Ik heb een tijdje geleden een virus(jes) gehad. (zie log)
Nu zijn deze goed verwijderd zegt het programma (Maleware Bytes), maar sindsdien is mijn laptop erg traag met opstarten en valt zelfs soms uit.
Nu ben ik benieuwd of iemand anders dit probleem ook heeft gehad na het verwijderen van de virussen en of iemand een oplossing hiervoor heeft.
Alvast bedankt!
LOG:
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Databaseversie: 5117
Windows 6.1.7600
Internet Explorer 8.0.7600.16385
15-11-2010 0:46:31
mbam-log-2010-11-15 (00-46-31).txt
Scantype: Snelle scan
Objecten gescand: 152517
Verstreken tijd: 8 minuut/minuten, 55 seconde(n)
Geheugenprocessen geïnfecteerd: 3
Geheugenmodulen geïnfecteerd: 0
Registersleutels geïnfecteerd: 4
Registerwaarden geïnfecteerd: 2
Registerdata geïnfecteerd: 0
Mappen geïnfecteerd: 0
Bestanden geïnfecteerd: 15
Geheugenprocessen geïnfecteerd:
C:\Users\KRS\AppData\Local\Temp\Wce.exe (Trojan.FraudPack) -> Unloaded process successfully.
C:\Windows\Wfygia.exe (Trojan.FraudPack) -> Unloaded process successfully.
C:\Users\KRS\AppData\Local\Temp\Wcd.exe (Trojan.FraudPack) -> Unloaded process successfully.
Geheugenmodulen geïnfecteerd:
(Geen kwaadaardige objecten gedetecteerd)
Registersleutels geïnfecteerd:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Handle (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\NtWqIVLZEWZU (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\U36VRSFLG6 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> Quarantined and deleted successfully.
Registerwaarden geïnfecteerd:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\u36vrsflg6 (Trojan.FraudPack) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\metropolis (Trojan.FraudPack) -> Quarantined and deleted successfully.
Registerdata geïnfecteerd:
(Geen kwaadaardige objecten gedetecteerd)
Mappen geïnfecteerd:
(Geen kwaadaardige objecten gedetecteerd)
Bestanden geïnfecteerd:
C:\Users\KRS\AppData\Local\Temp\Wce.exe (Trojan.FraudPack) -> Quarantined and deleted successfully.
C:\Windows\Wfygia.exe (Trojan.FraudPack) -> Quarantined and deleted successfully.
C:\Users\KRS\AppData\Local\Temp\Wcd.exe (Trojan.FraudPack) -> Quarantined and deleted successfully.
C:\Windows\System32\sshnas21.dll (Trojan.FraudPack) -> Quarantined and deleted successfully.
C:\Users\KRS\AppData\Local\Temp\13D0.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.
C:\Users\KRS\AppData\Local\Temp\DFF3.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.
C:\Users\KRS\AppData\Local\Temp\DFF4.tmp.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
C:\Users\KRS\AppData\Local\Temp\jjikbkkn.exe (Trojan.FraudPack) -> Quarantined and deleted successfully.
C:\Users\KRS\AppData\Local\Temp\Wcb.exe (Trojan.FraudPack) -> Quarantined and deleted successfully.
C:\Users\KRS\AppData\Local\Temp\Wcc.exe (Trojan.FraudPack) -> Quarantined and deleted successfully.
C:\Users\KRS\AppData\Local\Temp\IXP000.TMP\ppi.exe (PWS.Fignotok) -> Quarantined and deleted successfully.
C:\Users\KRS\AppData\Local\Temp\IXP001.TMP\ppi.exe (PWS.Fignotok) -> Quarantined and deleted successfully.
C:\Windows\Tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Windows\Tasks\{62C40AA6-4406-467a-A5A5-DFDF1B559B7A}.job (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Windows\Tasks\{BBAEAEAF-1275-40e2-BD6C-BC8F88BD114A}.job (Trojan.Downloader) -> Quarantined and deleted successfully.
Nu zijn deze goed verwijderd zegt het programma (Maleware Bytes), maar sindsdien is mijn laptop erg traag met opstarten en valt zelfs soms uit.
Nu ben ik benieuwd of iemand anders dit probleem ook heeft gehad na het verwijderen van de virussen en of iemand een oplossing hiervoor heeft.
Alvast bedankt!
LOG:
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Databaseversie: 5117
Windows 6.1.7600
Internet Explorer 8.0.7600.16385
15-11-2010 0:46:31
mbam-log-2010-11-15 (00-46-31).txt
Scantype: Snelle scan
Objecten gescand: 152517
Verstreken tijd: 8 minuut/minuten, 55 seconde(n)
Geheugenprocessen geïnfecteerd: 3
Geheugenmodulen geïnfecteerd: 0
Registersleutels geïnfecteerd: 4
Registerwaarden geïnfecteerd: 2
Registerdata geïnfecteerd: 0
Mappen geïnfecteerd: 0
Bestanden geïnfecteerd: 15
Geheugenprocessen geïnfecteerd:
C:\Users\KRS\AppData\Local\Temp\Wce.exe (Trojan.FraudPack) -> Unloaded process successfully.
C:\Windows\Wfygia.exe (Trojan.FraudPack) -> Unloaded process successfully.
C:\Users\KRS\AppData\Local\Temp\Wcd.exe (Trojan.FraudPack) -> Unloaded process successfully.
Geheugenmodulen geïnfecteerd:
(Geen kwaadaardige objecten gedetecteerd)
Registersleutels geïnfecteerd:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Handle (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\NtWqIVLZEWZU (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\U36VRSFLG6 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> Quarantined and deleted successfully.
Registerwaarden geïnfecteerd:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\u36vrsflg6 (Trojan.FraudPack) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\metropolis (Trojan.FraudPack) -> Quarantined and deleted successfully.
Registerdata geïnfecteerd:
(Geen kwaadaardige objecten gedetecteerd)
Mappen geïnfecteerd:
(Geen kwaadaardige objecten gedetecteerd)
Bestanden geïnfecteerd:
C:\Users\KRS\AppData\Local\Temp\Wce.exe (Trojan.FraudPack) -> Quarantined and deleted successfully.
C:\Windows\Wfygia.exe (Trojan.FraudPack) -> Quarantined and deleted successfully.
C:\Users\KRS\AppData\Local\Temp\Wcd.exe (Trojan.FraudPack) -> Quarantined and deleted successfully.
C:\Windows\System32\sshnas21.dll (Trojan.FraudPack) -> Quarantined and deleted successfully.
C:\Users\KRS\AppData\Local\Temp\13D0.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.
C:\Users\KRS\AppData\Local\Temp\DFF3.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.
C:\Users\KRS\AppData\Local\Temp\DFF4.tmp.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
C:\Users\KRS\AppData\Local\Temp\jjikbkkn.exe (Trojan.FraudPack) -> Quarantined and deleted successfully.
C:\Users\KRS\AppData\Local\Temp\Wcb.exe (Trojan.FraudPack) -> Quarantined and deleted successfully.
C:\Users\KRS\AppData\Local\Temp\Wcc.exe (Trojan.FraudPack) -> Quarantined and deleted successfully.
C:\Users\KRS\AppData\Local\Temp\IXP000.TMP\ppi.exe (PWS.Fignotok) -> Quarantined and deleted successfully.
C:\Users\KRS\AppData\Local\Temp\IXP001.TMP\ppi.exe (PWS.Fignotok) -> Quarantined and deleted successfully.
C:\Windows\Tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Windows\Tasks\{62C40AA6-4406-467a-A5A5-DFDF1B559B7A}.job (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Windows\Tasks\{BBAEAEAF-1275-40e2-BD6C-BC8F88BD114A}.job (Trojan.Downloader) -> Quarantined and deleted successfully.