|
Log-Analyse und Auswertung: Hab einen Trojaner oder wurm oder nen virus weis aber nicht was für einenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
29.11.2011, 17:59 | #1 |
| Hab einen Trojaner oder wurm oder nen virus weis aber nicht was für einen Hallo, Und zwar habe ich ein Virus, denn Bei Cod6 springt mein ping hoch und runter von 98 uaf 999 dann wieder runter das ist schon eine ganze weile so hab schon bei google gesucht aber leider nichts gefunden . Und mein minecraft account is ganz zufällig auch gehackt worden hab antivira auch schon zich mal durchlaufen lassen aber hat nix gefunde ich hoffe jemand kann mir helfen MfG Tobebias |
29.11.2011, 18:24 | #2 |
| Hab einen Trojaner oder wurm oder nen virus weis aber nicht was für einen Hier is noch ein log von OTL
__________________[Log]18:22 29.11.201118:22 29.11.201118:22 29.11.2011OTL EXTRAS Logfile: Code:
ATTFilter OTL Extras logfile created on: 29.11.2011 18:15:44 - Run 1 OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Tobias\Desktop Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 2,00 Gb Total Physical Memory | 1,07 Gb Available Physical Memory | 53,56% Memory free 4,00 Gb Paging File | 2,70 Gb Available in Paging File | 67,48% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 298,09 Gb Total Space | 56,53 Gb Free Space | 18,96% Space Free | Partition Type: NTFS Drive F: | 596,17 Gb Total Space | 421,35 Gb Free Space | 70,68% Space Free | Partition Type: NTFS Computer Name: TOBIAS-PC | User Name: Tobias | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) ========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 ========== Authorized Applications List ========== ========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{0B897FB3-14D7-4B73-8678-19DD7199C8EB}" = 3Dconnexion 3DxWare "{154446DA-45DB-49F2-A284-D2C8AE997193}" = 3Dconnexion Plug-In for Photoshop CS3 "{1A986F4A-5DBA-4A6F-8CE3-973066C2587C}" = 3Dconnexion Plug-in for QuickTime VR "{1B1290BC-D31F-44C4-9BD4-88FA2896772D}" = 3Dconnexion Plug-In for NX 3.0 "{1DEBF303-1DB4-4A44-AEFC-7F3F54C5F7B3}" = 3Dconnexion Plug-In for Maya 8 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{20A980F4-EF5E-4FB1-A931-0174CAF5B1E9}" = 3Dconnexion Plug-In for NX 4.0 "{26A24AE4-039D-4CA4-87B4-2F83216027FF}" = Java(TM) 6 Update 27 "{299D8A52-6054-4899-A81C-FCFDF58AF8E1}" = 3Dconnexion Plug-In for Maya 6.5 "{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java(TM) 6 Update 7 "{3A8330AF-9FB4-4E8F-9B42-8772CC985768}" = 3Dconnexion Plug-In for 3ds Max 2010 "{3AC8457C-0385-4BEA-A959-E095F05D6D67}" = Battlefield: Bad Company™ 2 "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{478335AA-4407-4B0A-B6E4-F9FCC8FB9FC0}" = 3Dconnexion Plug-In for NX 6.0 "{47E16407-05D3-4D2A-B2B9-C30700B7C2AD}" = LogMeIn Hamachi "{48D8A5BC-B84C-4E47-9695-F8316CC20C5B}" = 3Dconnexion Plug-In for Maya 2008 "{494099F4-5123-4182-9C8E-FA6280844441}" = 3Dconnexion Add-In for SolidWorks "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4A9A4900-C844-42D4-B58A-09299B25DAE7}" = 3Dconnexion Plug-In for Maya 6 "{4FBCEA31-5D18-4212-9231-DE7CF1BE7DBB}" = Logitech Vid "{55D65D27-C0CD-4375-9021-F3D3D024ED90}_is1" = Minecraft PC Gamer Demo version 1.5 "{60F56BEF-4C3D-4303-8901-973F3CD82D15}" = 3Dconnexion Add-In for Solid Edge "{6117122E-780E-432B-8355-1EBCB5794500}" = 3Dconnexion Add-In for AutoCAD 2007 "{6AFCA4E1-9B78-3640-8F72-A7BF33448200}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{7446D38D-DF79-4CFD-ADB8-A935610677CE}" = 3Dconnexion Plug-In for Photoshop CS4 "{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3™ "{7EC19307-7C22-47A8-922B-3FA965291260}" = OpenOffice.org 3.0 "{7F6D7FD9-648D-4DD9-BB6E-3990C675ECA4}" = NVIDIA PhysX "{834CE00E-77CA-40C4-8642-E11012E20C8E}" = 3Dconnexion Add-In for Inventor "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{87DEF923-BB4C-43C2-B3FC-CC4BB9CA9AE4}" = 3Dconnexion Plug-In for Pro/ENGINEER WF4 "{915726DF-7891-444A-AA03-0DF1D64F561A}" = L.A. Noire "{92B33946-03EF-47C1-AC9D-C3D5F8FFDE83}" = 3Dconnexion Plug-In for 3ds max 6 - 8 "{97F68F8E-8439-40F0-A8DE-E904C153D923}" = 3Dconnexion Plug-In for NX 5.0 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9C74E573-2FE4-421E-9A8F-90D8C244C2C1}" = 3Dconnexion Plug-In for Maya 8.5 "{9DF0196F-B6B8-4C3A-8790-DE42AA530101}" = SPORE™ "{A06EA9B0-368C-4967-A7E6-8DBC0EACD1F6}" = 3Dconnexion Extension for SketchUp "{A2E752B0-51F7-47D2-947D-5ED48EFE6EAA}" = 3Dconnexion Plug-In for Maya 2009 "{AB67580-257C-45FF-B8F4-C8C30682091A}_is1" = SIW version 2011.09.16 "{ADC9C942-0D52-4948-B4EB-A97CF194F0AB}" = 3Dconnexion Add-In for AutoCAD 2008 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA 3D Vision Treiber 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Systemsteuerung 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Grafiktreiber 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA 3D Vision Controller-Treiber 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX-Systemsoftware 9.11.0621 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 1.5.20 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA HD-Audiotreiber 1.2.24.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{B819D5B5-760E-4B2B-99AB-75305A22B920}" = 3Dconnexion Plug-In for Pro/ENGINEER WF2 "{B9021E87-8978-4047-8626-C334D16C33E8}" = 3Dconnexion Add-On for XSI "{B9B10906-5CB3-4F9D-A810-E4EA1F45DD75}" = 3Dconnexion Add-In for AutoCAD 2010 "{BAFCA6AC-8B37-405B-B57E-C1D45DE70ACC}" = 3Dconnexion 3DxSoftware "{C1ECB98D-1D38-4DBC-976C-457E6BE6EA2B}" = 3Dconnexion Plug-in for Acrobat 3D "{C27BC2A2-30DD-4014-B22E-63EB0DB572F9}" = Logitech Webcam Software "{C993F4C1-27CF-45EA-8AD4-70D8043F27BE}" = 3Dconnexion Plug-In for Pro/ENGINEER WF3 "{CD8CC776-7AFB-42B0-9D27-828533618A64}" = 3Dconnexion Plug-In for 3ds Max 2008 "{D40284D5-858B-4D03-B321-BA29D3E143EB}" = 3Dconnexion Plug-In for Maya 7 "{E370ED57-9B64-427B-8EC3-E8D84709C3C9}" = 3Dconnexion Add-In for AutoCAD 2009 "{E4F7B44D-E5B3-4962-8400-5057287A8F25}" = 3Dconnexion Plug-In for 3ds Max 9 "{EB9DE246-AD08-40F4-A752-25F81C972950}" = 3Dconnexion Plug-In for 3ds Max 2009 "{F750C986-5310-3A5A-95F8-4EC71C8AC01C}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack "{F996076C-BED5-45D6-9C10-39BC7B005F77}" = 3Dconnexion Plug-In for Photoshop CS2 "{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio "6F64DF2E-3B8E-41DB-89E4-75BD3F370CDE_is1" = Cracked Steam "Adobe Acrobat 5.0" = Adobe Acrobat 5.0 "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "AutoHotkey" = AutoHotkey 1.0.48.05 "Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus "DAEMON Tools Lite" = DAEMON Tools Lite "FarmingSimulator2011DE_is1" = Landwirtschafts Simulator 2011 "Fraps" = Fraps (remove only) "LogMeIn Hamachi" = LogMeIn Hamachi "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware Version 1.51.2.1300 "MegaCAD 3D 2010" = MegaCAD 3D 2010 "MegaCAD 3D 2010 - Update " = MegaCAD 3D 2010 - Update "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack "Mozilla Firefox 5.0 (x86 de)" = Mozilla Firefox 5.0 (x86 de) "NVIDIA StereoUSB Driver" = NVIDIA 3D Vision Controller Driver "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Opera 11.51.1087" = Opera 11.51 "PacSteamT" = PacSteamT "Rage_is1" = Rage "RAR Password Recovery Magic_is1" = RAR Password Recovery Magic v6.1.1.232 "Rockstar Games Social Club" = Rockstar Games Social Club "Sniper Ghost Warrior_is1" = Sniper Ghost Warrior "Steam App 42690" = Call of Duty: Modern Warfare 3 - Multiplayer "SystemRequirementsLab" = System Requirements Lab "WinRAR archiver" = WinRAR 4.01 (32-Bit) ========== Last 10 Event Log Errors ========== [ System Events ] Error - 25.11.2011 17:47:36 | Computer Name = Tobias-PC | Source = bowser | ID = 8003 Description = Error - 26.11.2011 05:12:02 | Computer Name = Tobias-PC | Source = bowser | ID = 8003 Description = Error - 26.11.2011 05:16:42 | Computer Name = Tobias-PC | Source = bowser | ID = 8003 Description = Error - 26.11.2011 09:54:33 | Computer Name = Tobias-PC | Source = Microsoft-Windows-HAL | ID = 12 Description = Der Speicher wurde beim letzten Leistungsübergang des Systems von der Plattformfirmware beschädigt. Überprüfen Sie, ob für Ihr System aktualisierte Firmware verfügbar ist. Error - 27.11.2011 13:25:42 | Computer Name = Tobias-PC | Source = bowser | ID = 8003 Description = Error - 28.11.2011 13:45:12 | Computer Name = Tobias-PC | Source = bowser | ID = 8003 Description = Error - 28.11.2011 14:02:58 | Computer Name = Tobias-PC | Source = bowser | ID = 8003 Description = Error - 28.11.2011 14:29:52 | Computer Name = Tobias-PC | Source = Microsoft-Windows-HAL | ID = 12 Description = Der Speicher wurde beim letzten Leistungsübergang des Systems von der Plattformfirmware beschädigt. Überprüfen Sie, ob für Ihr System aktualisierte Firmware verfügbar ist. Error - 28.11.2011 15:12:30 | Computer Name = Tobias-PC | Source = bowser | ID = 8003 Description = Error - 29.11.2011 03:13:09 | Computer Name = Tobias-PC | Source = bowser | ID = 8003 Description = < End of report > [Log] |
30.11.2011, 15:58 | #3 |
| Hab einen Trojaner oder wurm oder nen virus weis aber nicht was für einen hier noch ein log von OTL der is etwas größer
__________________ |
Themen zu Hab einen Trojaner oder wurm oder nen virus weis aber nicht was für einen |
account, gefunde, gehackt, gesuch, gesucht, google, hoffe, minecraft, nichts, runter, spring, springt, troja, trojaner, virus, weile, wurm, zufällig |