Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Mal wieder ein Virus?

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 13.04.2012, 12:14   #16
lena-laura
 
Mal wieder ein Virus? - Standard

Mal wieder ein Virus?



Wie krass ist das denn bitte?!
Ja, surfe mit Firefox...aber ich kann dir nicht sagen ob mit NO Script / WOT, weil ich nämlich schlicht keine Ahnung habe, was das überhaupt ist. Lerne aber gerne dazu.
Habe alternativ noch Opera drauf.
Hier erstmal das neue Log

Code:
ATTFilter
All processes killed
========== OTL ==========
C:\USERS\LENA-LAURA\APPDATA\ROAMING\11012\components folder moved successfully.
C:\USERS\LENA-LAURA\APPDATA\ROAMING\11012 folder moved successfully.
C:\Users\lena-laura\AppData\Roaming\UAs folder moved successfully.
C:\Users\lena-laura\AppData\Roaming\xmldm folder moved successfully.
Folder C:\Users\lena-laura\AppData\Roaming\11012\ not found.
C:\Users\lena-laura\AppData\Roaming\blckdom.res moved successfully.
========== COMMANDS ==========
 
[EMPTYTEMP]
 
User: All Users
 
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->Flash cache emptied: 0 bytes
 
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->Flash cache emptied: 0 bytes
 
User: DefaultAppPool
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->Flash cache emptied: 0 bytes
 
User: lena-laura
->Temp folder emptied: 30700846 bytes
->Temporary Internet Files folder emptied: 1742132 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 419634288 bytes
->Google Chrome cache emptied: 0 bytes
->Apple Safari cache emptied: 0 bytes
->Opera cache emptied: 0 bytes
->Flash cache emptied: 3165 bytes
 
User: Public
->Temp folder emptied: 0 bytes
 
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 217934 bytes
RecycleBin emptied: 0 bytes
 
Total Files Cleaned = 431,00 mb
 
 
OTL by OldTimer - Version 3.2.39.2 log created on 04132012_130710

Files\Folders moved on Reboot...

Registry entries deleted on Reboot...
         
hab grad hitman durchlaufen lassen...komme hier aber irgendwie nicht zurecht. wo ist das log? und wenn ich auf "weiter" drücke, dann will der die funde löschen, was aber nicht geht, da kein produktschlüssel. soll ich einfach schließen?

Alt 13.04.2012, 21:43   #17
Chris4You
 
Mal wieder ein Virus? - Standard

Mal wieder ein Virus?



Hi,

das log kannst Du als XML-File speichern u. hier posten.
Weiterhin kannst Du über Hitman eine 30-Tage Testlizenz anfordern (Reiter "Lizence"), die dann auch die Malware killt...

chris
__________________

__________________

Alt 13.04.2012, 22:18   #18
lena-laura
 
Mal wieder ein Virus? - Standard

Mal wieder ein Virus?



DANKE!!! ;-)

So, hier jetzt aber...
Ich habe bereits irgendwann mal einen Gästeaccount eingerichtet...wozu brauche ich den aber eigentlich?
Und kannst du mir das bitte mit dem WOT ect mal erklären?
Ich nichts kapieren ;-)
Danke!

Code:
ATTFilter
<?xml version="1.0"?>
-<Log filesProcessed="13696" timeSpentInSecs="435" date="2012-04-13T23:06:02" version="3.6.0.152" scan="Normal" computer="PC">-<Item status="Deleted" score="101.0" malwareName="Malware" type="Malware">-<Scanners><Scanner name="Gen:Variant.Zusy.4130 (Engine A)" id="G Data"/><Scanner name="Trojan.PWS.Spy.14273" id="DrWeb"/><Scanner name="Trojan-Spy.Win32.Farko!IK" id="Ikarus"/></Scanners><File hash="F2DFE404F8BB7B813765555D3CFE380C82949FDE41781F976E69F3A269D82342" path="C:\Users\lena-laura\AppData\Roaming\AcroIEHelpe102.dll"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Microsoft\Windows\Cookies\5Y2EGWV3.txt"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Microsoft\Windows\Cookies\JHP9UIKP.txt"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Microsoft\Windows\Cookies\RDZDMBQV.txt"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Microsoft\Windows\Cookies\SRS1DANH.txt"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Microsoft\Windows\Cookies\XEOJH7KQ.txt"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:2o7.net"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ad.123-template.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ad.360yield.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ad.ad-srv.net"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ad.adc-serv.net"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ad.adition.net"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ad.adnet.de"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ad.adserver01.de"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ad.dyntracker.de"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ad.velmedia.net"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ad.vidics.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ad.yieldmanager.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ad.zanox.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:adbrite.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads-lb.creative-serving.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.ad4game.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.adk2.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.cinamuse.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.cineble.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.cinemaden.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.crakmedia.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.creative-serving.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.filmlush.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.flixaddict.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.glispa.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.gorillavid.in"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.immobilienscout24.de"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.itshd.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.linguee.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.lzjl.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.moviease.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.movielush.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.movpod.in"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.profitsdeluxe.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.pubmatic.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.pushplay.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.reelhd.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.reelvidz.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.saymedia.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.spinsoft.de"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.thatsmusical.de"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.ventivmedia.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ads.webme.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:adserver.adreactor.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:adserver.adtechus.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:adserver.advertisingbox.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:adserver.gb5.motorpresse.de"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:adserver.gunaxin.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:adserver.yopi.de"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:adtech.de"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:adultadworld.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:adultfriendfinder.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:advertstream.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:adviva.net"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:apmebf.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:at.atwola.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:atdmt.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:banners.fuckbookhookups.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:bookofsex.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:bs.serving-sys.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:burstnet.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:bwincom.122.2o7.net"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:casalemedia.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:clicksor.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:collective-media.net"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:content.yieldmanager.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:de.partypoker.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:de.sitestat.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:dmtracker.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:doubleclick.net"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:eas.apm.emediate.eu"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:eas4.emediate.eu"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:emjcd.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ero-advertising.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:exoclick.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:fastclick.net"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:fitnessexperten.net"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:fuckbookhookups.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:getclicky.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:gr.burstnet.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:guj.122.2o7.net"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:h.atdmt.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:in.getclicky.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:invitemedia.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:james.adbutler.de"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:kontera.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:livejasmin.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:livesexasian.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:media6degrees.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:mediaplex.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:mm.chitika.net"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:myroitracking.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:partypoker.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:porn2hd.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:pornkino.eu"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:pornmovieswatch.org"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:porntubest.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:questionmarket.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:registration.livejasmin.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:revsci.net"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ru4.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:serving-sys.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:sexkino.to"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:smartadserver.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:specificclick.net"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:statcounter.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:static.getclicky.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:statse.webtrendslive.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:track.adform.net"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:track.effiliation.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:track.senzapudore.net"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:track.webtrekk.net"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:tradedoubler.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:tribalfusion.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:uk.at.atwola.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:userporn.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:ww251.smartadserver.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:www.etracker.de"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:www.googleadservices.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:www.sexkino.to"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:xiti.com"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:yadro.ru"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:yieldmanager.net"/></Item>-<Item status="Deleted" score="0.0" type="Repair"><File path="C:\Users\lena-laura\AppData\Roaming\Mozilla\Firefox\Profiles\ztgpl636.default\cookies.sqlite:zedo.com"/></Item>-<Item status="Quarantiend" score="111.0" malwareName="Trojan" type="Malware">-<Scanners><Scanner name="Trojan.MulDrop3.44950" id="DrWeb"/></Scanners><File hash="5DFF403E1EBD8E01F86C43FBC466F03E8A4BACFA995C8078D9B3584E72640934" path="C:\Users\lena-laura\Downloads\yorkyt.exe"/></Item></Log>
         
__________________

Alt 13.04.2012, 22:21   #19
lena-laura
 
Mal wieder ein Virus? - Standard

Mal wieder ein Virus?



hä? ich glaube hier ist was falsch gelaufen...schicke dir die datei mal im anhang mit.
kannst du die öffnen?

Alt 13.04.2012, 22:46   #20
Chris4You
 
Mal wieder ein Virus? - Standard

Mal wieder ein Virus?



Hi,

hihi, Dr. web hat yorky erkannt, allerdings war immer noch ein Passwortspy drauf:
<Scanner name="Trojan.PWS.Spy.14273" 2342" path="C:\Users\lena-laura\AppData\Roaming\AcroIEHelpe102.dll"/>
sollte jetzt aber sauber sein...

So, zurück zum Guest-Accout.
Das ist ein Account mit verminderten Rechten, d.h. er kann z.B. keine SW installieren. Damit hat es Malware deutlich schwerer sich im System festzusetzen. Mit WOT und NoScript sind Addons gemeint, die du für Firefox installieren kannst (Firefox->Add-ons->suchen&installieren)...
WOT=WebOfTrust zeigt dir z.B. bei suche über Google die Sicherheit einer Ergebnisseite an, NoScript verhindert erstmal die Scriptausführung und muß "per" Hand pro Seite (wenn sie nicht funktioniert) freigeschaltet werden. (Hintergrund: einiges wird über scripte in das system "eingeschleust")...

So der notebook-akku ist fertig,
bye,
chris

__________________
Don't bring me down
Vor dem posten beachten!
Spenden
(Wer spenden will, kann sich gerne melden )

Alt 14.04.2012, 16:31   #21
lena-laura
 
Mal wieder ein Virus? - Standard

Mal wieder ein Virus?



Vielen lieben Dank!!!

Antwort

Themen zu Mal wieder ein Virus?
adobe flash player, antivir, antivir guard, avira, bacroiehelpe, bingbar, bonjour, defender, desktop, eeepc, euro, explorer, firefox, flash player, google, malware, mozilla, plug-in, realtek, scan, security, security scan, software, superantispyware, svchost.exe, system, tracker, virus, windows, windows 7 starter, wmp




Ähnliche Themen: Mal wieder ein Virus?


  1. Schon wieder GVU Virus
    Plagegeister aller Art und deren Bekämpfung - 17.06.2013 (31)
  2. Akm-Virus! Wie werde ich den wieder los?
    Log-Analyse und Auswertung - 07.09.2012 (5)
  3. Und wieder der 50€ Virus....
    Plagegeister aller Art und deren Bekämpfung - 10.04.2012 (61)
  4. Mal wieder BKA Virus..
    Plagegeister aller Art und deren Bekämpfung - 24.03.2012 (1)
  5. schon wieder 50 € virus
    Log-Analyse und Auswertung - 21.02.2012 (3)
  6. Msn Virus wieder einmal
    Alles rund um Windows - 20.08.2010 (4)
  7. MSN Virus wie ENTFERNE ich den wieder?
    Plagegeister aller Art und deren Bekämpfung - 03.07.2010 (18)
  8. Und wieder der ICQ & MSN Virus. 'Wie findest du das Foto?'
    Plagegeister aller Art und deren Bekämpfung - 10.06.2010 (9)
  9. Wieder Hartnäckiger virus!
    Plagegeister aller Art und deren Bekämpfung - 26.04.2010 (1)
  10. schon wieder Virus??
    Plagegeister aller Art und deren Bekämpfung - 15.07.2009 (2)
  11. schon wieder virus???
    Antiviren-, Firewall- und andere Schutzprogramme - 10.07.2009 (1)
  12. Virus kommt wieder
    Log-Analyse und Auswertung - 11.01.2009 (0)
  13. [Windows XP] mal wieder Virus
    Plagegeister aller Art und deren Bekämpfung - 29.07.2008 (10)
  14. Nicht schon wieder,Virus?!?!?!?!
    Plagegeister aller Art und deren Bekämpfung - 16.06.2008 (6)
  15. wieder ein virus
    Log-Analyse und Auswertung - 12.11.2007 (4)
  16. Virus ? Schon wieder?
    Log-Analyse und Auswertung - 02.12.2005 (3)
  17. Mal wieder einen neuen Virus!
    Log-Analyse und Auswertung - 18.12.2004 (3)

Zum Thema Mal wieder ein Virus? - Wie krass ist das denn bitte?! Ja, surfe mit Firefox...aber ich kann dir nicht sagen ob mit NO Script / WOT, weil ich nämlich schlicht keine Ahnung habe, was das - Mal wieder ein Virus?...
Archiv
Du betrachtest: Mal wieder ein Virus? auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.