![]() |
|
Plagegeister aller Art und deren Bekämpfung: 4 Trojaner und keine Ende, sind in Quarantäne, lassen sich aber nicht löschenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() | #13 |
![]() | ![]() 4 Trojaner und keine Ende, sind in Quarantäne, lassen sich aber nicht löschen Hallo Swiss, I am back und hier gleich das Ergebnis zu Schritt 2 OLT, komme zurück wenn ich Schritt 3 im Sack habe. Bis später, Gruß von der Venus und DANKE :-) All processes killed ========== OTL ========== Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser\\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6}\ not found. Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7}\ not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\KernelFaultCheck not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\TFncKy deleted successfully. Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully. File move failed. E:\Autorun.inf scheduled to be moved on reboot. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{1fdc0971-98bf-11df-8dce-000e7bc0bc1f}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1fdc0971-98bf-11df-8dce-000e7bc0bc1f}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{1fdc0971-98bf-11df-8dce-000e7bc0bc1f}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1fdc0971-98bf-11df-8dce-000e7bc0bc1f}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{1fdc0971-98bf-11df-8dce-000e7bc0bc1f}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1fdc0971-98bf-11df-8dce-000e7bc0bc1f}\ not found. File move failed. E:\setup_vmc_lite.exe scheduled to be moved on reboot. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f87861b0-9729-11df-8dca-000e7bc0bc1f}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f87861b0-9729-11df-8dca-000e7bc0bc1f}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f87861b0-9729-11df-8dca-000e7bc0bc1f}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f87861b0-9729-11df-8dca-000e7bc0bc1f}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f87861b0-9729-11df-8dca-000e7bc0bc1f}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f87861b0-9729-11df-8dca-000e7bc0bc1f}\ not found. File move failed. E:\setup_vmc_lite.exe scheduled to be moved on reboot. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f87861b1-9729-11df-8dca-000e7bc0bc1f}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f87861b1-9729-11df-8dca-000e7bc0bc1f}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f87861b1-9729-11df-8dca-000e7bc0bc1f}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f87861b1-9729-11df-8dca-000e7bc0bc1f}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f87861b1-9729-11df-8dca-000e7bc0bc1f}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f87861b1-9729-11df-8dca-000e7bc0bc1f}\ not found. File move failed. E:\setup_vmc_lite.exe scheduled to be moved on reboot. ========== COMMANDS ========== Restore points cleared and new OTL Restore Point set! [EMPTYTEMP] User: Administrator ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 32768 bytes User: All Users User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 32768 bytes User: LocalService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 32969 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 450993 bytes User: vip ->Temp folder emptied: 1200705 bytes ->Temporary Internet Files folder emptied: 111031 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 59470095 bytes ->Flash cache emptied: 3990 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 19569 bytes %systemroot%\System32 .tmp files removed: 2951 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 11131405 bytes RecycleBin emptied: 3130 bytes Total Files Cleaned = 69,00 mb OTL by OldTimer - Version 3.2.17.3 log created on 12012010_192020 Files\Folders moved on Reboot... File move failed. E:\Autorun.inf scheduled to be moved on reboot. File move failed. E:\setup_vmc_lite.exe scheduled to be moved on reboot. Registry entries deleted on Reboot... |
Themen zu 4 Trojaner und keine Ende, sind in Quarantäne, lassen sich aber nicht löschen |
.dll, antivir, avira, desktop, dllhost.exe, entfernen, firefox.exe, frage, g-data, jusched.exe, löschen, m.exe, microsoft, modul, neu, nt.dll, programm, programme, prozesse, registry, rundll, scan, services.exe, software, svchost.exe, system, thotkey.exe, trojaner, versteckte objekte, verweise, virus gefunden, warum, wenig ahnung, windows, winlogon.exe |