Habe mal das Programm getestet und ausgewertet:
Ich habe davon keine Ahnung, wertet es bitte mal aus und sagt mir,
was ich so tun könnte.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:20:39, on 20.09.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Programme\Gemeinsame Dateien\Logitech\G-series Software\LGDCore.exe
C:\Programme\Gemeinsame Dateien\Logitech\LCD Manager\lcdmon.exe
C:\Programme\Zone Labs\ZoneAlarm\zlclient.exe
C:\Programme\Gemeinsame Dateien\Logitech\LCD Manager\Applets\LCDClock.exe
C:\Programme\Gemeinsame Dateien\Logitech\LCD Manager\Applets\LCDMedia.exe
C:\Programme\QIP\qip.exe
C:\Programme\Logitech\SetPoint\SetPoint.exe
C:\Programme\Gemeinsame Dateien\Logishrd\KHAL2\KHALMNPR.EXE
C:\Programme\Winamp\winamp.exe
C:\Programme\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Programme\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://google.icq.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.de/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
R3 - URLSearchHook: ScriptInocUI Class - - (no file)
O2 - BHO: SuperAdBlockerBHO Class - {00000000-6C30-11D8-9363-000AE6309654} - C:\Programme\SuperAdBlocker.com\Super Ad Blocker\SABBHO.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - (no file)
O3 - Toolbar: (no name) - {B4B3001E-0F56-4E51-8250-BDE11547EC55} - (no file)
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [Launch LGDCore] "C:\Programme\Gemeinsame Dateien\Logitech\G-series Software\LGDCore.exe" /SHOWHIDE
O4 - HKLM\..\Run: [Launch LCDMon] "C:\Programme\Gemeinsame Dateien\Logitech\LCD Manager\lcdmon.exe"
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Programme\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [QIP2005] C:\Programme\QIP\qip.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETZWERKDIENST')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Startup: PowerReg Scheduler V3.exe
O4 - Global Startup: Adobe Acrobat - Schnellstart.lnk = ?
O4 - Global Startup: Logitech SetPoint.lnk = C:\Programme\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: Ausgewählte Verknüpfungen in Adobe PDF konvertieren - res://C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Ausgewählte Verknüpfungen in vorhandene PDF-Datei konvertieren - res://C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Auswahl in Adobe PDF konvertieren - res://C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Auswahl in vorhandene PDF-Datei konvertieren - res://C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Download with NetPumper - C:\Programme\NetPumper\AddUrl.htm
O8 - Extra context menu item: In Adobe PDF konvertieren - res://C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: In vorhandene PDF-Datei konvertieren - res://C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Verknüpfungsziel in Adobe PDF konvertieren - res://C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Verknüpfungsziel in vorhandene PDF-Datei konvertieren - res://C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe (file missing)
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programme\ICQ6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programme\ICQ6\ICQ.exe
O9 - Extra button: PartyPoker.net - {F4430FE8-2638-42e5-B849-800749B94EED} - C:\Programme\PartyGaming.Net\PartyPokerNet\RunPF.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.net - {F4430FE8-2638-42e5-B849-800749B94EED} - C:\Programme\PartyGaming.Net\PartyPokerNet\RunPF.exe (file missing)
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O10 - Unknown file in Winsock LSP: c:\programme\trackzapper.com\tz spyware-remover\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programme\trackzapper.com\tz spyware-remover\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programme\trackzapper.com\tz spyware-remover\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programme\trackzapper.com\tz spyware-remover\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programme\trackzapper.com\tz spyware-remover\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programme\trackzapper.com\tz spyware-remover\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programme\trackzapper.com\tz spyware-remover\apptoport.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: bw+0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw+0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw-0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw-0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw00 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw00s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw10 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw10s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw20 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw20s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw30 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw30s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw40 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw40s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw50 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw50s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw60 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw60s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw70 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw70s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw80 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw80s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw90 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw90s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwa0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwa0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwb0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwb0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwc0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwc0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwd0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwd0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwe0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwe0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwf0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwf0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - (no file)
O18 - Protocol: bwg0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwg0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwh0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwh0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwi0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwi0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwj0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwj0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwk0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwk0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwl0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwl0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwm0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwm0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwn0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwn0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwo0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwo0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwp0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwp0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwq0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwq0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwr0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwr0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bws0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bws0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwt0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwt0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwu0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwu0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwv0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwv0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bww0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bww0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwx0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwx0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwy0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwy0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwz0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwz0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: offline-8876480 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\GEMEIN~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SABWinLogon - C:\Programme\SuperAdBlocker.com\Super Ad Blocker\SABWINLO.DLL (file missing)
O20 - Winlogon Notify: xpspqdvd - C:\WINDOWS\system32\xpspqdvd.dll (file missing)
O23 - Service: Adobe LM Service - Adobe Systems - C:\Programme\Gemeinsame Dateien\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: ICQ Service - Unknown owner - C:\Programme\ICQ6Toolbar\ICQ Service.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Programme\Gemeinsame Dateien\Logitech\Bluetooth\LBTServ.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ScriptBlocking Service (SBService) - Unknown owner - C:\PROGRA~1\GEMEIN~1\SYMANT~1\SCRIPT~1\SBServ.exe (file missing)
O23 - Service: ServiceLayer - Nokia. - C:\Programme\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: TuneUp Drive Defrag-Dienst (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
--
End of file - 15546 bytes
Ich habe davon keine Ahnung, wertet es bitte mal aus und sagt mir,
was ich so tun könnte.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:20:39, on 20.09.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Programme\Gemeinsame Dateien\Logitech\G-series Software\LGDCore.exe
C:\Programme\Gemeinsame Dateien\Logitech\LCD Manager\lcdmon.exe
C:\Programme\Zone Labs\ZoneAlarm\zlclient.exe
C:\Programme\Gemeinsame Dateien\Logitech\LCD Manager\Applets\LCDClock.exe
C:\Programme\Gemeinsame Dateien\Logitech\LCD Manager\Applets\LCDMedia.exe
C:\Programme\QIP\qip.exe
C:\Programme\Logitech\SetPoint\SetPoint.exe
C:\Programme\Gemeinsame Dateien\Logishrd\KHAL2\KHALMNPR.EXE
C:\Programme\Winamp\winamp.exe
C:\Programme\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Programme\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://google.icq.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.de/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
R3 - URLSearchHook: ScriptInocUI Class - - (no file)
O2 - BHO: SuperAdBlockerBHO Class - {00000000-6C30-11D8-9363-000AE6309654} - C:\Programme\SuperAdBlocker.com\Super Ad Blocker\SABBHO.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - (no file)
O3 - Toolbar: (no name) - {B4B3001E-0F56-4E51-8250-BDE11547EC55} - (no file)
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [Launch LGDCore] "C:\Programme\Gemeinsame Dateien\Logitech\G-series Software\LGDCore.exe" /SHOWHIDE
O4 - HKLM\..\Run: [Launch LCDMon] "C:\Programme\Gemeinsame Dateien\Logitech\LCD Manager\lcdmon.exe"
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Programme\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [QIP2005] C:\Programme\QIP\qip.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETZWERKDIENST')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Startup: PowerReg Scheduler V3.exe
O4 - Global Startup: Adobe Acrobat - Schnellstart.lnk = ?
O4 - Global Startup: Logitech SetPoint.lnk = C:\Programme\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: Ausgewählte Verknüpfungen in Adobe PDF konvertieren - res://C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Ausgewählte Verknüpfungen in vorhandene PDF-Datei konvertieren - res://C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Auswahl in Adobe PDF konvertieren - res://C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Auswahl in vorhandene PDF-Datei konvertieren - res://C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Download with NetPumper - C:\Programme\NetPumper\AddUrl.htm
O8 - Extra context menu item: In Adobe PDF konvertieren - res://C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: In vorhandene PDF-Datei konvertieren - res://C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Verknüpfungsziel in Adobe PDF konvertieren - res://C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Verknüpfungsziel in vorhandene PDF-Datei konvertieren - res://C:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe (file missing)
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programme\ICQ6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programme\ICQ6\ICQ.exe
O9 - Extra button: PartyPoker.net - {F4430FE8-2638-42e5-B849-800749B94EED} - C:\Programme\PartyGaming.Net\PartyPokerNet\RunPF.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.net - {F4430FE8-2638-42e5-B849-800749B94EED} - C:\Programme\PartyGaming.Net\PartyPokerNet\RunPF.exe (file missing)
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O10 - Unknown file in Winsock LSP: c:\programme\trackzapper.com\tz spyware-remover\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programme\trackzapper.com\tz spyware-remover\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programme\trackzapper.com\tz spyware-remover\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programme\trackzapper.com\tz spyware-remover\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programme\trackzapper.com\tz spyware-remover\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programme\trackzapper.com\tz spyware-remover\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programme\trackzapper.com\tz spyware-remover\apptoport.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: bw+0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw+0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw-0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw-0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw00 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw00s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw10 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw10s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw20 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw20s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw30 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw30s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw40 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw40s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw50 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw50s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw60 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw60s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw70 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw70s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw80 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw80s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw90 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bw90s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwa0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwa0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwb0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwb0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwc0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwc0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwd0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwd0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwe0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwe0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwf0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwf0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - (no file)
O18 - Protocol: bwg0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwg0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwh0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwh0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwi0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwi0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwj0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwj0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwk0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwk0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwl0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwl0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwm0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwm0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwn0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwn0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwo0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwo0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwp0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwp0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwq0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwq0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwr0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwr0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bws0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bws0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwt0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwt0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwu0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwu0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwv0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwv0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bww0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bww0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwx0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwx0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwy0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwy0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwz0 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: bwz0s - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: offline-8876480 - {CEB54762-4E78-4CBA-B6E5-1B6E8FCBCF84} - (no file)
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\GEMEIN~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SABWinLogon - C:\Programme\SuperAdBlocker.com\Super Ad Blocker\SABWINLO.DLL (file missing)
O20 - Winlogon Notify: xpspqdvd - C:\WINDOWS\system32\xpspqdvd.dll (file missing)
O23 - Service: Adobe LM Service - Adobe Systems - C:\Programme\Gemeinsame Dateien\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: ICQ Service - Unknown owner - C:\Programme\ICQ6Toolbar\ICQ Service.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Programme\Gemeinsame Dateien\Logitech\Bluetooth\LBTServ.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ScriptBlocking Service (SBService) - Unknown owner - C:\PROGRA~1\GEMEIN~1\SYMANT~1\SCRIPT~1\SBServ.exe (file missing)
O23 - Service: ServiceLayer - Nokia. - C:\Programme\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: TuneUp Drive Defrag-Dienst (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
--
End of file - 15546 bytes