![]() |
|
Plagegeister aller Art und deren Bekämpfung: Hilfe Bei Virusbefall TR.Bagle.DOWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() | #1 |
![]() | ![]() Hilfe Bei Virusbefall TR.Bagle.DO Hallo zusammen, Ich hoffe auf eure Hilfe, obwohl ich schon damit rechne,neu aufsetzen zu müssen. Habe seit einigen Tagen einen Virusbefall. Äußert sich folgendermaßen: Kann keine Virusprogs installieren Spybot.exe nicht mehr vorhanden (auch nach neuinstallation) Sonst läuft der Rechner eigentlich "normal". Habe Hijackthis, Bitdefender-onlinescan und F-secure drüberlaufen lassen. Hier die Ergebnisse: Hier die Bitdefender onlinesuche-LOG: BitDefender Online Scanner Scan report generated at: Sun, Sep 09, 2007 - 15:19:53 Scan path: A:\;C:\;D:\;G:\;X:\;Y:\; Statistics Time 02:39:26 Files 742849 Folders 10855 Boot Sectors 5 Archives 42689 Packed Files 37215 Results Identified Viruses 2 Infected Files 3 Suspect Files 0 Warnings 0 Disinfected 0 Deleted Files 3 Engines Info Virus Definitions 800226 Engine build AVCORE v1.0 (build 2411) (i386) (Jul 9 2007 12:10:22) Scan plugins 14 Archive plugins 38 Unpack plugins 7 E-mail plugins 6 System plugins 1 Scan Settings First Action Disinfect Second Action Delete Heuristics Yes Enable Warnings Yes Scanned Extensions *; Exclude Extensions Scan Emails Yes Scan Archives Yes Scan Packed Yes Scan Files Yes Scan Boot Yes Scanned File Status C:\WINDOWS\exefld\14496656.exe Infected with: Trojan.Bagle.DO C:\WINDOWS\exefld\14496656.exe Disinfection failed C:\WINDOWS\exefld\14496656.exe Deleted D:\Downloadz\Appz\Music Progs\Virtual DJ\Virtual DJ\Atomix.Virtual.DJ.v4.1Atomix.Virtual.DJ.v4.1.\patch.exe Infected with: Trojan.Hacktool.Patch.A D:\Downloadz\Appz\Music Progs\Virtual DJ\Virtual DJ\Atomix.Virtual.DJ.v4.1.=>Atomix.Virtual.DJ.v4.1\patch.exe Disinfection failed D:\Downloadz\Appz\Music Progs\Virtual DJ\Virtual DJ\Atomix.Virtual.DJ.v4.1.Cracked-BAKA.rar=>Atomix.Virtual.DJ.v4.1\patch.exe Deleted D:\Downloadz\Appz\Music Progs\Virtual DJ\Virtual DJ\Atomix.Virtual.DJ.v4.1.rar Update failed D:\Downloadz\Appz\Music Progs\Virtual DJ\Virtual DJ\virtual.dj.4.1-patch.rar=>virtual.dj.4.1-patch.exe Infected with: Trojan.Hacktool.Patch.A D:\Downloadz\Appz\Music Progs\Virtual DJ\Virtual DJ\virtual.dj.4.1-patch.rar=>virtual.dj.4.1-patch.exe Disinfection failed D:\Downloadz\Appz\Music Progs\Virtual DJ\Virtual DJ\virtual.dj.4.1-patch.rar=>virtual.dj.4.1-patch.exe Deleted D:\Downloadz\Appz\Music Progs\Virtual DJ\Virtual DJ.rar Update failed Und hier noch F-Secure: 09/09/07 17:26:10 [Info]: BlackLight Engine 1.0.64 initialized 09/09/07 17:26:10 [Info]: OS: 5.1 build 2600 (Service Pack 2) 09/09/07 17:26:10 [Note]: 7019 4 09/09/07 17:26:10 [Note]: 7005 0 09/09/07 17:26:12 [Note]: 7006 0 09/09/07 17:26:12 [Note]: 7011 576 09/09/07 17:26:12 [Note]: 7026 0 09/09/07 17:26:12 [Note]: 7026 0 09/09/07 17:26:18 [Note]: FSRAW library version 1.7.1022 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\WT13LDDE.dll 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\CrlWTC114.dll 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\WT13cbe.dll 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\Wt13cbede.cbt 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\Wt13cbeEN.CBD 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\Wt13cbekd.cbt 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\wt13ce.icr 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\wt13ce.sav 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\Wt13de.adv 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\Wt13de.hyd 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\Wt13de.icr 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\Wt13de.mor 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\Wt13de.rul 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\Wt13de.sav 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\Wt13de.ths 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\wt13en.hwl 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\wt13en.mor 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\wt13kd.adv 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\Wt13kd.hyd 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\wt13kd.mor 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\wt13kd.rul 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\WT13LDEN.dll 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\WT13LDXX.dll 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\WT13LI.dll 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\wt13ND.mor 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\wt13nd.sav 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\wt13oz.icr 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\wt13oz.sav 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\WT13sphs.dll 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\WT13spls.dll 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\WT13SPML.dll 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\WT13sptl.ico 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\WT13sptlDE.exe 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\WT13SPTP.dll 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\WT13SPWP.dll 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\WT13uide.dll 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\wt13uk.adv 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\wt13uk.icr 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\wt13uk.rul 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\wt13uk.sav 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\Wt13uk.ths 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\wt13us.adv 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\wt13us.icr 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\wt13us.rul 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\Wt13us.sav 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\wt13us.ths 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\WTDE.chm 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\WTGEDE.chm 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\WTGEUK.chm 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\WTGEUS.chm 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\13\WTSPUT.chm 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\9.1\Wt9_1de.ths 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\9.1\Wt9_1uk.ths 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Info]: Hidden file: c:\Programme\Gemeinsame Dateien\Corel\Shared\Writing Tools\9.1\wt9_1us.ths 09/09/07 17:27:12 [Note]: 10002 3 09/09/07 17:27:12 [Note]: 10002 2 09/09/07 17:27:12 [Note]: 10002 2 09/09/07 17:27:14 [Note]: 10002 3 09/09/07 17:27:14 [Note]: 10002 3 09/09/07 17:27:14 [Note]: 10002 3 09/09/07 17:27:14 [Note]: 10002 3 09/09/07 17:27:14 [Note]: 10002 3 09/09/07 17:27:14 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 3 09/09/07 17:27:15 [Note]: 10002 2 09/09/07 17:27:15 [Note]: 10002 2 09/09/07 17:31:56 [Info]: Hidden file: c:\Programme\Movie Maker\shared\empty.txt 09/09/07 17:31:56 [Note]: 10002 3 09/09/07 17:31:56 [Info]: Hidden file: c:\Programme\Movie Maker\shared\filters.xml 09/09/07 17:31:56 [Note]: 10002 3 09/09/07 17:31:56 [Info]: Hidden file: c:\Programme\Movie Maker\shared\news.png 09/09/07 17:31:56 [Note]: 10002 3 09/09/07 17:31:56 [Info]: Hidden file: c:\Programme\Movie Maker\shared\paint.png 09/09/07 17:31:56 [Note]: 10002 3 09/09/07 17:31:56 [Info]: Hidden file: c:\Programme\Movie Maker\shared\profiles\blank.txt 09/09/07 17:31:56 [Note]: 10002 3 09/09/07 17:31:56 [Info]: Hidden file: c:\Programme\Movie Maker\shared\sample1.jpg 09/09/07 17:31:56 [Note]: 10002 3 09/09/07 17:31:56 [Info]: Hidden file: c:\Programme\Movie Maker\shared\sample2.jpg 09/09/07 17:31:56 [Note]: 10002 3 09/09/07 17:31:56 [Note]: 10002 2 09/09/07 17:31:56 [Note]: 10002 2 09/09/07 17:39:11 [Info]: Hidden file: c:\WINDOWS\ime\shared\imepaden.hlp 09/09/07 17:39:11 [Note]: 10002 3 09/09/07 17:39:11 [Info]: Hidden file: c:\WINDOWS\ime\shared\imepadsm.dll 09/09/07 17:39:11 [Note]: 10002 3 09/09/07 17:39:11 [Info]: Hidden file: c:\WINDOWS\ime\shared\imepadsv.exe 09/09/07 17:39:11 [Note]: 10002 3 09/09/07 17:39:11 [Info]: Hidden file: c:\WINDOWS\ime\shared\imlang.dll 09/09/07 17:39:11 [Note]: 10002 3 09/09/07 17:39:11 [Info]: Hidden file: c:\WINDOWS\ime\shared\res\PADRS404.DLL 09/09/07 17:39:11 [Note]: 10002 3 09/09/07 17:39:11 [Info]: Hidden file: c:\WINDOWS\ime\shared\res\padrs411.dll 09/09/07 17:39:11 [Note]: 10002 3 09/09/07 17:39:11 [Info]: Hidden file: c:\WINDOWS\ime\shared\res\padrs412.dll 09/09/07 17:39:11 [Note]: 10002 3 09/09/07 17:39:11 [Info]: Hidden file: c:\WINDOWS\ime\shared\res\padrs804.dll 09/09/07 17:39:11 [Note]: 10002 3 09/09/07 17:39:11 [Note]: 10002 2 09/09/07 17:39:11 [Note]: 10002 2 09/09/07 17:42:06 [Info]: Hidden file: c:\WINDOWS\system32\drivers\hidr.exe 09/09/07 17:42:06 [Note]: 10002 2 09/09/07 17:42:06 [Info]: Hidden file: c:\WINDOWS\system32\drivers\srosa.sys 09/09/07 17:42:06 [Note]: 10002 2 09/09/07 17:43:41 [Note]: 2000 1012 09/09/07 17:43:41 [Note]: 2000 1012 09/09/07 17:44:33 [Note]: 7007 0 |
Themen zu Hilfe Bei Virusbefall TR.Bagle.DO |
aufsetzen, corel, dateien, drivers, ergebnisse, escan, f-secure, folge, gemeinsame, hallo zusammen, hijack, hijackthis, movie maker, music, neu, neu aufsetzen, neuinstallation, nicht mehr, programme, rechner, report, service, service pack 2, system32, tools, version, windows, windows\system32\drivers, zusammen |