![]() |
|
Plagegeister aller Art und deren Bekämpfung: msvcrl.dll fehlt nach Trojaner AngriffWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() |
|
![]() | #1 |
/// Helfer-Team ![]() ![]() ![]() ![]() | ![]() msvcrl.dll fehlt nach Trojaner Angriff Hi, mein Internet Explorer funktioniert obwohl es auf meinem System keine msvcrl.dll gibt. Da dürfte der Virenscanner Recht gehabt haben und Du jetzt wissen, dass sich manche Malware derart im System verankert, dass es ohne sie dann nicht mehr geht. Bei dem Dateinamen fallen mir so die Stichwörter "Rootkit, Haxdoor, Keylogger, Backdoor" ein. Möglicherweise hilft es dir jetzt, dir einen anderen Browser zu laden (Firefox), falls Du ansonsten alle Logs erst zu einem anderen Computer schaffen musst. Vielleicht bleibst Du bei dem dann gleich hängen, wäre sicherer. Dann solltest Du, wie schon weiter oben im Thread beschrieben, ein HijackThis Log anfertigen und hier reinstellen. Und so ganz auf Verdacht gehe mal zu VirusTotal, lasse folgende Dateien dort scannen und kopiere die Ergebnisse inklusive MD5, SHA1 usw. hierher:
Gruß, Karl |
![]() | #2 | |
| ![]() msvcrl.dll fehlt nach Trojaner AngriffZitat:
Antivirus Version Update Result AhnLab-V3 2007.5.30.0 05.29.2007 no virus found AntiVir 7.4.0.27 05.29.2007 no virus found Authentium 4.93.8 05.23.2007 no virus found Avast 4.7.997.0 05.29.2007 no virus found AVG 7.5.0.467 05.28.2007 no virus found BitDefender 7.2 05.29.2007 no virus found CAT-QuickHeal 9.00 05.28.2007 no virus found ClamAV devel-20070416 05.29.2007 no virus found DrWeb 4.33 05.29.2007 no virus found eSafe 7.0.15.0 05.28.2007 no virus found eTrust-Vet 30.7.3672 05.29.2007 no virus found Ewido 4.0 05.29.2007 no virus found FileAdvisor 1 05.29.2007 No threat detected Fortinet 2.85.0.0 05.29.2007 no virus found F-Prot 4.3.2.48 05.25.2007 no virus found F-Secure 6.70.13030.0 05.29.2007 no virus found Ikarus T3.1.1.8 05.29.2007 no virus found Kaspersky 4.0.2.24 05.29.2007 no virus found McAfee 5040 05.28.2007 no virus found Microsoft 1.2503 05.29.2007 no virus found NOD32v2 2295 05.29.2007 no virus found Norman 5.80.02 05.29.2007 no virus found Panda 9.0.0.4 05.28.2007 no virus found Prevx1 V2 05.29.2007 no virus found Sophos 4.18.0 05.28.2007 no virus found Sunbelt 2.2.907.0 05.26.2007 no virus found Symantec 10 05.29.2007 no virus found TheHacker 6.1.6.124 05.28.2007 no virus found VBA32 3.12.0 05.28.2007 no virus found VirusBuster 4.3.23:9 05.28.2007 no virus found Webwasher-Gateway 6.0.1 05.29.2007 no virus found Aditional Information File size: 135168 bytes MD5: a8355223e08e7da6492af59905da8843 SHA1: 9e6e47d23a1de5e59f958beee2aa4e0ccb3bf0f3 Bit9 info: http://fileadvisor.bit9.com/services/extinfo.aspx?md5=a8355223e08e7da6492af59905da8843 das hier sieht dann wohl weniger erfreulich aus.... STATUS: FINISHED Complete scanning result of "iexplore.exe", received in VirusTotal at 05.29.2007, 11:37:50 (CET). Antivirus Version Update Result AhnLab-V3 2007.5.29.1 05.29.2007 no virus found AntiVir 7.4.0.27 05.29.2007 TR/Spy.Goldun.MS.47 Authentium 4.93.8 05.23.2007 no virus found Avast 4.7.997.0 05.28.2007 no virus found AVG 7.5.0.467 05.28.2007 no virus found BitDefender 7.2 05.29.2007 Trojan.Goldun.Patched.A CAT-QuickHeal 9.00 05.28.2007 TrojanSpy.Goldun.ms ClamAV devel-20070416 05.29.2007 no virus found DrWeb 4.33 05.29.2007 Trojan.PWS.GoldSpy eSafe 7.0.15.0 05.28.2007 Win32.Goldun.mseTrust-Vet 30.7.3672 05.29.2007 Win32/Goesna Ewido 4.0 05.28.2007 Logger.Goldun.ms FileAdvisor 1 05.29.2007 High threat detected Fortinet 2.85.0.0 05.29.2007 Spy/GoldunF-Prot 4.3.2.48 05.25.2007 no virus found F-Secure 6.70.13030.0 05.29.2007 Trojan-Spy.Win32.Goldun.ms Ikarus T3.1.1.8 05.29.2007 Trojan-Spy.Win32.Goldun.ms Kaspersky 4.0.2.24 05.29.2007 Trojan-Spy.Win32.Goldun.ms McAfee 5040 05.28.2007 no virus found Microsoft 1.2503 05.29.2007 no virus found NOD32v2 2295 05.29.2007 no virus found Norman 5.80.02 05.28.2007 W32/Goldun.ATP Panda 9.0.0.4 05.28.2007 no virus found Prevx1 V2 05.29.2007 no virus found Sophos 4.18.0 05.28.2007 no virus found Sunbelt 2.2.907.0 05.26.2007 Goldun.Fam Symantec 10 05.29.2007 no virus found TheHacker 6.1.6.124 05.28.2007 no virus found VBA32 3.12.0 05.28.2007 no virus found VirusBuster 4.3.23:9 05.28.2007 Trojan.Patched.Q Webwasher-Gateway6.0.1 05.29.2007Trojan.Spy.Goldun.MS.47 Aditional Information File size: 91648 bytes MD5: 1b2a21e882357c87da150b0e3c6450d1 SHA1: 4f05564ecea9c7b801e89b764e18260a212876a3 Bit9 info: http://fileadvisor.bit9.com/services/extinfo.aspx?md5=1b2a21e882357c87da150b0e3c6450d1 ![]() |
![]() | #3 |
| ![]() msvcrl.dll fehlt nach Trojaner Angriff C:\WINDOWS\System32\MsPMSPSv.exe
__________________C:\Programme\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe C:\Programme\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe c:\programme\gemeinsame dateien\aol\1159479259\ee\services\antiSpywareApp\ver2_0_28_1\AOLSP Scheduler.exe C:\Programme\Gemeinsame Dateien\Logitech\khalshared\KHALMNPR.EXE C:\Programme\Gemeinsame Dateien\Sony Shared\AVLib\SSScsiSV.exe C:\WINDOWS\System32\WgaTray.exe C:\WINDOWS\System32\wuauclt.exe C:\Programme\AOL 9.0\waol.exe C:\Programme\AOL 9.0\shellmon.exe C:\Programme\SiteAdvisor\6061\SAService.exe C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe C:\PROGRA~1\McAfee\MSC\mcpromgr.exe c:\programme\gemeinsame dateien\mcafee\mna\mcnasvc.exe c:\PROGRA~1\mcafee.com\agent\mcagent.exe C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe c:\PROGRA~1\GEMEIN~1\mcafee\mcproxy\mcproxy.exe C:\PROGRA~1\McAfee\MPS\mps.exe C:\Programme\Gemeinsame Dateien\McAfee\HackerWatch\HWAPI.exe c:\PROGRA~1\GEMEIN~1\mcafee\redirsvc\redirsvc.exe C:\PROGRA~1\GEMEIN~1\McAfee\EmProxy\emproxy.exe C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe C:\Programme\McAfee\MPS\mpsevh.exe C:\Programme\McAfee\MPF\MPFSrv.exe C:\Programme\McAfee\MSK\MskSrver.exe C:\Programme\McAfee\MSK\MskAgent.exe C:\WINDOWS\System32\wbem\wmiprvse.exe C:\Programme\Gemeinsame Dateien\Aol\aoltpspd.exe c:\programme\mcafee\msc\mcshell.exe F:\Spiele\WOW\World of Warcraft\WoW.exe C:\WINDOWS\system32\rundll32.exe C:\Programme\Adobe\Acrobat 7.0\Reader\AcroRd32.exe C:\Programme\WinRAR\WinRAR.exe C:\DOKUME~1\SS\LOKALE~1\Temp\Rar$EX00.500\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.de/0SEDEDE/SAOS01?FORM=TOOLBR R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.aol.de/e60/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.aol.de/e60/ R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.de/0SEDEDE/SAOS01?FORM=TOOLBR R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer bereitgestellt von AOL R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Programme\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Programme\SiteAdvisor\6061\SiteAdv.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: EWPBrowseObject Class - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Programme\Canon\Easy-WebPrint\EWPBrowseLoader.dll O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\programme\mcafee\virusscan\scriptcl.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\Windows Live Toolbar\msntb.dll O2 - BHO: McAfee Popup Blocker - {C68AE9C0-0909-4DDC-B661-C1AFB9F5AE53} - c:\programme\mcafee\mps\mcpopup.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Programme\Canon\Easy-WebPrint\Toolband.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\Windows Live Toolbar\msntb.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Programme\SiteAdvisor\6061\SiteAdv.dll O4 - HKLM\..\Run: [nTrayFw] C:\Programme\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [AOLDialer] C:\Programme\Gemeinsame Dateien\AOL\ACS\AOLDial.exe O4 - HKLM\..\Run: [razertra] C:\Programme\Razer\razertra.exe O4 - HKLM\..\Run: [razer] C:\Programme\Razer\razerhid.exe O4 - HKLM\..\Run: [mmtask] C:\Programme\Musicmatch\Musicmatch Jukebox\mmtask.exe O4 - HKLM\..\Run: [HostManager] C:\Programme\Gemeinsame Dateien\AOL\1159479259\ee\AOLSoftware.exe O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [SsAAD.exe] C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe O4 - HKLM\..\Run: [MskAgentexe] C:\Programme\McAfee\MSK\MskAgent.exe O4 - HKLM\..\Run: [SiteAdvisor] C:\Programme\SiteAdvisor\6061\SiteAdv.exe O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe O4 - HKCU\..\Run: [LDM] C:\Programme\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe O4 - HKCU\..\Run: [updateMgr] C:\Programme\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9 O4 - HKCU\..\Run: [AtiTrayTools] "C:\Programme\Ray Adams\ATI Tray Tools\atitray.exe" O4 - HKCU\..\Run: [StartCCC] C:\Programme\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe O4 - Global Startup: Adobe Reader - Schnellstart.lnk = C:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: AOL 9.0 Tray-Symbol.lnk = C:\Programme\AOL 9.0\aoltray.exe O4 - Global Startup: FRITZ!DSL Startcenter.lnk = C:\Programme\FRITZ!DSL\StCenter.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Programme\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O4 - Global Startup: Logitech SetPoint.lnk = C:\Programme\Logitech\SetPoint\SetPoint.exe O8 - Extra context menu item: &Windows Live Search - res://C:\Programme\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Add selected links to Link Container - C:\PROGRA~1\ANTIVI~1\WEBFIL~1\System\Scripts\off_collector_sel.htm O8 - Extra context menu item: Easy-WebPrint - Drucken - res://C:\Programme\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html O8 - Extra context menu item: Easy-WebPrint - Schnelldruck - res://C:\Programme\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html O8 - Extra context menu item: Easy-WebPrint - Vorschau - res://C:\Programme\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html O8 - Extra context menu item: Easy-WebPrint - Zu Druckliste hinzufügen - res://C:\Programme\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html O8 - Extra context menu item: Show domain links - C:\PROGRA~1\ANTIVI~1\WEBFIL~1\System\Scripts\off_domain_links.htm O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\MSMSGS.EXE O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\MSMSGS.EXE O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll die Automatische Auswertung des HijackThis Logfiles sieht eigentlich ganz gut aus... |
![]() | #4 |
| ![]() msvcrl.dll fehlt nach Trojaner Angriff hier noch der Rest vom File.... O14 - IERESET.INF: START_PAGE_URL=http://www.aol.de/e60/ O16 - DPF: {26CBF141-7D0F-46E1-AA06-718958B6E4D2} - http://download.ebay.com/turbo_lister/DE/install.cab O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Programme\Yahoo!\Common\yinsthelper.dll O16 - DPF: {B49C4597-8721-4789-9250-315DFBD9F525} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/radio/ampx/ampx2.6.1.11_en_dl.cab O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game08.zylom.com/activex/zylomgamesplayer.cab O16 - DPF: {DEB21AD3-FDA4-42F6-B57D-EE696A675EE8} (IPSUploader Control) - http://as.photoprintit.de/ips-opdata/layout/default01/activex/IPSUploader.cab O16 - DPF: {F525DBBD-60D6-45CD-B64E-3D71BA5F7395} (VPlayer Control) - http://streaming.vividas.com/uip/germany/player/vivid_ocx.jpeg O17 - HKLM\System\CCS\Services\Tcpip\..\{C394C455-1154-4092-9AA1-16707737DF24}: NameServer = 205.188.146.145 O18 - Protocol: bw+0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw+0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: bwg0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwg0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0s - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: offline-8876480 - {8FEA3CA2-36BF-40A7-866C-D54BCEFACC54} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: siteadvisor - {3A5DC592-7723-4EAA-9EE6-AF4222BCF879} - C:\Programme\SiteAdvisor\6061\SiteAdv.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: McAfee Application Installer Cleanup (0296051180360944) (0296051180360944mcinstcleanup) - McAfee, Inc. - C:\DOKUME~1\SS\LOKALE~1\Temp\029605~1.EXE O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\Programme\Gemeinsame Dateien\AOL\ACS\AOLAcsd.exe O23 - Service: app_filter - Unknown owner - C:\Programme\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: AVM IGD CTRL Service - AVM Berlin - C:\Programme\FRITZ!DSL\IGDCTRL.EXE O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTSvcCDA.EXE O23 - Service: AVM FRITZ!web Routing Service (de_serv) - AVM Berlin - C:\Programme\Gemeinsame Dateien\AVM\de_serv.exe O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\GEMEIN~1\McAfee\EmProxy\emproxy.exe O23 - Service: Forceware Web Interface (ForcewareWebInterface) - Unknown owner - C:\Programme\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe" -k runservice (file missing) O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Programme\Gemeinsame Dateien\McAfee\HackerWatch\HWAPI.exe O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\programme\gemeinsame dateien\mcafee\mna\mcnasvc.exe O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\GEMEIN~1\mcafee\mcproxy\mcproxy.exe O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\GEMEIN~1\mcafee\redirsvc\redirsvc.exe O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Programme\McAfee\MPF\MPFSrv.exe O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\PROGRA~1\McAfee\MPS\mps.exe O23 - Service: MSCSPTISRV - Sony Corporation - C:\Programme\Gemeinsame Dateien\Sony Shared\AVLib\MSCSPTISRV.exe O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Programme\McAfee\MSK\MskSrver.exe O23 - Service: ForceWare IP service (nSvcIp) - Unknown owner - C:\Programme\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe O23 - Service: ForceWare user log service (nSvcLog) - Unknown owner - C:\Programme\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe O23 - Service: PACSPTISVR - Sony Corporation - C:\Programme\Gemeinsame Dateien\Sony Shared\AVLib\PACSPTISVR.exe O23 - Service: Spyware Doctor Auxiliary Service (sdAuxService) - PC Tools - C:\Programme\Spyware Doctor\svcntaux.exe O23 - Service: Spyware Doctor Service (sdCoreService) - PC Tools - C:\Programme\Spyware Doctor\swdsvc.exe O23 - Service: SiteAdvisor Service - McAfee, Inc. - C:\Programme\SiteAdvisor\6061\SAService.exe O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Programme\Gemeinsame Dateien\Sony Shared\AVLib\SPTISRV.exe O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Programme\Gemeinsame Dateien\Sony Shared\AVLib\SSScsiSV.exe O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Programme\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe |
![]() |
Themen zu msvcrl.dll fehlt nach Trojaner Angriff |
.dll, adware, askbar, browser, dateien, desktop, ellung, entfernen, explorer, explorers, google, hilfreich, internet, internet explorer, internet security, kaspersky, malware, neustart, programme, prüfen, scan, secure, security, software, system, systemwiederherstellung, trojaner, updates, windows |