![]() |
Online-Banking-Trojaner! [SIZE="6"][I][B]Hallo, Ich habe mir einen trojaner eingefangen. Der möchte meine ganze Tanliste abfragen wenn ich bei der Targo Bank online gehe! Mal ist er da mal nicht! Hab mit dem Support telefoniert und die haben den Account gesperrt! Nun bitte ich um eure Hilfe das Problem wieder in den Griff zu bekommen. OTL!OTL Logfile: Code: OTL logfile created on: 19.06.2013 07:21:23 - Run 1 Exportierte Ereignisse: 18.06.2013 22:19 [System Scanner] Malware gefunden Die Datei 'C:\Users\Colonel_Rupert\AppData\Local\Temp\tmp359fd226\32.exe' enthielt einen Virus oder unerwünschtes Programm 'TR/Bublik.I.13' [trojan]. Durchgeführte Aktion(en): Die Datei wurde ins Quarantäneverzeichnis unter dem Namen '55ed6d7b.qua' verschoben! 18.06.2013 22:10 [Echtzeit Scanner] Malware gefunden In der Datei 'C:\Users\Colonel_Rupert\AppData\Local\Temp\tmp359fd226\32.exe' wurde ein Virus oder unerwünschtes Programm 'TR/Bublik.I.13' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 27.05.2013 06:22 [System Scanner] Malware gefunden Die Datei 'C:\Users\Colonel_Rupert\AppData\Roaming\ie_util.exe' enthielt einen Virus oder unerwünschtes Programm 'TR/Bublik.I.13' [trojan]. Durchgeführte Aktion(en): Der Registrierungseintrag <HKEY_USERS\S-1-5-21-45948774-3835013767-118895328-1000\SOFTWARE\Microsoft\Windo ws\CurrentVersion\Run\IExplorer Util> wurde erfolgreich repariert. Der Registrierungseintrag <HKEY_USERS\S-1-5-21-45948774-3835013767-118895328-1000\SOFTWARE\Microsoft\Windo ws\CurrentVersion\Run\IExplorer Util> wurde erfolgreich repariert. Die Datei wurde ins Quarantäneverzeichnis unter dem Namen '57887126.qua' verschoben! 27.05.2013 06:19 [Echtzeit Scanner] Malware gefunden In der Datei 'C:\Users\Colonel_Rupert\AppData\Roaming\ie_util.exe' wurde ein Virus oder unerwünschtes Programm 'TR/Bublik.I.13' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 27.05.2013 06:19 [Echtzeit Scanner] Malware gefunden In der Datei 'C:\Users\Colonel_Rupert\AppData\Roaming\ie_util.exe' wurde ein Virus oder unerwünschtes Programm 'TR/Bublik.I.13' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern Malwarebytes Anti-Malware 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2013.06.18.06 Windows Vista Service Pack 2 x64 NTFS Internet Explorer 9.0.8112.16421 Colonel_Rupert :: COLONEL_RUPE-PC [Administrator] 18.06.2013 21:17:18 MBAM-log-2013-06-18 (23-27-12).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|E:\|Q:\|) Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 597739 Laufzeit: 2 Stunde(n), 5 Minute(n), 9 Sekunde(n) Infizierte Speicherprozesse: 1 C:\Users\Colonel_Rupert\AppData\Roaming\Dyduw\anuku.exe (Trojan.Zbot.DPE) -> 2532 -> Keine Aktion durchgeführt. Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 2 HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Ywneuvxei (Trojan.Zbot.DPE) -> Daten: C:\Users\Colonel_Rupert\AppData\Roaming\Dyduw\anuku.exe -> Keine Aktion durchgeführt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|IExplorer Util (Trojan.Agent.IET) -> Daten: C:\Users\Colonel_Rupert\AppData\Roaming\ie_util.exe -> Keine Aktion durchgeführt. Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 2 C:\Users\Colonel_Rupert\AppData\Roaming\Dyduw\anuku.exe (Trojan.Zbot.DPE) -> Keine Aktion durchgeführt. C:\Users\Colonel_Rupert\Documents\Meine empfangenen Dateien\clone cd 4.4.3.1.0 and serial + keygen.zip (Trojan.Agent.CK) -> Keine Aktion durchgeführt. (Ende) Clonecd wurde gelöscht! Ich konnte die Extras und Gmer nicht zippen! OTL EXTRAS Logfile: Code: OTL Extras logfile created on: 19.06.2013 07:21:23 - Run 1 |
:hallo: hast du die Funde entfernen lassen? |
GMER Logfile: Code: GMER 2.1.19163 - hxxp://www.gmer.net Hallo, ich glaube die sind in Quarantäne! |
Downloade Dir bitte ![]()
dann: ESET Online Scanner
|
AdwCleaner Logfile: Code: # AdwCleaner v2.303 - Datei am 19/06/2013 um 10:21:30 erstellt Ich kann keine verbindung zu eset aufbauen! Fehlermeldung ist: Websiete kann nicht angezeigt werden! Aber andere Seiten kann ich öffnen. |
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
danach Rechner neustarten und mit ESET nochmal versuchen. |
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 4.9.4 (05.06.2013:1) OS: Windows (TM) Vista Home Premium x64 Ran by Colonel_Rupert on 19.06.2013 at 18:32:11,10 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{7ABF4DDD-5912-4A65-9784-10CCCDDDC5C8} ~~~ Files Successfully deleted: [File] "C:\Windows\tasks\driver robot.job" Successfully deleted: [File] C:\Windows\prefetch\APNSTUB.EXE-967FFF60.pf ~~~ Folders Successfully deleted: [Folder] "C:\ProgramData\winamp toolbar" Successfully deleted: [Folder] "C:\Program Files (x86)\icq6toolbar" Successfully deleted: [Folder] "C:\Program Files (x86)\winamp toolbar" Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{000F2938-EE9B-42C0-A956-42E8C3F2E843} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{02C2CDBF-1CFF-42D1-9C95-08EB45EEF1A9} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{0362D71C-849C-40CD-A0F1-ED44C002FE0F} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{0657CBFA-6B13-408F-83BB-3BA46D8C1273} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{082C6192-FA5C-42C7-93F6-C780FB96FE8A} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{099CDF66-2ACC-49EB-AD64-40F8DB21971B} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{0EC24DB7-A301-4A8C-9B46-36AA57D701E3} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{0F9BCF99-964C-4A5B-AF4F-8DEAD8E583B4} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{10F2ECF0-9817-4744-9025-50B02CF8BE91} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{139C8E75-1A4D-47FF-AA69-079B62663667} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{143A2AC8-68DF-4581-A4D1-75D5ED78DD6C} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{16CB93CD-BA84-44ED-9476-ECF466650B8D} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{1791E914-0C84-48FF-8772-2CCF9339B92E} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{18F3DAB6-3ECF-4D1B-8B05-805A20E9E7B6} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{1A8D1F30-6D4A-4758-86DA-5955B452299C} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{1B6950C0-AB40-43BB-9185-BF9E11D81197} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{1B9B79C3-EA61-45E7-BA94-0A2D4F551DE1} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{1BA527BE-0295-4A0F-BD98-6E7D573412A3} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{1CA8F1F2-0409-4585-BF97-6D590B2BA183} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{1CC85021-8BC3-4691-BA1A-EF44E17C0C9C} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{1CE7645D-D15E-4B3D-9946-87688BB63D26} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{1FEF2DA8-B0D2-4E41-BCE4-4E55B8034FB1} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{21D1D6A7-132E-4B9C-8342-C80C240AAC1C} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{21E77DFE-D080-4D0A-A4AB-789ABFEA8AEF} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{22937352-1659-485D-A799-C926E75A9BAC} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{247E19D2-3299-4BC0-9605-C86387F23CE7} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{262CA780-A210-494A-B1BF-A7C670901683} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{272D89E7-BF14-45CB-97B8-C9894A7C3016} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{2E2792FD-E352-49C8-ACC6-AF52F4923922} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{2E6EFFAA-C19C-4EE2-B618-E800EE5C53E1} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{344A4ADE-5895-4745-9950-EA18F833A795} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{358A08AD-02E7-4C01-8077-6BBB8ECB638C} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{38B4BEAC-8BE0-4EEC-9BB8-BFA0DCD59B45} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{39ACC404-7CE7-4D90-B151-BA2687A0CD9A} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{3A2345E2-7335-4B85-A40E-581C43C86AA3} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{3B984668-C904-4A61-AA3F-C0BB20F5C7BC} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{3BC84F25-30DB-4CF9-B97E-983282D62E44} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{3CCB2C55-5286-46D5-80A9-2DDEC1A2A054} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{3F85D8C6-5E1F-419C-95AA-E07E381D07A5} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{4083AC3A-65E0-4F6D-856E-F16A1BB228B6} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{40B65730-B07F-4E11-AB62-73CE4F0271AB} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{420C5993-0EF8-4B0C-A229-C004CBE2D564} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{422529C2-51EE-47A6-BAB4-D4E94FB116EB} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{441CFACF-CCAC-4E72-A110-E02021F796AD} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{44BA927C-3DC3-4B5B-ADF7-532D559DE5B1} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{44E93E8D-3C92-41A2-B57D-6590B7143A9B} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{45AA418C-EB82-4B12-81AD-9F6628DB8897} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{48B100B2-BA65-49E1-8E40-03F0D2AECEEF} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{49D08377-CB3D-4549-B0C4-C2F3B8B6787B} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{4B3AF783-A021-4F5D-A526-C3BD1F192343} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{4B9B5ADA-4E03-4193-8111-D9F69043853E} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{4C11E447-A92E-4167-8C41-FD4846B9EB4D} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{4C6ACD81-23A0-47C7-A3F6-80AFFE0CCF5A} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{4C97D436-910E-4AD2-BEA5-0207A165B25D} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{4D46CBA1-1413-4F0B-A6DF-A4EFC225F270} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{4DBA6630-A8AB-4F15-B6BF-9C1E1B248A07} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{4E9090FF-9873-4594-9279-78F9A401B028} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{4FBA41FF-D034-4F5D-9015-6E34ECA0E743} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{4FD64F77-342B-400D-92C3-7B20D50BDE81} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{50921306-2AF6-4D4A-AC95-A8FC36833AD5} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{50C28FAB-C09E-4175-8604-853744A6F941} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{52A4E49D-70DC-49AC-A534-98B0D27D1037} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{53556E82-2032-4568-8CD5-15DB78704A56} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{553B2F4B-05D6-45D1-B1A7-7D4F2DA6C7E3} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{55C68F45-55D2-4B14-B170-CA5E624FDC31} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{56089734-AC0B-4D99-89E4-AEC3E0775AAA} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{57054AB9-D350-42A9-8BE6-E4243EEEC60E} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{57979502-CD9C-4279-B521-54E447FC7529} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{5B400561-3C94-457B-AA98-82B018189990} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{5D39B74E-1994-4795-88BB-3DE0D614B6D9} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{5D439619-40B1-4A2E-B522-BA166CB8E797} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{5FA9528F-E78B-4A00-8244-131A6CDFBB71} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{613BE601-ED08-482C-8626-8E46BA9AEA51} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{61EA0246-124F-4288-9D63-D5906DFDC48E} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{634EE120-C9AA-403A-A2CC-15663A3436EA} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{66DBA607-C413-45B1-B845-8F056F2F8576} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{6A8DE143-B758-4F61-BBB5-26A28620FD90} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{6B0E7875-D1BC-4750-BBC5-541E17BE2B9F} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{6B922C43-0D43-42A0-8E9C-42BA99C8BB5F} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{6BC872DD-0AD3-4E7E-90F0-2707A97A63F4} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{6C06ECC3-2599-4B7E-8DB1-9D6CE52D44B0} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{6CC5E237-C99A-4E6D-9B85-452874B75C87} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{6DA0FBA7-A2A5-4373-B2ED-109DFCBB292A} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{6E9960FB-E917-45C3-BC17-D158B1E1297D} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{6ED14E93-C61A-404B-A55B-CC1ED1B6A42C} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{726BA393-0F2C-431A-B840-C231D6B7DCF5} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{72D84DD3-B209-43CC-9770-B0E7B563B06D} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{737141E4-9F8E-47EB-932E-8E41A6D06907} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{75A04DEC-0323-455F-AFE3-F59D5646D42C} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{76D4B04A-C8FF-485B-9723-A6CC05B4BCA6} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{77BEBD44-85B6-4192-95CD-BC472D01E22A} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{784D5E95-1DF9-4E8C-BFFD-FC668D9F7449} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{795F085D-2F07-403D-8DCC-F2AACD289F45} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{7AC9675D-9069-4070-A5FE-A014F7EF08A4} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{7B200717-8982-4154-8F79-72BF9EB0E06F} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{7CE5B5DF-BDBD-45FE-804A-41A93D291210} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{7D03DBD8-6EA9-44A4-8F20-A990448D1715} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{7D3C08FF-ED2A-40F3-A28E-44A4436F5F57} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{7EEE87A6-0F15-415A-96D9-7CF6C9322FF0} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{8024F315-7EA4-448A-BA31-A5F0484B055F} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{81174B30-6159-4843-BB7F-23F31396ABDD} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{82E286CA-2037-4B08-8420-EA2D55F6A1CE} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{8314FAE1-3AB5-46C1-8E29-29007170C925} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{850275F8-6CFB-42D1-A75A-F996AC4E703C} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{88CA9CD5-6C6A-41C1-9214-B57E73F02C15} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{88F55591-861A-4736-A991-366D7A6000A4} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{89A7F391-FF49-4131-B32F-7C50156E44D1} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{89FE5E4A-6E58-4AC7-B246-BA644870428B} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{8A186EC3-75B1-4E39-BECA-ADE797591E55} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{8BB1059B-139D-48AA-B5A3-13E160DED289} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{8C95019C-90D9-4BDE-9E5F-802EE55C5C2E} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{8E702ACE-EB0D-4B09-87A0-20CC0ACA3356} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{8ED3BA89-A718-4ABB-AF42-785EA6E4057B} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{8FD897A9-A0F4-4779-82E4-280134AA5573} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{91A53C24-91D4-4B84-91A3-179E433E85A7} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{928462BF-8307-4F32-A2E5-BBDE76D892B3} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{946E06C8-697A-457D-94F1-2D91392EA984} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{96793222-9471-40B6-98F9-2A5450D45D5F} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{99624479-C176-4FB5-8423-A0DD38730C88} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{996A5C9D-A490-4BAC-9445-BF656215E96F} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{9B0865E3-255B-49E5-B5D9-964FAA3B1D96} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{9B1F1689-32C7-499B-BA4B-5E1B99826C32} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{9CC3A0A8-9085-4701-8618-AD784D2F1046} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{9CC48BCE-B5DB-451E-8ABE-EBE5159590F0} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{9EBBF6C1-D188-43A4-93C8-064789C55B97} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{9F7AFE0C-E4CD-49AF-90C7-5A2DA1899A24} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{9FF17748-7FBB-44AA-8E37-8D3E5E2CCAA8} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{A05EE6DB-9223-4B3B-AF44-AC83D9F4CD42} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{A36CBA7A-AC2C-4CE1-AB4E-B54DEE970F1F} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{A3CD7CC9-2917-4BE9-8652-2C65185DF639} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{A3F0BEA0-3980-462A-8E32-C392561E5F8C} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{A5C4252D-CF4A-432C-BEAC-1AA0ED2770ED} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{A5DDA930-1C92-4072-9CAE-C69D55374817} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{A64BF116-3D98-48CE-9BC2-8E4106E158FF} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{A6D43F3D-D082-4AFC-BCD8-A9C258A6697F} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{A963401A-EC6A-4F4D-99C7-283C09C4FA47} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{A9D24553-8B30-4A14-82AA-652EFFA17FEB} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{AA30B7B3-DD35-4590-B6AB-7AABB4F6E309} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{AA433D3B-9A33-4E36-938D-D5C9C4912FCB} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{AB0DCADA-952D-4680-B3F5-33AF2FF49819} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{AB2A7840-1360-4CCE-9A8F-C241E8339056} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{AF188CA1-A331-454F-A646-65CFE138A406} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{AF89B7EB-CD48-44EE-B319-CFB11D8B94C5} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{B21CBA67-B7D9-431F-957C-AFCE4918CBC5} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{B3965B01-BE9F-4871-B9F3-ACB9C7C683A4} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{B3990078-71DF-4A9B-B661-DE191C95B14D} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{B4913485-CB0E-4C3B-9533-1297E2259FD2} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{B50D00CF-0FD2-4344-854B-FDB27C696C3A} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{BC776A0D-DAB7-425E-8D9C-68C3685E15F3} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{BD0CB055-1D39-45D5-862B-4FE5DFD593A1} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{BD388D5F-18E4-46B1-A169-1664FFFB4F33} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{BDA1612C-74FC-417B-9056-667B6E12D86F} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{BF03276C-1258-40B2-BBBC-5E3E4A94ABD1} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{C0029C4B-C43F-4F92-859E-A6C78281A317} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{C097B93F-371F-407B-9168-D02A232E59FF} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{C11D5712-3431-4380-BFBF-90D407376D70} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{C1D770D3-380F-4E91-A6AC-BE98E900A586} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{C42EE527-D37D-4B98-893A-3DBA145CBCF1} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{C43EA2BD-75F8-436D-8E62-86C993318405} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{C5488970-11D7-47CF-9031-C959EBEDAA10} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{C635C5D4-0B50-4843-941B-CC5831403B0F} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{CA5A1E01-6511-4CC8-A4A5-C9FF09FD8A44} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{CA8E2426-306F-4565-8A76-3355D925F4C0} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{CEC9CCA4-E90A-4DF2-B9E3-A2C47013C15D} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{D364DEF7-9C4E-43CC-934C-1B43A1588E57} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{D3E53590-EA94-4DAA-98B4-48A0F63B8B5F} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{D4E51F58-DD8B-4F56-85D0-3F3B36629BF8} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{D6FABA3A-C6C3-4448-ACB2-3E5F7F28C6A7} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{D7EB2721-BF9D-463C-9A88-E243958AD696} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{DBEE0350-05D8-4740-A5B7-FA411A07CAC5} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{DBF3C612-B1AD-441A-AA76-AAAD4542195E} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{E084F37B-F219-474E-9FAD-64BF939BA460} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{E1D7DF06-9D4C-4980-BB12-6242B19852A9} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{E1DAEC12-7B8D-4F8F-BC20-81D7928B1C09} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{E24094E3-A684-4E39-9297-825B8C43AC1D} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{E292E2E4-4CA4-460D-A74D-18982F12144B} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{E4E593CB-5AFF-4F1E-AB2F-23127EEC61C9} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{E7815E26-3DC0-44F0-9521-D7C705635A47} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{E80F1D7D-D9EA-4792-81B3-7B4C2DF43A7A} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{E8FD9B8E-A482-4660-85E7-57BE888889DE} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{E91ACEF5-5D3E-4B67-94BB-6365BADA8A15} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{E982FFC8-0A18-49C1-B5C9-903C1E9A254C} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{E9C85AB0-32FE-451E-B978-6DE6A6C78A2E} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{EC017169-2D86-46D6-9F7E-5012FE527DE3} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{F0CB45CB-22E9-4AB2-9CE5-BE9E05CB9D0B} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{F0E1AD5E-5A3E-49AE-9D47-5F86FF8BA28A} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{F0F1A5B2-2C22-49B0-A23C-F16F76E5F1EB} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{F10830CF-0330-4D2F-A3F8-47C9745E47FD} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{F1566B59-752A-4EDC-9F40-94E693DDC594} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{F24F963B-7DD4-4087-873E-18F8B57520FF} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{F2E7435B-DF95-40A0-89CB-F3DC9FB2196A} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{F3388C6D-06F8-4D62-B29D-164CD7047026} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{F47C466A-8CE6-4041-AFD9-A00C0EA751EA} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{F5773810-B5B2-4A67-89F7-6F3B4BCF7786} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{F7AB9B18-B344-496A-BB58-8A742598A73E} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{F7CF0143-348F-4C06-B7EE-53ECABF51A07} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{F94634F6-5704-4DBF-AB39-A1E310E4E74F} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{FA04693F-0BF8-4E6E-91A9-FD1ADBE4D06E} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{FC20546C-CCCE-4C7F-9A1D-812A81FF416C} Successfully deleted: [Empty Folder] C:\Users\Colonel_Rupert\appdata\local\{FCC0BDCB-1D0A-41C9-8500-3FD8FDA12C95} ~~~ FireFox Emptied folder: C:\Users\Colonel_Rupert\AppData\Roaming\mozilla\firefox\profiles\te1n46k6.default\minidumps [2 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 19.06.2013 at 18:36:51,80 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Habe den Neustart gemacht, aber es tut sich nichts mit eset immernoch das gleich Problem keine Verbindung, Webseite kann nicht gezeigt werden! Habe alles aus Antivir ist im Schlummermodus und die Firewall ist aus! |
OK: Scan mit Combofix
|
Combofix Logfile: Code: ComboFix 13-06-18.02 - Colonel_Rupert 19.06.2013 20:17:27.1.4 - x64 5C616939100B85E558DA92B899A0FC36 |
Eset nochmal versuchen. |
jetzt hat es funktioniert, hier der Bericht ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=16a6fd705c8c834fb0a2a300e00b938b # engine=14113 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-06-20 03:10:31 # local_time=2013-06-20 05:10:31 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1033 # osver=6.0.6002 NT Service Pack 2 # compatibility_mode=1799 16775165 100 99 92881 237164321 85658 0 # compatibility_mode=5892 16776574 100 100 150041 209264937 0 0 # scanned=362261 # found=3 # cleaned=0 # scan_time=11610 sh=EF34E83A1B877FDD3F590C5B588A8B25A7EFCD0C ft=1 fh=6aea6c5119443fbe vn="a variant of Win32/Kryptik.BBEI trojan" ac=I fn="C:\Qoobox\Quarantine\C\Users\Colonel_Rupert\AppData\Roaming\Dyduw\anuku.exe.vir" sh=0422D77AE97B56DEF1247012A38B2C66C9430AC1 ft=0 fh=0000000000000000 vn="probably unknown NewHeur_PE virus" ac=I fn="C:\Users\Colonel_Rupert\AppData\Local\Downloaded Installations\{7711CD4B-AC81-44E1-9224-50A8ABDC6A9D}\MSN Star Check.msi" sh=E59CF113F05E4D2247225D02DE2EE7C58517C924 ft=0 fh=0000000000000000 vn="a variant of Java/Exploit.CVE-2013-2423.AU trojan" ac=I fn="C:\Users\Colonel_Rupert\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\2\6cae2102-68513d2d" Ich habe ESET deinstalliert, wie es vorher beschrieben war! |
Gut! Fixen mit OTL
Code: :OTL
dann: Downloade Dir bitte ![]()
|
========== OTL ========== ========== FILES ========== C:\Qoobox\Quarantine\C\Users\Colonel_Rupert\AppData\Roaming\Dyduw\anuku.exe.vir moved successfully. C:\Users\Colonel_Rupert\AppData\Local\Downloaded Installations\{7711CD4B-AC81-44E1-9224-50A8ABDC6A9D}\MSN Star Check.msi moved successfully. C:\Users\Colonel_Rupert\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\2\6cae2102-68513d2d moved successfully. OTL by OldTimer - Version 3.2.69.0 log created on 06202013_174053 Results of screen317's Security Check version 0.99.64 Windows Vista Service Pack 2 x64 Internet Explorer 10 ``````````````Antivirus/Firewall Check:`````````````` Avira Desktop Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware Version 1.75.0.1300 JavaFX 2.1.1 Java 7 Update 15 Java version out of Date! Adobe Flash Player 11.7.700.224 Adobe Reader 10.1.7 Adobe Reader out of Date! Mozilla Firefox (3.6.28) Firefox out of Date! Google Chrome 27.0.1453.110 Google Chrome 27.0.1453.94 ````````Process Check: objlist.exe by Laurent```````` Avira Antivir avgnt.exe Avira Antivir avguard.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: % ````````````````````End of Log`````````````````````` Sind wir jetzt mit der Prozedur fertig? Was muss ich sonst noch machen? Was kann ich für einen guten Browserschutz nehmen oder reicht der von Antivir aus? Ist es sinnvoll nur einen Browser zu benutzen, wenn ja welchen? Machmal is Firefox langsamer mal schneller, deswegen wechsel ich mal zwischen FireFox und IE. |
Zitat:
Zitat:
Zitat:
Java aktualisieren Dein Java ist nicht mehr aktuell. Älter Versionen enthalten Sicherheitslücken, die von Malware missbraucht werden können.
Dann so einstellen: http://www.trojaner-board.de/105213-...tellungen.html Danach poste (kopieren und einfuegen) mir, was du hier angezeigt bekommst: PluginCheck Java deaktivieren Aufgrund derezeitigen Sicherheitsluecke: http://www.trojaner-board.de/122961-...ktivieren.html Danach poste mir (kopieren und einfuegen), was du hier angezeigt bekommst: PluginCheck |
Ich habe nach dem Java Control Panel gesucht kann es aber nicht finden, unter den IE hab ich das Java Plug in deaktiviert! Muss Ich das neu installieren? PluginCheck Der PluginCheck hilft die größten Sicherheitslücken beim Surfen im Internet zu schliessen. Überprüft wird: Browser, Flash, Java und Adobe Reader Version. Internet Explorer 9.0 ist aktuell Flash (11,7,700,224) ist aktuell. Java (1,7,0,25) ist aktuell. Adobe Reader 10,1,0,0 ist veraltet! Aktualisieren Sie bitte auf die neueste Version: 11.0 Zurück Tools: StartSeite PluginCheck Secunia Online Scan Weiterführendes: Java Updaten und Einstellen Secunia Personal Software Inspector (PSI) Family: TR/Agent Den Reader hab ich versucht zu aktualisieren! hat aber nicht geklappt! Habe jetzt einige Neustarts gemacht und immer wieder probiert es zu laden und zu installieren! Hinweis: Das Update ist erfolgreich installiert! Aber wenn ich den PlugIn Check mache steht da das der Reader nicht aktuell ist! Hallo habe heute morgen nochmal nachgesehn, wenn ich den PlugIn Check mache und anschließend auf den link gehe um den reader zu aktualisieren, kommt derlink über Filepony zum Update 10.1.4 auch bei Adobe ist nichts von der Variante 11.0 zu finden. Da liegt warscheinlich das Problem. |
Alle Zeitangaben in WEZ +1. Es ist jetzt 04:53 Uhr. |
Copyright ©2000-2025, Trojaner-Board