Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Trojan-Downloader.Bagle und E-mail-Worm.Bagle

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

Antwort
Alt 23.03.2008, 20:02   #1
ZJZ
 
Trojan-Downloader.Bagle und E-mail-Worm.Bagle - Standard

Trojan-Downloader.Bagle und E-mail-Worm.Bagle



Danke

03/23/08 19:35:56 [Info]: BlackLight Engine 1.0.67 initialized
03/23/08 19:35:56 [Info]: OS: 5.1 build 2600 (Service Pack 2)
03/23/08 19:35:56 [Note]: 7019 4
03/23/08 19:35:56 [Note]: 7005 0
03/23/08 19:36:05 [Note]: 7006 0
03/23/08 19:36:05 [Note]: 7027 1
03/23/08 19:36:05 [Note]: 7027 0
03/23/08 19:36:13 [Note]: 7026 0
03/23/08 19:36:19 [Note]: 7026 0
03/23/08 19:36:19 [Note]: 7024 3
03/23/08 19:36:19 [Info]: Hidden process: C:\WINDOWS\system32\drivers\hldrrr.exe
03/23/08 19:36:26 [Note]: FSRAW library version 1.7.1024
03/23/08 19:39:03 [Info]: Hidden file: c:\Programme\Movie Maker\Shared\Empty.txt
03/23/08 19:39:03 [Note]: 10002 3
03/23/08 19:39:03 [Info]: Hidden file: c:\Programme\Movie Maker\Shared\Filters.xml
03/23/08 19:39:03 [Note]: 10002 3
03/23/08 19:39:03 [Info]: Hidden file: c:\Programme\Movie Maker\Shared\news.png
03/23/08 19:39:03 [Note]: 10002 3
03/23/08 19:39:03 [Info]: Hidden file: c:\Programme\Movie Maker\Shared\paint.png
03/23/08 19:39:03 [Note]: 10002 3
03/23/08 19:39:03 [Info]: Hidden file: c:\Programme\Movie Maker\Shared\Profiles\Blank.txt
03/23/08 19:39:03 [Note]: 10002 3
03/23/08 19:39:03 [Info]: Hidden file: c:\Programme\Movie Maker\Shared\Sample1.jpg
03/23/08 19:39:03 [Note]: 10002 3
03/23/08 19:39:03 [Info]: Hidden file: c:\Programme\Movie Maker\Shared\Sample2.jpg
03/23/08 19:39:03 [Note]: 10002 3
03/23/08 19:39:03 [Note]: 10002 2
03/23/08 19:39:03 [Note]: 10002 2
03/23/08 19:43:10 [Note]: 10002 2
03/23/08 19:43:10 [Note]: 10002 2
03/23/08 19:43:41 [Info]: Hidden file: c:\WINDOWS\system32\drivers\srosa.sys
03/23/08 19:43:41 [Note]: 10002 2
03/23/08 19:43:41 [Info]: Hidden file: C:\WINDOWS\system32\drivers\hldrrr.exe
03/23/08 19:43:41 [Note]: 10002 2
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\123093.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15748406.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\66078.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\100015.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\101937.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\103843.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\104500.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\105265.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\105843.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\107968.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\108984.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\110468.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\110500.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\111250.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\113578.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\114390.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\1147390.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\1148500.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\114953.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\1154937.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\115546.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\1156015.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\1158390.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\116140.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\1161828.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\1163078.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\116625.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\1168234.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\117921.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\1194656.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\119937.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\1200046.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\1203078.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\1209109.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\1212500.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\1214015.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\1221765.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15751312.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15754156.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15757296.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15758546.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\157609.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15765890.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15770578.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15775953.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15787312.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15792031.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15829234.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15836890.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\159953.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\163031.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\181593.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\188593.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\199703.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\206390.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\61000.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\61562.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\64359.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\65765.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\66484.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\68953.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\70343.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\70953.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\71203.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\71875.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\73359.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\74250.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\74343.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\75078.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\76671.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\77734.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\79515.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\79875.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\80359.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:44 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\80593.exe
03/23/08 19:43:44 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\82968.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\88421.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\94734.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\98000.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\99609.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\124265.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\1290859.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\1298609.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\131765.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\135781.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\137046.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\142203.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\144875.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\151421.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\156218.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15692546.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15693609.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15699062.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15700250.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15702796.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15706062.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15706937.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15710687.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Info]: Hidden file: c:\WINDOWS\system32\drivers\down\15741109.exe
03/23/08 19:43:45 [Note]: 10002 3
03/23/08 19:43:45 [Note]: 10002 2
03/23/08 19:43:45 [Note]: 10002 2
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 3
03/23/08 19:43:50 [Note]: 10002 2
03/23/08 19:43:50 [Note]: 10002 2
03/23/08 19:51:57 [Note]: 7007 0

Alt 23.03.2008, 20:24   #2
ZJZ
 
Trojan-Downloader.Bagle und E-mail-Worm.Bagle - Standard

Trojan-Downloader.Bagle und E-mail-Worm.Bagle



Wurde von "PC Tools Spyware Doctor" gefunden.
Ich kann die zwei nicht löschen und beim Löschvorgang immer Neustart verlangt wird.
Habe ausprobiert, bringt nichts.
Danke für Ihre Hilfe.
ZJZ.


Trojan-Downloader.Bagle:

Registry-Wert
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SROSA, NextInstance
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srosa, Type
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srosa, Start
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srosa, ErrorControl
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srosa, ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srosa, DisplayName

Registry-Schlüssel:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SROSA
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srosa

**********************************************************************
E-mail-Worm.Bagle

Registry-Wert:
HKEY_USERS\S-1-5-21-839522115-1592454029-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Run, german.exe
__________________


Alt 23.03.2008, 20:28   #3
boston
 
Trojan-Downloader.Bagle und E-mail-Worm.Bagle - Standard

Trojan-Downloader.Bagle und E-mail-Worm.Bagle



Zitat:
Danke
hallo, zjz,
oh, mit dem bedanken solltest du warten.
da bagle in deinem system aktiv ist, führt leider kein
weg am Neuaufsetzen vorbei.
http://www.trojaner-board.de/12154-a...sicherung.html
was seit der infektion mit deinem rechner passiert ist, kannst du hier nachlesen:
Technische Kompromittierung - Wikipedia
Botnet - Wikipedia
__________________

Antwort

Themen zu Trojan-Downloader.Bagle und E-mail-Worm.Bagle
adobe, antivir, askbar, auslastung, avg, avgnt, avgnt.exe, avira, bho, browser, browser update, download, drivers, einstellungen, entfernen, explorer, free download, google, hijack, hijackthis, internet, internet explorer, jusched.exe, microsoft, pdf, programme, security, software, spyware, system, urlsearchhook, windows, windows xp




Ähnliche Themen: Trojan-Downloader.Bagle und E-mail-Worm.Bagle


  1. Bundestrojaner Österreich und Win32/Bagle.gen.zip worm
    Log-Analyse und Auswertung - 18.07.2012 (3)
  2. Worm.Bagle entfernen mit Findykill
    Anleitungen, FAQs & Links - 26.12.2009 (1)
  3. Wie gefährlich sind "I-Worm.Bagle.AAKP","Trojan.DL.Bagle.ABWF","Bagle.Gen 21"
    Plagegeister aller Art und deren Bekämpfung - 31.10.2009 (1)
  4. Bagle
    Log-Analyse und Auswertung - 08.11.2008 (0)
  5. Email-Worm.Bagle.of/Trojan.Toosrrr.SRR und weitere/System verweigert ua auch HijackTh
    Plagegeister aller Art und deren Bekämpfung - 03.09.2008 (13)
  6. W32/Bagle.gen
    Plagegeister aller Art und deren Bekämpfung - 15.08.2008 (8)
  7. Bagle.dk
    Mülltonne - 21.09.2007 (1)
  8. TR/Bagle.Gen.B
    Plagegeister aller Art und deren Bekämpfung - 04.09.2007 (11)
  9. Worm/Bagle.srn Muß ich wirklich formatieren???
    Log-Analyse und Auswertung - 27.06.2007 (1)
  10. BAGLE-AS TROJAN gefunden, abgesicherter Modus geht nicht & Ordner gemeinsame Dateien
    Alles rund um Windows - 14.02.2007 (3)
  11. TR/Dldr.Bagle.GX + WORM/Bagle.GY.1 - Internet funktioniert nicht mehr richtig
    Plagegeister aller Art und deren Bekämpfung - 09.01.2007 (6)
  12. Email.Worm Bagle
    Plagegeister aller Art und deren Bekämpfung - 30.09.2006 (1)
  13. Email-Worm.Win32.Bagle.pac - alt aber noch resistent! Was kann ich tun?
    Plagegeister aller Art und deren Bekämpfung - 23.11.2005 (12)
  14. Email-Worm Win32 Bagle.pac - Logfile
    Mülltonne - 21.11.2005 (1)
  15. E-Mail-Worm.Win32.Bagle.bn!! Bitte helft mir!!!
    Plagegeister aller Art und deren Bekämpfung - 30.07.2005 (3)
  16. TR/Bagle.al
    Log-Analyse und Auswertung - 16.04.2005 (7)
  17. Remote Virenentfernung I-Worm.Bagle.Z?
    Plagegeister aller Art und deren Bekämpfung - 02.07.2004 (1)

Zum Thema Trojan-Downloader.Bagle und E-mail-Worm.Bagle - Danke 03/23/08 19:35:56 [Info]: BlackLight Engine 1.0.67 initialized 03/23/08 19:35:56 [Info]: OS: 5.1 build 2600 (Service Pack 2) 03/23/08 19:35:56 [Note]: 7019 4 03/23/08 19:35:56 [Note]: 7005 0 03/23/08 19:36:05 - Trojan-Downloader.Bagle und E-mail-Worm.Bagle...
Archiv
Du betrachtest: Trojan-Downloader.Bagle und E-mail-Worm.Bagle auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.