![]() |
|
Log-Analyse und Auswertung: kann mir da jem was dazu sagen?Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() |
|
![]() | #1 |
![]() ![]() | ![]() Teil zwei adaware #:7 [ccsetmgr.exe] FilePath : C:\Programme\Gemeinsame Dateien\Symantec Shared\ ThreadCreationTime : 19.02.2005 09:51:10 BasePriority : Normal FileSize : 161 KB FileVersion : 103.0.1.26 ProductVersion : 103.0.1.26 Copyright : Copyright (c) 2000-2004 Symantec Corporation. All rights reserved. CompanyName : Symantec Corporation FileDescription : Symantec Settings Manager Service InternalName : ccSetMgr OriginalFilename : ccSetMgr.exe ProductName : Client and Host Security Platform Created on : 24.08.2004 21:35:00 Last accessed : 19.02.2005 10:54:53 Last modified : 24.08.2004 21:35:00 #:8 [sndsrvc.exe] FilePath : C:\Programme\Gemeinsame Dateien\Symantec Shared\ ThreadCreationTime : 19.02.2005 09:51:10 BasePriority : Normal FileSize : 201 KB FileVersion : 5.4.4.17 ProductVersion : 5.4 Copyright : Copyright 2002, 2003, 2004 Symantec Corporation CompanyName : Symantec Corporation FileDescription : Network Driver Service InternalName : SndSrvc OriginalFilename : SndSrvc.exe ProductName : Symantec Security Drivers Created on : 21.01.2005 21:32:12 Last accessed : 19.02.2005 11:17:08 Last modified : 21.01.2005 21:32:12 #:9 [explorer.exe] FilePath : C:\WINDOWS\ ThreadCreationTime : 19.02.2005 09:51:10 BasePriority : Normal FileSize : 1011 KB FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 6.00.2900.2180 CompanyName : Microsoft Corporation FileDescription : Windows Explorer InternalName : explorer OriginalFilename : EXPLORER.EXE ProductName : Betriebssystem Microsoft Created on : 04.08.2004 08:00:00 Last accessed : 19.02.2005 11:26:21 Last modified : 04.08.2004 08:00:00 #:10 [spbbcsvc.exe] FilePath : C:\Programme\Gemeinsame Dateien\Symantec Shared\SPBBC\ ThreadCreationTime : 19.02.2005 09:51:10 BasePriority : Normal FileSize : 169 KB FileVersion : 1,0,1,47 ProductVersion : 1,0,1,47 Copyright : Copyright (c) 2004 Symantec Corporation. All rights reserved. CompanyName : Symantec Corporation FileDescription : SPBBC Service InternalName : SPBBCSvc OriginalFilename : SPBBCSvc.exe ProductName : SPBBC Created on : 21.07.2004 21:24:04 Last accessed : 19.02.2005 11:26:22 Last modified : 21.07.2004 21:24:04 #:11 [ccevtmgr.exe] FilePath : C:\Programme\Gemeinsame Dateien\Symantec Shared\ ThreadCreationTime : 19.02.2005 09:51:10 BasePriority : Normal FileSize : 193 KB FileVersion : 103.0.1.26 ProductVersion : 103.0.1.26 Copyright : Copyright (c) 2000-2004 Symantec Corporation. All rights reserved. CompanyName : Symantec Corporation FileDescription : Symantec Event Manager Service InternalName : ccEvtMgr OriginalFilename : ccEvtMgr.exe ProductName : Client and Host Security Platform Created on : 24.08.2004 21:33:52 Last accessed : 19.02.2005 11:17:06 Last modified : 24.08.2004 21:33:52 #:12 [spoolsv.exe] FilePath : C:\WINDOWS\system32\ ThreadCreationTime : 19.02.2005 09:51:11 BasePriority : Normal FileSize : 56 KB FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 CompanyName : Microsoft Corporation FileDescription : Spooler SubSystem App InternalName : spoolsv.exe OriginalFilename : spoolsv.exe ProductName : Microsoft Created on : 04.08.2004 08:00:00 Last accessed : 19.02.2005 11:26:22 Last modified : 04.08.2004 08:00:00 #:13 [navapsvc.exe] FilePath : C:\Programme\Norton AntiVirus\ ThreadCreationTime : 19.02.2005 09:51:18 BasePriority : Normal FileSize : 172 KB FileVersion : 11.0.1.3 ProductVersion : 11.0.1 Copyright : Norton AntiVirus 2005 for Windows 98/ME/2000/XP Copyright CompanyName : Symantec Corporation FileDescription : Norton AntiVirus Auto-Protect Service InternalName : NAVAPSVC OriginalFilename : NAVAPSVC.EXE ProductName : Norton AntiVirus Created on : 24.08.2004 22:29:58 Last accessed : 19.02.2005 11:17:00 Last modified : 24.08.2004 22:29:58 #:14 [npfmntor.exe] FilePath : C:\Programme\Norton AntiVirus\IWP\ ThreadCreationTime : 19.02.2005 09:51:18 BasePriority : Normal FileSize : 45 KB FileVersion : 11.0.1.3 ProductVersion : 11.0.1 Copyright : Norton AntiVirus 2005 for Windows 98/ME/2000/XP Copyright CompanyName : Symantec Corporation FileDescription : Norton AntiVirus Firewall Install Monitor InternalName : NPFMonitor OriginalFilename : NPFMonitor.EXE ProductName : Norton AntiVirus Created on : 18.08.2004 12:44:56 Last accessed : 19.02.2005 11:26:22 Last modified : 18.08.2004 12:44:56 #:15 [nvsvc32.exe] FilePath : C:\WINDOWS\system32\ ThreadCreationTime : 19.02.2005 09:51:18 BasePriority : Normal FileSize : 72 KB FileVersion : 6.14.10.4716 ProductVersion : 6.14.10.4716 Copyright : (C) NVIDIA Corporation. All rights reserved. CompanyName : NVIDIA Corporation FileDescription : NVIDIA Driver Helper Service, Version 47.16 InternalName : NVSVC OriginalFilename : nvsvc32.exe ProductName : NVIDIA Driver Helper Service, Version 47.16 Created on : 07.04.2004 19:22:00 Last accessed : 19.02.2005 11:26:22 Last modified : 07.04.2004 19:22:00 #:16 [smagent.exe] FilePath : C:\Programme\Analog Devices\SoundMAX\ ThreadCreationTime : 19.02.2005 09:51:21 BasePriority : Normal FileSize : 44 KB FileVersion : 3, 2, 6, 0 ProductVersion : 3, 2, 6, 0 Copyright : Copyright CompanyName : Analog Devices, Inc. FileDescription : SoundMAX service agent component InternalName : SMAgent OriginalFilename : SMAgent.exe ProductName : SoundMAX service agent Created on : 23.11.2004 05:18:10 Last accessed : 19.02.2005 11:26:23 Last modified : 20.09.2002 14:50:10 #:17 [symwsc.exe] FilePath : C:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\ ThreadCreationTime : 19.02.2005 09:51:21 BasePriority : Normal FileSize : 309 KB FileVersion : 2005.1.2.20 ProductVersion : 2005.1 Copyright : Copyright (c) 1997-2004 Symantec Corporation CompanyName : Symantec Corporation FileDescription : Norton Security Center Service InternalName : SymWSC.exe OriginalFilename : SymWSC.exe ProductName : Norton Security Center Created on : 05.08.2004 16:23:10 Last accessed : 19.02.2005 11:26:23 Last modified : 02.11.2004 15:59:50 Geändert von usy (20.02.2005 um 15:53 Uhr) |
![]() | #2 |
![]() ![]() | ![]() teil drei...adware #:18 [apoint.exe]
__________________FilePath : C:\Programme\Apoint2K\ ThreadCreationTime : 19.02.2005 09:51:34 BasePriority : Normal FileSize : 156 KB FileVersion : 5.3.10.177 ProductVersion : 5.3.10.177 Copyright : Copyright (C) 1999-2003 Alps Electric Co., Ltd. CompanyName : Alps Electric Co., Ltd. FileDescription : Alps Pointing-device Driver InternalName : Alps Pointing-device Driver OriginalFilename : Apoint.exe ProductName : Alps Pointing-device Driver Created on : 08.10.2003 03:40:00 Last accessed : 19.02.2005 11:26:23 Last modified : 08.10.2003 03:40:00 #:19 [ituneshelper.exe] FilePath : C:\Programme\iTunes\ ThreadCreationTime : 19.02.2005 09:51:35 BasePriority : Normal FileSize : 280 KB FileVersion : 4.6.0.15 ProductVersion : 4.6.0.15 CompanyName : Apple Computer, Inc. FileDescription : iTunesHelper Module InternalName : iTunesHelper OriginalFilename : iTunesHelper.exe ProductName : iTunes Created on : 08.06.2004 15:19:00 Last accessed : 19.02.2005 11:26:23 Last modified : 08.06.2004 15:19:0 #:20 [qttask.exe] FilePath : C:\Programme\QuickTime\ ThreadCreationTime : 19.02.2005 09:51:35 BasePriority : Normal FileSize : 96 KB FileVersion : 6.5.1 ProductVersion : QuickTime 6.5.1 CompanyName : Apple Computer, Inc. InternalName : QuickTime Task OriginalFilename : QTTask.exe ProductName : QuickTime Created on : 23.11.2004 05:45:58 Last accessed : 19.02.2005 11:26:23 Last modified : 23.11.2004 05:45:58 #:21 [ccapp.exe] FilePath : C:\Programme\Gemeinsame Dateien\Symantec Shared\ ThreadCreationTime : 19.02.2005 09:51:35 BasePriority : Normal FileSize : 57 KB FileVersion : 103.0.1.26 ProductVersion : 103.0.1.26 Copyright : Copyright (c) 2000-2004 Symantec Corporation. All rights reserved. CompanyName : Symantec Corporation FileDescription : Symantec User Session InternalName : ccApp OriginalFilename : ccApp.exe ProductName : Client and Host Security Platform Created on : 24.08.2004 21:33:26 Last accessed : 19.02.2005 11:26:23 Last modified : 24.08.2004 21:33:26 #:22 [ipodservice.exe] FilePath : C:\Programme\iPod\bin\ ThreadCreationTime : 19.02.2005 09:51:36 BasePriority : Normal FileSize : 392 KB FileVersion : 4.6.0.15 ProductVersion : 4.6.0.15 CompanyName : Apple Computer, Inc. FileDescription : iPodService Module InternalName : iPodService OriginalFilename : iPodService.exe ProductName : iTunes Created on : 08.06.2004 15:19:00 Last accessed : 19.02.2005 11:26:23 Last modified : 08.06.2004 15:19:00 #:23 [eabservr.exe] FilePath : C:\Programme\HPQ\Quick Launch Buttons\ ThreadCreationTime : 19.02.2005 09:51:36 BasePriority : Normal FileSize : 284 KB FileVersion : 5, 0, 3, 1 ProductVersion : 5, 0, 3, 1 Copyright : Copyright CompanyName : Hewlett-Packard FileDescription : Quick Launch Buttons InternalName : eabsrvr OriginalFilename : eabsrvr.exe ProductName : Quick Launch Buttons Created on : 23.11.2004 05:49:02 Last accessed : 19.02.2005 10:47:44 Last modified : 19.08.2004 10:50:18 #:24 [agrsmmsg.exe] FilePath : C:\WINDOWS\ ThreadCreationTime : 19.02.2005 09:51:37 BasePriority : Normal FileSize : 86 KB FileVersion : 2.1.41.10 2.1.41.10 06/29/2004 09:06:35 ProductVersion : 2.1.41.10 2.1.41.10 06/29/2004 09:06:35 Copyright : Copyright CompanyName : Agere Systems FileDescription : SoftModem Messaging Applet InternalName : smdmstat.exe OriginalFilename : smdmstat.exe ProductName : Agere SoftModem Messaging Applet Created on : 03.09.2004 12:52:00 Last accessed : 19.02.2005 11:26:23 Last modified : 03.09.2004 12:52:00 #:25 [ctfmon.exe] FilePath : C:\WINDOWS\system32\ ThreadCreationTime : 19.02.2005 09:51:37 BasePriority : Normal FileSize : 15 KB FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 CompanyName : Microsoft Corporation FileDescription : CTF Loader InternalName : CTFMON OriginalFilename : CTFMON.EXE ProductName : Microsoft Created on : 04.08.2004 08:00:00 Last accessed : 19.02.2005 11:26:23 Last modified : 04.08.2004 08:00:00 #:26 [ypager.exe] FilePath : C:\PROGRA~1\Yahoo!\MESSEN~1\ ThreadCreationTime : 19.02.2005 09:51:37 BasePriority : Normal FileSize : 2444 KB FileVersion : 6,0,0,1750 ProductVersion : 6,0,0,1750 Copyright : Copyright 1998-2004 CompanyName : Yahoo! Inc. FileDescription : Yahoo! Messenger InternalName : Yahoo! Messengerr OriginalFilename : YPager.exe ProductName : Yahoo! Messenger Created on : 02.02.2005 13:49:39 Last accessed : 19.02.2005 11:17:06 Last modified : 06.08.2004 14:33:46 #:27 [wlancfg5.exe] FilePath : C:\Programme\NETGEAR MA521 Adapter\ ThreadCreationTime : 19.02.2005 09:51:38 BasePriority : Normal FileSize : 416 KB FileVersion : 1, 2, 0, 4 ProductVersion : 1, 2, 0, 4 Copyright : Copyright (C) 2003 InternalName : ClientCU ProductName : ClientCU Application Created on : 28.11.2003 01:01:20 Last accessed : 19.02.2005 11:17:05 Last modified : 28.11.2003 01:01:20 |
![]() | #3 |
![]() ![]() | ![]() der rest...sorry war so viel #:28 [apntex.exe]
__________________FilePath : C:\Programme\Apoint2K\ ThreadCreationTime : 19.02.2005 09:51:38 BasePriority : Normal FileSize : 44 KB FileVersion : 5.0.1.15 ProductVersion : 5.0.1.15 Copyright : Copyright (C) 1998-2003 Alps Electric Co., Ltd. CompanyName : Alps Electric Co., Ltd. FileDescription : Alps Pointing-device Driver for Windows NT/2000/XP InternalName : Alps Pointing-device Driver for Windows NT/2000/XP OriginalFilename : ApntEx.exe ProductName : Alps Pointing-device Driver for Windows NT/2000/XP Created on : 08.10.2003 03:40:00 Last accessed : 19.02.2005 11:26:23 Last modified : 08.10.2003 03:40:00 #:29 [remind32.exe] FilePath : C:\Programme\Corel\Graphics9\Register\ ThreadCreationTime : 19.02.2005 09:51:39 BasePriority : Normal FileSize : 66 KB FileVersion : 2,5,1,0 ProductVersion : 2,5,1,0 CompanyName : IntelliQuest Communications, Inc. FileDescription : Remind32.exe InternalName : Remind32.exe OriginalFilename : Remind32.exe ProductName : Intelliquest Reminder Application Created on : 04.02.2005 07:59:51 Last accessed : 19.02.2005 11:26:23 Last modified : 23.07.1998 09:51:26 #:30 [msiexec.exe] FilePath : C:\WINDOWS\system32\ ThreadCreationTime : 19.02.2005 11:23:18 BasePriority : Normal FileSize : 75 KB FileVersion : 3.0.3790.2180 ProductVersion : 3.0.3790.2180 CompanyName : Microsoft Corporation FileDescription : Windows InternalName : msiexec OriginalFilename : msiexec.exe ProductName : Windows Installer - Unicode Created on : 04.08.2004 08:00:00 Last accessed : 19.02.2005 11:23:17 Last modified : 04.08.2004 08:00:00 #:31 [ad-aware.exe] FilePath : C:\PROGRA~1\Lavasoft\AD-AWA~1\ ThreadCreationTime : 19.02.2005 11:26:15 BasePriority : Normal FileSize : 668 KB FileVersion : 6.0.1.181 ProductVersion : 6.0.0.0 Copyright : Copyright CompanyName : Lavasoft Sweden FileDescription : Ad-aware 6 core application InternalName : Ad-aware.exe OriginalFilename : Ad-aware.exe ProductName : Lavasoft Ad-aware Plus Created on : 04.02.2005 11:24:44 Last accessed : 19.02.2005 11:26:15 Last modified : 12.07.2003 20:00:20 Memory scan result : ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯ New objects : 0 Objects found so far: 0 Started registry scan ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯ Registry scan result : ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯ New objects : 0 Objects found so far: 0 Started deep registry scan ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯ Deep registry scan result : ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯ New objects : 0 Objects found so far: 0 ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯ Tracking Cookie Object recognized! Type : File Data : meinname@2o7[1].txt Object : C:\Dokumente und Einstellungen\MeinName\Cookies\ Created on : 19.02.2005 10:03:06 Last accessed : 19.02.2005 11:27:41 Last modified : 19.02.2005 10:10:26 Tracking Cookie Object recognized! Type : File Data : mein name@as1.falkag[1].txt Object : C:\Dokumente und Einstellungen\Mein Name\Cookies\ Created on : 19.02.2005 09:33:18 Last accessed : 19.02.2005 11:27:41 Last modified : 19.02.2005 09:33:18 ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯ Deep scanning and examining files (C ![]() ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯ Performing conditional scans.. ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯ Conditional scan result: ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯ New objects : 0 Objects found so far: 2 12:28:09 Scan complete Summary of this scan ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯ Total scanning time :00:01:47:844 Objects scanned :47606 Objects identified :2 Objects ignored :0 New objects :2 Geändert von usy (20.02.2005 um 15:52 Uhr) |
![]() | #4 | |
Administrator, a.D. ![]() ![]() ![]() ![]() | ![]() kann mir da jem was dazu sagen? Editiere schnellstmöglich deinen Realname am Ende des Ad-Aware Logs. ![]() Zitat:
http://www.www-kurs.de/cookies.htm |
![]() | #5 |
![]() ![]() | ![]() Oups...kannst mir dazu noch was sagen? realname??? was wo? kenn mich nun gar net mehr aus. Hab ich jetzt nen wurm oder nicht? was hat es mit diesem realnamen auf sich ?? sorry wenn ich blöd frage..kenn mich aber null aus mit solchen sachen danke usy |
![]() | #6 |
![]() ![]() | ![]() kann mir da jem was dazu sagen? hi nochmal.... abgesehen von dem realnamen ändern...wo ich nicht weiss wo das geht hab ich im ordner cookies eine Datei die nennt sich INDEX...ist eine DAT datei...die geht nicht zu löschen! danke euch und warte auf antwort ![]() usy |
![]() | #7 |
![]() ![]() | ![]() editieren...okay weiss nun ... danke und was heisst das nun mit Tracking Cookie Object recognized ??? was bedeutet das? danke usy |
![]() |
Themen zu kann mir da jem was dazu sagen? |
.com, .inf, adobe, adware, antivirus, bho, computer, confused, drivers, ebay, explorer, feedback, helfen, hijackthis, homepage, immer wieder, infizierte, internet, internet explorer, launch, monitor, netgear, nvcpl.dll, rundll, security, security center, settings manager, software, sun java, symantec, system, temp, trojaner, windows, windows messenger, windows xp, wmi |