Guten Morgen,
du hast die NUB gelesen?
Zitat:
Zitat von baer 5 Hallo,
auch bei mir hat sich dieser Trojaner eingeschlichen. Ich habe ihn nun gelöscht, aber reicht das???
Vielen Dank schon mal für die Hilfe!!!! |
Wo hat sich der Trojaner eingeschlichen? Wie heißt Dein netter Besucher?
In der Regel reicht es nicht, ihn zu löschen. Damit hast du zwar den grund der Infektion entfernt aber nicht die "Nachwehen".
Zitat:
Zitat von baer 5 Logfile of HijackThis v1.99.1
Scan saved at 06:16:36, on 04.07.2006
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000) |
Dein System ist veraltet. Völlig ungepatcht. Sicherheitslücken in Hülle und Fülle. Da kann sich einschleichen was will ohne das du es merkst!
Lasse mal bitte folgende Datei bei Jotti und Virustotal ( siehe SIG ) auswerten und poste das Ergebnis. Muss nichts böses sein, nur bin ich mir nicht ganz sicher da es unterschiedliche Aussagen über die Dati gibt!
Zitat:
Zitat von baer 5 D:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\953a9cb86706ade89c5e0f457bab54 e9\update\update. exe Mit einem Antivirenscanner prüfen |
Sollte ne Umleitung sein oder ist Dir die IP bekannt?
Zitat:
Zitat von baer 5 O17 - HKLM\System\CCS\Services\Tcpip\..\{8854D534-1289-4F99-A187-112081D4F15A}: NameServer = 195.50.140.252 195.50.140.114 |
Folgendes kann alles gefixt werden.
Zitat:
Zitat von baer 5 O18 - Protocol: bw+0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw+0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw-0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw-0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw00 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} -
D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw00s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw10 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw10s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw20 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw20s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw30 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw30s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw40 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw40s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw50 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} -
D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw50s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw60 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw60s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw70 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw70s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw80 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw80s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw90 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bw90s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} -
D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwa0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwa0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwb0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwb0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwc0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwc0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwd0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwd0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwe0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwe0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwf0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwf0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwg0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwg0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwh0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwh0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwi0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwi0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwj0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwj0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwk0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwk0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwl0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwl0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwm0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwm0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwn0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwn0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwo0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwo0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwp0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwp0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwq0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwq0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwr0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwr0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bws0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bws0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwt0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwt0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwu0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwu0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwv0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwv0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bww0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bww0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwx0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} -
D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwx0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwy0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwy0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwz0 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: bwz0s - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing)
O18 - Protocol: offline-8876480 - {2A4F9420-5656-4D12-A5B8-2924EEEB4327} - D:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (file missing) |
Besorge Dir mal nen Clear Programm, und Putze mal Deine Platte.
Warum heißt die eigentlich D:????
Sonst kann ich nichts schlimmes erkennen. Dies muss nichts heißen. Besorge Dir mal zur Sicherheit eScan, zu finden hier im Bord. Lese die Anleitung genau durch und Handel danach! Aber wie gesagt, wenn du den Trojaner gelöscht hast, wirst du ihn nicht finden aber die Auswirkungen sind wahrscheinlich vorhanden. Also, Name und Pfad des Trojaners bitte!
Gruß Mellosun