![]() |
|
Log-Analyse und Auswertung: E-mail Adresse und diverse Accounts gehacktWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() |
|
![]() | #1 |
/// Malware-holic ![]() ![]() ![]() ![]() ![]() ![]() | ![]() E-mail Adresse und diverse Accounts gehackt ok dann weiter mit Malwarebytes bitte.
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
![]() | #2 |
![]() | ![]() E-mail Adresse und diverse Accounts gehackt So endlich fertig hat gut was gedauert =)
__________________Wobei das Ergebniss weniger erfreulich aussah als ich vor erst dachte... ----------------------------------------------------------------------------Malewarebytes Log: Malwarebytes' Anti-Malware 1.50.1.1100 www.malwarebytes.org Datenbank Version: 5481 Windows 6.1.7600 Internet Explorer 8.0.7600.16385 08.01.2011 16:25:19 mbam-log-2011-01-08 (16-25-15).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|E:\|) Durchsuchte Objekte: 669648 Laufzeit: 1 Stunde(n), 7 Minute(n), 4 Sekunde(n) Infizierte Speicherprozesse: 0 Infizierte Speichermodule: 0 Infizierte Registrierungsschlüssel: 15 Infizierte Registrierungswerte: 15 Infizierte Dateiobjekte der Registrierung: 0 Infizierte Verzeichnisse: 11 Infizierte Dateien: 85 Infizierte Speicherprozesse: (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Application Updater (PUP.Dealio) -> No action taken. HKEY_CLASSES_ROOT\CLSID\{E312764E-7706-43F1-8DAB-FCDD2B1E416D} (PUP.Dealio) -> No action taken. HKEY_CLASSES_ROOT\TypeLib\{CD082CCA-086F-4FD8-8FD7-247A0DBBD1CC} (PUP.Dealio) -> No action taken. HKEY_CLASSES_ROOT\Interface\{D5A1EF9A-7948-435D-8B87-D6A598317288} (PUP.Dealio) -> No action taken. HKEY_CLASSES_ROOT\SearchSettings.BHO.1 (PUP.Dealio) -> No action taken. HKEY_CLASSES_ROOT\SearchSettings.BHO (PUP.Dealio) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E312764E-7706-43F1-8DAB-FCDD2B1E416D} (PUP.Dealio) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{E312764E-7706-43F1-8DAB-FCDD2B1E416D} (PUP.Dealio) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{E312764E-7706-43F1-8DAB-FCDD2B1E416D} (PUP.Dealio) -> No action taken. HKEY_CLASSES_ROOT\CLSID\{fe5b2d9d-91b0-b04b-ac20-14a260769687} (Adware.ColorSoft) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} (PUP.Dealio) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} (PUP.Dealio) -> No action taken. HKEY_CURRENT_USER\Software\avsoft (Trojan.Fraudpack) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Dealio (PUP.Dealio) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\itunes.exe (Security.Hijack) -> No action taken. Infizierte Registrierungswerte: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\PROGRAM FILES (X86)\APPLICATION UPDATER\APPLICATIONUPDATER.EXE (PUP.Dealio) -> Value: APPLICATIONUPDATER.EXE -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\{E312764E-7706-43F1-8DAB-FCDD2B1E416D} (PUP.Dealio) -> Value: {E312764E-7706-43F1-8DAB-FCDD2B1E416D} -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\PROGRAM FILES (X86)\SEARCH SETTINGS\SEARCHSETTINGS.DLL (PUP.Dealio) -> Value: SEARCHSETTINGS.DLL -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} (PUP.Dealio) -> Value: {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\{E312764E-7706-43F1-8DAB-FCDD2B1E416D} (PUP.Dealio) -> Value: {E312764E-7706-43F1-8DAB-FCDD2B1E416D} -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} (PUP.Dealio) -> Value: {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\PROGRAM FILES (X86)\DEALIO TOOLBAR\FF\COMPONENTS\DEALIOTOOLBARFF.DLL (Adware.WidgiToolbar) -> Value: DEALIOTOOLBARFF.DLL -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\PROGRAM FILES (X86)\SEARCH SETTINGS\SEARCHSETTINGS.EXE (PUP.Dealio) -> Value: SEARCHSETTINGS.EXE -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\PROGRAM FILES (X86)\SEARCH SETTINGS\SEARCHSETTINGSRES409.DLL (PUP.Dealio) -> Value: SEARCHSETTINGSRES409.DLL -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\PROGRAM FILES (X86)\SEARCH SETTINGS\FF\COMPONENTS\SEARCHSETTINGSFF.DLL (PUP.Dealio) -> Value: SEARCHSETTINGSFF.DLL -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\EXTENSIONS\SEARCHSETTINGS@SPIGOT.COM (PUP.Dealio) -> Value: SEARCHSETTINGS@SPIGOT.COM -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\EXTENSIONS\DEALIO@MYBROWSERBAR.COM (PUP.Dealio) -> Value: DEALIO@MYBROWSERBAR.COM -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\PROGRAM FILES (X86)\DEALIO TOOLBAR\FF\CHROME.MANIFEST (PUP.Dealio) -> Value: CHROME.MANIFEST -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\PROGRAM FILES (X86)\DEALIO TOOLBAR\FF\INSTALL.RDF (PUP.Dealio) -> Value: INSTALL.RDF -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\PROGRAM FILES (X86)\DEALIO TOOLBAR\FF\CHROME\LOCALE\EN-US\WIDGITOOLBARPLUGIN.PROPERTIES (PUP.Dealio) -> Value: WIDGITOOLBARPLUGIN.PROPERTIES -> No action taken. Infizierte Dateiobjekte der Registrierung: (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: c:\program files (x86)\dealio toolbar (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\content (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\locale (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\locale\EN-US (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\components (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\IE (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\IE\4.0.2 (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res (PUP.Dealio) -> No action taken. Infizierte Dateien: c:\program files (x86)\application updater\applicationupdater.exe (PUP.Dealio) -> No action taken. c:\program files (x86)\search settings\searchsettings.dll (PUP.Dealio) -> No action taken. c:\perfect world entertainment\battle of the immortals\Bin\perfectprotector.sys (Trojan.Phobiq) -> No action taken. c:\program files (x86)\dealio toolbar\widgihelper.exe (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\components\dealiotoolbarff.dll (Adware.WidgiToolbar) -> No action taken. c:\program files (x86)\mozilla firefox\extensions\{080aeb6b-a802-3d97-af56-7fed54802efd}\components\ldw-c_ms-zyc.dll (Adware.BHO) -> No action taken. c:\program files (x86)\search settings\searchsettings.exe (PUP.Dealio) -> No action taken. c:\program files (x86)\search settings\searchsettingsres409.dll (PUP.Dealio) -> No action taken. c:\program files (x86)\search settings\FF\components\searchsettingsff.dll (PUP.Dealio) -> No action taken. c:\Users\Joscha\AppData\Roaming\microsoft\Windows\templates\memory.tmp (Spyware.OnlineGames) -> No action taken. c:\Users\Joscha\Desktop\videobearbeitung\Keygen.exe (Trojan.Agent.CK) -> No action taken. c:\program files (x86)\mozilla firefox\extensions\searchsettings@spigot.com (PUP.Dealio) -> No action taken. c:\program files (x86)\mozilla firefox\extensions\dealio@mybrowserbar.com (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome.manifest (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\install.rdf (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\content\chevron.js (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\content\chevron.xul (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\content\login.js (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\content\login.xul (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\content\parser.js (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\content\rsstickerwidget.js (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\content\searchbox.js (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\content\searchbox.xul (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\content\widgichevron.js (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\content\widgicomm.js (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\content\widgihandling.js (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\content\widgilisteners.js (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\content\widgitoolbarplugin.js (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\content\widgitoolbarplugin.xul (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\content\widgiui.js (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\locale\EN-US\searchbox.dtd (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\locale\EN-US\widgitoolbarplugin.dtd (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\locale\EN-US\widgitoolbarplugin.properties (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\locale\EN-US\yahoo-search.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\amazon.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\apple.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\barnes.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\bestbuy.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\chevron.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\dealio_logo.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\dealio_logo_hover.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\ebay.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\icon_settings.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\macys.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\newegg.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\overstock.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\search-button-hover.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\search-button.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\search-chevron-hover.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\search-chevron.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\searchbox.css (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\search_amazon.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\search_dealio.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\search_ebay.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\search_yahoo.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\separator.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\target.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\walmart.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\chrome\skin\widgitoolbarplugin.css (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\components\config.ini (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\components\ifbhohelperwidgitoolbar.xpt (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\FF\components\ifbhowidgitoolbar.xpt (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\IE\4.0.2\config.ini (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\amazon.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\apple.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\barnes.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\bestbuy.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\dealio_logo.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\dealio_logo_hover.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\ebay.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\icon_settings.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\macys.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\newegg.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\overstock.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\search-button-hover.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\search-button.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\search-chevron-hover.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\search-chevron.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\search_amazon.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\search_dealio.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\search_ebay.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\search_yahoo.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\target.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\walmart.gif (PUP.Dealio) -> No action taken. c:\program files (x86)\dealio toolbar\Res\widgets.xml (PUP.Dealio) -> No action taken. |
![]() |
Themen zu E-mail Adresse und diverse Accounts gehackt |
adobe, amerika, avg, avg security toolbar, bho, checkpoint, converter, e-mail, ebay, explorer, firefox, hacker, hijack, hijackthis, icq, internet, internet explorer, log, maleware, maleware gefunden, microsoft, minecraft, mozilla, mp3, object, plug-in, security, software, syswow64, trojaner, windows, wmp |