Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Plagegeister aller Art und deren Bekämpfung (https://www.trojaner-board.de/plagegeister-aller-art-deren-bekaempfung/)
-   -   Nach Snap.do deinstallation Nat typ geändert (https://www.trojaner-board.de/127826-snap-do-deinstallation-nat-typ-geaendert.html)

cosinus 11.12.2012 22:11

Code:

C:\Users\Phil\Client1.7.0.586601.7z
Hm, was ist das denn?

Wpwheil 12.12.2012 17:40

Wenn ich den Ordner mit winrar öffne steht da was von ABP woraus ich schließe das das von einem f2p spiel ist welches so heißt. Hab das immernoch aufm pc. :D

cosinus 13.12.2012 13:11

Zitat:

ABP woraus ich schließe das das von einem f2p spiel ist welches so heißt
ABP, f2p, geht das auch mal im Klartext?! :wtf:
Aus welcher Quelle hast du diese Datei? Was soll der Inhalt der 7Z-Datei bezwecken?

Wpwheil 13.12.2012 22:17

Also ABP ist ein inline free to play spiel welches ich mir vor ein paar monaten gewownloadet habe ( spiele es jedoch nicht mehr ) Was diese Datei bezweckt weiss ich nicht aber es hat wahrscheinlich etwas mit dem Spiel zu tun ;)

cosinus 14.12.2012 10:05

Fixen mit OTL

  • Starte bitte die OTL.exe.
  • Kopiere nun den Inhalt aus der Codebox in die Textbox.
Code:

:OTL
O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll File not found
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O4 - HKU\S-1-5-21-2348945888-1469418193-1697157937-1001..\Run: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup File not found
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKU\S-1-5-21-2348945888-1469418193-1697157937-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HideSCAHealth = 1
O20 - AppInit_DLLs: (c:\progra~3\browse~1\22630~1.40\{16cdf~1\browse~1.dll) -  File not found
:Files
C:\PROGRA~2\Raptr
c:\progra~3\browse~1
C:\Users\Phil\APB_Reloaded_Installer.exe
C:\Users\Phil\Client1.7.0.586601.7z
C:\$Recycle.Bin\S-1-5-21-2348945888-1469418193-1697157937-1001\$d9d4daf50f88dc16ae9de30528a9231a
C:\$Recycle.Bin\S-1-5-18\$d9d4daf50f88dc16ae9de30528a9231a
ipconfig /flushdns /c
:Commands
[purity]
[emptytemp]
[resethosts]

  • Solltest du deinen Benutzernamen z. B. durch "*****" unkenntlich gemacht haben, so füge an entsprechender Stelle deinen richtigen Benutzernamen ein. Andernfalls wird der Fix nicht funktionieren.
  • Schließe bitte nun alle Programme.
  • Klicke nun bitte auf den Fix Button.
  • OTL kann gegebenfalls einen Neustart verlangen. Bitte dies zulassen.
  • Nach dem Neustart findest Du ein Textdokument auf deinem Desktop.
    ( Auch zu finden unter C:\_OTL\MovedFiles\<Uhrzeit_Datum>.txt)
    Kopiere nun den Inhalt hier in Deinen Thread

Wpwheil 16.12.2012 12:57

Code:

All processes killed
========== OTL ==========
64bit-Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DBC80044-A445-435b-BC74-9C25C1C588A9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}\ not found.
Registry value HKEY_USERS\S-1-5-21-2348945888-1469418193-1697157937-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Raptr deleted successfully.
Registry value HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
Registry value HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\EnableLUA deleted successfully.
Registry value HKEY_USERS\S-1-5-21-2348945888-1469418193-1697157937-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\HideSCAHealth deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_Dlls:c:\progra~3\browse~1\22630~1.40\{16cdf~1\browse~1.dll deleted successfully.
========== FILES ==========
C:\PROGRA~2\Raptr\resources\sound folder moved successfully.
C:\PROGRA~2\Raptr\resources\locale folder moved successfully.
C:\PROGRA~2\Raptr\resources\images\webwidget folder moved successfully.
C:\PROGRA~2\Raptr\resources\images\webbrowser folder moved successfully.
C:\PROGRA~2\Raptr\resources\images\pokes folder moved successfully.
C:\PROGRA~2\Raptr\resources\images\navdock folder moved successfully.
C:\PROGRA~2\Raptr\resources\images\ingame folder moved successfully.
C:\PROGRA~2\Raptr\resources\images\im_icons folder moved successfully.
C:\PROGRA~2\Raptr\resources\images\emoticons folder moved successfully.
C:\PROGRA~2\Raptr\resources\images\dl_mgr folder moved successfully.
C:\PROGRA~2\Raptr\resources\images\dinos folder moved successfully.
C:\PROGRA~2\Raptr\resources\images\bundle\logo folder moved successfully.
C:\PROGRA~2\Raptr\resources\images\bundle\fte_signup folder moved successfully.
C:\PROGRA~2\Raptr\resources\images\bundle\detect folder moved successfully.
C:\PROGRA~2\Raptr\resources\images\bundle folder moved successfully.
C:\PROGRA~2\Raptr\resources\images folder moved successfully.
C:\PROGRA~2\Raptr\resources folder moved successfully.
C:\PROGRA~2\Raptr\PyQt4\plugins\phonon_backend folder moved successfully.
C:\PROGRA~2\Raptr\PyQt4\plugins\imageformats folder moved successfully.
C:\PROGRA~2\Raptr\PyQt4\plugins\codecs folder moved successfully.
C:\PROGRA~2\Raptr\PyQt4\plugins folder moved successfully.
C:\PROGRA~2\Raptr\PyQt4 folder moved successfully.
C:\PROGRA~2\Raptr\plugins folder moved successfully.
C:\PROGRA~2\Raptr\ca-certs folder moved successfully.
Folder move failed. C:\PROGRA~2\Raptr scheduled to be moved on reboot.
File\Folder c:\progra~3\browse~1 not found.
C:\Users\Phil\APB_Reloaded_Installer.exe moved successfully.
C:\Users\Phil\Client1.7.0.586601.7z moved successfully.
File\Folder C:\$Recycle.Bin\S-1-5-21-2348945888-1469418193-1697157937-1001\$d9d4daf50f88dc16ae9de30528a9231a not found.
File\Folder C:\$Recycle.Bin\S-1-5-18\$d9d4daf50f88dc16ae9de30528a9231a not found.
< ipconfig /flushdns /c >
Windows-IP-Konfiguration
Der DNS-Aufl”sungscache wurde geleert.
C:\Users\Phil\Downloads\cmd.bat deleted successfully.
C:\Users\Phil\Downloads\cmd.txt deleted successfully.
========== COMMANDS ==========
 
[EMPTYTEMP]
 
User: All Users
 
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
 
User: Default User
 
User: Phil
->Temp folder emptied: 3193585 bytes
->Temporary Internet Files folder emptied: 681195 bytes
->Java cache emptied: 266576 bytes
->Google Chrome cache emptied: 7921915 bytes
->Opera cache emptied: 188 bytes
->Flash cache emptied: 725 bytes
 
User: Public
->Temp folder emptied: 0 bytes
 
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 587442 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 48310114 bytes
%systemroot%\sysnative\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 751 bytes
RecycleBin emptied: 6082779278 bytes
 
Total Files Cleaned = 5.859,00 mb
 
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
 
OTL by OldTimer - Version 3.2.69.0 log created on 12112012_182944

Files\Folders moved on Reboot...
C:\PROGRA~2\Raptr folder moved successfully.
C:\Users\Phil\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...


cosinus 16.12.2012 15:06

Eine Kontrolle mit OTL bitte:
  • Doppelklick auf die OTL.exe
  • Vista User: Rechtsklick auf die OTL.exe und "als Administrator ausführen" wählen
  • Setze oben mittig den Haken bei Scanne alle Benutzer
  • Oben findest Du ein Kästchen mit Output. Wähle bitte Minimal Output
  • Unter Extra Registry, wähle bitte Use SafeList
  • Klicke nun auf Run Scan links oben
  • Wenn der Scan beendet wurde werden 2 Logfiles erstellt
  • Poste die Logfiles hier in CODE-Tags in den Thread.


Alle Zeitangaben in WEZ +1. Es ist jetzt 09:45 Uhr.

Copyright ©2000-2025, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19