Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Plagegeister aller Art und deren Bekämpfung (https://www.trojaner-board.de/plagegeister-aller-art-deren-bekaempfung/)
-   -   "MalSign.Generic.9CE" Virus oder Trojaner? (https://www.trojaner-board.de/160394-malsign-generic-9ce-virus-trojaner.html)

cosinus 05.11.2014 14:30

Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:

FF NewTab: chrome://unitedtb/content/newtab/newtab-page.xhtml
FF Extension: No Name - C:\Users\mr.pink\AppData\Roaming\Mozilla\Firefox\Profiles\6m83mnrb.default\extensions\toolbar@web.de [Not Found]
FF Extension: No Name - toolbar@web.de [Not Found]
Task: {F686F4FE-6453-4151-979A-AA2B21C29710} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe
C:\Windows\System32\Tasks\AutoKMS
C:\Users\mr.pink\AppData\Local\Temp6cd0e477dcf51e23e2a0e8f8c08731fb
C:\Windows\System32\Tasks\{72366C31-9C0D-4B5D-8D00-3B9FA9AB1B1A}
C:\Windows\AutoKMS
EmptyTemp:
Hosts:


Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.


anfaenger14 05.11.2014 17:15

Code:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 04-11-2014
Ran by mr.pink at 2014-11-05 16:55:54 Run:1
Running from C:\Users\mr.pink\Desktop
Loaded Profile: mr.pink (Available profiles: mr.pink)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
FF NewTab: chrome://unitedtb/content/newtab/newtab-page.xhtml
FF Extension: No Name - C:\Users\mr.pink\AppData\Roaming\Mozilla\Firefox\Profiles\6m83mnrb.default\extensions\toolbar@web.de [Not Found]
FF Extension: No Name - toolbar@web.de [Not Found]
Task: {F686F4FE-6453-4151-979A-AA2B21C29710} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe
C:\Windows\System32\Tasks\AutoKMS
C:\Users\mr.pink\AppData\Local\Temp6cd0e477dcf51e23e2a0e8f8c08731fb
C:\Windows\System32\Tasks\{72366C31-9C0D-4B5D-8D00-3B9FA9AB1B1A}
C:\Windows\AutoKMS
EmptyTemp:
Hosts:
*****************

Firefox newtab deleted successfully.
C:\Users\mr.pink\AppData\Roaming\Mozilla\Firefox\Profiles\6m83mnrb.default\extensions\toolbar@web.de not found.
FF Extension: No Name - toolbar@web.de [Not Found] not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{F686F4FE-6453-4151-979A-AA2B21C29710}" => Error deleting key. The key could be protected.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F686F4FE-6453-4151-979A-AA2B21C29710}" => Error deleting key. The key could be protected.
C:\Windows\System32\Tasks\AutoKMS => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AutoKMS" => Error deleting key. The key could be protected.
"C:\Windows\System32\Tasks\AutoKMS" => File/Directory not found.
C:\Users\mr.pink\AppData\Local\Temp6cd0e477dcf51e23e2a0e8f8c08731fb => Moved successfully.
C:\Windows\System32\Tasks\{72366C31-9C0D-4B5D-8D00-3B9FA9AB1B1A} => Moved successfully.
"C:\Windows\AutoKMS" => File/Directory not found.
"C:\Windows\System32\Drivers\etc\hosts" => Could not move.
Could not reset Hosts.
EmptyTemp: => Removed 673.2 MB temporary data.


The system needed a reboot.

==== End of Fixlog ====


cosinus 06.11.2014 10:41

Virenscanner deaktivieren, Fix wiederholen


Alle Zeitangaben in WEZ +1. Es ist jetzt 12:53 Uhr.

Copyright ©2000-2026, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19