|
Plagegeister aller Art und deren Bekämpfung: help please!!!Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
16.05.2004, 01:13 | #1 |
| help please!!! hey i am from holland, and i also found those tr/small-dld.ah.5 . anyone can explain how i can get rid of them. i have a bunch of trojans on my pc i think i dont know how i got them. a few i got: worm/bagle.k . tr/bispy.dll.b . tr/small-dld.ah.5 - tr/stubby tr/revop.c . some extra info: when i start my computer i cant see any icons and no task bar, like after 30 mins something pops up saying Project 1 It's Time! and then when i ctrl+alt+delete it the icons and task bar are back. and sometimes when im on the net i get like 50 pop ups of something www.seekseek.com. someone please help!!! (in english!!) |
16.05.2004, 01:19 | #2 |
| help please!!! answer here or add me on msn!!! (check profile)
__________________ |
16.05.2004, 11:31 | #3 |
Gast | help please!!! hi ed,
__________________first you have to tell us where was the viruses|trojans found? maybe an av-log is intresting. (only the relevant detail). or you send us an hijackthis.log here in this forum. http://www.spywareinfo.com/~merijn/files/hijackthis.zip |
16.05.2004, 14:26 | #4 |
| help please!!! i scanned it with AntiVir maybe i have to scan it again? because i dont know what the locations are! |
16.05.2004, 14:38 | #5 |
Moderator, a.D. | help please!!! You should scan again to tell us the locations. That's the only way for us to tell you if these trojans and worms have been active on your computer or just been stored in some temporary or mail files. In addition, please post a log of HijackThis. Regards [img]graemlins/daumenhoch.gif[/img] Yopie |
16.05.2004, 15:33 | #6 |
| help please!!! ***NOTE: Close this window to continue installing the product.*** ========================================================= ===============PRE-INSTALL SCANNER RESULTS=============== ========================================================= Summary: Scan finished at 16:32:22 on 16-5-2004. Number of Files Scanned: 69066 Number of Infections Found: 194 Number of Files Repaired: 0 Number of Files Deleted: 194 Number of Files Left Infected: 0 ========================================================= Details: C:\Program Files\ddm\ddm_d.exe was infected with Download.Trojan. (DELETED) C:\Program Files\AVPersonal\INFECTED\winsys.VIR was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 6 NEW!.EXE.VIR was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MATRIX 3 REVOLUTION ENGLISH SUBTITLES.EXE.VIR was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ADOBE PHOTOSHOP 9 FULL.EXE.VIR was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\AHEAD NERO 7.EXE.VIR was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ACDSEE 9.EXE.VIR was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE 2003 CRACK, WORKING!.EXE.VIR was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE XP WORKING CRACK, KEYGEN.EXE.VIR was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT WINDOWS XP, WINXP CRACK, WORKING KEYGEN.EXE.VIR was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO SCREENSAVER.SCR.VIR was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO, SEX, ORAL, ANAL COOL, AWESOME!!.EXE.VIR was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO PICS ARHIVE, XXX.EXE.VIR was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\SERIALS.TXT.EXE.VIR was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWN LONGHORN BETA LEAK.EXE.VIR was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWS SOURCECODE UPDATE.DOC.EXE.VIR was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\XXX HARDCORE IMAGES.EXE.VIR was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\OPERA 8 NEW!.EXE.VIR was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 5 PRO KEYGEN CRACK UPDATE.EXE.VIR was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 6 NEW!.EXE.001 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MATRIX 3 REVOLUTION ENGLISH SUBTITLES.EXE.001 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ADOBE PHOTOSHOP 9 FULL.EXE.001 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\AHEAD NERO 7.EXE.001 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ACDSEE 9.EXE.001 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE 2003 CRACK, WORKING!.EXE.001 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE XP WORKING CRACK, KEYGEN.EXE.001 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT WINDOWS XP, WINXP CRACK, WORKING KEYGEN.EXE.001 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO SCREENSAVER.SCR.001 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO, SEX, ORAL, ANAL COOL, AWESOME!!.EXE.001 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO PICS ARHIVE, XXX.EXE.001 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\SERIALS.TXT.EXE.001 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWN LONGHORN BETA LEAK.EXE.001 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWS SOURCECODE UPDATE.DOC.EXE.001 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\XXX HARDCORE IMAGES.EXE.001 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\OPERA 8 NEW!.EXE.001 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 5 PRO KEYGEN CRACK UPDATE.EXE.001 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 6 NEW!.EXE.002 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MATRIX 3 REVOLUTION ENGLISH SUBTITLES.EXE.002 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ADOBE PHOTOSHOP 9 FULL.EXE.002 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\AHEAD NERO 7.EXE.002 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ACDSEE 9.EXE.002 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE 2003 CRACK, WORKING!.EXE.002 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE XP WORKING CRACK, KEYGEN.EXE.002 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT WINDOWS XP, WINXP CRACK, WORKING KEYGEN.EXE.002 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO SCREENSAVER.SCR.002 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO, SEX, ORAL, ANAL COOL, AWESOME!!.EXE.002 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO PICS ARHIVE, XXX.EXE.002 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\SERIALS.TXT.EXE.002 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWN LONGHORN BETA LEAK.EXE.002 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWS SOURCECODE UPDATE.DOC.EXE.002 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\XXX HARDCORE IMAGES.EXE.002 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\OPERA 8 NEW!.EXE.002 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 5 PRO KEYGEN CRACK UPDATE.EXE.002 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 6 NEW!.EXE.003 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MATRIX 3 REVOLUTION ENGLISH SUBTITLES.EXE.003 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ADOBE PHOTOSHOP 9 FULL.EXE.003 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\AHEAD NERO 7.EXE.003 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ACDSEE 9.EXE.003 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE 2003 CRACK, WORKING!.EXE.003 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE XP WORKING CRACK, KEYGEN.EXE.003 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT WINDOWS XP, WINXP CRACK, WORKING KEYGEN.EXE.003 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO SCREENSAVER.SCR.003 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO, SEX, ORAL, ANAL COOL, AWESOME!!.EXE.003 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO PICS ARHIVE, XXX.EXE.003 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\SERIALS.TXT.EXE.003 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWN LONGHORN BETA LEAK.EXE.003 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWS SOURCECODE UPDATE.DOC.EXE.003 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\XXX HARDCORE IMAGES.EXE.003 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\OPERA 8 NEW!.EXE.003 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 5 PRO KEYGEN CRACK UPDATE.EXE.003 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 6 NEW!.EXE.004 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MATRIX 3 REVOLUTION ENGLISH SUBTITLES.EXE.004 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ADOBE PHOTOSHOP 9 FULL.EXE.004 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\AHEAD NERO 7.EXE.004 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ACDSEE 9.EXE.004 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE 2003 CRACK, WORKING!.EXE.004 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE XP WORKING CRACK, KEYGEN.EXE.004 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT WINDOWS XP, WINXP CRACK, WORKING KEYGEN.EXE.004 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO SCREENSAVER.SCR.004 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO PICS ARHIVE, XXX.EXE.004 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\SERIALS.TXT.EXE.004 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWN LONGHORN BETA LEAK.EXE.004 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWS SOURCECODE UPDATE.DOC.EXE.004 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\XXX HARDCORE IMAGES.EXE.004 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\OPERA 8 NEW!.EXE.004 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 5 PRO KEYGEN CRACK UPDATE.EXE.004 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 6 NEW!.EXE.005 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MATRIX 3 REVOLUTION ENGLISH SUBTITLES.EXE.005 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ADOBE PHOTOSHOP 9 FULL.EXE.005 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\AHEAD NERO 7.EXE.005 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ACDSEE 9.EXE.005 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE 2003 CRACK, WORKING!.EXE.005 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE XP WORKING CRACK, KEYGEN.EXE.005 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT WINDOWS XP, WINXP CRACK, WORKING KEYGEN.EXE.005 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO SCREENSAVER.SCR.005 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO, SEX, ORAL, ANAL COOL, AWESOME!!.EXE.004 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO PICS ARHIVE, XXX.EXE.005 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\SERIALS.TXT.EXE.005 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWN LONGHORN BETA LEAK.EXE.005 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWS SOURCECODE UPDATE.DOC.EXE.005 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\XXX HARDCORE IMAGES.EXE.005 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\OPERA 8 NEW!.EXE.005 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 5 PRO KEYGEN CRACK UPDATE.EXE.005 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 6 NEW!.EXE.006 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MATRIX 3 REVOLUTION ENGLISH SUBTITLES.EXE.006 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ADOBE PHOTOSHOP 9 FULL.EXE.006 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\AHEAD NERO 7.EXE.006 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ACDSEE 9.EXE.006 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE 2003 CRACK, WORKING!.EXE.006 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE XP WORKING CRACK, KEYGEN.EXE.006 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT WINDOWS XP, WINXP CRACK, WORKING KEYGEN.EXE.006 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO SCREENSAVER.SCR.006 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO, SEX, ORAL, ANAL COOL, AWESOME!!.EXE.005 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO PICS ARHIVE, XXX.EXE.006 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\SERIALS.TXT.EXE.006 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWN LONGHORN BETA LEAK.EXE.006 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWS SOURCECODE UPDATE.DOC.EXE.006 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\XXX HARDCORE IMAGES.EXE.006 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\OPERA 8 NEW!.EXE.006 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 5 PRO KEYGEN CRACK UPDATE.EXE.006 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 6 NEW!.EXE.007 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MATRIX 3 REVOLUTION ENGLISH SUBTITLES.EXE.007 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ADOBE PHOTOSHOP 9 FULL.EXE.007 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\AHEAD NERO 7.EXE.007 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ACDSEE 9.EXE.007 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE 2003 CRACK, WORKING!.EXE.007 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE XP WORKING CRACK, KEYGEN.EXE.007 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT WINDOWS XP, WINXP CRACK, WORKING KEYGEN.EXE.007 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO SCREENSAVER.SCR.007 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO, SEX, ORAL, ANAL COOL, AWESOME!!.EXE.006 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO PICS ARHIVE, XXX.EXE.007 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\SERIALS.TXT.EXE.007 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWN LONGHORN BETA LEAK.EXE.007 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWS SOURCECODE UPDATE.DOC.EXE.007 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\XXX HARDCORE IMAGES.EXE.007 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\OPERA 8 NEW!.EXE.007 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 5 PRO KEYGEN CRACK UPDATE.EXE.007 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 6 NEW!.EXE.008 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MATRIX 3 REVOLUTION ENGLISH SUBTITLES.EXE.008 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ADOBE PHOTOSHOP 9 FULL.EXE.008 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\AHEAD NERO 7.EXE.008 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ACDSEE 9.EXE.008 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE 2003 CRACK, WORKING!.EXE.008 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE XP WORKING CRACK, KEYGEN.EXE.008 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT WINDOWS XP, WINXP CRACK, WORKING KEYGEN.EXE.008 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO SCREENSAVER.SCR.008 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO, SEX, ORAL, ANAL COOL, AWESOME!!.EXE.007 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO PICS ARHIVE, XXX.EXE.008 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\SERIALS.TXT.EXE.008 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWN LONGHORN BETA LEAK.EXE.008 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWS SOURCECODE UPDATE.DOC.EXE.008 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\XXX HARDCORE IMAGES.EXE.008 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\OPERA 8 NEW!.EXE.008 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 5 PRO KEYGEN CRACK UPDATE.EXE.008 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 6 NEW!.EXE.009 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MATRIX 3 REVOLUTION ENGLISH SUBTITLES.EXE.009 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ADOBE PHOTOSHOP 9 FULL.EXE.009 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\AHEAD NERO 7.EXE.009 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ACDSEE 9.EXE.009 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE 2003 CRACK, WORKING!.EXE.009 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE XP WORKING CRACK, KEYGEN.EXE.009 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT WINDOWS XP, WINXP CRACK, WORKING KEYGEN.EXE.009 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO SCREENSAVER.SCR.009 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO, SEX, ORAL, ANAL COOL, AWESOME!!.EXE.008 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO PICS ARHIVE, XXX.EXE.009 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\SERIALS.TXT.EXE.009 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWN LONGHORN BETA LEAK.EXE.009 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWS SOURCECODE UPDATE.DOC.EXE.009 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\XXX HARDCORE IMAGES.EXE.009 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\OPERA 8 NEW!.EXE.009 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 5 PRO KEYGEN CRACK UPDATE.EXE.009 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 6 NEW!.EXE.010 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MATRIX 3 REVOLUTION ENGLISH SUBTITLES.EXE.010 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ADOBE PHOTOSHOP 9 FULL.EXE.010 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\AHEAD NERO 7.EXE.010 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ACDSEE 9.EXE.010 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE 2003 CRACK, WORKING!.EXE.010 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT OFFICE XP WORKING CRACK, KEYGEN.EXE.010 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MICROSOFT WINDOWS XP, WINXP CRACK, WORKING KEYGEN.EXE.010 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO SCREENSAVER.SCR.010 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO, SEX, ORAL, ANAL COOL, AWESOME!!.EXE.009 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\PORNO PICS ARHIVE, XXX.EXE.010 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\SERIALS.TXT.EXE.010 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWN LONGHORN BETA LEAK.EXE.010 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINDOWS SOURCECODE UPDATE.DOC.EXE.010 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\XXX HARDCORE IMAGES.EXE.010 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\OPERA 8 NEW!.EXE.010 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 5 PRO KEYGEN CRACK UPDATE.EXE.010 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\WINAMP 6 NEW!.EXE.011 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\MATRIX 3 REVOLUTION ENGLISH SUBTITLES.EXE.011 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ADOBE PHOTOSHOP 9 FULL.EXE.011 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\AHEAD NERO 7.EXE.011 was infected with W32.Beagle.K@mm. (DELETED) C:\Program Files\AVPersonal\INFECTED\ACDSEE 9.EXE.011 was infected with W32.Beagle.K@mm. (DELETED) C:\System Volume Information\_RESTO~1\RP157\A0080666.exe was infected with Download.Trojan. (DELETED) ========================================================= |
16.05.2004, 15:34 | #7 |
| help please!!! as you can see there are all kind of files planted on my computer with porn related names. but the worst thing is that when i start up i dont have icons and task bar!! anybody knows how to fix that?? |
16.05.2004, 15:43 | #8 |
help please!!!
__________________ "Der beliebteste Fehler unter den Leuten, die etwas absolut idiotensicheres konstruieren wollen ist der, dass sie den Erfindungsreichtum von absoluten Idioten unterschätzen." |
18.05.2004, 15:27 | #9 |
| help please!!! Logfile of HijackThis v1.97.7 Scan saved at 16:25:49, on 18-5-2004 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\System32\Ati2evxx.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\System32\taskmgr.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Java\j2re1.4.2_01\bin\jusched.exe C:\Program Files\Save\Save.exe C:\progra~1\ddm\4699\msbb.exe C:\WINDOWS\wt\updater\wcmdmgr.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\Program Files\AVPersonal\AVGNT.EXE C:\Program Files\Common Files\Symantec Shared\ccApp.exe C:\WINDOWS\System32\ctfmon.exe C:\program files\steam\steam.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\PROGRA~1\WEATHE~1\Weather.exe C:\PROGRA~1\CLOCKS~1\Sync.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe C:\Program Files\DV Series\Console\Watch.exe C:\Program Files\Ulead Systems\Ulead Photo Express 4.0 My Custom Edition\CalCheck.exe C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe C:\Program Files\Norton AntiVirus\navapsvc.exe C:\Program Files\Norton AntiVirus\SAVScan.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Messenger\msmsgs.exe C:\Documents and Settings\Edwin Sinnige\Bureaublad\hijackthis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://server224.smartbotpro.net/7search/?new-hkcu R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.couldnotfind.com/search_p...count_id=56715 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://default-homepage-network.com/start.cgi?new-hkcu R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.couldnotfind.com/search_p...count_id=56715 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://default-homepage-network.com/start.cgi?new-hklm R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://server224.smartbotpro.net/7search/?new-hklm R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/cust.../www.yahoo.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://red.clientapps.yahoo.com/cust...//my.yahoo.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://red.clientapps.yahoo.com/cust.../www.yahoo.com R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/cust.../www.yahoo.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = about:blank R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R1 - HKCU\Software\Microsoft\Internet Connection Wizard,Shellnext = wmplayer.exe //ICWLaunch R3 - URLSearchHook: (no name) - _{8952A998-1E7E-4716-B23D-3DBE03910972} - (no file) R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file) R3 - URLSearchHook: (no name) - _{5D60FF48-95BE-4956-B4C6-6BB168A70310} - (no file) O2 - BHO: (no name) - {00000EF1-0786-4633-87C6-1AA7A44296DA} - C:\WINDOWS\System32\ddm3dia.dll (file missing) O2 - BHO: (no name) - {0000607D-D204-42C7-8E46-216055BF9918} - C:\WINDOWS\mxTarget.dll O2 - BHO: (no name) - {000E7270-CC7A-0786-8E7A-DA09B51938A6} - C:\WINDOWS\System32\n3tpa1.dll (file missing) O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\ycomp5_3_12_0.dll O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx O2 - BHO: (no name) - {136A9D1D-1F4B-43D4-8359-6F2382449255} - C:\Program Files\_SUPERBAR\_SUPERBAR.dll O2 - BHO: (no name) - {5B413B36-CACD-4E72-8162-D12EB789E40C} - C:\WINDOWS\System32\imsi.dll O2 - BHO: (no name) - {5D60FF48-95BE-4956-B4C6-6BB168A70310} - C:\PROGRA~1\INCRED~1\BHO\INCFIN~1.DLL O2 - BHO: (no name) - {71ED4FBA-4024-4bbe-91DC-9704C93F453E} - c:\progra~1\iesearchbar\iesearchbar.dll O2 - BHO: (no name) - {8F4E5661-F99E-4B3E-8D85-0EA71C0748E4} - C:\WINDOWS\wsem218.dll O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll O2 - BHO: (no name) - {F7F808F0-6F7D-442C-93E3-4A4827C2E4C8} - C:\WINDOWS\nem216.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O3 - Toolbar: SuperBar - {C8FB9F50-FFB5-4377-8308-173C0B6A13DD} - C:\Program Files\_SUPERBAR\_SUPERBAR.dll O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\ycomp5_3_12_0.dll O3 - Toolbar: ISTbar - {5F1ABCDB-A875-46c1-8345-B72A4567E486} - C:\Program Files\ISTbar\istbar.dll (file missing) O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd O4 - HKLM\..\Run: [] c:\WINDOWS\System32\ O4 - HKLM\..\Run: [VOBRegCheck] C:\WINDOWS\System32\VOBREGCheck.exe -CheckReg O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe O4 - HKLM\..\Run: [slmss] C:\Program Files\Common Files\slmss\slmss.exe O4 - HKLM\..\Run: [updater] C:\Program Files\Common files\updater\wupdater.exe O4 - HKLM\..\Run: [jbihlpoe] C:\WINDOWS\kyahkc.exe O4 - HKLM\..\Run: [nvid] C:\WINDOWS\System32\qmpguawm.exe O4 - HKLM\..\Run: [1212710.exe] C:\WINDOWS\System32\1212710.exe O4 - HKLM\..\Run: [roquotap] C:\WINDOWS\System32\roquotap.exe O4 - HKLM\..\Run: [wcmdmgr] C:\WINDOWS\wt\updater\wcmdmgrl.exe -launch O4 - HKLM\..\Run: [ateh] C:\WINDOWS\ateh.exe O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe O4 - HKCU\..\Run: [] c:\WINDOWS\System32\ O4 - HKCU\..\Run: [zzb] c:\WINDOWS\System32\zzb.exe O4 - HKCU\..\Run: [msmc] C:\WINDOWS\System32\msmc.exe O4 - HKLM\..\RunOnce: [sysu] "C:\progra~1\ddm\sysu.exe" O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE O8 - Extra context menu item: Yahoo! Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm O8 - Extra context menu item: Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm O9 - Extra 'Tools' menuitem: Sun Java Console (HKLM) O9 - Extra button: Messenger (HKLM) O9 - Extra 'Tools' menuitem: Yahoo! Messenger (HKLM) O9 - Extra button: AIM (HKLM) O9 - Extra button: Messenger (HKLM) O9 - Extra 'Tools' menuitem: Messenger (HKLM) O16 - DPF: {10000000-1000-0000-1000-000000000000} - file://C:\Program Files\Internet Explorer\uiwigfor.exe O16 - DPF: {15589FA1-C456-11CE-BF01-00AA0055595A} - http://www.spywarenuker.com/product/...rInstaller.exe O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://download.yahoo.com/dl/installs/yinst0401.cab O16 - DPF: {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} (Cult3D ActiveX Player) - http://www.cult3d.com/download/cult.cab O16 - DPF: {41F31718-2B9D-4F76-85E2-DD11BBA99F8D} - http://install.spywarelabs.com/DistI...2501031120.EXE O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Besturing) - http://virusscan.zdnet.nl/housecall/xscan53.cab O16 - DPF: {93829908-07C2-44A2-95DB-F78F201A9B48} - http://adblock.linkz.com/APHelper.dll O16 - DPF: {A17E30C4-A9BA-11D4-8673-60DB54C10000} (YahooYMailTo Class) - http://us.dl1.yimg.com/download.yaho...ymmapi_416.dll O16 - DPF: {B3A5878E-5B4C-4D12-9156-4D7FD8D0AF6C} (Cltbuilder Class) - http://akamai.downloadv3.com/binarie...e2oneSvcEN.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/s...sh/swflash.cab O16 - DPF: {F5192746-22D6-41BD-9D2D-1E75D14FBD3C} (ddm_download.ddm_control) - http://download.rfwnad.com/cab/crack.CAB hope this helps? The last couple of days my comp was very weird. We were thinkin of formatting. But after closing some applications in TaskMAnager it went pretty ok again.. But we dont know if it will last after a reboot. please help |
19.05.2004, 14:16 | #10 |
| help please!!! Hi Ed, i think that you should formating your computer. It´s the best way after this amount of viruses on your system.# Adware/ Spyware: C:\progra~1\ddm\4699\msbb.exe C:\Program Files\Save\Save.exe etc.... greetz Blackdog
__________________ Think positiv - es wird Ihnen gehilft |
Themen zu help please!!! |
compu, computer, delete, english, extra, found, help, icons, please, please help, pop ups, start, troja, trojans, ups |