Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Starseite http://www.security2k.net/ <-- Trojaner

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 15.09.2005, 22:23   #31
Aleking
 
Starseite http://www.security2k.net/ <-- Trojaner - Standard

Starseite http://www.security2k.net/ <-- Trojaner



jetzt fällt mir grad auf, dass die ad-aware log file auch riesig ist, soll ich die auch so posten?

Alt 15.09.2005, 22:57   #32
Haui45
 
Starseite http://www.security2k.net/ <-- Trojaner - Standard

Starseite http://www.security2k.net/ <-- Trojaner



Du sollst, wie im Thread beschrieben, ein HjT-Logfile, das smitrem-Logfile und die Ergebnisse von eScan posten.
__________________


Alt 16.09.2005, 01:48   #33
Aleking
 
Starseite http://www.security2k.net/ <-- Trojaner - Standard

Starseite http://www.security2k.net/ <-- Trojaner



also ich hoffe, dass es jetzt richtig ist.... allerdings ist der trojaner schon gelöscht, durch die smitRem *freu*


Logfile of HijackThis v1.99.1
Scan saved at 02:41:12, on 16.09.2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
F:\WINDOWS\System32\smss.exe
F:\WINDOWS\system32\winlogon.exe
F:\WINDOWS\system32\services.exe
F:\WINDOWS\system32\lsass.exe
F:\WINDOWS\System32\Ati2evxx.exe
F:\WINDOWS\system32\svchost.exe
F:\WINDOWS\System32\svchost.exe
F:\WINDOWS\system32\spoolsv.exe
F:\WINDOWS\system32\Ati2evxx.exe
F:\WINDOWS\Explorer.EXE
F:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Programme\ICQLite\ICQLite.exe
C:\Programme\AVPersonal\AVGNT.EXE
c:\Programme\Logitech\MouseWare\system\em_exec.exe
C:\Programme\AVPersonal\AVGUARD.EXE
C:\Programme\AVPersonal\AVWUPSRV.EXE
F:\WINDOWS\System32\svchost.exe
F:\Programme\Spybot - Search & Destroy\TeaTimer.exe
F:\WINDOWS\system32\ZoneLabs\vsmon.exe
F:\WINDOWS\System32\devldr32.exe
C:\Programme\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = ***security2k.net/search.php?qq=%1
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = ***security2k.net/bar.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = ***security2k.net/search.php?qq=%1
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://F:\DOKUME~1\ALEXAN~1\LOKALE~1\Temp\se.dll/spage.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = ***security2k.net/search.php?qq=%1
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = ***security2k.net/search.php?qq=%1
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = ***security2k.net/search.php?qq=%1
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = ***security2k.net/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Programme\ICQToolbar\toolbaru.dll
O2 - BHO: (no name) - {FFFFFFFF-FFFF-FFFF-FFFF-FFFFFFFFFFFA} - (no file)
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Programme\ICQToolbar\toolbaru.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - F:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - f:\programme\google\googletoolbar1.dll
O4 - HKLM\..\Run: [avserve.exe] F:\WINDOWS\avserve.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [ATIPTA] F:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [ICQ Lite] c:\Programme\ICQLite\ICQLite.exe -minimize
O4 - HKLM\..\Run: [NeroFilterCheck] F:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\dokumente und einstellungen\alexander\desktop\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [AVGCtrl] "C:\Programme\AVPersonal\AVGNT.EXE" /min
O4 - HKLM\..\Run: [Zone Labs Client] F:\Programme\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKLM\..\Run: [RegSvr32] F:\WINDOWS\System32\msmsgs.exe
O4 - HKLM\..\Run: [PSGuard] F:\Programme\PSGuard\PSGuard.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] F:\Programme\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\RunOnce: [ICQ Lite] C:\Programme\ICQLite\ICQLite.exe -trayboot
O8 - Extra context menu item: &Google-Suche - res://f:\programme\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &ICQ Toolbar Search - res://C:\Programme\ICQToolbar\toolbaru.dll/SEARCH.HTML
O8 - Extra context menu item: &Ins Deutsche übersetzen - res://f:\programme\google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Im Cache gespeicherte Seite - res://f:\programme\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Verweisseiten - res://f:\programme\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Ähnliche Seiten - res://f:\programme\google\GoogleToolbar1.dll/cmsimilar.html
O9 - Extra button: ICQ Pro - {6224f700-cba3-4071-b251-47cb894244cd} - F:\PROGRA~1\ICQ\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - F:\PROGRA~1\ICQ\ICQ.exe
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - c:\Programme\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - c:\Programme\ICQLite\ICQLite.exe
O15 - Trusted Zone: *.coolwebsearch.com
O15 - Trusted Zone: *.searchmeup.com
O16 - DPF: {10003000-1000-0000-1000-000000000000} - ms-its:mhtml:file://C:\foo.mht!http://dl.ad-ware.cc/Bd1ITwCL9tea9lF...::/on-line.exe
O16 - DPF: {27527D31-447B-11D5-A46E-0001023B4289} (CoGSManager Class) - http://***gamingzone.ubisoft.com/dev.../GSManager.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://***software-dl.real.com/21db6...dxIE601_de.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{654FE278-7FC8-4445-92CA-8032790CEFD1}: NameServer = 194.25.2.129,194.25.0.52
O18 - Filter: text/html - {66DEB08B-D710-40A8-9DDC-AC7D28F2AF6E} - F:\WINDOWS\System32\flgo.dll
O18 - Filter: text/plain - {66DEB08B-D710-40A8-9DDC-AC7D28F2AF6E} - F:\WINDOWS\System32\flgo.dll
O20 - Winlogon Notify: style32 - F:\WINDOWS\q29938679_disk.dll (file missing)
O23 - Service: AntiVir Service (AntiVirService) - H+BEDV Datentechnik GmbH - C:\Programme\AVPersonal\AVGUARD.EXE
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - F:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - F:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AntiVir Update (AVWUpSrv) - H+BEDV Datentechnik GmbH, Germany - C:\Programme\AVPersonal\AVWUPSRV.EXE
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - F:\WINDOWS\system32\ZoneLabs\vsmon.exe





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~
Funde für "infected"
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~
Thu Sep 15 20:58:51 2005 => System found infected with alexa Spyware/Adware ({c95fe080-8f5d-11d2-a20b-00aa003c157a})! Action taken: No Action Taken.
Thu Sep 15 20:58:51 2005 => System found infected with coolwebsearch Spyware/Adware ({10003000-1000-0000-1000-000000000000})! Action taken: No Action Taken.
Thu Sep 15 20:58:51 2005 => System found infected with FlashGet Spyware/Adware ({e0e899ab-f487-11d5-8d29-0050ba6940e3})! Action taken: No Action Taken.
Thu Sep 15 20:58:51 2005 => System found infected with gain.gator Spyware/Adware ({21ffb6c0-0da1-11d5-a9d5-00500413153c})! Action taken: No Action Taken.
Thu Sep 15 20:58:51 2005 => System found infected with netster Spyware/Adware ({56336bcb-3d8a-11d6-a00b-0050da18de71})! Action taken: No Action Taken.
Thu Sep 15 20:58:52 2005 => System found infected with FlashFXP Spyware/Adware ({E5A1691B-D188-4419-AD02-90002030B8EE})! Action taken: No Action Taken.
Thu Sep 15 20:58:57 2005 => System found infected with ezula Spyware/Adware (internet.lnk)! Action taken: No Action Taken.
Thu Sep 15 20:58:59 2005 => System found infected with Popuper Spyware/Adware (popuper.exe)! Action taken: No Action Taken.
Thu Sep 15 20:58:59 2005 => System found infected with Popuper Spyware/Adware (intmonp.exe)! Action taken: No Action Taken.
Thu Sep 15 20:58:59 2005 => System found infected with RedV Spyware/Adware (insthelp.dll)! Action taken: No Action Taken.
Thu Sep 15 20:59:00 2005 => System found infected with zipitpro Spyware/Adware (F:\WINDOWS\iun6002.exe)! Action taken: No Action Taken.
Thu Sep 15 20:59:03 2005 => System found infected with WhenU.SaveNow Spyware/Adware (setup_wm.exe)! Action taken: No Action Taken.
Thu Sep 15 20:59:05 2005 => System found infected with SmitFraud Spyware/Adware (intmon.exe)! Action taken: No Action Taken.
Thu Sep 15 20:59:05 2005 => System found infected with SmitFraud Spyware/Adware (msole32.exe)! Action taken: No Action Taken.
Thu Sep 15 20:59:05 2005 => System found infected with SmitFraud Spyware/Adware (ole32vbs.exe)! Action taken: No Action Taken.
Thu Sep 15 20:59:05 2005 => System found infected with SmitFraud Spyware/Adware (shnlog.exe)! Action taken: No Action Taken.
Thu Sep 15 20:59:05 2005 => System found infected with SmitFraud Spyware/Adware (sites.ini)! Action taken: No Action Taken.
Thu Sep 15 20:59:36 2005 => Scanning Folder: C:\Programme\AVPersonal\INFECTED\*.*
Thu Sep 15 21:10:48 2005 => Scanning Folder: F:\Programme\AVPersonal\INFECTED\*.*
Thu Sep 15 21:16:23 2005 => File F:\WINDOWS\system32\LogFiles\A7272100.so infected by "Trojan.Win32.Small.ev" Virus! Action Taken: No Action Taken.
Thu Sep 15 21:17:26 2005 => Total Disinfected Files: 0
Thu Sep 15 21:58:45 2005 => File F:\DOKUME~1\ALEXAN~1\LOKALE~1\Temp\kavss.exe infected and could not be disinfected!!! Aborting...
Thu Sep 15 22:00:31 2005 => System found infected with alexa Spyware/Adware ({c95fe080-8f5d-11d2-a20b-00aa003c157a})! Action taken: No Action Taken.
Thu Sep 15 22:00:31 2005 => System found infected with coolwebsearch Spyware/Adware ({10003000-1000-0000-1000-000000000000})! Action taken: No Action Taken.
Thu Sep 15 22:00:32 2005 => System found infected with FlashGet Spyware/Adware ({e0e899ab-f487-11d5-8d29-0050ba6940e3})! Action taken: No Action Taken.
Thu Sep 15 22:00:32 2005 => System found infected with gain.gator Spyware/Adware ({21ffb6c0-0da1-11d5-a9d5-00500413153c})! Action taken: No Action Taken.
Thu Sep 15 22:00:32 2005 => System found infected with netster Spyware/Adware ({56336bcb-3d8a-11d6-a00b-0050da18de71})! Action taken: No Action Taken.
Thu Sep 15 22:00:32 2005 => System found infected with FlashFXP Spyware/Adware ({E5A1691B-D188-4419-AD02-90002030B8EE})! Action taken: No Action Taken.
Thu Sep 15 22:00:38 2005 => System found infected with ezula Spyware/Adware (internet.lnk)! Action taken: No Action Taken.
Thu Sep 15 22:00:40 2005 => System found infected with Popuper Spyware/Adware (popuper.exe)! Action taken: No Action Taken.
Thu Sep 15 22:00:40 2005 => System found infected with Popuper Spyware/Adware (intmonp.exe)! Action taken: No Action Taken.
Thu Sep 15 22:00:40 2005 => System found infected with RedV Spyware/Adware (insthelp.dll)! Action taken: No Action Taken.
Thu Sep 15 22:00:41 2005 => System found infected with zipitpro Spyware/Adware (F:\WINDOWS\iun6002.exe)! Action taken: No Action Taken.
Thu Sep 15 22:00:44 2005 => System found infected with WhenU.SaveNow Spyware/Adware (setup_wm.exe)! Action taken: No Action Taken.
Thu Sep 15 22:00:46 2005 => System found infected with SmitFraud Spyware/Adware (intmon.exe)! Action taken: No Action Taken.
Thu Sep 15 22:00:46 2005 => System found infected with SmitFraud Spyware/Adware (msole32.exe)! Action taken: No Action Taken.
Thu Sep 15 22:00:46 2005 => System found infected with SmitFraud Spyware/Adware (ole32vbs.exe)! Action taken: No Action Taken.
Thu Sep 15 22:00:46 2005 => System found infected with SmitFraud Spyware/Adware (shnlog.exe)! Action taken: No Action Taken.
Thu Sep 15 22:00:46 2005 => System found infected with SmitFraud Spyware/Adware (sites.ini)! Action taken: No Action Taken.
Thu Sep 15 22:01:48 2005 => Scanning Folder: C:\Programme\AVPersonal\INFECTED\*.*
Thu Sep 15 22:07:01 2005 => Total Disinfected Files: 0
Thu Sep 15 22:38:15 2005 => System found infected with alexa Spyware/Adware ({c95fe080-8f5d-11d2-a20b-00aa003c157a})! Action taken: No Action Taken.
Thu Sep 15 22:38:16 2005 => System found infected with coolwebsearch Spyware/Adware ({10003000-1000-0000-1000-000000000000})! Action taken: No Action Taken.
Thu Sep 15 22:38:16 2005 => System found infected with FlashGet Spyware/Adware ({e0e899ab-f487-11d5-8d29-0050ba6940e3})! Action taken: No Action Taken.
Thu Sep 15 22:38:16 2005 => System found infected with gain.gator Spyware/Adware ({21ffb6c0-0da1-11d5-a9d5-00500413153c})! Action taken: No Action Taken.
Thu Sep 15 22:38:16 2005 => System found infected with netster Spyware/Adware ({56336bcb-3d8a-11d6-a00b-0050da18de71})! Action taken: No Action Taken.
Thu Sep 15 22:38:17 2005 => System found infected with FlashFXP Spyware/Adware ({E5A1691B-D188-4419-AD02-90002030B8EE})! Action taken: No Action Taken.
Thu Sep 15 22:38:36 2005 => System found infected with ezula Spyware/Adware (internet.lnk)! Action taken: No Action Taken.
Thu Sep 15 22:38:38 2005 => System found infected with RedV Spyware/Adware (insthelp.dll)! Action taken: No Action Taken.
Thu Sep 15 22:38:39 2005 => System found infected with zipitpro Spyware/Adware (F:\WINDOWS\iun6002.exe)! Action taken: No Action Taken.
Thu Sep 15 22:38:42 2005 => System found infected with WhenU.SaveNow Spyware/Adware (setup_wm.exe)! Action taken: No Action Taken.
Thu Sep 15 22:38:44 2005 => System found infected with SmitFraud Spyware/Adware (intmon.exe)! Action taken: No Action Taken.
Thu Sep 15 22:38:44 2005 => System found infected with SmitFraud Spyware/Adware (msole32.exe)! Action taken: No Action Taken.
Thu Sep 15 22:38:44 2005 => System found infected with SmitFraud Spyware/Adware (ole32vbs.exe)! Action taken: No Action Taken.
Thu Sep 15 22:38:44 2005 => System found infected with SmitFraud Spyware/Adware (shnlog.exe)! Action taken: No Action Taken.
Thu Sep 15 22:38:44 2005 => System found infected with SmitFraud Spyware/Adware (sites.ini)! Action taken: No Action Taken.
Thu Sep 15 22:40:58 2005 => Scanning Folder: C:\Programme\AVPersonal\INFECTED\*.*
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~
Funde für "tagged"
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~
Thu Sep 15 20:58:37 2005 => File C:\mIRC\mirc.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.612. No Action Taken.
Thu Sep 15 20:59:31 2005 => File C:\mIRC\mirc.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.612. No Action Taken.
Thu Sep 15 21:03:27 2005 => File D:\Downloads\girc432.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.616. No Action Taken.
Thu Sep 15 21:06:17 2005 => File D:\System Volume Information\_restore{F9E40FF2-F995-42E9-A93F-CFAE0C71E99D}\RP333\A0086414.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.616. No Action Taken.
Thu Sep 15 21:11:16 2005 => File F:\Programme\GrandVirtual\Lucky-Sevencasino\CStart.exe tagged as "not-a-virus:AdWare.Casino.b". Action Taken: No Action Taken.
Thu Sep 15 22:00:19 2005 => File C:\mIRC\mirc.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.612. No Action Taken.
Thu Sep 15 22:01:35 2005 => File C:\mIRC\mirc.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.612. No Action Taken.
Thu Sep 15 22:40:38 2005 => File C:\mIRC\mirc.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.612. No Action Taken.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~
Statistiken:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~
Thu Sep 15 20:58:57 2005 => Offending file found: F:\DOKUME~1\ALEXAN~1\Desktop\internet.lnk
Thu Sep 15 20:58:59 2005 => Offending file found: F:\WINDOWS\popuper.exe
Thu Sep 15 20:58:59 2005 => Offending file found: F:\WINDOWS\System32\intmonp.exe
Thu Sep 15 20:58:59 2005 => Offending file found: F:\DOKUME~1\ALEXAN~1\LOKALE~1\Temp\insthelp.dll
Thu Sep 15 20:59:00 2005 => Offending file found: F:\WINDOWS\iun6002.exe
Thu Sep 15 20:59:03 2005 => Offending file found: F:\DOKUME~1\ALEXAN~1\LOKALE~1\Temp\setup_wm.exe
Thu Sep 15 20:59:05 2005 => Offending file found: F:\WINDOWS\System32\intmon.exe
Thu Sep 15 20:59:05 2005 => Offending file found: F:\WINDOWS\System32\msole32.exe
Thu Sep 15 20:59:05 2005 => Offending file found: F:\WINDOWS\System32\ole32vbs.exe
Thu Sep 15 20:59:05 2005 => Offending file found: F:\WINDOWS\System32\shnlog.exe
Thu Sep 15 20:59:05 2005 => Offending file found: F:\WINDOWS\sites.ini
Thu Sep 15 21:17:26 2005 => Total Virus(es) Found: 27
Thu Sep 15 22:00:38 2005 => Offending file found: F:\DOKUME~1\ALEXAN~1\Desktop\internet.lnk
Thu Sep 15 22:00:40 2005 => Offending file found: F:\WINDOWS\popuper.exe
Thu Sep 15 22:00:40 2005 => Offending file found: F:\WINDOWS\System32\intmonp.exe
Thu Sep 15 22:00:40 2005 => Offending file found: F:\DOKUME~1\ALEXAN~1\LOKALE~1\Temp\insthelp.dll
Thu Sep 15 22:00:41 2005 => Offending file found: F:\WINDOWS\iun6002.exe
Thu Sep 15 22:00:44 2005 => Offending file found: F:\DOKUME~1\ALEXAN~1\LOKALE~1\Temp\setup_wm.exe
Thu Sep 15 22:00:46 2005 => Offending file found: F:\WINDOWS\System32\intmon.exe
Thu Sep 15 22:00:46 2005 => Offending file found: F:\WINDOWS\System32\msole32.exe
Thu Sep 15 22:00:46 2005 => Offending file found: F:\WINDOWS\System32\ole32vbs.exe
Thu Sep 15 22:00:46 2005 => Offending file found: F:\WINDOWS\System32\shnlog.exe
Thu Sep 15 22:00:46 2005 => Offending file found: F:\WINDOWS\sites.ini
Thu Sep 15 22:07:01 2005 => Total Virus(es) Found: 23
Thu Sep 15 22:38:36 2005 => Offending file found: F:\DOKUME~1\ALEXAN~1\Desktop\internet.lnk
Thu Sep 15 22:38:38 2005 => Offending file found: F:\DOKUME~1\ALEXAN~1\LOKALE~1\Temp\insthelp.dll
Thu Sep 15 22:38:39 2005 => Offending file found: F:\WINDOWS\iun6002.exe
Thu Sep 15 22:38:42 2005 => Offending file found: F:\DOKUME~1\ALEXAN~1\LOKALE~1\Temp\setup_wm.exe
Thu Sep 15 22:38:44 2005 => Offending file found: F:\WINDOWS\System32\intmon.exe
Thu Sep 15 22:38:44 2005 => Offending file found: F:\WINDOWS\System32\msole32.exe
Thu Sep 15 22:38:44 2005 => Offending file found: F:\WINDOWS\System32\ole32vbs.exe
Thu Sep 15 22:38:44 2005 => Offending file found: F:\WINDOWS\System32\shnlog.exe
Thu Sep 15 22:38:44 2005 => Offending file found: F:\WINDOWS\sites.ini
Thu Sep 15 21:17:26 2005 => Total Errors: 167
Thu Sep 15 22:07:01 2005 => Total Errors: 164
Thu Sep 15 21:17:26 2005 => Time Elapsed: 00:19:12
Thu Sep 15 22:07:01 2005 => Time Elapsed: 00:06:55
Thu Sep 15 21:17:26 2005 => Total Objects Scanned: 70997
Thu Sep 15 22:07:01 2005 => Total Objects Scanned: 21867
Thu Sep 15 20:55:54 2005 => Virus Database Date: 2005/09/09
Thu Sep 15 21:17:26 2005 => Virus Database Date: 2005/09/09
Thu Sep 15 21:26:37 2005 => Virus Database Date: 2005/09/09
Thu Sep 15 21:59:43 2005 => Virus Database Date: 2005/09/09
Thu Sep 15 22:07:00 2005 => Virus Database Date: 2005/09/09
Thu Sep 15 22:07:07 2005 => Virus Database Date: 2005/09/09
Thu Sep 15 22:37:00 2005 => Virus Database Date: 2005/09/09
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~
~~~~~~~ © Haui ;-) ~~~~~~~
~~~~~~~ Dank an Cidre ~~~~~~~
__________________

Antwort

Themen zu Starseite http://www.security2k.net/ <-- Trojaner
antivir, dauernd, entfernt, festplatte, gelöscht, hallo zusammen, hilfe!, hilfe!!, hilfe!!!, immernoch, klicke, klicken, kumpel, link, nicht mehr, platte, pornoseiten, security, spyware, starseite, startseite, troja, trojane, trojaner, zusammen, ändern, öffnen




Ähnliche Themen: Starseite http://www.security2k.net/ <-- Trojaner


  1. Trojaner? = http://goo.gl/eVstQT
    Plagegeister aller Art und deren Bekämpfung - 02.08.2014 (4)
  2. Ungewollte Startseiten: *http://wisersearch.com/?channel=de_nt* und *http://search.fbdownloader.com/?channel=sfde203fbdgy21*
    Log-Analyse und Auswertung - 16.12.2013 (13)
  3. Infektion mit http://www.qvo6.com und http://static.icmapp.com
    Log-Analyse und Auswertung - 04.12.2013 (7)
  4. http://dfs.pathdone.net/sd/cpops-1.2.0.html?u=http%3A%2F%2Fdfs.pathdone.net%2Fsd%2Fapps%2Ffusionx%2F0.0.4.html%3Faff%3D1060-8002&p=LyricsSay
    Plagegeister aller Art und deren Bekämpfung - 29.10.2013 (13)
  5. Windows XP: http://www_getwindowinfo/ - Trojaner
    Log-Analyse und Auswertung - 13.10.2013 (5)
  6. Pop Up in Firefox, http://rou.resyncload.net, Trojaner?
    Plagegeister aller Art und deren Bekämpfung - 29.07.2013 (7)
  7. Trojaner > http://boxtralsurvisv.pl/gis/file.php
    Plagegeister aller Art und deren Bekämpfung - 12.04.2013 (20)
  8. http://www.searchnu.com/413 Trojaner
    Plagegeister aller Art und deren Bekämpfung - 08.03.2013 (20)
  9. Trojaner auf http://marketnewsnext7online.com/?12/2 ?
    Plagegeister aller Art und deren Bekämpfung - 20.12.2012 (9)
  10. http://furnituread.com Virus/Trojaner?
    Plagegeister aller Art und deren Bekämpfung - 29.05.2012 (1)
  11. Problem mit Trojaner http://www.searchnu.com/413
    Log-Analyse und Auswertung - 04.05.2012 (1)
  12. Trojaner http://www.searchnu.com/406
    Log-Analyse und Auswertung - 01.05.2012 (12)
  13. http://w w w. searchnu . com /413 Toolbar, Trojaner?
    Plagegeister aller Art und deren Bekämpfung - 11.04.2012 (2)
  14. Trojaner auf Web-Starseite?! js:Iframe-DA [Trj]
    Plagegeister aller Art und deren Bekämpfung - 07.12.2011 (4)
  15. Möglicherweise Trojaner? http://www.searchqu.com/406
    Plagegeister aller Art und deren Bekämpfung - 09.06.2011 (26)
  16. Probleme mit h**p://w*w.security2k.net/
    Log-Analyse und Auswertung - 14.09.2005 (6)
  17. msn starseite! und vieles mehr
    Plagegeister aller Art und deren Bekämpfung - 28.02.2005 (1)

Zum Thema Starseite http://www.security2k.net/ <-- Trojaner - jetzt fällt mir grad auf, dass die ad-aware log file auch riesig ist, soll ich die auch so posten? - Starseite http://www.security2k.net/ <-- Trojaner...
Archiv
Du betrachtest: Starseite http://www.security2k.net/ <-- Trojaner auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.