![]() |
Wäre über eure Hilfe zur Log-Datei sehr dankbar. Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Programme\AVPersonal\AVGUARD.EXE C:\Programme\AVPersonal\AVWUPSRV.EXE C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\drivers\KodakCCS.exe C:\WINDOWS\System32\ScsiAccess.EXE C:\WINDOWS\System32\svchost.exe C:\WINDOWS\SCARDS32.EXE C:\Programme\Motherboard Monitor 5\MBM5.EXE C:\Programme\AVPersonal\AVGNT.EXE C:\Programme\MSN Messenger\msnmsgr.exe C:\Programme\CK Software\CK PopUp Killer Pro\pkillpro.exe C:\Dokumente und Einstellungen\Martin\Lokale Einstellungen\Temp\Temporäres Verzeichnis 3 für HijackThis.zip\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.hugesearch.net/bar.html R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.hugesearch.net R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.hugesearch.net R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.hugesearch.net/bar.html R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = hxxp://www.hugesearch.net/bar.html R1 - HKCU\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = hxxp://www.hugesearch.net/bar.html R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.hugesearch.net R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.hugesearch.net/bar.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.hugesearch.net/bar.html R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = hxxp://www.hugesearch.net/bar.html R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = hxxp://www.hugesearch.net/bar.html R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R3 - Default URLSearchHook is missing O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {49E0E0F0-5C30-11D4-945D-000000000000} - C:\WINDOWS\system32\ckHelper.dll O2 - BHO: (no name) - {89AEAB46-8E8A-4045-9003-5614BFBFE90B} - C:\WINDOWS\System32\winlocatorhelper.dll O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programme\google\googletoolbar1.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programme\google\googletoolbar1.dll O3 - Toolbar: (no name) - {46AE04C0-BCFA-4728-90E7-00EB4A8B3863} - (no file) O4 - HKLM\..\Run: [VOBRegCheck] C:\WINDOWS\System32\VOBREGCheck.exe -CheckReg O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [MBM 5] "C:\Programme\Motherboard Monitor 5\MBM5.EXE" O4 - HKLM\..\Run: [websx] C:\Programme\websx\int151133.exe -auto O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [Truefonts] C:\WINDOWS\Fonts\fonts.hta O4 - HKLM\..\Run: [AVGCtrl] C:\Programme\AVPersonal\AVGNT.EXE /min O4 - HKCU\..\Run: [CK POPUP KILLER] C:\Programme\CK Software\CK Popup Killer\PKILL.EXE -hide O4 - HKCU\..\Run: [msnmsgr] "C:\Programme\MSN Messenger\msnmsgr.exe" /background O4 - Startup: PopUp Killer Pro.lnk = C:\Programme\CK Software\CK PopUp Killer Pro\pkillpro.exe O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft Office\Office\OSA9.EXE O8 - Extra context menu item: &Google Search - res://C:\Programme\Google\GoogleToolbar1.dll/cmsearch.html O8 - Extra context menu item: Backward &Links - res://C:\Programme\Google\GoogleToolbar1.dll/cmbacklinks.html O8 - Extra context menu item: Cac&hed Snapshot of Page - res://C:\Programme\Google\GoogleToolbar1.dll/cmcache.html O8 - Extra context menu item: Si&milar Pages - res://C:\Programme\Google\GoogleToolbar1.dll/cmsimilar.html O9 - Extra button: Preispiraten 2.01b (HKLM) O9 - Extra button: Messenger (HKLM) O9 - Extra 'Tools' menuitem: Messenger (HKLM) O16 - DPF: {093F9CF8-0DE1-491C-95D5-5EC257BD4CA3} - hxxp://akamai.downloadv3.com/binaries/IA/dtc32_EN_XP.cab O16 - DPF: {121AC498-3F3A-4C39-9BEA-CFC4EA809FDF} (XlocatorInstall.Install) - hxxp://www.xlocator.com/download/xlocatorlight.CAB O16 - DPF: {486E48B5-ABF2-42BB-A327-2679DF3FB822} - hxxp://akamai.downloadv3.com/binaries/IA/ia_XP.cab O16 - DPF: {7DBFDA8E-D33B-11D4-9269-00600868E56E} (WWWInstall Class) - hxxp://go.securelive.com/speed/uk/WebInstall.dll O16 - DPF: {94742E3F-D9A1-4780-9A87-2FFA43655DA2} - hxxp://akamai.downloadv3.com/binaries/DialHTML/EGDHTML_pack_XP.cab O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - hxxp://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?37892.3905208333 O16 - DPF: {CEFB7B49-9652-464F-8AFD-A577C0500F39} (EGP2ECOM Class) - hxxp://akamai.downloadv3.com/binaries/P2EClient/EGAUTH_1004a_pack_XP.cab O16 - DPF: {CF5F84EB-D3FC-4F98-BE3B-F5B56B962CED} - hxxp://akamai.downloadv3.com/binaries/DialHTML/EGCOMLIB_1031_XP.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{E0D5045F-FA70-42CF-9F3A-2637B89804BF}: NameServer = 192.168.111.221 |
Hi, --> Ad-aware, spybot und cwshredder installieren, updaten, scannen und bereinigen lassen Falls es dann noch probleme gibt, neues log hier posten Details/Links: Forensuche ;) |
Links => meine Sig |
Alle Zeitangaben in WEZ +1. Es ist jetzt 06:12 Uhr. |
Copyright ©2000-2025, Trojaner-Board