![]() |
|
Log-Analyse und Auswertung: Problem beim Aufrufen einiger InternetseitenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
| ![]() Problem beim Aufrufen einiger Internetseiten hi seit einiger zeit kann ich meinem browser (sowohl ie 7 als auch firefox) einige seiten nicht mehr aufruffen (unter anderem w**.google.de, w**.schuelervz.net) ich wäre also froh wenn sich jemand mein log file ancshauen kann und mir vllt weiterhelfen kann: ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Header ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Microsoft Windows XP [Version 5.1.2600] Tue May 08 21:04:47 2007 => Deleting Registry Key: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{de672a1b-f234-11da-b14f-000c76e8a6f5} Tue May 08 21:00:24 2007 => Virus Database Date: 5/8/2007 Tue May 08 21:00:57 2007 => Virus Database Date: 5/8/2007 Tue May 08 21:01:00 2007 => Virus Database Date: 5/8/2007 Wed May 09 00:23:49 2007 => Virus Database Date: 5/8/2007 Wed May 09 00:23:57 2007 => Virus Database Date: 5/8/2007 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Infektionsmeldungen ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Tue May 08 21:03:47 2007 => System found infected with funwebproducts Spyware/Adware ({147a976f-eee1-4377-8ea7-4716e4cdd239})! Action taken: Entries Removed. Tue May 08 21:03:47 2007 => System found infected with stylexp Spyware/Adware ({c333cf63-767f-4831-94ac-e683d962c63c})! Action taken: Entries Removed. Tue May 08 21:03:48 2007 => System found infected with whenu.savenow Spyware/Adware ({c285d18d-43a2-4aef-83fb-bf280e660a97})! Action taken: Entries Removed. Tue May 08 21:03:53 2007 => System found infected with smitfraud Browser Hijacker (ioctrl.dll)! Action taken: Entries Removed. Tue May 08 21:04:14 2007 => System found infected with paq keylog 5.0 Commercial KeyLogger (logo.avi)! Action taken: Entries Removed. Tue May 08 21:04:17 2007 => System found infected with paq keylog 5.0 Commercial KeyLogger (logo.avi)! Action taken: Entries Removed. Tue May 08 21:04:26 2007 => System found infected with paq keylog 5.0 Commercial KeyLogger (logo.avi)! Action taken: Entries Removed. Tue May 08 21:04:34 2007 => System found infected with coulomb dialer Spyware/Adware (loader.exe)! Action taken: Entries Removed. Tue May 08 21:04:45 2007 => System found infected with savenow Adware (C:\WINDOWS\system32\unrar.dll)! Action taken: Entries Removed. ~~~~~~~~~~~ Dateien ~~~~~~~~~~~ ~~~~ Infected files ~~~~~~~~~~~ ~~~~~~~~~~~ ~~~~ Tagged files ~~~~~~~~~~~ Tue May 08 21:54:52 2007 => File C:\Dokumente und Einstellungen\FAINDs`OSIFAIND\Lokale Einstellungen\Anwendungsdaten\Mozilla\Firefox\Profiles\temvrfs9.default\Cache\EF8B9E2Dd01/Vista Transformation Pack 3.0.exe//WISE0019.BIN//WISE0005.BIN tagged as "not-a-virus:RiskTool.Win32.CloseApp.a". Action Taken: File Deleted. Tue May 08 21:55:02 2007 => File C:\Dokumente und Einstellungen\FAINDs`OSIFAIND\Lokale Einstellungen\Anwendungsdaten\Mozilla\Firefox\Profiles\temvrfs9.default\Cache\EF8B9E2Dd02/Vista Transformation Pack 3.0.exe//WISE0019.BIN//WISE0005.BIN tagged as "not-a-virus:RiskTool.Win32.CloseApp.a". Action Taken: File Deleted. Tue May 08 22:54:38 2007 => File C:\Programme\DAEMON Tools\SetupDTSB.exe tagged as "not-a-virus:AdTool.Win32.WhenU.a". No Action Taken. Tue May 08 22:54:38 2007 => File C:\Programme\DaemonTools_WhenUSave_Installer\DaemonTools_WhenUSave_Installer.exe tagged as "not-a-virus:AdTool.Win32.WhenU.j". No Action Taken. Tue May 08 22:55:27 2007 => File C:\Programme\ESET\infected\VQMSB2DA.NQF//PE-Crypt.XorPE//UPX tagged as "not-a-virus:AdWare.Win32.180Solutions.as". Action Taken: File Deleted. Tue May 08 22:55:31 2007 => File C:\Programme\ESET\infected\VYJL1GAA.NQF//PE-Crypt.XorPE//WiseSFX Dropper//WISE0023.BIN//data0001.cab/VVSN.exe tagged as "not-a-virus:AdTool.Win32.WhenU.a". No Action Taken. Wed May 09 00:08:43 2007 => File C:\Programme\Uninstall My Web Search.dll tagged as "not-a-virus:AdTool.Win32.MyWebSearch.ba". No Action Taken. Wed May 09 00:16:51 2007 => File C:\System Volume Information\_restore{9E170575-77BE-4473-B7BC-3F7AD0A59AA5}\RP110\A0042491.exe//data.rar/Vista Transformation Pack Installer\Vista Transformation Pack 3.0.exe//WISE0019.BIN//WISE0005.BIN tagged as "not-a-virus:RiskTool.Win32.CloseApp.a". Action Taken: File Deleted. Wed May 09 00:17:24 2007 => File C:\System Volume Information\_restore{9E170575-77BE-4473-B7BC-3F7AD0A59AA5}\RP110\A0042671.exe//WISE0019.BIN//WISE0005.BIN tagged as "not-a-virus:RiskTool.Win32.CloseApp.a". Action Taken: File Deleted. Wed May 09 00:17:53 2007 => File C:\System Volume Information\_restore{9E170575-77BE-4473-B7BC-3F7AD0A59AA5}\RP110\A0042673.exe//WISE0019.BIN//WISE0005.BIN tagged as "not-a-virus:RiskTool.Win32.CloseApp.a". Action Taken: File Deleted. ~~~~~~~~~~~ ~~~~ Offending files ~~~~~~~~~~~ Tue May 08 21:03:53 2007 => Offending file found: C:\WINDOWS\system32\ioctrl.dll Tue May 08 21:04:14 2007 => Offending file found: C:\DOKUME~1\FAINDS~1.OSI\Desktop\desktop\logo.avi Tue May 08 21:04:17 2007 => Offending file found: C:\DOKUME~1\FAINDS~1.OSI\Desktop\logo.avi Tue May 08 21:04:26 2007 => Offending file found: H:\INSTAL~1\counter-strike\csbeta71\cstrikeb71\media\logo.avi Tue May 08 21:04:34 2007 => Offending file found: H:\q3\quake3\loader.exe Tue May 08 21:04:45 2007 => Offending file found: C:\WINDOWS\system32\unrar.dll ~~~~~~~~~~~ Ordner ~~~~~~~~~~~ Tue May 08 21:03:53 2007 => Offending Folder found: C:\Programme\funwebproducts Tue May 08 21:03:53 2007 => Offending Folder found: C:\Programme\mywebsearch Tue May 08 21:03:53 2007 => Offending Folder found: C:\Programme\powerstrip Tue May 08 21:03:57 2007 => Offending Folder found: C:\Dokumente und Einstellungen\FAINDs`OSIFAIND.OSIFAIND\Anwendungsdaten\funwebproducts Tue May 08 21:03:57 2007 => Offending Folder found: C:\Dokumente und Einstellungen\FAINDs`OSIFAIND.OSIFAIND\Anwendungsdaten\icq\bart\1024 Tue May 08 21:04:14 2007 => Offending Folder found: C:\Dokumente und Einstellungen\FAINDs`OSIFAIND.OSIFAIND\Desktop\desktop\tuts\cbdae_lesson_01\cbdae_lesson 01\cool stuff Tue May 08 21:04:14 2007 => Offending Folder found: C:\Dokumente und Einstellungen\FAINDs`OSIFAIND.OSIFAIND\Desktop\desktop\tuts\cbdae_lesson_01\__macosx\cbdae_lesson 01\cool stuff Tue May 08 21:04:30 2007 => Offending Folder found: H:\media\things\anderes ka\page ka\klassenpage\1024 Tue May 08 21:04:34 2007 => Offending Folder found: C:\Dokumente und Einstellungen\FAINDs`OSIFAIND.OSIFAIND\Startmenü\programme\powerstrip ~~~~~~~~~~~ Registry ~~~~~~~~~~~ Tue May 08 21:03:48 2007 => Offending Key found: HKLM\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\savenow !!! Tue May 08 21:03:48 2007 => Offending Key found: HKLM\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\whenusearch !!! Tue May 08 21:03:48 2007 => Offending Key found: HKLM\Software\focusinteractive !!! Tue May 08 21:03:48 2007 => Offending Key found: HKLM\Software\fun web products !!! Tue May 08 21:03:48 2007 => Offending Key found: HKLM\Software\magnet !!! Tue May 08 21:03:48 2007 => Offending Key found: HKLM\Software\mywebsearch !!! Tue May 08 21:03:49 2007 => Offending Key found: HKLM\Software\zango !!! Tue May 08 21:03:49 2007 => Offending Key found: HKCU\Software\fun web products !!! Tue May 08 21:03:49 2007 => Offending Key found: HKCU\Software\funwebproducts !!! Tue May 08 21:03:49 2007 => Offending Key found: HKCU\Software\mywebsearch !!! Tue May 08 21:03:49 2007 => Offending Key found: HKCU\Software\zango !!! Tue May 08 21:03:49 2007 => Offending Key found: HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu2\programs\powerstrip !!! Tue May 08 21:03:49 2007 => Offending Key found: HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu2\programs\whenu !!! Tue May 08 21:03:49 2007 => Offending Key found: HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu2\programs\whenusearch !!! Tue May 08 21:03:49 2007 => Offending Key found: HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu2\programs\zango !!! Tue May 08 21:03:50 2007 => Offending Key found: HKCU\\clientax.requiredcomponent !!! Tue May 08 21:03:50 2007 => Offending Key found: HKCU\\clientax.requiredcomponent.1 !!! Tue May 08 21:03:50 2007 => Offending Key found: HKCU\\magnet !!! Tue May 08 21:03:50 2007 => Offending Key found: HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\StartupReg\scanregistry !!! Tue May 08 21:03:50 2007 => Offending Key found: HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\StartupReg\whenusave !!! Tue May 08 21:03:50 2007 => Offending Key found: HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\StartupReg\whenusearch !!! Tue May 08 21:03:50 2007 => Offending Key found: HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\StartupReg\whenusearchwhse !!! Tue May 08 21:03:50 2007 => Offending Key found: HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\StartupReg\zango !!! Tue May 08 21:04:47 2007 => Offending Key found: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{de672a1b-f234-11da-b14f-000c76e8a6f5} !!! ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Statistiken: ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ danke schonmal im vorraus gruß osifaind |
Themen zu Problem beim Aufrufen einiger Internetseiten |
aufrufe, browser, daemontools, desktop, einstellungen, explorer, file, firefox, fraud, icq, ie 7, infected, keylogger, log, log file, macosx, mein log, mozilla, ordner, problem, programme, registry, registry key, seiten, smitfraud, software, start menu, system, system volume information, virus, windows, windows xp |