Das ESET hat jetzt geklappt, hier der Logfile dazu.
Die anderen beiden Logfiles hatte ich ja bereits gepostet.
Code:
Alles auswählen Aufklappen ATTFilter
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=0122fe402184734a905cb304995b0055
# engine=15201
# end=stopped
# remove_checked=false
# archives_checked=true
# unwanted_checked=false
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2013-09-20 06:38:11
# local_time=2013-09-20 08:38:11 (+0100, Westeuropäische Sommerzeit)
# country="Germany"
# lang=1033
# osver=5.1.2600 NT Service Pack 3
# compatibility_mode=1799 16775165 100 95 23786 245125581 16048 0
# scanned=28425
# found=4
# cleaned=0
# scan_time=10402
sh=C0F943A3C0969C20FD62D1DA9BE7F084D6A8AB15 ft=0 fh=0000000000000000 vn="Java/Exploit.Agent.OZR trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\16\1753b850-3b1b9e7c"
sh=2321ADC1B614BF3BCD0EFEED73A246B70911176E ft=0 fh=0000000000000000 vn="probably a variant of Java/TrojanDownloader.OpenStream.NAS trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\31\52961cdf-32bcd0a1"
sh=9BF1C0A46560D87E5F9821E81E47863263CA9806 ft=0 fh=0000000000000000 vn="Java/Agent.BZ trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\50\63933e32-2594ad78"
sh=D1CCA77F31096E28A4663C1B3498FE9FC00FAAD3 ft=0 fh=0000000000000000 vn="a variant of Java/TrojanDownloader.OpenStream.NAS trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\52\6b23e0b4-7f7b87ff"
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=0122fe402184734a905cb304995b0055
# engine=15204
# end=stopped
# remove_checked=false
# archives_checked=true
# unwanted_checked=false
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2013-09-21 01:51:15
# local_time=2013-09-21 03:51:15 (+0100, Westeuropäische Sommerzeit)
# country="Germany"
# lang=1033
# osver=5.1.2600 NT Service Pack 3
# compatibility_mode=1799 16775165 100 95 27953 245151565 19553 0
# scanned=36329
# found=4
# cleaned=0
# scan_time=25721
sh=C0F943A3C0969C20FD62D1DA9BE7F084D6A8AB15 ft=0 fh=0000000000000000 vn="Java/Exploit.Agent.OZR trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\16\1753b850-3b1b9e7c"
sh=2321ADC1B614BF3BCD0EFEED73A246B70911176E ft=0 fh=0000000000000000 vn="probably a variant of Java/TrojanDownloader.OpenStream.NAS trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\31\52961cdf-32bcd0a1"
sh=9BF1C0A46560D87E5F9821E81E47863263CA9806 ft=0 fh=0000000000000000 vn="Java/Agent.BZ trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\50\63933e32-2594ad78"
sh=D1CCA77F31096E28A4663C1B3498FE9FC00FAAD3 ft=0 fh=0000000000000000 vn="a variant of Java/TrojanDownloader.OpenStream.NAS trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\52\6b23e0b4-7f7b87ff"
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=0122fe402184734a905cb304995b0055
# engine=15219
# end=stopped
# remove_checked=false
# archives_checked=true
# unwanted_checked=false
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2013-09-22 04:28:34
# local_time=2013-09-22 06:28:34 (+0100, Westeuropäische Sommerzeit)
# country="Germany"
# lang=1033
# osver=5.1.2600 NT Service Pack 3
# compatibility_mode=1799 16775165 100 95 6707 245290604 0 0
# scanned=33944
# found=4
# cleaned=0
# scan_time=6262
sh=C0F943A3C0969C20FD62D1DA9BE7F084D6A8AB15 ft=0 fh=0000000000000000 vn="Java/Exploit.Agent.OZR trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\16\1753b850-3b1b9e7c"
sh=2321ADC1B614BF3BCD0EFEED73A246B70911176E ft=0 fh=0000000000000000 vn="probably a variant of Java/TrojanDownloader.OpenStream.NAS trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\31\52961cdf-32bcd0a1"
sh=9BF1C0A46560D87E5F9821E81E47863263CA9806 ft=0 fh=0000000000000000 vn="Java/Agent.BZ trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\50\63933e32-2594ad78"
sh=D1CCA77F31096E28A4663C1B3498FE9FC00FAAD3 ft=0 fh=0000000000000000 vn="a variant of Java/TrojanDownloader.OpenStream.NAS trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\52\6b23e0b4-7f7b87ff"
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=0122fe402184734a905cb304995b0055
# engine=15219
# end=stopped
# remove_checked=false
# archives_checked=true
# unwanted_checked=false
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2013-09-22 06:41:08
# local_time=2013-09-22 08:41:08 (+0100, Westeuropäische Sommerzeit)
# country="Germany"
# lang=1033
# osver=5.1.2600 NT Service Pack 3
# compatibility_mode=1799 16775165 100 95 14661 245298558 7278 0
# scanned=34037
# found=4
# cleaned=0
# scan_time=7824
sh=C0F943A3C0969C20FD62D1DA9BE7F084D6A8AB15 ft=0 fh=0000000000000000 vn="Java/Exploit.Agent.OZR trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\16\1753b850-3b1b9e7c"
sh=2321ADC1B614BF3BCD0EFEED73A246B70911176E ft=0 fh=0000000000000000 vn="probably a variant of Java/TrojanDownloader.OpenStream.NAS trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\31\52961cdf-32bcd0a1"
sh=9BF1C0A46560D87E5F9821E81E47863263CA9806 ft=0 fh=0000000000000000 vn="Java/Agent.BZ trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\50\63933e32-2594ad78"
sh=D1CCA77F31096E28A4663C1B3498FE9FC00FAAD3 ft=0 fh=0000000000000000 vn="a variant of Java/TrojanDownloader.OpenStream.NAS trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\52\6b23e0b4-7f7b87ff"
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=0122fe402184734a905cb304995b0055
# engine=15222
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=false
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2013-09-23 08:14:13
# local_time=2013-09-23 10:14:13 (+0100, Westeuropäische Sommerzeit)
# country="Germany"
# lang=1033
# osver=5.1.2600 NT Service Pack 3
# compatibility_mode=1799 16775165 100 95 47982 245390543 84913 0
# scanned=371957
# found=6
# cleaned=0
# scan_time=47664
sh=C0F943A3C0969C20FD62D1DA9BE7F084D6A8AB15 ft=0 fh=0000000000000000 vn="Java/Exploit.Agent.OZR trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\16\1753b850-3b1b9e7c"
sh=2321ADC1B614BF3BCD0EFEED73A246B70911176E ft=0 fh=0000000000000000 vn="probably a variant of Java/TrojanDownloader.OpenStream.NAS trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\31\52961cdf-32bcd0a1"
sh=9BF1C0A46560D87E5F9821E81E47863263CA9806 ft=0 fh=0000000000000000 vn="Java/Agent.BZ trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\50\63933e32-2594ad78"
sh=D1CCA77F31096E28A4663C1B3498FE9FC00FAAD3 ft=0 fh=0000000000000000 vn="a variant of Java/TrojanDownloader.OpenStream.NAS trojan" ac=I fn="C:\Dokumente und Einstellungen\Hannes\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\52\6b23e0b4-7f7b87ff"
sh=E440824C9AB6BCFF1AEEE8088A3E5DF2590C3481 ft=1 fh=d395843df9c24ec2 vn="probably a variant of Win32/IRCBot.JWAPGDK trojan" ac=I fn="D:\Eigene Dateien\klavier ding\Setup_ForteFree.EXE"
sh=E440824C9AB6BCFF1AEEE8088A3E5DF2590C3481 ft=1 fh=d395843df9c24ec2 vn="probably a variant of Win32/IRCBot.JWAPGDK trojan" ac=I fn="F:\Eigene Dateien\klavier ding\Setup_ForteFree.EXE"
__________________