![]() |
|
Log-Analyse und Auswertung: Hilfe!! BDS Haxdoor LJ1Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() |
|
![]() | #1 |
![]() | ![]() Hilfe!! BDS Haxdoor LJ1 Ich brauche dringend Hilfe!! Gestern abend fing es mir nichts dir nichts an, war nur Post gucken, erst kommen Fenster, mein Computer sei "in Danger" etc. worauf ich mir Antivir geholt habe. Danach kam ein Fenster dass ein Virus gefunden wurde, schließ ich das, öffnet sich ein neues. Das wurde dann imemr schneller pro sekunde später 3 Stück,und ich kam nicht mehr hinterher... Da stand auch der Name BDS Haxdoor LJ1 da. Hier läuft gar nix mehr, um eine Seite zu laden braucht es 20min und die Fund Meldungen hab ich in den Hintergrund geschoben. Hab auf dem Foruma uch schon was von HJT gelesen und mir mal sone Logfile machen lassen,d ie ich hie rpich mich damit nicht so auskenne. Was muss ich jetzt tun? Hier die Logfile Ich will das Ding runter.. Oder hilft da nur eine Neuinstallation des Betriebssystems? (das hab ich aber schon versucht, ist immernoch) |
![]() | #2 |
![]() | ![]() Hilfe!! BDS Haxdoor LJ1 LOGFILE
__________________Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 15:15:12, on 10.03.2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: F:\WINDOWS\System32\smss.exe F:\WINDOWS\system32\winlogon.exe F:\WINDOWS\system32\services.exe F:\WINDOWS\system32\lsass.exe F:\WINDOWS\System32\svchost.exe F:\WINDOWS\system32\svchost.exe F:\WINDOWS\system32\spoolsv.exe F:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe F:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe F:\Programme\Ahead\InCD\InCDsrv.exe F:\Programme\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe F:\Programme\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe F:\WINDOWS\System32\nvsvc32.exe F:\WINDOWS\system32\svchost.exe F:\Programme\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe F:\WINDOWS\System32\svchost.exe F:\WINDOWS\system32\dllhost.exe F:\WINDOWS\Explorer.EXE F:\Programme\Gemeinsame Dateien\AOL\1158438403\ee\AOLSoftware.exe F:\Programme\Java\jre1.5.0_06\bin\jusched.exe F:\WINDOWS\System32\LVCOMSX.EXE F:\Programme\Logitech\Video\LogiTray.exe F:\Programme\QuickTime\qttask.exe F:\WINDOWS\system32\devldr32.exe F:\Programme\iTunes\iTunesHelper.exe F:\Programme\Winamp\winampa.exe F:\Programme\iPod\bin\iPodService.exe F:\Programme\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe F:\WINDOWS\system32\CTHELPER.EXE F:\Programme\Ahead\InCD\InCD.exe F:\Programme\ScanSoft\OmniPageSE4\OpwareSE4.exe F:\WINDOWS\System32\spool\drivers\w32x86\3\WrtMon.exe F:\WINDOWS\System32\spool\drivers\w32x86\3\WrtProc.exe F:\Programme\Avira\AntiVir PersonalEdition Classic\avgnt.exe F:\Programme\Logitech\Video\FxSvr2.exe F:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe F:\Programme\Yahoo!\Messenger\ymsgr_tray.exe F:\Programme\Messenger\msmsgs.exe F:\Programme\AIM95\aim.exe F:\Programme\Pando Networks\Pando\Pando.exe F:\Programme\Rainlendar2\Rainlendar2.exe F:\Programme\ICQ6\ICQ.exe F:\Programme\ArcorOnline\AOButler.exe F:\Programme\MSN Messenger\msnmsgr.exe F:\Programme\Avira\AntiVir PersonalEdition Classic\GUARDGUI.EXE F:\Programme\Avira\AntiVir PersonalEdition Classic\GUARDGUI.EXE F:\Programme\Avira\AntiVir PersonalEdition Classic\GUARDGUI.EXE F:\Programme\Avira\AntiVir PersonalEdition Classic\GUARDGUI.EXE F:\Programme\Avira\AntiVir PersonalEdition Classic\GUARDGUI.EXE F:\Programme\Avira\AntiVir PersonalEdition Classic\GUARDGUI.EXE F:\Programme\Avira\AntiVir PersonalEdition Classic\GUARDGUI.EXE F:\Programme\Avira\AntiVir PersonalEdition Classic\GUARDGUI.EXE F:\Programme\Mozilla Firefox\firefox.exe F:\Programme\Adobe\Acrobat 7.0\Reader\AcroRd32.exe F:\Programme\HJT\HiJackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/ymj/*http://www.yahoo.com/ext/search/search.html R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Arcor AG & Co. KG R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - F:\PROGRA~1\ICQTOO~1\toolbaru.dll O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - F:\Programme\Yahoo!\Companion\Installs\cpn4\yt.dll O2 - BHO: XTTBPos00 - {055FD26D-3A88-4e15-963D-DC8493744B1D} - F:\PROGRA~1\ICQTOO~1\toolbaru.dll O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - F:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: DirectPluginX Class - {37FF719A-A736-4FAB-8CBF-7B905277648D} - F:\DOKUME~1\ANONYM~1\LOKALE~1\Temp\~util32.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - F:\Programme\Java\jre1.5.0_06\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - F:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - f:\programme\google\googletoolbar3.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - F:\Programme\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll O2 - BHO: (no name) - {D032570A-5F63-4812-A094-87D007C23012} - F:\WINDOWS\System32\IEBHO.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - F:\Programme\Yahoo!\Companion\Installs\cpn4\yt.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - f:\programme\google\googletoolbar3.dll O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - F:\PROGRA~1\ICQTOO~1\toolbaru.dll O3 - Toolbar: RX Toolbar - {25D8BACF-3DE2-4B48-AE22-D659B8D835B0} - F:\Programme\RXToolBar\RXToolBar.dll O4 - HKLM\..\Run: [HostManager] F:\Programme\Gemeinsame Dateien\AOL\1158438403\ee\AOLSoftware.exe O4 - HKLM\..\Run: [IPHSend] F:\Programme\Gemeinsame Dateien\AOL\IPHSend\IPHSend.exe O4 - HKLM\..\Run: [SunJavaUpdateSched] F:\Programme\Java\jre1.5.0_06\bin\jusched.exe O4 - HKLM\..\Run: [LVCOMSX] F:\WINDOWS\System32\LVCOMSX.EXE O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE F:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [LogitechVideoRepair] F:\Programme\Logitech\Video\ISStart.exe O4 - HKLM\..\Run: [LogitechVideoTray] F:\Programme\Logitech\Video\LogiTray.exe O4 - HKLM\..\Run: [QuickTime Task] "F:\Programme\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "F:\Programme\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [WinampAgent] F:\Programme\Winamp\winampa.exe O4 - HKLM\..\Run: [nTrayFw] F:\Programme\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE O4 - HKLM\..\Run: [UpdReg] F:\WINDOWS\UpdReg.EXE O4 - HKLM\..\Run: [Jet Detection] F:\Programme\Creative\SBLive\PROGRAM\ADGJDet.exe O4 - HKLM\..\Run: [NeroFilterCheck] F:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [InCD] F:\Programme\Ahead\InCD\InCD.exe O4 - HKLM\..\Run: [SSBkgdUpdate] "F:\Programme\Gemeinsame Dateien\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot O4 - HKLM\..\Run: [OpwareSE4] "F:\Programme\ScanSoft\OmniPageSE4\OpwareSE4.exe" O4 - HKLM\..\Run: [WrtMon.exe] F:\WINDOWS\System32\spool\drivers\w32x86\3\WrtMon.exe O4 - HKLM\..\Run: [avgnt] "F:\Programme\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE F:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit O4 - HKCU\..\Run: [Yahoo! Pager] F:\Programme\Yahoo!\Messenger\ypager.exe -quiet O4 - HKCU\..\Run: [LogitechSoftwareUpdate] F:\Programme\Logitech\Video\ManifestEngine.exe boot O4 - HKCU\..\Run: [swg] F:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [itchdog] F:\DOKUME~1\ANONYM~1\ANWEND~1\FRAGEQ~1\size admin for.exe O4 - HKCU\..\Run: [MSMSGS] "F:\Programme\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [AIM] F:\Programme\AIM95\aim.exe -cnetwait.odl O4 - HKCU\..\Run: [Pando] "F:\Programme\Pando Networks\Pando\Pando.exe" /Minimized O4 - HKCU\..\Run: [Rainlendar2] F:\Programme\Rainlendar2\Rainlendar2.exe O4 - HKCU\..\Run: [ICQ] "F:\Programme\ICQ6\ICQ.exe" silent O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] F:\WINDOWS\System32\CTFMON.EXE (User 'LOKALER DIENST') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] F:\WINDOWS\System32\CTFMON.EXE (User 'NETZWERKDIENST') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] F:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] F:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O4 - Global Startup: Adobe Reader Speed Launch.lnk = F:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O4 - Global Startup: Microsoft Office.lnk = F:\Programme\Microsoft Office\Office10\OSA.EXE O4 - Global Startup: Remote Control.lnk = F:\Programme\TEVION Multimedia\DVB-T 100 Utilities\DVBTRCtl.EXE O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1 O7 - HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1 O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://F:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - F:\Programme\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - F:\Programme\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - F:\PROGRA~1\Yahoo!\Common\yhexbmesde.dll O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - F:\PROGRA~1\Yahoo!\Common\yhexbmesde.dll O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - F:\Programme\AIM95\aim.exe O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - F:\Programme\ICQLite\ICQLite.exe (file missing) O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - F:\Programme\ICQLite\ICQLite.exe (file missing) O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - F:\Programme\ICQ6\ICQ.exe O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - F:\Programme\ICQ6\ICQ.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Programme\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Programme\Messenger\msmsgs.exe O10 - Unknown file in Winsock LSP: f:\windows\system32\nwprovau.dll O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab O16 - DPF: {45A0A292-ECC6-4D8F-9EA9-A4BD411D24C1} (king.com) - http://www.king.com/ctl/kingcomie.cab O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by132fd.bay132.hotmail.msn.com/resources/MsnPUpld.cab O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/DE-DE/a-UNO1/GAME_UNO1.cab O16 - DPF: {69EF49E5-FE46-4B92-B5FA-2193AB7A6B8A} (GameLauncher Control) - http://www.acclaim.com/cabs/acclaim_v5.cab O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.lokalisten.de/iup/ImageUploader4.cab O16 - DPF: {8C875948-9C60-4381-9248-0DF180542D53} (HbtInstObj) - http://installs.hotbar.com/installs/hbtools/programs/hbtools.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab O16 - DPF: {97E71027-0BA2-44F2-97DB-F84D808ED0B6} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab55762.cab O16 - DPF: {A20B1BB0-AC3D-4530-85F3-791B81303190} (ICQDevilImg Control) - http://xtraz.icq.com/xtraz/products/photo/english/ICQDevilImg.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab57213.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab57176.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{E26363A1-FCE9-4443-AD8A-6D9C16C17D3C}: NameServer = 195.50.140.252 195.50.140.114 O18 - Protocol: bw+0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw+0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw-0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw-0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw00 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw00s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw10 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw10s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw20 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw20s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw30 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw30s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw40 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw40s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw50 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw50s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw60 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw60s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw70 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw70s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw80 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw80s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw90 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bw90s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwa0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) |
![]() | #3 |
![]() | ![]() Hilfe!! BDS Haxdoor LJ1 FORTSETZUNG (da zu lang)
__________________O18 - Protocol: bwa0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwb0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwb0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwc0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwc0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwd0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwd0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwe0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwe0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwf0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwf0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwg0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwg0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwh0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwh0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwi0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwi0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwj0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwj0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwk0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwk0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwl0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwl0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwm0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwm0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwn0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwn0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwo0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwo0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwp0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwp0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwq0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwq0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwr0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwr0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bws0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bws0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwt0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwt0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwu0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwu0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwv0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwv0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bww0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bww0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwx0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwx0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwy0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwy0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwz0 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: bwz0s - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O18 - Protocol: offline-8876480 - {347266D0-41ED-4C39-9161-A04AA6666816} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) O20 - Winlogon Notify: rlx5dom1 - rlx5dom1.dll (file missing) O22 - SharedTaskScheduler: Windows Installer Class - {020487CC-FC04-4B1E-863F-D9801796230B} - F:\DOKUME~1\ANONYM~1\LOKALE~1\Temp\wndutl32.dll O23 - Service: AntiVir PersonalEdition Classic Planer (AntiVirScheduler) - Avira GmbH - F:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - F:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - F:\Programme\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe O23 - Service: Google Updater Service (gusvc) - Google - F:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InCD Helper (InCDsrv) - AHEAD Software - F:\Programme\Ahead\InCD\InCDsrv.exe O23 - Service: iPod Service - Apple Computer, Inc. - F:\Programme\iPod\bin\iPodService.exe O23 - Service: ForceWare IP service (nSvcIp) - NVIDIA Corporation - F:\Programme\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe O23 - Service: ForceWare user log service (nSvcLog) - NVIDIA - F:\Programme\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - F:\WINDOWS\System32\nvsvc32.exe -- End of file - 26865 bytes |
![]() | #5 |
![]() | ![]() Hilfe!! BDS Haxdoor LJ1 oh vielen dank. aber bei deinem link versteh ich leider nur bahnhof :? könntest du mir das vllt mal schnell kurz erkären, wie das allgemein geht? aso ich seh grad, das neuinstallieren hab ich doch aber schon probiert, das ding ist immernoch drauf? danke schonmal! |
![]() | #6 |
![]() ![]() ![]() ![]() | ![]() Hilfe!! BDS Haxdoor LJ1 Hallo, ragtime 1. Black Light – Rootkit Detection and Elimination Tool F-Secure.com > Overview # Lade F-Secure Blacklight in einen neuen Ordner C:\programme\blacklight. # Starte in diesem Ordner fsbl.exe und schließe alle anderen Programme. # Klicke "I accept the agreement", "next", "Scan". # wenn der Scan zuende ist, wähle "Close". # Der Bericht ist fsbl-XXX.log im Blacklight Verzeichnis, anstelle der XXX stehen Zahlen, die Datum und Uhrzeit enthalten - poste das log hier 2. wende Combofix an + poste hier den report combofix
__________________ --> Hilfe!! BDS Haxdoor LJ1 |
![]() | #7 | ||
/// Helfer-Team ![]() ![]() ![]() ![]() ![]() | ![]() Hilfe!! BDS Haxdoor LJ1Zitat:
Zitat:
edit: @ Sabina: Wozu das Ganze?
__________________ Alle Tipps und Anleitungen ohne Gewähr |
![]() | #8 |
![]() | ![]() Hilfe!! BDS Haxdoor LJ1 sry aber ich versteh nur bahnhof, wa sist denn ntfs?f Naja, hab jetzt das wichtigste, bilder, musik, auf meinen 1Gb stick gequetscht. kann ich jetzt das system einfach neuinstallieren? reicht das? |
![]() | #9 |
![]() ![]() ![]() ![]() | ![]() Hilfe!! BDS Haxdoor LJ1 Wenn du mit deiner XP CD den Rechner startest, solltest du als erstes die Partitionierung durchführen. Wenn deine FP nur eine Partition hatte, dann kannst du ja hier gleich die Platte teilen. Formatiere dann gleich auf NTFS. Wenn du sie so installierst wirst du es ja erkennen. |
![]() | #10 |
![]() | ![]() Hilfe!! BDS Haxdoor LJ1 meine zu speichernden daten betragen 2,37GB Würde also auch locker azuf nen USB stick passen. hab nur leider weder dvd spieler, brenner, oder ne externe platte. auch nur 1GB stick. mal schauen, wo ich mir was leihen kann,hab nämlich kein geld, mir extra dafür was zu kaufen. sei es nur 20€ |
![]() | #11 |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Hilfe!! BDS Haxdoor LJ1 2.37 GB ist ja ein Witz. Das kannst Du verteilt auf 4 CDs brennen...oder haste nichtmal nen CD-Brenner?? ![]()
__________________ Logfiles bitte immer in CODE-Tags posten ![]() |
![]() | #12 |
![]() | ![]() Hilfe!! BDS Haxdoor LJ1 steht doch unten, nein... hatte mir mal nen externen dvd brenner und spieler gekauft, aber der funzte net, war aber auch nen gutes teil. sogar pc profis sind amal sgescheitert. lag wohl am pc :P |
![]() | #13 |
![]() | ![]() Hilfe!! BDS Haxdoor LJ1 so langsam wie der pc grad ist, würde sich eh nix brennen lassen! hier läuft kaum noch was ich kann von glück reden, hie rein zu kommen, seitenaufbau dauert 5min, kein witz. manchmal sogar 10... das machen meine nerven auf dauer net mit. sryx aber nen brenner gehört für mich heute nicht unbedingt zum standart, wo steht das denn?? wie auch immer, ich werd schon ne externe festplatte oder nen stick zum borgen bekommen. danke für eure mühen und hilfe hier =) PS. tolles forum ![]() |
![]() |
Themen zu Hilfe!! BDS Haxdoor LJ1 |
antivir, bds, brauche, computer, danger, dringend, fenster, haxdoor, hilfe!, hilfe!!, hilft, hintergrund, immernoch, laden, logfile, meldungen, min, neuinstallation, nicht mehr, nichts, schneller, seite, versucht, virus, virus gefunden, öffnet |