Jogibear
nicht mehr wegzudenken
Hallo,
habe auf 2 PCs das Problem, daß nach dem Starten des PCs der Echtzeitschutz des Windows Defenders deaktiviert ist.
PC 1: Vista HP 32 mit Kaspersky Internet Security 2012
PC 2: Win 7 HP 64 mit McAfee Internet Security
Habe auf beiden PCs jeweils Spybot S&D sowie Hijack This durchlaufen lassen, konnte aber nichts feststellen. Hänge hier mal das Log von PC 2 an. Vlt. seht Ihr da ja was.
Danke im Voraus
habe auf 2 PCs das Problem, daß nach dem Starten des PCs der Echtzeitschutz des Windows Defenders deaktiviert ist.
PC 1: Vista HP 32 mit Kaspersky Internet Security 2012
PC 2: Win 7 HP 64 mit McAfee Internet Security
Habe auf beiden PCs jeweils Spybot S&D sowie Hijack This durchlaufen lassen, konnte aber nichts feststellen. Hänge hier mal das Log von PC 2 an. Vlt. seht Ihr da ja was.
Danke im Voraus
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:30:26, on 10.05.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe
C:\Windows\PLFSetI.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files (x86)\McAfee Security Scan\2.0.181\SSScheduler.exe
C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe
C:\Program Files (x86)\dcmsvc\dcmsvc.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
C:\Users\Jockel\Downloads\HiJackThis204.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = iGoogle Redirect
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = MSN Deutschland: Hotmail, Skype Download und Messenger sowie Nachrichten, Unterhaltung, Video, Sport, Lifestyle, Finanzen, Auto uvm. bei MSN
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = iGoogle Redirect
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = iGoogle Redirect
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 87.106.33.104 0190warner.mega-downloads.net
O1 - Hosts: 87.106.33.104 0ffice-2010-neu.com
O1 - Hosts: 87.106.33.104 0pen-0ffce3.com
O1 - Hosts: 87.106.33.104 0pen-0ffce.com
O1 - Hosts: 87.106.33.104 0pen-0ffice-2010.com
O1 - Hosts: 87.106.33.104 0pen0ffice2024.com
O1 - Hosts: 87.106.33.104 0pen0ffice2025.com
O1 - Hosts: 87.106.33.104 0pen0ffice-portal.com
O1 - Hosts: 87.106.33.104 0pen0fficetool.com
O1 - Hosts: 87.106.33.104 0pen-0fice.com
O1 - Hosts: 87.106.33.104 0pen0fice.com
O1 - Hosts: 87.106.33.104 0pen-office-10.com
O1 - Hosts: 87.106.33.104 0penoffice.de
O1 - Hosts: 87.106.33.104 0pen-officeportal.com
O1 - Hosts: 87.106.33.104 10000heisse-rezepte.com
O1 - Hosts: 87.106.33.104 10000rezepte.com
O1 - Hosts: 87.106.33.104 1000euro-gewinner.de
O1 - Hosts: 87.106.33.104 1000gratisproben.com
O1 - Hosts: 87.106.33.104 1000xringtone.com
O1 - Hosts: 87.106.33.104 1001namen.com
O1 - Hosts: 87.106.33.104 10loadtime.com
O1 - Hosts: 87.106.33.104 111.90.147.181
O1 - Hosts: 87.106.33.104 111sms.de
O1 - Hosts: 87.106.33.104 120gratissms.de
O1 - Hosts: 87.106.33.104 123-haben.com
O1 - Hosts: 87.106.33.104 123haustiereundmehr.com
O1 - Hosts: 87.106.33.104 123simsen.com
O1 - Hosts: 87.106.33.104 125sms.com
O1 - Hosts: 87.106.33.104 125sms.co.uk
O1 - Hosts: 87.106.33.104 12-haben.com
O1 - Hosts: 87.106.33.104 12-holen.com
O1 - Hosts: 87.106.33.104 12-kg-fett-weg.in
O1 - Hosts: 87.106.33.104 12win.de
O1 - Hosts: 87.106.33.104 150freesms.de
O1 - Hosts: 87.106.33.104 1a-download.com
O1 - Hosts: 87.106.33.104 1.aktuelle-version.com
O1 - Hosts: 87.106.33.104 1a-software.net
O1 - Hosts: 87.106.33.104 1a-tattoovorlagen.de
O1 - Hosts: 87.106.33.104 1a-tattoo-vorlagen.de
O1 - Hosts: 87.106.33.104 1pt.daria-cast.u69.de
O1 - Hosts: 87.106.33.104 1sg.daria-cast.u69.de
O1 - Hosts: 87.106.33.104 1sms.ch
O1 - Hosts: 87.106.33.104 1sms.de
O1 - Hosts: 87.106.33.104 1yo.daria-cast.u69.de
O1 - Hosts: 87.106.33.104 2011adidasbuy.com
O1 - Hosts: 87.106.33.104 2011adidasdeutsch.com
O1 - Hosts: 87.106.33.104 2011-download.com
O1 - Hosts: 87.106.33.104 2011e-adidas.com
O1 - Hosts: 87.106.33.104 2011e-adidas-neu.com
O1 - Hosts: 87.106.33.104 2011e-fahrrad.com
O1 - Hosts: 87.106.33.104 2011e-moebelneu.com
O1 - Hosts: 87.106.33.104 2011explorerjetzt.com
O1 - Hosts: 87.106.33.104 2011fahrrad-buy.com
O1 - Hosts: 87.106.33.104 2011-fahrradneu.com
O1 - Hosts: 87.106.33.104 2011-felgennbuy.com
O1 - Hosts: 87.106.33.104 2011-flashplyer-laden.com
O1 - Hosts: 87.106.33.104 2011kameraadiscount.com
O1 - Hosts: 87.106.33.104 2011kamera-buy.com
O1 - Hosts: 87.106.33.104 2011kamerasale.com
O1 - Hosts: 87.106.33.104 2011kinderwagenonline.com
O1 - Hosts: 87.106.33.104 2011-kuechenmobel.com
O1 - Hosts: 87.106.33.104 2011legofun.com
O1 - Hosts: 87.106.33.104 2011-livemessenger.com
O1 - Hosts: 87.106.33.104 2011mediaplayyer.com
O1 - Hosts: 87.106.33.104 2011moebel-buy.com
O1 - Hosts: 87.106.33.104 2011reifensales.com
O1 - Hosts: 87.106.33.104 2011-routenplanr.com
O1 - Hosts: 87.106.33.104 2011-routnplaner.com
O1 - Hosts: 87.106.33.104 2011-routn-planr.com
O1 - Hosts: 87.106.33.104 2011-routplanr.com
O1 - Hosts: 87.106.33.104 2011-saleadidas2.com
O1 - Hosts: 87.106.33.104 2011salekinderwagen.com
O1 - Hosts: 87.106.33.104 2011saleofkamera.com
O1 - Hosts: 87.106.33.104 2011saleofnavis.com
O1 - Hosts: 87.106.33.104 2011saleofstoffe.com
O1 - Hosts: 87.106.33.104 2011schuhesales.com
O1 - Hosts: 87.106.33.104 2011skypversionen.com
O1 - Hosts: 87.106.33.104 2011x-kuchengerate.com
O1 - Hosts: 87.106.33.104 24-routen-pianung.com
O1 - Hosts: 87.106.33.104 2a.ich-nackt-zuhause.net
O1 - Hosts: 87.106.33.104 2a.meine-privaten-nacktvideos.net
O1 - Hosts: 87.106.33.104 2moov.com
O1 - Hosts: 87.106.33.104 3-2-1-deins.eu
O1 - Hosts: 87.106.33.104 321download.info
O1 - Hosts: 87.106.33.104 321-gratis-sms.com
O1 - Hosts: 87.106.33.104 321perfekt.de
O1 - Hosts: 87.106.33.104 365e-adidas-neu.com
O1 - Hosts: 87.106.33.104 365e-fahrradneu.com
O1 - Hosts: 87.106.33.104 365e-kinderwagen.com
O1 - Hosts: 87.106.33.104 3-d-earthview.com
O1 - Hosts: 87.106.33.104 3dgoogieerth.com
O1 - Hosts: 87.106.33.104 3d-googierth.com
O1 - Hosts: 87.106.33.104 3dtictactoe.mega-downloads.net
O1 - Hosts: 87.106.33.104 3routenplnr2011.com
O1 - Hosts: 87.106.33.104 4d2.at
O1 - Hosts: 87.106.33.104 4starload.com
O1 - Hosts: 87.106.33.104 5download.de
O1 - Hosts: 87.106.33.104 5star-tools.info
O1 - Hosts: 87.106.33.104 6000vornamen.de
O1 - Hosts: 87.106.33.104 600sms.de
O1 - Hosts: 87.106.33.104 66sms.de
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\progra~1\mcafee\msk\mskapbho.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20120509220750.dll
O2 - BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [SuiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"
O4 - HKLM\..\Run: [EgisUpdate] "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d
O4 - HKLM\..\Run: [EgisTecPMMUpdate] "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [MobileConnect] %programfiles%\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe /silent
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [dcmsvc] C:\Program Files (x86)\dcmsvc\dcmsvc.exe
O4 - HKLM\..\Run: [IATSKY] C:\Program Files (x86)\i@Sky WIC\iatsky.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - Global Startup: McAfee Security Scan Plus.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: In Blog veröffentlichen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: In Windows Live Writer in Blog veröffentliche&n - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{1263D66C-CE9A-47CA-AE31-F18947E4EE73}: NameServer = 192.168.153.1,217.237.151.97
O17 - HKLM\System\CCS\Services\Tcpip\..\{E410B075-9F51-495D-BCEB-17A47EF6666B}: NameServer = 192.168.153.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{E84277B3-81CC-4338-9C3C-FAAC40FE0E0F}: NameServer = 139.7.30.125 139.7.30.126
O17 - HKLM\System\CS1\Services\Tcpip\..\{1263D66C-CE9A-47CA-AE31-F18947E4EE73}: NameServer = 192.168.153.1,217.237.151.97
O17 - HKLM\System\CS2\Services\Tcpip\..\{1263D66C-CE9A-47CA-AE31-F18947E4EE73}: NameServer = 192.168.153.1,217.237.151.97
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\progra~2\mcafee\msc\mcsniepl.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GREGService - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update-Dienst (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee OOBE Service (McOobeSv) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: MyWinLocker Service (MWLService) - Egis Technology Inc. - C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Updater Service - Acer Group - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: Vodafone Mobile Connect Service (VMCService) - Vodafone - C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 16723 bytes
Scan saved at 20:30:26, on 10.05.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe
C:\Windows\PLFSetI.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files (x86)\McAfee Security Scan\2.0.181\SSScheduler.exe
C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe
C:\Program Files (x86)\dcmsvc\dcmsvc.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
C:\Users\Jockel\Downloads\HiJackThis204.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = iGoogle Redirect
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = MSN Deutschland: Hotmail, Skype Download und Messenger sowie Nachrichten, Unterhaltung, Video, Sport, Lifestyle, Finanzen, Auto uvm. bei MSN
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = iGoogle Redirect
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = iGoogle Redirect
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 87.106.33.104 0190warner.mega-downloads.net
O1 - Hosts: 87.106.33.104 0ffice-2010-neu.com
O1 - Hosts: 87.106.33.104 0pen-0ffce3.com
O1 - Hosts: 87.106.33.104 0pen-0ffce.com
O1 - Hosts: 87.106.33.104 0pen-0ffice-2010.com
O1 - Hosts: 87.106.33.104 0pen0ffice2024.com
O1 - Hosts: 87.106.33.104 0pen0ffice2025.com
O1 - Hosts: 87.106.33.104 0pen0ffice-portal.com
O1 - Hosts: 87.106.33.104 0pen0fficetool.com
O1 - Hosts: 87.106.33.104 0pen-0fice.com
O1 - Hosts: 87.106.33.104 0pen0fice.com
O1 - Hosts: 87.106.33.104 0pen-office-10.com
O1 - Hosts: 87.106.33.104 0penoffice.de
O1 - Hosts: 87.106.33.104 0pen-officeportal.com
O1 - Hosts: 87.106.33.104 10000heisse-rezepte.com
O1 - Hosts: 87.106.33.104 10000rezepte.com
O1 - Hosts: 87.106.33.104 1000euro-gewinner.de
O1 - Hosts: 87.106.33.104 1000gratisproben.com
O1 - Hosts: 87.106.33.104 1000xringtone.com
O1 - Hosts: 87.106.33.104 1001namen.com
O1 - Hosts: 87.106.33.104 10loadtime.com
O1 - Hosts: 87.106.33.104 111.90.147.181
O1 - Hosts: 87.106.33.104 111sms.de
O1 - Hosts: 87.106.33.104 120gratissms.de
O1 - Hosts: 87.106.33.104 123-haben.com
O1 - Hosts: 87.106.33.104 123haustiereundmehr.com
O1 - Hosts: 87.106.33.104 123simsen.com
O1 - Hosts: 87.106.33.104 125sms.com
O1 - Hosts: 87.106.33.104 125sms.co.uk
O1 - Hosts: 87.106.33.104 12-haben.com
O1 - Hosts: 87.106.33.104 12-holen.com
O1 - Hosts: 87.106.33.104 12-kg-fett-weg.in
O1 - Hosts: 87.106.33.104 12win.de
O1 - Hosts: 87.106.33.104 150freesms.de
O1 - Hosts: 87.106.33.104 1a-download.com
O1 - Hosts: 87.106.33.104 1.aktuelle-version.com
O1 - Hosts: 87.106.33.104 1a-software.net
O1 - Hosts: 87.106.33.104 1a-tattoovorlagen.de
O1 - Hosts: 87.106.33.104 1a-tattoo-vorlagen.de
O1 - Hosts: 87.106.33.104 1pt.daria-cast.u69.de
O1 - Hosts: 87.106.33.104 1sg.daria-cast.u69.de
O1 - Hosts: 87.106.33.104 1sms.ch
O1 - Hosts: 87.106.33.104 1sms.de
O1 - Hosts: 87.106.33.104 1yo.daria-cast.u69.de
O1 - Hosts: 87.106.33.104 2011adidasbuy.com
O1 - Hosts: 87.106.33.104 2011adidasdeutsch.com
O1 - Hosts: 87.106.33.104 2011-download.com
O1 - Hosts: 87.106.33.104 2011e-adidas.com
O1 - Hosts: 87.106.33.104 2011e-adidas-neu.com
O1 - Hosts: 87.106.33.104 2011e-fahrrad.com
O1 - Hosts: 87.106.33.104 2011e-moebelneu.com
O1 - Hosts: 87.106.33.104 2011explorerjetzt.com
O1 - Hosts: 87.106.33.104 2011fahrrad-buy.com
O1 - Hosts: 87.106.33.104 2011-fahrradneu.com
O1 - Hosts: 87.106.33.104 2011-felgennbuy.com
O1 - Hosts: 87.106.33.104 2011-flashplyer-laden.com
O1 - Hosts: 87.106.33.104 2011kameraadiscount.com
O1 - Hosts: 87.106.33.104 2011kamera-buy.com
O1 - Hosts: 87.106.33.104 2011kamerasale.com
O1 - Hosts: 87.106.33.104 2011kinderwagenonline.com
O1 - Hosts: 87.106.33.104 2011-kuechenmobel.com
O1 - Hosts: 87.106.33.104 2011legofun.com
O1 - Hosts: 87.106.33.104 2011-livemessenger.com
O1 - Hosts: 87.106.33.104 2011mediaplayyer.com
O1 - Hosts: 87.106.33.104 2011moebel-buy.com
O1 - Hosts: 87.106.33.104 2011reifensales.com
O1 - Hosts: 87.106.33.104 2011-routenplanr.com
O1 - Hosts: 87.106.33.104 2011-routnplaner.com
O1 - Hosts: 87.106.33.104 2011-routn-planr.com
O1 - Hosts: 87.106.33.104 2011-routplanr.com
O1 - Hosts: 87.106.33.104 2011-saleadidas2.com
O1 - Hosts: 87.106.33.104 2011salekinderwagen.com
O1 - Hosts: 87.106.33.104 2011saleofkamera.com
O1 - Hosts: 87.106.33.104 2011saleofnavis.com
O1 - Hosts: 87.106.33.104 2011saleofstoffe.com
O1 - Hosts: 87.106.33.104 2011schuhesales.com
O1 - Hosts: 87.106.33.104 2011skypversionen.com
O1 - Hosts: 87.106.33.104 2011x-kuchengerate.com
O1 - Hosts: 87.106.33.104 24-routen-pianung.com
O1 - Hosts: 87.106.33.104 2a.ich-nackt-zuhause.net
O1 - Hosts: 87.106.33.104 2a.meine-privaten-nacktvideos.net
O1 - Hosts: 87.106.33.104 2moov.com
O1 - Hosts: 87.106.33.104 3-2-1-deins.eu
O1 - Hosts: 87.106.33.104 321download.info
O1 - Hosts: 87.106.33.104 321-gratis-sms.com
O1 - Hosts: 87.106.33.104 321perfekt.de
O1 - Hosts: 87.106.33.104 365e-adidas-neu.com
O1 - Hosts: 87.106.33.104 365e-fahrradneu.com
O1 - Hosts: 87.106.33.104 365e-kinderwagen.com
O1 - Hosts: 87.106.33.104 3-d-earthview.com
O1 - Hosts: 87.106.33.104 3dgoogieerth.com
O1 - Hosts: 87.106.33.104 3d-googierth.com
O1 - Hosts: 87.106.33.104 3dtictactoe.mega-downloads.net
O1 - Hosts: 87.106.33.104 3routenplnr2011.com
O1 - Hosts: 87.106.33.104 4d2.at
O1 - Hosts: 87.106.33.104 4starload.com
O1 - Hosts: 87.106.33.104 5download.de
O1 - Hosts: 87.106.33.104 5star-tools.info
O1 - Hosts: 87.106.33.104 6000vornamen.de
O1 - Hosts: 87.106.33.104 600sms.de
O1 - Hosts: 87.106.33.104 66sms.de
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\progra~1\mcafee\msk\mskapbho.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20120509220750.dll
O2 - BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [SuiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"
O4 - HKLM\..\Run: [EgisUpdate] "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d
O4 - HKLM\..\Run: [EgisTecPMMUpdate] "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [MobileConnect] %programfiles%\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe /silent
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [dcmsvc] C:\Program Files (x86)\dcmsvc\dcmsvc.exe
O4 - HKLM\..\Run: [IATSKY] C:\Program Files (x86)\i@Sky WIC\iatsky.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - Global Startup: McAfee Security Scan Plus.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: In Blog veröffentlichen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: In Windows Live Writer in Blog veröffentliche&n - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{1263D66C-CE9A-47CA-AE31-F18947E4EE73}: NameServer = 192.168.153.1,217.237.151.97
O17 - HKLM\System\CCS\Services\Tcpip\..\{E410B075-9F51-495D-BCEB-17A47EF6666B}: NameServer = 192.168.153.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{E84277B3-81CC-4338-9C3C-FAAC40FE0E0F}: NameServer = 139.7.30.125 139.7.30.126
O17 - HKLM\System\CS1\Services\Tcpip\..\{1263D66C-CE9A-47CA-AE31-F18947E4EE73}: NameServer = 192.168.153.1,217.237.151.97
O17 - HKLM\System\CS2\Services\Tcpip\..\{1263D66C-CE9A-47CA-AE31-F18947E4EE73}: NameServer = 192.168.153.1,217.237.151.97
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\progra~2\mcafee\msc\mcsniepl.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GREGService - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update-Dienst (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee OOBE Service (McOobeSv) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: MyWinLocker Service (MWLService) - Egis Technology Inc. - C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Updater Service - Acer Group - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: Vodafone Mobile Connect Service (VMCService) - Vodafone - C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 16723 bytes