![]() |
|
Log-Analyse und Auswertung: Proxy-Fehlermeldung 127.0.0.1:8897Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #8 |
![]() | ![]() Proxy-Fehlermeldung 127.0.0.1:8897 Wenn du mir sagst wo die Logs von MBAM und Avast gespeichert werden ![]() Fixlog.txt Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 24-01-2015 01 Ran by User at 2015-01-27 10:15:05 Run:2 Running from C:\Users\User\Desktop Loaded Profiles: User (Available profiles: User) Boot Mode: Normal ============================================== Content of fixlist: ***************** ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled. ProxyServer: [.DEFAULT] => http=127.0.0.1:8897;https=127.0.0.1:8897 ProxyEnable: [S-1-5-21-982829961-422532093-1718007052-1000] => Internet Explorer proxy is enabled. ProxyServer: [S-1-5-21-982829961-422532093-1718007052-1000] => http=127.0.0.1:8897;https=127.0.0.1:8897 ***************** HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value deleted successfully. HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value deleted successfully. HKU\S-1-5-21-982829961-422532093-1718007052-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value deleted successfully. HKU\S-1-5-21-982829961-422532093-1718007052-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value deleted successfully. ==== End of Fixlog 10:15:05 ==== Code:
ATTFilter <?xml version="1.0" encoding="UTF-16"?> -<mbam-log> -<header> <date>2015/01/26 10:23:26 +0100</date> <logfile>mbam-log-2015-01-26 (10-23-26).xml</logfile> <isadmin>yes</isadmin> </header> -<engine> <version>2.00.4.1028</version> <malware-database>v2015.01.26.04</malware-database> <rootkit-database>v2015.01.14.01</rootkit-database> <license>trial</license> <file-protection>enabled</file-protection> <web-protection>enabled</web-protection> <self-protection>disabled</self-protection> </engine> -<system> <osversion>Windows 7 Service Pack 1</osversion> <arch>x64</arch> <username>User</username> <filesys>NTFS</filesys> </system> -<summary> <type>threat</type> <result>completed</result> <objects>342010</objects> <time>685</time> <processes>0</processes> <modules>0</modules> <keys>1</keys> <values>0</values> <datas>0</datas> <folders>0</folders> <files>2</files> <sectors>0</sectors> </summary> -<options> <memory>enabled</memory> <startup>enabled</startup> <filesystem>enabled</filesystem> <archives>enabled</archives> <rootkits>disabled</rootkits> <deeprootkit>disabled</deeprootkit> <heuristics>enabled</heuristics> <pup>enabled</pup> <pum>enabled</pum> </options> -<items> -<key> <path>HKU\S-1-5-21-982829961-422532093-1718007052-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Softonic</path> <vendor>PUP.Optional.Softonic.A</vendor> <action>success</action> <hash>c13b10eb7019d2645823146c08fbe917</hash> </key> -<file> <path>C:\Windows\System32\xpt5l5ww.tsp</path> <vendor>Trojan.Mediyes</vendor> <action>delete-on-reboot</action> <hash>53a9d526f89180b62eed8193d1300cf4</hash> </file> -<file> <path>C:\Users\User\Downloads\SoftonicDownloader_fuer_avira-antivir.exe</path> <vendor>PUP.Optional.Softonic.A</vendor> <action>success</action> <hash>679525d68aff58de6ef4e3619d6443bd</hash> </file> </items> </mbam-log> Code:
ATTFilter <?xml version="1.0" encoding="UTF-16"?> -<mbam-log> -<header> <date>2015/01/26 15:42:29 +0100</date> <logfile>mbam-log-2015-01-26 (15-42-09).xml</logfile> <isadmin>yes</isadmin> </header> -<engine> <version>2.00.4.1028</version> <malware-database>v2015.01.26.06</malware-database> <rootkit-database>v2015.01.14.01</rootkit-database> <license>trial</license> <file-protection>enabled</file-protection> <web-protection>enabled</web-protection> <self-protection>disabled</self-protection> </engine> -<system> <osversion>Windows 7 Service Pack 1</osversion> <arch>x64</arch> <username>User</username> <filesys>NTFS</filesys> </system> -<summary> <type>custom</type> <result>completed</result> <objects>603974</objects> <time>6853</time> <processes>0</processes> <modules>0</modules> <keys>0</keys> <values>0</values> <datas>0</datas> <folders>0</folders> <files>0</files> <sectors>0</sectors> </summary> -<options> <memory>enabled</memory> <startup>enabled</startup> <filesystem>enabled</filesystem> <archives>enabled</archives> <rootkits>enabled</rootkits> <deeprootkit>disabled</deeprootkit> <heuristics>enabled</heuristics> <pup>enabled</pup> <pum>enabled</pum> </options> <items> </items> </mbam-log> Code:
ATTFilter <?xml version="1.0" encoding="UTF-8"?> -<logs> <record subtype="Malware Protection" result="Starting" last_modified_tag="0b42d7a8-5bdc-4f02-96b5-f4c760645d13" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T09:59:56.300251+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malware Protection" result="Started" last_modified_tag="e92727e3-84ea-4c12-afd8-017f2236ec73" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T09:59:56.300251+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Starting" last_modified_tag="4ffcaf1a-2cd1-4fc0-9245-a008416c0708" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T09:59:56.331451+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Started" last_modified_tag="e6cb1f1e-1a19-447e-a1fd-c503f14d94a6" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T09:59:56.877452+01:00" LoggingEventType="2" severity="debug"/> <record last_modified_tag="0015d4dc-dff0-4535-b5bc-6530deedfd71" systemname="USER-PC" username="SYSTEM" type="Update" source="Manual" datetime="2015-01-26T09:59:58.078654+01:00" LoggingEventType="1" severity="debug" toVersion="2015.1.14.1" name="Rootkit Database" fromVersion="2014.11.18.1"/> <record last_modified_tag="46329515-b277-47a1-ae0f-abda4ef71c40" systemname="USER-PC" username="SYSTEM" type="Update" source="Manual" datetime="2015-01-26T09:59:58.094254+01:00" LoggingEventType="1" severity="debug" toVersion="2014.12.6.1" name="Remediation Database" fromVersion="2013.10.16.1"/> <record last_modified_tag="89e71558-22e5-4433-8674-5b5a754eb6a4" systemname="USER-PC" username="SYSTEM" type="Update" source="Manual" datetime="2015-01-26T10:00:11.338677+01:00" LoggingEventType="1" severity="debug" toVersion="2015.1.26.4" name="Malware Database" fromVersion="2014.11.20.6"/> <record subtype="Refresh" result="Starting" last_modified_tag="b78e1a13-5f4e-4602-af1b-57ef6c286230" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T10:00:11.401077+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Stopping" last_modified_tag="0372ae13-8614-459f-996d-ccc99cf0cb7c" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T10:00:11.401077+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Stopped" last_modified_tag="f7db1926-627d-4f31-a81d-c2a223863502" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T10:00:11.432277+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Refresh" result="Success" last_modified_tag="ef6b03e6-08cf-475a-982b-9c408fcee02e" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T10:00:16.658287+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Starting" last_modified_tag="62c2e894-dd68-4a95-aab4-84162dd9d184" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T10:00:16.673887+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Started" last_modified_tag="506c064e-b5f6-467b-8d42-eb84f24a811b" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T10:00:16.876687+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malware Protection" last_modified_tag="6ddd4e91-007e-4d87-a078-20b71a9a2526" systemname="USER-PC" username="SYSTEM" type="Detection" source="Protection" datetime="2015-01-26T10:16:32.601803+01:00" LoggingEventType="0" severity="debug" malwaretype="File" hash="5aa208f3068344f25fbc68ac37ca02fe" filename="C:\Windows\System32\xpt5l5ww.tsp" error="5" action="Quarantine Failed" vendor="Trojan.Mediyes" message="Zugriff verweigert "/> <record subtype="Malware Protection" last_modified_tag="af078b10-e5b2-45f9-ac76-ad730b19307a" systemname="USER-PC" username="SYSTEM" type="Detection" source="Protection" datetime="2015-01-26T10:17:02.932477+01:00" LoggingEventType="0" severity="debug" malwaretype="File" hash="5aa208f3068344f25fbc68ac37ca02fe" filename="C:\Windows\System32\xpt5l5ww.tsp" error="5" action="Quarantine Failed" vendor="Trojan.Mediyes" message="Zugriff verweigert "/> <record subtype="Malware Protection" last_modified_tag="0f76c231-d33d-46e4-9ea5-1d387430ed89" systemname="USER-PC" username="SYSTEM" type="Detection" source="Protection" datetime="2015-01-26T10:17:08.125739+01:00" LoggingEventType="0" severity="debug" malwaretype="File" hash="5aa208f3068344f25fbc68ac37ca02fe" filename="C:\Windows\System32\xpt5l5ww.tsp" error="5" action="Quarantine Failed" vendor="Trojan.Mediyes" message="Zugriff verweigert "/> <record subtype="Malware Protection" last_modified_tag="abc2ad6b-dc43-49ac-b741-d4e2001178b6" systemname="USER-PC" username="SYSTEM" type="Detection" source="Protection" datetime="2015-01-26T10:21:55.637831+01:00" LoggingEventType="0" severity="debug" malwaretype="File" hash="5aa208f3068344f25fbc68ac37ca02fe" filename="C:\Windows\System32\xpt5l5ww.tsp" error="5" action="Quarantine Failed" vendor="Trojan.Mediyes" message="Zugriff verweigert "/> <record last_modified_tag="03aadb2a-dba1-440e-95de-a55543eba1d3" systemname="USER-PC" username="SYSTEM" type="Scan" source="Manual" datetime="2015-01-26T10:35:03.671695+01:00" LoggingEventType="6" severity="debug" scanresult="completed" nonmalwaredetections="2" malwaredetections="1" duration="685" starttime="2015-01-26T10:23:26+01:00" scantype="threat"/> <record subtype="Malware Protection" result="Starting" last_modified_tag="f7dc70d6-5d09-4213-a3d8-5f6f68c9794c" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T10:36:22.854074+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malware Protection" result="Started" last_modified_tag="89fa63b0-fc9d-406f-8f33-86a329c6b974" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T10:36:22.885274+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Starting" last_modified_tag="49a49923-2f0e-40e0-b287-83a86c4d4021" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T10:36:22.900874+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Started" last_modified_tag="7ef12f2a-5ac2-4c9e-9a31-5b93de6d5c1b" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T10:38:51.995951+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malware Protection" result="Starting" last_modified_tag="c5610f6d-362e-4029-ad75-ce7f8e5eec67" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T12:59:43.480660+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malware Protection" result="Started" last_modified_tag="d412a2b1-3936-4241-bbba-7f6835528a73" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T12:59:43.530660+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Starting" last_modified_tag="e8685f4e-4126-4467-b755-c8ab3016ff57" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T12:59:43.570660+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Started" last_modified_tag="851c7b91-86cb-4624-8e2f-780b460de606" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T13:00:28.617139+01:00" LoggingEventType="2" severity="debug"/> <record last_modified_tag="72ee5ae4-7181-4cfd-93f0-841359c20097" systemname="USER-PC" username="SYSTEM" type="Update" source="Scheduler" datetime="2015-01-26T13:29:03.808951+01:00" LoggingEventType="1" severity="debug" toVersion="2015.1.26.5" name="Malware Database" fromVersion="2015.1.26.4"/> <record subtype="Refresh" result="Starting" last_modified_tag="2cdf0aed-64e4-4551-87ac-5b088115d37e" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T13:29:03.886951+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Stopping" last_modified_tag="b6c5a1f2-f611-4c50-83c2-16733552f344" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T13:29:03.902551+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Stopped" last_modified_tag="4e212f03-9267-4871-b7ff-a5c718029b0e" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T13:29:03.964952+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Refresh" result="Success" last_modified_tag="bcec41e1-70ae-496b-ad00-0929ee9f730b" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T13:29:10.267363+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Starting" last_modified_tag="14fe80c6-ef2b-4e92-81e9-e8b882afbf37" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T13:29:10.298563+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Started" last_modified_tag="3eca0a92-6494-44f2-87cf-ee8e55c43eea" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T13:29:10.969364+01:00" LoggingEventType="2" severity="debug"/> <record last_modified_tag="225b87f5-8203-4070-b832-aadb4c4cbf7a" systemname="USER-PC" username="SYSTEM" type="Update" source="Scheduler" datetime="2015-01-26T15:27:00.963026+01:00" LoggingEventType="1" severity="debug" toVersion="2015.1.26.6" name="Malware Database" fromVersion="2015.1.26.5"/> <record subtype="Refresh" result="Starting" last_modified_tag="40ca3e5a-f88b-44b8-ad19-93aa4af408a5" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T15:27:01.025426+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Stopping" last_modified_tag="ca9b7042-1dee-46fd-9629-e876f1bfd320" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T15:27:01.041026+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Stopped" last_modified_tag="b9065518-2573-452a-aa5c-e1d22c372e59" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T15:27:01.087826+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Refresh" result="Success" last_modified_tag="54380e96-8a2f-4bcb-92ff-f6b02b6a3a61" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T15:27:27.030672+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Starting" last_modified_tag="17b3351e-a7b1-4837-b9cf-0e1c0a3f5004" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T15:27:27.061872+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Started" last_modified_tag="485cff2b-4732-4202-a3f1-b0d4d91c18d4" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-26T15:27:31.570280+01:00" LoggingEventType="2" severity="debug"/> <record last_modified_tag="f4df2214-9472-40f2-9503-65cb7cac073d" systemname="USER-PC" username="SYSTEM" type="Scan" source="Manual" datetime="2015-01-26T17:36:43.774600+01:00" LoggingEventType="6" severity="debug" scanresult="completed" nonmalwaredetections="0" malwaredetections="0" duration="6853" starttime="2015-01-26T15:42:29+01:00" scantype="custom"/> </logs> MBAM Log 4 Code:
ATTFilter <?xml version="1.0" encoding="UTF-8"?> -<logs> <record subtype="Malware Protection" result="Starting" last_modified_tag="3dd5daaa-ad54-4b1d-a242-288f13061a40" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-27T09:05:07.274647+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malware Protection" result="Started" last_modified_tag="84919c16-7cdf-4d22-aefc-6ba5f6420011" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-27T09:05:07.274647+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Starting" last_modified_tag="0f11f66a-a03b-4398-b089-41ec8215b6c9" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-27T09:05:07.305847+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Started" last_modified_tag="3496c1ce-a014-4c68-bfb2-01dad9a048a9" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-27T09:06:50.088026+01:00" LoggingEventType="2" severity="debug"/> <record last_modified_tag="d4863eef-a261-423f-bd6c-6ce872b7c9a3" systemname="USER-PC" username="SYSTEM" type="Update" source="Scheduler" datetime="2015-01-27T09:29:02.559678+01:00" LoggingEventType="1" severity="debug" toVersion="2015.1.27.5" name="Malware Database" fromVersion="2015.1.26.6"/> <record subtype="Refresh" result="Starting" last_modified_tag="972a40ee-cf36-42d7-a53f-681cd2f027df" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-27T09:29:02.653278+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Stopping" last_modified_tag="2e524ef1-7979-4dde-872e-8c2a5883a579" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-27T09:29:02.668878+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Stopped" last_modified_tag="58bc2b40-c7d4-4be3-9470-90505614d1cd" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-27T09:29:02.700078+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Refresh" result="Success" last_modified_tag="5ff6d3db-bbc6-4bdd-84bf-ef2a4f1551b7" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-27T09:29:08.456488+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Starting" last_modified_tag="1239c337-4f29-471b-a12d-5b94665493c1" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-27T09:29:08.487688+01:00" LoggingEventType="2" severity="debug"/> <record subtype="Malicious Website Protection" result="Started" last_modified_tag="05a0a8fa-d6ea-4857-becc-1ce8b43a9196" systemname="USER-PC" username="SYSTEM" type="Protection" source="Protection" datetime="2015-01-27T09:29:08.721689+01:00" LoggingEventType="2" severity="debug"/> </logs> |
Themen zu Proxy-Fehlermeldung 127.0.0.1:8897 |
adware, antivirus, autokms, avira, bingbar, browser, defender, device driver, entfernen, excel, fehler, firefox, flash player, home, homepage, internet, mozilla, onedrive, performance, prozess, realtek, registry, scan, security, services.exe, software, system, vista, windows |