Status
Für weitere Antworten geschlossen.
J

johnny

Guest
hallo ich habe einen scan from meinen neffen gekriegt...und jets weis ich nicht gans
was jets nicht gut ist....bitte helfen sie mir grusse johnnyLogfile of HijackThis v1.98.2
Scan saved at 12:24:56, on 12-10-2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32LEXBCES.EXE
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSsystem32LEXPPS.EXE
C:program FilesNetropaMultimedia Keyboardnhksrv.exe
C:program FilesAVPersonalAVGUARD.EXE
C:program FilesAVPersonalAVWUPSRV.EXE
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32wscntfy.exe
C:WINDOWSExplorer.EXE
C:WINDOWSSystem32svchost.exe
C:program FilesNetropaMultimedia KeyboardMMKeybd.exe
C:WINDOWSSystem32hkcmd.exe
C:program FilesAVPersonalAVGNT.EXE
C:program FilesAVPersonalAVSched32.EXE
C:program FilesNetropaMultimedia KeyboardTrayMon.exe
C:program FilesNetropaOnscreen DisplayOSD.exe
C:program FilesNetropaInetKbInetkb.exe
C:program FilesQuickTimeqttask.exe
c:progra~1intern~1iexplore.exe
C:WINDOWSSystem32LXSUPMON.EXE
C:program FilesFree Surferfs20.exe
C:program FilesMessenger Plus! 3MsgPlus.exe
C:WINDOWSSystem32igfxtray.exe
C:program FilesHewlett-PackardHP Share-to-Webhpgs2wnd.exe
C:program FilesMSN AppsUpdater1.02.3000.1001nlmsnappau.exe
C:WINDOWSewupdater.exe
C:program FilesHotbarbinHbinst.exe
C:program FilesHewlett-PackardHP Share-to-Webhpgs2wnf.exe
C:program FilesInternet Exploreriexplore.exe
C:pROGRA~1DAPDAP.EXE
C:pROGRA~1WINZIPwinzip32.exe
C:Documents and Settingscorrie meijerBureaubladHijackThis.exe

R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page =
Please, Anmelden or Registrieren to view URLs content!

R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL =
Please, Anmelden or Registrieren to view URLs content!

R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page =
Please, Anmelden or Registrieren to view URLs content!

R1 - HKCUSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch =
Please, Anmelden or Registrieren to view URLs content!

R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant =
Please, Anmelden or Registrieren to view URLs content!

R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Startpagina =
file:///C:/Program%20Files/QuickPage/Portal/portal.html
R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet
Settings,ProxyServer = www-proxy.wanadoo.nl:8080
R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet
Settings,ProxyOverride =
Please, Anmelden or Registrieren to view URLs content!
;signup.wanadoo.nl;<local>
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName =
Koppelingen
O2 - BHO: DAPHelper Class - {0000CC75-ACF3-4cac-A0A9-DD3868E06852} -
C:program FilesDAPDAPBHO.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -
C:program FilesAdobeAcrobat 5.0ReaderActiveXAcroIEHelper.ocx
O2 - BHO: (no name) - {0D2E4906-B451-61E6-E34C-A35EF5354C40} -
C:pROGRA~1WINPRO~1Defy2.exe
O2 - BHO: (no name) - {56EDBCA0-298F-65BE-B575-B8B831E0D48C} -
C:pROGRA~1WINPRO~1Frag Less.exe
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:program FilesMSN
AppsST1.02.3000.1002en-xustmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} -
c:program filesgooglegoogletoolbar2.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} -
C:program FilesMSN AppsMSN Toolbar1.02.3000.1001nlmsntb.dll
O2 - BHO: BHO Class - {C77E900A-FF55-400E-9BAA-E042C8212898} - C:program
FilesSimpelInternetEasybarToolbarStarter.dll
O3 - Toolbar: DAP Bar - {62999427-33FC-4baf-9C9C-BCE6BD127F08} - C:program
FilesDAPDAPIEBar.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:program
FilesMSN AppsMSN Toolbar1.02.3000.1001nlmsntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:program
filesgooglegoogletoolbar2.dll
O4 - HKLM..Run: [MULTIMEDIA KEYBOARD] C:program FilesNetropaMultimedia
KeyboardMMKeybd.exe
O4 - HKLM..Run: [HotKeysCmds] C:WINDOWSSystem32hkcmd.exe
O4 - HKLM..Run: [AVGCtrl] "C:program FilesAVPersonalAVGNT.EXE" /min
O4 - HKLM..Run: [AVSCHED32] C:program FilesAVPersonalAVSched32.EXE /min
O4 - HKLM..Run: [Mode Stupid] C:pROGRA~1ELSECO~1Comp This.exe
O4 - HKLM..Run: [QuickTime Task] "C:program FilesQuickTimeqttask.exe"
-atboottime
O4 - HKLM..Run: [PrinTray]
C:WINDOWSSystem32spoolDRIVERSW32X862printray.exe
O4 - HKLM..Run: [LXSUPMON] C:WINDOWSSystem32LXSUPMON.EXE RUN
O4 - HKLM..Run: [freesurfer] C:program FilesFree Surferfs20.exe
O4 - HKLM..Run: [MessengerPlus3] "C:program FilesMessenger Plus!
3MsgPlus.exe"
O4 - HKLM..Run: [IgfxTray] C:WINDOWSSystem32igfxtray.exe
O4 - HKLM..Run: [Share-to-Web Namespace Daemon] C:program
FilesHewlett-PackardHP Share-to-Webhpgs2wnd.exe
O4 - HKLM..Run: [msnappau] "C:program FilesMSN
AppsUpdater1.02.3000.1001nlmsnappau.exe"
O4 - HKLM..Run: [managerjumphidesite] C:Documents and SettingsAll
UsersApplication Dataknob online manager jumpOoze Acid.exe
O4 - HKLM..Run: [ewupdater] C:WINDOWSewupdater.exe
O4 - HKLM..Run: [Burn Logo Cool 16] C:Documents and SettingsAll
UsersApplication DatacoalwaveburnlogoMess Bore.exe
O4 - HKLM..Run: [Hotbar] C:program FilesHotbarbinHbinst.exe /Upgrade
O4 - HKCU..Run: [WashAndGo - Cleanup of old Backupfiles] "C:program
FilesPurgatio Prochecker.exe /check"
O8 - Extra context menu item: &Download with &DAP -
C:pROGRA~1DAPdapextie.htm
O8 - Extra context menu item: Download &all with DAP -
C:pROGRA~1DAPdapextie2.htm
O8 - Extra context menu item: Gelijkwaardige pagina's - res://c:program
filesgoogleGoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Koppelingspagina's - res://c:program
filesgoogleGoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Opgeslagen momentopname van de pagina -
res://c:program filesgoogleGoogleToolbar2.dll/cmcache.html
O9 - Extra button: Run DAP - {669695BC-A811-4A9D-8CDF-BA8C795F261C} -
C:pROGRA~1DAPDAP.EXE
O9 - Extra button: Free Surfer - {AFC3FA82-AD07-45cd-8B57-983435B9899E} -
C:program FilesFree SurferFS20.exe
O9 - Extra 'Tools' menuitem: Free Surfer -
{AFC3FA82-AD07-45cd-8B57-983435B9899E} - C:program FilesFree
SurferFS20.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} -
C:program FilesMessengermsmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger -
{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:program
FilesMessengermsmsgs.exe

[Editiert am 12/10/2004 von johnny]

 
A

Anni

Guest
Re: hijackthis scan

hallo Johnny,
tu mir bitte einen Gefallen ja? :

die Logdatei aufmachen (es MUSS eine *.log oder eine *.txt datei sein, KEINE *.doc datei) alles markieren, und hier einfach nur einfügen.
du hast überall umbrüche drinnen, so kann ichs nicht auswerten.. weil man nicht genau weiss, was zu welchem eintrag gehört...

es muss 1:1 von der datei hierher kopiert werden....

LG
Anni

 
Status
Für weitere Antworten geschlossen.
Oben