warning spyware detected on your computer |
||
---|---|---|
#0
| ||
06.09.2008, 17:02
...neu hier
Beiträge: 3 |
||
|
||
06.09.2008, 17:09
Moderator
Beiträge: 5694 |
||
|
||
06.09.2008, 17:20
...neu hier
Themenstarter Beiträge: 3 |
#3
Malwarebytes' Anti-Malware 1.26
Datenbank Version: 1119 Windows 5.1.2600 Service Pack 3 06.09.2008 17:19:37 mbam-log-2008-09-06 (17-19-37).txt Scan-Methode: Quick-Scan Durchsuchte Objekte: 40709 Laufzeit: 1 minute(s), 58 second(s) Infizierte Speicherprozesse: 7 Infizierte Speichermodule: 4 Infizierte Registrierungsschlüssel: 44 Infizierte Registrierungswerte: 20 Infizierte Dateiobjekte der Registrierung: 9 Infizierte Verzeichnisse: 10 Infizierte Dateien: 65 Infizierte Speicherprozesse: C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\winlogen.exe (Trojan.Downloader) -> Unloaded process successfully. C:\WINDOWS\msauc.exe (Trojan.Buzus) -> Unloaded process successfully. C:\WINDOWS\system32\system.exe (Proxy.Mitglieder) -> Unloaded process successfully. C:\WINDOWS\system32\Cpl32ver.exe (Trojan.Downloadere) -> Unloaded process successfully. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\csrssc.exe (Trojan.Downloader) -> Unloaded process successfully. C:\Dokumente und Einstellungen\Chris\svchost.exe (Trojan.Agent) -> Unloaded process successfully. C:\WINDOWS\system32\drivers\services.exe (Heuristics.Reserved.Word.Exploit) -> Unloaded process successfully. Infizierte Speichermodule: C:\WINDOWS\system32\sxxhouos.dll (Trojan.Vundo.H) -> Delete on reboot. C:\WINDOWS\system32\wvUnOgDu.dll (Trojan.Vundo.H) -> Delete on reboot. C:\WINDOWS\system32\gjm86akm34.dll (Trojan.Downloader) -> Delete on reboot. C:\Programme\Mozilla Firefox\setupapi.dll (Spyware.Passwords) -> Delete on reboot. Infizierte Registrierungsschlüssel: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0eecf3e3-576d-445f-9cec-df48240ed6b7} (Trojan.Vundo.H) -> Delete on reboot. HKEY_CLASSES_ROOT\CLSID\{0eecf3e3-576d-445f-9cec-df48240ed6b7} (Trojan.Vundo.H) -> Delete on reboot. HKEY_CLASSES_ROOT\CLSID\{c5bf49a2-94f3-42bd-f434-3604812c897d} (Trojan.Downloader) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c5bf49a2-94f3-42bd-f434-3604812c897d} (Trojan.Downloader) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\shoppingreport.hbax (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\shoppingreport.hbax.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\shoppingreport.hbinfoband (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\shoppingreport.hbinfoband.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\shoppingreport.iebutton (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\shoppingreport.iebutton.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\shoppingreport.iebuttona (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\shoppingreport.iebuttona.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\shoppingreport.rprtctrl (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\shoppingreport.rprtctrl.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{8ad9ad05-36be-4e40-ba62-5422eb0d02fb} (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{aebf09e2-0c15-43c8-99bf-928c645d98a0} (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{d8560ac2-21b5-4c1a-bdd4-bd12bc83b082} (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{c85bd9f1-5b95-46da-9f39-979db6b58484} (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{c9ccbb35-d123-4a31-affc-9b2933132116} (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{a7cddcdc-beeb-4685-a062-978f5e07ceee} (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{a16ad1e9-f69a-45af-9462-b1c286708842} (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{20ea9658-6bc3-4599-a87d-6371fe9295fc} (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{cdca70d8-c6a6-49ee-9bed-7429d6c477a2} (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{d136987f-e1c4-4ccc-a220-893df03ec5df} (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{e343edfc-1e6c-4cb5-aa29-e9c922641c80} (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{28abc5c0-4fcb-11cf-aax5-81cx1c635612} (Trojan.Agent) -> Delete on reboot. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{a7cddcdc-beeb-4685-a062-978f5e07ceee} (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{54d58f3c-fe7f-2596-4b75-f7387400ca70} (Trojan.Downloader) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\shoppingreport (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\wkey (Malware.Trace) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> Delete on reboot. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Software Notifier (Rogue.Multiple) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Juan (Malware.Trace) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> Delete on reboot. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Track System (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MSSMGR (Trojan.Downloader) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\aoprndtws (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\ShoppingReport (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\ShoppingReport (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ICF (Rootkit.Agent) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ICF (Rootkit.Agent) -> Quarantined and deleted successfully. Infizierte Registrierungswerte: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\54d58f94 (Trojan.Vundo.H) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{c5bf49a2-94f3-42bd-f434-3604812c897d} (Trojan.Downloader) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ksjf93orkekfniw73nfdd (Trojan.Downloader) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ksjf93orkekfniw73nfdd (Trojan.Downloader) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lsass driver (Trojan.Buzus) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\nmapi32.exe (Proxy.Mitglieder) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\cpl32ver (Trojan.Downloadere) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\jnskdfmf9eldfd (Trojan.Downloader) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\qugcbpzyh (Trojan.Downloader) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\[system] (Trojan.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\[system] (Trojan.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\iexplorer (Trojan.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\winlogon (Trojan.Agent) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\winlogon (Trojan.Agent) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\kr_done1 (Malware.Trace) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lphclk8j0eada (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\Control Panel\Desktop\wallpaper (Hijack.Wallpaper) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\Control Panel\Desktop\originalwallpaper (Hijack.Wallpaper) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\Control Panel\Desktop\convertedwallpaper (Hijack.Wallpaper) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\Control Panel\Desktop\scrnsave.exe (Hijack.Wallpaper) -> Quarantined and deleted successfully. Infizierte Dateiobjekte der Registrierung: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\wvunogdu -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\wvunogdu -> Delete on reboot. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Heuristics.Reserved.Word.Exploit) -> Data: c:\windows\system32\drivers\services.exe -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Heuristics.Reserved.Word.Exploit) -> Data: system32\drivers\services.exe -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Hijack.UserInit) -> Bad: (C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\drivers\services.exe) Good: (userinit.exe) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispBackgroundPage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispScrSavPage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoFolderOptions (Hijack.FolderOptions) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Schedule\ImagePath (Hijack.Tasks) -> Bad: (C:\WINDOWS\system32\drivers\services.exe) Good: (%SystemRoot%\System32\svchost.exe -k netsvcs) -> Quarantined and deleted successfully. Infizierte Verzeichnisse: C:\Programme\ShoppingReport (Adware.Shopping.Report) -> Quarantined and deleted successfully. C:\Programme\ShoppingReport\Bin (Adware.Shopping.Report) -> Quarantined and deleted successfully. C:\Programme\ShoppingReport\Bin\2.5.0 (Adware.Shopping.Report) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013 (Trojan.Agent) -> Delete on reboot. C:\Dokumente und Einstellungen\Chris\Anwendungsdaten\ShoppingReport (Adware.Shopping.Report) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Anwendungsdaten\ShoppingReport\cs (Adware.Shopping.Report) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Anwendungsdaten\ShoppingReport\cs\db (Adware.Shopping.Report) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Anwendungsdaten\ShoppingReport\cs\dwld (Adware.Shopping.Report) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Anwendungsdaten\ShoppingReport\cs\report (Adware.Shopping.Report) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Anwendungsdaten\ShoppingReport\cs\res1 (Adware.Shopping.Report) -> Quarantined and deleted successfully. Infizierte Dateien: C:\WINDOWS\system32\wvUnOgDu.dll (Trojan.Vundo.H) -> Delete on reboot. C:\WINDOWS\system32\uDgOnUvw.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully. C:\WINDOWS\system32\uDgOnUvw.ini2 (Trojan.Vundo.H) -> Quarantined and deleted successfully. C:\WINDOWS\system32\sxxhouos.dll (Trojan.Vundo.H) -> Delete on reboot. C:\WINDOWS\system32\souohxxs.ini (Trojan.Vundo.H) -> Delete on reboot. C:\WINDOWS\system32\gjm86akm34.dll (Trojan.Downloader) -> Delete on reboot. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\winlogen.exe (Trojan.Downloader) -> Quarantined and deleted successfully. C:\WINDOWS\msauc.exe (Trojan.Buzus) -> Quarantined and deleted successfully. C:\WINDOWS\system32\system.exe (Proxy.Mitglieder) -> Delete on reboot. C:\WINDOWS\system32\Cpl32ver.exe (Trojan.Downloadere) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\csrssc.exe (Trojan.Downloader) -> Quarantined and deleted successfully. C:\WINDOWS\system32\blphclk8j0eada.scr (Trojan.FakeAlert) -> Quarantined and deleted successfully. C:\WINDOWS\system32\dfc.dll (Trojan.Downloader) -> Delete on reboot. C:\WINDOWS\system32\opnLETMC.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\wpx46.cpx (Trojan.Buzus) -> Quarantined and deleted successfully. C:\wfhb.exe (Trojan.Dropper) -> Quarantined and deleted successfully. C:\wijl.exe (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\win32.exe (Trojan.Agent) -> Delete on reboot. C:\Programme\Mozilla Firefox\setupapi.dll (Spyware.Passwords) -> Delete on reboot. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\12_system413.exe (Trojan.Downloadere) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\16.tmp (Proxy.Mitglieder) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\17.tmp (Proxy.Mitglieder) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\18.tmp (Proxy.Mitglieder) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\19.tmp (Proxy.Mitglieder) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\chfffxem.exe (Trojan.Buzus) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\rsyncini.exe (Trojan.Shutdowner) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\yura.exe (Trojan.Agent) -> Quarantined and deleted successfully. C:\Programme\ShoppingReport\Uninst.exe (Adware.Shopping.Report) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\Desktop.ini (Trojan.Agent) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Anwendungsdaten\ShoppingReport\cs\Config.xml (Adware.Shopping.Report) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Anwendungsdaten\ShoppingReport\cs\db\Aliases.dbs (Adware.Shopping.Report) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Anwendungsdaten\ShoppingReport\cs\db\Sites.dbs (Adware.Shopping.Report) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Anwendungsdaten\ShoppingReport\cs\dwld\WhiteList.xip (Adware.Shopping.Report) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Anwendungsdaten\ShoppingReport\cs\report\aggr_storage.xml (Adware.Shopping.Report) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Anwendungsdaten\ShoppingReport\cs\report\send_storage.xml (Adware.Shopping.Report) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Anwendungsdaten\ShoppingReport\cs\res1\WhiteList.dbs (Adware.Shopping.Report) -> Quarantined and deleted successfully. C:\WINDOWS\system32\drivers\services.exe (Trojan.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\iexplorer.exe (Trojan.Agent) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\svchost.exe (Trojan.Agent) -> Delete on reboot. C:\WINDOWS\system32\shell31.dll (Trojan.Agent) -> Quarantined and deleted successfully. C:\autorun.exe (Trojan.Agent) -> Quarantined and deleted successfully. C:\d1.exe (Trojan.Agent) -> Quarantined and deleted successfully. C:\d.exe (Trojan.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\gEWpPgFU.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\efCRlMCU.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\mlJdEtRJ.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\fccdeeeb.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\lphclk8j0eada.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully. C:\WINDOWS\system32\phclk8j0eada.bmp (Trojan.FakeAlert) -> Quarantined and deleted successfully. C:\WINDOWS\Temp\BN2.tmp (Trojan.Agent) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\BN2.tmp (Trojan.Agent) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\BN3.tmp (Trojan.Agent) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\BN4.tmp (Trojan.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\Temp\BN5.tmp (Trojan.Agent) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\BN5.tmp (Trojan.Agent) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\BN6.tmp (Trojan.Agent) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\BN7.tmp (Trojan.Agent) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\BN8.tmp (Trojan.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\Temp\BN9.tmp (Trojan.Agent) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\BN9.tmp (Trojan.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\Temp\BN11.tmp (Trojan.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\Temp\BN1B.tmp (Trojan.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\Temp\BN40.tmp (Trojan.Agent) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\BN10.tmp (Trojan.Agent) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\Chris\Lokale Einstellungen\Temp\BN39.tmp (Trojan.Agent) -> Quarantined and deleted successfully. |
|
|
||
06.09.2008, 17:35
Member
Beiträge: 1132 |
#4
Mann, das ist ja heftig!
Zitat habe kaspersky drauf was sich jetzt nicht mehr starten lässtEigentlich hätte Kaspersky das verhindern müssen, oder hattest Du den Echtzeitschutz vor dem Download abgeschaltet. Frage deshalb, weil ich ebenfalls KAV nutze und etwas erstaunt darüber bin, dass das Prog die Viren nicht gefunden und eliminiert hat. Gruß Heron edit: arbeite bitte noch die anderen Punkte aus Swiss' Link weiter oben ab (Combofix, HijackThis, datfindbat) und poste die Logs. __________ "Die Welt ist groß, weil der Kopf so klein" Wilhelm Busch Dieser Beitrag wurde am 06.09.2008 um 18:05 Uhr von Heron editiert.
|
|
|
||
07.09.2008, 19:59
...neu hier
Themenstarter Beiträge: 3 |
#5
so hab das alles gemacht funktionierte dann auch alles wieder dann waren noch 3 viren drauf gelöscht neugestarted danach ging garnichts mehr hab dann windows neu aufgelegt und hab jetzt ein neues prob ich kann sp3 nicht installieren weil ntkrnlpa.exe in benutzung ist ich finde den prozess aber nicht bitte um hilfe danke
|
|
|
||
ich hab seid heute das problem das mein computer total spinnt ich hab ein zwei sachen gedownloadet und seid dem hab ich massig viren drauf hab versucht diese zu löschen aber es hat nicht funktioniert
habe kaspersky drauf was sich jetzt nicht mehr starten lässt
und ich habe auf dem desktop eine meldung
warning spyware detected on your computer
warning win32/adware.virtumonde
detected on your computer
warning win32/privacyRemover.m64
detected on your computer
brauche dringend hilfe weiß nicht was ich machen soll
danke im vorraus