Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Brauche DRINGEND Hilfe 2 Trojaner

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

 
Alt 24.05.2006, 00:58   #8
foeldi
 
Brauche DRINGEND Hilfe 2 Trojaner - Standard

Brauche DRINGEND Hilfe 2 Trojaner



Zitat:
Zitat von Michael R1507
Habe mich wohl etwas missverständlich ausgedrückt - sorry.
Also mein Virenscanner sagt :
Sign of "Win32:Zlob-BN [Trj]" has been found in "C:\WINDOWS\system32\1024\ldA05.tmp\[Upack]" file.
Sign of "Win32:Trojano-CL [Trj]" has been found in "C:\WINDOWS\system32\1024\ld25DA.tmp\[UPX]" file.
Diese zwei Dateien werden dann in einen "Container" verschoben. Ca. 20-25 Minuten später erhalte ich dann 2 gleiche Meldungen aber mit geänderten Dateinamen. Das wiederholt sich ständig.
Ich habe deshalb angenommen, dass ein Programm (??) diese Dateien herunterlädt.

Danke !
Habe das gleiche Problem!

hab auch schon einiges probiert
hier das Log von eScan


Tue May 23 22:22:18 2006 => ***** Scanning Registry and File system for Adware/Spyware *****
Tue May 23 22:22:18 2006 => Loading Spyware Signatures from new External Database (Size: 157208).
Tue May 23 22:22:20 2006 => Indexed Spyware Databases Successfully Created...

Tue May 23 22:22:33 2006 => System found infected with cws.loadadv.400 Browser Hijacker ({5e2121ee-0300-11d4-8d3b-444553540000})! Action taken: No Action Taken.
Tue May 23 22:22:37 2006 => Offending Folder found: C:\WINDOWS\system32\1024
Tue May 23 22:22:37 2006 => Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken.

Tue May 23 22:22:37 2006 => Offending file found: C:\WINDOWS\system32\ot.ico
Tue May 23 22:22:37 2006 => System found infected with smitfraud Browser Hijacker (ot.ico)! Action taken: No Action Taken.

Tue May 23 22:22:38 2006 => Offending file found: C:\Dokumente und Einstellungen\Martin\Favoriten\antivirus test online.url
Tue May 23 22:22:38 2006 => System found infected with smitfraud Browser Hijacker (antivirus test online.url)! Action taken: No Action Taken.

Tue May 23 22:22:39 2006 => Offending file found: M:\Eigene Dateien\arbeit\starline 500e\search.htm
Tue May 23 22:22:39 2006 => System found infected with weathercast Spyware/Adware (search.htm)! Action taken: No Action Taken.

Tue May 23 22:22:39 2006 => Offending file found: M:\Eigene Dateien\arbeit\starline 500e\_vti_cnf\search.htm
Tue May 23 22:22:39 2006 => System found infected with weathercast Spyware/Adware (search.htm)! Action taken: No Action Taken.

Tue May 23 22:22:48 2006 => Offending Folder found: M:\Eigene Dateien\eigene bilder\autos
Tue May 23 22:22:48 2006 => Object "gohip Spyware/Adware" found in File System! Action Taken: No Action Taken.

Tue May 23 22:22:52 2006 => Offending file found: M:\Eigene Dateien\eigene bilder\händy\nokia 6600\backup\201.dat
Tue May 23 22:22:52 2006 => System found infected with medialoads enhanced Spyware/Adware (201.dat)! Action taken: No Action Taken.

Tue May 23 22:22:52 2006 => Offending file found: M:\Eigene Dateien\eigene bilder\händy\nokia 6600\backup\43.dat
Tue May 23 22:22:52 2006 => System found infected with networkessentials Spyware/Adware (43.dat)! Action taken: No Action Taken.

Tue May 23 22:22:53 2006 => Offending file found: M:\Eigene Dateien\eigene musik\mp playlisten\files.ini
Tue May 23 22:22:53 2006 => System found infected with iwon Spyware/Adware (files.ini)! Action taken: No Action Taken.

Tue May 23 22:22:57 2006 => Offending file found: M:\Eigene Dateien\eigene webs\foeldis-web\start.html
Tue May 23 22:22:57 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken.

Tue May 23 22:22:57 2006 => Offending file found: M:\Eigene Dateien\eigene webs\foeldis-web\_vti_cnf\start.html
Tue May 23 22:22:57 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken.

Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\de\start.html
Tue May 23 22:23:00 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken.

Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\en\start.html
Tue May 23 22:23:00 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken.

Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\es\start.html
Tue May 23 22:23:00 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken.

Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\fr\start.html
Tue May 23 22:23:00 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken.

Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\it\start.html
Tue May 23 22:23:00 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken.

Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\start.html
Tue May 23 22:23:00 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken.

Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\händy\nokia 6600\backup\201.dat
Tue May 23 22:23:00 2006 => System found infected with medialoads enhanced Spyware/Adware (201.dat)! Action taken: No Action Taken.

Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\händy\nokia 6600\backup\43.dat
Tue May 23 22:23:00 2006 => System found infected with networkessentials Spyware/Adware (43.dat)! Action taken: No Action Taken.

Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\händy\sicherungen\10.09.04\nokia 6600\backup\43.dat
Tue May 23 22:23:00 2006 => System found infected with networkessentials Spyware/Adware (43.dat)! Action taken: No Action Taken.

Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\programieren\visual studio projects\windowsapplication1\bin\interop.adodb.dll
Tue May 23 22:23:00 2006 => System found infected with broadcastpc Spyware/Adware (interop.adodb.dll)! Action taken: No Action Taken.

Tue May 23 22:23:00 2006 => Offending file found: M:\Eigene Dateien\programieren\visual studio projects\windowsapplication1\obj\interop.adodb.dll
Tue May 23 22:23:00 2006 => System found infected with broadcastpc Spyware/Adware (interop.adodb.dll)! Action taken: No Action Taken.

Tue May 23 22:23:10 2006 => Offending Folder found: M:\Eigene Dateien\Eigene Bilder\autos
Tue May 23 22:23:10 2006 => Object "gohip Spyware/Adware" found in File System! Action Taken: No Action Taken.

Tue May 23 22:23:12 2006 => Offending file found: M:\Eigene Dateien\Eigene Bilder\händy\nokia 6600\backup\201.dat
Tue May 23 22:23:12 2006 => System found infected with medialoads enhanced Spyware/Adware (201.dat)! Action taken: No Action Taken.

Tue May 23 22:23:12 2006 => Offending file found: M:\Eigene Dateien\Eigene Bilder\händy\nokia 6600\backup\43.dat
Tue May 23 22:23:12 2006 => System found infected with networkessentials Spyware/Adware (43.dat)! Action taken: No Action Taken.

Tue May 23 22:23:12 2006 => Offending file found: M:\Eigene Dateien\Eigene Musik\mp playlisten\files.ini
Tue May 23 22:23:12 2006 => System found infected with iwon Spyware/Adware (files.ini)! Action taken: No Action Taken.

Tue May 23 22:23:15 2006 => Offending file found: M:\Eigene Dateien\arbeit\starline 500e\search.htm
Tue May 23 22:23:15 2006 => System found infected with weathercast Spyware/Adware (search.htm)! Action taken: No Action Taken.

Tue May 23 22:23:15 2006 => Offending file found: M:\Eigene Dateien\arbeit\starline 500e\_vti_cnf\search.htm
Tue May 23 22:23:15 2006 => System found infected with weathercast Spyware/Adware (search.htm)! Action taken: No Action Taken.

Tue May 23 22:23:16 2006 => Offending Folder found: M:\Eigene Dateien\eigene bilder\autos
Tue May 23 22:23:16 2006 => Object "gohip Spyware/Adware" found in File System! Action Taken: No Action Taken.

Tue May 23 22:23:18 2006 => Offending file found: M:\Eigene Dateien\eigene bilder\händy\nokia 6600\backup\201.dat
Tue May 23 22:23:18 2006 => System found infected with medialoads enhanced Spyware/Adware (201.dat)! Action taken: No Action Taken.

Tue May 23 22:23:18 2006 => Offending file found: M:\Eigene Dateien\eigene bilder\händy\nokia 6600\backup\43.dat
Tue May 23 22:23:18 2006 => System found infected with networkessentials Spyware/Adware (43.dat)! Action taken: No Action Taken.

Tue May 23 22:23:18 2006 => Offending file found: M:\Eigene Dateien\eigene musik\mp playlisten\files.ini
Tue May 23 22:23:18 2006 => System found infected with iwon Spyware/Adware (files.ini)! Action taken: No Action Taken.

Tue May 23 22:23:18 2006 => Offending file found: M:\Eigene Dateien\eigene webs\foeldis-web\start.html
Tue May 23 22:23:18 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken.

Tue May 23 22:23:18 2006 => Offending file found: M:\Eigene Dateien\eigene webs\foeldis-web\_vti_cnf\start.html
Tue May 23 22:23:18 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken.

Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\de\start.html
Tue May 23 22:23:19 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken.

Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\en\start.html
Tue May 23 22:23:19 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken.

Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\es\start.html
Tue May 23 22:23:19 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken.

Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\fr\start.html
Tue May 23 22:23:19 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken.

Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\it\start.html
Tue May 23 22:23:19 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken.

Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\händy\card\system\apps\opera\start.html
Tue May 23 22:23:19 2006 => System found infected with smitfraud Browser Hijacker (start.html)! Action taken: No Action Taken.

Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\händy\nokia 6600\backup\201.dat
Tue May 23 22:23:19 2006 => System found infected with medialoads enhanced Spyware/Adware (201.dat)! Action taken: No Action Taken.

Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\händy\nokia 6600\backup\43.dat
Tue May 23 22:23:19 2006 => System found infected with networkessentials Spyware/Adware (43.dat)! Action taken: No Action Taken.

Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\händy\sicherungen\10.09.04\nokia 6600\backup\43.dat
Tue May 23 22:23:19 2006 => System found infected with networkessentials Spyware/Adware (43.dat)! Action taken: No Action Taken.

Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\programieren\visual studio projects\windowsapplication1\bin\interop.adodb.dll
Tue May 23 22:23:19 2006 => System found infected with broadcastpc Spyware/Adware (interop.adodb.dll)! Action taken: No Action Taken.

Tue May 23 22:23:19 2006 => Offending file found: M:\Eigene Dateien\programieren\visual studio projects\windowsapplication1\obj\interop.adodb.dll
Tue May 23 22:23:19 2006 => System found infected with broadcastpc Spyware/Adware (interop.adodb.dll)! Action taken: No Action Taken.

Und hier díe Einträge aus dem unteren Fenster von eScan:

Object "cws.loadadv.400 Browser Hijacker" found in File System! Action Taken: No Action Taken.
Object "weathercast Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "weathercast Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "gohip Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "medialoads enhanced Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "networkessentials Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "iwon Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken.
Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken.
Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken.
Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken.
Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken.
Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken.
Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken.
Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken.
Object "medialoads enhanced Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "networkessentials Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "networkessentials Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "broadcastpc Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "broadcastpc Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "gohip Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "medialoads enhanced Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "networkessentials Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "iwon Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "weathercast Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "weathercast Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "gohip Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "medialoads enhanced Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "networkessentials Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "iwon Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken.
Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken.
Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken.
Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken.
Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken.
Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken.
Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken.
Object "smitfraud Browser Hijacker" found in File System! Action Taken: No Action Taken.
Object "medialoads enhanced Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "networkessentials Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "networkessentials Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "broadcastpc Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "broadcastpc Spyware/Adware" found in File System! Action Taken: No Action Taken.
File C:\WINDOWS\system32\ld6D02.tmp infected by "Trojan-Downloader.Win32.Zlob.lj" Virus! Action Taken: No Action Taken.
File C:\WINDOWS\system32\regperf.exe infected by "Trojan-Downloader.Win32.Zlob.lj" Virus! Action Taken: No Action Taken.

die Roten files habe ich schon gelöscht, ich hoffe das war nicht falsch!

kann mir bitte jemad sagen was ich tun muss!!!!

Danke schon mal

Geändert von foeldi (24.05.2006 um 01:19 Uhr)

 

Themen zu Brauche DRINGEND Hilfe 2 Trojaner
adobe, antivirus, avast, avast!, bho, canon, dringend, excel, explorer, helper, hijack, hijackthis, hotkey, internet, internet explorer, microsoft, pdf, programm, programme, scan, software, system, temp, trojane, trojaner, windows, windows xp




Ähnliche Themen: Brauche DRINGEND Hilfe 2 Trojaner


  1. Trojaner 18145076!! Brauche Dringend Hilfe
    Plagegeister aller Art und deren Bekämpfung - 29.04.2011 (10)
  2. Brauche dringend Hilfe mit Trojaner Kazy.mekml.1
    Mülltonne - 27.04.2011 (1)
  3. BKA Trojaner - Brauche dringend Hilfe!
    Log-Analyse und Auswertung - 18.04.2011 (16)
  4. Trojaner auf dem Rechner?! Brauche dringend Hilfe!
    Plagegeister aller Art und deren Bekämpfung - 25.08.2010 (82)
  5. Brauche dringend hilfe bitte trojaner,...
    Plagegeister aller Art und deren Bekämpfung - 27.09.2009 (1)
  6. brauche dringend hilfe mit trojaner befall?!
    Log-Analyse und Auswertung - 28.10.2008 (20)
  7. Trojaner heruntergeladen - brauche dringend Hilfe
    Mülltonne - 20.10.2008 (0)
  8. Trojaner? Brauche dringend Hilfe..
    Log-Analyse und Auswertung - 06.10.2008 (5)
  9. Brauche dringend Hilfe...Trojaner-Befall
    Plagegeister aller Art und deren Bekämpfung - 23.04.2008 (1)
  10. Bitte brauche dringend Hilfe....Trojaner
    Mülltonne - 23.04.2008 (0)
  11. trojaner.. brauche wirklich dringend hilfe
    Mülltonne - 31.01.2008 (0)
  12. brauche dringend hilfe zum trojaner Vundo
    Plagegeister aller Art und deren Bekämpfung - 07.12.2007 (45)
  13. Brauche dringend Hilfe!!!!!! Trojaner eingefangen
    Plagegeister aller Art und deren Bekämpfung - 04.10.2006 (5)
  14. Trojaner!!!!! Ich brauche dringend Hilfe!!!
    Mülltonne - 05.06.2006 (2)
  15. Trojaner..brauche dringend hilfe
    Plagegeister aller Art und deren Bekämpfung - 08.05.2005 (20)
  16. brauche dringend Trojaner-1.Hilfe
    Log-Analyse und Auswertung - 30.03.2005 (2)
  17. Virus/Trojaner brauche dringend Hilfe!!!
    Antiviren-, Firewall- und andere Schutzprogramme - 09.02.2005 (3)

Zum Thema Brauche DRINGEND Hilfe 2 Trojaner - Zitat: Zitat von Michael R1507 Habe mich wohl etwas missverständlich ausgedrückt - sorry. Also mein Virenscanner sagt : Sign of "Win32:Zlob-BN [Trj]" has been found in "C:\WINDOWS\system32\1024\ldA05.tmp\[Upack]" file. Sign of - Brauche DRINGEND Hilfe 2 Trojaner...
Archiv
Du betrachtest: Brauche DRINGEND Hilfe 2 Trojaner auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.