Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Log-Analyse und Auswertung (https://www.trojaner-board.de/log-analyse-auswertung/)
-   -   Hab einen Trojaner oder wurm oder nen virus weis aber nicht was für einen (https://www.trojaner-board.de/105567-hab-trojaner-wurm-nen-virus-weis.html)

Tobebias 29.11.2011 17:59

Hab einen Trojaner oder wurm oder nen virus weis aber nicht was für einen
 
Hallo,

Und zwar habe ich ein Virus, denn
Bei Cod6 springt mein ping hoch und runter von 98 uaf 999 dann wieder runter das ist schon eine ganze weile so hab schon bei google gesucht aber leider nichts gefunden :(. Und mein minecraft account is ganz zufällig auch gehackt worden :(

hab antivira auch schon zich mal durchlaufen lassen aber hat nix gefunde ich hoffe jemand kann mir helfen

MfG Tobebias

Tobebias 29.11.2011 18:24

Hier is noch ein log von OTL

[Log]18:22 29.11.201118:22 29.11.201118:22 29.11.2011OTL EXTRAS Logfile:
Code:

OTL Extras logfile created on: 29.11.2011 18:15:44 - Run 1
OTL by OldTimer - Version 3.2.31.0    Folder = C:\Users\Tobias\Desktop
 Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
2,00 Gb Total Physical Memory | 1,07 Gb Available Physical Memory | 53,56% Memory free
4,00 Gb Paging File | 2,70 Gb Available in Paging File | 67,48% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 298,09 Gb Total Space | 56,53 Gb Free Space | 18,96% Space Free | Partition Type: NTFS
Drive F: | 596,17 Gb Total Space | 421,35 Gb Free Space | 70,68% Space Free | Partition Type: NTFS
 
Computer Name: TOBIAS-PC | User Name: Tobias | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Extra Registry (SafeList) ==========
 
 
========== File Associations ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
 
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
 
========== Shell Spawning ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
========== Security Center Settings ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
========== Firewall Settings ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
========== Authorized Applications List ==========
 
 
========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{0B897FB3-14D7-4B73-8678-19DD7199C8EB}" = 3Dconnexion 3DxWare
"{154446DA-45DB-49F2-A284-D2C8AE997193}" = 3Dconnexion Plug-In for Photoshop CS3
"{1A986F4A-5DBA-4A6F-8CE3-973066C2587C}" = 3Dconnexion Plug-in for QuickTime VR
"{1B1290BC-D31F-44C4-9BD4-88FA2896772D}" = 3Dconnexion Plug-In for NX 3.0
"{1DEBF303-1DB4-4A44-AEFC-7F3F54C5F7B3}" = 3Dconnexion Plug-In for Maya 8
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{20A980F4-EF5E-4FB1-A931-0174CAF5B1E9}" = 3Dconnexion Plug-In for NX 4.0
"{26A24AE4-039D-4CA4-87B4-2F83216027FF}" = Java(TM) 6 Update 27
"{299D8A52-6054-4899-A81C-FCFDF58AF8E1}" = 3Dconnexion Plug-In for Maya 6.5
"{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java(TM) 6 Update 7
"{3A8330AF-9FB4-4E8F-9B42-8772CC985768}" = 3Dconnexion Plug-In for 3ds Max 2010
"{3AC8457C-0385-4BEA-A959-E095F05D6D67}" = Battlefield: Bad Company™ 2
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{478335AA-4407-4B0A-B6E4-F9FCC8FB9FC0}" = 3Dconnexion Plug-In for NX 6.0
"{47E16407-05D3-4D2A-B2B9-C30700B7C2AD}" = LogMeIn Hamachi
"{48D8A5BC-B84C-4E47-9695-F8316CC20C5B}" = 3Dconnexion Plug-In for Maya 2008
"{494099F4-5123-4182-9C8E-FA6280844441}" = 3Dconnexion Add-In for SolidWorks
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A9A4900-C844-42D4-B58A-09299B25DAE7}" = 3Dconnexion Plug-In for Maya 6
"{4FBCEA31-5D18-4212-9231-DE7CF1BE7DBB}" = Logitech Vid
"{55D65D27-C0CD-4375-9021-F3D3D024ED90}_is1" = Minecraft PC Gamer Demo version 1.5
"{60F56BEF-4C3D-4303-8901-973F3CD82D15}" = 3Dconnexion Add-In for Solid Edge
"{6117122E-780E-432B-8355-1EBCB5794500}" = 3Dconnexion Add-In for AutoCAD 2007
"{6AFCA4E1-9B78-3640-8F72-A7BF33448200}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7446D38D-DF79-4CFD-ADB8-A935610677CE}" = 3Dconnexion Plug-In for Photoshop CS4
"{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3™
"{7EC19307-7C22-47A8-922B-3FA965291260}" = OpenOffice.org 3.0
"{7F6D7FD9-648D-4DD9-BB6E-3990C675ECA4}" = NVIDIA PhysX
"{834CE00E-77CA-40C4-8642-E11012E20C8E}" = 3Dconnexion Add-In for Inventor
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{87DEF923-BB4C-43C2-B3FC-CC4BB9CA9AE4}" = 3Dconnexion Plug-In for Pro/ENGINEER WF4
"{915726DF-7891-444A-AA03-0DF1D64F561A}" = L.A. Noire
"{92B33946-03EF-47C1-AC9D-C3D5F8FFDE83}" = 3Dconnexion Plug-In for 3ds max 6 - 8
"{97F68F8E-8439-40F0-A8DE-E904C153D923}" = 3Dconnexion Plug-In for NX 5.0
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9C74E573-2FE4-421E-9A8F-90D8C244C2C1}" = 3Dconnexion Plug-In for Maya 8.5
"{9DF0196F-B6B8-4C3A-8790-DE42AA530101}" = SPORE™
"{A06EA9B0-368C-4967-A7E6-8DBC0EACD1F6}" = 3Dconnexion Extension for SketchUp
"{A2E752B0-51F7-47D2-947D-5ED48EFE6EAA}" = 3Dconnexion Plug-In for Maya 2009
"{AB67580-257C-45FF-B8F4-C8C30682091A}_is1" = SIW version 2011.09.16
"{ADC9C942-0D52-4948-B4EB-A97CF194F0AB}" = 3Dconnexion Add-In for AutoCAD 2008
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA 3D Vision Treiber 285.62
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Systemsteuerung 285.62
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Grafiktreiber 285.62
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA 3D Vision Controller-Treiber 285.62
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX-Systemsoftware 9.11.0621
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 1.5.20
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA HD-Audiotreiber 1.2.24.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{B819D5B5-760E-4B2B-99AB-75305A22B920}" = 3Dconnexion Plug-In for Pro/ENGINEER WF2
"{B9021E87-8978-4047-8626-C334D16C33E8}" = 3Dconnexion Add-On for XSI
"{B9B10906-5CB3-4F9D-A810-E4EA1F45DD75}" = 3Dconnexion Add-In for AutoCAD 2010
"{BAFCA6AC-8B37-405B-B57E-C1D45DE70ACC}" = 3Dconnexion 3DxSoftware
"{C1ECB98D-1D38-4DBC-976C-457E6BE6EA2B}" = 3Dconnexion Plug-in for Acrobat 3D
"{C27BC2A2-30DD-4014-B22E-63EB0DB572F9}" = Logitech Webcam Software
"{C993F4C1-27CF-45EA-8AD4-70D8043F27BE}" = 3Dconnexion Plug-In for Pro/ENGINEER WF3
"{CD8CC776-7AFB-42B0-9D27-828533618A64}" = 3Dconnexion Plug-In for 3ds Max 2008
"{D40284D5-858B-4D03-B321-BA29D3E143EB}" = 3Dconnexion Plug-In for Maya 7
"{E370ED57-9B64-427B-8EC3-E8D84709C3C9}" = 3Dconnexion Add-In for AutoCAD 2009
"{E4F7B44D-E5B3-4962-8400-5057287A8F25}" = 3Dconnexion Plug-In for 3ds Max 9
"{EB9DE246-AD08-40F4-A752-25F81C972950}" = 3Dconnexion Plug-In for 3ds Max 2009
"{F750C986-5310-3A5A-95F8-4EC71C8AC01C}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"{F996076C-BED5-45D6-9C10-39BC7B005F77}" = 3Dconnexion Plug-In for Photoshop CS2
"{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio
"6F64DF2E-3B8E-41DB-89E4-75BD3F370CDE_is1" = Cracked Steam
"Adobe Acrobat 5.0" = Adobe Acrobat 5.0
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"AutoHotkey" = AutoHotkey 1.0.48.05
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
"DAEMON Tools Lite" = DAEMON Tools Lite
"FarmingSimulator2011DE_is1" = Landwirtschafts Simulator 2011
"Fraps" = Fraps (remove only)
"LogMeIn Hamachi" = LogMeIn Hamachi
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware Version 1.51.2.1300
"MegaCAD 3D 2010" = MegaCAD 3D 2010
"MegaCAD 3D 2010 - Update " = MegaCAD 3D 2010 - Update 
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"Mozilla Firefox 5.0 (x86 de)" = Mozilla Firefox 5.0 (x86 de)
"NVIDIA StereoUSB Driver" = NVIDIA 3D Vision Controller Driver
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"Opera 11.51.1087" = Opera 11.51
"PacSteamT" = PacSteamT
"Rage_is1" = Rage
"RAR Password Recovery Magic_is1" = RAR Password Recovery Magic v6.1.1.232
"Rockstar Games Social Club" = Rockstar Games Social Club
"Sniper Ghost Warrior_is1" = Sniper Ghost Warrior
"Steam App 42690" = Call of Duty: Modern Warfare 3 - Multiplayer
"SystemRequirementsLab" = System Requirements Lab
"WinRAR archiver" = WinRAR 4.01 (32-Bit)
 
========== Last 10 Event Log Errors ==========
 
[ System Events ]
Error - 25.11.2011 17:47:36 | Computer Name = Tobias-PC | Source = bowser | ID = 8003
Description =
 
Error - 26.11.2011 05:12:02 | Computer Name = Tobias-PC | Source = bowser | ID = 8003
Description =
 
Error - 26.11.2011 05:16:42 | Computer Name = Tobias-PC | Source = bowser | ID = 8003
Description =
 
Error - 26.11.2011 09:54:33 | Computer Name = Tobias-PC | Source = Microsoft-Windows-HAL | ID = 12
Description = Der Speicher wurde beim letzten Leistungsübergang des Systems von
der Plattformfirmware beschädigt. Überprüfen Sie, ob für Ihr System aktualisierte
 Firmware verfügbar ist.
 
Error - 27.11.2011 13:25:42 | Computer Name = Tobias-PC | Source = bowser | ID = 8003
Description =
 
Error - 28.11.2011 13:45:12 | Computer Name = Tobias-PC | Source = bowser | ID = 8003
Description =
 
Error - 28.11.2011 14:02:58 | Computer Name = Tobias-PC | Source = bowser | ID = 8003
Description =
 
Error - 28.11.2011 14:29:52 | Computer Name = Tobias-PC | Source = Microsoft-Windows-HAL | ID = 12
Description = Der Speicher wurde beim letzten Leistungsübergang des Systems von
der Plattformfirmware beschädigt. Überprüfen Sie, ob für Ihr System aktualisierte
 Firmware verfügbar ist.
 
Error - 28.11.2011 15:12:30 | Computer Name = Tobias-PC | Source = bowser | ID = 8003
Description =
 
Error - 29.11.2011 03:13:09 | Computer Name = Tobias-PC | Source = bowser | ID = 8003
Description =
 
 
< End of report >

--- --- ---
[Log]

Tobebias 30.11.2011 15:58

hier noch ein log von OTL der is etwas größer


Alle Zeitangaben in WEZ +1. Es ist jetzt 22:36 Uhr.

Copyright ©2000-2025, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131