tombo218 | 19.06.2016 10:38 | Windows 7, 64 bit: Laptop friert immer wieder ein Liste der Anhänge anzeigen (Anzahl: 1) Hallo,
ich habe ein Problem. Ich habe mir vermutlich vor 2-3 Monaten einen Trojaner eingefangen.
Seitdem hängt sich mein Laptop immer wieder in unregelmäßigen Abständen, die immer häufiger werden, auf. Vor Allem bei Benutzung von Firefox friert das Fenster oft ein und ist erst nach einigen Minuten wieder nutzbar. Manchmal Hilft nur die Entahme des Akkus um Ihn "auszuschalten".
Vor einigen Tagen wurde dann noch von meinem Amazon-Mitgliedskonto aus eine Bestellung getätigt (X-Box-Live-Gutschein). Habe umgehend das Lastschriftmandat widerrufen und das Passwort geändert.
Da ich auch online-Banking und Ähnliches betreibe, wär ich über Hilfe überaus dankbar.
Ich habe noch einen zweiten Laptop bei dem ich selbiges Problem vermute. Dieser hier hat jedoch erstmal Priorität.
Am 14.06. habe ich einen Virenscan mit Avast gemacht. Ergebnis: 17 infizierte Dateien.
Nach scheinbar erfolgreicher Bereinigung lief alles wieder wie gewünscht. Die Probleme traten jedoch wieder schnell auf. Ein Bild im Jpeg-Format des Scans ist im Anhang.
Gerade eben habe ich einen Scan mit Malwarebytes gemacht. Ergebnis: 90 erkannte Bedrohungen.
Danke und Grüße
Tombo218
Hier die Textdatei der Ergebnisse von Malwarebytes: Zitat:
Prozesse: 0
(keine bösartigen Elemente erkannt)
Module: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 46
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847}, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\TYPELIB\{EEE6C35E-6118-11DC-9C72-001320C79847}, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\INTERFACE\{EEE6C358-6118-11DC-9C72-001320C79847}, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\INTERFACE\{EEE6C359-6118-11DC-9C72-001320C79847}, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{EEE6C358-6118-11DC-9C72-001320C79847}, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{EEE6C359-6118-11DC-9C72-001320C79847}, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{EEE6C358-6118-11DC-9C72-001320C79847}, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{EEE6C359-6118-11DC-9C72-001320C79847}, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{EEE6C35E-6118-11DC-9C72-001320C79847}, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{EEE6C35E-6118-11DC-9C72-001320C79847}, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\SWEETIE.IEToolbar.1, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\SWEETIE.IEToolbar, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SWEETIE.IEToolbar, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\WOW6432NODE\SWEETIE.IEToolbar, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SWEETIE.IEToolbar.1, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\WOW6432NODE\SWEETIE.IEToolbar.1, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847}, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKU\S-1-5-21-605628276-3131652515-1357449198-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EEE6C35B-6118-11DC-9C72-001320C79847}, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKU\S-1-5-21-605628276-3131652515-1357449198-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EEE6C35B-6118-11DC-9C72-001320C79847}, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKU\S-1-5-18\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EEE6C35B-6118-11DC-9C72-001320C79847}, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKU\S-1-5-21-605628276-3131652515-1357449198-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EEE6C35B-6118-11DC-9C72-001320C79847}, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKU\S-1-5-21-605628276-3131652515-1357449198-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EEE6C35B-6118-11DC-9C72-001320C79847}, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847}, , [fbd2639bd8c1310503d77bf1e31f16ea],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\Toolbar3.SWEETIE.1, , [fbd2639bd8c1310503d77bf1e31f16ea],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\Toolbar3.SWEETIE, , [fbd2639bd8c1310503d77bf1e31f16ea],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Toolbar3.SWEETIE, , [fbd2639bd8c1310503d77bf1e31f16ea],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\WOW6432NODE\Toolbar3.SWEETIE, , [fbd2639bd8c1310503d77bf1e31f16ea],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{EEE6C35C-6118-11DC-9C72-001320C79847}, , [fbd2639bd8c1310503d77bf1e31f16ea],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Toolbar3.SWEETIE.1, , [fbd2639bd8c1310503d77bf1e31f16ea],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\WOW6432NODE\Toolbar3.SWEETIE.1, , [fbd2639bd8c1310503d77bf1e31f16ea],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847}, , [fbd2639bd8c1310503d77bf1e31f16ea],
PUP.Optional.SweetPacks, HKU\S-1-5-18\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EEE6C35C-6118-11DC-9C72-001320C79847}, , [fbd2639bd8c1310503d77bf1e31f16ea],
PUP.Optional.SweetPacks, HKU\S-1-5-21-605628276-3131652515-1357449198-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EEE6C35C-6118-11DC-9C72-001320C79847}, , [fbd2639bd8c1310503d77bf1e31f16ea],
PUP.Optional.SweetPacks, HKU\S-1-5-21-605628276-3131652515-1357449198-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EEE6C35C-6118-11DC-9C72-001320C79847}, , [fbd2639bd8c1310503d77bf1e31f16ea],
PUP.Optional.SweetPacks, HKU\S-1-5-18\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EEE6C35C-6118-11DC-9C72-001320C79847}, , [fbd2639bd8c1310503d77bf1e31f16ea],
PUP.Optional.SweetPacks, HKU\S-1-5-21-605628276-3131652515-1357449198-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EEE6C35C-6118-11DC-9C72-001320C79847}, , [fbd2639bd8c1310503d77bf1e31f16ea],
PUP.Optional.SweetPacks, HKU\S-1-5-21-605628276-3131652515-1357449198-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EEE6C35C-6118-11DC-9C72-001320C79847}, , [fbd2639bd8c1310503d77bf1e31f16ea],
PUP.Optional.SweetIM, HKLM\SOFTWARE\CLASSES\SweetIM_URLSearchHook.ToolbarURLSearchHook, , [10bd98664158c4725c90931bb84b9f61],
PUP.Optional.SweetIM, HKLM\SOFTWARE\CLASSES\SweetIM_URLSearchHook.ToolbarURLSearchHook.1, , [e7e65f9f069352e4a14b1d9147bc29d7],
PUP.Optional.SweetIM, HKLM\SOFTWARE\WOW6432NODE\SweetIM, , [19b4b34bafea47eff1018c2223e0df21],
PUP.Optional.SweetIM, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SweetIM_URLSearchHook.ToolbarURLSearchHook, , [804d8876afeac57142aa05a9669d49b7],
PUP.Optional.SweetIM, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SweetIM_URLSearchHook.ToolbarURLSearchHook.1, , [c607cf2faced54e2be2ec1edc3409070],
PUP.Optional.InstallCore, HKU\S-1-5-21-605628276-3131652515-1357449198-1000\SOFTWARE\InstallCore, , [a429a25c1980f0464b40247a07fcdd23],
PUP.Optional.SweetIM, HKU\S-1-5-21-605628276-3131652515-1357449198-1000\SOFTWARE\SweetIM, , [a82569956a2fd46241ad0ea08b780000],
PUP.Optional.Spigot, HKU\S-1-5-21-605628276-3131652515-1357449198-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{DA88145F-B073-4CBF-89B9-E1AE6C2ACA67}, , [4a83e6181a7f49ed6e39416caf54ce32],
PUP.Optional.Spigot, HKU\S-1-5-21-605628276-3131652515-1357449198-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{DA88145F-B073-4CBF-89B9-E1AE6C2ACA67}, , [d0fde618adecf145ddca3d70986b0bf5],
Registrierungswerte: 4
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{EEE6C35B-6118-11DC-9C72-001320C79847}, , [f5d8827c04959a9c78dbf09ba55da858],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\{EEE6C35B-6118-11DC-9C72-001320C79847}, , [7855b24c8c0d6cca2e25f29959a935cb],
PUP.Optional.Spigot, HKU\S-1-5-21-605628276-3131652515-1357449198-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{DA88145F-B073-4CBF-89B9-E1AE6C2ACA67}|URL, hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&type=302398&p={searchTerms}, , [4a83e6181a7f49ed6e39416caf54ce32]
PUP.Optional.Spigot, HKU\S-1-5-21-605628276-3131652515-1357449198-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{DA88145F-B073-4CBF-89B9-E1AE6C2ACA67}|URL, hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&type=302398&p={searchTerms}, , [d0fde618adecf145ddca3d70986b0bf5]
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Ordner: 10
PUP.Optional.OpenCandy, C:\Users\Admin\AppData\Roaming\OpenCandy, , [438a07f7178286b0a085a9f3d62c30d0],
PUP.Optional.OpenCandy, C:\Users\Admin\AppData\Roaming\OpenCandy\4132FA0150B24C118D6FAF0BEC4A36DC, , [438a07f7178286b0a085a9f3d62c30d0],
PUP.Optional.Spigot, C:\Users\Lukas\AppData\LocalLow\Search Settings, , [0dc03fbfdcbd0b2b8d6a5065b64ce61a],
PUP.Optional.Spigot, C:\Users\Lukas\AppData\LocalLow\Search Settings\kb130, , [0dc03fbfdcbd0b2b8d6a5065b64ce61a],
PUP.Optional.Spigot, C:\Users\Lukas\AppData\LocalLow\Search Settings\kb130\temp, , [0dc03fbfdcbd0b2b8d6a5065b64ce61a],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM, , [9736a6580990053193e68c2a70927d83],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator, , [9736a6580990053193e68c2a70927d83],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\Microsoft.VC90.CRT, , [9736a6580990053193e68c2a70927d83],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\resources, , [9736a6580990053193e68c2a70927d83],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\resources\sqlite, , [9736a6580990053193e68c2a70927d83],
Dateien: 30
PUP.Optional.SweetIM, C:\Users\Admin\AppData\Local\Temp\mgsqlite3.dll, , [cffef10d08910e289aa4611e669e40c0],
PUP.Optional.InstallCore, C:\Users\Admin\AppData\Local\Temp\JDownloaderSetup.exe, , [428b3ac4ff9a53e38e1523aee41d629e],
PUP.Optional.Conduit, C:\Users\Admin\AppData\Local\Temp\nsk6E34.exe, , [d1fc3dc1871248ee1c040d1c9c65a15f],
PUP.Optional.SearchProtect, C:\Users\Admin\AppData\Local\Temp\nsr99F1.exe, , [fcd1c8367c1d42f43c54556116eb1ee2],
PUP.Optional.SearchProtect, C:\Users\Admin\AppData\Local\Temp\nsr9ED2.exe, , [d4f9837ba3f6d264f997575f738e05fb],
PUP.Optional.Somoto, C:\Users\Admin\AppData\Local\Temp\nsuE5C2.tmp, , [be0f7e80fc9d60d6063d7b2130d101ff],
PUP.Optional.JumpyApps, C:\Users\Admin\AppData\Local\Temp\ICReinstall_ZipOpenerSetup.exe, , [75588a7423761a1c3b4d39788a766898],
PUP.Optional.SearchProtect, C:\Users\Admin\AppData\Local\Temp\nsc1DD5.exe, , [29a46896b3e6ef47eea2e7cfbe4303fd],
PUP.Optional.SearchProtect, C:\Users\Admin\AppData\Local\Temp\nsh17DB.exe, , [24a943bb435649ed8e02e6d0956c60a0],
PUP.Optional.AdOffer, C:\Users\Admin\AppData\Local\Temp\bitool.dll, , [c50844ba5c3dd462f943fd311ae8dd23],
PUP.Optional.Conduit, C:\Windows\Temp\nsi1ECA.exe, , [a528d8268d0c10266cb4fb2e2bd654ac],
PUP.Optional.Conduit, C:\Windows\Temp\nsi3BBD.exe, , [b51830ceb7e279bd8a961019cf3207f9],
PUP.Optional.Conduit, C:\Windows\Temp\nsn3F35.exe, , [bf0e31cd0198f64059c7b871be4310f0],
PUP.Optional.Conduit, C:\Windows\Temp\nss5767.exe, , [f8d5807e4a4f38fe48d8181155ac3dc3],
PUP.Optional.SweetIM, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5aoame5m.default\searchplugins\sweetim.xml, , [0dc03dc10297e35329be00aeb74c718f],
PUP.Optional.BundleInstaller, C:\Users\Admin\AppData\Local\Temp\binsis142.xml, , [6b62a45a2a6fa98da4e8a9487b889868],
PUP.Optional.BundleInstaller, C:\Users\Admin\AppData\Local\Temp\binsischeck654.xml, , [05c8b945edac72c4860734bda261ef11],
PUP.Optional.Spigot, C:\Users\Lukas\AppData\LocalLow\Search Settings\kb130\temp\ws-15052.log, , [0dc03fbfdcbd0b2b8d6a5065b64ce61a],
PUP.Optional.Spigot, C:\Users\Lukas\AppData\LocalLow\Search Settings\kb130\temp\ws-15053.log, , [0dc03fbfdcbd0b2b8d6a5065b64ce61a],
PUP.Optional.Spigot, C:\Users\Lukas\AppData\LocalLow\Search Settings\kb130\temp\ws-15054.log, , [0dc03fbfdcbd0b2b8d6a5065b64ce61a],
PUP.Optional.Spigot, C:\Users\Lukas\AppData\LocalLow\Search Settings\kb130\temp\ws-15055.log, , [0dc03fbfdcbd0b2b8d6a5065b64ce61a],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\mgcommon.dll, , [9736a6580990053193e68c2a70927d83],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\mgcommunication.dll, , [9736a6580990053193e68c2a70927d83],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\mgxml_wrapper.dll, , [9736a6580990053193e68c2a70927d83],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\Microsoft.VC90.CRT\Microsoft.VC90.CRT.manifest, , [9736a6580990053193e68c2a70927d83],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\Microsoft.VC90.CRT\msvcm90.dll, , [9736a6580990053193e68c2a70927d83],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\Microsoft.VC90.CRT\msvcp90.dll, , [9736a6580990053193e68c2a70927d83],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\Microsoft.VC90.CRT\msvcr90.dll, , [9736a6580990053193e68c2a70927d83],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\resources\sqlite\mgSqlite3.dll, , [9736a6580990053193e68c2a70927d83],
PUP.Optional.SweetIM, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5aoame5m.default\prefs.js, Gut: (), Schlecht: (user_pref("keyword.URL", "hxxp://search.sweetim.com/search.asp?src=2&q=");), ,[87463cc2f1a8261075314d4044c060a0]
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end)
| |