|
Log-Analyse und Auswertung: Mein Pc spinnt könnt ihr mir das auswerten bitte.Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
07.08.2008, 21:19 | #16 |
| Mein Pc spinnt könnt ihr mir das auswerten bitte. ok ich danke dir |
07.08.2008, 22:31 | #17 |
| Mein Pc spinnt könnt ihr mir das auswerten bitte. Malwarebytes' Anti-Malware 1.24
__________________Datenbank Version: 1031 Windows 5.1.2600 Service Pack 3 23:30:44 07.08.2008 mbam-log-8-7-2008 (23-30-44).txt Scan-Methode: Vollständiger Scan (C:\|F:\|) Durchsuchte Objekte: 221146 Laufzeit: 1 hour(s), 34 minute(s), 30 second(s) Infizierte Speicherprozesse: 0 Infizierte Speichermodule: 4 Infizierte Registrierungsschlüssel: 16 Infizierte Registrierungswerte: 2 Infizierte Dateiobjekte der Registrierung: 2 Infizierte Verzeichnisse: 0 Infizierte Dateien: 40 Infizierte Speicherprozesse: (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: C:\WINDOWS\system32\cbXOEvVo.dll (Trojan.Vundo) -> Delete on reboot. C:\WINDOWS\system32\urqPjKab.dll (Trojan.Vundo) -> Delete on reboot. C:\WINDOWS\system32\qmdbom.dll (Trojan.Vundo) -> Delete on reboot. C:\WINDOWS\system32\cgylcc.dll (Trojan.Vundo) -> Delete on reboot. Infizierte Registrierungsschlüssel: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{08bfe347-e84e-4992-91f2-b5221090d5ac} (Trojan.Vundo) -> Delete on reboot. HKEY_CLASSES_ROOT\CLSID\{08bfe347-e84e-4992-91f2-b5221090d5ac} (Trojan.Vundo) -> Delete on reboot. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{394ae279-d386-4700-95b4-a2fc621fc9db} (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{394ae279-d386-4700-95b4-a2fc621fc9db} (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{313907d9-4a98-43bd-bdd6-020bc0b5fb0c} (Trojan.Vundo) -> Delete on reboot. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{313907d9-4a98-43bd-bdd6-020bc0b5fb0c} (Trojan.Vundo) -> Delete on reboot. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\urqpjkab (Trojan.Vundo) -> Delete on reboot. HKEY_CLASSES_ROOT\CLSID\{037C7B8A-151A-49E6-BAED-CC05FCB50328} (Adware.Search Toolbar) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{037c7b8a-151a-49e6-baed-cc05fcb50328} (Adware.Search Toolbar) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Juan (Malware.Trace) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Track System (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\aoprndtws (Trojan.Vundo) -> Quarantined and deleted successfully. Infizierte Registrierungswerte: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{313907d9-4a98-43bd-bdd6-020bc0b5fb0c} (Trojan.Vundo) -> Delete on reboot. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\IEUpdate (Trojan.Agent) -> Quarantined and deleted successfully. Infizierte Dateiobjekte der Registrierung: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo) -> Data: c:\windows\system32\cbxoevvo -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo) -> Data: c:\windows\system32\cbxoevvo -> Delete on reboot. Infizierte Verzeichnisse: (Keine bösartigen Objekte gefunden) Infizierte Dateien: C:\WINDOWS\system32\cbXOEvVo.dll (Trojan.Vundo) -> Delete on reboot. C:\WINDOWS\system32\oVvEOXbc.ini (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\oVvEOXbc.ini2 (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\cgylcc.dll (Trojan.Vundo) -> Delete on reboot. C:\WINDOWS\system32\dvwhblfe.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\eflbhwvd.ini (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\tisvjbjy.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\yjbjvsit.ini (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\urqPjKab.dll (Trojan.Vundo) -> Delete on reboot. C:\WINDOWS\system32\qmdbom.dll (Trojan.Vundo) -> Delete on reboot. C:\WINDOWS\system32\winsrc.dll (Adware.Search Toolbar) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\DD\Eigene Dateien\UseNeXT\wizard\Spyware Doctor v6.0.0.354 (Multilingual) by hannöv\sdkeygen.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{DB706B0D-B94F-4BCE-B91A-F80F530B8FBE}\RP17\A0002035.EXE (Trojan.Agent) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{DB706B0D-B94F-4BCE-B91A-F80F530B8FBE}\RP67\A0020161.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{DB706B0D-B94F-4BCE-B91A-F80F530B8FBE}\RP68\A0020183.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{DB706B0D-B94F-4BCE-B91A-F80F530B8FBE}\RP69\A0020427.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{DB706B0D-B94F-4BCE-B91A-F80F530B8FBE}\RP71\A0020463.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{DB706B0D-B94F-4BCE-B91A-F80F530B8FBE}\RP72\A0020485.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{DB706B0D-B94F-4BCE-B91A-F80F530B8FBE}\RP74\A0021539.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{DB706B0D-B94F-4BCE-B91A-F80F530B8FBE}\RP76\A0022539.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{DB706B0D-B94F-4BCE-B91A-F80F530B8FBE}\RP77\A0023587.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{DB706B0D-B94F-4BCE-B91A-F80F530B8FBE}\RP79\A0024352.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\qaljqqlv.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\awttqppN.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\bepyqjov.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\gvdebxwb.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\nreegj.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\ocongqpu.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\ocqfvv.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\qntyml.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\qozdzq.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\tuvUmnnn.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\tycovo.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\btvtnkjo.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\kyhvejrt.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\layiwhbi.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\vxcsskgp.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\yayAroMC.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\Dokumente und Einstellungen\DD\Anwendungsdaten\Microsoft\Internet Explorer\Quick Launch\Antivirus 2009.lnk (Rogue.Antivirus2008) -> Quarantined and deleted successfully. C:\WINDOWS\system32\ieupdates.exe (Trojan.Agent) -> Quarantined and deleted successfully. |
Themen zu Mein Pc spinnt könnt ihr mir das auswerten bitte. |
1.exe, adobe, auswerten, dateien, explorer, f-secure, firefox, firewall, hijack, hijackthis, icq, installation, internet, internet explorer, logfile, microsoft, mozilla, mozilla firefox, object, pc spinnt, plug-in, popup, programme, senden, software, system, temp, tuneup.defrag, urlsearchhook, windows, windows xp, windows xp sp3, xp sp3 |