![]() |
|
Log-Analyse und Auswertung: Brauche DRINGEND Hilfe 2 TrojanerWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #8 | |
| ![]() Brauche DRINGEND Hilfe 2 TrojanerZitat:
hab auch schon einiges probiert hier das Log von eScan Tue May 23 22:22:18 2006 => ***** Scanning Registry and File system for Adware/Spyware ***** Tue May 23 22:22:18 2006 => Loading Spyware Signatures from new External Database (Size: 157208). Tue May 23 22:22:20 2006 => Indexed Spyware Databases Successfully Created... Tue May 23 22:22:33 2006 => System found infected with cws.loadadv.400 Browser Hijacker ({5e2121ee-0300-11d4-8d3b-444553540000})! Action taken: No Action Taken. Tue May 23 22:22:37 2006 => Offending Folder found: C:\WINDOWS\system32\1024 Tue May 23 22:22:37 2006 => Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken. Tue May 23 22:22:37 2006 => Offending file found: C:\WINDOWS\system32\ot.ico Tue May 23 22:22:37 2006 => System found infected with smitfraud Browser Hijacker (ot.ico)! Action taken: No Action Taken. Tue May 23 22:22:38 2006 => Offending file found: C:\Dokumente und Einstellungen\Martin\Favoriten\antivirus test online.url Tue May 23 22:22:38 2006 => System found infected with smitfraud Browser Hijacker (antivirus test online.url)! Action taken: No Action Taken. Tue May 23 22:22:39 2006 => Offending file found: M:\Eigene Dateien\arbeit\starline 500e\search.htm Tue May 23 22:22:39 2006 => System found infected with weathercast Spyware/Adware (search.htm)! Action taken: No Action Taken. Tue May 23 22:22:39 2006 => Offending file found: M:\Eigene Dateien\arbeit\starline 500e\_vti_cnf\search.htm Tue May 23 22:22:39 2006 => System found infected with weathercast Spyware/Adware (search.htm)! Action taken: No Action Taken. Tue May 23 22:22:48 2006 => Offending Folder found: M:\Eigene Dateien\eigene bilder\autos Tue May 23 22:22:48 2006 => Object "gohip Spyware/Adware" found in File System! Action Taken: No Action Taken. Tue May 23 22:22:52 2006 => Offending file found: M:\Eigene Dateien\eigene bilder\händy\nokia 6600\backup\201.dat Tue May 23 22:22:52 2006 => System found infected with medialoads enhanced Spyware/Adware (201.dat)! Action taken: No Action Taken. Tue May 23 22:22:52 2006 => Offending file found: M:\Eigene Dateien\eigene bilder\händy\nokia 6600\backup\43.dat Tue May 23 22:22:52 2006 => System found infected with networkessentials Spyware/Adware (43.dat)! Action taken: No Action Taken. Tue May 23 22:22:53 2006 => Offending file found: M:\Eigene Dateien\eigene musik\mp playlisten\files.ini Tue May 23 22:22:53 2006 => System found infected with iwon Spyware/Adware (files.ini)! Action taken: No Action Taken. Tue May 23 22:22:57 2006 => Offending file found: M:\Eigene Dateien\eigene webs\foeldis-web\start.html Tue May 23 22:22:57 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken. Tue May 23 22:22:57 2006 => Offending file found: M:\Eigene Dateien\eigene webs\foeldis-web\_vti_cnf\start.html Tue May 23 22:22:57 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken. Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\de\start.html Tue May 23 22:23:00 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken. Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\en\start.html Tue May 23 22:23:00 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken. Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\es\start.html Tue May 23 22:23:00 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken. Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\fr\start.html Tue May 23 22:23:00 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken. Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\it\start.html Tue May 23 22:23:00 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken. Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\start.html Tue May 23 22:23:00 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken. Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\händy\nokia 6600\backup\201.dat Tue May 23 22:23:00 2006 => System found infected with medialoads enhanced Spyware/Adware (201.dat)! Action taken: No Action Taken. Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\händy\nokia 6600\backup\43.dat Tue May 23 22:23:00 2006 => System found infected with networkessentials Spyware/Adware (43.dat)! Action taken: No Action Taken. Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\händy\sicherungen\10.09.04\nokia 6600\backup\43.dat Tue May 23 22:23:00 2006 => System found infected with networkessentials Spyware/Adware (43.dat)! Action taken: No Action Taken. Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\programieren\visual studio projects\windowsapplication1\bin\interop.adodb.dll Tue May 23 22:23:00 2006 => System found infected with broadcastpc Spyware/Adware (interop.adodb.dll)! Action taken: No Action Taken. Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\programieren\visual studio projects\windowsapplication1\obj\interop.adodb.dll Tue May 23 22:23:00 2006 => System found infected with broadcastpc Spyware/Adware (interop.adodb.dll)! Action taken: No Action Taken. Tue May 23 22:23:10 2006 => Offending Folder found: M:\Eigene Dateien\Eigene Bilder\autos Tue May 23 22:23:10 2006 => Object "gohip Spyware/Adware" found in File System! Action Taken: No Action Taken. Tue May 23 22:23:12 2006 => Offending file found: M:\Eigene Dateien\Eigene Bilder\händy\nokia 6600\backup\201.dat Tue May 23 22:23:12 2006 => System found infected with medialoads enhanced Spyware/Adware (201.dat)! Action taken: No Action Taken. Tue May 23 22:23:12 2006 => Offending file found: M:\Eigene Dateien\Eigene Bilder\händy\nokia 6600\backup\43.dat Tue May 23 22:23:12 2006 => System found infected with networkessentials Spyware/Adware (43.dat)! Action taken: No Action Taken. Tue May 23 22:23:12 2006 => Offending file found: M:\Eigene Dateien\Eigene Musik\mp playlisten\files.ini Tue May 23 22:23:12 2006 => System found infected with iwon Spyware/Adware (files.ini)! Action taken: No Action Taken. Tue May 23 22:23:15 2006 => Offending file found: M:\Eigene Dateien\arbeit\starline 500e\search.htm Tue May 23 22:23:15 2006 => System found infected with weathercast Spyware/Adware (search.htm)! Action taken: No Action Taken. Tue May 23 22:23:15 2006 => Offending file found: M:\Eigene Dateien\arbeit\starline 500e\_vti_cnf\search.htm Tue May 23 22:23:15 2006 => System found infected with weathercast Spyware/Adware (search.htm)! Action taken: No Action Taken. Tue May 23 22:23:16 2006 => Offending Folder found: M:\Eigene Dateien\eigene bilder\autos Tue May 23 22:23:16 2006 => Object "gohip Spyware/Adware" found in File System! Action Taken: No Action Taken. Tue May 23 22:23:18 2006 => Offending file found: M:\Eigene Dateien\eigene bilder\händy\nokia 6600\backup\201.dat Tue May 23 22:23:18 2006 => System found infected with medialoads enhanced Spyware/Adware (201.dat)! Action taken: No Action Taken. Tue May 23 22:23:18 2006 => Offending file found: M:\Eigene Dateien\eigene bilder\händy\nokia 6600\backup\43.dat Tue May 23 22:23:18 2006 => System found infected with networkessentials Spyware/Adware (43.dat)! Action taken: No Action Taken. Tue May 23 22:23:18 2006 => Offending file found: M:\Eigene Dateien\eigene musik\mp playlisten\files.ini Tue May 23 22:23:18 2006 => System found infected with iwon Spyware/Adware (files.ini)! Action taken: No Action Taken. Tue May 23 22:23:18 2006 => Offending file found: M:\Eigene Dateien\eigene webs\foeldis-web\start.html Tue May 23 22:23:18 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken. Tue May 23 22:23:18 2006 => Offending file found: M:\Eigene Dateien\eigene webs\foeldis-web\_vti_cnf\start.html Tue May 23 22:23:18 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken. Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\de\start.html Tue May 23 22:23:19 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken. Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\en\start.html Tue May 23 22:23:19 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken. Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\es\start.html Tue May 23 22:23:19 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken. Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\fr\start.html Tue May 23 22:23:19 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken. Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\it\start.html Tue May 23 22:23:19 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken. Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\start.html Tue May 23 22:23:19 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken. Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\händy\nokia 6600\backup\201.dat Tue May 23 22:23:19 2006 => System found infected with medialoads enhanced Spyware/Adware (201.dat)! Action taken: No Action Taken. Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\händy\nokia 6600\backup\43.dat Tue May 23 22:23:19 2006 => System found infected with networkessentials Spyware/Adware (43.dat)! Action taken: No Action Taken. Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\händy\sicherungen\10.09.04\nokia 6600\backup\43.dat Tue May 23 22:23:19 2006 => System found infected with networkessentials Spyware/Adware (43.dat)! Action taken: No Action Taken. Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\programieren\visual studio projects\windowsapplication1\bin\interop.adodb.dll Tue May 23 22:23:19 2006 => System found infected with broadcastpc Spyware/Adware (interop.adodb.dll)! Action taken: No Action Taken. Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\programieren\visual studio projects\windowsapplication1\obj\interop.adodb.dll Tue May 23 22:23:19 2006 => System found infected with broadcastpc Spyware/Adware (interop.adodb.dll)! Action taken: No Action Taken. Und hier díe Einträge aus dem unteren Fenster von eScan: Object "cws.loadadv.400 Browser Hijacker" found in File System! Action Taken: No Action Taken. Object "weathercast Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "weathercast Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "gohip Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "medialoads enhanced Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "networkessentials Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "iwon Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken. Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken. Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken. Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken. Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken. Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken. Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken. Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken. Object "medialoads enhanced Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "networkessentials Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "networkessentials Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "broadcastpc Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "broadcastpc Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "gohip Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "medialoads enhanced Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "networkessentials Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "iwon Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "weathercast Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "weathercast Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "gohip Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "medialoads enhanced Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "networkessentials Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "iwon Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken. Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken. Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken. Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken. Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken. Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken. Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken. Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken. Object "medialoads enhanced Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "networkessentials Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "networkessentials Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "broadcastpc Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "broadcastpc Spyware/Adware" found in File System! Action Taken: No Action Taken. File C:\WINDOWS\system32\ld6D02.tmp infected by "Trojan-Downloader.Win32.Zlob.lj" Virus! Action Taken: No Action Taken. File C:\WINDOWS\system32\regperf.exe infected by "Trojan-Downloader.Win32.Zlob.lj" Virus! Action Taken: No Action Taken. die Roten files habe ich schon gelöscht, ich hoffe das war nicht falsch! kann mir bitte jemad sagen was ich tun muss!!!! Danke schon mal Geändert von foeldi (24.05.2006 um 01:19 Uhr) |
Themen zu Brauche DRINGEND Hilfe 2 Trojaner |
adobe, antivirus, avast, avast!, bho, canon, dringend, excel, explorer, helper, hijack, hijackthis, hotkey, internet, internet explorer, microsoft, pdf, programm, programme, scan, software, system, temp, trojane, trojaner, windows, windows xp |