![]() |
|
Log-Analyse und Auswertung: Hijackthis log, wer kann mal einen Blick drauf werden?Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #9 |
![]() ![]() | ![]() Hijackthis log, wer kann mal einen Blick drauf werden? Hallo mountainking und 2low4zero und Shadowdance und chaosman, hier die Liste der Viren, die der Ecasn gefunden hat: Sat Sep 25 11:58:10 2004 => File C:\WINDOWS\system32\rjdpagd.dll infected by "I-Worm.Tanatos.b.dam2" Virus. Action Taken: File Deleted. Sat Sep 25 12:02:50 2004 => File C:\Dokumente und Einstellungen\Andrea\Lokale Einstellungen\Temp\cd_clint.dll infected by "not-a-virus:AdvWare.Cydoor" Virus. Action Taken: File Renamed. Sat Sep 25 12:09:16 2004 => File C:\Dokumente und Einstellungen\Andrea\Lokale Einstellungen\Temporary Internet Files\Content.IE5\CZB7IS51\wbk6E.tmp infected by "Exploit.IFrame.FileDownload" Virus. Action Taken: File Renamed. Sat Sep 25 12:17:25 2004 => File C:\Dokumente und Einstellungen\Andrea\Lokale Einstellungen\Temporary Internet Files\Content.IE5\O3OVO7S5\wbk184.tmp infected by "Exploit.IFrame.FileDownload" Virus. Action Taken: File Renamed. Sat Sep 25 12:17:25 2004 => File C:\Dokumente und Einstellungen\Andrea\Lokale Einstellungen\Temporary Internet Files\Content.IE5\O3OVO7S5\wbk187.tmp infected by "Exploit.IFrame.FileDownload" Virus. Action Taken: File Renamed. Sat Sep 25 12:17:26 2004 => File C:\Dokumente und Einstellungen\Andrea\Lokale Einstellungen\Temporary Internet Files\Content.IE5\O3OVO7S5\wbk18A.tmp infected by "Exploit.IFrame.FileDownload" Virus. Action Taken: File Renamed. Sat Sep 25 12:17:26 2004 => File C:\Dokumente und Einstellungen\Andrea\Lokale Einstellungen\Temporary Internet Files\Content.IE5\O3OVO7S5\wbk18C.tmp infected by "Exploit.IFrame.FileDownload" Virus. Action Taken: File Renamed. Sat Sep 25 12:17:26 2004 => File C:\Dokumente und Einstellungen\Andrea\Lokale Einstellungen\Temporary Internet Files\Content.IE5\O3OVO7S5\wbk199.tmp infected by "Exploit.IFrame.FileDownload" Virus. Action Taken: File Renamed. Sat Sep 25 12:17:39 2004 => File C:\Dokumente und Einstellungen\Andrea\Lokale Einstellungen\Temporary Internet Files\Content.IE5\O3OVO7S5\wbk375.tmp infected by "Exploit.IFrame.FileDownload" Virus. Action Taken: File Renamed. Sat Sep 25 12:51:21 2004 => File C:\Programme\Photoline\pl741oem.exe tagged as not-a-virus:Tool.Win32.Reboot. No Action Taken. Sat Sep 25 12:57:55 2004 => File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc10.VIR01 infected by "Backdoor.Rbot.gen" Virus. Action Taken: File Renamed. Sat Sep 25 12:57:55 2004 => File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc11.VIR00 infected by "Backdoor.Rbot.gen" Virus. Action Taken: File Renamed. Sat Sep 25 12:57:55 2004 => File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc12.VIR infected Sat Sep 25 12:57:55 2004 => File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc13.VIR03 infected by "Backdoor.Rbot.gen" Virus. Action Taken: File Renamed. Sat Sep 25 12:57:55 2004 => Scanning File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc14.VIR02 Sat Sep 25 12:57:56 2004 => File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc14.VIR02 infected by "Backdoor.Rbot.gen" Virus. Action Taken: File Renamed. Sat Sep 25 12:57:56 2004 => Scanning File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc15.VIR01 Sat Sep 25 12:57:56 2004 => File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc15.VIR01 infected by "Backdoor.Rbot.gen" Virus. Action Taken: File Renamed. Sat Sep 25 12:57:56 2004 => Scanning File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc16.VIR00 Sat Sep 25 12:57:56 2004 => File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc16.VIR00 infected by "Backdoor.Rbot.gen" Virus. Action Taken: File Renamed. Sat Sep 25 12:57:56 2004 => Scanning File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc17.VIR Sat Sep 25 12:57:56 2004 => File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc17.VIR infected by "Backdoor.Rbot.gen" Virus. Action Taken: File Renamed. Sat Sep 25 12:57:56 2004 => Scanning File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc18.VIR Sat Sep 25 12:57:56 2004 => File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc18.VIR infected by "Backdoor.Rbot.gen" Virus. Action Taken: File Renamed. Sat Sep 25 12:57:56 2004 => Scanning File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc19.VIR Sat Sep 25 12:57:56 2004 => File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc19.VIR infected by "Backdoor.Rbot.gen" Virus. Action Taken: File Renamed. Sat Sep 25 12:57:56 2004 => Scanning File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc2.VIR06 Sat Sep 25 12:57:57 2004 => File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc2.VIR06 infected by "Backdoor.Rbot.gen" Virus. Action Taken: File Renamed. Sat Sep 25 12:57:57 2004 => Scanning File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc20.VIR Sat Sep 25 12:57:57 2004 => File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc20.VIR infected by "Worm.Win32.Sasser.a" Virus. Action Taken: File Deleted. Sat Sep 25 12:58:03 2004 => File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc3.VIR05 infected by "Backdoor.Rbot.gen" Virus. Action Taken: File Renamed. Sat Sep 25 12:58:03 2004 => Scanning File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc4.VIR04 Sat Sep 25 12:58:04 2004 => File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc4.VIR04 infected by "Backdoor.Rbot.gen" Virus. Action Taken: File Renamed. Sat Sep 25 12:58:04 2004 => Scanning File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc5.VIR03 Sat Sep 25 12:58:05 2004 => File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc5.VIR03 infected by "Backdoor.Rbot.gen" Virus. Action Taken: File Renamed. Sat Sep 25 12:58:05 2004 => Scanning File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc6.VIR02 Sat Sep 25 12:58:06 2004 => File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc6.VIR02 infected by "Backdoor.Rbot.gen" Virus. Action Taken: File Renamed. Sat Sep 25 12:58:06 2004 => Scanning File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc7.VIR01 Sat Sep 25 12:58:07 2004 => File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc7.VIR01 infected by "Backdoor.Rbot.gen" Virus. Action Taken: File Renamed. Sat Sep 25 12:58:07 2004 => Scanning File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc8.VIR00 Sat Sep 25 12:58:08 2004 => File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc8.VIR00 infected by "Backdoor.Rbot.gen" Virus. Action Taken: File Renamed. Sat Sep 25 12:58:08 2004 => Scanning File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc9.VIR Sat Sep 25 12:58:09 2004 => File C:\RECYCLER\S-1-5-21-2621537104-1709162666-557728558-1008\Dc9.VIR infected by "Backdoor.Rbot.gen" Virus. Action Taken: File Renamed. Sat Sep 25 12:59:57 2004 => File C:\System Volume Information\_restore{FAA2D25A-C75B-4710-8E1B-2532E58B5813}\RP23\A0007250.exe infected by "not-a-virus:AdvWare.Cydoor" Virus. Action Taken: File Renamed. Sat Sep 25 13:08:32 2004 => File C:\System Volume Information\_restore{FAA2D25A-C75B-4710-8E1B-2532E58B5813}\RP32\A0013360.dll infected by "I-Worm.Tanatos.b.dam2" Virus. Action Taken: File Deleted. DAs Programm# C:\temp\fanspeed\fanspeedNT.exe habe ich mal installiert, um den Ventilator leiser zu machen. Könnt Ihr mit dem Log des Escan etwas anfangen? Gruss ANA123 |
Themen zu Hijackthis log, wer kann mal einen Blick drauf werden? |
.inf, adobe, antivirus, antivirus scan, auswerten, bho, dateien, explorer, harddisk, helfen, hijack, hijackthis, hijackthis log, internet, internet explorer, log, messenger, microsoft, programme, registry, rundll, software, suche, sun java, symantec, system, system32, temp, vielen dank, windows, windows messenger, windows xp |