*http://default.home*/TASKMGRU.EXE<-->Trojan.Win32.Agent.cx |
||
---|---|---|
#0
| ||
29.04.2005, 17:52
...neu hier
Beiträge: 8 |
||
|
||
30.04.2005, 01:40
Ehrenmitglied
Beiträge: 29434 |
#17
AcoN
C:\Dokumente und Einstellungen\AcoN\Anwendungsdaten\SBSoft<--loeschen #TuneUp2004 (30 Tage free) http://www.tuneup.de/products/tuneup-utilities/ Cleanup repair -->TuneUp Diskcleaner Cleanup repair -->Registry Cleaner #RegCleaner (Deutsch) (Tip: Lade RegCleaner, stelle das Tool in Deutsch ein und saeubere ueber <Tools<Registry saeubern<alles durchfuehren < den PC (du kannst alles angezeigte Loeschen, denn es verbleibt eine Sicherung) http://www.chip.de/downloads/c_downloads_8830516.html __________ MfG Sabina rund um die PC-Sicherheit |
|
|
||
30.04.2005, 02:42
Ehrenmitglied
Beiträge: 29434 |
#18
Zitat Sabina postete __________ MfG Sabina rund um die PC-Sicherheit |
|
|
||
30.04.2005, 02:42
Ehrenmitglied
Beiträge: 29434 |
#19
hallo sabina. vielen dank für die schnelle hilfestellung!
hier ist meine escan-auswertung: Tue Apr 26 23:36:21 2005 => File C:\WINNT\system32\TASKMGRU.EXE infected by "Trojan.Win32.Agent.cx" Virus. Action Taken: No Action Taken. Tue Apr 26 23:36:21 2005 => File C:\WINNT\system32\MSIMN32.EXE infected by "Trojan.Win32.Agent.cx" Virus. Action Taken: No Action Taken. Tue Apr 26 23:36:22 2005 => File C:\WINNT\bhoass.dll infected by "Trojan.Win32.Agent.cx" Virus. Action Taken: No Action Taken. Tue Apr 26 23:36:27 2005 => File C:\WINNT\explorer32dbg.exe infected by "Trojan.Win32.Agent.cx" Virus. Action Taken: No Action Taken. Tue Apr 26 23:36:27 2005 => File C:\WINNT\iexplore_dbg.exe infected by "Trojan.Win32.Agent.cx" Virus. Action Taken: No Action Taken. Tue Apr 26 23:36:31 2005 => File C:\WINNT\system32\MSIMN32.EXE infected by "Trojan.Win32.Agent.cx" Virus. Action Taken: No Action Taken. Tue Apr 26 23:36:31 2005 => File C:\WINNT\system32\TASKMGRU.EXE infected by "Trojan.Win32.Agent.cx" Virus. Action Taken: No Action Taken. Tue Apr 26 23:36:40 2005 => System found infected with Alexa Spyware/Adware ({c95fe080-8f5d-11d2-a20b-00aa003c157a})! Action taken: No Action Taken. Tue Apr 26 23:36:40 2005 => File System Found infected by "Alexa Spyware/Adware" Virus. Action Taken: No Action Taken. Tue Apr 26 23:36:40 2005 => System found infected with powerscan Spyware/Adware! Action taken: No Action Taken. Tue Apr 26 23:36:40 2005 => File System Found infected by "powerscan Spyware/Adware" Virus. Action Taken: No Action Taken. Tue Apr 26 23:36:40 2005 => System found infected with power scan Spyware/Adware! Action taken: No Action Taken. Tue Apr 26 23:36:40 2005 => System found infected with ist Spyware/Adware! Action taken: No Action Taken. Tue Apr 26 23:36:40 2005 => File System Found infected by "ist Spyware/Adware" Virus. Action Taken: No Action Taken. Tue Apr 26 23:36:42 2005 => System found infected with WindUpdate Spyware/Adware (ide21201.vxd)! Action taken: No Action Taken. Tue Apr 26 23:36:42 2005 => File System Found infected by "WindUpdate Spyware/Adware" Virus. Action Taken: No Action Taken. Tue Apr 26 23:36:44 2005 => File C:\WINNT\NDNuninstall6_38.exe infected by "not-a-virus:AdWare.NewDotNet" Virus. Action Taken: No Action Taken. Tue Apr 26 23:36:46 2005 => File C:\WINNT\stlbd.dll infected by "not-a-virus:AdWare.ToolBar.ToolBand.a" Virus. Action Taken: No Action Taken. Tue Apr 26 23:38:40 2005 => File C:\WINNT\system32\winhlpp32.exe infected by "Backdoor.Win32.Agobot.abf" Virus. Action Taken: No Action Taken. Tue Apr 26 23:39:12 2005 => File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\AntiSpyInfo\bhoass.dll.q_1C38400_q infected by "Trojan.Win32.Agent.cx" Virus. Action Taken: No Action Taken. Tue Apr 26 23:39:13 2005 => File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\AntiSpyInfo\MSIMN32.EXE.q_63A7A00_q infected by "Trojan.Win32.Agent.cx" Virus. Action Taken: No Action Taken. Tue Apr 26 23:39:13 2005 => File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\AntiSpyInfo\newdotnet3_88.dll.q_AA99002_q infected by "not-a-virus:AdWare.NewDotNet" Virus. Action Taken: No Action Taken. Tue Apr 26 23:39:13 2005 => File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\AntiSpyInfo\MSIMN32.EXE.q_63A7A00_q infected by "Trojan.Win32.Agent.cx" Virus. Action Taken: No Action Taken. Tue Apr 26 23:39:13 2005 => File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\AntiSpyInfo\newdotnet3_88.dll.q_AA99002_q infected by "not-a-virus:AdWare.NewDotNet" Virus. Action Taken: No Action Taken. Tue Apr 26 23:39:13 2005 => File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\AntiSpyInfo\TASKMGRU.EXE.q_63A7A00_q infected by "Trojan.Win32.Agent.cx" Virus. Action Taken: No Action Taken. Tue Apr 26 23:39:13 2005 => File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\AntiSpyInfo\whiehlpr.dll.q_16C0A001_q infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. Tue Apr 26 23:39:13 2005 => File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\AntiSpyInfo\WToolsB.dll.q_1F4BEA02_q infected by "not-a-virus:AdWare.Wintol.t" Virus. Action Taken: No Action Taken. Tue Apr 26 23:40:01 2005 => File C:\Dokumente und Einstellungen\knut1\Desktop\backups\backup-20050426-224156-158.dll infected by "Trojan.Win32.Agent.cx" Virus. Action Taken: No Action Taken. Tue Apr 26 23:40:02 2005 => File C:\Dokumente und Einstellungen\knut1\Desktop\backups\backup-20050426-224236-705.dll infected by "Trojan.Win32.Agent.cx" Virus. Action Taken: No Action Taken. Tue Apr 26 23:40:02 2005 => File C:\Dokumente und Einstellungen\knut1\Desktop\backups\backup-20050426-224906-624.dll infected by "Trojan.Win32.Agent.cx" Virus. Action Taken: No Action Taken. Tue Apr 26 23:41:08 2005 => File C:\explorer.cab infected by "Trojan-Downloader.Win32.Small.or" Virus. Action Taken: No Action Taken. Tue Apr 26 23:41:08 2005 => File C:\info6_s.cab infected by "Trojan.Win32.Dialer.t" Virus. Action Taken: No Action Taken. Tue Apr 26 23:43:47 2005 => Scanning Folder: C:\Programme\AVPersonal\INFECTED\*.* Tue Apr 26 23:43:47 2005 => Scanning File C:\Programme\AVPersonal\INFECTED\WLDR.DLL.VIR Tue Apr 26 23:43:47 2005 => File C:\Programme\AVPersonal\INFECTED\WLDR.DLL.VIR infected by "Trojan-Downloader.Win32.Agent.le" Virus. Action Taken: No Action Taken. Tue Apr 26 23:43:47 2005 => Scanning File C:\Programme\AVPersonal\INFECTED\WToolsA.VIR Tue Apr 26 23:43:47 2005 => File C:\Programme\AVPersonal\INFECTED\WToolsA.VIR infected by "not-a-virus:AdWare.Wintol.t" Virus. Action Taken: No Action Taken. Tue Apr 26 23:43:47 2005 => Scanning File C:\Programme\AVPersonal\INFECTED\WToolsA.VIR00 Tue Apr 26 23:43:47 2005 => File C:\Programme\AVPersonal\INFECTED\WToolsA.VIR00 infected by "not-a-virus:AdWare.Wintol.t" Virus. Action Taken: No Action Taken. Tue Apr 26 23:46:20 2005 => File C:\Programme\Gemeinsame Dateien\WinTools\WSup.exe infected by "not-a-virus:AdWare.Wintol.t" Virus. Action Taken: No Action Taken. Wed Apr 27 00:05:51 2005 => File C:\WINNT\Downloaded Program Files\HDPlugin1101.dll infected by "not-a-virus:AdWare.Gator.1101" Virus. Action Taken: No Action Taken. Wed Apr 27 00:05:52 2005 => File C:\WINNT\Downloaded Program Files\webdlg32.dll infected by "not-a-virus:AdWare.ToolBar.SBSoft.g" Virus. Action Taken: No Action Taken. Wed Apr 27 00:09:38 2005 => File C:\WINNT\NDNuninstall6_38.exe infected by "not-a-virus:AdWare.NewDotNet" Virus. Action Taken: No Action Taken. Wed Apr 27 00:11:28 2005 => File C:\WINNT\stlbd.dll infected by "not-a-virus:AdWare.ToolBar.ToolBand.a" Virus. Action Taken: No Action Taken. Wed Apr 27 00:16:29 2005 => File C:\WINNT\system32\winhlpp32.exe infected by "Backdoor.Win32.Agobot.abf" Virus. Action Taken: No Action Taken. Wed Apr 27 00:32:29 2005 => File C:\WINNT\Downloaded Program Files\HDPlugin1101.dll infected by "not-a-virus:AdWare.Gator.1101" Virus. Action Taken: No Action Taken. Wed Apr 27 00:32:29 2005 => File C:\WINNT\Downloaded Program Files\webdlg32.dll infected by "not-a-virus:AdWare.ToolBar.SBSoft.g" Virus. Action Taken: No Action Taken. Wed Apr 27 00:35:37 2005 => Total Objects Scanned: 44708 Wed Apr 27 00:35:37 2005 => Total Virus(es) Found: 37 Wed Apr 27 00:35:37 2005 => Total Disinfected Files: 0 Wed Apr 27 00:35:37 2005 => Total Files Renamed: 0 Wed Apr 27 00:35:37 2005 => Total Deleted Objects: 0 Wed Apr 27 00:35:37 2005 => Total Errors: 62 Wed Apr 27 00:35:37 2005 => Time Elapsed: 00:59:31 Wed Apr 27 00:35:37 2005 => ***** Scanning complete. ***** Wed Apr 27 00:35:37 2005 => Virus Database Date: 2005/04/25 Wed Apr 27 00:35:37 2005 => Virus Database Count: 127328 Wed Apr 27 00:35:37 2005 => Scan Completed. __________ MfG Sabina rund um die PC-Sicherheit |
|
|
||
30.04.2005, 02:48
Ehrenmitglied
Beiträge: 29434 |
#20
Hallo@no_idea
•KillBox http://www.bleepingcomputer.com/files/killbox.php •Delete File on Reboot <--anhaken und klick auf das rote Kreuz, wenn gefragt wird, ob "Do you want to reboot? "----> klicke auf "no",und kopiere das naechste rein, erst beim letzten auf "yes" C:\WINNT\system32\TASKMGRU.EXE C:\WINNT\system32\MSIMN32.EXE C:\WINNT\bhoass.dll C:\WINNT\explorer32dbg.exe C:\WINNT\iexplore_dbg.exe C:\WINNT\NDNuninstall6_38.exe C:\WINNT\stlbd.dll C:\WINNT\system32\winhlpp32.exe C:\explorer.cab C:\info6_s.cab C:\Programme\Gemeinsame Dateien\WinTools\WSup.exe C:\WINNT\Downloaded Program Files\HDPlugin1101.dll C:\WINNT\Downloaded Program Files\webdlg32.dll PC neustarten •Desinfektion von W32/Agobot Lade: agobtgui.com (du musst als Administrator angemeldet sein --> scannen) http://bilder.informationsarchiv.net/Nikitas_Tools/agobtgui.com dann scanne mit pandawenn dein Antivirus"meckert"--> nicht beachten •Online-Scann (Panda)-->berichte vom Scann http://www.pandasoftware.com/activescan/com/activescan_principal.htm __________ MfG Sabina rund um die PC-Sicherheit |
|
|
||
05.05.2005, 18:40
...neu hier
Beiträge: 2 |
#21
Hallo@Sabina
2 fragen: wo muss ich mich denn als Administrator anmelden um mit agobtgui.com richtig zu scannen? und wie muss ich die active x steuerelemente einstellungen verändern um panda runter laden zu können?? danke, thomas |
|
|
||
Adware:Adware/SaveNow No disinfected Windows Registry
Adware:Adware/SBSoft No disinfected C:\Dokumente und Einstellungen\AcoN\Anwendungsdaten\SBSoft
Adware:Adware/Startpage.NA No disinfected Windows Registry
Adware:Adware/P2PNetworking No disinfected C:\WINDOWS\System32\P2P Networking
Possible Virus. No disinfected C:\Programme\EA Games\Battlefield 1942\fpupdate.exe
Possible Virus. No disinfected D:\Eigene Dateien in D\Downloads\BF 1942\BATTLEFIELD\BF1942.exe
Possible Virus. No disinfected D:\Eigene Dateien in D\Downloads\BF 1942\BATTLEFIELD.1942.12.ENG.LINEZERO.NOCD.zip[BF1942.exe]