Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: EXP/Pidief.hdi [EXPLOIT] Problem

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

 
Alt 16.11.2011, 11:04   #21
maxum
 
EXP/Pidief.hdi [EXPLOIT] Problem - Standard

EXP/Pidief.hdi [EXPLOIT] Problem



Also das funktionierte nun, aber als der Scan Fertig war, kam eine neue 0.466....exe Datei aufs Desktop und Java wollte wieder öffnen, da hab ich reflektorisch fortgesetzt und dann auf Neustart geclickt. Da waren aber nun nicht alle Funde auf "SKIP" - sry, schonmal vorweg...

hier die logdatei:
Zitat:
10:32:49.0281 1620 TDSS rootkit removing tool 2.6.19.0 Nov 16 2011 12:18:50
10:32:49.0546 1620 ============================================================
10:32:49.0546 1620 Current date / time: 2011/11/16 10:32:49.0531
10:32:49.0546 1620 SystemInfo:
10:32:49.0546 1620
10:32:49.0546 1620 OS Version: 5.1.2600 ServicePack: 2.0
10:32:49.0546 1620 Product type: Workstation
10:32:49.0546 1620 ComputerName: MARKUS-33DAF62D
10:32:49.0546 1620 UserName: Markus
10:32:49.0546 1620 Windows directory: C:\WINDOWS
10:32:49.0546 1620 System windows directory: C:\WINDOWS
10:32:49.0546 1620 Processor architecture: Intel x86
10:32:49.0546 1620 Number of processors: 1
10:32:49.0546 1620 Page size: 0x1000
10:32:49.0546 1620 Boot type: Normal boot
10:32:49.0546 1620 ============================================================
10:32:50.0953 1620 Initialize success
10:34:49.0125 1780 ============================================================
10:34:49.0125 1780 Scan started
10:34:49.0125 1780 Mode: Manual; SigCheck; TDLFS;
10:34:49.0125 1780 ============================================================
10:34:49.0921 1780 Abiosdsk - ok
10:34:49.0937 1780 abp480n5 - ok
10:34:50.0000 1780 ACPI (94b4741d2cf9ed38140b831293d1601a) C:\WINDOWS\system32\DRIVERS\ACPI.sys
10:34:51.0062 1780 ACPI - ok
10:34:51.0171 1780 ACPIEC (9e1ca3160dafb159ca14f83b1e317f75) C:\WINDOWS\system32\drivers\ACPIEC.sys
10:34:51.0359 1780 ACPIEC - ok
10:34:51.0375 1780 adpu160m - ok
10:34:51.0421 1780 aec (1ee7b434ba961ef845de136224c30fec) C:\WINDOWS\system32\drivers\aec.sys
10:34:51.0796 1780 aec - ok
10:34:51.0843 1780 AFD (55e6e1c51b6d30e54335750955453702) C:\WINDOWS\System32\drivers\afd.sys
10:34:51.0890 1780 AFD - ok
10:34:51.0890 1780 Aha154x - ok
10:34:51.0921 1780 aic78u2 - ok
10:34:51.0937 1780 aic78xx - ok
10:34:51.0953 1780 AliIde - ok
10:34:51.0968 1780 amsint - ok
10:34:52.0000 1780 asc - ok
10:34:52.0015 1780 asc3350p - ok
10:34:52.0031 1780 asc3550 - ok
10:34:52.0093 1780 Aspi32 (b979979ab8027f7f53fb16ec4229b7db) C:\WINDOWS\system32\drivers\Aspi32.sys
10:34:52.0125 1780 Aspi32 ( UnsignedFile.Multi.Generic ) - warning
10:34:52.0125 1780 Aspi32 - detected UnsignedFile.Multi.Generic (1)
10:34:52.0171 1780 AsyncMac (02000abf34af4c218c35d257024807d6) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
10:34:52.0328 1780 AsyncMac - ok
10:34:52.0359 1780 atapi (cdfe4411a69c224bd1d11b2da92dac51) C:\WINDOWS\system32\DRIVERS\atapi.sys
10:34:52.0531 1780 atapi - ok
10:34:52.0546 1780 Atdisk - ok
10:34:52.0578 1780 Atmarpc (ec88da854ab7d7752ec8be11a741bb7f) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
10:34:52.0781 1780 Atmarpc - ok
10:34:52.0828 1780 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
10:34:53.0000 1780 audstub - ok
10:34:53.0125 1780 avgio (0b497c79824f8e1bf22fa6aacd3de3a0) C:\Programme\Avira\AntiVir Desktop\avgio.sys
10:34:53.0140 1780 avgio - ok
10:34:53.0187 1780 avgntflt (1e4114685de1ffa9675e09c6a1fb3f4b) C:\WINDOWS\system32\DRIVERS\avgntflt.sys
10:34:53.0437 1780 avgntflt - ok
10:34:53.0500 1780 avipbb (0f78d3dae6dedd99ae54c9491c62adf2) C:\WINDOWS\system32\DRIVERS\avipbb.sys
10:34:53.0531 1780 avipbb - ok
10:34:53.0578 1780 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
10:34:53.0765 1780 Beep - ok
10:34:53.0843 1780 camfilt2 (088c0978203d59425a12b2a53fccd02b) C:\WINDOWS\system32\DRIVERS\camfilt2.sys
10:34:53.0875 1780 camfilt2 ( UnsignedFile.Multi.Generic ) - warning
10:34:53.0875 1780 camfilt2 - detected UnsignedFile.Multi.Generic (1)
10:34:54.0015 1780 catchme - ok
10:34:54.0046 1780 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
10:34:54.0234 1780 cbidf2k - ok
10:34:54.0265 1780 CCDECODE (6163ed60b684bab19d3352ab22fc48b2) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
10:34:54.0453 1780 CCDECODE - ok
10:34:54.0468 1780 cd20xrnt - ok
10:34:54.0484 1780 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
10:34:54.0656 1780 Cdaudio - ok
10:34:54.0703 1780 Cdfs (cd7d5152df32b47f4e36f710b35aae02) C:\WINDOWS\system32\drivers\Cdfs.sys
10:34:54.0875 1780 Cdfs - ok
10:34:54.0921 1780 Cdrom (af9c19b3100fe010496b1a27181fbf72) C:\WINDOWS\system32\DRIVERS\cdrom.sys
10:34:55.0093 1780 Cdrom - ok
10:34:55.0109 1780 Changer - ok
10:34:55.0140 1780 CmdIde - ok
10:34:55.0171 1780 Cpqarray - ok
10:34:55.0203 1780 dac2w2k - ok
10:34:55.0203 1780 dac960nt - ok
10:34:55.0234 1780 Disk (00ca44e4534865f8a3b64f7c0984bff0) C:\WINDOWS\system32\DRIVERS\disk.sys
10:34:55.0390 1780 Disk - ok
10:34:55.0453 1780 dmboot (5789b83ba87fc84c3568cf86cacef8ce) C:\WINDOWS\system32\drivers\dmboot.sys
10:34:55.0656 1780 dmboot - ok
10:34:55.0687 1780 dmio (084eb0a50a4f7b4705c8a57f234e5291) C:\WINDOWS\system32\drivers\dmio.sys
10:34:55.0875 1780 dmio - ok
10:34:55.0906 1780 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
10:34:56.0062 1780 dmload - ok
10:34:56.0109 1780 DMusic (a6f881284ac1150e37d9ae47ff601267) C:\WINDOWS\system32\drivers\DMusic.sys
10:34:56.0281 1780 DMusic - ok
10:34:56.0296 1780 dpti2o - ok
10:34:56.0328 1780 drmkaud (1ed4dbbae9f5d558dbba4cc450e3eb2e) C:\WINDOWS\system32\drivers\drmkaud.sys
10:34:56.0500 1780 drmkaud - ok
10:34:56.0546 1780 Fastfat (3117f595e9615e04f05a54fc15a03b20) C:\WINDOWS\system32\drivers\Fastfat.sys
10:34:56.0718 1780 Fastfat - ok
10:34:56.0750 1780 Fdc (ced2e8396a8838e59d8fd529c680e02c) C:\WINDOWS\system32\DRIVERS\fdc.sys
10:34:56.0921 1780 Fdc - ok
10:34:56.0937 1780 Fips (9e9af89f9b14aa6249065c309ce73bd8) C:\WINDOWS\system32\drivers\Fips.sys
10:34:57.0093 1780 Fips - ok
10:34:57.0125 1780 Flpydisk (0dd1de43115b93f4d85e889d7a86f548) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
10:34:57.0281 1780 Flpydisk - ok
10:34:57.0343 1780 FltMgr (3d234fb6d6ee875eb009864a299bea29) C:\WINDOWS\system32\DRIVERS\fltMgr.sys
10:34:57.0765 1780 FltMgr - ok
10:34:57.0781 1780 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
10:34:57.0953 1780 Fs_Rec - ok
10:34:57.0968 1780 Ftdisk (8f1955ce42e1484714b542f341647778) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
10:34:58.0140 1780 Ftdisk - ok
10:34:58.0156 1780 Gpc (c0f1d4a21de5a415df8170616703debf) C:\WINDOWS\system32\DRIVERS\msgpc.sys
10:34:58.0328 1780 Gpc - ok
10:34:58.0375 1780 HDAudBus (3fcc124b6e08ee0e9351f717dd136939) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
10:34:58.0421 1780 HDAudBus - ok
10:34:58.0484 1780 HidUsb (1de6783b918f540149aa69943bdfeba8) C:\WINDOWS\system32\DRIVERS\hidusb.sys
10:34:58.0640 1780 HidUsb - ok
10:34:58.0656 1780 hpn - ok
10:34:58.0703 1780 HTTP (9f8b0f4276f618964fd118be4289b7cd) C:\WINDOWS\system32\Drivers\HTTP.sys
10:34:58.0765 1780 HTTP - ok
10:34:58.0765 1780 i2omgmt - ok
10:34:58.0796 1780 i2omp - ok
10:34:58.0828 1780 i8042prt (7c575018d0413440d75432a78b88c899) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
10:34:59.0000 1780 i8042prt - ok
10:34:59.0125 1780 idrmkl - ok
10:34:59.0171 1780 Imapi (f8aa320c6a0409c0380e5d8a99d76ec6) C:\WINDOWS\system32\DRIVERS\imapi.sys
10:34:59.0328 1780 Imapi - ok
10:34:59.0359 1780 ini910u - ok
10:34:59.0593 1780 IntcAzAudAddService (8cd7f3fb0b2418af79914adb1e265184) C:\WINDOWS\system32\drivers\RtkHDAud.sys
10:34:59.0968 1780 IntcAzAudAddService - ok
10:35:00.0046 1780 IntelIde - ok
10:35:00.0093 1780 Ip6Fw (4448006b6bc60e6c027932cfc38d6855) C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys
10:35:00.0265 1780 Ip6Fw - ok
10:35:00.0312 1780 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
10:35:00.0484 1780 IpFilterDriver - ok
10:35:00.0531 1780 IpInIp (e1ec7f5da720b640cd8fb8424f1b14bb) C:\WINDOWS\system32\DRIVERS\ipinip.sys
10:35:00.0703 1780 IpInIp - ok
10:35:00.0750 1780 IpNat (e2168cbc7098ffe963c6f23f472a3593) C:\WINDOWS\system32\DRIVERS\ipnat.sys
10:35:01.0187 1780 IpNat - ok
10:35:01.0250 1780 IPSec (64537aa5c003a6afeee1df819062d0d1) C:\WINDOWS\system32\DRIVERS\ipsec.sys
10:35:01.0421 1780 IPSec - ok
10:35:01.0468 1780 irda (86c204836feec22510d434982d4221b8) C:\WINDOWS\system32\DRIVERS\irda.sys
10:35:01.0562 1780 irda - ok
10:35:01.0625 1780 IRENUM (50708daa1b1cbb7d6ac1cf8f56a24410) C:\WINDOWS\system32\DRIVERS\irenum.sys
10:35:01.0718 1780 IRENUM - ok
10:35:01.0734 1780 irsir (0501f0b9ab08425f8c0eacbdcc04aa32) C:\WINDOWS\system32\DRIVERS\irsir.sys
10:35:01.0843 1780 irsir - ok
10:35:01.0859 1780 isapnp (ce9b7afdf0a3d7dd8d1487262316b959) C:\WINDOWS\system32\DRIVERS\isapnp.sys
10:35:02.0015 1780 isapnp - ok
10:35:02.0093 1780 Kbdclass (b128fc0a5cd83f669d5de4b58f77c7d6) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
10:35:02.0265 1780 Kbdclass - ok
10:35:02.0328 1780 kmixer (ba5deda4d934e6288c2f66caf58d2562) C:\WINDOWS\system32\drivers\kmixer.sys
10:35:02.0781 1780 kmixer - ok
10:35:02.0812 1780 KSecDD (674d3e5a593475915dc6643317192403) C:\WINDOWS\system32\drivers\KSecDD.sys
10:35:02.0890 1780 KSecDD - ok
10:35:02.0906 1780 lbrtfdc - ok
10:35:02.0937 1780 MBAMProtector - ok
10:35:02.0953 1780 MBAMSwissArmy - ok
10:35:03.0015 1780 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
10:35:03.0156 1780 mnmdd - ok
10:35:03.0218 1780 Modem (91a3da4b12f6f1d760463a7f7857f748) C:\WINDOWS\system32\drivers\Modem.sys
10:35:03.0390 1780 Modem - ok
10:35:03.0437 1780 Mouclass (71e15ca47fd947552054afb28536268f) C:\WINDOWS\system32\DRIVERS\mouclass.sys
10:35:03.0609 1780 Mouclass - ok
10:35:03.0656 1780 mouhid (66a6f73c74e1791464160a7065ce711a) C:\WINDOWS\system32\DRIVERS\mouhid.sys
10:35:03.0796 1780 mouhid - ok
10:35:03.0843 1780 MountMgr (65653f3b4477f3c63e68a9659f85ee2e) C:\WINDOWS\system32\drivers\MountMgr.sys
10:35:04.0000 1780 MountMgr - ok
10:35:04.0015 1780 mraid35x - ok
10:35:04.0046 1780 MRxDAV (29414447eb5bde2f8397dc965dbb3156) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
10:35:04.0531 1780 MRxDAV - ok
10:35:04.0593 1780 MRxSmb (fb6c89bb3ce282b08bdb1e3c179e1c39) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
10:35:04.0656 1780 MRxSmb - ok
10:35:04.0687 1780 Msfs (561b3a4333ca2dbdba28b5b956822519) C:\WINDOWS\system32\drivers\Msfs.sys
10:35:04.0843 1780 Msfs - ok
10:35:04.0890 1780 MSKSSRV (ae431a8dd3c1d0d0610cdbac16057ad0) C:\WINDOWS\system32\drivers\MSKSSRV.sys
10:35:05.0046 1780 MSKSSRV - ok
10:35:05.0078 1780 MSPCLOCK (13e75fef9dfeb08eeded9d0246e1f448) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
10:35:05.0234 1780 MSPCLOCK - ok
10:35:05.0265 1780 MSPQM (1988a33ff19242576c3d0ef9ce785da7) C:\WINDOWS\system32\drivers\MSPQM.sys
10:35:05.0421 1780 MSPQM - ok
10:35:05.0468 1780 mssmbios (469541f8bfd2b32659d5d463a6714bce) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
10:35:05.0609 1780 mssmbios - ok
10:35:05.0656 1780 MSTEE (bf13612142995096ab084f2db7f40f77) C:\WINDOWS\system32\drivers\MSTEE.sys
10:35:05.0812 1780 MSTEE - ok
10:35:05.0843 1780 Mup (82035e0f41c2dd05ae41d27fe6cf7de1) C:\WINDOWS\system32\drivers\Mup.sys
10:35:06.0015 1780 Mup - ok
10:35:06.0062 1780 NABTSFEC (5c8dc6429c43dc6177c1fa5b76290d1a) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
10:35:06.0218 1780 NABTSFEC - ok
10:35:06.0265 1780 NDIS (558635d3af1c7546d26067d5d9b6959e) C:\WINDOWS\system32\drivers\NDIS.sys
10:35:06.0421 1780 NDIS - ok
10:35:06.0468 1780 NdisIP (520ce427a8b298f54112857bcf6bde15) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
10:35:06.0640 1780 NdisIP - ok
10:35:06.0687 1780 NdisTapi (08d43bbdacdf23f34d79e44ed35c1b4c) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
10:35:06.0828 1780 NdisTapi - ok
10:35:06.0859 1780 Ndisuio (34d6cd56409da9a7ed573e1c90a308bf) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
10:35:07.0000 1780 Ndisuio - ok
10:35:07.0031 1780 NdisWan (0b90e255a9490166ab368cd55a529893) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
10:35:07.0187 1780 NdisWan - ok
10:35:07.0203 1780 NDProxy (59fc3fb44d2669bc144fd87826bb571f) C:\WINDOWS\system32\drivers\NDProxy.sys
10:35:07.0359 1780 NDProxy - ok
10:35:07.0390 1780 NetBIOS (3a2aca8fc1d7786902ca434998d7ceb4) C:\WINDOWS\system32\DRIVERS\netbios.sys
10:35:07.0546 1780 NetBIOS - ok
10:35:07.0578 1780 NetBT (0c80e410cd2f47134407ee7dd19cc86b) C:\WINDOWS\system32\DRIVERS\netbt.sys
10:35:07.0750 1780 NetBT - ok
10:35:07.0796 1780 Npfs (4f601bcb8f64ea3ac0994f98fed03f8e) C:\WINDOWS\system32\drivers\Npfs.sys
10:35:07.0953 1780 Npfs - ok
10:35:08.0015 1780 Ntfs (19a811ef5f1ed5c926a028ce107ff1af) C:\WINDOWS\system32\drivers\Ntfs.sys
10:35:08.0484 1780 Ntfs - ok
10:35:08.0515 1780 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
10:35:08.0671 1780 Null - ok
10:35:08.0859 1780 nv (eb2858f920b8135b807b5ccaa3ed73dc) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
10:35:09.0078 1780 nv - ok
10:35:09.0187 1780 NVENETFD (4d6f0d3fb17c1ba64942f415c73adcdb) C:\WINDOWS\system32\DRIVERS\NVENETFD.sys
10:35:09.0234 1780 NVENETFD - ok
10:35:09.0265 1780 nvnetbus (921e63aa1e1a20302223d016acafb52b) C:\WINDOWS\system32\DRIVERS\nvnetbus.sys
10:35:09.0296 1780 nvnetbus - ok
10:35:09.0328 1780 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
10:35:09.0515 1780 NwlnkFlt - ok
10:35:09.0531 1780 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
10:35:09.0687 1780 NwlnkFwd - ok
10:35:09.0734 1780 Parport (b2f17a2edb5450e61973a037f63a595b) C:\WINDOWS\system32\DRIVERS\parport.sys
10:35:09.0890 1780 Parport - ok
10:35:09.0906 1780 PartMgr (3334430c29dc338092f79c38ef7b4cd0) C:\WINDOWS\system32\drivers\PartMgr.sys
10:35:10.0046 1780 PartMgr - ok
10:35:10.0109 1780 ParVdm (c2bf987829099a3eaa2ca6a0a90ecb4f) C:\WINDOWS\system32\drivers\ParVdm.sys
10:35:10.0265 1780 ParVdm - ok
10:35:10.0328 1780 PCI (6fb463e5b243fbd6f3d3c83f914d94fb) C:\WINDOWS\system32\DRIVERS\pci.sys
10:35:10.0468 1780 PCI - ok
10:35:10.0484 1780 PCIDump - ok
10:35:10.0546 1780 PCIIde (59ba86d9a61cbcf4df8e598c331f5b82) C:\WINDOWS\system32\DRIVERS\pciide.sys
10:35:10.0687 1780 PCIIde - ok
10:35:10.0734 1780 Pcmcia (e2363f4c1daff89abee5f593e13d8a05) C:\WINDOWS\system32\drivers\Pcmcia.sys
10:35:10.0875 1780 Pcmcia - ok
10:35:10.0890 1780 PDCOMP - ok
10:35:10.0906 1780 PDFRAME - ok
10:35:10.0921 1780 PDRELI - ok
10:35:10.0953 1780 PDRFRAME - ok
10:35:10.0968 1780 perc2 - ok
10:35:10.0984 1780 perc2hib - ok
10:35:11.0046 1780 PptpMiniport (1c5cc65aac0783c344f16353e60b72ac) C:\WINDOWS\system32\DRIVERS\raspptp.sys
10:35:11.0187 1780 PptpMiniport - ok
10:35:11.0218 1780 Processor (3d7f196e77f986c106e9320b81a5ebbf) C:\WINDOWS\system32\DRIVERS\processr.sys
10:35:11.0359 1780 Processor - ok
10:35:11.0390 1780 PSched (48671f327553dcf1d27f6197f622a668) C:\WINDOWS\system32\DRIVERS\psched.sys
10:35:11.0531 1780 PSched - ok
10:35:11.0562 1780 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
10:35:11.0718 1780 Ptilink - ok
10:35:11.0750 1780 PxHelp20 (153d02480a0a2f45785522e814c634b6) C:\WINDOWS\system32\Drivers\PxHelp20.sys
10:35:11.0781 1780 PxHelp20 - ok
10:35:11.0796 1780 ql1080 - ok
10:35:11.0812 1780 Ql10wnt - ok
10:35:11.0828 1780 ql12160 - ok
10:35:11.0843 1780 ql1240 - ok
10:35:11.0859 1780 ql1280 - ok
10:35:11.0890 1780 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
10:35:12.0062 1780 RasAcd - ok
10:35:12.0125 1780 Rasirda (0207d26ddf796a193ccd9f83047bb5fc) C:\WINDOWS\system32\DRIVERS\rasirda.sys
10:35:12.0218 1780 Rasirda - ok
10:35:12.0234 1780 Rasl2tp (98faeb4a4dcf812ba1c6fca4aa3e115c) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
10:35:12.0375 1780 Rasl2tp - ok
10:35:12.0390 1780 RasPppoe (7306eeed8895454cbed4669be9f79faa) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
10:35:12.0546 1780 RasPppoe - ok
10:35:12.0562 1780 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
10:35:12.0734 1780 Raspti - ok
10:35:12.0796 1780 Rdbss (03b965b1ca47f6ef60eb5e51cb50e0af) C:\WINDOWS\system32\DRIVERS\rdbss.sys
10:35:13.0265 1780 Rdbss - ok
10:35:13.0281 1780 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
10:35:13.0437 1780 RDPCDD - ok
10:35:13.0500 1780 RDPWD (b54cd38a9ebfbf2b3561426e3fe26f62) C:\WINDOWS\system32\drivers\RDPWD.sys
10:35:13.0984 1780 RDPWD - ok
10:35:14.0015 1780 redbook (aa56702e230860565cb8d43680f57f33) C:\WINDOWS\system32\DRIVERS\redbook.sys
10:35:14.0171 1780 redbook - ok
10:35:14.0265 1780 se58bus (6c1bec4e12b4ed714e5f8065f680e9c2) C:\WINDOWS\system32\DRIVERS\se58bus.sys
10:35:14.0296 1780 se58bus ( UnsignedFile.Multi.Generic ) - warning
10:35:14.0296 1780 se58bus - detected UnsignedFile.Multi.Generic (1)
10:35:14.0343 1780 se58mdfl (fa571b57feec39f219024f06f4f8aa15) C:\WINDOWS\system32\DRIVERS\se58mdfl.sys
10:35:14.0375 1780 se58mdfl ( UnsignedFile.Multi.Generic ) - warning
10:35:14.0375 1780 se58mdfl - detected UnsignedFile.Multi.Generic (1)
10:35:14.0406 1780 se58mdm (a4bcc7ef6527ebda1b27c371262b4d0d) C:\WINDOWS\system32\DRIVERS\se58mdm.sys
10:35:14.0437 1780 se58mdm ( UnsignedFile.Multi.Generic ) - warning
10:35:14.0437 1780 se58mdm - detected UnsignedFile.Multi.Generic (1)
10:35:14.0500 1780 se58mgmt (29efe7e788ea404344186a7c3a43d08e) C:\WINDOWS\system32\DRIVERS\se58mgmt.sys
10:35:14.0515 1780 se58mgmt ( UnsignedFile.Multi.Generic ) - warning
10:35:14.0515 1780 se58mgmt - detected UnsignedFile.Multi.Generic (1)
10:35:14.0546 1780 se58nd5 (2485cd76889251fc9bc7a0cb112e47f6) C:\WINDOWS\system32\DRIVERS\se58nd5.sys
10:35:14.0578 1780 se58nd5 ( UnsignedFile.Multi.Generic ) - warning
10:35:14.0578 1780 se58nd5 - detected UnsignedFile.Multi.Generic (1)
10:35:14.0609 1780 se58obex (4ab981718c6d34187764afd6da4b348b) C:\WINDOWS\system32\DRIVERS\se58obex.sys
10:35:14.0640 1780 se58obex ( UnsignedFile.Multi.Generic ) - warning
10:35:14.0640 1780 se58obex - detected UnsignedFile.Multi.Generic (1)
10:35:14.0687 1780 se58unic (f653642c39a7072bdce7f25404ec15ce) C:\WINDOWS\system32\DRIVERS\se58unic.sys
10:35:14.0734 1780 se58unic ( UnsignedFile.Multi.Generic ) - warning
10:35:14.0734 1780 se58unic - detected UnsignedFile.Multi.Generic (1)
10:35:14.0781 1780 se59bus (7c38fc284136981ebe002252fa0900d3) C:\WINDOWS\system32\DRIVERS\se59bus.sys
10:35:14.0796 1780 se59bus ( UnsignedFile.Multi.Generic ) - warning
10:35:14.0796 1780 se59bus - detected UnsignedFile.Multi.Generic (1)
10:35:14.0843 1780 se59mdfl (3ced539f4373ccf8d3fe71ae51053d5d) C:\WINDOWS\system32\DRIVERS\se59mdfl.sys
10:35:14.0875 1780 se59mdfl ( UnsignedFile.Multi.Generic ) - warning
10:35:14.0875 1780 se59mdfl - detected UnsignedFile.Multi.Generic (1)
10:35:14.0921 1780 se59mdm (c6a6aa039d14f2ea1998e5f922014067) C:\WINDOWS\system32\DRIVERS\se59mdm.sys
10:35:14.0953 1780 se59mdm ( UnsignedFile.Multi.Generic ) - warning
10:35:14.0953 1780 se59mdm - detected UnsignedFile.Multi.Generic (1)
10:35:15.0000 1780 se59mgmt (7eecfa334292b1cd8de4990b63e02360) C:\WINDOWS\system32\DRIVERS\se59mgmt.sys
10:35:15.0031 1780 se59mgmt ( UnsignedFile.Multi.Generic ) - warning
10:35:15.0031 1780 se59mgmt - detected UnsignedFile.Multi.Generic (1)
10:35:15.0062 1780 se59nd5 (555895a241611c59ce057c42bc8b6e85) C:\WINDOWS\system32\DRIVERS\se59nd5.sys
10:35:15.0093 1780 se59nd5 ( UnsignedFile.Multi.Generic ) - warning
10:35:15.0093 1780 se59nd5 - detected UnsignedFile.Multi.Generic (1)
10:35:15.0140 1780 se59obex (729dfa6451b7356834bfa6faec9e3092) C:\WINDOWS\system32\DRIVERS\se59obex.sys
10:35:15.0171 1780 se59obex ( UnsignedFile.Multi.Generic ) - warning
10:35:15.0171 1780 se59obex - detected UnsignedFile.Multi.Generic (1)
10:35:15.0203 1780 se59unic (5f453e3e797dbeefe35869dc0239effa) C:\WINDOWS\system32\DRIVERS\se59unic.sys
10:35:15.0250 1780 se59unic ( UnsignedFile.Multi.Generic ) - warning
10:35:15.0250 1780 se59unic - detected UnsignedFile.Multi.Generic (1)
10:35:15.0609 1780 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
10:35:16.0093 1780 Secdrv - ok
10:35:16.0171 1780 serenum (a2d868aeeff612e70e213c451a70cafb) C:\WINDOWS\system32\DRIVERS\serenum.sys
10:35:16.0328 1780 serenum - ok
10:35:16.0343 1780 Serial (cd5b9995afcdb466c9efc048d167e3be) C:\WINDOWS\system32\DRIVERS\serial.sys
10:35:16.0500 1780 Serial - ok
10:35:16.0578 1780 Sfloppy (0d13b6df6e9e101013a7afb0ce629fe0) C:\WINDOWS\system32\drivers\Sfloppy.sys
10:35:16.0734 1780 Sfloppy - ok
10:35:16.0765 1780 Simbad - ok
10:35:16.0812 1780 SLIP (5caeed86821fa2c6139e32e9e05ccdc9) C:\WINDOWS\system32\DRIVERS\SLIP.sys
10:35:16.0968 1780 SLIP - ok
10:35:17.0375 1780 SNPSTD3 (9cd6ffc9f5b999eb5df69b9177d9848f) C:\WINDOWS\system32\DRIVERS\snpstd3.sys
10:35:18.0031 1780 SNPSTD3 ( UnsignedFile.Multi.Generic ) - warning
10:35:18.0031 1780 SNPSTD3 - detected UnsignedFile.Multi.Generic (1)
10:35:18.0109 1780 Sparrow - ok
10:35:18.0156 1780 splitter (0ce218578fff5f4f7e4201539c45c78f) C:\WINDOWS\system32\drivers\splitter.sys
10:35:18.0640 1780 splitter - ok
10:35:18.0734 1780 sr (e4200cb2f418d8fc4acdd7e38c419d6a) C:\WINDOWS\system32\DRIVERS\sr.sys
10:35:18.0843 1780 sr - ok
10:35:18.0906 1780 Srv (7a4f147cc6b133f905f6e65e2f8669fb) C:\WINDOWS\system32\DRIVERS\srv.sys
10:35:18.0937 1780 Srv - ok
10:35:19.0000 1780 ssmdrv (a36ee93698802cd899f98bfd553d8185) C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
10:35:19.0015 1780 ssmdrv - ok
10:35:19.0078 1780 StMp3Rec (833ac40f6e7be17951d6d9a956829547) C:\WINDOWS\system32\Drivers\StMp3Rec.sys
10:35:19.0109 1780 StMp3Rec - ok
10:35:19.0156 1780 streamip (284c57df5dc7abca656bc2b96a667afb) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
10:35:19.0296 1780 streamip - ok
10:35:19.0343 1780 swenum (03c1bae4766e2450219d20b993d6e046) C:\WINDOWS\system32\DRIVERS\swenum.sys
10:35:19.0500 1780 swenum - ok
10:35:19.0546 1780 swmidi (94abc808fc4b6d7d2bbf42b85e25bb4d) C:\WINDOWS\system32\drivers\swmidi.sys
10:35:19.0703 1780 swmidi - ok
10:35:19.0718 1780 symc810 - ok
10:35:19.0734 1780 symc8xx - ok
10:35:19.0750 1780 sym_hi - ok
10:35:19.0765 1780 sym_u3 - ok
10:35:19.0796 1780 sysaudio (650ad082d46bac0e64c9c0e0928492fd) C:\WINDOWS\system32\drivers\sysaudio.sys
10:35:19.0953 1780 sysaudio - ok
10:35:20.0015 1780 Tcpip (2a5554fc5b1e04e131230e3ce035c3f9) C:\WINDOWS\system32\DRIVERS\tcpip.sys
10:35:20.0093 1780 Tcpip - ok
10:35:20.0140 1780 TDPIPE (38d437cf2d98965f239b0abcd66dcb0f) C:\WINDOWS\system32\drivers\TDPIPE.sys
10:35:20.0296 1780 TDPIPE - ok
10:35:20.0343 1780 TDTCP (ed0580af02502d00ad8c4c066b156be9) C:\WINDOWS\system32\drivers\TDTCP.sys
10:35:20.0484 1780 TDTCP - ok
10:35:20.0515 1780 TermDD (a540a99c281d933f3d69d55e48727f47) C:\WINDOWS\system32\DRIVERS\termdd.sys
10:35:20.0687 1780 TermDD - ok
10:35:20.0718 1780 TosIde - ok
10:35:20.0781 1780 Udfs (12f70256f140cd7d52c58c7048fde657) C:\WINDOWS\system32\drivers\Udfs.sys
10:35:20.0937 1780 Udfs - ok
10:35:20.0953 1780 ultra - ok
10:35:20.0984 1780 Update (aff2e5045961bbc0a602bb6f95eb1345) C:\WINDOWS\system32\DRIVERS\update.sys
10:35:21.0140 1780 Update - ok
10:35:21.0171 1780 usbaudio (45a0d14b26c35497ad93bce7e15c9941) C:\WINDOWS\system32\drivers\usbaudio.sys
10:35:21.0328 1780 usbaudio - ok
10:35:21.0375 1780 usbccgp (bffd9f120cc63bcbaa3d840f3eef9f79) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
10:35:21.0515 1780 usbccgp - ok
10:35:21.0562 1780 usbehci (15e993ba2f6946b2bfbbfcd30398621e) C:\WINDOWS\system32\DRIVERS\usbehci.sys
10:35:21.0718 1780 usbehci - ok
10:35:21.0718 1780 usbhub (c72f40947f92cea56a8fb532edf025f1) C:\WINDOWS\system32\DRIVERS\usbhub.sys
10:35:22.0218 1780 usbhub - ok
10:35:22.0250 1780 usbohci (bdfe799a8531bad8a5a985821fe78760) C:\WINDOWS\system32\DRIVERS\usbohci.sys
10:35:22.0390 1780 usbohci - ok
10:35:22.0421 1780 usbprint (a42369b7cd8886cd7c70f33da6fcbcf5) C:\WINDOWS\system32\DRIVERS\usbprint.sys
10:35:22.0578 1780 usbprint - ok
10:35:22.0609 1780 usbscan (a6bc71402f4f7dd5b77fd7f4a8ddba85) C:\WINDOWS\system32\DRIVERS\usbscan.sys
10:35:22.0765 1780 usbscan - ok
10:35:22.0781 1780 USBSTOR (6cd7b22193718f1d17a47a1cd6d37e75) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
10:35:22.0937 1780 USBSTOR - ok
10:35:22.0984 1780 VgaSave (8a60edd72b4ea5aea8202daf0e427925) C:\WINDOWS\System32\drivers\vga.sys
10:35:23.0140 1780 VgaSave - ok
10:35:23.0156 1780 ViaIde - ok
10:35:23.0187 1780 VolSnap (d6888520ff56d72a50437e371ca25fc9) C:\WINDOWS\system32\drivers\VolSnap.sys
10:35:23.0328 1780 VolSnap - ok
10:35:23.0375 1780 Wanarp (984ef0b9788abf89974cfed4bfbaacbc) C:\WINDOWS\system32\DRIVERS\wanarp.sys
10:35:23.0531 1780 Wanarp - ok
10:35:23.0546 1780 WDICA - ok
10:35:23.0593 1780 wdmaud (efd235ca22b57c81118c1aeb4798f1c1) C:\WINDOWS\system32\drivers\wdmaud.sys
10:35:24.0093 1780 wdmaud - ok
10:35:24.0250 1780 WSTCODEC (d5842484f05e12121c511aa93f6439ec) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
10:35:24.0406 1780 WSTCODEC - ok
10:35:24.0453 1780 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
10:35:24.0515 1780 WudfPf - ok
10:35:24.0546 1780 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
10:35:24.0593 1780 WudfRd - ok
10:35:24.0640 1780 MBR (0x1B8) (72b8ce41af0de751c946802b3ed844b4) \Device\Harddisk0\DR0
10:35:24.0671 1780 \Device\Harddisk0\DR0 ( Rootkit.Boot.SST.b ) - infected
10:35:24.0671 1780 \Device\Harddisk0\DR0 - detected Rootkit.Boot.SST.b (0)
10:35:24.0718 1780 \Device\Harddisk0\DR0 ( TDSS File System ) - warning
10:35:24.0718 1780 \Device\Harddisk0\DR0 - detected TDSS File System (1)
10:35:24.0734 1780 Boot (0x1200) (19496dc67caf6a2899ce5f5893ea1bb8) \Device\Harddisk0\DR0\Partition0
10:35:24.0734 1780 \Device\Harddisk0\DR0\Partition0 - ok
10:35:24.0734 1780 ============================================================
10:35:24.0734 1780 Scan finished
10:35:24.0734 1780 ============================================================
10:35:24.0875 1784 Detected object count: 19
10:35:24.0875 1784 Actual detected object count: 19
10:37:35.0359 1784 Aspi32 ( UnsignedFile.Multi.Generic ) - skipped by user
10:37:35.0359 1784 Aspi32 ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:37:35.0359 1784 camfilt2 ( UnsignedFile.Multi.Generic ) - skipped by user
10:37:35.0359 1784 camfilt2 ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:37:35.0359 1784 se58bus ( UnsignedFile.Multi.Generic ) - skipped by user
10:37:35.0359 1784 se58bus ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:37:35.0375 1784 se58mdfl ( UnsignedFile.Multi.Generic ) - skipped by user
10:37:35.0375 1784 se58mdfl ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:37:35.0375 1784 se58mdm ( UnsignedFile.Multi.Generic ) - skipped by user
10:37:35.0375 1784 se58mdm ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:37:35.0375 1784 se58mgmt ( UnsignedFile.Multi.Generic ) - skipped by user
10:37:35.0375 1784 se58mgmt ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:37:35.0390 1784 se58nd5 ( UnsignedFile.Multi.Generic ) - skipped by user
10:37:35.0390 1784 se58nd5 ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:37:35.0390 1784 se58obex ( UnsignedFile.Multi.Generic ) - skipped by user
10:37:35.0390 1784 se58obex ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:37:35.0390 1784 se58unic ( UnsignedFile.Multi.Generic ) - skipped by user
10:37:35.0390 1784 se58unic ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:37:35.0390 1784 se59bus ( UnsignedFile.Multi.Generic ) - skipped by user
10:37:35.0390 1784 se59bus ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:37:35.0406 1784 se59mdfl ( UnsignedFile.Multi.Generic ) - skipped by user
10:37:35.0406 1784 se59mdfl ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:37:35.0406 1784 se59mdm ( UnsignedFile.Multi.Generic ) - skipped by user
10:37:35.0406 1784 se59mdm ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:37:35.0406 1784 se59mgmt ( UnsignedFile.Multi.Generic ) - skipped by user
10:37:35.0406 1784 se59mgmt ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:37:35.0406 1784 se59nd5 ( UnsignedFile.Multi.Generic ) - skipped by user
10:37:35.0406 1784 se59nd5 ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:37:35.0421 1784 se59obex ( UnsignedFile.Multi.Generic ) - skipped by user
10:37:35.0421 1784 se59obex ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:37:35.0421 1784 se59unic ( UnsignedFile.Multi.Generic ) - skipped by user
10:37:35.0421 1784 se59unic ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:37:35.0421 1784 SNPSTD3 ( UnsignedFile.Multi.Generic ) - skipped by user
10:37:35.0421 1784 SNPSTD3 ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:37:35.0484 1784 \Device\Harddisk0\DR0 ( Rootkit.Boot.SST.b ) - will be cured on reboot
10:37:35.0484 1784 \Device\Harddisk0\DR0 - ok
10:37:35.0484 1784 \Device\Harddisk0\DR0 ( Rootkit.Boot.SST.b ) - User select action: Cure
10:37:35.0484 1784 \Device\Harddisk0\DR0 ( TDSS File System ) - skipped by user
10:37:35.0484 1784 \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Skip
10:37:49.0750 1576 Deinitialize success

 

Themen zu EXP/Pidief.hdi [EXPLOIT] Problem
0x00000001, alternate, antivir, avira, bho, browser, desktop, disabletaskmgr, ebay, einstellungen, error, firefox, format, home, logfile, mozilla, netzwerk, object, plug-in, problem, realtek, registry, safer networking, scan, sched.exe, sich automatisch, software, system, temp, usb, virus, öffnet sich automatisch




Ähnliche Themen: EXP/Pidief.hdi [EXPLOIT] Problem


  1. GVU Trojaner-Problem!(Exploit.Drop.GS;Exploit.drop.GSA;trojan.ransom.SUGen;--->Malwarebytes-Funde)
    Plagegeister aller Art und deren Bekämpfung - 02.03.2013 (6)
  2. EXP/pidief.dis
    Plagegeister aller Art und deren Bekämpfung - 16.11.2012 (11)
  3. EXP/Pidief.dis
    Plagegeister aller Art und deren Bekämpfung - 03.11.2012 (9)
  4. Problem:Found the Exploit-blacole.j trojan
    Log-Analyse und Auswertung - 23.10.2012 (1)
  5. EXP/CVE-2010-0840.HG(Exploit), EXP/JAVA.Ternub.Gen(Exploit) und TR/Agent.464.4(Trojaner) - nicht totzukriegen
    Plagegeister aller Art und deren Bekämpfung - 14.08.2012 (12)
  6. EXP/Pidief.cke
    Plagegeister aller Art und deren Bekämpfung - 16.03.2012 (6)
  7. EXP/Pidief.aik.1
    Plagegeister aller Art und deren Bekämpfung - 28.11.2011 (1)
  8. Antwort zu "Exploit EXP/Pidief.X - Wer weiß Rat?"
    Plagegeister aller Art und deren Bekämpfung - 23.08.2011 (0)
  9. EXP/Pidief.Csa.1.B.
    Plagegeister aller Art und deren Bekämpfung - 12.05.2011 (13)
  10. Virus 'EXP/Pidief.crk.2' [exploit] und 'TR/Spy.Gen' [trojan] gefunden
    Plagegeister aller Art und deren Bekämpfung - 14.03.2011 (28)
  11. 'EXP/Pidief.41322.A' [exploit] ausgeführt + weitere Funde
    Plagegeister aller Art und deren Bekämpfung - 01.03.2011 (21)
  12. Avira findet 2 Trojaner Java-Virus JAVA/Agent.BH und Exploit EXP/Pidief.coi
    Plagegeister aller Art und deren Bekämpfung - 07.01.2011 (29)
  13. EXP/Pidief.bvg.1' [exploit] + Firefox und IE starten nicht mehr
    Plagegeister aller Art und deren Bekämpfung - 12.04.2010 (12)
  14. Exploit EXP/Pidief.X - Wer weiß Rat?
    Plagegeister aller Art und deren Bekämpfung - 19.02.2010 (6)
  15. EXP Pidief.GI und TR/PWS Sinowal.Gen
    Log-Analyse und Auswertung - 30.12.2009 (10)
  16. Virenfund: 'EXP/Pidief.GI' [exploit]
    Plagegeister aller Art und deren Bekämpfung - 28.12.2009 (7)
  17. exploit-byteVerify,JS/Exploit-DialogArg.b,Exploit-mhtRedir.gen. logfile auswerten
    Log-Analyse und Auswertung - 29.10.2004 (4)

Zum Thema EXP/Pidief.hdi [EXPLOIT] Problem - Also das funktionierte nun, aber als der Scan Fertig war, kam eine neue 0.466....exe Datei aufs Desktop und Java wollte wieder öffnen, da hab ich reflektorisch fortgesetzt und dann auf - EXP/Pidief.hdi [EXPLOIT] Problem...
Archiv
Du betrachtest: EXP/Pidief.hdi [EXPLOIT] Problem auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.