Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 18.06.2005, 22:31   #1
KRS96
 
TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C - Frage

TR/Buddy.F;TR/Click.Age.DB.Dll;TR/Dldr.Spybi.1;TR/Stervice.C



OK dann eben einen neuen thread...
HI leute ich habe auch diese 3 trojaner AV guard meldet sie mir ich lösche...und nach ca. 1 min kommen die meldungen wieder (ich will dafür kienen neuen thread aufmachen) kann mir irgendwer helfen?? (bzw. genau sagen was ich machen muss?!

Logfile of HijackThis v1.99.1
Scan saved at 22:28:21, on 18.06.2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
E:\Sygate\SPF\smc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programme\Gemeinsame Dateien\EPSON\EBAPI\eEBSVC.exe
E:\AVPersonal\AVGUARD.EXE
E:\AVPersonal\AVWUPSRV.EXE
C:\Programme\Gemeinsame Dateien\EPSON\EBAPI\SAgent2.exe
C:\Programme\Ahead\InCD\InCDsrv.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\kvmisvc.exe
C:\WINDOWS\Explorer.exe
c:\windows\system32\cvhcbb.exe
C:\Programme\Microsoft IntelliType Pro\type32.exe
E:\ICQLite\ICQLite.exe
C:\WINDOWS\System32\spoo
l\DRIVERS\W32X86\3\E_S10IC2.EXE
C:\Programme\MSI\Live Update 3\LMonitor.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Programme\Ahead\InCD\InCD.exe
C:\Programme\Java\jre1.5.0_02\bin\jusched.exe
E:\Medion Home CinemaXL\PowerCinema\PCMService.exe
C:\Programme\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\Works Shared\WkUFind.exe
E:\AVPersonal\AVGNT.EXE
C:\WINDOWS\SOUNDMAN.EXE
E:\Microsoft AntiSpyware\gcasServ.exe
C:\WINDOWS\nxonenc.EXE
C:\Programme\AceGain\LiveUpdate\LiveUpdate.exe
C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe
E:\Microsoft AntiSpyware\gcasDtServ.exe
C:\Programme\AceGain\LiveUpdate\aceagent.exe
F:\Steam\Steam.exe
C:\Programme\MSN Messenger\MsnMsgr.Exe
E:\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programme\MSI\Core Center\CoreCenter.exe
E:\Logitech\SetPoint\SetPoint.exe
C:\Programme\MSI\SecureDoc\Logon.exe
C:\Programme\Gemeinsame Dateien\Logitech\KHAL\KHALMNPR.EXE
C:\WINDOWS\System32\svchost.exe
C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temp\7zS304.tmp\firefox.exe
C:\Dokumente und Einstellungen\Administrator\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://google.icq.com/search/search_frame.php
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://google.icq.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ogame.de/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://google.icq.com/search/search_frame.php
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://google.icq.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ogame.de/
R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - E:\ICQToolbar\toolbaru.dll
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - E:\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - E:\SPYBOT~1\SDHelper.dll
O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - E:\ICQToolbar\toolbaru.dll
O3 - Toolbar: ogame Toolbar - {AB030D41-BFEB-11d3-BA8E-E756DF6F2B61} - E:\OGAMET~1\OGAME_~1.DLL
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [type32] "C:\Programme\Microsoft IntelliType Pro\type32.exe"
O4 - HKLM\..\Run: [MediaKey] C:\PROGRA~1\INTERN~2\MEDIAKEY.EXE
O4 - HKLM\..\Run: [ICQ Lite] E:\ICQLite\ICQLite.exe -minimize
O4 - HKLM\..\Run: [EPSON Stylus CX3200] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE /P19 "EPSON Stylus CX3200" /O6 "USB001" /M "Stylus CX3200"
O4 - HKLM\..\Run: [LiveMonitor] C:\Programme\MSI\Live Update 3\LMonitor.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [InCD] C:\Programme\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [SmcService] E:\Sygate\SPF\smc.exe -startgui
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programme\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [PCMService] "E:\Medion Home CinemaXL\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [MMTray] C:\Programme\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Programme\Gemeinsame Dateien\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [AVGCtrl] "E:\AVPersonal\AVGNT.EXE" /min
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [gcasServ] "E:\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [nxonenc] C:\WINDOWS\nxonenc.EXE
O4 - HKLM\..\Run: [wiiadll] C:\WINDOWS\wiiadll.exe
O4 - HKLM\..\Run: [AceGain LiveUpdate] C:\Programme\AceGain\LiveUpdate\LiveUpdate.exe
O4 - HKLM\..\Run: [gglwdll] C:\WINDOWS\gglwdll.exe
O4 - HKLM\..\Run: [ziqidll] C:\WINDOWS\ziqidll.exe
O4 - HKLM\..\Run: [ncwnwi] c:\windows\system32\cvhcbb.exe r
O4 - HKCU\..\Run: [IncrediMail] C:\Programme\IncrediMail\bin\IncMail.exe /c
O4 - HKCU\..\Run: [Steam] F:\Steam\\Steam.exe -silent
O4 - HKCU\..\Run: [LDM] \Program\
O4 - HKCU\..\Run: [MsnMsgr] "C:\Programme\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] E:\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\RunOnce: [ICQ Lite] E:\ICQLite\ICQLite.exe -trayboot
O4 - Startup: Xfire.lnk = E:\Xfire\Xfire.exe
O4 - Global Startup: CoreCenter.lnk = C:\Programme\MSI\Core Center\CoreCenter.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = E:\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Logitech SetPoint.lnk = E:\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: SecureDoc.lnk = C:\Programme\MSI\SecureDoc\Logon.exe
O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\PROGRA~1\INCRED~1\bin\resources\WebMenuImg.htm
O8 - Extra context menu item: &ICQ Toolbar Search - res://E:\ICQToolbar\toolbaru.dll/SEARCH.HTML
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://E:\MICROS~1\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - E:\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - E:\ICQLite\ICQLite.exe
O9 - Extra button: eBay - Homepage - {EF79EAC5-3452-4E02-B8BD-BA4C89F1AC7A} - E:\IrfanView\Ebay\Ebay.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.co...?1117120550640
O18 - Protocol: bw+0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - E:\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {0348CE65-DA1C-45C2-BE55-402253E5BD38} - E:\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O23 - Service: AntiVir Service (AntiVirService) - H+BEDV Datentechnik GmbH - E:\AVPersonal\AVGUARD.EXE
O23 - Service: AntiVir Update (AVWUpSrv) - H+BEDV Datentechnik GmbH, Germany - E:\AVPersonal\AVWUPSRV.EXE
O23 - Service: EpsonBidirectionalService - Unknown owner - C:\Programme\Gemeinsame Dateien\EPSON\EBAPI\eEBSVC.exe
O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Programme\Gemeinsame Dateien\EPSON\EBAPI\SAgent2.exe
O23 - Service: InCD Helper (InCDsrv) - AHEAD Software - C:\Programme\Ahead\InCD\InCDsrv.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Sygate Personal Firewall (SmcService) - Sygate Technologies, Inc. - E:\Sygate\SPF\smc.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\SNDSrvc.exe
O23 - Service: Windows VisFx Components - Unknown owner - C:\WINDOWS\kvmisvc.exe
O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe

wie geasagt ich versteh nix davon....

Geändert von KRS96 (18.06.2005 um 22:49 Uhr)

Alt 18.06.2005, 23:47   #2
cronos
 
TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C - Standard

TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C



Untersuche dein System zunächst, wie beschrieben mit Escan .
Teile uns die Ergebnisse mit.
__________________

__________________

Geändert von cronos (19.06.2005 um 02:59 Uhr)

Alt 19.06.2005, 00:28   #3
KRS96
 
TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C - Standard

TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C



ok mach ich Log editiere ich dann hier rein...

ist es absicht das der link zum HJT tutorial geht??
__________________

Alt 19.06.2005, 00:55   #4
cronos
 
TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C - Standard

TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C



Zitat:
Zitat von KRS96
ok mach ich Log editiere ich dann hier rein...
nicht editieren, sondern antworten.Ansonsten geht das unter.

Zitat:
ist es absicht das der link zum HJT tutorial geht??
???
__________________
Only cronos endures

Alt 19.06.2005, 01:04   #5
KRS96
 
TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C - Standard

TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C



verdammt habe ich viele viren:

File C:\WINDOWS\kvmisvc.exe infected by "Trojan-Dropper.Win32.Agent.mu" Virus! Action Taken: No Action Taken.
File c:\windows\system32\cvhcbb.exe infected by "Trojan.Win32.Agent.ay" Virus! Action Taken: No Action Taken.
File C:\WINDOWS\nxonenc.EXE infected by "Trojan-Downloader.Win32.VB.hj" Virus! Action Taken: No Action Taken.
File C:\WINDOWS\nxonenc.EXE infected by "Trojan-Downloader.Win32.VB.hj" Virus! Action Taken: No Action Taken.
File c:\windows\system32\cvhcbb.exe infected by "Trojan.Win32.Agent.ay" Virus! Action Taken: No Action Taken.
File C:\Dokumente und Einstellungen\Administrator\Desktop\backups\backup-20050613-225205-964.dll tagged as "not-a-virus:AdWare.ToolBar.HotSearchBar.i". Action Taken: No Action Taken.
File C:\WINDOWS\kvmisvc.exe infected by "Trojan-Dropper.Win32.Agent.mu" Virus! Action Taken: No Action Taken.
Object "iSearch Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "IstBAR Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "IstBAR Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "AltNet Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "ISearchTech.ISTdownloader Spyware/Adware" found in File System! Action Taken: No Action Taken.
Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\ModuleUsage" refers to invalid object "C:\WINDOWS\Downloaded Program Files\YSBactivex.dll". Action Taken: No Action Taken.
Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\MSXML3A.DLL". Action Taken: No Action Taken.
Entry "HKCR\CLSID\{29FF67FF-8050-480f-9F30-CC41635F2F9D}" refers to invalid object "ADMWPROX.DLL". Action Taken: No Action Taken.
Entry "HKCR\CLSID\{70B51430-B6CA-11D0-B9B9-00A0C922E750}" refers to invalid object "ADMWPROX.DLL". Action Taken: No Action Taken.
Entry "HKCR\CLSID\{8298d101-f992-43b7-8eca-5052d885b995}" refers to invalid object "ADMWPROX.DLL". Action Taken: No Action Taken.
Entry "HKCR\CLSID\{9EFBF860-5685-11D3-AA3D-00C04F4C5275}" refers to invalid object "cdooff.dll". Action Taken: No Action Taken.
Entry "HKCR\CLSID\{A9E69612-B80D-11D0-B9B9-00A0C922E750}" refers to invalid object "ADMWPROX.DLL". Action Taken: No Action Taken.
Entry "HKCR\CLSID\{f612954d-3b0b-4c56-9563-227b7be624b4}" refers to invalid object "ADMWPROX.DLL". Action Taken: No Action Taken.
Entry "HKCR\Automap.Map.EU.11" refers to invalid object "{A49EEA01-9231-4C77-AA9E-2F89D72B4804}". Action Taken: No Action Taken.
Entry "HKCR\Automap.Template.EU.11" refers to invalid object "{A49EEA01-9231-4C77-AA9E-2F89D72B4804}". Action Taken: No Action Taken.
Entry "HKCR\RTCIMSP.RTCIMService" refers to invalid object "{83D4679F-B6D7-11D2-BF36-00C04FB90A03}". Action Taken: No Action Taken.
Entry "HKCR\RTCIMSP.RTCIMService.1" refers to invalid object "{83D4679F-B6D7-11D2-BF36-00C04FB90A03}". Action Taken: No Action Taken.
File C:\WINDOWS\Nail.exe tagged as "not-a-virus:AdWare.BetterInternet.b". Action Taken: No Action Taken.
File C:\WINDOWS\visfxun.exe infected by "Trojan-Downloader.Win32.VB.kd" Virus! Action Taken: No Action Taken.
File C:\WINDOWS\system32\InstallerV3.exe tagged as "not-a-virus:AdWare.SafeSurfing.j". Action Taken: No Action Taken.
File C:\WINDOWS\system32\nsn198.dll tagged as "not-a-virus:AdWare.Beginto.c". Action Taken: No Action Taken.
File C:\WINDOWS\system32\nsv64.dll tagged as "not-a-virus:AdWare.Beginto.c". Action Taken: No Action Taken.
File C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\1.exe tagged as "not-a-virus:AdWare.ToolBar.HotSearchBar.i". Action Taken: No Action Taken.
File C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\thin_installerv3.exe tagged as "not-a-virus:AdWare.BetterInternet". Action Taken: No Action Taken.
File C:\DOKUME~1\ADMINI~1\LOKALE~1\TEMPOR~1\Content.IE5\C7JFU45D\thin_installerv3[1].exe tagged as "not-a-virus:AdWare.BetterInternet". Action Taken: No Action Taken.
File C:\DOKUME~1\ADMINI~1\LOKALE~1\TEMPOR~1\Content.IE5\KPQB4X63\Poller[1].exe infected by "Trojan.Win32.Agent.ay" Virus! Action Taken: No Action Taken.
File C:\DOKUME~1\ADMINI~1\LOKALE~1\TEMPOR~1\Content.IE5\OPY74DE3\btnetw2[1].exe tagged as "not-a-virus:AdWare.ToolBar.HotSearchBar.i". Action Taken: No Action Taken.
File C:\DOKUME~1\ADMINI~1\LOKALE~1\TEMPOR~1\Content.IE5\OPY74DE3\Nail[1].exe tagged as "not-a-virus:AdWare.BetterInternet.b". Action Taken: No Action Taken.
File C:\Dokumente und Einstellungen\Administrator\Desktop\backups\backup-20050613-225205-964.dll tagged as "not-a-virus:AdWare.ToolBar.HotSearchBar.i". Action Taken: No Action Taken.
File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temp\1.exe tagged as "not-a-virus:AdWare.ToolBar.HotSearchBar.i". Action Taken: No Action Taken.
File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temp\thin_installerv3.exe tagged as "not-a-virus:AdWare.BetterInternet". Action Taken: No Action Taken.
File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\Content.IE5\C7JFU45D\thin_installerv3[1].exe tagged as "not-a-virus:AdWare.BetterInternet". Action Taken: No Action Taken.
File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\Content.IE5\KPQB4X63\Poller[1].exe infected by "Trojan.Win32.Agent.ay" Virus! Action Taken: No Action Taken.
File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\Content.IE5\OPY74DE3\btnetw2[1].exe tagged as "not-a-virus:AdWare.ToolBar.HotSearchBar.i". Action Taken: No Action Taken.
File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\Content.IE5\OPY74DE3\Nail[1].exe tagged as "not-a-virus:AdWare.BetterInternet.b". Action Taken: No Action Taken.



ich meinte damit das man zum hJT tutorial kommt und net zum Escan...

wenn es irgendwie möglich ist will ich nihct neu aufsetzten


Alt 19.06.2005, 03:07   #6
cronos
 
TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C - Standard

TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C



Zitat:
Zitat von KRS96


ich meinte damit das man zum hJT tutorial kommt und net zum Escan...
Hast völlig recht, habe das abgeändert.Mein Fehler

Evtl. hast du deswegen den Escan nicht richtig ausgeführt.
Lies dir den oben geänderten Link zu Escan nochmal durch.
Wichtig ist, u.a. das folgende Einstellungen gesetzt werden:



Lies dir nochmal die gesamte Anleitung durch, lösche die mwav.log Datei, scanne erneut und poste uns die Ergebnisse in dieser Form:

Zitat:
Rechtsklick auf diesen Link -> Ziel speichern unter… z.B. 'C:\Find.rar' -> 'Find.rar' entpacken z.B. 'C:\Find.bat' -> 'Find.bat' doppelklicken und den Scan abwarten -> den Inhalt [6] der automatisch erstellten 'C:\eScan_neu.txt' posten.
__________________
--> TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C

Alt 19.06.2005, 13:25   #7
KRS96
 
TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C - Standard

TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C



~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Funde für "infected"
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Sun Jun 19 03:35:00 2005 => File c:\windows\system32\vxoqsaf.exe infected by "Trojan.Win32.Agent.ay" Virus! Action Taken: No Action Taken.
Sun Jun 19 03:35:17 2005 => File C:\WINDOWS\nxonenc.EXE infected by "Trojan-Downloader.Win32.VB.hj" Virus! Action Taken: No Action Taken.
Sun Jun 19 03:35:18 2005 => File c:\windows\system32\vxoqsaf.exe infected by "Trojan.Win32.Agent.ay" Virus! Action Taken: No Action Taken.
Sun Jun 19 03:35:33 2005 => File C:\WINDOWS\kvmisvc.exe infected by "Trojan-Dropper.Win32.Agent.mu" Virus! Action Taken: No Action Taken.
Sun Jun 19 03:35:37 2005 => System found infected with iSearch Spyware/Adware ({6d3f5de4-e980-4407-a10f-9ac771abaae6})! Action taken: No Action Taken.
Sun Jun 19 03:35:38 2005 => System found infected with IstBAR Spyware/Adware ({eaf2ccee-21a1-4203-9f36-4929fd104d43})! Action taken: No Action Taken.
Sun Jun 19 03:35:38 2005 => System found infected with IstBAR Spyware/Adware ({7b9a715e-9d87-4c21-bf9e-f914f2fa953f})! Action taken: No Action Taken.
Sun Jun 19 03:55:10 2005 => File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\Content.IE5\KPQB4X63\Poller[1].exe infected by "Trojan.Win32.Agent.ay" Virus! Action Taken: No Action Taken.
Sun Jun 19 04:55:52 2005 => File C:\WINDOWS\visfxun.exe infected by "Trojan-Downloader.Win32.VB.kd" Virus! Action Taken: No Action Taken.
Sun Jun 19 06:31:54 2005 => Scanning Folder: E:\AVPersonal\INFECTED\*.*
Sun Jun 19 06:31:54 2005 => Scanning File E:\AVPersonal\INFECTED\nxondll.VIR
Sun Jun 19 06:31:54 2005 => File E:\AVPersonal\INFECTED\nxondll.VIR infected by "Trojan-Downloader.Win32.VB.hj" Virus! Action Taken: No Action Taken.
Sun Jun 19 06:46:32 2005 => File E:\eMule.de\Incoming\Sandra-Model Kinderporno Kids (New April-Mai 2004)Keys Bestpics Dark-Elf Hussyfan Lolitaguy.rar infected by "IRC-Worm.Win32.Drefir.a" Virus! Action Taken: No Action Taken.
Sun Jun 19 07:01:11 2005 => Total Disinfected Files: 0

Alt 19.06.2005, 13:26   #8
KRS96
 
TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C - Standard

TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C



und noch ein paar di in den ersten nicht passten...


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Funde für "tagged"
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Sun Jun 19 03:38:15 2005 => File C:\Dokumente und Einstellungen\Administrator\Desktop\backups\backup-20050613-225205-964.dll tagged as "not-a-virus:AdWare.ToolBar.HotSearchBar.i". Action Taken: No Action Taken.
Sun Jun 19 03:52:58 2005 => File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temp\1.exe tagged as "not-a-virus:AdWare.ToolBar.HotSearchBar.i". Action Taken: No Action Taken.
Sun Jun 19 03:53:45 2005 => File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temp\thin_installerv3.exe tagged as "not-a-virus:AdWare.BetterInternet". Action Taken: No Action Taken.
Sun Jun 19 03:54:23 2005 => File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\Content.IE5\C7JFU45D\thin_installerv3[1].exe tagged as "not-a-virus:AdWare.BetterInternet". Action Taken: No Action Taken.
Sun Jun 19 03:55:15 2005 => File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\Content.IE5\OPY74DE3\btnetw2[1].exe tagged as "not-a-virus:AdWare.ToolBar.HotSearchBar.i". Action Taken: No Action Taken.
Sun Jun 19 03:55:18 2005 => File C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\Content.IE5\OPY74DE3\Nail[1].exe tagged as "not-a-virus:AdWare.BetterInternet.b". Action Taken: No Action Taken.
Sun Jun 19 04:29:24 2005 => File C:\RECYCLER\S-1-5-21-746137067-839522115-725345543-500\Dc7.exe tagged as "not-a-virus:AdWare.BetterInternet.b". Action Taken: No Action Taken.
Sun Jun 19 04:29:24 2005 => File C:\RECYCLER\S-1-5-21-746137067-839522115-725345543-500\Dc8.exe tagged as "not-a-virus:AdWare.BetterInternet.b". Action Taken: No Action Taken.
Sun Jun 19 04:29:24 2005 => File C:\RECYCLER\S-1-5-21-746137067-839522115-725345543-500\Dc9.exe tagged as "not-a-virus:AdWare.BetterInternet.b". Action Taken: No Action Taken.
Sun Jun 19 04:44:00 2005 => File C:\WINDOWS\Nail.exe tagged as "not-a-virus:AdWare.BetterInternet.b". Action Taken: No Action Taken.
Sun Jun 19 04:52:56 2005 => File C:\WINDOWS\system32\InstallerV3.exe tagged as "not-a-virus:AdWare.SafeSurfing.j". Action Taken: No Action Taken.
Sun Jun 19 04:53:43 2005 => File C:\WINDOWS\system32\nsn198.dll tagged as "not-a-virus:AdWare.Beginto.c". Action Taken: No Action Taken.
Sun Jun 19 04:53:43 2005 => File C:\WINDOWS\system32\nsv64.dll tagged as "not-a-virus:AdWare.Beginto.c". Action Taken: No Action Taken.
Sun Jun 19 04:56:35 2005 => File D:\Eigene_Dateien\Cheats\pc0402.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 05:42:54 2005 => File D:\Eigene_Dateien\Doenloads-Patches\artmoney708eng.exe tagged as "not-a-virus:AdWare.F1Organizer.h". Action Taken: No Action Taken.
Sun Jun 19 06:12:29 2005 => File D:\Eigene_Dateien\Doenloads-Patches\Grand Theft Auto Vice City\gta_vice_city_b.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:32:04 2005 => File E:\DLH98\0100.dlm tagged as not-a-virus:CrackTool.Win32.AssasinPatch. No Action Taken.
Sun Jun 19 06:32:07 2005 => File E:\DLH98\0100a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:32:10 2005 => File E:\DLH98\0101.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:32:11 2005 => File E:\DLH98\0102.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:32:13 2005 => File E:\DLH98\0103.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:32:13 2005 => File E:\DLH98\0104.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:32:23 2005 => File E:\DLH98\0105.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:32:27 2005 => File E:\DLH98\0200a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:32:28 2005 => File E:\DLH98\0201.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:32:28 2005 => File E:\DLH98\0202.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:32:28 2005 => File E:\DLH98\0203.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:32:29 2005 => File E:\DLH98\0204.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:32:37 2005 => File E:\DLH98\0300a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken.
Sun Jun 19 06:32:42 2005 => File E:\DLH98\0301.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:32:42 2005 => File E:\DLH98\0302.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:32:42 2005 => File E:\DLH98\0303.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:32:43 2005 => File E:\DLH98\0304.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:32:50 2005 => File E:\DLH98\0400a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:32:52 2005 => File E:\DLH98\0402.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:32:54 2005 => File E:\DLH98\0403.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:33:01 2005 => File E:\DLH98\0404.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:33:09 2005 => File E:\DLH98\0502.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:33:10 2005 => File E:\DLH98\0503.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:33:19 2005 => File E:\DLH98\0600a.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:33:20 2005 => File E:\DLH98\0601.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:33:21 2005 => File E:\DLH98\0602.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:33:21 2005 => File E:\DLH98\0603.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:33:29 2005 => File E:\DLH98\0700a.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:33:31 2005 => File E:\DLH98\0701.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:33:31 2005 => File E:\DLH98\0702.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:33:31 2005 => File E:\DLH98\0703.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:33:45 2005 => File E:\DLH98\0800.dlm tagged as not-a-virus:CrackTool.Win32.AssasinPatch. No Action Taken.
Sun Jun 19 06:33:45 2005 => File E:\DLH98\0800a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:33:45 2005 => File E:\DLH98\0801.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:33:46 2005 => File E:\DLH98\0802.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:02 2005 => File E:\DLH98\0900a.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:02 2005 => File E:\DLH98\0901.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:02 2005 => File E:\DLH98\0902.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:10 2005 => File E:\DLH98\1000.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:13 2005 => File E:\DLH98\1000a.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:13 2005 => File E:\DLH98\1001.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:14 2005 => File E:\DLH98\1002.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:19 2005 => File E:\DLH98\1100.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:19 2005 => File E:\DLH98\1100a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:20 2005 => File E:\DLH98\1101.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:21 2005 => File E:\DLH98\1102.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:27 2005 => File E:\DLH98\1200a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:31 2005 => File E:\DLH98\1201.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:31 2005 => File E:\DLH98\1202.dlm tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken.
Sun Jun 19 06:34:35 2005 => File E:\DLH98\1300.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:37 2005 => File E:\DLH98\1300a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:37 2005 => File E:\DLH98\1301.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:37 2005 => File E:\DLH98\1302.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:42 2005 => File E:\DLH98\1400.dlm tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken.
Sun Jun 19 06:34:42 2005 => File E:\DLH98\1400a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:44 2005 => File E:\DLH98\1402.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:54 2005 => File E:\DLH98\1501.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:34:55 2005 => File E:\DLH98\1502.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:35:01 2005 => File E:\DLH98\1600.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:35:07 2005 => File E:\DLH98\1600a.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:35:08 2005 => File E:\DLH98\1601.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:35:08 2005 => File E:\DLH98\1602.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:35:13 2005 => File E:\DLH98\1701.DLM tagged as not-a-virus:FalseAlarm.DrWeb.Backdoor.Theef.111. No Action Taken.
Sun Jun 19 06:35:14 2005 => File E:\DLH98\1702.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:35:16 2005 => File E:\DLH98\1799.dlm tagged as not-a-virus:CrackTool.Win32.AssasinPatch. No Action Taken.
Sun Jun 19 06:35:17 2005 => File E:\DLH98\1800.DLM tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken.
Sun Jun 19 06:35:18 2005 => File E:\DLH98\1801.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:35:19 2005 => File E:\DLH98\1802.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:35:22 2005 => File E:\DLH98\1900.DLM tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken.
Sun Jun 19 06:35:23 2005 => File E:\DLH98\1901.DLM tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken.
Sun Jun 19 06:35:23 2005 => File E:\DLH98\1902.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:35:23 2005 => File E:\DLH98\1999.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:35:26 2005 => File E:\DLH98\2001.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:35:28 2005 => File E:\DLH98\2002.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:35:33 2005 => File E:\DLH98\2100.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:35:36 2005 => File E:\DLH98\2101.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:35:44 2005 => File E:\DLH98\2201.DLM tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken.
Sun Jun 19 06:35:50 2005 => File E:\DLH98\2300.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:35:52 2005 => File E:\DLH98\2301.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:36:13 2005 => File E:\DLH98\2501.DLM tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken.
Sun Jun 19 06:36:15 2005 => File E:\DLH98\2601.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:36:17 2005 => File E:\DLH98\2701.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:36:21 2005 => File E:\DLH98\2800.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:36:22 2005 => File E:\DLH98\2801.dlm tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:36:22 2005 => File E:\DLH98\2900.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:36:23 2005 => File E:\DLH98\3000.DLM tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:36:24 2005 => File E:\DLH98\3100.DLM tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken.
Sun Jun 19 06:36:36 2005 => File E:\DLH98\Download\pc0001.zip tagged as not-a-virus:CrackTool.Win32.AssasinPatch. No Action Taken.
Sun Jun 19 06:36:40 2005 => File E:\DLH98\Download\pc0001a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:36:42 2005 => File E:\DLH98\Download\pc0002a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:36:46 2005 => File E:\DLH98\Download\pc0003a.zip tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken.
Sun Jun 19 06:36:50 2005 => File E:\DLH98\Download\pc0004a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:36:57 2005 => File E:\DLH98\Download\pc0006a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:37:00 2005 => File E:\DLH98\Download\pc0007a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:37:02 2005 => File E:\DLH98\Download\pc0008.zip tagged as not-a-virus:CrackTool.Win32.AssasinPatch. No Action Taken.
Sun Jun 19 06:37:03 2005 => File E:\DLH98\Download\pc0008a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:37:10 2005 => File E:\DLH98\Download\pc0009a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:37:11 2005 => File E:\DLH98\Download\pc0010.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:37:14 2005 => File E:\DLH98\Download\pc0010a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:37:15 2005 => File E:\DLH98\Download\pc0011.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:37:17 2005 => File E:\DLH98\Download\pc0011a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:37:20 2005 => File E:\DLH98\Download\pc0012a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:37:21 2005 => File E:\DLH98\Download\pc0013.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:37:26 2005 => File E:\DLH98\Download\pc0013a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:37:27 2005 => File E:\DLH98\Download\pc0014.zip tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken.
Sun Jun 19 06:37:29 2005 => File E:\DLH98\Download\pc0014a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:37:36 2005 => File E:\DLH98\Download\pc0016.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:37:44 2005 => File E:\DLH98\Download\pc0016a.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:37:49 2005 => File E:\DLH98\Download\pc0018.zip tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken.
Sun Jun 19 06:37:51 2005 => File E:\DLH98\Download\pc0019.zip tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken.
Sun Jun 19 06:37:59 2005 => File E:\DLH98\Download\pc0021.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:38:02 2005 => File E:\DLH98\Download\pc0023.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:38:17 2005 => File E:\DLH98\Download\pc0028.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:38:19 2005 => File E:\DLH98\Download\pc0029.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:38:21 2005 => File E:\DLH98\Download\pc0030.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:38:24 2005 => File E:\DLH98\Download\pc0031.zip tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken.
Sun Jun 19 06:38:29 2005 => File E:\DLH98\Download\pc0101.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:38:31 2005 => File E:\DLH98\Download\pc0102.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:38:35 2005 => File E:\DLH98\Download\pc0103.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:38:44 2005 => File E:\DLH98\Download\pc0106.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:38:46 2005 => File E:\DLH98\Download\pc0107.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:38:47 2005 => File E:\DLH98\Download\pc0108.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:38:50 2005 => File E:\DLH98\Download\pc0109.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:38:51 2005 => File E:\DLH98\Download\pc0110.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:38:53 2005 => File E:\DLH98\Download\pc0111.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:38:58 2005 => File E:\DLH98\Download\pc0112.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:00 2005 => File E:\DLH98\Download\pc0113.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:04 2005 => File E:\DLH98\Download\pc0115.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:07 2005 => File E:\DLH98\Download\pc0116.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:09 2005 => File E:\DLH98\Download\pc0117.zip tagged as not-a-virus:FalseAlarm.DrWeb.Backdoor.Theef.111. No Action Taken.
Sun Jun 19 06:39:11 2005 => File E:\DLH98\Download\pc0118.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:15 2005 => File E:\DLH98\Download\pc0119.zip tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken.
Sun Jun 19 06:39:16 2005 => File E:\DLH98\Download\pc0120.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:21 2005 => File E:\DLH98\Download\pc0121.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:25 2005 => File E:\DLH98\Download\pc0122.zip tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken.
Sun Jun 19 06:39:30 2005 => File E:\DLH98\Download\pc0125.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:31 2005 => File E:\DLH98\Download\pc0126.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:32 2005 => File E:\DLH98\Download\pc0127.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:33 2005 => File E:\DLH98\Download\pc0128.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:35 2005 => File E:\DLH98\Download\pc0201.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:37 2005 => File E:\DLH98\Download\pc0202.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:39 2005 => File E:\DLH98\Download\pc0203.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:41 2005 => File E:\DLH98\Download\pc0204.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:42 2005 => File E:\DLH98\Download\pc0205.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:44 2005 => File E:\DLH98\Download\pc0206.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:46 2005 => File E:\DLH98\Download\pc0207.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:48 2005 => File E:\DLH98\Download\pc0208.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:51 2005 => File E:\DLH98\Download\pc0209.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:53 2005 => File E:\DLH98\Download\pc0210.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:54 2005 => File E:\DLH98\Download\pc0211.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:56 2005 => File E:\DLH98\Download\pc0212.zip tagged as not-a-virus:CrackTool.Win32.HotHook.dll. No Action Taken.
Sun Jun 19 06:39:57 2005 => File E:\DLH98\Download\pc0213.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:39:58 2005 => File E:\DLH98\Download\pc0214.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:40:00 2005 => File E:\DLH98\Download\pc0215.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:40:02 2005 => File E:\DLH98\Download\pc0216.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:40:07 2005 => File E:\DLH98\Download\pc0217.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:40:11 2005 => File E:\DLH98\Download\pc0218.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:40:18 2005 => File E:\DLH98\Download\pc0219.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:40:27 2005 => File E:\DLH98\Download\pc0220.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:40:33 2005 => File E:\DLH98\Download\pc0301.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:40:37 2005 => File E:\DLH98\Download\pc0302.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:40:47 2005 => File E:\DLH98\Download\pc0303.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:40:51 2005 => File E:\DLH98\Download\pc0304.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:40:55 2005 => File E:\DLH98\Download\pc0305.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:41:06 2005 => File E:\DLH98\Download\pc0306.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:41:21 2005 => File E:\DLH98\Download\pc0307.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:41:33 2005 => File E:\DLH98\Download\pc0401.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:42:00 2005 => File E:\DLH98\Download\pc0402.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:42:15 2005 => File E:\DLH98\Download\pc0403.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:42:28 2005 => File E:\DLH98\Download\pc0404.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:42:52 2005 => File E:\DLH98\Download\pc0501.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
Sun Jun 19 06:44:30 2005 => File E:\DLH98\Download\pc9917.zip tagged as not-a-virus:CrackTool.Win32.AssasinPatch. No Action Taken.
Sun Jun 19 06:44:34 2005 => File E:\DLH98\Download\pc9919.zip tagged as not-a-virus:CrackTool.Win32.HotHook. No Action Taken.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Statistiken:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Sun Jun 19 07:01:11 2005 => Total Virus(es) Found: 202
Sun Jun 19 07:01:11 2005 => Total Errors: 281
Sun Jun 19 07:01:11 2005 => Time Elapsed: 03:26:17
Sun Jun 19 07:01:11 2005 => Total Objects Scanned: 70828
Sun Jun 19 03:34:29 2005 => Virus Database Date: 2005/06/19
Sun Jun 19 07:01:12 2005 => Virus Database Date: 2005/06/19
Sun Jun 19 11:52:08 2005 => Virus Database Date: 2005/06/19
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~ © Haui ;-) ~~~~~~~
~~~~~~~ Dank an Cidre ~~~~~~~


man oh man sind das viele kleine nebenfrage was meint escan mit "tagged"?

Geändert von KRS96 (19.06.2005 um 16:10 Uhr)

Alt 19.06.2005, 19:15   #9
KRS96
 
TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C - Standard

TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C



Seit ihr so schockiert (wie ich) von dieser viren sammlung das sich jetzt nimand mehr traut was zu sagen...?!
wie gesagt ich habe 0 ahnung von sowas (noch nicht)

Alt 19.06.2005, 19:43   #10
michio
 
TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C - Standard

TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C



hehe, ich frag mich nur grad wie du das zu stande gebracht hast

auch wenn dus nicht hören willst, setz dein system neu auf!
es bringt nichts, diese viren die du drauf hast zu löschen, dein pc kann nicht mehr sicher werden.

also, bitte formatieren: http://www.formatieren.de/schritt/vorb.htm

und dann BEVOR du das inet kabel anschliesst Antiviren programm und firewall installieren, zudem nichtbenötigte Dienste abschalten!
wie das geht:
http://www.ntsvcfg.de/
dann als 1. Windows Updates aufspielen.
mfg
michi

Alt 19.06.2005, 19:48   #11
cronos
 
TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C - Standard

TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C



Ich frage mich eher, was dass für eine seltsame Datei im Emule-Ordner ist.
__________________
Only cronos endures

Alt 19.06.2005, 19:56   #12
KRS96
 
TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C - Standard

TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C



und wenn ich ehrlich bin ist das einfake (ein"freund " hat mir die datei mit dem kommentar "wenn das ein kind ist bi ich 1000jahre alt" geschickt die (frau war ca 60)... soviel zu dem thema... naja ich wollt den esel so oder so löschen...habe ich jetzt auch erstma gemacht (und meinem freund gesagt r solle mal die datei löschen)...

Alt 19.06.2005, 20:00   #13
cronos
 
TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C - Standard

TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C



Dann ists ja in Ordnung.
Dennoch solltest du dein System neuaufsetzen.
Gehe nach folgender Anleitung vor, um ähnliches in Zukunft zu vermeiden:

http://www.trojaner-board.de/showthread.php?t=12154
__________________
Only cronos endures

Alt 19.06.2005, 20:04   #14
KRS96
 
TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C - Standard

TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C



naj dann danke...ich werde mir die tips zu herzen nehmen....

ps. und der esel kommt net mehr drauf....
ps.2 ich werde dann erstma die wichtigen sachen downloaden und die installations datein auf cd packen

Alt 19.06.2005, 20:17   #15
KRS96
 
TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C - Standard

TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C



ok 2 fragen habe ich aber noch 1. die als TAGGED gegenzeichneten files sind nicht schlimm oder??

2. wenn ich das richtig sehe kann ich miene eigenen datein behalten// musss sie nicht lösschen (das sind fast 10gb nicht gesichertre daten (und ja ich bin ei volidiot das ich kein backup habe...)/bzw.muss ich nicht befallene partitionen löschen

würde eigenlich die system wiederherstellung was ringen?? (ich habe da einen 100% sauberen pkt)

ok es waren jetzt3

Antwort

Themen zu TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C
administrator, antispyware, antivir, antivir update, bho, components, desktop, drivers, ebay, einstellungen, excel, explorer, firewall, hijack, hijackthis, home, homepage, icqtoolbar, internet, internet explorer, rundll, software, symantec, system, temp, trojaner, urlsearchhook, usb, windows, windows messenger, windows xp



Ähnliche Themen: TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C


  1. Discount Buddy entfernen
    Anleitungen, FAQs & Links - 27.11.2013 (2)
  2. Probleme mit Click to save Deal Finder & Click to Continue
    Plagegeister aller Art und deren Bekämpfung - 06.08.2013 (9)
  3. Trojanische Pferd TR/Click.Cycler.akna und Java-Virus JAVA/Dldr.Agent.W
    Plagegeister aller Art und deren Bekämpfung - 28.08.2010 (1)
  4. Hi, buddy, thanks for your article.
    Mülltonne - 29.05.2008 (0)
  5. TR/ Click Agent AC, TR/dldr Agent IG 2+3
    Plagegeister aller Art und deren Bekämpfung - 26.03.2006 (15)
  6. TR/Qhost, TR/Click.spywad, TR/Dldr.small.buy
    Log-Analyse und Auswertung - 19.02.2006 (1)
  7. TR/Buddy-TR/Stervice-TR/Click.Age.DB.DLL
    Plagegeister aller Art und deren Bekämpfung - 18.06.2005 (22)
  8. Log-Analyse erbeten - TR\Agent.CP & TR\Stervice.C
    Log-Analyse und Auswertung - 14.06.2005 (3)
  9. Trojaner Buddy.F, Agent.CP, Stervice.C und ClickeAgeDB.Dll
    Plagegeister aller Art und deren Bekämpfung - 11.06.2005 (12)
  10. TR/Buddy.F + TR/Agent.CP
    Log-Analyse und Auswertung - 06.06.2005 (1)
  11. TR/Buddy.F und Andere
    Log-Analyse und Auswertung - 02.06.2005 (4)
  12. TR/Dldr.Lastad.H , TR/Buddy.F , TR/Agent.CP
    Plagegeister aller Art und deren Bekämpfung - 02.06.2005 (0)
  13. ich habe den TR/Buddy.F
    Log-Analyse und Auswertung - 31.05.2005 (6)
  14. TR Buddy.F!!!!
    Plagegeister aller Art und deren Bekämpfung - 29.05.2005 (6)
  15. Trojaner Spyware etc. (QUrl-3, Small.OF.F, Dldr.1296, Buddy.F)
    Log-Analyse und Auswertung - 11.05.2005 (3)
  16. bargain buddy
    Log-Analyse und Auswertung - 01.12.2004 (5)
  17. TR/Dldr.Stubby ; TR/Click.Krepper ; TR/Dldr.Krepper.3 ; Brauche Hilfe !
    Plagegeister aller Art und deren Bekämpfung - 09.11.2004 (6)

Zum Thema TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C - OK dann eben einen neuen thread... HI leute ich habe auch diese 3 trojaner AV guard meldet sie mir ich lösche...und nach ca. 1 min kommen die meldungen wieder (ich - TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C...
Archiv
Du betrachtest: TR/Buddy.F/TR/Click.Age.DB.Dll/TR/Dldr.Spybi.1/TR/Stervice.C auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.