Emsisoft Malware-Info
Name: Adware.Win32.Ray2009
Risikolevel: Low Risk
Beschreibung:
This applications contain trojan.
Anleitung zum Entfernen von Adware Ray2009:
Um diese Malware-Infektion zu löschen, kaufen Sie bitte Emsisoft Anti-Malware.
Garantierte Entfernung von Adware Ray2009.
Führen Sie einen Scan durch und stellen Sie
gefundene Objekte unter Quarantäne.
Mehr Datails zu dieser Bedrohung:
Installation: Installed through EXE
Prozess: iePlayer.exe
Screenshots:
Verwendete Ordner:
- C:\Program Files\WindowsUpdate\
- C:\WINDOWS\
- C:\WINDOWS\ad405cn\
- C:\WINDOWS\system32\
- C:\Documents and Settings\All Users\Start Menu\
- C:\Documents and Settings\All Users\Start Menu\Programs\
- C:\Documents and Settings\[USER]\Application Data\Microsoft\Internet Explorer\Quick Launch\
- C:\Documents and Settings\[USER]\Cookies\
- C:\Documents and Settings\[USER]\Desktop\
- C:\Documents and Settings\[USER]\Favorites\
- C:\Documents and Settings\[USER]\Local Settings\History\History.IE5\
- C:\Documents and Settings\[USER]\Local Settings\Temp\
- C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\
- C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\0H2HIRKN\
- C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\6XSRQLQP\
- C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\SRIDQBO7\
- C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\YNQ1M5MT\
- C:\Documents and Settings\[USER]\Start Menu\
- C:\Documents and Settings\[USER]\Start Menu\Programs\
- C:\Documents and Settings\[USER]\Start Menu\Programs\Startup\
Verwendete Dateien:
- C:\Program Files\WindowsUpdate\tvxyzf.exe
[83968 Bytes] EXE File - C:\WINDOWS\8389156.exe
[31304 Bytes] EXE File - C:\WINDOWS\8389631.exe
[44032 Bytes] EXE File - C:\WINDOWS\conme.exe
[35840 Bytes] EXE File - C:\WINDOWS\ad405cn\045.exe
[45056 Bytes] EXE File - C:\WINDOWS\ad405cn\2847.exe
[83968 Bytes] EXE File - C:\WINDOWS\ad405cn\284734.exe
[28672 Bytes] EXE File - C:\WINDOWS\ad405cn\abc.js
[1449 Bytes] JS File - C:\WINDOWS\ad405cn\ATLcom.dll
[90112 Bytes] DLL File - C:\WINDOWS\ad405cn\iePlayer.exe
[68608 Bytes] EXE File - C:\WINDOWS\ad405cn\info2asp.exe
[41984 Bytes] EXE File - C:\WINDOWS\ad405cn\player011.exe
[184320 Bytes] EXE File - C:\WINDOWS\ad405cn\Setup.exe
[180736 Bytes] EXE File - C:\WINDOWS\ad405cn\Update.exe
[57856 Bytes] EXE File - C:\WINDOWS\ad405cn\update.txt
[227 Bytes] TXT File - C:\WINDOWS\system32\3079788e96.dll
[0 Bytes] DLL File - C:\WINDOWS\system32\svcynzyk.exe
[76288 Bytes] EXE File - C:\Documents and Settings\All Users\Start Menu\Internet Explorer.lnk
[1819 Bytes] LNK File - C:\Documents and Settings\All Users\Start Menu\Programs\Internet Explorer.lnk
[1825 Bytes] LNK File - C:\Documents and Settings\[USER]\Application Data\Microsoft\Internet Explorer\Quick Launch\Internet Explorer.lnk
[1837 Bytes] LNK File - C:\Documents and Settings\[USER]\Application Data\Microsoft\Internet Explorer\Quick Launch\QQ???.lnk
[208 Bytes] LNK File - C:\Documents and Settings\[USER]\Application Data\Microsoft\Internet Explorer\Quick Launch\???????????????.lnk
[615 Bytes] LNK File - C:\Documents and Settings\[USER]\Application Data\Microsoft\Internet Explorer\Quick Launch\????????????.lnk
[208 Bytes] LNK File - C:\Documents and Settings\[USER]\Application Data\Microsoft\Internet Explorer\Quick Launch\???.lnk
[208 Bytes] LNK File - C:\Documents and Settings\[USER]\Application Data\Microsoft\Internet Explorer\Quick Launch\??????.lnk
[192 Bytes] LNK File - C:\Documents and Settings\[USER]\Application Data\Microsoft\Internet Explorer\Quick Launch\???????.lnk
[208 Bytes] LNK File - C:\Documents and Settings\[USER]\Application Data\Microsoft\Internet Explorer\Quick Launch\????????.lnk
[202 Bytes] LNK File - C:\Documents and Settings\[USER]\Application Data\Microsoft\Internet Explorer\Quick Launch\????.lnk
[208 Bytes] LNK File - C:\Documents and Settings\[USER]\Cookies\index.dat
[32768 Bytes] DAT File - C:\Documents and Settings\[USER]\Cookies\virus demo@atdmt[1].txt
[0 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@bs.serving-sys[2].txt
[0 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@c.msn[1].txt
[0 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@doubleclick[1].txt
[0 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@live[1].txt
[0 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@msnportal.112.2o7[1].txt
[0 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@msn[2].txt
[0 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@rad.msn[2].txt
[0 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@serving-sys[1].txt
[0 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@www.msn[2].txt
[0 Bytes] TXT File - C:\Documents and Settings\[USER]\Desktop\7k7k????.lnk
[1755 Bytes] LNK File - C:\Documents and Settings\[USER]\Desktop\Delete Sandbox.lnk
[1739 Bytes] LNK File - C:\Documents and Settings\[USER]\Desktop\Internet Explorer.lnk
[1819 Bytes] LNK File - C:\Documents and Settings\[USER]\Desktop\QQ???.lnk
[208 Bytes] LNK File - C:\Documents and Settings\[USER]\Desktop\Sandboxie RegViewer.lnk
[1701 Bytes] LNK File - C:\Documents and Settings\[USER]\Desktop\Shortcut to AppSniff.exe.lnk
[843 Bytes] LNK File - C:\Documents and Settings\[USER]\Desktop\Terminate.lnk
[1717 Bytes] LNK File - C:\Documents and Settings\[USER]\Desktop\???????????????.lnk
[1641 Bytes] LNK File - C:\Documents and Settings\[USER]\Desktop\????????????.lnk
[208 Bytes] LNK File - C:\Documents and Settings\[USER]\Desktop\???.lnk
[208 Bytes] LNK File - C:\Documents and Settings\[USER]\Desktop\??????.lnk
[192 Bytes] LNK File - C:\Documents and Settings\[USER]\Desktop\???????.lnk
[208 Bytes] LNK File - C:\Documents and Settings\[USER]\Desktop\????????.lnk
[202 Bytes] LNK File - C:\Documents and Settings\[USER]\Desktop\????.lnk
[208 Bytes] LNK File - C:\Documents and Settings\[USER]\Favorites\???????????[??????-???????Z????].url
[144 Bytes] URL File - C:\Documents and Settings\[USER]\Favorites\??256??????--??????--????????????????.url
[148 Bytes] URL File - C:\Documents and Settings\[USER]\Favorites\????,????????,???????,7k7k????.url
[144 Bytes] URL File - C:\Documents and Settings\[USER]\Local Settings\History\History.IE5\index.dat
[32768 Bytes] DAT File - C:\Documents and Settings\[USER]\Local Settings\Temp\p19.exe
[831820 Bytes] EXE File - C:\Documents and Settings\[USER]\Local Settings\Temp\svchost.exe
[18186 Bytes] EXE File - C:\Documents and Settings\[USER]\Local Settings\Temp\~DFD36F.tmp
[16384 Bytes] TMP File - C:\Documents and Settings\[USER]\Local Settings\Temp\~DFFE49.tmp
[16384 Bytes] TMP File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\index.dat
[81920 Bytes] DAT File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\0H2HIRKN\082[1].exe
[44032 Bytes] EXE File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\0H2HIRKN\284734[1].exe
[28672 Bytes] EXE File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\0H2HIRKN\dll[1].htm
[1 Bytes] HTM File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\0H2HIRKN\function[1].js
[12084 Bytes] JS File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\0H2HIRKN\update[1].txt
[227 Bytes] TXT File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\6XSRQLQP\19[1].exe
[868181 Bytes] EXE File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\6XSRQLQP\base[1].css
[1744 Bytes] CSS File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\6XSRQLQP\default[1].css
[31420 Bytes] CSS File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\6XSRQLQP\Setup[1].exe
[180736 Bytes] EXE File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\SRIDQBO7\123[1].exe
[31304 Bytes] EXE File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\SRIDQBO7\2847[1].exe
[83968 Bytes] EXE File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\SRIDQBO7\common[1].js
[8014 Bytes] JS File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\SRIDQBO7\player011[1].exe
[184320 Bytes] EXE File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\YNQ1M5MT\045[1].exe
[45056 Bytes] EXE File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\YNQ1M5MT\222233[1].htm
[59016 Bytes] HTM File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\YNQ1M5MT\csrs[1].exe
[76288 Bytes] EXE File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\YNQ1M5MT\ver4[1].txt
[282 Bytes] TXT File - C:\Documents and Settings\[USER]\Start Menu\Internet Explorer.lnk
[1819 Bytes] LNK File - C:\Documents and Settings\[USER]\Start Menu\Programs\Internet Explorer.lnk
[1825 Bytes] LNK File - C:\Documents and Settings\[USER]\Start Menu\Programs\Startup\???????????????.lnk
[609 Bytes] LNK File
Weiterführende Links:
Bei
Google nach
Adware Ray2009
suchen
Bei Bing nach
Adware Ray2009
suchen
Bei Yahoo nach
Adware Ray2009
suchen
Wie schützt man sich am besten vor Adware Ray2009?
Wichtig!
Sie benötigen unbedingt eine Antivirensoftware, die nicht nur Infektionen löschen kann, sondern Ihren PC dauerhaft vor neuen Bedrohungen
schützen kann. Nur so sind Sie sicher vor Datendiebstahl und unnötigem Ärger und Kosten durch Neu-Installationen des Betriebssystems.
Kaufen Sie am besten noch heute die vielfach ausgezeichnete Schutzsoftware Emsisoft Anti-Malware!
Nur 30 Euro für die Sicherheit Ihres Computers.
Emsisoft Anti-Malware online bestellen:
Vertrauen Sie nur auf die beste Schutzsoftware!
Frühlings-Angebot!
Letzte Chance: Zu Ihrer neu gekauften Emsisoft Anti-Malware oder Emsisoft Internet Security Pack Jahreslizenz oder höher erhalten Sie jetzt
den CyberGhost Anonymisierer gratis dazu.
Ihr Vorteil: Anonym surfen und Webseiten (Youtube, Hulu...) mit Länderbeschränkungen trotzdem besuchen.
Nur noch wenige Tage! Hier bestellen
















