hilfe bei logfile    Hi kann mir bitte jemand helfen?   
ich habe glaubich spyware auf meinen rechner bekommen. jedes mal wenn ich mein laptop neu starte sind auf dem desktop Error Cleaner, Spyware&Malewarte Protection und Privacy Protector. dann kommt zwischendurch immer Windows Security Alert: Windows has detected an Internet attack attempt.... Somebody's trying to infect your PC with spywarte.... usw. dann wen diese meldung kommt, startet der internet explorer automatisch und geht auf die seite:   Code:  
 http://www.safewebnavigate.com/index.php?sid=502&aid=454&said=86&pn=4&pid=1   
hier ein Hijackthis Logfile    Code:  
 Logfile of HijackThis v1.99.1 
Scan saved at 10:59:19, on 05.10.2007 
Platform: Windows XP SP2 (WinNT 5.01.2600) 
MSIE: Internet Explorer v7.00 (7.00.6000.16512)   
Running processes: 
C:\WINDOWS\System32\smss.exe 
C:\WINDOWS\system32\winlogon.exe 
C:\WINDOWS\system32\services.exe 
C:\WINDOWS\system32\lsass.exe 
C:\WINDOWS\system32\svchost.exe 
C:\WINDOWS\System32\svchost.exe 
C:\Programme\Intel\Wireless\Bin\EvtEng.exe 
C:\Programme\Intel\Wireless\Bin\S24EvMon.exe 
C:\WINDOWS\System32\wltrysvc.exe 
C:\WINDOWS\System32\bcmwltry.exe 
C:\WINDOWS\system32\spoolsv.exe 
C:\Programme\AntiVir PersonalEdition Classic\sched.exe 
C:\Programme\AntiVir PersonalEdition Classic\avguard.exe 
C:\WINDOWS\SYSTEM32\GEARSEC.EXE 
C:\WINDOWS\system32\lxdjcoms.exe 
C:\Programme\Gemeinsame Dateien\Marmiko Shared\MZCCntrl.exe 
C:\Programme\Intel\Wireless\Bin\OProtSvc.exe 
C:\Programme\Intel\Wireless\Bin\RegSrvc.exe 
C:\Programme\Intel\Wireless\Bin\ZcfgSvc.exe 
C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe 
C:\WINDOWS\Explorer.EXE 
C:\WINDOWS\AGRSMMSG.exe 
C:\WINDOWS\system32\WLTRAY.exe 
C:\Programme\Intel\Wireless\Bin\ifrmewrk.exe 
C:\Programme\Intel\Wireless\Bin\EOUWiz.exe 
C:\Programme\Synaptics\SynTP\SynTPEnh.exe 
C:\Programme\Synaptics\SynTP\SynTPLpr.exe 
C:\Programme\AntiVir PersonalEdition Classic\avgnt.exe 
C:\WINDOWS\system32\hkcmd.exe 
C:\WINDOWS\system32\igfxpers.exe 
C:\Programme\Java\jre1.6.0_02\bin\jusched.exe 
C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe 
C:\Programme\Lexmark 1400 Series\lxdjamon.exe 
C:\WINDOWS\system32\ctfmon.exe 
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXDJtime.exe 
C:\WINDOWS\System32\svchost.exe 
C:\WINDOWS\system32\wuauclt.exe 
C:\Dokumente und Einstellungen\****\Desktop\Hijackthis\Hijack This\asdzjzt vbd.exe   
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://google.icq.com/search/search_frame.php 
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://softwarereferral.com/jump.php?wmid=6010&mid=MjI6Ojg5&lid=2 
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = localhost:8118 
R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll 
O2 - BHO: XTTBPos00 - {055FD26D-3A88-4e15-963D-DC8493744B1D} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll 
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll 
O2 - BHO: MSVPS System - {3ADCBC16-19FA-4C59-9C22-E17C71B5FD7A} - C:\WINDOWS\bndsrgxt.dll 
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1.6.0_02\bin\ssv.dll 
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll 
O2 - BHO: MSN Suche Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\MSN Toolbar Suite\TB\02.05.0000.1082\de-de\msntb.dll 
O3 - Toolbar: MSN Suche Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\MSN Toolbar Suite\TB\02.05.0000.1082\de-de\msntb.dll 
O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll 
O3 - Toolbar: The netadv - {ABF529BE-6245-465A-BBD4-238C4EAB0F0A} - C:\WINDOWS\netadv.dll 
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe 
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY 
O4 - HKLM\..\Run: [IntelWireless] C:\Programme\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless 
O4 - HKLM\..\Run: [EOUApp] C:\Programme\Intel\Wireless\Bin\EOUWiz.exe 
O4 - HKLM\..\Run: [SynTPEnh] C:\Programme\Synaptics\SynTP\SynTPEnh.exe 
O4 - HKLM\..\Run: [SynTPLpr] C:\Programme\Synaptics\SynTP\SynTPLpr.exe 
O4 - HKLM\..\Run: [avgnt] "C:\Programme\AntiVir PersonalEdition Classic\avgnt.exe" /min 
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe 
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe 
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programme\Java\jre1.6.0_02\bin\jusched.exe" 
O4 - HKLM\..\Run: [TkBellExe] "C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe"  -osboot 
O4 - HKLM\..\Run: [lxdjmon.exe] "C:\Programme\Lexmark 1400 Series\lxdjmon.exe" 
O4 - HKLM\..\Run: [lxdjamon] "C:\Programme\Lexmark 1400 Series\lxdjamon.exe" 
O4 - HKLM\..\Run: [LXDJCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXDJtime.dll,_RunDLLEntry@16 
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe 
O8 - Extra context menu item: &MSN Suche - res://C:\Programme\MSN Toolbar Suite\TB\02.05.0000.1082\de-de\msntb.dll/search.htm 
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_02\bin\ssv.dll 
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_02\bin\ssv.dll 
O9 - Extra button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL 
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe (file missing) 
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe (file missing) 
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programme\ICQ6\ICQ.exe 
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programme\ICQ6\ICQ.exe 
O9 - Extra button: Klicke hier um das Projekt xp-AntiSpy zu unterstützen - {0e921e80-267a-42aa-aee4-60b9a1222a44} - C:\Programme\xp-AntiSpy\sponsoring\sponsor.html (HKCU) 
O9 - Extra 'Tools' menuitem: Unterstützung für xp-AntiSpy - {0e921e80-267a-42aa-aee4-60b9a1222a44} - C:\Programme\xp-AntiSpy\sponsoring\sponsor.html (HKCU) 
O11 - Options group: [INTERNATIONAL] International* 
O16 - DPF: RaptisoftGameLoader - http://www.miniclip.com/games/hamsterball/en/raptisoftgameloader.cab 
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab 
O16 - DPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} (InstallerBehaviorFactory Class) - https://signup.msn.com/pages/MsnInstC.cab 
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by116fd.bay116.hotmail.msn.com/resources/MsnPUpld.cab 
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab 
O16 - DPF: {A672558F-A878-4D5A-A921-627C091CEB60} (Flatcast Producer 4.15) - http://www.flatcast.com/de/download/NpFp415.dll 
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab 
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab 
O16 - DPF: {CAFEEFAC-0014-0001-0005-ABCDEFFEDCBA} (Java Runtime Environment 1.4.1_05) -  
O16 - DPF: {E55FD215-A32E-43FE-A777-A7E8F165F551} (Flatcast Viewer 4.15) - http://www.flatcast.com/de/download/NpFv415.dll 
O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab 
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL 
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL 
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\GEMEIN~1\Skype\SKYPE4~1.DLL 
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll 
O20 - Winlogon Notify: IntelWireless - C:\Programme\Intel\Wireless\Bin\LgNotify.dll 
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll 
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll 
O21 - SSODL: msvb - {7D05D934-2EE7-46BD-8476-7267B197F9CF} - C:\WINDOWS\msvb.dll 
O21 - SSODL: sysdx - {28D06A69-D07E-481B-A7B1-A4A6B4FAC1CD} - C:\WINDOWS\sysdx.dll 
O23 - Service: Adobe LM Service - Adobe Systems - C:\Programme\Gemeinsame Dateien\Adobe Systems Shared\Service\Adobelmsvc.exe 
O23 - Service: AntiVir Scheduler (AntiVirScheduler) - Avira GmbH - C:\Programme\AntiVir PersonalEdition Classic\sched.exe 
O23 - Service: AntiVir PersonalEdition Classic Service (AntiVirService) - AVIRA GmbH - C:\Programme\AntiVir PersonalEdition Classic\avguard.exe 
O23 - Service: EvtEng - Intel Corporation - C:\Programme\Intel\Wireless\Bin\EvtEng.exe 
O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - Unknown owner - C:\MAGIX\Common\Database\bin\fbserver.exe (file missing) 
O23 - Service: GEARSecurity - GEAR Software - C:\WINDOWS\SYSTEM32\GEARSEC.EXE 
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe 
O23 - Service: lxdj_device -   - C:\WINDOWS\system32\lxdjcoms.exe 
O23 - Service: T-Online WLAN Adapter Steuerungsdienst (MZCCntrl) - T-Online International AG, Marmiko IT-Solutions GmbH - C:\Programme\Gemeinsame Dateien\Marmiko Shared\MZCCntrl.exe 
O23 - Service: NBService - Nero AG - C:\Programme\Nero\Nero 7\Nero BackItUp\NBService.exe 
O23 - Service: OwnershipProtocol - Intel Corporation - C:\Programme\Intel\Wireless\Bin\OProtSvc.exe 
O23 - Service: RegSrvc - Intel Corporation - C:\Programme\Intel\Wireless\Bin\RegSrvc.exe 
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation  - C:\Programme\Intel\Wireless\Bin\S24EvMon.exe 
O23 - Service: ServiceLayer - Nokia. - C:\Programme\Gemeinsame Dateien\PCSuite\Services\ServiceLayer.exe 
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe   
dann habe ich in einem andern forum durchgelesen, dass man das mit Smithfraudfix bereinigen kann. dies hab ich auch gemacht und hier sind die beiden Smithfaudfix und ein neues hijackthis logfile:     Code:  
 SmitFraudFix v2.237   
Scan done at 11:47:46,62, 05.10.2007 
Run from C:\Dokumente und Einstellungen\****\Desktop\SmitfraudFix 
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT 
The filesystem type is NTFS 
Fix run in safe mode   
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Before SmitFraudFix 
!!!Attention, following keys are not inevitably infected!!!   
SrchSTS.exe by S!Ri 
Search SharedTaskScheduler's .dll   
»»»»»»»»»»»»»»»»»»»»»»»» Killing process     
»»»»»»»»»»»»»»»»»»»»»»»» hosts   
127.0.0.1       localhost   
»»»»»»»»»»»»»»»»»»»»»»»» Winsock2 Fix   
S!Ri's WS2Fix: LSP not Found.     
»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix   
GenericRenosFix by S!Ri     
»»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files   
C:\WINDOWS\msvb.dll Deleted 
Deleting [HKEY_CLASSES_ROOT\CLSID\{7D05D934-2EE7-46BD-8476-7267B197F9CF}] 
Deleting [HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{7D05D934-2EE7-46BD-8476-7267B197F9CF}] 
C:\WINDOWS\sysdx.dll Deleted 
Deleting [HKEY_CLASSES_ROOT\CLSID\{28D06A69-D07E-481B-A7B1-A4A6B4FAC1CD}] 
C:\DOKUME~1\***\FAVORI~1\Error Cleaner.url Deleted 
C:\DOKUME~1\***\FAVORI~1\Privacy Protector.url Deleted   
»»»»»»»»»»»»»»»»»»»»»»»» DNS       
»»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files     
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System 
!!!Attention, following keys are not inevitably infected!!!   
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] 
"System"=""     
»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning 
  
Registry Cleaning done.  
  
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler After SmitFraudFix 
!!!Attention, following keys are not inevitably infected!!!   
SrchSTS.exe by S!Ri 
Search SharedTaskScheduler's .dll     
»»»»»»»»»»»»»»»»»»»»»»»» End     Code:  
 SmitFraudFix v2.237   
Scan done at 11:47:46,62, 05.10.2007 
Run from C:\Dokumente und Einstellungen\Erkan\Desktop\SmitfraudFix 
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT 
The filesystem type is NTFS 
Fix run in safe mode   
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Before SmitFraudFix 
!!!Attention, following keys are not inevitably infected!!!   
SrchSTS.exe by S!Ri 
Search SharedTaskScheduler's .dll   
»»»»»»»»»»»»»»»»»»»»»»»» Killing process     
»»»»»»»»»»»»»»»»»»»»»»»» hosts   
127.0.0.1       localhost   
»»»»»»»»»»»»»»»»»»»»»»»» Winsock2 Fix   
S!Ri's WS2Fix: LSP not Found.     
»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix   
GenericRenosFix by S!Ri     
»»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files   
C:\WINDOWS\msvb.dll Deleted 
Deleting [HKEY_CLASSES_ROOT\CLSID\{7D05D934-2EE7-46BD-8476-7267B197F9CF}] 
Deleting [HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{7D05D934-2EE7-46BD-8476-7267B197F9CF}] 
C:\WINDOWS\sysdx.dll Deleted 
Deleting [HKEY_CLASSES_ROOT\CLSID\{28D06A69-D07E-481B-A7B1-A4A6B4FAC1CD}] 
C:\DOKUME~1\***\FAVORI~1\Error Cleaner.url Deleted 
C:\DOKUME~1\***\FAVORI~1\Privacy Protector.url Deleted   
»»»»»»»»»»»»»»»»»»»»»»»» DNS       
»»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files     
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System 
!!!Attention, following keys are not inevitably infected!!!   
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] 
"System"=""     
»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning 
  
Registry Cleaning done.  
  
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler After SmitFraudFix 
!!!Attention, following keys are not inevitably infected!!!   
SrchSTS.exe by S!Ri 
Search SharedTaskScheduler's .dll     
»»»»»»»»»»»»»»»»»»»»»»»» End     Code:  
 Logfile of HijackThis v1.99.1 
Scan saved at 18:26:36, on 05.10.2007 
Platform: Windows XP SP2 (WinNT 5.01.2600) 
MSIE: Internet Explorer v7.00 (7.00.6000.16512)   
Running processes: 
C:\WINDOWS\System32\smss.exe 
C:\WINDOWS\system32\winlogon.exe 
C:\WINDOWS\system32\services.exe 
C:\WINDOWS\system32\lsass.exe 
C:\WINDOWS\system32\svchost.exe 
C:\WINDOWS\System32\svchost.exe 
C:\Programme\Intel\Wireless\Bin\EvtEng.exe 
C:\Programme\Intel\Wireless\Bin\S24EvMon.exe 
C:\WINDOWS\System32\wltrysvc.exe 
C:\WINDOWS\System32\bcmwltry.exe 
C:\WINDOWS\system32\spoolsv.exe 
C:\Programme\AntiVir PersonalEdition Classic\sched.exe 
C:\Programme\AntiVir PersonalEdition Classic\avguard.exe 
C:\WINDOWS\SYSTEM32\GEARSEC.EXE 
C:\Programme\Silvercrest OM1007 driver\KMWDSrv.exe 
C:\WINDOWS\system32\lxdjcoms.exe 
C:\Programme\Gemeinsame Dateien\Marmiko Shared\MZCCntrl.exe 
C:\Programme\Intel\Wireless\Bin\OProtSvc.exe 
C:\Programme\Intel\Wireless\Bin\RegSrvc.exe 
C:\Programme\Intel\Wireless\Bin\ZcfgSvc.exe 
C:\WINDOWS\Explorer.EXE 
C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe 
C:\WINDOWS\AGRSMMSG.exe 
C:\WINDOWS\system32\WLTRAY.exe 
C:\Programme\Intel\Wireless\Bin\ifrmewrk.exe 
C:\Programme\Intel\Wireless\Bin\EOUWiz.exe 
C:\Programme\Synaptics\SynTP\SynTPEnh.exe 
C:\Programme\Synaptics\SynTP\SynTPLpr.exe 
C:\Programme\AntiVir PersonalEdition Classic\avgnt.exe 
C:\WINDOWS\system32\hkcmd.exe 
C:\WINDOWS\system32\igfxpers.exe 
C:\Programme\Java\jre1.6.0_02\bin\jusched.exe 
C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe 
C:\Programme\Lexmark 1400 Series\lxdjamon.exe 
C:\WINDOWS\system32\ctfmon.exe 
C:\Programme\Silvercrest OM1007 driver\KMProcess.exe 
C:\WINDOWS\System32\svchost.exe 
C:\WINDOWS\system32\wuauclt.exe 
C:\Programme\Mozilla Firefox\firefox.exe 
C:\Dokumente und Einstellungen\Erkan\Desktop\Hijackthis\Hijack This\asdzjzt vbd.exe   
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = localhost:8118 
R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll 
O2 - BHO: XTTBPos00 - {055FD26D-3A88-4e15-963D-DC8493744B1D} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll 
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll 
O2 - BHO: MSVPS System - {3ADCBC16-19FA-4C59-9C22-E17C71B5FD7A} - C:\WINDOWS\bndsrgxt.dll 
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1.6.0_02\bin\ssv.dll 
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll 
O2 - BHO: MSN Suche Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\MSN Toolbar Suite\TB\02.05.0000.1082\de-de\msntb.dll 
O3 - Toolbar: MSN Suche Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\MSN Toolbar Suite\TB\02.05.0000.1082\de-de\msntb.dll 
O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll 
O3 - Toolbar: The netadv - {ABF529BE-6245-465A-BBD4-238C4EAB0F0A} - C:\WINDOWS\netadv.dll 
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe 
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY 
O4 - HKLM\..\Run: [IntelWireless] C:\Programme\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless 
O4 - HKLM\..\Run: [EOUApp] C:\Programme\Intel\Wireless\Bin\EOUWiz.exe 
O4 - HKLM\..\Run: [SynTPEnh] C:\Programme\Synaptics\SynTP\SynTPEnh.exe 
O4 - HKLM\..\Run: [SynTPLpr] C:\Programme\Synaptics\SynTP\SynTPLpr.exe 
O4 - HKLM\..\Run: [avgnt] "C:\Programme\AntiVir PersonalEdition Classic\avgnt.exe" /min 
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe 
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe 
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programme\Java\jre1.6.0_02\bin\jusched.exe" 
O4 - HKLM\..\Run: [TkBellExe] "C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe"  -osboot 
O4 - HKLM\..\Run: [lxdjmon.exe] "C:\Programme\Lexmark 1400 Series\lxdjmon.exe" 
O4 - HKLM\..\Run: [lxdjamon] "C:\Programme\Lexmark 1400 Series\lxdjamon.exe" 
O4 - HKLM\..\Run: [LXDJCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXDJtime.dll,_RunDLLEntry@16 
O4 - HKLM\..\Run: [KMCONFIG] C:\Programme\Silvercrest OM1007 driver\StartAutorun.exe KMConfig.exe 
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe 
O8 - Extra context menu item: &MSN Suche - res://C:\Programme\MSN Toolbar Suite\TB\02.05.0000.1082\de-de\msntb.dll/search.htm 
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_02\bin\ssv.dll 
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_02\bin\ssv.dll 
O9 - Extra button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL 
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe (file missing) 
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe (file missing) 
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programme\ICQ6\ICQ.exe 
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programme\ICQ6\ICQ.exe 
O9 - Extra button: Klicke hier um das Projekt xp-AntiSpy zu unterstützen - {0e921e80-267a-42aa-aee4-60b9a1222a44} - C:\Programme\xp-AntiSpy\sponsoring\sponsor.html (HKCU) 
O9 - Extra 'Tools' menuitem: Unterstützung für xp-AntiSpy - {0e921e80-267a-42aa-aee4-60b9a1222a44} - C:\Programme\xp-AntiSpy\sponsoring\sponsor.html (HKCU) 
O11 - Options group: [INTERNATIONAL] International* 
O16 - DPF: RaptisoftGameLoader - http://www.miniclip.com/games/hamsterball/en/raptisoftgameloader.cab 
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab 
O16 - DPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} (InstallerBehaviorFactory Class) - https://signup.msn.com/pages/MsnInstC.cab 
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by116fd.bay116.hotmail.msn.com/resources/MsnPUpld.cab 
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab 
O16 - DPF: {A672558F-A878-4D5A-A921-627C091CEB60} (Flatcast Producer 4.15) - http://www.flatcast.com/de/download/NpFp415.dll 
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab 
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab 
O16 - DPF: {CAFEEFAC-0014-0001-0005-ABCDEFFEDCBA} (Java Runtime Environment 1.4.1_05) -  
O16 - DPF: {E55FD215-A32E-43FE-A777-A7E8F165F551} (Flatcast Viewer 4.15) - http://www.flatcast.com/de/download/NpFv415.dll 
O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab 
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL 
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL 
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\GEMEIN~1\Skype\SKYPE4~1.DLL 
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll 
O20 - Winlogon Notify: IntelWireless - C:\Programme\Intel\Wireless\Bin\LgNotify.dll 
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll 
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll 
O23 - Service: Adobe LM Service - Adobe Systems - C:\Programme\Gemeinsame Dateien\Adobe Systems Shared\Service\Adobelmsvc.exe 
O23 - Service: AntiVir Scheduler (AntiVirScheduler) - Avira GmbH - C:\Programme\AntiVir PersonalEdition Classic\sched.exe 
O23 - Service: AntiVir PersonalEdition Classic Service (AntiVirService) - AVIRA GmbH - C:\Programme\AntiVir PersonalEdition Classic\avguard.exe 
O23 - Service: EvtEng - Intel Corporation - C:\Programme\Intel\Wireless\Bin\EvtEng.exe 
O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - Unknown owner - C:\MAGIX\Common\Database\bin\fbserver.exe (file missing) 
O23 - Service: GEARSecurity - GEAR Software - C:\WINDOWS\SYSTEM32\GEARSEC.EXE 
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe 
O23 - Service: Keyboard And Mouse Communication Service (KMWDSERVICE) - UASSOFT.COM - C:\Programme\Silvercrest OM1007 driver\KMWDSrv.exe 
O23 - Service: lxdj_device -   - C:\WINDOWS\system32\lxdjcoms.exe 
O23 - Service: T-Online WLAN Adapter Steuerungsdienst (MZCCntrl) - T-Online International AG, Marmiko IT-Solutions GmbH - C:\Programme\Gemeinsame Dateien\Marmiko Shared\MZCCntrl.exe 
O23 - Service: NBService - Nero AG - C:\Programme\Nero\Nero 7\Nero BackItUp\NBService.exe 
O23 - Service: OwnershipProtocol - Intel Corporation - C:\Programme\Intel\Wireless\Bin\OProtSvc.exe 
O23 - Service: RegSrvc - Intel Corporation - C:\Programme\Intel\Wireless\Bin\RegSrvc.exe 
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation  - C:\Programme\Intel\Wireless\Bin\S24EvMon.exe 
O23 - Service: ServiceLayer - Nokia. - C:\Programme\Gemeinsame Dateien\PCSuite\Services\ServiceLayer.exe 
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe   
kann mir jemand sagen, ob da noch Viren oder so drauf sind???    
danke im Vorraus  
mfg DonEro    |