![]() |
|
Plagegeister aller Art und deren Bekämpfung: Java Viren durch selbstöffnende Firefox-TabsWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() | #10 |
![]() ![]() | ![]() Java Viren durch selbstöffnende Firefox-Tabs jetzt gehts All processes killed ========== OTL ========== Prefs.js: "128.8.126.78" removed from network.proxy.backup.ftp Prefs.js: 3127 removed from network.proxy.backup.ftp_port Prefs.js: "128.8.126.78" removed from network.proxy.backup.gopher Prefs.js: 3127 removed from network.proxy.backup.gopher_port Prefs.js: "128.8.126.78" removed from network.proxy.backup.socks Prefs.js: 3127 removed from network.proxy.backup.socks_port Prefs.js: "128.8.126.78" removed from network.proxy.backup.ssl Prefs.js: 3127 removed from network.proxy.backup.ssl_port Prefs.js: "206.64.92.16" removed from network.proxy.ftp Prefs.js: 8000 removed from network.proxy.ftp_port Prefs.js: "206.64.92.16" removed from network.proxy.gopher Prefs.js: 8000 removed from network.proxy.gopher_port Prefs.js: 8000 removed from network.proxy.http_port Prefs.js: "" removed from network.proxy.no_proxies_on Prefs.js: true removed from network.proxy.share_proxy_settings Prefs.js: "206.64.92.16" removed from network.proxy.socks Prefs.js: 8000 removed from network.proxy.socks_port Prefs.js: true removed from network.proxy.socks_remote_dns Prefs.js: 4 removed from network.proxy.socks_version Prefs.js: "206.64.92.16" removed from network.proxy.ssl Prefs.js: 8000 removed from network.proxy.ssl_port Prefs.js: 0 removed from network.proxy.type Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\SpybotSD TeaTimer deleted successfully. D:\Programme\Spybot - Search & Destroy\TeaTimer.exe moved successfully. File not found. G:\autorun.inf moved successfully. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{51ca9a38-5d23-11df-a748-001d7dd2c2fb}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51ca9a38-5d23-11df-a748-001d7dd2c2fb}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{51ca9a38-5d23-11df-a748-001d7dd2c2fb}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51ca9a38-5d23-11df-a748-001d7dd2c2fb}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{51ca9a38-5d23-11df-a748-001d7dd2c2fb}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51ca9a38-5d23-11df-a748-001d7dd2c2fb}\ not found. File F:\AutoRunCD.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5c6959a9-5cf0-11df-a747-001d7dd2c2fb}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5c6959a9-5cf0-11df-a747-001d7dd2c2fb}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5c6959a9-5cf0-11df-a747-001d7dd2c2fb}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5c6959a9-5cf0-11df-a747-001d7dd2c2fb}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5c6959a9-5cf0-11df-a747-001d7dd2c2fb}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5c6959a9-5cf0-11df-a747-001d7dd2c2fb}\ not found. File F:\AutoRunCD.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{60621816-6aa5-11df-a778-001d7dd2c2fb}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60621816-6aa5-11df-a778-001d7dd2c2fb}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{60621816-6aa5-11df-a778-001d7dd2c2fb}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60621816-6aa5-11df-a778-001d7dd2c2fb}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{60621816-6aa5-11df-a778-001d7dd2c2fb}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60621816-6aa5-11df-a778-001d7dd2c2fb}\ not found. File F:\Setup.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d94b4de9-6654-11df-a765-001d7dd2c2fb}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d94b4de9-6654-11df-a765-001d7dd2c2fb}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d94b4de9-6654-11df-a765-001d7dd2c2fb}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d94b4de9-6654-11df-a765-001d7dd2c2fb}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d94b4de9-6654-11df-a765-001d7dd2c2fb}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d94b4de9-6654-11df-a765-001d7dd2c2fb}\ not found. File F:\Razor1911_Installer.exe not found. ========== COMMANDS ========== C:\WINDOWS\System32\drivers\etc\Hosts moved successfully. HOSTS file reset successfully [EMPTYTEMP] User: All Users User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes ->Flash cache emptied: 41 bytes User: LocalService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 329655 bytes ->Flash cache emptied: 405 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 18815256 bytes ->Java cache emptied: 10344 bytes ->Flash cache emptied: 4676 bytes User: Sharkoon ->Temp folder emptied: 158398452 bytes ->Temporary Internet Files folder emptied: 7933823 bytes ->Java cache emptied: 480 bytes ->FireFox cache emptied: 46051068 bytes ->Flash cache emptied: 428571 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 1138908 bytes %systemroot%\System32 .tmp files removed: 1622071 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 448 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 224,00 mb OTL by OldTimer - Version 3.2.12.0 log created on 09132010_152408 Files\Folders moved on Reboot... C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Temporary Internet Files\Content.IE5\34PX3KCW\imghp[1] moved successfully. Registry entries deleted on Reboot... Geändert von sus7 (13.09.2010 um 14:30 Uhr) |
Themen zu Java Viren durch selbstöffnende Firefox-Tabs |
ad-aware, adobe, antivir, antivir guard, avira, bho, desktop, dringend, entfernen, excel, explorer, firefox, icq, internet, internet explorer, java agent, jusched.exe, microsoft, mozilla, ordner, plug-in, pop-up, problem, programme, system, tabs öffnen, taskleiste, viren, von selbst, windows, windows xp |