www cool websearch problem

#0
04.12.2005, 18:26
Member

Beiträge: 16
#1 hi leute
vorhin wollte ich mal wieder die tolle seite cracktoplist besuchen...
schwups hadde ich en haufen spyware malware etc aufn rechner, das meiste habe ich bisher entfernt, aber estreten immernoch paar probleme auf

da ich mich mit hijackthis nich so auskenne brauch ich mal eure hilfe

hier mein logfile

Logfile of HijackThis v1.99.1
Scan saved at 18:22:12, on 04.12.2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programme\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Programme\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Programme\Gemeinsame Dateien\Softwin\BitDefender Communicator\xcommsvr.exe
C:\Programme\Gemeinsame Dateien\Softwin\BitDefender Scan Server\bdss.exe
C:\WINDOWS\Explorer.EXE
C:\Programme\Softwin\BitDefender8\vsserv.exe
C:\Programme\ICQLite\ICQLite.exe
C:\PROGRA~1\softwin\BITDEF~1\bdmcon.exe
C:\Programme\Softwin\BitDefender8\bdoesrv.exe
C:\programme\softwin\bitdefender8\bdnagent.exe
C:\WINDOWS\Mixer.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\System32\RUNDLL32.EXE
C:\Programme\QuickTime\qttask.exe
C:\Programme\Yahoo!\Messenger\ypager.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Programme\MSN Messenger\msnmsgr.exe
C:\Programme\Outlook Express\msimn.exe
C:\Program Files\mIRC\mirc.exe
C:\Programme\teamspeak2_RC2\TeamSpeak.exe
C:\Programme\Winamp\winamp.exe
C:\Programme\Messenger\msmsgs.exe
C:\Programme\Alcohol Soft\Alcohol 120\Alcohol.exe
C:\WINDOWS\inet20099\winlogon.exe
C:\WINDOWS\inet20099\socks.exe
C:\WINDOWS\inet20099\mm.exe
C:\Programme\Internet Explorer\IEXPLORE.EXE
D:\downloads\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ebay.de/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customize/ycomp/defaults/su/*http://www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank
F3 - REG:win.ini: run=C:\WINDOWS\inet20099\winlogon.exe
O2 - BHO: (no name) - {5321E378-FFAD-4999-8C62-03CA8155F0B3} - (no file)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn1\yt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [ICQ Lite] C:\Programme\ICQLite\ICQLite.exe -minimize
O4 - HKLM\..\Run: [BDMCon] c:\PROGRA~1\softwin\BITDEF~1\bdmcon.exe
O4 - HKLM\..\Run: [BDOESRV] C:\Programme\Softwin\BitDefender8\\bdoesrv.exe
O4 - HKLM\..\Run: [BDNewsAgent] c:\programme\softwin\bitdefender8\bdnagent.exe
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Explorer32] C:\WINDOWS\System32\efsdfgxg.exe
O4 - HKLM\..\Run: [xp_system] C:\WINDOWS\inet20099\winlogon.exe
O4 - HKLM\..\Run: [Microsoft standard protector] C:\WINDOWS\inet20099\socks.exe 20099
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Programme\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Programme\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Windows installer] C:\winstall.exe
O4 - HKCU\..\Run: [aupd] C:\WINDOWS\System32\sysvcs.exe
O4 - HKCU\..\Run: [xp_system] C:\WINDOWS\inet20099\winlogon.exe
O4 - HKCU\..\RunOnce: [ICQ Lite] C:\Programme\ICQLite\ICQLite.exe -trayboot
O8 - Extra context menu item: Senden an &Bluetooth - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Programme\Yahoo!\Messenger\yhexbmesde.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Programme\Yahoo!\Messenger\yhexbmesde.dll
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\MSMSGS.EXE
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (FilePlanet Download Control Class) - http://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.1.0.69.cab
O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Programme\Gemeinsame Dateien\Softwin\BitDefender Scan Server\bdss.exe
O23 - Service: Bluetooth Service (btwdins) - WIDCOMM, Inc. - C:\Programme\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Programme\Gemeinsame Dateien\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: WinFast(R) Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: OpenVPN Service (OpenVPNService) - Unknown owner - F:\OpenVPN\bin\openvpnserv.exe (file missing)
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Programme\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - SOFTWIN S.R.L. - C:\Programme\Softwin\BitDefender8\vsserv.exe
O23 - Service: BitDefender Communicator (XCOMM) - Softwin - C:\Programme\Gemeinsame Dateien\Softwin\BitDefender Communicator\xcommsvr.exe



danke schonmal fuer eure hilfe
rayne

EDIT: kann mir niemand helfen? weiss langsam nicht mehr weiter...
Dieser Beitrag wurde am 04.12.2005 um 19:14 Uhr von rayne editiert.
Seitenanfang Seitenende
05.12.2005, 02:28
Member
Avatar Gool

Beiträge: 4730
#2 Häkchen setzen und "fix checked" klicken:

F3 - REG:win.ini: run=C:\WINDOWS\inet20099\winlogon.exe
O4 - HKLM\..\Run: [Explorer32] C:\WINDOWS\System32\efsdfgxg.exe
O4 - HKLM\..\Run: [xp_system] C:\WINDOWS\inet20099\winlogon.exe
O4 - HKLM\..\Run: [Microsoft standard protector] C:\WINDOWS\inet20099\socks.exe 20099
O4 - HKCU\..\Run: [Windows installer] C:\winstall.exe
O4 - HKCU\..\Run: [aupd] C:\WINDOWS\System32\sysvcs.exe
O4 - HKCU\..\Run: [xp_system] C:\WINDOWS\inet20099\winlogon.exe

Lösche mit Killbox (Anleitung und Download: http://managor.de/killbox.htm)

C:\WINDOWS\inet20099\winlogon.exe
C:\WINDOWS\System32\sysvcs.exe
C:\winstall.exe
C:\WINDOWS\inet20099\socks.exe
C:\WINDOWS\System32\efsdfgxg.exe
C:\WINDOWS\inet20099\mm.exe

PC wird neugestartet. Lösche den Ordner C:\WINDOWS\inet20099\
Mache einen Scan mit eScanCheck und poste das Ergebnis (http://managor.de/escan.htm)

Update Dein Windows (ServicePack 2 und alle verfügbaren wichtigen Patches) über http://www.windowsupdate.com

Benutze in Zukunft nicht den Internet Explorer und nicht Outlook Express. Firefox (http://firefox-browser.de) ist eine gute Alternative und importiert alle Cookies und Favoriten aus dem Internet Explorer. Thunderbird (http://thunderbird-mail.de) ist eine gute Alternative zu Outlook Express und importiert alle Einstellungen, Mails und das Adressbuch. Es geht also nichts verloren.
__________
Dies ist eine Signatur! Persönlicher Service: Du kommst aus Berlin? Dann melde Dich per PN bei mir, evtl. können wir einen Termin vereinbaren.
Der Grabsteinschubser
Seitenanfang Seitenende
05.12.2005, 14:26
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#3 rayne

hier sollte man dann noch mal tiefer graben ;)

kopiere, wenn alles abgearbeitet ist, die 4 Textdateien
http://virus-protect.org/datfindbat.html
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
05.12.2005, 15:23
Member
Avatar Gool

Beiträge: 4730
#4

Zitat

Sabina postete
hier sollte man dann noch mal tiefer graben ;)
Uff... manchmal bin ich zu vergesslich...
__________
Dies ist eine Signatur! Persönlicher Service: Du kommst aus Berlin? Dann melde Dich per PN bei mir, evtl. können wir einen Termin vereinbaren.
Der Grabsteinschubser
Seitenanfang Seitenende
05.12.2005, 15:37
Member

Themenstarter

Beiträge: 16
#5 habe gestern bis um 1 uhr nacht gesessen und alles entfernt bis auf die exe, die registrz habe ich auch schon teilweise geaeubert ich loesch jetzt noch die eintraege und dann poste ich euch nochmal en neues log

danke

rayne
Seitenanfang Seitenende
05.12.2005, 17:54
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#6

Zitat

Sabina postete
rayne

hier sollte man dann noch mal tiefer graben ;)

kopiere, wenn alles abgearbeitet ist, die 4 Textdateien
http://virus-protect.org/datfindbat.html

__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
06.12.2005, 00:29
Member

Themenstarter

Beiträge: 16
#7 hier mein neues logile, mein system ist beim loeschen der ersten datei mit killbox schon abgestuertzt...

koennt des nochmal jemand bitte fuer mich ueberpruefen:

Logfile of HijackThis v1.99.1
Scan saved at 00:28:07, on 06.12.2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Programme\ICQLite\ICQLite.exe
C:\PROGRA~1\softwin\BITDEF~1\bdmcon.exe
C:\Programme\Softwin\BitDefender8\bdoesrv.exe
C:\programme\softwin\bitdefender8\bdnagent.exe
C:\WINDOWS\Mixer.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\System32\RUNDLL32.EXE
C:\Programme\QuickTime\qttask.exe
C:\Programme\Yahoo!\Messenger\ypager.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Programme\MSN Messenger\msnmsgr.exe
C:\Programme\Trend Micro\Tmas\Tmas.exe
C:\Programme\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Programme\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Programme\Gemeinsame Dateien\Softwin\BitDefender Communicator\xcommsvr.exe
C:\Programme\Gemeinsame Dateien\Softwin\BitDefender Scan Server\bdss.exe
C:\Programme\Softwin\BitDefender8\vsserv.exe
C:\Programme\Outlook Express\msimn.exe
C:\Programme\Messenger\msmsgs.exe
C:\Programme\Winamp\winamp.exe
D:\downloads\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ebay.de/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customize/ycomp/defaults/su/*http://www.yahoo.com
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn1\yt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [ICQ Lite] C:\Programme\ICQLite\ICQLite.exe -minimize
O4 - HKLM\..\Run: [BDMCon] c:\PROGRA~1\softwin\BITDEF~1\bdmcon.exe
O4 - HKLM\..\Run: [BDOESRV] C:\Programme\Softwin\BitDefender8\\bdoesrv.exe
O4 - HKLM\..\Run: [BDNewsAgent] c:\programme\softwin\bitdefender8\bdnagent.exe
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Programme\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Programme\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\RunOnce: [ICQ Lite] C:\Programme\ICQLite\ICQLite.exe -trayboot
O4 - Global Startup: Trend Micro Anti-Spyware.lnk = C:\Programme\Trend Micro\Tmas\Tmas.exe
O8 - Extra context menu item: Senden an &Bluetooth - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Programme\Yahoo!\Messenger\yhexbmesde.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Programme\Yahoo!\Messenger\yhexbmesde.dll
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\MSMSGS.EXE
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (FilePlanet Download Control Class) - http://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.1.0.69.cab
O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Programme\Gemeinsame Dateien\Softwin\BitDefender Scan Server\bdss.exe
O23 - Service: Bluetooth Service (btwdins) - WIDCOMM, Inc. - C:\Programme\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Programme\Gemeinsame Dateien\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: WinFast(R) Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: OpenVPN Service (OpenVPNService) - Unknown owner - F:\OpenVPN\bin\openvpnserv.exe (file missing)
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Programme\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - SOFTWIN S.R.L. - C:\Programme\Softwin\BitDefender8\vsserv.exe
O23 - Service: BitDefender Communicator (XCOMM) - Softwin - C:\Programme\Gemeinsame Dateien\Softwin\BitDefender Communicator\xcommsvr.exe
Seitenanfang Seitenende
06.12.2005, 01:26
Ehrenmitglied
Avatar Argus

Beiträge: 6028
#8 rayne

Zitat

hier sollte man dann noch mal tiefer graben

kopiere, wenn alles abgearbeitet ist, die 4 Textdateien
http://virus-protect.org/datfindbat.html

__________
MfG Argus
Seitenanfang Seitenende
06.12.2005, 01:32
Member

Themenstarter

Beiträge: 16
#9 Volume in Laufwerk C: hat keine Bezeichnung.
Volumeseriennummer: A8B4-232F

Verzeichnis von C:\WINDOWS\system32

www.bit-moviez-crew.dl.am
25.07.2005 17:34 86.016 nvmctray.dll
25.07.2005 17:34 286.720 nvnt4cpl.dll
25.07.2005 17:34 5.140.480 nvoglnt.dll
25.07.2005 17:34 315.392 nvrsar.dll
25.07.2005 17:34 233.472 nvrscs.dll
25.07.2005 17:34 1.466.368 nview.dll
25.07.2005 17:34 241.664 nvrsda.dll
25.07.2005 17:34 266.240 nvrsde.dll
25.07.2005 17:34 270.336 nvrsel.dll
25.07.2005 17:34 237.568 nvrseng.dll
25.07.2005 17:34 270.336 nvrses.dll
25.07.2005 17:34 262.144 nvrsesm.dll
25.07.2005 17:34 237.568 nvrsfi.dll
25.07.2005 17:34 270.336 nvrsfr.dll
25.07.2005 17:34 311.296 nvrshe.dll
25.07.2005 17:34 245.760 nvrshu.dll
25.07.2005 17:34 270.336 nvrsit.dll
25.07.2005 17:34 540.672 nvhwvid.dll
25.07.2005 17:34 253.952 nvrsja.dll
25.07.2005 17:34 249.856 nvrsko.dll
25.07.2005 17:34 262.144 nvrsnl.dll
25.07.2005 17:34 241.664 nvrsno.dll
25.07.2005 17:34 147.456 nvcolor.exe
25.07.2005 17:34 262.144 nvrspt.dll
25.07.2005 17:34 253.952 nvrsptb.dll
25.07.2005 17:34 258.048 nvrsru.dll
25.07.2005 17:34 245.760 nvrssk.dll
25.07.2005 17:34 241.664 nvrssl.dll
25.07.2005 17:34 1.339.392 nvdspsch.exe
25.07.2005 17:34 32.768 nvcodins.dll
25.07.2005 17:34 245.760 nvrstr.dll
25.07.2005 17:34 212.992 nvrszhc.dll
25.07.2005 17:34 114.688 nvrszht.dll
25.07.2005 17:34 466.944 nvshell.dll
25.07.2005 17:34 127.043 nvsvc32.exe
25.07.2005 17:34 73.728 nvtuicpl.cpl
25.07.2005 17:34 176.128 nvudisp.exe
25.07.2005 17:34 176.128 nvunrm.exe
25.07.2005 17:34 81.920 nvwddi.dll
25.07.2005 17:34 32.768 nvcod.dll
25.07.2005 17:34 1.662.976 nvwdmcpl.dll
25.07.2005 17:34 1.019.904 nvwimg.dll
25.07.2005 17:34 282.624 nvwrsar.dll
25.07.2005 17:34 442.368 nvappbar.exe
25.07.2005 17:34 286.720 nvwrscs.dll
25.07.2005 17:34 3.908.736 nv4_disp.dll
25.07.2005 17:34 294.912 nvwrsda.dll
25.07.2005 17:34 311.296 nvwrsde.dll
25.07.2005 17:34 335.872 nvwrsel.dll
25.07.2005 17:34 286.720 nvwrseng.dll
25.07.2005 17:34 14.757 nvdisp.nvu
25.07.2005 17:34 335.872 nvwrses.dll
25.07.2005 17:34 327.680 nvwrsesm.dll
25.07.2005 17:34 303.104 nvwrsfi.dll
25.07.2005 17:34 327.680 nvwrsfr.dll
25.07.2005 17:34 278.528 nvwrshe.dll
25.07.2005 17:34 315.392 nvwrshu.dll
25.07.2005 17:34 323.584 nvwrsit.dll
25.07.2005 17:34 212.992 nvwrsja.dll
25.07.2005 17:34 196.608 nvwrsko.dll
25.07.2005 17:34 241.664 nvrssv.dll
25.07.2005 17:34 319.488 nvwrsnl.dll
25.07.2005 17:34 299.008 nvwrsno.dll
25.07.2005 17:34 294.912 nvwrspl.dll
25.07.2005 17:34 323.584 nvwrspt.dll
25.07.2005 17:34 319.488 nvwrsptb.dll
25.07.2005 17:34 315.392 nvwrsru.dll
25.07.2005 17:34 299.008 nvwrssk.dll
25.07.2005 17:34 303.104 nvwrssl.dll
25.07.2005 17:34 294.912 nvwrssv.dll
25.07.2005 17:34 303.104 nvwrstr.dll
25.07.2005 17:34 7.110.656 nvcpl.dll
25.07.2005 17:34 393.216 keystone.exe
25.07.2005 17:34 29.696 filter.ax
25.07.2005 17:34 22.048 cocpyinf.dll
25.07.2005 17:34 241.664 nvrspl.dll
25.07.2005 17:34 163.840 nvwrszhc.dll
25.07.2005 17:34 167.936 nvwrszht.dll
25.07.2005 17:34 1.519.616 nwiz.exe
22.05.2005 15:20 37 sysmwwod.dll
04.05.2005 16:42 73.728 sockspy.dll
25.04.2005 14:22 105.416 FNTCACHE.DAT
19.04.2005 15:08 45.192 MsgPlusLoader.dll
21.03.2005 14:00 15.360 msisip.dll
21.03.2005 14:00 884.736 msimsg.dll
21.03.2005 14:00 271.360 msihnd.dll
21.03.2005 14:00 78.848 msiexec.exe
21.03.2005 14:00 2.890.240 msi.dll
21.03.2005 14:00 15.072 spmsg.dll
18.03.2005 16:19 2.337.488 d3dx9_25.dll



Volume in Laufwerk C: hat keine Bezeichnung.
Volumeseriennummer: A8B4-232F

Verzeichnis von C:\DOKUME~1\RAYNE_~1\LOKALE~1\Temp

06.12.2005 00:25 16.384 ~DFCF79.tmp
06.12.2005 00:25 16.384 Perflib_Perfdata_2e0.dat
06.12.2005 00:24 16.384 ~DF95A4.tmp
06.12.2005 00:24 512 ~DF42FE.tmp
06.12.2005 00:24 16.384 ~DF3F73.tmp
05.12.2005 17:14 35 kb.log
05.12.2005 17:13 16.384 ~DF31FE.tmp
05.12.2005 17:07 16.384 Perflib_Perfdata_34c.dat
05.12.2005 17:07 16.384 ~DFB9FC.tmp
05.12.2005 17:06 16.384 ~DF9F26.tmp
05.12.2005 17:06 16.384 ~DF3E3D.tmp
05.12.2005 17:06 512 ~DF3E5F.tmp
05.12.2005 00:51 7.506 temp.fr11D8
05.12.2005 00:07 16.384 ~DF372.tmp
05.12.2005 00:07 16.384 ~DFFBD8.tmp
04.12.2005 23:59 16.384 ~DF890D.tmp
19.10.2005 00:40 9.346.760 Install_MSN_Messenger.EXE
17 Datei(en) 9.551.933 Bytes
0 Verzeichnis(se), 5.808.267.264 Bytes frei



Volume in Laufwerk C: hat keine Bezeichnung.
Volumeseriennummer: A8B4-232F

Verzeichnis von C:\WINDOWS

06.12.2005 00:24 0 0.log
06.12.2005 00:24 2.048 bootstat.dat
05.12.2005 17:12 282 system.ini
05.12.2005 00:51 32.592 SchedLgU.Txt
05.12.2005 00:51 214 wiadebug.log
05.12.2005 00:50 1.125 winamp.ini
05.12.2005 00:40 50 wiaservc.log
05.12.2005 00:40 0 Sti_Trace.log
04.12.2005 15:47 6.092 ModemLog_Bluetooth Modem.txt
02.12.2005 17:11 697 win.ini
27.11.2005 03:07 69 NeroDigital.ini
24.11.2005 19:20 27 BRPP2KA.INI
24.11.2005 19:20 425 BRWMARK.INI
24.11.2005 14:31 1.409 QTFont.for
24.11.2005 14:31 54.156 QTFont.qfn
13.10.2005 17:59 60.416 ALCFDRTM.VER
06.10.2005 13:14 316.640 WMSysPr9.prx
18.09.2005 12:12 2.563.325 setupapi.log.0.old
23.08.2005 23:35 60.416 ALCFDRTM.EXE
21.08.2005 15:52 25 mixerdef.ini
05.01.2005 11:29 65 wininit.ini



Volume in Laufwerk C: hat keine Bezeichnung.
Volumeseriennummer: A8B4-232F

Verzeichnis von C:\WINDOWS

06.12.2005 00:24 0 0.log
06.12.2005 00:24 2.048 bootstat.dat
05.12.2005 17:12 282 system.ini
05.12.2005 00:51 32.592 SchedLgU.Txt
05.12.2005 00:51 214 wiadebug.log
05.12.2005 00:50 1.125 winamp.ini
05.12.2005 00:40 50 wiaservc.log
05.12.2005 00:40 0 Sti_Trace.log
04.12.2005 15:47 6.092 ModemLog_Bluetooth Modem.txt
02.12.2005 17:11 697 win.ini
27.11.2005 03:07 69 NeroDigital.ini
24.11.2005 19:20 27 BRPP2KA.INI
24.11.2005 19:20 425 BRWMARK.INI
24.11.2005 14:31 1.409 QTFont.for
24.11.2005 14:31 54.156 QTFont.qfn
13.10.2005 17:59 60.416 ALCFDRTM.VER
06.10.2005 13:14 316.640 WMSysPr9.prx
18.09.2005 12:12 2.563.325 setupapi.log.0.old
23.08.2005 23:35 60.416 ALCFDRTM.EXE
21.08.2005 15:52 25 mixerdef.ini
05.01.2005 11:29 65 wininit.ini




so bitte, vielleicht koennt ihr mir ja helfen, aber im moment scheint alles sauber zu sein^^
Seitenanfang Seitenende
06.12.2005, 11:39
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#10 Hallo@rayne

scanne und kopiere den scanreport
http://virus-protect.org/cureit.html
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
06.12.2005, 16:45
Member

Themenstarter

Beiträge: 16
#11 bei mir wurde nix gefunden
Seitenanfang Seitenende
06.12.2005, 23:56
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#12

Zitat

rayne postete
bei mir wurde nix gefunden
fein ;) dann scanne mit kaspersky und poste den scanbericht
http://virus-protect.org/onlinescan.html
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
08.12.2005, 17:01
Member

Themenstarter

Beiträge: 16
#13 -------------------------------------------------------------------------------
KASPERSKY ON-LINE SCANNER REPORT
Thursday, December 08, 2005 16:07:18
Operating System: Microsoft Windows XP Professional, Service Pack 1 (Build 2600)
Kaspersky On-line Scanner version: 5.0.67.0
Kaspersky Anti-Virus database last update: 7/12/2005
Kaspersky Anti-Virus database records: 153897
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: standard
Scan Archives: true
Scan Mail Bases: true

Scan Target - My Computer:
A:\
C:\
D:\
E:\
F:\
G:\
H:\
I:\
J:\

Scan Statistics:
Total number of scanned objects: 93168
Number of viruses found: 38
Number of infected objects: 301
Number of suspicious objects: 0
Duration of the scan process: 7050 sec

Infected Object Name - Virus Name
C:\!Submit\winlogon.exe Infected: Trojan-Downloader.Win32.CWS.gen
C:\Dokumente und Einstellungen\All Users\Dokumente\bcvsrv32.exe Infected: Virus.Win32.Tenga.a
C:\Dokumente und Einstellungen\All Users\Dokumente\CRSS.EXE Infected: Backdoor.Win32.Agobot.abq
C:\Dokumente und Einstellungen\All Users\Dokumente\install.exe Infected: Backdoor.Win32.Robobot.al
C:\Dokumente und Einstellungen\All Users\Dokumente\ip.exe Infected: Backdoor.Win32.SdBot.xm
C:\Dokumente und Einstellungen\All Users\Dokumente\nvagNT.exe Infected: Backdoor.Win32.Agobot.rv
C:\Dokumente und Einstellungen\All Users\Dokumente\scvsrv32.exe Infected: Backdoor.Win32.Agobot.gen
C:\Dokumente und Einstellungen\All Users\Dokumente\stone.exe Infected: Backdoor.Win32.SdBot.xm
C:\Dokumente und Einstellungen\All Users\Dokumente\wiinsvc.exe Infected: Backdoor.Win32.Agobot.gen
C:\Dokumente und Einstellungen\All Users\Dokumente\Xi.exe Infected: Backdoor.Win32.Rirc.a
C:\Dokumente und Einstellungen\Rayne_2004\.jpi_cache\file\1.0\BlackBox.class-6bb79f6a-4150c7ce.class Infected: Trojan.Java.ClassLoader.c
C:\Dokumente und Einstellungen\Rayne_2004\.jpi_cache\file\1.0\Dummy.class-1b49a55a-1dafef05.class Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Dokumente und Einstellungen\Rayne_2004\.jpi_cache\file\1.0\VerifierBug.class-13580070-32eff4a2.class Infected: Exploit.Java.Bytverify
C:\Dokumente und Einstellungen\Rayne_2004\.jpi_cache\jar\1.0\java.jar-8fba448-1ab6b6f0.zip/GetAccess.class Infected: Trojan-Downloader.Java.OpenConnection.aj
C:\Dokumente und Einstellungen\Rayne_2004\.jpi_cache\jar\1.0\java.jar-8fba448-1ab6b6f0.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.aj
C:\Dokumente und Einstellungen\Rayne_2004\.jpi_cache\jar\1.0\java.jar-8fba448-1ab6b6f0.zip Infected: Trojan-Downloader.Java.OpenConnection.aj
C:\Dokumente und Einstellungen\Rayne_2004\.jpi_cache\jar\1.0\javainstaller.jar-4514e5ea-4c466687.zip/javainstaller/InstallerApplet.class Infected: Trojan-Downloader.Java.OpenStream.t
C:\Dokumente und Einstellungen\Rayne_2004\.jpi_cache\jar\1.0\javainstaller.jar-4514e5ea-4c466687.zip Infected: Trojan-Downloader.Java.OpenStream.t
C:\Dokumente und Einstellungen\Rayne_2004\.jpi_cache\jar\1.0\loaderadv661.jar-5e55057-50511b8f.zip/Matrix.class Infected: Trojan-Downloader.Java.OpenStream.c
C:\Dokumente und Einstellungen\Rayne_2004\.jpi_cache\jar\1.0\loaderadv661.jar-5e55057-50511b8f.zip/Counter.class Infected: Trojan.Java.ClassLoader.h
C:\Dokumente und Einstellungen\Rayne_2004\.jpi_cache\jar\1.0\loaderadv661.jar-5e55057-50511b8f.zip/Parser.class Infected: Trojan.Java.ClassLoader.d
C:\Dokumente und Einstellungen\Rayne_2004\.jpi_cache\jar\1.0\loaderadv661.jar-5e55057-50511b8f.zip Infected: Trojan.Java.ClassLoader.d
C:\Dokumente und Einstellungen\Rayne_2004\Anwendungsdaten\BendNameBike\site gram the.exe Infected: Trojan-Downloader.Win32.Swizzor.cb
C:\Dokumente und Einstellungen\Rayne_2004\Anwendungsdaten\Intra Eggs\Heck Poll.exe Infected: Trojan-Downloader.Win32.Swizzor.bo
C:\Programme\Norton AntiVirus\Quarantine\00DE7BD8 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\01196F97 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\023E169D Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\039F1C6C Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\03B64253 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\04236684/data.rtf .scr Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\04236684 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\042D6479 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\04416064 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\0447345C Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\05797703 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\06F87286 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\09814A93 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\09F05E19 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\09F73212 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\0B2470D0 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\0BE351C5 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\0BE925BE Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\0BFA77AC Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\0BFD21A9 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\0CF63A7A Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\0D0C6061 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\0D165E56/details.txt .pif Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\0D165E56 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\0D190852 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\0D1D324F Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\0DA454BF Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\0DDB225F Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\0DEB744D Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\0E5B3235/details.txt .pif Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\0E5B3235 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\0F11673E Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\111730CF Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\115A22DA Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\116420CF Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\117148C1 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\117472BD Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\120A525D/details.txt .pif Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\120A525D Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\121A244B Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\12274C3C Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\122A7639 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\1306562A Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\14535D70 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\14BE1763/document.txt .exe Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\14BE1763 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\14D86746/document.txt .exe Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\14D86746 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\15B642CC Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\170D766F Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\1711206B Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\18D50EB3 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\18DF0CA8 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\191F0224/details.txt .pif Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\191F0224 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\193E7C70 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\19584C53 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\196C483D Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\19764633 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\1AD42B8C Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\1B5643EF Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\1B6041E4 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\1D345DEA Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\1D452FD8 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\1D64438E Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\1E24789C Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\1F210B28 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\1F2B091D Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\1FDA6AD9 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\209D36EF Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\20AA5EE1 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\20E9748F/data.rtf .scr Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\20E9748F Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\215E528B Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\216B7A7D Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\21B8564E Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\21B96A26 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\21BE2A47 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\21CA3C15 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\21DA2D45 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\21E42B3B Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\24CC4589 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\2C567520 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\2C5C4918 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\314D47A4 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\320D7387/details.txt .pif Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\320D7387 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\32D37383 Infected: Email-Worm.Win32.Bagle.z
C:\Programme\Norton AntiVirus\Quarantine\32EA196A Infected: Email-Worm.Win32.Bagle.z
C:\Programme\Norton AntiVirus\Quarantine\33BD1AF6 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\35B70A26/document.txt .exe Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\35B70A26 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\35EB09EE Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\36022FD5 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\363A4494 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\36444289 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\36516A7B Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\36541477 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\370B51B7 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\37341BE9 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\3878571F/document.txt .exe Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\3878571F Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\388B530A Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\392E7FE5 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\3AFF19F2 Infected: Email-Worm.Win32.Bagle.z
C:\Programme\Norton AntiVirus\Quarantine\3B056DEB Infected: Email-Worm.Win32.Bagle.z
C:\Programme\Norton AntiVirus\Quarantine\3B300747 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\3B440331 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\3B54309C Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\3B5A2918/data.rtf .scr Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\3B5A2918 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\3B7822F8 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\3B924E58 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\3B9C4C4D Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\3E5A33CB/details.txt .pif Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\3E5A33CB Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\3E6431C1 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\3E6D2FB6 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\3E7159B2 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\3EBF495C/document.txt .exe Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\3EBF495C Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\3ECC714E Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\3EDC433C Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\3EE64131 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\41A900B1 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\41B37EA7 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\43937251/details.txt .pif Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\43937251 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\4586453B Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\45904330 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\461179F2 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\461E21E4 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\46B26B5F Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\47CA434D Infected: Email-Worm.Win32.Bagle.z
C:\Programme\Norton AntiVirus\Quarantine\47D01746 Infected: Email-Worm.Win32.Bagle.z
C:\Programme\Norton AntiVirus\Quarantine\49DA0982/document.txt .exe Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\49DA0982 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\4A8A694D Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\4A946742 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\4AA376FA Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\4AA67591 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\4B1A5421 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\4B20281A Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\4B9A68FF Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\4BA466F5 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\4BD312AD/data.rtf .scr Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\4BD312AD Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\4BE3649B Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\4EB952AB Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\4F905A91 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\50265BFD Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\525E3C72/data.rtf .scr Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\525E3C72 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\53303A94/details.txt .pif Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\53303A94 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\53615A70 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\536A5865 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\53742B8B/details.txt .pif Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\53742B8B Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\53BE3303 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\53D369C1 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\54B47E65 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\54BE7C5B Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\569C0AEE Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\56AC5CDC Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\57835CEE/data.rtf .scr Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\57835CEE Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\592B75D0 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\593573C5 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\5A2D1B85 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\5A3A4376 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\5A583D40/document.txt .exe Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\5A583D40 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\5BE64891 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\5BE82116 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\5BF54907 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\5C4026C1 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\5C4924B6 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\5DD80CA8/details.txt .pif Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\5DD80CA8 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\5E065876 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\5E202859 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\5E277C52 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\5EE1762D Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\606B0AE0/document.txt .exe Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\606B0AE0 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\60B32691 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\62622833 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\62687C2C Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\6328003F Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\63352831 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\637A0EF4 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\65783A3E Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\666D11E5 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\68A51192/document.txt .exe Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\68A51192 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\6A15666B Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\6A8D2ABC/details.txt .pif Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\6A8D2ABC Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\6AFD0B6B Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\6BFA3D3B/data.rtf .scr Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\6BFA3D3B Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\6CE15B5F/details.txt .pif Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\6CE15B5F Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\6DBB0800 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\6FC939D5 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\6FD337CA Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\703D061A Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\711640F4 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\712712E2 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\723A5853 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\72666545 Infected: Email-Worm.Win32.Bagle.z
C:\Programme\Norton AntiVirus\Quarantine\72730D37 Infected: Email-Worm.Win32.Bagle.z
C:\Programme\Norton AntiVirus\Quarantine\728D5D1A Infected: Email-Worm.Win32.Bagle.z
C:\Programme\Norton AntiVirus\Quarantine\72943113 Infected: Email-Worm.Win32.Bagle.z
C:\Programme\Norton AntiVirus\Quarantine\729E2F08 Infected: Email-Worm.Win32.Bagle.z
C:\Programme\Norton AntiVirus\Quarantine\72AB56F9 Infected: Email-Worm.Win32.Bagle.z
C:\Programme\Norton AntiVirus\Quarantine\72BD2B59 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\74012D5B Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\741F4100 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\745036CA Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\74A06D95 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\75050326 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\75C63402 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\77D44F32 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\77F4730E Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\7849033E Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\78FA5E7C Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\7A4B7516 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\7A55730B Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\7A621AFC Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\7A6F42EE Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\7A823ED8 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\7A8912D1 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\7A9964BF Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\7A9C0EBC Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\7BBD0D7D Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\7C643617 Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\7C7E05FB Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\7C98323B/document.txt .exe Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\7C98323B Infected: Email-Worm.Win32.NetSky.q
C:\Programme\Norton AntiVirus\Quarantine\7D8F523B Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\7D952634 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\7E5E5698 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\7ED158F0 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\7ED82CE9 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\7EE554DB Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\7EEB28D3 Infected: Email-Worm.Win32.NetSky.d
C:\Programme\Norton AntiVirus\Quarantine\7FC6098F Infected: Email-Worm.Win32.NetSky.q
C:\RECYCLER\S-1-5-21-1229272821-299502267-725345543-500\Dc1.dat Infected: P2P-Worm.Win32.Tibick.d
C:\System Volume Information\_restore{96DEB24D-5A1C-47A5-B3B6-EE91998464F1}\RP587\A0426718.exe Infected: Trojan-Proxy.Win32.Small.di
C:\System Volume Information\_restore{96DEB24D-5A1C-47A5-B3B6-EE91998464F1}\RP587\A0426721.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{96DEB24D-5A1C-47A5-B3B6-EE91998464F1}\RP588\A0426745.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{96DEB24D-5A1C-47A5-B3B6-EE91998464F1}\RP588\A0426746.exe Infected: Trojan-Clicker.Win32.Spywad.k
C:\System Volume Information\_restore{96DEB24D-5A1C-47A5-B3B6-EE91998464F1}\RP588\A0426747.exe Infected: Trojan.Win32.StartPage.ady
C:\System Volume Information\_restore{96DEB24D-5A1C-47A5-B3B6-EE91998464F1}\RP589\A0426965.exe Infected: Trojan-Downloader.Win32.CWS.gen
C:\System Volume Information\_restore{96DEB24D-5A1C-47A5-B3B6-EE91998464F1}\RP589\A0426978.exe Infected: Trojan-Downloader.Win32.Delf.aco
C:\System Volume Information\_restore{96DEB24D-5A1C-47A5-B3B6-EE91998464F1}\RP589\A0426979.exe Infected: Trojan-Downloader.Win32.CWS.k
C:\WINDOWS\inet20099\alg.exe Infected: Email-Worm.Win32.Delf.i
C:\WINDOWS\inet20099\mm.exe Infected: Trojan-Downloader.Win32.Delf.abu
C:\WINDOWS\inet20099\socks.exe Infected: Trojan-Proxy.Win32.Small.cf
C:\WINDOWS\system\mssecure.exe Infected: Backdoor.Win32.Robobot.r
C:\WINDOWS\system32\cmd32.exe Infected: Trojan-Downloader.Win32.Delf.aco
C:\WINDOWS\system32\dial23.exe Infected: Trojan.Win32.Dialer.ay
C:\WINDOWS\system32\exeha2.exe Infected: Trojan.Win32.StartPage.ady
C:\WINDOWS\system32\exeha3.exe Infected: Trojan-Downloader.Win32.CWS.k
C:\WINDOWS\system32\latest.exe Infected: Packed.Win32.Klone.b
C:\WINDOWS\system32\z11.exe Infected: Trojan-Clicker.Win32.Spywad.k
C:\WINDOWS\system32\z12.exe Infected: Trojan-Downloader.Win32.Small.awa
C:\WINDOWS\system32\z13.exe Infected: Trojan.Win32.Dialer.mi
C:\WINDOWS\system32\z15.exe Infected: Packed.Win32.Klone.b
C:\WINDOWS\system32\z16.exe Infected: Trojan-Dropper.Win32.Delf.pb
C:\WINDOWS\system32\~update.exe Infected: Packed.Win32.Klone.b
D:\downloads\alcohol.120.1.9.5.3105.trial.patch-tsrh.exe/run.exe Infected: Trojan-Downloader.Win32.Adload.j
D:\downloads\alcohol.120.1.9.5.3105.trial.patch-tsrh.exe Infected: Trojan-Downloader.Win32.Adload.j
E:\System Volume Information\_restore{333D9988-E227-49B4-8128-3D2DC68114C2}\RP25\A0013873.exe/WISE0017.BIN Infected: Trojan-Downloader.Win32.Small.bke
E:\System Volume Information\_restore{333D9988-E227-49B4-8128-3D2DC68114C2}\RP25\A0013873.exe Infected: Trojan-Downloader.Win32.Small.bke

Scan process completed.
Seitenanfang Seitenende
08.12.2005, 18:04
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#14 rayne

Im Windows-Explorer->Extras->Ordneroptionen->den Reiter "Ansicht"->Versteckte Dateien und Ordner-> "alle Dateien und Ordner anzeigen" aktivieren
+
Im Windows-Explorer->Extras->Ordneroptionen->den Reiter "Ansicht"->Dateien und Ordner-> "Geschützte Systemdateien ausblenden (empfohlen)" deaktivieren


KILLBOX - Pocket KillBox
http://virus-protect.org/killbox.html

Options: Delete on Reboot / Process all in List )--> anhaken
reinkopieren:
...
und klicke auf das rote Kreuz, wenn gefragt wird, ob "Do you want to reboot? "---- klicke auf "no",und kopiere das nächste rein, erst beim letzten auf "yes"

C:\WINDOWS\inet20099\alg.exe
C:\WINDOWS\inet20099\mm.exe
C:\WINDOWS\inet20099\socks.exe

C:\WINDOWS\system32\www.bit-moviez-crew.dl.am
C:\WINDOWS\system\mssecure.exe
C:\WINDOWS\system32\cmd32.exe
C:\WINDOWS\system32\dial23.exe
C:\WINDOWS\system32\exeha2.exe
C:\WINDOWS\system32\exeha3.exe
C:\WINDOWS\system32\latest.exe
C:\WINDOWS\system32\z11.exe
C:\WINDOWS\system32\z12.exe
C:\WINDOWS\system32\z13.exe
C:\WINDOWS\system32\z15.exe
C:\WINDOWS\system32\z16.exe
C:\WINDOWS\system32\MsgPlusLoader.dll
C:\WINDOWS\system32\~update.exe
D:\downloads\alcohol.120.1.9.5.3105.trial.patch-tsrh.exe

C:\Dokumente und Einstellungen\All Users\Dokumente\bcvsrv32.exe
C:\Dokumente und Einstellungen\All Users\Dokumente\CRSS.EXE
C:\Dokumente und Einstellungen\All Users\Dokumente\install.exe
C:\Dokumente und Einstellungen\All Users\Dokumente\ip.exe
C:\Dokumente und Einstellungen\All Users\Dokumente\nvagNT.exe
C:\Dokumente und Einstellungen\All Users\Dokumente\scvsrv32.exe
C:\Dokumente und Einstellungen\All Users\Dokumente\stone.exe
C:\Dokumente und Einstellungen\All Users\Dokumente\wiinsvc.exe
C:\Dokumente und Einstellungen\All Users\Dokumente\Xi.exe

PC neustarten--> in den abgesicherten modus... F8 druecken, wenn der PC hochfaehrt

loesche:
C:\WINDOWS\inet20099
C:\Dokumente und Einstellungen\Rayne_2004\Anwendungsdaten\Intra Eggs
C:\Dokumente und Einstellungen\Rayne_2004\Anwendungsdaten\BendNameBike

deaktiviere die Systemwiederherstellung( dann aktiviere sie wieder)
http://virus-protect.org/systemwiederherstellung.html

wende Cleanup an
http://virus-protect.org/cleanup.html

lade und scanne
Families Cleaned by the Malicious Software Removal Tool
http://virus-protect.org/antivirenfree.html

Start -- alle Programme -- Zubehör -- Editor und kopiere folgenden Text rein:

Zitat

dir %Windir%\tasks /a h > files.txt
notepad files.txt
- Speichern als: findjobs.bat
- abspeichern unter : Dateityp: alle Dateien
- speichere auf dem Desktop
- Locate findjobs.bat-- doppelklick auf die bat-Datei , der Editor öffnet sich -- poste den Text


dann scanne noch mal mit kaspersky
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
Um auf dieses Thema zu ANTWORTEN
bitte erst » hier kostenlos registrieren!!

Folgende Themen könnten Dich auch interessieren: