![]() |
| |||||||
Plagegeister aller Art und deren Bekämpfung: MBAM findet Malware: C:\DelUS.bat - Was tun?Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() |
| |
| | #1 | |
| /// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | MBAM findet Malware: C:\DelUS.bat - Was tun? Ich hab doch geschrieben, dass der TDSS-Killer oft legitime anzeigt. So auch hier. Dann bitte jetzt CF ausführen: ComboFix Ein Leitfaden und Tutorium zur Nutzung von ComboFix
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat! Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie Zitat:
__________________ Logfiles bitte immer in CODE-Tags posten |
| | #2 | |
![]() ![]() ![]() | MBAM findet Malware: C:\DelUS.bat - Was tun?Zitat:
Aber was soll's, das ist das Log von ComboFix: Code:
ATTFilter ComboFix 12-01-02.01 - Georg Malsam 02.01.2012 14:57:31.1.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.49.1031.18.1023.543 [GMT 1:00]
ausgeführt von:: c:\dokumente und einstellungen\Georg Malsam\Desktop\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7}
.
Achtung - Auf diesem PC ist keine Wiederherstellungskonsole installiert !!
.
.
(((((((((((((((((((((((((((((((((((( Weitere Löschungen ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\dokumente und einstellungen\All Users\Anwendungsdaten\TEMP
c:\dokumente und einstellungen\All Users\Anwendungsdaten\TEMP\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\PostBuild.exe
c:\dokumente und einstellungen\All Users\Anwendungsdaten\TEMP\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\Setup.exe
c:\dokumente und einstellungen\Default User\WINDOWS
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\1.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\a.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\b.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\c.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\d.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\e.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\f.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\g.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\h.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\i.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\J.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\k.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\l.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\m.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\mru.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\n.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\o.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\p.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\q.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\r.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\s.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\t.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\u.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\v.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\w.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\x.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\y.xml
c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\PriceGong\Data\z.xml
c:\dokumente und einstellungen\Georg Malsam\WINDOWS
c:\windows\IsUn0407.exe
c:\windows\system32\config\systemprofile\WINDOWS
c:\windows\unin0407.exe
.
.
((((((((((((((((((((((( Dateien erstellt von 2011-12-02 bis 2012-01-02 ))))))))))))))))))))))))))))))
.
.
2012-01-01 21:35 . 2011-09-16 15:05 11137024 ----a-w- c:\windows\system32\libmfxsw32.dll
2012-01-01 21:34 . 2012-01-01 21:36 -------- d-----w- c:\dokumente und einstellungen\All Users\Anwendungsdaten\AVS4YOU
2012-01-01 21:20 . 2006-09-26 12:57 28672 ----a-w- c:\windows\system32\AVEQT.dll
2012-01-01 21:20 . 2004-12-20 15:19 129024 ----a-w- c:\windows\system32\AVERM.dll
2011-12-29 15:02 . 2011-12-29 15:02 -------- d-----w- c:\programme\ESET
2011-12-21 17:23 . 2011-12-28 18:33 -------- d-----w- c:\dokumente und einstellungen\All Users\CyberLink
2011-12-21 16:58 . 2011-12-21 17:03 -------- d-----w- c:\windows\uninstall
2011-12-21 16:23 . 2011-12-21 16:23 -------- d-----w- c:\dokumente und einstellungen\All Users\Anwendungsdaten\SmartSound Software Inc
2011-12-21 16:23 . 2011-12-21 16:23 -------- d-----w- c:\programme\SmartSound Software
2011-12-21 16:22 . 2011-12-21 16:22 -------- d-----w- c:\dokumente und einstellungen\Besitzer\Startmenü
2011-12-18 15:56 . 2011-12-18 15:56 -------- d-----w- c:\dokumente und einstellungen\Georg Malsam\Lokale Einstellungen\Anwendungsdaten\FILSH_Media_GmbH
2011-12-18 15:56 . 2011-12-18 15:56 -------- d-----w- c:\programme\FILSHtray
2011-12-04 19:36 . 2011-12-04 19:37 -------- d-----w- C:\InDesign CS2 Tryout
.
.
.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-01-01 20:45 . 2005-01-27 08:31 17408 ----a-w- c:\windows\system32\drivers\USBCRFT.SYS
2011-12-10 14:24 . 2010-07-25 06:06 20464 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-12-08 16:17 . 2011-11-07 20:51 134856 ----a-w- c:\windows\system32\drivers\avipbb.sys
2011-11-23 14:40 . 2005-01-27 03:59 1859712 ----a-w- c:\windows\system32\win32k.sys
2011-11-18 06:51 . 2011-05-18 15:18 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-11-04 19:13 . 2005-01-27 03:59 916992 ----a-w- c:\windows\system32\wininet.dll
2011-11-04 19:13 . 2005-01-27 03:59 43520 ----a-w- c:\windows\system32\licmgr10.dll
2011-11-04 19:13 . 2005-01-27 03:59 1469440 ------w- c:\windows\system32\inetcpl.cpl
2011-11-04 11:23 . 2005-01-27 03:59 385024 ----a-w- c:\windows\system32\html.iec
2011-11-01 16:07 . 2005-01-27 03:59 1288704 ----a-w- c:\windows\system32\ole32.dll
2011-10-28 05:31 . 2005-01-27 03:59 33280 ----a-w- c:\windows\system32\csrsrv.dll
2011-10-26 10:49 . 2004-08-04 00:50 2029568 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-10-26 10:49 . 2004-08-04 00:50 2151424 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-10-24 13:29 . 2011-10-24 13:29 94208 ----a-w- c:\windows\system32\QuickTimeVR.qtx
2011-10-24 13:29 . 2011-10-24 13:29 69632 ----a-w- c:\windows\system32\QuickTime.qts
2011-10-22 11:21 . 2011-10-22 11:21 65536 ----a-w- c:\windows\system32\frapsvid.dll
2011-10-19 15:56 . 2011-11-07 20:51 74640 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2011-10-19 15:56 . 2011-11-07 20:51 36000 ----a-w- c:\windows\system32\drivers\avkmgr.sys
2011-10-18 11:13 . 2005-01-27 03:59 186880 ----a-w- c:\windows\system32\encdec.dll
2011-10-10 14:22 . 2005-01-26 20:09 692736 ----a-w- c:\windows\system32\inetcomm.dll
2011-10-12 07:13 . 2011-04-06 10:35 134104 ----a-w- c:\programme\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((( Autostartpunkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Creative Detector"="c:\programme\Creative\MediaSource\Detector\CTDetect.exe" [2004-12-02 102400]
"WMPNSCFG"="c:\programme\Windows Media Player\WMPNSCFG.exe" [2006-11-03 204288]
"Skype"="c:\programme\Skype\Phone\Skype.exe" [2011-11-09 17049736]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ATIPTA"="c:\programme\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2005-01-12 344064]
"Dit"="Dit.exe" [2004-07-20 90112]
"AGRSMMSG"="AGRSMMSG.exe" [2004-10-08 88363]
"Keyboard Status"="c:\progra~1\Medion\KeyStat\KeyStat.exe" [2005-01-25 411648]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"PCMService"="c:\programme\Home Cinema\PowerCinema\PCMService.exe" [2005-02-21 118926]
"CanonSolutionMenu"="c:\programme\Canon\SolutionMenu\CNSLMAIN.exe" [2007-05-14 644696]
"SSBkgdUpdate"="c:\programme\Gemeinsame Dateien\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2006-10-25 210472]
"OpwareSE4"="c:\programme\ScanSoft\OmniPageSE4\OpwareSE4.exe" [2007-02-04 79400]
"HP Software Update"="c:\programme\HP\HP Software Update\HPWuSchd2.exe" [2011-01-12 49208]
"phc700"="c:\windows\vphc700.exe" [2005-07-20 339968]
"Adobe ARM"="c:\programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe" [2011-06-06 937920]
"UVS10 Preload"="c:\programme\Ulead Systems\Ulead VideoStudio SE DVD\uvPL.exe" [2006-08-09 36864]
"SunJavaUpdateSched"="c:\programme\Gemeinsame Dateien\Java\Java Update\jusched.exe" [2011-06-09 254696]
"APSDaemon"="c:\programme\Gemeinsame Dateien\Apple\Apple Application Support\APSDaemon.exe" [2011-09-27 59240]
"QuickTime Task"="f:\quicktime\qttask.exe" [2011-10-24 421888]
"avgnt"="c:\programme\Avira\AntiVir Desktop\avgnt.exe" [2011-10-19 258512]
"FILSHtray"="c:\programme\FILSHtray\FILSHtray.exe" [2011-12-16 596992]
"UpdatePDRShortCut"="f:\cyberlink\PowerDirector10\PowerDirector10\MUITransfer\MUIStartMenu.exe" [2010-09-17 222504]
"TrayServer"="f:\magix\Video_deluxe_MX_Premium_Download-Version\TrayServer_de.exe" [2008-08-07 90112]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
c:\dokumente und einstellungen\Georg Malsam\Startmenü\Programme\Autostart\
OpenOffice.org 3.3.lnk - c:\programme\OpenOffice.org 3\program\quickstart.exe [2010-12-13 1198592]
.
c:\dokumente und einstellungen\All Users\Startmenü\Programme\Autostart\
BlueSoleil.lnk - c:\programme\IVT Corporation\BlueSoleil\BlueSoleil.exe [2005-2-21 1048576]
HP Digital Imaging Monitor.lnk - c:\programme\HP\Digital Imaging\bin\hpqtra08.exe [2008-10-16 214360]
Microsoft Office.lnk - c:\programme\Microsoft Office\Office\OSA9.EXE [1999-4-29 65588]
TrayMin700.exe.lnk - c:\programme\Philips\SPC 700NC PC Camera\TrayMin700.exe [2011-3-15 278528]
VideoCam Suite.lnk - c:\programme\Gemeinsame Dateien\Panasonic\VideoCam Suite AutoStart\VideoCamSuiteAutoStart.exe [2011-2-19 349600]
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"c:\\WINDOWS\\system32\\sessmgr.exe"=
"c:\\Programme\\Messenger\\msmsgs.exe"=
"c:\\WINDOWS\\system32\\fxsclnt.exe"=
"c:\\Programme\\IVT Corporation\\BlueSoleil\\BlueSoleil.exe"=
"f:\\Programme\\TRNY2\\NYT2.exe"=
"c:\\WINDOWS\\system32\\dpnsvr.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"f:\\Programme\\Photo Story 3 for Windows\\PhotoStory3.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Programme\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Programme\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Programme\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Dokumente und Einstellungen\\Georg Malsam\\Lokale Einstellungen\\Anwendungsdaten\\Google\\Chrome\\Application\\chrome.exe"=
"c:\\Programme\\Google\\Google Earth\\plugin\\geplugin.exe"=
"c:\\Programme\\Gemeinsame Dateien\\Apple\\Apple Application Support\\WebKit2WebProcess.exe"=
"c:\\Programme\\Skype\\Phone\\Skype.exe"=
"c:\\WINDOWS\\system32\\dxdiag.exe"=
.
R1 avkmgr;avkmgr;c:\windows\system32\drivers\avkmgr.sys [07.11.2011 21:51 36000]
R2 acedrv10;acedrv10;c:\windows\system32\drivers\ACEDRV10.sys [27.07.2007 09:13 330144]
R2 acehlp10;acehlp10;c:\windows\system32\drivers\acehlp10.sys [27.07.2007 11:46 251680]
R2 AntiVirSchedulerService;Avira Planer;c:\programme\Avira\AntiVir Desktop\sched.exe [07.11.2011 21:51 86224]
R2 Fabs;FABS - Helping agent for MAGIX media database;c:\programme\Gemeinsame Dateien\MAGIX Services\Database\bin\FABS.exe [24.05.2011 10:33 1840128]
R3 3xHybrid;3xHybrid service;c:\windows\system32\drivers\3xHybrid.sys [14.02.2005 19:51 666368]
R3 cmudax;C-Media High Definition Audio Interface;c:\windows\system32\drivers\cmudax.sys [27.01.2005 07:37 1272000]
R3 phc700;USB PC Camera (phc700);c:\windows\system32\drivers\phc700.sys [15.03.2011 07:52 541568]
R3 wbscr;Winbond Smartcard Reader for I/O;c:\windows\system32\drivers\wbscr.sys [27.01.2005 09:37 19928]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [18.03.2010 12:16 130384]
S2 gupdate;Google Update Service (gupdate);c:\programme\Google\Update\GoogleUpdate.exe [12.02.2011 10:15 136176]
S3 CardReaderFilter;Card Reader Filter;c:\windows\system32\drivers\USBCRFT.SYS [27.01.2005 09:31 17408]
S3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\programme\Gemeinsame Dateien\MAGIX Services\Database\bin\fbserver.exe [26.04.2011 13:54 2702848]
S3 gupdatem;Google Update-Dienst (gupdatem);c:\programme\Google\Update\GoogleUpdate.exe [12.02.2011 10:15 136176]
S3 smrtdrv;SMART Technologies Inc. Mirror Driver;c:\windows\system32\drivers\smrtdrv.sys [22.04.2004 10:38 2432]
S3 StkCMini;Syntek AVStream USB2.0 ATV;c:\windows\system32\drivers\StkCMini.sys [29.07.2011 08:19 1521544]
S3 Synnetdrv;SynchronEyes network Service;c:\windows\system32\DRIVERS\Synnetdrv.sys --> c:\windows\system32\DRIVERS\Synnetdrv.sys [?]
S3 SynnetdrvMP;SynnetdrvMP;c:\windows\system32\DRIVERS\Synnetdrv.sys --> c:\windows\system32\DRIVERS\Synnetdrv.sys [?]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [18.03.2010 12:16 753504]
.
--- Andere Dienste/Treiber im Speicher ---
.
*NewlyCreated* - 76391944
*Deregistered* - 76391944
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
tapisrv REG_MULTI_SZ Tapisrv
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
HPService REG_MULTI_SZ HPSLPSVC
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
Inhalt des "geplante Tasks" Ordners
.
2011-12-30 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\programme\Apple Software Update\SoftwareUpdate.exe [2011-06-01 16:57]
.
2012-01-01 c:\windows\Tasks\GoogleUpdateTaskMachineCore1cc8ea12e10ab68.job
- c:\programme\Google\Update\GoogleUpdate.exe [2011-02-12 09:15]
.
2012-01-01 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2450094404-4060576230-1036702018-1008Core1cc9186a9965a70.job
- c:\dokumente und einstellungen\Georg Malsam\Lokale Einstellungen\Anwendungsdaten\Google\Update\GoogleUpdate.exe [2011-01-20 15:52]
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page =
uSearchURL,(Default) = hxxp://toolbar.ask.com/toolbarv/askRedirect?o=13925&gct=&gc=1&q=%s
Trusted Zone: popcap.com\www
TCP: DhcpNameServer = 62.117.1.25 89.16.129.25
DPF: {85C86CCC-2158-4123-9C7D-785190CED875} - hxxps://cache-static.scoyo.com/LMS/dp/dpLaunchPlugin.cab
DPF: {E1342154-4889-42B5-BEF6-19237577048F} - hxxp://gamescenter.kabeleins.de/online/online2/insaniquarium/oberongamesloader.cab
FF - ProfilePath - c:\dokumente und einstellungen\Georg Malsam\Anwendungsdaten\Mozilla\Firefox\Profiles\cllljynt.default\
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
HKLM-Run-Cmaudio - cmicnfg.cpl
SafeBoot-SolutoService
AddRemove-KeyStat - c:\windows\unin0407.exe
AddRemove-Microsoft Interactive Training - c:\windows\IsUn0407.exe
AddRemove-Uninstall_is1 - c:\programme\Gemeinsame Dateien\DVDVideoSoft\unins000.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, hxxp://www.gmer.net
Rootkit scan 2012-01-02 15:14
Windows 5.1.2600 Service Pack 3 NTFS
.
Scanne versteckte Prozesse...
.
Scanne versteckte Autostarteinträge...
.
Scanne versteckte Dateien...
.
Scan erfolgreich abgeschlossen
versteckte Dateien: 0
.
**************************************************************************
.
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, hxxp://www.gmer.net
Windows 5.1.2600 Disk: WDC_WD1600JD-00HBB0 rev.08.02D08 -> Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-22
.
device: opened successfully
user: MBR read successfully
kernel: MBR read successfully
user != kernel MBR !!!
.
**************************************************************************
.
--------------------- Durch laufende Prozesse gestartete DLLs ---------------------
.
- - - - - - - > 'winlogon.exe'(528)
c:\windows\system32\Ati2evxx.dll
.
Zeit der Fertigstellung: 2012-01-02 15:20:14
ComboFix-quarantined-files.txt 2012-01-02 14:20
.
Vor Suchlauf: 10 Verzeichnis(se), 21.198.655.488 Bytes frei
Nach Suchlauf: 11 Verzeichnis(se), 21.616.812.032 Bytes frei
.
- - End Of File - - 2DA30849EED573427C0566CB9A57F34A
|
![]() |
| Themen zu MBAM findet Malware: C:\DelUS.bat - Was tun? |
| administrator, ahnung, anti-malware, autostart, dateien, dateisystem, delus.bat, entfernt, explorer, fund, gelöscht, guten, heuristiks/extra, heuristiks/shuriken, komplett, logdatei, malware, malwarebytes, malwarebytes anti-malware, mbam, quarantäne, scan, seite, service, service pack 3, speicher, version, virus, was tun?, windows xp |