|
Log-Analyse und Auswertung: Lästige Spyware lässt sich nicht entfernen :(Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
12.06.2007, 22:22 | #16 |
| Lästige Spyware lässt sich nicht entfernen :( Hmm @ nochdigger... schreibst ja gar nix mehr Schade... Na ich hol mal den thread wieder hoch Grüßle, Fava |
13.06.2007, 06:56 | #17 | |
| Lästige Spyware lässt sich nicht entfernen :( Moin
__________________Zitat:
Also die letzten logs sahen für mich sauber aus, aber ich gehe davon aus, dass du noch immer Popups hast. Lade dir bitte mal CounterSpy, halte dich bitte an die Anleitung von Ruby, anschließend poste die entfernten Funde aber bitte keine Funde von Cockies. MFG |
16.06.2007, 13:49 | #18 |
| Lästige Spyware lässt sich nicht entfernen :( Hey Nochdigger
__________________Aha...cool - Danke das du mir weiterhin hilfst Hab den "Counter Spy geladen und doch schon noch interessante Sachen gefunden Danke für den Hinweis! Sehe selbst: ------------------------------- Slagent/Navipromo Type: Adware (General) Level: Elevated Description: Slagent/Navipromo runs without user notification after initial installation and can download and execute arbitrary files on the computer. Slagent/Navipromo contacts a Web site for advertisement purposes. Advice: This is an elevated risk and should be removed or quarantined as it may compromise your privacy and security, make unwanted changes to your computer's settings, and negatively impact your computer's performance and stability. ------------------------------- MediaPipe/MovieLand Type: Hijacker Level: Elevated Author: MovieLand & MediaPipe Description: MediaPipe/MovieLand is an online content access program that badgers using into paying for the application if they do not cancel the "trial" within a certain time period. Advice: This is an elevated risk and should be removed or quarantined as it may compromise your privacy and security, make unwanted changes to your computer's settings, and negatively impact your computer's performance and stability. ---------------------------------- Die 2 Teile habe ich jetzt in Quarantäne gesteckt und 6 Cookies gelöscht Soll ich die 2 Sachen auch löschen ?? Herzlichen Dank für alles! Grüße, Fava |
16.06.2007, 13:56 | #19 |
| Lästige Spyware lässt sich nicht entfernen :( Hoppla... hier natürlich noch die gesamte Auswertung ---------------------------- Scan History Details Start Date: 16.06.2007 12:54:42 End Date: 16.06.2007 13:50:32 Total Time: 55 Min 50 Sec Detected security risks Cookie: BS.Serving-Sys Cookie (General) more information... Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs. Status: Deleted Cookies detected c:\dokumente und einstellungen\isi\cookies\isi@bs.serving-sys[1].txt c:\dokumente und einstellungen\isi\cookies\isi@serving-sys[1].txt Cookie: Overture.com Cookie (General) more information... Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs. Status: Deleted Cookies detected c:\dokumente und einstellungen\isi\cookies\isi@overture[2].txt Cookie: PriceGrabber Cookie (General) more information... Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs. Status: Deleted Cookies detected c:\dokumente und einstellungen\isi\cookies\isi@pricegrabber[1].txt Cookie: RealMedia.com Cookie (General) more information... Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs. Status: Deleted Cookies detected c:\dokumente und einstellungen\isi\cookies\isi@realmedia[2].txt Cookie: Weborama Cookie (General) more information... Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs. Status: Deleted Cookies detected c:\dokumente und einstellungen\isi\cookies\isi@weborama[2].txt Slagent/Navipromo Adware (General) more information... Details: Slagent/Navipromo runs without user notification after initial installation and can download and execute arbitrary files on the computer. Slagent/Navipromo contacts a Web site for advertisement purposes. Status: Quarantined Files detected C:\WINDOWS\system32\nvs2.inf Cookie: Radar Spy Cookie (General) more information... Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs. Status: Deleted Cookies detected c:\dokumente und einstellungen\isi\cookies\isi@yourmedia[1].txt CoolOnlineOffers.ScreenSaver Adware Bundler more information... Details: CoolOnlineOffers.ScreenSaver is a program which delivers advertisiment on you computer depending on your surfing behaviour. Status: Ignored Files detected C:\WINDOWS\DiamondView Demo dir\EXPIRE.SCF MailSkinner Potentially Unwanted Program more information... Status: Ignored Registry entries detected HKEY_USERS\S-1-5-21-2255018123-993939828-2508340356-1006\SOFTWARE\EPK_EXTR MediaPipe/MovieLand Hijacker more information... Details: MediaPipe/MovieLand is an online content access program that badgers using into paying for the application if they do not cancel the "trial" within a certain time period. Status: Quarantined Registry entries detected HKEY_LOCAL_MACHINE\Software\Classes\APPID\DOWNLOADMANAGER.EXE HKEY_LOCAL_MACHINE\Software\Classes\APPID\DOWNLOADMANAGER.EXE ---------------------------------------- Grüße, Fava |
16.06.2007, 14:12 | #20 |
| Lästige Spyware lässt sich nicht entfernen :( Hallo is ja doch noch was gefunden worden, wie sieht es aus mit Popups oder sonstigen Problemen? Eventuell musst du Counter Spy auch öfter übers System laufen lassen, damit alles erwischt wird. MFG |
18.06.2007, 21:56 | #21 |
| Lästige Spyware lässt sich nicht entfernen :( Hey Habe den Scan nochmal laufen lassen - er hat nur noch cookies gefunden. Hatte aber schon noch Probleme mit popups Werd es morgen nochmal laufen lassen... Vielen Dank für alles!!!! Hier der Bericht: Scan History Details Start Date: 18.06.2007 21:44:38 End Date: 18.06.2007 22:52:45 Total Time: 68 Min 7 Sec Detected security risks Cookie: BS.Serving-Sys Cookie (General) more information... Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs. Status: Deleted Cookies detected c:\dokumente und einstellungen\isi\cookies\isi@bs.serving-sys[1].txt c:\dokumente und einstellungen\isi\cookies\isi@serving-sys[1].txt Cookie: Overture.com Cookie (General) more information... Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs. Status: Deleted Cookies detected c:\dokumente und einstellungen\isi\cookies\isi@overture[1].txt Cookie: QuestionMarket.com Cookie (General) more information... Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs. Status: Deleted Cookies detected c:\dokumente und einstellungen\isi\cookies\isi@questionmarket[1].txt Cookie: RealMedia.com Cookie (General) more information... Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs. Status: Deleted Cookies detected c:\dokumente und einstellungen\isi\cookies\isi@realmedia[1].txt Cookie: Weborama Cookie (General) more information... Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs. Status: Deleted Cookies detected c:\dokumente und einstellungen\isi\cookies\isi@weborama[2].txt CoolOnlineOffers.ScreenSaver Adware Bundler more information... Details: CoolOnlineOffers.ScreenSaver is a program which delivers advertisiment on you computer depending on your surfing behaviour. Status: Ignored Files detected C:\WINDOWS\DiamondView Demo dir\EXPIRE.SCF MailSkinner Potentially Unwanted Program more information... Status: Ignored Registry entries detected HKEY_USERS\S-1-5-21-2255018123-993939828-2508340356-1006\SOFTWARE\EPK_EXTR |
18.06.2007, 22:49 | #22 | |
| Lästige Spyware lässt sich nicht entfernen :( Moin ich hatte vergessen zu schreiben das immer - Remove - bei jedem Fund gewählt werden sollte, damit du das Zeug loswirst. Zitat:
MFG |
19.06.2007, 21:20 | #23 |
| Lästige Spyware lässt sich nicht entfernen :( Hey Habe heute nochmals gescannt und wieder nur cookies gefunden - hier der bericht: Scan History Details Start Date: 19.06.2007 20:45:14 End Date: 19.06.2007 21:51:18 Total Time: 66 Min 4 Sec Detected security risks Cookie: RealMedia.com Cookie (General) more information... Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs. Status: Deleted Cookies detected c:\dokumente und einstellungen\isi\cookies\isi@realmedia[2].txt CoolOnlineOffers.ScreenSaver Adware Bundler more information... Details: CoolOnlineOffers.ScreenSaver is a program which delivers advertisiment on you computer depending on your surfing behaviour. Status: Deleted Files detected C:\WINDOWS\DiamondView Demo dir\EXPIRE.SCF MailSkinner Potentially Unwanted Program more information... Status: Deleted Registry entries detected HKEY_USERS\S-1-5-21-2255018123-993939828-2508340356-1006\SOFTWARE\EPK_EXTR ------------------------------------------------ Habe auch die Sachen, die in Quarantäne waren, nun gelöscht. Hmm, waren weiterhin werbepopups, bzw. auch sex seiten - bzw. so partnerkontaktseiten eher... ich werde nun mal sehen wie es sich entwickelt werde morgen nochmals scannen... Danke sehr für alles! Fava |
19.06.2007, 21:49 | #24 |
| Lästige Spyware lässt sich nicht entfernen :( Moin mir sind leider grad die Ideen aus sorry, aber ich habe in deinen Logs auch nix mehr gefunden. Oder doch schau mal unter Start -> Einstellungen -> Systemsteuerung -> Software ob es eine Software "Mediapipe" o.ä. dort gibt diese könnte für die Popups verantwortlich sein wenn vorhanden bitte deinstallieren. MFG |
Themen zu Lästige Spyware lässt sich nicht entfernen :( |
ad aware, adobe, antivir, avg, avira, bho, cyberlink, defender, desktop, drivers, einstellungen, entfernen, explorer, f-secure, generic, hijack, hijackthis, immer wieder, internet, internet explorer, log-files, logfile, lässt sich nicht entfernen, magix, monitor, object, seiten, shockwave, software, spyware, super, system, urlsearchhook, usb, windows, windows xp |