Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Ständig Weiterleitung auf unerwünschte Werbeseiten

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

 
Alt 17.07.2012, 18:37   #5
bettrett
 
Ständig Weiterleitung auf unerwünschte Werbeseiten - Standard

Ständig Weiterleitung auf unerwünschte Werbeseiten



All processes killed
========== OTL ==========
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}\ not found.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoActiveDesktop deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoControlPanel deleted successfully.
ADS C:\ProgramData\Temp:AB689DEA deleted successfully.
ADS C:\ProgramData\Temp:93DE1838 deleted successfully.
ADS C:\ProgramData\Temp:E3C56885 deleted successfully.
ADS C:\ProgramData\Temp:0B9176C0 deleted successfully.
C:\Windows\Wiainst.exe moved successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: AppData

User: betti
->Temp folder emptied: 65368046 bytes
->Temporary Internet Files folder emptied: 593030390 bytes
->Java cache emptied: 16590860 bytes
->FireFox cache emptied: 92254326 bytes
->Google Chrome cache emptied: 6337660 bytes
->Flash cache emptied: 57067 bytes

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56468 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Public

%systemdrive% .tmp files removed: 14113 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 349183952 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 36052464 bytes
RecycleBin emptied: 8476818892 bytes

Total Files Cleaned = 9.189,00 mb


OTL by OldTimer - Version 3.2.54.0 log created on 07172012_081000

Files\Folders moved on Reboot...
C:\Users\betti\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Y18OJTH9\schlauch-pflege-wie-oft-putzt-ihr-240223-4[1].htm moved successfully.
C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MRQEMQ0U\54791-anleitung-uploadchannel-trojaner-board[1].htm moved successfully.
C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MH1LL87B\afr[1].htm moved successfully.
C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MH1LL87B\afr[2].htm moved successfully.
C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MH1LL87B\afr[3].htm moved successfully.
C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MH1LL87B\afr[4].htm moved successfully.
C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MH1LL87B\data_sync[1].htm moved successfully.
C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L9CWR0NH\data_sync[1].htm moved successfully.
C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K6QJKX1D\ads[4].htm moved successfully.
C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K6QJKX1D\ads[5].htm moved successfully.
C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GMNR4YTW\afr[1].htm moved successfully.
C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FM1TBPQT\ads[3].htm moved successfully.
C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BD682KN8\ads[3].htm moved successfully.
C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A4LGLFST\analysis[1].htm moved successfully.
C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0N2A8VS0\119605-staendig-weiterleitung-unerwuenschte-werbeseiten[1].htm moved successfully.
File\Folder C:\Windows\temp\mcafee_bmANqlY31Mc7FGl not found!
File\Folder C:\Windows\temp\mcmsc_231dXWyoXIvCESb not found!
File\Folder C:\Windows\temp\mcmsc_96WpFpvq0YGa4xx not found!
File\Folder C:\Windows\temp\mcmsc_oWOLoU5Yr3qvrwM not found!
File\Folder C:\Windows\temp\mcmsc_ZDpaZ48GpsTO3Kw not found!
File\Folder C:\Windows\temp\sqlite_HjjE4hgtiq0qvvF not found!
File\Folder C:\Windows\temp\sqlite_ki97wjr6ovwLdxq not found!
File\Folder C:\Windows\temp\sqlite_mNXhR42kPek5NNM not found!
File\Folder C:\Windows\temp\sqlite_UYMiBUKgbRWyNT9 not found!

PendingFileRenameOperations files...
File C:\Users\betti\AppData\Local\Temp\FXSAPIDebugLogFile.txt not found!
File C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Y18OJTH9\schlauch-pflege-wie-oft-putzt-ihr-240223-4[1].htm not found!
File C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MRQEMQ0U\54791-anleitung-uploadchannel-trojaner-board[1].htm not found!
File C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MH1LL87B\afr[1].htm not found!
File C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MH1LL87B\afr[2].htm not found!
File C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MH1LL87B\afr[3].htm not found!
File C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MH1LL87B\afr[4].htm not found!
File C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MH1LL87B\data_sync[1].htm not found!
File C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L9CWR0NH\data_sync[1].htm not found!
File C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K6QJKX1D\ads[4].htm not found!
File C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K6QJKX1D\ads[5].htm not found!
File C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GMNR4YTW\afr[1].htm not found!
File C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FM1TBPQT\ads[3].htm not found!
File C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BD682KN8\ads[3].htm not found!
File C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A4LGLFST\analysis[1].htm not found!
File C:\Users\betti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0N2A8VS0\119605-staendig-weiterleitung-unerwuenschte-werbeseiten[1].htm not found!
File C:\Windows\temp\mcafee_bmANqlY31Mc7FGl not found!
File C:\Windows\temp\mcmsc_231dXWyoXIvCESb not found!
File C:\Windows\temp\mcmsc_96WpFpvq0YGa4xx not found!
File C:\Windows\temp\mcmsc_oWOLoU5Yr3qvrwM not found!
File C:\Windows\temp\mcmsc_ZDpaZ48GpsTO3Kw not found!
File C:\Windows\temp\sqlite_HjjE4hgtiq0qvvF not found!
File C:\Windows\temp\sqlite_ki97wjr6ovwLdxq not found!
File C:\Windows\temp\sqlite_mNXhR42kPek5NNM not found!
File C:\Windows\temp\sqlite_UYMiBUKgbRWyNT9 not found!

Registry entries deleted on Reboot...

leider hat mich der akku im stich gelassen und von virustotal ist die datei nicht mehr auffindbar.
kann ich da noch was machen?

Ich hoffe so ist es richtig mit dem log.

bettina

hier der log vom adware cleaner.
# AdwCleaner v1.702 - Logfile created 07/17/2012 at 19:41:30
# Updated 13/07/2012 by Xplode
# Operating system : Windows 7 Home Premium (64 bits)
# User : betti - BETTI-PC
# Running from : C:\Users\betti\Desktop\adwcleaner.exe
# Option [Search]


***** [Services] *****


***** [Files / Folders] *****

Folder Found : C:\Users\betti\AppData\Local\Conduit
Folder Found : C:\Users\betti\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia
Folder Found : C:\Users\betti\AppData\Local\Temp\boost_interprocess
Folder Found : C:\Users\betti\AppData\LocalLow\Conduit
Folder Found : C:\Users\betti\AppData\LocalLow\pdfforge
Folder Found : C:\Users\betti\AppData\LocalLow\PriceGong
Folder Found : C:\Users\betti\AppData\LocalLow\Search Settings
Folder Found : C:\Users\betti\AppData\Roaming\Mozilla\Firefox\Profiles\eldirn3t.default\Conduit
Folder Found : C:\Users\betti\AppData\Roaming\Mozilla\Firefox\Profiles\eldirn3t.default\ConduitEngine
Folder Found : C:\Users\betti\AppData\Roaming\Mozilla\Firefox\Profiles\eldirn3t.default\extensions\{cc05a3e3-64c3-4af2-bfc1-af0d66b69065}
Folder Found : C:\Users\betti\AppData\Roaming\Mozilla\Firefox\Profiles\eldirn3t.default\extensions\engine@conduit.com
Folder Found : C:\Program Files (x86)\Application Updater
Folder Found : C:\Program Files (x86)\Conduit
Folder Found : C:\Program Files (x86)\pdfforge Toolbar
Folder Found : C:\Program Files (x86)\Common Files\spigot

***** [Registry] *****
[*] Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT2269050[*] Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT2431245
Key Found : HKCU\Software\AppDataLow\Software\Conduit
Key Found : HKCU\Software\AppDataLow\Software\PriceGong
Key Found : HKCU\Software\AppDataLow\Software\Search Settings
Key Found : HKCU\Software\AppDataLow\Toolbar
Key Found : HKCU\Software\Softonic
Key Found : HKLM\SOFTWARE\Application Updater
Key Found : HKLM\SOFTWARE\Classes\Conduit.Engine
Key Found : HKLM\SOFTWARE\Conduit
Key Found : HKLM\SOFTWARE\pdfforge
Key Found : HKLM\SOFTWARE\Search Settings
[x64] Key Found : HKCU\Software\AppDataLow\Software\Conduit
[x64] Key Found : HKCU\Software\AppDataLow\Software\PriceGong
[x64] Key Found : HKCU\Software\AppDataLow\Software\Search Settings
[x64] Key Found : HKCU\Software\AppDataLow\Toolbar
[x64] Key Found : HKCU\Software\Softonic
[x64] Key Found : HKLM\SOFTWARE\Classes\Conduit.Engine

***** [Registre - GUID] *****

Key Found : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{B922D405-6D13-4A2B-AE89-08A030DA4402}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{CC05A3E3-64C3-4AF2-BFC1-AF0D66B69065}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B922D405-6D13-4A2B-AE89-08A030DA4402}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC05A3E3-64C3-4AF2-BFC1-AF0D66B69065}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B922D405-6D13-4A2B-AE89-08A030DA4402}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CC05A3E3-64C3-4AF2-BFC1-AF0D66B69065}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B922D405-6D13-4A2B-AE89-08A030DA4402}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CC05A3E3-64C3-4AF2-BFC1-AF0D66B69065}
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{B922D405-6D13-4A2B-AE89-08A030DA4402}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{CC05A3E3-64C3-4AF2-BFC1-AF0D66B69065}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{CC05A3E3-64C3-4AF2-BFC1-AF0D66B69065}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{B922D405-6D13-4A2B-AE89-08A030DA4402}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{CC05A3E3-64C3-4AF2-BFC1-AF0D66B69065}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{CC05A3E3-64C3-4AF2-BFC1-AF0D66B69065}]
[x64] Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
[x64] Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B922D405-6D13-4A2B-AE89-08A030DA4402}
[x64] Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CC05A3E3-64C3-4AF2-BFC1-AF0D66B69065}
[x64] Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B922D405-6D13-4A2B-AE89-08A030DA4402}
[x64] Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CC05A3E3-64C3-4AF2-BFC1-AF0D66B69065}
[x64] Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{30F9B915-B755-4826-820B-08FBA6BD249D}]
[x64] Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{CC05A3E3-64C3-4AF2-BFC1-AF0D66B69065}]
[x64] Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{B922D405-6D13-4A2B-AE89-08A030DA4402}]
[x64] Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{CC05A3E3-64C3-4AF2-BFC1-AF0D66B69065}]

***** [Internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16421

[OK] Registry is clean.

-\\ Mozilla Firefox v3.6.6 (de)

Profile name : default
File : C:\Users\betti\AppData\Roaming\Mozilla\Firefox\Profiles\eldirn3t.default\prefs.js

Found : user_pref("CT2431245..clientLogIsEnabled", true);
Found : user_pref("CT2431245..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.as[...]
Found : user_pref("CT2431245..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/Re[...]
Found : user_pref("CT2431245.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Found : user_pref("CT2431245.CTID", "CT2431245");
Found : user_pref("CT2431245.CurrentServerDate", "20-5-2011");
Found : user_pref("CT2431245.DialogsAlignMode", "LTR");
Found : user_pref("CT2431245.DownloadReferralCookieData", "");
Found : user_pref("CT2431245.EMailNotifierPollDate", "Fri May 20 2011 07:50:23 GMT+0200");
Found : user_pref("CT2431245.FeedLastCount129009402595187825", 488);
Found : user_pref("CT2431245.FeedPollDate7470634014180506963", "Fri May 20 2011 07:50:28 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634014269327586", "Fri May 20 2011 07:50:27 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634014329599698", "Fri May 20 2011 07:50:27 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634014537505092", "Fri May 20 2011 07:50:27 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634014970726540", "Fri May 20 2011 07:50:27 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634015410831318", "Fri May 20 2011 07:50:29 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634015483395460", "Fri May 20 2011 07:50:28 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634015636754705", "Fri May 20 2011 07:50:28 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634015768347545", "Fri May 20 2011 07:50:27 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634015855543602", "Fri May 20 2011 07:50:27 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634016030710453", "Fri May 20 2011 07:50:27 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634016114705611", "Fri May 20 2011 07:50:29 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634016129205152", "Fri May 20 2011 07:50:28 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634016143724791", "Fri May 20 2011 07:50:29 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634016271239162", "Fri May 20 2011 07:50:29 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634016568520719", "Fri May 20 2011 07:50:28 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634016726993788", "Fri May 20 2011 07:50:27 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634017109031809", "Fri May 20 2011 07:50:28 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634017132743740", "Fri May 20 2011 07:50:28 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634017299547668", "Fri May 20 2011 07:50:28 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634017302327846", "Fri May 20 2011 07:50:28 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634017344111490", "Fri May 20 2011 07:50:27 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634017478360748", "Fri May 20 2011 07:50:29 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634017732797593", "Fri May 20 2011 07:50:27 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634017821686064", "Fri May 20 2011 07:50:29 GMT+0200");
Found : user_pref("CT2431245.FeedPollDate7470634018090228721", "Fri May 20 2011 07:50:28 GMT+0200");
Found : user_pref("CT2431245.FeedTTL7470634014269327586", 5);
Found : user_pref("CT2431245.FeedTTL7470634014537505092", 5);
Found : user_pref("CT2431245.FeedTTL7470634014970726540", 2);
Found : user_pref("CT2431245.FeedTTL7470634016568520719", 30);
Found : user_pref("CT2431245.FeedTTL7470634017109031809", 30);
Found : user_pref("CT2431245.FeedTTL7470634017299547668", 2);
Found : user_pref("CT2431245.FirstServerDate", "20-5-2011");
Found : user_pref("CT2431245.FirstTime", true);
Found : user_pref("CT2431245.FirstTimeFF3", true);
Found : user_pref("CT2431245.FixPageNotFoundErrors", true);
Found : user_pref("CT2431245.GroupingServerCheckInterval", 1440);
Found : user_pref("CT2431245.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Found : user_pref("CT2431245.HasUserGlobalKeys", true);
Found : user_pref("CT2431245.Initialize", true);
Found : user_pref("CT2431245.InitializeCommonPrefs", true);
Found : user_pref("CT2431245.InstallationAndCookieDataSentCount", 1);
Found : user_pref("CT2431245.InstallationId", "Unknown");
Found : user_pref("CT2431245.InstallationType", "ExternalIntegration");
Found : user_pref("CT2431245.InstalledDate", "Fri May 20 2011 07:50:23 GMT+0200");
Found : user_pref("CT2431245.InvalidateCache", false);
Found : user_pref("CT2431245.IsGrouping", false);
Found : user_pref("CT2431245.IsMulticommunity", false);
Found : user_pref("CT2431245.IsOpenThankYouPage", false);
Found : user_pref("CT2431245.IsOpenUninstallPage", true);
Found : user_pref("CT2431245.LanguagePackLastCheckTime", "Fri May 20 2011 07:50:25 GMT+0200");
Found : user_pref("CT2431245.LanguagePackReloadIntervalMM", 1440);
Found : user_pref("CT2431245.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx[...]
Found : user_pref("CT2431245.LastLogin_3.2.5.2", "Fri May 20 2011 07:50:23 GMT+0200");
Found : user_pref("CT2431245.LatestVersion", "3.2.5.2");
Found : user_pref("CT2431245.Locale", "de-de");
Found : user_pref("CT2431245.MCDetectTooltipHeight", "83");
Found : user_pref("CT2431245.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Found : user_pref("CT2431245.MCDetectTooltipWidth", "295");
Found : user_pref("CT2431245.RadioIsPodcast", false);
Found : user_pref("CT2431245.RadioLastCheckTime", "Fri May 20 2011 07:50:28 GMT+0200");
Found : user_pref("CT2431245.RadioLastUpdateIPServer", "3");
Found : user_pref("CT2431245.RadioLastUpdateServer", "129167771525870000");
Found : user_pref("CT2431245.RadioMediaID", "20503672");
Found : user_pref("CT2431245.RadioMediaType", "Media Player");
Found : user_pref("CT2431245.RadioMenuSelectedID", "EBRadioMenu_CT243124520503672");
Found : user_pref("CT2431245.RadioStationName", "Team%20Radio%20Deutschland");
Found : user_pref("CT2431245.RadioStationURL", "hxxp://trd.stream.w-u-s.org:6666/dsl.m3u");
Found : user_pref("CT2431245.SearchFromAddressBarIsInit", true);
Found : user_pref("CT2431245.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT243[...]
Found : user_pref("CT2431245.SearchInNewTabEnabled", true);
Found : user_pref("CT2431245.SearchInNewTabIntervalMM", 1440);
Found : user_pref("CT2431245.SearchInNewTabLastCheckTime", "Fri May 20 2011 07:50:24 GMT+0200");
Found : user_pref("CT2431245.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_T[...]
Found : user_pref("CT2431245.SearchInNewTabUsageUrl", "hxxp://Usage.Hosting.conduit-services.com/UsageServic[...]
Found : user_pref("CT2431245.ServiceMapLastCheckTime", "Fri May 20 2011 07:50:22 GMT+0200");
Found : user_pref("CT2431245.SettingsLastCheckTime", "Fri May 20 2011 07:50:22 GMT+0200");
Found : user_pref("CT2431245.SettingsLastUpdate", "1305800360");
Found : user_pref("CT2431245.ThirdPartyComponentsInterval", 504);
Found : user_pref("CT2431245.ThirdPartyComponentsLastCheck", "Fri May 20 2011 07:50:22 GMT+0200");
Found : user_pref("CT2431245.ThirdPartyComponentsLastUpdate", "1255344657");
Found : user_pref("CT2431245.TrusteLinkUrl", "hxxp://trust.conduit.com/EB_ORIGINAL_CTID");
Found : user_pref("CT2431245.UserID", "UN19394633091674662");
Found : user_pref("CT2431245.WeatherNetwork", "");
Found : user_pref("CT2431245.WeatherPollDate", "Fri May 20 2011 07:50:25 GMT+0200");
Found : user_pref("CT2431245.WeatherUnit", "C");
Found : user_pref("CT2431245.alertChannelId", "825452");
Found : user_pref("CT2431245.backendstorage.for_aoi", "31333035383730363332");
Found : user_pref("CT2431245.backendstorage.for_ccid", "6E756C6C");
Found : user_pref("CT2431245.backendstorage.for_cdtr5", "31333035383730363332");
Found : user_pref("CT2431245.backendstorage.for_cid", "4445");
Found : user_pref("CT2431245.backendstorage.for_ip", "39322E37322E33332E3233");
Found : user_pref("CT2431245.backendstorage.for_lcut", "31333035383730363333");
Found : user_pref("CT2431245.backendstorage.for_pid", "31303130");
Found : user_pref("CT2431245.backendstorage.for_rid", "3037");
Found : user_pref("CT2431245.backendstorage.for_zoneid", "39353933");
Found : user_pref("CT2431245.backendstorage.hxxp://cmg1_conduit-widgets_com/pitsi.state", "4F50454E");
Found : user_pref("CT2431245.myStuffEnabled", true);
Found : user_pref("CT2431245.myStuffPublihserMinWidth", 400);
Found : user_pref("CT2431245.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOr[...]
Found : user_pref("CT2431245.myStuffServiceIntervalMM", 1440);
Found : user_pref("CT2431245.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?Co[...]
Found : user_pref("CT2431245.testingCtid", "");
Found : user_pref("CT2431245.toolbarAppMetaDataLastCheckTime", "Fri May 20 2011 07:50:23 GMT+0200");
Found : user_pref("CT2431245.toolbarContextMenuLastCheckTime", "Fri May 20 2011 07:50:25 GMT+0200");
Found : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/825452/821260/DE", "\"0\"")[...]
Found : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/909619/905414/DE", "\"0\"")[...]
Found : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2431245", [...]
Found : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&lo[...]
Found : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&loc[...]
Found : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&lo[...]
Found : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&local[...]
Found : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/toolbar/", "\"63441308206287[...]
Found : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services.com/?browser=FF&lut=0", "63[...]
Found : user_pref("CommunityToolbar.ETag.hxxp://settings.toolbar.search.conduit.com/root/CT2431245/CT2431245[...]
Found : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/equalizer[...]
Found : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/minimize.[...]
Found : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/play.gif"[...]
Found : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/stop.gif"[...]
Found : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/vol.gif",[...]
Found : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=de-de", "\"[...]
Found : user_pref("CommunityToolbar.EngineOwner", "CT2431245");
Found : user_pref("CommunityToolbar.EngineOwnerGuid", "{cc05a3e3-64c3-4af2-bfc1-af0d66b69065}");
Found : user_pref("CommunityToolbar.EngineOwnerToolbarId", "softonic-de3");
Found : user_pref("CommunityToolbar.IsMyStuffImportedToEngine", true);
Found : user_pref("CommunityToolbar.OriginalEngineOwner", "CT2431245");
Found : user_pref("CommunityToolbar.OriginalEngineOwnerGuid", "{cc05a3e3-64c3-4af2-bfc1-af0d66b69065}");
Found : user_pref("CommunityToolbar.OriginalEngineOwnerToolbarId", "softonic-de3");
Found : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "hxxp://search.yahoo.com/search?ei=utf-8&[...]
Found : user_pref("CommunityToolbar.ToolbarsList", "ConduitEngine,CT2431245");
Found : user_pref("CommunityToolbar.ToolbarsList2", "CT2431245");
Found : user_pref("CommunityToolbar.alert.alertInfoInterval", 60);
Found : user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Fri May 20 2011 07:50:24 GMT+0200");
Found : user_pref("CommunityToolbar.alert.clientsServerUrl", "hxxp://alert.client.conduit.com");
Found : user_pref("CommunityToolbar.alert.locale", "en");
Found : user_pref("CommunityToolbar.alert.loginIntervalMin", 1440);
Found : user_pref("CommunityToolbar.alert.loginLastCheckTime", "Fri May 20 2011 07:50:21 GMT+0200");
Found : user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1305622559");
Found : user_pref("CommunityToolbar.alert.messageShowTimeSec", 20);
Found : user_pref("CommunityToolbar.alert.servicesServerUrl", "hxxp://alert.services.conduit.com");
Found : user_pref("CommunityToolbar.alert.showTrayIcon", false);
Found : user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300);
Found : user_pref("CommunityToolbar.alert.userId", "f6153b5d-335e-46a4-92db-f95bbe45c270");
Found : user_pref("ConduitEngine.FirstServerDate", "05/20/2011 08");
Found : user_pref("ConduitEngine.FirstTime", true);
Found : user_pref("ConduitEngine.FirstTimeFF3", true);
Found : user_pref("ConduitEngine.HasUserGlobalKeys", true);
Found : user_pref("ConduitEngine.Initialize", true);
Found : user_pref("ConduitEngine.InitializeCommonPrefs", true);
Found : user_pref("ConduitEngine.InstalledDate", "Fri May 20 2011 07:50:23 GMT+0200");
Found : user_pref("ConduitEngine.IsMulticommunity", false);
Found : user_pref("ConduitEngine.IsOpenThankYouPage", false);
Found : user_pref("ConduitEngine.IsOpenUninstallPage", true);
Found : user_pref("ConduitEngine.LanguagePackLastCheckTime", "Fri May 20 2011 07:50:23 GMT+0200");
Found : user_pref("ConduitEngine.LastLogin_3.2.5.2", "Fri May 20 2011 07:50:23 GMT+0200");
Found : user_pref("ConduitEngine.PublisherContainerWidth", 0);
Found : user_pref("ConduitEngine.SearchFromAddressBarIsInit", true);
Found : user_pref("ConduitEngine.SettingsLastCheckTime", "Fri May 20 2011 07:50:22 GMT+0200");
Found : user_pref("ConduitEngine.UserID", "UN50644644229747811");
Found : user_pref("ConduitEngine.engineLocale", "de");
Found : user_pref("ConduitEngine.enngineContextMenuLastCheckTime", "Fri May 20 2011 07:50:23 GMT+0200");
Found : user_pref("ConduitEngine.initDone", true);

-\\ Google Chrome v [Unable to get version]

File : C:\Users\betti\AppData\Local\Google\Chrome\User Data\Default\Preferences

Found : "description": "The fastest way to search the web.",

*************************

AdwCleaner[R1].txt - [20354 octets] - [16/07/2012 19:18:59]
AdwCleaner[R2].txt - [20415 octets] - [16/07/2012 19:20:06]
AdwCleaner[R3].txt - [20375 octets] - [17/07/2012 19:41:30]

########## EOF - C:\AdwCleaner[R3].txt - [20504 octets] ##########


 

Themen zu Ständig Weiterleitung auf unerwünschte Werbeseiten
adaware, adresse, adressen, artikel, erscheint, explorer, folge, folgendes, hallo zusammen, hoffe, home, interne, internet, internet explorer, klicke, klicken, problem, schnell, tagen, unerwünschte, virus, weiterleitung, werbeseite, zusammen, ähnliches




Ähnliche Themen: Ständig Weiterleitung auf unerwünschte Werbeseiten


  1. Windows 7: ständige Weiterleitung auf Werbeseiten
    Log-Analyse und Auswertung - 31.07.2014 (9)
  2. Ständige Weiterleitung auf ominöse Werbeseiten bei Firefox mit Windows 7
    Plagegeister aller Art und deren Bekämpfung - 23.05.2014 (18)
  3. Unerwünschte Werbeseiten öffnen sich ungefragt
    Plagegeister aller Art und deren Bekämpfung - 15.05.2014 (11)
  4. Unerwünschte Umleitungen zu Werbeseiten
    Plagegeister aller Art und deren Bekämpfung - 15.03.2014 (13)
  5. Win7: Weiterleitung auf Werbeseiten, merkwürdige Popups
    Log-Analyse und Auswertung - 22.01.2014 (6)
  6. Suchmaschinen Weiterleitung auf Werbeseiten
    Plagegeister aller Art und deren Bekämpfung - 07.06.2013 (8)
  7. ungewollte Googleweiterleitung auf Werbeseiten und andere unerwünschte
    Log-Analyse und Auswertung - 29.10.2012 (5)
  8. Weiterleitung auf Werbeseiten bei Google-Recherche
    Log-Analyse und Auswertung - 09.10.2012 (39)
  9. Weiterleitung auf Werbeseiten / Windows Sicherheitscenter deaktiviert
    Plagegeister aller Art und deren Bekämpfung - 16.04.2012 (13)
  10. Weiterleitung auf Werbeseiten bei Google-Suchergebnissen
    Log-Analyse und Auswertung - 04.12.2011 (1)
  11. Automatische Weiterleitung zu Werbeseiten beim Anklicken von Google Suchergebnissen
    Log-Analyse und Auswertung - 15.11.2011 (21)
  12. Trojanse.Agent.H unerwünschte Werbeseiten Firefox
    Plagegeister aller Art und deren Bekämpfung - 18.10.2010 (10)
  13. unerwünschte Werbeseiten bei Nutzung von Firefox
    Log-Analyse und Auswertung - 27.08.2010 (16)
  14. Firefox öffnet unerwünschte Werbeseiten
    Log-Analyse und Auswertung - 27.12.2008 (7)
  15. Weiterleitung auf Werbeseiten und anderes
    Mülltonne - 26.11.2008 (2)
  16. Unerwünschte Werbeseiten mit IE7
    Log-Analyse und Auswertung - 22.11.2008 (6)
  17. Weiterleitung zu Werbeseiten bei Googleergebnissen
    Plagegeister aller Art und deren Bekämpfung - 04.03.2008 (0)

Zum Thema Ständig Weiterleitung auf unerwünschte Werbeseiten - All processes killed ========== OTL ========== Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}\ not found. 64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully. - Ständig Weiterleitung auf unerwünschte Werbeseiten...
Archiv
Du betrachtest: Ständig Weiterleitung auf unerwünschte Werbeseiten auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.