![]() |
|
Log-Analyse und Auswertung: PC langsam und PUP.Funmoods gefundenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() |
|
![]() | #1 |
![]() ![]() | ![]() PC langsam und PUP.Funmoods gefunden Hallo Markus, das Problem mit Chrome besteht immer noch (Startseite). Code:
ATTFilter All processes killed ========== OTL ========== Prefs.js: "hxxp://search.conduit.com/ResultsExt.aspx?SSPV=FFOB10&ctid=CT2736476&SearchSource=3&q={searchTerms}" removed from browser.search.defaulturl Prefs.js: "hxxp://search.sweetim.com/search.asp?src=2&q=" removed from keyword.URL ========== COMMANDS ========== [EMPTYTEMP] User: Administrator ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Administrator.BENUTZER-4A24C5 ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Administrator.BENUTZER-4A24C5.000 ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->FireFox cache emptied: 0 bytes User: All Users User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: LocalService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: User ->Temp folder emptied: 5354386 bytes ->Temporary Internet Files folder emptied: 33175 bytes ->FireFox cache emptied: 80634470 bytes ->Google Chrome cache emptied: 15038141 bytes ->Flash cache emptied: 3139 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 27248738 bytes RecycleBin emptied: 17168228 bytes Total Files Cleaned = 139,00 mb OTL by OldTimer - Version 3.2.69.0 log created on 10012012_022551 Files\Folders moved on Reboot... C:\WINDOWS\temp\f4d4851e8935eebef0f2eb52b3212bc9PSK_PLUGINS_0 moved successfully. PendingFileRenameOperations files... Registry entries deleted on Reboot... Code:
ATTFilter SystemLook 30.07.11 by jpshortstuff Log created at 11:47 on 01/10/2012 by User Administrator - Elevation successful ========== filefind ========== Searching for "*MyStart*" No files found. Searching for "*Incredibar*" No files found. Searching for "*SweetIM*" C:\Dokumente und Einstellungen\User\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Local Storage\http_home.sweetim.com_0.localstorage --a---- 3072 bytes [23:44 30/09/2012] [09:40 01/10/2012] 6C45382161D2A8A13B111815E79138E2 C:\Dokumente und Einstellungen\User\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Local Storage\http_home.sweetim.com_0.localstorage-journal --a---- 3608 bytes [23:44 30/09/2012] [09:40 01/10/2012] 7092722D188CF833EE4D5866357A15E7 ========== folderfind ========== Searching for "*MyStart*" No folders found. Searching for "*Incredibar*" No folders found. Searching for "*SweetIM*" No folders found. ========== regfind ========== Searching for "MyStart" No data found. Searching for "Incredibar" No data found. Searching for "SweetIM" [HKEY_CURRENT_USER\Software\VSRevoGroup\RevoUninstaller\Autoruns\HKLM\Run] "Sweetpacks Communicator"="C:\Programme\SweetIM\Communicator\SweetPacksUpdateManager.exe" [HKEY_USERS\S-1-5-21-1993962763-1390067357-839522115-1003\Software\VSRevoGroup\RevoUninstaller\Autoruns\HKLM\Run] "Sweetpacks Communicator"="C:\Programme\SweetIM\Communicator\SweetPacksUpdateManager.exe" Searching for " " [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Media Device Manager\Plugins\SP\MSPMSP\KBDeviceList] "SanDiskIMb"="E-USB Fl;ash ; " [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\atapi\Parameters] "UseCheckPowerForFlush"="SAMSUNG WNR-31601A (1600MB) SAMSUNG WNR-31601A (1.6GB) IBM-DTCA-24090 TC6OAA2A IBM-DTCA-24090 TC6IAA2A IBM-DPLA-25120 PL8OAA2A IBM-DPLA-25120 PL8IAA2A IBM-DPLA-25120 PL8IAA4A IBM-DTCA-23240 TC5OAA2A IBM-DTCA-23240 TC5IAA2A IBM-DPLA-24480 PL7OAA2A IBM-DPLA-24480 PL7IAA2A" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\atapi\Parameters] "NoFlushDevice"="QUANTUM_LPS525A SCR-730 " [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\atapi\Parameters] "PioOnlyDevice"=" Conner Peripherals 425MB - CFS425A MATSHITA CR-581 FX600S CD-44E QUANTUM TRB850A QUANTUM MARVERICK 540A MAXTOR MXT-540 AT Maxtor 71260 AT Maxtor 7850 AV Maxtor 7540 AV Maxtor 7213 AT Maxtor 7345 Maxtor 7245 AT Maxtor 7245 Maxtor 7211AU Maxtor 7171 AT CD-316E SAMSUNG_SCR-2430 CR-2801TE" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\atapi\Parameters] "NonRemovableMedia"="Kingston Technology DataPak 340 SunDisk SDP5A-10 SunDisk SDCFB-10 SunDisk SDP3B-20 SunDisk SDP3B-175 SunDisk SDP5-2.5 Calluna Technology CT260MC BN-S004AC-S 1.00 Calluna Technology CT520RM Hitachi CV 5.1.1 ATA_FLASH Mitsubishi ATA Card LEXAR ATA_FLASH Micron MTCF004A Micron MTCF008A SunDisk SDP3B-110 SunDisk SDCFB-4 BN-CAB-T MEMORYSTICK MEMORYSTICK 8M 8K" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\atapi\Parameters] "NoPowerDownDevice"="RD-DRC001-M CS-R37 0 " [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\atapi\Parameters] "AutoEjectZipDevice"="IOMEGA ZIP 100 ATAPI 23.D IOMEGA ZIP 100 ATAPI 21.D IOMEGA ZIP 100 ATAPI 20.D IOMEGA ZIP 100 ATAPI 91.D IOMEGA ZIP 100 B.29 IOMEGA ZIP 100 B.22 " [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\atapi\Parameters] "UseCheckPowerForFlush"="SAMSUNG WNR-31601A (1600MB) SAMSUNG WNR-31601A (1.6GB) IBM-DTCA-24090 TC6OAA2A IBM-DTCA-24090 TC6IAA2A IBM-DPLA-25120 PL8OAA2A IBM-DPLA-25120 PL8IAA2A IBM-DPLA-25120 PL8IAA4A IBM-DTCA-23240 TC5OAA2A IBM-DTCA-23240 TC5IAA2A IBM-DPLA-24480 PL7OAA2A IBM-DPLA-24480 PL7IAA2A" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\atapi\Parameters] "NoFlushDevice"="QUANTUM_LPS525A SCR-730 " [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\atapi\Parameters] "PioOnlyDevice"=" Conner Peripherals 425MB - CFS425A MATSHITA CR-581 FX600S CD-44E QUANTUM TRB850A QUANTUM MARVERICK 540A MAXTOR MXT-540 AT Maxtor 71260 AT Maxtor 7850 AV Maxtor 7540 AV Maxtor 7213 AT Maxtor 7345 Maxtor 7245 AT Maxtor 7245 Maxtor 7211AU Maxtor 7171 AT CD-316E SAMSUNG_SCR-2430 CR-2801TE" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\atapi\Parameters] "NonRemovableMedia"="Kingston Technology DataPak 340 SunDisk SDP5A-10 SunDisk SDCFB-10 SunDisk SDP3B-20 SunDisk SDP3B-175 SunDisk SDP5-2.5 Calluna Technology CT260MC BN-S004AC-S 1.00 Calluna Technology CT520RM Hitachi CV 5.1.1 ATA_FLASH Mitsubishi ATA Card LEXAR ATA_FLASH Micron MTCF004A Micron MTCF008A SunDisk SDP3B-110 SunDisk SDCFB-4 BN-CAB-T MEMORYSTICK MEMORYSTICK 8M 8K" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\atapi\Parameters] "NoPowerDownDevice"="RD-DRC001-M CS-R37 0 " [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\atapi\Parameters] "AutoEjectZipDevice"="IOMEGA ZIP 100 ATAPI 23.D IOMEGA ZIP 100 ATAPI 21.D IOMEGA ZIP 100 ATAPI 20.D IOMEGA ZIP 100 ATAPI 91.D IOMEGA ZIP 100 B.29 IOMEGA ZIP 100 B.22 " [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\atapi\Parameters] "UseCheckPowerForFlush"="SAMSUNG WNR-31601A (1600MB) SAMSUNG WNR-31601A (1.6GB) IBM-DTCA-24090 TC6OAA2A IBM-DTCA-24090 TC6IAA2A IBM-DPLA-25120 PL8OAA2A IBM-DPLA-25120 PL8IAA2A IBM-DPLA-25120 PL8IAA4A IBM-DTCA-23240 TC5OAA2A IBM-DTCA-23240 TC5IAA2A IBM-DPLA-24480 PL7OAA2A IBM-DPLA-24480 PL7IAA2A" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\atapi\Parameters] "NoFlushDevice"="QUANTUM_LPS525A SCR-730 " [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\atapi\Parameters] "PioOnlyDevice"=" Conner Peripherals 425MB - CFS425A MATSHITA CR-581 FX600S CD-44E QUANTUM TRB850A QUANTUM MARVERICK 540A MAXTOR MXT-540 AT Maxtor 71260 AT Maxtor 7850 AV Maxtor 7540 AV Maxtor 7213 AT Maxtor 7345 Maxtor 7245 AT Maxtor 7245 Maxtor 7211AU Maxtor 7171 AT CD-316E SAMSUNG_SCR-2430 CR-2801TE" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\atapi\Parameters] "NonRemovableMedia"="Kingston Technology DataPak 340 SunDisk SDP5A-10 SunDisk SDCFB-10 SunDisk SDP3B-20 SunDisk SDP3B-175 SunDisk SDP5-2.5 Calluna Technology CT260MC BN-S004AC-S 1.00 Calluna Technology CT520RM Hitachi CV 5.1.1 ATA_FLASH Mitsubishi ATA Card LEXAR ATA_FLASH Micron MTCF004A Micron MTCF008A SunDisk SDP3B-110 SunDisk SDCFB-4 BN-CAB-T MEMORYSTICK MEMORYSTICK 8M 8K" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\atapi\Parameters] "NoPowerDownDevice"="RD-DRC001-M CS-R37 0 " [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\atapi\Parameters] "AutoEjectZipDevice"="IOMEGA ZIP 100 ATAPI 23.D IOMEGA ZIP 100 ATAPI 21.D IOMEGA ZIP 100 ATAPI 20.D IOMEGA ZIP 100 ATAPI 91.D IOMEGA ZIP 100 B.29 IOMEGA ZIP 100 B.22 " -= EOF =- |
![]() | #2 |
/// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() PC langsam und PUP.Funmoods gefunden Servus,
__________________So heiße ich nicht... ![]() Dann sei so nett und kläre mich bitte auf. Was war falsch und wie hast du das Problem behoben? Zum Windows Service Pack 3: Es geht nicht um schneller oder langsamer. Die Sicherheit ist das Entscheidende. Schritt 1
Code:
ATTFilter :files C:\Dokumente und Einstellungen\User\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Local Storage\http_home.sweetim.com_0.localstorage C:\Dokumente und Einstellungen\User\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Local Storage\http_home.sweetim.com_0.localstorage-journal :Commands [emptytemp]
Schritt 2
Schritt 3 Starte bitte OTL.exe und drücke den Quick Scan Button. Poste die OTL.txt hier in deinen Thread. Bitte poste mit deiner nächsten Antwort
Geändert von M-K-D-B (01.10.2012 um 16:47 Uhr) |
![]() |
Themen zu PC langsam und PUP.Funmoods gefunden |
32 bit, 7-zip, antivirus, aufrufe, avast, bho, cdburnerxp, desktop, einstellungen, error, explorer, fehler, firefox, flash player, format, helper, icreinstall, iexplore.exe, langsam, lenovo, logfile, mozilla, msiinstaller, oneclickdownloader, plug-in, problem, realtek, registry, revo uninstaller, rundll, security, software, sweetim, sweetpacks, tarma, tastatur, temp, udp, windows internet |