![]() |
|
Log-Analyse und Auswertung: msa.exe problemWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() |
|
![]() | #1 |
| ![]() msa.exe problem HALLO die Auswertung von msa.exe hat folgendes gezeigt Antivirus Version letzte aktualisierung Ergebnis a-squared 4.5.0.24 2009.10.03 - AhnLab-V3 5.0.0.2 2009.10.03 - AntiVir 7.9.1.27 2009.10.02 - Antiy-AVL 2.0.3.7 2009.10.03 - Authentium 5.1.2.4 2009.10.03 - Avast 4.8.1351.0 2009.10.02 Win32:Trojan-gen AVG 8.5.0.420 2009.10.03 Generic14.BAGF BitDefender 7.2 2009.10.03 Trojan.FakeAlert.BMF CAT-QuickHeal 10.00 2009.10.03 - ClamAV 0.94.1 2009.10.03 - Comodo 2501 2009.10.03 - DrWeb 5.0.0.12182 2009.10.03 Trojan.DownLoad.47149 eSafe 7.0.17.0 2009.10.01 Suspicious File eTrust-Vet 31.6.6774 2009.10.02 Win32/FakeAVDl.NO F-Prot 4.5.1.85 2009.10.03 - F-Secure 8.0.14470.0 2009.10.03 Suspicious:W32/Malware!Gemini Fortinet 3.120.0.0 2009.10.03 W32/PackFrauLoad.B GData 19 2009.10.03 Trojan.FakeAlert.BMF Ikarus T3.1.1.72.0 2009.10.03 - Jiangmin 11.0.800 2009.09.27 - K7AntiVirus 7.10.861 2009.10.03 - Kaspersky 7.0.0.125 2009.10.03 - McAfee 5759 2009.10.02 FakeAlert-HT McAfee+Artemis 5759 2009.10.02 FakeAlert-HT McAfee-GW-Edition 6.8.5 2009.10.03 Trojan.Crypt.ZPACK.Gen2 Microsoft 1.5101 2009.10.03 TrojanDownloader:Win32/Renos.JS NOD32 4477 2009.10.02 Win32/TrojanDownloader.FakeAlert.AFQ Norman 6.01.09 2009.10.03 W32/Renos.ABTQ nProtect 2009.1.8.0 2009.10.03 Trojan/W32.Agent.157696.CH Panda 10.0.2.2 2009.10.03 Adware/WindowsProtectionSuite PCTools 4.4.2.0 2009.10.03 - Prevx 3.0 2009.10.03 - Rising 21.49.22.00 2009.09.30 - Sophos 4.45.0 2009.10.03 Mal/EncPk-JY Sunbelt 3.2.1858.2 2009.10.02 - Symantec 1.4.4.12 2009.10.03 Trojan.Fakeavalert TheHacker 6.5.0.2.027 2009.10.02 - TrendMicro 8.950.0.1094 2009.10.03 TROJ_RENOS.SMJF VBA32 3.12.10.11 2009.10.03 - ViRobot 2009.10.2.1968 2009.10.02 - VirusBuster 4.6.5.0 2009.10.02 Trojan.Fraudload.Gen!Pac.8 weitere Informationen File size: 157696 bytes MD5...: 59e52b589422dfa66fa47ced0ea43065 SHA1..: 07147c3f48304b19e843fc0f7b7b79d4b492631c SHA256: c5ae6f25d33114b9f5a30ef81e802f3d5e488ac3707f2256e6c2901f9c88b442 ssdeep: 3072:HxrCWzyDT2Np6E3ftdrNghZnRHdfWqiXJTOL7cyft88TeE0G:JCWGP2Npjl dWvnxdfW1ROHlfTR0G PEiD..: - PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x1815 timedatestamp.....: 0x459f755f (Sat Jan 06 10:09:35 2007) machinetype.......: 0x14c (I386) ( 4 sections ) name viradd virsiz rawdsiz ntrpy md5 .itext 0x1000 0x7317 0x7400 4.97 cf788ea28b252ac9f116ae6f56f353cf .DATA 0x9000 0x21f7 0x2200 3.35 6a5b10cd3f9b0b326999ad28ffed3ef0 .bss 0xc000 0x6fbb6 0x1bc00 7.34 cd2dc3111334a3e591ec548baa711825 .idata 0x7c000 0x1045 0x1200 4.12 7f22d8db436f408e5f4989ca4bc7589a ( 8 imports ) > KERNEL32.DLL: FindAtomA, FindAtomW, WriteFile, CreateDirectoryA, GetFileType, AddAtomW, OpenFile, FatalExit, ExitThread, AddAtomA, GetCommandLineA, GetFileTime, GlobalFree, ExitProcess, FindClose, CopyFileA, CopyFileExW > ADVAPI32.DLL: RegLoadKeyW, RegQueryInfoKeyW, RegFlushKey, RegEnumValueW, RegGetKeySecurity, RegDeleteValueA, RegReplaceKeyW, RegDeleteValueW, RegOpenKeyExW, RegEnumKeyExW, RegEnumValueA, RegQueryValueExW, RegQueryValueExA, RegOpenKeyExA, RegQueryInfoKeyA, RegQueryValueA, RegEnumKeyExA, RegQueryValueW > ADVAPI32.DLL: RegCreateKeyExA, RegEnumValueA, RegReplaceKeyW, RegEnumKeyW, RegOpenKeyExA, RegDeleteValueW, RegEnumKeyA, RegOpenKeyExW, RegOpenKeyA, RegEnumValueW, RegFlushKey, RegCreateKeyW, RegQueryValueExW, RegEnumKeyExW, RegCreateKeyA, RegQueryValueA > ADVAPI32.DLL: RegCreateKeyExW, RegEnumValueA, RegReplaceKeyW, RegFlushKey, RegOpenKeyW, RegEnumKeyExW, RegEnumKeyW, RegQueryInfoKeyA, RegQueryValueExA, RegQueryValueExW, RegLoadKeyA, RegGetKeySecurity > USER32.DLL: CopyImage, GetFocus, GetDC, CalcMenuBar, DrawTextW, EndDialog, GetWindowTextLengthA, DrawTextA, GetCursor, IsMenu, AppendMenuW, GetWindowTextA > ADVAPI32.DLL: RegReplaceKeyW, RegFlushKey, RegOpenKeyExW, RegDeleteKeyW, RegEnumValueA, RegQueryValueExW, RegQueryValueW, RegEnumValueW, RegCreateKeyExA, RegQueryValueExA, RegCreateKeyExW, RegQueryInfoKeyA, RegLoadKeyW, RegEnumKeyExA > KERNEL32.DLL: GetLastError, FatalExit, GetFileType, CopyFileExW, AddAtomA, CopyFileExA, CreateDirectoryA, GetStdHandle, AddAtomW, CopyFileA, GetPriorityClass, GetCPInfo, WriteFile > ADVAPI32.DLL: RegDeleteValueA, RegEnumValueA, RegDeleteKeyW, RegOpenKeyExW, RegQueryValueA, RegReplaceKeyW, RegQueryInfoKeyA, RegEnumKeyA, RegCreateKeyExW, RegLoadKeyA, RegCreateKeyA, RegCreateKeyExA, RegEnumKeyW, RegReplaceKeyA, RegOpenKeyA, RegCreateKeyW, RegEnumValueW ( 0 exports ) RDS...: NSRL Reference Data Set - pdfid.: - trid..: Win32 Executable Generic (35.2%) Win32 Dynamic Link Library (generic) (31.3%) Win16/32 Executable Delphi generic (8.5%) Clipper DOS Executable (8.3%) Generic Win/DOS Executable (8.2%) sigcheck: publisher....: n/a copyright....: n/a product......: n/a description..: n/a original name: n/a internal name: n/a file version.: n/a comments.....: n/a signers......: - signing date.: - verified.....: Unsigned und von b.exe a-squared 4.5.0.24 2009.10.03 - AhnLab-V3 5.0.0.2 2009.10.03 - AntiVir 7.9.1.27 2009.10.02 - Antiy-AVL 2.0.3.7 2009.10.03 - Authentium 5.1.2.4 2009.10.03 W32/FakeAlert.CO.gen!Eldorado Avast 4.8.1351.0 2009.10.02 Win32:Trojan-gen AVG 8.5.0.420 2009.10.03 Generic14.BAFX BitDefender 7.2 2009.10.03 Trojan.FakeAlert.BMF CAT-QuickHeal 10.00 2009.10.03 Trojan.Agent2.cikr ClamAV 0.94.1 2009.10.03 - Comodo 2502 2009.10.03 - DrWeb 5.0.0.12182 2009.10.03 - eSafe 7.0.17.0 2009.10.01 Suspicious File eTrust-Vet 31.6.6774 2009.10.02 Win32/FakeAVDl.NO F-Prot 4.5.1.85 2009.10.03 W32/FakeAlert.CO.gen!Eldorado F-Secure 8.0.14470.0 2009.10.03 - Fortinet 3.120.0.0 2009.10.03 W32/PackFrauLoad.B GData 19 2009.10.03 Trojan.FakeAlert.BMF Ikarus T3.1.1.72.0 2009.10.03 - Jiangmin 11.0.800 2009.09.27 - K7AntiVirus 7.10.861 2009.10.03 - Kaspersky 7.0.0.125 2009.10.03 - McAfee 5759 2009.10.02 FakeAlert-HT McAfee+Artemis 5759 2009.10.02 FakeAlert-HT McAfee-GW-Edition 6.8.5 2009.10.03 Heuristic.BehavesLike.Win32.Trojan.H Microsoft 1.5101 2009.10.03 TrojanDownloader:Win32/Renos.JI NOD32 4477 2009.10.02 a variant of Win32/Kryptik.ANP Norman 6.01.09 2009.10.03 W32/Renos.ABTN nProtect 2009.1.8.0 2009.10.03 Trojan/W32.Agent.152576.BC Panda 10.0.2.2 2009.10.03 Adware/WindowsProtectionSuite PCTools 4.4.2.0 2009.10.03 - Prevx 3.0 2009.10.03 High Risk Spyware Rising 21.49.22.00 2009.09.30 - Sophos 4.45.0 2009.10.03 Mal/EncPk-JY Sunbelt 3.2.1858.2 2009.10.02 Trojan.Win32.FraudPack.tbi (v) Symantec 1.4.4.12 2009.10.03 Trojan.Fakeavalert!gen TheHacker 6.5.0.2.027 2009.10.02 - TrendMicro 8.950.0.1094 2009.10.03 TROJ_RENOS.SMJF VBA32 3.12.10.11 2009.10.03 - ViRobot 2009.10.2.1968 2009.10.02 - VirusBuster 4.6.5.0 2009.10.02 Trojan.Fraudload.Gen!Pac.8 weitere Informationen File size: 152576 bytes MD5...: 5c5e4d307e0a7f76af65fb0a80a7c535 SHA1..: 958cb17a32e9fd34de624dc3ad411c77a0a888a5 SHA256: 8b7abbe38cd59731369ee1a18f749c71093429fe720dace0a46e74ace6d763f6 ssdeep: 3072:F7bQ4s6rjL/Knzb4Hd/iXz9tkQvrHCweDyCFP4uOzRvm5IyHXM/:1Q4R//K z8a9qQGlqBtJYXM/ PEiD..: - PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x175a timedatestamp.....: 0x4584c358 (Sun Dec 17 04:11:04 2006) machinetype.......: 0x14c (I386) ( 4 sections ) name viradd virsiz rawdsiz ntrpy md5 .text 0x1000 0x71bf 0x7200 4.97 b66f6ca25a4e8f898c41f8f4abfbd08d .DATA 0x9000 0x2243 0x2400 3.40 f8e27545ca5eb2bd847888c984472d8f .init 0xc000 0x69473 0x1a600 7.36 b2e80c3a0062f72d4982af1294822bad .idata 0x76000 0x12f2 0x1400 3.89 5c319acf704e5063a22b5be8adf45b79 ( 8 imports ) > KERNEL32.DLL: GetPriorityClass, ExitThread, CreateDirectoryA, DeleteFileW, CopyFileExA, GetLocalTime, WriteFile, AddAtomA, GetStdHandle, ReadFile, AddAtomW, GetCPInfo, ExitProcess, FindClose > KERNEL32.DLL: CopyFileExA, FindClose, AddAtomA, GetCommandLineA, WriteFile, ExitProcess, GetFileTime, DeleteFileA, GetStdHandle, FreeResource, FatalExit, AddAtomW, OpenFile, DeleteAtom, GetFileType, ExitThread, FindAtomA, ReadFile > USER32.DLL: GetMenu, CalcMenuBar, BeginPaint, CopyRect, GetWindowTextA, BlockInput, AlignRects, GetFocus, InsertMenuA, GetDlgItem, GetWindowTextLengthA, CloseWindow, DialogBoxParamA, AppendMenuA, DrawIconEx, CopyImage, DrawTextA, CreateIcon, IsMenu > ADVAPI32.DLL: RegLoadKeyA, RegQueryValueA, RegOpenKeyA, RegQueryInfoKeyW, RegDeleteValueW, RegCreateKeyA, RegQueryValueExA, RegDeleteKeyA, RegLoadKeyW, RegQueryInfoKeyA, RegEnumKeyA, RegGetKeySecurity, RegQueryValueExW, RegOpenKeyW, RegReplaceKeyA, RegQueryValueW, RegEnumValueW, RegDeleteKeyW, RegDeleteValueA > KERNEL32.DLL: FreeResource, DeleteFileA, OpenFile, DeleteAtom, GetFileType, CopyFileA, FatalExit, GetCPInfo, GetLocalTime, GlobalFree, CopyFileExW, ReadFile, GetFileTime, WriteFile, GetCommandLineA > ADVAPI32.DLL: RegQueryInfoKeyW, RegQueryValueA, RegLoadKeyA, RegEnumKeyExW, RegCreateKeyW, RegEnumKeyW, RegDeleteValueA, RegOpenKeyExA, RegQueryValueW, RegDeleteKeyA, RegQueryValueExA, RegQueryValueExW, RegCreateKeyExA, RegDeleteValueW, RegOpenKeyExW, RegFlushKey, RegEnumValueW > KERNEL32.DLL: GetPriorityClass, GetLocalTime, AddAtomW, CreateDirectoryA, CopyFileExA, GetCPInfo, CopyFileA, DeleteFileW, ReadFile, GetLastError, CopyFileExW, AddAtomA, FreeResource, ExitProcess, WriteFile, GetFileType > USER32.DLL: InsertMenuA, GetDC, CreateIcon, GetWindowTextA, DrawIconEx, GetDlgItem, GetFocus, BeginPaint, CopyImage, DialogBoxParamW, CopyRect, GetCursor, AlignRects, GetMenu, BlockInput ( 0 exports ) RDS...: NSRL Reference Data Set - pdfid.: - trid..: Win32 Executable Generic (51.2%) Win16/32 Executable Delphi generic (12.4%) Clipper DOS Executable (12.1%) Generic Win/DOS Executable (12.0%) DOS Executable Generic (12.0%) <a href='http://info.prevx.com/aboutprogramtext.asp?PX5=F891F93800700FFC54B9025C9D429800BD5B0188' target='_blank'>http://info.prevx.com/aboutprogramtext.asp?PX5=F891F93800700FFC54B9025C9D429800BD5B0188</a> sigcheck: publisher....: n/a copyright....: n/a product......: n/a description..: n/a original name: n/a internal name: n/a file version.: n/a comments.....: n/a signers......: - signing date.: - verified.....: Unsigned mit mfg |
![]() | #2 |
/// AVZ-Toolkit Guru ![]() ![]() ![]() ![]() ![]() | ![]() msa.exe problem Überprüfe den Rechner mit SUPERAntiSpyware und Anti-Malware und poste die logs.
__________________
__________________ |
![]() |
Themen zu msa.exe problem |
adobe, antivir, antivirus, ask toolbar, avira, bho, bonjour, download, downloader, explorer, helper, hijack, hijackthis, hkus\s-1-5-18, internet, internet explorer, object, pdf, pop-up-blocker, problem, programme, software, solution, system, temp, windows, windows xp, wmp, yahoo |