|
Plagegeister aller Art und deren Bekämpfung: Iexplorer 2x!Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
29.08.2007, 16:14 | #1 |
| Iexplorer 2x! Ich glaube das prob war hier schon ein paar mal aufgelistet und konnte schnell behoben werden, jedoch wollte ich nun nicht der selben anleitungen folgen, nacher mach ich noch was kaputt weils ja 2 verschiedene systeme sind Achja, ich benutz Firefox und das läuft trotzdem... komisch halt Naja, hier mein HJT Log File: (ich kenn mich da net so aus, hoffe hab net zu viel oder sinnloses gepostet) Logfile of HijackThis v1.99.1 Scan saved at 17:05:16, on 29.08.2005 (Ups, falsches Datum ) Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: G:\WINDOWS\System32\smss.exe G:\WINDOWS\system32\winlogon.exe G:\WINDOWS\system32\services.exe G:\WINDOWS\system32\lsass.exe G:\WINDOWS\system32\svchost.exe G:\WINDOWS\System32\svchost.exe G:\Programme\TGTSoft\StyleXP\StyleXPService.exe G:\WINDOWS\Explorer.EXE G:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exe C:\Tools\Norton Internet Security\NISUM.EXE G:\WINDOWS\system32\spoolsv.exe C:\Tools\Norton Internet Security\ccPxySvc.exe G:\WINDOWS\system32\CTsvcCDA.EXE G:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe C:\Tools\Norton AntiVirus\navapsvc.exe G:\WINDOWS\system32\nvsvc32.exe G:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\SymWSC.exe G:\Programme\Creative\SB Live! 24-bit\Surround Mixer\CTSysVol.exe G:\Programme\MessengerPlus! 3\MsgPlus.exe G:\WINDOWS\system32\RunDLL32.exe G:\Programme\QuickTime\qttask.exe G:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch.exe G:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe G:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe G:\WINDOWS\system32\ctfmon.exe G:\Programme\Creative\MediaSource\Detector\CTDetect.exe G:\Programme\Messenger\msmsgs.exe G:\Programme\Gemeinsame Dateien\Ahead\lib\NMBgMonitor.exe G:\Programme\Internet Explorer\iexplore.exe G:\Programme\InterVideo\Common\Bin\WinCinemaMgr.exe G:\Programme\Logitech\SetPoint\SetPoint.exe G:\Programme\Gemeinsame Dateien\Logitech\KHAL\KHALMNPR.EXE G:\Programme\Octoshape Streaming Services\Sw0rD\OctoshapeClient.exe C:\Tools\NORTON~1\navw32.exe G:\Programme\Teamspeak2_RC2\TeamSpeak.exe G:\Programme\Lavasoft\Ad-Aware SE Professional\Ad-Aware.exe G:\WINDOWS\system32\taskmgr.exe G:\Programme\Mozilla Firefox\firefox.exe G:\Programme\Internet Explorer\iexplore.exe G:\DOKUME~1\Sw0rD\LOKALE~1\Temp\Rar$EX00.047\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = h**p://monstersgame.net/ R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - G:\Programme\ICQToolbar\toolbaru.dll O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - G:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {251C0E20-DBF7-D796-0110-4A3B60818A10} - (no file) O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - G:\Programme\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - G:\Programme\Java\jre1.5.0_06\bin\ssv.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - G:\Programme\Google\GoogleToolbarNotifier\2.0.301.5672\swg.dll O2 - BHO: VCS3IESupport Class - {B9D6B3C2-09AD-464A-8162-8C55114C808A} - G:\Programme\AV VCS 3.0 DIAMOND\Vcs3RT.dll O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Tools\Norton AntiVirus\NavShExt.dll O2 - BHO: TGTSoft Explorer Toolbar Changer - {C333CF63-767F-4831-94AC-E683D962C63C} - G:\Programme\TGTSoft\StyleXP\TGT_BHO.dll O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - G:\Programme\ICQToolbar\toolbaru.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - G:\Programme\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Tools\Norton AntiVirus\NavShExt.dll O4 - HKLM\..\Run: [CTSysVol] G:\Programme\Creative\SB Live! 24-bit\Surround Mixer\CTSysVol.exe /r O4 - HKLM\..\Run: [UpdReg] G:\WINDOWS\UpdReg.EXE O4 - HKLM\..\Run: [MessengerPlus3] "G:\Programme\MessengerPlus! 3\MsgPlus.exe" O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE G:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [NeroFilterCheck] G:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [QuickTime Task] "G:\Programme\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [OSSelectorReinstall] G:\Programme\Gemeinsame Dateien\Acronis\Acronis Disk Director\oss_reinstall.exe O4 - HKLM\..\Run: [ISUSPM Startup] G:\PROGRA~1\GEMEIN~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup O4 - HKLM\..\Run: [ISUSScheduler] "G:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [TkBellExe] "G:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [ccApp] G:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe O4 - HKLM\..\Run: [ccRegVfy] G:\Programme\Gemeinsame Dateien\Symantec Shared\ccRegVfy.exe O4 - HKLM\..\Run: [Love default global mess] G:\Dokumente und Einstellungen\All Users\Anwendungsdaten\great coal love default\phone hide.exe O4 - HKCU\..\Run: [CTFMON.EXE] G:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [LDM] G:\Programme\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe O4 - HKCU\..\Run: [Creative Detector] G:\Programme\Creative\MediaSource\Detector\CTDetect.exe /R O4 - HKCU\..\Run: [MSMSGS] "G:\Programme\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "G:\Programme\Gemeinsame Dateien\Ahead\lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [Dumbbait] G:\DOKUME~1\Sw0rD\ANWEND~1\AXISBA~1\Cakecash.exe O4 - HKCU\..\Run: [Octoshape Streaming Services] "G:\Programme\Octoshape Streaming Services\Sw0rD\OctoshapeClient.exe" -inv:bootrun O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] G:\Programme\Mozilla Firefox\plugins\GetFlash.exe -p O4 - Global Startup: Adobe Reader Speed Launch.lnk = G:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: InterVideo WinCinema Manager.lnk = G:\Programme\InterVideo\Common\Bin\WinCinemaMgr.exe O4 - Global Startup: Logitech SetPoint.lnk = G:\Programme\Logitech\SetPoint\SetPoint.exe O8 - Extra context menu item: &ICQ Toolbar Search - res://G:\Programme\ICQToolbar\toolbaru.dll/SEARCH.HTML O8 - Extra context menu item: Download all links using BitComet - res://C:\Tools\BitComet\BitComet.exe/AddAllLink.htm O8 - Extra context menu item: Download link using &BitComet - res://C:\Tools\BitComet\BitComet.exe/AddLink.htm O8 - Extra context menu item: Download with NetPumper - G:\Programme\NetPumper\AddUrl.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - G:\Programme\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - G:\Programme\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - G:\Programme\ICQLite\ICQLite.exe O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - G:\Programme\ICQLite\ICQLite.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - G:\Programme\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - G:\Programme\Messenger\msmsgs.exe O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://h**p://messenger.zone.msn.com...t.cab31267.cab O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://h**p://messenger.zone.msn.com...n.cab31267.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{F14C8D91-B4A2-41F2-A362-B451EBF4AD06}: NameServer = 89.27.130.33 89.27.130.34 O18 - Protocol: bw+0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw+0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: bwg0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwg0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: offline-8876480 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - G:\PROGRA~1\GEMEIN~1\Skype\SKYPE4~1.DLL O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - G:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - G:\Programme\Gemeinsame Dateien\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Proxy Service (ccPxySvc) - Symantec Corporation - C:\Tools\Norton Internet Security\ccPxySvc.exe O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - G:\WINDOWS\system32\CTsvcCDA.EXE O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - The Firebird Project - C:\Common\Database\bin\fbserver.exe O23 - Service: Google Updater Service (gusvc) - Google - G:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - G:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: Norton AntiVirus Auto-Protect-Dienst (navapsvc) - Symantec Corporation - C:\Tools\Norton AntiVirus\navapsvc.exe O23 - Service: Norton Internet Security Accounts Manager (NISUM) - Symantec Corporation - C:\Tools\Norton Internet Security\NISUM.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - G:\WINDOWS\system32\nvsvc32.exe O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing) O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - G:\PROGRA~1\GEMEIN~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: StyleXPService - Unknown owner - G:\Programme\TGTSoft\StyleXP\StyleXPService.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - G:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\SymWSC.exe O23 - Service: TSMService - T-Systems Nova, Berkom - G:\Programme\T-DSL SpeedManager\tsmsvc.exe Ehrrlich gesagt, ich hab so viel krams auf dem pc, ich weis net was was ist Könnte dieses Problem ebenfalls damit zusammen hängen das ich alle paar kinuten einen Internet Explorer Werbepopup bekomme? Selbst wenn kein browser läuft und ich irgendwas anderes mache springt immer Werbung auf... von Poker bis zu Tschibbo ^^ Hoffe ihr könnt mir da bitte helfen, mfg Sw0rD Geändert von Sw0rD (29.08.2007 um 16:20 Uhr) |
29.08.2007, 16:24 | #2 | ||
/// TB-Ausbilder | Iexplorer 2x!Zitat:
Du hast wirklich ne Menge Programme an Board. Und eines dieser Programme war nicht dein Freund: Messenger3Plus Das Programm bitte deinstallieren und auf eine Alternative umsteigen: Zb miranda, trillian, etc. Danach solltest du noch diese Anleitung abarbeiten: Swizzor entfernen Die relevanten Beiträge sind dabei: Zitat:
(Ich geh jetzt mal davon aus, dass praktisch identisch mit den Posts ist, die du bereits gelesen hast. Oder etwa nicht?) lg myrtille |
29.08.2007, 19:24 | #3 |
| Iexplorer 2x! Werd ich direkt mal Morgen Früh machen...
__________________Danke Für die hilfe, ich platiere dann via edit Morgen die neuen Logs etc hier rein Messenger3Plus sagt mir was... Hab immer beim starten des Computers eine Fehlermeldung deshalb glaub ich... die hab ich ca. schon seid 1 Jahr, da merkt man sowas schon nicht mehr xD |
29.08.2007, 19:48 | #4 | |||
/// TB-Ausbilder | Iexplorer 2x!Zitat:
Zitat:
Zitat:
lg myrtille |
30.08.2007, 06:50 | #5 |
| Iexplorer 2x! Seltsam, ich habe jetzt Messenger3Plus deinstalliert (Samt "Sponsoren" ... wtf, sowas hab ich bis jetzt net irgendwo gesehen "Sponsor mit entfernen" ) und wollte mich dann gemütlich an die entfernung dort machen jedoch habe ich nun weder die dort genannten dateien im HJT - Scan, noch habe ich mehr die 2 von dir genannten drin... Kann es sein das diese mit der deinstallation mit weg sind oder kann es vll sogar sein das diese dateien erst nach einer bestimmten zeit oder so etwas runen? Weil ich nun auch keine Iexplorer Dateien mehr im Task-Manager finden kann Hier nochmal der Aktuelle HJT-Logfile: Logfile of HijackThis v1.99.1 Scan saved at 07:45:50, on 30.08.2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: G:\WINDOWS\System32\smss.exe G:\WINDOWS\system32\winlogon.exe G:\WINDOWS\system32\services.exe G:\WINDOWS\system32\lsass.exe G:\WINDOWS\system32\svchost.exe G:\WINDOWS\System32\svchost.exe G:\Programme\TGTSoft\StyleXP\StyleXPService.exe G:\WINDOWS\Explorer.EXE G:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exe C:\Tools\Norton Internet Security\NISUM.EXE G:\WINDOWS\system32\spoolsv.exe G:\Programme\Creative\SB Live! 24-bit\Surround Mixer\CTSysVol.exe G:\WINDOWS\system32\RunDLL32.exe G:\Programme\QuickTime\qttask.exe G:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch.exe G:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe G:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe G:\WINDOWS\system32\ctfmon.exe G:\Programme\Creative\MediaSource\Detector\CTDetect.exe G:\Programme\Messenger\msmsgs.exe G:\Programme\Gemeinsame Dateien\Ahead\lib\NMBgMonitor.exe G:\Programme\InterVideo\Common\Bin\WinCinemaMgr.exe G:\Programme\Logitech\SetPoint\SetPoint.exe G:\Programme\Gemeinsame Dateien\Logitech\KHAL\KHALMNPR.EXE G:\WINDOWS\system32\NOTEPAD.EXE C:\Tools\Norton Internet Security\ccPxySvc.exe G:\WINDOWS\system32\CTsvcCDA.EXE G:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe C:\Tools\Norton AntiVirus\navapsvc.exe G:\WINDOWS\system32\nvsvc32.exe G:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\SymWSC.exe G:\Programme\Mozilla Firefox\firefox.exe G:\WINDOWS\system32\wuauclt.exe G:\Dokumente und Einstellungen\Sw0rD\Desktop\abc.exe G:\Programme\Octoshape Streaming Services\Sw0rD\OctoshapeClient.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://monstersgame.net/ R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - G:\Programme\ICQToolbar\toolbaru.dll O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - G:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {251C0E20-DBF7-D796-0110-4A3B60818A10} - (no file) O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - G:\Programme\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - G:\Programme\Java\jre1.5.0_06\bin\ssv.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - G:\Programme\Google\GoogleToolbarNotifier\2.0.301.5672\swg.dll O2 - BHO: VCS3IESupport Class - {B9D6B3C2-09AD-464A-8162-8C55114C808A} - G:\Programme\AV VCS 3.0 DIAMOND\Vcs3RT.dll O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Tools\Norton AntiVirus\NavShExt.dll O2 - BHO: TGTSoft Explorer Toolbar Changer - {C333CF63-767F-4831-94AC-E683D962C63C} - G:\Programme\TGTSoft\StyleXP\TGT_BHO.dll O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - G:\Programme\ICQToolbar\toolbaru.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - G:\Programme\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Tools\Norton AntiVirus\NavShExt.dll O4 - HKLM\..\Run: [CTSysVol] G:\Programme\Creative\SB Live! 24-bit\Surround Mixer\CTSysVol.exe /r O4 - HKLM\..\Run: [UpdReg] G:\WINDOWS\UpdReg.EXE O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE G:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [NeroFilterCheck] G:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [QuickTime Task] "G:\Programme\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [OSSelectorReinstall] G:\Programme\Gemeinsame Dateien\Acronis\Acronis Disk Director\oss_reinstall.exe O4 - HKLM\..\Run: [ISUSPM Startup] G:\PROGRA~1\GEMEIN~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup O4 - HKLM\..\Run: [ISUSScheduler] "G:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [TkBellExe] "G:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [ccApp] G:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe O4 - HKLM\..\Run: [ccRegVfy] G:\Programme\Gemeinsame Dateien\Symantec Shared\ccRegVfy.exe O4 - HKCU\..\Run: [CTFMON.EXE] G:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [LDM] G:\Programme\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe O4 - HKCU\..\Run: [Creative Detector] G:\Programme\Creative\MediaSource\Detector\CTDetect.exe /R O4 - HKCU\..\Run: [MSMSGS] "G:\Programme\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "G:\Programme\Gemeinsame Dateien\Ahead\lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [Octoshape Streaming Services] "G:\Programme\Octoshape Streaming Services\Sw0rD\OctoshapeClient.exe" -inv:bootrun O4 - Global Startup: Adobe Reader Speed Launch.lnk = G:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: InterVideo WinCinema Manager.lnk = G:\Programme\InterVideo\Common\Bin\WinCinemaMgr.exe O4 - Global Startup: Logitech SetPoint.lnk = G:\Programme\Logitech\SetPoint\SetPoint.exe O8 - Extra context menu item: &ICQ Toolbar Search - res://G:\Programme\ICQToolbar\toolbaru.dll/SEARCH.HTML O8 - Extra context menu item: Download all links using BitComet - res://C:\Tools\BitComet\BitComet.exe/AddAllLink.htm O8 - Extra context menu item: Download link using &BitComet - res://C:\Tools\BitComet\BitComet.exe/AddLink.htm O8 - Extra context menu item: Download with NetPumper - G:\Programme\NetPumper\AddUrl.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - G:\Programme\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - G:\Programme\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - G:\Programme\ICQLite\ICQLite.exe O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - G:\Programme\ICQLite\ICQLite.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - G:\Programme\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - G:\Programme\Messenger\msmsgs.exe O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{F14C8D91-B4A2-41F2-A362-B451EBF4AD06}: NameServer = 89.27.130.33 89.27.130.34 O18 - Protocol: bw+0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw+0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: bwg0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwg0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0s - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: offline-8876480 - {36AB282D-A9B4-4B0C-85B0-EA1122B8E761} - G:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - G:\PROGRA~1\GEMEIN~1\Skype\SKYPE4~1.DLL O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - G:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - G:\Programme\Gemeinsame Dateien\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Proxy Service (ccPxySvc) - Symantec Corporation - C:\Tools\Norton Internet Security\ccPxySvc.exe O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - G:\WINDOWS\system32\CTsvcCDA.EXE O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - The Firebird Project - C:\Common\Database\bin\fbserver.exe O23 - Service: Google Updater Service (gusvc) - Google - G:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - G:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: Norton AntiVirus Auto-Protect-Dienst (navapsvc) - Symantec Corporation - C:\Tools\Norton AntiVirus\navapsvc.exe O23 - Service: Norton Internet Security Accounts Manager (NISUM) - Symantec Corporation - C:\Tools\Norton Internet Security\NISUM.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - G:\WINDOWS\system32\nvsvc32.exe O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing) O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - G:\PROGRA~1\GEMEIN~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: StyleXPService - Unknown owner - G:\Programme\TGTSoft\StyleXP\StyleXPService.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - G:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\SymWSC.exe O23 - Service: TSMService - T-Systems Nova, Berkom - G:\Programme\T-DSL SpeedManager\tsmsvc.exe Hat sich da Grundlegend etwas verändert?^^ Achja, und die Fehlermeldung beim start ist folgende: " Runner file name (LogitechDesktopMessenger.exe) lacks a '-' (the app id seperator) " |
30.08.2007, 10:11 | #6 |
/// TB-Ausbilder | Iexplorer 2x! "Das Sponsoren entfernen" ist neu. Das hab ich auch noch nicht gehört. (OK hab mir das Ding auch schon lange nimmer installiert. ) Ich denke mal du kannst dir ganz gut vorstellen, wer der Sponsor war? Wir werden dann aber glaube ich nochmal genauer gucken ob auch wirklich alles entfernt worden ist. Kopiere folgendes in einen Texteditor: Code:
ATTFilter @echo off set log="%userprofile%\Desktop\temp.txt" if exist %log% del %log% echo Anwendungsdaten >> %log% dir "%userprofile%\Anwendungsdaten\" /a /o >> %log% echo Allusers Ordner>> %log% dir G:\"Dokumente und Einstellungen"\"All Users"\Anwendungsdaten\ /a /o>> %log% echo ----- Tasks ---------------------------- >> %log% dir %windir%\tasks /a:-d /o:-d >> %log% start notepad %log% pause exit Poste dann den Inhalt des sich öffnenden Fenster hier, sowie eventuelle Fehlermeldungen. lg myrtille |
30.08.2007, 10:33 | #7 |
| Iexplorer 2x! Anwendungsdaten Datentr„ger in Laufwerk G: ist Windows Volumeseriennummer: 5C88-6B37 Verzeichnis von G:\Dokumente und Einstellungen\Sw0rD\Anwendungsdaten 30.08.2005 07:17 <DIR> . 30.08.2005 07:17 <DIR> .. 20.11.2005 02:10 <DIR> Adobe 19.01.2005 16:42 <DIR> AdobeUM 15.02.2005 16:31 <DIR> Ahead 10.12.2005 13:34 <DIR> Apple Computer 27.10.2005 19:04 <DIR> Creative 22.02.2005 20:53 <DIR> Elaborate Bytes 11.01.2006 14:41 <DIR> Google 07.05.2005 21:01 <DIR> Hamachi 02.02.2005 21:32 <DIR> Help 14.11.2005 14:41 <DIR> ICQLite 08.07.2005 14:19 <DIR> Identities 02.12.2004 15:41 <DIR> InstallShield 29.10.2005 12:23 <DIR> InterVideo 24.07.2005 14:43 <DIR> Lavasoft 27.10.2005 18:37 <DIR> Logitech 16.07.2005 13:41 <DIR> Macromedia 14.02.2005 21:02 <DIR> MAGIX 26.06.2005 20:43 <DIR> Microsoft 17.05.2005 14:30 <DIR> Mozilla 30.07.2005 12:21 <DIR> NetPumper 08.09.2005 16:46 <DIR> OpenOffice.org2 04.03.2005 21:00 <DIR> Publish Providers 22.06.2005 20:15 <DIR> Real 26.08.2005 21:00 <DIR> Skype 04.03.2005 20:59 <DIR> Sony 30.07.2005 13:43 <DIR> Sun 31.10.2005 12:35 <DIR> Symantec 31.10.2005 10:34 <DIR> Talkback 30.01.2005 16:50 <DIR> T-DSL SpeedManager 29.08.2005 13:04 <DIR> teamspeak2 27.10.2005 19:33 <DIR> TuneUp Software 01.05.2005 14:16 <DIR> Ventrilo 09.04.2006 10:39 <DIR> vlc 07.08.2005 16:36 <DIR> WowAceUpdater 11.03.2005 14:42 <DIR> Xfire 27.09.2005 17:34 62 desktop.ini 1 Datei(en) 62 Bytes 41 Verzeichnis(se), 2.975.236.096 Bytes frei Allusers Ordner Datentr„ger in Laufwerk G: ist Windows Volumeseriennummer: 5C88-6B37 Verzeichnis von G:\Dokumente und Einstellungen\All Users\Anwendungsdaten 30.08.2005 07:43 <DIR> . Ich hab 4 Dateien aus der Liste entfernt aufgrund von Selbstschutz *hust* |
30.08.2007, 10:38 | #8 | |
/// TB-Ausbilder | Iexplorer 2x!Zitat:
Kann es sein, dass da einige Einträge fehlen? zb die aus den Anwendungsdaten bei AllUsers und die Tasks? Ich sehe jetzt nichts mehr, und denke da ist auch nichts mehr. Wenn du ganz sicher gehen willst, kannst du noch einen Scan bei escan machen und das Ergebnis der find.bat hier posten. lg myrtille |
30.08.2007, 11:09 | #9 |
| Iexplorer 2x! Ich werde mal den test machen, danke für die info Netpumper hab ich vor langer zeit mal selbst installiert weil man des irgendwie braucht um wo was ziehen zu können *duck* Edit: Sol ich Netpumper noch iregndwie runtermachen? bzw wie?^^ Da, habs übersehen, das fehlte: Verzeichnis von G:\Dokumente und Einstellungen\All Users\Anwendungsdaten 30.08.2005 07:43 <DIR> . 30.08.2005 07:43 <DIR> .. 01.12.2004 21:51 <DIR> Acronis 19.01.2005 17:00 <DIR> Adobe 04.11.2005 18:46 <DIR> Apple Computer 23.03.2005 18:09 <DIR> DVD Shrink 23.09.2005 06:48 <DIR> Google 30.08.2005 07:21 <DIR> Google Updater 30.08.2005 07:17 <DIR> great coal love default 29.10.2005 13:27 <DIR> InstallShield 19.08.2005 13:03 <DIR> Internet debug mess great 22.05.2005 11:21 <DIR> Itch Time Acid Ref 07.03.2005 19:43 <DIR> Macromedia 14.02.2005 17:48 <DIR> MAGIX 26.02.2005 16:28 <DIR> Microsoft 11.07.2005 08:02 <DIR> NVIDIA 25.08.2005 18:33 <DIR> SecTaskMan 24.03.2006 07:52 <DIR> settingsheartacidace 21.03.2005 13:45 <DIR> Skype 03.03.2005 22:08 <DIR> Sony 10.07.2005 14:28 <DIR> Spybot - Search & Destroy 25.05.2006 19:57 <DIR> Symantec 10.11.2005 19:02 <DIR> T-DSL SpeedManager 17.04.2005 11:34 <DIR> TuneUp Software 07.03.2005 15:16 <DIR> Yahoo! Companion 27.09.2005 17:34 62 desktop.ini 1 Datei(en) 62 Bytes 25 Verzeichnis(se), 2.975.236.096 Bytes frei ----- Tasks ---------------------------- Datentr„ger in Laufwerk G: ist Windows Volumeseriennummer: 5C88-6B37 Verzeichnis von G:\WINDOWS\tasks 28.06.2006 14:15 276 AppleSoftwareUpdate.job 23.06.2006 20:00 488 Norton AntiVirus - Meinen Computer prfen.job 30.08.2005 07:57 396 Symantec NetDetect.job 30.08.2005 07:57 6 SA.DAT 04.08.2004 14:00 65 desktop.ini 5 Datei(en) 1.231 Bytes 0 Verzeichnis(se), 2.975.232.000 Bytes frei Geändert von Sw0rD (30.08.2007 um 11:19 Uhr) |
Themen zu Iexplorer 2x! |
ad-aware, antivirus, bho, browser, desktop, disk director, firefox, google, helfen, helper, hijack, hijackthis, hängen, internet, internet explorer, internet security, log file, magix, mozilla, mozilla firefox, problem, proxy, rundll, security, security center, software, symantec, teamspeak, urlsearchhook, werbung, windows, windows xp |