Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

google redirects, cannot connect to certain antimalwaresites

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

google redirects, cannot connect to certain antimalwaresites

Unread postby vokue » June 21st, 2011, 11:05 am

Hi there,

I caught some malware that makes google redirect to advertisement sites, porn and stuff. Also google doesn't show the german umlauts (you know the vowals with dots) anymore, I can't search for pictures or videos and I noticed that google won't connect me to several sites that offer antimalware software. Thus my resident antimalware softwares (emsisoft trial version, spybot) cannot update anymore. Can you help me?

Thanks in advance!

Sebastian

Here are the logs needed:

dds:
.
DDS (Ver_2011-06-12.02) - NTFSx86
Internet Explorer: 6.0.2900.5512 BrowserJavaVersion: 1.6.0_24
Run by Müller at 16:33:15 on 2011-06-21
Microsoft Windows XP Home Edition 5.1.2600.3.1252.49.1031.18.1014.287 [GMT 2:00]
.
AV: avast! Antivirus *Enabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
AV: AntiVir PersonalEdition Classic *Disabled/Outdated* {F50D9AC1-6409-476C-A8D6-8F5F82336C8F}
AV: Emsisoft Anti-Malware *Enabled/Outdated* {0F8591BB-342B-4493-91C3-4E948ED21255}
.
============== Running Processes ===============
.
C:\Programme\Emsisoft Anti-Malware\a2service.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\Programme\Bluetooth Software\bin\btwdins.exe
svchost.exe
svchost.exe
C:\Programme\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
svchost.exe
C:\Programme\AVPersonal\AVWUPSRV.EXE
C:\Programme\Bonjour\mDNSResponder.exe
svchost.exe
C:\Programme\Java\jre6\bin\jqs.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Programme\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\Explorer.EXE
C:\Programme\Analog Devices\SoundMAX\SMax4PNP.exe
C:\WINDOWS\system32\rundll32.exe
C:\Programme\Synaptics\SynTP\SynTPLpr.exe
C:\Programme\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Programme\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe
C:\Programme\iTunes\iTunesHelper.exe
C:\Programme\SAMSUNG\MagicKBD\MagicKBD.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe
C:\Programme\iPod\bin\iPodService.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programme\Bluetooth Software\BTTray.exe
C:\Programme\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
C:\Programme\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Programme\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\PROGRAMME\EMSISOFT ANTI-MALWARE\a2guard.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Programme\Mozilla Firefox\firefox.exe
C:\Programme\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wuauclt.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.tiscali.de/
uSearch Page = hxxp://www.google.com
uWindow Title = Microsoft Internet Explorer provided by Tiscali
uSearch Bar = hxxp://www.google.com/ie
mDefault_Page_URL = hxxp://www.tiscali.de
uInternet Settings,ProxyServer = 172.16.3.100:3128
uInternet Settings,ProxyOverride = <local>;*.local
mSearchAssistant = hxxp://www.google.com/ie
uURLSearchHooks: BittorrentBar_DE Toolbar: {64ead72b-ffd4-4e01-aa3a-4c71665d73e4} - c:\programme\bittorrentbar_de\tbBitt.dll
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\programme\adobe\adobe acrobat 7.0\activex\AcroIEHelper.dll
BHO: Conduit Engine: {30f9b915-b755-4826-820b-08fba6bd249d} - c:\programme\conduitengine\ConduitEngine.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll
BHO: BittorrentBar_DE Toolbar: {64ead72b-ffd4-4e01-aa3a-4c71665d73e4} - c:\programme\bittorrentbar_de\tbBitt.dll
BHO: Adobe PDF Conversion Toolbar Helper: {ae7cd045-e861-484f-8273-0445ee161910} - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\programme\google\googletoolbarnotifier\5.1.1309.3572\swg.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\programme\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\programme\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll
TB: BittorrentBar_DE Toolbar: {64ead72b-ffd4-4e01-aa3a-4c71665d73e4} - c:\programme\bittorrentbar_de\tbBitt.dll
TB: Conduit Engine: {30f9b915-b755-4826-820b-08fba6bd249d} - c:\programme\conduitengine\ConduitEngine.dll
EB: Adobe PDF: {182ec0be-5110-49c8-a062-beb1d02a220b} - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll
uRun: [swg] c:\programme\google\googletoolbarnotifier\GoogleToolbarNotifier.exe
uRun: [SpybotSD TeaTimer] c:\programme\spybot s&d\TeaTimer.exe
uRun: [CTFMON.EXE] c:\windows\system32\ctfmon.exe
mRun: [SoundMAXPnP] c:\programme\analog devices\soundmax\SMax4PNP.exe
mRun: [SoundMAX] c:\programme\analog devices\soundmax\Smax4.exe /tray
mRun: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
mRun: [SynTPLpr] c:\programme\synaptics\syntp\SynTPLpr.exe
mRun: [SynTPEnh] c:\programme\synaptics\syntp\SynTPEnh.exe
mRun: [AGRSMMSG] AGRSMMSG.exe
mRun: [MagicKeyboard] c:\programme\samsung\magickbd\PreMKBD.exe
mRun: [igfxtray] c:\windows\system32\igfxtray.exe
mRun: [igfxhkcmd] c:\windows\system32\hkcmd.exe
mRun: [igfxpers] c:\windows\system32\igfxpers.exe
mRun: [AVGCtrl] c:\programme\avpersonal\AVGNT.EXE /min
mRun: [NeroFilterCheck] c:\windows\system32\NeroCheck.exe
mRun: [Acrobat Assistant 7.0] "c:\programme\adobe\adobe acrobat 7.0\distillr\Acrotray.exe"
mRun: [<NO NAME>]
mRun: [QuickTime Task] "c:\programme\quicktime\qttask.exe" -atboottime
mRun: [iTunesHelper] "c:\programme\itunes\iTunesHelper.exe"
mRun: [CloneCDTray] "c:\programme\slysoft\clonecd\CloneCDTray.exe" /s
mRun: [avast5] c:\progra~1\alwils~1\avast5\avastUI.exe /nogui
mRun: [SunJavaUpdateSched] "c:\programme\gemeinsame dateien\java\java update\jusched.exe"
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
StartupFolder: c:\dokume~1\mller~1\startm~1\progra~1\autost~1\erunta~1.lnk - c:\programme\erunt\AUTOBACK.EXE
StartupFolder: c:\dokume~1\mller~1\startm~1\progra~1\autost~1\rcexe~1.lnk - c:\programme\dtv\dvb-t usb 2.0\RC.exe
StartupFolder: c:\dokume~1\alluse~1\startm~1\progra~1\autost~1\adobea~1.lnk - c:\windows\installer\{ac76ba86-1033-f400-7760-000000000002}\SC_Acrobat.exe
StartupFolder: c:\dokume~1\alluse~1\startm~1\progra~1\autost~1\adobeg~1.lnk - c:\programme\gemeinsame dateien\adobe\calibration\Adobe Gamma Loader.exe
StartupFolder: c:\dokume~1\alluse~1\startm~1\progra~1\autost~1\adober~1.lnk - c:\programme\adobe\acrobat 7.0\reader\reader_sl.exe
StartupFolder: c:\dokume~1\alluse~1\startm~1\progra~1\autost~1\autoca~1.lnk - c:\programme\gemeinsame dateien\autodesk shared\acstart16.exe
StartupFolder: c:\dokume~1\alluse~1\startm~1\progra~1\autost~1\bttray.lnk - c:\programme\bluetooth software\BTTray.exe
StartupFolder: c:\dokume~1\alluse~1\startm~1\progra~1\autost~1\hppsc2~1.lnk - c:\programme\hewlett-packard\digital imaging\bin\hpobnz08.exe
StartupFolder: c:\dokume~1\alluse~1\startm~1\progra~1\autost~1\hpoddt~1.lnk - c:\programme\hewlett-packard\digital imaging\bin\hpotdd01.exe
StartupFolder: c:\dokume~1\alluse~1\startm~1\progra~1\autost~1\wisome~1.lnk - c:\programme\wiso\sparbuch 2010\meinsparbuchheute.exe
IE: Ausgewählte Verknüpfungen in Adobe PDF konvertieren - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Ausgewählte Verknüpfungen in vorhandene PDF-Datei konvertieren - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Auswahl in Adobe PDF konvertieren - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Auswahl in vorhandene PDF-Datei konvertieren - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Download all with Free Download Manager - file://c:\programme\free download manager\dlall.htm
IE: Download selected with Free Download Manager - file://c:\programme\free download manager\dlselected.htm
IE: Download video with Free Download Manager - file://c:\programme\free download manager\dlfvideo.htm
IE: Download with Free Download Manager - file://c:\programme\free download manager\dllink.htm
IE: In Adobe PDF konvertieren - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: In vorhandene PDF-Datei konvertieren - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Nach Microsoft &Excel exportieren - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: Senden an &Bluetooth-Gerät... - c:\programme\bluetooth software\btsendto_ie_ctx.htm
IE: Senden an Bluetooth - c:\programme\bluetooth software\btsendto_ie.htm
IE: Verknüpfungsziel in Adobe PDF konvertieren - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Verknüpfungsziel in vorhandene PDF-Datei konvertieren - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\programme\bluetooth software\btsendto_ie.htm
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\programme\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
IE: {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - {552781AF-37E4-4FEE-920A-CED9E648EADD} - c:\programme\gemeinsame dateien\microsoft shared\encarta search bar\ENCSBAR.DLL
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204
DPF: {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} - hxxp://office.microsoft.com/officeupdat ... /opuc3.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupda ... 6279675703
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/aut ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
TCP: NameServer = 93.188.164.155,93.188.160.95
TCP: DhcpNameServer = 192.168.178.1
TCP: Interfaces\{A0A048F9-66D0-4B6B-B5B3-A12598552C6E} : NameServer = 93.188.164.155,93.188.160.95
TCP: Interfaces\{A0A048F9-66D0-4B6B-B5B3-A12598552C6E} : DhcpNameServer = 192.168.178.1
Notify: igfxcui - igfxdev.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\dokumente und einstellungen\müller\anwendungsdaten\mozilla\firefox\profiles\p9gjum18.default\
.
============= SERVICES / DRIVERS ===============
.
R0 R592;R592;c:\windows\system32\drivers\R592.sys [2005-1-4 54912]
R1 a2injectiondriver;a2injectiondriver;c:\programme\emsisoft anti-malware\a2dix86.sys [2011-6-19 41928]
R1 a2util;a-squared Malware-IDS utility driver;c:\programme\emsisoft anti-malware\a2util32.sys [2011-6-19 11776]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2009-7-10 294608]
R2 a2AntiMalware;Emsisoft Anti-Malware 5.1 - Service;c:\programme\emsisoft anti-malware\a2service.exe [2011-6-19 2978720]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2009-7-10 17744]
R2 avast! Antivirus;avast! Antivirus;c:\programme\alwil software\avast5\AvastSvc.exe [2010-7-13 40384]
R2 AVWUpSrv;AntiVir Update;c:\programme\avpersonal\AVWUPSRV.EXE [2005-10-19 45096]
R2 DOSMEMIO;MEMIO;c:\windows\system32\MEMIO.SYS [2005-1-4 4300]
R3 a2acc;a2acc;c:\programme\emsisoft anti-malware\a2accx86.sys [2011-6-19 73728]
R3 AVMWAN;AVM NDIS WAN CAPI-Treiber;c:\windows\system32\drivers\avmwan.sys [2005-9-30 37568]
R3 fpcmbase;AVM ISDN-Controller FRITZ!Card PCMCIA;c:\windows\system32\drivers\fpcmbase.sys [2005-9-30 441728]
S2 gupdate1c9c7e3db563194;Google Update Service (gupdate1c9c7e3db563194);c:\programme\google\update\GoogleUpdate.exe [2009-4-28 133104]
S3 avgntdw;avgntdw;\??\c:\programme\avpersonal\avgntdw.sys --> c:\programme\avpersonal\AVGNTDW.SYS [?]
S3 gupdatem;Google Update-Dienst (gupdatem);c:\programme\google\update\GoogleUpdate.exe [2009-4-28 133104]
S3 IFXTPM;IFXTPM;c:\windows\system32\drivers\ifxtpm.sys [2004-5-13 32640]
S3 WDM_Capture_220A;DVB-T TV Receiver;c:\windows\system32\drivers\WDM_Capture_220A.sys [2006-6-29 19072]
S3 WDM_Loader_220A;DVB-T TV Loader;c:\windows\system32\drivers\WDM_Loader_220A.sys [2006-6-29 15488]
.
=============== File Associations ===============
.
.scr=AutoCADScriptFile
.
=============== Created Last 30 ================
.
2011-06-19 15:25:41 -------- d-----w- c:\programme\Emsisoft Anti-Malware
2011-06-16 23:00:26 -------- d-----w- C:\_OTM
2011-06-16 15:51:53 388096 ----a-r- c:\dokumente und einstellungen\müller\anwendungsdaten\microsoft\installer\{45a66726-69bc-466b-a7a4-12fcba4883d7}\HiJackThis.exe
2011-06-16 15:51:50 -------- d-----w- c:\programme\Trend Micro
2011-06-16 13:55:31 142296 ----a-w- c:\programme\mozilla firefox\components\browsercomps.dll
2011-06-16 13:55:30 89048 ----a-w- c:\programme\mozilla firefox\libEGL.dll
2011-06-16 13:55:30 781272 ----a-w- c:\programme\mozilla firefox\mozsqlite3.dll
2011-06-16 13:55:30 465880 ----a-w- c:\programme\mozilla firefox\libGLESv2.dll
2011-06-16 13:55:30 1874904 ----a-w- c:\programme\mozilla firefox\mozjs.dll
2011-06-16 13:55:30 15832 ----a-w- c:\programme\mozilla firefox\mozalloc.dll
2011-06-16 13:55:29 1974616 ----a-w- c:\programme\mozilla firefox\D3DCompiler_42.dll
2011-06-16 13:55:29 1892184 ----a-w- c:\programme\mozilla firefox\d3dx9_42.dll
2011-05-30 13:01:56 35840 ---ha-w- c:\dokumente und einstellungen\müller\anwendungsdaten\MBSGWorldPlugin3550.dll
2011-05-30 13:01:52 65024 ---ha-w- c:\dokumente und einstellungen\müller\anwendungsdaten\MBSPicturePlugin3595.dll
2011-05-30 13:01:51 27648 ---ha-w- c:\dokumente und einstellungen\müller\anwendungsdaten\MBSRegistrationPlugin3596.dll
2011-05-30 13:01:51 120832 ---ha-w- c:\dokumente und einstellungen\müller\anwendungsdaten\MBSJPEGDecompressionPlugin3597.dll
2011-05-30 13:01:50 86528 ---ha-w- c:\dokumente und einstellungen\müller\anwendungsdaten\rbap500.dll
2011-05-28 22:08:24 -------- d-----w- c:\dokumente und einstellungen\müller\anwendungsdaten\ASCOMP Software
2011-05-28 22:08:20 -------- d-----w- c:\programme\Secure Eraser
2011-05-28 19:24:50 6200 ----a-w- c:\windows\system32\INT13EXT.VXD
2011-05-28 19:24:34 -------- d-----w- c:\programme\File Recovery
.
==================== Find3M ====================
.
2011-05-14 23:11:18 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2008-12-10 18:07:23 31662816 ----a-w- c:\programme\setup_Media_Markt.exe
2008-12-10 17:38:38 5433213 ----a-w- c:\programme\myphotobook-Setup.exe
2005-05-31 17:57:10 1260618 ----a-w- c:\programme\dvdshrink.3.2.de.setup.exe
.
============= FINISH: 16:35:22,31 ===============



attach:

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-06-12.02)
.
Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume1
Install Date: 09.09.2005 17:07:40
System Uptime: 21.06.2011 11:01:45 (5 hours ago)
.
Motherboard: Samsung Electronics | | SX20S
Processor: Intel(R) Pentium(R) M processor 1.73GHz | U1 | 1730/mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 74 GiB total, 1,355 GiB free.
D: is CDROM ()
E: is Removable
.
==== Disabled Device Manager Items =============
.
Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
Description: Intel(R) PRO/Wireless 2200BG Network Connection
Device ID: PCI\VEN_8086&DEV_4220&SUBSYS_27318086&REV_05\4&AD1B67F&0&38F0
Manufacturer: Intel(R) Corporation
Name: Intel(R) PRO/Wireless 2200BG Network Connection
PNP Device ID: PCI\VEN_8086&DEV_4220&SUBSYS_27318086&REV_05\4&AD1B67F&0&38F0
Service: w29n51
.
==== System Restore Points ===================
.
RP1168: 06.06.2011 19:01:26 - Systemprüfpunkt
RP1169: 07.06.2011 22:59:45 - Systemprüfpunkt
RP1170: 09.06.2011 11:56:45 - Systemprüfpunkt
RP1171: 10.06.2011 13:11:38 - Systemprüfpunkt
RP1172: 11.06.2011 14:28:28 - Systemprüfpunkt
RP1173: 12.06.2011 17:01:54 - Systemprüfpunkt
RP1174: 13.06.2011 21:26:06 - Systemprüfpunkt
RP1175: 15.06.2011 03:59:26 - Systemprüfpunkt
RP1176: 16.06.2011 04:57:56 - Systemprüfpunkt
RP1177: 16.06.2011 17:51:48 - Installed HiJackThis
RP1178: 17.06.2011 01:04:03 - OTM Restore Point
RP1179: 18.06.2011 03:26:02 - Systemprüfpunkt
RP1180: 19.06.2011 12:56:00 - Systemprüfpunkt
RP1181: 20.06.2011 14:13:10 - Systemprüfpunkt
RP1182: 21.06.2011 15:51:28 - Systemprüfpunkt
.
==== Installed Programs ======================
.
.
Sansa Media Converter
AAC Decoder
ACDSee
Adobe Acrobat 7.0 Professional - English, Français, Deutsch
Adobe Anchor Service CS3
Adobe Asset Services CS3
Adobe Audition 1.5
Adobe Bridge CS3
Adobe Bridge Start Meeting
Adobe Camera Raw 4.0
Adobe CMaps
Adobe Color - Photoshop Specific
Adobe Color Common Settings
Adobe Color EU Recommended Settings
Adobe Color JA Extra Settings
Adobe Color NA Extra Settings
Adobe Common File Installer
Adobe Creative Suite 2
Adobe Default Language CS3
Adobe Device Central CS3
Adobe ExtendScript Toolkit 2
Adobe Flash Player 10 Plugin
Adobe Fonts All
Adobe Help Center 1.0
Adobe Help Viewer CS3
Adobe Illustrator CS2
Adobe InDesign CS2
Adobe Linguistics CS3
Adobe PDF Library Files
Adobe Photoshop CS3
Adobe Premiere Pro
Adobe Reader 7.0 - Deutsch
Adobe Setup
Adobe Shockwave Player 11.5
Adobe Stock Photos 1.0
Adobe Stock Photos CS3
Adobe SVG Viewer 3.0
Adobe Type Support
Adobe Update Manager CS3
Adobe Version Cue CS3 Client
Adobe WinSoft Linguistics Plugin
Adobe XMP Panels CS3
Amazon MP3-Downloader 1.0.9
AudioCon
AutoCAD 2005 - Deutsch
Autodesk DWF Viewer
AutoUpdate
avast! Free Antivirus
AVIConverter 5.1
AviSynth 2.5
AVS Update Manager 1.0
AVS4YOU Software Navigator 1.3
Bentley MicroStation (V 08.05.01.25) - 1
BitTorrent
BittorrentBar_DE Toolbar
Borland Database Engine
ChangeFileName 2005
CloneCD
Compatibility Pack for the 2007 Office system
concept/design onlineTV 4
Conduit Engine
Crashkurs Buchführung für Selbstständige
Dart 'm Up
Digital Image Recovery 1.47
DivX Codec
DivX Converter
DivX Player
DivX Plus DirectShow Filters
DivX Version Checker
DivX Web Player
DJBCP Codec Pack 4.4.4
DVD Shrink 3.2 deutsch
ElsterFormular
Emsisoft Anti-Malware 5.1
ERUNT 1.1j
Everything 1.2.1.371
FEAWin
ffdshow [rev 3082] [2009-09-21]
Foto2Avi 2.0
Free Download Manager 3.0
Free DVD Video Burner version 2.4
Free Video to DVD Converter version 1.6
Gateway151 Karaoke Zip Player
Google Earth
Google SketchUp
Google SketchUp 6
Google SketchUp 6 Exporters
Google SketchUp LayOut 6
Google SketchUp Pro 6
Google Update Helper
Google Updater
H.264 Decoder
Haufe Formular-Manager
HighMAT-Erweiterung für den Microsoft Windows XP-Assistenten zum Schreiben von CDs
HiJackThis
Hotfix für Windows XP (KB2158563)
Hotfix für Windows XP (KB2443685)
Hotfix für Windows XP (KB952287)
Hotfix für Windows XP (KB961118)
Hotfix für Windows XP (KB970653-v3)
Hotfix für Windows XP (KB976098-v2)
Hotfix für Windows XP (KB979306)
Hotfix für Windows XP (KB981793)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows XP (KB954550-v5)
Hotfix for Windows XP (KB976002-v5)
HP Foto- und Bildbearbeitung 2.0 - All-in-One
HP Foto- und Bildbearbeitung 2.0 All-in-One Treiber
HP Foto und Bildbearbeitung 2.0 - hp psc 2200 series
hp psc 2200 series
HS Energieberater 6 Plus
Intel(R) Graphics Media Accelerator Driver for Mobile
Intel(R) PROSet/Wireless Software
IrfanView (remove only)
iTunes
IZArc 3.81
Java 2 Runtime Environment, SE v1.4.2_03
Java Auto Updater
Java(TM) 6 Update 24
K-Lite Codec Pack 4.0.0 (Full)
Karaoke Song List Creator
Karaoke Song List Creator Professional KJ Edition 2004
Lexmark 640 Series
Magic Keyboard
Maske der Ewigkeit
mDriver
Media Markt
Michas Jingle-Player
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 German Language Pack
Microsoft .NET Framework 1.1 Security Update (KB2416447)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - DEU
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - DEU
Microsoft .NET Framework 3.5 Language Pack SP1 - deu
Microsoft .NET Framework 3.5 SP1
Microsoft Digital Image Library 9 - Blocker
Microsoft Encarta Enzyklopädie 2005
Microsoft Office Professional Edition 2003
Microsoft Office Word Viewer 2003
Microsoft Picture It!-Bibliothek 10
Microsoft Picture It! Foto Premium 10
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
Microsoft Works
Microsoft Works Suite-Add-Ins für Microsoft Word
MKV Splitter
Momento Express
Mozilla Firefox 4.0.1 (x86 de)
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 4.0 SP2 Parser and SDK
MultiMemoryCardDriver
MYLT-V.2
myphotobook 3.6
neoDVDplus
neoDVDplus5
Nero Suite
NVIDIA GAME System Software 2.8.1
PC Inspector File Recovery
PDF Settings
PDFCreator
PEC
Pinnacle VideoSpin
PL-2303 USB-to-Serial
Pool 'm Up
Power CD+G to Video Karaoke Converter
Prism Video Converter
PyKaraoke
QuickTime
RedistSysFiles
Samsung Battery Manager
Samsung Network Manager
Samsung Theme
Samsung Update Plus
SCHLECKER Foto Digital Service
Seamulator 2009 Demo
Secure Eraser v3.3
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
SENS LT56ADW Modem
Setup-Start von Microsoft Works 2005
Sherlock Holmes jagt Jack the Ripper
Shockwave
Sicherheitsupdate für Windows Media Player (KB2378111)
Sicherheitsupdate für Windows Media Player (KB911564)
Sicherheitsupdate für Windows Media Player (KB952069)
Sicherheitsupdate für Windows Media Player (KB954155)
Sicherheitsupdate für Windows Media Player (KB968816)
Sicherheitsupdate für Windows Media Player (KB973540)
Sicherheitsupdate für Windows Media Player (KB975558)
Sicherheitsupdate für Windows Media Player (KB978695)
Sicherheitsupdate für Windows Media Player 10 (KB911565)
Sicherheitsupdate für Windows Media Player 10 (KB917734)
Sicherheitsupdate für Windows Media Player 10 (KB936782)
Sicherheitsupdate für Windows Media Player 6.4 (KB925398)
Sicherheitsupdate für Windows XP (KB2079403)
Sicherheitsupdate für Windows XP (KB2121546)
Sicherheitsupdate für Windows XP (KB2160329)
Sicherheitsupdate für Windows XP (KB2183461)
Sicherheitsupdate für Windows XP (KB2229593)
Sicherheitsupdate für Windows XP (KB2259922)
Sicherheitsupdate für Windows XP (KB2279986)
Sicherheitsupdate für Windows XP (KB2286198)
Sicherheitsupdate für Windows XP (KB2296011)
Sicherheitsupdate für Windows XP (KB2296199)
Sicherheitsupdate für Windows XP (KB2347290)
Sicherheitsupdate für Windows XP (KB2360131)
Sicherheitsupdate für Windows XP (KB2360937)
Sicherheitsupdate für Windows XP (KB2387149)
Sicherheitsupdate für Windows XP (KB2393802)
Sicherheitsupdate für Windows XP (KB2412687)
Sicherheitsupdate für Windows XP (KB2416400)
Sicherheitsupdate für Windows XP (KB2419632)
Sicherheitsupdate für Windows XP (KB2423089)
Sicherheitsupdate für Windows XP (KB2436673)
Sicherheitsupdate für Windows XP (KB2440591)
Sicherheitsupdate für Windows XP (KB2443105)
Sicherheitsupdate für Windows XP (KB2476687)
Sicherheitsupdate für Windows XP (KB2478960)
Sicherheitsupdate für Windows XP (KB2478971)
Sicherheitsupdate für Windows XP (KB2479628)
Sicherheitsupdate für Windows XP (KB2479943)
Sicherheitsupdate für Windows XP (KB2481109)
Sicherheitsupdate für Windows XP (KB2482017)
Sicherheitsupdate für Windows XP (KB2483185)
Sicherheitsupdate für Windows XP (KB2485376)
Sicherheitsupdate für Windows XP (KB2485663)
Sicherheitsupdate für Windows XP (KB2497640)
Sicherheitsupdate für Windows XP (KB2503658)
Sicherheitsupdate für Windows XP (KB2506212)
Sicherheitsupdate für Windows XP (KB2506223)
Sicherheitsupdate für Windows XP (KB2507618)
Sicherheitsupdate für Windows XP (KB2508272)
Sicherheitsupdate für Windows XP (KB2508429)
Sicherheitsupdate für Windows XP (KB2509553)
Sicherheitsupdate für Windows XP (KB2510581)
Sicherheitsupdate für Windows XP (KB2511455)
Sicherheitsupdate für Windows XP (KB2524375)
Sicherheitsupdate für Windows XP (KB923561)
Sicherheitsupdate für Windows XP (KB923689)
Sicherheitsupdate für Windows XP (KB938464)
Sicherheitsupdate für Windows XP (KB941569)
Sicherheitsupdate für Windows XP (KB946648)
Sicherheitsupdate für Windows XP (KB950759)
Sicherheitsupdate für Windows XP (KB950760)
Sicherheitsupdate für Windows XP (KB950762)
Sicherheitsupdate für Windows XP (KB950974)
Sicherheitsupdate für Windows XP (KB951066)
Sicherheitsupdate für Windows XP (KB951376-v2)
Sicherheitsupdate für Windows XP (KB951376)
Sicherheitsupdate für Windows XP (KB951698)
Sicherheitsupdate für Windows XP (KB951748)
Sicherheitsupdate für Windows XP (KB952004)
Sicherheitsupdate für Windows XP (KB952954)
Sicherheitsupdate für Windows XP (KB953838)
Sicherheitsupdate für Windows XP (KB953839)
Sicherheitsupdate für Windows XP (KB954211)
Sicherheitsupdate für Windows XP (KB954459)
Sicherheitsupdate für Windows XP (KB954600)
Sicherheitsupdate für Windows XP (KB955069)
Sicherheitsupdate für Windows XP (KB956390)
Sicherheitsupdate für Windows XP (KB956391)
Sicherheitsupdate für Windows XP (KB956572)
Sicherheitsupdate für Windows XP (KB956744)
Sicherheitsupdate für Windows XP (KB956802)
Sicherheitsupdate für Windows XP (KB956803)
Sicherheitsupdate für Windows XP (KB956841)
Sicherheitsupdate für Windows XP (KB956844)
Sicherheitsupdate für Windows XP (KB957095)
Sicherheitsupdate für Windows XP (KB957097)
Sicherheitsupdate für Windows XP (KB958215)
Sicherheitsupdate für Windows XP (KB958644)
Sicherheitsupdate für Windows XP (KB958687)
Sicherheitsupdate für Windows XP (KB958690)
Sicherheitsupdate für Windows XP (KB958869)
Sicherheitsupdate für Windows XP (KB959426)
Sicherheitsupdate für Windows XP (KB960225)
Sicherheitsupdate für Windows XP (KB960714)
Sicherheitsupdate für Windows XP (KB960715)
Sicherheitsupdate für Windows XP (KB960803)
Sicherheitsupdate für Windows XP (KB960859)
Sicherheitsupdate für Windows XP (KB961371)
Sicherheitsupdate für Windows XP (KB961373)
Sicherheitsupdate für Windows XP (KB961501)
Sicherheitsupdate für Windows XP (KB963027)
Sicherheitsupdate für Windows XP (KB968537)
Sicherheitsupdate für Windows XP (KB969059)
Sicherheitsupdate für Windows XP (KB969897)
Sicherheitsupdate für Windows XP (KB969898)
Sicherheitsupdate für Windows XP (KB969947)
Sicherheitsupdate für Windows XP (KB970238)
Sicherheitsupdate für Windows XP (KB970430)
Sicherheitsupdate für Windows XP (KB971468)
Sicherheitsupdate für Windows XP (KB971486)
Sicherheitsupdate für Windows XP (KB971557)
Sicherheitsupdate für Windows XP (KB971633)
Sicherheitsupdate für Windows XP (KB971657)
Sicherheitsupdate für Windows XP (KB971961)
Sicherheitsupdate für Windows XP (KB972260)
Sicherheitsupdate für Windows XP (KB972270)
Sicherheitsupdate für Windows XP (KB973346)
Sicherheitsupdate für Windows XP (KB973354)
Sicherheitsupdate für Windows XP (KB973507)
Sicherheitsupdate für Windows XP (KB973525)
Sicherheitsupdate für Windows XP (KB973869)
Sicherheitsupdate für Windows XP (KB973904)
Sicherheitsupdate für Windows XP (KB974112)
Sicherheitsupdate für Windows XP (KB974318)
Sicherheitsupdate für Windows XP (KB974392)
Sicherheitsupdate für Windows XP (KB974455)
Sicherheitsupdate für Windows XP (KB974571)
Sicherheitsupdate für Windows XP (KB975025)
Sicherheitsupdate für Windows XP (KB975467)
Sicherheitsupdate für Windows XP (KB975560)
Sicherheitsupdate für Windows XP (KB975561)
Sicherheitsupdate für Windows XP (KB975562)
Sicherheitsupdate für Windows XP (KB975713)
Sicherheitsupdate für Windows XP (KB976325)
Sicherheitsupdate für Windows XP (KB977165)
Sicherheitsupdate für Windows XP (KB977816)
Sicherheitsupdate für Windows XP (KB977914)
Sicherheitsupdate für Windows XP (KB978037)
Sicherheitsupdate für Windows XP (KB978251)
Sicherheitsupdate für Windows XP (KB978262)
Sicherheitsupdate für Windows XP (KB978338)
Sicherheitsupdate für Windows XP (KB978542)
Sicherheitsupdate für Windows XP (KB978601)
Sicherheitsupdate für Windows XP (KB978706)
Sicherheitsupdate für Windows XP (KB979309)
Sicherheitsupdate für Windows XP (KB979482)
Sicherheitsupdate für Windows XP (KB979559)
Sicherheitsupdate für Windows XP (KB979683)
Sicherheitsupdate für Windows XP (KB979687)
Sicherheitsupdate für Windows XP (KB980195)
Sicherheitsupdate für Windows XP (KB980218)
Sicherheitsupdate für Windows XP (KB980232)
Sicherheitsupdate für Windows XP (KB980436)
Sicherheitsupdate für Windows XP (KB981322)
Sicherheitsupdate für Windows XP (KB981349)
Sicherheitsupdate für Windows XP (KB981852)
Sicherheitsupdate für Windows XP (KB981957)
Sicherheitsupdate für Windows XP (KB981997)
Sicherheitsupdate für Windows XP (KB982132)
Sicherheitsupdate für Windows XP (KB982214)
Sicherheitsupdate für Windows XP (KB982381)
Sicherheitsupdate für Windows XP (KB982665)
Sicherheitsupdate für Windows XP (KB982802)
Sierra Utilities
SketchUp 5
SketchUp 5 Architecture Library
SketchUp 5 Construction Library
SketchUp 5 Film & Stage Library
SketchUp 5 Landscape Architecture Library
SketchUp 5 Mechanical Design Library
SketchUp 5 People Library
SketchUp 5 Symbols Library
SketchUp 5 Transportation Library
SketchUp Viewer
SLD CODEC PACK 1.5 PRO beta6
SoundMAX
Spybot - Search & Destroy
Suite Specific
Synaptics Pointing Device Driver
The Adventures of Zak McKracken
Total Commander (Remove or Repair)
TreeSize Free V2.4
Uninstall 1.0.0.1
Update für Windows XP (KB2141007)
Update für Windows XP (KB2345886)
Update für Windows XP (KB2467659)
Update für Windows XP (KB951072-v2)
Update für Windows XP (KB951978)
Update für Windows XP (KB955759)
Update für Windows XP (KB955839)
Update für Windows XP (KB967715)
Update für Windows XP (KB968389)
Update für Windows XP (KB971029)
Update für Windows XP (KB971737)
Update für Windows XP (KB973687)
Update für Windows XP (KB973815)
Update für Windows XP (KB976749)
Update für Windows XP (KB978207)
Update für Windows XP (KB980182)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
User's Guide
VBA (2627.01)
VC80CRTRedist - 8.0.50727.762
ViewCompanion Standard 6.00
WebFldrs XP
WIDCOMM Bluetooth Software
Winamp
Winamp Erkennungs-Plug-in
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage v1.3.0254.0
Windows Genuine Advantage Validation Tool (KB892130)
Windows Media Connect
Windows Media Format 11 runtime
Windows Media Player 10
Windows XP Service Pack 3
WinRAR Archivierer
WISO Sparbuch 2010
Works Update
Xilisoft AVI MOV Converter 6
Xilisoft DVD Creator 6
XML Paper Specification Shared Components Language Pack 1.0
.
==== End Of File ===========================
vokue
Active Member
 
Posts: 6
Joined: June 16th, 2011, 7:38 pm
Advertisement
Register to Remove

Re: google redirects, cannot connect to certain antimalwares

Unread postby Wingman » June 24th, 2011, 10:32 am

Hello vokue ... Welcome to the forum.
My name is Wingman, and I'll be helping you with any malware problems.
The logs I request can take a while to research, so please be patient.

Before we begin...please read and follow these important guidelines, so things will proceed smoothly.
  1. The instructions being given are for YOUR computer and system only!
    Using these instructions on a different computer can cause damage to that computer and possibly render it inoperable!
  2. You must have Administrator rights, permissions for this computer.
  3. DO NOT run any other fix or removal tools unless instructed to do so or install any other software (or hardware) during the cleaning process.
  4. Only- post your problem at (1) one help site. Applying fixes from multiple help sites can cause problems.
  5. Print each set of instructions...if possible...your Internet connection will not be available during some fix processes.
  6. Only- reply to this thread, do not start another ... Please, continue responding, until I give you the "All Clean"
  7. Failure to respond for 3 days, will result in your topic being closed.

Please take time to read the Malware Removal Forum Guidelines and Rules where the conditions for receiving help at this forum are explained.

The steps presented in these posts are for this person and machine ONLY. Do not apply these steps to your own system, without the guidance of a trained malware removal helper. Doing so, may possibly damage your system, preventing it from starting.


Please read all instructions carefully before executing and perform the steps, in the order given.
lf, you have any questions or problems, executing these instructions, <<STOP>> do not proceed, post back with the question or problem.


Please tell me, is this machine used for business or school purposes and/or connected to a business or school network? I need to know so I can provide the proper instructions and not cause possible damage to the machine.


Step 1.
ERUNT - Emergency Recovery Utility NT
I see youalready have ERUNT installed. Please run this process. Changes may have occurred between the last run and now. Better to be safe than to be sorry.
Modifying the Registry can create unforeseen problems, so it's always wise to create a backup before doing so.
Run:
  1. Please navigate to Start >> All Programs >> ERUNT... double-click ERUNT from the menu.
  2. Click on OK within the pop-up menu.
  3. In the next menu under C:\WINDOWS\ERDNT\DD-MM-YYYY under Backup options make sure both the following are selected:
    • System registry.
    • Current user registry.
  4. Next click on "OK"... at the prompt... reply "Yes".
    After a short duration the Registry backup is complete! pop-up message will appear.
  5. Now click on "OK". A registry backup has now been created.
< STOP > If you did not successfully complete this step. < STOP > Do not continue with any other steps, post back and let me know!

Step 2.
P2P Advisory!
IMPORTANT There are signs of one or more P2P (Peer to Peer) File Sharing Programs installed on your computer.
BitTorrent

As long as you have the P2P program(s) installed, per Forum Policy, I can offer you no further assitance.
If you choose NOT to remove the program(s)...indicate that in your next reply and this topic will be closed.

Otherwise, please perform the following steps:
Remove P2P Program(s)
  1. Click on Start > Control Panel and double click on Add/Remove Programs.
  2. Locate the following programs:
    BitTorrent
    BittorrentBar_DE Toolbar
    Conduit Engine
    Java 2 Runtime Environment, SE v1.4.2_03
    Java Auto Updater
    Spybot - Search & Destroy << --- can be reinstalled after cleaning, if desired
  3. Click on the Change/Remove button to uninstall it.
    Repeat steps 2 and 3 for each program listed.
    Pay close attentin to the uninstall screens, as some will try to trick you into keeping the software and preventing it from being uninstalled in the future.
  4. When the program(s) have been uninstalled... Close Add/Remove Programs. Close Control Panel.
By using any form of P2P networking to download files you can anticipate infestations of malware to occur. The P2P program
itself, may be safe but the files may not... use P2P at your own risk! Keep in mind that this practice may be the source of your current malware infestation.
Reference... siting risk factors, using P2P programs: How to Prevent the Online Invasion of Spyware and Adware

Step 3.
MGA Diagnostics
I need you to run a tool... that will aid in determining what additional steps we'll need to perform.
  1. Please download this tool from Microsoft.
  2. Click "Run" to execute MGADiag.exe.
  3. Click "Run" again...then Click "Continue".
  4. The program will run. It takes a while to finish the diagnosis, please be patient.
  5. Once done, click on Copy.
  6. Open Notepad and paste the contents in. Save this file and post it in your next reply.

Step 4.
WVCheck
Please go to Artellos.com.
  1. Choose the "Latest EXE Download" to download WVCheck ... Save it to your Desktop.
  2. Double click WVCheck.exe, to run the process.
  3. Read the comments on the screen... then press Enter.
    The scan can take a while depending on the size of your hard drive.
  4. Once the program is done, Notepad will open with the scan report. Save the report to your Desktop.
  5. Please copy and paste the contents of the Notepad file in your next reply.

Step 5.
Please include in your next reply:
  1. Any problem executing the instructions?
  2. P2P Program (and others) removed?
  3. MGADiag scan results.
  4. WVCheck scan results.
  5. How is the computer behaving?
Thanks,
Wingman
User avatar
Wingman
Admin/Teacher
Admin/Teacher
 
Posts: 14347
Joined: July 1st, 2008, 1:34 pm
Location: East Coast, USA

Re: google redirects, cannot connect to certain antimalwares

Unread postby vokue » June 24th, 2011, 2:40 pm

Hi Wingman,

thanks for helping me. This computer is being used privatly only. There might be some traces left from the time when my father used it in his firm. But it's not connected to any network anymore.

I am stuck at step 3 now for my computer cannot reach that microsoft server to download MGADiag.exe. Is it possible that the malware is responsible for that? As I told you I experienced those problems before trying to download antimalware related software...
vokue
Active Member
 
Posts: 6
Joined: June 16th, 2011, 7:38 pm

Re: google redirects, cannot connect to certain antimalwares

Unread postby Wingman » June 25th, 2011, 7:07 am

Hello vokue,

I've added a step that may help stop any processes that try to prevent malware removal. Please try these steps...
Also sometimes trying a different browser may help resolve these kinds of problems. Have you tried using other browsers to download programs or access certain web sites?

The steps presented in these posts are for this person and machine ONLY. Do not apply these steps to your own system, without the guidance of a trained malware removal helper. Doing so, may possibly damage your system, preventing it from starting.


Please read all instructions carefully before executing and perform the steps, in the order given.
lf, you have any questions or problems, executing these instructions, <<STOP>> do not proceed, post back with the question or problem.
Malware removal:
Please be aware that removing Malware is a potentially hazardous undertaking. I will take care, not to knowingly suggest courses of action that might damage your computer. However it is impossible for me to foresee all interactions that may happen between the software on your computer and those we'll use to clear you of infection and I cannot guarantee the safety of your system. It is possible that we might encounter situations where the only recourse is to re-format and re-install your operating system, or to necessitate you taking your computer to a repair shop.

For your safety and protection, I would advise backing up all your important documents, personal data files and photos to a CD or DVD drive as some infections may render your computer unbootable during or before the disinfection process. The safest practice is not to backup any files with the following file extensions: exe, .scr, .ini, .htm, .html, .php, .asp, .xml, .zip, .rar, .cab as they may be infected.


Step 1.
ERUNT - Emergency Recovery Utility NT
I see youalready have ERUNT installed. Please run this process. Changes may have occurred between the last run and now. Better to be safe than to be sorry.
Modifying the Registry can create unforeseen problems, so it's always wise to create a backup before doing so.
Run:
  1. Please navigate to Start >> All Programs >> ERUNT... double-click ERUNT from the menu.
  2. Click on OK within the pop-up menu.
  3. In the next menu under C:\WINDOWS\ERDNT\DD-MM-YYYY under Backup options make sure both the following are selected:
    • System registry.
    • Current user registry.
  4. Next click on "OK"... at the prompt... reply "Yes".
    After a short duration the Registry backup is complete! pop-up message will appear.
  5. Now click on "OK". A registry backup has now been created.
< STOP > If you did not successfully complete this step. < STOP > Do not continue with any other steps, post back and let me know!

Step 2.
Rkill
Note: If your security software warns about Rkill, please ignore and allow the download to continue.
Note: If you get an alert that Rkill is infected, ignore it. The alert is a fake warning given by the rogue software, trying to "protect" itself from being terminated or removed. If you see such a warning, leave the warning on the screen, then run Rkill again. By not closing the warning, this sometimes allows you to bypass the malware's attempt to protect itself, so that Rkill can perform its routine.
Please download Rkill... by Grinler. Save it to your Desktop.
Alternate download links: Two or Three
WiNlOgOn.exe
eXplorer.exe
iExplore.exe
uSeRiNiT.exe
  1. Double click on the Rkill Desktop icon.
  2. A command window will open then disappear upon completion, this is normal.
    1. If this does not happen... delete the file, then download and use the next link provided.
    2. If it does not work, repeat the process and attempt to use one of the remaining links until the tool runs.
    Do not reboot your machine until asked to do so. If no version of Rkill would run, please let me know.
    When finished, Notepad will open with a log file, automatically saved at C:\rkill.log.
  3. Please copy and paste the contents of the rkill.log file, in your next reply.
    Please leave Rkill on the Desktop unless instructed otherwise.

Now try running the remaining steps... I've included them again here. If you still have problems with Step 3., please move on to the next step.

Step 3.
MGA Diagnostics
I need you to run a tool... that will aid in determining what additional steps we'll need to perform.
  1. Please download this tool from Microsoft.
  2. Click "Run" to execute MGADiag.exe.
  3. Click "Run" again...then Click "Continue".
  4. The program will run. It takes a while to finish the diagnosis, please be patient.
  5. Once done, click on Copy.
  6. Open Notepad and paste the contents in. Save this file and post it in your next reply.

Step 4.
WVCheck
Please go to Artellos.com.
  1. Choose the "Latest EXE Download" to download WVCheck ... Save it to your Desktop.
  2. Double click WVCheck.exe, to run the process.
  3. Read the comments on the screen... then press Enter.
    The scan can take a while depending on the size of your hard drive.
  4. Once the program is done, Notepad will open with the scan report. Save the report to your Desktop.
  5. Please copy and paste the contents of the Notepad file in your next reply.

Step 5.
CKScanner
Please download CKScanner ... Save it to your desktop.
Make sure that CKScanner.exe is on the your desktop before running the application!
  1. Double-click on the CKScanner.exe icon... then click the Search For Files button.
  2. When the scan is finished (the cursor hourglass disappears) click the Save List To File button.
    A text file will be created on your desktop named "ckfiles.txt"
  3. Click OK at the file saved message box. Double-click on the ckfiles.txt icon on your desktop.
  4. Please copy/paste the contents of ckfiles.txt in your next reply.

Step 6.
Please include in your next reply:
  1. Any problem executing the instructions?
  2. P2P Program (and others) removed?
  3. MGADiag scan results.
  4. WVCheck scan results.
  5. CKScanner ckfiles.txt file contents
  6. How is the computer behaving?
Thanks,
Wingman
User avatar
Wingman
Admin/Teacher
Admin/Teacher
 
Posts: 14347
Joined: July 1st, 2008, 1:34 pm
Location: East Coast, USA

Re: google redirects, cannot connect to certain antimalwares

Unread postby vokue » June 26th, 2011, 10:11 am

Hi Wingman,

I removed the programs you mentioned.

After running Rkill nothing changed and I still wasn't able to download MGADiag. The Internet Explorer didn't work either. But I managed to download it with another computer. By the way google via IE doesn't show any conspicious behavior.

You said running WVCheck could take a while but it finished almost immediately and said: "An error occurred in WVCheck".

Everything else ran fine.

Overall my computer still shows the same misbehavior.

Here are the logs:

Rkill:
This log file is located at C:\rkill.log.
Please post this only if requested to by the person helping you.
Otherwise you can close this log when you wish.

Rkill was run on 26.06.2011 at 14:15:19.
Operating System: Microsoft Windows XP


Processes terminated by Rkill or while it was running:

C:\Programme\Alwil Software\Avast5\setup\avast.setup


Rkill completed on 26.06.2011 at 14:15:38.


MGADiag:
Diagnostic Report (1.9.0027.0):
-----------------------------------------
Windows Validation Data-->
Validation Status: Genuine
Validation Code: 0
Cached Validation Code: N/A
Windows Product Key: *****-*****-48VWH-T66HT-C7R2B
Windows Product Key Hash: H+mXaJKf2mqV6RqI0E31hdOez/E=
Windows Product ID: 76416-OEM-2111907-00108
Windows Product ID Type: 2
Windows License Type: OEM SLP
Windows OS version: 5.1.2600.2.00010300.3.0.hom
ID: {5B09FD85-ADA0-4729-BF89-47D93516921F}(3)
Is Admin: Yes
TestCab: 0x0
LegitcheckControl ActiveX: Registered, 1.7.69.2
Signed By: Microsoft
Product Name: N/A
Architecture: N/A
Build lab: N/A
TTS Error: N/A
Validation Diagnostic: 025D1FF3-230-1
Resolution Status: N/A

Vista WgaER Data-->
ThreatID(s): N/A
Version: N/A

Windows XP Notifications Data-->
Cached Result: 0
File Exists: Yes
Version: 1.7.18.5
WgaTray.exe Signed By: Microsoft
WgaLogon.dll Signed By: Microsoft

OGA Notifications Data-->
Cached Result: N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002
OGAExec.exe Signed By: N/A, hr = 0x80070002
OGAAddin.dll Signed By: N/A, hr = 0x80070002

OGA Data-->
Office Status: 100 Genuine
Microsoft Office Professional Edition 2003 - 100 Genuine
OGA Version: N/A, 0x80070002
Signed By: N/A, hr = 0x80070002
Office Diagnostics: 77F760FE-153-80070002_7E90FEE8-175-80070002_025D1FF3-230-1

Browser Data-->
Proxy settings: N/A
User Agent: Mozilla/4.0 (compatible; MSIE 6.0; Win32)
Default Browser: C:\Programme\Mozilla Firefox\firefox.exe
Download signed ActiveX controls: Prompt
Download unsigned ActiveX controls: Disabled
Run ActiveX controls and plug-ins: Allowed
Initialize and script ActiveX controls not marked as safe: Disabled
Allow scripting of Internet Explorer Webbrowser control: Disabled
Active scripting: Allowed
Script ActiveX controls marked as safe for scripting: Allowed

File Scan Data-->

Other data-->
Office Details:

<GenuineResults><MachineData><UGUID>{5B09FD85-ADA0-4729-BF89-47D93516921F}</UGUID><Version>1.9.0027.0</Version><OS>5.1.2600.2.00010300.3.0.hom

</OS><Architecture>x32</Architecture><PKey>*****-*****-*****-*****-C7R2B</PKey><PID>76416-OEM-2111907-00108</PID><PIDType>2</PIDType><SID>S-1-

5-21-4221182105-1689319119-3275966683</SID><SYSTEM><Manufacturer>Samsung

Electronics</Manufacturer><Model>SX20S</Model></SYSTEM><BIOS><Manufacturer>Phoenix Technologies

LTD</Manufacturer><Version>08ZE</Version><SMBIOSVersion major="2"

minor="31"/><Date>20050623000000.000000+000</Date><SLPBIOS>$SAMSUNGPC</SLPBIOS></BIOS><HWID>36123607018400E2</HWID><UserLCID>0407</UserLCID><S

ystemLCID>0407</SystemLCID><TimeZone>Westeuropäische

Normalzeit(GMT+01:00)</TimeZone><iJoin>0</iJoin><SBID><stat>2</stat><msppid></msppid><name>Samsung

Electronics</name><model>SEC</model></SBID><OEM/><GANotification><File Name="WgaTray.exe" Version="1.7.18.5"/><File Name="WgaLogon.dll"

Version="1.7.18.5"/></GANotification></MachineData><Software><Office><Result>100</Result><Products><Product

GUID="{90110407-6000-11D3-8CFE-0150048383C9}"><LegitResult>100</LegitResult><Name>Microsoft Office Professional Edition

2003</Name><Ver>11</Ver><Val>5E76D3DD14CF500</Val><Hash>kTE8fzQJC6LdCDsy7/BbQMhlYFE=</Hash><Pid>73932-640-0217506-57115</Pid><PidType>14</PidT

ype></Product></Products><Applications><App Id="15" Version="11" Result="100"/><App Id="16" Version="11" Result="100"/><App Id="18"

Version="11" Result="100"/><App Id="19" Version="11" Result="100"/><App Id="1A" Version="11" Result="100"/><App Id="1B" Version="11"

Result="100"/><App Id="44" Version="11" Result="100"/></Applications></Office></Software></GenuineResults>

Licensing Data-->
N/A

Windows Activation Technologies-->
N/A

HWID Data-->
N/A

OEM Activation 1.0 Data-->
BIOS string matches: yes
Marker string from BIOS: 1E710:Samsung Electronics CO., LTD
Marker string from OEMBIOS.DAT: $SAMSUNGPC

OEM Activation 2.0 Data-->
N/A



WVCheck:
Windows Validation Check
Version: 1.9.12.5
Log Created On: 1505_26-06-2011
-----------------------

Windows Information
-----------------------
Windows Version: Windows XP Service Pack 3
Windows Mode: Normal
Systemroot Path: C:\WINDOWS

WVCheck's Auto Update Check
-----------------------
Auto-Update Option: Download updates and install them automatically.
-----------------------
Last Success Time for Update Detection: 2011-06-14 18:48:48
Last Success Time for Update Download: 2011-05-11 11:07:08
Last Success Time for Update Installation: 2011-05-11 17:10:55


WVCheck's Registry Check Check
-----------------------
Antiwpa: Not Found
-----------------------
Chew7Hale: Not Found
-----------------------


WVCheck's File Dump
-----------------------
WVCheck found no known bad files.


WVCheck's Dir Dump
-----------------------
WVCheck found no known bad directories.


WVCheck's Missing File Check
-----------------------
WVCheck found no missing Windows files.


WVCheck's HOSTS File Check
-----------------------
WVCheck found no bad lines in the hosts file.


WVCheck's MD5 Check
EXPERIMENTAL!!
-----------------------
user32.dll - b0050cc5340e3a0760dd8b417ff7aebd


-------- End of File, program close at 1506_26-06-2011 --------


CKScanner:
CKScanner - Additional Security Risks - These are not necessarily bad
c:\dokumente und einstellungen\müller\eigene dateien\archive\microstation v8_crack.zip
c:\dokumente und einstellungen\müller\eigene dateien\basti\games\monkey_island_2_(http://www.crack-locator.org).zip
c:\programme\adobe\adobe photoshop cs3\crack\photoshop.exe
c:\programme\dos\cdrive\monkey 2\mi2crack.exe
c:\programme\dos\cdrive\monkey 2\mi2crack.txt
scanner sequence 3.BC.11.LUAPJN
----- EOF -----

Thanks,
vokue
vokue
Active Member
 
Posts: 6
Joined: June 16th, 2011, 7:38 pm

Re: google redirects, cannot connect to certain antimalwares

Unread postby Wingman » June 26th, 2011, 11:43 am

Hello vokue,

There is evidence of cracked software on your computer. This software and files need to be removed before any further help will be provided.
May I draw your attention to the topic: ALL USERS OF THIS FORUM MUST READ THIS FIRST, which you should have read before posting for help.

The section here explains why we do not offer help for such computers. Thank you for your understanding.

Once the software is uninstalled and the crack files are deleted, please run the following steps:

Step 1.
ERUNT - Emergency Recovery Utility NT
Please run this process. Changes may have occurred between the last run and now. Better to be safe than to be sorry.
Modifying the Registry can create unforeseen problems, so it's always wise to create a backup before doing so.
Run:
  1. Please navigate to Start >> All Programs >> ERUNT... double-click ERUNT from the menu.
  2. Click on OK within the pop-up menu.
  3. In the next menu under C:\WINDOWS\ERDNT\DD-MM-YYYY under Backup options make sure both the following are selected:
    • System registry.
    • Current user registry.
  4. Next click on "OK"... at the prompt... reply "Yes".
    After a short duration the Registry backup is complete! pop-up message will appear.
  5. Now click on "OK". A registry backup has now been created.
< STOP > If you did not successfully complete this step. < STOP > Do not continue with any other steps, post back and let me know!

Step 2.
CKScanner
You should still have this program on your desktop, if so, ignore the download instructions.
Please download CKScanner ... Save it to your desktop.
Make sure that CKScanner.exe is on the your desktop before running the application!
  1. Double-click on the CKScanner.exe icon... then click the Search For Files button.
  2. When the scan is finished (the cursor hourglass disappears) click the Save List To File button.
    A text file will be created on your desktop named "ckfiles.txt"
  3. Click OK at the file saved message box. Double-click on the ckfiles.txt icon on your desktop.
  4. Please copy/paste the contents of ckfiles.txt in your next reply.

Step 3.
DDS Scan - Re-run
    Disable any script blocking software you have running before running DDS.
  1. Please double click dds.com to run the tool. (File name will be different if alternate download used).
    A black window will open with some instructions/comments...
  2. When done, DDS will open two (2) logs:
    • DDS.txt
    • Attach.txt
    Caution: The above logs will NOT be saved... you must save them to your desktop.
  3. Please post both the DDS.txt and Attach.txt files in your next reply.

Step 4.
Please include in your next reply:
  1. Any problem executing the instructions?
  2. CKScanner ckfiles.txt file contents.
  3. DDS - dds.txt and Attach.txt file contents.
Thanks,
Wingman
User avatar
Wingman
Admin/Teacher
Admin/Teacher
 
Posts: 14347
Joined: July 1st, 2008, 1:34 pm
Location: East Coast, USA

Re: google redirects, cannot connect to certain antimalwares

Unread postby vokue » June 26th, 2011, 8:33 pm

Sorry for that, Wingman. I uninstalled the programs. Here are the requested logs:

ckfiles:
CKScanner - Additional Security Risks - These are not necessarily bad
scanner sequence 3.EM.11.KEAATO
----- EOF -----


dds:
.
DDS (Ver_2011-06-12.02) - NTFSx86
Internet Explorer: 6.0.2900.5512
Run by Müller at 2:07:17 on 2011-06-27
Microsoft Windows XP Home Edition 5.1.2600.3.1252.49.1031.18.1014.414 [GMT 2:00]
.
AV: avast! Antivirus *Enabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
AV: AntiVir PersonalEdition Classic *Disabled/Outdated* {F50D9AC1-6409-476C-A8D6-8F5F82336C8F}
.
============== Running Processes ===============
.
C:\Programme\Emsisoft Anti-Malware\a2service.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\Programme\Bluetooth Software\bin\btwdins.exe
svchost.exe
svchost.exe
C:\Programme\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Programme\AVPersonal\AVWUPSRV.EXE
C:\Programme\Bonjour\mDNSResponder.exe
svchost.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Programme\NovaShield\NSServ.exe
C:\Programme\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Programme\Yahoo!\SoftwareUpdate\YahooAUService.exe
C:\Programme\Analog Devices\SoundMAX\SMax4PNP.exe
C:\WINDOWS\system32\rundll32.exe
C:\Programme\Synaptics\SynTP\SynTPLpr.exe
C:\Programme\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Programme\SAMSUNG\MagicKBD\MagicKBD.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Programme\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe
C:\Programme\iTunes\iTunesHelper.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\Programme\NovaShield\NovaShield.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programme\iPod\bin\iPodService.exe
C:\Programme\Bluetooth Software\BTTray.exe
C:\Programme\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
C:\Programme\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Programme\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Programme\Mozilla Firefox\firefox.exe
C:\Programme\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\system32\NOTEPAD.EXE
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://de.yahoo.com/?fr=fp-yie8
uSearch Page =
uWindow Title = Windows Internet Explorer bereitgestellt von Yahoo!
uDefault_Page_URL = hxxp://de.yahoo.com/?fr=fp-yie8
mDefault_Page_URL = hxxp://www.tiscali.de
uInternet Settings,ProxyServer = 172.16.3.100:3128
uInternet Settings,ProxyOverride = <local>;*.local
uSearchAssistant =
mSearchAssistant =
BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\programme\yahoo!\companion\installs\cpn\yt.dll
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\programme\adobe\adobe acrobat 7.0\activex\AcroIEHelper.dll
BHO: Adobe PDF Conversion Toolbar Helper: {ae7cd045-e861-484f-8273-0445ee161910} - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\programme\google\googletoolbarnotifier\5.1.1309.3572\swg.dll
BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - c:\programme\yahoo!\companion\installs\cpn\YTSingleInstance.dll
TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\programme\yahoo!\companion\installs\cpn\yt.dll
EB: Adobe PDF: {182ec0be-5110-49c8-a062-beb1d02a220b} - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll
uRun: [swg] c:\programme\google\googletoolbarnotifier\GoogleToolbarNotifier.exe
uRun: [CTFMON.EXE] c:\windows\system32\ctfmon.exe
mRun: [SoundMAXPnP] c:\programme\analog devices\soundmax\SMax4PNP.exe
mRun: [SoundMAX] c:\programme\analog devices\soundmax\Smax4.exe /tray
mRun: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
mRun: [SynTPLpr] c:\programme\synaptics\syntp\SynTPLpr.exe
mRun: [SynTPEnh] c:\programme\synaptics\syntp\SynTPEnh.exe
mRun: [AGRSMMSG] AGRSMMSG.exe
mRun: [MagicKeyboard] c:\programme\samsung\magickbd\PreMKBD.exe
mRun: [igfxtray] c:\windows\system32\igfxtray.exe
mRun: [igfxhkcmd] c:\windows\system32\hkcmd.exe
mRun: [igfxpers] c:\windows\system32\igfxpers.exe
mRun: [AVGCtrl] c:\programme\avpersonal\AVGNT.EXE /min
mRun: [NeroFilterCheck] c:\windows\system32\NeroCheck.exe
mRun: [Acrobat Assistant 7.0] "c:\programme\adobe\adobe acrobat 7.0\distillr\Acrotray.exe"
mRun: [<NO NAME>]
mRun: [QuickTime Task] "c:\programme\quicktime\qttask.exe" -atboottime
mRun: [iTunesHelper] "c:\programme\itunes\iTunesHelper.exe"
mRun: [CloneCDTray] "c:\programme\slysoft\clonecd\CloneCDTray.exe" /s
mRun: [avast5] c:\progra~1\alwils~1\avast5\avastUI.exe /nogui
mRun: [NovaShield] c:\programme\novashield\NovaShield.exe startup
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
StartupFolder: c:\dokume~1\mller~1\startm~1\progra~1\autost~1\erunta~1.lnk - c:\programme\erunt\AUTOBACK.EXE
StartupFolder: c:\dokume~1\mller~1\startm~1\progra~1\autost~1\rcexe~1.lnk - c:\programme\dtv\dvb-t usb 2.0\RC.exe
StartupFolder: c:\dokume~1\alluse~1\startm~1\progra~1\autost~1\adobea~1.lnk - c:\windows\installer\{ac76ba86-1033-f400-7760-000000000002}\SC_Acrobat.exe
StartupFolder: c:\dokume~1\alluse~1\startm~1\progra~1\autost~1\adobeg~1.lnk - c:\programme\gemeinsame dateien\adobe\calibration\Adobe Gamma Loader.exe
StartupFolder: c:\dokume~1\alluse~1\startm~1\progra~1\autost~1\adober~1.lnk - c:\programme\adobe\acrobat 7.0\reader\reader_sl.exe
StartupFolder: c:\dokume~1\alluse~1\startm~1\progra~1\autost~1\autoca~1.lnk - c:\programme\gemeinsame dateien\autodesk shared\acstart16.exe
StartupFolder: c:\dokume~1\alluse~1\startm~1\progra~1\autost~1\bttray.lnk - c:\programme\bluetooth software\BTTray.exe
StartupFolder: c:\dokume~1\alluse~1\startm~1\progra~1\autost~1\hppsc2~1.lnk - c:\programme\hewlett-packard\digital imaging\bin\hpobnz08.exe
StartupFolder: c:\dokume~1\alluse~1\startm~1\progra~1\autost~1\hpoddt~1.lnk - c:\programme\hewlett-packard\digital imaging\bin\hpotdd01.exe
StartupFolder: c:\dokume~1\alluse~1\startm~1\progra~1\autost~1\wisome~1.lnk - c:\programme\wiso\sparbuch 2010\meinsparbuchheute.exe
IE: Ausgewählte Verknüpfungen in Adobe PDF konvertieren - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Ausgewählte Verknüpfungen in vorhandene PDF-Datei konvertieren - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Auswahl in Adobe PDF konvertieren - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Auswahl in vorhandene PDF-Datei konvertieren - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Download all with Free Download Manager - file://c:\programme\free download manager\dlall.htm
IE: Download selected with Free Download Manager - file://c:\programme\free download manager\dlselected.htm
IE: Download video with Free Download Manager - file://c:\programme\free download manager\dlfvideo.htm
IE: Download with Free Download Manager - file://c:\programme\free download manager\dllink.htm
IE: In Adobe PDF konvertieren - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: In vorhandene PDF-Datei konvertieren - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Nach Microsoft &Excel exportieren - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: Senden an &Bluetooth-Gerät... - c:\programme\bluetooth software\btsendto_ie_ctx.htm
IE: Senden an Bluetooth - c:\programme\bluetooth software\btsendto_ie.htm
IE: Verknüpfungsziel in Adobe PDF konvertieren - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Verknüpfungsziel in vorhandene PDF-Datei konvertieren - c:\programme\adobe\adobe acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\programme\bluetooth software\btsendto_ie.htm
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\programme\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
IE: {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - {552781AF-37E4-4FEE-920A-CED9E648EADD} - c:\programme\gemeinsame dateien\microsoft shared\encarta search bar\ENCSBAR.DLL
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204
DPF: {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} - hxxp://office.microsoft.com/officeupdat ... /opuc3.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupda ... 6279675703
TCP: NameServer = 93.188.164.155,93.188.160.95
TCP: DhcpNameServer = 192.168.178.1
TCP: Interfaces\{A0A048F9-66D0-4B6B-B5B3-A12598552C6E} : NameServer = 93.188.164.155,93.188.160.95
TCP: Interfaces\{A0A048F9-66D0-4B6B-B5B3-A12598552C6E} : DhcpNameServer = 192.168.178.1
Notify: igfxcui - igfxdev.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
mASetup: {A509B1FF-37FF-4bFF-8CFF-4F3A747040FF} - c:\windows\system32\rundll32.exe c:\windows\system32\advpack.dll,launchinfsectionex c:\programme\internet explorer\clrtour.inf,DefaultInstall.ResetTour,,12
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\dokumente und einstellungen\müller\anwendungsdaten\mozilla\firefox\profiles\p9gjum18.default\
.
============= SERVICES / DRIVERS ===============
.
R0 R592;R592;c:\windows\system32\drivers\R592.sys [2005-1-4 54912]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2009-7-10 294608]
R1 NovaShieldFilterDriver;NovaShieldFilterDriver;c:\windows\system32\drivers\NSKernel.sys [2011-6-23 792704]
R1 NovaShieldTDIDriver;NovaShieldTDIDriver;c:\windows\system32\drivers\NSNetmon.sys [2011-6-23 13696]
R2 a2AntiMalware;Emsisoft Anti-Malware 5.1 - Service;c:\programme\emsisoft anti-malware\a2service.exe [2011-6-26 2978720]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2009-7-10 17744]
R2 avast! Antivirus;avast! Antivirus;c:\programme\alwil software\avast5\AvastSvc.exe [2010-7-13 40384]
R2 AVWUpSrv;AntiVir Update;c:\programme\avpersonal\AVWUPSRV.EXE [2005-10-19 45096]
R2 DOSMEMIO;MEMIO;c:\windows\system32\MEMIO.SYS [2005-1-4 4300]
R2 NSService;NovaShield C++ Version;c:\programme\novashield\NSServ.exe [2011-6-23 3587904]
R3 AVMWAN;AVM NDIS WAN CAPI-Treiber;c:\windows\system32\drivers\avmwan.sys [2005-9-30 37568]
R3 fpcmbase;AVM ISDN-Controller FRITZ!Card PCMCIA;c:\windows\system32\drivers\fpcmbase.sys [2005-9-30 441728]
S2 gupdate1c9c7e3db563194;Google Update Service (gupdate1c9c7e3db563194);c:\programme\google\update\GoogleUpdate.exe [2009-4-28 133104]
S3 a2acc;a2acc;c:\programme\emsisoft anti-malware\a2accx86.sys [2011-6-26 73728]
S3 avgntdw;avgntdw;\??\c:\programme\avpersonal\avgntdw.sys --> c:\programme\avpersonal\AVGNTDW.SYS [?]
S3 gupdatem;Google Update-Dienst (gupdatem);c:\programme\google\update\GoogleUpdate.exe [2009-4-28 133104]
S3 IFXTPM;IFXTPM;c:\windows\system32\drivers\ifxtpm.sys [2004-5-13 32640]
S3 WDM_Capture_220A;DVB-T TV Receiver;c:\windows\system32\drivers\WDM_Capture_220A.sys [2006-6-29 19072]
S3 WDM_Loader_220A;DVB-T TV Loader;c:\windows\system32\drivers\WDM_Loader_220A.sys [2006-6-29 15488]
.
=============== File Associations ===============
.
.scr=AutoCADScriptFile
.
=============== Created Last 30 ================
.
2011-06-22 22:23:36 2106216 ----a-w- c:\programme\mozilla firefox\D3DCompiler_43.dll
2011-06-22 22:23:35 1998168 ----a-w- c:\programme\mozilla firefox\d3dx9_43.dll
2011-06-22 22:16:25 1546624 ----a-w- c:\windows\system32\LicProtectorEasyGo264.dll
2011-06-22 22:16:18 13696 ----a-w- c:\windows\system32\drivers\NSNetmon.sys
2011-06-22 22:16:18 -------- d-----w- c:\programme\NovaShield
2011-06-22 22:16:17 792704 ----a-w- c:\windows\system32\drivers\NSKernel.sys
2011-06-19 15:25:41 -------- d-----w- c:\programme\Emsisoft Anti-Malware
2011-06-16 23:00:26 -------- d-----w- C:\_OTM
2011-06-16 15:51:53 388096 ----a-r- c:\dokumente und einstellungen\müller\anwendungsdaten\microsoft\installer\{45a66726-69bc-466b-a7a4-12fcba4883d7}\HiJackThis.exe
2011-06-16 15:51:50 -------- d-----w- c:\programme\Trend Micro
2011-06-16 13:55:31 142296 ----a-w- c:\programme\mozilla firefox\components\browsercomps.dll
2011-06-16 13:55:30 89048 ----a-w- c:\programme\mozilla firefox\libEGL.dll
2011-06-16 13:55:30 781272 ----a-w- c:\programme\mozilla firefox\mozsqlite3.dll
2011-06-16 13:55:30 465880 ----a-w- c:\programme\mozilla firefox\libGLESv2.dll
2011-06-16 13:55:30 1850328 ----a-w- c:\programme\mozilla firefox\mozjs.dll
2011-06-16 13:55:30 15832 ----a-w- c:\programme\mozilla firefox\mozalloc.dll
2011-05-30 13:01:56 35840 ---ha-w- c:\dokumente und einstellungen\müller\anwendungsdaten\MBSGWorldPlugin3550.dll
2011-05-30 13:01:52 65024 ---ha-w- c:\dokumente und einstellungen\müller\anwendungsdaten\MBSPicturePlugin3595.dll
2011-05-30 13:01:51 27648 ---ha-w- c:\dokumente und einstellungen\müller\anwendungsdaten\MBSRegistrationPlugin3596.dll
2011-05-30 13:01:51 120832 ---ha-w- c:\dokumente und einstellungen\müller\anwendungsdaten\MBSJPEGDecompressionPlugin3597.dll
2011-05-30 13:01:50 86528 ---ha-w- c:\dokumente und einstellungen\müller\anwendungsdaten\rbap500.dll
2011-05-28 22:08:24 -------- d-----w- c:\dokumente und einstellungen\müller\anwendungsdaten\ASCOMP Software
2011-05-28 22:08:20 -------- d-----w- c:\programme\Secure Eraser
2011-05-28 19:24:50 6200 ----a-w- c:\windows\system32\INT13EXT.VXD
2011-05-28 19:24:34 -------- d-----w- c:\programme\File Recovery
.
==================== Find3M ====================
.
2011-05-14 23:11:18 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2008-12-10 18:07:23 31662816 ----a-w- c:\programme\setup_Media_Markt.exe
2008-12-10 17:38:38 5433213 ----a-w- c:\programme\myphotobook-Setup.exe
2005-05-31 17:57:10 1260618 ----a-w- c:\programme\dvdshrink.3.2.de.setup.exe
.
============= FINISH: 2:09:23,21 ===============


attach:
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-06-12.02)
.
Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume1
Install Date: 09.09.2005 17:07:40
System Uptime: 27.06.2011 01:14:23 (1 hours ago)
.
Motherboard: Samsung Electronics | | SX20S
Processor: Intel(R) Pentium(R) M processor 1.73GHz | U1 | 1729/mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 74 GiB total, 1,827 GiB free.
D: is CDROM ()
E: is Removable
.
==== Disabled Device Manager Items =============
.
Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
Description: Intel(R) PRO/Wireless 2200BG Network Connection
Device ID: PCI\VEN_8086&DEV_4220&SUBSYS_27318086&REV_05\4&AD1B67F&0&38F0
Manufacturer: Intel(R) Corporation
Name: Intel(R) PRO/Wireless 2200BG Network Connection
PNP Device ID: PCI\VEN_8086&DEV_4220&SUBSYS_27318086&REV_05\4&AD1B67F&0&38F0
Service: w29n51
.
==== System Restore Points ===================
.
RP1185: 24.06.2011 18:52:10 - Java 2 Runtime Environment, SE v1.4.2_03 wird entfernt
RP1186: 24.06.2011 18:54:16 - Java(TM) 6 Update 22 wird entfernt
RP1187: 26.06.2011 14:50:10 - Systemprüfpunkt
RP1188: 27.06.2011 00:46:01 - Windows Internet Explorer 8 wurde installiert.
.
==== Installed Programs ======================
.
.
Sansa Media Converter
AAC Decoder
ACDSee
Adobe Acrobat 7.0 Professional - English, Français, Deutsch
Adobe Audition 1.5
Adobe Bridge Start Meeting
Adobe Camera Raw 4.0
Adobe CMaps
Adobe Color Common Settings
Adobe Color EU Recommended Settings
Adobe Color JA Extra Settings
Adobe Color NA Extra Settings
Adobe Common File Installer
Adobe Creative Suite 2
Adobe Default Language CS3
Adobe Device Central CS3
Adobe ExtendScript Toolkit 2
Adobe Flash Player 10 Plugin
Adobe Fonts All
Adobe Help Center 1.0
Adobe Help Viewer CS3
Adobe Illustrator CS2
Adobe InDesign CS2
Adobe Linguistics CS3
Adobe PDF Library Files
Adobe Premiere Pro
Adobe Reader 7.0 - Deutsch
Adobe Setup
Adobe Shockwave Player 11.5
Adobe SVG Viewer 3.0
Adobe Type Support
Adobe Update Manager CS3
Adobe Version Cue CS3 Client
Adobe WinSoft Linguistics Plugin
Adobe XMP Panels CS3
Amazon MP3-Downloader 1.0.9
AudioCon
AutoCAD 2005 - Deutsch
Autodesk DWF Viewer
AutoUpdate
avast! Free Antivirus
AVIConverter 5.1
AviSynth 2.5
AVS Update Manager 1.0
AVS4YOU Software Navigator 1.3
Borland Database Engine
ChangeFileName 2005
CloneCD
Compatibility Pack for the 2007 Office system
concept/design onlineTV 4
Crashkurs Buchführung für Selbstständige
Dart 'm Up
Digital Image Recovery 1.47
DivX Codec
DivX Converter
DivX Player
DivX Plus DirectShow Filters
DivX Version Checker
DivX Web Player
DJBCP Codec Pack 4.4.4
DVD Shrink 3.2 deutsch
ElsterFormular
Emsisoft Anti-Malware 5.1
ERUNT 1.1j
Everything 1.2.1.371
FEAWin
ffdshow [rev 3082] [2009-09-21]
Foto2Avi 2.0
Free Download Manager 3.0
Free DVD Video Burner version 2.4
Free Video to DVD Converter version 1.6
Gateway151 Karaoke Zip Player
Google Earth
Google SketchUp
Google SketchUp 6
Google SketchUp 6 Exporters
Google SketchUp LayOut 6
Google SketchUp Pro 6
Google Update Helper
Google Updater
H.264 Decoder
Haufe Formular-Manager
HighMAT-Erweiterung für den Microsoft Windows XP-Assistenten zum Schreiben von CDs
HiJackThis
Hotfix für Windows XP (KB2158563)
Hotfix für Windows XP (KB2443685)
Hotfix für Windows XP (KB952287)
Hotfix für Windows XP (KB961118)
Hotfix für Windows XP (KB970653-v3)
Hotfix für Windows XP (KB976098-v2)
Hotfix für Windows XP (KB979306)
Hotfix für Windows XP (KB981793)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows XP (KB954550-v5)
Hotfix for Windows XP (KB976002-v5)
HP Foto- und Bildbearbeitung 2.0 - All-in-One
HP Foto- und Bildbearbeitung 2.0 All-in-One Treiber
HP Foto und Bildbearbeitung 2.0 - hp psc 2200 series
hp psc 2200 series
HS Energieberater 6 Plus
Intel(R) Graphics Media Accelerator Driver for Mobile
Intel(R) PROSet/Wireless Software
IrfanView (remove only)
iTunes
IZArc 3.81
K-Lite Codec Pack 4.0.0 (Full)
Karaoke Song List Creator
Karaoke Song List Creator Professional KJ Edition 2004
Lexmark 640 Series
Magic Keyboard
Malwarebytes' Anti-Malware Version 1.51.0.1200
Maske der Ewigkeit
mDriver
Media Markt
Michas Jingle-Player
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 German Language Pack
Microsoft .NET Framework 1.1 Security Update (KB2416447)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - DEU
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - DEU
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
Microsoft .NET Framework 3.5 SP1
Microsoft Digital Image Library 9 - Blocker
Microsoft Encarta Enzyklopädie 2005
Microsoft Office Professional Edition 2003
Microsoft Office Word Viewer 2003
Microsoft Picture It!-Bibliothek 10
Microsoft Picture It! Foto Premium 10
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
Microsoft Works
Microsoft Works Suite-Add-Ins für Microsoft Word
MKV Splitter
Momento Express
Mozilla Firefox 5.0 (x86 de)
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 4.0 SP2 Parser and SDK
MultiMemoryCardDriver
MYLT-V.2
myphotobook 3.6
neoDVDplus
neoDVDplus5
Nero Suite
NovaShield 3.0.26
NVIDIA GAME System Software 2.8.1
PC Inspector File Recovery
PDF Settings
PDFCreator
PEC
Pinnacle VideoSpin
PL-2303 USB-to-Serial
Pool 'm Up
Power CD+G to Video Karaoke Converter
Prism Video Converter
PyKaraoke
QuickTime
RedistSysFiles
Samsung Battery Manager
Samsung Network Manager
Samsung Theme
Samsung Update Plus
SCHLECKER Foto Digital Service
Seamulator 2009 Demo
Secure Eraser v3.3
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
SENS LT56ADW Modem
Setup-Start von Microsoft Works 2005
Sherlock Holmes jagt Jack the Ripper
Shockwave
Sicherheitsupdate für Windows Media Player (KB2378111)
Sicherheitsupdate für Windows Media Player (KB911564)
Sicherheitsupdate für Windows Media Player (KB952069)
Sicherheitsupdate für Windows Media Player (KB954155)
Sicherheitsupdate für Windows Media Player (KB968816)
Sicherheitsupdate für Windows Media Player (KB973540)
Sicherheitsupdate für Windows Media Player (KB975558)
Sicherheitsupdate für Windows Media Player (KB978695)
Sicherheitsupdate für Windows Media Player 10 (KB911565)
Sicherheitsupdate für Windows Media Player 10 (KB917734)
Sicherheitsupdate für Windows Media Player 10 (KB936782)
Sicherheitsupdate für Windows Media Player 6.4 (KB925398)
Sicherheitsupdate für Windows XP (KB2079403)
Sicherheitsupdate für Windows XP (KB2121546)
Sicherheitsupdate für Windows XP (KB2160329)
Sicherheitsupdate für Windows XP (KB2183461)
Sicherheitsupdate für Windows XP (KB2229593)
Sicherheitsupdate für Windows XP (KB2259922)
Sicherheitsupdate für Windows XP (KB2279986)
Sicherheitsupdate für Windows XP (KB2286198)
Sicherheitsupdate für Windows XP (KB2296011)
Sicherheitsupdate für Windows XP (KB2296199)
Sicherheitsupdate für Windows XP (KB2347290)
Sicherheitsupdate für Windows XP (KB2360131)
Sicherheitsupdate für Windows XP (KB2360937)
Sicherheitsupdate für Windows XP (KB2387149)
Sicherheitsupdate für Windows XP (KB2393802)
Sicherheitsupdate für Windows XP (KB2412687)
Sicherheitsupdate für Windows XP (KB2416400)
Sicherheitsupdate für Windows XP (KB2419632)
Sicherheitsupdate für Windows XP (KB2423089)
Sicherheitsupdate für Windows XP (KB2436673)
Sicherheitsupdate für Windows XP (KB2440591)
Sicherheitsupdate für Windows XP (KB2443105)
Sicherheitsupdate für Windows XP (KB2476687)
Sicherheitsupdate für Windows XP (KB2478960)
Sicherheitsupdate für Windows XP (KB2478971)
Sicherheitsupdate für Windows XP (KB2479628)
Sicherheitsupdate für Windows XP (KB2479943)
Sicherheitsupdate für Windows XP (KB2481109)
Sicherheitsupdate für Windows XP (KB2482017)
Sicherheitsupdate für Windows XP (KB2483185)
Sicherheitsupdate für Windows XP (KB2485376)
Sicherheitsupdate für Windows XP (KB2485663)
Sicherheitsupdate für Windows XP (KB2497640)
Sicherheitsupdate für Windows XP (KB2503658)
Sicherheitsupdate für Windows XP (KB2506212)
Sicherheitsupdate für Windows XP (KB2506223)
Sicherheitsupdate für Windows XP (KB2507618)
Sicherheitsupdate für Windows XP (KB2508272)
Sicherheitsupdate für Windows XP (KB2508429)
Sicherheitsupdate für Windows XP (KB2509553)
Sicherheitsupdate für Windows XP (KB2510581)
Sicherheitsupdate für Windows XP (KB2511455)
Sicherheitsupdate für Windows XP (KB2524375)
Sicherheitsupdate für Windows XP (KB923561)
Sicherheitsupdate für Windows XP (KB923689)
Sicherheitsupdate für Windows XP (KB938464)
Sicherheitsupdate für Windows XP (KB941569)
Sicherheitsupdate für Windows XP (KB946648)
Sicherheitsupdate für Windows XP (KB950759)
Sicherheitsupdate für Windows XP (KB950760)
Sicherheitsupdate für Windows XP (KB950762)
Sicherheitsupdate für Windows XP (KB950974)
Sicherheitsupdate für Windows XP (KB951066)
Sicherheitsupdate für Windows XP (KB951376-v2)
Sicherheitsupdate für Windows XP (KB951376)
Sicherheitsupdate für Windows XP (KB951698)
Sicherheitsupdate für Windows XP (KB951748)
Sicherheitsupdate für Windows XP (KB952004)
Sicherheitsupdate für Windows XP (KB952954)
Sicherheitsupdate für Windows XP (KB953838)
Sicherheitsupdate für Windows XP (KB953839)
Sicherheitsupdate für Windows XP (KB954211)
Sicherheitsupdate für Windows XP (KB954459)
Sicherheitsupdate für Windows XP (KB954600)
Sicherheitsupdate für Windows XP (KB955069)
Sicherheitsupdate für Windows XP (KB956390)
Sicherheitsupdate für Windows XP (KB956391)
Sicherheitsupdate für Windows XP (KB956572)
Sicherheitsupdate für Windows XP (KB956744)
Sicherheitsupdate für Windows XP (KB956802)
Sicherheitsupdate für Windows XP (KB956803)
Sicherheitsupdate für Windows XP (KB956841)
Sicherheitsupdate für Windows XP (KB956844)
Sicherheitsupdate für Windows XP (KB957095)
Sicherheitsupdate für Windows XP (KB957097)
Sicherheitsupdate für Windows XP (KB958215)
Sicherheitsupdate für Windows XP (KB958644)
Sicherheitsupdate für Windows XP (KB958687)
Sicherheitsupdate für Windows XP (KB958690)
Sicherheitsupdate für Windows XP (KB958869)
Sicherheitsupdate für Windows XP (KB959426)
Sicherheitsupdate für Windows XP (KB960225)
Sicherheitsupdate für Windows XP (KB960714)
Sicherheitsupdate für Windows XP (KB960715)
Sicherheitsupdate für Windows XP (KB960803)
Sicherheitsupdate für Windows XP (KB960859)
Sicherheitsupdate für Windows XP (KB961371)
Sicherheitsupdate für Windows XP (KB961373)
Sicherheitsupdate für Windows XP (KB961501)
Sicherheitsupdate für Windows XP (KB963027)
Sicherheitsupdate für Windows XP (KB968537)
Sicherheitsupdate für Windows XP (KB969059)
Sicherheitsupdate für Windows XP (KB969897)
Sicherheitsupdate für Windows XP (KB969898)
Sicherheitsupdate für Windows XP (KB969947)
Sicherheitsupdate für Windows XP (KB970238)
Sicherheitsupdate für Windows XP (KB970430)
Sicherheitsupdate für Windows XP (KB971468)
Sicherheitsupdate für Windows XP (KB971486)
Sicherheitsupdate für Windows XP (KB971557)
Sicherheitsupdate für Windows XP (KB971633)
Sicherheitsupdate für Windows XP (KB971657)
Sicherheitsupdate für Windows XP (KB971961)
Sicherheitsupdate für Windows XP (KB972260)
Sicherheitsupdate für Windows XP (KB972270)
Sicherheitsupdate für Windows XP (KB973346)
Sicherheitsupdate für Windows XP (KB973354)
Sicherheitsupdate für Windows XP (KB973507)
Sicherheitsupdate für Windows XP (KB973525)
Sicherheitsupdate für Windows XP (KB973869)
Sicherheitsupdate für Windows XP (KB973904)
Sicherheitsupdate für Windows XP (KB974112)
Sicherheitsupdate für Windows XP (KB974318)
Sicherheitsupdate für Windows XP (KB974392)
Sicherheitsupdate für Windows XP (KB974455)
Sicherheitsupdate für Windows XP (KB974571)
Sicherheitsupdate für Windows XP (KB975025)
Sicherheitsupdate für Windows XP (KB975467)
Sicherheitsupdate für Windows XP (KB975560)
Sicherheitsupdate für Windows XP (KB975561)
Sicherheitsupdate für Windows XP (KB975562)
Sicherheitsupdate für Windows XP (KB975713)
Sicherheitsupdate für Windows XP (KB976325)
Sicherheitsupdate für Windows XP (KB977165)
Sicherheitsupdate für Windows XP (KB977816)
Sicherheitsupdate für Windows XP (KB977914)
Sicherheitsupdate für Windows XP (KB978037)
Sicherheitsupdate für Windows XP (KB978251)
Sicherheitsupdate für Windows XP (KB978262)
Sicherheitsupdate für Windows XP (KB978338)
Sicherheitsupdate für Windows XP (KB978542)
Sicherheitsupdate für Windows XP (KB978601)
Sicherheitsupdate für Windows XP (KB978706)
Sicherheitsupdate für Windows XP (KB979309)
Sicherheitsupdate für Windows XP (KB979482)
Sicherheitsupdate für Windows XP (KB979559)
Sicherheitsupdate für Windows XP (KB979683)
Sicherheitsupdate für Windows XP (KB979687)
Sicherheitsupdate für Windows XP (KB980195)
Sicherheitsupdate für Windows XP (KB980218)
Sicherheitsupdate für Windows XP (KB980232)
Sicherheitsupdate für Windows XP (KB980436)
Sicherheitsupdate für Windows XP (KB981322)
Sicherheitsupdate für Windows XP (KB981349)
Sicherheitsupdate für Windows XP (KB981852)
Sicherheitsupdate für Windows XP (KB981957)
Sicherheitsupdate für Windows XP (KB981997)
Sicherheitsupdate für Windows XP (KB982132)
Sicherheitsupdate für Windows XP (KB982214)
Sicherheitsupdate für Windows XP (KB982381)
Sicherheitsupdate für Windows XP (KB982665)
Sicherheitsupdate für Windows XP (KB982802)
Sierra Utilities
SketchUp 5
SketchUp 5 Architecture Library
SketchUp 5 Construction Library
SketchUp 5 Film & Stage Library
SketchUp 5 Landscape Architecture Library
SketchUp 5 Mechanical Design Library
SketchUp 5 People Library
SketchUp 5 Symbols Library
SketchUp 5 Transportation Library
SketchUp Viewer
SLD CODEC PACK 1.5 PRO beta6
SoundMAX
Suite Specific
Synaptics Pointing Device Driver
The Adventures of Zak McKracken
Total Commander (Remove or Repair)
TreeSize Free V2.4
Uninstall 1.0.0.1
Update für Windows XP (KB2141007)
Update für Windows XP (KB2345886)
Update für Windows XP (KB2467659)
Update für Windows XP (KB951072-v2)
Update für Windows XP (KB951978)
Update für Windows XP (KB955759)
Update für Windows XP (KB955839)
Update für Windows XP (KB967715)
Update für Windows XP (KB968389)
Update für Windows XP (KB971029)
Update für Windows XP (KB971737)
Update für Windows XP (KB973687)
Update für Windows XP (KB973815)
Update für Windows XP (KB976749)
Update für Windows XP (KB978207)
Update für Windows XP (KB980182)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
User's Guide
VBA (2627.01)
VC80CRTRedist - 8.0.50727.762
ViewCompanion Standard 6.00
WebFldrs XP
WIDCOMM Bluetooth Software
Winamp
Winamp Erkennungs-Plug-in
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage v1.3.0254.0
Windows Genuine Advantage Validation Tool (KB892130)
Windows Media Connect
Windows Media Format 11 runtime
Windows Media Player 10
Windows XP Service Pack 3
WinRAR Archivierer
WISO Sparbuch 2010
Works Update
Xilisoft AVI MOV Converter 6
Xilisoft DVD Creator 6
XML Paper Specification Shared Components Language Pack 1.0
Yahoo! Software Update
Yahoo! Toolbar
.
==== End Of File ===========================

vokue
vokue
Active Member
 
Posts: 6
Joined: June 16th, 2011, 7:38 pm

Re: google redirects, cannot connect to certain antimalwares

Unread postby Wingman » June 27th, 2011, 10:30 am

Cracked Software

You were requested to remove the cracked software and "cracking" files before any additional help would be provided. It has been determined that you altered logs in an effort to deceive your helper into believing you had removed the identified software.

You were made aware of the forum policy regarding cracked software (below) and given the opportunity to remove the software
May I draw your attention to the topic: ALL USERS OF THIS FORUM MUST READ THIS FIRST, which you should have read before posting for help.

The section here explains why we do not offer help for such computers. Thank you for your understanding.

Based on forum policy
This topic is now closed.

This decision is not open for discussion and will not be revisited.
User avatar
Wingman
Admin/Teacher
Admin/Teacher
 
Posts: 14347
Joined: July 1st, 2008, 1:34 pm
Location: East Coast, USA
Advertisement
Register to Remove


  • Similar Topics
    Replies
    Views
    Last post

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 287 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware