|
Plagegeister aller Art und deren Bekämpfung: Auch Probleme mit Yahoo MailsWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
17.07.2014, 19:17 | #16 |
| Auch Probleme mit Yahoo MailsCode:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 15-07-2014 01 Ran by Peter at 2014-07-17 20:16:22 Run:1 Running from C:\Users\Peter\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** S3 ALSysIO; \??\C:\Users\Peter\AppData\Local\Temp\ALSysIO64.sys [X] S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 cpuz132; \??\C:\Users\Peter\AppData\Local\Temp\cpuz132\cpuz132_x64.sys [X] S1 isnhvrxp; \??\C:\Windows\system32\drivers\isnhvrxp.sys [X] S3 X6va002; \??\C:\Users\Peter\AppData\Local\Temp\0023BEA.tmp [X] Task: {251E8E4E-3BCC-4334-9528-CD47F8DC053B} - \globalUpdateUpdateTaskMachineUA No Task File <==== ATTENTION Task: {53338AE7-9DCE-42B2-A86B-6E660B76B8A6} - \DTReg No Task File <==== ATTENTION Task: {89680736-001E-4BB8-BA04-220DDD64012E} - \globalUpdateUpdateTaskMachineCore No Task File <==== ATTENTION Task: {9746CF6D-4545-4A4B-BC95-0F2CC294D914} - \4a8c7045-eef1-484d-ba10-821f6f86b315-4 No Task File <==== ATTENTION Task: {9FF46176-4A59-4695-9751-8F0260ED82DE} - \4a8c7045-eef1-484d-ba10-821f6f86b315-5 No Task File <==== ATTENTION Task: {A0E7FD6B-A17A-489B-A2D5-B8C89548C92D} - \4a8c7045-eef1-484d-ba10-821f6f86b315-6 No Task File <==== ATTENTION Task: {A0EE5998-95D8-4A1B-896E-8F593151FAA7} - \4a8c7045-eef1-484d-ba10-821f6f86b315-2 No Task File <==== ATTENTION Task: {B5385838-7D72-4CE0-B983-87F6FCF601FE} - \4a8c7045-eef1-484d-ba10-821f6f86b315-11 No Task File <==== ATTENTION Task: {CFEDE347-2889-4CCA-9342-3CBAE15190E0} - \4a8c7045-eef1-484d-ba10-821f6f86b315-1 No Task File <==== ATTENTION Task: {D11FE86B-721C-4F6F-9275-8E3CE0FBAAB3} - \4a8c7045-eef1-484d-ba10-821f6f86b315-7 No Task File <==== ATTENTION Task: {F84D5C17-E525-45C9-8D72-F8803430A31A} - \4a8c7045-eef1-484d-ba10-821f6f86b315-3 No Task File <==== ATTENTION ***************** ALSysIO => Service deleted successfully. catchme => Service deleted successfully. cpuz132 => Service deleted successfully. isnhvrxp => Service deleted successfully. X6va002 => Service deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{251E8E4E-3BCC-4334-9528-CD47F8DC053B}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{251E8E4E-3BCC-4334-9528-CD47F8DC053B}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineUA' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{53338AE7-9DCE-42B2-A86B-6E660B76B8A6}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{53338AE7-9DCE-42B2-A86B-6E660B76B8A6}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DTReg' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{89680736-001E-4BB8-BA04-220DDD64012E}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{89680736-001E-4BB8-BA04-220DDD64012E}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineCore' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9746CF6D-4545-4A4B-BC95-0F2CC294D914}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9746CF6D-4545-4A4B-BC95-0F2CC294D914}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\4a8c7045-eef1-484d-ba10-821f6f86b315-4' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9FF46176-4A59-4695-9751-8F0260ED82DE}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9FF46176-4A59-4695-9751-8F0260ED82DE}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\4a8c7045-eef1-484d-ba10-821f6f86b315-5' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A0E7FD6B-A17A-489B-A2D5-B8C89548C92D}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A0E7FD6B-A17A-489B-A2D5-B8C89548C92D}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\4a8c7045-eef1-484d-ba10-821f6f86b315-6' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A0EE5998-95D8-4A1B-896E-8F593151FAA7}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A0EE5998-95D8-4A1B-896E-8F593151FAA7}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\4a8c7045-eef1-484d-ba10-821f6f86b315-2' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B5385838-7D72-4CE0-B983-87F6FCF601FE}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B5385838-7D72-4CE0-B983-87F6FCF601FE}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\4a8c7045-eef1-484d-ba10-821f6f86b315-11' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CFEDE347-2889-4CCA-9342-3CBAE15190E0}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CFEDE347-2889-4CCA-9342-3CBAE15190E0}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\4a8c7045-eef1-484d-ba10-821f6f86b315-1' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D11FE86B-721C-4F6F-9275-8E3CE0FBAAB3}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D11FE86B-721C-4F6F-9275-8E3CE0FBAAB3}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\4a8c7045-eef1-484d-ba10-821f6f86b315-7' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F84D5C17-E525-45C9-8D72-F8803430A31A}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F84D5C17-E525-45C9-8D72-F8803430A31A}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\4a8c7045-eef1-484d-ba10-821f6f86b315-3' => Key deleted successfully. ==== End of Fixlog ==== |
18.07.2014, 05:16 | #17 |
/// the machine /// TB-Ausbilder | Auch Probleme mit Yahoo Mails Frisches FRST log bitte. Noch PRobleme sonst?
__________________
__________________ |
08.09.2014, 08:51 | #18 |
| Auch Probleme mit Yahoo Mails Alles wieder gut! Keine Probleme mehr
__________________Vielen Dank!!! |
08.09.2014, 19:08 | #19 |
/// the machine /// TB-Ausbilder | Auch Probleme mit Yahoo Mails Fertig Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |