![]() |
|
Log-Analyse und Auswertung: internet problemWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #4 |
| ![]() internet problem [SIZE="1"]so hab jetzt alles genau nach der anleitung gemacht. ich hab keine log file vom backlight bekommen Combofix: ComboFix 08-08-15.04 - Tschen-Min 2008-08-16 13:05:30.1 - NTFSx86 Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.199 [GMT 2:00] Running from: D:\Instal files\ComboFix.exe * Created a new restore point WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !! . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . C:\Documents and Settings\name\Application Data\macromedia\Flash Player\#SharedObjects\6Y77UUNW\interclick.com C:\Documents and Settings\name\Application Data\macromedia\Flash Player\#SharedObjects\6Y77UUNW\interclick.com\ud.sol C:\Documents and Settings\name\Application Data\macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#interclick.com C:\Documents and Settings\name\Application Data\macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#interclick.com\settings.sol C:\Documents and Settings\name\Cookies\tschen-min@metacafe[2].txt C:\Program Files\Common Files\drivecleaner free C:\WINDOWS\regedit.com C:\WINDOWS\system32\cccdd.bak1 C:\WINDOWS\system32\cccdd.ini C:\WINDOWS\system32\taskmgr.com . ((((((((((((((((((((((((( Files Created from 2008-07-16 to 2008-08-16 ))))))))))))))))))))))))))))))) . 2008-08-16 09:28 . 2008-08-16 09:28 <DIR> d-------- C:\Program Files\Microsoft CAPICOM 2.1.0.2 2008-08-16 09:22 . 2008-08-16 09:22 <DIR> d-------- C:\Program Files\MSXML 4.0 2008-08-16 08:04 . 2008-08-16 08:04 <DIR> d-------- C:\Program Files\SUPERAntiSpyware 2008-08-16 08:04 . 2008-08-16 08:04 <DIR> d-------- C:\Documents and Settings\name\Application Data\SUPERAntiSpyware.com 2008-08-16 08:04 . 2008-08-16 08:04 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com 2008-08-16 07:46 . 2008-06-13 15:10 272,128 --------- C:\WINDOWS\system32\drivers\bthport.sys 2008-08-16 07:46 . 2008-06-13 15:10 272,128 -----c--- C:\WINDOWS\system32\dllcache\bthport.sys 2008-08-16 07:39 . 2007-07-30 19:19 271,224 --a------ C:\WINDOWS\system32\mucltui.dll 2008-08-16 07:39 . 2007-07-30 19:19 207,736 --a------ C:\WINDOWS\system32\muweb.dll 2008-08-16 07:39 . 2007-07-30 19:19 30,072 --a------ C:\WINDOWS\system32\mucltui.dll.mui 2008-08-16 07:26 . 2008-08-16 07:26 <DIR> d-------- C:\Program Files\Secunia 2008-08-15 16:12 . 2008-08-15 16:12 <DIR> d-------- C:\Program Files\Trend Micro 2008-08-14 21:49 . 2008-08-14 21:49 126,976 --a------ C:\WINDOWS\War3Unin.exe 2008-08-14 21:49 . 2008-08-14 21:52 17,932 --a------ C:\WINDOWS\War3Unin.dat 2008-08-14 21:49 . 2008-08-14 21:49 2,829 --a------ C:\WINDOWS\War3Unin.pif 2008-08-14 21:46 . 2008-08-14 22:13 <DIR> d-------- C:\Program Files\Warcraft III 2008-08-09 15:24 . 2008-08-10 13:10 2,318,976 --a------ C:\WINDOWS\system32\TUKernel.exe 2008-08-08 15:14 . 2008-08-16 09:18 <DIR> d-------- C:\Program Files\AV9 2008-07-29 22:27 . 2008-07-29 22:59 <DIR> d-------- C:\Program Files\Cheat Engine . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2008-08-16 10:59 --------- d-----w C:\Program Files\Common Files\Akamai 2008-08-16 10:58 0 ----a-w C:\WINDOWS\system32\drivers\lvuvc.hs 2008-08-16 07:31 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Help 2008-08-16 06:03 --------- d-----w C:\Program Files\Common Files\Wise Installation Wizard 2008-08-08 15:23 --------- d-----w C:\Documents and Settings\name\Application Data\Metacafe 2008-08-08 10:45 --------- d-----w C:\Program Files\Metin2_Germany 2008-07-07 20:32 253,952 ----a-w C:\WINDOWS\system32\es.dll 2008-07-07 18:22 --------- d-----w C:\Program Files\QIP 2008-07-07 18:20 --------- d--h--w C:\Program Files\InstallShield Installation Information 2008-06-26 12:35 --------- d-----w C:\Program Files\iTunes 2008-06-26 12:34 --------- d-----w C:\Program Files\iPod 2008-06-26 12:33 --------- d-----w C:\Program Files\QuickTime 2008-06-26 12:32 --------- d-----w C:\Program Files\Common Files\Apple 2008-06-26 12:32 --------- d-----w C:\Program Files\Apple Software Update 2008-06-26 12:32 --------- d-----w C:\Documents and Settings\All Users\Application Data\Apple 2008-06-26 07:23 --------- d-----w C:\Documents and Settings\name\Application Data\GRETECH 2008-06-26 07:12 --------- d-----w C:\Program Files\GRETECH 2008-06-24 16:23 74,240 ----a-w C:\WINDOWS\system32\mscms.dll 2008-06-23 16:57 826,368 ----a-w C:\WINDOWS\system32\wininet.dll 2008-06-21 20:55 10,363,638 ----a-w C:\Program Files\cell_shaded_players_and_weapons.rar 2008-06-21 20:55 --------- d-----w C:\Program Files\cell_shaded_players_and_weapons 2008-06-20 17:36 245,248 ----a-w C:\WINDOWS\system32\mswsock.dll 2008-06-20 10:44 360,960 ----a-w C:\WINDOWS\system32\drivers\tcpip.sys 2008-06-20 10:44 138,368 ----a-w C:\WINDOWS\system32\drivers\afd.sys 2008-06-20 09:32 225,920 ----a-w C:\WINDOWS\system32\drivers\tcpip6.sys 2008-06-19 14:37 --------- d-----w C:\Program Files\Metacafe 2008-06-16 08:31 7,808 ----a-w C:\WINDOWS\system32\drivers\psi_mf.sys 2008-05-30 23:22 823,296 ----a-w C:\WINDOWS\system32\divx_xx0c.dll 2008-05-30 23:22 823,296 ----a-w C:\WINDOWS\system32\divx_xx07.dll 2008-05-30 23:22 815,104 ----a-w C:\WINDOWS\system32\divx_xx0a.dll 2008-05-30 23:22 802,816 ----a-w C:\WINDOWS\system32\divx_xx11.dll 2008-05-30 23:22 683,520 ----a-w C:\WINDOWS\system32\DivX.dll 2008-05-30 23:22 593,920 ----a-w C:\WINDOWS\system32\dpuGUI11.dll 2008-05-30 23:22 57,344 ----a-w C:\WINDOWS\system32\dpv11.dll 2008-05-30 23:22 53,248 ----a-w C:\WINDOWS\system32\dpuGUI10.dll 2008-05-30 23:22 344,064 ----a-w C:\WINDOWS\system32\dpus11.dll 2008-05-30 23:22 294,912 ----a-w C:\WINDOWS\system32\dpu11.dll 2008-05-30 23:22 294,912 ----a-w C:\WINDOWS\system32\dpu10.dll 2008-05-28 22:26 128,840 ----a-w C:\WINDOWS\system32\Metacafe.scr 2008-05-22 22:22 524,288 ----a-w C:\WINDOWS\system32\DivXsm.exe 2008-05-22 22:22 3,596,288 ----a-w C:\WINDOWS\system32\qt-dx331.dll 2008-05-22 22:20 200,704 ----a-w C:\WINDOWS\system32\ssldivx.dll 2008-05-22 22:20 1,044,480 ----a-w C:\WINDOWS\system32\libdivx.dll 2008-05-22 22:19 81,920 ----a-w C:\WINDOWS\system32\dpl100.dll 2008-05-22 22:19 196,608 ----a-w C:\WINDOWS\system32\dtu100.dll 2008-05-22 22:19 161,096 ----a-w C:\WINDOWS\system32\DivXCodecVersionChecker.exe 2008-05-22 22:18 12,288 ----a-w C:\WINDOWS\system32\DivXWMPExtType.dll 2008-02-01 13:49 32 ----a-w C:\Documents and Settings\All Users\Application Data\ezsid.dat 2007-09-15 12:53 176 ----a-w C:\Program Files\INSTALL.LOG 2006-09-17 16:09 67 ----a-w C:\Program Files\file_id.diz 2006-05-06 16:42 7,260,160 ----a-w C:\Program Files\mozilla firefox\plugins\libvlc.dll . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2005-06-14 14:00 15360] "SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2008-05-28 10:33 1506544] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "LogitechCameraService(E)"="C:\WINDOWS\system32\ElkCtrl.exe" [2004-11-01 18:22 262144] "ATIPTA"="C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2004-09-29 07:15 344064] "avgnt"="C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2008-07-28 15:10 266497] "QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2008-05-27 10:50 413696] "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-06-02 11:13 267048] "SoundMan"="SOUNDMAN.EXE" [2004-02-26 10:53 65024 C:\WINDOWS\SOUNDMAN.EXE] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2005-06-14 14:00 15360] C:\Documents and Settings\name\Start Menu\Programs\Startup\ Secunia PSI (RC3).lnk - C:\Program Files\Secunia\PSI (RC3)\psi.exe [2008-06-16 11:03:08 663552] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\SetPoint.exe [2007-05-28 18:11:12 450560] VIA RAID TOOL.lnk - C:\Program Files\VIA\RAID\raid_tool.exe [2007-05-28 17:53:14 565248] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer] "AllowLegacyWebView"= 1 (0x1) "AllowUnhashedWebView"= 1 (0x1) [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer] "ForceClassicControlPanel"= 1 (0x1) "NoChangeKeyboardNavigationIndicators"= 0 (0x0) "NoSMConfigurePrograms"= 1 (0x1) [hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks] "{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "C:\Program Files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 10:13 77824] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon] 2007-04-19 13:41 294912 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "msacm.divxa32"= msaud32_divx.acm [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk] path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk backup=C:\WINDOWS\pss\Adobe Reader Speed Launch.lnkCommon Startup [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^AutoStart IR.lnk] path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\AutoStart IR.lnk backup=C:\WINDOWS\pss\AutoStart IR.lnkCommon Startup [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^BlueSoleil.lnk] path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\BlueSoleil.lnk backup=C:\WINDOWS\pss\BlueSoleil.lnkCommon Startup [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^InterVideo WinCinema Manager.lnk] path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\InterVideo WinCinema Manager.lnk backup=C:\WINDOWS\pss\InterVideo WinCinema Manager.lnkCommon Startup [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Metacafe.lnk] path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Metacafe.lnk backup=C:\WINDOWS\pss\Metacafe.lnkCommon Startup [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^PowerMenu.lnk] path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\PowerMenu.lnk backup=C:\WINDOWS\pss\PowerMenu.lnkCommon Startup [HKLM\~\startupfolder\C:^Documents and Settings^Tschen-Min^Start Menu^Programs^Startup^Adobe Gamma.lnk] path=C:\Documents and Settings\Tschen-Min\Start Menu\Programs\Startup\Adobe Gamma.lnk backup=C:\WINDOWS\pss\Adobe Gamma.lnkStartup [HKLM\~\startupfolder\C:^Documents and Settings^Tschen-Min^Start Menu^Programs^Startup^Metacafe.lnk] path=C:\Documents and Settings\Tschen-Min\Start Menu\Programs\Startup\Metacafe.lnk backup=C:\WINDOWS\pss\Metacafe.lnkStartup [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher] --a------ 2007-05-11 03:06 40048 C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] --a------ 2006-02-01 16:45 98304 C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools] --a------ 2007-09-18 16:16 171464 C:\Program Files\DAEMON Tools\daemon.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor] --a------ 2006-10-27 00:47 31016 C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper] --a------ 2008-06-02 11:13 267048 C:\Program Files\iTunes\iTunesHelper.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechCameraAssistant] --a------ 2005-09-07 06:33 434176 C:\Program Files\Logitech\Video\CameraAssistant.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechSoftwareUpdate] --a------ 2005-01-18 17:07 196608 C:\Program Files\Logitech\Video\ManifestEngine.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechVideo[inspector]] --a------ 2005-09-07 06:39 73728 C:\Program Files\Logitech\Video\InstallHelper.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LVCOMSX] --a------ 2005-09-01 13:04 221184 C:\WINDOWS\system32\LVCOMSX.EXE [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck] --a------ 2006-01-12 15:40 155648 C:\WINDOWS\system32\NeroCheck.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002A] --a------ 2005-06-14 14:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002ASync] --a------ 2005-06-14 14:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] --a------ 2008-05-27 10:50 413696 C:\Program Files\QuickTime\QTTask.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC] --a------ 2006-11-10 12:35 90112 C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe] --a------ 2007-06-26 17:39 185896 C:\Program Files\Common Files\Real\Update_OB\realsched.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Logitech Hardware Abstraction Layer] --a------ 2005-05-20 14:46 28160 C:\WINDOWS\KHALMNPR.Exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Logitech Utility] --------- 2003-12-11 11:50 20992 C:\WINDOWS\LOGI_MWX.EXE [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services] "AVG Anti-Spyware Guard"=2 (0x2) "wuauserv"=2 (0x2) "ose"=3 (0x3) "odserv"=3 (0x3) "Microsoft Office Groove Audit Service"=3 (0x3) "LVPrcSrv"=2 (0x2) "iPod Service"=3 (0x3) "gusvc"=2 (0x2) "BlueSoleil Hid Service"=2 (0x2) "AntiVirService"=2 (0x2) "AntiVirScheduler"=2 (0x2) "usnjsvc"=3 (0x3) "UleadBurningHelper"=2 (0x2) [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-] "29771875692906750029808563740813"=C:\Program Files\AV9\av2009.exe [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-] "IMJPMIG8.1"="C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "C:\\Program Files\\ICQ6\\ICQ.exe"= "C:\\Program Files\\IVT Corporation\\BlueSoleil\\BlueSoleil.exe"= "C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"= "C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"= "C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "C:\\Program Files\\Microsoft Games\\Age of Empires II\\EMPIRES2.EXE"= "C:\\Program Files\\Skype\\Phone\\Skype.exe"= "C:\\WINDOWS\\system32\\dplaysvr.exe"= "C:\\Program Files\\Microsoft Games\\Age of Empires II\\EMPIRES2.ICD"= "C:\\Program Files\\Valve\\hl.exe"= "C:\\Program Files\\iTunes\\iTunes.exe"= "C:\\Program Files\\Opera\\Opera.exe"= "C:\\Program Files\\Metin2_Germany\\metin2.bin"= "C:\\Program Files\\Warcraft III\\Warcraft III.exe"= "C:\\Program Files\\Warcraft III\\War3.exe"= [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] "9420:TCP"= 9420:TCP:Red Swoosh "5000:UDP"= 5000:UDP:Red Swoosh R0 viasraid;viasraid;C:\WINDOWS\system32\DRIVERS\viasraid.sys [2003-10-31 05:22] R2 Akamai;Akamai;C:\WINDOWS\System32\svchost.exe [2005-06-14 14:00] R2 UxTuneUp;TuneUp Theme Extension;C:\WINDOWS\System32\svchost.exe [2005-06-14 14:00] R3 PSI;PSI;C:\WINDOWS\system32\DRIVERS\psi_mf.sys [2008-06-16 10:31] S3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe [2005-11-17 16:18] S3 LVPrcMon;Logitech LVPrcMon Driver;C:\WINDOWS\system32\drivers\LVPrcMon.sys [2005-09-01 13:11] S3 UPnPService;UPnPService;C:\Program Files\Common Files\MAGIX Shared\UPnPService\UPnPService.exe [2006-12-14 18:00] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] Akamai REG_MULTI_SZ Akamai HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs UxTuneUp *Newly Created Service* - CATCHME *Newly Created Service* - PROCEXP90 [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{5683A0A9-36E3-A6E1-C5AE-0DD855D1F56C}] C:\WINDOWS\system32\Bifrost\explorer.exe s . Contents of the 'Scheduled Tasks' folder 2008-08-08 C:\WINDOWS\Tasks\1-Klick-Wartung.job - C:\Program Files\TuneUp Utilities 2007\SystemOptimizer.exe [2007-04-26 20:08] 2008-07-31 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job - C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2007-08-29 14:57] . - - - - ORPHANS REMOVED - - - - Notify-ddccc - C:\WINDOWS\system32\ddccc.dll Notify-fccdaxy - fccdaxy.dll MSConfigStartUp-avgnt - C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe MSConfigStartUp-MsnMsgr - C:\Program Files\MSN Messenger\MsnMsgr.Exe MSConfigStartUp-PeerGuardian - C:\Program Files\PeerGuardian2\pg2.exe MSConfigStartUp-PowerStrip - c:\program files\powerstrip\pstrip.exe MSConfigStartUp-SpybotSD TeaTimer - C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe MSConfigStartUp-SunJavaUpdateSched - C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe . ------- Supplementary Scan ------- . FireFox -: Profile - C:\Documents and Settings\name\Application Data\Mozilla\Firefox\Profiles\s9f2x19i.default\ FireFox -: prefs.js - STARTUP.HOMEPAGE - hxxp://start.icq-tools.de ************************************************************************** catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-08-16 13:09:45 Windows 5.1.2600 Service Pack 2 NTFS scanning hidden processes ... scanning hidden autostart entries ... scanning hidden files ... C:\sccfg.sys 20 bytes scan completed successfully hidden files: 1 ************************************************************************** [HKEY_LOCAL_MACHINE\system\ControlSet001\Services\Akamai] "ServiceDll"="C:/Program Files/Common Files/Akamai/rswin_3333.dll" [HKEY_LOCAL_MACHINE\system\ControlSet001\Services\Akamai] "ServiceDll"="C:/Program Files/Common Files/Akamai/rswin_3333.dll" . Completion time: 2008-08-16 13:12:39 ComboFix-quarantined-files.txt 2008-08-16 11:12:20 Pre-Run: 29,580,939,264 bytes free Post-Run: 34,339,856,384 bytes free 283 --- E O F --- 2008-08-16 07:31:21 |
Themen zu internet problem |
adobe, antivir, auswerten, avira, bho, browser, dsl, explorer, frage, helfen, hijack, hijackthis, hkus\s-1-5-18, internet, internet explorer, internet problem, magix, malware, object, pdf, problem, senden, server, software, spyware, system, windows, windows xp |