manexmaier | 09.11.2009 15:04 | hallo! hab das selbe problem mit diesem renos.jm zeugs
hier meine hijackthis log: Code:
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Windows\PLFSetI.exe
C:\Users\Manuel\AppData\Local\Temp\RtkBtMnt.exe
C:\Program Files\Launch Manager\LManager.exe
C:\Program Files\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
C:\Program Files\EgisTec Egis Software Update\EgisUpdate.exe
C:\Program Files\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Acer\Acer PowerSmart Manager\ePowerTray.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\3DataManager\3DataManager.exe
C:\Program Files\3DataManager\bmctl.exe
C:\Program Files\Windows Live\Mail\wlmail.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Windows\system32\rundll32.exe
C:\Windows\system32\ctfmon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe
C:\Program Files\kikin\KikinBroker.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0c07&s=2&o=vp32&d=0609&m=aspire_5738
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.at/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0c07&s=2&o=vp32&d=0609&m=aspire_5738
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0c07&s=2&o=vp32&d=0609&m=aspire_5738
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - {120A8821-2BEE-4C29-BCDA-62C577781992} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.3.4501.1418\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: kikin Plugin - {E601996F-E400-41CA-804B-CD6373A7EEE2} - C:\Program Files\kikin\ie_kikin.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [ArcadeDeluxeAgent] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] C:\Program Files\Realtek\Audio\HDA\Skytel.exe
O4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exe
O4 - HKLM\..\Run: [LManager] C:\Program Files\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [BackupManagerTray] "C:\Program Files\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -k
O4 - HKLM\..\Run: [Acer ePower Management] C:\Program Files\Acer\Acer PowerSmart Manager\ePowerTrayLauncher.exe
O4 - HKLM\..\Run: [EgisTecLiveUpdate] "C:\Program Files\EgisTec Egis Software Update\EgisUpdate.exe"
O4 - HKLM\..\Run: [mwlDaemon] C:\Program Files\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [ProductReg] "C:\Program Files\Acer\WR_PopUp\ProductReg.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [TurboNet] C:\Users\Manuel\AppData\Local\Temp\b.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETZWERKDIENST')
O4 - Startup: OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: Nach Microsoft E&xel exportieren - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {0F7195C2-6713-4d93-A1BC-DA5FA33F0A65} - C:\Program Files\kikin\ie_kikin.dll
O9 - Extra 'Tools' menuitem: My kikin - {0F7195C2-6713-4d93-A1BC-DA5FA33F0A65} - C:\Program Files\kikin\ie_kikin.dll
O9 - Extra button: In Blog veröffentlichen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: In Windows Live Writer in Blog veröffentliche&n - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O17 - HKLM\System\CCS\Services\Tcpip\..\{2243FA8E-4664-413A-88FD-D8D68C1063D9}: NameServer = 213.94.78.16 213.94.78.17
O17 - HKLM\System\CS1\Services\Tcpip\..\{2243FA8E-4664-413A-88FD-D8D68C1063D9}: NameServer = 213.94.78.16 213.94.78.17
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\system32\Skype4COM.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
O23 - Service: Avira AntiVir Planer (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: CLHNService - Unknown owner - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
O23 - Service: DVBHRoutingManager - Unknown owner - C:\Program Files\3DataManager\Drivers\ZTE MF635\Drivers\32bit\VISTA\DVBHRoutingVista.exe
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe
O23 - Service: Google Desktop Manager 5.8.809.23506 (GoogleDesktopManager-092308-165331) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: MyWinLocker Service (MWLService) - EgisTec Inc. - C:\Program Files\EgisTec\MyWinLocker 3\x86\\MWLService.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Unknown owner - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe (file missing)
O23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:\Program Files\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - NewTech Infosystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: RelevantKnowledge - TMRG, Inc. - C:\Program Files\RelevantKnowledge\rlservice.exe
O23 - Service: Start BT in service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\StartSkysolSvc.exe
O23 - Service: WTGService - Unknown owner - C:\Program Files\3DataManager\WTGService.exe und hier die installierten programme Code:
3DataManager 3DataManager 11.10.2009
Acer Arcade Deluxe CyberLink Corp. 24.02.2009 88,0MB
Acer Backup Manager NewTech Infosystems 03.06.2009 234,0MB
Acer Crystal Eye webcam Ver:1.1.74.216 Chicony Electronics Co.,Ltd. 03.06.2009 1,29MB
Acer eRecovery Management Acer Incorporated 03.06.2009 11,7MB
Acer GridVista 03.06.2009 1,51MB
Acer PowerSmart Manager Acer Incorporated 03.06.2009 7,32MB
Acer Product Registration Acer Incorporated 07.07.2009 5,92MB
Acer ScreenSaver Acer 03.06.2009
Adobe Flash Player 10 ActiveX Adobe Systems Incorporated 03.06.2009
Adobe Flash Player 10 Plugin Adobe Systems Incorporated 07.07.2009
Adobe Reader 9 - Deutsch Adobe Systems Incorporated 24.02.2009 232,1MB
Agere Systems HDA Modem Agere Systems 03.06.2009
Airport Mania First Flight Oberon Media 03.06.2009 31,0MB
Apple Software Update Apple Inc. 08.07.2009 2,16MB
Avira AntiVir Personal - Free Antivirus Avira GmbH 25.08.2009 73,7MB
Bluesoleil2.7.0.35 VoIP Release 080317 IVT Corporation 11.08.2009 13,5MB
Broadcom Gigabit NetLink Controller Broadcom Corporation 10.02.2009 0,35MB
BurnAware Free 2.3.5 Burnaware Technologies 10.09.2009
C:\Program Files\Acer GameZone\GameConsole Oberon Media, Inc. 24.02.2009 41,8MB
Cake Mania 2 Oberon Media 03.06.2009 44,5MB
CCleaner Piriform 08.11.2009 2,73MB
Compatibility Pack für 2007 Office System Microsoft Corporation 20.09.2009 39,9MB
Cooking Dash Oberon Media 03.06.2009 25,6MB
Cradle of Rome Oberon Media 03.06.2009 38,9MB
Dairy Dash Oberon Media 03.06.2009 20,8MB
DivX Codec DivX, Inc. 22.09.2009
DivX Converter DivX, Inc. 22.09.2009
DivX Player DivX, Inc. 22.09.2009
DivX Plus DirectShow Filters DivX, Inc. 22.09.2009
DivX Web Player DivX,Inc. 22.09.2009
Dream Day Honeymoon Oberon Media 03.06.2009 103,1MB
Dream Day Wedding Oberon Media 03.06.2009 87,2MB
E.M. DVD Copy 2.51 EffectMatrix, Inc. 25.10.2009 18,0MB
eSobi v2 esobi Inc. 03.06.2009 22,9MB
FLV Player 2.0 (build 25) Martijn de Visser 18.10.2009 1,95MB
Galapago Oberon Media 03.06.2009 46,9MB
Google Desktop Google 07.07.2009 31,3MB
Google Toolbar for Internet Explorer Google Inc. 23.07.2009 36,0MB
HijackThis 2.0.2 TrendMicro 08.11.2009 0,39MB
HP Customer Participation Program 8.0 HP 10.08.2009 81,7MB
HP Deskjet 8.0 Software HP 10.08.2009 17,5MB
HP Imaging Device Functions 8.0 HP 10.08.2009 2,45MB
HP Photosmart Essential HP 10.08.2009 10,2MB
HP Solution Center 8.0 HP 10.08.2009 2,44MB
HP Update Hewlett-Packard 10.08.2009 3,52MB
HPSSupply Ihr Firmenname 10.08.2009 0,96MB
Java(TM) 6 Update 15 Sun Microsystems, Inc. 07.07.2009 97,5MB
Jewel Quest Solitaire Oberon Media 03.06.2009 27,6MB
kikin Plugin (NO23 Edition) 1.11 kikin 07.07.2009 0,60MB
Launch Manager Acer Inc. 03.06.2009 3,23MB
LimeWire 5.1.2 Lime Wire, LLC 16.07.2009 63,8MB
Luxor 2 Oberon Media 03.06.2009 24,7MB
Mahjong Escape Ancient China Oberon Media 03.06.2009 14,3MB
Malwarebytes' Anti-Malware Malwarebytes Corporation 08.11.2009 3,99MB
Media Player Codec Pack 3.8.0 Media Player Codec Pack 18.10.2009
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU Microsoft Corporation 20.09.2009 37,0MB
Microsoft .NET Framework 3.5 SP1 Microsoft Corporation 09.09.2009 27,8MB
Microsoft Office Home and Student 2007 Microsoft Corporation 09.09.2009 296,3MB
Microsoft Office Live Add-in 1.3 Microsoft Corporation 11.10.2009 0,48MB
Microsoft Office PowerPoint Viewer 2007 (German) Microsoft Corporation 20.09.2009 34,7MB
Microsoft Office Suite Activation Assistant Microsoft Corporation 24.02.2009 8,37MB
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 24.02.2009 1,74MB
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 24.10.2009 0,41MB
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 Microsoft Corporation 09.09.2009 0,19MB
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 25.08.2009 0,58MB
Microsoft Works Microsoft Corporation 09.09.2009 376,7MB
Mozilla Firefox (3.0.14) Mozilla 01.10.2009 37,6MB
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 24.02.2009 1,29MB
MyWinLocker EgisTec 03.06.2009 35,2MB
Nero 9 Essentials Nero AG 25.10.2009
NTI Backup Now 5 NewTech Infosystems 24.02.2009 29,5MB
NTI Media Maker 8 NewTech Infosystems 24.02.2009 187,5MB
NVIDIA Drivers NVIDIA Corporation 21.09.2009
Ocean Express Oberon Media 03.06.2009 16,6MB
Orion Convesoft 03.06.2009 15,0MB
Parking Dash Oberon Media 03.06.2009 24,5MB
Puzzle Express Oberon Media 03.06.2009 12,4MB
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 03.06.2009 9,86MB
Realtek USB 2.0 Card Reader Realtek Semiconductor Corp. 10.02.2009 6,61MB
SAMSUNG Mobile Composite Device Software 07.07.2009
Samsung Mobile phone USB driver Software 07.07.2009
Samsung PC Studio 3 Samsung Electronics Co., Ltd. 07.07.2009 125,3MB
Synaptics Pointing Device Driver Synaptics 03.06.2009 17,7MB
Tradewinds 2 Oberon Media 03.06.2009 15,5MB
Tri-Peaks Solitaire To Go Oberon Media 03.06.2009 21,3MB
Turbo Pizza Oberon Media 03.06.2009 175,4MB
VLC media player 1.0.1 VideoLAN Team 18.09.2009 72,4MB
Wedding Dash Oberon Media 03.06.2009 19,8MB
Winamp Nullsoft, Inc 07.07.2009 14,4MB
Windows Live Anmelde-Assistent Microsoft Corporation 09.09.2009 1,93MB
Windows Live Essentials Microsoft Corporation 11.10.2009 136,5MB
Windows Live Sync Microsoft Corporation 11.10.2009 2,79MB
Windows Live-Uploadtool Microsoft Corporation 24.02.2009 0,22MB
Windows Media Player Firefox Plugin Microsoft Corp 05.09.2009 0,29MB
WinRAR archiver 25.10.2009 3,66MB
Zuma Deluxe Oberon Media 03.06.2009 11,9MB
µTorrent 11.10.2009 0,28MB Wäre toll wenn du mir behilflich sein könntest!
Danke schon mal im voraus!!!:applaus:
lg Manuel |