Anbei das Log File
Zitat:
========== OTL ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ALYQ3CgTRBSYLwE deleted successfully.
E:\Dokumente und Einstellungen\Hasi\Anwendungsdaten\bauesch.exe moved successfully.
Registry value HKEY_USERS\Hasi_ON_E\Software\Microsoft\Windows\CurrentVersion\Run\\ALYQ3CgTRBSYLwE deleted successfully.
File E:\Dokumente und Einstellungen\Hasi\Anwendungsdaten\bauesch.exe not found.
Registry value HKEY_USERS\PAUL_ON_E\Software\Microsoft\Windows\CurrentVersion\Run\\ALYQ3CgTRBSYLwE deleted successfully.
E:\Dokumente und Einstellungen\PAUL\Anwendungsdaten\bauesch.exe moved successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\HonorAutoRunSetting deleted successfully.
Registry value HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry value HKEY_USERS\Hasi_ON_E\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry value HKEY_USERS\Hasi_ON_E\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDesktop deleted successfully.
Registry value HKEY_USERS\Hasi_ON_E\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\DisableRegistryTools deleted successfully.
Registry value HKEY_USERS\Hasi_ON_E\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\DisableTaskMgr deleted successfully.
Registry value HKEY_USERS\LocalService_ON_E\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry value HKEY_USERS\NetworkService_ON_E\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry value HKEY_USERS\PAUL_ON_E\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry value HKEY_USERS\PAUL_ON_E\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDesktop deleted successfully.
Registry value HKEY_USERS\PAUL_ON_E\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\DisableTaskMgr deleted successfully.
Registry value HKEY_USERS\PAUL_ON_E\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\DisableRegistryTools deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell:C:\Dokumente und Einstellungen\Hasi\Anwendungsdaten\bauesch.exe deleted successfully.
File E:\Dokumente und Einstellungen\Hasi\Anwendungsdaten\bauesch.exe not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\UserInit:C:\Dokumente und Einstellungen\Hasi\Anwendungsdaten\bauesch.exe deleted successfully.
File E:\Dokumente und Einstellungen\Hasi\Anwendungsdaten\bauesch.exe not found.
Registry value HKEY_USERS\Hasi_ON_E\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell:C:\Dokumente und Einstellungen\Hasi\Anwendungsdaten\bauesch.exe deleted successfully.
File E:\Dokumente und Einstellungen\Hasi\Anwendungsdaten\bauesch.exe not found.
Registry value HKEY_USERS\Hasi_ON_E\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\UserInit:C:\Dokumente und Einstellungen\Hasi\Anwendungsdaten\bauesch.exe deleted successfully.
File E:\Dokumente und Einstellungen\Hasi\Anwendungsdaten\bauesch.exe not found.
Registry value HKEY_USERS\PAUL_ON_E\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell:C:\Dokumente und Einstellungen\PAUL\Anwendungsdaten\bauesch.exe deleted successfully.
File E:\Dokumente und Einstellungen\PAUL\Anwendungsdaten\bauesch.exe not found.
Registry value HKEY_USERS\PAUL_ON_E\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\UserInit:C:\Dokumente und Einstellungen\PAUL\Anwendungsdaten\bauesch.exe deleted successfully.
File E:\Dokumente und Einstellungen\PAUL\Anwendungsdaten\bauesch.exe not found.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Cdrom\\AutoRun|DWORD:1 /E : value set successfully!
E:\AUTOEXEC.BAT moved successfully.
========== FILES ==========
File\Folder E:\Dokumente und Einstellungen\Hasi\Anwendungsdaten\bauesch.exe not found.
E:\WINDOWS\System32\coh.cache moved successfully.
========== COMMANDS ==========
E:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
OTLPE by OldTimer - Version 3.1.48.0 log created on 06032012_104434
|
Also, es hat funktioniert. Windows startet wieder normal. Mache grad noch etwas Ordnung und poste die Moved Files Dateien umgehend.
Herzliches Dankeschön.
Cybrab