Kann mir einer helfen habe Viren auf dem Computer
Virusprogramm lässt sich nicht starten
Logfile:
Code:Logfile of HijackThis v1.99.1 Scan saved at 09:41:28, on 26.08.2005 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: G:\WINDOWS\System32\smss.exe G:\WINDOWS\system32\winlogon.exe G:\WINDOWS\system32\services.exe G:\WINDOWS\system32\lsass.exe G:\WINDOWS\system32\svchost.exe G:\WINDOWS\System32\svchost.exe G:\WINDOWS\system32\LEXBCES.EXE G:\WINDOWS\system32\spoolsv.exe G:\WINDOWS\system32\LEXPPS.EXE G:\WINDOWS\explorer.exe G:\Programme\AVPersonal\AVGUARD.EXE G:\Programme\AVPersonal\AVWUPSRV.EXE G:\Programme\Executive Software\DiskeeperWorkstation\DKService.exe G:\WINDOWS\System32\Hummingbird\Connectivity\8.00\Inetd\inetd32.exe G:\WINDOWS\runservice.exe G:\WINDOWS\System32\taskswitch.exe G:\WINDOWS\System32\fast.exe G:\Programme\Free Surfer\fs20.exe G:\Programme\Lexmark X1100 Series\lxbkbmgr.exe G:\Programme\Gemeinsame Dateien\Real\Update_OB\evntsvc.exe G:\Programme\QuickTime\qttask.exe G:\Programme\Lexmark X1100 Series\lxbkbmon.exe G:\WINDOWS\System32\desktop.exe G:\Programme\AVPersonal\AVGNT.EXE G:\Programme\Norton Utilities\NPROTECT.EXE G:\WINDOWS\System32\nvsvc32.exe G:\Programme\Speed Disk\nopdb.exe G:\WINDOWS\System32\svchost.exe G:\WINDOWS\System32\WT32EXE.EXE G:\WINDOWS\System32\mspmspsv.exe G:\WINDOWS\system32\ahfp.exe G:\WINDOWS\System32\Fast.exe G:\Dokumente und Einstellungen\Basti\Desktop\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.searchdot.net R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.searchdot.net R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.searchdot.net R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://web.de/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.searchdot.net R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.searchdot.net R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.searchdot.net R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.searchdot.net R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.searchdot.net R1 - HKCU\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.searchdot.net R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.searchdot.net R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.searchdot.net R1 - HKLM\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.searchdot.net F2 - REG:system.ini: Shell=explorer.exe nstask32.exe O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - G:\Programme\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file) O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - G:\WINDOWS\System32\msdxm.ocx O4 - HKLM\..\Run: [CoolSwitch] G:\WINDOWS\System32\taskswitch.exe O4 - HKLM\..\Run: [FastUser] G:\WINDOWS\System32\fast.exe O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [freesurfer] G:\Programme\Free Surfer\fs20.exe O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE G:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [NDplDeamon] nstask32.exe O4 - HKLM\..\Run: [Lexmark X1100 Series] "G:\Programme\Lexmark X1100 Series\lxbkbmgr.exe" O4 - HKLM\..\Run: [TkBellExe] G:\Programme\Gemeinsame Dateien\Real\Update_OB\evntsvc.exe -osboot O4 - HKLM\..\Run: [QuickTime Task] "G:\Programme\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [desktop] G:\WINDOWS\System32\desktop.exe O4 - HKLM\..\Run: [AVGCtrl] "G:\Programme\AVPersonal\AVGNT.EXE" /min O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE G:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit O4 - HKCU\..\RunOnce: [NDplDeamon] nstask32.exe O4 - Startup: PowerReg Scheduler V3.exe O4 - Startup: PowerReg Scheduler.exe O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1 O8 - Extra context menu item: &Add animation to IncrediMail Style Box - G:\PROGRA~1\INCRED~1\bin\WebMenuImg.htm O8 - Extra context menu item: Download with GetRight - G:\Programme\GetRight\GRdownload.htm O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://G:\PROGRA~1\Microsoft Office\Office10\EXCEL.EXE/3000 O8 - Extra context menu item: Open with GetRight Browser - G:\Programme\GetRight\GRbrowse.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - G:\WINDOWS\System32\msjava.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - G:\WINDOWS\System32\msjava.dll O9 - Extra button: Translate - {87680762-4A83-11B4-885B-0000E8ECA40F} - G:\Programme\LingoCom\Translator.lnk (file missing) O9 - Extra 'Tools' menuitem: Translator - {87680762-4A83-11B4-885B-0000E8ECA40F} - G:\Programme\LingoCom\Translator.lnk (file missing) O9 - Extra button: Preispiraten - {94A15285-AAE6-44E8-B2D7-4A2C6CDA9185} - G:\Programme\Preispiraten\preispiraten.exe O9 - Extra button: Free Surfer - {AFC3FA82-AD07-45cd-8B57-983435B9899E} - G:\Programme\Free Surfer\FS20.exe O9 - Extra 'Tools' menuitem: Free Surfer - {AFC3FA82-AD07-45cd-8B57-983435B9899E} - G:\Programme\Free Surfer\FS20.exe O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - G:\Programme\ICQLite\ICQLite.exe O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - G:\Programme\ICQLite\ICQLite.exe O16 - DPF: {103DFAE7-50CC-41FC-9D57-1A4BCA0DFD87} (Upload Control) - https://img.web.de/v/mail/mms/activex/mms_upload_1104.cab O16 - DPF: {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} (Cult3D ActiveX Player) - http://www.cult3d.com/download/cult.cab O16 - DPF: {402EE96E-2CE8-482D-ADA5-CECEEA07E16D} (TurnTool Scene) - http://www.turntool.com/ViewerInstall.exe O16 - DPF: {54B52E52-8000-4413-BD67-FC7FE24B59F2} (EARTPatchX Class) - http://www.ea.com/downloads/rtpatch/EARTPX.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1100956058335 O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall-Kontrolle) - http://a840.g.akamai.net/7/840/537/0fb5e03023def1/housecall.antivirus.com/housecall/xscan53.cab O16 - DPF: {DEB21AD3-FDA4-42F6-B57D-EE696A675EE8} (IP-Uploader Control) - http://asp02.photoprintit.de/microsite/1416/defaults/activex/ImageUploader3.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{B171B471-68C7-4702-A4AE-1FF0ED8C4E81}: NameServer = 192.168.0.1 O23 - Service: ahfP Service (ahfprog) - Unknown owner - G:\WINDOWS\system32\ahfp.exe O23 - Service: AntiVir Service (AntiVirService) - H+BEDV Datentechnik GmbH - G:\Programme\AVPersonal\AVGUARD.EXE O23 - Service: AntiVir Update (AVWUpSrv) - H+BEDV Datentechnik GmbH, Germany - G:\Programme\AVPersonal\AVWUPSRV.EXE O23 - Service: Diskeeper - Executive Software International, Inc. - G:\Programme\Executive Software\DiskeeperWorkstation\DKService.exe O23 - Service: Hummingbird INETD (HCLInetd) - Hummingbird Ltd. - G:\WINDOWS\System32\Hummingbird\Connectivity\8.00\Inetd\inetd32.exe O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - G:\WINDOWS\system32\LEXBCES.EXE O23 - Service: LicCtrl Service (LicCtrlService) - Unknown owner - G:\WINDOWS\runservice.exe O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - G:\Programme\Norton Utilities\NPROTECT.EXE O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - G:\WINDOWS\System32\nvsvc32.exe O23 - Service: Hummingbird Proxy Server (ProxyEngine) - Unknown owner - G:\Programme\Hummingbird\Connectivity\8.00\Accessories\ProxyEngine.exe (file missing) O23 - Service: Sandra Data Service (SandraDataSrv) - SiSoftware - G:\Programme\SiSoftware\SiSoftware Sandra Lite 2005.SR1\RpcDataSrv.exe O23 - Service: Sandra Service (SandraTheSrv) - SiSoftware - G:\Programme\SiSoftware\SiSoftware Sandra Lite 2005.SR1\RpcSandraSrv.exe O23 - Service: Speed Disk service - Symantec Corporation - G:\Programme\Speed Disk\nopdb.exe O23 - Service: Tablet Service (TabletService) - Aiptek - G:\WINDOWS\System32\WT32EXE.EXE





