Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Fehlermeldung beim Systemstart: Problem beim Starten von C/User...appdata..exe

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 02.08.2012, 14:19   #1
J3zzy
 
Fehlermeldung beim Systemstart: Problem beim Starten von C/User...appdata..exe - Standard

Fehlermeldung beim Systemstart: Problem beim Starten von C/User...appdata..exe



Also das ist schonmal die Logdatei vom adxcleaner:

Code:
ATTFilter
# AdwCleaner v1.703 - Logfile created 08/02/2012 at 14:54:03
# Updated 20/07/2012 by Xplode
# Operating system : Windows 7 Home Premium  (64 bits)
# User : Jessy - JESSY-VAIO
# Running from : C:\Users\Jessy\Desktop\adwcleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

Folder Deleted : C:\Users\Jessy\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Jessy\AppData\LocalLow\IncrediMail_MediaBar_2
Folder Deleted : C:\Program Files (x86)\Conduit
File Deleted : C:\Users\Jessy\AppData\Roaming\Mozilla\Firefox\Profiles\84uq1byp.default\searchplugins\MyStart Search.xml
File Deleted : C:\Users\Jessy\AppData\Roaming\Mozilla\Firefox\Profiles\84uq1byp.default\searchplugins\qip-search.xml

***** [Registry] *****
[*] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2724386
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\IM
Key Deleted : HKCU\Software\ImInstaller
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKLM\SOFTWARE\Classes\Conduit.Engine
Key Deleted : HKLM\SOFTWARE\Conduit

***** [Registre - GUID] *****

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}

***** [Internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16421

Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Search Page] = hxxp://search.qip.ru --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Default_Page_URL] = hxxp://qip.ru --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Default_Search_URL] = hxxp://search.qip.ru --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Search Bar] = hxxp://search.qip.ru/ie --> hxxp://www.google.com

-\\ Mozilla Firefox v12.0 (de)

Profile name : default 
File : C:\Users\Jessy\AppData\Roaming\Mozilla\Firefox\Profiles\84uq1byp.default\prefs.js

C:\Users\Jessy\AppData\Roaming\Mozilla\Firefox\Profiles\84uq1byp.default\user.js ... Deleted !

Deleted : user_pref("CT2724386..clientLogIsEnabled", true);
Deleted : user_pref("CT2724386..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.as[...]
Deleted : user_pref("CT2724386..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/Re[...]
Deleted : user_pref("CT2724386.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Deleted : user_pref("CT2724386.CT2724407.CommunityChanged", true);
Deleted : user_pref("CT2724386.CT2724431.CommunityChanged", true);
Deleted : user_pref("CT2724386.CT2727162.CommunityChanged", true);
Deleted : user_pref("CT2724386.CT2727622.CommunityChanged", true);
Deleted : user_pref("CT2724386.CT2727646.CommunityChanged", true);
Deleted : user_pref("CT2724386.CT2727678.CommunityChanged", true);
Deleted : user_pref("CT2724386.CT2727750.CommunityChanged", true);
Deleted : user_pref("CT2724386.CTID", "ct2724407");
Deleted : user_pref("CT2724386.CommunitiesChangesLastCheckTime", "Tue Jan 04 2011 14:29:12 GMT+0100");
Deleted : user_pref("CT2724386.CommunityChanged", true);
Deleted : user_pref("CT2724386.CurrentServerDate", "17-3-2011");
Deleted : user_pref("CT2724386.DialogsAlignMode", "LTR");
Deleted : user_pref("CT2724386.DownloadReferralCookieData", "");
Deleted : user_pref("CT2724386.FirstServerDate", "4-1-2011");
Deleted : user_pref("CT2724386.FirstTime", true);
Deleted : user_pref("CT2724386.FirstTimeFF3", true);
Deleted : user_pref("CT2724386.FirstTimeSettingsDone", true);
Deleted : user_pref("CT2724386.FixPageNotFoundErrors", true);
Deleted : user_pref("CT2724386.GroupingLastCheckTime", "Tue Jan 04 2011 14:27:12 GMT+0100");
Deleted : user_pref("CT2724386.GroupingLastErrorCode", "");
Deleted : user_pref("CT2724386.GroupingLastResponse", true);
Deleted : user_pref("CT2724386.GroupingLastServerUpdateTime", "129373589385170000");
Deleted : user_pref("CT2724386.GroupingServerCheckInterval", 1440);
Deleted : user_pref("CT2724386.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Deleted : user_pref("CT2724386.HasUserGlobalKeys", true);
Deleted : user_pref("CT2724386.Initialize", true);
Deleted : user_pref("CT2724386.InitializeCommonPrefs", true);
Deleted : user_pref("CT2724386.InstallationAndCookieDataSentCount", 3);
Deleted : user_pref("CT2724386.InstallationId", "IncrediMail_MediaBar_2.exe");
Deleted : user_pref("CT2724386.InstallationType", "ConduitIntegration");
Deleted : user_pref("CT2724386.InstalledDate", "Tue Jan 04 2011 14:27:13 GMT+0100");
Deleted : user_pref("CT2724386.IsGrouping", true);
Deleted : user_pref("CT2724386.IsMulticommunity", false);
Deleted : user_pref("CT2724386.IsOpenThankYouPage", false);
Deleted : user_pref("CT2724386.IsOpenUninstallPage", true);
Deleted : user_pref("CT2724386.LanguagePackLastCheckTime", "Tue Jan 04 2011 14:27:14 GMT+0100");
Deleted : user_pref("CT2724386.LanguagePackReloadIntervalMM", 1440);
Deleted : user_pref("CT2724386.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx[...]
Deleted : user_pref("CT2724386.LastLogin_2.7.2.0", "Tue Jan 04 2011 14:27:14 GMT+0100");
Deleted : user_pref("CT2724386.LastLogin_3.2.5.2", "Thu Mar 17 2011 16:39:48 GMT+0100");
Deleted : user_pref("CT2724386.LatestVersion", "3.2.5.2");
Deleted : user_pref("CT2724386.Locale", "en");
Deleted : user_pref("CT2724386.LoginCache", 4);
Deleted : user_pref("CT2724386.MCDetectTooltipHeight", "83");
Deleted : user_pref("CT2724386.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Deleted : user_pref("CT2724386.MCDetectTooltipWidth", "295");
Deleted : user_pref("CT2724386.RadioIsPodcast", false);
Deleted : user_pref("CT2724386.RadioMediaID", "21080119");
Deleted : user_pref("CT2724386.RadioMediaType", "Media Player");
Deleted : user_pref("CT2724386.RadioMenuSelectedID", "EBRadioMenu_CT272438621080119");
Deleted : user_pref("CT2724386.RadioStationName", "Royal-Radio%20");
Deleted : user_pref("CT2724386.RadioStationURL", "");
Deleted : user_pref("CT2724386.SearchEngine", "Search||hxxp://search.conduit.com/Results.aspx?q=UCM_SEARCH_TER[...]
Deleted : user_pref("CT2724386.SearchFromAddressBarIsInit", true);
Deleted : user_pref("CT2724386.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT272[...]
Deleted : user_pref("CT2724386.SearchInNewTabEnabled", true);
Deleted : user_pref("CT2724386.SearchInNewTabIntervalMM", 1440);
Deleted : user_pref("CT2724386.SearchInNewTabLastCheckTime", "Tue Jan 04 2011 14:27:13 GMT+0100");
Deleted : user_pref("CT2724386.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_T[...]
Deleted : user_pref("CT2724386.SearchInNewTabUsageUrl", "hxxp://Usage.Hosting.conduit-services.com/UsageServic[...]
Deleted : user_pref("CT2724386.ServiceMapLastCheckTime", "Thu Mar 17 2011 16:39:47 GMT+0100");
Deleted : user_pref("CT2724386.SettingsCheckIntervalMin", 120);
Deleted : user_pref("CT2724386.SettingsLastCheckTime", "Tue Jan 04 2011 14:27:12 GMT+0100");
Deleted : user_pref("CT2724386.SettingsLastUpdate", "1292878138");
Deleted : user_pref("CT2724386.ThirdPartyComponentsInterval", 504);
Deleted : user_pref("CT2724386.ThirdPartyComponentsLastCheck", "Tue Jan 04 2011 14:27:12 GMT+0100");
Deleted : user_pref("CT2724386.ThirdPartyComponentsLastUpdate", "1246790578");
Deleted : user_pref("CT2724386.TrusteLinkUrl", "hxxp://trust.conduit.com/EB_ORIGINAL_CTID");
Deleted : user_pref("CT2724386.Uninstall", true);
Deleted : user_pref("CT2724386.UserID", "UN60974308613677695");
Deleted : user_pref("CT2724386.WeatherNetwork", "");
Deleted : user_pref("CT2724386.WeatherPollDate", "Tue Jan 04 2011 14:27:13 GMT+0100");
Deleted : user_pref("CT2724386.WeatherUnit", "C");
Deleted : user_pref("CT2724386.clientLogIsEnabled", false);
Deleted : user_pref("CT2724386.clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asm[...]
Deleted : user_pref("CT2724386.ct2724407.DialogsAlignMode", "LTR");
Deleted : user_pref("CT2724386.ct2724407.FirstTimeSettingsDone", true);
Deleted : user_pref("CT2724386.ct2724407.GroupingInvalidateCache", false);
Deleted : user_pref("CT2724386.ct2724407.GroupingLastCheckTime", "Tue Jan 04 2011 14:27:13 GMT+0100");
Deleted : user_pref("CT2724386.ct2724407.GroupingLastErrorCode", "");
Deleted : user_pref("CT2724386.ct2724407.GroupingLastResponse", true);
Deleted : user_pref("CT2724386.ct2724407.GroupingLastServerUpdateTime", "129361239174000000");
Deleted : user_pref("CT2724386.ct2724407.InvalidateCache", false);
Deleted : user_pref("CT2724386.ct2724407.LanguagePackLastCheckTime", "Thu Mar 17 2011 16:39:47 GMT+0100");
Deleted : user_pref("CT2724386.ct2724407.Locale", "de");
Deleted : user_pref("CT2724386.ct2724407.RadioLastCheckTime", "Tue Jan 04 2011 14:27:13 GMT+0100");
Deleted : user_pref("CT2724386.ct2724407.RadioLastUpdateIPServer", "3");
Deleted : user_pref("CT2724386.ct2724407.RadioLastUpdateServer", "129249047784100000");
Deleted : user_pref("CT2724386.ct2724407.SearchEngine", "Suchen||hxxp://search.conduit.com/Results.aspx?q=UCM_[...]
Deleted : user_pref("CT2724386.ct2724407.SearchInNewTabLastCheckTime", "Thu Mar 17 2011 16:39:48 GMT+0100");
Deleted : user_pref("CT2724386.ct2724407.SettingsCheckIntervalMin", 120);
Deleted : user_pref("CT2724386.ct2724407.SettingsLastCheckTime", "Thu Mar 17 2011 16:39:47 GMT+0100");
Deleted : user_pref("CT2724386.ct2724407.SettingsLastUpdate", "1299165927");
Deleted : user_pref("CT2724386.ct2724407.ThirdPartyComponentsLastCheck", "Thu Mar 17 2011 16:39:47 GMT+0100");
Deleted : user_pref("CT2724386.ct2724407.ThirdPartyComponentsLastUpdate", "1255348257");
Deleted : user_pref("CT2724386.ct2724407.toolbarAppMetaDataLastCheckTime", "Thu Mar 17 2011 16:39:47 GMT+0100"[...]
Deleted : user_pref("CT2724386.ct2724407.toolbarContextMenuLastCheckTime", "Thu Mar 17 2011 16:39:47 GMT+0100"[...]
Deleted : user_pref("CT2724386.myStuffEnabled", true);
Deleted : user_pref("CT2724386.myStuffPublihserMinWidth", 400);
Deleted : user_pref("CT2724386.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOr[...]
Deleted : user_pref("CT2724386.myStuffServiceIntervalMM", 1440);
Deleted : user_pref("CT2724386.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?Co[...]
Deleted : user_pref("CT2724386.testingCtid", "");
Deleted : user_pref("CT2724386.uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/Reg[...]
Deleted : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/909619/905414/DE", "\"0\"")[...]
Deleted : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=ct2724407", [...]
Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&lo[...]
Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&loc[...]
Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&lo[...]
Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&local[...]
Deleted : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/toolbar/", "\"63433363123173[...]
Deleted : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services.com/?browser=FF&lut=0", "63[...]
Deleted : user_pref("CommunityToolbar.ETag.hxxp://settings.toolbar.search.conduit.com/root/ct2724407/CT2724386[...]
Deleted : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=de", "\"634[...]
Deleted : user_pref("CommunityToolbar.EngineOwner", "CT2724386");
Deleted : user_pref("CommunityToolbar.EngineOwnerGuid", "{d40b90b4-d3b1-4d6b-a5d7-dc041c1b76c0}");
Deleted : user_pref("CommunityToolbar.EngineOwnerToolbarId", "incredimail_mediabar_2");
Deleted : user_pref("CommunityToolbar.IsMyStuffImportedToEngine", true);
Deleted : user_pref("CommunityToolbar.OriginalEngineOwner", "CT2724386");
Deleted : user_pref("CommunityToolbar.OriginalEngineOwnerGuid", "{d40b90b4-d3b1-4d6b-a5d7-dc041c1b76c0}");
Deleted : user_pref("CommunityToolbar.OriginalEngineOwnerToolbarId", "incredimail_mediabar_2");
Deleted : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "hxxp://mystart.incredimail.com/mb44/?loc[...]
Deleted : user_pref("CommunityToolbar.ToolbarsList", "CT2724386");
Deleted : user_pref("CommunityToolbar.ToolbarsList2", "CT2724386");
Deleted : user_pref("CommunityToolbar.alert.alertInfoInterval", 1440);
Deleted : user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Wed Mar 16 2011 20:13:07 GMT+0100");
Deleted : user_pref("CommunityToolbar.alert.clientsServerUrl", "hxxp://alert.client.conduit.com");
Deleted : user_pref("CommunityToolbar.alert.locale", "en");
Deleted : user_pref("CommunityToolbar.alert.loginIntervalMin", 1440);
Deleted : user_pref("CommunityToolbar.alert.loginLastCheckTime", "Wed Mar 16 2011 20:13:07 GMT+0100");
Deleted : user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1291052234");
Deleted : user_pref("CommunityToolbar.alert.messageShowTimeSec", 20);
Deleted : user_pref("CommunityToolbar.alert.servicesServerUrl", "hxxp://alert.services.conduit.com");
Deleted : user_pref("CommunityToolbar.alert.showTrayIcon", false);
Deleted : user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300);
Deleted : user_pref("CommunityToolbar.alert.userId", "0628edaa-4208-40f5-a961-3620aef7abf8");
Deleted : user_pref("CommunityToolbar.facebook.settingsLastCheckTime", "Tue Jan 04 2011 14:27:13 GMT+0100");

-\\ Google Chrome v [Unable to get version]

File : C:\Users\Jessy\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [14266 octets] - [01/08/2012 11:26:38]
AdwCleaner[S1].txt - [14283 octets] - [02/08/2012 14:54:03]

########## EOF - C:\AdwCleaner[S1].txt - [14412 octets] ##########
         
Ich habe nur ein Problem mit der Emsisoft Anti-Malware Software. Nach der Sprachauswahl erhalte ich eine Fehlermeldung dass es nicht installiert werden kann, da ich windows 7 benutze und ein Service Pack 1 benötigen würde. Wo kann ich das Service Pack downloaden?

Antwort

Themen zu Fehlermeldung beim Systemstart: Problem beim Starten von C/User...appdata..exe
antivir, appdata, avira, bho, bonjour, converter, error, fehlermeldung, firefox, flash player, format, home, install.exe, logfile, microsoft office word, modul, mozilla, nodrives, office 2007, origin, plug-in, problem, realtek, registry, rundll, scan, searchscopes, security, senden, software, starten, svchost.exe, systemstart, udp, visual studio, windows




Ähnliche Themen: Fehlermeldung beim Systemstart: Problem beim Starten von C/User...appdata..exe


  1. Fehlermeldung beim booten. RunDLL Problem beim starten von ... Das angegebene Modul wurde nicht gefunden.
    Plagegeister aller Art und deren Bekämpfung - 31.05.2016 (23)
  2. Fehlermeldung beim Starten von Win 8.1 - RunDll Problem bei Starten Falscher Parameter
    Alles rund um Windows - 04.10.2015 (13)
  3. Fehlermeldung RunDLL Problem beim Starten von
    Plagegeister aller Art und deren Bekämpfung - 11.04.2015 (20)
  4. problem beim starten von c users appdata roaming newnext.me nengine.dll
    Log-Analyse und Auswertung - 11.04.2014 (1)
  5. Fehlermeldung beim booten. RunDLL Problem beim starten von C:\ProgrammFiles\HomeTab\TBUpdater.dll Das angegebene Modul wurde nicht gefunden
    Plagegeister aller Art und deren Bekämpfung - 01.11.2013 (21)
  6. Problem beim Starten. C:\Users\Benutzer\AppData\Roaming\BabSolution\Shared\EnhancedNT.dll
    Plagegeister aller Art und deren Bekämpfung - 18.10.2013 (15)
  7. Fehlermeldung: RunDLL - Problem beim Starten von C:\Users\a.....\AppData\Local\Temp\ch810.exe Das angegebene Modul wurde nicht gefunden.
    Log-Analyse und Auswertung - 05.10.2013 (10)
  8. Fehlermeldung: RunDLL - Problem beim Starten von C:\Users\C..\AppData\...\enhancedNT.dll Das angegebene Modul wurde nicht gefunden.
    Log-Analyse und Auswertung - 02.10.2013 (6)
  9. RunDLL: Problem beim Starten von C\Users\user\AppData\Local\Temp\wgsdgsdgdsgsd.exe - das angegebenen Modul wurde nicht gefunden
    Plagegeister aller Art und deren Bekämpfung - 21.12.2012 (1)
  10. RunDLL: Problem beim Starten von C\Users\user\AppData\Local\Temp\wgsdgsdgdsgsd.exe - das angegebenen Modul wurde nicht gefunden
    Log-Analyse und Auswertung - 17.12.2012 (9)
  11. Fehlermeldung beim Neustart C:\ Users\User\AppData\Local\Temp\wgsdgsdgdsgsd.exe
    Log-Analyse und Auswertung - 22.10.2012 (48)
  12. Start: Problem beim Starten von C:\Users\...\AppData\Local\Temp\wpbt0.dll
    Plagegeister aller Art und deren Bekämpfung - 17.09.2012 (1)
  13. Nach dem Neustart einer Bereinigung mit ESETOnline Scan kommt die Fehlermeldung beim Start: Problem beim Starten von install_0_msi.exe
    Plagegeister aller Art und deren Bekämpfung - 14.09.2012 (30)
  14. RunDLL Problem beim Starten von C:\Users\Username\AppData\tmikanp.dll
    Log-Analyse und Auswertung - 22.08.2012 (16)
  15. RunDLL Fehler / Problem beim starten von C:/Users/.../AppData..
    Plagegeister aller Art und deren Bekämpfung - 04.07.2012 (7)
  16. Fehlermeldung:"Problem beim Starten von C:\Users\user\AppData\Local\Temp\ch810.exe"
    Log-Analyse und Auswertung - 14.05.2012 (27)
  17. Fehlermeldung beim Starten von Windows Vista PC "Fehler beim Laden von C.\User\***\sshas21.dll
    Plagegeister aller Art und deren Bekämpfung - 28.08.2010 (13)

Zum Thema Fehlermeldung beim Systemstart: Problem beim Starten von C/User...appdata..exe - Also das ist schonmal die Logdatei vom adxcleaner: Code: Alles auswählen Aufklappen ATTFilter # AdwCleaner v1.703 - Logfile created 08/02/2012 at 14:54:03 # Updated 20/07/2012 by Xplode # Operating system - Fehlermeldung beim Systemstart: Problem beim Starten von C/User...appdata..exe...
Archiv
Du betrachtest: Fehlermeldung beim Systemstart: Problem beim Starten von C/User...appdata..exe auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.