Instant Access: wie löschen? |
||
---|---|---|
#0
| ||
10.06.2008, 23:31
Ehrenmitglied
Beiträge: 29434 |
||
|
||
11.06.2008, 00:47
...neu hier
Beiträge: 10 |
#32
Hallo Sabina,
Hier ist d. siet die ich bekomme beim Xp neuinstallation: gibt es noch eine Hoffnung? MfG Kawin Anhang: DSC00363.JPG
|
|
|
||
11.06.2008, 10:59
Ehrenmitglied
Beiträge: 29434 |
#33
Kawin
du willst also formatieren, und es fehlt ein Treiber... du solltest eine CD mit den Treibern haben. (VIA AGP-Filter Drive) - Ist Bestandteil der VIA-Chipsatztreiber Ist die sys wahrscheinlich auf der Motherboard-CD ? Oder findest du sie mit "Durchsuchen" ? __________ MfG Sabina rund um die PC-Sicherheit |
|
|
||
11.06.2008, 21:40
...neu hier
Beiträge: 5 |
#34
also punkt vier hab ich gemacht und hier der report
Navipromo Removal version 3.5.8 started on 11.06.2008 at 21:31:44,56 Fix running from C:\Programme\navilog1 Actual User Account : "Schlitz" Updated on 06.06.2008 at 18h00 by IL-MAFIOSO Microsoft Windows XP [Version 5.1.2600] Internet Explorer : 6.0.2900.2180 Filesystem type : NTFS Automatic removal with Catchme and GNS results Cleanning stage done on Reboot *** fsbl1.txt not found *** (Check that Catchme found nothing in Search Mode) *** Deleting with Backups GenericNaviSearch results *** * Deletion in "C:\WINDOWS\System32" * C:\WINDOWS\prefetch\gqugqmyqs*.pf found ! Copy C:\WINDOWS\prefetch\gqugqmyqs*.pf done ! C:\WINDOWS\prefetch\gqugqmyqs*.pf deleted ! * Deletion in "C:\Dokumente und Einstellungen\Schlitz\lokale~1\anwend~1" * gqugqmyqs.exe found ! Copy gqugqmyqs.exe done ! gqugqmyqs.exe deleted ! gqugqmyqs.dat found ! Copy gqugqmyqs.dat done ! gqugqmyqs.dat deleted ! gqugqmyqs_nav.dat found ! Copy gqugqmyqs_nav.dat done ! gqugqmyqs_nav.dat deleted ! gqugqmyqs_navps.dat found ! Copy gqugqmyqs_navps.dat done ! gqugqmyqs_navps.dat deleted ! * Deletion in "C:\DOKUME~1\User\lokale~1\anwend~1" * *** Deleting folders in "C:\WINDOWS" *** *** Deleting folders in "C:\Programme" *** *** Deleting folders in "c:\dokume~1\alluse~1\anwend~1" *** *** Deleting folders in "c:\dokume~1\alluse~1\startm~1\progra~1" *** *** Deleting folders in "C:\Dokumente und Einstellungen\Schlitz\anwend~1" *** *** Deleting folders in "C:\DOKUME~1\User\anwend~1" *** *** Deleting folders in "C:\Dokumente und Einstellungen\Schlitz\lokale~1\anwend~1" *** *** Deleting folders in "C:\DOKUME~1\User\lokale~1\anwend~1" *** *** Deleting folders in "C:\Dokumente und Einstellungen\Schlitz\startm~1\progra~1" *** *** Deleting folders in "C:\DOKUME~1\User\startm~1\progra~1" *** *** Deleting files *** C:\WINDOWS\system32\nvs2.inf deleted ! *** Deleting temporary files *** Cleaning of C:\WINDOWS\Temp done ! Cleaning of C:\Dokumente und Einstellungen\Schlitz\lokale~1\Temp done ! *** Complementary Search *** (Search specific files) 1)Deletion with backups new Instant Access files: C:\WINDOWS\system32\nsinet.exe found ! Copy C:\WINDOWS\system32\nsinet.exe done ! C:\WINDOWS\system32\nsinet.exe deleted ! 2)Heuristic search and deletion with backups : * In "C:\WINDOWS\system32" * * In "C:\Dokumente und Einstellungen\Schlitz\lokale~1\anwend~1" * * In "C:\DOKUME~1\User\lokale~1\anwend~1" * *** Copy Registry to Safebackup folder *** Backing up Registry done ! *** Cleaning Registry *** Registry cleaned *** Certificates *** Egroup Certificate deleted ! Electronic-Group Certificate deleted ! OOO-Favorit Certificate deleted ! Sunny-Day-Design-Ltd Certificate not found ! *** Cleaning stage complete on 11.06.2008 at 21:37:32,95 *** so zu punkt sechs: Die 30 neuesten Dateien im Ordner Windows: ***** ***** ***** ***** ***** ***** Scanning C:\WINDOWS ***** ***** ***** ***** ***** ***** 11.06.2008 WindowsUpdate.log 21 37:1.197.169 11.06.2008 0.log 21 35:0 11.06.2008 bootstat.dat 21 34:2.048 11.06.2008 SchedLgU.Txt 21 33:32.626 09.06.2008 iis6.log 00 27:866.786 09.06.2008 ntdtcsetup.log 00 27:153.433 09.06.2008 comsetup.log 00 27:252.224 09.06.2008 ocmsn.log 00 27:41.070 09.06.2008 tsoc.log 00 27:341.440 09.06.2008 tabletoc.log 00 27:35.582 09.06.2008 imsins.log 00 27:1.355 09.06.2008 KB950749.log 00 27:14.246 09.06.2008 medctroc.Log 00 27:51.994 09.06.2008 netfxocm.log 00 27:125.357 09.06.2008 msgsocm.log 00 27:37.043 09.06.2008 ocgen.log 00 27:368.431 09.06.2008 FaxSetup.log 00 27:720.499 09.06.2008 msmqinst.log 00 27:237.126 04.06.2008 NeroDigital.ini 23 15:116 02.06.2008 wiaservc.log 23 29:50 02.06.2008 wiadebug.log 23 29:215 04.05.2008 imsins.BAK 23 51:1.355 04.05.2008 KB948881.log 23 51:8.741 04.05.2008 KB941693.log 23 50:13.242 04.05.2008 KB948590.log 23 50:13.098 04.05.2008 updspapi.log 23 50:30.148 04.05.2008 KB944338.log 23 47:13.971 Die 50 neuesten Dateien im Ordner Windows\system32: ***** ***** ***** ***** ***** ***** Scanning C:\WINDOWS\system32 ***** ***** ***** ***** ***** ***** 10.06.2008 wpa.dbl 22 08:2.206 09.05.2008 MRT.exe 23 35:16.863.864 05.05.2008 FNTCACHE.DAT 02 01:250.288 29.04.2008 perfh009.dat 00 44:395.200 29.04.2008 perfc009.dat 00 44:59.440 29.04.2008 perfh007.dat 00 44:408.618 29.04.2008 perfc007.dat 00 44:71.598 31.03.2008 PerfStringBackup.INI 19 27:951.190 28.03.2008 jupdate-1.6.0_05-b13.log 17 15:6.641 25.03.2008 msjint40.dll 06 51:187.168 25.03.2008 mswstr10.dll 06 51:621.344 25.03.2008 msxbde40.dll 06 50:355.104 25.03.2008 mswdat10.dll 06 50:838.432 25.03.2008 mstext40.dll 06 50:264.992 25.03.2008 msrepl40.dll 06 50:559.904 25.03.2008 msrd3x40.dll 06 50:322.336 25.03.2008 msrd2x40.dll 06 50:432.928 25.03.2008 mspbde40.dll 06 50:355.104 25.03.2008 msltus40.dll 06 50:219.936 25.03.2008 msjtes40.dll 06 50:248.608 25.03.2008 msjter40.dll 06 50:60.192 25.03.2008 msjetoledb40.dll 06 50:355.112 25.03.2008 msjet40.dll 06 50:1.516.568 25.03.2008 msexcl40.dll 06 50:326.432 25.03.2008 msexch40.dll 06 50:518.944 22.03.2008 CmdLineExt.dll 22 24:98.304 20.03.2008 win32k.sys 10 03:1.845.376 29.02.2008 jupdate-1.6.0_03-b05.log 21 57:5.686 22.02.2008 javaws.exe 03 33:139.264 22.02.2008 javacpl.cpl 03 33:69.632 22.02.2008 javaw.exe 02 23:135.168 22.02.2008 java.exe 02 23:135.168 20.02.2008 gdi32.dll 08 50:282.624 20.02.2008 dnsapi.dll 07 33:148.992 20.02.2008 dnsrslvr.dll 07 33:45.568 10.01.2008 dvmsg.dll 12 49:554.496 19.12.2007 MRT.INI 22 12:118 19.12.2007 TZLog.log 22 10:259.512 18.12.2007 vbscript.dll 16 41:417.792 18.12.2007 jscript.dll 16 41:450.560 12.12.2007 libdivx.dll 00 34:1.044.480 12.12.2007 ssldivx.dll 00 34:200.704 04.12.2007 oleaut32.dll 20 40:550.912 13.11.2007 tzchange.exe 13 31:60.416 07.11.2007 lsasrv.dll 11 27:729.600 30.10.2007 quartz.dll 00 42:1.293.312 29.10.2007 xpsp3res.dll 17 35:123.904 ***** ***** ***** ***** ***** ***** Scanning C:\WINDOWS\system32\drivers\etc\hosts ***** ***** ***** ***** ***** ***** # Copyright (c) 1993-1999 Microsoft Corp. # # Dies ist eine HOSTS-Beispieldatei, die von Microsoft TCP/IP # für Windows 2000 verwendet wird. # # Diese Datei enthält die Zuordnungen der IP-Adressen zu Hostnamen. # Jeder Eintrag muss in einer eigenen Zeile stehen. Die IP- # Adresse sollte in der ersten Spalte gefolgt vom zugehörigen # Hostnamen stehen. # Die IP-Adresse und der Hostname müssen durch mindestens ein # Leerzeichen getrennt sein. # # Zusätzliche Kommentare (so wie in dieser Datei) können in # einzelnen Zeilen oder hinter dem Computernamen eingefügt werden, # aber müssen mit dem Zeichen '#' eingegeben werden. # # Zum Beispiel: # # 102.54.94.97 rhino.acme.com # Quellserver # 38.25.63.10 x.acme.com # x-Clienthost 127.0.0.1 localhost ***** ***** ***** ***** ***** ***** Scanning Processe ***** ***** ***** ***** ***** ***** Abbildname PID Sitzungsname Sitz.-Nr. Speichernutzung ========================= ===== ================ ========== =============== System Idle Process 0 Console 0 16 K System 4 Console 0 220 K smss.exe 500 Console 0 404 K csrss.exe 564 Console 0 4.292 K winlogon.exe 592 Console 0 2.936 K services.exe 640 Console 0 4.060 K lsass.exe 652 Console 0 1.688 K ati2evxx.exe 804 Console 0 2.160 K svchost.exe 816 Console 0 4.688 K svchost.exe 888 Console 0 4.208 K svchost.exe 964 Console 0 23.076 K svchost.exe 1016 Console 0 3.428 K svchost.exe 1176 Console 0 4.380 K spoolsv.exe 1304 Console 0 4.772 K AVGUARD.EXE 1476 Console 0 5.964 K AVWUPSRV.EXE 1500 Console 0 1.220 K ClipInc-Server.exe 1544 Console 0 7.540 K MDM.EXE 1616 Console 0 2.824 K wdfmgr.exe 1804 Console 0 1.684 K alg.exe 828 Console 0 3.500 K ati2evxx.exe 1716 Console 0 2.992 K explorer.exe 268 Console 0 25.952 K wmiprvse.exe 456 Console 0 4.868 K SOUNDMAN.EXE 3624 Console 0 3.288 K AVGNT.EXE 3632 Console 0 1.648 K jusched.exe 3748 Console 0 2.476 K ctfmon.exe 3756 Console 0 3.060 K ClipIncTray.exe 3964 Console 0 5.196 K wuauclt.exe 256 Console 0 3.960 K kernel.exe 1044 Console 0 5.220 K sc_watch.exe 748 Console 0 2.396 K PROFIL~1.EXE 1944 Console 0 5.424 K firefox.exe 1116 Console 0 40.492 K cmd.exe 3356 Console 0 1.736 K notepad.exe 3328 Console 0 3.476 K cmd.exe 3448 Console 0 1.852 K tasklist.exe 2152 Console 0 4.464 K wmiprvse.exe 2204 Console 0 5.556 K Microsoft Windows XP [Version 5.1.2600] http://www.paules-pc-forum.de ***** Malware Team ***** ***** Ende des Scans 11.06.2008 um 21:43:15,34 *** zu punkt nummero sieben: ComboFix 08-06-10.5 - Schlitz 2008-06-11 21:49:21.1 - NTFSx86 Microsoft Windows XP Professional 5.1.2600.2.1252.1.1031.18.300 [GMT 2:00] ausgeführt von:: C:\Dokumente und Einstellungen\Schlitz\Desktop\ComboFix.exe * Neuer Wiederherstellungspunkt wurde erstellt [color=red]WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !![/color] . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . C:\Dokumente und Einstellungen\Schlitz\Startmenü\crazy girls.lnk . ((((((((((((((((((((((( Dateien erstellt von 2008-05-11 bis 2008-06-11 )))))))))))))))))))))))))))))) . 2008-06-11 21:23 . 2008-06-11 21:37 <DIR> d-------- C:\Programme\Navilog1 2008-06-10 22:48 . 2008-06-10 22:48 <DIR> d-------- C:\Programme\Trend Micro . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2008-06-11 19:03 --------- d-----w C:\Programme\AVPersonal 2008-05-03 15:26 --------- d-----w C:\Programme\Winamp 2008-05-02 14:56 --------- d-----w C:\Programme\Gemeinsame Dateien\InstallShield 2008-04-28 22:43 --------- d-----w C:\Programme\Java 2008-04-28 13:16 1,541,896 ----a-w C:\WINDOWS\CISUnins.exe 2008-04-28 13:16 1,541,896 ----a-w C:\WINDOWS\CICUnins.exe 2008-04-26 00:36 --------- d-----w C:\Programme\Gemeinsame Dateien\DVDVideoSoft 2008-03-25 04:51 621,344 ----a-w C:\WINDOWS\system32\mswstr10.dll 2008-03-25 04:51 187,168 ----a-w C:\WINDOWS\system32\msjint40.dll 2008-03-23 02:27 0 ----a-r C:\logwmemory.bin 2008-03-22 20:24 98,304 ----a-w C:\WINDOWS\system32\CmdLineExt.dll 2008-03-20 08:03 1,845,376 ----a-w C:\WINDOWS\system32\win32k.sys . ((((((((((((((((((((((((((((((((((((((((((((( AWF )))))))))))))))))))))))))))))))))))))))))))))))))))))))))) . -c--a-w 94,208 2005-09-03 14:18:30 C:\Programme\Gemeinsame Dateien\Ahead\Lib\bak\NMBgMonitor.exe -c--a-w 212,992 2003-07-01 10:33:56 C:\Programme\T-Online\T-Online_Software_5\Basis-Software\Basis1\bak\ToADiMon.exe -c--a-w 15,360 2004-08-03 23:57:50 C:\WINDOWS\system32\bak\ctfmon.exe ----a-w 15,360 2004-08-03 23:57:50 C:\WINDOWS\system32\ctfmon.exe -c--a-w 155,648 2001-07-09 10:50:42 C:\WINDOWS\system32\bak\NeroCheck.exe . (((((((((((((((((((((((((((( Autostart Punkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . REGEDIT4 *Hinweis* leere Eintrage & legitime Standardeintrage werden nicht angezeigt. [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 01:57 15360] "ClipIncSrvTray"="D:\Tobit ClipInc\Player\ClipIncTray.exe" [2008-04-18 18:08 584704] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NWEReboot"="" [] "SoundMan"="SOUNDMAN.EXE" [2002-10-28 08:38 47104 C:\WINDOWS\SOUNDMAN.EXE] "AVGCtrl"="C:\Programme\AVPersonal\AVGNT.exe" [2004-01-16 16:02 118824] "Anti-Blaxx Manager"="D:\mehr games\battlefield2\Anti-Blaxx 1.18\Anti-Blaxx.exe" [ ] "Adobe Reader Speed Launcher"="D:\Adobe\Reader\Reader_sl.exe" [2008-01-11 23:16 39792] "SunJavaUpdateSched"="C:\Programme\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 05:25 144784] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-04 01:57 15360] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"= [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ Lite] --a------ 2006-07-11 12:15 3144800 D:\Mein Zeuch\ICQLite\ICQLite.exe [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusOverride"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "D:\\Mein Zeuch\\ICQLite\\ICQLite.exe"= "D:\\games\\Soldat\\Soldat\\Soldat.exe"= "D:\\Tobit ClipInc\\Server\\ClipInc-Server.exe"= "D:\\Tobit ClipInc\\Player\\ClipInc-Player.exe"= "E:\\games\\CS\\SteamApps\\schlitz666\\counter-strike\\hl.exe"= "E:\\games\\CS\\SteamApps\\schlitz666\\day of defeat\\hl.exe"= "E:\\games\\CS\\SteamApps\\schlitz666\\condition zero\\hl.exe"= R1 sdcplh;sdcplh;C:\WINDOWS\system32\drivers\sdcplh.sys [2005-11-09 17:07] R2 ClipInc001;ClipInc 001;D:\Tobit ClipInc\Server\ClipInc-Server.exe 001 [] R3 avgntdd;avgntdd;C:\Programme\AVPersonal\AVGNTDD.SYS [2003-08-12 21:07] S2 AVWUpSrv;AntiVir Update;C:\Programme\AVPersonal\AVWUPSRV.EXE [2003-09-12 09:12] S3 c5c0f32b-23ae-4a19-a4c6-1f78eade2ec7;c5c0f32b-23ae-4a19-a4c6-1f78eade2ec7;F:\Player\cds300.dll [] [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e973e736-e51c-11db-bceb-0010dce39eaa}] \Shell\AutoRun\command - G:\travel&work.exe \Shell\Shell00\Command - G:\travel&work.exe . ************************************************************************** catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-06-11 21:51:18 Windows 5.1.2600 Service Pack 2 NTFS Scanne versteckte Prozesse... Scanne versteckte Autostart Einträge... Scanne versteckte Dateien... Scan erfolgreich abgeschlossen versteckte Dateien: 0 ************************************************************************** . Zeit der Fertigstellung: 2008-06-11 21:55:15 ComboFix-quarantined-files.txt 2008-06-11 19:54:54 8 Verzeichnis(se), 923,848,704 Bytes frei 10 Verzeichnis(se), 2,918,940,672 Bytes frei 94 --- E O F --- 2008-06-08 22:27:08 Dieser Beitrag wurde am 11.06.2008 um 21:57 Uhr von Schlitz editiert.
|
|
|
||
11.06.2008, 22:29
Ehrenmitglied
Beiträge: 29434 |
#35
Hallo Schlitz
das sieht ja wunderbar aus « scanne + poste den report http://virus-protect.org/artikel/tools/malwarebytes.html «« nun müssen wir nur noch sehen, ob eventuell ein USB-Stick verseucht ist.... Virustotal http://www.virustotal.com/flash/index_en.html G:\travel&work.exe Auf Durchsuchen klicken --> Datei aussuchen (oder gleich die Datei mit korrektem Pfad einkopieren mit Strg V) --> Klick auf die zu prüfende Datei und öffnen--> klick auf "Senden der Datei"... jetzt abwarten - dann mit der rechten Maustaste den Text markieren -> kopieren __________ MfG Sabina rund um die PC-Sicherheit |
|
|
||
12.06.2008, 02:38
...neu hier
Beiträge: 10 |
#36
Hallo Sabina,
In die Moment wo das Fenster scheint, wirden die Maus und Tastatur geblockt, ist da vieleicht was kaput? MfG Kawin Anhang: DSC00364.JPG
|
|
|
||
12.06.2008, 12:35
Ehrenmitglied
Beiträge: 29434 |
||
|
||
12.06.2008, 22:14
...neu hier
Beiträge: 5 |
#38
so zum ersten punkt habe gescannt und die 7 dateien gelöscht
hier der logfile Malwarebytes' Anti-Malware 1.17 Datenbank Version: 850 22:13:36 12.06.2008 mbam-log-6-12-2008 (22-13-36).txt Scan Art: Komplett Scan (C:\|D:\|E:\|) Objekte gescannt: 75691 Scan Dauer: 30 minute(s), 45 second(s) Infizierte Speicher Prozesse: 0 Infizierte Speicher Module: 0 Infizierte Registrierungsschlüssel: 1 Infizierte Registrierungswerte: 0 Infizierte Datei Objekte der Registrierung: 0 Infizierte Verzeichnisse: 4 Infizierte Dateien: 2 Infizierte Speicher Prozesse: (Keine Malware Objekte gefunden) Infizierte Speicher Module: (Keine Malware Objekte gefunden) Infizierte Registrierungsschlüssel: HKEY_LOCAL_MACHINE\SOFTWARE\MySearch (Adware.MyWebSearch) -> Quarantined and deleted successfully. Infizierte Registrierungswerte: (Keine Malware Objekte gefunden) Infizierte Datei Objekte der Registrierung: (Keine Malware Objekte gefunden) Infizierte Verzeichnisse: C:\Programme\MySearch (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programme\MySearch\bar (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programme\MySearch\bar\History (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programme\MySearch\bar\Settings (Adware.MyWebSearch) -> Quarantined and deleted successfully. Infizierte Dateien: C:\Programme\MySearch\bar\History\search2 (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programme\MySearch\bar\Settings\prevcfg2.htm (Adware.MyWebSearch) -> Quarantined and deleted successfully. zu dem usb stick: 0 bytes size received / Se ha recibido un archivo vacio Dieser Beitrag wurde am 12.06.2008 um 22:18 Uhr von Schlitz editiert.
|
|
|
||
12.06.2008, 23:52
Ehrenmitglied
Beiträge: 29434 |
#39
Hallo Schlitz
über die G:\travel&work.exe kann ich im net nichts finden, aber es ist eine eigenartige exe. Wie lange hast du den USB-Stick dort schon angeschlossen ? Was ist auf dem USB drauf ? Macht es dir was aus, ihn zu formatieren ? __________ MfG Sabina rund um die PC-Sicherheit |
|
|
||
13.06.2008, 13:54
...neu hier
Beiträge: 5 |
#40
also ich hab zwei usb sticks gestern noch formatiert waren nur lieder drauf
und dann hab ich noch ne xterne festplatte mit nem haufen lieder und filmen und bilder und den zu fromatieren fänd ich ehrlich gesagt nich so rosig! was is denn dieses travel undwork?? auch malware? also wenns gar ncih anders geht dann formatier ich die platte eben ! und angeschlossen is die immer aba meistens ausgeschaltet und nur wenn ich musik hör mach ich se an und lass direkt von ihr abspielen! |
|
|
||
13.06.2008, 13:59
Ehrenmitglied
Beiträge: 29434 |
#41
der rechner ist wieder sauber, es geht mir nur um den USB-Stick. (G:\travel&work.exe)
Lasse es erst mal dabei, wenn es noch Probleme geben sollte, melde dich wieder « und du kannst noch einen Onlinescan mit Bitdefender machen http://virus-protect.org/onlinescan.html __________ MfG Sabina rund um die PC-Sicherheit |
|
|
||
01.07.2008, 01:14
...neu hier
Beiträge: 5 |
#42
hey sabine danke nochmal für alles bei mir is bisher das problem nichmehr aufgetreten echt cool dass du mir geholfen hast merci für alles!!
|
|
|
||
31.07.2008, 14:34
...neu hier
Beiträge: 4 |
#43
Hey Sabina,
ich bräuchte auch mal deine Hilfe, wegen des Instant Access - Dialers! Hier ist mein Hijackthis - Protokoll: Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 14:32:14, on 31.07.2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16674) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\VTtrayp.exe C:\WINDOWS\system32\VTTimer.exe C:\Programme\VIAudioi\SBADeck\ADeck.exe C:\Programme\Netropa\Multimedia Keyboard\MMKeybd.exe C:\Programme\AntiVir PersonalEdition Classic\avgnt.exe C:\Programme\Ulead Systems\Ulead Photo Explorer 8.0 SE Basic\Monitor.exe C:\Programme\QuickTime\QTTask.exe C:\Programme\Ulead Systems\Ulead Photo Express 5 SE\calcheck.exe C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe C:\Programme\Java\jre1.6.0_03\bin\jusched.exe C:\WINDOWS\system32\ctfmon.exe C:\Programme\Messenger\msmsgs.exe C:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\Programme\Home Cinema\Power2Go\Power2GoExpress.exe C:\dokumente und einstellungen\horst\lokale einstellungen\anwendungsdaten\kamukow.exe C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe C:\Programme\Telekom\Eumex 704PC LAN\Capictrl.exe C:\Programme\Netropa\Multimedia Keyboard\TrayMon.exe C:\Programme\Netropa\Onscreen Display\OSD.exe C:\Programme\Telekom\Eumex 704PC LAN\HNetCtrl.exe C:\Programme\Netropa\Multimedia Keyboard\nhksrv.exe C:\Programme\a-squared Anti-Malware\a2service.exe C:\Programme\AntiVir PersonalEdition Classic\sched.exe C:\Programme\AntiVir PersonalEdition Classic\avguard.exe C:\WINDOWS\system32\drivers\CDAC11BA.EXE C:\Programme\CyberLink\Shared Files\RichVideo.exe C:\WINDOWS\System32\svchost.exe C:\Programme\Gemeinsame Dateien\Ulead Systems\DVD\ULCDRSvr.exe C:\WINDOWS\system32\wuauclt.exe C:\Programme\Java\jre1.6.0_03\bin\jucheck.exe C:\WINDOWS\system32\nsinet.exe C:\Programme\Internet Explorer\iexplore.exe C:\Programme\Adobe\Acrobat 7.0\Reader\AcroRd32.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.t-online.de/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Dokumente und Einstellungen\horst\Eigene Dateien\Sarah's Zeug\ICQ\ICQToolbar\toolbaru.dll (file missing) O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (file missing) O2 - BHO: GamesBar - {6F282B65-56BF-4BD1-A8B2-A4449A05863D} - C:\Programme\GamesBar\oberontb.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programme\google\googletoolbar2.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programme\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programme\google\googletoolbar2.dll O3 - Toolbar: GamesBar - {6F282B65-56BF-4BD1-A8B2-A4449A05863D} - C:\Programme\GamesBar\oberontb.dll O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe O4 - HKLM\..\Run: [VTTimer] VTTimer.exe O4 - HKLM\..\Run: [AudioDeck] C:\Programme\VIAudioi\SBADeck\ADeck.exe 1 O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Programme\Netropa\Multimedia Keyboard\MMKeybd.exe O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [avgnt] "C:\Programme\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKLM\..\Run: [Ulead AutoDetector] C:\Programme\Ulead Systems\Ulead Photo Explorer 8.0 SE Basic\Monitor.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [Ulead Photo Express 5 SE Calendar Checker] C:\Programme\Ulead Systems\Ulead Photo Express 5 SE\calcheck.exe O4 - HKLM\..\Run: [ICQ Lite] "C:\Dokumente und Einstellungen\horst\Eigene Dateien\Sarah's Zeug\ICQ\ICQLite\ICQLite.exe" -minimize O4 - HKLM\..\Run: [TkBellExe] "C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [Google Desktop Search] "C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe" /startup O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programme\Java\jre1.6.0_03\bin\jusched.exe" O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Programme\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [swg] C:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [Power2GoExpress] "C:\Programme\Home Cinema\Power2Go\Power2GoExpress.exe" /Startup O4 - HKCU\..\Run: [kamukow] c:\dokumente und einstellungen\horst\lokale einstellungen\anwendungsdaten\kamukow.exe kamukow O4 - HKCU\..\Run: [Instant Access] C:\WINDOWS\system32\nsinet.exe /res O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOKALER DIENST') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETZWERKDIENST') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O4 - Global Startup: Action Manager 32.lnk = C:\Programme\ScannerU\AM32.exe O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Programme\Gemeinsame Dateien\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: Adobe Reader - Schnellstart.lnk = C:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: CAPIControl.lnk = ? O4 - Global Startup: Denk dran!.lnk = C:\Programme\DATA BECKER\Denk dran!\BdR.exe O4 - Global Startup: HomeNet Control.lnk = ? O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft Office\Office10\OSA.EXE O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll O9 - Extra button: (no name) - {1A93C934-025B-4c3a-B38E-9654A7003239} - C:\Programme\GamesBar\oberontb.dll O9 - Extra 'Tools' menuitem: GamesBar - {1A93C934-025B-4c3a-B38E-9654A7003239} - C:\Programme\GamesBar\oberontb.dll O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Dokumente und Einstellungen\horst\Eigene Dateien\Sarah's Zeug\ICQ\ICQLite\ICQLite.exe (file missing) O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Dokumente und Einstellungen\horst\Eigene Dateien\Sarah's Zeug\ICQ\ICQLite\ICQLite.exe (file missing) O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe O14 - IERESET.INF: START_PAGE_URL=http://www.versatel.de/internet-cd/ O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {916CCBE5-C8C5-4F34-AEF8-064504454C75} (AtlAsianataCtlAttrib Class) - http://kraisoft.com/files/online/asianata.cab O16 - DPF: {DEB21AD3-FDA4-42F6-B57D-EE696A675EE8} (IPSUploader Control) - http://as.photoprintit.de/ips-opdata/layout/default01/activex/IPSUploader.cab O16 - DPF: {DF1C8E21-4045-4D67-B528-335F1A4F0DE9} - http://es6-scripts.dlv4.com/binaries/egaccess4/egaccess4_1073_em_XP.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{FBD10412-FE86-4E20-AE01-9D1B4D0DBB0E}: NameServer = 62.220.18.8 89.246.64.8 O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL O23 - Service: a-squared Anti-Malware Service (a2AntiMalware) - Emsi Software GmbH - C:\Programme\a-squared Anti-Malware\a2service.exe O23 - Service: AntiVir Scheduler (AntiVirScheduler) - Avira GmbH - C:\Programme\AntiVir PersonalEdition Classic\sched.exe O23 - Service: AntiVir PersonalEdition Classic Service (AntiVirService) - Avira GmbH - C:\Programme\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: Boonty Games - BOONTY - C:\Programme\Gemeinsame Dateien\BOONTY Shared\Service\Boonty.exe O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE O23 - Service: GoogleDesktopManager - Google - C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Programme\Netropa\Multimedia Keyboard\nhksrv.exe O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Programme\CyberLink\Shared Files\RichVideo.exe O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Programme\Gemeinsame Dateien\Ulead Systems\DVD\ULCDRSvr.exe O24 - Desktop Component 0: (no name) - http://www.t-online.de/bg.gif O24 - Desktop Component 1: (no name) - http://www.t-online.de/international/images/bg.gif -- End of file - 10123 bytes Danke schonmal! LG Sarah |
|
|
||
01.08.2008, 10:29
Ehrenmitglied
Beiträge: 6028 |
#44
Start-->Ausführen kopiere rein:
sc stop "Boonty Games" Klicke OK Mach dasselbe mit sc delete "Boonty Games" Klicke OK Schliesse alle Fenster und starte Hijack This Klicke: Do a Systemscan only Setze ein Häckchen in das Kästchen vor den genannten Eintrag bei Zitat O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (file missing)klicke: Fix checked Dein Internet Explorer muss geschlossen wenn Du Fix Checked klickst Malwarebytes Anti-Malware Malwarebytes Anti-Malware fuer Windows 2000,XP und Vista Download MBAM Doppelklick mbam-setup und waehle Deutsch ,das Program wird jetzt ge-updatet Waehle bei Reiter “Scanner”> "Schnell Scan durchfuehren" . Waehle alle Laufwerke>Scan laufen lassen Wenn am Ende infizierungen gefunden werden,anhaacken und entfernen lassen Unter Scanberichte stet das log (mbam-log-XX-XX-XXXX.txt) Poste dessen inhalt hier ins Forum Note: Wenn MBAM Schwierigkeiten damit hat Daten zu entfernen wird es gemeldet und klicke OK Danach wird gefragt den Rechner neu zu starten,lass es zu Nehme als Update Spiegel >>It-mate.co.uk Malwarebytes Anti-Malware kann man nachher behalten ! ComboFix Download ComboFix und speichert es auf den Desktop! Alle Fenster schliessen und combofix.exe starten Folge den Instruktionen in das Fenster Waehrend Combofix lauft NICHT ins Fenster klicken sonst erfriert dein Rechner Wenn das Tool fertig ist,oeffnet sich ein logfile (C:\ combofix.txt) nun das KOMPLETTE Log mit rechtem Mausklick abkopieren und ins Forum mit rechtem Mausklick "einfügen" Wenn dein Virenscanner meckert,ignorieren ! zusammen mit ein neuen log von HijackThis __________ MfG Argus |
|
|
||
01.08.2008, 17:34
...neu hier
Beiträge: 4 |
#45
Das ist der Logfile des Malware-Scans:
Malwarebytes' Anti-Malware 1.24 Datenbank Version: 1014 Windows 5.1.2600 Service Pack 2 16:59:39 01.08.2008 mbam-log-8-1-2008 (16-59-39).txt Scan-Methode: Quick-Scan Durchsuchte Objekte: 43921 Laufzeit: 11 minute(s), 47 second(s) Infizierte Speicherprozesse: 0 Infizierte Speichermodule: 0 Infizierte Registrierungsschlüssel: 4 Infizierte Registrierungswerte: 0 Infizierte Dateiobjekte der Registrierung: 0 Infizierte Verzeichnisse: 163 Infizierte Dateien: 178 Infizierte Speicherprozesse: (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: HKEY_CLASSES_ROOT\oberontb.band (Adware.Gamesbar) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\oberontb.band.1 (Adware.Gamesbar) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\egdhtml (Adware.NaviPromo) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Trymedia Systems (Adware.Trymedia) -> Quarantined and deleted successfully. Infizierte Registrierungswerte: (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: C:\Programme\Instant Access (Adware.EGDAccess) -> Delete on reboot. C:\Programme\Instant Access\Center (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer (Adware.EGDAccess) -> Delete on reboot. C:\Programme\Instant Access\Dialer\106446382 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com\custom\4239 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com\custom\4239\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com\50280 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com\50280\images (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com\50280\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\custom\1 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\custom\3020 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\custom\3020\DE (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\www.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\www.waypointcash.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\www.waypointcash.com\conversion (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com\custom\4239 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com\custom\4239\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\50285 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\50285\images (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\50285\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com\custom\4242 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com\custom\4242\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\images (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\images (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com\custom\4239 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com\custom\4239\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\50285 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\50285\images (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\50285\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com\custom\4239 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com\custom\4239\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\50285 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\50285\images (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\50285\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com\custom\4239 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com\custom\4239\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\fp.pc-on-internet.com\50282 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\fp.pc-on-internet.com\50282\images (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\fp.pc-on-internet.com\50282\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\custom\4239 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\custom\4239\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\50285 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\50285\images (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\50285\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\custom\4242 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\custom\4242\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\images (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\images (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\custom\4239 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\custom\4239\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\50285 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\50285\images (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\50285\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\www.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\custom\4239 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\custom\4239\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\50285 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\50285\images (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\50285\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully. Infizierte Dateien: C:\Programme\Instant Access\Center\Crazy Girls.upd (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Center\LAST SOFTWARES.upd (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Center\NoCreditCard.upd (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Center\tray1.ico (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\Crazy Girls.lnk (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\es6-external-api.dlv4.com\js\ecdbad9d3321d04dd56c8ab19fac2616 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com\Common\f068544e1b748e2b5f0a47bb395ddf73.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com\e0f14ad0554e723c3b2361e87c5750b6.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com\e0f14ad0554e723c3b2361e87c5750b6.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com\50280\images\background.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com\50280\images\index_01.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com\50280\images\index_04.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com\50280\images\EN\index_02.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\NoCreditCard.lnk (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\es6-external-api.dlv4.com\js\8d851b17943d9be87fe7d7ac37bee7d8 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\Common\bd8a8eee3f5bb40abf18dca6b08971d2.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\custom\1\dialer.ico (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\custom\3020\DE\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\custom\3020\DE\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\custom\3020\DE\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\custom\3020\DE\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\b2a2c467f71efaa9ca82062bdb3fd563.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\b2a2c467f71efaa9ca82062bdb3fd563.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_01.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_02.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_03.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_04.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_05.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_06.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_07.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_09.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_10.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_11.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_12.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\207397101\www.waypointcash.com\conversion\160856259f6ef5fda936840b058c1fdb (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\Crazy Girls.lnk (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\es6-external-api.dlv4.com\js\b9895f4d66fef5627642ee5a87c8bf97 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com\Common\b5a7967148e9b2fb2d47eac2ba57662e.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\50285\images\index_03.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\50285\images\index_04.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\50285\images\index_06.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\50285\images\index_07.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\50285\images\EN\index_01.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\50285\images\EN\index_02.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\es6-external-api.dlv4.com\js\a4725225df7fefac2b123ab019c4b02b (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com\Common\6cf44bff09597e7ebf3119f900e530a5.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com\custom\4242\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com\custom\4242\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com\custom\4242\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com\custom\4242\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\e97d1ab95866ef2514aa9d8d925d03bf.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\e97d1ab95866ef2514aa9d8d925d03bf.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\AC_RunActiveContent.js (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\reflection.js (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\video.swf (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\images\01.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\images\decob.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\images\decot.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\images\EN\slogan.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\images\EN\slogan02.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\images\EN\slogan03.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\es6-external-api.dlv4.com\js\3c85860603a4057b32e165a916cc5fb5 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com\Common\4927fb24a3817acd617c3e85e7cd9052.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\50285\images\index_03.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\50285\images\index_04.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\50285\images\index_06.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\50285\images\index_07.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\50285\images\EN\index_01.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\50285\images\EN\index_02.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\Crazy Girls.lnk (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\es6-external-api.dlv4.com\js\7862eeb48deaa7b7df3ec2e5deacc044 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com\Common\379b49299cca07be22a7366f1a95eb0a.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\613786178fd0687d1de167be4435addc.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\613786178fd0687d1de167be4435addc.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\50285\images\index_03.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\50285\images\index_04.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\50285\images\index_06.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\50285\images\index_07.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\50285\images\EN\index_01.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\50285\images\EN\index_02.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\Crazy Girls.lnk (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\es6-external-api.dlv4.com\js\79c632e03638439dbd3af541ccab6e33 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com\Common\3c500e112a77ea83d6f1c9f748b0703e.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\fp.pc-on-internet.com\80c06a771d548005c3e42de06fd81ac4.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\fp.pc-on-internet.com\80c06a771d548005c3e42de06fd81ac4.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\fp.pc-on-internet.com\50282\images\index_03.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\fp.pc-on-internet.com\50282\images\EN\index_01.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\745116137\fp.pc-on-internet.com\50282\images\EN\index_02.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\Crazy Girls.lnk (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\es6-external-api.dlv4.com\js\b9895f4d66fef5627642ee5a87c8bf97 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\Common\b5a7967148e9b2fb2d47eac2ba57662e.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\custom\4239\4239_dialer.ico (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\50285\images\index_03.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\50285\images\index_04.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\50285\images\index_06.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\50285\images\index_07.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\50285\images\EN\index_01.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\50285\images\EN\index_02.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\es6-external-api.dlv4.com\js\5d4c072ec769e9931aabf93812ddfb1e (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\Common\ee37c8b8c159e22778feb32e25fe0ec1.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\custom\4242\4242_dialer.ico (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\custom\4242\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\custom\4242\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\custom\4242\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\custom\4242\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\2cd10a7e7f2aa20e2d6c8b6132ce9d69.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\2cd10a7e7f2aa20e2d6c8b6132ce9d69.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\AC_RunActiveContent.js (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\reflection.js (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\video.swf (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\images\01.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\images\decob.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\images\decot.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\images\EN\slogan.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\images\EN\slogan02.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\images\EN\slogan03.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\es6-external-api.dlv4.com\js\3c85860603a4057b32e165a916cc5fb5 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\Common\4927fb24a3817acd617c3e85e7cd9052.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\custom\4239\4239_dialer.ico (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\50285\images\index_03.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\50285\images\index_04.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\50285\images\index_06.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\50285\images\index_07.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\50285\images\EN\index_01.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\50285\images\EN\index_02.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\es6-external-api.dlv4.com\js\3c85860603a4057b32e165a916cc5fb5 (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\Common\4927fb24a3817acd617c3e85e7cd9052.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\custom\4239\4239_dialer.ico (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\50285\images\index_03.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\50285\images\index_04.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\50285\images\index_06.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\50285\images\index_07.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\50285\images\EN\index_01.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\50285\images\EN\index_02.gif (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\WINDOWS\system32\nsinet.exe (Adware.NaviPromo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\nvs2.inf (Adware.EGDAccess) -> Quarantined and deleted successfully. Dein Link zu Combofix ist leider veraltet, aber ich hab mein eine Version runtergeladen! Habs jedoch noch nicht gestartet! Da scheint ja ein ziemlich großes Riskio dabei zu sein, dass es den Rechner schrottet! Kann ich das Risiko irgendwie vermeiden und meine Daten sichern? |
|
|
||
1.
lösche mit cleaner die temporären Dateien
http://www.ccleaner.de/?protecus.de
2.
mit dem HijackThis löschen ("fixen")
Klicke: "Do a system scan only"
Setze ein Häckchen in das Kästchen vor den genannten Eintrag
und wähle fix checked
Zitat
3.PC neustarten
4.
wende navilog an - Option 1, dann Option 2 - poste hier den Report von Option2
http://virus-protect.org/artikel/tools/navilog.html
5.
Den folgenden Text in den Editor (Start - Zubehör - Editor) kopieren und als listen.bat mit "Speichern unter" auf dem Desktop. Gebe bei Dateityp "Alle Dateien" an. Du solltest jetzt auf dem Desktop diese Datei finden. --> die listen.bat doppelt klicken--> kopiere den Text, der erscheint
Zitat
6.wende Windowsscan an + poste den report
http://virus-protect.org/artikel/tools/windowsscan.html
7.
wende Combofix an, klicke die Warnmeldung weg + poste hier den report
http://virus-protect.org/artikel/tools/combofix.html
__________
MfG Sabina
rund um die PC-Sicherheit