![]() |
|
Plagegeister aller Art und deren Bekämpfung: Hijacker? wwwgoogle.de :(Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() |
|
![]() | #1 | |||
| ![]() Hijacker? wwwgoogle.de :(Zitat:
Ich hab mal in der regedit geschaut, das ist ja nur einfach nur ein Schlüssel ohne eingetragene Werte, kann der trotzdem was damit zu tun haben? ![]() 2. Ich hab in der Tat kein Antiviren Programm installiert, dachte bislang immer, dass es das System ausbremst und ich ja ohnehin keine mir unbekannten Dateien öffne. Hat auch jahrelang so geklappt, naja... Man lernt aus seinen Fehlern ![]() Zitat:
Zitat:
Na sicher doch ![]() |
![]() | #2 |
| ![]() Hijacker? wwwgoogle.de :( So, was wollt ihr denn nun haben?
__________________Ist doch mehr geworden als ich dachte ![]() Alle infected: Mon May 08 12:10:13 2006 => System found infected with flashfxp Spyware/Adware ({e5a1691b-d188-4419-ad02-90002030b8ee})! Action taken: No Action Taken. Mon May 08 12:10:13 2006 => System found infected with flashfxp Spyware/Adware ({e5a1691b-d188-4419-ad02-90002030b8ee})! Action taken: No Action Taken. Mon May 08 12:10:42 2006 => System found infected with ezula Spyware/Adware (ebay.url)! Action taken: No Action Taken. ---------------------------------------------------------------------------------- Tagged: Mon May 08 12:09:51 2006 => File E:\mIRC\mirc.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.616. No Action Taken. Mon May 08 12:44:38 2006 => File C:\Programme\themexp\Themexp.org File\VVSNInst.exe tagged as "not-a-virus:AdWare.Win32.SaveNow.bo". Action Taken: No Action Taken. Mon May 08 12:48:48 2006 => File C:\System Volume Information\_restore{2125F746-06D3-444B-918B-5511F142B3FC}\RP141\A0036918.exe tagged as "not-a-virus:AdWare.Win32.NewDotNet". Action Taken: No Action Taken. Mon May 08 12:55:34 2006 => File C:\WINDOWS\NDNuninstall7_22.exe tagged as "not-a-virus:AdWare.Win32.NewDotNet.e". Action Taken: No Action Taken. Mon May 08 13:24:27 2006 => File D:\Downloads neu\136609.exe tagged as "not-a-virus:AdWare.Win32.SaveNow.bo". Action Taken: No Action Taken. Mon May 08 13:24:39 2006 => File D:\Downloads neu\50057.exe tagged as "not-a-virus:AdWare.Win32.SaveNow.bo". Action Taken: No Action Taken. Mon May 08 14:13:56 2006 => File E:\mIRC\mirc.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.616. No Action Taken. Mon May 08 14:14:01 2006 => File E:\Mirc 6.17\backup\mirc.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.616. No Action Taken. Mon May 08 14:14:06 2006 => File E:\mIRC2\mirc.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.603. No Action Taken. Mon May 08 14:14:08 2006 => File E:\mIRCBot\mirc.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.603. No Action Taken. Mon May 08 14:14:08 2006 => File E:\mIRCs\mirc.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.616. No Action Taken. |
![]() | #3 | ||
![]() ![]() ![]() ![]() | ![]() Hijacker? wwwgoogle.de :( @Kuli
__________________Zitat:
Zitat:
|
![]() | #4 | |
| ![]() Hijacker? wwwgoogle.de :(Zitat:
![]() Hoppla, da unten hab ich gar nicht hingeschaut... Hier der Inhalt: ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Infektionsmeldungen ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Mon May 08 12:10:13 2006 => System found infected with flashfxp Spyware/Adware ({e5a1691b-d188-4419-ad02-90002030b8ee})! Action taken: No Action Taken. Mon May 08 12:10:13 2006 => System found infected with flashfxp Spyware/Adware ({e5a1691b-d188-4419-ad02-90002030b8ee})! Action taken: No Action Taken. Mon May 08 12:10:42 2006 => System found infected with ezula Spyware/Adware (ebay.url)! Action taken: No Action Taken. Mon May 08 12:10:14 2006 => Object "ares Spyware/Adware" found in File System! Action Taken: No Action Taken. Mon May 08 12:10:14 2006 => Object "ares Spyware/Adware" found in File System! Action Taken: No Action Taken. Mon May 08 12:10:14 2006 => Object "imesh Spyware/Adware" found in File System! Action Taken: No Action Taken. Mon May 08 12:10:14 2006 => Object "kazaa Spyware/Adware" found in File System! Action Taken: No Action Taken. Mon May 08 12:10:16 2006 => Object "ares Spyware/Adware" found in File System! Action Taken: No Action Taken. Mon May 08 12:10:43 2006 => Object "ares Spyware/Adware" found in File System! Action Taken: No Action Taken. Mon May 08 12:10:43 2006 => Object "whenu.savenow Spyware/Adware" found in File System! Action Taken: No Action Taken. Mon May 08 12:10:43 2006 => Object "ares Spyware/Adware" found in File System! Action Taken: No Action Taken. Mon May 08 12:10:43 2006 => Object "whenu.savenow Spyware/Adware" found in File System! Action Taken: No Action Taken. Mon May 08 12:10:43 2006 => Object "ares Spyware/Adware" found in File System! Action Taken: No Action Taken. Mon May 08 12:11:18 2006 => Object "ares Spyware/Adware" found in File System! Action Taken: No Action Taken. Mon May 08 12:11:19 2006 => Object "smitfraud variant Browser Hijacker" found in File System! Action Taken: No Action Taken. ~~~~~~~~~~~ Dateien ~~~~~~~~~~~ ~~~~ Infected files ~~~~~~~~~~~ ~~~~~~~~~~~ ~~~~ Offending files ~~~~~~~~~~~ Mon May 08 12:10:42 2006 => Offending file found: C:\Dokumente und Einstellungen\***\Favoriten\links\amabay\ebay.url ~~~~~~~~~~~ ~~~~ Tagged files ~~~~~~~~~~~ Mon May 08 12:09:51 2006 => File E:\mIRC\mirc.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.616. No Action Taken. Mon May 08 12:44:38 2006 => File C:\Programme\themexp\Themexp.org File\VVSNInst.exe tagged as "not-a-virus:AdWare.Win32.SaveNow.bo". Action Taken: No Action Taken. Mon May 08 12:48:48 2006 => File C:\System Volume Information\_restore{2125F746-06D3-444B-918B-5511F142B3FC}\RP141\A0036918.exe tagged as "not-a-virus:AdWare.Win32.NewDotNet". Action Taken: No Action Taken. Mon May 08 12:55:34 2006 => File C:\WINDOWS\NDNuninstall7_22.exe tagged as "not-a-virus:AdWare.Win32.NewDotNet.e". Action Taken: No Action Taken. Mon May 08 13:24:27 2006 => File D:\Downloads neu\136609.exe tagged as "not-a-virus:AdWare.Win32.SaveNow.bo". Action Taken: No Action Taken. Mon May 08 13:24:39 2006 => File D:\Downloads neu\50057.exe tagged as "not-a-virus:AdWare.Win32.SaveNow.bo". Action Taken: No Action Taken. Mon May 08 14:13:56 2006 => File E:\mIRC\mirc.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.616. No Action Taken. Mon May 08 14:14:01 2006 => File E:\Mirc 6.17\backup\mirc.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.616. No Action Taken. Mon May 08 14:14:06 2006 => File E:\mIRC2\mirc.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.603. No Action Taken. Mon May 08 14:14:08 2006 => File E:\mIRCBot\mirc.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.603. No Action Taken. Mon May 08 14:14:08 2006 => File E:\mIRCs\mirc.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.616. No Action Taken. ~~~~~~~~~~~ Ordner ~~~~~~~~~~~ Mon May 08 12:10:16 2006 => Offending Folder found: C:\Programme\ares Mon May 08 12:10:43 2006 => Offending Folder found: C:\Dokumente und Einstellungen\J.Grimm\Startmenü\programme\ares Mon May 08 12:10:43 2006 => Offending Folder found: C:\Dokumente und Einstellungen\J.Grimm\Startmenü\programme\whenu Mon May 08 12:10:43 2006 => Offending Folder found: C:\Dokumente und Einstellungen\J.Grimm\Startmenü\Programme\ares Mon May 08 12:10:43 2006 => Offending Folder found: C:\Dokumente und Einstellungen\J.Grimm\Startmenü\Programme\whenu Mon May 08 12:10:43 2006 => Offending Folder found: C:\Dokumente und Einstellungen\J.Grimm\Lokale Einstellungen\anwendungsdaten\ares Mon May 08 12:11:18 2006 => Offending Folder found: C:\Dokumente und Einstellungen\J.Grimm\Lokale Einstellungen\Anwendungsdaten\ares Mon May 08 12:11:19 2006 => Offending Folder found: C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\aol\c_aol 9.0\idb\bart\1024 ~~~~~~~~~~~ Registry ~~~~~~~~~~~ Mon May 08 12:10:14 2006 => Offending Key found: HKLM\Software\Microsoft\Windows\CurrentVersion\uninstall\ares !!! Mon May 08 12:10:14 2006 => Offending Key found: HKCU\Software\ares !!! Mon May 08 12:10:14 2006 => Offending Key found: HKCU\Software\imesh !!! Mon May 08 12:10:14 2006 => Offending Key found: HKCU\Software\kazaa !!! ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Statistiken: ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Mon May 08 14:22:24 2006 => Total Errors: 3949 Mon May 08 14:22:24 2006 => Time Elapsed: 02:12:21 Mon May 08 14:22:24 2006 => Total Objects Scanned: 426485 Mon May 08 11:27:03 2006 => Virus Database Date: 5/4/2006 Mon May 08 11:32:22 2006 => Virus Database Date: 5/4/2006 Mon May 08 12:03:20 2006 => Virus Database Date: 5/4/2006 Mon May 08 14:22:24 2006 => Virus Database Date: 5/4/2006 Mon May 08 14:29:30 2006 => Virus Database Date: 5/4/2006 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
![]() |
Themen zu Hijacker? wwwgoogle.de :( |
angezeigt, black, editiere, eingefangen, gefangen, hijacker, links |