|
Log-Analyse und Auswertung: HILFE! was ist los?Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
15.02.2005, 23:47 | #1 |
| HILFE! was ist los? Hier ist das log. Logfile of HijackThis v1.99.0 Scan saved at 23:42:30, on 15.02.2005 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Programme\Sygate\SPF\smc.exe C:\WINDOWS\Explorer.EXE C:\Programme\Gemeinsame Dateien\Symantec Shared\ccSetMgr.exe C:\Programme\Gemeinsame Dateien\Symantec Shared\SNDSrvc.exe C:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\system32\LEXBCES.EXE C:\WINDOWS\system32\LEXPPS.EXE C:\WINDOWS\system32\spoolsv.exe C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\MDM.EXE C:\Programme\Norton AntiVirus\IWP\NPFMntor.exe C:\WINDOWS\System32\nvsvc32.exe C:\WINDOWS\system32\slserv.exe C:\WINDOWS\System32\svchost.exe C:\Programme\Gemeinsame Dateien\Symantec Shared\CCPD-LC\symlcsvc.exe C:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe C:\Programme\T-Online\T-Online_Software_5\Basis-Software\Basis1\ToADiMon.exe C:\WINDOWS\system32\ntmc.exe C:\WINDOWS\System32\ctfmon.exe C:\Programme\Company\Quick Start Button\QSB.exe C:\Programme\Messenger\msmsgs.exe C:\Programme\Siemens\Gigaset USB Stick 54\Gcc.exe C:\Programme\Siemens\Gigaset USB Stick 54\OdHost.exe C:\Programme\Norton AntiVirus\navapsvc.exe C:\WINDOWS\System32\cmd.exe C:\WINDOWS\System32\wscript.exe C:\WINDOWS\system32\msat.exe C:\Programme\Crazy Browser\Crazy Browser.exe C:\Dokumente und Einstellungen\Al\Lokale Einstellungen\Temp\Temporäres Verzeichnis 1 für hijackthis.zip\HijackThis.exe C:\Programme\Internet Explorer\iexplore.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\system32\furyx.dll/sp.html#10001 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\system32\furyx.dll/sp.html#10001 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = res://C:\WINDOWS\system32\furyx.dll/sp.html#10001 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\system32\furyx.dll/sp.html#10001 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\system32\furyx.dll/sp.html#10001 R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = res://C:\WINDOWS\system32\furyx.dll/sp.html#10001 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = res://C:\WINDOWS\system32\furyx.dll/sp.html#10001 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = about:blank R3 - Default URLSearchHook is missing O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {67A010F1-25BF-4EAD-A31C-3E5DD32D913A} - C:\WINDOWS\ippl32.dll O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Programme\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Programme\Norton AntiVirus\NavShExt.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize O4 - HKLM\..\Run: [ccApp] "C:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\UsrPrmpt.exe O4 - HKLM\..\Run: [ToADiMon.exe] C:\Programme\T-Online\T-Online_Software_5\Basis-Software\Basis1\ToADiMon.exe -TOnlineAutodialStart O4 - HKLM\..\Run: [SmcService] C:\PROGRA~1\Sygate\SPF\smc.exe -startgui O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe O4 - HKLM\..\Run: [ntmc.exe] C:\WINDOWS\system32\ntmc.exe O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto O4 - HKLM\..\RunOnce: [winsl32.exe] C:\WINDOWS\winsl32.exe O4 - HKLM\..\RunOnce: [apiwp.exe] C:\WINDOWS\system32\apiwp.exe O4 - HKLM\..\RunOnce: [javavy32.exe] C:\WINDOWS\system32\javavy32.exe O4 - HKLM\..\RunOnce: [crmx32.exe] C:\WINDOWS\crmx32.exe O4 - HKLM\..\RunOnce: [msat.exe] C:\WINDOWS\system32\msat.exe O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe O4 - HKCU\..\Run: [QSB] C:\Programme\Company\Quick Start Button\QSB.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Programme\Messenger\msmsgs.exe" /background O4 - Global Startup: Gigaset WLAN Adapter Monitor.lnk = C:\Programme\Siemens\Gigaset USB Stick 54\Gcc.exe O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O15 - Trusted Zone: *.05p.com O15 - Trusted Zone: *.awmdabest.com O15 - Trusted Zone: *.blazefind.com O15 - Trusted Zone: *.clickspring.net O15 - Trusted Zone: *.flingstone.com O15 - Trusted Zone: *.frame.crazywinnings.com O15 - Trusted Zone: http://*.frame.crazywinnings.com O15 - Trusted Zone: *.mt-download.com O15 - Trusted Zone: *.my-internet.info O15 - Trusted Zone: *.scoobidoo.com O15 - Trusted Zone: *.searchbarcash.com O15 - Trusted Zone: *.searchmiracle.com O15 - Trusted Zone: *.slotch.com O15 - Trusted Zone: *.static.topconverting.com O15 - Trusted Zone: *.xxxtoolbar.com O15 - Trusted Zone: *.05p.com (HKLM) O15 - Trusted Zone: *.awmdabest.com (HKLM) O15 - Trusted Zone: *.blazefind.com (HKLM) O15 - Trusted Zone: *.clickspring.net (HKLM) O15 - Trusted Zone: *.flingstone.com (HKLM) O15 - Trusted Zone: *.frame.crazywinnings.com (HKLM) O15 - Trusted Zone: http://*.frame.crazywinnings.com (HKLM) O15 - Trusted Zone: *.mt-download.com (HKLM) O15 - Trusted Zone: *.my-internet.info (HKLM) O15 - Trusted Zone: *.scoobidoo.com (HKLM) O15 - Trusted Zone: *.searchbarcash.com (HKLM) O15 - Trusted Zone: *.searchmiracle.com (HKLM) O15 - Trusted Zone: *.slotch.com (HKLM) O15 - Trusted Zone: *.static.topconverting.com (HKLM) O15 - Trusted Zone: *.xxxtoolbar.com (HKLM) O15 - Trusted IP range: 206.161.125.149 O15 - Trusted IP range: 206.161.125.149 (HKLM) O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/acti..._v1-0-3-17.cab O23 - Service: Symantec Event Manager - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Password Validation - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\ccSetMgr.exe O23 - Service: LexBce Server - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE O23 - Service: Norton AntiVirus Auto-Protect Service - Symantec Corporation - C:\Programme\Norton AntiVirus\navapsvc.exe O23 - Service: Norton AntiVirus Firewall Monitor Service - Symantec Corporation - C:\Programme\Norton AntiVirus\IWP\NPFMntor.exe O23 - Service: NVIDIA Driver Helper Service - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Panda Process Protection Service - Unknown - C:\Programme\Gemeinsame Dateien\Panda Software\PavShld\pavprsrv.exe (file missing) O23 - Service: SAVScan - Symantec Corporation - C:\Programme\Norton AntiVirus\SAVScan.exe O23 - Service: ScriptBlocking Service - Symantec Corporation - C:\PROGRA~1\GEMEIN~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: SmartLinkService - Unknown - slserv.exe (file missing) O23 - Service: Sygate Personal Firewall Pro - Sygate Technologies, Inc. - C:\Programme\Sygate\SPF\smc.exe O23 - Service: Symantec Network Drivers Service - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: Symantec Core LC - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\CCPD-LC\symlcsvc.exe O23 - Service: ZESOFT - Unknown - C:\WINDOWS\zeta.exe (file missing) O23 - Service: Network Security Service - Unknown - C:\WINDOWS\iejk32.exe (file missing) vielen Dank für weitere Hilfe! |
16.02.2005, 00:04 | #2 |
| HILFE! was ist los? Hallo starmeltier,
__________________führe bitte dies mal aus: 1. Downloade Dir escan und befolge genau diese Anleitung (dauert etwa eine Stunde), 2. starte nach dem Scan wieder in den normalen Modus, 3. öffne die Datei "mwav.log", klicke auf "bearbeiten" danach auf "suchen" 4. gebe dann "infected" ein, 5. suche weiter bei Treffern, markiere diese und kopiere sie ins Forum, 6. neben den Treffern auch das Gesamtergebnis (befindet sich ganz unter im Logfile) posten. Beispiel: Wed Feb 02 19:48:56 2005 => Total Files Scanned: Wed Feb 02 19:48:56 2005 => Total Virus(es) Found: dartus |
16.02.2005, 00:05 | #3 |
| HILFE! was ist los? vielen dank, dartus, erstmal, mach ich!
__________________ |
16.02.2005, 00:11 | #4 |
| HILFE! was ist los? ach, noch was: muss ich den scan eigentlich im abgesichterten modus ausführen? |
16.02.2005, 00:14 | #5 |
| HILFE! was ist los? Auf jeden Fall!!! |
16.02.2005, 14:37 | #6 |
| HILFE! was ist los? Hier meine ersten 100 Infected Files: C:\WINDOWS\ippl32.dll infected by "Trojan-Downloader.Win32.Agent.bq" Virus. C:\WINDOWS\system32\ntmc.exe infected by "Trojan-Downloader.Win32.Small.ajr" Virus. C:\WINDOWS\system32\javavy32.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\crmx32.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\system32\msat.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\addfu32.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\addhl.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\addif32.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\apidp.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\appmp.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\appmq32.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\appxg32.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\crdh.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\crgn.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\crny.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\cryy32.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\d3eb32.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\EDow_AS2.exe infected by "Trojan-Downloader.Win32.QDown.m" Virus. C:\WINDOWS\javaom.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\javayq.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\mfcdy.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\mfcqc.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\netek32.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\System32\appma32.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\System32\appqv32.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\System32\atldc32.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\System32\furyx.dll infected by "not-a-virus:AdWare.JS.OneMoreSearch.a" Virus. C:\WINDOWS\System32\ienu.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\System32\ipjl32.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\System32\javarg.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\System32\javawt.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\System32\mac80ex.idf infected by "not-a-virus:AdWare.BargainBuddy.l" Virus. C:\WINDOWS\System32\mfczr.dll infected by "Trojan-Downloader.Win32.Agent.bq" Virus. C:\WINDOWS\System32\msdo32.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\System32\netut80ex.vxd infected by "not-a-virus:AdWare.BargainBuddy.q" Virus. C:\WINDOWS\System32\nvdhd.dll infected by "not-a-virus:AdWare.JS.OneMoreSearch.a" Virus. C:\WINDOWS\System32\psis80ex.ax infected by "not-a-virus:AdWare.BargainBuddy.l" Virus. C:\WINDOWS\System32\syskf.exe infected by "Backdoor.Win32.Small.dc" Virus. C:\WINDOWS\System32\tmp.exe infected by "not-a-virus:AdWare.ToolBar.Perez.b" Virus. C:\DOKUME~1\Al\LOKALE~1\Temp\1.tmp infected by "Trojan-Downloader.Win32.Small.ahz" Virus. C:\DOKUME~1\Al\LOKALE~1\Temp\2.tmp.exe infected by "not-a-virus:AdWare.WinShow.f" Virus. C:\DOKUME~1\Al\LOKALE~1\Temp\228.tmp infected by "Trojan-Downloader.Win32.Small.ahz" Virus. C:\DOKUME~1\Al\LOKALE~1\Temp\229.tmp infected by "not-a-virus:AdWare.WinShow.f" Virus. C:\DOKUME~1\Al\LOKALE~1\Temp\23.tmp infected by "not-a-virus:AdWare.WinShow.f" Virus. C:\DOKUME~1\Al\LOKALE~1\Temp\23.tmp.exe infected by "not-a-virus:AdWare.WinShow.f" Virus. C:\DOKUME~1\Al\LOKALE~1\Temp\34.tmp infected by "Trojan-Downloader.Win32.Small.ahz" Virus. C:\DOKUME~1\Al\LOKALE~1\Temp\35.tmp infected by "not-a-virus:AdWare.WinShow.f" Virus. C:\DOKUME~1\Al\LOKALE~1\Temp\35.tmp.exe infected by "not-a-virus:AdWare.WinShow.f" Virus. C:\Dokumente und Einstellungen\Al\Lokale Einstellungen\Temp\1.tmp infected by "Trojan-Downloader.Win32.Small.ahz" Virus. C:\Dokumente und Einstellungen\Al\Lokale Einstellungen\Temp\2.tmp.exe infected by "not-a-virus:AdWare.WinShow.f" Virus. C:\Dokumente und Einstellungen\Al\Lokale Einstellungen\Temp\228.tmp infected by "Trojan-Downloader.Win32.Small.ahz" Virus. C:\Dokumente und Einstellungen\Al\Lokale Einstellungen\Temp\229.tmp infected by "not-a-virus:AdWare.WinShow.f" Virus. C:\Dokumente und Einstellungen\Al\Lokale Einstellungen\Temp\23.tmp infected by "not-a-virus:AdWare.WinShow.f" Virus. C:\Dokumente und Einstellungen\Al\Lokale Einstellungen\Temp\23.tmp.exe infected by "not-a-virus:AdWare.WinShow.f" Virus. C:\Dokumente und Einstellungen\Al\Lokale Einstellungen\Temp\34.tmp infected by "Trojan-Downloader.Win32.Small.ahz" Virus. C:\Dokumente und Einstellungen\Al\Lokale Einstellungen\Temp\35.tmp infected by "not-a-virus:AdWare.WinShow.f" Virus. C:\Dokumente und Einstellungen\Al\Lokale Einstellungen\Temp\35.tmp.exe infected by "not-a-virus:AdWare.WinShow.f" Virus. C:\LOAD_R~1.EXE.1 infected by "Trojan-Downloader.Win32.Agent.cz" Virus. C:\ml00!.exe infected by "Trojan.Win32.StartPage.tj" Virus. C:\Programme\Norton AntiVirus\Quarantine\039420B0.htm infected by "Exploit.VBS.Phel.a" Virus. C:\Programme\Norton AntiVirus\Quarantine\0D8E5DC8.exe infected by "Virus.Win32.Bube.b" Virus. C:\Programme\Norton AntiVirus\Quarantine\0F02102F.hta infected by "Trojan-Downloader.VBS.Psyme.av" Virus. C:\Programme\Norton AntiVirus\Quarantine\11DD4D0A.dll infected by "not-a-virus:AdWare.SearchPage" Virus. C:\Programme\Norton AntiVirus\Quarantine\129071DC.exe infected by "Trojan-Dropper.Win32.Small.pt" Virus. C:\Programme\Norton AntiVirus\Quarantine\129745D5.dll infected by "Trojan-Downloader.Win32.Agent.fy" Virus. C:\Programme\Norton AntiVirus\Quarantine\12B115B8.exe infected by "Trojan-Spy.Win32.Qukart.gen" Virus. C:\Programme\Norton AntiVirus\Quarantine\12B115B8.gif infected by "Trojan-Spy.Win32.Qukart.gen" Virus. C:\Programme\Norton AntiVirus\Quarantine\133840F0.tmp infected by "Trojan-Downloader.Win32.Small.ahz" Virus. C:\Programme\Norton AntiVirus\Quarantine\133F14E9.dll infected by "Trojan-Downloader.Win32.Agent.bq" Virus. C:\Programme\Norton AntiVirus\Quarantine\13423EE6.dll infected by "not-a-virus:AdWare.JS.OneMoreSearch.a" Virus. C:\Programme\Norton AntiVirus\Quarantine\13423EE6.exe infected by "Trojan-Dropper.Win32.Tibsis.b" Virus. C:\Programme\Norton AntiVirus\Quarantine\134568E2.dll infected by "not-a-virus:AdWare.JS.OneMoreSearch.a" Virus. C:\Programme\Norton AntiVirus\Quarantine\18D15145.htm infected by "Exploit.HTML.Mht" Virus. C:\Programme\Norton AntiVirus\Quarantine\18D15145.htm infected by "Exploit.HTML.Mht" Virus. C:\Programme\Norton AntiVirus\Quarantine\1A172404.chm infected by "Trojan-Downloader.JS.Miner" Virus. C:\Programme\Norton AntiVirus\Quarantine\1A172404.htm infected by "Exploit.HTML.Mht" Virus. C:\Programme\Norton AntiVirus\Quarantine\1A6D599E.exe infected by "Virus.Win32.Bube.b" Virus. C:\Programme\Norton AntiVirus\Quarantine\1D6D6E53.tmp infected by "Trojan-Dropper.JS.Mimail.b" Virus. C:\Programme\Norton AntiVirus\Quarantine\1D9E641D.tmp infected by "Trojan-Dropper.JS.Mimail.b" Virus. C:\Programme\Norton AntiVirus\Quarantine\2268246D.gif infected by "Exploit.HTML.Mht" Virus. C:\Programme\Norton AntiVirus\Quarantine\240968D2.hta infected by "Trojan-Dropper.VBS.Inor.cj" Virus. C:\Programme\Norton AntiVirus\Quarantine\2428242C.exe infected by "Trojan-Downloader.Win32.Lookme.g" Virus. C:\Programme\Norton AntiVirus\Quarantine\24DC0223.exe infected by "Virus.Win32.Bube.b" Virus. C:\Programme\Norton AntiVirus\Quarantine\255B6797.exe infected by "Virus.Win32.Bube.d" Virus. C:\Programme\Norton AntiVirus\Quarantine\270763C0.exe infected by "Virus.Win32.Bube.d" Virus. C:\Programme\Norton AntiVirus\Quarantine\2B4B6473.dll infected by "not-a-virus:AdWare.JS.OneMoreSearch.a" Virus. C:\Programme\Norton AntiVirus\Quarantine\33BF1DA8.htm infected by "Exploit.HTML.Mht" Virus. C:\Programme\Norton AntiVirus\Quarantine\36256F29.hta infected by "Trojan-Dropper.VBS.Inor.cj" Virus. C:\Programme\Norton AntiVirus\Quarantine\362F6D1E.hta infected by "Trojan-Dropper.VBS.Inor.cj" Virus. C:\Programme\Norton AntiVirus\Quarantine\362F6D1E.hta infected by "Trojan-Dropper.VBS.Inor.cj" Virus. C:\Programme\Norton AntiVirus\Quarantine\36DB2071.dll infected by "Trojan-Downloader.Win32.IstBar.gz" Virus. C:\Programme\Norton AntiVirus\Quarantine\3A2B123F.htm infected by "Trojan-Downloader.JS.Psyme.ae" Virus. C:\Programme\Norton AntiVirus\Quarantine\473F4E30.dll infected by "not-a-virus:AdWare.WinAD.j" Virus. C:\Programme\Norton AntiVirus\Quarantine\4DD06BCF.exe infected by "Trojan-Downloader.Win32.Small.yx" Virus. C:\Programme\Norton AntiVirus\Quarantine\52D84188.exe infected by "Virus.Win32.Bube.d" Virus. C:\Programme\Norton AntiVirus\Quarantine\52DB6B84.exe infected by "Virus.Win32.Bube.b" Virus. C:\Programme\Norton AntiVirus\Quarantine\530C614E.exe infected by "not-a-virus:AdWare.WinShow.f" Virus. C:\Programme\Norton AntiVirus\Quarantine\53100B4B.exe infected by "not-a-virus:AdWare.PurityScan.w" Virus. das geht jetzt noch seitenweise weiter. soll ich sie weiter posten? Total Files Scanned: 86361 Total Virus(es) Found: 458 Total Disinfected Files: 0 Total Files Renamed: 0 Total Deleted Files: 0 Total Errors: 52 Time Elapsed: Virus Database Date: 2005/02/14 Virus Database Count: 118236 Scan Completed. Virus Database Date: 2005/02/14 Virus Database Count: 118236 AV Library Unloaded (3)... |
16.02.2005, 14:57 | #7 |
| HILFE! was ist los? Hi starmeltier, ohje, das sieht ja gar nicht gut aus. Habs mir bald gedacht. Da hilft leider nur noch "Format C:" und halte Dich an folgende Anweisung: http://www.trojaner-board.de/showthread.php?t=12154 sry dartus |
16.02.2005, 15:03 | #8 |
| HILFE! was ist los? habs auch befürchtet, werds machen! danke! |
Themen zu HILFE! was ist los? |
adobe, antivirus, bho, browser, drivers, einstellungen, excel, explorer, file missing, hijack, hijackthis, internet, internet explorer, monitor, rundll, security, security center, server, settings manager, software, stick, symantec, system, t-online, temp, urlsearchhook, usb, windows, windows xp, wlan |