|
Plagegeister aller Art und deren Bekämpfung: Worm/PoeBot.81408.AWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
11.09.2006, 12:59 | #1 |
| Worm/PoeBot.81408.A Hallo zusammen. Habe heute mein System neu aufgesetzt, da ich massive Probs mit Viren hatte. Das war ja soweit auch alles behoben. Aber der Worm ist mir immer noch geblieben irgendwie. Habe HJack und eScan durchgeführt. Siehe anbei. Kann mir bitte jemand helfen. Habe in den lezten Tagen mein System x-mal neuaufgesetzt. Vielen Dank für die (WIE IMMER) schnelle und unkomplizierte Hilfe!!!!!! Hier die HJack: Logfile of HijackThis v1.99.1 Scan saved at 12:04:16, on 11.09.2006 Platform: Windows ME (Win9x 4.90.3000) MSIE: Internet Explorer v5.50 (5.50.4134.0100) Running processes: C:\WINDOWS\SYSTEM\KERNEL32.DLL C:\WINDOWS\SYSTEM\MSGSRV32.EXE C:\WINDOWS\SYSTEM\MPREXE.EXE C:\WINDOWS\SYSTEM\MSTASK.EXE C:\PROGRAMME\ANTIVIR PERSONALEDITION CLASSIC\SCHEDM.EXE E:\PROGRAMME\SYGATE\SPF\SMC.EXE C:\WINDOWS\SYSTEM\mmtask.tsk C:\WINDOWS\SYSTEM\RNAAPP.EXE C:\WINDOWS\SYSTEM\TAPISRV.EXE C:\WINDOWS\SYSTEM\RESTORE\STMGR.EXE C:\WINDOWS\EXPLORER.EXE C:\WINDOWS\SYSTEM\PSTORES.EXE C:\WINDOWS\TASKMON.EXE C:\WINDOWS\SYSTEM\SYSTRAY.EXE C:\PROGRAMME\ANTIVIR PERSONALEDITION CLASSIC\AVGCTRL.EXE C:\WINDOWS\SYSTEM\WMIEXE.EXE C:\PROGRAMME\INTERNET EXPLORER\IEXPLORE.EXE C:\PROGRAMME\ARCORONLINE\ARCOR.EXE C:\WINDOWS\SYSTEM\DDHELP.EXE E:\DOWNLOADS\HIJACKTHIS\HIJACKTHIS.EXE C:\PROGRAMME\ANTIVIR PERSONALEDITION CLASSIC\GUARDGUI.EXE R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://***.arcor.de R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://***.arcor.de R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://***.arcor.de R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://***.arcor.de R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://***.arcor.de R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://***.arcor.de R1 - HKLM\Software\Microsoft\Internet Explorer\Main,First Home Page = http://***.arcor.de R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://***.arcor.de/ R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Arcor AG & Co. KG O3 - Toolbar: @msdxmLC.dll,-1@1031,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX O4 - HKLM\..\Run: [ScanRegistry] C:\WINDOWS\scanregw.exe /autorun O4 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe O4 - HKLM\..\Run: [PCHealth] C:\WINDOWS\PCHealth\Support\PCHSchd.exe -s O4 - HKLM\..\Run: [SystemTray] SysTray.Exe O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme O4 - HKLM\..\Run: [avgctrl] "C:\Programme\AntiVir PersonalEdition Classic\avgctrl.exe" /min O4 - HKLM\..\Run: [SmcService] E:\PROGRA~1\SYGATE\SPF\SMC.EXE -startgui O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe O4 - HKLM\..\RunServices: [*StateMgr] C:\WINDOWS\System\Restore\StateMgr.exe O4 - HKLM\..\RunServices: [schedm] "C:\Programme\AntiVir PersonalEdition Classic\schedm.exe" O4 - HKLM\..\RunServices: [SmcService] E:\PROGRAMME\SYGATE\SPF\SMC.EXE O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm |
11.09.2006, 13:21 | #2 |
| eScan und hier die eScan mwav:
__________________Mon Sep 11 12:19:12 2006 => Total Objects Scanned: 377 Mon Sep 11 12:19:12 2006 => Total Critical Objects: 0 Mon Sep 11 12:19:12 2006 => Total Disinfected Objects: 0 Mon Sep 11 12:19:12 2006 => Total Objects Renamed: 0 Mon Sep 11 12:19:12 2006 => Total Deleted Objects: 0 Mon Sep 11 12:19:12 2006 => Total Errors: 1 Mon Sep 11 12:19:12 2006 => Time Elapsed: 00:00:29 Mon Sep 11 12:19:12 2006 => Virus Database Date: 9/9/2006 Mon Sep 11 12:19:12 2006 => Virus Database Count: 220790 Mon Sep 11 12:29:23 2006 => *** File C:\_RESTORE\TEMP\A0002807.CPY having Size Restriction ***. Filesize 3552 kb > 3072 kb... Mon Sep 11 12:29:24 2006 => Unable to move file from C:\_RESTORE\TEMP\A0002822.CPY to C:\_RESTORE\TEMP\A0002822.CPY.mwt! Reason: Zugriff wurde verweigert. (0x5). File will be moved on next reboot... Mon Sep 11 12:29:24 2006 => File C:\_RESTORE\TEMP\A0002822.CPY infected by "Virus.Win32.Sality.q" Virus! Action Taken: File to be renamed on reboot. Mon Sep 11 12:29:27 2006 => Unable to move file from C:\_RESTORE\TEMP\A0002826.CPY to C:\_RESTORE\TEMP\A0002826.CPY.mwt! Reason: Zugriff wurde verweigert. (0x5). File will be moved on next reboot... Mon Sep 11 12:29:27 2006 => File C:\_RESTORE\TEMP\A0002826.CPY infected by "Virus.Win32.Sality.q" Virus! Action Taken: File to be renamed on reboot. Mon Sep 11 12:29:27 2006 => Scanning File C:\_RESTORE\TEMP\A0002828.CPY Mon Sep 11 12:29:27 2006 => Unable to move file from C:\_RESTORE\TEMP\A0002828.CPY to C:\_RESTORE\TEMP\A0002828.CPY.mwt! Reason: Zugriff wurde verweigert. (0x5). File will be moved on next reboot... Mon Sep 11 12:29:27 2006 => File C:\_RESTORE\TEMP\A0002828.CPY infected by "Virus.Win32.Sality.q" Virus! Action Taken: File to be renamed on reboot. Mon Sep 11 12:29:27 2006 => Scanning File C:\_RESTORE\TEMP\A0002829.CPY Mon Sep 11 12:29:28 2006 => Unable to move file from C:\_RESTORE\TEMP\A0002829.CPY to C:\_RESTORE\TEMP\A0002829.CPY.mwt! Reason: Zugriff wurde verweigert. (0x5). File will be moved on next reboot... Mon Sep 11 12:29:28 2006 => File C:\_RESTORE\TEMP\A0002829.CPY infected by "Virus.Win32.Sality.q" Virus! Action Taken: File to be renamed on reboot. Mon Sep 11 12:29:28 2006 => Scanning File C:\_RESTORE\TEMP\A0002830.CPY Mon Sep 11 12:29:29 2006 => Unable to move file from C:\_RESTORE\TEMP\A0002830.CPY to C:\_RESTORE\TEMP\A0002830.CPY.mwt! Reason: Zugriff wurde verweigert. (0x5). File will be moved on next reboot... Mon Sep 11 12:29:29 2006 => File C:\_RESTORE\TEMP\A0002830.CPY infected by "Virus.Win32.Sality.q" Virus! Action Taken: File to be renamed on reboot. Mon Sep 11 12:29:29 2006 => Scanning File C:\_RESTORE\TEMP\A0002836.CPY Mon Sep 11 12:29:29 2006 => Scanning File C:\_RESTORE\TEMP\A0002842.CPY Mon Sep 11 12:29:29 2006 => Unable to move file from C:\_RESTORE\TEMP\A0002842.CPY to C:\_RESTORE\TEMP\A0002842.CPY.mwt! Reason: Zugriff wurde verweigert. (0x5). File will be moved on next reboot... Mon Sep 11 12:29:29 2006 => File C:\_RESTORE\TEMP\A0002842.CPY infected by "Virus.Win32.Sality.q" Virus! Action Taken: File to be renamed on reboot. Mon Sep 11 12:29:29 2006 => Scanning File C:\_RESTORE\TEMP\A0002845.CPY Mon Sep 11 12:29:29 2006 => Unable to move file from C:\_RESTORE\TEMP\A0002845.CPY to C:\_RESTORE\TEMP\A0002845.CPY.mwt! Reason: Zugriff wurde verweigert. (0x5). File will be moved on next reboot... Mon Sep 11 12:29:29 2006 => File C:\_RESTORE\TEMP\A0002845.CPY infected by "Virus.Win32.Sality.q" Virus! Action Taken: File to be renamed on reboot. Mon Sep 11 12:32:30 2006 => File D:\Programme\ViennaSoft\vs_def\shelexec.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:32:40 2006 => File D:\Programme\ViennaSoft\button4web_3.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:32:41 2006 => File D:\Programme\ViennaSoft\image2web_3.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:32:41 2006 => File D:\Programme\ViennaSoft\internet_designer_5.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:32:42 2006 => File D:\Programme\ViennaSoft\perfect_ftp.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:32:42 2006 => File D:\Programme\ViennaSoft\vspa.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:32:42 2006 => File D:\Programme\ViennaSoft\counter_tool.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:32:42 2006 => File D:\Programme\ViennaSoft\gb_tool.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:32:43 2006 => File D:\Programme\ViennaSoft\thumbnails_3.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:32:44 2006 => File D:\Programme\ShopFactory V5 Light\UNWISE.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:32:44 2006 => File D:\Programme\ShopFactory V5 Light\HelpView.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:32:45 2006 => File D:\Programme\ShopFactory V5 Light\sfOptimizer.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:32:46 2006 => File D:\Programme\ShopFactory V5 Light\wsUpgrader.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:32:50 2006 => File D:\Programme\ShopFactory V5 Light\upgradeSchm.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. D:\Programme\FileZilla\FileZilla.exe Mon Sep 11 12:37:34 2006 => File D:\Programme\FileZilla\FileZilla.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. D:\Programme\FileZilla\FzSFtp.exe Mon Sep 11 12:37:37 2006 => File D:\Programme\FileZilla\FzSFtp.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:37:39 2006 => File D:\Programme\Animake\UNINSTALL.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:37:41 2006 => File D:\Programme\PhotoFiltre\PhotoFiltre.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:37:41 2006 => File D:\Programme\PhotoFiltre\Uninst.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:37:42 2006 => File D:\Programme\OK ShopFactory.V6\ShopFactory V6_+_template_ok\Import Wizard\ImpWiz6U.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:37:47 2006 => File D:\Programme\OK ShopFactory.V6\ShopFactory V6_+_template_ok\SalesManager\sm.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:37:50 2006 => File D:\Programme\OK ShopFactory.V6\ShopFactory V6_+_template_ok\ShopFactory\AutoRun.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:38:00 2006 => File D:\Programme\OK ShopFactory.V6\ShopFactory V6_+_template_ok\ShopFactory\precomp.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:38:01 2006 => File D:\Programme\OK ShopFactory.V6\ShopFactory V6_+_template_ok\ShopFactory\sf5Upgrader.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:39:53 2006 => File D:\Programme\Mihov Image Resizer\Resizer.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:39:54 2006 => File D:\Programme\Mihov Image Resizer\Uninstall.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:42:24 2006 => File D:\SiSa\EBAYProgramme\Helper.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:42:29 2006 => File D:\SiSa\EBAYProgramme\Tl.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:42:33 2006 => File D:\SiSa\EBAYProgramme\TLMail.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:00 2006 => File E:\Downloads\daemon347.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:13 2006 => File E:\Downloads\Viren\hijackthis\HijackThis.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:17 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\MSI\INSTMSI.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:19 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\MSI\INSTMSIW.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:21 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\ARTGALRY\ARTGALRY.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:21 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\ARTGALRY\CAG.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:26 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\DATAMAP\DATAINST.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:27 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\DATAMAP\MSMAP.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:28 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\DBREP\WZCNFLCT.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:28 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\EQUATION\EQNEDT32.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:32 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\MSINFO\MSINFO32.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:32 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\MSINFO\OFFPROV.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:32 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\ORGCHART\ORGCHART.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:33 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\PHOTOED\PHOTOED.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:43 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\WEBSRVEX\40\_VTI_BIN\FPCOUNT.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:43 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\WEBSRVEX\40\_VTI_BIN\SHTML.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:43 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\WEBSRVEX\40\_VTI_BIN\_VTI_ADM\ADMIN.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:43 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\WEBSRVEX\40\_VTI_BIN\_VTI_AUT\AUTHOR.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:44 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\WEBSRVEX\40\ADMCGI\SCRIPTS\FPADMCGI.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:45 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\CFGWIZ.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:45 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\CFGWIZ.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:46 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\FPREMADM.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:46 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\FPSERVER.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. |
11.09.2006, 13:21 | #3 |
| eScan2ter Teil Mon Sep 11 12:43:46 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\FPSRVADM.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected.
__________________Mon Sep 11 12:43:46 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\HTIMAGE.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:46 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\IMAGEMAP.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:46 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\TCPTEST.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:47 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\WEBSRVEX\40\ISAPI\FPCOUNT.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:50 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\COMMON\MSSHARED\WEBSRVEX\FPWEBS\SERVER\VHTTPD32.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:58 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\FP98\VER3\BIN\FPSRVADM.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:58 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\FP98\VER3\BIN\FPSRVWIN.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:58 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\BINDER.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:59 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\CONVTEXT.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:59 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\DLGCANCL.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:43:59 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\FINDER.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:00 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\FINDFAST.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:00 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\FRONTPG.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:01 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\GRAPH9.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:02 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\MAKECERT.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:03 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\MSIMPORT.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:03 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\MSOHTMED.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:04 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\MSQRY32.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:05 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\OFFCLN9.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:05 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\OSA9.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:05 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\OTUNEUP.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:06 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\OUTLOOK.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:07 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\REXPROXY.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:07 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\RXCBPRXY.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:07 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\SELFCERT.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:08 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\SETLANG.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:08 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\VTIDISC.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:09 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\VTIFORM.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:09 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\VTIPRES.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:09 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\WAVTOASF.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:09 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\WEBPUB.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:13 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\1031\MSOFFICE.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:13 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\1031\MSOHELP.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:14 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\1031\OLFMOD32.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:16 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\1031\PROJWIZ.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:16 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\1031\SCHDPL32.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:17 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\1031\WRKGADM.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:22 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\FORMS\1031\REGCFG.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:29 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\MSOFFICE\OFFICE\XLATORS\PPVIEW32.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:42 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\PFILES\SNAPVIEW\SNAPVIEW.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:46 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\BINN\BCP.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:46 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\BINN\CMDWRAP.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:46 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\BINN\CNFGSVR.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:46 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\BINN\DCOMSCM.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:47 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\BINN\DISTRIB.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:47 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\BINN\DTSRUN.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:47 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\BINN\DTSWIZ.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:47 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\BINN\LOGREAD.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:48 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\BINN\ODBCCMPT.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:48 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\BINN\OSQL.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:48 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\BINN\REBUILDM.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:49 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\BINN\REGREBLD.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:49 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\BINN\REPLMERG.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:49 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\BINN\SCM.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Professional German Deutsch\SQL\X86\BINN\SNAPSHOT.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:51 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\BINN\SQLAGENT.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Professional German Deutsch\SQL\X86\BINN\SQLMANGR.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:54 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\BINN\SVRNETCN.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:54 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\BINN\VSWITCH.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:44:59 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\OTHER\DTCSETUP.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:45:01 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\SETUP\MSETUP.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:45:01 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\SQL\X86\SETUP\SETUPSQL.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:45:12 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\WINDOWS\HH.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:45:13 2006 => File E:\Downloads\Microsoft Office 2000 Professional German Deutsch\WINDOWS\MSAGENT\AGENTSVR.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:45:24 2006 => File E:\SUDOKU~1\Sudoku.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:45:26 2006 => File E:\SUDOKU~1\Crack\Sudoku.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:45:37 2006 => File E:\Programme\iPhoto Plus 4\PROGRAMS\IPE.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:45:37 2006 => File E:\Programme\iPhoto Plus 4\PROGRAMS\OLREG.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:45:38 2006 => File E:\Programme\iPhoto Plus 4\PROGRAMS\PE4.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:03 2006 => File E:\Programme\Adobe\Acrobat 6.0\Reader\AdobeUpdateManager.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:03 2006 => File E:\Programme\Adobe\Acrobat 6.0\Reader\Updater\acroaum.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. E:\Programme\AVPersonal\AVGCTRL.EXE Mon Sep 11 12:46:10 2006 => File E:\Programme\AVPersonal\AVGCTRL.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:10 2006 => File E:\Programme\AVPersonal\AVNT.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:11 2006 => File E:\Programme\AVPersonal\AVSCHED32.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:11 2006 => File E:\Programme\AVPersonal\AVUNINST.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:12 2006 => File E:\Programme\AVPersonal\AVWIN.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:12 2006 => File E:\Programme\AVPersonal\DELUS.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:13 2006 => File E:\Programme\AVPersonal\INETUPD.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:13 2006 => File E:\Programme\AVPersonal\AVNOTIFY.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:13 2006 => File E:\Programme\AVPersonal\REBOOT.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:13 2006 => File E:\Programme\AVI Codec Pack\AC3\dialog_patch.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:14 2006 => File E:\Programme\AVI Codec Pack\LAYER-3\RaMp3Cfg.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:14 2006 => File E:\Programme\AVI Codec Pack\uninstall.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:14 2006 => File E:\Programme\DivX\DivX\config.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:14 2006 => File E:\Programme\DivX\DivX\bgregister.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:17 2006 => File E:\Programme\DivX\DivX Player\DivXPlay.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:20 2006 => File E:\Programme\CyberLink\PowerDVD\PowerDVD.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:20 2006 => File E:\Programme\CyberLink\PowerDVD\CLDMA.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:20 2006 => File E:\Programme\CyberLink\PowerDVD\ddtester.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:21 2006 => File E:\Programme\CyberLink\PowerDVD\cltest.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:22 2006 => File E:\Programme\eScan\TRAYISER.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:23 2006 => File E:\Programme\eScan\MSG.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:23 2006 => File E:\Programme\eScan\SETUP\LAUNCHIT.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:23 2006 => File E:\Programme\eScan\SETUP\uninstall.exe infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. E:\Programme\eScan\DEBUGINF.EXE Mon Sep 11 12:46:25 2006 => File E:\Programme\eScan\DEBUGINF.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:25 2006 => File E:\Programme\eScan\INST_TSP.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:25 2006 => File E:\Programme\eScan\MAILREMV.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:26 2006 => File E:\Programme\eScan\MAILINST.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:28 2006 => File E:\Programme\eScan\RELOAD.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:28 2006 => File E:\Programme\eScan\TRAYICOC.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:28 2006 => File E:\Programme\eScan\SFX.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:29 2006 => File E:\Programme\eScan\TRAYICOS.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:29 2006 => File E:\Programme\eScan\CONRUN.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:29 2006 => File E:\Programme\eScan\LAUNCH.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:30 2006 => File E:\Programme\eScan\SMTPSEND.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:30 2006 => File E:\Programme\eScan\BH.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:30 2006 => File E:\Programme\eScan\LINKGEN.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:31 2006 => File E:\Programme\eScan\INITOREG.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:31 2006 => File E:\Programme\eScan\BPCHECK.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:31 2006 => File E:\Programme\eScan\INSTSERV.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:31 2006 => File E:\Programme\eScan\RESTSERV.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:33 2006 => File E:\Programme\eScan\MAILADM.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:37 2006 => File E:\Programme\eScan\KILLPROC.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:37 2006 => File E:\Programme\eScan\KILLMON.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:38 2006 => File E:\Programme\eScan\DOWNLOAD.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:38 2006 => File E:\Programme\eScan\RP.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:38 2006 => File E:\Programme\eScan\SYSINFO.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:39 2006 => File E:\Programme\eScan\CLNTINFO.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:39 2006 => File E:\Programme\eScan\CLNTFILE.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:39 2006 => File E:\Programme\eScan\RUNFILE.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:39 2006 => File E:\Programme\eScan\REMSERV.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:40 2006 => File E:\Programme\eScan\LICENSE.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:40 2006 => File E:\Programme\eScan\VIEWTCP.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:41 2006 => File E:\Programme\eScan\GETVLIST.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:42 2006 => File E:\Programme\eScan\TRAYCSER.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:42 2006 => File E:\Programme\eScan\TRAYSSER.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:42 2006 => File E:\Programme\eScan\TRAYESER.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:42 2006 => File E:\Programme\eScan\FRIGHTS.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:43 2006 => File E:\Programme\eScan\SPOOLER.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:44 2006 => File E:\Programme\eScan\MAILDISP.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. Mon Sep 11 12:46:45 2006 => File E:\Programme\D-Tools\DAEMON.EXE infected by "Virus.Win32.Sality.q" Virus! Action Taken: File Disinfected. |
Themen zu Worm/PoeBot.81408.A |
antivir, button, escan, explorer, hijack, hijackthis, hilfe!, hilfe!!, hilfe!!!, home, internet, internet explorer, links, microsoft, neu, neu aufgesetzt, programme, registry, rundll, rundll32.exe, services, software, start, system, system neu, viren, windows, worm |