Code:
Alles auswählen Aufklappen ATTFilter
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Database version: 4707
Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512
28.09.2010 05:23:52
mbam-log-2010-09-28 (05-23-52).txt
Scan type: Full scan (C:\|E:\|)
Objects scanned: 224080
Time elapsed: 53 minute(s), 37 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 2
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
C:\Program Files\SogouInput\5.0.1.4185\SogouCloud.exe (Trojan.Downloader) -> No action taken.
C:\WINDOWS\winlogon.exe.vir (Trojan.Agent) -> No action taken.
Code:
Alles auswählen Aufklappen ATTFilter
SUPERAntiSpyware Scan Log
hxxp://www.superantispyware.com
Generated 09/28/2010 at 12:58 PM
Application Version : 4.43.1000
Core Rules Database Version : 5593
Trace Rules Database Version: 3404
Scan type : Complete Scan
Total Scan Time : 00:52:17
Memory items scanned : 467
Memory threats detected : 0
Registry items scanned : 5101
Registry threats detected : 0
File items scanned : 80261
File threats detected : 65
Adware.Tracking Cookie
.atdmt.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.atdmt.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.adtech.de [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.doubleclick.net [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.adfarm1.adition.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.webmasterplan.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.specificclick.net [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.specificclick.net [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.specificclick.net [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.specificclick.net [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.specificclick.net [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.specificclick.net [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.specificclick.net [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.adviva.net [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
ad.yieldmanager.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
ad.yieldmanager.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.bs.serving-sys.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.serving-sys.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.serving-sys.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.serving-sys.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.serving-sys.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.serving-sys.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.serving-sys.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.tradedoubler.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.tradedoubler.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.tradedoubler.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.zanox-affiliate.de [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.zanox.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
statse.webtrendslive.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.atdmt.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
.atdmt.com [ C:\Documents and Settings\Superjinchi\Application Data\Mozilla\Firefox\Profiles\yb0psd51.default\cookies.sqlite ]
C:\Documents and Settings\Superjinchi\Cookies\superjinchi@ad.wsod[2].txt
C:\Documents and Settings\Superjinchi\Cookies\superjinchi@atdmt[2].txt
C:\Documents and Settings\Superjinchi\Cookies\superjinchi@msnportal.112.2o7[1].txt
a.ads2.msads.net [ C:\Documents and Settings\vvjj\Application Data\Macromedia\Flash Player\#SharedObjects\YJKJN8H5 ]
ia.media-imdb.com [ C:\Documents and Settings\vvjj\Application Data\Macromedia\Flash Player\#SharedObjects\YJKJN8H5 ]
imagesrv.adition.com [ C:\Documents and Settings\vvjj\Application Data\Macromedia\Flash Player\#SharedObjects\YJKJN8H5 ]
Trojan.Dropper/Sys-NV
C:\PROGRAM FILES\TENCENT\QQ\BIN\SELFUPDATE.EXE
Trojan.Agent/Gen-Nullo[Short]
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP12\A0008904.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007900.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007932.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007933.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007935.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007936.AX
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007937.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007938.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007939.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007940.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007941.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007942.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007943.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007944.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007946.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007949.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007950.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007951.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007953.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007954.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007955.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007956.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007957.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007958.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007959.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007960.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{F51B535D-3DD7-4FBA-AC31-C917970FCB91}\RP6\A0007966.EXE