![]() |
|
Plagegeister aller Art und deren Bekämpfung: ihavenet.comWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() |
|
![]() | #1 |
![]() ![]() | ![]() ihavenet.com Also hab soweit alles gemacht,hier das Ergebniss: OTL: All processes killed ========== OTL ========== Registry value HKEY_USERS\S-1-5-21-2224495918-2310542094-2501334353-1000\Software\Microsoft\Windows\CurrentVersion\Run\\qoqshfycz deleted successfully. C:\Users\Nicole\AppData\Roaming\C_20871B.dll moved successfully. Registry value HKEY_USERS\S-1-5-21-2224495918-2310542094-2501334353-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Rgjlivmmdc deleted successfully. C:\Users\Nicole\AppData\Roaming\korwbrkrr.dll moved successfully. ========== COMMANDS ========== [EMPTYFLASH] User: All Users User: Default User: Default User User: Nicole ->Flash cache emptied: 136414 bytes User: Public Total Flash Files Cleaned = 0,00 mb [EMPTYTEMP] User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Nicole ->Temp folder emptied: 1019648985 bytes ->Temporary Internet Files folder emptied: 155681104 bytes ->FireFox cache emptied: 1105415775 bytes ->Flash cache emptied: 0 bytes User: Public %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32 (64bit) .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 251409045 bytes %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 67698 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 2.415,00 mb OTL by OldTimer - Version 3.2.69.0 log created on 12142012_223630 Files\Folders moved on Reboot... C:\Users\Nicole\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully. C:\Windows\temp\FireFly(20121214222226814).log moved successfully. C:\Windows\temp\integratedoffice.exe_c2rdll(20121214222228814).log moved successfully. C:\Windows\temp\integratedoffice.exe_c2ruidll(20121214222226814).log moved successfully. C:\Windows\temp\integratedoffice.exe_streamserver(20121214222231814).log moved successfully. File move failed. C:\Windows\temp\ood_stream.x86.en-us.dat scheduled to be moved on reboot. File move failed. C:\Windows\temp\ood_stream.x86.x-none.dat scheduled to be moved on reboot. PendingFileRenameOperations files... Registry entries deleted on Reboot... Summary-info: All processes killed ========== OTL ========== Registry value HKEY_USERS\S-1-5-21-2224495918-2310542094-2501334353-1000\Software\Microsoft\Windows\CurrentVersion\Run\\qoqshfycz deleted successfully. C:\Users\Nicole\AppData\Roaming\C_20871B.dll moved successfully. Registry value HKEY_USERS\S-1-5-21-2224495918-2310542094-2501334353-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Rgjlivmmdc deleted successfully. C:\Users\Nicole\AppData\Roaming\korwbrkrr.dll moved successfully. ========== COMMANDS ========== [EMPTYFLASH] User: All Users User: Default User: Default User User: Nicole ->Flash cache emptied: 136414 bytes User: Public Total Flash Files Cleaned = 0,00 mb [EMPTYTEMP] User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Nicole ->Temp folder emptied: 1019648985 bytes ->Temporary Internet Files folder emptied: 155681104 bytes ->FireFox cache emptied: 1105415775 bytes ->Flash cache emptied: 0 bytes User: Public %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32 (64bit) .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 251409045 bytes %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 67698 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 2.415,00 mb OTL by OldTimer - Version 3.2.69.0 log created on 12142012_223630 Files\Folders moved on Reboot... C:\Users\Nicole\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully. C:\Windows\temp\FireFly(20121214222226814).log moved successfully. C:\Windows\temp\integratedoffice.exe_c2rdll(20121214222228814).log moved successfully. C:\Windows\temp\integratedoffice.exe_c2ruidll(20121214222226814).log moved successfully. C:\Windows\temp\integratedoffice.exe_streamserver(20121214222231814).log moved successfully. File move failed. C:\Windows\temp\ood_stream.x86.en-us.dat scheduled to be moved on reboot. File move failed. C:\Windows\temp\ood_stream.x86.x-none.dat scheduled to be moved on reboot. PendingFileRenameOperations files... Registry entries deleted on Reboot... |
![]() |
Themen zu ihavenet.com |
.com, antivir, autorun, avg, avira, bho, desktop, excel, firefox, flash player, format, google, helper, home, ihavenet virus trojaner windows, ihavenet.com, internet, logfile, mozilla, problem, realtek, registry, scan, search the web, security, trojaner, viren, windows |