der jenny das aol abzugewöhnen hab ich auch schon versucht... /public/style_emoticons/default/lol.gif...
ich hab doch garkeinen router mehr dran und ohne aol komm ich net ins internet
|
|
- USB-Partner (Interessiert?) - |
der jenny das aol abzugewöhnen hab ich auch schon versucht... /public/style_emoticons/default/lol.gif...
der jenny das aol abzugewöhnen hab ich auch schon versucht... /public/style_emoticons/default/lol.gif...
ich hab doch garkeinen router mehr dran und ohne aol komm ich net ins internet /public/style_emoticons/default/(.gif...
hart ist das leben an der küste
www.kundendeutsch.de
der jenny das aol abzugewöhnen hab ich auch schon versucht... /public/style_emoticons/default/lol.gif...
ich hab doch garkeinen router mehr dran und ohne aol komm ich net ins internet /public/style_emoticons/default/(.gif...
dann hast du meinen beitrag als achtlos überflogen.. ok... selbst schuld /public/style_emoticons/default/p.gif...
Vielen Dank euch beiden! /public/style_emoticons/default/knuddel....
Aber was bitte ist sp2 @ Poncho /public/style_emoticons/default/question...
Irgendwas ungewöhnliches? paar sachen kann ich nicht zuordnen.
http://www.arcor.de/...96431353865.jpg
Vielen Dank euch beiden! /public/style_emoticons/default/knuddel....
Aber was bitte ist sp2 @ Poncho /public/style_emoticons/default/question...
Service Pack 2 für windows.. schliesst einige sicherheitslücken /public/style_emoticons/default/hello.gi...
sonst alles cool


sonst alles cool
willst du net lieber noch nen blick drauf werfen /public/style_emoticons/default/question...
/public/style_emoticons/default/p.gif...
/public/style_emoticons/default/lol.gif... /public/style_emoticons/default/lol.gif... /public/style_emoticons/default/lol.gif... /public/style_emoticons/default/lol.gif...
Logfile of HijackThis v1.99.1
Scan saved at 20:55:24, on 08.05.2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32Ati2evxx.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32S24EvMon.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSsystem32ZCfgSvc.exe
C:WINDOWSExplorer.EXE
C:ProgrammeAVPersonalAVGNT.EXE
C:WINDOWSsystem32ctfmon.exe
C:ProgrammeAVPersonalAVGUARD.EXE
C:ProgrammeAVPersonalAVWUPSRV.EXE
C:WINDOWSsystem32RegSrvc.exe
C:WINDOWSsystem32RoamMgr.exe
C:WINDOWSsystem321XConfig.exe
C:PROGRA~1VersatelVersatel.exe
C:mIRCmirc.exe
C:PROGRA~1MOZILL~1FIREFOX.EXE
C:ProgrammeICQLiteICQLite.exe
C:ProgrammeWinRARWinRAR.exe
C:DOKUME~1BineLOKALE~1TempRar$EX00.423HijackThis.exe
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://google.icq.co...earch_frame.php
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://www.versatel.de/internet-cd/
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Window Title = Microsoft Internet Explorer von Versatel
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - C:PROGRA~1FlashGetjccatch.dll
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:PROGRA~1FlashGetfgiebar.dll
O4 - HKLM..Run: [Anti-Virus Update Scheduler V1.39.12R] C:WINDOWSSystem32alewtf.exe
O4 - HKLM..Run: [AVGCtrl] C:ProgrammeAVPersonalAVGNT.EXE /min
O4 - HKCU..Run: [CTFMON.EXE] C:WINDOWSsystem32ctfmon.exe
O4 - HKCU..RunOnce: [ICQ Lite] C:ProgrammeICQLiteICQLite.exe -trayboot
O8 - Extra context menu item: Alles mit FlashGet laden - C:ProgrammeFlashGetjc_all.htm
O8 - Extra context menu item: Mit FlashGet laden - C:ProgrammeFlashGetjc_link.htm
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:PROGRA~1MICROS~2Office10EXCEL.EXE/3000
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:ProgrammeICQLiteICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:ProgrammeICQLiteICQLite.exe
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:PROGRA~1FlashGetflashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:PROGRA~1FlashGetflashget.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.versatel.de/internet-cd/
O17 - HKLMSystemCCSServicesTcpip..{C671FCE7-A0C9-4039-AE6D-2C5EA8CACF35}: NameServer = 212.7.148.65 212.7.148.97
O20 - Winlogon Notify: Sebring - C:WINDOWSsystem32LgNotify.dll
O23 - Service: AntiVir Service (AntiVirService) - H+BEDV Datentechnik GmbH - C:ProgrammeAVPersonalAVGUARD.EXE
O23 - Service: Ati HotKey Poller - Unknown owner - C:WINDOWSsystem32Ati2evxx.exe
O23 - Service: AntiVir Update (AVWUpSrv) - H+BEDV Datentechnik GmbH, Germany - C:ProgrammeAVPersonalAVWUPSRV.EXE
O23 - Service: Hardware Clock Driver (hwclock) - Unknown owner - C:WINDOWSSystem32hwclock.exe (file missing)
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:ProgrammeIntelNCSSyncNetSvc.exe
O23 - Service: PsShutdown (PsShutdownSvc) - Systems Internals - C:WINDOWSSystem32PSSDNSVC.EXE
O23 - Service: RegSrvc - Intel Corporation - C:WINDOWSsystem32RegSrvc.exe
O23 - Service: RoamMgr - Intel Corporation - C:WINDOWSsystem32RoamMgr.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:WINDOWSsystem32S24EvMon.exe


ich will nur dem mayo nich mehr helfen /public/style_emoticons/default/hello.gi... /public/style_emoticons/default/brutal.g... :aufsmaul: /public/style_emoticons/default/p.gif...


is sauber.... /public/style_emoticons/default/hello.gi...
ich will nur dem mayo nich mehr helfen /public/style_emoticons/default/hello.gi... /public/style_emoticons/default/brutal.g... :aufsmaul: /public/style_emoticons/default/p.gif...
is sauber.... /public/style_emoticons/default/hello.gi...
ich will nur dem mayo nich mehr helfen /public/style_emoticons/default/hello.gi... /public/style_emoticons/default/brutal.g... :aufsmaul: /public/style_emoticons/default/p.gif...
danke /public/style_emoticons/default/).gif...
aber was is alewtf.exe /public/style_emoticons/default/question...
Collectivo Ultra Francoforte

quelle: http://www.sophos.de...rojfirebya.htmlTroj/Fireby-A ist ein Proxytrojaner.
Troj/Fireby-A erstellt den folgenden Registrierungseintrag, damit er beim Systemstart aktiviert wird:
HKLMSoftwareMicrosoftWindowsCurrentVersionRun
Anti-Virus Update Scheduler V1.39.12R
<vollständiger Pfad zum Trojaner>
Troj/Fireby-A erstellt die folgenden Registrierungseinträge, um zu versuchen die Windows Firewall zu umgehen:
HKLMSYSTEMControlSet001ServicesSharedAccessParameters
FirewallPolicyStandardProfileAuthorizedApplicationsList
<vollständiger Pfad zum Trojaner>
<vollständiger Pfad zum Trojaner>:*:Enabled:Server
HKLMSYSTEMControlSet001ServicesSharedAccessParameters
FirewallPolicyDomainProfileAuthorizedApplicationsList
<vollständiger Pfad zum Trojaner>
<vollständiger Pfad zum Trojaner>:*:Enabled:Server
Troj/Fireby-A kontaktiert die Adresse 209.25.161.216 und fungiert dann als Proxyserver an einem zufälligen Port.
hart ist das leben an der küste
www.kundendeutsch.de
is sauber.... /public/style_emoticons/default/hello.gi...
ich will nur dem mayo nich mehr helfen /public/style_emoticons/default/hello.gi... /public/style_emoticons/default/brutal.g... :aufsmaul: /public/style_emoticons/default/p.gif...
danke /public/style_emoticons/default/).gif...
aber was is alewtf.exe /public/style_emoticons/default/question...
Keine Ahnung, sagt mir nix, und finde ich auch überhaupt nix! Würde den mal raussschmeißen aus dem Autostart und beobachten ob die Kiste weiterhin problemlos läuft! Ich denke der Eintrag ist unnötig..
www.fielmann.de
/public/style_emoticons/default/stupid.g... /public/style_emoticons/default/question...
www.fielmann.de
/public/style_emoticons/default/stupid.g... /public/style_emoticons/default/question...
er meint mich.... /public/style_emoticons/default/lol.gif...
aber ich kann auch nich nach jedem mir unbekannten prozess googlen
www.fielmann.de
/public/style_emoticons/default/stupid.g... /public/style_emoticons/default/question...
er meint mich.... /public/style_emoticons/default/lol.gif...
aber ich kann auch nich nach jedem mir unbekannten prozess googlen
axo...dachte schon /public/style_emoticons/default/lol.gif...
Mitglieder: 0, Gäste: 1, unsichtbare Mitglieder: 0