Hallo,
also ich bin der Anleitung gefolgt, aber die log Datei gibt nur dieses an:
Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, [url='http://www.gmer.netdevice']http://www.gmer.net
device
: opened successfully
user: MBR read successfully
kernel: MBR read successfully
user & kernel MBR OK
copy of MBR has been found in sector 0x0950A600
malicious code @ sector 0x0950A603 !
PE file found in sector at 0x0950A619 !
Laut dieser Seite, wo die Schritte erklärt werden, müsste dies aber auch alles sein. Denn es heißt, es werden zwei mögliche angabe im Log stehen:
Wenn mbr nicht Infiziert ist:
Stealth MBR rootkit detector 0.2.4 by Gmer,
http://www.gmer.net
device: opened successfully
user: MBR read successfully
kernel: MBR read successfully
user kernel MBR OK
[img]../bilder/Copy.png[/img]
Wenn aber Infiziert
Stealth MBR rootkit detector 0.2.4 by Gmer,
http://www.gmer.net
device: opened successfully
user: MBR read successfully
kernel: MBR read successfully
user kernel MBR OK
MBR rootkit code detected !
malicious code @ sector 0xe4f8121 size 0x2c3 !
copy of MBR has been found in sector 62 !
MBR rootkit infection detected ! Use: "mbr.exe -f" to fix
Sollen wir Combofix wie beim letzten Mal ausprobieren?