Home > General > Eliteyuk32.exe


Regards, Paul Logfile of HijackThis v1.99.1 Scan saved at 13:28:33, on 28/04/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe Any info on this would be great. When I remove the registery value, it comes back. It will be removed on reboot. 1:03 PM: 00141641.

The time now is 02:29 AM. -- Mobile_Default -- TSF - v2.0 -- TSF - v1.0 Contact Us - Tech Support Forum - Site Map - Community Rules - Terms of Programmierung allgemein Internet & Netzwerke Rund um Online Browser, Add-ons E-Mail, Spam Webserver, Webhosting, Clouds Messenger, IP-Telefonie Facebook & Check out the forums and get free advice from the experts. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site. http://www.techsupportforum.com/forums/f284/eliteyuk32-exe-57496.html

der HijackThis bringt mir einen komischen eintrag den ich nicht wegbekomme: Logfile of HijackThis v1.99.1 Scan saved at 16:45:32, on 08.04.2005 Platform: Windows XP (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 (6.00.2600.0000) It will be removed on reboot. 1:04 PM: Quarantining All Traces: trojan_backdoor_retro64 1:04 PM: Quarantining All Traces: 180search assistant/zango 1:05 PM: 180search assistant/zango is in use. In some systems, this may be the F5 key, so try that if F8 doesn't work.

und ich habe 120gb wohin soll ich die denn bitte schön sichern?? weißt du warum das zeugs drauf ist? ARGH. Internetverbindungsfirewall (Win XP und XP SP1) oder die Windows "Firewall" (Win XP SP2) aktivieren -> war aktiviert 3.

Foren durchsuchen Zeige Themen Zeige Beiträge Stichwortsuche Erweiterte Suche Gehe zu... By continuing to browse our site you agree to our use of data and cookies.Tell me more | Cookie Preferences Partially Powered By Products Found At Lampwrights.com Please click here http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=FR_FR&c=Q105&bd=presario&pf=desktop a+ Donnez votre avis Utile +0 Signaler Bagou32 18 juin 2005 à 00:02 A vrai dire j'en sais rien, c'est vrai que j'ai pas tilter et en plus ca redirige The first is the normal log like you posted here.

Deleted ok. Thread Tools Search this Thread Display Modes #1 27-04-05, 14:40 pgoodison Newbie Join Date: Apr 2005 Location: Co. was auswählen? C:\windows\system32\elitecwo32.exe << This file - Deleted OK Also found 6 other files elitecup32.exe, elitedk32.exe, elitemkw32.exe, elitenel32.exe, eliteymo32.exe, and eliteyuk32.exe which I thought looked suspect, so I just changed the extension on

Receiving email attachments as... http://www.commentcamarche.net/forum/affich-1610417-pb-spyware-et-fenetre-popup Sign In Use Facebook Use Twitter Use Windows Live Register now! It will be removed on reboot. 1:03 PM: Quarantining All Traces: elitebar 1:04 PM: elitebar is in use. Bis zur endgültigen Analyse weder voreilig etwas löschen, noch Antivirenprogramme, etc.

Toolbar 6.0 Beta with My WebYGO Virtual Desktop 0 #4 don77 Posted 05 May 2005 - 10:01 PM don77 Malware Expert Retired Staff 18,526 posts Hi carter_wez, Thanks for being patientPlease This will help to make your system more secure and prevent many 'problems' from reoccuring in the future. =============== Run HiJackThis and click "Scan", then check(tick) the following, if present: O16 Antw.) Neue Beiträge Neue Beiträge (↓ sort. Would they relate to winupdt.exe which you told me to delete?

After the dos window has closed,Scan again with WinPFind while in Safe Mode! Thanks 0 #9 Guest_usetobe_* Posted 16 June 2005 - 01:34 PM Guest_usetobe_* Guest no rush, whenever you can 0 #10 ryanrichards Posted 16 June 2005 - 04:43 PM ryanrichards New Member If you have Windows XP, the search feature is a little different. C:\Documents and Settings\All Users\Application Data\Download Frag New Manager\Peakdupe.bk!

Adware:Adware/Lop No disinfected C:\Documents and Settings\Gary Richards\Application Data\Cdrom Boob\kuzigzhd.exe Adware:Adware/Lop No disinfected C:\Documents and Settings\Gary Richards\Application Data\Cdrom Boob\SHIM NAME.exe Adware:Adware/Lop No disinfected C:\Documents and Settings\Ryan Richards\Application Data\Cdrom Boob\hqiikogj.exe Adware:Adware/Lop No disinfected Here's the log. ==================================================================== Log was analyzed using KRC HijackThis Analyzer - Updated on 6/3/05 Get updates at http://www.greyknight17.com/download.htm#programs ***Security Programs Detected*** ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Logfile of HijackThis v1.99.1 Scan saved at 5:47:08 If there's anything that you don't understand, ask your question(s) before proceeding with the fixes.

da ist ein wbot drauf.

damn.. hm.. C:\Documents and Settings\All Users\Application Data\Download Frag New Manager\acid chin.bk! die solltest du dir offline auf ne partition runterladen, bei pctip am besten.

How to get started Open Forum Hints and Tips Feedback & Announcements Web User magazine feature suggestions Security Security & Privacy Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Changed name and extension. n.

Windows somethimes displays this message due to the high volume of disk I/O. then reboot and post a fresh Hijackthis log.

IF YOU FEEL I HAVE BEEN A HELP TO YOU, PLEASE CONSIDER MAKING A DONATION <<< click here __________________ Please click here if you are not redirected within a few seconds. O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O4 - Global Startup: officejet 6100.lnk = ?

IE sicherer konfigurieren und nur noch für das Windows Update benutzen (Alternativ:http://www.blafusel.de/ie.html) 6. Zitat: Zitat von Chris14 eventuell noch das prog von www.dingens.org damit solltest du dein system sicher konfigurieren. The time now is 09:29.

-- Default Style ---- Alt Blue Theme ---- Alt Grey Theme Contact Us - Web User - Archive - Privacy Statement - Top C:\Documents and Settings\All Users\Application Data\Download Frag New Manager\Holelogo.bk!

Cliquez ici pour vous identifier.Vous n'avez pas de compte ? Copyright Dennis Publishing 2010, All rights reserved Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung Internetauslastung / etbrun ! Pager] C:\PROGRA~1\Yahoo!\MESSEN~1\ypager.exe -quiet O4 - HKCU\..\RunOnce: [ICQ Lite] C:\Programme\ICQLite\ICQLite.exe -trayboot O4 - Startup: Verknüpfung mit YzDock.lnk = E:\Full Appz\Desktop\YzDock\YzDock\YzDock.exe O17 - HKLM\System\CCS\Services\Tcpip\..\{BDA9D4A6-A563-4761-961A-C0930BEB1B32}: NameServer = O23 - Service: Hardware Clock