|
Plagegeister aller Art und deren Bekämpfung: TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.CWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
18.06.2005, 21:31 | #1 |
| TR/Buddy.F;TR/Click.Age.DB.Dll;TR/Dldr.Spybi.1;TR/Stervice.C OK dann eben einen neuen thread... HI leute ich habe auch diese 3 trojaner AV guard meldet sie mir ich lösche...und nach ca. 1 min kommen die meldungen wieder (ich will dafür kienen neuen thread aufmachen) kann mir irgendwer helfen?? (bzw. genau sagen was ich machen muss?! Logfile of HijackThis v1.99.1 Scan saved at 22:28:21, on 18.06.2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe E:\Sygate\SPF\smc.exe C:\WINDOWS\system32\spoolsv.exe C:\Programme\Gemeinsame Dateien\EPSON\EBAPI\eEBSVC.exe E:\AVPersonal\AVGUARD.EXE E:\AVPersonal\AVWUPSRV.EXE C:\Programme\Gemeinsame Dateien\EPSON\EBAPI\SAgent2.exe C:\Programme\Ahead\InCD\InCDsrv.exe C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7Debug\mdm.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\kvmisvc.exe C:\WINDOWS\Explorer.exe c:\windows\system32\cvhcbb.exe C:\Programme\Microsoft IntelliType Pro\type32.exe E:\ICQLite\ICQLite.exe C:\WINDOWS\System32\spoo l\DRIVERS\W32X86\3\E_S10IC2.EXE C:\Programme\MSI\Live Update 3\LMonitor.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Programme\Ahead\InCD\InCD.exe C:\Programme\Java\jre1.5.0_02\bin\jusched.exe E:\Medion Home CinemaXL\PowerCinema\PCMService.exe C:\Programme\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe C:\Programme\Gemeinsame Dateien\Microsoft Shared\Works Shared\WkUFind.exe E:\AVPersonal\AVGNT.EXE C:\WINDOWS\SOUNDMAN.EXE E:\Microsoft AntiSpyware\gcasServ.exe C:\WINDOWS\nxonenc.EXE C:\Programme\AceGain\LiveUpdate\LiveUpdate.exe C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe E:\Microsoft AntiSpyware\gcasDtServ.exe C:\Programme\AceGain\LiveUpdate\aceagent.exe F:\Steam\Steam.exe C:\Programme\MSN Messenger\MsnMsgr.Exe E:\Spybot - Search & Destroy\TeaTimer.exe C:\WINDOWS\system32\ctfmon.exe C:\Programme\MSI\Core Center\CoreCenter.exe E:\Logitech\SetPoint\SetPoint.exe C:\Programme\MSI\SecureDoc\Logon.exe C:\Programme\Gemeinsame Dateien\Logitech\KHAL\KHALMNPR.EXE C:\WINDOWS\System32\svchost.exe C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temp\7zS304.tmp\firefox.exe C:\Dokumente und Einstellungen\Administrator\Desktop\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://google.icq.com/search/search_frame.php R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://google.icq.com R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ogame.de/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://google.icq.com/search/search_frame.php R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://google.icq.com R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ogame.de/ R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - E:\ICQToolbar\toolbaru.dll F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - E:\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - E:\SPYBOT~1\SDHelper.dll O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - E:\ICQToolbar\toolbaru.dll O3 - Toolbar: ogame Toolbar - {AB030D41-BFEB-11d3-BA8E-E756DF6F2B61} - E:\OGAMET~1\OGAME_~1.DLL O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [type32] "C:\Programme\Microsoft IntelliType Pro\type32.exe" O4 - HKLM\..\Run: [MediaKey] C:\PROGRA~1\INTERN~2\MEDIAKEY.EXE O4 - HKLM\..\Run: [ICQ Lite] E:\ICQLite\ICQLite.exe -minimize O4 - HKLM\..\Run: [EPSON Stylus CX3200] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE /P19 "EPSON Stylus CX3200" /O6 "USB001" /M "Stylus CX3200" O4 - HKLM\..\Run: [LiveMonitor] C:\Programme\MSI\Live Update 3\LMonitor.exe O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [InCD] C:\Programme\Ahead\InCD\InCD.exe O4 - HKLM\..\Run: [SmcService] E:\Sygate\SPF\smc.exe -startgui O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programme\Java\jre1.5.0_02\bin\jusched.exe O4 - HKLM\..\Run: [PCMService] "E:\Medion Home CinemaXL\PowerCinema\PCMService.exe" O4 - HKLM\..\Run: [MMTray] C:\Programme\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Programme\Gemeinsame Dateien\Microsoft Shared\Works Shared\WkUFind.exe O4 - HKLM\..\Run: [AVGCtrl] "E:\AVPersonal\AVGNT.EXE" /min O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [gcasServ] "E:\Microsoft AntiSpyware\gcasServ.exe" O4 - HKLM\..\Run: [nxonenc] C:\WINDOWS\nxonenc.EXE O4 - HKLM\..\Run: [wiiadll] C:\WINDOWS\wiiadll.exe O4 - HKLM\..\Run: [AceGain LiveUpdate] C:\Programme\AceGain\LiveUpdate\LiveUpdate.exe O4 - HKLM\..\Run: [gglwdll] C:\WINDOWS\gglwdll.exe O4 - HKLM\..\Run: [ziqidll] C:\WINDOWS\ziqidll.exe O4 - HKLM\..\Run: [ncwnwi] c:\windows\system32\cvhcbb.exe r O4 - HKCU\..\Run: [IncrediMail] C:\Programme\IncrediMail\bin\IncMail.exe /c O4 - HKCU\..\Run: [Steam] F:\Steam\\Steam.exe -silent O4 - HKCU\..\Run: [LDM] \Program\ O4 - HKCU\..\Run: [MsnMsgr] "C:\Programme\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [SpybotSD TeaTimer] E:\Spybot - Search & Destroy\TeaTimer.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\RunOnce: [ICQ Lite] E:\ICQLite\ICQLite.exe -trayboot O4 - Startup: Xfire.lnk = E:\Xfire\Xfire.exe O4 - Global Startup: CoreCenter.lnk = C:\Programme\MSI\Core Center\CoreCenter.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = E:\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O4 - Global Startup: Logitech SetPoint.lnk = E:\Logitech\SetPoint\SetPoint.exe O4 - Global Startup: SecureDoc.lnk = C:\Programme\MSI\SecureDoc\Logon.exe O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\PROGRA~1\INCRED~1\bin\resources\WebMenuImg.htm O8 - Extra context menu item: &ICQ Toolbar Search - res://E:\ICQToolbar\toolbaru.dll/SEARCH.HTML O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://E:\MICROS~1\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_02\bin\npjpi150_02.dll O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_02\bin\npjpi150_02.dll O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - E:\ICQLite\ICQLite.exe O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - E:\ICQLite\ICQLite.exe O9 - Extra button: eBay - Homepage - {EF79EAC5-3452-4E02-B8BD-BA4C89F1AC7A} - E:\IrfanView\Ebay\Ebay.htm O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.co...?1117120550640 O18 - Protocol: bw+0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw+0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - E:\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: bwg0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwg0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: offline-8876480 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O23 - Service: AntiVir Service (AntiVirService) - H+BEDV Datentechnik GmbH - E:\AVPersonal\AVGUARD.EXE O23 - Service: AntiVir Update (AVWUpSrv) - H+BEDV Datentechnik GmbH, Germany - E:\AVPersonal\AVWUPSRV.EXE O23 - Service: EpsonBidirectionalService - Unknown owner - C:\Programme\Gemeinsame Dateien\EPSON\EBAPI\eEBSVC.exe O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Programme\Gemeinsame Dateien\EPSON\EBAPI\SAgent2.exe O23 - Service: InCD Helper (InCDsrv) - AHEAD Software - C:\Programme\Ahead\InCD\InCDsrv.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: Sygate Personal Firewall (SmcService) - Sygate Technologies, Inc. - E:\Sygate\SPF\smc.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\SNDSrvc.exe O23 - Service: Windows VisFx Components - Unknown owner - C:\WINDOWS\kvmisvc.exe O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe wie geasagt ich versteh nix davon.... Geändert von KRS96 (18.06.2005 um 21:49 Uhr) |
18.06.2005, 23:28 | #3 |
| TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C ok mach ich Log editiere ich dann hier rein...
__________________ist es absicht das der link zum HJT tutorial geht?? |
18.06.2005, 23:55 | #4 | ||
| TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.CZitat:
Zitat:
__________________ Only cronos endures |
19.06.2005, 00:04 | #5 |
| TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C verdammt habe ich viele viren: File C:\WINDOWS\kvmisvc.exe infected by "Trojan-Dropper.Win32.Agent.mu" Virus! Action Taken: No Action Taken. File c:\windows\system32\cvhcbb.exe infected by "Trojan.Win32.Agent.ay" Virus! Action Taken: No Action Taken. File C:\WINDOWS\nxonenc.EXE infected by "Trojan-Downloader.Win32.VB.hj" Virus! Action Taken: No Action Taken. File C:\WINDOWS\nxonenc.EXE infected by "Trojan-Downloader.Win32.VB.hj" Virus! Action Taken: No Action Taken. File c:\windows\system32\cvhcbb.exe infected by "Trojan.Win32.Agent.ay" Virus! Action Taken: No Action Taken. File C:\Dokumente und Einstellungen\Administrator\Desktop\backups\backup-20050613-225205-964.dll tagged as "not-a-virus:AdWare.ToolBar.HotSearchBar.i". Action Taken: No Action Taken. File C:\WINDOWS\kvmisvc.exe infected by "Trojan-Dropper.Win32.Agent.mu" Virus! Action Taken: No Action Taken. Object "iSearch Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "IstBAR Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "IstBAR Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "AltNet Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "ISearchTech.ISTdownloader Spyware/Adware" found in File System! Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\ModuleUsage" refers to invalid object "C:\WINDOWS\Downloaded Program Files\YSBactivex.dll". Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\MSXML3A.DLL". Action Taken: No Action Taken. Entry "HKCR\CLSID\{29FF67FF-8050-480f-9F30-CC41635F2F9D}" refers to invalid object "ADMWPROX.DLL". Action Taken: No Action Taken. Entry "HKCR\CLSID\{70B51430-B6CA-11D0-B9B9-00A0C922E750}" refers to invalid object "ADMWPROX.DLL". Action Taken: No Action Taken. Entry "HKCR\CLSID\{8298d101-f992-43b7-8eca-5052d885b995}" refers to invalid object "ADMWPROX.DLL". Action Taken: No Action Taken. Entry "HKCR\CLSID\{9EFBF860-5685-11D3-AA3D-00C04F4C5275}" refers to invalid object "cdooff.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{A9E69612-B80D-11D0-B9B9-00A0C922E750}" refers to invalid object "ADMWPROX.DLL". Action Taken: No Action Taken. Entry "HKCR\CLSID\{f612954d-3b0b-4c56-9563-227b7be624b4}" refers to invalid object "ADMWPROX.DLL". Action Taken: No Action Taken. Entry "HKCR\Automap.Map.EU.11" refers to invalid object "{A49EEA01-9231-4C77-AA9E-2F89D72B4804}". Action Taken: No Action Taken. Entry "HKCR\Automap.Template.EU.11" refers to invalid object "{A49EEA01-9231-4C77-AA9E-2F89D72B4804}". Action Taken: No Action Taken. Entry "HKCR\RTCIMSP.RTCIMService" refers to invalid object "{83D4679F-B6D7-11D2-BF36-00C04FB90A03}". Action Taken: No Action Taken. Entry "HKCR\RTCIMSP.RTCIMService.1" refers to invalid object "{83D4679F-B6D7-11D2-BF36-00C04FB90A03}". Action Taken: No Action Taken. File C:\WINDOWS\Nail.exe tagged as "not-a-virus:AdWare.BetterInternet.b". Action Taken: No Action Taken. File C:\WINDOWS\visfxun.exe infected by "Trojan-Downloader.Win32.VB.kd" Virus! Action Taken: No Action Taken. File C:\WINDOWS\system32\InstallerV3.exe tagged as "not-a-virus:AdWare.SafeSurfing.j". Action Taken: No Action Taken. File C:\WINDOWS\system32\nsn198.dll tagged as "not-a-virus:AdWare.Beginto.c". Action Taken: No Action Taken. File C:\WINDOWS\system32\nsv64.dll tagged as "not-a-virus:AdWare.Beginto.c". Action Taken: No Action Taken. File C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\1.exe tagged as "not-a-virus:AdWare.ToolBar.HotSearchBar.i". Action Taken: No Action Taken. File C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\thin_installerv3.exe tagged as "not-a-virus:AdWare.BetterInternet". Action Taken: No Action Taken. File C:\DOKUME~1\ADMINI~1\LOKALE~1\TEMPOR~1\Content.IE5\C7JFU45D\thin_installerv3[1].exe tagged as "not-a-virus:AdWare.BetterInternet". Action Taken: No Action Taken. File C:\DOKUME~1\ADMINI~1\LOKALE~1\TEMPOR~1\Content.IE5\KPQB4X63\Poller[1].exe infected by "Trojan.Win32.Agent.ay" Virus! Action Taken: No Action Taken. File C:\DOKUME~1\ADMINI~1\LOKALE~1\TEMPOR~1\Content.IE5\OPY74DE3\btnetw2[1].exe tagged as "not-a-virus:AdWare.ToolBar.HotSearchBar.i". Action Taken: No Action Taken. File C:\DOKUME~1\ADMINI~1\LOKALE~1\TEMPOR~1\Content.IE5\OPY74DE3\Nail[1].exe tagged as "not-a-virus:AdWare.BetterInternet.b". Action Taken: No Action Taken. File C:\Dokumente und Einstellungen\Administrator\Desktop\backups\backup-20050613-225205-964.dll tagged as "not-a-virus:AdWare.ToolBar.HotSearchBar.i". Action Taken: No Action Taken. File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temp\1.exe tagged as "not-a-virus:AdWare.ToolBar.HotSearchBar.i". Action Taken: No Action Taken. File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temp\thin_installerv3.exe tagged as "not-a-virus:AdWare.BetterInternet". Action Taken: No Action Taken. File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\Content.IE5\C7JFU45D\thin_installerv3[1].exe tagged as "not-a-virus:AdWare.BetterInternet". Action Taken: No Action Taken. File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\Content.IE5\KPQB4X63\Poller[1].exe infected by "Trojan.Win32.Agent.ay" Virus! Action Taken: No Action Taken. File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\Content.IE5\OPY74DE3\btnetw2[1].exe tagged as "not-a-virus:AdWare.ToolBar.HotSearchBar.i". Action Taken: No Action Taken. File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\Content.IE5\OPY74DE3\Nail[1].exe tagged as "not-a-virus:AdWare.BetterInternet.b". Action Taken: No Action Taken. ich meinte damit das man zum hJT tutorial kommt und net zum Escan... wenn es irgendwie möglich ist will ich nihct neu aufsetzten |
19.06.2005, 02:07 | #6 | ||
| TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.CZitat:
Evtl. hast du deswegen den Escan nicht richtig ausgeführt. Lies dir den oben geänderten Link zu Escan nochmal durch. Wichtig ist, u.a. das folgende Einstellungen gesetzt werden: Lies dir nochmal die gesamte Anleitung durch, lösche die mwav.log Datei, scanne erneut und poste uns die Ergebnisse in dieser Form: Zitat:
__________________ --> TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C |
19.06.2005, 12:25 | #7 |
| TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Funde für "infected" ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Sun Jun 19 03:35:00 2005 => File c:\windows\system32\vxoqsaf.exe infected by "Trojan.Win32.Agent.ay" Virus! Action Taken: No Action Taken. Sun Jun 19 03:35:17 2005 => File C:\WINDOWS\nxonenc.EXE infected by "Trojan-Downloader.Win32.VB.hj" Virus! Action Taken: No Action Taken. Sun Jun 19 03:35:18 2005 => File c:\windows\system32\vxoqsaf.exe infected by "Trojan.Win32.Agent.ay" Virus! Action Taken: No Action Taken. Sun Jun 19 03:35:33 2005 => File C:\WINDOWS\kvmisvc.exe infected by "Trojan-Dropper.Win32.Agent.mu" Virus! Action Taken: No Action Taken. Sun Jun 19 03:35:37 2005 => System found infected with iSearch Spyware/Adware ({6d3f5de4-e980-4407-a10f-9ac771abaae6})! Action taken: No Action Taken. Sun Jun 19 03:35:38 2005 => System found infected with IstBAR Spyware/Adware ({eaf2ccee-21a1-4203-9f36-4929fd104d43})! Action taken: No Action Taken. Sun Jun 19 03:35:38 2005 => System found infected with IstBAR Spyware/Adware ({7b9a715e-9d87-4c21-bf9e-f914f2fa953f})! Action taken: No Action Taken. Sun Jun 19 03:55:10 2005 => File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\Content.IE5\KPQB4X63\Poller[1].exe infected by "Trojan.Win32.Agent.ay" Virus! Action Taken: No Action Taken. Sun Jun 19 04:55:52 2005 => File C:\WINDOWS\visfxun.exe infected by "Trojan-Downloader.Win32.VB.kd" Virus! Action Taken: No Action Taken. Sun Jun 19 06:31:54 2005 => Scanning Folder: E:\AVPersonal\INFECTED\*.* Sun Jun 19 06:31:54 2005 => Scanning File E:\AVPersonal\INFECTED\nxondll.VIR Sun Jun 19 06:31:54 2005 => File E:\AVPersonal\INFECTED\nxondll.VIR infected by "Trojan-Downloader.Win32.VB.hj" Virus! Action Taken: No Action Taken. Sun Jun 19 06:46:32 2005 => File E:\eMule.de\Incoming\Sandra-Model Kinderporno Kids (New April-Mai 2004)Keys Bestpics Dark-Elf Hussyfan Lolitaguy.rar infected by "IRC-Worm.Win32.Drefir.a" Virus! Action Taken: No Action Taken. Sun Jun 19 07:01:11 2005 => Total Disinfected Files: 0 |
19.06.2005, 12:26 | #8 |
| TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C und noch ein paar di in den ersten nicht passten... ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Funde für "tagged" ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Sun Jun 19 03:38:15 2005 => File C:\Dokumente und Einstellungen\Administrator\Desktop\backups\backup-20050613-225205-964.dll tagged as "not-a-virus:AdWare.ToolBar.HotSearchBar.i". Action Taken: No Action Taken. Sun Jun 19 03:52:58 2005 => File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temp\1.exe tagged as "not-a-virus:AdWare.ToolBar.HotSearchBar.i". Action Taken: No Action Taken. Sun Jun 19 03:53:45 2005 => File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temp\thin_installerv3.exe tagged as "not-a-virus:AdWare.BetterInternet". Action Taken: No Action Taken. Sun Jun 19 03:54:23 2005 => File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\Content.IE5\C7JFU45D\thin_installerv3[1].exe tagged as "not-a-virus:AdWare.BetterInternet". Action Taken: No Action Taken. Sun Jun 19 03:55:15 2005 => File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\Content.IE5\OPY74DE3\btnetw2[1].exe tagged as "not-a-virus:AdWare.ToolBar.HotSearchBar.i". Action Taken: No Action Taken. Sun Jun 19 03:55:18 2005 => File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\Content.IE5\OPY74DE3\Nail[1].exe tagged as "not-a-virus:AdWare.BetterInternet.b". Action Taken: No Action Taken. Sun Jun 19 04:29:24 2005 => File C:\RECYCLER\S-1-5-21-746137067-839522115-725345543-500\Dc7.exe tagged as "not-a-virus:AdWare.BetterInternet.b". Action Taken: No Action Taken. Sun Jun 19 04:29:24 2005 => File C:\RECYCLER\S-1-5-21-746137067-839522115-725345543-500\Dc8.exe tagged as "not-a-virus:AdWare.BetterInternet.b". Action Taken: No Action Taken. Sun Jun 19 04:29:24 2005 => File C:\RECYCLER\S-1-5-21-746137067-839522115-725345543-500\Dc9.exe tagged as "not-a-virus:AdWare.BetterInternet.b". Action Taken: No Action Taken. Sun Jun 19 04:44:00 2005 => File C:\WINDOWS\Nail.exe tagged as "not-a-virus:AdWare.BetterInternet.b". Action Taken: No Action Taken. Sun Jun 19 04:52:56 2005 => File C:\WINDOWS\system32\InstallerV3.exe tagged as "not-a-virus:AdWare.SafeSurfing.j". Action Taken: No Action Taken. Sun Jun 19 04:53:43 2005 => File C:\WINDOWS\system32\nsn198.dll tagged as "not-a-virus:AdWare.Beginto.c". Action Taken: No Action Taken. Sun Jun 19 04:53:43 2005 => File C:\WINDOWS\system32\nsv64.dll tagged as "not-a-virus:AdWare.Beginto.c". Action Taken: No Action Taken. Sun Jun 19 04:56:35 2005 => File D:\Eigene_Dateien\Cheats\pc0402.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 05:42:54 2005 => File D:\Eigene_Dateien\Doenloads-Patches\artmoney708eng.exe tagged as "not-a-virus:AdWare.F1Organizer.h". Action Taken: No Action Taken. Sun Jun 19 06:12:29 2005 => File D:\Eigene_Dateien\Doenloads-Patches\Grand Theft Auto Vice City\gta_vice_city_b.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:32:04 2005 => File E:\DLH98\0100.dlm tagged as not-a-virus:CrackTool.Win32.AssasinPatch. No Action Taken. Sun Jun 19 06:32:07 2005 => File E:\DLH98\0100a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:32:10 2005 => File E:\DLH98\0101.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:32:11 2005 => File E:\DLH98\0102.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:32:13 2005 => File E:\DLH98\0103.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:32:13 2005 => File E:\DLH98\0104.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:32:23 2005 => File E:\DLH98\0105.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:32:27 2005 => File E:\DLH98\0200a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:32:28 2005 => File E:\DLH98\0201.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:32:28 2005 => File E:\DLH98\0202.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:32:28 2005 => File E:\DLH98\0203.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:32:29 2005 => File E:\DLH98\0204.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:32:37 2005 => File E:\DLH98\0300a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken. Sun Jun 19 06:32:42 2005 => File E:\DLH98\0301.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:32:42 2005 => File E:\DLH98\0302.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:32:42 2005 => File E:\DLH98\0303.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:32:43 2005 => File E:\DLH98\0304.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:32:50 2005 => File E:\DLH98\0400a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:32:52 2005 => File E:\DLH98\0402.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:32:54 2005 => File E:\DLH98\0403.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:33:01 2005 => File E:\DLH98\0404.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:33:09 2005 => File E:\DLH98\0502.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:33:10 2005 => File E:\DLH98\0503.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:33:19 2005 => File E:\DLH98\0600a.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:33:20 2005 => File E:\DLH98\0601.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:33:21 2005 => File E:\DLH98\0602.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:33:21 2005 => File E:\DLH98\0603.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:33:29 2005 => File E:\DLH98\0700a.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:33:31 2005 => File E:\DLH98\0701.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:33:31 2005 => File E:\DLH98\0702.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:33:31 2005 => File E:\DLH98\0703.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:33:45 2005 => File E:\DLH98\0800.dlm tagged as not-a-virus:CrackTool.Win32.AssasinPatch. No Action Taken. Sun Jun 19 06:33:45 2005 => File E:\DLH98\0800a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:33:45 2005 => File E:\DLH98\0801.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:33:46 2005 => File E:\DLH98\0802.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:02 2005 => File E:\DLH98\0900a.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:02 2005 => File E:\DLH98\0901.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:02 2005 => File E:\DLH98\0902.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:10 2005 => File E:\DLH98\1000.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:13 2005 => File E:\DLH98\1000a.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:13 2005 => File E:\DLH98\1001.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:14 2005 => File E:\DLH98\1002.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:19 2005 => File E:\DLH98\1100.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:19 2005 => File E:\DLH98\1100a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:20 2005 => File E:\DLH98\1101.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:21 2005 => File E:\DLH98\1102.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:27 2005 => File E:\DLH98\1200a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:31 2005 => File E:\DLH98\1201.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:31 2005 => File E:\DLH98\1202.dlm tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken. Sun Jun 19 06:34:35 2005 => File E:\DLH98\1300.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:37 2005 => File E:\DLH98\1300a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:37 2005 => File E:\DLH98\1301.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:37 2005 => File E:\DLH98\1302.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:42 2005 => File E:\DLH98\1400.dlm tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken. Sun Jun 19 06:34:42 2005 => File E:\DLH98\1400a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:44 2005 => File E:\DLH98\1402.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:54 2005 => File E:\DLH98\1501.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:34:55 2005 => File E:\DLH98\1502.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:35:01 2005 => File E:\DLH98\1600.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:35:07 2005 => File E:\DLH98\1600a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:35:08 2005 => File E:\DLH98\1601.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:35:08 2005 => File E:\DLH98\1602.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:35:13 2005 => File E:\DLH98\1701.DLM tagged as not-a-virus:FalseAlarm.DrWeb.Backdoor.Theef.111. No Action Taken. Sun Jun 19 06:35:14 2005 => File E:\DLH98\1702.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:35:16 2005 => File E:\DLH98\1799.dlm tagged as not-a-virus:CrackTool.Win32.AssasinPatch. No Action Taken. Sun Jun 19 06:35:17 2005 => File E:\DLH98\1800.DLM tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken. Sun Jun 19 06:35:18 2005 => File E:\DLH98\1801.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:35:19 2005 => File E:\DLH98\1802.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:35:22 2005 => File E:\DLH98\1900.DLM tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken. Sun Jun 19 06:35:23 2005 => File E:\DLH98\1901.DLM tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken. Sun Jun 19 06:35:23 2005 => File E:\DLH98\1902.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:35:23 2005 => File E:\DLH98\1999.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:35:26 2005 => File E:\DLH98\2001.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:35:28 2005 => File E:\DLH98\2002.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:35:33 2005 => File E:\DLH98\2100.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:35:36 2005 => File E:\DLH98\2101.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:35:44 2005 => File E:\DLH98\2201.DLM tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken. Sun Jun 19 06:35:50 2005 => File E:\DLH98\2300.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:35:52 2005 => File E:\DLH98\2301.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:36:13 2005 => File E:\DLH98\2501.DLM tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken. Sun Jun 19 06:36:15 2005 => File E:\DLH98\2601.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:36:17 2005 => File E:\DLH98\2701.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:36:21 2005 => File E:\DLH98\2800.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:36:22 2005 => File E:\DLH98\2801.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:36:22 2005 => File E:\DLH98\2900.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:36:23 2005 => File E:\DLH98\3000.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:36:24 2005 => File E:\DLH98\3100.DLM tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken. Sun Jun 19 06:36:36 2005 => File E:\DLH98\Download\pc0001.zip tagged as not-a-virus:CrackTool.Win32.AssasinPatch. No Action Taken. Sun Jun 19 06:36:40 2005 => File E:\DLH98\Download\pc0001a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:36:42 2005 => File E:\DLH98\Download\pc0002a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:36:46 2005 => File E:\DLH98\Download\pc0003a.zip tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken. Sun Jun 19 06:36:50 2005 => File E:\DLH98\Download\pc0004a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:36:57 2005 => File E:\DLH98\Download\pc0006a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:37:00 2005 => File E:\DLH98\Download\pc0007a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:37:02 2005 => File E:\DLH98\Download\pc0008.zip tagged as not-a-virus:CrackTool.Win32.AssasinPatch. No Action Taken. Sun Jun 19 06:37:03 2005 => File E:\DLH98\Download\pc0008a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:37:10 2005 => File E:\DLH98\Download\pc0009a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:37:11 2005 => File E:\DLH98\Download\pc0010.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:37:14 2005 => File E:\DLH98\Download\pc0010a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:37:15 2005 => File E:\DLH98\Download\pc0011.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:37:17 2005 => File E:\DLH98\Download\pc0011a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:37:20 2005 => File E:\DLH98\Download\pc0012a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:37:21 2005 => File E:\DLH98\Download\pc0013.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:37:26 2005 => File E:\DLH98\Download\pc0013a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:37:27 2005 => File E:\DLH98\Download\pc0014.zip tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken. Sun Jun 19 06:37:29 2005 => File E:\DLH98\Download\pc0014a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:37:36 2005 => File E:\DLH98\Download\pc0016.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:37:44 2005 => File E:\DLH98\Download\pc0016a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:37:49 2005 => File E:\DLH98\Download\pc0018.zip tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken. Sun Jun 19 06:37:51 2005 => File E:\DLH98\Download\pc0019.zip tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken. Sun Jun 19 06:37:59 2005 => File E:\DLH98\Download\pc0021.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:38:02 2005 => File E:\DLH98\Download\pc0023.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:38:17 2005 => File E:\DLH98\Download\pc0028.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:38:19 2005 => File E:\DLH98\Download\pc0029.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:38:21 2005 => File E:\DLH98\Download\pc0030.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:38:24 2005 => File E:\DLH98\Download\pc0031.zip tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken. Sun Jun 19 06:38:29 2005 => File E:\DLH98\Download\pc0101.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:38:31 2005 => File E:\DLH98\Download\pc0102.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:38:35 2005 => File E:\DLH98\Download\pc0103.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:38:44 2005 => File E:\DLH98\Download\pc0106.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:38:46 2005 => File E:\DLH98\Download\pc0107.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:38:47 2005 => File E:\DLH98\Download\pc0108.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:38:50 2005 => File E:\DLH98\Download\pc0109.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:38:51 2005 => File E:\DLH98\Download\pc0110.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:38:53 2005 => File E:\DLH98\Download\pc0111.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:38:58 2005 => File E:\DLH98\Download\pc0112.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:00 2005 => File E:\DLH98\Download\pc0113.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:04 2005 => File E:\DLH98\Download\pc0115.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:07 2005 => File E:\DLH98\Download\pc0116.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:09 2005 => File E:\DLH98\Download\pc0117.zip tagged as not-a-virus:FalseAlarm.DrWeb.Backdoor.Theef.111. No Action Taken. Sun Jun 19 06:39:11 2005 => File E:\DLH98\Download\pc0118.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:15 2005 => File E:\DLH98\Download\pc0119.zip tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken. Sun Jun 19 06:39:16 2005 => File E:\DLH98\Download\pc0120.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:21 2005 => File E:\DLH98\Download\pc0121.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:25 2005 => File E:\DLH98\Download\pc0122.zip tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken. Sun Jun 19 06:39:30 2005 => File E:\DLH98\Download\pc0125.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:31 2005 => File E:\DLH98\Download\pc0126.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:32 2005 => File E:\DLH98\Download\pc0127.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:33 2005 => File E:\DLH98\Download\pc0128.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:35 2005 => File E:\DLH98\Download\pc0201.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:37 2005 => File E:\DLH98\Download\pc0202.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:39 2005 => File E:\DLH98\Download\pc0203.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:41 2005 => File E:\DLH98\Download\pc0204.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:42 2005 => File E:\DLH98\Download\pc0205.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:44 2005 => File E:\DLH98\Download\pc0206.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:46 2005 => File E:\DLH98\Download\pc0207.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:48 2005 => File E:\DLH98\Download\pc0208.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:51 2005 => File E:\DLH98\Download\pc0209.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:53 2005 => File E:\DLH98\Download\pc0210.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:54 2005 => File E:\DLH98\Download\pc0211.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:56 2005 => File E:\DLH98\Download\pc0212.zip tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken. Sun Jun 19 06:39:57 2005 => File E:\DLH98\Download\pc0213.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:39:58 2005 => File E:\DLH98\Download\pc0214.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:40:00 2005 => File E:\DLH98\Download\pc0215.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:40:02 2005 => File E:\DLH98\Download\pc0216.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:40:07 2005 => File E:\DLH98\Download\pc0217.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:40:11 2005 => File E:\DLH98\Download\pc0218.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:40:18 2005 => File E:\DLH98\Download\pc0219.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:40:27 2005 => File E:\DLH98\Download\pc0220.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:40:33 2005 => File E:\DLH98\Download\pc0301.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:40:37 2005 => File E:\DLH98\Download\pc0302.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:40:47 2005 => File E:\DLH98\Download\pc0303.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:40:51 2005 => File E:\DLH98\Download\pc0304.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:40:55 2005 => File E:\DLH98\Download\pc0305.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:41:06 2005 => File E:\DLH98\Download\pc0306.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:41:21 2005 => File E:\DLH98\Download\pc0307.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:41:33 2005 => File E:\DLH98\Download\pc0401.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:42:00 2005 => File E:\DLH98\Download\pc0402.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:42:15 2005 => File E:\DLH98\Download\pc0403.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:42:28 2005 => File E:\DLH98\Download\pc0404.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:42:52 2005 => File E:\DLH98\Download\pc0501.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. Sun Jun 19 06:44:30 2005 => File E:\DLH98\Download\pc9917.zip tagged as not-a-virus:CrackTool.Win32.AssasinPatch. No Action Taken. Sun Jun 19 06:44:34 2005 => File E:\DLH98\Download\pc9919.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Statistiken: ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Sun Jun 19 07:01:11 2005 => Total Virus(es) Found: 202 Sun Jun 19 07:01:11 2005 => Total Errors: 281 Sun Jun 19 07:01:11 2005 => Time Elapsed: 03:26:17 Sun Jun 19 07:01:11 2005 => Total Objects Scanned: 70828 Sun Jun 19 03:34:29 2005 => Virus Database Date: 2005/06/19 Sun Jun 19 07:01:12 2005 => Virus Database Date: 2005/06/19 Sun Jun 19 11:52:08 2005 => Virus Database Date: 2005/06/19 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~~~~ © Haui ;-) ~~~~~~~ ~~~~~~~ Dank an Cidre ~~~~~~~ man oh man sind das viele kleine nebenfrage was meint escan mit "tagged"? Geändert von KRS96 (19.06.2005 um 15:10 Uhr) |
19.06.2005, 18:15 | #9 |
| TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C Seit ihr so schockiert (wie ich) von dieser viren sammlung das sich jetzt nimand mehr traut was zu sagen...?! wie gesagt ich habe 0 ahnung von sowas (noch nicht) |
19.06.2005, 18:43 | #10 |
| TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C hehe, ich frag mich nur grad wie du das zu stande gebracht hast auch wenn dus nicht hören willst, setz dein system neu auf! es bringt nichts, diese viren die du drauf hast zu löschen, dein pc kann nicht mehr sicher werden. also, bitte formatieren: http://www.formatieren.de/schritt/vorb.htm und dann BEVOR du das inet kabel anschliesst Antiviren programm und firewall installieren, zudem nichtbenötigte Dienste abschalten! wie das geht: http://www.ntsvcfg.de/ dann als 1. Windows Updates aufspielen. mfg michi |
19.06.2005, 18:48 | #11 |
| TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C Ich frage mich eher, was dass für eine seltsame Datei im Emule-Ordner ist.
__________________ Only cronos endures |
19.06.2005, 18:56 | #12 |
| TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C und wenn ich ehrlich bin ist das einfake (ein"freund " hat mir die datei mit dem kommentar "wenn das ein kind ist bi ich 1000jahre alt" geschickt die (frau war ca 60)... soviel zu dem thema... naja ich wollt den esel so oder so löschen...habe ich jetzt auch erstma gemacht (und meinem freund gesagt r solle mal die datei löschen)... |
19.06.2005, 19:00 | #13 |
| TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C Dann ists ja in Ordnung. Dennoch solltest du dein System neuaufsetzen. Gehe nach folgender Anleitung vor, um ähnliches in Zukunft zu vermeiden: http://www.trojaner-board.de/showthread.php?t=12154
__________________ Only cronos endures |
19.06.2005, 19:04 | #14 |
| TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C naj dann danke...ich werde mir die tips zu herzen nehmen.... ps. und der esel kommt net mehr drauf.... ps.2 ich werde dann erstma die wichtigen sachen downloaden und die installations datein auf cd packen |
19.06.2005, 19:17 | #15 |
| TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C ok 2 fragen habe ich aber noch 1. die als TAGGED gegenzeichneten files sind nicht schlimm oder?? 2. wenn ich das richtig sehe kann ich miene eigenen datein behalten// musss sie nicht lösschen (das sind fast 10gb nicht gesichertre daten (und ja ich bin ei volidiot das ich kein backup habe...)/bzw.muss ich nicht befallene partitionen löschen würde eigenlich die system wiederherstellung was ringen?? (ich habe da einen 100% sauberen pkt) ok es waren jetzt3 |
Themen zu TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C |
administrator, antispyware, antivir, antivir update, bho, components, desktop, drivers, ebay, einstellungen, excel, explorer, firewall, helfen, hijack, hijackthis, home, homepage, icqtoolbar, internet, internet explorer, rundll, software, symantec, system, temp, trojaner, urlsearchhook, usb, windows, windows messenger, windows xp |