hallo!..hab alles so weit es möglich war, abgearbeitet - hier das resultat!
und hier die auswertung der letzten 30 tage!Code:Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 23:21:38, on 30.10.2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16544) Boot mode: Normal Running processes: C:\WINDOWS.1\System32\smss.exe C:\WINDOWS.1\system32\winlogon.exe C:\WINDOWS.1\system32\services.exe C:\WINDOWS.1\system32\lsass.exe C:\WINDOWS.1\system32\svchost.exe C:\WINDOWS.1\System32\svchost.exe C:\WINDOWS.1\system32\userinit.exe C:\WINDOWS.1\system32\LEXBCES.EXE C:\WINDOWS.1\Explorer.EXE C:\WINDOWS.1\system32\spoolsv.exe C:\WINDOWS.1\system32\LEXPPS.EXE C:\Programme\Gemeinsame Dateien\LogiShrd\LVMVFM\LVPrcSrv.exe C:\Programme\Gemeinsame Dateien\LogiShrd\LVCOMSER\LVComSer.exe C:\WINDOWS.1\system32\svchost.exe C:\Programme\Synaptics\SynTP\SynTPLpr.exe C:\Programme\Synaptics\SynTP\SynTPEnh.exe C:\WINDOWS.1\SOUNDMAN.EXE C:\Programme\Logitech\QuickCam\Quickcam.exe C:\Programme\Gemeinsame Dateien\LogiShrd\LComMgr\Communications_Helper.exe C:\Programme\iTunes\iTunesHelper.exe C:\WINDOWS.1\system32\igfxtray.exe C:\WINDOWS.1\system32\hkcmd.exe C:\Programme\Adobe\Reader 8.0\Reader\Reader_sl.exe C:\Programme\Java\jre1.6.0_03\bin\jusched.exe C:\WINDOWS.1\system32\ctfmon.exe C:\Programme\Trend Micro\HijackThis\HijackThis.exe C:\Programme\iPod\bin\iPodService.exe C:\Programme\Gemeinsame Dateien\LogiShrd\LVCOMSER\LVComSer.exe C:\Programme\Gemeinsame Dateien\Logishrd\LQCVFX\COCIManager.exe C:\WINDOWS.1\system32\WgaTray.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.at/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.gmx.net/home R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.gmx.net/home O2 - BHO: Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Programme\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O4 - HKLM\..\Run: [SynTPLpr] C:\Programme\Synaptics\SynTP\SynTPLpr.exe O4 - HKLM\..\Run: [SynTPEnh] C:\Programme\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Programme\Logitech\QuickCam\Quickcam.exe" /hide O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Programme\Gemeinsame Dateien\LogiShrd\LComMgr\Communications_Helper.exe" O4 - HKLM\..\Run: [iTunesHelper] "C:\Programme\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS.1\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS.1\system32\hkcmd.exe O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programme\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programme\Java\jre1.6.0_03\bin\jusched.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS.1\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS.1\system32\CTFMON.EXE (User '?') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS.1\system32\CTFMON.EXE (User '?') O4 - HKUS\S-1-5-21-1957994488-1343024091-1586320179-1004\..\Run: [CTFMON.EXE] C:\WINDOWS.1\system32\ctfmon.exe (User '?') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS.1\system32\CTFMON.EXE (User '?') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS.1\system32\CTFMON.EXE (User 'Default user') O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll O9 - Extra button: Statistik für Web-Anti-Virus - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Programme\Kaspersky Lab\Kaspersky Internet Security 6.0\scieplugin.dll O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Programme\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS.1\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS.1\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\GEMEIN~1\Skype\SKYPE4~1.DLL O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1.0\adialhk.dll O23 - Service: GMX Browser Update (AdminSVC) - hablamax - C:\Dokumente und Einstellungen\All Users.WINDOWS.1\Anwendungsdaten\GMX\adminsvc.exe O23 - Service: Kaspersky Internet Security 6.0 (AVP) - Kaspersky Lab - C:\Programme\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe O23 - Service: iPod-Dienst (iPod Service) - Apple Inc. - C:\Programme\iPod\bin\iPodService.exe O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS.1\system32\LEXBCES.EXE O23 - Service: LVCOMSer - Logitech Inc. - C:\Programme\Gemeinsame Dateien\LogiShrd\LVCOMSER\LVComSer.exe O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Programme\Gemeinsame Dateien\LogiShrd\LVMVFM\LVPrcSrv.exe O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Programme\Gemeinsame Dateien\LogiShrd\SrvLnch\SrvLnch.exe -- End of file - 6112 bytes
Verzeichnis von C:\
30.10.2007 17:31 390.070.272 pagefile.sys
30.10.2007 11:23 426 boot.ini
Verzeichnis von C:\WINDOWS.1\system32
30.10.2007 22:57 5.686 jupdate-1.6.0_03-b05.log
30.10.2007 17:31 2.206 wpa.dbl
Verzeichnis von C:\WINDOWS.1\Prefetch
30.10.2007 23:07 13.062 FIND.EXE-2B160A6C.pf
30.10.2007 23:07 12.976 CMD.EXE-27F9CD97.pf
30.10.2007 23:07 28.704 WINZIP32.EXE-335422C1.pf
30.10.2007 23:04 73.234 VMCONNECT.EXE-21C81920.pf
30.10.2007 23:04 32.254 WLLOGINPROXY.EXE-33926225.pf
30.10.2007 23:04 108.546 IEXPLORE.EXE-2CA9778D.pf
30.10.2007 23:03 108.940 RSTRUI.EXE-0D7D16AD.pf
30.10.2007 23:01 21.262 CONTROL.EXE-1CC8C585.pf
30.10.2007 23:01 26.884 RUNDLL32.EXE-38050B05.pf
30.10.2007 22:59 33.092 HELPHOST.EXE-0C3267E1.pf
30.10.2007 22:59 34.558 HELPSVC.EXE-17EEC437.pf
30.10.2007 22:59 76.166 HELPCTR.EXE-2B9AB6E3.pf
30.10.2007 22:57 39.240 JAVAW.EXE-2826389B.pf
30.10.2007 22:56 31.510 PATCHJRE.EXE-203CCF34.pf
30.10.2007 22:56 9.504 JAVA.EXE-0967259C.pf
30.10.2007 22:56 13.968 LAUNCHER.EXE-1ACDCBCD.pf
30.10.2007 22:56 10.344 UNPACK200.EXE-09A3E822.pf
30.10.2007 22:55 100.044 ZIPPER.EXE-0236362E.pf
30.10.2007 22:55 31.526 MSIEXEC.EXE-3B395A0A.pf
30.10.2007 22:54 36.410 RUNDLL32.EXE-46895AB5.pf
30.10.2007 22:52 24.054 VERCLSID.EXE-02C1DBD0.pf
30.10.2007 22:46 57.146 JINSTALL.EXE-1C6ECA00.pf
30.10.2007 22:34 76.566 MSIMN.EXE-0B61806C.pf
30.10.2007 21:58 34.346 USNSVC.EXE-1D8C2356.pf
30.10.2007 21:58 71.536 MSNMSGR.EXE-091111D0.pf
30.10.2007 21:55 28.500 LOGONUI.EXE-28F8AE91.pf
30.10.2007 21:55 8.202 LOGON.SCR-090E29A0.pf
30.10.2007 17:39 95.834 AVP.EXE-19E58FCA.pf
30.10.2007 17:39 11.752 WSCNTFY.EXE-02E18F4F.pf
30.10.2007 17:33 14.442 LOGITECHUPDATE.EXE-33CE3F21.pf
30.10.2007 17:33 19.144 LULNCHR.EXE-0048470A.pf
30.10.2007 17:32 28.254 WUAUCLT.EXE-1B940938.pf
30.10.2007 17:32 695.830 NTOSBOOT-B00DFAAD.pf
30.10.2007 14:04 66.434 ACRORD32.EXE-153330F0.pf
30.10.2007 14:04 10.584 QTTASK.EXE-2D7EEF34.pf
30.10.2007 13:48 26.584 JAVAWS.EXE-057EEA83.pf
30.10.2007 13:48 86.552 JAVAW.EXE-05E52ECB.pf
30.10.2007 13:46 64.416 RUNDLL32.EXE-44DACAB9.pf
30.10.2007 13:46 8.874 JAVACPL.EXE-2944BE46.pf
30.10.2007 13:46 18.346 RUNDLL32.EXE-522B5E34.pf
30.10.2007 13:45 54.230 DFRGNTFS.EXE-1290317A.pf
30.10.2007 13:45 34.642 MMC.EXE-5D1AA8A1.pf
30.10.2007 12:36 36.216 RUNDLL32.EXE-29642046.pf
30.10.2007 12:33 16.046 RUNDLL32.EXE-3A920828.pf
30.10.2007 12:03 16.414 NOTEPAD.EXE-3760950F.pf
30.10.2007 12:03 30.616 WMIPRVSE.EXE-32EBE33F.pf
30.10.2007 12:03 52.196 HIJACKTHIS.EXE-39024128.pf
30.10.2007 11:49 17.712 HJTINSTALL[1].EXE-19A22F1F.pf
30.10.2007 11:22 26.288 MSCONFIG.EXE-1D9A1B38.pf
30.10.2007 11:11 14.926 IPODSERVICE.EXE-233792DA.pf
30.10.2007 11:11 20.570 ALG.EXE-03EDCA11.pf
30.10.2007 10:46 35.918 CCLEANER.EXE-065E2F3F.pf
30.10.2007 10:44 26.164 RUNDLL32.EXE-487E3797.pf
30.10.2007 10:41 36.856 WGATRAY.EXE-2CDA1127.pf
30.10.2007 09:36 15.650 AU_.EXE-0E239088.pf
30.10.2007 09:36 17.456 UNINSTALL.EXE-18A1CB21.pf
30.10.2007 09:16 42.714 DRWTSN32.EXE-17454A1A.pf
30.10.2007 09:16 28.534 COCIMANAGER.EXE-2D6000D8.pf
30.10.2007 09:16 49.446 DWWIN.EXE-109775C5.pf
30.10.2007 09:11 18.080 TASKMGR.EXE-397BE2EC.pf
29.10.2007 19:19 15.188 LXBZJSWX.EXE-2E1ED290.pf
29.10.2007 19:19 19.984 LXBZPSWX.EXE-04A637DC.pf
29.10.2007 18:52 19.040 ABIWORD.EXE-3B3D6772.pf
28.10.2007 19:06 18.180 DEFRAG.EXE-1E2848FC.pf
28.10.2007 19:06 366.894 Layout.ini
28.10.2007 18:07 10.842 JAVA.EXE-2851EA55.pf
28.10.2007 18:05 25.684 WMIADAP.EXE-0F8A35CE.pf
27.10.2007 19:21 35.418 DUMPREP.EXE-02BF8C39.pf
27.10.2007 18:59 55.884 JAVAW.EXE-1199259C.pf
27.10.2007 18:58 40.640 PATCHJRE.EXE-2EDE3FF5.pf
27.10.2007 18:58 37.194 UNPACK200.EXE-061785BD.pf
27.10.2007 18:58 10.510 LAUNCHER.EXE-0C2C5B0C.pf
27.10.2007 18:57 86.354 ZIPPER.EXE-131F2B64.pf
27.10.2007 14:17 40.936 ADOBEUPDATER.EXE-370FC314.pf
27.10.2007 14:16 60.078 ACRORD32INFO.EXE-19D979CC.pf
26.10.2007 10:33 49.748 RUNDLL32.EXE-25CD8DC3.pf
23.10.2007 19:25 20.600 IMAPI.EXE-001990A6.pf
23.10.2007 19:25 15.428 RUNDLL32.EXE-5925CB52.pf
23.10.2007 19:25 16.004 START.EXE-2629DD07.pf
23.10.2007 18:46 66.516 SKYPE.EXE-21F19BC8.pf
23.10.2007 18:22 19.366 VIDEOEFFECTSPERFMON.EXE-1F7917BD.pf
23.10.2007 18:09 31.250 ATWIZARD.EXE-19A3C280.pf
23.10.2007 18:06 30.114 COMMUNICATIONS_HELPER.EXE-25B96193.pf
23.10.2007 18:06 61.074 QUICKCAM.EXE-07B0F701.pf
23.10.2007 18:05 13.724 SRVLNCH.EXE-03DD77F8.pf
23.10.2007 18:05 39.362 FLTRINST.EXE-25E61D3D.pf
23.10.2007 18:05 13.906 WUAPP32.EXE-2C5A2FE0.pf
23.10.2007 18:05 16.946 REGEDIT.EXE-18C8CFE7.pf
23.10.2007 18:05 14.926 REGSVR32.EXE-133A9B2A.pf
23.10.2007 18:05 55.126 MODELFILEHANDLER.EXE-0A41CEA5.pf
23.10.2007 18:04 12.234 MSI7E.TMP-1A9A199E.pf
23.10.2007 18:04 12.282 MSI73.TMP-23FF6A44.pf
23.10.2007 18:03 36.158 SETUP.EXE-15BD5719.pf
23.10.2007 18:03 24.574 SETUP.EXE-392D53F4.pf
23.10.2007 18:02 55.130 QC1110.EXE-2E88391B.pf
23.10.2007 18:01 36.450 MMC.EXE-5FD8F0C6.pf
23.10.2007 18:01 35.780 RUNDLL32.EXE-3A11DBA9.pf
23.10.2007 18:00 71.794 SKYPEPM.EXE-03F1BFBD.pf
22.10.2007 17:51 17.076 SNDVOL32.EXE-176C51E2.pf
22.10.2007 17:28 14.760 SETUP.EXE-09F2FA46.pf
20.10.2007 19:38 23.110 RUNONCE.EXE-09FD6D5D.pf
20.10.2007 18:46 50.120 RUNDLL32.EXE-5F03DA77.pf
Verzeichnis von C:\WINDOWS.1
30.10.2007 23:06 7.666 ModemLog_HUAWEI Mobile Connect - 3G Modem.txt
30.10.2007 19:50 1.691.627 WindowsUpdate.log
30.10.2007 17:31 0 0.log
30.10.2007 17:31 159 wiadebug.log
30.10.2007 17:31 50 wiaservc.log
30.10.2007 17:31 2.048 bootstat.dat
30.10.2007 14:56 32.626 SchedLgU.Txt
30.10.2007 12:35 1.151 setupapi.log
30.10.2007 11:23 477 win.ini
30.10.2007 11:23 227 system.ini
29.10.2007 19:19 312 LEXSTAT.INI
22.09.2007 09:43 30 iedit.INI
Verzeichnis von C:\WINDOWS.1\tasks
30.10.2007 17:31 6 SA.DAT
Verzeichnis von C:\WINDOWS.1\temp
30.10.2007 23:07 8.192 cch~10d7b52571.htp
30.10.2007 23:07 8.192 cch~10d7b4c637.htp
30.10.2007 23:07 8.192 cch~10d4e9ea34.htp
30.10.2007 23:07 8.192 cch~10d4e9f014.htp
30.10.2007 23:06 8.192 cch~10ce6d9d01.htp
30.10.2007 23:06 8.192 cch~10ce6da303.htp
30.10.2007 23:06 8.192 cch~10ce6c547c.htp
30.10.2007 23:06 8.192 cch~10ce6c5ae0.htp
30.10.2007 23:06 8.192 cch~10ce6a4e8b.htp
30.10.2007 23:06 8.192 cch~10ce6a5469.htp
30.10.2007 23:06 8.192 cch~10cc612edc.htp
30.10.2007 23:06 8.192 cch~10cc612925.htp
30.10.2007 21:56 255 WGAErrLog.txt
30.10.2007 21:55 24.478 LVCOMSX.LOG
30.10.2007 17:31 409 WGANotify.settings
Verzeichnis von C:\DOKUME~1\Irene\LOKALE~1\Temp
30.10.2007 23:07 112.931 filelist.txt
30.10.2007 23:04 512 ~DF30F8.tmp
30.10.2007 23:04 16.384 ~DF30AC.tmp
30.10.2007 23:02 797.676 IMT71.xml
30.10.2007 23:02 426 IMT70.xml
30.10.2007 23:02 2.036 IMT6F.xml
30.10.2007 23:01 797.676 IMT6E.xml
30.10.2007 23:01 426 IMT6D.xml
30.10.2007 23:01 2.036 IMT6C.xml
30.10.2007 22:57 2.559 jusched.log
30.10.2007 22:57 3.373 java_install_reg.log
30.10.2007 22:55 0 java_install.log
30.10.2007 22:46 1.293 jinstall.cfg
30.10.2007 17:31 51.981 LVCOMSX.LOG
30.10.2007 17:31 974 callingapps.xml
30.10.2007 11:31 797.676 IMT15.xml
30.10.2007 11:31 426 IMT14.xml
30.10.2007 11:31 2.036 IMT13.xml
30.10.2007 11:31 797.676 IMT12.xml
30.10.2007 11:31 426 IMT11.xml
30.10.2007 11:31 2.036 IMT10.xml
30.10.2007 11:31 797.676 IMTF.xml
30.10.2007 11:31 426 IMTE.xml
30.10.2007 11:31 2.036 IMTD.xml
27.10.2007 18:57 135.168 3b3d35.mst
27.10.2007 18:57 59.392 3b3d34.mst
hoffe, ich habe alles richtig gemacht und ihr könnt mir helfen...
übrigens fährt der computer halbwegs problemlos hoch, wenn kaspersky aus ist...allerdings hat der früher nie probleme gemacht!
lg
ally


