Falsche Links im google

  • Hallo, wenn ich mit google was suche und drücke auf den Link komm ich zu übelsten Seiten und anderen Seiten.
    Ich hatte schon spybot laufen lassen, fand verschiedene sachen , aber nach der rep. ist das immer noch , was sollich tun??

    Dazu kommt, dass bei mir die Umlaute falsch dargestellt sind:
    z. Bsp. wenn das bei euch ankommt: firefox Support ⢠mozillaZine Forums

    anbei mal mein hijachthis log:
    Logfile of HijackThis v1.99.1
    Scan saved at 15:19:21, on 09.02.2009
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v8.00 (8.00.6001.18372)

    Running processes:
    C:\WINXP\System32\smss.exe
    C:\WINXP\system32\winlogon.exe
    C:\WINXP\system32\services.exe
    C:\WINXP\system32\lsass.exe
    C:\WINXP\system32\svchost.exe
    C:\WINXP\System32\svchost.exe
    C:\WINXP\system32\svchost.exe
    C:\WINXP\system32\spoolsv.exe
    C:\Programme\IDT\5902XP_6033V_012208\WDM\STacSV.exe
    C:\Programme\Avira\AntiVir PersonalEdition Premium\sched.exe
    C:\Programme\Avira\AntiVir PersonalEdition Premium\avguard.exe
    C:\Programme\Avira\AntiVir PersonalEdition Premium\avesvc.exe
    C:\PROGRA~1\WinTV\EPG Services\System\EPGService.exe
    C:\Programme\Java\jre6\bin\jqs.exe
    C:\Programme\KEN!\KENCLI.EXE
    C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\WINXP\system32\nvsvc32.exe
    c:\Programme\Gemeinsame Dateien\Protexis\License Service\PsiService_2.exe
    C:\WINXP\system32\svchost.exe
    C:\Programme\Avira\AntiVir PersonalEdition Premium\avmailc.exe
    C:\Programme\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE
    C:\WINXP\system32\SearchIndexer.exe
    C:\WINXP\system32\wscntfy.exe
    C:\WINXP\Explorer.EXE
    C:\WINXP\system32\RUNDLL32.EXE
    C:\Programme\Avira\AntiVir PersonalEdition Premium\avgnt.exe
    C:\Programme\KEN!\kentbcli.exe
    C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch.exe
    C:\Programme\Java\jre6\bin\jusched.exe
    C:\Programme\Brother\Brmfcmon\BrMfcWnd.exe
    C:\WINXP\system32\ctfmon.exe
    C:\Programme\Spybot - Search & Destroy\TeaTimer.exe
    C:\Programme\Messenger\msmsgs.exe
    C:\Programme\Message-Bob\Message-Bob.exe
    C:\Programme\Brother\ControlCenter3\brccMCtl.exe
    C:\Programme\FRITZ!\IWatch.exe
    C:\Programme\Brother\Brmfcmon\BrMfcmon.exe
    C:\Programme\Windows Desktop Search\WindowsSearch.exe
    C:\Programme\Hardcopy\hardcopy.exe
    C:\WINXP\system32\wuauclt.exe
    C:\Programme\Mozilla Firefox\firefox.exe
    c:\programme\gemeinsame dateien\installshield\updateservice\isuspm.exe
    C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\agent.exe
    C:\lotus\org6\organize\org6.exe
    c:\programme\sfirm32\sfmain.exe
    c:\programme\sfirm32\SFAutomat.Exe
    C:\Programme\Sage\PC-Kaufmann Komplettpaket Pro 2007\seumain.exe
    C:\PROGRA~1\GEMEIN~1\SAGEKH~1\KHKSManC.exe
    C:\Programme\FRITZ!\FriFon32.exe
    C:\Programme\klickTel\Telefon- und Branchenbuch 2009\ktel32.exe
    C:\Programme\Microsoft Office\Office12\OUTLOOK.EXE
    C:\Programme\Adobe\Reader 9.0\Reader\AcroRd32.exe
    C:\Programme\Corel\CorelDRAW Graphics Suite 13\Programs\CorelDRW.exe
    C:\Programme\Microsoft Office\Office12\EXCEL.EXE
    C:\Programme\WinRAR\WinRAR.exe
    C:\DOKUME~1\Chef\LOKALE~1\Temp\Rar$EX00.594\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.t-online.de/cpm-redir/IE-8.html
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.affiliscout.com/network/action…40965&bid=10930
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.t-online.de/cpm-redir/IE-8.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer bereitgestellt von T-Online.de
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
    O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre6\bin\ssv.dll
    O2 - BHO: IEHlprObj Class - {CE7C3CF0-4B15-11D1-ABED-709549C10000} - C:\lotus\org6\organize\iehelper.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    O2 - BHO: (no name) - {FFFFFFA2-C40D-475D-8C91-9A9876ACFCDD} - C:\PROGRA~1\klickTel\KLICKT~1\KTTOOL~1.DLL
    O3 - Toolbar: &klickTel Toolbar - {FFFF8BAD-BB43-4A08-8258-BFB40A29FBD7} - C:\PROGRA~1\klickTel\KLICKT~1\KTTOOL~1.DLL
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINXP\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINXP\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [avgnt] "C:\Programme\Avira\AntiVir PersonalEdition Premium\avgnt.exe" /min
    O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
    O4 - HKLM\..\Run: [SfWinStartInfo] C:\Programme\SFirm32\sfWinStartupInfo.exe
    O4 - HKLM\..\Run: [KEN Taskbar Client] "C:\Programme\KEN!\kentbcli.exe"
    O4 - HKLM\..\Run: [ISUSPM Startup] "c:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\isuspm.exe" -startup
    O4 - HKLM\..\Run: [ISUSScheduler] "C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch.exe" -start
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\Programme\Gemeinsame Dateien\Ahead\Lib\NeroCheck.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programme\Java\jre6\bin\jusched.exe"
    O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
    O4 - HKLM\..\Run: [BrMfcWnd] C:\Programme\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN
    O4 - HKLM\..\Run: [ControlCenter3] C:\Programme\Brother\ControlCenter3\brctrcen.exe /autorun
    O4 - HKLM\..\RunOnce: [SpybotDeletingA6878] command /c del "c:\resycled\boot.com"
    O4 - HKLM\..\RunOnce: [SpybotDeletingC8833] cmd /c del "c:\resycled\boot.com"
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINXP\system32\ctfmon.exe
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programme\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Programme\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [Message-Bob] C:\Programme\Message-Bob\Message-Bob.exe /a
    O4 - HKCU\..\RunOnce: [SpybotDeletingB2768] command /c del "c:\resycled\boot.com"
    O4 - HKCU\..\RunOnce: [SpybotDeletingD6111] cmd /c del "c:\resycled\boot.com"
    O4 - Startup: Hardcopy.LNK = C:\Programme\Hardcopy\hardcopy.exe
    O4 - Global Startup: ISDNWatch.lnk = C:\Programme\FRITZ!\IWatch.exe
    O4 - Global Startup: Windows Search.lnk = C:\Programme\Windows Desktop Search\WindowsSearch.exe
    O8 - Extra context menu item: Nach Microsoft E&xel exportieren - res://C:\PROGRA~1\MICROS~2\Office12\http://EXCEL.EXE/3000
    O9 - Extra button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Web Entry - {B4E30F61-16D9-11D3-85D1-005004229569} - C:\lotus\org6\organize\bandobjs.dll
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
    O10 - Broken Internet access because of LSP provider 'avsda.dll' missing
    O11 - Options group: [INTERNATIONAL] International
    O11 - Options group: [TABS] Tabbed Browsing
    O17 - HKLM\System\CCS\Services\Tcpip\..\{165D87F3-B221-4D39-8135-6CCAE67A541A}: NameServer = 192.168.114.254
    O17 - HKLM\System\CCS\Services\Tcpip\..\{1CD483B7-B8B6-419F-B021-AFCC732EE76C}: NameServer = 208.67.220.220,208.67.222.222
    O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 208.67.220.220,208.67.222.222
    O17 - HKLM\System\CS1\Services\Tcpip\..\{165D87F3-B221-4D39-8135-6CCAE67A541A}: NameServer = 192.168.114.254
    O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 208.67.220.220,208.67.222.222
    O17 - HKLM\System\CS2\Services\Tcpip\..\{165D87F3-B221-4D39-8135-6CCAE67A541A}: NameServer = 192.168.114.254
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 208.67.220.220,208.67.222.222
    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
    O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Help\hxds.dll
    O20 - Winlogon Notify: dimsntfy - %SystemRoot%\System32\dimsntfy.dll (file missing)
    O20 - Winlogon Notify: WgaLogon - C:\WINXP\SYSTEM32\WgaLogon.dll
    O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINXP\system32\wpdshserviceobj.dll
    O23 - Service: Avira AntiVir Premium MailGuard (AntiVirMailService) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Premium\avmailc.exe
    O23 - Service: Avira AntiVir Premium Planer (AntiVirScheduler) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Premium\sched.exe
    O23 - Service: Avira AntiVir Premium Guard (AntiVirService) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Premium\avguard.exe
    O23 - Service: Avira AntiVir Premium WebGuard (antivirwebservice) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE
    O23 - Service: Avira AntiVir Premium MailGuard Hilfsdienst (AVEService) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Premium\avesvc.exe
    O23 - Service: EPGService - Hauppauge Computer Works - C:\PROGRA~1\WinTV\EPG Services\System\EPGService.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Unknown owner - C:\Programme\Java\jre6\bin\jqs.exe" -service -config "C:\Programme\Java\jre6\lib\deploy\jqs\jqs.conf (file missing)
    O23 - Service: AVM KEN Klient (KEN Client Service) - AVM Berlin - C:\Programme\KEN!\KENCLI.EXE
    O23 - Service: NBService - Nero AG - C:\Programme\Nero\Nero 7\Nero BackItUp\NBService.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINXP\system32\nvsvc32.exe
    O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Programme\Gemeinsame Dateien\Protexis\License Service\PsiService_2.exe
    O23 - Service: ServiceLayer - Nokia. - C:\Programme\PC Connectivity Solution\ServiceLayer.exe
    O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Programme\IDT\5902XP_6033V_012208\WDM\STacSV.exe

  • Zitat von octopussy9


    MSIE: Internet Explorer v8.00 (8.00.6001.18372)


    Das das derzeit nur ne BETA ist, ist dir bekannt ?
    Mit einer Beta bzw Beta-Browser sollte man nicht surfen..
    (Sicherheitslücken etc..)

    Zitat von octopussy9


    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programme\Spybot - Search & Destroy\TeaTimer.exe


    Wenn der hier aktiv ist, kriegst Du diese Dinge hier nicht weg, auch nicht per HiJack

    Zitat von octopussy9


    Running processes:
    O4 - HKLM\..\RunOnce: [SpybotDeletingA6878] command /c del "c:\resycled\boot.com"
    O4 - HKLM\..\RunOnce: [SpybotDeletingC8833] cmd /c del "c:\resycled\boot.com"
    O4 - HKCU\..\RunOnce: [SpybotDeletingB2768] command /c del "c:\resycled\boot.com"
    O4 - HKCU\..\RunOnce: [SpybotDeletingD6111] cmd /c del "c:\resycled\boot.com"


    Sowas ggf. vorgekommen ?
    http://extreme.pcgameshardware.de/windows-xp-vis…beitsplatz.html

    Info´s/Lösung im Link


    Ist openDNS, sollte alles in Ordnung sein

    mehr ist mir nicht weiter aufgefallen....

    Gruß
    apajazz37

  • was soll ich nur machen habe jetzt mal den Firefox deinstalliert und wieder installiert jetzt ist es aber noch schlimmer????

    hier nochmal das Protokoll

    Logfile of HijackThis v1.99.1
    Scan saved at 10:42:42, on 10.02.2009
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v8.00 (8.00.6001.18372)

    Running processes:
    C:\WINXP\System32\smss.exe
    C:\WINXP\system32\winlogon.exe
    C:\WINXP\system32\services.exe
    C:\WINXP\system32\lsass.exe
    C:\WINXP\system32\svchost.exe
    C:\WINXP\System32\svchost.exe
    C:\WINXP\system32\svchost.exe
    C:\Programme\IDT\5902XP_6033V_012208\WDM\STacSV.exe
    C:\Programme\Avira\AntiVir PersonalEdition Premium\sched.exe
    C:\Programme\Avira\AntiVir PersonalEdition Premium\avguard.exe
    C:\Programme\Avira\AntiVir PersonalEdition Premium\avesvc.exe
    C:\PROGRA~1\WinTV\EPG Services\System\EPGService.exe
    C:\Programme\Java\jre6\bin\jqs.exe
    C:\Programme\KEN!\KENCLI.EXE
    C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\WINXP\system32\nvsvc32.exe
    c:\Programme\Gemeinsame Dateien\Protexis\License Service\PsiService_2.exe
    C:\WINXP\system32\svchost.exe
    C:\Programme\Avira\AntiVir PersonalEdition Premium\avmailc.exe
    C:\Programme\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE
    C:\WINXP\system32\SearchIndexer.exe
    C:\WINXP\system32\wscntfy.exe
    C:\WINXP\Explorer.EXE
    C:\WINXP\system32\RUNDLL32.EXE
    C:\Programme\Avira\AntiVir PersonalEdition Premium\avgnt.exe
    C:\Programme\KEN!\kentbcli.exe
    C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch.exe
    C:\Programme\Java\jre6\bin\jusched.exe
    C:\Programme\Brother\Brmfcmon\BrMfcWnd.exe
    C:\WINXP\system32\ctfmon.exe
    C:\Programme\Messenger\msmsgs.exe
    C:\Programme\Brother\Brmfcmon\BrMfcmon.exe
    C:\Programme\Message-Bob\Message-Bob.exe
    C:\Programme\Brother\ControlCenter3\brccMCtl.exe
    C:\Programme\Spybot - Search & Destroy\TeaTimer.exe
    C:\Programme\FRITZ!\IWatch.exe
    C:\Programme\Hardcopy\hardcopy.exe
    C:\WINXP\system32\wuauclt.exe
    C:\WINXP\system32\spoolsv.exe
    C:\WINXP\system32\rundll32.exe
    C:\Programme\Microsoft Office\Office12\OUTLOOK.EXE
    C:\Programme\Microsoft Office\Office12\EXCEL.EXE
    C:\Programme\Opera\opera.exe
    C:\WINXP\system32\mspaint.exe
    C:\Programme\klickTel\Telefon- und Branchenbuch 2009\ktel32.exe
    C:\Programme\Sage\PC-Kaufmann Komplettpaket Pro 2007\seumain.exe
    C:\PROGRA~1\GEMEIN~1\SAGEKH~1\KHKSManC.exe
    C:\Programme\Adobe\Reader 9.0\Reader\AcroRd32.exe
    C:\hijackthis_199\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.t-online.de/cpm-redir/IE-8.html
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.affiliscout.com/network/action…40965&bid=10930
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.t-online.de/cpm-redir/IE-8.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer bereitgestellt von T-Online.de
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
    O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre6\bin\ssv.dll
    O2 - BHO: IEHlprObj Class - {CE7C3CF0-4B15-11D1-ABED-709549C10000} - C:\lotus\org6\organize\iehelper.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    O2 - BHO: (no name) - {FFFFFFA2-C40D-475D-8C91-9A9876ACFCDD} - C:\PROGRA~1\klickTel\KLICKT~1\KTTOOL~1.DLL
    O3 - Toolbar: &klickTel Toolbar - {FFFF8BAD-BB43-4A08-8258-BFB40A29FBD7} - C:\PROGRA~1\klickTel\KLICKT~1\KTTOOL~1.DLL
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINXP\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINXP\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [avgnt] "C:\Programme\Avira\AntiVir PersonalEdition Premium\avgnt.exe" /min
    O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
    O4 - HKLM\..\Run: [SfWinStartInfo] C:\Programme\SFirm32\sfWinStartupInfo.exe
    O4 - HKLM\..\Run: [KEN Taskbar Client] "C:\Programme\KEN!\kentbcli.exe"
    O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\isuspm.exe" -startup
    O4 - HKLM\..\Run: [ISUSScheduler] "C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch.exe" -start
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\Programme\Gemeinsame Dateien\Ahead\Lib\NeroCheck.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programme\Java\jre6\bin\jusched.exe"
    O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
    O4 - HKLM\..\Run: [BrMfcWnd] C:\Programme\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN
    O4 - HKLM\..\Run: [ControlCenter3] C:\Programme\Brother\ControlCenter3\brctrcen.exe /autorun
    O4 - HKLM\..\RunOnce: [SpybotDeletingA6878] command /c del "c:\resycled\boot.com"
    O4 - HKLM\..\RunOnce: [SpybotDeletingC8833] cmd /c del "c:\resycled\boot.com"
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINXP\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Programme\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [Message-Bob] C:\Programme\Message-Bob\Message-Bob.exe /a
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programme\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKCU\..\RunOnce: [SpybotDeletingB2768] command /c del "c:\resycled\boot.com"
    O4 - HKCU\..\RunOnce: [SpybotDeletingD6111] cmd /c del "c:\resycled\boot.com"
    O4 - Startup: Hardcopy.LNK = C:\Programme\Hardcopy\hardcopy.exe
    O4 - Global Startup: ISDNWatch.lnk = C:\Programme\FRITZ!\IWatch.exe
    O8 - Extra context menu item: Nach Microsoft E&xel exportieren - res://C:\PROGRA~1\MICROS~2\Office12\http://EXCEL.EXE/3000
    O9 - Extra button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Web Entry - {B4E30F61-16D9-11D3-85D1-005004229569} - C:\lotus\org6\organize\bandobjs.dll
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
    O10 - Broken Internet access because of LSP provider 'avsda.dll' missing
    O11 - Options group: [INTERNATIONAL] International
    O11 - Options group: [TABS] Tabbed Browsing
    O17 - HKLM\System\CCS\Services\Tcpip\..\{165D87F3-B221-4D39-8135-6CCAE67A541A}: NameServer = 192.168.114.254
    O17 - HKLM\System\CCS\Services\Tcpip\..\{1CD483B7-B8B6-419F-B021-AFCC732EE76C}: NameServer = 85.255.116.165,85.255.112.141
    O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.116.165,85.255.112.141
    O17 - HKLM\System\CS1\Services\Tcpip\..\{165D87F3-B221-4D39-8135-6CCAE67A541A}: NameServer = 192.168.114.254
    O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 85.255.116.85,85.255.112.147
    O17 - HKLM\System\CS2\Services\Tcpip\..\{165D87F3-B221-4D39-8135-6CCAE67A541A}: NameServer = 192.168.114.254
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.165,85.255.112.141
    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
    O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Help\hxds.dll
    O20 - Winlogon Notify: dimsntfy - %SystemRoot%\System32\dimsntfy.dll (file missing)
    O20 - Winlogon Notify: WgaLogon - C:\WINXP\SYSTEM32\WgaLogon.dll
    O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINXP\system32\wpdshserviceobj.dll
    O23 - Service: Avira AntiVir Premium MailGuard (AntiVirMailService) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Premium\avmailc.exe
    O23 - Service: Avira AntiVir Premium Planer (AntiVirScheduler) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Premium\sched.exe
    O23 - Service: Avira AntiVir Premium Guard (AntiVirService) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Premium\avguard.exe
    O23 - Service: Avira AntiVir Premium WebGuard (antivirwebservice) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE
    O23 - Service: Avira AntiVir Premium MailGuard Hilfsdienst (AVEService) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Premium\avesvc.exe
    O23 - Service: EPGService - Hauppauge Computer Works - C:\PROGRA~1\WinTV\EPG Services\System\EPGService.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Unknown owner - C:\Programme\Java\jre6\bin\jqs.exe" -service -config "C:\Programme\Java\jre6\lib\deploy\jqs\jqs.conf (file missing)
    O23 - Service: AVM KEN Klient (KEN Client Service) - AVM Berlin - C:\Programme\KEN!\KENCLI.EXE
    O23 - Service: NBService - Nero AG - C:\Programme\Nero\Nero 7\Nero BackItUp\NBService.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINXP\system32\nvsvc32.exe
    O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Programme\Gemeinsame Dateien\Protexis\License Service\PsiService_2.exe
    O23 - Service: ServiceLayer - Nokia. - C:\Programme\PC Connectivity Solution\ServiceLayer.exe
    O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Programme\IDT\5902XP_6033V_012208\WDM\STacSV.exe