Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Hilfe zum Log-File vom Blacklight Rootkit Revealer

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

Antwort
Alt 10.02.2007, 21:18   #1
-ptvibes-
 
Hilfe zum Log-File vom Blacklight Rootkit Revealer - Standard

Hilfe zum Log-File vom Blacklight Rootkit Revealer



Hallo, seit eine paar Tagen streikt mein Viren Programm ich kann auch kein neues Installieren, habe schon eine paar Progs über mein System laufen lassen. Hat aber nix geändert. Wäre nett, wenn sich jemand mal meinen Log-File anschauen könnte ob ich nun auch das Glück hab so einen tollen Rootkit an Bord zu haben. Bin auch Dankbar für alle Tipps die dann eventuell Abhilfe schaffen könnten.

THX Daniel


02/10/07 00:08:20 [Info]: BlackLight Engine 1.0.55 initialized
02/10/07 00:08:20 [Info]: OS: 5.1 build 2600 (Service Pack 2)
02/10/07 00:08:20 [Note]: 7019 4
02/10/07 00:08:20 [Note]: 7005 0
02/10/07 00:08:32 [Note]: 7006 0
02/10/07 00:08:32 [Note]: 7011 320
02/10/07 00:08:32 [Note]: 7026 0
02/10/07 00:08:32 [Note]: 7026 0
02/10/07 00:08:32 [Note]: 7024 3
02/10/07 00:08:32 [Info]: Hidden process: C:\WINDOWS\system32\hldrrr.exe
02/10/07 00:08:32 [Note]: 7024 3
02/10/07 00:08:32 [Info]: Hidden process: C:\WINDOWS\system32\hldrrr.exe
02/10/07 00:08:44 [Note]: FSRAW library version 1.7.1021
02/10/07 00:08:44 [Info]: Hidden file: c:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\hidires\hidr.exe
02/10/07 00:08:44 [Note]: 10002 2
02/10/07 00:08:44 [Info]: Hidden file: c:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\hidires\m_hook.sys
02/10/07 00:08:44 [Note]: 10002 2
02/10/07 00:08:44 [Note]: 10002 3
02/10/07 00:08:44 [Note]: 10002 3
02/10/07 00:08:44 [Note]: 10002 2
02/10/07 00:08:44 [Note]: 10002 2
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\Movie Maker\Shared\Empty.txt
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\Movie Maker\Shared\Filters.xml
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\Movie Maker\Shared\news.png
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\Movie Maker\Shared\paint.png
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\Movie Maker\Shared\Profiles\Blank.txt
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\Movie Maker\Shared\Sample1.jpg
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\Movie Maker\Shared\Sample2.jpg
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Note]: 10002 2
02/10/07 00:08:50 [Note]: 10002 2
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\icu\icudt24l.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\icu\icuuc24.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\DNCompInfo.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\DNDomain.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\errors\English\LabVIEW-e
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\errors\English\Measure-e
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\errors\English\NI-Report
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\lvanlys.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\lvapp.rsc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\lvjpeg.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\lvpng.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\lvrt.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\mesa.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\pro_bar_in.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\arrow.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\attank.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\bowvalve.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\boxshadow.3ds
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\box_inc.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\box_incp.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\frame_i.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\frame_o.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\gauge_f.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\inc.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\knob_d.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\knob_h.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\knob_t.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\meter_f.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\meter_g.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\meter_h.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\pb_d.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\pb_h.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\pb_l.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\pro_bar.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\rectvalve.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\rocker.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\rockerl.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\rockerr.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\slided.3ds
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\slideh.3ds
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\slider_b.3ds
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\slider_d.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\slider_f.3ds
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\slider_t.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\slidet.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\squreled.3ds
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\tab.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\tank.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\tb_h.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\tb_h_in.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\therm_e.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\therm_h.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\toggle_b.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\toggle_s.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\models\toggle_su.ptc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\script\hiqscript.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\script\matscript.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\LabVIEW Run-Time\7.1\vidialogs.rsc
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\MAX\Software\NI-USI.ico
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\MAX\Software\NI-USI.xml
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\Mesa\mesa.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\MKL\libguide40.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\MKL\mkl_def.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\MKL\mkl_lapack32.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\MKL\mkl_lapack64.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\MKL\mkl_p3.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\MKL\mkl_p4.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\NI-Reports\NiReports.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\nicont.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\NICONTDT.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\hdf5dll.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\AopMap.ini
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\Cit43drv.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\Cit43drv.ocx
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\CitadelDL.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\CitadelDL.ocx
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\dacasr.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\DaPluMa.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\DiaDriv.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\gfsaop3.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\gfsaop3.ocx
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\GfSFSI.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\GfSFSI.ocx
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\gfsods.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\GfSOds.ini
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\GUSI.ocx
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\hBrowXr.ocx
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\iBrowXr.ocx
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\nicitusi.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\nicitusi.ocx
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\RWUXThemeSU.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\Sources.ini
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\SQLDriv.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\SQLDriv.ocx
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\STreer.ocx
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\Uds.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\UDSA.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\usi.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\usiConfiguration.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\USICopyrights.chm
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\usiGui.chm
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\usiPluginTDM.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\usiReg.exe
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\uspCSV.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\uspCSV.uri
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\uspEasy.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\uspLVM.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\uspLVM.uri
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\xerces-c_2_2_0.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Bin\xmldom.dll
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\DataModels\USI\1_0\usi_1_0.xsd
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\DataModels\USI\TDM\1_0\USI_TDM_1_0.xml
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\Citadel4\cit4-simple\Ale00000.al
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\Citadel4\cit4-simple\Aleack00000
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\Citadel4\cit4-simple\AleIdx00000
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\Citadel4\cit4-simple\Aleset00000
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\Citadel4\cit4-simple\areas.dat
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\Citadel4\cit4-simple\mdx.mdx
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\Citadel4\cit4-simple\tdb.tdb
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\Citadel4\cit4-simple\tdx.tdx
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\Citadel4\cit4-simple\thd00001.th
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\Citadel5\cit5-simple\cx00000001.
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\Citadel5\cit5-simple\ix00000001.
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\Citadel5\cit5-simple\nodetree.el
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\Citadel5\cit5-simple\nodetree.el
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\Citadel5\cit5-simple\nodetree.el
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\Citadel5\cit5-simple\pid.cdih
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\Citadel5\cit5-simple\stridm.cdin
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\Citadel5\citcreate.exe
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\examples.uri
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\Sql\simple.mdb
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\VI Logger\VILOGGER1\blobs.dat
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\VI Logger\VILOGGER1\blobs.idx
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\VI Logger\VILOGGER1\cdt00001.cdt
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\VI Logger\VILOGGER1\pidm.shm
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\VI Logger\VILOGGER1\ptm.shm
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\VI Logger\VILOGGER1\stridm.shm
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\VI Logger\VILOGGER1\strtm.shm
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\VI Logger\VILOGGER1\tridm.shm
02/10/07 00:08:50 [Note]: 10002 3
02/10/07 00:08:50 [Info]: Hidden file: c:\Programme\National Instruments\Shared\USI\Examples\VI Logger\VILOGGER1\trnm.shm
...
02/10/07 00:10:20 [Info]: Hidden file: C:\WINDOWS\system32\hldrrr.exe
02/10/07 00:10:20 [Note]: 10002 2
02/10/07 00:11:03 [Info]: Hidden file: d:\Software\Vpn\shared\help_tips.html
02/10/07 00:11:03 [Note]: 10002 3
02/10/07 00:11:03 [Info]: Hidden file: d:\Software\Vpn\shared\ref_help.html
02/10/07 00:11:03 [Note]: 10002 3
02/10/07 00:11:03 [Info]: Hidden file: d:\Software\Vpn\shared\style_1.css
02/10/07 00:11:03 [Note]: 10002 3
02/10/07 00:11:03 [Info]: Hidden file: d:\Software\Vpn\shared\WHnonIE4.css
02/10/07 00:11:03 [Note]: 10002 3
02/10/07 00:11:03 [Note]: 10002 2
02/10/07 00:11:03 [Note]: 10002 2
02/10/07 00:25:31 [Note]: 7007 0

Alt 10.02.2007, 21:28   #2
MightyMarc
 
Hilfe zum Log-File vom Blacklight Rootkit Revealer - Standard

Hilfe zum Log-File vom Blacklight Rootkit Revealer



Zitat:
Zitat von -ptvibes- Beitrag anzeigen
Wäre nett, wenn sich jemand mal meinen Log-File anschauen könnte ob ich nun auch das Glück hab so einen tollen Rootkit an Bord zu haben.
Glückwunsch! Du hast eine Bagle-Variante samt dazugehörigem Rootkittreiber auf dem System.

Zitat:
02/10/07 00:08:32 [Info]: Hidden process: C:\WINDOWS\system32\hldrrr.exe
02/10/07 00:08:32 [Info]: Hidden process: C:\WINDOWS\system32\hldrrr.exe
02/10/07 00:10:20 [Info]: Hidden file: C:\WINDOWS\system32\hldrrr.exe
02/10/07 00:08:44 [Info]: Hidden file: c:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\hidires\hidr.exe
02/10/07 00:08:44 [Info]: Hidden file: c:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\hidires\m_hook.sys
Hast Du das Passwort für den Account Namens "Administrator" zur Hand? Hast Du eine Windows-CD zur Hand?
__________________

__________________

Alt 10.02.2007, 22:44   #3
-ptvibes-
 
Hilfe zum Log-File vom Blacklight Rootkit Revealer - Standard

Hilfe zum Log-File vom Blacklight Rootkit Revealer



Hallo, ja hab alles da?
__________________

Alt 10.02.2007, 23:09   #4
MightyMarc
 
Hilfe zum Log-File vom Blacklight Rootkit Revealer - Standard

Hilfe zum Log-File vom Blacklight Rootkit Revealer



Sorry, aber es geht es morgen weiter. Ich bin jetzt weg.

Gruß

Marc
__________________
When you contact tech support, a lot of people feel like they're either talking to an idiot or being treated like one.

Alt 11.02.2007, 15:24   #5
MightyMarc
 
Hilfe zum Log-File vom Blacklight Rootkit Revealer - Standard

Hilfe zum Log-File vom Blacklight Rootkit Revealer



Boote bitte in die Wiederherstellungskonsole von Windows. Eine Anleitung hierfür gibt es hier:

Beschreibung der Windows XP-Wiederherstellungskonsole

Wenn Du schlussendlich in der Konsole angekommen bist führst du der Reihe nach folgende Kommandos aus:

Zitat:
del /F "C:\WINDOWS\system32\hldrrr.exe"
del /F "c:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\hidires\hidr.exe"
del /F "c:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\hidires\m_hook.sys"

Hinweis: hier gibt es kein Leerzeichen: "hidires". Dies ist ein Darstellungsfehler.

Edit:

Die Konsole beendest Du mit dem Befehl exit.
Boote danach normal und lasse Blacklight nochmals laufen. Poste den Scanreport.

__________________
When you contact tech support, a lot of people feel like they're either talking to an idiot or being treated like one.

Alt 11.02.2007, 16:13   #6
-ptvibes-
 
Hilfe zum Log-File vom Blacklight Rootkit Revealer - Standard

Hilfe zum Log-File vom Blacklight Rootkit Revealer



Hallo, danke für die Antwort, werde es heute Abend gleich mal versuchen, also lässt sich das Problem wohl doch ohne Formatierung der C Partition beheben?

Grüße Daniel

Alt 11.02.2007, 16:16   #7
MightyMarc
 
Hilfe zum Log-File vom Blacklight Rootkit Revealer - Standard

Hilfe zum Log-File vom Blacklight Rootkit Revealer



Zitat:
Zitat von -ptvibes- Beitrag anzeigen
...also lässt sich das Problem wohl doch ohne Formatierung der C Partition beheben?
Das hängt davon ab, was wir finden, wenn der Rootkittreiber erstmal weg ist. Früh Dich also nicht zu früh.
__________________
When you contact tech support, a lot of people feel like they're either talking to an idiot or being treated like one.

Alt 12.02.2007, 09:47   #8
-ptvibes-
 
Hilfe zum Log-File vom Blacklight Rootkit Revealer - Standard

Hilfe zum Log-File vom Blacklight Rootkit Revealer



Hallo, ich konnte die Zeilen leider nicht ausführen, weil mir der Zugriff immer verweigert wird. Gibts ne Möglichkeit das zu umgehen oder sich da als Admin einzuloggen?

Thx und Grüße
Daniel

Antwort

Themen zu Hilfe zum Log-File vom Blacklight Rootkit Revealer
abhilfe, administrator, c:\windows, einstellungen, frame, help, icon, log-file, movie maker, national, neues, process, programm, programme, revealer, rootkit, script, service, service pack 2, software, system, system32, tipps, version, viren, windows




Ähnliche Themen: Hilfe zum Log-File vom Blacklight Rootkit Revealer


  1. Avast: Rootkit: hidden file (Schweregrad: Hoch), Malewarebytes: Keine Bedrohung gefunden
    Plagegeister aller Art und deren Bekämpfung - 23.12.2014 (5)
  2. Rootkit: hidden file
    Plagegeister aller Art und deren Bekämpfung - 05.06.2013 (7)
  3. failed to safe all the components for the file \\system32\985479 (rootkit virus)
    Plagegeister aller Art und deren Bekämpfung - 12.03.2012 (11)
  4. 16 versteckte Objekte nach TR/Inject.anzu, blacklight nicht kompatibel
    Plagegeister aller Art und deren Bekämpfung - 06.05.2010 (41)
  5. Hilfe Rootkit!!!
    Log-Analyse und Auswertung - 29.06.2009 (0)
  6. HiJackThis Log File und Gmer file Für Rootkit Problem
    Log-Analyse und Auswertung - 28.02.2009 (12)
  7. Log-File von Blacklight Rootkit Eliminator
    Mülltonne - 09.11.2008 (1)
  8. Rootkit Revealer Log - Unbenannte Ordner
    Plagegeister aller Art und deren Bekämpfung - 28.07.2008 (3)
  9. Win 32 rootkit gen Hilfe!!!
    Log-Analyse und Auswertung - 21.05.2008 (27)
  10. Blacklight
    Antiviren-, Firewall- und andere Schutzprogramme - 06.11.2007 (3)
  11. blacklight für Win 98
    Plagegeister aller Art und deren Bekämpfung - 03.10.2007 (4)
  12. f-secure scanner und blacklight
    Antiviren-, Firewall- und andere Schutzprogramme - 19.02.2007 (7)
  13. Rootkit Revealer findet 20000 Einträge?
    Antiviren-, Firewall- und andere Schutzprogramme - 29.04.2006 (5)
  14. rootkit revealer stürzt ab
    Antiviren-, Firewall- und andere Schutzprogramme - 23.03.2006 (4)
  15. Bitte um Hilfe bei TR/Rootkit.L.
    Log-Analyse und Auswertung - 20.07.2005 (0)
  16. HILFE!!!!!!!!! Troj/Rootkit-W
    Log-Analyse und Auswertung - 06.06.2005 (1)

Zum Thema Hilfe zum Log-File vom Blacklight Rootkit Revealer - Hallo, seit eine paar Tagen streikt mein Viren Programm ich kann auch kein neues Installieren, habe schon eine paar Progs über mein System laufen lassen. Hat aber nix geändert. Wäre - Hilfe zum Log-File vom Blacklight Rootkit Revealer...
Archiv
Du betrachtest: Hilfe zum Log-File vom Blacklight Rootkit Revealer auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.