- Registriert
- 26.02.19
- Beiträge
- 5
Hallo,
da ich mir einige Programme über chip.de runtergeladen habe, wollte ich danach einen Malwarcheck durchführen. Wie hier nachgelesen hab ich EtreCheck installiert (diesmal aus dem AppStore). Wie ebenfalls hier beschrieben, hatte ich vor vollen Zugriff auf die Festplatte zu gestatten.
Offensichtlich war das aber die falsche Einstellung, denn am Ende des Reports von Etrecheck kommt nach wie vor: "Enable Full Drive Access to see more information." Frage 1: Wo stellt man dies wirklich in der Systemsteuerung ein?
Beim ersten Durchführen des Checks wurden mir zwei Dateien unter "Clean up" angezeigt, die ich löschen wollte. Da ich den entsprechenden Ordner nicht gefunden hatte, habe ich per Terminal die versteckten Ordner anzeigen lassen. Dabei hab ich einen Ordner für ein Programm gefunden, das ich gar nicht mehr installiert habe. Den Namen kann ich leider nicht posten, weil ich das Anzeigen der versteckten Ordner wieder abgeschaltet hatte. Dabei, sie wieder anzeigen zu lassen, hab ich mich vertippt:
Frage 2: Kann mir bitte jemand sagen, was ich da angestellt habe. Und ob das rückgängig zu machen ist (wenn ja, wie?)
Und nun das eigentliche Anliegen: Interpretiere ich den Report des EtreChecks richtig, dass keine Malware auf meinem Mac ist? Oder kann man das nur sagen, wenn eben der volle Zugriff auf die Festplatte gegeben ist?
EtreCheck version: 5.2 (5029)
Report generated: 2019-03-01 12:34:49
Download EtreCheck from https://etrecheck.com
Runtime: 1:16
Performance: Excellent
Sandbox: Enabled
Full drive access: Disabled
Problem: No problem - just checking
Description:
Just checking
Major Issues:
Anything that appears on this list needs immediate attention.
No Time Machine backup - Time Machine backup not found.
Minor Issues:
These issues do not need immediate attention but they may indicate future problems or opportunities for improvement.
Unsigned files - There are unsigned software files installed. They appear to be legitimate but should be reviewed.
Limited drive access - More information may be available with Full Drive Access.
Hardware Information:
MacBook Pro (15-inch, 2018)
MacBook Pro Model: MacBookPro15,1
1 2,2 GHz Intel Core i7 (i7-8750H) CPU: 6-core
16 GB RAM - Not upgradeable
BANK 0/ChannelA-DIMM0 - 8 GB DDR4 2400 ok
BANK 2/ChannelB-DIMM0 - 8 GB DDR4 2400 ok
Battery: Health = Normal - Cycle count = 38
Video Information:
Intel UHD Graphics 630 - VRAM: 1536 MB
Color LCD 2880 x 1800
Radeon Pro 555X - VRAM: 4096 MB
Drives:
disk0 - APPLE SSD AP0256M 251.00 GB (Solid State - TRIM: Yes)
Internal PCI-Express 8.0 GT/s x4 NVM Express
disk0s1 - EFI [EFI] 315 MB
disk0s2 [APFS Container] 250.69 GB
disk1 [APFS Virtual drive] 250.69 GB (Shared by 4 volumes)
disk1s1 - Macintosh HD (APFS) (Shared - 46.35 GB used)
disk1s2 - Preboot (APFS) [APFS Preboot] (Shared)
disk1s3 - Recovery (APFS) [Recovery] (Shared)
disk1s4 - VM (APFS) [APFS VM] (Shared - 3.22 GB used)
Mounted Volumes:
disk1s1 - Macintosh HD 250.69 GB (200.42 GB free)
APFS
Mount point: /
Encrypted
disk1s4 - VM [APFS VM] (Shared - 3.22 GB used)
APFS
Mount point: /private/var/vm
Encrypted
Network:
Interface en0: Wi-Fi
802.11 a/b/g/n/ac
Interface en6: Bluetooth PAN
Interface bridge0: Thunderbolt Bridge
System Software:
macOS Mojave 10.14.3 (18D109)
Time since boot: About 3 days
Notifications:
Notifications not available without Full Drive Access.
Security:
Gatekeeper: Enabled
System Integrity Protection: Enabled
Unsigned Files:
Launchd: /Library/LaunchAgents/com.oracle.java.Java-Updater.plist
Executable: /Library/Internet Plug-Ins/JavaAppletPlugin.plugin/Contents/Resources/Java Updater.app/Contents/MacOS/Java Updater -bgcheck
Details: Exact match found in the whitelist - probably OK
Launchd: /Library/Internet Plug-Ins/JavaAppletPlugin.plugin/Contents/Resources/com.oracle.java.Helper-Tool.plist
Executable: /Library/Internet Plug-Ins/JavaAppletPlugin.plugin/Contents/Resources/Helper-Tool
Details: Exact match found in the whitelist - probably OK
Launchd: /Library/LaunchDaemons/com.intel.haxm.plist
Executable: /Library/Extensions/intelhaxm.kext/Contents/Resources/haxm_start.sh
Details: Exact match found in the whitelist - probably OK
Launchd: /Library/LaunchDaemons/com.oracle.java.Helper-Tool.plist
Executable: /Library/Internet Plug-Ins/JavaAppletPlugin.plugin/Contents/Resources/Helper-Tool
Details: Exact match found in the whitelist - probably OK
Launchd: /Library/Internet Plug-Ins/JavaAppletPlugin.plugin/Contents/Resources/com.oracle.java.Java-Updater.plist
Executable: /Library/Internet Plug-Ins/JavaAppletPlugin.plugin/Contents/Resources/Java Updater.app/Contents/MacOS/Java Updater -bgcheck
Details: Exact match found in the whitelist - probably OK
Kernel Extensions:
/Library/Extensions
intelhaxm.kext (Intel Corporation Apps, 7.3.2 - SDK 10.9)
System Launch Agents:
[Not Loaded] 16 Apple tasks
[Loaded] 162 Apple tasks
[Running] 121 Apple tasks
System Launch Daemons:
[Not Loaded] 36 Apple tasks
[Loaded] 172 Apple tasks
[Running] 126 Apple tasks
[Other] One Apple task
Launch Agents:
[Other] com.adobe.AdobeCreativeCloud.plist (Adobe Systems, Inc. - installed 2019-02-28)
[Not Loaded] com.adobe.GC.AGM.plist (Adobe Systems, Inc. - installed 2019-02-25)
[Not Loaded] com.adobe.GC.Invoker-1.0.plist (Adobe Systems, Inc. - installed 2019-02-25)
[Not Loaded] com.oracle.java.Java-Updater.plist (? 4eb45569 - installed 2019-01-08)
Launch Daemons:
[Loaded] com.adobe.acc.installer.v2.plist (Adobe Systems, Inc. - installed 2019-02-28)
[Loaded] com.adobe.agsservice.plist (Adobe Systems, Inc. - installed 2019-02-25)
[Loaded] com.apple.installer.osmessagetracing.plist (Apple - installed 2019-02-05)
[Loaded] com.intel.haxm.plist (? 42f307e7 - installed 2018-09-18)
[Not Loaded] com.oracle.java.Helper-Tool.plist (? e3fefdd2 - installed 2019-01-08)
User Launch Agents:
[Loaded] com.adobe.GC.Invoker-1.0.plist (Adobe Systems, Inc. - installed 2019-02-26)
[Loaded] com.dropbox.DropboxMacUpdate.agent.plist (Dropbox, Inc. - installed 2019-02-14)
[Loaded] com.google.keystone.agent.plist (Google, Inc. - installed 2019-01-03)
User Login Items:
Dropbox.app (Dropbox, Inc. - installed 2019-02-20)
(Application - /Applications/Dropbox.app)
Internet Plug-ins:
AdobeAAMDetect: 3.0.0.0 (Adobe Systems, Inc. - installed 2019-02-28)
JavaAppletPlugin: Java 8 Update 201 build 09 (? - installed 2019-02-19)
Audio Plug-ins:
AppleTimeSyncAudioClock: 1.0 (Apple - installed 2018-11-30)
BluetoothAudioPlugIn: 6.0.10 (Apple - installed 2019-02-11)
AirPlay: 2.0 (Apple - installed 2019-02-11)
AppleAVBAudio: 710.1 (Apple - installed 2018-11-30)
BridgeAudioSP: 5.2 (Apple - installed 2019-02-11)
iSightAudio: 7.7.3 (Apple - installed 2018-11-30)
3rd Party Preference Panes:
Java (installed 2019-02-19)
Time Machine:
Time Machine Not Configured!
Performance:
System Load: 1.12 (1 min ago) 1.47 (5 min ago) 1.50 (15 min ago)
Nominal I/O speed: 0.20 MB/s
File system: 18.60 seconds
Write speed: 1234 MB/s
Read speed: 2924 MB/s
CPU Usage Snapshot:
Type Overall
System 1 %
User 3 %
Idle 95 %
Top Processes Snapshot by CPU:
Process (count) CPU (Source - Location)
Other processes 26.94 % (?)
EtreCheck 20.68 % (App Store)
Google Chrome Helper 4.19 % (Google, Inc.)
Google Chrome 3.46 % (Google, Inc.)
AppleSpell 0.28 % (Apple)
Top Processes Snapshot by Memory:
Process (count) RAM usage (Source - Location)
EtreCheck 943 MB (App Store)
Evernote 317 MB (App Store)
Google Chrome Helper 272 MB (Google, Inc.)
Google Chrome 232 MB (Google, Inc.)
Dropbox 179 MB (Dropbox, Inc.)
Top Processes Snapshot by Network Use:
Process Input / Output (Source - Location)
Dropbox 3 MB / 2 MB (Dropbox, Inc.)
mDNSResponder 1 MB / 352 KB (Apple)
UserEventAgent 546 KB / 757 KB (Apple)
netbiosd 490 KB / 89 KB (Apple)
biometrickitd 18 KB / 18 KB (Apple)
Virtual Memory Information:
Physical RAM: 16 GB
Free RAM: 972 MB
Used RAM: 9.76 GB
Cached files: 5.29 GB
Available RAM: 6.24 GB
Swap Used: 497 MB
Software Installs (past 30 days):
Install Date Name (Version)
2019-02-19 Java 8 Update 201
2019-02-19 JDK 11.0.2
2019-02-20 Gatekeeper Configuration Data (163)
2019-02-22 Intel(R) Hardware Accelerated Execution Manager
2019-02-24 MRTConfigData (1.40)
2019-02-24 ForkLift (2.6.6)
2019-02-25 TextWrangler (5.5.2)
2019-02-26 SketchBook (8.6.1)
2019-02-26 Seashore (2.4.0)
2019-02-27 Paint X Lite (4.2)
2019-02-27 Paint S (5.6.10)
2019-03-01 EtreCheck (5.2)
Diagnostics Information (past 7 days):
Directory /Library/Logs/DiagnosticReports is not accessible.
Enable Full Drive Access to see more information.
End of report
Vielen Dank schon mal im Voraus.
Grüße chainy
da ich mir einige Programme über chip.de runtergeladen habe, wollte ich danach einen Malwarcheck durchführen. Wie hier nachgelesen hab ich EtreCheck installiert (diesmal aus dem AppStore). Wie ebenfalls hier beschrieben, hatte ich vor vollen Zugriff auf die Festplatte zu gestatten.
Offensichtlich war das aber die falsche Einstellung, denn am Ende des Reports von Etrecheck kommt nach wie vor: "Enable Full Drive Access to see more information." Frage 1: Wo stellt man dies wirklich in der Systemsteuerung ein?
Beim ersten Durchführen des Checks wurden mir zwei Dateien unter "Clean up" angezeigt, die ich löschen wollte. Da ich den entsprechenden Ordner nicht gefunden hatte, habe ich per Terminal die versteckten Ordner anzeigen lassen. Dabei hab ich einen Ordner für ein Programm gefunden, das ich gar nicht mehr installiert habe. Den Namen kann ich leider nicht posten, weil ich das Anzeigen der versteckten Ordner wieder abgeschaltet hatte. Dabei, sie wieder anzeigen zu lassen, hab ich mich vertippt:
Frage 2: Kann mir bitte jemand sagen, was ich da angestellt habe. Und ob das rückgängig zu machen ist (wenn ja, wie?)
Und nun das eigentliche Anliegen: Interpretiere ich den Report des EtreChecks richtig, dass keine Malware auf meinem Mac ist? Oder kann man das nur sagen, wenn eben der volle Zugriff auf die Festplatte gegeben ist?
EtreCheck version: 5.2 (5029)
Report generated: 2019-03-01 12:34:49
Download EtreCheck from https://etrecheck.com
Runtime: 1:16
Performance: Excellent
Sandbox: Enabled
Full drive access: Disabled
Problem: No problem - just checking
Description:
Just checking
Major Issues:
Anything that appears on this list needs immediate attention.
No Time Machine backup - Time Machine backup not found.
Minor Issues:
These issues do not need immediate attention but they may indicate future problems or opportunities for improvement.
Unsigned files - There are unsigned software files installed. They appear to be legitimate but should be reviewed.
Limited drive access - More information may be available with Full Drive Access.
Hardware Information:
MacBook Pro (15-inch, 2018)
MacBook Pro Model: MacBookPro15,1
1 2,2 GHz Intel Core i7 (i7-8750H) CPU: 6-core
16 GB RAM - Not upgradeable
BANK 0/ChannelA-DIMM0 - 8 GB DDR4 2400 ok
BANK 2/ChannelB-DIMM0 - 8 GB DDR4 2400 ok
Battery: Health = Normal - Cycle count = 38
Video Information:
Intel UHD Graphics 630 - VRAM: 1536 MB
Color LCD 2880 x 1800
Radeon Pro 555X - VRAM: 4096 MB
Drives:
disk0 - APPLE SSD AP0256M 251.00 GB (Solid State - TRIM: Yes)
Internal PCI-Express 8.0 GT/s x4 NVM Express
disk0s1 - EFI [EFI] 315 MB
disk0s2 [APFS Container] 250.69 GB
disk1 [APFS Virtual drive] 250.69 GB (Shared by 4 volumes)
disk1s1 - Macintosh HD (APFS) (Shared - 46.35 GB used)
disk1s2 - Preboot (APFS) [APFS Preboot] (Shared)
disk1s3 - Recovery (APFS) [Recovery] (Shared)
disk1s4 - VM (APFS) [APFS VM] (Shared - 3.22 GB used)
Mounted Volumes:
disk1s1 - Macintosh HD 250.69 GB (200.42 GB free)
APFS
Mount point: /
Encrypted
disk1s4 - VM [APFS VM] (Shared - 3.22 GB used)
APFS
Mount point: /private/var/vm
Encrypted
Network:
Interface en0: Wi-Fi
802.11 a/b/g/n/ac
Interface en6: Bluetooth PAN
Interface bridge0: Thunderbolt Bridge
System Software:
macOS Mojave 10.14.3 (18D109)
Time since boot: About 3 days
Notifications:
Notifications not available without Full Drive Access.
Security:
Gatekeeper: Enabled
System Integrity Protection: Enabled
Unsigned Files:
Launchd: /Library/LaunchAgents/com.oracle.java.Java-Updater.plist
Executable: /Library/Internet Plug-Ins/JavaAppletPlugin.plugin/Contents/Resources/Java Updater.app/Contents/MacOS/Java Updater -bgcheck
Details: Exact match found in the whitelist - probably OK
Launchd: /Library/Internet Plug-Ins/JavaAppletPlugin.plugin/Contents/Resources/com.oracle.java.Helper-Tool.plist
Executable: /Library/Internet Plug-Ins/JavaAppletPlugin.plugin/Contents/Resources/Helper-Tool
Details: Exact match found in the whitelist - probably OK
Launchd: /Library/LaunchDaemons/com.intel.haxm.plist
Executable: /Library/Extensions/intelhaxm.kext/Contents/Resources/haxm_start.sh
Details: Exact match found in the whitelist - probably OK
Launchd: /Library/LaunchDaemons/com.oracle.java.Helper-Tool.plist
Executable: /Library/Internet Plug-Ins/JavaAppletPlugin.plugin/Contents/Resources/Helper-Tool
Details: Exact match found in the whitelist - probably OK
Launchd: /Library/Internet Plug-Ins/JavaAppletPlugin.plugin/Contents/Resources/com.oracle.java.Java-Updater.plist
Executable: /Library/Internet Plug-Ins/JavaAppletPlugin.plugin/Contents/Resources/Java Updater.app/Contents/MacOS/Java Updater -bgcheck
Details: Exact match found in the whitelist - probably OK
Kernel Extensions:
/Library/Extensions
intelhaxm.kext (Intel Corporation Apps, 7.3.2 - SDK 10.9)
System Launch Agents:
[Not Loaded] 16 Apple tasks
[Loaded] 162 Apple tasks
[Running] 121 Apple tasks
System Launch Daemons:
[Not Loaded] 36 Apple tasks
[Loaded] 172 Apple tasks
[Running] 126 Apple tasks
[Other] One Apple task
Launch Agents:
[Other] com.adobe.AdobeCreativeCloud.plist (Adobe Systems, Inc. - installed 2019-02-28)
[Not Loaded] com.adobe.GC.AGM.plist (Adobe Systems, Inc. - installed 2019-02-25)
[Not Loaded] com.adobe.GC.Invoker-1.0.plist (Adobe Systems, Inc. - installed 2019-02-25)
[Not Loaded] com.oracle.java.Java-Updater.plist (? 4eb45569 - installed 2019-01-08)
Launch Daemons:
[Loaded] com.adobe.acc.installer.v2.plist (Adobe Systems, Inc. - installed 2019-02-28)
[Loaded] com.adobe.agsservice.plist (Adobe Systems, Inc. - installed 2019-02-25)
[Loaded] com.apple.installer.osmessagetracing.plist (Apple - installed 2019-02-05)
[Loaded] com.intel.haxm.plist (? 42f307e7 - installed 2018-09-18)
[Not Loaded] com.oracle.java.Helper-Tool.plist (? e3fefdd2 - installed 2019-01-08)
User Launch Agents:
[Loaded] com.adobe.GC.Invoker-1.0.plist (Adobe Systems, Inc. - installed 2019-02-26)
[Loaded] com.dropbox.DropboxMacUpdate.agent.plist (Dropbox, Inc. - installed 2019-02-14)
[Loaded] com.google.keystone.agent.plist (Google, Inc. - installed 2019-01-03)
User Login Items:
Dropbox.app (Dropbox, Inc. - installed 2019-02-20)
(Application - /Applications/Dropbox.app)
Internet Plug-ins:
AdobeAAMDetect: 3.0.0.0 (Adobe Systems, Inc. - installed 2019-02-28)
JavaAppletPlugin: Java 8 Update 201 build 09 (? - installed 2019-02-19)
Audio Plug-ins:
AppleTimeSyncAudioClock: 1.0 (Apple - installed 2018-11-30)
BluetoothAudioPlugIn: 6.0.10 (Apple - installed 2019-02-11)
AirPlay: 2.0 (Apple - installed 2019-02-11)
AppleAVBAudio: 710.1 (Apple - installed 2018-11-30)
BridgeAudioSP: 5.2 (Apple - installed 2019-02-11)
iSightAudio: 7.7.3 (Apple - installed 2018-11-30)
3rd Party Preference Panes:
Java (installed 2019-02-19)
Time Machine:
Time Machine Not Configured!
Performance:
System Load: 1.12 (1 min ago) 1.47 (5 min ago) 1.50 (15 min ago)
Nominal I/O speed: 0.20 MB/s
File system: 18.60 seconds
Write speed: 1234 MB/s
Read speed: 2924 MB/s
CPU Usage Snapshot:
Type Overall
System 1 %
User 3 %
Idle 95 %
Top Processes Snapshot by CPU:
Process (count) CPU (Source - Location)
Other processes 26.94 % (?)
EtreCheck 20.68 % (App Store)
Google Chrome Helper 4.19 % (Google, Inc.)
Google Chrome 3.46 % (Google, Inc.)
AppleSpell 0.28 % (Apple)
Top Processes Snapshot by Memory:
Process (count) RAM usage (Source - Location)
EtreCheck 943 MB (App Store)
Evernote 317 MB (App Store)
Google Chrome Helper 272 MB (Google, Inc.)
Google Chrome 232 MB (Google, Inc.)
Dropbox 179 MB (Dropbox, Inc.)
Top Processes Snapshot by Network Use:
Process Input / Output (Source - Location)
Dropbox 3 MB / 2 MB (Dropbox, Inc.)
mDNSResponder 1 MB / 352 KB (Apple)
UserEventAgent 546 KB / 757 KB (Apple)
netbiosd 490 KB / 89 KB (Apple)
biometrickitd 18 KB / 18 KB (Apple)
Virtual Memory Information:
Physical RAM: 16 GB
Free RAM: 972 MB
Used RAM: 9.76 GB
Cached files: 5.29 GB
Available RAM: 6.24 GB
Swap Used: 497 MB
Software Installs (past 30 days):
Install Date Name (Version)
2019-02-19 Java 8 Update 201
2019-02-19 JDK 11.0.2
2019-02-20 Gatekeeper Configuration Data (163)
2019-02-22 Intel(R) Hardware Accelerated Execution Manager
2019-02-24 MRTConfigData (1.40)
2019-02-24 ForkLift (2.6.6)
2019-02-25 TextWrangler (5.5.2)
2019-02-26 SketchBook (8.6.1)
2019-02-26 Seashore (2.4.0)
2019-02-27 Paint X Lite (4.2)
2019-02-27 Paint S (5.6.10)
2019-03-01 EtreCheck (5.2)
Diagnostics Information (past 7 days):
Directory /Library/Logs/DiagnosticReports is not accessible.
Enable Full Drive Access to see more information.
End of report
Vielen Dank schon mal im Voraus.
Grüße chainy