|
Log-Analyse und Auswertung: HiJacK log file+Malware Log - oft Bluescreen/Brenner fkt. nicht etc. HELP!Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
27.06.2009, 15:20 | #1 |
| HiJacK log file+Malware Log - oft Bluescreen/Brenner fkt. nicht etc. HELP! Hallo! Ich fange mal von vorne an... Am 21.6. konnte ich plötzlich mein GDATA Antivirus 2010 nicht mehr updaten und meine zwei Brenner werden in Windows (VISTA BZSINESS SP2) angezeigt und funktionieren (Lesen), sowie Schreiben aber nur mit dem MS internen Brennprogramm. Mit Nero 9 oder Ashampoo Brennsuite oder anderen nicht mehr, da die Laufwerke nicht angezeigt werden!!!! Nach Anruf und Hilfe von Gdata, konnte ich den Fehler entfernen (mit den Updates), aber das Brenn-Probelem besteht weiterhin. Ich bin völlig ratlos. Bei Google gab es immer Ansätze wegen den Brennproblem, aber keine Lösung. (mehrf. Neuinstallationen brachten nichts) Ich glaube, da ich bereits Malwarebytes Anti-Malware und GDATA laufen ließ, das ich mir Trojaner einfing, da mehrere Meldungen kamen. Zudem stürzt Vista ab, wenn ich bspw. die Eigenschaften von Hijackthis (verknüpfung) aufrufen möchte.... Zudem kam auch mehrmals eine Popup-Warnung (Fake ggfs.), die ich vor dem 21.6.09 nicht hatte. Logfile HiJackthis: xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx Running processes: C:\Windows\system32\Dwm.exe C:\Windows\system32\taskeng.exe C:\Windows\Explorer.EXE C:\Program Files\Windows Defender\MSASCui.exe C:\Windows\System32\rundll32.exe C:\Windows\system\CMGxMon.exe C:\Program Files\avmwlanstick\WLanGUI.exe C:\Program Files\Logitech\GamePanel Software\LGDevAgt.exe C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE C:\Program Files\Java\jre6\bin\jusched.exe C:\Windows\System32\rundll32.exe C:\Program Files\SOUNDGRAPH\iMON\iMON.exe C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe C:\Program Files\CyberLink\Shared Files\brs.exe C:\Program Files\Windows Sidebar\sidebar.exe E:\Arek Progz&Treiber\Tastaturtreiber G15\Logitech G15 Applets\NM_Monitor_v3.0.0.2\NM Monitor\nmmonitor.exe C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe C:\Program Files\Common Files\TerraTec\Remote\TTTvRc.exe C:\Programme\Logitech 5.10\SetPoint II\SetpointII.exe C:\Program Files\FRITZ!DSL\FwebProt.exe C:\Program Files\Logitech\GamePanel Software\LCD Manager\lcdmon.exe C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE C:\Program Files\RivaTuner v2.24\RivaTuner.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files\Logitech\GamePanel Software\Applets\LCDCountdown.exe C:\Program Files\Logitech\GamePanel Software\LCD Manager\Applets\LCDClock.exe C:\Program Files\Logitech\GamePanel Software\Applets\LCDMedia.exe C:\Program Files\Logitech\GamePanel Software\Applets\LCDPop3.exe C:\Program Files\Logitech\GamePanel Software\Applets\LCDRSS.exe C:\Program Files\FRITZ!DSL\StCenter.EXE C:\Windows\system32\SearchFilterHost.exe E:\Arek Progz&Treiber\Antivirenprogs\RSIT.exe C:\Program Files\trend micro\AQi.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhost O2 - BHO: G Data WebFilter Class - {0124123D-61B4-456f-AF86-78C53A0790C5} - C:\Program Files\G DATA\AntiVirus\Webfilter\AVKWebIE.dll O2 - BHO: Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: G Data WebFilter - {0124123D-61B4-456f-AF86-78C53A0790C5} - C:\Program Files\G DATA\AntiVirus\Webfilter\AVKWebIE.dll O3 - Toolbar: &TerraTec Home Cinema - {AD6E6555-FB2C-47D4-8339-3E2965509877} - C:\PROGRA~1\TerraTec\TERRAT~1\THCDES~1.DLL O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide O4 - HKLM\..\Run: [CmPCIaudio] RunDll32 CMICNFG3.cpl,CMICtrlWnd O4 - HKLM\..\Run: [Cmaudio8768GX] C:\Windows\system\CmGXMon.exe Envoke O4 - HKLM\..\Run: [AVMWlanClient] C:\Program Files\avmwlanstick\wlangui.exe O4 - HKLM\..\Run: [Launch LgDevAgt] "C:\Program Files\Logitech\GamePanel Software\LgDevAgt.exe" O4 - HKLM\..\Run: [Launch LCDMon] "C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe" O4 - HKLM\..\Run: [Launch LGDCore] "C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe" /SHOWHIDE O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE O4 - HKLM\..\Run: [XboxStat] "C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe" silentrun O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [G DATA AntiVirus Trayapplication] C:\Program Files\G DATA\AntiVirus\AVKTray\AVKTray.exe O4 - HKLM\..\Run: [RivaTunerStartupDaemon] "C:\Program Files\RivaTuner v2.24\RivaTunerWrapper.exe" /S O4 - HKLM\..\Run: [RivaTuner] "C:\Program Files\RivaTuner v2.24\RivaTunerWrapper.exe" /T O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [TrayServer] C:\Program Files\MAGIX\Video_deluxe_15_Premium\TrayServer.exe O4 - HKLM\..\Run: [iMON] C:\Program Files\SOUNDGRAPH\iMON\iMON.exe /startup O4 - HKLM\..\Run: [RemoteControl8] "C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe" O4 - HKLM\..\Run: [PDVD8LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD8\Language\Language.exe" O4 - HKLM\..\Run: [BDRegion] C:\Program Files\Cyberlink\Shared Files\brs.exe O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [NM Monitor] "E:\Arek Progz&Treiber\Tastaturtreiber G15\Logitech G15 Applets\NM_Monitor_v3.0.0.2\NM Monitor\nmmonitor.exe" O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Programme\Alcohol Soft\Alcohol 120\axcmd.exe" /automount O4 - HKCU\..\Run: [Remote Control Editor] "C:\Program Files\Common Files\TerraTec\Remote\TTTvRc.exe" O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKALER DIENST') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKALER DIENST') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETZWERKDIENST') O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Startup: FRITZ!DSL Protect.lnk = C:\Program Files\FRITZ!DSL\FwebProt.exe O4 - Global Startup: SetPointII.lnk = ? O8 - Extra context menu item: An vorhandenes PDF anfügen - res://C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Ausgewählte Verknüpfungen in Adobe PDF konvertieren - res://C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Ausgewählte Verknüpfungen in vorhandene PDF-Datei konvertieren - res://C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Auswahl in Adobe PDF konvertieren - res://C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Auswahl in vorhandene PDF-Datei konvertieren - res://C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: In Adobe PDF konvertieren - res://C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Nach Microsoft E&xel exportieren - res://C:\Programme\Microsoft Office\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: Verknüpfungsziel in Adobe PDF konvertieren - res://C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Verknüpfungsziel in vorhandene PDF-Datei konvertieren - res://C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programme\Microsoft Office\Office12\REFIEBAR.DLL O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe O13 - Gopher Prefix: O17 - HKLM\System\CCS\Services\Tcpip\..\{752F1E4E-777C-41BF-A725-B4CAF383DDB5}: NameServer = 85.255.112.95,85.255.112.171 O17 - HKLM\System\CCS\Services\Tcpip\..\{7F0AC2B6-3B2A-4EB9-825B-7B59E34E5B03}: NameServer = 85.255.112.95,85.255.112.171 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.112.95,85.255.112.171 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 85.255.112.95,85.255.112.171 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.112.95,85.255.112.171 O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: G Data AntiVirus Proxy (AVKProxy) - G DATA Software AG - C:\Program Files\Common Files\G DATA\AVKProxy\AVKProxy.exe O23 - Service: G Data Scheduler (AVKService) - G Data Software AG - C:\Program Files\G DATA\AntiVirus\AVK\AVKService.exe O23 - Service: G Data Dateisystem Wächter (AVKWCtl) - G Data Software AG - C:\Program Files\G DATA\AntiVirus\AVK\AVKWCtl.exe O23 - Service: AVM WLAN Connection Service - AVM Berlin - C:\Program Files\avmwlanstick\WlanNetService.exe O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: G Data Scanner (GDScan) - G DATA Software AG - C:\Program Files\Common Files\G DATA\GDScan\GDScan.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: AVM IGD CTRL Service (IGDCTRL) - AVM Berlin - C:\Program Files\FRITZ!DSL\IGDCTRL.EXE O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe O23 - Service: VRAID Log Service - Unknown owner - C:\Program Files\VIA\RAID\vialogsv.exe -- End of file - 12048 bytes FÜR JEDE HILFE WÄRE ICH SEHR DANKBAR !!! VG Arkadius |
27.06.2009, 15:26 | #2 |
| Logfile Malwarebytes Anti-Malware 1.36 Teil 1 Registry Data Items Infected:
__________________HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.95,85.255.112.171 -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7f0ac2b6-3b2a-4eb9-825b-7b59e34e5b03}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.95,85.255.112.171 -> Delete on reboot. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7f0ac2b6-3b2a-4eb9-825b-7b59e34e5b03}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.95,85.255.112.171 -> Delete on reboot. HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.95,85.255.112.171 -> Delete on reboot. HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{7f0ac2b6-3b2a-4eb9-825b-7b59e34e5b03}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.95,85.255.112.171 -> Delete on reboot. HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{7f0ac2b6-3b2a-4eb9-825b-7b59e34e5b03}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.95,85.255.112.171 -> Delete on reboot. HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\Tcpip\Parameters\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.95,85.255.112.171 -> Delete on reboot. HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\Tcpip\Parameters\Interfaces\{7f0ac2b6-3b2a-4eb9-825b-7b59e34e5b03}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.95,85.255.112.171 -> Delete on reboot. HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\Tcpip\Parameters\Interfaces\{7f0ac2b6-3b2a-4eb9-825b-7b59e34e5b03}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.95,85.255.112.171 -> Delete on reboot. Files Infected: C:\Windows\Temp\AMS_FreeSetup.exe (Rogue.Installer) -> Delete on reboot. c:\users\Administrator\mpr2.dat (Malware.Trace) -> Delete on reboot. C:\Windows\Temp\SpywareSweeperSetup.exe (Rogue.Installer) -> Delete on reboot. C:\Windows\Temp\sixi.dll (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\svch0st.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\svchosts.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\Explorer.dll (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\protect.dll (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\sXaWqW.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\iExplorer.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\admin.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\runmgr.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\vdrvwin.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\vUpWsAW.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\ayjpislg.dll (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\s87ekhv.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\JrjOrNhn.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\sccs.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\ppxcs.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\intelOP.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\css.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\personalizationink.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\lsass.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\pwrmgr.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\sidebar.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\system32\Config\sam10.log (Trojan.Agent) -> Delete on reboot. C:\Windows\system32\Config\RealtekAC.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\system32\Config\msch24.exe (Trojan.Agent) -> Delete on reboot. c:\users\AQi\Cookies\MM2048.dat (Trojan.Agent) -> Delete on reboot. c:\users\AQi\Cookies\MM256.dat (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\reader_s.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\nes.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\Clean2.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\RKInstaller.exe (Adware.Agent) -> Delete on reboot. C:\Windows\Temp\UPS_letter.doc.exe (Adware.Agent) -> Delete on reboot. C:\Windows\Temp\prunnet.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\Mskernel32.vbs (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\newstead.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\prun.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\winloggn.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\Pandrv.sys (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\init.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\ie3.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\run32dll.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\wowexec.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\winlogun.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\winlogqn.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\PaiNRAT.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\avto.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\mc22.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\critical_setup.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\cronscmeno.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\winM4d1Dvra6XP3ca.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\owrneoansw.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\ncmwonnaoc.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\xrocormsxx.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\noomacxmax.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\ecnoaoocnm.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\smaaerrnae.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\owrarwoxxa.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\winlogin.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\QQ_Update.cab (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\ramnacecxx.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\eeevsnet.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\winasnet.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\anrornmmna.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\naxawnrxsr.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\raxroxmnnc.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\xxsccrwcoe.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\eeevsnet.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\mousehook.dll (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\winasnet.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\mmmatt.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\csrss.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\svchost.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\Winlogon.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\iexplore.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\bl4ck.com (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\prun.ex e (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\osama.pif (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\krnln.fnr (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\Stp16_TMP.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\nhekdokm.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\aiyyunzz.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\auuftcml.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\liar5.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\liar6.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\liar7.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\winlogen.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\mstscupdate.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\lhost.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\7-v3av.exe (Trojan.TDSS) -> Delete on reboot. c:\users\Administrator\ms_tcp.dll (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\xfya.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\oghpd.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\schosst.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\nah_idsc.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\vat.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\uuwpvk.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\ftvihr.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\ceta.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\lhnn.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\upd.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\scvhost.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\file0.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\Administrator.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\xxy_kjvw.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\svvchost.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\XPProtectorInstaller.exe (Rogue.Installer) -> Delete on reboot. c:\users\Administrator\idajot.exe (Backdoor.Bot) -> Delete on reboot. c:\users\Administrator\kghtg.exe (Backdoor.Bot) -> Delete on reboot. c:\users\Administrator\eaks.exe (Backdoor.Bot) -> Delete on reboot. c:\users\Administrator\huh.exe (Backdoor.Bot) -> Delete on reboot. c:\users\Administrator\hsp.exe (Backdoor.Bot) -> Delete on reboot. c:\users\Administrator\qugu.exe (Backdoor.Bot) -> Delete on reboot. c:\users\Administrator\btanv.exe (Backdoor.Bot) -> Delete on reboot. c:\users\Administrator\xsurl.exe (Backdoor.Bot) -> Delete on reboot. c:\users\Administrator\ljghv.exe (Backdoor.Bot) -> Delete on reboot. c:\users\Administrator\vvlqegx.exe (Backdoor.Bot) -> Delete on reboot. C:\Windows\Temp\uNkbot.exe (Backdoor.Bot) -> Delete on reboot. C:\Windows\Temp\newbot.exe (Backdoor.Bot) -> Delete on reboot. C:\Windows\Temp\traffic-bot.exe (Backdoor.Bot) -> Delete on reboot. c:\users\Administrator\npwk.exe (Backdoor.Bot) -> Delete on reboot. C:\Windows\system32\Config\firewall.exe (Backdoor.Bot) -> Delete on reboot. C:\Windows\system32\Config\updater.exe (Backdoor.Bot) -> Delete on reboot. C:\Windows\system32\Config\mswinsck.ocx (Backdoor.Bot) -> Delete on reboot. c:\users\Administrator\sqbcat.exe (Backdoor.Bot) -> Delete on reboot. C:\Windows\Temp\setup_526_1_.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\ytcdhxzm.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\tfm.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\igfxtray.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\egchvjgw.exe (Trojan.Agent) -> Delete on reboot. c:\users\AQi\Cookies\bumo.reg (Fake.Dropped.Malware) -> Delete on reboot. c:\users\AQi\Cookies\jababug.inf (Fake.Dropped.Malware) -> Delete on reboot. C:\Windows\Temp\noop.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\.tt15.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\mc229.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\snapsnet.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\yazzsnet.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\winlagon.exe (Trojan.Agent) -> Delete on reboot. c:\users\AQi\Cookies\uwux.exe (Fake.Dropped.Malware) -> Delete on reboot. c:\users\AQi\Cookies\jiceji._sy (Fake.Dropped.Malware) -> Delete on reboot. c:\users\AQi\Cookies\esycire._dl (Fake.Dropped.Malware) -> Delete on reboot. c:\users\Administrator\Desktopblackbird.jpg (Fake.Dropped.Malware) -> Delete on reboot. c:\users\Administrator\DesktopEditorFKWP1.5.exe (Fake.Dropped.Malware) -> Delete on reboot. c:\users\Administrator\DesktopEditorFKWP2.0.exe (Fake.Dropped.Malware) -> Delete on reboot. c:\users\Administrator\Desktopfilemanagerclient.exe (Fake.Dropped.Malware) -> Delete on reboot. c:\users\Administrator\Desktopfkwp1.5.exe (Fake.Dropped.Malware) -> Delete on reboot. c:\users\Administrator\Desktopfkwp2.0.exe (Fake.Dropped.Malware) -> Delete on reboot. c:\users\Administrator\Desktopfwebd.exe (Fake.Dropped.Malware) -> Delete on reboot. c:\users\Administrator\DesktopFWebdEditor.exe (Fake.Dropped.Malware) -> Delete on reboot. c:\users\Administrator\DesktopTrojan.Win32.BlackBird.exe (Fake.Dropped.Malware) -> Delete on reboot. c:\users\Administrator\win.dll (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\svchost.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\lsass.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\smss.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\ctfmon.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\csrss.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\Services.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\Bot.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\Buckster.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\BEEIKA.EX (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\6VKQ322c.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\ntuser.com (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\1ow.dll (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\85rtkct.dll (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\nwizsrv.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\lhoioovb.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\ijuwvhnd.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\ms1210090251.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\winIogon.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\cftmon.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\thinksnet.exe (Adware.Agent) -> Delete on reboot. C:\Windows\Temp\696A.tmp (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\avsyscare.exe (Trojan.Agent) -> Delete on reboot. c:\users\Administrator\hdip.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\2_load.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\3_baracudanew.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\4_odb.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\5_odb.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\6_ldr.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\wnslogan.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\dknqpcjqhcj.dll (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\bmtor.sys (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\zhm14q9o.dat (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\0wl.tmp (Trojan.Patched) -> Delete on reboot. c:\users\Administrator\delself.bat (Malware.Trace) -> Delete on reboot. c:\users\Administrator\result.txt (Malware.Trace) -> Delete on reboot. C:\Windows\Temp\winlogan.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\ieobj.dll (Trojan.Zlob) -> Delete on reboot. c:\users\Administrator\nax.exe (Trojan.Downloader) -> Delete on reboot. c:\users\Administrator\balloon.txt (Malware.Trace) -> Delete on reboot. c:\users\Administrator\results.txt (Malware.Trace) -> Delete on reboot. C:\Windows\Temp\rasesnet.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\wavvsnet.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\rasesnet.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\wavvsnet.tmp (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\cmdinst.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\mshtml2.exe (Trojan.Dropper) -> Delete on reboot. C:\Windows\Temp\mshtml3.exe (Trojan.Dropper) -> Delete on reboot. C:\Windows\Temp\NDrv.exe (Trojan.Dropper) -> Delete on reboot. C:\Windows\Temp\xpre.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\xrun.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\xpre.tmp (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\xrun.tmp (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\winvsnet.exe (Rogue.Installer) -> Delete on reboot. C:\Windows\Temp\winvsnet.tmp (Rogue.Installer) -> Delete on reboot. C:\Windows\Temp\Cd1iC2cT.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\SuperBarSetup.exe (Adware.SuperBar) -> Delete on reboot. c:\users\Administrator\list.txt (Malware.Trace) -> Delete on reboot. c:\users\Administrator\ballon.txt (Malware.Trace) -> Delete on reboot. c:\users\Administrator\1.exe (Trojan.Dropper) -> Delete on reboot. c:\users\Administrator\lex.exe (Trojan.Dropper) -> Delete on reboot. c:\users\Administrator\win32.exe (Trojan.Dropper) -> Delete on reboot. c:\users\Administrator\win321.exe (Trojan.Dropper) -> Delete on reboot. c:\users\Administrator\wr-1-863 (Trojan.Dropper) -> Delete on reboot. c:\users\Administrator\ftpdll.dll (Trojan.Dropper) -> Delete on reboot. c:\users\Administrator\xXx.exe (Trojan.Downloader) -> Delete on reboot. c:\users\Administrator\win.exe (Trojan.Downloader) -> Delete on reboot. c:\users\Administrator\ie_updates3r.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\whoiscache.datwhoiscache.dat (Adware.WebDir) -> Delete on reboot. C:\Windows\Temp\ldr1.tmp (Trojan.Vundo) -> Delete on reboot. c:\users\Administrator\ntuser.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\revmodnpq.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\XPShieldSetup.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\decsysrox.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\UNICCodec.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\VideoTools.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\HDQuality.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\HDExtrem.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\Systeminit.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\software.php (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\s1265.php (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\wnmtmlyp.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\stdlan.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\Installer_sbd_en.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\cbxww.dll (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\WatchFree.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\smcheck.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\nyps4.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\wrdwn1 (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\wrdwn2 (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\wrdwn3 (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\wrdwn4 (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\wrdwn5 (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\wrdwn6 (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\wrdwn7 (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\wrdwn8 (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\wrdwn9 (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\stylrit0.tmp (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\DVDextraPL.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\viewer.codec.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\windfr.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\lowpower.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\smchk.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\ntdll64.dll (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\BhoNew.dll (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\dssc32.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\winpole32.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\mxqrf56g12.dat (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\a..exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\vistasp1.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\winxp_sp3.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\bindsrv2.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\atmadm2.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\lwpwer.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\bootmatrix.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\IcnOvrly.dll (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\stdstring.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\bindserv.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\AsuraflvCodec.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\DigitalHQ.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\QuickTiming.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\PlayMe.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\media.php (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\sfsrv.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\sflpt.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\get_file.php (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\VideoAccessCodecInstall.exe (Trojan.FakeAlert) -> Delete on reboot. |
27.06.2009, 15:28 | #3 |
| Malwarebyte Anti_Malware Logfile Teil 2 C:\Windows\Temp\c-setup.exe (Trojan.FakeAlert) -> Delete on reboot.
__________________C:\Windows\Temp\TotalSecure2009.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\winlognn.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\msfont32.dll (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\ropotok.cc (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\myconfig.php (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\new_rvsg.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\ax1BFE7.tmp (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\AdobeFlashPlayerHD.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\VideoTube.com.avi.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\AV2010Installer.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\FullBSCodecz.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\adultoriginal.exe (Trojan.FakeAlert) -> Delete on reboot. c:\users\AQi\Cookies\syssp.exe (Fake.Dropped.Malware) -> Delete on reboot. C:\Windows\Temp\hipomx.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\32power.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\looklook.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\svpower.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\taskmgr.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\vpncore.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\svchots.exe (Heuristics.Malware) -> Delete on reboot. C:\Windows\Temp\lprn32.exe (Trojan.Zlob) -> Delete on reboot. C:\Windows\Temp\startdrv.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\dmxonk.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\svhost.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. C:\Windows\Temp\poolsv.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. C:\Windows\Temp\winpower.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\64look.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\look32.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\serverserver.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\sv32.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\synsys.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\winAgent.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\ddxplugin.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\econf32.exe (Trojan.FakeAlert) -> Delete on reboot. c:\users\Administrator\msftp.dll (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\dnlsvc.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\cjphnmli.dat (Rootkit.Agent) -> Delete on reboot. C:\Windows\Temp\csrssc.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\vtgxpyci.dat (Rootkit.Sentinel) -> Delete on reboot. C:\Windows\Temp\XyVQsOCP.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\mmxvucwb.dat (Rootkit.Sentinel) -> Delete on reboot. C:\Windows\Temp\wmsieda.dll (Trojan.BHO) -> Delete on reboot. C:\Windows\Temp\uu1.rar (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\smses.exe (Trojan.Dropper) -> Delete on reboot. C:\Windows\Temp\svchos.exe (Trojan.Dropper) -> Delete on reboot. C:\Windows\Temp\stkoks.exe (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\dkauxservice.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\mnxfhean.dat (Rootkit.Sentinel) -> Delete on reboot. c:\users\Administrator\sysno32.exe (Trojan.Banker) -> Delete on reboot. C:\Windows\Temp\xxupdate.exe (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\xunxianqq.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\qrqwerwqer.dll (Trojan.PWS) -> Delete on reboot. C:\Windows\Temp\elementzx.dll (Trojan.PWS) -> Delete on reboot. C:\Windows\Temp\dtkcsly.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\rb6tb0jk.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\nod1.tmp (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\x67q340.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\asdacdseefen.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\LSASUIS.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\com16.exe (Worm.YahLover) -> Delete on reboot. C:\Windows\Temp\kxeqfk7w.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\Bifrost king al zing.exe (Backdoor.Bifrose) -> Delete on reboot. C:\Windows\Temp\manun.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\60325cahp25ca0.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\nsrbgxod.bak (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\msb.dll (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\dll1.tmp (Backdoor.Hupigon) -> Delete on reboot. C:\Windows\Temp\msgqueuelist.exe (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\tmp112.exe (Trojan.Downloader) -> Delete on reboot. c:\users\Administrator\FkNjDkbZB.exe (Trojan.Hiloti) -> Delete on reboot. c:\users\Administrator\kFnjyc.exe (Trojan.Hiloti) -> Delete on reboot. c:\users\Administrator\WcEaUBl.exe (Trojan.Hiloti) -> Delete on reboot. c:\users\Administrator\SwfQHtKX.exe (Trojan.Hiloti) -> Delete on reboot. c:\users\Administrator\zGQvxmf.exe (Trojan.Hiloti) -> Delete on reboot. c:\users\Administrator\TweIRdtF.exe (Trojan.Hiloti) -> Delete on reboot. c:\users\Administrator\pkKgOrzDm.exe (Trojan.Hiloti) -> Delete on reboot. C:\Windows\Temp\SP0O0L.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\w.exe (Trojan.Downloader) -> Delete on reboot. c:\users\Administrator\lzdf16.ini (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\jvwx2.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\k2fvpt.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\dll390.dll (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\dll906.dll (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\dll609.dll (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\aaa.exe (Password.Stealer) -> Delete on reboot. C:\Windows\Temp\ad13147.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\Admin8ver0408.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\game036.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\haochajian.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\s777.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\lorer.exe (Worm.AutoRun) -> Delete on reboot. C:\Windows\Temp\dosss11.dll (Adware.Cinmus) -> Delete on reboot. C:\Windows\Temp\DNFupdate.exe (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\gamepatch.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\gametl.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\tlSystem.gif (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\speedc~1.exe (Backdoor.Bifrose) -> Delete on reboot. C:\Windows\Temp\SPYYAHOO.exe (Virus.Sality) -> Delete on reboot. C:\Windows\Temp\Config.vbe (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\elementgj.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\wsaSystem.gif (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\Bifrost.exe (Backdoor.Bifrose) -> Delete on reboot. C:\Windows\Temp\002.JPG.exe (Backdoor.Bifrose) -> Delete on reboot. c:\users\Administrator\jjjydf16.ini (Worm.AutoRun) -> Delete on reboot. c:\users\Administrator\Winlogon.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\aehe.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\Darkstorm.exe (Backdoor.IRCBot) -> Delete on reboot. C:\Windows\Temp\Spread.exe (Password.Stealer) -> Delete on reboot. C:\Windows\Temp\SpreadFinal.exe (Password.Stealer) -> Delete on reboot. C:\Windows\Temp\rtv_winupd.exe (Virus.Sality) -> Delete on reboot. C:\Windows\Temp\Flu Burung.txt (Virus.Rungbu) -> Delete on reboot. C:\Windows\Temp\I_AM_EMO.gif---www.facebook.com (Trojan.Downloader) -> Delete on reboot. C:\Windows\system32\Config\Win.exe (IM.Worm) -> Delete on reboot. c:\users\Administrator\Datos de programa.exe (Worm.Venom) -> Delete on reboot. C:\Windows\Temp\DIALSYS.exe (Password.Stealer) -> Delete on reboot. C:\Windows\Temp\xccs.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\xcSystem.gif (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\mir1.mwv (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\SystemSecurity.exe (Rogue.SystemSecurity) -> Delete on reboot. c:\users\Administrator\ming9df16.ini (Worm.AutoRun) -> Delete on reboot. C:\Windows\Temp\MSAGNT32.dll (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\acpidisk.sys (Adware.Cinmus) -> Delete on reboot. C:\Windows\Temp\the.exe (Backdoor.Agent) -> Delete on reboot. C:\Windows\Temp\wincme.exe (Backdoor.Agent) -> Delete on reboot. C:\Windows\Temp\uhthn.exe (Backdoor.Agent) -> Delete on reboot. C:\Windows\Temp\fsrtdfyyvuu.exe (Backdoor.Hupigon) -> Delete on reboot. C:\Windows\Temp\sfjh3e87huid.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\kew52pe5.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\oji.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\elementpt.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\elementwlwz.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\SysDir.dat (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\wlwzSystem.gif (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\zxSystem.gif (Spyware.OnlineGames) -> Delete on reboot. c:\users\Administrator\vickv.exe (Backdoor.Tofsee) -> Delete on reboot. C:\Windows\Temp\aemrswoxcn.tmp (Trojan.Dropper) -> Delete on reboot. c:\users\Administrator\ngjer.exe (Worm.AutoRun) -> Delete on reboot. C:\Windows\Temp\dll171.dll (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\fff-ea190.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\ff29dgen.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\ExpressVids.exe (Trojan.DNSChanger) -> Delete on reboot. C:\Windows\Temp\BHVideo.exe (Trojan.DNSChanger) -> Delete on reboot. C:\Windows\Temp\vx_zxcz.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\wiaserv.exe (Trojan.Downloader) -> Delete on reboot. c:\users\AQi\SendTo\My Documents.com (Virus.Rungbu) -> Delete on reboot. C:\Windows\Temp\cssms32.exe (Backdoor.Agent) -> Delete on reboot. C:\Windows\Temp\Fuck.exe (Backdoor.Hupigon) -> Delete on reboot. C:\Windows\Temp\ywa_sfh.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\RemoteINF.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\system32\Config\sysrun.exe (Password.Stealer) -> Delete on reboot. C:\Windows\Temp\winupdate1.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\AntiFrost12.exe (Backdoor.Bifrose) -> Delete on reboot. C:\Windows\Temp\SGInit.exe (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\Instant-Access.exe (Adware.SmartBrowser) -> Delete on reboot. C:\Windows\Temp\OpenLink.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\dsad22.exe (Trojan.Dropper) -> Delete on reboot. C:\Windows\Temp\amxmodx.exe (Backdoor.Bifrose) -> Delete on reboot. C:\Windows\Temp\J-H4ck3R.exe (Backdoor.Bifrose) -> Delete on reboot. C:\Windows\Temp\snebar.v3.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\schvost.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\whzfofuh.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\qvod06.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\cmsetac.dll (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\ntdtcstp.dll (Backdoor.Bot) -> Delete on reboot. C:\Windows\Temp\swb0t.exe (Backdoor.Bot) -> Delete on reboot. C:\Windows\Temp\wdwsaSystem.gif (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\elementwdao.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\TEMP01.rar (Worm.P2P) -> Delete on reboot. C:\Windows\Temp\sfsdfdf.exe (Trojan.Ertfor) -> Delete on reboot. C:\Windows\Temp\AntiVirusCollection.exe (Worm.AutoRun) -> Delete on reboot. C:\Windows\Temp\HiddenFolder.exe (Worm.AutoRun) -> Delete on reboot. C:\Windows\Temp\New Folder.exe (Worm.AutoRun) -> Delete on reboot. C:\Windows\Temp\WofMgr.exe (Trojan.Downloader) -> Delete on reboot. c:\users\Administrator\lGokzd.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\Hav8.exe (Email.Worm) -> Delete on reboot. C:\Windows\Temp\Rks161.exe (Email.Worm) -> Delete on reboot. C:\Windows\Temp\Pca2.exe (Email.Worm) -> Delete on reboot. C:\Windows\Temp\cbSystem.gif (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\elementcb.dll (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\bf.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\pi.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\deploy.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\Services.exe (Password.Stealer) -> Delete on reboot. C:\Windows\Temp\filepages.sys (Trojan.Pidief) -> Delete on reboot. C:\Windows\Temp\temp.sys (Trojan.Pidief) -> Delete on reboot. C:\Windows\Temp\bifrost Virus_HaCkErS.exe (Backdoor.Bifrose) -> Delete on reboot. C:\Windows\Temp\qvodsetupplus.exe (Trojan.Downloader) -> Delete on reboot. c:\users\Administrator\xrt_wbig.exe (Backdoor.Bot) -> Delete on reboot. C:\Windows\Temp\wfsjowfdsaw.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\Dgpphpgl (Malware.Trace) -> Delete on reboot. C:\Windows\Temp\Yab.exe (Trojan.Yabinder) -> Delete on reboot. C:\Windows\Temp\YabHelp.chm (Trojan.Yabinder) -> Delete on reboot. C:\Windows\Temp\FreeHDplay.exe (Trojan.DNSChanger) -> Delete on reboot. C:\Windows\Temp\SeekingAlpha.exe (Trojan.DNSChanger) -> Delete on reboot. C:\Windows\Temp\viply.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\0d8be6faed971.exe (Backdoor.Bifrose) -> Delete on reboot. C:\Windows\Temp\0d8be6faed971.jpg (Backdoor.Bifrose) -> Delete on reboot. C:\Windows\Temp\temparation.tmp (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\qqsgupdate.exe (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\wqerqwqqsg.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\AccessMV.exe (Trojan.DNSChanger) -> Delete on reboot. C:\Windows\Temp\Saudi-Hack Forum Binder 1.2.exe (Backdoor.Bifrose) -> Delete on reboot. C:\Windows\Temp\servicos.exe (Trojan.Banker) -> Delete on reboot. C:\Windows\Temp\jksf78256ebvfj.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\qo7purzzz.exe (Trojan.Downloader) -> Delete on reboot. c:\users\Administrator\JumpbyF9.exe (Backdoor.Bifrose) -> Delete on reboot. C:\Windows\Temp\winN2fpnLv.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\S0L1NG3N.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\lr4x.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\Internet Explorer.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\Result_new_.exe (Trojan.Downloader) -> Delete on reboot. c:\users\Administrator\winit32.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\jxinit.dat (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\xdx9qx7p.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\0032.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\lnvsvc32.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\small69.exe (Trojan.Dropper) -> Delete on reboot. C:\Windows\Temp\Intrenet Explorer.lnk (Malware.Trace) -> Delete on reboot. C:\Windows\Temp\cavcho.exe (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\First.K.exe (Backdoor.Hupigon) -> Delete on reboot. C:\Windows\Temp\PINTLGRB.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\Strimage.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\ssave.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\sexgirl.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\xoxx.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\Winostle.exe (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\windoss.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\llly666.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\mypic00.jpeg.exe (Keylogger.Ardamax) -> Delete on reboot. C:\Windows\Temp\~162a25.t (Trojan.Dropper) -> Delete on reboot. C:\Windows\Temp\lqbz828.exe (Trojan.Dropper) -> Delete on reboot. C:\Windows\Temp\small68.exe (Trojan.Dropper) -> Delete on reboot. c:\users\Administrator\wSHLuFPbS.exe (Trojan.FakeAlert) -> Delete on reboot. C:\Windows\Temp\sysstem.exe (Trojan.Ransom) -> Delete on reboot. C:\Windows\Temp\ope4.exe (Trojan.Dropper) -> Delete on reboot. C:\Windows\Temp\ope5.exe (Trojan.Dropper) -> Delete on reboot. C:\Windows\Temp\usrinit_t.exe (Trojan.Dropper) -> Delete on reboot. c:\users\Administrator\me.pif (Worm.AutoRun) -> Delete on reboot. C:\Windows\Temp\xPWLWO.exe (Password.Stealer) -> Delete on reboot. C:\Windows\Temp\syster.exe (Trojan.Dropper) -> Delete on reboot. C:\Windows\Temp\ZPWGameRecord.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\podmena.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\futu.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\mssg.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\cvbasef0.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\svehost.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\h8my7hut.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\uqgq9er.dll (Spyware.OnlineGames) -> Delete on reboot. C:\Windows\Temp\selvice.exe (Rootkit.Dropper) -> Delete on reboot. c:\users\Administrator\dasdada.exe (Backdoor.Bot) -> Delete on reboot. c:\users\Administrator\dasd.exe (Backdoor.Bot) -> Delete on reboot. C:\Windows\Temp\___spynet___.rat (Backdoor.Agent) -> Delete on reboot. C:\Windows\Temp\ser7-fede.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\serveraaaaa.exe (Backdoor.Bifrose) -> Delete on reboot. C:\Windows\Temp\spools.exe (Trojan.Dropper) -> Delete on reboot. C:\Windows\Temp\all patch.exe (Backdoor.Bifrose) -> Delete on reboot. C:\Windows\Temp\dll125.dll (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\EXE Evil.exe (Trojan.Agent) -> Delete on reboot. C:\Windows\Temp\defender32.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\awer0.bat (Malware.Trace) -> Delete on reboot. C:\Windows\Temp\zincite.log (Worm.MyDoomLog) -> Delete on reboot. C:\Windows\Temp\Ctsnebs.log (Worm.MyDoomLog) -> Delete on reboot. C:\Windows\Temp\speels.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\SGCQexe.exe (Trojan.Downloader) -> Delete on reboot. C:\Windows\Temp\FEA1RZ.exe (Backdoor.Bifrose) -> Delete on reboot. C:\Windows\Temp\FEARZ.exe (Backdoor.Bifrose) -> Delete on reboot. c:\users\Administrator\ming9df32.ini (Trace.PopHot) -> Delete on reboot. c:\users\Administrator\oashdihasidhasuidhiasdhiashdiuasdhasd (Trace.Pandex) -> Delete on reboot. C:\Windows\Temp\x0nE-.exe (Backdoor.Bifrose) -> Delete on reboot. C:\Windows\system32\Config\svchost.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. C:\Windows\system32\Config\csrss.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. C:\Windows\system32\Config\lsass.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. C:\Windows\system32\Config\Services.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. C:\Windows\system32\Config\smss.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. C:\Windows\system32\Config\Winlogon.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. C:\Windows\system32\Config\Explorer.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. c:\users\Administrator\Explorer.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. C:\Windows\system32\Config\spoolsv.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. c:\users\Administrator\spoolsv.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. C:\Windows\system32\Config\dllhost.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. c:\users\Administrator\dllhost.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. C:\Windows\system32\Config\msiexec.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. c:\users\Administrator\msiexec.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. C:\Windows\system32\Config\ctfmon.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. C:\Windows\system32\Config\Userinit.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. c:\users\Administrator\Userinit.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. C:\Windows\system32\Config\rundll32.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. c:\users\Administrator\rundll32.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot. c:\windows\system32\MSIVXbcxgqktclveuindtetoaexieplnkjkqv.dll (Trojan.Agent) -> Quarantined and deleted successfully. |
Themen zu HiJacK log file+Malware Log - oft Bluescreen/Brenner fkt. nicht etc. HELP! |
adobe, aufrufe, bho, bluescree, canon, dateisystem, defender, dsl, fehler, g data, google, help, hijack, home, internet, internet explorer, konvertieren, launch, log file, magix, malware, malwarebytes' anti-malware, monitor, nicht angezeigt, pdf-datei, plug-in, problem, remote control, rundll, scan, software, stick, system, tastatur, trojaner, updates, vista |