Hallo Petra,
es freut mich, das Du dich nicht belästigt fühlst. Hier sind die Logs aus Punkt 2 (DSS) deiner Anleitung:
Code:
Deckard's System Scanner v20071014.68
Run by Ronald on 2008-06-26 09:58:43
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- System Restore --------------------------------------------------------------
Successfully created a Deckard's System Scanner Restore Point.
-- Last 5 Restore Point(s) --
29: 2008-06-26 07:58:48 UTC - RP37 - Deckard's System Scanner Restore Point
28: 2008-06-24 07:53:02 UTC - RP36 - Audials TV wird installiert
27: 2008-06-24 07:52:51 UTC - RP35 - Tagrunner wird installiert
26: 2008-06-24 07:51:15 UTC - RP34 - Videoraptor wird installiert
25: 2008-06-24 07:48:35 UTC - RP33 - Radiotracker wird installiert
-- First Restore Point --
1: 2008-06-13 19:59:11 UTC - RP9 - Installed PerfectDisk 2008 Professional.
Backed up registry hives.
Performed disk cleanup.
Total Physical Memory: 448 MiB (512 MiB recommended).
System Drive C: has 2.02 GiB (less than 15%) free.
-- HijackThis Clone ------------------------------------------------------------
Emulating logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2008-06-26 10:01:38
Platform: Windows XP Service Pack 3 (5.01.2600)
MSIE: Internet Explorer (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\system32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\explorer.exe
C:\Programme\ONSPEED\onspeedcore.exe
C:\Programme\Java\jre1.6.0_06\bin\jusched.exe
C:\Programme\AVPersonal\AVWUPSRV.EXE
C:\Programme\Gemeinsame Dateien\Marmiko Shared\MZCCntrl.exe
C:\Programme\Raxco\PerfectDisk2008\PD91Agent.exe
C:\WINDOWS\system32\slserv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\fxssvc.exe
C:\WINDOWS\system32\slrundll.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Programme\T-Online\T-Online_Software_6\Basis-Software\Basis2\kernel.exe
C:\Programme\T-Online\T-Online_Software_6\Basis-Software\Basis2\sc_watch.exe
C:\Programme\T-Online\T-Online_Software_6\Basis-Software\Basis2\profilemgr.exe
C:\Programme\T-Online\T-Online_Software_6\Notifier\Notifier.exe
C:\Dokumente und Einstellungen\Ronald.ATHLON\Desktop\dss.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
O2 - BHO: Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Videoraptor_WebRipPlugin Class - {3C0372C2-04C3-4100-BAB1-1D42C552BC48} - C:\Programme\RapidSolution\RS Audials One\VideoRaptor\plugins\IE\VR_WebRipIePlugin.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: NOW!Imaging - {9AA2F14F-E956-44B8-8694-A5B615CDF341} - C:\Programme\ONSPEED\components\NOWImaging.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Programme\Google\GoogleToolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programme\Google\GoogleToolbarNotifier\2.0.301.5672\swg.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Programme\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Programme\Google\GoogleToolbar1.dll
O3 - Toolbar: ONSPEED - {8B79EE88-E62D-4AA8-B530-CC357BA112B7} - C:\Programme\ONSPEED\Toolband.dll
O4 - HKLM\..\Run: [SlipStream] "C:\Programme\ONSPEED\onspeedcore.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programme\Java\jre1.6.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [SpybotSnD] "C:\Programme\Spybot - Search & Destroy\SpybotSD.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programme\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [InfoCockpit] C:\Programme\T-Online\T-Online_Software_6\Info-Cockpit\IC_START.EXE /nosplash (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [InfoCockpit] C:\Programme\T-Online\T-Online_Software_6\Info-Cockpit\IC_START.EXE /nosplash (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [InfoCockpit] C:\Programme\T-Online\T-Online_Software_6\Info-Cockpit\IC_START.EXE /nosplash (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\Run: [InfoCockpit] C:\Programme\T-Online\T-Online_Software_6\Info-Cockpit\IC_START.EXE /nosplash (User 'Default user')
O8 - Extra context menu item: Mit dem LeechGet Wizard laden - file://C:\Programme\LeechGet 2004\\Wizard.html
O8 - Extra context menu item: Mit LeechGet herunterladen - file://C:\Programme\LeechGet 2004\\AddUrl.html
O8 - Extra context menu item: Mit LeechGet parsen - file://C:\Programme\LeechGet 2004\\Parser.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: Europa Casino - {4C826F10-D34B-4ba8-B609-1FB8C6482A05} - C:\Casino\Europa Casino\casino.exe
O9 - Extra 'Tools' menuitem: Europa Casino - {4C826F10-D34B-4ba8-B609-1FB8C6482A05} - C:\Casino\Europa Casino\casino.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O15 - Trusted Zone: https://www.tradesignal.com (HKCU)
O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71} () - http://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1212784989935
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} () - http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O17 - HKLM\SYSTEM\CCS\Services\Tcpip\..\{44ECD8CD-598C-4E17-91A5-61F8F5A2A77C}: NameServer = 217.237.151.51 217.237.149.205
O20 - Winlogon Notify: !SASWinLogon - C:\WINDOWS\system32\
O23 - Service: AntiVir Update (AVWUpSrv) - H+BEDV Datentechnik GmbH, Germany - C:\Programme\AVPersonal\AVWUPSRV.EXE
O23 - Service: Google Updater Service (gusvc) - Google - C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Hotspot Manager (HotSpotFSvc) - T-Systems Enterprise Services GmbH - C:\Programme\Gemeinsame Dateien\T-COM\HotspotMgr\HotSpotFSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: T-Online WLAN Adapter Steuerungsdienst (MZCCntrl) - Deutsche Telekom AG, Marmiko IT-Solutions GmbH - C:\Programme\Gemeinsame Dateien\Marmiko Shared\MZCCntrl.exe
O23 - Service: PD91Agent - Raxco Software, Inc. - C:\Programme\Raxco\PerfectDisk2008\PD91Agent.exe
O23 - Service: PD91Engine - Raxco Software, Inc. - C:\Programme\Raxco\PerfectDisk2008\PD91Engine.exe
O23 - Service: SiSoftware Database Agent Service (SandraDataSrv) - SiSoftware - C:\Programme\SiSoftware\SiSoftware Sandra Lite XI.SP1\Win32\RpcDataSrv.exe
O23 - Service: SiSoftware Sandra Agent Service (SandraTheSrv) - SiSoftware - C:\Programme\SiSoftware\SiSoftware Sandra Lite XI.SP1\RpcSandraSrv.exe
O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\system32\slserv.exe
O23 - Service: T-DSL Manager (TDslMgrService) - T-Systems - C:\Programme\T-DSL Manager\DslMgrSvc.exe
--
End of file - 7940 bytes
-- File Associations -----------------------------------------------------------
.cpl - cplfile - shell\cplopen\command - rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.cpl - cplfile - shell\runas\command - rundll32.exe shell32.dll,Control_RunDLLAsUser "%1",%*
-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
R3 MTOnlPktAlyX (MTOnlPktAlyX NDIS Protocol Driver) - c:\programme\t-online\t-online_software_6\basis-software\basis1\mtonlpktalyx.sys <Not Verified; Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH; T-Online Dialer Module>
R3 TSMPacket (T-DSL Manager Service) - c:\windows\system32\drivers\tsmpkt.sys <Not Verified; T-Systems; T-DSL Manager>
S3 avgntdd - c:\programme\avpersonal\avgntdd.sys (file missing)
S3 MACNDIS5 (MACNDIS5 NDIS Protocol Driver) - c:\programme\gemeinsame dateien\marmiko shared\macndis5.sys <Not Verified; Marmiko IT-Solutions GmbH; Marmiko NDis Helper for Windows>
S3 MIINPazX (MIINPazX NDIS Protocol Driver) - c:\programme\gemeinsame dateien\marmiko shared\minfrais\miinpazx.sys <Not Verified; Deutsche Telekom AG, Marmiko IT-Solutions GmbH; Marmiko InfraIS Module>
S3 PCANDIS5 (PCANDIS5 Protocol Driver) - c:\programme\gemeinsame dateien\t-com\dslcheck\pcandis5.sys <Not Verified; Printing Communications Assoc., Inc. (PCAUSA); PCAUSA Rawether for Windows>
S3 PL2501NW (Hi-Speed USB-USB Network Adapter) - c:\windows\system32\drivers\pl2501nw.sys <Not Verified; Prolific Technology Inc. (www.prolific.com.tw); USB-USB Network Bridge>
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
R2 AVWUpSrv (AntiVir Update) - "c:\programme\avpersonal\avwupsrv.exe" <Not Verified; H+BEDV Datentechnik GmbH, Germany; AntiVir Update Service for Windows XP, 2000, NT>
R2 MZCCntrl (T-Online WLAN Adapter Steuerungsdienst) - c:\programme\gemeinsame dateien\marmiko shared\mzccntrl.exe <Not Verified; Deutsche Telekom AG, Marmiko IT-Solutions GmbH; T-Online WLAN Adapter Steuerung>
S3 HotSpotFSvc (Hotspot Manager) - "c:\programme\gemeinsame dateien\t-com\hotspotmgr\hotspotfsvc.exe" <Not Verified; T-Systems Enterprise Services GmbH; HotSpot Manager>
S3 SandraDataSrv (SiSoftware Database Agent Service) - c:\programme\sisoftware\sisoftware sandra lite xi.sp1\win32\rpcdatasrv.exe <Not Verified; SiSoftware; SiSoftware Sandra XI.SP1>
S3 TDslMgrService (T-DSL Manager) - "c:\programme\t-dsl manager\dslmgrsvc.exe" <Not Verified; T-Systems; T-DSL Manager>
-- Device Manager: Disabled ----------------------------------------------------
No disabled devices found.
-- Scheduled Tasks -------------------------------------------------------------
2008-06-13 17:16:06 398 --a----c- C:\WINDOWS\Tasks\1-Klick-Wartung.job
-- Files created between 2008-05-26 and 2008-06-26 -----------------------------
2008-06-26 09:11:24 0 d------c- C:\Casino
2008-06-24 09:45:08 0 d------c- C:\Programme\RapidSolution
2008-06-24 09:44:30 0 d------c- C:\Programme\PixiePack Codec Pack
2008-06-13 17:44:43 280 --a------ C:\WINDOWS\system32\PDBootState
2008-06-13 10:57:31 0 d------c- C:\Programme\Raxco
2008-06-10 08:28:29 0 d------c- C:\WINDOWS\Prefetch
2008-06-10 08:12:46 0 d------c- C:\WINDOWS\l2schemas
2008-06-10 08:12:45 0 d------c- C:\WINDOWS\system32\de
2008-06-10 08:12:45 0 d------c- C:\WINDOWS\system32\bits
2008-06-10 08:10:19 0 d------c- C:\WINDOWS\ServicePackFiles
2008-06-10 08:08:07 0 d------c- C:\WINDOWS\network diagnostic
2008-06-10 08:03:22 0 d------c- C:\WINDOWS\EHome
2008-06-09 19:22:40 0 d------c- C:\Programme\SUPERAntiSpyware
2008-06-07 00:23:33 0 d------c- C:\Programme\Trend Micro
2008-06-06 22:47:26 0 d------c- C:\WINDOWS\system32\PreInstall
2008-06-05 17:14:47 0 d------c- C:\Programme\Spyware Doctor
2008-06-05 16:41:20 0 d------c- C:\Programme\Windows Installer Clean Up
2008-06-05 16:41:02 0 d------c- C:\Programme\MSECACHE
-- Find3M Report ---------------------------------------------------------------
2008-06-26 09:56:34 0 d------c- C:\Dokumente und Einstellungen\Ronald.ATHLON\Anwendungsdaten\SlipStream
2008-06-25 08:14:26 0 d------c- C:\Programme\Lexmark X1100 Series
2008-06-24 11:41:38 0 d------c- C:\Dokumente und Einstellungen\Ronald.ATHLON\Anwendungsdaten\Tunebite
2008-06-24 10:16:15 0 d------c- C:\Programme\LeechGet 2004
2008-06-24 08:09:13 0 d------c- C:\Programme\CasinoOnNet
2008-06-24 06:59:34 0 d------c- C:\Dokumente und Einstellungen\Ronald.ATHLON\Anwendungsdaten\UseNeXT
2008-06-24 06:57:47 0 d------c- C:\Dokumente und Einstellungen\Ronald.ATHLON\Anwendungsdaten\SUPERAntiSpyware.com
2008-06-24 06:57:43 0 d------c- C:\Programme\Gemeinsame Dateien\Wise Installation Wizard
2008-06-24 06:52:32 411416 --a----c- C:\WINDOWS\system32\perfh007.dat
2008-06-24 06:52:32 73912 --a----c- C:\WINDOWS\system32\perfc007.dat
2008-06-24 06:50:53 0 d------c- C:\Programme\Java
2008-06-24 06:50:53 0 d--h---c- C:\Programme\InstallShield Installation Information
2008-06-23 13:35:26 0 d------c- C:\Programme\Mozilla1.7.6
2008-06-21 11:21:42 0 d------c- C:\Dokumente und Einstellungen\Ronald.ATHLON\Anwendungsdaten\Jägermeister RadioPlayer
2008-06-21 10:59:13 0 d------c- C:\Programme\CCleaner
2008-06-15 11:18:39 0 d------c- C:\Dokumente und Einstellungen\Ronald.ATHLON\Anwendungsdaten\Mozilla
2008-06-10 08:13:08 0 d------c- C:\Programme\Messenger
2008-06-10 08:12:44 0 d------c- C:\Programme\Movie Maker
2008-06-10 08:10:05 0 d------c- C:\Programme\Windows NT
2008-06-09 21:13:55 4212 ---h---c- C:\WINDOWS\system32\zllictbl.dat
2008-06-06 23:13:43 3335 --a----c- C:\Dokumente und Einstellungen\Ronald.ATHLON\Anwendungsdaten\QuickZip45.ini
2008-05-21 13:55:49 0 d------c- C:\Programme\TuneUp Utilities 2007
2008-05-21 13:52:32 0 d------c- C:\Programme\TuneUp Utilities
2008-05-20 11:11:47 0 d------c- C:\Programme\Ascentive
2008-05-19 12:30:32 0 d------c- C:\Dokumente und Einstellungen\Ronald.ATHLON\Anwendungsdaten\InstallShield
2008-05-18 21:01:34 0 d------c- C:\Programme\Gemeinsame Dateien
2008-04-28 08:31:29 0 d------c- C:\Programme\Franzis
2008-04-18 11:07:41 3787776 --a----c- C:\Programme\TweakPower1502.exe <Not Verified; Microsoft Corporation; Betriebssystem Microsoft® Windows®>
2008-04-18 10:14:43 2555 --a----c- C:\WINDOWS\unins000.dat
2008-04-18 10:13:27 691545 --a----c- C:\WINDOWS\unins000.exe
2008-04-16 11:18:13 441885 --a----c- C:\Programme\SetupCasino.exe
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{3C0372C2-04C3-4100-BAB1-1D42C552BC48}]
19.06.2008 20:05 144688 --a--c--- C:\Programme\RapidSolution\RS Audials One\VideoRaptor\plugins\IE\VR_WebRipIePlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SlipStream"="C:\Programme\ONSPEED\onspeedcore.exe" [27.06.2007 08:37]
"SunJavaUpdateSched"="C:\Programme\Java\jre1.6.0_06\bin\jusched.exe" [25.03.2008 04:28]
"SpybotSnD"="C:\Programme\Spybot - Search & Destroy\SpybotSD.exe" [28.01.2008 11:43]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"="C:\Programme\Spybot - Search & Destroy\TeaTimer.exe" [28.01.2008 11:43]
[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"InfoCockpit"=C:\Programme\T-Online\T-Online_Software_6\Info-Cockpit\IC_START.EXE /nosplash
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"disablecad"=0 (0x0)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoSharedDocuments"=00000000
"ClearRecentDocsOnExit"=1 (0x1)
"NoRecentDocsMenu"=1 (0x1)
"NoLowDiskSpaceChecks"=1 (0x1)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\dimsntfy]
C:\WINDOWS\System32\dimsntfy.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vds]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
@="Volume shadow copy"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
eapsvcs eaphost
dot3svc dot3svc
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
napagent
hkmsvc
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{61E3FE32-07B9-4563-A3E0-2DE2D620FE10}]
C:\Programme\PixiePack Codec Pack\InstallerHelper.exe
-- Hosts -----------------------------------------------------------------------
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
8744 more entries in hosts file.
-- End of Deckard's System Scanner: finished at 2008-06-26 10:04:38 ------------
Code:
Deckard's System Scanner v20071014.68
Extra logfile - please post this as an attachment with your post.
--------------------------------------------------------------------------------
-- System Information ----------------------------------------------------------
Microsoft Windows XP Home Edition (build 2600) SP 3.0
Architecture: X86; Language: German
CPU 0: AMD Athlon(tm) XP 3000+
Percentage of Memory in Use: 65%
Physical Memory (total/avail): 447.48 MiB / 155.58 MiB
Pagefile Memory (total/avail): 1058.43 MiB / 843.92 MiB
Virtual Memory (total/avail): 2047.88 MiB / 1921.18 MiB
A: is Removable (No Media)
C: is Fixed (NTFS) - 18.8 GiB total, 2.02 GiB free.
D: is Fixed (NTFS) - 14.65 GiB total, 10.07 GiB free.
E: is Fixed (NTFS) - 4.89 GiB total, 4.86 GiB free.
F: is CDROM (No Media)
G: is CDROM (No Media)
\\.\PHYSICALDRIVE0 - ExcelStor Technology J840 - 38.34 GiB - 3 partitions
\PARTITION0 (bootable) - Installierbares Dateisystem - 18.8 GiB - C:
\PARTITION1 - Erweitert mit Int 13 (erweitert) - 19.53 GiB - D: - E:
-- Security Center -------------------------------------------------------------
AUOptions is disabled.
-- Environment Variables -------------------------------------------------------
ALLUSERSPROFILE=C:\Dokumente und Einstellungen\All Users.WINDOWS
APPDATA=C:\Dokumente und Einstellungen\Ronald.ATHLON\Anwendungsdaten
CLIENTNAME=Console
CommonProgramFiles=C:\Programme\Gemeinsame Dateien
COMPUTERNAME=ATHLON
ComSpec=C:\WINDOWS\system32\cmd.exe
FP_NO_HOST_CHECK=NO
HOMEDRIVE=C:
HOMEPATH=\Dokumente und Einstellungen\Ronald.ATHLON
LOGONSERVER=\\ATHLON
NUMBER_OF_PROCESSORS=1
OS=Windows_NT
Path=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\Programme\Gemeinsame Dateien\Ulead Systems\MPEG;C:\Programme\Gemeinsame Dateien\Ulead Systems\DVD;C:\Programme\T-Online\T-Online_Software_6\Basis-Software\Basis2\
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 6 Model 10 Stepping 0, AuthenticAMD
PROCESSOR_LEVEL=6
PROCESSOR_REVISION=0a00
ProgramFiles=C:\Programme
PROMPT=$P$G
SESSIONNAME=Console
SystemDrive=C:
SystemRoot=C:\WINDOWS
TEMP=C:\DOKUME~1\RONALD~1.ATH\LOKALE~1\Temp
TMP=C:\DOKUME~1\RONALD~1.ATH\LOKALE~1\Temp
USERDOMAIN=ATHLON
USERNAME=Ronald
USERPROFILE=C:\Dokumente und Einstellungen\Ronald.ATHLON
windir=C:\WINDOWS
-- User Profiles ---------------------------------------------------------------
Ronald.ATHLON (admin)
-- Add/Remove Programs ---------------------------------------------------------
--> RunDll32 C:\PROGRA~1\GEMEIN~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programme\InstallShield Installation Information\{2638924D-DC58-4C40-BB1C-48C2B24B7B1B}\Setup.exe" -L0x7
--> RunDll32 C:\PROGRA~1\GEMEIN~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programme\InstallShield Installation Information\{52739387-B81C-4C55-9593-EB7A1044A657}\Setup.exe" -L0x7
--> RunDll32 C:\PROGRA~1\GEMEIN~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Programme\InstallShield Installation Information\{E06E4F4E-72D6-4497-BFFD-BCB43077C2F4}\Setup.exe" -l0x7 -uninst
--> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
ABBYY FineReader 5.0 Sprint --> MsiExec.exe /X{D1696920-9794-4BBC-8A30-7A88763DE5A2}
Adobe Flash Player Plugin --> C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Help Center 2.1 --> MsiExec.exe /I{25569723-DC5A-4467-A639-79535BF01B71}
Adobe Reader 8.1.1 - Deutsch --> MsiExec.exe /I{AC76BA86-7AD7-1031-7B44-A81000000003}
Adobe SVG Viewer 3.0 --> C:\Programme\Gemeinsame Dateien\Adobe\SVG Viewer 3.0\Uninstall\Winstall.exe -u -fC:\Programme\Gemeinsame Dateien\Adobe\SVG Viewer 3.0\Uninstall\Install.log
Audials TV --> MsiExec.exe /I{1A0B8239-664B-434A-99D8-C50793513249}
C-Media 3D Audio --> C:\WINDOWS\CMIUnInstall.exe
C-Media WDM Audio Driver --> C:\WINDOWS\system32\cmirmdrv.exe
Canon PhotoRecord --> MsiExec.exe /X{D958FAC4-BAE0-4B1D-A42E-DE9BFDE7DDEE}
Canon PIXMA iP3000 --> C:\WINDOWS\system32\CNMCP61.exe "-PRINTERNAMECanon PIXMA iP3000" "-HELPERDLLC:\BJPrinter\CNMWINDOWS\Canon PIXMA iP3000 Installer\Inst2\cnmis.dll" "-RCDLLC:\BJPrinter\CNMWINDOWS\Canon PIXMA iP3000 Installer\Inst2\cnmi0407.dll"
Canon Utilities Easy-PrintToolBox --> C:\WINDOWS\BJPSUNST.EXE
CCleaner (remove only) --> "C:\Programme\CCleaner\uninst.exe"
CD-LabelPrint --> "C:\Programme\Canon\CD-LabelPrint\Uninstal.exe" Canon.CDLabelPrint.Application
Easy-WebPrint --> C:\WINDOWS\IsUn0407.exe -fC:\Programme\Canon\Easy-WebPrint\Uninst.isu
Europa Casino --> "C:\Casino\Europa Casino\_SetupCasino.exe" /uninstall
FaxTools --> RunDll32 C:\PROGRA~1\GEMEIN~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programme\InstallShield Installation Information\{F45298E5-0083-426F-A668-1A2C5F04B8A0}\setup.exe" -l0x7 ControlPanel
FotoPrinter 3.0 --> RunDll32 C:\PROGRA~1\GEMEIN~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Programme\InstallShield Installation Information\{DE2E8160-7DAD-11D4-BC5A-000021D73F17}\setup.exe" -uninst
Google Toolbar for Internet Explorer --> MsiExec.exe /I{DBEA1034-5882-4A88-8033-81C4EF0CFA29}
Google Toolbar for Internet Explorer --> regsvr32 /u /s "c:\programme\google\googletoolbar1.dll"
Hi-Speed USB Bridge-Network Cable --> RunDll32 C:\PROGRA~1\GEMEIN~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programme\InstallShield Installation Information\{0EAD5B5C-534A-4486-8ECB-679E218ADEE1}\Setup.exe" -l0x9
HS Mehrwertsteuer 3.25 --> C:\PROGRA~1\HENTRI~1\MwSt\UNWISE.EXE C:\PROGRA~1\HENTRI~1\MwSt\INSTALL.LOG
Java(TM) 6 Update 6 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160060}
Lexmark X1100 Series --> C:\WINDOWS\system32\spool\drivers\w32x86\3\LXBKUN5C.EXE -dLexmark X1100 Series
Microsoft Visual C++ 2005 Redistributable --> MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Mozilla (1.7.6) --> C:\WINDOWS\MozillaUninstall.exe /ua "1.7.6 (en)"
NetoDragon 56K Voice Modem --> C:\WINDOWS\Modio\SLAMR2KV\Setup.exe /Remove
Nvu 1.0 --> C:\Programme\Nvu\unins000.exe
ONSPEED --> C:\Programme\ONSPEED\uninstall\uninstall.exe
PerfectDisk 2008 Professional --> MsiExec.exe /I{2B6EC03E-6FA0-4D7C-9CCE-1B03819AB613}
PhotoMeister 2 --> C:\Programme\PhotoMeister2\unins000.exe
PixiePack Codec Pack --> MsiExec.exe /I{61E3FE32-07B9-4563-A3E0-2DE2D620FE10}
Quick Zip 4.60.018 --> "C:\Programme\QuickZip4\unins000.exe"
Radiotracker --> MsiExec.exe /I{76629460-34BF-44E8-94A0-D5DCB876232E}
Ranking Toolbox 4 --> RunDll32 C:\PROGRA~1\GEMEIN~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Programme\InstallShield Installation Information\{2388C625-9532-467F-ADEA-B92E027B85E3}\setup.exe" -l0x7 -removeonly
RS Audials One 2.1.35705.500 --> "C:\Programme\RapidSolution\RS Audials One\unins000.exe"
Shriyantra --> "C:\Programme\Shriyantra\Shriyantra.scr" /S /Uninstall
SiS 661FX_760_741_M661FX_M760_M741 --> Rundll32 SiSInst.dll,Uninstall VGA,r,0
SiSoftware Sandra Lite XI.SP1 (Win64/32/CE) --> "C:\Programme\SiSoftware\SiSoftware Sandra Lite XI.SP1\unins000.exe"
Spybot - Search & Destroy --> "C:\Programme\Spybot - Search & Destroy\unins001.exe"
Spybot - Search & Destroy 1.5.2.20 --> "C:\WINDOWS\unins000.exe"
StarOffice 5.2 --> C:\Office52\program\setup.exe
T-DSL Manager --> MsiExec.exe /I{13D3FE3C-C175-4BA3-9483-5BB01B502F19}
T-Online 6.0 --> RunDll32 C:\PROGRA~1\GEMEIN~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programme\InstallShield Installation Information\{B1275E23-717A-4D52-997A-1AD1E24BC7F3}\setup.exe" CPAS
T-Online WLAN-Access Finder --> RunDll32 C:\PROGRA~1\GEMEIN~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programme\InstallShield Installation Information\{295C31E5-3F91-498E-9623-DA24D2FA2B6A}\Setup.exe" -L0x7
Tagrunner --> MsiExec.exe /I{D3B52FE3-B62D-4BF4-90E4-64D4DB30B35A}
Tunebite --> MsiExec.exe /I{BAD59C41-BD54-4E20-A54F-D6011B49C3A2}
TuneUp Utilities 2007 --> MsiExec.exe /I{C8BB4912-12D9-42AE-B571-E580D8CD1B5B}
UseNeXT --> "C:\Programme\UseNeXT\unins000.exe"
Videoraptor --> MsiExec.exe /I{A2413973-549F-49CE-8567-D92FB62FDF3E}
Vivian Mail 3.27 --> "C:\Programme\Deep Sleep\Vivian Mail\unins000.exe"
VS2005 Redistributable Package --> MsiExec.exe /I{B04E79D2-1117-4463-AE89-7483F7E1AB5C}
Windows XP Service Pack 3 --> "C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
Xpage Internet Studio 6 Special Edition --> "C:\Programme\Xpage Internet Studio 6 Special Edition\Uninstall_Xpage Internet Studio 6 Special Edition\Uninstall Xpage Internet Studio 6 Special Edition.exe"
-- Application Event Log -------------------------------------------------------
Event Record #/Type6195 / Warning
Event Submitted/Written: 06/25/2008 02:43:17 PM
Event ID/Source: 1524 / Userenv
Event Description:
Die Klassenregistrierungsdatei kann nicht entladen werden, da sie weiterhin von anderen Anwendungen bzw. Diensten verwendet wird. Die Datei wird entladen, wenn sie nicht mehr verwendet wird.
Event Record #/Type6187 / Warning
Event Submitted/Written: 06/24/2008 11:43:38 AM
Event ID/Source: 1524 / Userenv
Event Description:
Die Klassenregistrierungsdatei kann nicht entladen werden, da sie weiterhin von anderen Anwendungen bzw. Diensten verwendet wird. Die Datei wird entladen, wenn sie nicht mehr verwendet wird.
Event Record #/Type6179 / Warning
Event Submitted/Written: 06/24/2008 10:20:48 AM
Event ID/Source: 1524 / Userenv
Event Description:
Die Klassenregistrierungsdatei kann nicht entladen werden, da sie weiterhin von anderen Anwendungen bzw. Diensten verwendet wird. Die Datei wird entladen, wenn sie nicht mehr verwendet wird.
Event Record #/Type6158 / Warning
Event Submitted/Written: 06/24/2008 07:21:43 AM
Event ID/Source: 1524 / Userenv
Event Description:
Die Klassenregistrierungsdatei kann nicht entladen werden, da sie weiterhin von anderen Anwendungen bzw. Diensten verwendet wird. Die Datei wird entladen, wenn sie nicht mehr verwendet wird.
Event Record #/Type6155 / Warning
Event Submitted/Written: 06/24/2008 06:55:25 AM
Event ID/Source: 33 / WinMgmt
Event Description:
WMI-ADAP konnte die Leistungsbibliothek "ASP.NET" aufgrund von einer Ausnahme nicht laden: 0x0
-- Security Event Log ----------------------------------------------------------
No Errors/Warnings found.
-- System Event Log ------------------------------------------------------------
Event Record #/Type4119 / Error
Event Submitted/Written: 06/26/2008 10:01:55 AM
Event ID/Source: 7016 / Service Control Manager
Event Description:
Der Dienst "SmartLinkService" hat einen ungültigen aktuellen Status gemeldet: 0
Event Record #/Type4100 / Error
Event Submitted/Written: 06/26/2008 08:40:45 AM
Event ID/Source: 3095 / NETLOGON
Event Description:
Dieser Computer ist als Mitglied einer Arbeitsgruppe konfiguriert, nicht als
Mitglied einer Domäne. Der Anmeldedienst braucht bei dieser
Konfiguration nicht gestartet zu sein.
Event Record #/Type4099 / Warning
Event Submitted/Written: 06/26/2008 08:40:38 AM
Event ID/Source: 1007 / Dhcp
Event Description:
Die IP-Adresse für die Netzwerkkarte mit der Netzwerkadresse 000B6AB63B05
wurde automatisch durch diesen Computer konfiguriert. Die verwendete IP-Adresse ist 169.254.66.174.
Event Record #/Type4072 / Error
Event Submitted/Written: 06/25/2008 07:53:51 AM
Event ID/Source: 3095 / NETLOGON
Event Description:
Dieser Computer ist als Mitglied einer Arbeitsgruppe konfiguriert, nicht als
Mitglied einer Domäne. Der Anmeldedienst braucht bei dieser
Konfiguration nicht gestartet zu sein.
Event Record #/Type4071 / Warning
Event Submitted/Written: 06/25/2008 07:53:45 AM
Event ID/Source: 1007 / Dhcp
Event Description:
Die IP-Adresse für die Netzwerkkarte mit der Netzwerkadresse 000B6AB63B05
wurde automatisch durch diesen Computer konfiguriert. Die verwendete IP-Adresse ist 169.254.66.174.
-- End of Deckard's System Scanner: finished at 2008-06-26 10:04:38 ------------
Kannst Du noch Probleme erkennen?
mfG Dragostar