![]() |
| |||||||
Plagegeister aller Art und deren Bekämpfung: Trojan.Agent/Gen-FrauderWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
| | #1 |
| | Trojan.Agent/Gen-Frauder Hallo, SuperAntiSpyware hat auf meinem PC einen Trojaner gefunden. Wie kann ich ihn wieder entfernen? Offensichtlich ist der Trojaner ein "Geschenk". Er befindet sich auf dem Surf-Stick, den ich von 1&1 erhalten habe!!! ![]() Die Log-Datei: Code:
ATTFilter SUPERAntiSpyware Scan Log
hxxp://www.superantispyware.com
Generated 11/14/2013 at 03:12 PM
Application Version : 5.6.1042
Core Rules Database Version : 10889
Trace Rules Database Version: 8701
Scan type : Complete Scan
Total Scan Time : 01:00:33
Operating System Information
Windows 7 Starter 32-bit (Build 6.01.7600)
UAC Off - Limited User
Memory items scanned : 602
Memory threats detected : 0
Registry items scanned : 40495
Registry threats detected : 0
File items scanned : 48177
File threats detected : 128
Adware.Tracking Cookie
C:\Users\Nicole\AppData\Roaming\Microsoft\Windows\Cookies\JNFDLKB6.txt [ /c.atdmt.com ]
C:\Users\Nicole\AppData\Roaming\Microsoft\Windows\Cookies\LH28OHVL.txt [ /atdmt.com ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\H4QX0C00.txt [ Cookie:n@2o7.net/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\NET01B7G.txt [ Cookie:n@tradedoubler.com/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\U3SDN63R.txt [ Cookie:n@track.adform.net/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\0OBTN1J2.txt [ Cookie:n@zanox-affiliate.de/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\n@tracking.quisma[2].txt [ Cookie:n@tracking.quisma.com/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\JRT9FQ75.txt [ Cookie:n@invitemedia.com/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\n@adtech[1].txt [ Cookie:n@adtech.de/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\3GRJCV47.txt [ Cookie:n@ad.zanox.com/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\1B13Y1YO.txt [ Cookie:n@banner.t-online.de/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\n@www.etracker[2].txt [ Cookie:n@www.etracker.de/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\D0799FRE.txt [ Cookie:n@apmebf.com/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\1ZBS1755.txt [ Cookie:n@adform.net/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\4U2ZTUVV.txt [ Cookie:n@revsci.net/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\WEOERXIU.txt [ Cookie:n@tracking.mlsat02.de/tmobile/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\3EJQHPLM.txt [ Cookie:n@ad3.adfarm1.adition.com/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\33TYISFP.txt [ Cookie:n@ad.dyntracker.de/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\EDZSAC6N.txt [ Cookie:n@doubleclick.net/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\9XZCX6MI.txt [ Cookie:n@zanox.com/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\8DU7Y7EG.txt [ Cookie:n@www.usenext.de/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\2WDOHIKF.txt [ Cookie:n@webmasterplan.com/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\16JE467W.txt [ Cookie:n@adfarm1.adition.com/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\RXAQX8LC.txt [ Cookie:n@adx2.chip.de/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\n@2o7[1].txt [ Cookie:n@2o7.net/ ]
C:\USERS\N\AppData\Roaming\Microsoft\Windows\Cookies\Low\IURM75ZW.txt [ Cookie:n@de.sitestat.com/idgcom-de/pcwelt/ ]
C:\USERS\N\Cookies\H4QX0C00.txt [ Cookie:n@2o7.net/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@tracking.statravel[2].txt [ Cookie:nicole@tracking.statravel.de/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@www.googleadservices[6].txt [ Cookie:nicole@www.googleadservices.com/pagead/conversion/1045724871/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\OAJR7P0M.txt [ Cookie:nicole@doubleclick.net/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@xiti[1].txt [ Cookie:nicole@xiti.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@media.antenne-bayern[1].txt [ Cookie:nicole@media.antenne-bayern.de/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@tracking.hrs[1].txt [ Cookie:nicole@tracking.hrs.de/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\O9HZOZB6.txt [ Cookie:nicole@serving-sys.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@ad.adserver01[1].txt [ Cookie:nicole@ad.adserver01.de/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@ad4.adfarm1.adition[1].txt [ Cookie:nicole@ad4.adfarm1.adition.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@fl01.ct2.comclick[2].txt [ Cookie:nicole@fl01.ct2.comclick.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@adbrite[1].txt [ Cookie:nicole@adbrite.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@reztrack[2].txt [ Cookie:nicole@reztrack.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@ad3.adfarm1.adition[2].txt [ Cookie:nicole@ad3.adfarm1.adition.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@statcounter[2].txt [ Cookie:nicole@statcounter.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@www.burstnet[1].txt [ Cookie:nicole@www.burstnet.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@traffictrack[1].txt [ Cookie:nicole@traffictrack.de/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@stat.onestat[2].txt [ Cookie:nicole@stat.onestat.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@mediaplex[1].txt [ Cookie:nicole@mediaplex.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@zanox[2].txt [ Cookie:nicole@zanox.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@www.googleadservices[9].txt [ Cookie:nicole@www.googleadservices.com/pagead/conversion/1065350428/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@adtech[1].txt [ Cookie:nicole@adtech.de/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@questionmarket[2].txt [ Cookie:nicole@questionmarket.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@delivery.ads.coupling-media[1].txt [ Cookie:nicole@delivery.ads.coupling-media.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@himedia.individuad[1].txt [ Cookie:nicole@himedia.individuad.net/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@ad.yieldmanager[1].txt [ Cookie:nicole@ad.yieldmanager.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@www.googleadservices[1].txt [ Cookie:nicole@www.googleadservices.com/pagead/conversion/1071787201/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@ad2.adfarm1.adition[1].txt [ Cookie:nicole@ad2.adfarm1.adition.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@secmedia[1].txt [ Cookie:nicole@secmedia.de/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@atdmt[1].txt [ Cookie:nicole@atdmt.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@content.yieldmanager[3].txt [ Cookie:nicole@content.yieldmanager.com/ak/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@tradedoubler[2].txt [ Cookie:nicole@tradedoubler.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\5P94I198.txt [ Cookie:nicole@adfarm1.adition.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@content.yieldmanager[2].txt [ Cookie:nicole@content.yieldmanager.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@adxpose[1].txt [ Cookie:nicole@adxpose.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@bizrate[1].txt [ Cookie:nicole@bizrate.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@im.banner.t-online[2].txt [ Cookie:nicole@im.banner.t-online.de/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@invitemedia[1].txt [ Cookie:nicole@invitemedia.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@www.googleadservices[5].txt [ Cookie:nicole@www.googleadservices.com/pagead/conversion/1041296356/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@yieldmanager[1].txt [ Cookie:nicole@yieldmanager.net/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@www.etracker[1].txt [ Cookie:nicole@www.etracker.de/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@legolas-media[2].txt [ Cookie:nicole@legolas-media.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@zanox-affiliate[1].txt [ Cookie:nicole@zanox-affiliate.de/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@ww251.smartadserver[2].txt [ Cookie:nicole@ww251.smartadserver.com/ ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@imrworldwide[2].txt [ Cookie:nicole@imrworldwide.com/cgi-bin ]
C:\USERS\NICOLE\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@adserver[1].txt [ Cookie:nicole@adserver.gs/ ]
C:\USERS\NICOLE\Cookies\JNFDLKB6.txt [ Cookie:nicole@c.atdmt.com/ ]
C:\USERS\NICOLE\Cookies\LH28OHVL.txt [ Cookie:nicole@atdmt.com/ ]
C:\Users\Nicole\AppData\Roaming\Microsoft\Windows\Cookies\Low\J8EAECS3.txt [ /ad1.adfarm1.adition.com ]
C:\Users\Nicole\AppData\Roaming\Microsoft\Windows\Cookies\Low\W1BUMLH7.txt [ /revsci.net ]
C:\Users\Nicole\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@fastclick[2].txt [ /fastclick.net ]
C:\Users\Nicole\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@lego.112.2o7[1].txt [ /lego.112.2o7.net ]
C:\Users\Nicole\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@statse.webtrendslive[1].txt [ /statse.webtrendslive.com ]
C:\Users\Nicole\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@www.googleadservices[8].txt [ /www.googleadservices.com ]
C:\Users\Nicole\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@adviva[1].txt [ /adviva.net ]
C:\Users\Nicole\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@apmebf[2].txt [ /apmebf.com ]
C:\Users\Nicole\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@specificclick[1].txt [ /specificclick.net ]
C:\Users\Nicole\AppData\Roaming\Microsoft\Windows\Cookies\Low\UOYNCS2F.txt [ /webmasterplan.com ]
C:\Users\Nicole\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@eas.apm.emediate[1].txt [ /eas.apm.emediate.eu ]
C:\Users\Nicole\AppData\Roaming\Microsoft\Windows\Cookies\Low\nicole@ads.undertone[2].txt [ /ads.undertone.com ]
.doubleclick.net [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.xiti.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad3.adfarm1.adition.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
in.getclicky.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adfarm1.adition.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
adfarm1.adition.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adfarm1.adition.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.philips.112.2o7.net [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
de.sitestat.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
stats.crsend.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
stats.crsend.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
stats.crsend.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
accounts.youtube.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
accounts.google.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
accounts.google.com [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.vinsight.de [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.etracker.de [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.etracker.de [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.etracker.de [ C:\USERS\N\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
C:\USERS\N\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\N@AD-MNGT[2].TXT [ /AD-MNGT ]
C:\USERS\N\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\N@UNITYMEDIA[1].TXT [ /UNITYMEDIA ]
C:\USERS\NICOLE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\NICOLE@STAT.DEALTIME[2].TXT [ /STAT.DEALTIME ]
de.sitestat.com [ C:\USERS\NICOLE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TJUFV9U6.DEFAULT\COOKIES.SQLITE ]
de.sitestat.com [ C:\USERS\NICOLE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TJUFV9U6.DEFAULT\COOKIES.SQLITE ]
accounts.google.com [ C:\USERS\NICOLE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TJUFV9U6.DEFAULT\COOKIES.SQLITE ]
.vinsight.de [ C:\USERS\NICOLE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TJUFV9U6.DEFAULT\COOKIES.SQLITE ]
.2o7.net [ C:\USERS\NICOLE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TJUFV9U6.DEFAULT\COOKIES.SQLITE ]
ec-track.com [ C:\USERS\NICOLE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TJUFV9U6.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\USERS\NICOLE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TJUFV9U6.DEFAULT\COOKIES.SQLITE ]
.imrworldwide.com [ C:\USERS\NICOLE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TJUFV9U6.DEFAULT\COOKIES.SQLITE ]
Trojan.Agent/Gen-Frauder
C:\PROGRAM FILES\1&1 SURF-STICK\COMPONENT\BIUSBSOUND.DLL
|
| Themen zu Trojan.Agent/Gen-Frauder |
| adtech, appdata, befindet, build, code, cookies, counter, default, detected, entferne, entfernen, erhalte, firefox, limited, log-datei, mediaplex, microsoft, mozilla, roaming, scan, superantispyware, system, traffic, troja, trojan.agent/gen-frauder, trojaner, version |