Internet ist extrem langsam!! Bitte um Kontrolle des Hijack!

Warnungen vor Sicherheitslücken und Hilfe beim Enfernen von Viren, Würmern und Trojanern.

Internet ist extrem langsam!! Bitte um Kontrolle des Hijack!

Beitragvon paddy_1988 am 27.09.2005, 13:59

guten Tag

mein Internet ist extrem langsam, obwohl ich ADSL besitze!!
was ich schon probiert habe:

-spybot search&destroy
-Ad-Aware
-Reg-Cleaner
-CCleaner
-Norton Antivirus
-E-Scan

Es wurde verschiedenes gefunden, hab alles gefixt. Das Internet wurde jedoch nicht schneller.
hier noch das HijackThis Protokoll:

Logfile of HijackThis v1.99.1
Scan saved at 13:55:31, on 27.09.2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\Windows\System32\smss.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\spoolsv.exe
C:\COMPAQ\ACLIENT\ACLIENT.exe
C:\Windows\system32\drivers\CDAC11BA.EXE
C:\Programme\Gemeinsame Dateien\Symantec Shared\ccSetMgr.exe
C:\Programme\Compaq\Compaq Management Agents\cpqalert.exe
C:\Windows\Cpqdiag\Cpqdfwag.exe
C:\PROGRA~1\Compaq\COMPAQ~1\CPQWEB~1\WebDmi.exe
C:\Programme\Norton AntiVirus\navapsvc.exe
C:\Windows\System32\NMSSvc.exe
C:\Programme\Norton AntiVirus\IWP\NPFMntor.exe
C:\Programme\Norton AntiVirus\AdvTools\NPROTECT.EXE
C:\Programme\Gemeinsame Dateien\Symantec Shared\SNDSrvc.exe
C:\Programme\Gemeinsame Dateien\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Windows\System32\svchost.exe
C:\Programme\Gemeinsame Dateien\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Programme\Compaq\Compaq Management Agents\Dmi\Win32\bin\Win32sl.exe
C:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exe
C:\Programme\Bonjour\mDNSResponder.exe
C:\PROGRA~1\Compaq\COMPAQ~1\cpqdmi.exe
C:\Windows\Explorer.EXE
C:\Programme\COMPAQ\Easy Access Button Support\StartEAK.exe
C:\Programme\Analog Devices\SoundMAX\Smtray.exe
C:\Windows\system32\PROMon.exe
C:\PROGRA~1\Compaq\COMPAQ~1\CHKADMIN.EXE
C:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe
C:\Programme\Compaq\Easy Access Button Support\CPQEAKSYSTEMTRAY.EXE
C:\Programme\MSN Messenger\msnmsgr.exe
C:\Programme\Compaq\Easy Access Button Support\CPQEADM.EXE
C:\Compaq\EAKDRV\EAUSBKBD.EXE
C:\PROGRA~1\Compaq\EASYAC~1\BttnServ.exe
C:\Programme\Messenger\msmsgs.exe
C:\Programme\Internet Explorer\iexplore.exe
C:\escheck\eScanCheck110.exe
C:\bases_x\KAVUpd.exe
C:\DOKUME~1\Patrick\LOKALE~1\Temp\Temporäres Verzeichnis 4 für hijackthis.zip\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.lhzzanwkzepruicijafecda.com/ ... rTOYuR.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bluewin.ch/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.compaq.com/1Q00CDT/0807/bl7.asp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local.,
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {48FFC4DF-22C0-E219-FCE2-7477A828FC58} - (no file)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {5954C02A-7FA3-50E2-9340-90A733A4BC48} - (no file)
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Programme\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Programme\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
O4 - HKLM\..\Run: [CPQEASYACC] C:\Programme\COMPAQ\Easy Access Button Support\StartEAK.exe
O4 - HKLM\..\Run: [Smapp] C:\Programme\Analog Devices\SoundMAX\Smtray.exe
O4 - HKLM\..\Run: [PROMon.exe] PROMon.exe
O4 - HKLM\..\Run: [ChkAdmin] C:\PROGRA~1\Compaq\COMPAQ~1\CHKADMIN.EXE
O4 - HKLM\..\Run: [ccApp] "C:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Advanced Tools Check] C:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.EXE
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\RunServices: [CPQDFWAG] C:\Windows\Cpqdiag\CpqDfwAg.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Programme\MSN Messenger\msnmsgr.exe" /background
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\programme\bonjour\mdnsnsp.dll
O16 - DPF: ConferenceRoom Java Client - http://irc.bluewin.ch/java/cr.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Me ... b31267.cab
O16 - DPF: {14F65762-96FB-44B9-8DAC-93845F377A0E} (FileSharingCtrl Class) - http://appdirectory.messenger.msn.com/A ... ngctrl.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/Mi ... b31267.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} - http://security.symantec.com/sscv6/Shar ... vSniff.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by20fd.bay20.hotmail.msn.com/res ... nPUpld.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v ... 6748722870
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} - http://security.symantec.com/sscv6/Shar ... /cabsa.cab
O16 - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - http://launch.gamespyarcade.com/softwar ... launch.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Me ... b31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} - http://messenger.msn.com/download/MsnMe ... loader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZI ... b32846.cab
O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/So ... b31267.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: igfxcui - C:\Windows\SYSTEM32\igfxsrvc.dll
O23 - Service: Altiris Client-Dienst (AClient) - Altiris, Inc. - C:\COMPAQ\ACLIENT\ACLIENT.exe
O23 - Service: Bonjour Dienst (Bonjour Service) - Apple Computer, Inc. - C:\Programme\Bonjour\mDNSResponder.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\Windows\system32\drivers\CDAC11BA.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\ccSetMgr.exe
O23 - Service: Compaq Local Alerter (CPQALERT) - Compaq Computer Corporation - C:\Programme\Compaq\Compaq Management Agents\cpqalert.exe
O23 - Service: Compaq Remote Diagnostics Enabling Agent (CpqDfwWebAgent) - Compaq Computer Corporation - C:\Windows\Cpqdiag\Cpqdfwag.exe
O23 - Service: cpqdmi - Compaq Computer Corporation - C:\PROGRA~1\Compaq\COMPAQ~1\cpqdmi.exe
O23 - Service: Compaq DMI Web Agent (cpqWebDmi) - Compaq Computer Corporation - C:\PROGRA~1\Compaq\COMPAQ~1\CPQWEB~1\WebDmi.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Programme\iPod\bin\iPodService.exe
O23 - Service: Norton AntiVirus Auto-Protect-Dienst (navapsvc) - Symantec Corporation - C:\Programme\Norton AntiVirus\navapsvc.exe
O23 - Service: Intel(R) NMS (NMSSvc) - Intel Corporation - C:\Windows\System32\NMSSvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Programme\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Programme\Norton AntiVirus\AdvTools\NPROTECT.EXE
O23 - Service: Pml Driver HPZ12 - HP - C:\Windows\system32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Programme\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\GEMEIN~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\PROGRA~1\GEMEIN~1\SONYSH~1\AVLib\Sptisrv.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Programme\TuneUp Utilities 2006\WinStylerThemeSvc.exe
O23 - Service: Win32Sl (WIN32SL) - Intel - C:\Programme\Compaq\Compaq Management Agents\Dmi\Win32\bin\Win32sl.exe

Vielen Dank im voraus!!!

Gruss Patrick
paddy_1988
 
Beiträge: 7
Registriert: 26.09.2005, 17:44
Wohnort: Schweiz


Beitragvon Nikita am 27.09.2005, 15:20

das ist eine Lop-Verseuchung, du hast ein Programm geladen, was verseucht ist.

scanne bitte mit escan und poste, was infected und tagget ist:
http://virus-protect.net/escan.html
Nikita
Moderator
 
Beiträge: 11478
Registriert: 07.12.2003, 16:53
Wohnort: Lissabon

Resultat eScan-Check

Beitragvon paddy_1988 am 27.09.2005, 22:57

guten Abend

Ich habe einen eScan-Check durchgeführt. Hier die Resultate:

--------------------------------------------------
-------------------- INFECTED --------------------
--------------------------------------------------

1: Tue Sep 27 18:20:27 2005 => System found infected with hotbar Spyware/Adware ({8578d35e-c6c0-4808-9a80-0f6c29a2c423})! Action taken: No Action Taken.
2: Tue Sep 27 18:20:27 2005 => System found infected with hotbar Spyware/Adware ({bc190da5-0187-4d99-b3ac-6c45ea1b9324})! Action taken: No Action Taken.
3: Tue Sep 27 18:20:35 2005 => Offending file found: C:\Dokumente und Einstellungen\Patrick\Lokale Einstellungen\temporary internet files\content.ie5\815brg91\common[1].js
4: Tue Sep 27 18:20:35 2005 => System found infected with whenu.savenow Spyware/Adware (common[1].js)! Action taken: No Action Taken.
5: Tue Sep 27 18:20:35 2005 => Offending file found: C:\Dokumente und Einstellungen\Patrick\Lokale Einstellungen\temporary internet files\content.ie5\815brg91\formie[1].css
6: Tue Sep 27 18:20:35 2005 => System found infected with whenu.savenow Spyware/Adware (formie[1].css)! Action taken: No Action Taken.
7: Tue Sep 27 18:20:35 2005 => Offending file found: C:\Dokumente und Einstellungen\Patrick\Lokale Einstellungen\temporary internet files\content.ie5\815brg91\show_ads[2].js
8: Tue Sep 27 18:20:35 2005 => System found infected with whenu.savenow Spyware/Adware (show_ads[2].js)! Action taken: No Action Taken.
9: Tue Sep 27 18:20:35 2005 => Offending file found: C:\Dokumente und Einstellungen\Patrick\Lokale Einstellungen\temporary internet files\content.ie5\815brg91\ticker[1].js
10: Tue Sep 27 18:20:35 2005 => System found infected with whenu.savenow Spyware/Adware (ticker[1].js)! Action taken: No Action Taken.
11: Tue Sep 27 18:20:35 2005 => Offending file found: C:\Dokumente und Einstellungen\Patrick\Lokale Einstellungen\temporary internet files\content.ie5\xcmo7883\common[1].js
12: Tue Sep 27 18:20:35 2005 => System found infected with whenu.savenow Spyware/Adware (common[1].js)! Action taken: No Action Taken.
13: Tue Sep 27 18:20:35 2005 => Offending file found: C:\Dokumente und Einstellungen\Patrick\Lokale Einstellungen\Temporary Internet Files\content.ie5\815brg91\common[1].js
14: Tue Sep 27 18:20:35 2005 => System found infected with whenu.savenow Spyware/Adware (common[1].js)! Action taken: No Action Taken.
15: Tue Sep 27 18:20:35 2005 => Offending file found: C:\Dokumente und Einstellungen\Patrick\Lokale Einstellungen\Temporary Internet Files\content.ie5\815brg91\formie[1].css
16: Tue Sep 27 18:20:35 2005 => System found infected with whenu.savenow Spyware/Adware (formie[1].css)! Action taken: No Action Taken.
17: Tue Sep 27 18:20:35 2005 => Offending file found: C:\Dokumente und Einstellungen\Patrick\Lokale Einstellungen\Temporary Internet Files\content.ie5\815brg91\show_ads[2].js
18: Tue Sep 27 18:20:35 2005 => System found infected with whenu.savenow Spyware/Adware (show_ads[2].js)! Action taken: No Action Taken.
19: Tue Sep 27 18:20:35 2005 => Offending file found: C:\Dokumente und Einstellungen\Patrick\Lokale Einstellungen\Temporary Internet Files\content.ie5\815brg91\ticker[1].js
20: Tue Sep 27 18:20:35 2005 => System found infected with whenu.savenow Spyware/Adware (ticker[1].js)! Action taken: No Action Taken.
21: Tue Sep 27 18:20:35 2005 => Offending file found: C:\Dokumente und Einstellungen\Patrick\Lokale Einstellungen\Temporary Internet Files\content.ie5\xcmo7883\common[1].js
22: Tue Sep 27 18:20:35 2005 => System found infected with whenu.savenow Spyware/Adware (common[1].js)! Action taken: No Action Taken.
23: Tue Sep 27 18:20:37 2005 => Offending file found: C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\symantec\common client\settings.dat
24: Tue Sep 27 18:20:37 2005 => System found infected with cydoor.topicks.a Spyware/Adware (settings.dat)! Action taken: No Action Taken.
25: Tue Sep 27 18:27:18 2005 => Scanning Folder: C:\Dokumente und Einstellungen\All Users\Dokumente\Eigene Musik\Sum 41\Does This Look Infected_\*.*
26: Tue Sep 27 18:27:18 2005 => Scanning File C:\Dokumente und Einstellungen\All Users\Dokumente\Eigene Musik\Sum 41\Does This Look Infected_\01 The Hell Song.m4a [**]
27: Tue Sep 27 18:27:18 2005 => Scanning File C:\Dokumente und Einstellungen\All Users\Dokumente\Eigene Musik\Sum 41\Does This Look Infected_\02 Over My Head Better Off Dead.m4a [**]
28: Tue Sep 27 18:27:18 2005 => Scanning File C:\Dokumente und Einstellungen\All Users\Dokumente\Eigene Musik\Sum 41\Does This Look Infected_\03 My Direction.m4a [**]
29: Tue Sep 27 18:27:18 2005 => Scanning File C:\Dokumente und Einstellungen\All Users\Dokumente\Eigene Musik\Sum 41\Does This Look Infected_\04 Still Waiting.m4a [**]
30: Tue Sep 27 18:27:18 2005 => Scanning File C:\Dokumente und Einstellungen\All Users\Dokumente\Eigene Musik\Sum 41\Does This Look Infected_\05 A.N.I.C.m4a [**]
31: Tue Sep 27 18:27:19 2005 => Scanning File C:\Dokumente und Einstellungen\All Users\Dokumente\Eigene Musik\Sum 41\Does This Look Infected_\06 No Brains.m4a [**]
32: Tue Sep 27 18:27:19 2005 => Scanning File C:\Dokumente und Einstellungen\All Users\Dokumente\Eigene Musik\Sum 41\Does This Look Infected_\07 All Messed Up.m4a [**]
33: Tue Sep 27 18:27:19 2005 => Scanning File C:\Dokumente und Einstellungen\All Users\Dokumente\Eigene Musik\Sum 41\Does This Look Infected_\08 Mr. Amsterdam.m4a [**]
34: Tue Sep 27 18:27:19 2005 => Scanning File C:\Dokumente und Einstellungen\All Users\Dokumente\Eigene Musik\Sum 41\Does This Look Infected_\09 Thanks for Nothing.m4a [**]
35: Tue Sep 27 18:27:19 2005 => Scanning File C:\Dokumente und Einstellungen\All Users\Dokumente\Eigene Musik\Sum 41\Does This Look Infected_\10 Hyper-Insomnia-Para-Condrioid.m4a [**]
36: Tue Sep 27 18:27:19 2005 => Scanning File C:\Dokumente und Einstellungen\All Users\Dokumente\Eigene Musik\Sum 41\Does This Look Infected_\11 Billy Spleen.m4a [**]
37: Tue Sep 27 18:27:20 2005 => Scanning File C:\Dokumente und Einstellungen\All Users\Dokumente\Eigene Musik\Sum 41\Does This Look Infected_\12 Hooch.m4a [**]
38: Tue Sep 27 22:00:05 2005 => File C:\escheck\ECBackup\msn.exe.bkp infected by "IM-Worm.Win32.Bropia.v" Virus! Action Taken: No Action Taken.

--------------------------------------------------
--------------------- TAGGED ---------------------
--------------------------------------------------

1: Tue Sep 27 22:24:06 2005 => File C:\Programme\Norton AntiVirus\Quarantine\016564C7.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
2: Tue Sep 27 22:24:06 2005 => File C:\Programme\Norton AntiVirus\Quarantine\016C38C0.exe tagged as "not-a-virus:AdWare.Win32.Lop.p". Action Taken: No Action Taken.
3: Tue Sep 27 22:24:07 2005 => File C:\Programme\Norton AntiVirus\Quarantine\016F62BC.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
4: Tue Sep 27 22:24:07 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01720CB9.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
5: Tue Sep 27 22:24:08 2005 => File C:\Programme\Norton AntiVirus\Quarantine\017536B5.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
6: Tue Sep 27 22:24:08 2005 => File C:\Programme\Norton AntiVirus\Quarantine\017C0AAE.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
7: Tue Sep 27 22:24:08 2005 => File C:\Programme\Norton AntiVirus\Quarantine\017F34AA.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
8: Tue Sep 27 22:24:09 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01835EA7.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
9: Tue Sep 27 22:24:10 2005 => File C:\Programme\Norton AntiVirus\Quarantine\018608A3.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
10: Tue Sep 27 22:24:10 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01900698.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
11: Tue Sep 27 22:24:11 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01933095.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
12: Tue Sep 27 22:24:11 2005 => File C:\Programme\Norton AntiVirus\Quarantine\019D2E8A.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
13: Tue Sep 27 22:24:11 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01A30283.exe tagged as "not-a-virus:AdWare.Win32.Lop.j". Action Taken: No Action Taken.
14: Tue Sep 27 22:24:12 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01AA567C.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
15: Tue Sep 27 22:24:12 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01AD0078.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
16: Tue Sep 27 22:24:13 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01B02A74.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
17: Tue Sep 27 22:24:13 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01BD5266.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
18: Tue Sep 27 22:24:13 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01C7505B.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
19: Tue Sep 27 22:24:14 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01D14E51.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
20: Tue Sep 27 22:24:14 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01D72249.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
21: Tue Sep 27 22:24:15 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01DB4C46.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
22: Tue Sep 27 22:24:15 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01DE7642.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
23: Tue Sep 27 22:24:16 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01E1203F.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
24: Tue Sep 27 22:24:16 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01E44A3B.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
25: Tue Sep 27 22:24:17 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01E87437.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
26: Tue Sep 27 22:24:17 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01EE4830.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
27: Tue Sep 27 22:24:17 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01F2722D.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
28: Tue Sep 27 22:24:18 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01F84625.exe tagged as "not-a-virus:AdWare.Win32.Lop.j". Action Taken: No Action Taken.
29: Tue Sep 27 22:24:18 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01FB7022.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
30: Tue Sep 27 22:24:19 2005 => File C:\Programme\Norton AntiVirus\Quarantine\01FF1A1E.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
31: Tue Sep 27 22:24:19 2005 => File C:\Programme\Norton AntiVirus\Quarantine\02081813.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
32: Tue Sep 27 22:24:19 2005 => File C:\Programme\Norton AntiVirus\Quarantine\020C4210.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
33: Tue Sep 27 22:24:20 2005 => File C:\Programme\Norton AntiVirus\Quarantine\02154005.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
34: Tue Sep 27 22:24:20 2005 => File C:\Programme\Norton AntiVirus\Quarantine\02196A01.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
35: Tue Sep 27 22:24:21 2005 => File C:\Programme\Norton AntiVirus\Quarantine\022367F7.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
36: Tue Sep 27 22:24:21 2005 => File C:\Programme\Norton AntiVirus\Quarantine\022611F3.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
37: Tue Sep 27 22:24:21 2005 => File C:\Programme\Norton AntiVirus\Quarantine\02293BEF.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
38: Tue Sep 27 22:24:22 2005 => File C:\Programme\Norton AntiVirus\Quarantine\023D37DA.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
39: Tue Sep 27 22:24:22 2005 => File C:\Programme\Norton AntiVirus\Quarantine\024061D6.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
40: Tue Sep 27 22:24:23 2005 => File C:\Programme\Norton AntiVirus\Quarantine\02430BD3.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
41: Tue Sep 27 22:24:23 2005 => File C:\Programme\Norton AntiVirus\Quarantine\024A5FCC.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
42: Tue Sep 27 22:24:23 2005 => File C:\Programme\Norton AntiVirus\Quarantine\025033C4.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
43: Tue Sep 27 22:24:24 2005 => File C:\Programme\Norton AntiVirus\Quarantine\026105B2.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
44: Tue Sep 27 22:24:24 2005 => File C:\Programme\Norton AntiVirus\Quarantine\026A03A8.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
45: Tue Sep 27 22:24:25 2005 => File C:\Programme\Norton AntiVirus\Quarantine\03825FB4.exe tagged as "not-a-virus:AdWare.Win32.Lop.j". Action Taken: No Action Taken.
46: Tue Sep 27 22:24:25 2005 => File C:\Programme\Norton AntiVirus\Quarantine\049B45AB.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
47: Tue Sep 27 22:24:26 2005 => File C:\Programme\Norton AntiVirus\Quarantine\06D2141D.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
48: Tue Sep 27 22:24:26 2005 => File C:\Programme\Norton AntiVirus\Quarantine\07BB4616.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
49: Tue Sep 27 22:24:27 2005 => File C:\Programme\Norton AntiVirus\Quarantine\07C21A0E.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
50: Tue Sep 27 22:24:28 2005 => File C:\Programme\Norton AntiVirus\Quarantine\093F642E.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
51: Tue Sep 27 22:24:28 2005 => File C:\Programme\Norton AntiVirus\Quarantine\09A55A35.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
52: Tue Sep 27 22:24:28 2005 => File C:\Programme\Norton AntiVirus\Quarantine\0A0B503D.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
53: Tue Sep 27 22:24:29 2005 => File C:\Programme\Norton AntiVirus\Quarantine\0BE2289A.exe tagged as "not-a-virus:AdWare.Win32.Lop.m". Action Taken: No Action Taken.
54: Tue Sep 27 22:24:29 2005 => File C:\Programme\Norton AntiVirus\Quarantine\0BE55296.exe tagged as "not-a-virus:AdWare.Win32.Lop.m". Action Taken: No Action Taken.
55: Tue Sep 27 22:24:29 2005 => File C:\Programme\Norton AntiVirus\Quarantine\0BFC787D.exe tagged as "not-a-virus:AdWare.Win32.Lop.m". Action Taken: No Action Taken.
56: Tue Sep 27 22:24:30 2005 => File C:\Programme\Norton AntiVirus\Quarantine\10A950C7.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
57: Tue Sep 27 22:24:31 2005 => File C:\Programme\Norton AntiVirus\Quarantine\1403341D.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
58: Tue Sep 27 22:24:31 2005 => File C:\Programme\Norton AntiVirus\Quarantine\14692A25.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
59: Tue Sep 27 22:24:31 2005 => File C:\Programme\Norton AntiVirus\Quarantine\16541C38.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
60: Tue Sep 27 22:24:32 2005 => File C:\Programme\Norton AntiVirus\Quarantine\1668784B.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
61: Tue Sep 27 22:24:32 2005 => File C:\Programme\Norton AntiVirus\Quarantine\1E9F7A92.exe tagged as "not-a-virus:Porn-Dialer.Win32.Piratos". Action Taken: No Action Taken.
62: Tue Sep 27 22:24:33 2005 => File C:\Programme\Norton AntiVirus\Quarantine\1EA64E8B.exe tagged as "not-a-virus:Porn-Dialer.Win32.Piratos". Action Taken: No Action Taken.
63: Tue Sep 27 22:24:33 2005 => File C:\Programme\Norton AntiVirus\Quarantine\1EAC2284.exe tagged as "not-a-virus:Porn-Dialer.Win32.Piratos". Action Taken: No Action Taken.
64: Tue Sep 27 22:24:33 2005 => File C:\Programme\Norton AntiVirus\Quarantine\1EAF4C80.exe tagged as "not-a-virus:Porn-Dialer.Win32.Piratos". Action Taken: No Action Taken.
65: Tue Sep 27 22:24:33 2005 => File C:\Programme\Norton AntiVirus\Quarantine\1EB3767C.exe tagged as "not-a-virus:Porn-Dialer.Win32.Piratos". Action Taken: No Action Taken.
66: Tue Sep 27 22:24:33 2005 => File C:\Programme\Norton AntiVirus\Quarantine\1FFA6623.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
67: Tue Sep 27 22:24:34 2005 => File C:\Programme\Norton AntiVirus\Quarantine\20605C2B.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
68: Tue Sep 27 22:24:34 2005 => File C:\Programme\Norton AntiVirus\Quarantine\20C65232.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
69: Tue Sep 27 22:24:35 2005 => File C:\Programme\Norton AntiVirus\Quarantine\20DC7F7C.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
70: Tue Sep 27 22:24:35 2005 => File C:\Programme\Norton AntiVirus\Quarantine\21923E42.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
71: Tue Sep 27 22:24:36 2005 => File C:\Programme\Norton AntiVirus\Quarantine\21E45837.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
72: Tue Sep 27 22:24:36 2005 => File C:\Programme\Norton AntiVirus\Quarantine\27FD5178.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
73: Tue Sep 27 22:24:37 2005 => File C:\Programme\Norton AntiVirus\Quarantine\2B8A2222.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
74: Tue Sep 27 22:24:37 2005 => File C:\Programme\Norton AntiVirus\Quarantine\2C560E31.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
75: Tue Sep 27 22:24:37 2005 => File C:\Programme\Norton AntiVirus\Quarantine\2D2A18B6.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
76: Tue Sep 27 22:24:38 2005 => File C:\Programme\Norton AntiVirus\Quarantine\2D897048.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
77: Tue Sep 27 22:24:38 2005 => File C:\Programme\Norton AntiVirus\Quarantine\2DEF664F.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
78: Tue Sep 27 22:24:39 2005 => File C:\Programme\Norton AntiVirus\Quarantine\2F1D2374.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
79: Tue Sep 27 22:24:39 2005 => File C:\Programme\Norton AntiVirus\Quarantine\31D30E22.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
80: Tue Sep 27 22:24:40 2005 => File C:\Programme\Norton AntiVirus\Quarantine\344B6AB2.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
81: Tue Sep 27 22:24:40 2005 => File C:\Programme\Norton AntiVirus\Quarantine\371A5E21.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
82: Tue Sep 27 22:24:40 2005 => File C:\Programme\Norton AntiVirus\Quarantine\37815428.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
83: Tue Sep 27 22:24:40 2005 => File C:\Programme\Norton AntiVirus\Quarantine\381431A0.exe tagged as "not-a-virus:Porn-Dialer.Win32.Piratos". Action Taken: No Action Taken.
84: Tue Sep 27 22:24:41 2005 => File C:\Programme\Norton AntiVirus\Quarantine\38B3363F.exe tagged as "not-a-virus:AdWare.Win32.Lop.j". Action Taken: No Action Taken.
85: Tue Sep 27 22:24:41 2005 => File C:\Programme\Norton AntiVirus\Quarantine\3D9D5589.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
86: Tue Sep 27 22:24:42 2005 => File C:\Programme\Norton AntiVirus\Quarantine\4014321A.exe tagged as "not-a-virus:AdWare.Win32.Lop.j". Action Taken: No Action Taken.
87: Tue Sep 27 22:24:42 2005 => File C:\Programme\Norton AntiVirus\Quarantine\42464AF5.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
88: Tue Sep 27 22:24:43 2005 => File C:\Programme\Norton AntiVirus\Quarantine\43111027.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
89: Tue Sep 27 22:24:43 2005 => File C:\Programme\Norton AntiVirus\Quarantine\43DD7C36.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
90: Tue Sep 27 22:24:44 2005 => File C:\Programme\Norton AntiVirus\Quarantine\4443723D.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
91: Tue Sep 27 22:24:44 2005 => File C:\Programme\Norton AntiVirus\Quarantine\47340415.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
92: Tue Sep 27 22:24:45 2005 => File C:\Programme\Norton AntiVirus\Quarantine\4E555611.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
93: Tue Sep 27 22:24:45 2005 => File C:\Programme\Norton AntiVirus\Quarantine\503A2444.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
94: Tue Sep 27 22:24:45 2005 => File C:\Programme\Norton AntiVirus\Quarantine\504760CF.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
95: Tue Sep 27 22:24:46 2005 => File C:\Programme\Norton AntiVirus\Quarantine\508C3E39.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
96: Tue Sep 27 22:24:46 2005 => File C:\Programme\Norton AntiVirus\Quarantine\5575280D.exe tagged as "not-a-virus:AdWare.Win32.Lop.j". Action Taken: No Action Taken.
97: Tue Sep 27 22:24:47 2005 => File C:\Programme\Norton AntiVirus\Quarantine\576832CB.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
98: Tue Sep 27 22:24:47 2005 => File C:\Programme\Norton AntiVirus\Quarantine\57767411.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
99: Tue Sep 27 22:24:48 2005 => File C:\Programme\Norton AntiVirus\Quarantine\57791E0D.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
100: Tue Sep 27 22:24:48 2005 => File C:\Programme\Norton AntiVirus\Quarantine\577D480A.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
101: Tue Sep 27 22:24:49 2005 => File C:\Programme\Norton AntiVirus\Quarantine\57807206.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
102: Tue Sep 27 22:24:49 2005 => File C:\Programme\Norton AntiVirus\Quarantine\57831C03.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
103: Tue Sep 27 22:24:50 2005 => File C:\Programme\Norton AntiVirus\Quarantine\578645FF.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
104: Tue Sep 27 22:24:50 2005 => File C:\Programme\Norton AntiVirus\Quarantine\578A6FFB.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
105: Tue Sep 27 22:24:51 2005 => File C:\Programme\Norton AntiVirus\Quarantine\579043F4.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
106: Tue Sep 27 22:24:51 2005 => File C:\Programme\Norton AntiVirus\Quarantine\579717ED.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
107: Tue Sep 27 22:24:51 2005 => File C:\Programme\Norton AntiVirus\Quarantine\579A41E9.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
108: Tue Sep 27 22:24:52 2005 => File C:\Programme\Norton AntiVirus\Quarantine\59CB121D.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
109: Tue Sep 27 22:24:52 2005 => File C:\Programme\Norton AntiVirus\Quarantine\59ED155B.dll tagged as "not-a-virus:AdWare.Win32.SideFind". Action Taken: No Action Taken.
110: Tue Sep 27 22:24:52 2005 => File C:\Programme\Norton AntiVirus\Quarantine\59F13F57.dll tagged as "not-a-virus:AdWare.Win32.SideFind". Action Taken: No Action Taken.
111: Tue Sep 27 22:24:53 2005 => File C:\Programme\Norton AntiVirus\Quarantine\5A1E1D79.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
112: Tue Sep 27 22:24:53 2005 => File C:\Programme\Norton AntiVirus\Quarantine\5A320824.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
113: Tue Sep 27 22:24:54 2005 => File C:\Programme\Norton AntiVirus\Quarantine\5A987E2C.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
114: Tue Sep 27 22:24:54 2005 => File C:\Programme\Norton AntiVirus\Quarantine\5B646A3B.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
115: Tue Sep 27 22:24:55 2005 => File C:\Programme\Norton AntiVirus\Quarantine\5BCA6042.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
116: Tue Sep 27 22:24:55 2005 => File C:\Programme\Norton AntiVirus\Quarantine\5C1C7A38.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
117: Tue Sep 27 22:24:56 2005 => File C:\Programme\Norton AntiVirus\Quarantine\5C30564A.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
118: Tue Sep 27 22:24:57 2005 => File C:\Programme\Norton AntiVirus\Quarantine\5C503654.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
119: Tue Sep 27 22:24:58 2005 => File C:\Programme\Norton AntiVirus\Quarantine\5C957A09.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
120: Tue Sep 27 22:24:58 2005 => File C:\Programme\Norton AntiVirus\Quarantine\5E8804C7.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
121: Tue Sep 27 22:24:59 2005 => File C:\Programme\Norton AntiVirus\Quarantine\63700850.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
122: Tue Sep 27 22:25:00 2005 => File C:\Programme\Norton AntiVirus\Quarantine\6461508E.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
123: Tue Sep 27 22:25:00 2005 => File C:\Programme\Norton AntiVirus\Quarantine\655C4E1B.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
124: Tue Sep 27 22:25:00 2005 => File C:\Programme\Norton AntiVirus\Quarantine\65C24423.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
125: Tue Sep 27 22:25:01 2005 => File C:\Programme\Norton AntiVirus\Quarantine\65E764E0.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
126: Tue Sep 27 22:25:01 2005 => File C:\Programme\Norton AntiVirus\Quarantine\66283A2A.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
127: Tue Sep 27 22:25:02 2005 => File C:\Programme\Norton AntiVirus\Quarantine\668E3032.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
128: Tue Sep 27 22:25:02 2005 => File C:\Programme\Norton AntiVirus\Quarantine\67AC3636.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
129: Tue Sep 27 22:25:03 2005 => File C:\Programme\Norton AntiVirus\Quarantine\67C11248.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
130: Tue Sep 27 22:25:03 2005 => File C:\Programme\Norton AntiVirus\Quarantine\6D0836DC.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
131: Tue Sep 27 22:25:04 2005 => File C:\Programme\Norton AntiVirus\Quarantine\71B87629.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
132: Tue Sep 27 22:25:04 2005 => File C:\Programme\Norton AntiVirus\Quarantine\724B590C.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
133: Tue Sep 27 22:25:05 2005 => File C:\Programme\Norton AntiVirus\Quarantine\733D7235.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
134: Tue Sep 27 22:25:05 2005 => File C:\Programme\Norton AntiVirus\Quarantine\73514E47.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
135: Tue Sep 27 22:25:05 2005 => File C:\Programme\Norton AntiVirus\Quarantine\73B7444F.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
136: Tue Sep 27 22:25:06 2005 => File C:\Programme\Norton AntiVirus\Quarantine\742808D8.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
137: Tue Sep 27 22:25:06 2005 => File C:\Programme\Norton AntiVirus\Quarantine\765A21B3.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
138: Tue Sep 27 22:25:07 2005 => File C:\Programme\Norton AntiVirus\Quarantine\769F6568.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
139: Tue Sep 27 22:25:07 2005 => File C:\Programme\Norton AntiVirus\Quarantine\76AB7B02.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
140: Tue Sep 27 22:25:08 2005 => File C:\Programme\Norton AntiVirus\Quarantine\78551DC1.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
141: Tue Sep 27 22:25:09 2005 => File C:\Programme\Norton AntiVirus\Quarantine\7A90655A.exe tagged as "not-a-virus:AdWare.Win32.Lop.m". Action Taken: No Action Taken.
142: Tue Sep 27 22:25:09 2005 => File C:\Programme\Norton AntiVirus\Quarantine\7CE33C20.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
143: Tue Sep 27 22:25:09 2005 => File C:\Programme\Norton AntiVirus\Quarantine\7D7A73AF.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
144: Tue Sep 27 22:25:10 2005 => File C:\Programme\Norton AntiVirus\Quarantine\7DAF282F.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
145: Tue Sep 27 22:25:10 2005 => File C:\Programme\Norton AntiVirus\Quarantine\7DBF3764.exe tagged as "not-a-virus:AdWare.Win32.Lop.z". Action Taken: No Action Taken.
146: Tue Sep 27 22:25:11 2005 => File C:\Programme\Norton AntiVirus\Quarantine\7E151E37.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
147: Tue Sep 27 22:25:11 2005 => File C:\Programme\Norton AntiVirus\Quarantine\7ECD2E34.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.
148: Tue Sep 27 22:25:12 2005 => File C:\Programme\Norton AntiVirus\Quarantine\7EE10A46.exe tagged as "not-a-virus:AdWare.Win32.Lop.ab". Action Taken: No Action Taken.
149: Tue Sep 27 22:25:12 2005 => File C:\Programme\Norton AntiVirus\Quarantine\7FB24221.exe tagged as "not-a-virus:AdWare.Win32.Lop.ad". Action Taken: No Action Taken.

Gruss Patrick
paddy_1988
 
Beiträge: 7
Registriert: 26.09.2005, 17:44
Wohnort: Schweiz

Beitragvon Nikita am 28.09.2005, 11:51


Im Windows-Explorer->Extras->Ordneroptionen->den Reiter "Ansicht"->Versteckte Dateien und Ordner-> "alle Dateien und Ordner anzeigen" aktivieren
+
Im Windows-Explorer->Extras->Ordneroptionen->den Reiter "Ansicht"->Dateien und Ordner-> "Geschützte Systemdateien ausblenden (empfohlen)" deaktivieren


CCleaner -->loesche alle temporaeren Dateien, vor allem die index.dat anhaken
http://virus-protect.net/temp.html

#öffne das HijackThis-->> Button "scan" -->> Häkchen setzen -->> Button "Fix checked" -->> PC neustarten

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.lhzzanwkzepruicijafecda.com/ ... rTOYuR.htm
O2 - BHO: (no name) - {48FFC4DF-22C0-E219-FCE2-7477A828FC58} - (no file)
O2 - BHO: (no name) - {5954C02A-7FA3-50E2-9340-90A733A4BC48} - (no file)

PC neustarten-->i den abgesicherten Modus (F8 druecken, wenn der PC hochfaehrt, melde dich als Administrator an)

C:\Dokumente und Einstellungen\All Users\Dokumente\Eigene Musik\Sum 41 <---loeschen (plus alle Unterordner)

---------------------------------------------------------------------------------------------------

Start -- alle Programme -- Zubehör -- Editor und kopiere folgenden Text rein:


dir %Windir%\tasks /a h > files.txt
notepad files.txt


- Speichern als: findjobs.bat
- abspeichern unter : Dateityp: alle Dateien
- speichere auf dem Desktop
- Locate findjobs.bat-- doppelklick auf die bat-Datei , der Editor öffnet sich -- poste den Text
Nikita
Moderator
 
Beiträge: 11478
Registriert: 07.12.2003, 16:53
Wohnort: Lissabon

Beitragvon paddy_1988 am 28.09.2005, 15:12

Hallo

CCleaner ist gemacht.

Beim HijackThis war das
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =.....
nicht (mehr) vorhanden.

Hier das Resultat von findjobs.bat

Volume in Laufwerk C: hat keine Bezeichnung.
Volumeseriennummer: 3C51-8D2F

Verzeichnis von C:\Windows\tasks

24.09.2005 17:03 <DIR> .
24.09.2005 17:03 <DIR> ..
24.09.2005 13:30 400 1-Klick-Wartung.job
27.09.2005 23:00 286 A23706999108BD2D.job
27.09.2005 23:00 272 A900568391B7C737.job
27.09.2005 23:00 280 ABBF32E09184A8BC.job
27.09.2005 23:00 276 AFC5689491BB19A0.job
27.09.2005 23:00 280 B0A684A390512F63.job
27.09.2005 23:00 276 B2AFA1AC93084BF8.job
18.08.2001 03:00 65 desktop.ini
29.08.2005 23:02 390 FRU Task #Hewlett-Packard#hp psc 1200 series#1118350876.job
24.09.2005 09:50 572 Norton AntiVirus - Meinen Computer pr
paddy_1988
 
Beiträge: 7
Registriert: 26.09.2005, 17:44
Wohnort: Schweiz

Beitragvon Nikita am 28.09.2005, 15:22

Start -- alle Programme -- Zubehör -- Editor und kopiere folgenden Text rein:

%systemdrive%
cd C:\WINDOWS\Tasks
attrib -r -s -h A23706999108BD2D.job
attrib -r -s -h A900568391B7C737.job
attrib -r -s -h ABBF32E09184A8BC.job
attrib -r -s -h AFC5689491BB19A0.job
attrib -r -s -h B0A684A390512F63.job
attrib -r -s -h B2AFA1AC93084BF8.job
del A23706999108BD2D.job
del A900568391B7C737.job
del ABBF32E09184A8BC.job
del AFC5689491BB19A0.job
del B0A684A390512F63.job
del B2AFA1AC93084BF8.job


- Speichern als: remjob.bat
- abspeichern unter : Dateityp: alle Dateien
- speichere auf dem Desktop
- Locate remjob.bat-- doppelklick auf die bat-Datei , der Editor öffnet sich kurz ist normal

Poste nochmals findjobs.bat
Nikita
Moderator
 
Beiträge: 11478
Registriert: 07.12.2003, 16:53
Wohnort: Lissabon

Beitragvon paddy_1988 am 28.09.2005, 15:33

Hallo

Noch was zu vorher: Sum 41 ist eine Band.. Habe ich nicht gelöscht..

Hier das Resultat:

Volume in Laufwerk C: hat keine Bezeichnung.
Volumeseriennummer: 3C51-8D2F

Verzeichnis von C:\Windows\tasks

28.09.2005 15:28 <DIR> .
28.09.2005 15:28 <DIR> ..
24.09.2005 13:30 400 1-Klick-Wartung.job
18.08.2001 03:00 65 desktop.ini
29.08.2005 23:02 390 FRU Task #Hewlett-Packard#hp psc 1200 series#1118350876.job
24.09.2005 09:50 572 Norton AntiVirus - Meinen Computer pr
paddy_1988
 
Beiträge: 7
Registriert: 26.09.2005, 17:44
Wohnort: Schweiz

Beitragvon Nikita am 28.09.2005, 19:44

Sum 41\ ist was es ist, aber es ist auf jeden Fall nicht sauber :?
>
Sum 41\Does This Look Infected_\*.*


ansonsten, wie stehts ??

C:\escheck\ECBackup\msn.exe.bkp <--loeschen

scanne mit ewido und poste das Log vom scan
http://virus-protect.net/ewido.html
Nikita
Moderator
 
Beiträge: 11478
Registriert: 07.12.2003, 16:53
Wohnort: Lissabon

Beitragvon Yourhighness am 28.09.2005, 19:59

Nabend ;-)

Sum 41 ist eine Band ;-) und wenn ich micht recht entsinne waren es mp3s...

http://music.lycos.com/artist/album.asp ... &id=468672

LG,
Yourhighness
 

Beitragvon paddy_1988 am 28.09.2005, 20:05

"Does This Look Infected" heisst ein Album von Sum 41!!!

msn.exe.bkp ist gelöscht..

ewido report:

---------------------------------------------------------
ewido security suite - Scan Report
---------------------------------------------------------

+ Erstellt am: 21:12:23, 28.09.2005
+ Report-Checksumme: 8BB37D3F

+ Scanergebnis:

HKLM\SOFTWARE\Classes\CLSID\{70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} -> Spyware.GameSpyArcade : Ignoriert
HKLM\SOFTWARE\Classes\GSDA.GSDACtl\CLSID\\ -> Spyware.GameSpyArcade : Ignoriert
HKLM\SOFTWARE\Classes\GSDA.GSDACtl.1\CLSID\\ -> Spyware.GameSpyArcade : Ignoriert
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} -> Spyware.GameSpyArcade : Ignoriert
HKLM\SOFTWARE\Classes\Interface\{8578D35E-C6C0-4808-9A80-0F6C29A2C423} -> Spyware.HotBar : Gesäubert mit Backup
HKLM\SOFTWARE\Classes\Interface\{BC190DA5-0187-4D99-B3AC-6C45EA1B9324} -> Spyware.HotBar : Gesäubert mit Backup
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\ins -> Spyware.WebRebates : Gesäubert mit Backup
HKU\S-1-5-21-538525854-2018322775-2885428501-1004\Software\Microsoft\Internet Explorer\Extensions\CmdMapping\\{946B3E9E-E21A-49c8-9F63-900533FAFE14} -> Spyware.HotBar : Gesäubert mit Backup
HKU\S-1-5-21-538525854-2018322775-2885428501-1004\Software\Microsoft\Internet Explorer\Extensions\CmdMapping\\{E77EDA01-3C56-4a96-8D08-02B42891C169} -> Spyware.HotBar : Gesäubert mit Backup
C:\Dokumente und Einstellungen\Christoph\Anwendungsdaten\ShopperReports -> Spyware.HotBar : Gesäubert mit Backup
C:\Dokumente und Einstellungen\Christoph\Anwendungsdaten\ShopperReports\cs -> Spyware.HotBar : Gesäubert mit Backup
C:\Dokumente und Einstellungen\Christoph\Anwendungsdaten\ShopperReports\cs\Config.xml -> Spyware.HotBar : Gesäubert mit Backup
C:\Dokumente und Einstellungen\Christoph\Anwendungsdaten\ShopperReports\cs\db -> Spyware.HotBar : Gesäubert mit Backup
C:\Dokumente und Einstellungen\Christoph\Anwendungsdaten\ShopperReports\cs\db\Aliases.dbs -> Spyware.HotBar : Gesäubert mit Backup
C:\Dokumente und Einstellungen\Christoph\Anwendungsdaten\ShopperReports\cs\db\Sites.dbs -> Spyware.HotBar : Gesäubert mit Backup
C:\Dokumente und Einstellungen\Christoph\Anwendungsdaten\ShopperReports\cs\dwld -> Spyware.HotBar : Gesäubert mit Backup
C:\Dokumente und Einstellungen\Christoph\Anwendungsdaten\ShopperReports\cs\dwld\WhiteList.xip -> Spyware.HotBar : Gesäubert mit Backup
C:\Dokumente und Einstellungen\Christoph\Anwendungsdaten\ShopperReports\cs\persist.dbs -> Spyware.HotBar : Gesäubert mit Backup
C:\Dokumente und Einstellungen\Christoph\Anwendungsdaten\ShopperReports\cs\report -> Spyware.HotBar : Gesäubert mit Backup
C:\Dokumente und Einstellungen\Christoph\Anwendungsdaten\ShopperReports\cs\report\ag.xml -> Spyware.HotBar : Gesäubert mit Backup
C:\Dokumente und Einstellungen\Christoph\Anwendungsdaten\ShopperReports\cs\report\ag.xml.db -> Spyware.HotBar : Gesäubert mit Backup
C:\Dokumente und Einstellungen\Christoph\Anwendungsdaten\ShopperReports\cs\report\Header.xml -> Spyware.HotBar : Gesäubert mit Backup
C:\Dokumente und Einstellungen\Christoph\Anwendungsdaten\ShopperReports\cs\report\send.xml -> Spyware.HotBar : Gesäubert mit Backup
C:\Dokumente und Einstellungen\Christoph\Anwendungsdaten\ShopperReports\cs\report\send.xml.db -> Spyware.HotBar : Gesäubert mit Backup
C:\Dokumente und Einstellungen\Christoph\Anwendungsdaten\ShopperReports\cs\res2 -> Spyware.HotBar : Gesäubert mit Backup
C:\Dokumente und Einstellungen\Christoph\Anwendungsdaten\ShopperReports\cs\res2\WhiteList.dbs -> Spyware.HotBar : Gesäubert mit Backup
C:\Dokumente und Einstellungen\Christoph\Anwendungsdaten\ShopperReports\shprrprt.log -> Spyware.HotBar : Gesäubert mit Backup


::Report Ende

GameSpyArcade habe ich nicht gelöscht, da diese Programm, soviel ich weiss, gebraucht wird um übers Internet zu gamen...

Gruss
paddy_1988
 
Beiträge: 7
Registriert: 26.09.2005, 17:44
Wohnort: Schweiz

Beitragvon Nikita am 29.09.2005, 00:08

"Does This Look Infected" heisst ein Album von Sum 41!!!
:D :D :D :D :D :D :D :oops: :oops: :oops:
Nikita
Moderator
 
Beiträge: 11478
Registriert: 07.12.2003, 16:53
Wohnort: Lissabon

Beitragvon paddy_1988 am 30.09.2005, 18:00

guten Tag

könnte mir jemand noch einen Kommentar zum ewido Report geben?!
Und was ich sonst noch machen könnte?!? Internet ist nämlich immer noch langsam...

paddy
paddy_1988
 
Beiträge: 7
Registriert: 26.09.2005, 17:44
Wohnort: Schweiz

Beitragvon Nikita am 30.09.2005, 18:40

http://virus-protect.net/reinigungstoolsregistry.html
TuneUp 2006 (30 Tage free) Shareware
http://www.tuneup.de/products/tuneup-utilities/
wende an:
Cleanup repair -- TuneUp Diskcleaner
Cleanup repair -- Registry Cleaner

dann berichte ;)
Nikita
Moderator
 
Beiträge: 11478
Registriert: 07.12.2003, 16:53
Wohnort: Lissabon

Beitragvon paddy_1988 am 01.10.2005, 15:37

alles gemacht und gelöscht..

habe aber vergessen, alle Dateien zu kopieren um hier zu posten...
sorry..
paddy_1988
 
Beiträge: 7
Registriert: 26.09.2005, 17:44
Wohnort: Schweiz


Zurück zu Online- und PC-Sicherheit

Wer ist online?

Mitglieder in diesem Forum: 0 Mitglieder und 0 Gäste