Brave Sentry und WinAntiVirusThema ist geschlossen! |
||
---|---|---|
Thema ist geschlossen! |
||
#0
| ||
06.10.2006, 09:34
Ehrenmitglied
Beiträge: 29434 |
||
|
||
06.10.2006, 19:31
Member
Themenstarter Beiträge: 17 |
#17
Logfile of HijackThis v1.99.1
Scan saved at 19:16, on 06-10-06 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\Explorer.EXE C:\Programme\Hijackthis\HijackThis.exe O4 - HKLM\..\Run: [LaunchApp] Alaunch O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe O4 - HKLM\..\Run: [SynTPLpr] C:\Programme\Synaptics\SynTP\SynTPLpr.exe O4 - HKLM\..\Run: [SynTPEnh] C:\Programme\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [LManager] C:\Programme\Launch Manager\QtZgAcer.EXE O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Programme\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe O4 - Global Startup: BTTray.lnk = ? O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Programme\Gemeinsame Dateien\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft Office\Office\OSA9.EXE O4 - Global Startup: Adobe Reader - Schnellstart.lnk = C:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_07\bin\npjpi150_07.dll O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_07\bin\npjpi150_07.dll O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Programme\PartyGaming\PartyPoker\RunApp.exe (file missing) O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Programme\PartyGaming\PartyPoker\RunApp.exe (file missing) O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll O12 - Plugin for .spop: C:\Programme\Internet Explorer\Plugins\NPDocBox.dll O16 - DPF: {62475759-9E84-458E-A1AB-5D2C442ADFDE} - http://a1540.g.akamai.net/7/1540/52/20040428/qtinstall.info.apple.com/saba/de/win/QuickTimeInstaller.exe O16 - DPF: {9D190AE6-C81E-4039-8061-978EBAD10073} (F-Secure Online Scanner 3.0) - http://support.f-secure.com/ols3/fscax.cab O16 - DPF: {C36112BF-2FA3-4694-8603-3B510EA3B465} (Lycos File Upload Component) - http://f007.mail.lycos.de/app/uploader/FileUploader.cab O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Programme\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: F-Secure Windows Security Center Legacy Detection Service (Fswsclds) - F-Secure Corporation - C:\Programme\F-Secure Internet Security\fswsclds.exe O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe ////////////////////////////////////////// Avenger Pre-Processor log ////////////////////////////////////////// Error: could not create zip file. Error code: 1813 ////////////////////////////////////////// Logfile of The Avenger version 1, by Swandog46 Running from registry key: \Registry\Machine\System\CurrentControlSet\Services\xycbfxnu ******************* Script file located at: \??\C:\Program Files\yktevqsl.txt Script file opened successfully. Script file read successfully Backups directory opened successfully at C:\Avenger ******************* Beginning to process script file: File C:\WINDOWS\system32\TitanPokerIconDropTRA107.ico deleted successfully. File C:\WINDOWS\system32\drivers\wgunwcbq.sys deleted successfully. File C:\knglhdpe.bat deleted successfully. File C:\WINDOWS\system32\drivers\dqhkmydr.sys deleted successfully. File C:\zip.exe deleted successfully. File C:\pqroromh.bat deleted successfully. Completed script processing. ******************* Finished! Terminate. Verzeichnis von c:\I386 02-08-29 12:00 1,431 E1.IN_ 1 Datei(en) 1,431 Bytes Anzahl der angezeigten Dateien: 1 Datei(en) 1,431 Bytes 0 Verzeichnis(se), 40,784,822,272 Bytes frei C:\>dir /s /a "c:\dpmomspr*.*" > c:\find.txt & start notepad c:\find.txt Datei nicht gefunden C:\>dir /s /a "c:\dminupnp*.*" > c:\find.txt & start notepad c:\find.txt Datei nicht gefunden |
|
|
||
06.10.2006, 20:04
Ehrenmitglied
Beiträge: 29434 |
#18
sinus
öffne das HijackThis -- Button "scan" -- vor die Malware-Einträge Häkchen setzen -- Button "Fix checked" -- PC neustarten Zitat O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Programme\PartyGaming\PartyPoker\RunApp.exe (file missing)PC neustarten ** Trend Micro Anti-Spyware - poste den report http://virus-protect.org/onlinescan.html __________ MfG Sabina rund um die PC-Sicherheit |
|
|
||
06.10.2006, 21:30
Member
Themenstarter Beiträge: 17 |
#19
Logfile of HijackThis v1.99.1
Scan saved at 20:25, on 06-10-06 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\Explorer.EXE C:\Programme\Hijackthis\HijackThis.exe O4 - HKLM\..\Run: [LaunchApp] Alaunch O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe O4 - HKLM\..\Run: [SynTPLpr] C:\Programme\Synaptics\SynTP\SynTPLpr.exe O4 - HKLM\..\Run: [SynTPEnh] C:\Programme\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [LManager] C:\Programme\Launch Manager\QtZgAcer.EXE O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Programme\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKLM\..\Run: [xphuunjx] C:\vtclseab.bat O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe O4 - Global Startup: BTTray.lnk = ? O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Programme\Gemeinsame Dateien\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft Office\Office\OSA9.EXE O4 - Global Startup: Adobe Reader - Schnellstart.lnk = C:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_07\bin\npjpi150_07.dll O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_07\bin\npjpi150_07.dll O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll O12 - Plugin for .spop: C:\Programme\Internet Explorer\Plugins\NPDocBox.dll O16 - DPF: {62475759-9E84-458E-A1AB-5D2C442ADFDE} - http://a1540.g.akamai.net/7/1540/52/20040428/qtinstall.info.apple.com/saba/de/win/QuickTimeInstaller.exe O16 - DPF: {9D190AE6-C81E-4039-8061-978EBAD10073} (F-Secure Online Scanner 3.0) - http://support.f-secure.com/ols3/fscax.cab O16 - DPF: {C36112BF-2FA3-4694-8603-3B510EA3B465} (Lycos File Upload Component) - http://f007.mail.lycos.de/app/uploader/FileUploader.cab O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Programme\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: F-Secure Windows Security Center Legacy Detection Service (Fswsclds) - F-Secure Corporation - C:\Programme\F-Secure Internet Security\fswsclds.exe O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe --------------------------------- Anti-Spyware session started --------------------------------- Machine=ACER-BFR Time=Fri Oct 06 20:29:01 2006 Product Version=3, 0, 1, 23 OS Version=Microsoft Windows XP Home Edition Service Pack 1 (Build 2600) Started Scanning Programs in Memory Finished Scanning IE Downloaded Program Files: Found '' in '' IE Downloaded Program Files: Found 'F-Secure Online Scanner 3.0' in 'C:\WINDOWS\Downloaded Program Files\ca.pub,C:\WINDOWS\Downloaded Program Files\daas_s.dll,C:\WINDOWS\Downloaded Program Files\fsauc.dll,C:\WINDOWS\Downloaded Program Files\fscax.dll,C:\WINDOWS\Downloaded Program Files\fscax.inf' IE Downloaded Program Files: Found 'Lycos File Upload Component' in 'C:\WINDOWS\Downloaded Program Files\FileUploader.dll,C:\WINDOWS\Downloaded Program Files\FileUploader.inf' Windows Policy Settings: Found 'restrictanonymous' in 'SYSTEM\CurrentControlSet\Control\Lsa' Windows Policy Settings: Found 'forceunlocklogon' in 'SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon' CPolicy::CheckWindowsUpdateSettings - Unable to open service 'wuauserv'. Error=1060. Services: Found '' in '' Services: Found 'AVG Anti-Spyware Guard' in '' Services: Found 'F-Secure Windows Security Center Legacy Detection Service' in '' Windows Shell Settings: Found '{57B86673-276A-48B2-BAE7-C6DBB3020EB8}' in 'SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks' Windows Shell Settings: Found 'AVG Anti-Spyware' in 'SOFTWARE\Classes\Drive\shellex\ContextMenuHandlers\AVG Anti-Spyware' Windows Shell Settings: Found '{6af09ec9-b429-11d4-a1fb-0090960218cb}' in 'SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved' Windows Shell Settings: Found '{15362FA5-C983-41ed-B7AC-5B9BEAF56929}' in 'SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved' Windows Shell Settings: Found 'AppData' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'Favorites' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'NetHood' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'Personal' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'PrintHood' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'Start Menu' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'Templates' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'Programs' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'Startup' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'Local Settings' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'Local AppData' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'Cache' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'History' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'My Pictures' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'My Music' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'Administrative Tools' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'CD Burning' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'AppData' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'Favorites' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'NetHood' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'Personal' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'PrintHood' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'Programs' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'Start Menu' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'Startup' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'Templates' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'My Pictures' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'Local Settings' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'Local AppData' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'Cache' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'History' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'Common AppData' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'Common Programs' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'Common Documents' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'Common Start Menu' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'CommonPictures' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'CommonMusic' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'Common Favorites' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'Common Startup' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'Common Administrative Tools' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'Common Templates' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'Personal' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders' Windows Shell Settings: Found 'Common Start Menu' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'Common Programs' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'Common Startup' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'Common AppData' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'Common Templates' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'Common Favorites' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Windows Shell Settings: Found 'Common Documents' in 'Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders' Program Startup Areas: Found 'LaunchApp' in 'SOFTWARE\Microsoft\Windows\CurrentVersion\Run' Program Startup Areas: Found 'AGRSMMSG' in 'SOFTWARE\Microsoft\Windows\CurrentVersion\Run' Program Startup Areas: Found 'LManager' in 'SOFTWARE\Microsoft\Windows\CurrentVersion\Run' Program Startup Areas: Found 'AcerNotebookManager' in 'SOFTWARE\Microsoft\Windows\CurrentVersion\Run' Program Startup Areas: Found 'SoundMan' in 'SOFTWARE\Microsoft\Windows\CurrentVersion\Run' Program Startup Areas: Found '!AVG Anti-Spyware' in 'SOFTWARE\Microsoft\Windows\CurrentVersion\Run' Program Startup Areas: Found 'xphuunjx' in 'SOFTWARE\Microsoft\Windows\CurrentVersion\Run' CPolicy::CheckWindowsUpdateSettings - Unable to open service 'wuauserv'. Error=1060. Started Scanning Internet Cookies CoolWebSearch Variants (CWShredder) Programs in Memory Windows Registry Windows Registry: Found '' in 'SOFTWARE\Magnet' Internet URL Shortcuts Files and Directories Finished Scanning Started Backup Finished Backup Started Cleaning Windows Registry: Cleaned '' in 'SOFTWARE\Magnet' Finished Cleaning CPolicy::CheckWindowsUpdateSettings - Unable to open service 'wuauserv'. Error=1060. CPolicy::CheckWindowsUpdateSettings - Unable to open service 'wuauserv'. Error=1060. CPolicy::CheckWindowsUpdateSettings - Unable to open service 'wuauserv'. Error=1060. CPolicy::CheckWindowsUpdateSettings - Unable to open service 'wuauserv'. Error=1060. CPolicy::CheckWindowsUpdateSettings - Unable to open service 'wuauserv'. Error=1060. Started Cleaning Internet Explorer/MSN/AOL Cache Delete History Items on Startup: Cleaned 'Internet Explorer/MSN/AOL Cache' in '' Windows Temp Files Delete History Items on Startup: Cleaned 'Windows Temp Files' in '' Cookies Delete History Items on Startup: Cleaned 'Cookies' in '' Finished Cleaning CPolicy::CheckWindowsUpdateSettings - Unable to open service 'wuauserv'. Error=1060. Started Scanning Internet Cookies CoolWebSearch Variants (CWShredder) Started Scanning Internet Cookies CoolWebSearch Variants (CWShredder) Programs in Memory Windows Registry Programs in Memory Windows Registry Internet URL Shortcuts Internet URL Shortcuts Files and Directories Files and Directories Finished Scanning --------------------------------- Anti-Spyware session started --------------------------------- Machine=ACER-BFR Time=Fri Oct 06 21:20:55 2006 Product Version=3, 0, 1, 23 OS Version=Microsoft Windows XP Home Edition Service Pack 1 (Build 2600) Started Scanning Programs in Memory Finished Scanning Started Scanning Internet Cookies CoolWebSearch Variants (CWShredder) Programs in Memory Windows Registry Internet URL Shortcuts Files and Directories Finished Scanning CPolicy::CheckWindowsUpdateSettings - Unable to open service 'wuauserv'. Error=1060. |
|
|
||
06.10.2006, 23:48
Ehrenmitglied
Beiträge: 29434 |
#20
Userbericht, wie man loeschen kann:
Zitat Ich habe "restore cleaned items" angeklickt, kam eine Meldung: __________ MfG Sabina rund um die PC-Sicherheit |
|
|
||
07.10.2006, 00:05
Member
Themenstarter Beiträge: 17 |
#21
Der zweite Scan mit Trend Micro Anti-Spyware hat nichts mehr gefunden...
Bin ich jetzt etwa auf der sicheren Seite? Dieser Beitrag wurde am 07.10.2006 um 00:11 Uhr von sinus editiert.
|
|
|
||
07.10.2006, 00:12
Ehrenmitglied
Beiträge: 29434 |
#22
dann lassen wir es dabei bewenden
komme wieder, falls es probleme geben sollte.................. __________ MfG Sabina rund um die PC-Sicherheit |
|
|
||
07.10.2006, 00:18
Member
Themenstarter Beiträge: 17 |
#23
Tausend Dank, Sabina!
|
|
|
||
Fixe mit dem HijackThis:
Zitat
2.Avenger
Zitat
3.Start > Ausfuehren --> reinschreiben --> cmd.exe
und ok. kopiere rein und poste alles, was im Texteditor erscheint
dir /s /a "c:\e1*.*" > c:\find.txt & start notepad c:\find.txt
dir /s /a "c:\dpmomspr*.*" > c:\find.txt & start notepad c:\find.txt
dir /s /a "c:\dminupnp*.*" > c:\find.txt & start notepad c:\find.txt
«
__________
MfG Sabina
rund um die PC-Sicherheit