![]() |
|
Plagegeister aller Art und deren Bekämpfung: Nach start von Arma 3 100% CPU auslastung.Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() | #1 |
![]() ![]() | ![]() Nach start von Arma 3 100% CPU auslastung. Guten Tag Sobald ich das Spiel Arma 3 starte und auf Multiplayer klicke steigt die CPU auslastung extrem auf 100% und ein Kollege sagte mir das dies Wahrscheinlich an einem Virus liegt ich führe soeben einen Scan mit Kaspersky und mit Malewarebyte durch sobald diese fertig ist werde ich die ergebnisse beider Programme hier Posten. Mein System: Grafikkarte: GTX 780ti Prozessor: I7 4770k Arbeitsspeicher: 8GB Festplatten: 120 GB Samsung SSD / 2TB HDD Ich möchte hier noch anhängen das dies nur eine vermutung auf einen Virus ist es kann natürlich auch durch etwas anderes ausgelöst werden. (Ich habe auch das spiel 2 mal neuinstalliert) LG Malwarebytes Anti-Malware Malwarebytes | Free Anti-Malware & Internet Security Software Scan Date: 11.09.2014 Scan Time: 18:10:32 Logfile: Malewarebyte.txt Administrator: Yes Version: 2.00.2.1012 Malware Database: v2014.09.11.05 Rootkit Database: v2014.09.10.02 License: Free Malware Protection: Disabled Malicious Website Protection: Disabled Self-protection: Disabled OS: Windows 7 Service Pack 1 CPU: x64 File System: NTFS User: araton7811 Scan Type: Threat Scan Result: Completed Objects Scanned: 308563 Time Elapsed: 8 min, 43 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Disabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registry Keys: 10 PUP.Optional.DynConIE.A, HKLM\SOFTWARE\CLASSES\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}, , [3a271dcfa4d7d75fd7d4840218eaac54], PUP.Optional.DynConIE.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}, , [3a271dcfa4d7d75fd7d4840218eaac54], PUP.Optional.Snapdo.T, HKU\S-1-5-21-5743557-287084541-2253973346-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{006ee092-9658-4fd6-bd8e-a21a348e59f5}, , [223fa745df9c94a282f86e50e0224ab6], PUP.Optional.Snapdo.T, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{006EE092-9658-4FD6-BD8E-A21A348E59F5}, , [223fa745df9c94a282f86e50e0224ab6], PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\supWPM, , [a0c15a9296e51b1b3351e01e23dfb34d], PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB, , [f26f3bb11a615fd7b0d3bf3f29d9ef11], PUP.Optional.MultiIE.A, HKU\S-1-5-21-5743557-287084541-2253973346-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\DynConIE, , [cb966b8115665fd727fd7ee4c53fc040], PUP.Optional.Ciuvo.A, HKU\S-1-5-21-5743557-287084541-2253973346-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\DOMSTORAGE\ciuvo.com, , [540de6063d3e56e08a2f020821e227d9], PUP.Optional.SuperFish.A, HKU\S-1-5-21-5743557-287084541-2253973346-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\DOMSTORAGE\superfish.com, , [bda4b53714671521dadecd3d897a12ee], PUP.Optional.Linkury.A, HKU\S-1-5-21-5743557-287084541-2253973346-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SMARTBAR, , [fc659e4e2556da5c480523ddb74c6799], Registry Values: 5 PUP.Optional.SmartBar, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{ae07101b-46d4-4a98-af68-0333ea26e113}, Smartbar, , [1a47a9435c1f1b1bdf30f90442c0966a] PUP.Optional.SmartBar, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{ae07101b-46d4-4a98-af68-0333ea26e113}, Smartbar, , [f071ab4165164ee8a06fd32a57ab2bd5] PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB|ptid, tugs, , [f26f3bb11a615fd7b0d3bf3f29d9ef11] PUP.Optional.Snapdo.T, HKU\S-1-5-21-5743557-287084541-2253973346-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {006ee092-9658-4fd6-bd8e-a21a348e59f5}, , [83de529accafd66000e3040261a219e7] PUP.Optional.Linkury.A, HKU\S-1-5-21-5743557-287084541-2253973346-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SMARTBAR|publisher, YahooTR, , [fc659e4e2556da5c480523ddb74c6799] Registry Data: 8 PUP.Optional.HelperBar.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|Default, hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uwmcoMATcBnedvee5vdJoeSZ1-4-gqkCqvvsgD6z8JWametzZOiVcf-yviy5HmqBCDFL4ZFXrpo-ben0NHrPGryRDy1osyYhYkfwkfhOS0-FB7wlarK0N5J_B0ISH3FjXp5kZxUQ47k55aHbZJtpfeFF6Xaq1Q9evbFunAR0Nhsv7-fgisZMo,&q={searchTerms}, Good: (Google), Bad: (hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uwmcoMATcBnedvee5vdJoeSZ1-4-gqkCqvvsgD6z8JWametzZOiVcf-yviy5HmqBCDFL4ZFXrpo-ben0NHrPGryRDy1osyYhYkfwkfhOS0-FB7wlarK0N5J_B0ISH3FjXp5kZxUQ47k55aHbZJtpfeFF6Xaq1Q9evbFunAR0Nhsv7-fgisZMo,&q={searchTerms}),,[f8691ece56252e08d8195f9010f45ea2] PUP.Optional.HelperBar.A, HKU\S-1-5-21-5743557-287084541-2253973346-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uwmcoMATcBnedvee5vdJoeSZ1-4-gqkCqvvsgD6z8JWametzZOiVcf-yviy5HmqBCDFL4ZFXrpo-ben0NHrPGryRDy1osyYhYkfwkfhOS0-FB7wlarK0N5J_B0ISH3FjXp5kZxUQ47k55aHbZJtpfeFF6Xaq1Q9evbFu4uB3Wv7kvgwnm8h4Q,&q={searchTerms}, Good: (Google), Bad: (hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uwmcoMATcBnedvee5vdJoeSZ1-4-gqkCqvvsgD6z8JWametzZOiVcf-yviy5HmqBCDFL4ZFXrpo-ben0NHrPGryRDy1osyYhYkfwkfhOS0-FB7wlarK0N5J_B0ISH3FjXp5kZxUQ47k55aHbZJtpfeFF6Xaq1Q9evbFu4uB3Wv7kvgwnm8h4Q,&q={searchTerms}),,[6af78f5df5860234559fcc23c4408a76] PUP.Optional.WebsSearches.A, HKU\S-1-5-21-5743557-287084541-2253973346-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, WebSearches, Good: (Google), Bad: (WebSearches),,[352c40ac37440630148e4ea1e61e37c9] PUP.Optional.HelperBar.A, HKU\S-1-5-21-5743557-287084541-2253973346-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, Search,, Good: (Google), Bad: (Search,),,[90d1608c433825117085a14e9e669769] PUP.Optional.HelperBar.A, HKU\S-1-5-21-5743557-287084541-2253973346-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Bar, hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uwmcoMATcBnedvee5vdJoeSZ1-4-gqkCqvvsgD6z8JWametzZOiVcf-yviy5HmqBCDFL4ZFXrpo-ben0NHrPGryRDy1osyYhYkfwkfhOS0-FB7wlarK0N5J_B0ISH3FjXp5kZxUQ47k55aHbZJtpfeFF6Xaq1Q9evbFu4uB3Wv7kvgwnm8h4Q,&q={searchTerms}, Good: (Google), Bad: (hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uwmcoMATcBnedvee5vdJoeSZ1-4-gqkCqvvsgD6z8JWametzZOiVcf-yviy5HmqBCDFL4ZFXrpo-ben0NHrPGryRDy1osyYhYkfwkfhOS0-FB7wlarK0N5J_B0ISH3FjXp5kZxUQ47k55aHbZJtpfeFF6Xaq1Q9evbFu4uB3Wv7kvgwnm8h4Q,&q={searchTerms}),,[bda4f6f69fdced4922d14ba426de6c94] PUP.Optional.HelperBar.A, HKU\S-1-5-21-5743557-287084541-2253973346-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|Default_Search_URL, hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uwmcoMATcBnedvee5vdJoeSZ1-4-gqkCqvvsgD6z8JWametzZOiVcf-yviy5HmqBCDFL4ZFXrpo-ben0NHrPGryRDy1osyYhYkfwkfhOS0-FB7wlarK0N5J_B0ISH3FjXp5kZxUQ47k55aHbZJtpfeFF6Xaq1Q9evbFu4uB3Wv7kvgwnm8h4Q,&q={searchTerms}, Good: (Google), Bad: (hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uwmcoMATcBnedvee5vdJoeSZ1-4-gqkCqvvsgD6z8JWametzZOiVcf-yviy5HmqBCDFL4ZFXrpo-ben0NHrPGryRDy1osyYhYkfwkfhOS0-FB7wlarK0N5J_B0ISH3FjXp5kZxUQ47k55aHbZJtpfeFF6Xaq1Q9evbFu4uB3Wv7kvgwnm8h4Q,&q={searchTerms}),,[0061717b90eb91a538beda1552b2fc04] PUP.Optional.HelperBar.A, HKU\S-1-5-21-5743557-287084541-2253973346-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|SearchAssistant, hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uwmcoMATcBnedvee5vdJoeSZ1-4-gqkCqvvsgD6z8JWametzZOiVcf-yviy5HmqBCDFL4ZFXrpo-ben0NHrPGryRDy1osyYhYkfwkfhOS0-FB7wlarK0N5J_B0ISH3FjXp5kZxUQ47k55aHbZJtpfeFF6Xaq1Q9evbFu4uB3Wv7kvgwnm8h4Q,&q={searchTerms}, Good: (Google), Bad: (hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uwmcoMATcBnedvee5vdJoeSZ1-4-gqkCqvvsgD6z8JWametzZOiVcf-yviy5HmqBCDFL4ZFXrpo-ben0NHrPGryRDy1osyYhYkfwkfhOS0-FB7wlarK0N5J_B0ISH3FjXp5kZxUQ47k55aHbZJtpfeFF6Xaq1Q9evbFu4uB3Wv7kvgwnm8h4Q,&q={searchTerms}),,[3f224f9d364520166d8adf109d6746ba] PUP.Optional.HelperBar.A, HKU\S-1-5-21-5743557-287084541-2253973346-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|Default, hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uwmcoMATcBnedvee5vdJoeSZ1-4-gqkCqvvsgD6z8JWametzZOiVcf-yviy5HmqBCDFL4ZFXrpo-ben0NHrPGryRDy1osyYhYkfwkfhOS0-FB7wlarK0N5J_B0ISH3FjXp5kZxUQ47k55aHbZJtpfeFF6Xaq1Q9evbFu4uB3Wv7kvgwnm8h4Q,&q={searchTerms}, Good: (Google), Bad: (hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uwmcoMATcBnedvee5vdJoeSZ1-4-gqkCqvvsgD6z8JWametzZOiVcf-yviy5HmqBCDFL4ZFXrpo-ben0NHrPGryRDy1osyYhYkfwkfhOS0-FB7wlarK0N5J_B0ISH3FjXp5kZxUQ47k55aHbZJtpfeFF6Xaq1Q9evbFu4uB3Wv7kvgwnm8h4Q,&q={searchTerms}),,[abb67775592249ed3ab89b54f90ba55b] Folders: 1 PUP.Optional.SupTab.A, C:\Users\araton7811\AppData\Roaming\SupTab, , [2a3716d6e794b1854669628ac83ac739], Files: 8 PUP.Optional.OpenCandy, C:\Users\araton7811\Downloads\free-mouse-auto-clicker-3-4-1-72651-de-setup.exe, , [75ecf3f9ec8f3600c46c2cf35fa628d8], PUP.Optional.SmartBar, C:\Windows\Installer\MSID7A9.tmp, , [7fe274783348f93d3f0f56d8738dd030], PUP.Optional.SmartBar, C:\Windows\Installer\MSI29A.tmp-\Smartbar.Installer.CustomActions.dll, , [273a727a79023ef8400e8f9f31cf7789], PUP.Optional.SmartBar, C:\Windows\Installer\MSI607C.tmp-\Smartbar.Installer.CustomActions.dll, , [a4bd6d7f5f1c2214262852dca0608f71], PUP.Optional.Superfish.A, C:\Users\araton7811\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage, , [5c05f5f792e9fc3a6cfb9383748fd52b], PUP.Optional.Superfish.A, C:\Users\araton7811\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal, , [a6bbc4281566aa8ca9be75a12ed5c13f], PUP.Optional.Websteroids.A, C:\Users\araton7811\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_d.websteroidsapp.com_0.localstorage, , [99c88963572441f58462e739f01324dc], PUP.Optional.Websteroids.A, C:\Users\araton7811\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_d.websteroidsapp.com_0.localstorage-journal, , [b1b02ac2c9b22016f9ed7aa65fa4867a], Physical Sectors: 0 (No malicious items detected) (end) |