![]() |
Probleme Windows - Spyhunter - HolaSearch evtl mehr,.. Hallo Community, ich bin mir nicht sicher ob ich hier richtig bin, aber wie der Titel schon sagt habe ich Probleme mit meinem PC - Windows Vista. Ich selbst habe auf meinem Laptop Kaspersky und leider schaffe ich es nicht die genannten Probleme zu beseitigen. Da ich mich mit dem Thema nicht auskenne kann ich auch nicht genau sagen, ob mein Windows mehr Tjoaner & Co. hat. Gesucht habe ich in diesem Forum eine weile, finde allerdings nur ältere Beiträge und abgelaufene Links. Ich wäre euch sehr dankbar, wenn ihr mir helfen könntet - bitte nicht im bekannten Fach-Chinesisch. Gruß Bernhard |
:hallo: Mein Name ist Matthias und ich werde dir bei der Bereinigung deines Computers helfen. Bitte beachte folgende Hinweise:
Ich habe dein Thema in Arbeit und melde mich so schnell wie möglich mit weiteren Anweisungen. Habe dein Thema in den richtigen Bereich verschoben. ;) |
Servus, so gehts los: Schritt 1 Lade Dir bitte OTL von Oldtimer herunter und speichere es auf Deinem Desktop (falls noch nicht vorhanden).
Code: activex
Schritt 2 Downloade Dir bitte defogger von jpshortstuff auf Deinem Desktop.
Schritt 3 Bitte lade dir ![]()
![]()
Bitte poste mit deiner nächsten Antwort
|
SCHRITT 1 OTL: OTL Logfile: OTL EXTRAS Logfile: Code: OTL logfile created on: 01.06.2013 14:56:11 - Run 1 --- --- --- OTL EXTRAS Logfile: Code: OTL Extras logfile created on: 01.06.2013 14:56:11 - Run 1 SCHRITT 2 DEFOGGER defogger_disable by jpshortstuff (23.02.10.1) Log created at 15:21 on 01/06/2013 (Gross) Checking for autostart values... HKCU\~\Run values retrieved. HKLM\~\Run values retrieved. Checking for services/drivers... -=E.O.F=- Von Defogger ist allerdings noch ein Fenster offen, dass ich erstmal so belasse: "Defogger is a tool to disable CD Emulator. Drivers that interfere with Anti-Rootkit programs and other Anti-Malware tools. It you are using this in conjunction with assistance from a Malware Removal professional, please wait until they have finished assisting you before clicking Re-enable. SCHRITT 3 GMER: GMER Logfile: Code: GMER 2.1.19163 - hxxp://www.gmer.net |
Servus, DeFogger bitte einfach schließen. SpyHunter solltest du versuchen zu deinstallieren. So geht es weiter: Schritt 1
AdwCleaner bitte zweimal direkt hintereinander genau so ausführen und beide Logdateien davon posten! Schritt 2 Downloade Dir bitte ![]()
Schritt 3 Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Schritt 4 Bitte lade dir zoek.exe von hier: http://hijackthis.nl/smeenk/
Bitte poste mit deiner nächsten Antwort
|
SpyHunter - deinstalliert Enigma Software Group - kann ich leider nicht in der Software liste finden. |
Servus, alles klar. Weiter mit Schritt 2 bis 4. Danach alle 4 Logdateien dazu posten. :) |
SCHRITT 2 AdwCleaner:AdwCleaner Logfile: Code: # AdwCleaner v2.301 - Datei am 01/06/2013 um 16:39:56 erstellt SCHRITT 3 JRT: ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 4.9.4 (05.06.2013:1) OS: Windows Vista (TM) Home Premium x86 Ran by Gross on 01.06.2013 at 16:50:05,56 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs ~~~ Registry Keys ~~~ Files Successfully deleted: [File] "C:\Windows\system32\roboot.exe" ~~~ Folders Successfully deleted: [Folder] "C:\ProgramData\browserprotect" Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{026402E5-0F9A-453B-949E-13388D69F9E2} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{02D9717C-52F2-4B96-8E23-9638726F1984} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{042717CB-B8F8-4E46-8C02-820C70B38BC2} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{0599B9AF-659E-4294-AC98-9E442522E675} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{0719C211-EBFF-4F45-8344-F29C0921DD83} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{08D74493-1783-4946-8178-812C2066EBB7} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{096D0C57-3D5A-4671-B8D5-68E569496A92} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{0A2030BE-92CF-458B-8072-EA7DE5F555D0} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{0A8754D2-A034-4C51-89D3-D8814DDC217D} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{0B0B2C61-7D84-4096-B338-2AC13923F83B} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{0DA81EB2-3C20-443E-90BA-4D602EB21A1F} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{0DD16C7F-A8E5-439C-8DB6-656ADF8F4A0D} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{0F323CE0-F1C1-4118-84A4-EA634B97C935} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{0FCD6DBA-63A3-4736-90E2-44B6B7FEB651} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{11132C8A-12B7-46CF-9262-C119218C3F91} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{1140E8AA-8B64-454B-B817-C902E453ECF3} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{1194AC77-4B57-4287-A24A-0FE35B7356B6} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{11AF528E-87AC-427D-89AB-64C17DC4F478} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{12DFDDC8-968E-4B7E-B88F-AA670D290D0A} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{1300FAD2-A8BF-46DD-90D5-380230EA756E} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{1310A787-A500-4302-8731-74D540CDAB7A} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{14DF01E0-EF89-4D73-8993-844D1D13CDAE} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{154BAEB8-932B-4EF2-8A94-37DD39B65938} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{1664A566-46F6-4BD0-95C9-93C0E2603E53} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{171B32BD-E5D7-4EBA-8C2F-5FBB5E2F966E} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{1729FAF4-EA88-401B-B270-D14BC9D2798E} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{17741073-EC1A-44AE-A9BC-5070D8FBB8AE} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{177C2D7E-67BB-4DE3-A5BA-5B5711F372F8} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{18D75A74-FF53-4C7F-9938-FEEACE8844F0} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{18ED8DB3-2018-41B4-83D7-2A14BC158B8B} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{1A3CC48E-E025-4BBA-AC64-FE6F4D95A9DC} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{1B0B5A9A-9A12-4110-A716-B2AF32ECFF21} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{1D24A4A9-9D24-4597-879D-DF81991F23FF} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{1DC0A53C-26B5-41DD-8520-2C65B35A5DD7} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{1E1F9627-69E3-4BDA-AE64-1E096BFDDB86} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{1E4DE27C-D629-4024-B6F2-7F3D70DE897F} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{1E5FA887-4E02-403A-A95B-19B15B7EACA4} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{208DE0F0-FC19-46D7-A5CC-8FCFCABE4A0D} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{20BDD240-DD63-4A55-9382-F5ADC6384C0B} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{20FD2BF2-964C-4A0D-9B4F-7D555F2F36F3} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{22A1FCA6-FCE5-4047-954C-9E4090367F2B} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{23511621-EE83-4E42-B0BA-9018E2532FCC} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{2421B07E-9016-4049-BD76-E4A4C317F79F} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{26236FC2-167B-4C8E-862D-71AE97DF791C} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{262BA9C5-C7C3-4B47-BE43-3FC1E85505CC} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{264CFC7F-084E-47B8-AD36-B7F18060840F} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{27545811-C843-4E86-885B-D83CE058B9EA} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{27E9E0B7-CA4D-45E6-A576-3DD67F1B67D2} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{27EE5622-C6ED-46DF-9398-0957E7B5723A} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{294DE48E-57FC-432D-9B56-5D6340B29D17} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{2951D813-C55D-41F8-923D-577DCCE7697F} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{299D75C6-C5E2-43BC-B73B-53E88B0F7FA0} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{2B0531B0-4762-4EDE-9E3C-77A59E981D26} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{2BA7CD47-FC4D-4F9C-B5DF-C1E020ABABB4} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{2CD42099-0052-4631-A8E7-E2CCFB7F853D} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{2ED8E0C0-C422-4B2D-83C3-4CD7B03D8700} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{2FF89F59-7309-498C-ADA3-C2686ACCB908} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{2FFD94A4-CA29-42DD-BB34-6A67AD9E39AA} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{304D1A2D-23E2-4F98-BBCB-EA569E105A06} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{31051405-511B-48FB-8855-F9F92BB0A773} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{32C3E181-8B81-4043-BB4E-C8CF1F5C9ABD} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{3528D9BE-115B-435E-9792-BB1378C9C3AB} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{35724184-2EBB-4387-B69F-7950E67C5C31} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{35882C5E-05CA-488A-A5CE-C5FA67D2E618} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{361F1B37-BB9E-4F21-8C91-FB8E0E53FB90} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{3678908E-7108-4799-8635-B25E14DBEE78} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{3751826A-476A-4CB8-A99D-5220D51A423C} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{3848CA3A-6505-44BF-95F7-8371B80F0A65} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{3A26892C-239C-4223-8E9D-1C1B65F02306} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{3AEF7169-2CA0-49AD-93B0-65A87B6BCBCE} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{3BDAD9B3-162B-4294-B9E8-2E2941346DB5} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{3C3A7CC0-EC60-40FC-85E8-4B6555C750AE} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{3D2000E7-96CD-43CF-8EAB-620093223A0B} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{3DC03833-D2DD-43C2-88E9-A57434544AF9} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{4071356F-69C2-4309-9DC7-49FF4FDA6E35} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{41AFADA5-48F6-47AE-92AE-AF47B6BECD43} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{450FCFFE-5E32-42D0-9A74-E98CD6ABE310} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{45CDDA8F-E31C-471F-AB05-8C611A9E01DA} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{4604593B-87F4-4736-8AF3-DF557AEA5418} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{46A4751C-860D-4330-8910-B9DB1F3490AB} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{47A02970-8D3E-4A7F-BCB8-C24E102BC921} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{47D07490-B83E-4906-A08C-7D2D1A39FB65} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{4832F186-4159-4389-900A-2FE755395445} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{4997E893-4B7C-452B-93E6-B8D6C0085805} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{51EC862F-4DDE-4C8D-9CE9-C5EF5E93967E} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{528495D7-8D6C-4CF4-8B0F-5A7870420985} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{54D62520-3A01-4E18-BC37-FADC1BF3D488} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{5521E3D9-B620-44C0-A855-E01D1B5DFB70} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{55665004-63AE-42DB-AFFB-DF9A13DB0015} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{56D8B14C-31B2-49D3-8FC2-09FE3BB6283C} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{56E57DF0-5351-4BAE-9623-3D93C5348B3D} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{57255A12-1E24-49CB-86EA-2DAB30468F4C} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{5953EC17-9B68-44F0-B820-A0E886688519} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{595F2CA8-A595-48D1-8D5D-0F3A35FCFDF7} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{59CC187A-07DA-48EC-A016-931C4DD60255} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{5E8DE09C-1BF6-433C-B2AE-821718B31247} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{6131D700-6B3F-460F-84B2-115E156E8AED} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{616DFBF7-B0BA-4A5E-9D35-B3611D356A33} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{623ADC0B-BCBD-48C3-8770-A1F9165C8A4B} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{667FEF5A-4929-4F8B-B02B-264BCDBFAAB7} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{677E8D39-09B6-436B-80E6-6206CF5C3E87} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{6810875C-75B0-48B4-B09E-5143A3C7E1A4} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{6983FCBE-6267-470F-89B5-E42D2AFF9402} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{6A6480D8-EB5A-4DD1-9FDB-B87EB28FF03B} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{6AD4232E-F5CD-4C35-BFBC-1D4D6BA8AD91} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{6ADA54FD-F8B0-4F89-AA16-42B2FF5E2261} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{6D436576-3E3A-4137-8167-6BDC03622070} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{6DAEC2AA-87E8-4FF8-9E4B-5940DC0DCB83} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{6E51D4A4-F7F1-4FD1-B603-77478F882FED} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{6F28FD59-6B21-49A0-AFFB-DBE887726CB5} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{70A71323-9D86-410C-9E09-F37806160AEC} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{71124B2C-2109-4747-A856-02485735A0D9} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{71F4E25E-D76E-4632-9460-3BF51B02332B} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{76949714-1734-459F-90AD-A8A67ADAEACC} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{779B0B33-4FE9-48A4-8388-AA53DBF199F7} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{7AB21C43-E4DB-42CC-BC10-A65B4C5EF37A} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{7C7C682B-F333-4A06-9CBE-667121C139EE} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{7FCA7A2A-793F-4F53-B8E4-0D00D101C954} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{7FF708CF-C37A-4D73-A7B3-1E7530982BBC} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{81761E57-10A5-438F-8139-11CFDE187548} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{81C6BF93-118A-4B42-BAC6-4B41E7680F57} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{81D79229-83D2-4D55-8E63-C233F7D85969} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{8217BDF4-2354-4058-943B-AF892CB9A57C} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{82670FFF-CBC0-4FEB-9A78-07B6D3126B11} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{866E1B31-D03E-44D3-9744-5B28283C7A9F} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{86956C1F-4EED-4361-81A4-73B9F590D962} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{86D39EF2-2C0F-48FB-AAF3-4638FD937418} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{8701315A-F65A-417E-8FB6-515D366350FA} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{88C8F208-9DDC-4CFF-8E04-70CBFFDE566E} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{8A3BA3CC-E999-496A-8B9E-4BB861C2FBE3} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{8A5D46E7-60DA-41AD-BE3A-C8DCC8A8DB86} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{8C328BD0-1621-46B5-8F20-8DD6C62667C2} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{8C3BD61A-1D77-4C8E-89DD-594B519D13B4} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{8DB7377D-608C-45C4-965E-31D0768B7517} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{9028E68F-64EA-4A52-9CE1-E21034850EA1} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{91B5A743-006E-4DF2-BCF2-BD91BB1300CA} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{939FCA5F-AAC1-4761-8E73-994007B7BD22} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{958E7D37-AB19-4E84-9167-C85434DFF973} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{95FE7681-C55D-4BEA-9486-28AF569B449C} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{9914A269-A0C2-42A4-9FC2-047B7CC7DC0D} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{994D3F51-C6FB-4897-A5A1-D20F65C2885F} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{9B541F6F-9347-451C-BADF-DA3D888889F9} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{9C50C674-BA2E-406D-9A70-3B3106A4ACAA} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{9CDEB5A0-B544-4493-93CD-B562BAC7EAED} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{9DB6B551-AD8C-44E5-A6C9-64630BA45411} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{9FACBB40-D30B-47B4-8CF7-3B19D9D15AE8} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{A0DDE1B6-1B75-4E4C-8BF9-3EF8BBC8D06A} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{A1701F3D-2525-422A-A6E8-81D23D243AB2} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{A21EF6E2-75A8-47EF-9AB5-535D740B0A35} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{A2C23713-FCAC-46CF-8FD6-1DC0E65C4893} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{A3472F72-39A2-4458-A900-B8066A21E744} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{A3C7D005-2396-4288-909B-E6FDB7BFCDA0} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{A3E462B8-20DC-4557-998C-1A952B603617} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{A5021B58-2EBB-475F-A87A-BAC6E88DFE5C} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{A5D56FE4-3CC4-4CB4-9156-2622AF62CA77} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{A6BA09AF-1E8E-4A1F-93DA-FD981FBEF17B} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{A77DE36A-3BD6-4C16-84AB-0A0803C1B758} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{A835DD17-4053-4B6B-B284-C200CC226242} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{A882E47C-3274-4EAF-99A0-CCD39486ACC6} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{A890BB69-2BE4-40CF-A450-FA017542FCB9} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{A945A920-393F-4E07-BEA4-D2F852EA08DB} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{AAAC11B9-C2A2-469E-9395-B1E773A4636B} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{AAF03A1B-ED9C-4B03-8D6B-0E463D8246BF} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{AE77CEBF-1AAF-4C0F-A3A0-E9666B9DBBE9} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{AEA68F94-6E83-402B-8710-44C99EF7A10A} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{AEFEA358-DEA7-4D77-BA98-243AB7CAC170} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{AF5F5F9F-0E01-4C9D-B02B-15AB02A870A5} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{AFCA4CEA-43A4-4244-8339-19728A5C0CD2} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{B21E5793-3391-4862-BE57-B8A11E125A9F} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{B2C81FE3-AB94-4432-8746-D452EBA98E89} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{B3AC8CA5-9227-4D37-B14B-B50D77961B86} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{B4216469-029C-4161-8C76-0166764E53E4} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{B53C94F1-9297-45B5-A611-2B5CF0891F95} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{B5E1A42D-F3BB-4FBE-AF07-C52AEADBD694} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{B676A647-CF52-4EEC-81C1-EE4010D5BB52} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{B7F9D6E7-EE04-451F-884F-4CD83E609F06} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{B8EAEF3F-072D-46F5-B8C4-9A2775617A97} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{BA383CB0-6C95-4AC0-8061-5B1D3D9E4944} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{BCD43B22-FE63-4BD0-99A3-6C54EB16E58B} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{BCD92F00-4CD6-4391-ACD9-DDBDDCB03B62} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{BF5F3F41-AAC7-4F9A-A95F-2881D17E7F5D} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{BF80F552-67B3-430E-9BDA-7E3A0B8450C4} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{C0CA9F10-34A4-4ECD-873B-6FD53D333F1D} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{C37B3E4F-8AF3-4379-944F-239C7323A115} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{C3AB7BB4-1E34-4FF3-A32F-BF3836C4EC9D} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{C69BE57D-E6F7-4C25-906B-24D77E8F27B9} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{C69C70BD-BE90-4F72-B232-970827BB3A34} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{C6F21EF4-CF93-42B2-9D74-78A4D2365E49} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{C8DAC7D1-1FA9-45FA-A97D-E5D5B54D8CB7} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{CB47246A-9107-455B-A298-D18280817036} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{CB4BC6EC-9309-4152-B730-9780B11EA1EE} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{CCD7AEF6-688C-4272-B96E-6C3F71FC1639} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{CF74E4FB-C1B5-40BD-B9B2-A2E73050D443} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{D1070A97-1959-48F5-8C7A-5525DCC9D3C7} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{D1CFBEDC-3EC7-4560-A262-7F559EAB6E15} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{D1DA5B85-D7F9-4DB5-A7AF-16CD393E35F1} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{D28E1050-A439-4550-B778-5B408C530EF4} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{D35B709A-0B62-4B5E-9BAF-B7EEE3A7C4D2} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{D5304F34-B8F8-46EB-B83D-63BA9E6DB1F5} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{D60CA0C7-020E-4892-8E54-BF9D033965B2} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{D755DB69-0206-4A2E-AC33-1A8641FE317D} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{D8045578-7371-43AA-8062-28C9202A7614} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{D8870CF8-9795-4D84-AC56-BC5816EC101F} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{D98FB01F-C6E2-4234-A50E-8932C4D6E997} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{D9D4AADF-080F-4A1E-A8E6-B170E763D0B7} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{DB452A7E-2571-4690-BDF1-01F8114453EE} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{DC0E0C8F-C5D0-4F4A-AA55-DE625F6241D7} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{DC789DD1-8AC5-48CB-9819-6E744C569EF7} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{DE3F4E77-E5D0-4B81-B668-192F2DAF771C} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{DE57A06A-596A-4887-981D-76CBC532E59F} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{E1664D68-50FD-46F7-B5B5-3C67F1D0DAAF} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{E168A2EE-BF30-4663-86F9-AE17296F7D2D} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{E1D9F701-AF1D-4A74-AB0C-37441991EA26} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{E237F316-DDD2-4855-9CCD-1FAA41D14310} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{E26C5FF9-1A02-4226-B54A-26C6C1B76BC0} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{E4CA8AA2-AD76-4317-A3BE-C4EF8068DE4B} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{E5F8618B-A960-48C6-B758-4CDA377EAE2C} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{E6F65188-9B2E-4791-8448-F4A17B0BCCA4} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{E7213682-6FAD-4706-8C1D-8B516C3A570F} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{E7306B7B-20F8-4E37-983E-148345C59A79} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{E7A8B306-483E-4892-8198-93B5CC2A1B5E} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{E8D6409A-FBF0-4F13-9AFB-105FF26D2182} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{E8DD6A21-F398-4072-A6D0-FA56128FE01A} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{E905734D-07DF-4019-8608-07EB4E89B5FD} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{E958F6CB-D5F5-43BC-928D-DEDDD00DC290} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{E973751A-F655-44AE-AB8A-C10BD489625E} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{EC57FF9D-E36B-4476-9933-B56494CC89D1} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{ECDAAE24-4A72-4FE3-A0C1-EFC30759DF6E} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{ED0687A9-781B-4941-BC8E-61805787C2AB} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{EE0688D1-33AB-42C3-8647-8FEA5B1C03B4} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{EE3481B7-D608-45B3-B1C3-089CD04FD2BA} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{F15D09F4-1132-4387-A2AC-5EAC3E505E94} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{F1FBC313-2198-4B3D-9EEE-E9C9F3A09700} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{F2399F07-668F-4C48-BE2A-EB72C3B104C3} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{F505B7AD-D236-4482-B9D2-C47051319D49} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{F57F51F4-CC11-4E37-B659-E0A83C1A098A} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{F5BEAA33-4BD3-4311-9F71-601C769A2FC1} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{F758CDCC-1E7B-4EFA-848C-6B4C1D815D6B} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{F9A40F1F-4A09-42C0-AFF4-0EA7C0FF9489} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{F9CA698D-1938-479E-80C4-056D4CBCC82F} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{FC193DEC-E33E-4928-A8A0-77AF1C495F5B} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{FC6807D4-26F8-40CB-B4FA-CC779E64EBED} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{FCA7AC46-7A45-4DF6-8553-46B473864694} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{FD412A99-3049-46A8-BE9C-1BFA04E18AD2} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{FE758430-CA10-4134-A1AF-EDA064DAD7FE} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{FE8B9781-7D9A-4A45-8556-F9D02065C9C1} Successfully deleted: [Empty Folder] C:\Users\Gross\appdata\local\{FED8CDD1-0FF0-4CA8-B942-7F13FDE98687} ~~~ FireFox Successfully deleted: [File] C:\Users\Gross\AppData\Roaming\mozilla\firefox\profiles\pwd0s67d.default\searchplugins\babylon.xml Emptied folder: C:\Users\Gross\AppData\Roaming\mozilla\firefox\profiles\pwd0s67d.default\minidumps [61 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 01.06.2013 at 16:53:58,96 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ SCHRITT 4 ZOEK: 1ster Versuch: Zoek.exe Version 4.0.0.2 Updated 31-May-2013 Tool run by Gross on 01.06.2013 at 17:12:49,62. Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86 Running in: Normal Mode No Internet Access Detected zoek.hta failed by unknown error. Restart computer, and try again. If this error returns, use another tool. ==== EOF on 01.06.2013 at 17:13:26,76 ====================== 2ter Versuch nach Neustart: Zoek.exe Version 4.0.0.2 Updated 31-May-2013 Tool run by Gross on 01.06.2013 at 17:17:30,02. Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86 Running in: Normal Mode No Internet Access Detected ==== Older Logs ====================== C:\zoek-results01.06.2013-1713.log 396 bytes ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== FireFox Fix ====================== ProfilePath: C:\Users\Gross\AppData\Roaming\Mozilla\Firefox\Profiles\pwd0s67d.default user.js not found ---- Lines Hola Search removed from prefs.js ---- user_pref("browser.search.order.1", "Hola Search"); ---- Lines Hola Search modified from prefs.js ---- ---- FireFox user.js and prefs.js backups ---- prefs__1721_.backup ==== Deleting Files \ Folders ====================== "C:\Users\Public\Documents\mstrust.dll" deleted "C:\Users\Gross\Downloads\SoftonicDownloader_fuer_logiccircuit.exe" deleted "C:\Users\Gross\AppData\Roaming\Mozilla\Firefox\Profiles\pwd0s67d.default\searchplugins\holasearch.xml" deleted "C:\Program Files\Common Files\DVDVideoSoft\bin" deleted "C:\Windows\System32\searchplugins" deleted "C:\Windows\System32\Extensions" deleted ==== Firefox Extensions ====================== ProfilePath: C:\Users\Gross\AppData\Roaming\Mozilla\Firefox\Profiles\pwd0s67d.default - Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com AppDir: C:\Program Files\Mozilla Firefox - ICQ Toolbar - %AppDir%\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} ==== Firefox Plugins ====================== Profilepath: C:\Users\Gross\AppData\Roaming\Mozilla\Firefox\Profiles\pwd0s67d.default 7ABE33792F2787D599B6963E71B9E8CD - C:\Windows\system32\Macromed\Flash\NPSWF32_11_7_700_202.dll - Shockwave Flash 05C4A7136F3012BB47107333B5D351D3 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U17 D4BD9F86123C87ECA570418B69326F99 - C:\Windows\system32\npDeployJava1.dll - Java Deployment Toolkit 7.0.170.2 F00A0EF5835E1B96F783D617F1948704 - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll - iTunes Application Detector A5C14075B571AF1C9592595BE724D9D2 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll - Silverlight Plug-In 11EF47BE3D8A4A943E10A63870C1F2C6 - C:\Program Files\QuickTime\Plugins\npqtplugin7.dll - QuickTime Plug-in 7.7.3 4ACB977AAB250731739302CB45A807B3 - C:\Program Files\QuickTime\Plugins\npqtplugin6.dll - QuickTime Plug-in 7.7.3 6E7690D2EE4E530DAC8C562CF8CCE70B - C:\Program Files\QuickTime\Plugins\npqtplugin5.dll - QuickTime Plug-in 7.7.3 D2E4BDDD297B6A481BAC612C25A1F10A - C:\Program Files\QuickTime\Plugins\npqtplugin4.dll - QuickTime Plug-in 7.7.3 7A14B17E24CE74BBB603B824EDA79A72 - C:\Program Files\QuickTime\Plugins\npqtplugin3.dll - QuickTime Plug-in 7.7.3 2A92F41DCBB5832872D8B0E941746112 - C:\Program Files\QuickTime\Plugins\npqtplugin2.dll - QuickTime Plug-in 7.7.3 C1FD5EE5FD1F65CE223A5C3AE846DDF6 - C:\Program Files\QuickTime\Plugins\npqtplugin.dll - QuickTime Plug-in 7.7.3 C517E5EA7CEE783F3681F62D2A362E5B - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Windows Live? Photo Gallery 5E186625C3E195C1D28A0C1E6E8DEED8 - C:\Users\Gross\AppData\Roaming\ProtectDisc\License Helper v2\NPPDLicenseHelper.dll - Protect Disc License Acquisition Plugin AB87EEFFD18F2BAAFC274E7075EA6C67 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation DFCAB29E8FD38F95650CC1E203E8D318 - C:\Windows\system32\npmproxy.dll - Microsoft® Windows® Operating System 2AA3703D87E1327A2290C9D416D89A28 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrlui.dll - Microsoft® Silverlight ==== Deleting Files \ Folders ====================== "C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}" deleted ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions dchlnpcodkpfdpacogkljefecpegganj - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\urladvisor.crx[14.12.2012 13:48] hakdifolhalapjijoafobooafbilfakh - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\online_banking_chrome.crx[14.12.2012 13:48] hghkgaeecgjhjkannahfamoehjmkjail - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\content_blocker_chrome.crx[14.12.2012 13:48] jagncdcchgajhfhijbbhecadmaiegcmh - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\virtkbd.crx[12.05.2013 12:06] pjldcfjmnllhmgjclecdnfampinooman - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\ab.crx[14.12.2012 13:48] ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="hxxp://homepage.packardbell.com/rdr.aspx?b=ACPW&l=0407&s=2&o=vp32&d=0909&m=easynote_tj65" "ICQ Search"="hxxp://www.google.com" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="hxxp://homepage.packardbell.com/rdr.aspx?b=ACPW&l=0407&s=2&o=vp32&d=0909&m=easynote_tj65" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] No DefaultScope Set For HKCU New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="hxxp://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="hxxp://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" {B6D76258-1AD5-4C5C-85A6-CE11356D7C86} Google Url="hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7ACPW_deDE353" ==== Empty IE Cache ====================== C:\Users\All Users\Kaspersky Lab\Sandbox\KLSB1\Device\HarddiskVolume2\Users\Gross\AppData\Local\Microsoft\Windows\TEMPORARY INTERNET FILES\Content.IE5 emptied successfully C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Gross\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\Gross\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Gross\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== C:\users\Gross\AppData\Local\Mozilla\Firefox\Profiles\pwd0s67d.default\Cache emptied successfully ==== Empty Chrome Cache ====================== No Chrome User Data found ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Gross\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Gross\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found ==== EOF on 01.06.2013 at 17:24:03,92 ====================== |
Servus, Schritt 1 Starte bitte OTL.exe. Wähle unter Extra Registrierung: Benutze Safe List und klicke auf den Scan Button. Poste die OTL.txt und die Extras.txt hier in deinen Thread. Schritt 2 Lade SystemLook von jpshortstuff vom folgenden Spiegel herunter und speichere das Tool auf dem Desktop: SystemLook (32 bit)
Wie läuft dein Rechner derzeit? Gibt es noch Probleme mit Hola-Search? Wenn ja, in welchem Browser? Bitte poste mit deiner nächsten Antwort
|
Servus Matthias, 1.OTL Logfile: Code: OTL logfile created on: 02.06.2013 01:52:52 - Run 2 OTL Logfile: Code: OTL Extras logfile created on: 02.06.2013 01:52:52 - Run 2 2. SystemLook 30.07.11 by jpshortstuff Log created at 02:05 on 02/06/2013 by Gross Administrator - Elevation successful ========== filefind ========== Searching for "*bprotector*" No files found. Searching for "*Babylon*" C:\Users\Gross\Documents\Meine empfangenen Dateien\05-Ricky L feat. MCK - Born Again (Babylonia) (Balearic Soul Party Mix).mp3 --a---- 9005056 bytes [11:04 17/10/2010] [11:14 17/10/2010] AA87719105865F4CD1E50274B4C99515 Searching for "*BrowserProtect*" C:\Windows\System32\Tasks\BrowserProtect --a---- 3346 bytes [14:30 01/06/2013] [14:32 01/06/2013] D9A0473DAE553D232F4706825D80F69E Searching for "*ICQ6Toolbar*" No files found. Searching for "*Iminent*" No files found. Searching for "*IBUpdater*" No files found. Searching for "*PerformerSoft*" No files found. Searching for "*dvdvideosoftiehelpers*" No files found. Searching for "*DataMngr*" No files found. Searching for "*Softonic*" No files found. Searching for "*YahooPartnerToolbar*" No files found. Searching for "*holasearch*" No files found. ========== folderfind ========== Searching for "*bprotector*" No folders found. Searching for "*Babylon*" C:\Program Files\ICQ7.2\Xtraz\icq\theme\babylon_feed d------ [17:56 29/12/2010] Searching for "*BrowserProtect*" No folders found. Searching for "*ICQ6Toolbar*" No folders found. Searching for "*Iminent*" No folders found. Searching for "*IBUpdater*" No folders found. Searching for "*PerformerSoft*" No folders found. Searching for "*dvdvideosoftiehelpers*" No folders found. Searching for "*DataMngr*" No folders found. Searching for "*Softonic*" No folders found. Searching for "*YahooPartnerToolbar*" No folders found. Searching for "*holasearch*" No folders found. ========== regfind ========== Searching for "bprotector" No data found. Searching for "Babylon" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{2EECD738-5844-4A99-B4B6-146BF802613B}] "DllName"="BabylonToolbar.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}] "DllName"="BabylonToolbar.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{98889811-442D-49DD-99D7-DC866BE87DBC}] "DllName"="BabylonToolbarTlbr.dll" Searching for "BrowserProtect" [HKEY_CURRENT_USER\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] "C:\ProgramData\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe"="Application Manager" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1DF7F088-C634-4B59-8424-0FE9F49FA146}] "Path"="\BrowserProtect" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BrowserProtect] [HKEY_USERS\S-1-5-21-3343815118-449700181-1052238350-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] "C:\ProgramData\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe"="Application Manager" [HKEY_USERS\S-1-5-21-3343815118-449700181-1052238350-1000_Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] "C:\ProgramData\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe"="Application Manager" Searching for "ICQ6Toolbar" [HKEY_LOCAL_MACHINE\SOFTWARE\ICQ\ICQToolbar] "InstallDir"="C:\Program Files\ICQ6Toolbar\" Searching for "Iminent" [HKEY_CURRENT_USER\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] "C:\Program Files\Iminent\inst\Bootstrapper\Bootstrapper.exe"="Iminent Setup" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files\Iminent\inst\Bootstrapper\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files\Iminent\inst\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files\Iminent\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43C098337DB065A49B665D4EA7F16D1C] "00000000000000000000000000000000"="C:\Program Files\Iminent\StartWeb.xml" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A71991503412AEB42838B02C5ED9F9CD] "00000000000000000000000000000000"="C:\Program Files\Iminent\UniverselyWeb.xml" [HKEY_USERS\S-1-5-21-3343815118-449700181-1052238350-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] "C:\Program Files\Iminent\inst\Bootstrapper\Bootstrapper.exe"="Iminent Setup" [HKEY_USERS\S-1-5-21-3343815118-449700181-1052238350-1000_Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] "C:\Program Files\Iminent\inst\Bootstrapper\Bootstrapper.exe"="Iminent Setup" Searching for "IBUpdater" No data found. Searching for "PerformerSoft" No data found. Searching for "dvdvideosoftiehelpers" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Free YouTube to Mp3 Converter] @="C:\Users\Gross\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm" [HKEY_USERS\S-1-5-21-3343815118-449700181-1052238350-1000\Software\Microsoft\Internet Explorer\MenuExt\Free YouTube to Mp3 Converter] @="C:\Users\Gross\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm" Searching for "DataMngr" No data found. Searching for "Softonic" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\6b323f20_0] @="{0.0.0.00000000}.{a267ff2d-3149-49e9-80a1-28a8af6306ec}|\Device\HarddiskVolume2\Users\Gross\Downloads\SoftonicDownloader_fuer_logiccircuit.exe%b{00000000-0000-0000-0000-000000000000}" [HKEY_USERS\S-1-5-21-3343815118-449700181-1052238350-1000\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\6b323f20_0] @="{0.0.0.00000000}.{a267ff2d-3149-49e9-80a1-28a8af6306ec}|\Device\HarddiskVolume2\Users\Gross\Downloads\SoftonicDownloader_fuer_logiccircuit.exe%b{00000000-0000-0000-0000-000000000000}" Searching for "YahooPartnerToolbar" No data found. Searching for "holasearch" No data found. -= EOF =- Der Rechner läuft erstaunlich stabil und reagiert schneller. Beim Neustarten vom Rechner erscheint eine Meldung: AppleSyncNotifier.exe - Einsprungspunkt nicht gefunden Der Proredureinsprungspunkt "xmlTextReaderConstName" wurde in der DLL "libxml2.dll" nicht gefunden Probleme mit Hola-Search: Im Verlauf von dem Mozilla Browser ist Hola-Search noch zu finden. |
Servus, wir entfernen jetzt noch die letzten Funde und kontrollieren nochmal alles. Die gepostet Fehlermeldung könnte von einem Apple Programm kommen. Evtl. musst du dieses deinstallieren und anschließend neu installieren. Schritt 1
Schritt 2
Schritt 3 Fixen mit OTL
Code: :OTL
Schritt 4 Downloade Dir bitte ![]()
Schritt 5 ESET Online Scanner
Schritt 6 Downloade Dir bitte ![]()
Bitte poste mit deiner nächsten Antwort
|
Zu Schritt 3: Welchen Benutzername -> "*****" ? |
Zitat:
|
Problem bei Schritt 6 Security-Check Kaspersky sagt Malware/ Datei-Anti-Virus. -> Speziellen Desinfektionsvorgang ausführen? Ja, bei Neustart (empfohlen) / Nicht ausführen. |
Zitat:
|
All processes killed ========== OTL ========== Service gupdate1cac2454df83dc4 stopped successfully! Service gupdate1cac2454df83dc4 deleted successfully! Service esgiguard stopped successfully! Service esgiguard deleted successfully! File C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully. Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Free YouTube to Mp3 Converter\ deleted successfully. C:\Program Files\Enigma Software Group\SpyHunter\Log folder moved successfully. C:\Program Files\Enigma Software Group\SpyHunter folder moved successfully. C:\Program Files\Enigma Software Group folder moved successfully. C:\Windows\DeleteOnReboot.bat moved successfully. ========== REGISTRY ========== Registry key HKEY_LOCAL_MACHINE\SOFTWARE\ICQ\ICQToolbar\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43C098337DB065A49B665D4EA7F16D1C\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A71991503412AEB42838B02C5ED9F9CD\ deleted successfully. ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 67 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Gross ->Temp folder emptied: 2379216 bytes ->Temporary Internet Files folder emptied: 33237 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 83527733 bytes ->Apple Safari cache emptied: 5603328 bytes ->Flash cache emptied: 506 bytes User: Public %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 1500677 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 9824695 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 98,00 mb OTL by OldTimer - Version 3.2.69.0 log created on 06022013_131445 Files\Folders moved on Reboot... PendingFileRenameOperations files... Registry entries deleted on Reboot... Malwarebytes Anti-Malware (Test) 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2013.06.02.02 Windows Vista Service Pack 2 x86 NTFS Internet Explorer 9.0.8112.16421 Gross :: GROSS-PC [Administrator] Schutz: Aktiviert 02.06.2013 13:22:18 mbam-log-2013-06-02 (13-22-18).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 215086 Laufzeit: 6 Minute(n), 41 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=73c4e354e406834a83d2e3558a69f130 # engine=13973 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-06-02 01:24:53 # local_time=2013-06-02 03:24:53 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1033 # osver=6.0.6002 NT Service Pack 2 # compatibility_mode=1286 16777213 100 98 7699 24949415 0 0 # compatibility_mode=5892 16776573 100 100 0 207712221 0 0 # scanned=170141 # found=0 # cleaned=0 # scan_time=6712 Results of screen317's Security Check version 0.99.64 Windows Vista Service Pack 2 x86 (UAC is enabled) Internet Explorer 10 ``````````````Antivirus/Firewall Check:`````````````` Kaspersky Internet Security Antivirus up to date! (On Access scanning disabled!) `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware Version 1.75.0.1300 CCleaner Java(TM) 6 Update 26 Java 7 Update 17 Java version out of Date! Adobe Flash Player 11.7.700.202 Adobe Reader 9 Adobe Reader out of Date! Mozilla Firefox (21.0) ````````Process Check: objlist.exe by Laurent```````` Windows Defender MSASCui.exe Malwarebytes Anti-Malware mbamservice.exe Malwarebytes Anti-Malware mbamgui.exe Malwarebytes' Anti-Malware mbamscheduler.exe Windows Defender MSASCui.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: % ````````````````````End of Log`````````````````````` |
Servus, Ich sehe, dass du sog. Registry Cleaner auf dem System hast. In deinem Fall CCleaner. Wir empfehlen auf keinen Fall jegliche Art von Registry Cleaner. Der Grund ist ganz einfach: Die Registry ist das Hirn des Systems. Funktioniert das Hirn nicht, funktioniert der Rest nicht mehr wirklich. Wir lesen oft genug von Hilfesuchenden, dass deren System nach der Nutzung von Registry Cleanern nicht mehr booted.
Zerstörst Du die Registry, zerstörst Du Windows. Ich empfehle dir hiermit die oben genannte Software zu deinstallieren und in Zukunft auf solche Art von Software zu verzichten. Am Ende empfehle ich dir ein anderes Tool, mit dem du deine temporären Dateien entfernen kannst. Wenn du keine Probleme mehr hast, dann sind wir hier fertig. Deine Logdateien sind sauber. :daumenhoc Zum Schluss müssen wir noch ein paar abschließende Schritte unternehmen, um deinen Pc aufzuräumen und abzusichern. Schritt 1 Dein Java ist nicht mehr aktuell. Älter Versionen enthalten Sicherheitslücken, die von Malware missbraucht werden können.
Schritt 2 Deinstalliere bitte deine aktuelle Version von Adobe Reader Start--> Systemsteuerung--> Software / Programme deinstallieren--> Adobe Reader und lade dir die neue Version von Hier herunter- Entferne den Hacken für den McAfee SecurityScan bzw. Google Chrome. Schritt 3 Die Reihenfolge ist hier entscheidend.
Schritt 4 Abschließend habe ich noch ein paar Tipps zur Absicherung deines Systems. Ich kann gar nicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von Registry Cleanern. Diese Schaden deinem System mehr als dass sie helfen. Hier ein englischer Link: Miekemoes Blogspot ( MVP ) Was du vermeiden solltest:
Nun bleibt mir nur noch dir viel Spaß beim sicheren Surfen zu wünschen... ... und vielleicht möchtest du ja das Trojaner-Board unterstützen? Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so dass ich dieses Thema aus meinen Abos löschen kann. |
Servus, - CCleaner ist entfernt - FAST ( alles ) Up To Date. Hier gibt es leider ein kleines Problem mit dem Adobe Reader. Der von dir gestellte Link zeigt das Update 11.0.03 an. Es wird aber dafür die Version 10.1.4 geladen. Gibt natürlich ärger mit PSI. Die AntiMalware werde ich mir wahrscheinlich zulegen -> ist ja eine Test-Version. Ansonsten hat alles wunderbar geklappt. in paar Fragen hätte ich dann aber gerne gestellt: Anti-Viren Programm: Liege ich richtig mit Kaspersky? Und ist dies ausreichend? Oder würdest du, wenn du darfst, ein anderes empfehlen zb Avast,..? Online-Banking: Kannst du mir auch hier evtl eines empfehlen, welches das Online-Banking sicherer machen soll? |
Zitat:
Zitat:
Ich empfehle immer Avast (free version), wenn jemand eine kostenlose AV Software haben möchte. :) Zitat:
Ich bin froh, dass wir helfen konnten :abklatsch: In diesem Forum kannst du eine kurze Rückmeldung zur Bereinigung abgeben, sofern du das möchtest: Lob, Kritik und Wünsche Klicke dazu auf den Button "NEUES THEMA" und poste ein kleines Feedback. Vielen Dank! :) Dieses Thema scheint erledigt und wird aus meinen Abos gelöscht. Solltest Du das Thema erneut brauchen, schicke mir bitte eine PM. Jeder andere bitte hier klicken und einen eigenen Thread erstellen. |
Alle Zeitangaben in WEZ +1. Es ist jetzt 21:53 Uhr. |
Copyright ©2000-2025, Trojaner-Board