Niemand? Keine Hilfe? Googeln diese Dinge nicht hilft, denn alles, was Mai werden einige der Nutzung kommt, dass bis auf Google ist die unterschiedliche Namen, die verwendet werden, mit denen Spyware / Virus Scanner und googelt sie bringt mich zu den gleichen Ergebnissen.
Heres meine HijackThis-Datei, falls ich etwas vergessen.
Logfile von Trend Micro HijackThis V2.0.2
Scan gespeichert um 12:55:52, am 11/28/2008
Plattform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000. 16735)
Boot-Modus: Normal
Laufenden Prozesse:
C: \ WINDOWS \ System32 \ smss.exe
C: \ WINDOWS \ system32 \ csrss.exe
C: \ WINDOWS \ system32 \ winlogon.exe
C: \ WINDOWS \ system32 \ services.exe
C: \ WINDOWS \ system32 \ lsass.exe
C: \ WINDOWS \ system32 \ svchost.exe
C: \ WINDOWS \ system32 \ svchost.exe
C: \ Program Files \ Microsoft Windows OneCare Live \ Antivirus \ MsMpEng.exe
C: \ WINDOWS \ System32 \ svchost.exe
C: \ Program Files \ Ahead \ InCD \ InCDsrv.exe
C: \ WINDOWS \ Explorer. EXE
C: \ WINDOWS \ system32 \ svchost.exe
C: \ WINDOWS \ system32 \ svchost.exe
C: \ WINDOWS \ system32 \ svchost.exe
C: \ Program Files \ Lavasoft \ Ad-Aware \ aawservice.exe
C: \ WINDOWS \ system32 \ LEXBCES.EXE
C: \ WINDOWS \ system32 \ LEXPPS.EXE
C: \ WINDOWS \ System32 \ spoolsv.exe
C: \ WINDOWS \ system32 \ hkcmd.exe
C: \ Program Files \ Analog Devices \ Core \ smax4pnp.exe
C: \ Program Files \ Microsoft Windows OneCare Live \ winssnotify. exe
C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
C: \ Program \ Java \ jre1.6.0_07 \ bin \ jusched.exe
C: \ Program Files \ Winamp \ winampa.exe
C: \ Program Files \ Bonjour \ mDNSResponder.exe
C: \ Program Files \ PowerISO \ PWRISOVM.EXE
C: \ Program Files \ PrevxCSI \ prevxcsi.exe
C: \ Program Files \ Lexmark X1100 \ lxbkbmgr.exe
C: \ Program Files \ Lexmark X1100 \ lxbkbmon.exe
C: \ WINDOWS \ system32 \ CTFMON. exe
C: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe
C: \ Dokumente und Einstellungen \ Administrator \ Lokale Einstellungen \ Anwendungsdaten \ Google \ Update \ GoogleUpdate.exe
C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe
C: \ Program Files \ ArcSoft \ Media Card Companion \ MCC monitor.exe
C: \ WAMP \ wampmanager.exe
C: \ Program Files \ Common Files \ Microsoft Shared \ VS7Debug \ Mdm.exe
C: \ Program Files \ Microsoft Windows OneCare Live \ Firewall \ msfwsvc. exe
C: \ Program Files \ Spyware Doctor \ pctsAuxs.exe
c: \ WINDOWS \ system32 \ ZuneBusEnum.exe
C: \ Program Files \ Microsoft Windows OneCare Live \ winss.exe
C: \ Program Files \ iPod \ bin \ iPodService.exe
C: \ WINDOWS \ system32 \ wscntfy.exe
c: \ WAMP \ bin \ mysql \ mysql5.0.45 \ bin \ mysqld-NT.EXE
C: \ WINDOWS \ system32 \ wbem \ wmiprvse.exe
C: \ WINDOWS \ System32 \ alg.exe
C: \ Program Files \ Spyware Doctor \ pctsSvc.exe
C: \ Program Files \ PrevxCSI \ prevxcsi.exe
C: \ Program Files \ Mozilla Firefox \ Firefox. exe
C: \ HijackThis \ HIJACKTHIS.EXE
C: \ WINDOWS \ system32 \ wbem \ wmiprvse. exe
R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page =
http://google.mini20.comR1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKCU \ Software \ Microsoft \ Windows \ CurrentVersion \ Internet Einstellungen, ProxyOverride = *. lokalen
O2 - BHO: Adobe PDF Link Helper - (18DF081C-E8AD-4283-A596-FA578C2EBDC3) - C: \ Program Files \ Common Files \ Adobe \ Acrobat \ ActiveX \ AcroIEHelperShim.dll
O2 - BHO: Flashget urlcatch - (2F364306-AA45-47B5-9F9D-39A8B94E7EF7) - C: \ Program Files \ FlashGet \ jccatch.dll
O2 - BHO: BitComet ClickCapture - (39F7E362-828A-4B5A-BCAF-5B79BFDFEA60) - C: \ Program Files \ BitComet \ Tools \ BitCometBHO_1.2.1.2. dll
O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Program Files \ Java \ jre1.6.0_07 \ bin \ ssv.dll
O2 - BHO: Google Toolbar Notifier BHO - (AF69DE43-7D58-4638-B6FA-CE66B5AD205D) - C: \ Program Files \ Google \ GoogleToolbarNotifier \ 5.0.926.3450 \ swg.dll
O2 - BHO: FlashGet getflash Class - (F156768E-81EF-470C-9057-481BA8380DBA) - C: \ Program Files \ FlashGet \ getflash.dll
O4 - HKLM \ .. \ Run: [IgfxTray] C: \ WINDOWS \ system32 \ igfxtray.exe
O4 - HKLM \ .. \ Run: [HotKeysCmds] C: \ WINDOWS \ system32 \ hkcmd.exe
O4 - HKLM \ .. \ Run: [SoundMAXPnP] C: \ Program Files \ Analog Devices \ Core \ smax4pnp.exe
O4 - HKLM \ .. \ Run: [OneCareUI] "C: \ Program Files \ Microsoft Windows OneCare Live \ winssnotify.exe"
O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] "C: \ Program Files \ Java \ jre1.6.0_07 \ bin \ jusched.exe"
O4 - HKLM \ .. \ Run: [WinampAgent] "C: \ Program Files \ Winamp \ winampa.exe"
O4 - HKLM \ .. \ Run: [NeroFilterCheck] C: \ WINDOWS \ system32 \ NeroCheck. exe
O4 - HKLM \ .. \ Run: [InCD] C: \ Program Files \ Ahead \ InCD \ InCD.exe
O4 - HKLM \ .. \ Run: [Flashget] C: \ Program Files \ FlashGet \ FlashGet.exe / min
O4 - HKLM \ .. \ Run: [PWRISOVM.EXE] C: \ Program Files \ PowerISO \ PWRISOVM.EXE
O4 - HKLM \ .. \ Run: [AppleSyncNotifier] C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleSyncNotifier.exe
O4 - HKLM \ .. \ Run: [QuickTime Task] "C: \ Program Files \ QuickTime \ QTTask.exe"-atboottime
O4 - HKLM \ .. \ Run: [Lexmark X1100] "C: \ Program Files \ Lexmark X1100 \ lxbkbmgr.exe"
O4 - HKLM \ .. \ Run: [iTunesHelper] "C: \ Program Files \ iTunes \ iTunesHelper.exe"
O4 - HKLM \ .. \ Run: [Zune Launcher] "c: \ Program Files \ Zune \ ZuneLauncher.exe"
O4 - HKLM \ .. \ Run: [Adobe Reader Speed Launcher] "C: \ Program Files \ Adobe \ Reader 9.0 \ Reader \ Reader_sl.exe"
O4 - HKLM \ .. \ Run: [ISTray] "C: \ Program Files \ Spyware Doctor \ pctsTray.exe"
O4 - HKCU \ .. \ Run: [MsnMsgr] "C: \ Program Files \ MSN Messenger \ msnmsgr.exe" / Hintergrund
O4 - HKCU \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ "Ctfmon.exe"
O4 - HKCU \ .. \ Run: [Orb] "C: \ Program Files \ Winamp Remote \ bin \ OrbTray.exe" / Hintergrund
O4 - HKCU \ .. \ Run: [BitComet] "C: \ Program Files \ BitComet \ BitComet.exe" / Tray
O4 - HKCU \ .. \ Run: [Skype] "C: \ Program Files \ Skype \ Phone \ Skype.exe" / NoSplash / minimiert
O4 - HKCU \ .. \ Run: [Google Update] "C: \ Dokumente und Einstellungen \ Administrator \ Lokale Einstellungen \ Anwendungsdaten \ Google \ Update \ GoogleUpdate.exe" / c
O4 - Startup: WampServer.lnk = C: \ WAMP \ wampmanager.exe
O4 - Global Startup: Microsoft Office.lnk = C: \ Program Files \ Microsoft Office \ Office10 \ OSA.EXE
O4 - Global Startup: Monitor.lnk = C: \ Program Files \ ArcSoft \ Media Card Companion \ MCC Monitor. exe
O8 - Extra Zusammenhang Menüpunkt: & D & ownload & mit BitComet --
res://C : \ Program Files \ BitComet \ BitComet.exe / AddLink.htm
O8 - Extra Zusammenhang Menüpunkt: & D & ownload alle Video mit BitComet --
res://C : \ Program Files \ BitComet \ BitComet.exe / AddVideo.htm
O8 - Extra Zusammenhang Menüpunkt: & D & ownload alle mit BitComet --
res://C : \ Program Files \ BitComet \ BitComet.exe / AddAllLink. htm
O8 - Extra Zusammenhang Menüpunkt: & Download Alle mit FlashGet - C: \ Program Files \ FlashGet \ jc_all.htm
O8 - Extra Zusammenhang Menüpunkt: & Download mit FlashGet - C: \ Program Files \ FlashGet \ jc_link.htm
O9 - Extra-Taste: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0_07 \ bin \ ssv.dll
O9 - Extra "Extras" menuitem: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0_07 \ bin \ ssv. dll
O9 - Extra-Taste: BitComet - (D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A) --
res://C : \ Program Files \ BitComet \ Tools \ BitCometBHO_1.2.1.2.dll/206 (Datei fehlt)
O9 - Extra-Taste: (no name) - (e2e2dd38-D088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe
O9 - Extra "Extras" menuitem: @ xpsp3res.dll, -20001 - (e2e2dd38-D088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag. exe
O9 - Extra Button: Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe
O9 - Extra "Extras" menuitem: Windows Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe
O16 - DPF: (CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7) (get_atlcom Class) --
http://wwwimages.adobe.com/www.adobe.co ... nos/gp.cabØ18 - Protokoll: skype4com - (FFC8B962-9B40-4DFF-9458-1830C7DD7F5D) - C: \ PROGRA ~ 1 \ COMMON ~ 1 \ Skype \ SKYPE4 ~ 1. DLL
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C: \ Program Files \ Lavasoft \ Ad-Aware \ aawservice.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C: \ Program Files \ Bonjour \ mDNSResponder.exe
O23 - Service: CSIScanner - Prevx - C: \ Program Files \ PrevxCSI \ prevxcsi. exe
O23 - Service: Firebird Server - MAGIX Instanz (FirebirdServerMAGIXInstance) - MAGIX ® - C: \ Program Files \ MAGIX \ Common \ Database \ bin \ fbserver.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd - C: \ Program Files \ Common Files \ Macrovision Shared \ FLEXnet Publisher \ FNPLicensingService.exe
O23 - Service: getPlus (R) Helper - NOS Microsystems Ltd - C: \ Program Files \ NOS \ bin \ getPlus_HelperSvc. exe
O23 - Service: Google Updater Service (gusvc) - Google - C: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C: \ Program Files \ Ahead \ InCD \ InCDsrv.exe
O23 - Service: iPod Service - Apple Inc. - C: \ Program Files \ iPod \ bin \ iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C: \ WINDOWS \ system32 \ LEXBCES. EXE
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C: \ Program Files \ Spyware Doctor \ pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C: \ Program Files \ Spyware Doctor \ pctsSvc. exe
O23 - Service: UPnPService - Magix AG - C: \ Program Files \ Common Files \ MAGIX Shared \ UPnPService \ UPnPService.exe
O23 - Service: wampapache - Apache Software Foundation - c: \ WAMP \ bin \ apache \ apache2.2.6 \ bin \ httpd.exe
O23 - Service: wampmysqld - Unbekannt Eigentümer - c: \ WAMP \ bin \ mysql \ mysql5.0.45 \ bin \ mysqld-NT.EXE
--
Ende der Datei - 9737 Bytes
Die taskmagr.exe wurde in der laufenden Prozesse dann. Ich beendete den Prozess, aber ich immer noch, dass im Ordner "System32".