|
Log-Analyse und Auswertung: Hijackthis Log funktioniert nicht; Problem Startseite about:blankWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
28.02.2005, 20:11 | #1 |
| Hijackthis Log funktioniert nicht; Problem Startseite about:blank Hallo, ich bin neu hier und kenn mich mit Spyware kaum aus. Hab mir jetzt schon einige Beiträge angesehen und mir mal das Programm HijackThis gezogen. Bei Erstellung eines Logs kommt allerdings immer die Fehlermeldung: Ungültige Install.log datei... Nutze Windows XP und IE Im abgesicherten Modus funktionierts auch nicht. Laße ich Ad-Aware durchlaufen zeigt er mir schon ein paar Trojaner an. was kann ich tun? wär sehr nett, wenn mir jemand helfen könnte. danke mfg CMS |
28.02.2005, 20:26 | #2 |
| Hijackthis Log funktioniert nicht; Problem Startseite about:blank lade escan
__________________download (http://www.mwti.net/antivirus/free_utilities.asp) http://www.trojaner-board.de/42731-escan-anleitung.html anleitung überprüfe Deinen Rechner zunächst mit dem eScan: lade den eScan runter, erstelle dafür einen Ordner (=Verzeichnis) c:\bases, update den eScan online und führe ihn offline im abgesicherten Modus aus. Beachte, dass der eScan ab Version 4.5.1 gefundene Malware nicht löscht. Das wird von Hand auf Anweisung durch uns gemacht. Teile uns dann das Ergebnis des eScan mit: welche Viren wurden auf Deinem Rechner gefunden: "öffne die mwav.log -> Bearbeiten -> Suchen -> infected eingeben -> Weitersuchen -> Treffer markieren/kopieren und ins Forum übertragen." (Zitat Cidre) TDDR |
01.03.2005, 18:02 | #3 |
| Hijackthis Log funktioniert nicht; Problem Startseite about:blank das mit dem HijackThis log funktioniert nun doch... hier das log:
__________________Logfile of HijackThis v1.99.1 Scan saved at 17:58:03, on 01.03.2005 Platform: Windows XP (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 (6.00.2600.0000) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Programme\AVPersonal\AVWUPSRV.EXE C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\PROGRA~1\GEMEIN~1\XCPCSync\TRANSL~1\ErPhn2\ErTray.exe C:\Programme\Java\j2re1.4.2_04\bin\jusched.exe C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe C:\WINDOWS\System32\rundll32.exe C:\WINDOWS\System32\ctfmon.exe C:\WINDOWS\system32\wuclient.exe C:\Programme\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe C:\Programme\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe C:\Programme\WinZip\WZQKPICK.EXE C:\WINDOWS\system32\NOTEPAD.EXE C:\Programme\Mozilla Firefox\firefox.exe C:\Dokumente und Einstellungen\Christoph\Eigene Dateien\hijackthis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\DOKUME~1\CHRIST~1\LOKALE~1\Temp\se.dll/sp.html R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msn.de/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.msn.de/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\DOKUME~1\CHRIST~1\LOKALE~1\Temp\se.dll/sp.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank R1 - HKCU\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Programme\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {136B03E7-8436-4E70-AF09-B68097064D99} - C:\WINDOWS\System32\bpgi.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [XTNDConnect PC - ErPhn2] C:\PROGRA~1\GEMEIN~1\XCPCSync\TRANSL~1\ErPhn2\ErTray.exe O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programme\Java\j2re1.4.2_04\bin\jusched.exe O4 - HKLM\..\Run: [TkBellExe] "C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [XPSP2 Firewall] C:\WINDOWS\system32\xpsp2fw.exe O4 - HKLM\..\Run: [sp] rundll32 C:\DOKUME~1\Helga\LOKALE~1\Temp\se.dll,DllInstall O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe O4 - HKCU\..\Run: [Windows Update Client ] C:\WINDOWS\system32\wuclient.exe O4 - Global Startup: Picture Package Menu.lnk = ? O4 - Global Startup: Picture Package VCD Maker.lnk = ? O4 - Global Startup: tempweg.bat O4 - Global Startup: VR-NetWorld Auftragsprüfung.lnk = C:\Programme\VR-NetWorld\VRToolCheckOrder.exe O4 - Global Startup: WinZip Quick Pick.lnk = C:\Programme\WinZip\WZQKPICK.EXE O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll O9 - Extra button: Preispiraten 2.02 - {86DE8B3B-1EB7-4386-84BD-EBE94348A913} - C:\Programme\Preispiraten 2.0b\preispiraten2.exe O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Spiele\ICQ\ICQLite\ICQLite.exe (file missing) O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Spiele\ICQ\ICQLite\ICQLite.exe (file missing) O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe O9 - Extra button: XM2002® - {ECC5777A-6E88-BFCE-13CE-81F134789E7B} - C:\Programme\IPPS\XM2002®\XM2002.exe (file missing) O9 - Extra 'Tools' menuitem: &XM2002® - {ECC5777A-6E88-BFCE-13CE-81F134789E7B} - C:\Programme\IPPS\XM2002®\XM2002.exe (file missing) O12 - Plugin for .pdf: C:\PROGRA~1\INTERN~1\PLUGINS\nppdf32.dll O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/acti..._v1-0-3-17.cab O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/23e7c283...dxIE601_de.cab O16 - DPF: {AABB591F-CEB3-404A-A979-AA30B16CB914} (IPLabs Image Uploader 2.5) - http://asp01.photoprintit.de/microsi...eUploader2.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{ACBC6F09-5493-4855-A6F3-757E52DFB11A}: NameServer = 217.237.150.141 217.237.150.97 O18 - Filter: text/html - {E42559A5-B85B-447D-AD92-E5E64B17EB11} - C:\WINDOWS\System32\bpgi.dll O18 - Filter: text/plain - {E42559A5-B85B-447D-AD92-E5E64B17EB11} - C:\WINDOWS\System32\bpgi.dll O23 - Service: AntiVir Service (AntiVirService) - H+BEDV Datentechnik GmbH - C:\Programme\AVPersonal\AVGUARD.EXE O23 - Service: AntiVir Update (AVWUpSrv) - H+BEDV Datentechnik GmbH, Germany - C:\Programme\AVPersonal\AVWUPSRV.EXE |
01.03.2005, 18:03 | #4 |
| Hijackthis Log funktioniert nicht; Problem Startseite about:blank und hier die MWAV log: Mon Feb 28 21:34:17 2005 => File C:\Programme\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL infected by "not-a-virus:AdWare.ToolBar.MyWebSearch" Virus. Action Taken: No Action Taken. Mon Feb 28 21:34:17 2005 => File C:\WINDOWS\System32\bpgi.dll infected by "Trojan.Win32.StartPage.ix" Virus. Action Taken: No Action Taken. Mon Feb 28 21:34:25 2005 => File C:\WINDOWS\system32\xpsp2fw.exe infected by "Trojan-Downloader.Win32.Agent.jy" Virus. Action Taken: No Action Taken. Mon Feb 28 21:34:26 2005 => File C:\WINDOWS\system32\wuclient.exe infected by "Trojan-Downloader.Win32.Agent.jy" Virus. Action Taken: No Action Taken. Mon Feb 28 21:35:26 2005 => File C:\WINDOWS\System32\edacmts.dll infected by "Trojan-Downloader.Win32.Small.ahv" Virus. Action Taken: No Action Taken. Mon Feb 28 21:35:40 2005 => File C:\WINDOWS\System32\inr32MTB.dll infected by "Trojan-Downloader.Win32.Small.ahv" Virus. Action Taken: No Action Taken. Mon Feb 28 21:35:46 2005 => File C:\WINDOWS\System32\jmonepl.dll infected by "Trojan-Downloader.Win32.Small.ahv" Virus. Action Taken: No Action Taken. Mon Feb 28 21:36:02 2005 => File C:\WINDOWS\System32\mgbams3d8.dll infected by "Trojan.Win32.StartPage.ua" Virus. Action Taken: No Action Taken. Mon Feb 28 21:36:37 2005 => File C:\WINDOWS\System32\patedll.dll infected by "Trojan-Downloader.Win32.Small.ahv" Virus. Action Taken: No Action Taken. Mon Feb 28 21:36:58 2005 => File C:\WINDOWS\System32\splertm.exe infected by "Trojan-Downloader.Win32.Agent.jy" Virus. Action Taken: No Action Taken. Mon Feb 28 21:37:02 2005 => File C:\WINDOWS\System32\svpos32.dll infected by "Trojan-Downloader.Win32.Small.ahv" Virus. Action Taken: No Action Taken. Mon Feb 28 21:37:47 2005 => File C:\DOKUME~1\CHRIST~1\LOKALE~1\Temp\se.dll infected by "Trojan.Win32.StartPage.uz" Virus. Action Taken: No Action Taken. Mon Feb 28 23:03:50 2005 => File C:\DOKUME~1\CHRIST~1\LOKALE~1\TEMPOR~1\Content.IE5\J2XYYGU8\exe[1] infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Mon Feb 28 23:04:53 2005 => File C:\DOKUME~1\CHRIST~1\LOKALE~1\TEMPOR~1\Content.IE5\J2XYYGU8\ied_s7[1].chm infected by "Trojan-Downloader.JS.Small.ad" Virus. Action Taken: No Action Taken. Mon Feb 28 23:05:48 2005 => File C:\DOKUME~1\CHRIST~1\LOKALE~1\TEMPOR~1\Content.IE5\J2XYYGU8\masta[1].chm infected by "Exploit.HTML.CodeBaseExec" Virus. Action Taken: No Action Taken. Mon Feb 28 23:05:48 2005 => File C:\DOKUME~1\CHRIST~1\LOKALE~1\TEMPOR~1\Content.IE5\J2XYYGU8\masta[2].chm infected by "Exploit.HTML.CodeBaseExec" Virus. Action Taken: No Action Taken. Mon Feb 28 23:05:48 2005 => File C:\DOKUME~1\CHRIST~1\LOKALE~1\TEMPOR~1\Content.IE5\J2XYYGU8\masta[3].chm infected by "Exploit.HTML.CodeBaseExec" Virus. Action Taken: No Action Taken. Mon Feb 28 23:05:48 2005 => File C:\DOKUME~1\CHRIST~1\LOKALE~1\TEMPOR~1\Content.IE5\J2XYYGU8\masta[4].chm infected by "Exploit.HTML.CodeBaseExec" Virus. Action Taken: No Action Taken. Mon Feb 28 23:05:48 2005 => File C:\DOKUME~1\CHRIST~1\LOKALE~1\TEMPOR~1\Content.IE5\J2XYYGU8\masta[5].chm infected by "Exploit.HTML.CodeBaseExec" Virus. Action Taken: No Action Taken. Mon Feb 28 23:05:48 2005 => File C:\DOKUME~1\CHRIST~1\LOKALE~1\TEMPOR~1\Content.IE5\J2XYYGU8\masta[6].chm infected by "Exploit.HTML.CodeBaseExec" Virus. Action Taken: No Action Taken. Mon Feb 28 23:29:02 2005 => File C:\DOKUME~1\CHRIST~1\LOKALE~1\TEMPOR~1\Content.IE5\SDAFOD2F\archive[1].jar infected by "Trojan.Java.StartPage.g" Virus. Action Taken: No Action Taken. Tue Mar 01 00:34:07 2005 => File C:\Dokumente und Einstellungen\Christoph\Lokale Einstellungen\Temp\se.dll infected by "Trojan.Win32.StartPage.uz" Virus. Action Taken: No Action Taken. Tue Mar 01 01:58:47 2005 => File C:\Dokumente und Einstellungen\Christoph\Lokale Einstellungen\Temporary Internet Files\Content.IE5\J2XYYGU8\exe[1] infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 01:59:47 2005 => File C:\Dokumente und Einstellungen\Christoph\Lokale Einstellungen\Temporary Internet Files\Content.IE5\J2XYYGU8\ied_s7[1].chm infected by "Trojan-Downloader.JS.Small.ad" Virus. Action Taken: No Action Taken. Tue Mar 01 02:00:41 2005 => File C:\Dokumente und Einstellungen\Christoph\Lokale Einstellungen\Temporary Internet Files\Content.IE5\J2XYYGU8\masta[1].chm infected by "Exploit.HTML.CodeBaseExec" Virus. Action Taken: No Action Taken. Tue Mar 01 02:00:41 2005 => File C:\Dokumente und Einstellungen\Christoph\Lokale Einstellungen\Temporary Internet Files\Content.IE5\J2XYYGU8\masta[2].chm infected by "Exploit.HTML.CodeBaseExec" Virus. Action Taken: No Action Taken. Tue Mar 01 02:00:41 2005 => File C:\Dokumente und Einstellungen\Christoph\Lokale Einstellungen\Temporary Internet Files\Content.IE5\J2XYYGU8\masta[3].chm infected by "Exploit.HTML.CodeBaseExec" Virus. Action Taken: No Action Taken. Tue Mar 01 02:00:41 2005 => File C:\Dokumente und Einstellungen\Christoph\Lokale Einstellungen\Temporary Internet Files\Content.IE5\J2XYYGU8\masta[4].chm infected by "Exploit.HTML.CodeBaseExec" Virus. Action Taken: No Action Taken. Tue Mar 01 02:00:41 2005 => File C:\Dokumente und Einstellungen\Christoph\Lokale Einstellungen\Temporary Internet Files\Content.IE5\J2XYYGU8\masta[5].chm infected by "Exploit.HTML.CodeBaseExec" Virus. Action Taken: No Action Taken. Tue Mar 01 02:00:41 2005 => File C:\Dokumente und Einstellungen\Christoph\Lokale Einstellungen\Temporary Internet Files\Content.IE5\J2XYYGU8\masta[6].chm infected by "Exploit.HTML.CodeBaseExec" Virus. Action Taken: No Action Taken. Tue Mar 01 02:23:57 2005 => File C:\Dokumente und Einstellungen\Christoph\Lokale Einstellungen\Temporary Internet Files\Content.IE5\SDAFOD2F\archive[1].jar infected by "Trojan.Java.StartPage.g" Virus. Action Taken: No Action Taken. Tue Mar 01 03:22:18 2005 => File C:\Dokumente und Einstellungen\Helga\Lokale Einstellungen\Temp\se.dll infected by "Trojan.Win32.StartPage.uz" Virus. Action Taken: No Action Taken. Tue Mar 01 03:42:26 2005 => File C:\Dokumente und Einstellungen\Uwe\Lokale Einstellungen\Temp\se.dll infected by "Trojan.Win32.StartPage.uz" Virus. Action Taken: No Action Taken. Tue Mar 01 04:01:33 2005 => File C:\Programme\AVPersonal\INFECTED\DOCUMENT.TXT .EXE.VIR infected by "Email-Worm.Win32.NetSky.q" Virus. Action Taken: No Action Taken. Tue Mar 01 04:01:34 2005 => File C:\Programme\AVPersonal\INFECTED\PART1.VIR infected by "Email-Worm.Win32.NetSky.q" Virus. Action Taken: No Action Taken. Tue Mar 01 04:01:34 2005 => File C:\Programme\AVPersonal\INFECTED\PART4.VIR infected by "Email-Worm.Win32.NetSky.q" Virus. Action Taken: No Action Taken. Tue Mar 01 04:01:34 2005 => File C:\Programme\AVPersonal\INFECTED\PART6.VIR infected by "Email-Worm.Win32.NetSky.q" Virus. Action Taken: No Action Taken. Tue Mar 01 04:01:34 2005 => File C:\Programme\AVPersonal\INFECTED\wuclient.VIR infected by "Trojan-Downloader.Win32.Agent.jy" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:44 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP151\A0056659.dll infected by "Trojan-Clicker.Win32.Small.cj" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:45 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP151\A0056664.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:45 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP151\A0057662.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:45 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP151\A0057676.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:46 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP151\A0057684.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:46 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP151\A0057694.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:47 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP151\A0057700.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:47 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP151\A0057706.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:47 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP151\A0057712.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:48 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP151\A0057723.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:48 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP151\A0057739.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:51 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP151\A0057770.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:51 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP151\A0057786.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:52 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP151\A0057796.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:52 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP151\A0057804.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:53 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP151\A0057816.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:53 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP151\A0057825.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:54 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP151\A0057837.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:57 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP152\A0057842.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:39:58 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP152\A0057848.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:00 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP153\A0057860.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:01 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP153\A0057874.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:01 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP153\A0057879.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:01 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP153\A0057885.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:04 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP154\A0057902.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:04 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP154\A0057913.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:05 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP154\A0057919.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:05 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP154\A0057938.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:06 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP154\A0057945.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:06 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP154\A0057951.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:09 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP155\A0057967.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:09 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP155\A0057973.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:12 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP156\A0058001.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:13 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP156\A0058007.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:13 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP156\A0058025.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:14 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP156\A0058036.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:14 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP156\A0058050.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:15 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP156\A0058056.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:15 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP156\A0058067.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:30 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058087.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:31 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058102.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:32 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058112.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:32 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058117.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:32 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058128.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:33 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058137.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:33 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058143.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:33 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058150.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:34 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058156.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:34 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058165.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:35 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058180.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:35 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058189.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:36 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058204.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:36 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058214.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:37 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058230.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:37 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058232.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:38 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058252.exe infected by "Trojan-Downloader.Win32.Agent.jy" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:39 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058262.exe infected by "Trojan-Downloader.Win32.Agent.jy" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:46 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058270.dll infected by "not-a-virus:AdWare.Cydoor" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:46 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058271.dll infected by "not-a-virus:AdWare.Cydoor" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:49 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058292.exe infected by "Trojan-Downloader.Win32.Agent.fw" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:49 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058309.exe infected by "Trojan-Downloader.Win32.Agent.jy" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:50 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058319.exe infected by "Trojan-Downloader.Win32.Agent.jy" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:50 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058330.exe infected by "Trojan-Downloader.Win32.Agent.jy" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:51 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058345.exe infected by "Trojan-Downloader.Win32.Agent.jy" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:52 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058360.exe infected by "Trojan-Downloader.Win32.Agent.jy" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:52 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058366.exe infected by "Trojan-Downloader.Win32.Agent.jy" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:53 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058393.exe infected by "Trojan-Downloader.Win32.Agent.jy" Virus. Action Taken: No Action Taken. Tue Mar 01 04:40:54 2005 => File C:\System Volume Information\_restore{B6AD29BF-9EB7-453E-95AD-8B7F9D1D7937}\RP158\A0058408.exe infected by "Trojan-Downloader.Win32.Agent.jy" Virus. Action Taken: No Action Taken. Tue Mar 01 04:57:32 2005 => File C:\WINDOWS\system32\edacmts.dll infected by "Trojan-Downloader.Win32.Small.ahv" Virus. Action Taken: No Action Taken. Tue Mar 01 04:57:46 2005 => File C:\WINDOWS\system32\inr32MTB.dll infected by "Trojan-Downloader.Win32.Small.ahv" Virus. Action Taken: No Action Taken. Tue Mar 01 04:57:52 2005 => File C:\WINDOWS\system32\jmonepl.dll infected by "Trojan-Downloader.Win32.Small.ahv" Virus. Action Taken: No Action Taken. Tue Mar 01 04:58:09 2005 => File C:\WINDOWS\system32\mgbams3d8.dll infected by "Trojan.Win32.StartPage.ua" Virus. Action Taken: No Action Taken. Tue Mar 01 04:58:55 2005 => File C:\WINDOWS\system32\patedll.dll infected by "Trojan-Downloader.Win32.Small.ahv" Virus. Action Taken: No Action Taken. Tue Mar 01 04:59:19 2005 => File C:\WINDOWS\system32\splertm.exe infected by "Trojan-Downloader.Win32.Agent.jy" Virus. Action Taken: No Action Taken. Tue Mar 01 04:59:25 2005 => File C:\WINDOWS\system32\svpos32.dll infected by "Trojan-Downloader.Win32.Small.ahv" Virus. Action Taken: No Action Taken. Tue Mar 01 05:00:10 2005 => File C:\WINDOWS\Temp\Adware\SaveNowInst.exe infected by "not-a-virus:AdWare.SaveNow.ar" Virus. Action Taken: No Action Taken. Tue Mar 01 05:00:14 2005 => File C:\WINDOWS\Temp\Liebeszip.zip tagged as not-a-virus:Joke.Win32.Sinep. No Action Taken. das sollte es gewesen sein vielen dank schon mal vorab lg chris |
01.03.2005, 19:55 | #5 |
| Hijackthis Log funktioniert nicht; Problem Startseite about:blank reicht das, oder braucht ihr mehr? |
02.03.2005, 16:38 | #6 |
| Hijackthis Log funktioniert nicht; Problem Startseite about:blank kann mir irgendjemand weiterhelfen? |
Themen zu Hijackthis Log funktioniert nicht; Problem Startseite about:blank |
abgesicherte, abgesicherten, abgesicherten modus, about, about:blank, ad-aware, beiträge, bla, blank, ellung, fehlermeldung, funktioniert, funktioniert nicht, helfen, hijack, hijackthis, hijackthis log, log, modus, neu, problem, programm, seite, spyware, startseite, troja, trojaner, windows, windows xp |