![]() |
| |||||||
Log-Analyse und Auswertung: worm:win32/Phorpiex b virus!Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
| | #24 |
![]() | worm:win32/Phorpiex b virus! So da ich dringend Geld überweisen muss, bräuchte ich mal die Information, ob mein Laptop sicher ist. Hier die Log Datei Malwarebytes' Anti-Malware 1.51.2.1300 www.malwarebytes.org Datenbank Version: 911122306 Windows 6.1.7600 Internet Explorer 9.0.8112.16421 24.12.2011 19:56:16 mbam-log-2011-12-24 (19-56-00).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|E:\|F:\|H:\|) Durchsuchte Objekte: 527250 Laufzeit: 1 Stunde(n), 50 Minute(n), 11 Sekunde(n) Infizierte Speicherprozesse: 0 Infizierte Speichermodule: 0 Infizierte Registrierungsschlüssel: 27 Infizierte Registrierungswerte: 2 Infizierte Dateiobjekte der Registrierung: 1 Infizierte Verzeichnisse: 15 Infizierte Dateien: 60 Infizierte Speicherprozesse: (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: HKEY_CLASSES_ROOT\CLSID\{597A9974-8CB0-4f41-B61F-ED065738A397} (PUP.RewardsArcade) -> No action taken. HKEY_CLASSES_ROOT\CLSID\{25514C64-8321-494e-BD3E-3DBAB3F8CEBA} (PUP.RewardsArcade) -> No action taken. HKEY_CLASSES_ROOT\TypeLib\{60BE6B2E-F2F5-4404-AA1E-4381D4A6EEA2} (PUP.RewardsArcade) -> No action taken. HKEY_CLASSES_ROOT\Interface\{6427058B-217C-4C7F-A6CE-C7934C0BDCEB} (PUP.RewardsArcade) -> No action taken. HKEY_CLASSES_ROOT\RewardsArcade.FBApi.1 (PUP.RewardsArcade) -> No action taken. HKEY_CLASSES_ROOT\RewardsArcade.FBApi (PUP.RewardsArcade) -> No action taken. HKEY_CLASSES_ROOT\RewardsArcade.BHO.1 (PUP.RewardsArcade) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{597A9974-8CB0-4F41-B61F-ED065738A397} (PUP.RewardsArcade) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{597A9974-8CB0-4F41-B61F-ED065738A397} (PUP.RewardsArcade) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{597A9974-8CB0-4F41-B61F-ED065738A397} (PUP.RewardsArcade) -> No action taken. HKEY_CLASSES_ROOT\CLSID\{78F3A323-798E-4AEA-9A57-88F4B05FD5DD} (PUP.VShareRedir) -> No action taken. HKEY_CLASSES_ROOT\TypeLib\{BB7256DD-EBA9-480B-8441-A00388C2BEC3} (PUP.VShareRedir) -> No action taken. HKEY_CLASSES_ROOT\Interface\{3D782BB2-F2A5-11D3-BF4C-000000000000} (PUP.VShareRedir) -> No action taken. HKEY_CLASSES_ROOT\MyNewsBarLauncher.IE5BarLauncherBHO.1 (PUP.VShareRedir) -> No action taken. HKEY_CLASSES_ROOT\MyNewsBarLauncher.IE5BarLauncherBHO (PUP.VShareRedir) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{78F3A323-798E-4AEA-9A57-88F4B05FD5DD} (PUP.VShareRedir) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{78F3A323-798E-4AEA-9A57-88F4B05FD5DD} (PUP.VShareRedir) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{78F3A323-798E-4AEA-9A57-88F4B05FD5DD} (PUP.VShareRedir) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{78F3A323-798E-4AEA-9A57-88F4B05FD5DD} (PUP.VShareRedir) -> No action taken. HKEY_CLASSES_ROOT\CLSID\{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.VShareRedir) -> No action taken. HKEY_CLASSES_ROOT\MyNewsBarLauncher.IE5BarLauncher.1 (PUP.VShareRedir) -> No action taken. HKEY_CLASSES_ROOT\MyNewsBarLauncher.IE5BarLauncher (PUP.VShareRedir) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.VShareRedir) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.VShareRedir) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.VShareRedir) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PDF Reader (Adware.Agent) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\RewardsArcade (PUP.RewardsArcade) -> No action taken. Infizierte Registrierungswerte: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.VShareRedir) -> Value: {7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.VShareRedir) -> Value: {7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} -> No action taken. Infizierte Dateiobjekte der Registrierung: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\Start Page (Hijack.StartPage) -> Bad: (hxxp://startsear.ch/?aff=1) Good: (hxxp://www.google.com) -> No action taken. Infizierte Verzeichnisse: c:\program files (x86)\rewardsarcade (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498 (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Chrome (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\lib (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\lib\facebox (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\lib\facebox\Images (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\defaults (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\defaults\preferences (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\locale (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\locale\en-US (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\skin (PUP.RewardsArcade) -> No action taken. Infizierte Dateien: c:\program files (x86)\rewardsarcade\rewardsarcade.dll (PUP.RewardsArcade) -> No action taken. c:\program files (x86)\vshare.tv plugin\BarLcher.dll (PUP.VShareRedir) -> No action taken. c:\program files (x86)\electronic arts\battlefield bad company 2\rld-bbc2.exe (RiskWare.Tool.HCK) -> No action taken. c:\program files (x86)\pdfreader\uninstall\uninstall.exe (Adware.Agent) -> No action taken. c:\Users\Ollis\downloads\pdfreadersetup.exe (Adware.Agent) -> No action taken. c:\program files (x86)\rewardsarcade\fb.js (PUP.RewardsArcade) -> No action taken. c:\program files (x86)\rewardsarcade\appapiinternalwrapper.js (PUP.RewardsArcade) -> No action taken. c:\program files (x86)\rewardsarcade\jquery.js (PUP.RewardsArcade) -> No action taken. c:\program files (x86)\rewardsarcade\json.js (PUP.RewardsArcade) -> No action taken. c:\program files (x86)\rewardsarcade\rewardsarcade.exe (PUP.RewardsArcade) -> No action taken. c:\program files (x86)\rewardsarcade\uninstall.exe (PUP.RewardsArcade) -> No action taken. c:\program files (x86)\rewardsarcade\userconfirmation.exe (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\uninstall.ico (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Chrome\rewardsarcade.crx (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome.manifest (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\install.rdf (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\background.html (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\browser.xul (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\crossrider.js (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\crossriderapi.js (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\dialog.js (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\manage-apps-style.css (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\manage-apps.html (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\messaging.js (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\options.js (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\options.xul (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\push.html (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\search_dialog.xul (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\socialapi.js (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\update.html (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\utilityapi.js (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\workers_chain.js (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\lib\faye-browser-min.js (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\lib\jquery-1.4.2.js (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\lib\facebox\facebox.css (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\lib\facebox\facebox.js (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\lib\facebox\Images\b.png (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\lib\facebox\Images\bl.png (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\lib\facebox\Images\br.png (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\lib\facebox\Images\closelabel.gif (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\lib\facebox\Images\loading.gif (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\lib\facebox\Images\tl.png (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\chrome\content\lib\facebox\Images\tr.png (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\defaults\preferences\prefs.js (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\locale\en-US\translations.dtd (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\skin\button1.png (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\skin\button2.png (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\skin\button3.png (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\skin\button4.png (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\skin\button5.png (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\skin\crossrider_statusbar.png (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\skin\icon16.png (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\skin\icon24.png (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\skin\icon48.png (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\skin\panelarrow-up.png (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\skin\popup.css (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\skin\popup.html (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\skin\popup_binding.xml (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\skin\skin.css (PUP.RewardsArcade) -> No action taken. c:\Users\Ollis\AppData\Local\rewardsarcade\498\Firefox\skin\update.css (PUP.RewardsArcade) -> No action taken. Gruß Olli |
| Themen zu worm:win32/Phorpiex b virus! |
| adware.dudu, anti-malware, bösartige, dateien, dokumente, eingefangen, einstellungen, explorer, forum, gen, google, log, lokale, manager, microsoft, minute, recycle.bin, schnelle, schonmal, service, software, temp, tmp, trojan.agent.ge, trojan.ransom.bp, trojan.winlock, version, virus, win, win32/phorpiex b, worm |