Heute ging das aber irgendwie schneller.
Code:
Alles auswählen Aufklappen ATTFilter
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=d18a5d655cc8824f97b5741801d307b8
# engine=15010
# end=stopped
# remove_checked=false
# archives_checked=true
# unwanted_checked=false
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2013-09-04 07:19:52
# local_time=2013-09-04 09:19:52 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=5893 16776574 66 94 446429 129953583 0 0
# scanned=98242
# found=10
# cleaned=0
# scan_time=6455
sh=D0222EE9B9FC84D04A4DE0F92E5CCEDF840A3C4E ft=0 fh=0000000000000000 vn="Win32/Adware.OneStep application" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files\Mozilla Firefox\Extensions\{DE9265D8-D55D-4286-9DC4-F8D8A0CA2F64}\chrome\scanquery.jar.vir"
sh=3F929E8FBF617661A0950D6C9AE5C30EBB0A4F8B ft=1 fh=ad4ae0bd6df1f6ad vn="a variant of Win32/SpeedingUpMyPC application" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files\optimizer pro\OptimizerPro.exe.vir"
sh=D79293039B770AEF8D577BA11B530ED81269DB17 ft=1 fh=de58c6d19040a2d5 vn="a variant of Win32/Adware.SpeedingUpMyPC.C application" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files\optimizer pro\OptProSmartScan.exe.vir"
sh=48EF8B4E06E0F1D3C06C4D6E1EA2B6CE48AA5231 ft=1 fh=ac26df35aa8ade69 vn="a variant of Win32/Adware.Yontoo.B application" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\Tarma Installer\{2E1037EA-038A-425F-86B9-6CD19B8497E9}\_Setupx.dll.vir"
sh=B859E1E3C5F38DA8EA82D4940325EC60B19FF339 ft=1 fh=30f7fbf806dee4f1 vn="a variant of Win32/Adware.Yontoo.B application" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\_Setupx.dll.vir"
sh=2409B94A5440DD01F8D769FE4C125A80A638BB78 ft=0 fh=0000000000000000 vn="Win32/Adware.Yontoo application" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Hani\AppData\Roaming\Mozilla\Firefox\Profiles\i11zbqaa.default\Extensions\plugin@yontoo.com\content\overlay.js.vir"
sh=35C20B784E4925D9D44A831349CA4348034B5686 ft=1 fh=9922bc63162686b6 vn="a variant of Win32/Kryptik.BJGH trojan" ac=I fn="C:\FRST\Quarantine\xajhmqxegrrunejqwqm.bfg"
sh=35C20B784E4925D9D44A831349CA4348034B5686 ft=1 fh=9922bc63162686b6 vn="a variant of Win32/Kryptik.BJGH trojan" ac=I fn="C:\Users\Hani\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\2\612a8f42-4603e77a"
sh=75C6ACB3117766F57F96D4DBD8701EA4B9C9B7F8 ft=0 fh=0000000000000000 vn="multiple threats" ac=I fn="C:\Users\Hani\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\42\66f9b52a-64ec4cdb"
sh=114E5B816C3D1EFA01D680C9C896CEA7808F2293 ft=1 fh=906fc5372f2cec63 vn="a variant of MSIL/Spy.Keylogger.EL trojan" ac=I fn="C:\Users\Hani\AppData\Roaming\Microsoft\Windows\Templates\fWyiSSKZXelrSREFBf.exe"
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=d18a5d655cc8824f97b5741801d307b8
# engine=15019
# end=stopped
# remove_checked=false
# archives_checked=true
# unwanted_checked=false
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2013-09-05 02:18:21
# local_time=2013-09-05 04:18:21 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=5893 16776574 66 94 514738 130021892 0 0
# scanned=43178
# found=7
# cleaned=0
# scan_time=1904
sh=D0222EE9B9FC84D04A4DE0F92E5CCEDF840A3C4E ft=0 fh=0000000000000000 vn="Win32/Adware.OneStep application" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files\Mozilla Firefox\Extensions\{DE9265D8-D55D-4286-9DC4-F8D8A0CA2F64}\chrome\scanquery.jar.vir"
sh=3F929E8FBF617661A0950D6C9AE5C30EBB0A4F8B ft=1 fh=ad4ae0bd6df1f6ad vn="a variant of Win32/SpeedingUpMyPC application" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files\optimizer pro\OptimizerPro.exe.vir"
sh=D79293039B770AEF8D577BA11B530ED81269DB17 ft=1 fh=de58c6d19040a2d5 vn="a variant of Win32/Adware.SpeedingUpMyPC.C application" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files\optimizer pro\OptProSmartScan.exe.vir"
sh=48EF8B4E06E0F1D3C06C4D6E1EA2B6CE48AA5231 ft=1 fh=ac26df35aa8ade69 vn="a variant of Win32/Adware.Yontoo.B application" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\Tarma Installer\{2E1037EA-038A-425F-86B9-6CD19B8497E9}\_Setupx.dll.vir"
sh=B859E1E3C5F38DA8EA82D4940325EC60B19FF339 ft=1 fh=30f7fbf806dee4f1 vn="a variant of Win32/Adware.Yontoo.B application" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\_Setupx.dll.vir"
sh=2409B94A5440DD01F8D769FE4C125A80A638BB78 ft=0 fh=0000000000000000 vn="Win32/Adware.Yontoo application" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Hani\AppData\Roaming\Mozilla\Firefox\Profiles\i11zbqaa.default\Extensions\plugin@yontoo.com\content\overlay.js.vir"
sh=35C20B784E4925D9D44A831349CA4348034B5686 ft=1 fh=9922bc63162686b6 vn="a variant of Win32/Kryptik.BJGH trojan" ac=I fn="C:\FRST\Quarantine\xajhmqxegrrunejqwqm.bfg"