Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.
So, habe jetzt OTL ausgeführt, mach jetzt noch mal einen Scan mit Malewarebytes, da das sich vorhin ständig aufgehangen hat.
Hier der Log von OTL, aber uninteressant ...
Code:
ATTFilter
All processes killed
========== OTL ==========
Service XAMPP stopped successfully!
Service XAMPP deleted successfully!
File C:\xampp\service.exe File not found not found.
Service shoddybattle stopped successfully!
Service shoddybattle deleted successfully!
File C:\Programme\Shoddy Battle Server\bin\wrapper.exe File not found not found.
Service MySql stopped successfully!
Service MySql deleted successfully!
File C:\xampp\mysql\bin\mysqld-nt.exe File not found not found.
Service Macromedia Licensing Service stopped successfully!
Service Macromedia Licensing Service deleted successfully!
File C:\Programme\Gemeinsame Dateien\Macromedia Shared\Service\Macromedia Licensing.exe File not found not found.
Service FileZilla Server stopped successfully!
Service FileZilla Server deleted successfully!
File C:\xampp\filezillaftp\filezillaserver.exe File not found not found.
Service Apache2.2 stopped successfully!
Service Apache2.2 deleted successfully!
File C:\xampp\apache\bin\apache.exe File not found not found.
Service PLCMPR5 stopped successfully!
Service PLCMPR5 deleted successfully!
File C:\WINDOWS\System32\PLCMPR5.SYS File not found not found.
Service BDRsDrv stopped successfully!
Service BDRsDrv deleted successfully!
File C:\Programme\Softwin\BitDefender10\bdrsdrv.sys File not found not found.
Service BDFsDrv stopped successfully!
Service BDFsDrv deleted successfully!
File C:\Programme\Softwin\BitDefender10\bdfsdrv.sys File not found not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{47833539-D0C5-4125-9FA8-0819E2EAAC93} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47833539-D0C5-4125-9FA8-0819E2EAAC93}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{EE5D279F-081B-4404-994D-C6B60AAEBA6D} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EE5D279F-081B-4404-994D-C6B60AAEBA6D}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon\ deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{3ccc95b1-12c9-11dd-8498-9ac74778ae18}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3ccc95b1-12c9-11dd-8498-9ac74778ae18}\ not found.
File F:\setupSNK.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{fd1ddae6-12d7-11dd-8499-f26be3a59f18}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fd1ddae6-12d7-11dd-8499-f26be3a59f18}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{fd1ddae6-12d7-11dd-8499-f26be3a59f18}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fd1ddae6-12d7-11dd-8499-f26be3a59f18}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{fd1ddae6-12d7-11dd-8499-f26be3a59f18}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fd1ddae6-12d7-11dd-8499-f26be3a59f18}\ not found.
File E:\pushinst.exe not found.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33438 bytes
User: *****
->Temp folder emptied: 7015771 bytes
->Temporary Internet Files folder emptied: 4876891 bytes
->Java cache emptied: 16485180 bytes
->FireFox cache emptied: 45904915 bytes
->Google Chrome cache emptied: 279194165 bytes
->Apple Safari cache emptied: 561152 bytes
->Flash cache emptied: 4500 bytes
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 2114764 bytes
%systemroot%\System32 .tmp files removed: 3795456 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 676685 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 344,00 mb
[EMPTYFLASH]
User: All Users
User: LocalService
User: *****
->Flash cache emptied: 0 bytes
User: NetworkService
Total Flash Files Cleaned = 0,00 mb
OTL by OldTimer - Version 3.2.16.0 log created on 10202010_130438
Files\Folders moved on Reboot...
Registry entries deleted on Reboot...
Jetzt müsste MAM schneller sein, weil ja die temporären Daten alle weg sind.
Themen zu Weiß nicht, was los ist, vielleicht Rootkit?
Zum Thema Weiß nicht, was los ist, vielleicht Rootkit? - So, habe jetzt OTL ausgeführt, mach jetzt noch mal einen Scan mit Malewarebytes, da das sich vorhin ständig aufgehangen hat.
Hier der Log von OTL, aber uninteressant ...
Code:
Alles - Weiß nicht, was los ist, vielleicht Rootkit?...