Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Ich habe den sch..... 50€ Trojana auch

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

 
Alt 30.12.2011, 15:06   #3
chrischi0908
 
Ich habe den sch..... 50€ Trojana auch - Standard

Ich habe den sch..... 50€ Trojana auch



OTL EXTRAS Logfile:
Code:
ATTFilter
OTL Extras logfile created on: 30.12.2011 14:54:25 - Run 1
OTL by OldTimer - Version 3.2.31.0     Folder = C:\Users\Christian\Downloads
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.19048)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
3,00 Gb Total Physical Memory | 2,11 Gb Available Physical Memory | 70,42% Memory free
7,46 Gb Paging File | 6,75 Gb Available in Paging File | 90,43% Paging File free
Paging file location(s): c:\pagefile.sys 4605 4605 [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 223,12 Gb Total Space | 67,54 Gb Free Space | 30,27% Space Free | Partition Type: NTFS
 
Computer Name: CHRISTIAN-PC | User Name: Christian | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Extra Registry (SafeList) ==========
 
 
========== File Associations ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software)
 
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software)
 
========== Shell Spawning ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software)
https [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
========== Security Center Settings ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 0
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found
 
========== Firewall Settings ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
 
========== Authorized Applications List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe" = [String data over 1000 bytes]
"C:\Nexon\Combat Arms EU\CombatArms.exe" = C:\Nexon\Combat Arms EU\CombatArms.exe:*Enabled:CombatArms.exe
"C:\Nexon\Combat Arms EU\Engine.exe" = C:\Nexon\Combat Arms EU\Engine.exe:*Enabled:Engine.exe
 
 
========== Vista Active Open Ports Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{01B6A4FD-CD29-494F-8A3B-FE98276F0FA1}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{09CB01D0-F066-4020-9734-2FE6A269DF20}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{15226F4D-130E-4088-AA49-D34BDB3A675A}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | 
"{17C1171F-AA99-48D6-A05F-638C6368DC0E}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{39652901-A6C7-455F-8972-BCC7B2CDB32B}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | 
"{400E5998-FD4E-4A7F-82EB-9AA95E910CA2}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework\v4.0.30319\smsvchost.exe | 
"{44BAD001-C7F7-495A-BB59-1D814F7DE2C2}" = rport=10243 | protocol=6 | dir=out | app=system | 
"{4A4B27DB-9E96-4970-B2CF-91BE69C89C27}" = lport=137 | protocol=17 | dir=in | app=system | 
"{56375F7D-D08D-4479-B3B0-46F2F735F0F0}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{60582CD3-BAD1-40BB-8B89-E1DD0F396EE0}" = rport=137 | protocol=17 | dir=out | app=system | 
"{6AD6F345-995B-4F01-857B-C7A707D5CD38}" = rport=138 | protocol=17 | dir=out | app=system | 
"{712C2047-0960-47E3-82C9-305C7C319A06}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{7B1144EA-24D5-4CE5-8ACE-B1685F290135}" = lport=139 | protocol=6 | dir=in | app=system | 
"{7E41BF0E-AD70-4481-BBAF-6F2FD3074906}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{7E621D17-867E-4D61-B82A-2EA893E67EFB}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{80772258-C969-44B6-B08E-79E4F614376D}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | 
"{814C2075-40D6-475B-A338-3995DAF19CEE}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | 
"{8BF5DA5B-DC01-4A3E-8429-3BBB596DCB56}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | 
"{A6DEFAF2-E25B-46F3-AC39-0991490C8571}" = rport=139 | protocol=6 | dir=out | app=system | 
"{B479FC55-F304-412F-8D4D-44BA935E42C8}" = lport=10243 | protocol=6 | dir=in | app=system | 
"{BB2568B7-8416-4D3D-A8CB-6A1E994B0D27}" = rport=445 | protocol=6 | dir=out | app=system | 
"{C58A7BCD-5174-415B-9DEA-26BE08485B68}" = lport=445 | protocol=6 | dir=in | app=system | 
"{CB482A17-87B8-4546-AB03-959077904CD1}" = lport=2869 | protocol=6 | dir=in | app=system | 
"{CF7B98A8-F865-4E25-B425-32491376CD50}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | 
"{CFA384E7-8F5E-432A-BAF6-D27C5D2BAA69}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{D152189A-7C63-46A1-8099-5AAE1E9D1028}" = lport=138 | protocol=17 | dir=in | app=system | 
"{DD6B6B4D-C55C-4DDA-AD83-F42C0B599313}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{E19BD1EE-D9D3-4B02-8D34-D4DE39097532}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{E1B53713-E28B-4DD7-A6D6-1D052F9D62E5}" = lport=2869 | protocol=6 | dir=in | app=system | 
"{EEF9A699-4404-4DCE-A232-6D10EFC7A24E}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | 
 
========== Vista Active Application Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{02493C4E-7D0C-40AC-AE5F-85ED7EBDADDB}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe | 
"{042C11EC-436E-4592-923F-E42EF5E702FA}" = protocol=6 | dir=in | app=c:\program files\opera\opera.exe | 
"{0597942B-F941-4BA0-9C61-F9195377EC0E}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | 
"{07198516-A1F2-4E0A-917D-86ED268604CF}" = protocol=6 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe | 
"{089289BF-48C6-459B-9114-CF8DBB9C7F44}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | 
"{0A5C0289-E018-465A-A12C-39CEDEC193D3}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | 
"{13B1E7F0-EA55-4CF2-8046-658821A632B7}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | 
"{13D5CA3D-FE2B-4DD1-AF0D-5ACCADD04FCB}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{1FD6A420-47A8-4AF0-B2C8-22407C2DEFEC}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | 
"{2886F105-1816-436D-8597-2CCE1A3BAD01}" = protocol=6 | dir=in | app=c:\program files\qfg\dead island deluxe edition\deadislandgame.exe | 
"{38AD35C3-5097-4C83-AA32-D726878316AD}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{413B2A52-2692-417C-BA7C-FACE1C301232}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{510D6B0A-4315-419E-BDA2-5B0695ECE74E}" = protocol=17 | dir=in | app=c:\program files\qfg\dead island deluxe edition\deadislandgame.exe | 
"{58E3665E-B0E7-4460-A1C6-D9EA44189079}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"{61F54463-C166-4E1E-BCA4-5B120420AEEE}" = dir=in | app=c:\program files\windows live\messenger\wlcsdk.exe | 
"{71FE4485-56C0-4278-91A8-BA9E036A62FF}" = dir=in | app=c:\program files\itunes\itunes.exe | 
"{7426C62D-70B7-42F1-89D6-B54AFD2F11CF}" = protocol=6 | dir=in | app=c:\program files\steam\steam.exe | 
"{79CD9E8B-A810-43AC-9DED-7815BE8AF353}" = protocol=17 | dir=in | app=c:\program files\opera\opera.exe | 
"{7A35AC53-85B5-4C7D-82EB-147DBCB1D0AE}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"{8429F67F-BF20-488A-9359-C20E658F7C72}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{8A6C3642-86EF-48FE-8157-7E8C5640B0D5}" = protocol=17 | dir=in | app=c:\program files\bitcomposer games\s.t.a.l.k.e.r. - call of pripyat\bin\dedicated\xrengine.exe | 
"{8B54FB93-ACAF-4DEA-A00B-C30F511388B3}" = protocol=6 | dir=in | app=c:\program files\bitcomposer games\s.t.a.l.k.e.r. - call of pripyat\bin\dedicated\xrengine.exe | 
"{930CF24B-1BB6-41B0-85DF-9B8F16BEE3C2}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | 
"{96218AE1-1C26-4B64-8028-E937D5D8F6B9}" = protocol=17 | dir=in | app=c:\program files\bitcomposer games\s.t.a.l.k.e.r. - call of pripyat\bin\xrengine.exe | 
"{971D4BB6-804A-481B-BF8C-7B07A2DA507F}" = protocol=6 | dir=in | app=c:\program files\bitcomposer games\s.t.a.l.k.e.r. - call of pripyat\bin\xrengine.exe | 
"{9BE6F442-E5B7-4149-87A2-807C33D7561D}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version5\teamviewer.exe | 
"{9BF0C8A2-94A4-43C8-957A-84D052C4B0F4}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | 
"{9EAD6F11-0F8B-4B65-9351-2824164EC3AD}" = protocol=17 | dir=in | app=c:\program files\steam\steam.exe | 
"{A49AD728-3449-44DE-9588-29B6CFA3608F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{A7385884-2D68-4813-8DA0-4A1794FE9D6B}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | 
"{B1D21E53-04AE-480D-A692-9E52EEA4EB48}" = protocol=6 | dir=out | app=system | 
"{B31A9721-A02F-497C-9590-173628558F03}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{BA6C067A-74FB-4EAE-A5CA-4C29ED0DB2BA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{BE7132A0-74D0-4263-9D91-886D2BADD7AA}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | 
"{C5204171-B966-49DA-A189-B6BF3B73CBF6}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | 
"{C6C3A013-9F65-4875-BD50-3CAAD7E83DCB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{CF4BCD5A-23AF-4A41-B2B0-9F5C7B2F0E26}" = dir=in | app=c:\program files\skype\phone\skype.exe | 
"{CFFA3B08-E976-4B0D-AC29-57082B867C6E}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | 
"{D2FFB0FB-C74A-4EF6-BA03-E25BBEF46FCB}" = protocol=17 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe | 
"{FAE9AA1F-CDD2-4B40-A8FE-BB22125EEC71}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version5\teamviewer.exe | 
"TCP Query User{2D077903-0B71-4377-8195-ABDC66058507}C:\program files\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\java.exe | 
"TCP Query User{3BABEB9A-3182-4AE2-BE7E-AE84F24A13A9}C:\program files\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | 
"TCP Query User{8593BD69-E6C5-4221-9C9F-E0ABE9D9714F}C:\program files\valve\hl.exe" = protocol=6 | dir=in | app=c:\program files\valve\hl.exe | 
"TCP Query User{98B85122-C4D3-4DA8-AD36-E8CFBB80BFE7}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | 
"TCP Query User{C74AAE66-1F71-4CCA-BEFD-C94FAF169324}C:\users\christian\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\christian\appdata\local\akamai\netsession_win.exe | 
"TCP Query User{CD7FF70B-B1E2-4ADE-A18E-1C869B2E548A}C:\users\christian\downloads\sro_l8_full_client_downloader.exe" = protocol=6 | dir=in | app=c:\users\christian\downloads\sro_l8_full_client_downloader.exe | 
"TCP Query User{CFF89D77-9A2A-4533-B502-25BB5F602800}C:\games\call of duty modern warfare 2\iw4mp.exe" = protocol=6 | dir=in | app=c:\games\call of duty modern warfare 2\iw4mp.exe | 
"TCP Query User{D0A35C48-71C6-47A2-8A49-B6E287B0FCD6}C:\games\call of duty modern warfare 2\iw4sp.exe" = protocol=6 | dir=in | app=c:\games\call of duty modern warfare 2\iw4sp.exe | 
"UDP Query User{13723F20-D577-4466-8DC8-1A61D018C8C9}C:\program files\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\java.exe | 
"UDP Query User{2F8F3C2E-A804-429B-936A-22A8B4FF2E26}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | 
"UDP Query User{52647172-A3D4-4639-92E8-A94B9B2C20E5}C:\games\call of duty modern warfare 2\iw4sp.exe" = protocol=17 | dir=in | app=c:\games\call of duty modern warfare 2\iw4sp.exe | 
"UDP Query User{AD78B79A-C6C5-4BD2-A90A-F1377D230FAC}C:\program files\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | 
"UDP Query User{B0CF4FA9-851F-43F5-8DF1-95FE902B9FF4}C:\games\call of duty modern warfare 2\iw4mp.exe" = protocol=17 | dir=in | app=c:\games\call of duty modern warfare 2\iw4mp.exe | 
"UDP Query User{BA40F367-86E8-4F78-A952-0DAAC520EEC3}C:\program files\valve\hl.exe" = protocol=17 | dir=in | app=c:\program files\valve\hl.exe | 
"UDP Query User{EDC2F063-48E9-493A-B6DA-CBB70F46C8D0}C:\users\christian\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\christian\appdata\local\akamai\netsession_win.exe | 
"UDP Query User{FA0100B2-7F1B-4BD8-AD88-F5814BF23B47}C:\users\christian\downloads\sro_l8_full_client_downloader.exe" = protocol=17 | dir=in | app=c:\users\christian\downloads\sro_l8_full_client_downloader.exe | 
 
========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{011BF729-0369-EF59-4294-11D022AE3538}" = AMD Catalyst Install Manager
"{0138F525-6C8A-333F-A105-14AE030B9A54}" = Visual C++ 9.0 CRT (x86) WinSXS MSM
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{052FDD78-A6EA-3187-8386-C82F4CA3A929}" = Microsoft .NET Framework 3.5 Language Pack SP1 - deu
"{096E41D2-F5C2-4B1B-8E66-7E62C8919233}_is1" = Winterberg Configurator Version WEM Confi 7.61
"{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended
"{0B8565BA-BAD5-4732-B122-5FD78EFC50A9}" = Native Instruments Service Center
"{0E33EC53-22CE-426C-A88B-2AAC231BAC85}" = Catalyst Control Center - Branding
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_iP3600_series" = Canon iP3600 series Printer Driver
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live-Uploadtool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{26A24AE4-039D-4CA4-87B4-2F83216019FF}" = Java(TM) 6 Update 29
"{2934DCB0-F8EE-11E0-A4A5-B8AC6F97B88E}" = Google Earth Plug-in
"{2AAC4085-DCBF-417B-AEBD-182197839240}" = Native Instruments Traktor
"{300A2961-B2B5-4889-9CB9-5C2A570D08AD}" = Debugging Tools for Windows (x86)
"{343666E2-A059-48AC-AD67-230BF74E2DB2}" = Apple Application Support
"{35FE995E-5A31-D005-0303-8D9FBBD4B67B}" = Catalyst Control Center Graphics Previews Common
"{3912D529-02BC-4CA8-B5ED-0D0C20EB6003}" = ATK Hotkey
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = eReg
"{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX
"{41E654A9-26D0-4EAC-854B-0FA824FFFABB}" = Windows Live Messenger
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4E9DDAA2-0271-4D5E-982B-CDA508E0933C}" = Aion
"{52B97218-98CB-4B8B-9283-D213C85E1AA4}" = Windows Live Anmelde-Assistent
"{59E4543A-D49D-4489-B445-473D763C79AF}" = Microsoft Games for Windows - LIVE Redistributable
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{5FC68772-6D56-41C6-9DF1-24E868198AE6}" = Windows Live Call
"{6746BEC6-EE67-4173-A2FF-D9A21D8FF27D}" = ILLUSION すくぅ~るメイト
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6AFCA4E1-9B78-3640-8F72-A7BF33448200}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{6E32B134-CA8D-49DD-B94C-0DB155CE70B5}" = ccc-Branding
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour
"{7BE15435-2D3E-4B58-867F-9C75BED0208C}" = QuickTime
"{7C54986D-B318-0985-DD1D-C0446895390C}" = ccc-utility
"{7E5FFC5E-5A7F-864A-2E0D-0B234ED7B14F}" = Catalyst Control Center InstallProxy
"{8153ED9A-C94A-426E-9880-5E6775C08B62}" = Apple Mobile Device Support
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{981029E0-7FC9-4CF3-AB39-6F133621921A}" = Skype Toolbars
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A25FF1C0-80B6-4B8B-A551-DC525697A408}" = AMD APP SDK Runtime
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-1031-7B44-A94000000001}" = Adobe Reader 9.4.4 - Deutsch
"{B7DBF6E8-0D17-4BE4-853B-ACD6EFBD4A1F}" = iTunes
"{C025595B-A217-7317-65D8-CE7D304FCD30}" = Catalyst Control Center
"{C4D738F7-996A-4C81-B8FA-C4E26D767E41}" = Windows Live Mail
"{C911A0C2-2236-3164-AA47-F2566C01AE5E}" = Microsoft .NET Framework 4 Extended DEU Language Pack
"{C9FB868B-2086-4EE2-BD4F-BFBA36B131F4}" = NCsoft Launcher
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.2
"{D4904594-2833-4C0C-870E-55FF06FDBE39}" = TS Notifier
"{D5AFB7E8-D81F-F57F-4D43-EC95E49425FE}" = Catalyst Control Center Localization All
"{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update
"{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F750C986-5310-3A5A-95F8-4EC71C8AC01C}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"{F76C09F9-C367-6FB9-4965-A26211D094FC}" = CCC Help English
"{F8FF18EE-264A-43FD-B2F6-5EAD40798C2F}" = Windows Live Essentials
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"3D SexVilla 2 - Everlust (MegaPack)" = 3D SexVilla 2 - Everlust (MegaPack)
"5513-1208-7298-9440" = JDownloader 0.9
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"Aion_03_is1" = Aion_03
"Aion_07_is1" = Aion_07
"Aion_09_is1" = Aion_09
"Avira AntiVir Desktop" = Avira Free Antivirus
"CanonSolutionMenu" = Canon Utilities Solution Menu
"CCleaner" = CCleaner
"Counter-Strike: Source" = Counter-Strike: Source
"DAEMON Tools Toolbar" = DAEMON Tools Toolbar
"DivX Setup.divx.com" = DivX-Setup
"ElsterFormular 12.4.0.7094p" = ElsterFormular
"facemoods" = Facemoods Toolbar
"Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.10.14.1206
"Google Chrome" = Google Chrome
"Microsoft .NET Framework 3.5 Language Pack SP1 - deu" = Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft .NET Framework 4 Extended DEU Language Pack" = Microsoft .NET Framework 4 Extended DEU Language Pack
"Mozilla Firefox 7.0.1 (x86 de)" = Mozilla Firefox 7.0.1 (x86 de)
"Native Instruments Service Center" = Native Instruments Service Center
"Native Instruments Traktor" = Native Instruments Traktor
"NSS" = Norton Security Scan
"Opera 11.60.1185" = Opera 11.60
"phonostar3RadioPlayer_is1" = phonostar-Player Version 3.02.2
"ProtectDisc Driver 11" = ProtectDisc Driver, Version 11
"Silkroad" = Silkroad
"SmartSteam 1.4.1" = SmartSteam 1.4.1
"sp6" = Logitech SetPoint 6.32
"Steam App 300" = Day of Defeat: Source
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"TeamViewer 5" = TeamViewer 5
"Theme Park World" = Theme Park World
"Total Audio Converter_is1" = TotalAudioConverter
"Virtual DJ Pro Full - Atomix Productions" = Virtual DJ Pro Full - Atomix Productions
"VLC media player" = VLC media player 1.0.5
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinRAR archiver" = WinRAR archiver
 
========== HKEY_CURRENT_USER Uninstall List ==========
 
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Akamai" = Akamai NetSession Interface
"Match The Note" = Match The Note
"NCsoft-GuildWars" = Guild Wars
"SimAquarium" = SimAquarium
"Unite Media Player" = Unite Media Player
 
========== Last 10 Event Log Errors ==========
 
[ Application Events ]
Error - 30.12.2011 08:50:12 | Computer Name = Christian-PC | Source = Microsoft-Windows-CAPI2 | ID = 131329
Description = 
 
Error - 30.12.2011 08:50:18 | Computer Name = Christian-PC | Source = WinMgmt | ID = 10
Description = 
 
Error - 30.12.2011 08:53:17 | Computer Name = Christian-PC | Source = Microsoft-Windows-CAPI2 | ID = 131329
Description = 
 
Error - 30.12.2011 08:53:22 | Computer Name = Christian-PC | Source = Microsoft-Windows-CAPI2 | ID = 131329
Description = 
 
Error - 30.12.2011 08:55:24 | Computer Name = Christian-PC | Source = MSMQ | ID = 2170
Description = 
 
Error - 30.12.2011 08:55:24 | Computer Name = Christian-PC | Source = MSMQ | ID = 2170
Description = 
 
Error - 30.12.2011 08:59:41 | Computer Name = Christian-PC | Source = Microsoft-Windows-CAPI2 | ID = 131329
Description = 
 
Error - 30.12.2011 08:59:41 | Computer Name = Christian-PC | Source = Microsoft-Windows-CAPI2 | ID = 131329
Description = 
 
Error - 30.12.2011 08:59:47 | Computer Name = Christian-PC | Source = WinMgmt | ID = 10
Description = 
 
Error - 30.12.2011 09:00:41 | Computer Name = Christian-PC | Source = EventSystem | ID = 4609
Description = 
 
[ System Events ]
Error - 10.03.2010 00:10:13 | Computer Name = Christian-PC | Source = Microsoft-Windows-LanguagePackSetup | ID = 1000
Description = 
 
Error - 10.03.2010 00:10:13 | Computer Name = Christian-PC | Source = Microsoft-Windows-LanguagePackSetup | ID = 1001
Description = 
 
Error - 10.03.2010 13:08:48 | Computer Name = Christian-PC | Source = DCOM | ID = 10005
Description = 
 
Error - 10.03.2010 13:08:48 | Computer Name = Christian-PC | Source = Service Control Manager | ID = 7009
Description = 
 
Error - 10.03.2010 13:08:48 | Computer Name = Christian-PC | Source = Service Control Manager | ID = 7000
Description = 
 
Error - 11.03.2010 12:56:36 | Computer Name = Christian-PC | Source = Service Control Manager | ID = 7009
Description = 
 
Error - 11.03.2010 12:56:36 | Computer Name = Christian-PC | Source = Service Control Manager | ID = 7000
Description = 
 
Error - 15.03.2010 04:51:27 | Computer Name = Christian-PC | Source = HTTP | ID = 15016
Description = 
 
Error - 15.03.2010 04:52:18 | Computer Name = Christian-PC | Source = Service Control Manager | ID = 7026
Description = 
 
Error - 15.03.2010 04:54:07 | Computer Name = Christian-PC | Source = Microsoft-Windows-LanguagePackSetup | ID = 1001
Description = 
 
 
< End of report >
         
--- --- ---
__________________

 

Themen zu Ich habe den sch..... 50€ Trojana auch
eingefangen, gefangen, gen, hoffe, troja, trojana, weiterhelfen




Ähnliche Themen: Ich habe den sch..... 50€ Trojana auch


  1. Auch ich habe den GVU Trojaner
    Plagegeister aller Art und deren Bekämpfung - 05.01.2013 (5)
  2. Habe mir auch den GVU eingefangen :-(
    Plagegeister aller Art und deren Bekämpfung - 18.09.2012 (2)
  3. Habe auch den 50€ trojaner
    Alles rund um Windows - 27.04.2012 (1)
  4. Habe auch den AKM Trojaner
    Log-Analyse und Auswertung - 29.03.2012 (19)
  5. 50 € Virus ich habe ihn auch !
    Plagegeister aller Art und deren Bekämpfung - 28.01.2012 (24)
  6. habe auch den BKA-Trojana
    Plagegeister aller Art und deren Bekämpfung - 24.08.2011 (8)
  7. Habe auch den BKA Trojaner
    Plagegeister aller Art und deren Bekämpfung - 31.07.2011 (24)
  8. Ich habe nun auch ein Plagegeist
    Plagegeister aller Art und deren Bekämpfung - 18.09.2010 (13)
  9. AntiMalwareDoctor - Auch ich habe ihn
    Plagegeister aller Art und deren Bekämpfung - 31.08.2010 (0)
  10. habe warscheinlich viren und /oder trojana on board (laptop)
    Log-Analyse und Auswertung - 05.08.2010 (3)
  11. Auch ich habe den ICQ-Virus...
    Plagegeister aller Art und deren Bekämpfung - 10.06.2010 (15)
  12. ich habe auch mal wieder was
    Log-Analyse und Auswertung - 04.05.2009 (8)
  13. habe Virus, trojana oder so auf meinem rechner
    Plagegeister aller Art und deren Bekämpfung - 24.10.2008 (5)
  14. Ich habe auch Bootprobleme mit XP Pro SP2
    Alles rund um Windows - 07.05.2006 (2)
  15. Habe einen Trojana :(
    Plagegeister aller Art und deren Bekämpfung - 11.05.2005 (9)
  16. Habe auch ´nen HiJacker
    Log-Analyse und Auswertung - 09.03.2005 (1)
  17. Habe mir den Trojana TR/StartPage.qr.DLL eingefangen
    Log-Analyse und Auswertung - 24.02.2005 (1)

Zum Thema Ich habe den sch..... 50€ Trojana auch - OTL EXTRAS Logfile: Code: Alles auswählen Aufklappen ATTFilter OTL Extras logfile created on: 30.12.2011 14:54:25 - Run 1 OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Christian\Downloads Windows Vista Home - Ich habe den sch..... 50€ Trojana auch...
Archiv
Du betrachtest: Ich habe den sch..... 50€ Trojana auch auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.