Hallo, ich bräuchte einmal dringend Hilfe, wie ich den Trojaner Antimalware Doctor von meinem PC bekomme. Logfile habe ich schon gemacht: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 10:28:23, on 06.05.2010 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v8.00 (8.00.6001.18813) Boot mode: Normal Running processes: C:Windowssystem32taskeng.exe C:Windowssystem32Dwm.exe C:WindowsWdyqib.exe C:Program FilesWindows DefenderMSASCui.exe C:WindowsSystem32hkcmd.exe C:WindowsSystem32igfxpers.exe C:Program FilesAviraAntiVir Desktopavgnt.exe C:Program FilesiTunesiTunesHelper.exe C:WindowsWindowsMobilewmdSync.exe C:WindowsSystem32regsvr32.exe C:Windowsehomeehtray.exe C:WindowsSystem32rundll32.exe C:Windowssystem32igfxsrvc.exe C:Program FilesInternet Exploreriexplore.exe C:Windowsehomeehmsas.exe C:Program FilesInternet Exploreriexplore.exe C:Program FilesMozilla Firefoxfirefox.exe C:Windowssystem32conime.exe C:Windowsexplorer.exe C:Windowssystem32spoolDRIVERSW32X863E_FAMTE JE.EXE C:Program FilesMicrosoft OfficeOffice12WINWORD.EXE C:UsersTinkaAppDataLocalTempWlh.exe F:DownloadsHiJackThis.exe R1 – HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://homepage.packardbell.com/rdr….=easynote_sl45 R1 – HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 – HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.google.de/ R1 – HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://homepage.packardbell.com/rdr….=easynote_sl45 R1 – HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 – HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 – HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://homepage.packardbell.com/rdr….=easynote_sl45 R0 – HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = R0 – HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch = R0 – HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = F2 – REG:system.ini: UserInit=C:Windowssystem32userinit.exe,C:Windo wssystem32sdra64.exe, O1 – Hosts: ::1 localhost O2 – BHO: hotrevenue browser enhancer – {106C6DDA-2257-1CD5-3877-407DF9402912} – C:Windowssystem32vdbawjizwjj.dll O2 – BHO: AcroIEHelperStub – {18DF081C-E8AD-4283-A596-FA578C2EBDC3} – C:Program FilesCommon FilesAdobeAcrobatActiveXAcroIEHelperShim.dll O2 – BHO: SmartAds browser enhancer lxkvkkeq – {307025FA-8B85-43DF-A1D5-DC9EE2E4C2FD} – C:Windowssystem32lxkvkkeq.dll O2 – BHO: Java(tm) Plug-In 2 SSV Helper – {DBC80044-A445-435b-BC74-9C25C1C588A9} – C:Program FilesJavajre6binjp2ssv.dll O4 – HKLM..Run: [Windows Defender] %ProgramFiles%Windows DefenderMSASCui.exe -hide O4 – HKLM..Run: [IgfxTray] C:Windowssystem32igfxtray.exe O4 – HKLM..Run: [HotKeysCmds] C:Windowssystem32hkcmd.exe O4 – HKLM..Run: [Persistence] C:Windowssystem32igfxpers.exe O4 – HKLM..Run: [avgnt] “C:Program FilesAviraAntiVir Desktopavgnt.exe” /min O4 – HKLM..Run: [iTunesHelper] “C:Program FilesiTunesiTunesHelper.exe” O4 – HKLM..Run: [Windows Mobile-based device management] %windir%WindowsMobilewmdSync.exe O4 – HKLM..Run: [ezLife] rundll32 “evyiyyjb.dll”,,Run O4 – HKLM..Run: [oadujibkbyau] C:WindowsSystem32regsvr32.exe /s “C:Windowssystem32vdbawjizwjj.dll” O4 – HKCU..Run: [ehTray.exe] C:WindowsehomeehTray.exe O4 – HKCU..Run: [Canaveral] rundll32.exe C:Windowssystem32sshnas21.dll,BackupReadW O4 – HKCU..Run: [M5T8QL3YW3] C:UsersTinkaAppDataLocalTempWlh.exe O4 – HKCU..Run: [gotnewupdate000.exe] C:UsersTinkaAppDataRoaming 8D8B62651E06306616 DF6716E193CDFgotnewupdate000.exe O4 – HKUSS-1-5-19..Run: [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe /detectMem (User ‘LOKALER DIENST’) O4 – HKUSS-1-5-19..Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User ‘LOKALER DIENST’) O4 – HKUSS-1-5-20..Run: [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe /detectMem (User ‘NETZWERKDIENST’) O4 – Startup: Antimalware Doctor.lnk = C:UsersTinkaAppDataRoaming 8D8B62651E06306616 DF6716E193CDFgotnewupdate000.exe O8 – Extra context menu item: Nach Microsoft E&xel exportieren – res://C:PROGRA~1MICROS~2Office12EXCEL.EXE/3000 O9 – Extra button: Research – {92780B25-18CC-41C8-B9BE-3C9C571A8263} – C:PROGRA~1MICROS~2Office12REFIEBAR.DLL O9 – Extra button: ICQ6 – {E59EB121-F339-4851-A3BA-FE49C35617C2} – C:Program FilesICQ6.5ICQ.exe O9 – Extra ‘Tools’ menuitem: ICQ6 – {E59EB121-F339-4851-A3BA-FE49C35617C2} – C:Program FilesICQ6.5ICQ.exe O16 – DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} – http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O22 – SharedTaskScheduler: Component Categories cache daemon – {8C7461EF-2B13-11d2-BE35-3078302C2030} – C:Windowssystem32browseui.dll O23 – Service: Adobe Active File Monitor V6 (AdobeActiveFileMonitor6.0) – Unknown owner – C:Program FilesAdobePhotoshop Elements 6.0PhotoshopElementsFileAgent.exe O23 – Service: Avira AntiVir Planer (AntiVirSchedulerService) – Avira GmbH – C:Program FilesAviraAntiVir Desktopsched.exe O23 – Service: Avira AntiVir Guard (AntiVirService) – Avira GmbH – C:Program FilesAviraAntiVir Desktopavguard.exe O23 – Service: Cisco Systems, Inc. VPN Service (CVPND) – Cisco Systems, Inc. – C:Program FilesCisco SystemsVPN Clientcvpnd.exe O23 – Service: Empowering Technology Service (ETService) – Unknown owner – C:Program FilesPackard BellPackard Bell Recovery ManagementServiceETService.exe O23 – Service: FLEXnet Licensing Service – Macrovision Europe Ltd. – C:Program FilesCommon FilesMacrovision SharedFLEXnet PublisherFNPLicensingService.exe O23 – Service: iPod-Dienst (iPod Service) – Apple Inc. – C:Program FilesiPodbiniPodService.exe O23 – Service: NMIndexingService – Nero AG – C:Program FilesCommon FilesNeroLibNMIndexingService.exe O23 – Service: Norton Internet Security – Unknown owner – C:Program FilesNorton Internet SecurityEngine16.0.0.125ccSvcHst.exe (file missing) O23 – Service: O2FLASH (o2flash) – O2Micro International – C:Windowssystem32DRIVERSo2flash.exe O23 – Service: PLFlash DeviceIoControl Service – Prolific Technology Inc. – C:Windowssystem32IoctlSvc.exe O23 – Service: @%SystemRoot%System32TuneUpDefragService.exe,-1 (TuneUp.Defrag) – TuneUp Software – C:WindowsSystem32TuneUpDefragService.exe O23 – Service: @%SystemRoot%System32TUProgSt.exe,-1 (TuneUp.ProgramStatisticsSvc) – TuneUp Software – C:WindowsSystem32TUProgSt.exe — End of file – 6816 bytes Kann mir jemand helfen? Das wäre echt super. Vielen Dank!!