seit kurzen habe ich das Problem, das beim "gründlichen Reinigen" mit Regsupreme der PC neustartet.
Ich vermute, das ich irgendwas schadhaftes auf dem PC hab.
Habe bereits Hijackthis durchlaufen lassen, aber es happert bei der Auswertung. Vielleicht kann jemand von euch mal den Logbericht überfliegen.
Logfile of Trend Micro HijackThis v2.0.0 (BETA)
Scan saved at 00:43:21, on 04.04.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
D:\PROGRAMME\AntiVir PersonalEdition Classic\sched.exe
D:\PROGRAMME\AntiVir PersonalEdition Classic\avguard.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\mdm.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\oodag.exe
D:\Programme\OO Software\CleverCache\ooccag.exe
C:\WINDOWS\system32\SearchIndexer.exe
D:\PROGRAMME\AntiVir PersonalEdition Classic\avgnt.exe
D:\PROGRAMME\Motherboard Monitor 5\MBM5.EXE
D:\Programme\OO Software\CleverCache\ooccctrl.exe
d:\Programme\Logitech\MouseWare\system\em_exec.exe
C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch.exe
D:\PROGRAMME\TuneUp Utilities 2007\MemOptimizer.exe
C:\WINDOWS\system32\ctfmon.exe
D:\PROGRAMME\NETGEAR\WPN311\wlancfg5.exe
C:\Programme\Windows Desktop Search\WindowsSearch.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
E:\DOWNLOADS\HiJackThis_v2.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Live Search
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Live Search
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = Microsoft Windows Update
O1 - Hosts: 195.122.131.2 rs1vsnl.rapidshare.com
O1 - Hosts: 195.122.131.2 rs1cg.rapidshare.com
O1 - Hosts: 195.122.131.2 rs1cg2.rapidshare.com
O1 - Hosts: 195.122.131.2 rs1gc.rapidshare.com
O1 - Hosts: 195.122.131.2 rs1tg.rapidshare.com
O1 - Hosts: 195.122.131.2 rs1tl.rapidshare.com
O1 - Hosts: 195.122.131.2 rs1tl2.rapidshare.com
O1 - Hosts: 195.122.131.2 rs1l32.rapidshare.com
O1 - Hosts: 195.122.131.2 rs1l33.rapidshare.com
O1 - Hosts: 195.122.131.3 rs2vsnl.rapidshare.com
O1 - Hosts: 195.122.131.3 rs2cg.rapidshare.com
O1 - Hosts: 195.122.131.3 rs2cg2.rapidshare.com
O1 - Hosts: 195.122.131.3 rs2gc.rapidshare.com
O1 - Hosts: 195.122.131.3 rs2tg.rapidshare.com
O1 - Hosts: 195.122.131.3 rs2tl.rapidshare.com
O1 - Hosts: 195.122.131.3 rs2tl2.rapidshare.com
O1 - Hosts: 195.122.131.3 rs2l32.rapidshare.com
O1 - Hosts: 195.122.131.3 rs2l33.rapidshare.com
O1 - Hosts: 195.122.131.4 rs3vsnl.rapidshare.com
O1 - Hosts: 195.122.131.4 rs3cg.rapidshare.com
O1 - Hosts: 195.122.131.4 rs3cg2.rapidshare.com
O1 - Hosts: 195.122.131.4 rs3gc.rapidshare.com
O1 - Hosts: 195.122.131.4 rs3tg.rapidshare.com
O1 - Hosts: 195.122.131.4 rs3tl.rapidshare.com
O1 - Hosts: 195.122.131.4 rs3tl2.rapidshare.com
O1 - Hosts: 195.122.131.4 rs3l32.rapidshare.com
O1 - Hosts: 195.122.131.4 rs3l33.rapidshare.com
O1 - Hosts: 195.122.131.5 rs4vsnl.rapidshare.com
O1 - Hosts: 195.122.131.5 rs4cg.rapidshare.com
O1 - Hosts: 195.122.131.5 rs4cg2.rapidshare.com
O1 - Hosts: 195.122.131.5 rs4gc.rapidshare.com
O1 - Hosts: 195.122.131.5 rs4tg.rapidshare.com
O1 - Hosts: 195.122.131.5 rs4tl.rapidshare.com
O1 - Hosts: 195.122.131.5 rs4tl2.rapidshare.com
O1 - Hosts: 195.122.131.5 rs4l32.rapidshare.com
O1 - Hosts: 195.122.131.5 rs4l33.rapidshare.com
O1 - Hosts: 195.122.131.6 rs5vsnl.rapidshare.com
O1 - Hosts: 195.122.131.6 rs5cg.rapidshare.com
O1 - Hosts: 195.122.131.6 rs5cg2.rapidshare.com
O1 - Hosts: 195.122.131.6 rs5gc.rapidshare.com
O1 - Hosts: 195.122.131.6 rs5tg.rapidshare.com
O1 - Hosts: 195.122.131.6 rs5tl.rapidshare.com
O1 - Hosts: 195.122.131.6 rs5tl2.rapidshare.com
O1 - Hosts: 195.122.131.6 rs5l32.rapidshare.com
O1 - Hosts: 195.122.131.6 rs5l33.rapidshare.com
O1 - Hosts: 195.122.131.7 rs6vsnl.rapidshare.com
O1 - Hosts: 195.122.131.7 rs6cg.rapidshare.com
O1 - Hosts: 195.122.131.7 rs6cg2.rapidshare.com
O1 - Hosts: 195.122.131.7 rs6gc.rapidshare.com
O1 - Hosts: 195.122.131.7 rs6tg.rapidshare.com
O1 - Hosts: 195.122.131.7 rs6tl.rapidshare.com
O1 - Hosts: 195.122.131.7 rs6tl2.rapidshare.com
O1 - Hosts: 195.122.131.7 rs6l32.rapidshare.com
O1 - Hosts: 195.122.131.7 rs6l33.rapidshare.com
O1 - Hosts: 195.122.131.8 rs7vsnl.rapidshare.com
O1 - Hosts: 195.122.131.8 rs7cg.rapidshare.com
O1 - Hosts: 195.122.131.8 rs7cg2.rapidshare.com
O1 - Hosts: 195.122.131.8 rs7gc.rapidshare.com
O1 - Hosts: 195.122.131.8 rs7tg.rapidshare.com
O1 - Hosts: 195.122.131.8 rs7tl.rapidshare.com
O1 - Hosts: 195.122.131.8 rs7tl2.rapidshare.com
O1 - Hosts: 195.122.131.8 rs7l32.rapidshare.com
O1 - Hosts: 195.122.131.8 rs7l33.rapidshare.com
O1 - Hosts: 195.122.131.9 rs8vsnl.rapidshare.com
O1 - Hosts: 195.122.131.9 rs8cg.rapidshare.com
O1 - Hosts: 195.122.131.9 rs8cg2.rapidshare.com
O1 - Hosts: 195.122.131.9 rs8gc.rapidshare.com
O1 - Hosts: 195.122.131.9 rs8tg.rapidshare.com
O1 - Hosts: 195.122.131.9 rs8tl.rapidshare.com
O1 - Hosts: 195.122.131.9 rs8tl2.rapidshare.com
O1 - Hosts: 195.122.131.9 rs8l32.rapidshare.com
O1 - Hosts: 195.122.131.9 rs8l33.rapidshare.com
O1 - Hosts: 195.122.131.10 rs9vsnl.rapidshare.com
O1 - Hosts: 195.122.131.10 rs9cg.rapidshare.com
O1 - Hosts: 195.122.131.10 rs9cg2.rapidshare.com
O1 - Hosts: 195.122.131.10 rs9gc.rapidshare.com
O1 - Hosts: 195.122.131.10 rs9tg.rapidshare.com
O1 - Hosts: 195.122.131.10 rs9tl.rapidshare.com
O1 - Hosts: 195.122.131.10 rs9tl2.rapidshare.com
O1 - Hosts: 195.122.131.10 rs9l32.rapidshare.com
O1 - Hosts: 195.122.131.10 rs9l33.rapidshare.com
O1 - Hosts: 195.122.131.11 rs10vsnl.rapidshare.com
O1 - Hosts: 195.122.131.11 rs10cg.rapidshare.com
O1 - Hosts: 195.122.131.11 rs10cg2.rapidshare.com
O1 - Hosts: 195.122.131.11 rs10gc.rapidshare.com
O1 - Hosts: 195.122.131.11 rs10tg.rapidshare.com
O1 - Hosts: 195.122.131.11 rs10tl.rapidshare.com
O1 - Hosts: 195.122.131.11 rs10tl2.rapidshare.com
O1 - Hosts: 195.122.131.11 rs10l32.rapidshare.com
O1 - Hosts: 195.122.131.11 rs10l33.rapidshare.com
O1 - Hosts: 195.122.131.12 rs11vsnl.rapidshare.com
O1 - Hosts: 195.122.131.12 rs11cg.rapidshare.com
O1 - Hosts: 195.122.131.12 rs11cg2.rapidshare.com
O1 - Hosts: 195.122.131.12 rs11gc.rapidshare.com
O1 - Hosts: 195.122.131.12 rs11tg.rapidshare.com
O1 - Hosts: 195.122.131.12 rs11tl.rapidshare.com
O1 - Hosts: 195.122.131.12 rs11tl2.rapidshare.com
O1 - Hosts: 195.122.131.12 rs11l32.rapidshare.com
O1 - Hosts: 195.122.131.12 rs11l33.rapidshare.com
O1 - Hosts: 195.122.131.13 rs12vsnl.rapidshare.com
O1 - Hosts: 195.122.131.13 rs12cg.rapidshare.com
O2 - BHO: Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\PROGRA~1\MICROS~1\Office12\GrooveShellExtensions.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Programme\Java\jre1.5.0_11\bin\ssv.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - D:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - D:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [avgnt] "D:\PROGRAMME\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [MBM 5] "D:\PROGRAMME\Motherboard Monitor 5\MBM5.EXE"
O4 - HKLM\..\Run: [ooccctrl.exe] D:\Programme\OO Software\CleverCache\ooccctrl.exe /tasktray
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\GEMEIN~1\INSTAL~1\UpdateService\isuspm.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "D:\PROGRAMME\TuneUp Utilities 2007\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETZWERKDIENST')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Acrobat - Schnellstart.lnk = ?
O4 - Global Startup: NETGEAR WPN311 Smart Wizard.lnk = D:\PROGRAMME\NETGEAR\WPN311\wlancfg5.exe
O4 - Global Startup: Windows-Desktopsuche.lnk = C:\Programme\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: An vorhandenes PDF anfügen - res://D:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Ausgewählte Verknüpfungen in Adobe PDF konvertieren - res://D:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Ausgewählte Verknüpfungen in vorhandene PDF-Datei konvertieren - res://D:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Auswahl in Adobe PDF konvertieren - res://D:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Auswahl in vorhandene PDF-Datei konvertieren - res://D:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: In Adobe PDF konvertieren - res://D:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Nach Microsoft E&xel exportieren - res://D:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Verknüpfungsziel in Adobe PDF konvertieren - res://D:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Verknüpfungsziel in vorhandene PDF-Datei konvertieren - res://D:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Programme\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Programme\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Programme\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Programme\ICQLite\ICQLite.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - update.microsoft.com/windowsup…eb_site.cab?1171317108062
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\PROGRA~1\MICROS~1\Office12\GrooveSystemServices.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: Atheros Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
O23 - Service: AntiVir PersonalEdition Classic Planer (AntiVirScheduler) - Avira GmbH - D:\PROGRAMME\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - AVIRA GmbH - D:\PROGRAMME\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Programme\Gemeinsame Dateien\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Programme\Gemeinsame Dateien\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe
O23 - Service: O&O CleverCache Agent (OOCleverCacheAgent) - O&O Software GmbH - D:\Programme\OO Software\CleverCache\ooccag.exe
--
End of file - 13868 bytes
Gruß, der Student
[SIZE=2]Ein Student ist ein Zustand mit ungewisser Erfüllung.[/SIZE][SIZE=1]
Dietrich Goldschmidt (*1914), dt. Soziologe[/SIZE]
Dietrich Goldschmidt (*1914), dt. Soziologe[/SIZE]