Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Internet Explorer und co öffnet ständig Seiten

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

 
Alt 02.06.2010, 22:44   #1
Bianca28
 
Internet Explorer und co öffnet ständig Seiten - Standard

Internet Explorer und co öffnet ständig Seiten



Guten Abend, zum einen ich weiß das es dieses Problem schon ein paar mal gibt aber ich möchhte da nicht in die Lösungen reinpfuschen von daher mach ich ein neues Thema auf. :-)
Zum Glück bin ich nicht die einzige mit dem Problem so konnte ich mich schonmal ein wenig informieren.
Ach ja ich bin nicht wirklich ein PC spezi, also seid bitte Nachsichtig mit mir. :-)
So nun zum Problem:
Seit einiger Zeit öffnen sich bei mir immer wieder zusätzliche Internet Seite. Allerdings von deinem Browser den ich nicht kenne. Es steht auch kein Browsername da sondern nur so ein paar bunte Zeichen. Bisher hat mich das nicht groß gestört denn das war nur wenn ich eh meinen Browser (Firefox) offen hatte und rum surfte.
Seit heute allerdings macht das auch der IE und das auf sehr penetrante Art und weise und auch wenn ich absolut nichts offen habe.
Gerade bei spielen nervt es kollosal da immer die Spiele unterbrochen werden :-(
Ich habe mein Virenprogramm (Antivir) laufen lassen aber nicht wirklich was gefunden. Dann lies ich QuickStore laufen und habe da alles gelösch wie es in einem älteren Beitrag hier beschrieben wird. Bracht nur in sofern was, das die Abstände der Pop ups sich um ein paar Minuten vergrößert haben. Momentan lass ich eScan laufen und er hat schon ein paar Sachen gefunden aber ich weiß nicht ob das auch wirklich was ist. Ich poste die bisher gefunden gleichhier. Ich muss den Scan dann pausieren lassen da ich nur einen Laptop habe und der eh schon schnell heiß. Ich schalt ihn aber nicht aus sondern heut nacht nur auf Stand By. Morgen lass ich den Scan weiterlaufen. Viellecht kann schon jemand was mit dem gefunden anfangen.
Vielen Dank schonmal!!!!!

02 Jun 2010 21:42:20 - **********************************************************

02 Jun 2010 21:42:20 - eScan Anti Virus & Spyware Toolkit Utility.

02 Jun 2010 21:42:20 - Copyright © MicroWorld Technologies

02 Jun 2010 21:42:20 - **********************************************************

02 Jun 2010 21:42:20 - Source: C:\Users\bianca\Desktop\Downloads\mwav.exe

02 Jun 2010 21:42:20 - Version 12.0.26 (C:\USERS\BIANCA\APPDATA\LOCAL\TEMP\MEXETMP.EX~)

02 Jun 2010 21:42:20 - Log File: C:\Users\bianca\AppData\Local\Temp\MWAV.LOG

02 Jun 2010 21:42:20 - MWAV Registered: TRUE

02 Jun 2010 21:42:20 - User Account: bianca (Administrator Mode)

02 Jun 2010 21:42:20 - OS Type: Windows Workstation

02 Jun 2010 21:42:20 - OS: Windows Vista [OS Install Date: 24 Dec 2007 21:25:27]

02 Jun 2010 21:42:20 - Ver: Personal Service Pack 2 (Build 6002)

02 Jun 2010 21:42:20 - System Up Time: 59 Minutes, 37 Seconds



02 Jun 2010 21:42:20 - Windows Root Folder: C:\Windows

02 Jun 2010 21:42:20 - Windows Sys32 Folder: C:\Windows\system32

02 Jun 2010 21:42:20 - DHCP NameServer: 192.168.2.1

02 Jun 2010 21:42:20 - Interface0 DHCPNameServer: 192.168.2.1

02 Jun 2010 21:42:20 - Local Fixed Drives: c:\,e:\

02 Jun 2010 21:42:20 - MWAV Mode: Scan and Clean files (for viruses, adware and spyware)

02 Jun 2010 21:42:20 - [CREATED ZIP FILE: C:\Users\bianca\AppData\Local\Temp\pinfect.zip]



02 Jun 2010 21:42:20 - ****** Files/Folders created/modified during last fortnight in Windows and ROOT Folder ******

02 Jun 2010 21:42:36 - C:\Windows\system32\CE6AF3E6A1.sys (8), 29-Dec-2007 [HSR] [Added C:\Windows\system32\CE6AF3E6A1.sys to ZIP FILE]

02 Jun 2010 21:42:43 - C:\Windows\system32\D3DCompiler_42.dll (1974616), 02-Jun-2010, Microsoft Corporation, Microsoft® DirectX for Windows®

02 Jun 2010 21:42:44 - C:\Windows\system32\d3dcsx_42.dll (5501792), 02-Jun-2010, Microsoft Corporation, Microsoft® DirectX for Windows®

02 Jun 2010 21:42:44 - C:\Windows\system32\d3dx11_42.dll (235344), 02-Jun-2010, Microsoft Corporation, Microsoft® DirectX for Windows®

02 Jun 2010 21:42:50 - C:\Windows\system32\deployJava1.dll (411368), 02-Jun-2010, Sun Microsystems, Inc., Java(TM) Platform SE 6 U20

02 Jun 2010 21:44:19 - C:\Windows\system32\tzres.dll (2048), 26-May-2010, Microsoft Corporation, Betriebssystem Microsoft® Windows®

02 Jun 2010 21:44:34 - C:\Windows\system32\X3DAudio1_5.dll (23376), 02-Jun-2010, Microsoft Corporation, Microsoft® DirectX for Windows®

02 Jun 2010 21:44:35 - C:\Windows\system32\xactengine3_2.dll (238088), 02-Jun-2010, Microsoft Corporation, Microsoft® DirectX for Windows®

02 Jun 2010 21:44:35 - C:\Windows\system32\xactengine3_3.dll (235856), 02-Jun-2010, Microsoft Corporation, Microsoft® DirectX for Windows®

02 Jun 2010 21:44:35 - C:\Windows\system32\xactengine3_5.dll (238936), 02-Jun-2010, Microsoft Corporation, Microsoft® DirectX for Windows®

02 Jun 2010 21:44:35 - C:\Windows\system32\XAPOFX1_1.dll (68616), 02-Jun-2010, Microsoft Corporation, Microsoft® DirectX for Windows®

02 Jun 2010 21:44:35 - C:\Windows\system32\XAPOFX1_2.dll (70992), 02-Jun-2010, Microsoft Corporation, Microsoft® DirectX for Windows®

02 Jun 2010 21:44:35 - C:\Windows\system32\XAPOFX1_3.dll (69464), 02-Jun-2010, Microsoft Corporation, Microsoft® DirectX for Windows®

02 Jun 2010 21:44:35 - C:\Windows\system32\XAudio2_2.dll (509448), 02-Jun-2010, Microsoft Corporation, Microsoft® DirectX for Windows®

02 Jun 2010 21:44:35 - C:\Windows\system32\XAudio2_3.dll (514384), 02-Jun-2010, Microsoft Corporation, Microsoft® DirectX for Windows®

02 Jun 2010 21:44:35 - C:\Windows\system32\XAudio2_5.dll (515416), 02-Jun-2010, Microsoft Corporation, Microsoft® DirectX for Windows®

02 Jun 2010 21:44:48 - C:\Users\bianca\AppData\Local\Temp\BACKUP.65854536.mexe.com (2353736), 02-Jun-2010, MicroWorld Technologies Inc., MicroWorld AntiVirus Toolkit Utility (MWAV)

02 Jun 2010 21:44:48 - C:\Users\bianca\AppData\Local\Temp\bdc.exe (91904), 02-Jun-2010, MicroWorld Tech, eScan

02 Jun 2010 21:44:48 - C:\Users\bianca\AppData\Local\Temp\bdfltlib2k.dll (231944), 02-Jun-2010, MicroWorld Technologies Inc., eScan for Windows

02 Jun 2010 21:44:48 - C:\Users\bianca\AppData\Local\Temp\clean.bat (11), 02-Jun-2010 [Added C:\Users\bianca\AppData\Local\Temp\clean.bat to ZIP FILE]

02 Jun 2010 21:44:48 - C:\Users\bianca\AppData\Local\Temp\download.exe (934920), 02-Jun-2010, MicroWorld Technologies Inc., eScan

02 Jun 2010 21:44:48 - C:\Users\bianca\AppData\Local\Temp\encdec.dll (120328), 02-Jun-2010, MicroWorld Technologies Inc., eScan/MailScan/eConceal

02 Jun 2010 21:44:48 - C:\Users\bianca\AppData\Local\Temp\erootdrv.sys (13832), 02-Jun-2010, MicroWorld Technologies Inc., eScan/MWAV

02 Jun 2010 21:44:48 - C:\Users\bianca\AppData\Local\Temp\mexe.com (2476616), 02-Jun-2010, MicroWorld Technologies Inc., MicroWorld AntiVirus Toolkit Utility (MWAV)

02 Jun 2010 21:44:48 - C:\Users\bianca\AppData\Local\Temp\msvclnt.dll (236040), 02-Jun-2010, MicroWorld Technologies Inc., MailScan

02 Jun 2010 21:44:48 - C:\Users\bianca\AppData\Local\Temp\MWAVSCAN.COM (2353736), 02-Jun-2010, MicroWorld Technologies Inc., MicroWorld AntiVirus Toolkit Utility (MWAV)

02 Jun 2010 21:44:48 - C:\Users\bianca\AppData\Local\Temp\plugins.htm (3498), 02-Jun-2010 [Added C:\Users\bianca\AppData\Local\Temp\plugins.htm to ZIP FILE]

02 Jun 2010 21:44:48 - C:\Users\bianca\AppData\Local\Temp\red32.dll (10248), 02-Jun-2010, Microsoft Corporation, Microsoft® Windows® Operating System

02 Jun 2010 21:44:48 - C:\Users\bianca\AppData\Local\Temp\reload.exe (154632), 02-Jun-2010, MicroWorld Technologies Inc., eScan for Windows

02 Jun 2010 21:44:48 - C:\Users\bianca\AppData\Local\Temp\setpriv.exe (64008), 02-Jun-2010, MicroWorld Technologies Inc, eScan AntiVirus Toolkit Utility

02 Jun 2010 21:44:48 - C:\Users\bianca\AppData\Local\Temp\sshnas21.dll (241152), 02-Jun-2010 [Added C:\Users\bianca\AppData\Local\Temp\sshnas21.dll to ZIP FILE]

02 Jun 2010 21:44:49 - C:\Users\bianca\AppData\Local\Temp\unregx.exe (61960), 02-Jun-2010, MicroWorld Technologies Inc, MicroWorld AntiVirus Toolkit Utility

02 Jun 2010 21:44:49 - C:\Users\bianca\AppData\Local\Temp\UPDLL10.DLL (845320), 25-May-2010, MicroWorld Technologies Inc., eScan/MailScan/MWAV

02 Jun 2010 21:44:49 - C:\Users\bianca\AppData\Local\Temp\viewtcp.exe (573960), 02-Jun-2010, MicroWorld Technologies Inc., ViewTCP

02 Jun 2010 21:44:49 - C:\Users\bianca\AppData\Local\Temp\Xg1.exe (181248), 02-Jun-2010 [Added C:\Users\bianca\AppData\Local\Temp\Xg1.exe to ZIP FILE]

02 Jun 2010 21:44:49 - C:\Users\bianca\AppData\Local\Temp\Xg6.exe (200704), 02-Jun-2010 [Added C:\Users\bianca\AppData\Local\Temp\Xg6.exe to ZIP FILE]



02 Jun 2010 21:44:49 - C:\Windows\Fonts, 02-Nov-2006 [SR] [Folder]

02 Jun 2010 21:44:49 - C:\Windows\ftpcache, 19-Apr-2008 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\Windows\logo_1.exe, 02-Jun-2010 [Folder]

02 Jun 2010 21:44:49 - C:\Windows\Media, 02-Nov-2006 [SR] [Folder]

02 Jun 2010 21:44:49 - C:\Windows\msdownld.tmp, 16-Apr-2007 [H] [Folder]

02 Jun 2010 21:44:49 - C:\Windows\RUNDL132.EXE, 02-Jun-2010 [Folder]

02 Jun 2010 21:44:49 - C:\Windows\VDLL.DLL, 02-Jun-2010 [Folder]

02 Jun 2010 21:44:49 - C:\Windows\system32\Microsoft, 02-Nov-2006 [S] [Folder]

02 Jun 2010 21:44:49 - C:\Windows\system32\runouce.exe, 02-Jun-2010 [Folder]

02 Jun 2010 21:44:49 - C:\Boot, 13-Apr-2007 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\Config.Msi, 02-Jun-2010 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\Documents and Settings, 02-Nov-2006 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\Dokumente und Einstellungen, 24-Dec-2007 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData, 02-Nov-2006 [H] [Folder]

02 Jun 2010 21:44:49 - C:\Programme, 24-Dec-2007 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\Users\bianca\AppData\Local\Temp\AVCBack, 02-Jun-2010 [Folder]

02 Jun 2010 21:44:49 - C:\Users\bianca\AppData\Local\Temp\div4162.tmp, 02-Jun-2010 [Folder]

02 Jun 2010 21:44:49 - C:\Users\bianca\AppData\Local\Temp\FtpTemp, 02-Jun-2010 [Folder]

02 Jun 2010 21:44:49 - C:\Users\bianca\AppData\Local\Temp\FtpTempF, 02-Jun-2010 [Folder]

02 Jun 2010 21:44:49 - C:\Users\bianca\AppData\Local\Temp\IM, 02-Jun-2010 [Folder]

02 Jun 2010 21:44:49 - C:\Users\bianca\AppData\Local\Temp\Log, 02-Jun-2010 [Folder]

02 Jun 2010 21:44:49 - C:\Users\bianca\AppData\Local\Temp\plugins, 02-Jun-2010 [Folder]

02 Jun 2010 21:44:49 - C:\Users\bianca\AppData\Local\Temp\tmp00007fd8, 02-Jun-2010 [Folder]

02 Jun 2010 21:44:49 - C:\Users\bianca\AppData\Roaming\Avira, 02-Jun-2010 [Folder]

02 Jun 2010 21:44:49 - C:\Users\bianca\AppData\Roaming\Microsoft, 24-Dec-2007 [S] [Folder]

02 Jun 2010 21:44:49 - C:\Users\bianca\AppData\Roaming\QuickStoresToolbar, 02-Jun-2010 [Folder]

02 Jun 2010 21:44:49 - C:\Users\bianca\AppData\Roaming\SecuROM, 11-Jan-2008 [HR] [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\Anwendungsdaten, 24-Dec-2007 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\Application Data, 02-Nov-2006 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\CanonBJ, 21-Jul-2008 [H] [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\Desktop, 02-Nov-2006 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\DivX, 30-May-2010 [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\Documents, 02-Nov-2006 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\Dokumente, 24-Dec-2007 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\FarmFrenzy3_Russia, 28-May-2010 [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\Favoriten, 24-Dec-2007 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\Microsoft, 02-Nov-2006 [S] [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\MicroWorld, 02-Jun-2010 [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\Start Menu, 02-Nov-2006 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\Startmenü, 24-Dec-2007 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\Templates, 02-Nov-2006 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\Vorlagen, 24-Dec-2007 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\..\Boot, 13-Apr-2007 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\..\Config.Msi, 02-Jun-2010 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\..\Documents and Settings, 02-Nov-2006 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\..\Dokumente und Einstellungen, 24-Dec-2007 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\..\ProgramData, 02-Nov-2006 [H] [Folder]

02 Jun 2010 21:44:49 - C:\ProgramData\..\Programme, 24-Dec-2007 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\Program Files\Alawar Entertainment, 28-May-2010 [Folder]

02 Jun 2010 21:44:49 - C:\Program Files\ClearProg, 02-Jun-2010 [Folder]

02 Jun 2010 21:44:49 - C:\Program Files\Creative Installation Information, 21-Feb-2008 [H] [Folder]

02 Jun 2010 21:44:49 - C:\Program Files\Games, 31-May-2010 [Folder]

02 Jun 2010 21:44:49 - C:\Program Files\Gemeinsame Dateien, 24-Dec-2007 [HS] [Folder]

02 Jun 2010 21:44:49 - C:\Program Files\Ubisoft, 01-Jun-2010 [Folder]

02 Jun 2010 21:44:49 - C:\Program Files\Xfire, 09-Jan-2008 [S] [Folder]

02 Jun 2010 21:44:49 - C:\Program Files\Common Files\MicroWorld, 02-Jun-2010 [Folder]



02 Jun 2010 21:44:49 - *********************************************************************************************



02 Jun 2010 21:44:49 - Command Line Options Given: /xsign

02 Jun 2010 21:44:58 - Latest Date of files inside MWAV: Wed Jun 2 21:52:41 2010.

02 Jun 2010 21:44:58 - Plugins FileCount: 681 Sign Version: 7.31986

02 Jun 2010 21:44:59 - Loading/Creating FileScan Database C:\ProgramData\MicroWorld\MWAV\ESCANDBX.MDB [Log: C:\Users\bianca\AppData\Local\Temp\ESCANDB.LOG]

02 Jun 2010 21:45:00 - Loaded/Created FileScan Database...

02 Jun 2010 21:45:00 - Loading AV Library [DB]...

02 Jun 2010 21:45:06 - AV Library Loaded [DB-DIRECT].

02 Jun 2010 21:45:06 - MWAV doing self scanning...

02 Jun 2010 21:45:07 - MWAV files are clean.
02 Jun 2010 21:45:12 - Virus Database Date: 02 Jun 2010
02 Jun 2010 21:45:12 - Virus Database Count: 6121217

02 Jun 2010 21:45:35 - **********************************************************
02 Jun 2010 21:45:35 - eScan Anti Virus & Spyware Toolkit Utility.
02 Jun 2010 21:45:35 - Copyright © MicroWorld Technologies
02 Jun 2010 21:45:35 -
02 Jun 2010 21:45:35 - Support: support@escanav.com
02 Jun 2010 21:45:35 - Web: hxxp://www.escanav.com
02 Jun 2010 21:45:35 - **********************************************************
02 Jun 2010 21:45:35 - Version 12.0.26[DB] (C:\USERS\BIANCA\APPDATA\LOCAL\TEMP\MEXETMP.EX~)
02 Jun 2010 21:45:35 - Log File: C:\Users\bianca\AppData\Local\Temp\MWAV.LOG
02 Jun 2010 21:45:35 - User Account: bianca (Administrator Mode)
02 Jun 2010 21:45:35 - Windows Root Folder: C:\Windows
02 Jun 2010 21:45:35 - Windows Sys32 Folder: C:\Windows\system32
02 Jun 2010 21:45:35 - OS: Windows Vista [OS Install Date: 24 Dec 2007 21:25:27]
02 Jun 2010 21:45:35 - Ver: Personal Service Pack 2 (Build 6002)
02 Jun 2010 21:45:35 - Latest Date of files inside MWAV: Wed Jun 2 21:52:41 2010.
02 Jun 2010 21:45:35 - Plugins FileCount: 681 Sign Version: 7.31986

02 Jun 2010 21:45:43 - Options Selected by User:
02 Jun 2010 21:45:43 - Memory Check: Enabled
02 Jun 2010 21:45:43 - Registry Check: Enabled
02 Jun 2010 21:45:43 - StartUp Folder Check: Disabled
02 Jun 2010 21:45:43 - System Folder Check: Disabled
02 Jun 2010 21:45:43 - Services Check: Enabled
02 Jun 2010 21:45:43 - Scan Spyware: Disabled
02 Jun 2010 21:45:43 - Drive Check: Disabled
02 Jun 2010 21:45:43 - All Drive Check :Enabled
02 Jun 2010 21:45:43 - Folder Check: Disabled
02 Jun 2010 21:45:43 - SCAN: All_Files
02 Jun 2010 21:45:43 - MWAV Mode: Only Scan files (Do Not Clean)


02 Jun 2010 21:45:45 - ***** Scanning Memory Files *****
02 Jun 2010 21:46:40 - Scanning File C:\Users\bianca\AppData\Local\mutbihpv.exe
02 Jun 2010 21:46:40 - File C:\Users\bianca\AppData\Local\mutbihpv.exe infected by "Gen:Variant.NaviPromo.2 (DB)" Virus! Action Taken: No Action Taken.


02 Jun 2010 21:46:50 - ***** Scanning Registry Files *****
02 Jun 2010 21:46:51 - ERROR!!! Invalid Entry = hxxp://www.webtip.ch/cgi-bin/toshiba/tracker_url_de.pl?hxxp://www.ebay.de/ (in key HKLM\Software\Microsoft\Internet Explorer\Extensions\{C08CAF1D-C0A3-40D5-9970-06D067EAC017}). No Action Taken.
02 Jun 2010 21:47:00 - Invalid Entry DLLName = igfxdev.dll (in key HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui). Action Taken: Deleting Registry Key igfxcui.
02 Jun 2010 21:47:02 - ERROR!!! Invalid Entry IgfxTray = C:\Windows\system32\igfxtray.exe (in key HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run). No Action Taken.
02 Jun 2010 21:47:02 - ERROR!!! Invalid Entry HotKeysCmds = C:\Windows\system32\hkcmd.exe (in key HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run). No Action Taken.
02 Jun 2010 21:47:02 - ERROR!!! Invalid Entry Persistence = C:\Windows\system32\igfxpers.exe (in key HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run). No Action Taken.
02 Jun 2010 21:47:02 - ERROR!!! Invalid Entry HWSetup = \HWSetup.exe hwSetUP (in key HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run). No Action Taken.
02 Jun 2010 21:47:02 - ERROR!!! Invalid Entry NDSTray.exe = NDSTray.exe (in key HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run). No Action Taken.
02 Jun 2010 21:47:03 - ERROR!!! Invalid Entry Performance Center = C:\Program Files\Ascentive\Performance Center\APCMain.exe -m (in key HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run). No Action Taken.
02 Jun 2010 21:47:03 - Invalid DLL [C:\Users\bianca\AppData\Local\Temp\efcBusQh.dll] in entry [MSServer=rundll32.exe C:\Users\bianca\AppData\Local\Temp\efcBusQh.dll,#1]
02 Jun 2010 21:47:03 - ERROR!!! Invalid Entry MSServer = C:\Windows\system32\rundll32.exe (in key HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run). No Action Taken.
02 Jun 2010 21:47:03 - ERROR!!! Invalid Entry Host Process = C:\Users\bianca\svchost.exe (in key HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run). No Action Taken.
02 Jun 2010 21:47:03 - Invalid DLL [C:\Users\bianca\AppData\Local\Temp\jkkHxVlM.dll] in entry [cmds=rundll32.exe C:\Users\bianca\AppData\Local\Temp\jkkHxVlM.dll,c]
02 Jun 2010 21:47:03 - ERROR!!! Invalid Entry cmds = C:\Windows\system32\rundll32.exe (in key HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run). No Action Taken.
02 Jun 2010 21:47:07 - Scanning File c:\users\bianca\appdata\local\mutbihpv.exe
02 Jun 2010 21:47:07 - File c:\users\bianca\appdata\local\mutbihpv.exe infected by "Gen:Variant.NaviPromo.2 (DB)" Virus! Action Taken: No Action Taken.


02 Jun 2010 21:47:08 - ***** Scanning Service Files *****
02 Jun 2010 21:47:10 - ERROR!!! Invalid Entry "C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe" in HKLM\SYSTEM\CurrentControlSet\Services\Automatisches LiveUpdate - Scheduler. Action Taken: No Action Taken.
02 Jun 2010 21:47:10 - ERROR!!! Invalid Entry \SystemRoot\system32\drivers\blbdrive.sys in HKLM\SYSTEM\CurrentControlSet\Services\blbdrive. Action Taken: No Action Taken.
02 Jun 2010 21:47:24 - ERROR!!! Invalid Entry \??\C:\Users\bianca\AppData\Local\Temp\gkmixern.sys in HKLM\SYSTEM\CurrentControlSet\Services\gkmixern. Action Taken: No Action Taken.
02 Jun 2010 21:47:25 - ERROR!!! Invalid Entry system32\DRIVERS\igdkmd32.sys in HKLM\SYSTEM\CurrentControlSet\Services\igfx. Action Taken: No Action Taken.
02 Jun 2010 21:47:30 - ERROR!!! Invalid Entry \??\C:\Windows\system32\drivers\PDNMp50.sys in HKLM\SYSTEM\CurrentControlSet\Services\PDNMp50. Action Taken: No Action Taken.
02 Jun 2010 21:47:30 - ERROR!!! Invalid Entry \??\C:\Windows\system32\drivers\PDNSp50.sys in HKLM\SYSTEM\CurrentControlSet\Services\PDNSp50. Action Taken: No Action Taken.
02 Jun 2010 21:47:34 - C:\Windows\system32\Drivers\sptd.sys not Scanned. Possibly password protected...
02 Jun 2010 21:47:36 - ERROR!!! Invalid Entry c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe in HKLM\SYSTEM\CurrentControlSet\Services\TOSHIBA Bluetooth Service. Action Taken: No Action Taken.
02 Jun 2010 21:47:36 - ERROR!!! Invalid Entry system32\DRIVERS\TpChoice.sys in HKLM\SYSTEM\CurrentControlSet\Services\TpChoice. Action Taken: No Action Taken.

02 Jun 2010 21:47:41 - ***** Scanning All Drives *****
02 Jun 2010 21:47:41 - Scanning C:\ Drive
02 Jun 2010 21:50:15 - C:\Boot\BCD not Scanned. Possibly password protected...
02 Jun 2010 21:50:15 - C:\Boot\BCD.LOG not Scanned. Possibly password protected...
02 Jun 2010 21:55:55 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMCoreA.dll
02 Jun 2010 21:55:55 - File C:\Program Files\Common Files\Nero\Lib\NMCoreA.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:55 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMCoreB.dll
02 Jun 2010 21:55:55 - File C:\Program Files\Common Files\Nero\Lib\NMCoreB.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:55 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMCoreC.dll
02 Jun 2010 21:55:55 - File C:\Program Files\Common Files\Nero\Lib\NMCoreC.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:55 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMCoreD.dll
02 Jun 2010 21:55:55 - File C:\Program Files\Common Files\Nero\Lib\NMCoreD.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:55 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMCoreE.dll
02 Jun 2010 21:55:55 - File C:\Program Files\Common Files\Nero\Lib\NMCoreE.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:55 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMDataServicesA.dll
02 Jun 2010 21:55:55 - File C:\Program Files\Common Files\Nero\Lib\NMDataServicesA.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:55 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMDataServicesB.dll
02 Jun 2010 21:55:55 - File C:\Program Files\Common Files\Nero\Lib\NMDataServicesB.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:55 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMDataServicesC.dll
02 Jun 2010 21:55:55 - File C:\Program Files\Common Files\Nero\Lib\NMDataServicesC.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:55 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMDataServicesD.dll
02 Jun 2010 21:55:55 - File C:\Program Files\Common Files\Nero\Lib\NMDataServicesD.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:55 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMDataServicesE.dll
02 Jun 2010 21:55:55 - File C:\Program Files\Common Files\Nero\Lib\NMDataServicesE.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:56 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreA.dll
02 Jun 2010 21:55:56 - File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreA.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:56 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreB.dll
02 Jun 2010 21:55:56 - File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreB.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:56 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreC.dll
02 Jun 2010 21:55:56 - File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreC.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:56 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreD.dll
02 Jun 2010 21:55:56 - File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreD.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:56 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreE.dll
02 Jun 2010 21:55:56 - File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreE.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:56 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreF.dll
02 Jun 2010 21:55:56 - File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreF.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:56 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreG.dll
02 Jun 2010 21:55:56 - File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreG.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:56 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreH.dll
02 Jun 2010 21:55:56 - File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreH.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:56 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreI.dll
02 Jun 2010 21:55:56 - File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreI.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:56 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreJ.dll
02 Jun 2010 21:55:56 - File C:\Program Files\Common Files\Nero\Lib\NMIndexStoreJ.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:57 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMSearchA.dll
02 Jun 2010 21:55:57 - File C:\Program Files\Common Files\Nero\Lib\NMSearchA.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:57 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMSearchB.dll
02 Jun 2010 21:55:57 - File C:\Program Files\Common Files\Nero\Lib\NMSearchB.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:57 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMSearchC.dll
02 Jun 2010 21:55:57 - File C:\Program Files\Common Files\Nero\Lib\NMSearchC.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:57 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMSearchD.dll
02 Jun 2010 21:55:57 - File C:\Program Files\Common Files\Nero\Lib\NMSearchD.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:55:57 - Scanning File C:\Program Files\Common Files\Nero\Lib\NMSearchE.dll
02 Jun 2010 21:55:57 - File C:\Program Files\Common Files\Nero\Lib\NMSearchE.dll infected by "NULL.Corrupted" Virus! Action Taken: No Action Taken.

02 Jun 2010 21:56:43 - C:\Program Files\DAEMON Tools\SetupDTSB.exe not Scanned. Possibly password protected...
02 Jun 2010 22:27:13 - ScanFile took 6.96 Secs [C:\Program Files\Vuze\plugins\azemp\vuzeplayer.exe]...

02 Jun 2010 22:29:24 - Scanning File C:\ProgramData\Avira\AntiVir Desktop\INFECTED\4915192e.qua
02 Jun 2010 22:29:24 - File C:\ProgramData\Avira\AntiVir Desktop\INFECTED\4915192e.qua infected by "Gen:Adware.Heur.hq1@Rm!VmBji (DB)" Virus! Action Taken: No Action Taken.

 

Themen zu Internet Explorer und co öffnet ständig Seiten
adware, antivir, antivirus, avira, browser, c:\windows\system32\rundll32.exe, clean.bat, desktop, error, firefox, installation, internet, internet explorer, load.exe, local\temp, log file, pop ups, problem, programdata, programm, registry, registry key, rundll, software, spielen, sptd.sys, spyware, start menu, svchost.exe, symantec, system, virus, vista, windows




Ähnliche Themen: Internet Explorer und co öffnet ständig Seiten


  1. Chrome und Internet Explorer öffnen ständig neue Seiten
    Plagegeister aller Art und deren Bekämpfung - 17.01.2015 (5)
  2. Internet Explorer öffnet sich ständig
    Plagegeister aller Art und deren Bekämpfung - 09.08.2013 (9)
  3. Internet Explorer öffnet ständig Werbefenster
    Log-Analyse und Auswertung - 23.10.2012 (16)
  4. Internet Explorer öffnet sich ständig
    Plagegeister aller Art und deren Bekämpfung - 06.01.2011 (4)
  5. Trojaner öffnen ständig Seiten/Werbung über den Internet Explorer
    Plagegeister aller Art und deren Bekämpfung - 06.11.2010 (34)
  6. Explorer öffnet ständig seiten -> hier HiJack Protokoll
    Log-Analyse und Auswertung - 09.06.2010 (8)
  7. Internet Explorer öffnet ständig Werbung?!?
    Log-Analyse und Auswertung - 02.05.2010 (19)
  8. internet explorer öffnet ständig werbungen
    Plagegeister aller Art und deren Bekämpfung - 08.02.2010 (3)
  9. Internet Explorer öffnet sich ständig
    Log-Analyse und Auswertung - 02.02.2010 (1)
  10. Internet Explorer öffnet sich ständig!
    Log-Analyse und Auswertung - 04.12.2009 (1)
  11. Internet Explorer öffnet ständig Werbung
    Plagegeister aller Art und deren Bekämpfung - 03.06.2009 (6)
  12. internet explorer öffnet ständig werbung
    Log-Analyse und Auswertung - 26.04.2009 (13)
  13. Internet Explorer öffnet sich ständig
    Mülltonne - 02.09.2008 (0)
  14. Internet explorer öffnet ständig Werbung
    Plagegeister aller Art und deren Bekämpfung - 01.07.2008 (5)
  15. Internet Explorer öffnet ständig Werbefenster!
    Log-Analyse und Auswertung - 30.11.2007 (1)
  16. Internet Explorer öffnet ständig falsche Seiten
    Log-Analyse und Auswertung - 18.10.2007 (7)
  17. Internet Explorer öffnet ständig Werbung?!?
    Log-Analyse und Auswertung - 22.12.2006 (7)

Zum Thema Internet Explorer und co öffnet ständig Seiten - Guten Abend, zum einen ich weiß das es dieses Problem schon ein paar mal gibt aber ich möchhte da nicht in die Lösungen reinpfuschen von daher mach ich ein neues - Internet Explorer und co öffnet ständig Seiten...
Archiv
Du betrachtest: Internet Explorer und co öffnet ständig Seiten auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.