OUTLOOK.EXE

D:\Programme\OFFICE11\WINWORD.EXE

C:\Programme\Firefox_1.25\firefox.exe

C:\Programme\ONSPEED\ONSPEED\3.52.1216.0\IACLiM.exe

D:\PROGRA~2\WINZIP\winzip32.exe

C:\Dokumente und Einstellungen\Peter.HOMEOFFICE\Lokale Einstellungen\Temp\HijackThis.exe



R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://t-online.de/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://de.yahoo.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://de.rd.yahoo.com/customize/ie/defaults/su/msgr7/*http://de.search.yahoo.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://de.rd.yahoo.com/customize/ie/defaults/sp/msgr7/*http://de.search.yahoo.com

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://de.yahoo.com

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = file://D:\Programme_D\WinSweep\no-ads.pac

R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - D:\Programme\ICQToolbar\toolbaru.dll

O2 - BHO: eCATRegistrar Class - {02336F51-24CA-4422-AB63-18841ADF35E6} - C:\Programme\ONSPEED\ONSPEED\3.52.1216.0\eCATBHO.dll

O2 - BHO: (no name) - {07A7E386-6D48-48D3-B017-2088C6247824} - (no file)

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - D:\PROGRA~2\SPYBOT~1\SDHelper.dll

O2 - BHO: (no name) - {577C5077-82CD-4BD9-800A-E238F0AA157F} - (no file)

O2 - BHO: (no name) - {911C4A8E-0F75-4B83-BEB9-02BDDF29D11E} - (no file)

O2 - BHO: (no name) - {CF85B90C-7701-4BD3-B079-40E4F1CB98E1} - C:\windows\system32\HPBFTN16.DLL

O3 - Toolbar: Copernic Agent - {F2E259E8-0FC8-438C-A6E0-342DD80FA53E} - C:\Dokumente und Einstellungen\Administrator\Desktop\Brennen\Copernic Agent\CopernicAgentExt.dll

O3 - Toolbar: onlineTV - {63CCAACE-9D54-4149-9085-1B3BA48D0FE2} - C:\PROGRA~1\ONLINE~1\OTVTOO~1.DLL

O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - D:\Programme\ICQToolbar\toolbaru.dll

O3 - Toolbar: (no name) - {28BC2EC4-5EAD-45E1-9F9F-82CD5E293601} - (no file)

O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn\yt.dll

O3 - Toolbar: ONSPEED - {4BC3AC04-3E56-411D-B465-4FEA06654611} - C:\Programme\ONSPEED\ONSPEED\3.52.1216.0\ThinClientToolbar.dll

O3 - Toolbar: (no name) - {E915E62E-41DA-40D0-8106-3438B4D24394} - (no file)

O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k

O4 - HKLM\..\Run: [Zone Labs Client] D:\Programme_D\Zone Labs\ZoneAlarm\zlclient.exe

O4 - HKLM\..\Run: [DVD43] D:\PROGRA~2\DVDREG~1\DVDRegionFree.exe /hidden

O4 - HKLM\..\Run: [avgnt] "C:\Programme\AntiVir PersonalEdition Classic\avgnt.exe" /min

O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Programme\Microsoft ActiveSync\WCESCOMM.EXE"

O4 - HKCU\..\Run: [TuneUp MemOptimizer] "D:\Programme_D\MemOptimizer.exe" autostart

O4 - HKCU\..\Run: [WINSWEEP Popupblocker] D:\Programme_D\WinSweep\WSPopup.Exe /STEP1 /SOUND

O4 - HKCU\..\Run: [WINSWEEP Reklameblockierung] D:\Programme_D\WinSweep\winjam.exe

O4 - HKCU\..\Run: [SpybotSD TeaTimer] D:\Programme_D\Spybot - Search & Destroy\TeaTimer.exe

O4 - Global Startup: Ashampoo Magic Defrag.lnk = C:\Programme\Ashampoo\Ashampoo Magic Defrag\bin\aDefragCtrl.exe

O4 - Global Startup: PowerISDNMonitor 4.3.lnk = C:\Programme\PowerISDNMonitor4.3\pimjava.exe

O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\DAP\dapextie.htm

O8 - Extra context menu item: &eBay Search - res://C:\Programme\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html

O8 - Extra context menu item: &ICQ Toolbar Search - res://D:\Programme\ICQToolbar\toolbaru.dll/SEARCH.HTML

O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\DAP\dapextie2.htm

O8 - Extra context menu item: Download with GetRight - C:\Programme\GetRight\GRdownload.htm

O8 - Extra context menu item: Open with GetRight Browser - C:\Programme\GetRight\GRbrowse.htm

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\j2re1.4.2_05\bin\npjpi142_05.dll

O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\j2re1.4.2_05\bin\npjpi142_05.dll

O9 - Extra button: (no name) - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\Dokumente und Einstellungen\Administrator\Desktop\Brennen\Copernic Agent\CopernicAgent.exe

O9 - Extra 'Tools' menuitem: Starten von Copernic Agent - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\Dokumente und Einstellungen\Administrator\Desktop\Brennen\Copernic Agent\CopernicAgent.exe

O9 - Extra button: Mobilen Favoriten erstellen - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Programme\Microsoft ActiveSync\INetRepl.dll

O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Programme\Microsoft ActiveSync\INetRepl.dll

O9 - Extra 'Tools' menuitem: Mobilen Favoriten erstellen... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Programme\Microsoft ActiveSync\INetRepl.dll

O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\YAHOO!\COMMON\yhexbmesde.dll

O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\YAHOO!\COMMON\yhexbmesde.dll

O9 - Extra button: Run DAP - {669695BC-A811-4A9D-8CDF-BA8C795F261C} - C:\PROGRA~1\DAP\DAP.EXE

O9 - Extra button: concept/design's onlineTV - {E5C1CFA8-952B-405A-AF1B-8F767F8DCCFA} - C:\Programme\onlineTV\onlineTV.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Programme\Yahoo!\Common\yinsthelper.dll

O17 - HKLM\System\CCS\Services\Tcpip\..\{D9FE7D7C-EF30-4C70-98E9-2D32148052AF}: NameServer = 195.50.140.252 195.50.140.114

O23 - Service: AntiVir Scheduler (AntiVirScheduler) - Avira GmbH - C:\Programme\AntiVir PersonalEdition Classic\sched.exe

O23 - Service: AntiVir PersonalEdition Classic Service (AntiVirService) - AVIRA GmbH - C:\Programme\AntiVir PersonalEdition Classic\avguard.exe

O23 - Service: Ashampoo Defrag Service (AshampooDefragService) - - C:\Programme\Ashampoo\Ashampoo Magic Defrag\bin\aDefragService.exe

O23 - Service: CA ISafe (CAISafe) - Computer Associates International, Inc. - C:\windows\system32\ZoneLabs\isafe.exe

O23 - Service: InCD Helper (InCDsrv) - Unknown owner - C:\Programme\Ahead\InCD\InCDsrv.exe (file missing)

O23 - Service: LogoMedia TranslateDotNet Server - LogoMedia Corporation - C:\Programme\Power Translator\LogoMedia TranslateDotNet Server.exe

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\hpzipm12.exe

O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)

O23 - Service: Remote Administrator Service (r_server) - Unknown owner - C:\windows\system32\r_server.exe" /service (file missing)

O23 - Service: siregsrv - Unknown owner - C:\PROGRA~1\NORTON~2\SPEEDD~1\SIREGSRV.EXE (file missing)

O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - D:\Programme_D\WinStylerThemeSvc.exe

O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZONELABS\vsmon.exe





geschrieben von

Login

E-Mail:
  

Passwort:
  

Beitrag anfügen

Symbol:
 
 
 
 
 
 
 
 
 
 
 
 
 

Überschrift: