Taskmgr.exe verschwunden, Taskmanager nicht ausführbar

Dieses Thema Taskmgr.exe verschwunden, Taskmanager nicht ausführbar im Forum "Viren, Trojaner, Spyware etc." wurde erstellt von cn111, 16. Sep. 2008.

Thema: Taskmgr.exe verschwunden, Taskmanager nicht ausführbar Hallo Leute, ich habe folgendes Problem auf Win XP Professional. - Beim drücken strg+alt+entf tut sich nichts. -...

  1. Hallo Leute,

    ich habe folgendes Problem auf Win XP Professional.

    - Beim drücken strg+alt+entf tut sich nichts.
    - rechte Maustaste auf Taskleiste -> Task Manager: Nichts tut sich
    - In system 32 findet man nur: taskman.exe (16kB) keine taskmgr.exe

    Habe dann Antivir laufen lassen und etwa 30 Trojaner, etc gelöscht. Virenscanner meldet nun kein problem mehr.

    Da ich meine Windows CD nicht gefunden habe, habe ich taskmgr.exe von einem anderen XP rechner kopiert und in den system32 Ornder gestellt. Beim öffnen tut sich allerdings nichts und taskmgr.exe ändert seine größe von 136kB in 16kB. Öffne ich den taskmgr.exe von CD funktioniert es und ich kann die Prozesse etc sehen.

    Hat hier jemand eine Ahnung, was schief läuft?

    Viele Grüße,
    Christian


    [br][blue]*PCDpan_fee: Verschoben aus "Windows XP"*[/blue]
     
  2. wollen wir wetten ich finde noch welche? :knuppel2:

    nach dieser anleitung das tool rsit abarbeiten, beide logs hier posten.

    http://www.wintotal-forum.de/index.php/topic,147847.0.html
     
  3. Hallo, hier die logs.

    Hoffe, das hilft.
    Gruß, cn111

    System drive C: has 2 GB (9%) free of 27 GB
    Total RAM: 502 MB (42% free)

    Code:
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 17:45:32, on 16.09.2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
    Boot mode: Normal
    
    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe
    C:\Programme\Citrix\ICA Client\ssonsvr.exe
    C:\WINDOWS\Explorer.EXE
    C:\Programme\Symantec\Norton Ghost 2003\GhostStartTrayApp.exe
    C:\WINDOWS\AGRSMMSG.exe
    C:\Programme\ltmoh\Ltmoh.exe
    C:\WINDOWS\System32\hkcmd.exe
    C:\AddOn\Fujitsu\Application Panel\QuickTouch.exe
    C:\Programme\Fujitsu\BtnHnd\BtnHnd.exe
    C:\AddOn\Fujitsu\Hotkey\IndicatorUty.exe
    C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
    C:\Programme\QuickTime\qttask.exe
    C:\Programme\Java\jre1.5.0_01\bin\jusched.exe
    C:\Programme\avmclient\bluefritz.exe
    C:\Programme\avmclient\AvmObex.exe
    C:\Programme\Avira\AntiVir PersonalEdition Classic\avgnt.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Programme\InterVideo\Common\Bin\WinCinemaMgr.exe
    C:\Programme\ComCenter\IWatch.exe
    C:\Programme\avmclient\AvmObex.exe
    C:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe
    C:\Programme\avmclient\AvmObexService.exe
    C:\Programme\avmclient\avmbtservice.exe
    C:\Programme\avmclient\panapp.exe
    C:\Programme\Symantec\Norton Ghost 2003\GhostStartService.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Programme\Canon\CAL\CALMAIN.exe
    C:\Programme\Mozilla Firefox\firefox.exe
    C:\Dokumente und Einstellungen\Ortrun\Desktop\RSIT.exe
    C:\Programme\trend micro\Ortrun.exe
    
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = [url]http://www.google.de/[/url]
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\AddOn\AcrobatReader\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: (no name) - {48691221-F05C-4AB4-B9D0-50D6D36CC27F} - C:\Program Files\Internet Explorer\PLUGINS\321Nt64.987 (file missing)
    O2 - BHO: Plugin Class - {56CD20F0-7C09-11D5-A768-0050042307CE} - C:\Programme\SAP\SAP Tutor\PlayerIE.dll
    O4 - HKLM\..\Run: [AuditMode] C:\sysprep\factory.exe -logon
    O4 - HKLM\..\Run: [GhostStartTrayApp] C:\Programme\Symantec\Norton Ghost 2003\GhostStartTrayApp.exe
    O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
    O4 - HKLM\..\Run: [LtMoh] C:\Programme\ltmoh\Ltmoh.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
    O4 - HKLM\..\Run: [LoadFujitsuQuickTouch] C:\AddOn\Fujitsu\Application Panel\QuickTouch.exe
    O4 - HKLM\..\Run: [LoadBtnHnd] C:\Programme\Fujitsu\BtnHnd\BtnHnd.exe
    O4 - HKLM\..\Run: [IndicatorUtility] C:\AddOn\Fujitsu\Hotkey\IndicatorUty.exe
    O4 - HKLM\..\Run: [Apoint] C:\Programme\Apoint2K\Apoint.exe
    O4 - HKLM\..\Run: [routcnf] C:\Programme\Telekom\T-Sinus 620data\routcnf.exe /capiactive
    O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
    O4 - HKLM\..\Run: [QuickTime Task] C:\Programme\QuickTime\qttask.exe -atboottime
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programme\Java\jre1.5.0_01\bin\jusched.exe
    O4 - HKLM\..\Run: [AVMBlueClient] C:\Programme\avmclient\bluefritz.exe
    O4 - HKLM\..\Run: [AVMBLUEOBEX] C:\Programme\avmclient\AvmObex.exe -pushclient -ftpclient
    O4 - HKLM\..\Run: [HBService32] System.exe
    O4 - HKLM\..\Run: [avgnt] C:\Programme\Avira\AntiVir PersonalEdition Classic\avgnt.exe /min
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MSMSGS] C:\Programme\Messenger\msmsgs.exe /background
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User->LOKALER DIENST')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User->NETZWERKDIENST')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User->SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User->Default user')
    O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Programme\InterVideo\Common\Bin\WinCinemaMgr.exe
    O4 - Global Startup: ISDNWatch.lnk = C:\Programme\ComCenter\IWatch.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft Office\Office\OSA9.EXE
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_01\bin\npjpi150_01.dll
    O9 - Extra->Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_01\bin\npjpi150_01.dll
    O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Programme\PartyGaming\PartyPoker\RunApp.exe (file missing)
    O9 - Extra->Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Programme\PartyGaming\PartyPoker\RunApp.exe (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
    O9 - Extra->Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
    O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - [url]http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-12.cab[/url]
    O16 - DPF: {62475759-9E84-458E-A1AB-5D2C442ADFDE} - [url]http://a1540.g.akamai.net/7/1540/52/20040428/qtinstall.info.apple.com/saba/de/win/QuickTimeInstaller.exe[/url]
    O16 - DPF: {CE69F98F-2AF3-4306-BAC6-A79070EDA1B4} (Zylom Loader Object) - [url]http://eu.download.games.yahoo.com/zylom/activex/zylomloader.cab[/url]
    O16 - DPF: {D8089245-3211-40F6-819B-9E5E92CD61A2} (FlashXControl Object) - [url]https://grandmonaco.microgaming.com/grandmonacode/FlashAX.cab[/url]
    O17 - HKLM\System\CCS\Services\Tcpip\..\{0FEDC20E-A050-462A-8308-FE6249DFA6D0}: NameServer = 195.50.140.252 195.50.140.114
    O17 - HKLM\System\CCS\Services\Tcpip\..\{A90913DC-03EF-4AE6-AD8D-9C2AA0D4CE53}: NameServer = 192.168.121.252,192.168.121.253
    O17 - HKLM\System\CS1\Services\Tcpip\..\{0FEDC20E-A050-462A-8308-FE6249DFA6D0}: NameServer = 195.50.140.252 195.50.140.114
    O20 - AppInit_DLLs: mcromv.dll lensch.dll,HBmhly.dll,HB1000Y.dll,HBWOOOL.dll,HBXY2.dll,HBJXSJ.dll,HBSO2.dll,HBFS2.dll,HBXY3.dll,HBSHQ.dll,HBFY.dll,HBWULIN2.dll,HBW2I.dll,HBKDXY.dll,HBWORLD2.dll,HBASKTAO.dll,HBZHUXIAN.dll,HBWOW.dll,HBZERO.dll,HBBO.dll,HBCONQUER.dll,HBSOUL.dll,HBCHIBI.dll,HBDNF.dll,HBWARLORDS.dll,HBTL.dll,HBPICKCHINA.dll,HBCT.dll,HBGC.dll,HBHM.dll,HBHX2.dll,HBQQHX.dll,HBTW2.dll,HBQQSG.dll,HBQQFFO.dll,HBZT.dll,HBMIR2.dll,HBRXJH.dll,HBYY.dll,HBMXD.dll,HBSQ.dll,HBTJ.dll,HBFHZL.dll,HBWLQX.dll,HBLYFX.dll,HBR2.dll,HBCHD.dll,HBTZ.dll,HBQQXX.dll,HBWD.dll,HBZG.dll,HBPPBL.dll,HBXMJ.dll,HBJTLQ.dll,HBQJSJ.dll cmbdaf.dll
    O21 - SSODL: dpvvoxmh.dll - {2876D76C-CAAA-4313-AF97-8D1D9A2A1087} - C:\WINDOWS\system32\dpvvoxmh.dll (file missing)
    O21 - SSODL: xolehlpjh.dll - {F0930A2F-D971-4828-8209-B7DFD266ED44} - C:\WINDOWS\system32\xolehlpjh.dll (file missing)
    O21 - SSODL: bootvidgj.dll - {D3112B69-A745-4805-874E-ABD480EA1299} - C:\WINDOWS\system32\bootvidgj.dll (file missing)
    O21 - SSODL: tscfgwmijxsj.dll - {2CB77746-8ECC-40ca-8217-10CA8BE5EFC8} - C:\WINDOWS\system32\tscfgwmijxsj.dll (file missing)
    O21 - SSODL: mstimewd.dll - {65056902-6E7B-4bd7-95BA-688DB5FA5BEB} - C:\WINDOWS\system32\mstimewd.dll (file missing)
    O21 - SSODL: rzmiasec.dll - {21BE5FDF-D4CB-4850-AD99-21E68B50BF3F} - C:\WINDOWS\system32\aucbccol.dll (file missing)
    O21 - SSODL: comuidsg.dll - {898E02AB-9372-4a2c-9C4A-FFE1AF61097F} - C:\WINDOWS\system32\comuidsg.dll (file missing)
    O21 - SSODL: slbiopfs2.dll - {EB9660D8-E1CD-4ff0-B4A9-00CD907F928A} - C:\WINDOWS\system32\slbiopfs2.dll (file missing)
    O21 - SSODL: nwapi32dj.dll - {A2C3BA54-DF75-4881-8EB3-E54B26BBBBC9} - C:\WINDOWS\system32\nwapi32dj.dll (file missing)
    O21 - SSODL: scrruncqsj.dll - {00240024-0024-0024-0024-00240024BB15} - C:\WINDOWS\system32\scrruncqsj.dll (file missing)
    O21 - SSODL: ckdmrpnr.dll - {21BE5FDF-D4CB-4850-AD99-21E68B50BF3F} - C:\WINDOWS\system32\aucbccol.dll (file missing)
    O21 - SSODL: aucbccol.dll - {21BE5FDF-D4CB-4850-AD99-21E68B50BF3F} - C:\WINDOWS\system32\aucbccol.dll (file missing)
    O21 - SSODL: gdlhutqq.dll - {21BE5FDF-D4CB-4850-AD99-21E68B50BF3F} - C:\WINDOWS\system32\aucbccol.dll (file missing)
    O23 - Service: Avira AntiVir Personal - Free Antivirus Planer (AntiVirScheduler) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe
    O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe
    O23 - Service: BT OBEX Service (AvmObexService) - AVM Berlin - C:\Programme\avmclient\AvmObexService.exe
    O23 - Service: BT Connection Service - AVM Berlin - C:\Programme\avmclient\avmbtservice.exe
    O23 - Service: BT PAN Service - AVM Berlin - C:\Programme\avmclient\panapp.exe
    O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Programme\Canon\CAL\CALMAIN.exe
    O23 - Service: AVM FRITZ!web Routing Service (de_serv) - AVM Berlin - C:\Programme\Gemeinsame Dateien\AVM\de_serv.exe
    O23 - Service: GhostStartService - Symantec Corporation - C:\Programme\Symantec\Norton Ghost 2003\GhostStartService.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe
    O24 - Desktop Component 0: (no name) - file:///C:/DOKUME~1/Ortrun/LOKALE~1/Temp/msoclip1/01/clip_image002.jpg
    
    --
    End of file - 9451 bytes
    Scheduled tasks folder

    C:\WINDOWS\tasks\AppleSoftwareUpdate.job
     
  4. Registry dump

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
    AcroIEHlprObj Class - C:\AddOn\AcrobatReader\Reader\ActiveX\AcroIEHelper.ocx [2001-04-16 37808]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{48691221-F05C-4AB4-B9D0-50D6D36CC27F}]
    C:\Program Files\Internet Explorer\PLUGINS\321Nt64.987 []

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{56CD20F0-7C09-11D5-A768-0050042307CE}]
    Plugin Class - C:\Programme\SAP\SAP Tutor\PlayerIE.dll [2004-02-05 140320]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    AuditMode=C:\sysprep\factory.exe -logon []
    GhostStartTrayApp=C:\Programme\Symantec\Norton Ghost 2003\GhostStartTrayApp.exe [2002-08-15 94208]
    AGRSMMSG=C:\WINDOWS\AGRSMMSG.exe [2002-11-21 87751]
    LtMoh=C:\Programme\ltmoh\Ltmoh.exe [2003-01-02 172032]
    HotKeysCmds=C:\WINDOWS\System32\hkcmd.exe [2003-01-24 114688]
    LoadFujitsuQuickTouch=C:\AddOn\Fujitsu\Application Panel\QuickTouch.exe [2002-08-29 353792]
    LoadBtnHnd=C:\Programme\Fujitsu\BtnHnd\BtnHnd.exe [2002-08-27 61440]
    IndicatorUtility=C:\AddOn\Fujitsu\Hotkey\IndicatorUty.exe [2002-08-28 81920]
    Apoint=C:\Programme\Apoint2K\Apoint.exe [2002-04-05 118784]
    routcnf=C:\Programme\Telekom\T-Sinus 620data\routcnf.exe /capiactive []
    EM_EXEC=C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE [2002-07-01 28672]
    QuickTime Task=C:\Programme\QuickTime\qttask.exe [2006-09-01 282624]
    NeroFilterCheck=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
    pdfSaver3=C:\Programme\Mozilla Firefox\
    SunJavaUpdateSched=C:\Programme\Java\jre1.5.0_01\bin\jusched.exe [2004-12-06 36975]
    AVMBlueClient=C:\Programme\avmclient\bluefritz.exe [2004-10-25 1662976]
    AVMBLUEOBEX=C:\Programme\avmclient\AvmObex.exe [2004-10-25 364544]
    HBService32=C:\WINDOWS\system32\System.exe [2008-09-13 5632]
    avgnt=C:\Programme\Avira\AntiVir PersonalEdition Classic\avgnt.exe [2008-06-12 266497]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    CTFMON.EXE=C:\WINDOWS\system32\ctfmon.exe [2004-08-04 15360]
    MSMSGS=C:\Programme\Messenger\msmsgs.exe [2004-10-13 1694208]

    C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart
    InterVideo WinCinema Manager.lnk - C:\Programme\InterVideo\Common\Bin\WinCinemaMgr.exe
    ISDNWatch.lnk - C:\Programme\ComCenter\IWatch.exe
    Microsoft Office.lnk - C:\Programme\Microsoft Office\Office\OSA9.EXE

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
    AppInit_DLLS= mcromv.dll lensch.dll,HBmhly.dll,HB1000Y.dll,HBWOOOL.dll,HBXY2.dll,HBJXSJ.dll,HBSO2.dll,HBFS2.dll,HBXY3.dll,HBSHQ.dll,HBFY.dll,HBWULIN2.dll,HBW2I.dll,HBKDXY.dll,HBWORLD2.dll,HBASKTAO.dll,HBZHUXIAN.dll,HBWOW.dll,HBZERO.dll,HBBO.dll,HBCONQUER.dll,HBSOUL.dll,HBCHIBI.dll,HBDNF.dll,HBWARLORDS.dll,HBTL.dll,HBPICKCHINA.dll,HBCT.dll,HBGC.dll,HBHM.dll,HBHX2.dll,HBQQHX.dll,HBTW2.dll,HBQQSG.dll,HBQQFFO.dll,HBZT.dll,HBMIR2.dll,HBRXJH.dll,HBYY.dll,HBMXD.dll,HBSQ.dll,HBTJ.dll,HBFHZL.dll,HBWLQX.dll,HBLYFX.dll,HBR2.dll,HBCHD.dll,HBTZ.dll,HBQQXX.dll,HBWD.dll,HBZG.dll,HBPPBL.dll,HBXMJ.dll,HBJTLQ.dll,HBQJSJ.dll cmbdaf.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
    C:\WINDOWS\system32\igfxsrvc.dll [2003-01-24 315392]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
    C:\WINDOWS\system32\WgaLogon.dll [2007-02-15 236928]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
    dpvvoxmh.dll - {2876D76C-CAAA-4313-AF97-8D1D9A2A1087} - C:\WINDOWS\system32\dpvvoxmh.dll []
    xolehlpjh.dll - {F0930A2F-D971-4828-8209-B7DFD266ED44} - C:\WINDOWS\system32\xolehlpjh.dll []
    bootvidgj.dll - {D3112B69-A745-4805-874E-ABD480EA1299} - C:\WINDOWS\system32\bootvidgj.dll []
    tscfgwmijxsj.dll - {2CB77746-8ECC-40ca-8217-10CA8BE5EFC8} - C:\WINDOWS\system32\tscfgwmijxsj.dll []
    mstimewd.dll - {65056902-6E7B-4bd7-95BA-688DB5FA5BEB} - C:\WINDOWS\system32\mstimewd.dll []
    rzmiasec.dll - {21BE5FDF-D4CB-4850-AD99-21E68B50BF3F} - C:\WINDOWS\system32\aucbccol.dll []
    comuidsg.dll - {898E02AB-9372-4a2c-9C4A-FFE1AF61097F} - C:\WINDOWS\system32\comuidsg.dll []
    slbiopfs2.dll - {EB9660D8-E1CD-4ff0-B4A9-00CD907F928A} - C:\WINDOWS\system32\slbiopfs2.dll []
    nwapi32dj.dll - {A2C3BA54-DF75-4881-8EB3-E54B26BBBBC9} - C:\WINDOWS\system32\nwapi32dj.dll []
    scrruncqsj.dll - {00240024-0024-0024-0024-00240024BB15} - C:\WINDOWS\system32\scrruncqsj.dll []
    ckdmrpnr.dll - {21BE5FDF-D4CB-4850-AD99-21E68B50BF3F} - C:\WINDOWS\system32\aucbccol.dll []
    aucbccol.dll - {21BE5FDF-D4CB-4850-AD99-21E68B50BF3F} - C:\WINDOWS\system32\aucbccol.dll []
    gdlhutqq.dll - {21BE5FDF-D4CB-4850-AD99-21E68B50BF3F} - C:\WINDOWS\system32\aucbccol.dll []

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
    {EDB0E980-90BD-11D4-8599-0008C7D3B6F8}=C:\PROGRA~1\Qualcomm\Eudora\EuShlExt.dll [2003-12-18 86016]
    {2876D76C-CAAA-4313-AF97-8D1D9A2A1087}=C:\WINDOWS\system32\dpvvoxmh.dll []
    {F0930A2F-D971-4828-8209-B7DFD266ED44}=C:\WINDOWS\system32\xolehlpjh.dll []
    {D3112B69-A745-4805-874E-ABD480EA1299}=C:\WINDOWS\system32\bootvidgj.dll []
    {2CB77746-8ECC-40ca-8217-10CA8BE5EFC8}=C:\WINDOWS\system32\tscfgwmijxsj.dll []
    {65056902-6E7B-4bd7-95BA-688DB5FA5BEB}=C:\WINDOWS\system32\mstimewd.dll []
    {21BE5FDF-D4CB-4850-AD99-21E68B50BF3F}=C:\WINDOWS\system32\aucbccol.dll []
    {898E02AB-9372-4a2c-9C4A-FFE1AF61097F}=C:\WINDOWS\system32\comuidsg.dll []
    {AF05A291-7249-4C15-B212-3E8D8C02438D}=AF05A291.dll []
    {5CC10129-8B52-4248-A14D-E4099A943269}=5CC10129.dll []
    {CF8850CD-885D-4380-9E1B-8C987F011437}=CF8850CD.dll []
    {4BF9CBA3-8DEE-41A1-8BDB-FC28D30E949F}=4BF9CBA3.dll []
    {9CA963CA-107C-4089-B0AB-31380F90D7E3}=9CA963CA.dll []
    {EB9660D8-E1CD-4ff0-B4A9-00CD907F928A}=C:\WINDOWS\system32\slbiopfs2.dll []
    {A2C3BA54-DF75-4881-8EB3-E54B26BBBBC9}=C:\WINDOWS\system32\nwapi32dj.dll []
    {8566F82E-03A4-416E-AEAC-66600D8881F1}=8566F82E.dll []
    {00240024-0024-0024-0024-00240024BB15}=C:\WINDOWS\system32\scrruncqsj.dll []
    {48691221-F05C-4AB4-B9D0-50D6D36CC27F}=C:\Program Files\Internet Explorer\PLUGINS\321Nt64.987 []
    {DBEAF7DC-D4AA-4A2E-958A-58E9A6BC11C7}=DBEAF7DC.dll []
    {7ADC2AB1-5C6A-4178-82DA-94863354AF7C}=7ADC2AB1.dll []
    {78B5E02E-5F90-4D5F-869B-55351D5FBAAE}=78B5E02E.dll []
    {D91BC61E-7D78-4A2A-A336-7B97E8E52F0B}=D91BC61E.dll []
    {D7C79813-9233-4AE0-832C-99B2E8019673}=D7C79813.dll []
    {495271CA-D0C6-4052-ABE6-5B01C73CDFB0}=495271CA.dll []
    {20A0D061-7950-4B34-8E47-38D835DD9E6B}=20A0D061.dll []

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
    dontdisplaylastusername=0
    legalnoticecaption=
    legalnoticetext=
    shutdownwithoutlogon=1
    undockwithoutlogon=1

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
    %windir%\system32\sessmgr.exe=%windir%\system32\sessmgr.exe:*:enabled:mad:xpsp2res.dll,-22019
    C:\Programme\Nortel Networks\Extranet.exe=C:\Programme\Nortel Networks\Extranet.exe:*:Enabled:Contivity VPN Client
    C:\Programme\Valve\Counterstrike\czero.exe=C:\Programme\Valve\Counterstrike\czero.exe:*:Disabled:Condition Zero Launcher
    C:\Programme\Internet Explorer\iexplore.exe=C:\Programme\Internet Explorer\iexplore.exe:*:Enabled:Internet Explorer

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
    %windir%\system32\sessmgr.exe=%windir%\system32\sessmgr.exe:*:enabled:mad:xpsp2res.dll,-22019
     
  5. List of files/folders created in the last three months

    2008-09-16 17:44:15 ----D---- C:\Programme\trend micro
    2008-09-16 17:44:14 ----D---- C:\rsit
    2008-09-14 19:28:30 ----SHD---- C:\Config.Msi
    2008-09-14 14:06:59 ----A---- C:\WINDOWS\ntbtlog.txt
    2008-09-14 13:04:03 ----D---- C:\Programme\Avira
    2008-09-14 13:04:03 ----D---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Avira
    2008-09-14 11:38:11 ----HD---- C:\WINDOWS\system32\GroupPolicy
    2008-09-14 10:17:42 ----A---- C:\WINDOWS\system32\HBSOUL.dll
    2008-09-13 23:06:28 ----A---- C:\WINDOWS\system32\System.exe
    2008-09-12 19:03:53 ----A---- C:\WINDOWS\system32\thermaltinc.dll
    2008-09-10 20:34:02 ----A---- C:\WINDOWS\lpk.dll
    2008-09-10 11:31:48 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
    2008-08-15 08:05:20 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
    2008-08-15 08:05:09 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
    2008-08-15 08:05:00 ----HDC---- C:\WINDOWS\$NtUninstallKB953839$
    2008-08-15 08:04:50 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
    2008-08-15 08:04:41 ----HDC---- C:\WINDOWS\$NtUninstallKB951072-v2$
    2008-08-15 08:04:28 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
    2008-08-15 08:04:16 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
    2008-08-15 08:03:46 ----HDC---- C:\WINDOWS\$NtUninstallKB953838$
    2008-08-05 19:14:34 ----N---- C:\WINDOWS\system32\Ucs32p.dll
    2008-08-05 19:14:34 ----N---- C:\WINDOWS\system32\Csp2utl.dll
    2008-08-05 19:14:34 ----N---- C:\WINDOWS\system32\Csp2osu.dll
    2008-08-05 19:14:34 ----N---- C:\WINDOWS\ScFBPPM2.DLL
    2008-08-05 12:20:57 ----D---- C:\Programme\TechSmith
    2008-07-19 11:55:01 ----D---- C:\Dokumente und Einstellungen\Ortrun\Anwendungsdaten\ZoomBrowser EX
    2008-07-19 11:52:56 ----D---- C:\Dokumente und Einstellungen\Ortrun\Anwendungsdaten\CameraWindowDC
    2008-07-19 11:52:51 ----D---- C:\Dokumente und Einstellungen\Ortrun\Anwendungsdaten\CANON INC
    2008-07-10 23:40:53 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
    2008-06-22 23:04:20 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$

    List of drivers

    R1 avgio;avgio; \??\C:\Programme\Avira\AntiVir PersonalEdition Classic\avgio.sys []
    R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2008-06-27 75072]
    R1 GhPciScan;GhostPciScanner; \??\C:\Programme\Symantec\Norton Ghost 2003\ghpciscan.sys []
    R1 intelppm;Intel-Prozessortreiber; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2004-08-04 40192]
    R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2007-11-08 21248]
    R2 ACEDRV05;ACEDRV05; \??\C:\WINDOWS\system32\drivers\ACEDRV05.sys []
    R2 Aspi32;Aspi32; C:\WINDOWS\system32\drivers\Aspi32.sys [2002-08-14 17005]
    R2 AVMPORT;AVMPORT; C:\WINDOWS\System32\drivers\avmport.sys [2004-05-26 59520]
    R2 BtnHnd;BtnHnd; \??\C:\Programme\Fujitsu\BtnHnd\BtnHnd.sys []
    R2 irda;IrDA-Protokoll; C:\WINDOWS\System32\DRIVERS\irda.sys [2004-08-04 87424]
    R2 ScFBPNT2;CanoScan FBP2 Port Driver; \??\C:\WINDOWS\system32\drivers\ScFBPNT2.SYS []
    R2 SHARSHTL;Shuttle Sharer; C:\WINDOWS\System32\Drivers\sharshtl.sys [1997-04-07 15744]
    R3 {6080A529-897E-4629-A488-ABA0C29B635E};Intel(R) Graphics Platform (SoftBIOS) Driver; C:\WINDOWS\system32\drivers\ialmsbw.sys [2003-02-14 109344]
    R3 {D31A0762-0CEB-444e-ACFF-B049A1F6FE91};Intel(R) Graphics Chipset (KCH) Driver; C:\WINDOWS\system32\drivers\ialmkchw.sys [2003-02-14 78336]
    R3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\System32\DRIVERS\AGRSM.sys [2002-11-22 1157856]
    R3 avgntflt;avgntflt; \??\C:\Programme\Avira\AntiVir PersonalEdition Classic\avgntflt.sys []
    R3 AVMBTPARALLEL;Bluetooth Druckeranschluss; C:\WINDOWS\system32\DRIVERS\avmbtpar.sys [2004-10-25 60288]
    R3 AVMBTSERIAL;Bluetooth Kommunikationsanschluss; C:\WINDOWS\system32\DRIVERS\avmbtser.sys [2004-10-25 61056]
    R3 AVMBTSND;Bluetooth Audio Driver; C:\WINDOWS\system32\drivers\avmbtsnd.sys [2004-10-25 49664]
    R3 AVMCOWAN;ISDN CoNDIS WAN CAPI Treiber; C:\WINDOWS\system32\DRIVERS\avmcowan.sys [2004-10-25 53248]
    R3 bfhubase;Eumex C 200 data (WinXP/2000); C:\WINDOWS\system32\DRIVERS\bfhubase.sys [2004-10-25 796352]
    R3 CAPI_CIP;Bluetooth CAPI-Controller; C:\WINDOWS\system32\DRIVERS\capi_cip.sys [2004-10-25 374144]
    R3 CmBatt;Treiber für Microsoft-ACPI-Kontrollmethodenkompatible Batterie; C:\WINDOWS\System32\DRIVERS\CmBatt.sys [2004-08-04 14080]
    R3 Eacfilt;Eacfilt Miniport; C:\WINDOWS\System32\DRIVERS\eacfilt.sys [2002-10-11 9049]
    R3 FUJ02B1;Fujitsu FUJ02B1 Device Driver; C:\WINDOWS\System32\DRIVERS\FUJ02B1.sys [2001-08-02 5248]
    R3 ialm;ialm; C:\WINDOWS\System32\DRIVERS\ialmnt5.sys [2003-02-14 89371]
    R3 IPSECSHM;Nortel IPSECSHM Adapter; C:\WINDOWS\System32\DRIVERS\ipsecw2k.sys [2002-10-11 115008]
    R3 l8042pr2;Logitech PS/2 Mouse Filter Driver; C:\WINDOWS\System32\DRIVERS\L8042Pr2.sys [2002-07-02 50830]
    R3 LKbdFlt2;Logitech Keyboard Class Filter Driver; C:\WINDOWS\System32\DRIVERS\LKbdFlt2.sys [2002-07-02 6030]
    R3 LMouFlt2;Logitech Mouse Class Filter Driver; C:\WINDOWS\System32\DRIVERS\LMouFlt2.sys [2002-07-02 70382]
    R3 Rasirda;WAN-Miniport (IrDA); C:\WINDOWS\System32\DRIVERS\rasirda.sys [2001-08-17 19584]
    R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2002-08-29 5888]
    R3 rtl8139;Realtek RTL8139/810x Family Fast Ethernet NIC NT Driver; C:\WINDOWS\System32\DRIVERS\R8139n51.SYS [2002-10-04 46976]
    R3 SMCIRDA;SMC IrCC-Miniportgerätetreiber; C:\WINDOWS\System32\DRIVERS\smcirda.sys [2001-08-18 35913]
    R3 STAC97;Audio Driver (WDM) - SigmaTel CODEC; C:\WINDOWS\system32\drivers\STAC97.sys [2003-01-17 202480]
    R3 usbehci;Miniporttreiber für erweiterten Microsoft USB 2.0-Hostcontroller; C:\WINDOWS\System32\DRIVERS\usbehci.sys [2004-08-04 26624]
    R3 usbhub;USB2-aktivierter Hub; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2004-08-04 57600]
    R3 usbuhci;Miniporttreiber für universellen Microsoft USB-Hostcontroller; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2004-08-04 20480]
    R3 w70n51;Intel(R) PRO/Wireless 7100 Adapter-Treiber; C:\WINDOWS\System32\DRIVERS\w70n51.sys [2003-03-07 2390528]
    S2 IPSECEXT;Nortel Extranet Access Protocol; C:\WINDOWS\System32\DRIVERS\ipsecw2k.sys [2002-10-11 115008]
    S3 ac97intc;Intel(r) 82801 Audiotreiber-Installationsdienst (WDM); C:\WINDOWS\system32\drivers\ac97intc.sys [2001-08-17 96256]
    S3 ace1f7;ace1f7; \??\C:\WINDOWS\system32\ace1f7.sys []
    S3 ApfiltrService;Alps Pointing-device Filter Driver; C:\WINDOWS\System32\DRIVERS\Apfiltr.sys [2002-01-17 56573]
    S3 Arp1394;1394-ARP-Clientprotokoll; C:\WINDOWS\System32\DRIVERS\arp1394.sys [2004-08-04 60800]
    S3 dbeaf7d;dbeaf7d; \??\C:\WINDOWS\system32\dbeaf7d.sys []
    S3 e5e3454;e5e3454; \??\C:\WINDOWS\system32\e5e3454.sys []
    S3 FXUSBASE;Eumex C 200 (WinXP/2000); C:\WINDOWS\system32\DRIVERS\fxusbase.sys [2004-10-25 578432]
    S3 gv3;Intel GV3-Prozessortreiber; C:\WINDOWS\System32\DRIVERS\gv3.sys [2002-11-20 33664]
    S3 msIffei;msIffei; C:\WINDOWS\System32\Drivers\msIffei.sys [2008-09-14 2784]
    S3 MSIRCOMM;Microsoft IR Communications Driver; C:\WINDOWS\system32\DRIVERS\MSIRCOMM.sys [2004-08-04 22016]
    S3 NETBFPAN;Bluetooth Netzwerkadapter; C:\WINDOWS\system32\DRIVERS\netbfpan.sys [2004-10-25 31818]
    S3 NETPPPOI;PPP over ISDN; C:\WINDOWS\system32\DRIVERS\NETPPPOI.SYS [2003-11-03 319488]
    S3 NIC1394;1394-Netzwerktreiber; C:\WINDOWS\System32\DRIVERS\nic1394.sys [2004-08-04 61824]
    S3 NSCIRDA;NSC-Infrarotgerätetreiber; C:\WINDOWS\System32\DRIVERS\nscirda.sys [2004-08-04 28672]
    S3 ProcessNotify;ProcessNotify Driver; \??\C:\DOKUME~1\CHRIST~1\LOKALE~1\Temp\winxpser.sys []
    S3 ulisa;Telekom ISDN-Adapter (USB); C:\WINDOWS\System32\Drivers\ulisa.sys []
    S3 usbscan;USB-Scannertreiber; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-04 15104]
    S3 usbser;Motorola USB Modem Driver; C:\WINDOWS\system32\DRIVERS\usbser.sys [2004-08-04 25600]
    S3 USBSTOR;USB-Massenspeichertreiber; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2004-08-04 26496]
    S4 agp440;Intel AGP-Bus-Filter; C:\WINDOWS\System32\DRIVERS\agp440.sys [2004-08-04 42368]
    S4 agpCPQ;Compaq AGP-Bus-Filter; C:\WINDOWS\System32\DRIVERS\agpCPQ.sys [2004-08-04 44928]
    S4 alim1541;ALI AGP-Bus-Filter; C:\WINDOWS\System32\DRIVERS\alim1541.sys [2004-08-04 42752]
    S4 amdagp;AMD AGP-Bus-Filtertreiber; C:\WINDOWS\System32\DRIVERS\amdagp.sys [2004-08-04 43008]
    S4 cbidf;cbidf; C:\WINDOWS\System32\DRIVERS\cbidf2k.sys [2001-08-17 13952]
    S4 sisagp;SIS AGP-Bus-Filter; C:\WINDOWS\System32\DRIVERS\sisagp.sys [2004-08-04 41088]
    S4 viaagp;VIA AGP-Bus-Filter; C:\WINDOWS\System32\DRIVERS\viaagp.sys [2004-08-04 42240]
    S4 WS2IFSL;Windows Socket 2.0 Non-IFS-Dienstanbieter-Unterstützungsumgebung; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2002-08-29 12032]

    List of services

    R2 AntiVirScheduler;Avira AntiVir Personal - Free Antivirus Planer; C:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe [2008-06-12 68865]
    R2 AntiVirService;Avira AntiVir Personal - Free Antivirus Guard; C:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe [2008-09-14 149761]
    R2 AvmObexService;BT OBEX Service; C:\Programme\avmclient\AvmObexService.exe [2004-10-25 176128]
    R2 BT Connection Service;BT Connection Service; C:\Programme\avmclient\avmbtservice.exe [2004-10-25 299101]
    R2 BT PAN Service;BT PAN Service; C:\Programme\avmclient\panapp.exe [2004-10-25 135168]
    R2 CCALib8;Canon Camera Access Library 8; C:\Programme\Canon\CAL\CALMAIN.exe [2007-01-31 96370]
    R2 GhostStartService;GhostStartService; C:\Programme\Symantec\Norton Ghost 2003\GhostStartService.exe [2002-08-14 200704]
    R2 Irmon;Infrarotüberwachung; C:\WINDOWS\System32\svchost.exe [2004-08-04 14336]
    S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 29896]
    S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 66240]
    S3 de_serv;AVM FRITZ!web Routing Service; C:\Programme\Gemeinsame Dateien\AVM\de_serv.exe [2003-11-03 196669]
    S3 gusvc;Google Updater Service; C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe [2007-01-04 136120]

    -----------------EOF-----------------
     
  6. Hallo Schrauber,
    das hört sich ja nicht so gut an.

    Gibt es Hinweise darauf, dass noch weitere Viren im System sind?
    Gruß,
    cn111
     
  7. sonst hätt ich dir nicht gesagt, du sollst combofix anwenden ;)
     
  8. das hab ich mir gedacht ;)

    nur um meine neugierde zu befriedigen, was weisst z.B. auf einen Virus hin?
     
  9. Code:
    O4 - HKLM\..\Run: [HBService32] System.exe
    O16 - DPF: {62475759-9E84-458E-A1AB-5D2C442ADFDE} - [url]http://a1540.g.akamai.net[/url] [...] /QuickTimeInstaller.exe
    O20 - AppInit_DLLs: mcromv.dll lensch.dll,HBmhly.dll,HB1000Y.dll,HBWOOOL.dll,HBXY2.dll,HBJXSJ.dll,HBSO2.dll,HBF S2.dll,HBXY3.dll,HBSHQ.dll,HBFY.dll,HBWULIN2.dll,HBW2I.dll,HBKDXY.dll,HBWORLD2.d ll,HBASKTAO.dll,HBZHUXIAN.dll,HBWOW.dll,HBZERO.dll,HBBO.dll,HBCONQUER.dll,HBSOUL .dll,HBCHIBI.dll,HBDNF.dll,HBWARLORDS.dll,HBTL.dll,HBPICKCHINA.dll,HBCT.dll,HBGC .dll,HBHM.dll,HBHX2.dll,HBQQHX.dll,HBTW2.dll,HBQQSG.dll,HBQQFFO.dll,HBZT.dll,HBM IR2.dll,HBRXJH.dll,HBYY.dll,HBMXD.dll,HBSQ.dll,HBTJ.dll,HBFHZL.dll,HBWLQX.dll,HB LYFX.dll,HBR2.dll,HBCHD.dll,HBTZ.dll,HBQQXX.dll,HBWD.dll,HBZG.dll,HBPPBL.dll,HBX MJ.dll,HBJTLQ.dll,HBQJSJ.dll cmbdaf.dll
    O24 - Desktop Component 0: (no name) - file:///C:/DOKUME~1/Ortrun/LOKALE~1/Temp/msoclip1/01/clip_image002.jpg
    O21 - SSODL: dpvvoxmh.dll - {2876D76C-CAAA-4313-AF97-8D1D9A2A1087} - C:\WINDOWS\system32\dpvvoxmh.dll (file missing)
    O21 - SSODL: xolehlpjh.dll - {F0930A2F-D971-4828-8209-B7DFD266ED44} - C:\WINDOWS\system32\xolehlpjh.dll (file missing)
    O21 - SSODL: bootvidgj.dll - {D3112B69-A745-4805-874E-ABD480EA1299} - C:\WINDOWS\system32\bootvidgj.dll (file missing)
    O21 - SSODL: tscfgwmijxsj.dll - {2CB77746-8ECC-40ca-8217-10CA8BE5EFC8} - C:\WINDOWS\system32\tscfgwmijxsj.dll (file missing)
    O21 - SSODL: mstimewd.dll - {65056902-6E7B-4bd7-95BA-688DB5FA5BEB} - C:\WINDOWS\system32\mstimewd.dll (file missing)
    O21 - SSODL: rzmiasec.dll - {21BE5FDF-D4CB-4850-AD99-21E68B50BF3F} - C:\WINDOWS\system32\aucbccol.dll (file missing)
    O21 - SSODL: comuidsg.dll - {898E02AB-9372-4a2c-9C4A-FFE1AF61097F} - C:\WINDOWS\system32\comuidsg.dll (file missing)
    O21 - SSODL: slbiopfs2.dll - {EB9660D8-E1CD-4ff0-B4A9-00CD907F928A} - C:\WINDOWS\system32\slbiopfs2.dll (file missing)
    O21 - SSODL: nwapi32dj.dll - {A2C3BA54-DF75-4881-8EB3-E54B26BBBBC9} - C:\WINDOWS\system32\nwapi32dj.dll (file missing)
    O21 - SSODL: scrruncqsj.dll - {00240024-0024-0024-0024-00240024BB15} - C:\WINDOWS\system32\scrruncqsj.dll (file missing)
    O21 - SSODL: ckdmrpnr.dll - {21BE5FDF-D4CB-4850-AD99-21E68B50BF3F} - C:\WINDOWS\system32\aucbccol.dll (file missing)
    O21 - SSODL: aucbccol.dll - {21BE5FDF-D4CB-4850-AD99-21E68B50BF3F} - C:\WINDOWS\system32\aucbccol.dll (file missing)
    O21 - SSODL: gdlhutqq.dll - {21BE5FDF-D4CB-4850-AD99-21E68B50BF3F} - C:\WINDOWS\system32\aucbccol.dll (file missing)
    
    2008-09-13 23:06:28 ----A---- C:\WINDOWS\system32\System.exe
    S3 dbeaf7d;dbeaf7d; \??\C:\WINDOWS\system32\dbeaf7d.sys []
    S3 e5e3454;e5e3454; \??\C:\WINDOWS\system32\e5e3454.sys []
    
    
    http://www.bleepingcomputer.com/startups/Cliente-23566.html



    da is noch mehr, muss aber zur arbeit. wende combofix an nach anleitung oder formatiere, ne andere wahl hast du leider nicht :-\
     
Die Seite wird geladen...

Taskmgr.exe verschwunden, Taskmanager nicht ausführbar - Ähnliche Themen

Forum Datum
Lautsprecher nach W10-Umstellung 'verschwunden' Windows 10 Forum 4. Juli 2016
Desktop zum Teil verschwunden Windows 10 Forum 4. Juni 2016
Keine Kachel mehr für Windows Store, auch aus der Taskleiste verschwunden Windows 10 Forum 9. März 2016
user/benutzer, downloads "verschwunden" Windows 7 Forum 2. Dez. 2015
Systemsymbole verschwunden Windows 7 Forum 3. Nov. 2015