![]() |
LOGFILE Text |
alles super gelaufen, vielen vielen dank!! funktioniert wieder einwandfrei.. nur beim starten kommt immer eine fehlermeldung, dass das modul nicht ausgewählt werden kann?? was heißt das?? |
Wo ist das Logfile vom Fix? (siehe Anleitung) |
ich habe eigentlich gedacht, dass ich das schon reinkopiert habe, aber irgendwie ... wohl nicht! Kann ich das noch nachträglich machen? und bitte antwort auf meine frage! :-) |
Nachträglich kannst Du das Logfile hier einsehen => C:\_OTL\MovedFiles\<datum_nummer.log> darum kuemmern wir uns noch, alles der Reihe nach. Mit dem Rechner nicht rumsurfen! |
ist das ok? hab grad gesehen, dass da eine fehlermeldung kommt, deshalb kann ich es nicht hochladen!! ungültige datei steht da!! |
Hast du es gefunden? |
was sollen wir jetzt machen? |
Oeffne die Datei mit dem Editor und fuege es in deinen Beitrag ein! |
All processes killed ========== OTL ========== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully! Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found. HKEY_USERS\S-1-5-21-3065508809-3451257884-3724154575-1000\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully! Registry key HKEY_USERS\S-1-5-21-3065508809-3451257884-3724154575-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found. Registry key HKEY_USERS\S-1-5-21-3065508809-3451257884-3724154575-1000\Software\Microsoft\Internet Explorer\SearchScopes\{274BB8D1-AAF3-49D8-A9A0-61F18F09D9F7}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{274BB8D1-AAF3-49D8-A9A0-61F18F09D9F7}\ not found. HKU\S-1-5-21-3065508809-3451257884-3724154575-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully! Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@microsoft.com/GENUINE\ deleted successfully. Registry value HKEY_USERS\S-1-5-21-3065508809-3451257884-3724154575-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Userinit deleted successfully. Registry value HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully. File move failed. C:\Windows\System32\mctadmin.exe scheduled to be moved on reboot. Registry value HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully. File move failed. C:\Windows\System32\mctadmin.exe scheduled to be moved on reboot. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\ConsentPromptBehaviorAdmin deleted successfully. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\ConsentPromptBehaviorUser deleted successfully. Starting removal of ActiveX control {8AD9C840-044E-11D1-B3E9-00805F499D93} Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully. Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found. Starting removal of ActiveX control {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}\ deleted successfully. Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}\ not found. Starting removal of ActiveX control {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found. Starting removal of ActiveX control {E2883E8F-472F-4FB0-9522-AC9BF37916A7} C:\Windows\Downloaded Program Files\gp.inf not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet:/pagefile deleted successfully. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom\\AutoRun|DWORD:1 /E : value set successfully! C:\autoexec.bat moved successfully. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4f5d73d0-a7c4-11e0-92b2-806e6f6e6963}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4f5d73d0-a7c4-11e0-92b2-806e6f6e6963}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4f5d73d0-a7c4-11e0-92b2-806e6f6e6963}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4f5d73d0-a7c4-11e0-92b2-806e6f6e6963}\ not found. File D:\setup.exe not found. C:\ProgramData\zak_lo0i7g.pad moved successfully. C:\Users\Alexander\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ctfmon.lnk moved successfully. C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job moved successfully. File C:\Users\Alexander\AppData\Roaming\BAcroIEHelpe153.dll not found. C:\Users\Alexander\AppData\Roaming\blckdom.res moved successfully. C:\Users\Alexander\AppData\Roaming\kock folder moved successfully. C:\Users\Alexander\AppData\Roaming\UAs folder moved successfully. C:\Users\Alexander\AppData\Roaming\xmldm folder moved successfully. ========== FILES ========== C:\Users\ALEXAN~1\AppData\Local\Temp\g7i0ol_kaz.exe moved successfully. < ipconfig /flushdns /c > Windows-IP-Konfiguration Der DNS-Aufl”sungscache wurde geleert. C:\Users\Alexander\Desktop\cmd.bat deleted successfully. C:\Users\Alexander\Desktop\cmd.txt deleted successfully. ========== COMMANDS ========== [EMPTYTEMP] User: Alexander ->Temp folder emptied: 346060532 bytes ->Temporary Internet Files folder emptied: 1635205008 bytes ->Java cache emptied: 3280074 bytes ->Google Chrome cache emptied: 13597289 bytes ->Flash cache emptied: 20093 bytes User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Public %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 349095687 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 2.239,00 mb [EMPTYFLASH] User: Alexander ->Flash cache emptied: 0 bytes User: All Users User: Default User: Default User User: Public Total Flash Files Cleaned = 0,00 mb OTL by OldTimer - Version 3.2.55.0 log created on 08072012_092947 Files\Folders moved on Reboot... File move failed. C:\Windows\System32\mctadmin.exe scheduled to be moved on reboot. PendingFileRenameOperations files... [2009.07.14 03:14:23 | 000,093,696 | ---- | M] (Microsoft Corporation) C:\Windows\System32\mctadmin.exe : MD5=BBA1A5B86134F496B926DDAF247DB871 Registry entries deleted on Reboot... |
Sehr gut! :daumenhoc Wie laeuft der Rechner? 1. Schritt Bitte einen Vollscan mit Malwarebytes Anti-Malware machen und Log posten.danach: 2. Schritt Downloade Dir bitte AdwCleaner auf deinen Desktop.
|
# AdwCleaner v1.800 - Logfile created 08/09/2012 at 13:05:30 # Updated 01/08/2012 by Xplode # Operating system : Windows 7 Professional Service Pack 1 (32 bits) # User : Alexander - ALEXANDER-PC # Running from : C:\Users\Alexander\Downloads\adwcleaner.exe # Option [Search] ***** [Services] ***** ***** [Files / Folders] ***** ***** [Registry] ***** ***** [Registre - GUID] ***** ***** [Internet Browsers] ***** -\\ Internet Explorer v9.0.8112.16421 [OK] Registry is clean. -\\ Google Chrome v21.0.1180.60 File : C:\Users\Alexander\AppData\Local\Google\Chrome\User Data\Default\Preferences [OK] File is clean. ************************* AdwCleaner[R1].txt - [687 octets] - [09/08/2012 13:05:30] ########## EOF - C:\AdwCleaner[R1].txt - [814 octets] ########## |
Bitte das Malwarebytes Log posten |
2012/08/09 12:12:42 +0200 ALEXANDER-PC Alexander MESSAGE Starting protection 2012/08/09 12:12:44 +0200 ALEXANDER-PC Alexander MESSAGE Protection started successfully 2012/08/09 12:12:47 +0200 ALEXANDER-PC Alexander MESSAGE Starting IP protection 2012/08/09 12:12:49 +0200 ALEXANDER-PC Alexander MESSAGE IP Protection started successfully 2012/08/09 12:12:56 +0200 ALEXANDER-PC Alexander MESSAGE Starting database refresh 2012/08/09 12:12:56 +0200 ALEXANDER-PC Alexander MESSAGE Stopping IP protection 2012/08/09 12:13:10 +0200 ALEXANDER-PC Alexander MESSAGE Executing scheduled update: Daily 2012/08/09 12:13:12 +0200 ALEXANDER-PC Alexander MESSAGE Database already up-to-date 2012/08/09 12:15:10 +0200 ALEXANDER-PC Alexander MESSAGE IP Protection stopped 2012/08/09 12:15:11 +0200 ALEXANDER-PC Alexander MESSAGE Database refreshed successfully 2012/08/09 12:15:11 +0200 ALEXANDER-PC Alexander MESSAGE Starting IP protection 2012/08/09 12:15:14 +0200 ALEXANDER-PC Alexander MESSAGE IP Protection started successfully 2012/08/09 12:58:46 +0200 ALEXANDER-PC Alexander MESSAGE Starting protection 2012/08/09 12:58:48 +0200 ALEXANDER-PC Alexander MESSAGE Protection started successfully 2012/08/09 12:58:51 +0200 ALEXANDER-PC Alexander MESSAGE Starting IP protection 2012/08/09 12:58:53 +0200 ALEXANDER-PC Alexander MESSAGE IP Protection started successfully |
Malwarebytes aufmachen und Reiter Logdateien das Log doppelklicken und hier posten. |
Alle Zeitangaben in WEZ +1. Es ist jetzt 01:04 Uhr. |
Copyright ©2000-2025, Trojaner-Board