|
Plagegeister aller Art und deren Bekämpfung: SpyHunter 4 + Optimizer ProWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
11.02.2013, 21:01 | #31 |
| SpyHunter 4 + Optimizer Pro Ja...beim Hochfahren öffnet sich ein Fenster von Spyhunter,dann kommt irgendwann der Aufruf zu Registrieren und dann öffnet sich immer noch ein anderes Fenster mit irgendwelchen Informationen....es ist auch noch in Programme+Funktionen vorhanden.Beim nächsten mal versuche ich mal den Inhalt zu kopieren ========== FILES ========== c:\windows\6B6C4C461B7E4A419E70ACFBB22B1D81.TMP folder moved successfully. c:\users\mischa\AppData\Roaming\Microsoft\Installer\{6B6C4C46-1B7E-4A41-9E70-ACFBB22B1D81} folder moved successfully. OTL by OldTimer - Version 3.2.69.0 log created on 02112013_210220 |
11.02.2013, 21:08 | #32 |
/// TB-Ausbilder | SpyHunter 4 + Optimizer Pro Ok, dann mach jetzt bitte mal einen Neustart und schau, was kommt.
__________________
__________________ |
11.02.2013, 21:12 | #33 |
| SpyHunter 4 + Optimizer Pro Habe ich gerade gemacht.Augenscheinlich ist er verschwunden aber immer noch in Programme +Funktionen.Allerdings hat sich kein Spyhunter Fenster geöffnet,wie sonst immer.
__________________ |
11.02.2013, 21:22 | #34 |
/// TB-Ausbilder | SpyHunter 4 + Optimizer Pro Kannst du denn noch irgendwo und irgendwie (über Start -> Programme zum Beispiel) ein aktives Fenster von Spyhunter öffnen? Der Eintrag unter Programme+Funktionen kann auch nur noch ein leerer Überrest sein.
__________________ cheers, Leo |
11.02.2013, 21:30 | #35 |
| SpyHunter 4 + Optimizer Pro Also ich habe gerade versucht in der Systemsteuerung ( Programme +Funktionen) Spyhunter zu löschen und bin jetzt wieder da wo wir vorher waren.Also die unterschiedlichen Fenster öffnen sich wieder und ich werde zur Registration bzw. zum scannen aufgefordert...... |
11.02.2013, 22:04 | #36 |
/// TB-Ausbilder | SpyHunter 4 + Optimizer Pro Probier das mal noch so (der Link ist anders als beim letzten Mal): Lade SystemLook (by jpshortstuff) herunter und speichere das Tool auf dem Desktop.
__________________ --> SpyHunter 4 + Optimizer Pro |
12.02.2013, 09:04 | #37 |
| SpyHunter 4 + Optimizer Pro Guten Morgen Der Scan hat sich wohl wieder aufgehangen.(Runtime Error)DieSpyhunter Fenster haben sich allerdings nicht geöffnet.In Programme+Funktionen ist es noch vorhanden. Habe auch noch keinen Zugriff auf diverse Ordner und zwar: Anwendungsdaten Cookies Druckumgebung Eigene Dateien Lokale Einstellung Netzwerkumgebung Recent SendTo Startmenü Vorlagen Grüße |
12.02.2013, 09:49 | #38 |
/// TB-Ausbilder | SpyHunter 4 + Optimizer Pro Kannst du mir das mit dem fehlenden Zugriff auf die Ordner etwas genauer beschreiben:
__________________ cheers, Leo |
12.02.2013, 12:42 | #39 |
| SpyHunter 4 + Optimizer Pro Ehrlich gesagt,weiß ich es nicht so genau.Ist mir aufgefallen weil sich der Scan immer in dem Ordner aufgehangen hat. Pfad nicht verfügbar.....Zugriffverweigert Einige Ornder sind auch neuerdings mit einen "Schlossymbol" versehen Also wenn ich das richtig deute habe ich die Zugriffsberechtigung. |
12.02.2013, 13:35 | #40 |
/// TB-Ausbilder | SpyHunter 4 + Optimizer Pro Kannst du bitte mal komplette Pfadangaben der Ordner posten, wo dieses Problem vorkommt. Hast du dieses Windows über ein anderes drüberinstalliert? Versuch mal, den Besitz über diese Ordner zu übernehmen, so wie das in dieser Anleitung beschrieben ist. Klappt das und ändert es etwas?
__________________ cheers, Leo |
12.02.2013, 14:50 | #41 |
| SpyHunter 4 + Optimizer Pro Also in den Ordner wo es vorkommt ist jeweils das "System" als Besitzer angezeigt.Wenn ich den Besitzer ändere passt wieder alles.Das das aktuelle Windows überspielt wurde ist nicht auszuschließen.Habe ich selbst nicht durchgeführt. Ich denke das passt so,oder? |
12.02.2013, 15:58 | #42 |
/// TB-Ausbilder | SpyHunter 4 + Optimizer Pro Ok, dann mach das mit dem Besitzübernehmen bitte bei allen betroffenen Ordnern. (Am besten beim obersten Ordner machen und den Haken setzen, dass das auch für alle Unterordner gilt.) Aber der Spyhunter ist ja wohl immer noch da. Wenn das andere Problem gefixt ist, suchen wir nochmals nach ihm: Lade SystemLook (by jpshortstuff) herunter und speichere das Tool auf dem Desktop.
__________________ cheers, Leo |
12.02.2013, 19:22 | #43 |
| SpyHunter 4 + Optimizer Pro ich weiß nicht,ob diese die aktuelle Meldung ist,da der Rechner beim Scannen aufgehangen hat. SystemLook 30.07.11 by jpshortstuff Log created at 16:32 on 12/02/2013 by mischa Administrator - Elevation successful ========== filefind ========== Searching for "*spyhunter*" Sorry,habe jetzt nochmal eigenmächtig mit dem Systemlook gearbeitet und zwar mit folgendem Ergebnis: SystemLook 30.07.11 by jpshortstuff Log created at 20:08 on 12/02/2013 by mischa Administrator - Elevation successful ========== filefind ========== Searching for "*spyhunter*" C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe --a---- 7396224 bytes [20:34 14/01/2013] [20:34 14/01/2013] 67F37164CFE532E69FC4330C0A6C200D C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20130209_171906.log --a---- 21393 bytes [16:19 09/02/2013] [16:46 09/02/2013] D9F94388B1AA1848B49702A006E10B18 C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20130209_174735.log --a---- 21572 bytes [16:47 09/02/2013] [22:25 09/02/2013] 5726EF8227C8F20FEC98218DDE2D9D03 C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20130209_232603.log --a---- 21393 bytes [22:26 09/02/2013] [22:48 09/02/2013] 474D7D7471A3A11E9596F3202809FEA1 C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20130209_234939.log --a---- 21751 bytes [22:49 09/02/2013] [09:16 10/02/2013] 9C31EB509A9EF6FC0BEEBC7EC1D0A735 C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20130210_101655.log --a---- 21259 bytes [09:16 10/02/2013] [09:17 10/02/2013] B1057459B2D91F8BDE107423C3ABF3E8 C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20130210_104921.log --a---- 21393 bytes [09:49 10/02/2013] [13:20 10/02/2013] 8A401D91A2CBDFF7432F0CDEF6DB0298 C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20130210_142138.log --a---- 21304 bytes [13:21 10/02/2013] [15:18 10/02/2013] E9B453DDD4517037D66678C43E6BF587 C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20130210_174026.log --a---- 21393 bytes [16:40 10/02/2013] [17:14 10/02/2013] 7730E3526BD42F676FA582DE22A7861C C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20130210_181535.log --a---- 22109 bytes [17:15 10/02/2013] [11:54 11/02/2013] 20AC25295357513750125DEAB241407A C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20130211_125515.log --a---- 21572 bytes [11:55 11/02/2013] [17:59 11/02/2013] EF2D1C5BEF2D0C66B0F40477E32D9586 C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20130211_190022.log --a---- 21259 bytes [18:00 11/02/2013] [19:04 11/02/2013] BC99BEDFD6D79FD831DAE13EF62F228C C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20130211_200505.log --a---- 21393 bytes [19:05 11/02/2013] [20:08 11/02/2013] 6AE6AA7A36B7F08CE6C9CBFA836AA18B C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20130211_212529.log --a---- 24539 bytes [20:25 11/02/2013] [04:27 12/02/2013] 44F3B4AB2DD496C54AED8D3B3E9D76CE C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20130212_125408.log --a---- 21919 bytes [11:54 12/02/2013] [12:12 12/02/2013] FEA7C03A59CC4B99504232DDB4184824 C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20130212_132519.log --a---- 21919 bytes [12:25 12/02/2013] [12:26 12/02/2013] D7959CD606B0FF1D8F37D7436A84ABAD C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20130212_143404.log --a---- 21919 bytes [13:34 12/02/2013] [13:45 12/02/2013] 7F922AC3667669295A7F207DE0313DAD C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20130212_191747.log --a---- 21606 bytes [18:17 12/02/2013] [18:18 12/02/2013] C33FAE91B17C9414AEE52468ED8955FE C:\Windows\Prefetch\SPYHUNTER-INSTALLER (1).EXE-5D2DBEB0.pf --a---- 26280 bytes [08:38 08/02/2013] [08:39 08/02/2013] 8318946B6316D1C44BC755771839EA22 C:\Windows\Prefetch\SPYHUNTER4.EXE-7BD5E907.pf --a---- 158330 bytes [08:41 08/02/2013] [08:41 08/02/2013] 626DE1AA4BB3F46EBF3374EAE33EE9EE C:\Windows\System32\Tasks\SpyHunter4Startup --a---- 3332 bytes [10:02 01/09/2012] [08:40 08/02/2013] 7F9C75A4608149F744D31AEF061D6C14 Searching for "*enigma*" No files found. ========== folderfind ========== Searching for "*spyhunter*" C:\Program Files\Enigma Software Group\SpyHunter d------ [10:02 01/09/2012] Searching for "*enigma*" C:\Program Files\Enigma Software Group d------ [10:02 01/09/2012] ========== regfind ========== Searching for "spyhunter" [HKEY_CURRENT_USER\Software\Microsoft\Installer\Products\64C4C6B6E7B114A4E907CABF2BB2D118] "ProductName"="SpyHunter" [HKEY_LOCAL_MACHINE\SOFTWARE\EnigmaSoftwareGroup\SpyHunter] [HKEY_LOCAL_MACHINE\SOFTWARE\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig] [HKEY_LOCAL_MACHINE\SOFTWARE\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig] "InstallLoc"="C:\Program Files\Enigma Software Group\SpyHunter" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RADAR\HeapLeakDetection\DiagnosedApplications\SpyHunter4.exe] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\SpyHunter4_RASAPI32] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\SpyHunter4_RASMANCS] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files\Enigma Software Group\SpyHunter\"="1" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files\Enigma Software Group\SpyHunter\Defs\"="1" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Users\mischa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\167ED423049710645A22436AA88D0A99] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\1957C0511E2C398429B3643FC3CF903E] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files (x86)\Enigma Software Group\SpyHunter\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\1F94163E4B8E8524AB2D208677C1C639] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\AutoCheckUpdate" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\21B3B2A547DD5C14583129BD7D54AE43] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\270D6EC2A97B99548BA1F764A91027A1] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\2BAC083D35096B44C91BE7BCF2A9BE35] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\325484F6157B534449A295F31E20CC49] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\EsgScanner.inf" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\3A1F744C14FB4E14A93C1628CDE36240] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\MonitorWinCom_remember" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\3B801397615ADA446AA0C0D27F8C35F5] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\ShieldOnBoot" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\4EE16055EDFAB8E46BCE054F706E7050] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Users\mischa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\54F23924A8B2A594D8F3B34555F857DB] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\Defs\def.dat" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\5942B0FB3B0060E4FB3008F9D51CFC26] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\native.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\5A2C306FF7B069949928B69774A9C8A0] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\GuardStatus" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\64717EB28EB8ECA4A9584B6BA7934B83] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\ActiveDesktop_remember" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\79455857BB467F24D81891AAD09F7079] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\ESGScanner.sys" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\799475A3B22A0B94085DE6AF372B869F] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files (x86)\Enigma Software Group\SpyHunter\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\8014B476AFF7674499E83E22C791A5A2] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\8D95E4363DF07F44FB6986E629D65FDB] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\ActHomePageProt" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\96F935B48BE0455459DB1E7E97E04BDF] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\MonitorDNS" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\9BDCF589B9440364E8DB3F9535DDBB9F] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\Defman.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\B0A0F90AD49B5994BB1DAD4DDC089CD6] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files (x86)\Enigma Software Group\SpyHunter\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\B435C9AD1BF350D48BE80D5A79BA2EEE] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\ESGRKCHK.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\B8759E73AEB287C4485B33F51B7DE868] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\MonitorIEImages" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\C2E30ACAB517FB744ACF4672E649BE7F] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\Language" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\CA1A35F40F64E2C419551606C418D4C6] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\AutoUpdateDownload" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\D23A4A6BB4BD7474197B486733BBB37A] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\ShScanner.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\D69C9067CD45885488F1E05319EDD023] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\ExecutionGuard.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\D75FE63EDA1D54A4CA6F51CADD11E656] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\CheckShOsCompatibility" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\D91BE455A0889C4458F258847859EC6F] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\MonitorHosts" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\DD372D2F4DF0D0540B2F37ED85511E4C] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\MonitorSystem" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\F87702C2D0F509E4FB7923DA78F44976] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\license.txt" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\FD27396ADF8235D449146899FD9100FE] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\Common.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Products\64C4C6B6E7B114A4E907CABF2BB2D118\InstallProperties] "InstallLocation"="C:\Program Files\Enigma Software Group\SpyHunter\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Products\64C4C6B6E7B114A4E907CABF2BB2D118\InstallProperties] "DisplayName"="SpyHunter" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{6B6C4C46-1B7E-4A41-9E70-ACFBB22B1D81}] "DisplayIcon"="C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe,0" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{6B6C4C46-1B7E-4A41-9E70-ACFBB22B1D81}] "InstallLocation"="C:\Program Files\Enigma Software Group\SpyHunter\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{6B6C4C46-1B7E-4A41-9E70-ACFBB22B1D81}] "DisplayName"="SpyHunter" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9F03852E-E755-4166-9809-159FCCD92652}] "Path"="\SpyHunter4Startup" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SpyHunter4Startup] [HKEY_USERS\S-1-5-21-1435074266-3387115179-3275037125-1000\Software\Microsoft\Installer\Products\64C4C6B6E7B114A4E907CABF2BB2D118] "ProductName"="SpyHunter" Searching for "enigma" [HKEY_LOCAL_MACHINE\SOFTWARE\EnigmaSoftwareGroup] [HKEY_LOCAL_MACHINE\SOFTWARE\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig] "InstallLoc"="C:\Program Files\Enigma Software Group\SpyHunter" [HKEY_LOCAL_MACHINE\SOFTWARE\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig] "uninstlnk"="hxxp://sh.enigmasoftware.com/sh4/survey/uninstall_survey.php?affid=0&hwx=65cbe0b29dc40c290b8954efca0d975f&id=2&lang=DE&sid=revenuewire" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files\Enigma Software Group\SpyHunter\"="1" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files\Enigma Software Group\"="1" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files\Enigma Software Group\SpyHunter\Defs\"="1" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\167ED423049710645A22436AA88D0A99] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\1957C0511E2C398429B3643FC3CF903E] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files (x86)\Enigma Software Group\SpyHunter\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\1F94163E4B8E8524AB2D208677C1C639] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\AutoCheckUpdate" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\21B3B2A547DD5C14583129BD7D54AE43] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\270D6EC2A97B99548BA1F764A91027A1] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\2BAC083D35096B44C91BE7BCF2A9BE35] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\325484F6157B534449A295F31E20CC49] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\EsgScanner.inf" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\3A1F744C14FB4E14A93C1628CDE36240] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\MonitorWinCom_remember" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\3B801397615ADA446AA0C0D27F8C35F5] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\ShieldOnBoot" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\54F23924A8B2A594D8F3B34555F857DB] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\Defs\def.dat" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\5942B0FB3B0060E4FB3008F9D51CFC26] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\native.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\5A2C306FF7B069949928B69774A9C8A0] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\GuardStatus" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\64717EB28EB8ECA4A9584B6BA7934B83] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\ActiveDesktop_remember" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\79455857BB467F24D81891AAD09F7079] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\ESGScanner.sys" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\799475A3B22A0B94085DE6AF372B869F] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files (x86)\Enigma Software Group\SpyHunter\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\8014B476AFF7674499E83E22C791A5A2] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\8D95E4363DF07F44FB6986E629D65FDB] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\ActHomePageProt" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\96F935B48BE0455459DB1E7E97E04BDF] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\MonitorDNS" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\9BDCF589B9440364E8DB3F9535DDBB9F] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\Defman.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\B0A0F90AD49B5994BB1DAD4DDC089CD6] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files (x86)\Enigma Software Group\SpyHunter\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\B435C9AD1BF350D48BE80D5A79BA2EEE] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\ESGRKCHK.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\B8759E73AEB287C4485B33F51B7DE868] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\MonitorIEImages" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\C2E30ACAB517FB744ACF4672E649BE7F] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\Language" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\CA1A35F40F64E2C419551606C418D4C6] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\AutoUpdateDownload" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\D23A4A6BB4BD7474197B486733BBB37A] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\ShScanner.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\D69C9067CD45885488F1E05319EDD023] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\ExecutionGuard.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\D75FE63EDA1D54A4CA6F51CADD11E656] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\CheckShOsCompatibility" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\D91BE455A0889C4458F258847859EC6F] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\MonitorHosts" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\DD372D2F4DF0D0540B2F37ED85511E4C] "64C4C6B6E7B114A4E907CABF2BB2D118"="22:\Software\EnigmaSoftwareGroup\SpyHunter\SpyHunterConfig\MonitorSystem" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\F87702C2D0F509E4FB7923DA78F44976] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\license.txt" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Components\FD27396ADF8235D449146899FD9100FE] "64C4C6B6E7B114A4E907CABF2BB2D118"="C:\Program Files\Enigma Software Group\SpyHunter\Common.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Products\64C4C6B6E7B114A4E907CABF2BB2D118\InstallProperties] "Contact"="Enigma Customer Support" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Products\64C4C6B6E7B114A4E907CABF2BB2D118\InstallProperties] "HelpLink"="hxxp://www.enigmasoftware.com/support" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Products\64C4C6B6E7B114A4E907CABF2BB2D118\InstallProperties] "InstallLocation"="C:\Program Files\Enigma Software Group\SpyHunter\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Products\64C4C6B6E7B114A4E907CABF2BB2D118\InstallProperties] "Publisher"="Enigma Software Group USA, LLC" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1435074266-3387115179-3275037125-1000\Products\64C4C6B6E7B114A4E907CABF2BB2D118\InstallProperties] "URLUpdateInfo"="hxxp://www.enigmasoftware.com" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{6B6C4C46-1B7E-4A41-9E70-ACFBB22B1D81}] "DisplayIcon"="C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe,0" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{6B6C4C46-1B7E-4A41-9E70-ACFBB22B1D81}] "Contact"="Enigma Customer Support" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{6B6C4C46-1B7E-4A41-9E70-ACFBB22B1D81}] "HelpLink"="hxxp://www.enigmasoftware.com/support" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{6B6C4C46-1B7E-4A41-9E70-ACFBB22B1D81}] "InstallLocation"="C:\Program Files\Enigma Software Group\SpyHunter\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{6B6C4C46-1B7E-4A41-9E70-ACFBB22B1D81}] "Publisher"="Enigma Software Group USA, LLC" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{6B6C4C46-1B7E-4A41-9E70-ACFBB22B1D81}] "URLUpdateInfo"="hxxp://www.enigmasoftware.com" -= EOF =- |
12.02.2013, 21:57 | #44 |
/// TB-Ausbilder | SpyHunter 4 + Optimizer Pro Was hast du denn jetzt anders gemacht? Da ist dieser Kerl ja:
Code:
ATTFilter :files C:\Program Files\Enigma Software Group C:\Windows\Prefetch\SPYHUNTER-INSTALLER (1).EXE-5D2DBEB0.pf C:\Windows\Prefetch\SPYHUNTER4.EXE-7BD5E907.pf C:\Windows\System32\Tasks\SpyHunter4Startup :reg [-HKEY_LOCAL_MACHINE\SOFTWARE\EnigmaSoftwareGroup] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{6B6C4C46-1B7E-4A41-9E70-ACFBB22B1D81}] :commands [reboot]
__________________ cheers, Leo |
12.02.2013, 22:09 | #45 |
| SpyHunter 4 + Optimizer Pro ((((-: ich glaube das war es,oder? ========== FILES ========== C:\Program Files\Enigma Software Group\SpyHunter\mon folder moved successfully. C:\Program Files\Enigma Software Group\SpyHunter\Log folder moved successfully. C:\Program Files\Enigma Software Group\SpyHunter\Downloads folder moved successfully. C:\Program Files\Enigma Software Group\SpyHunter\Defs folder moved successfully. C:\Program Files\Enigma Software Group\SpyHunter\Data folder moved successfully. C:\Program Files\Enigma Software Group\SpyHunter folder moved successfully. C:\Program Files\Enigma Software Group folder moved successfully. C:\Windows\Prefetch\SPYHUNTER-INSTALLER (1).EXE-5D2DBEB0.pf moved successfully. C:\Windows\Prefetch\SPYHUNTER4.EXE-7BD5E907.pf moved successfully. File\Folder C:\Windows\System32\Tasks\SpyHunter4Startup not found. ========== REGISTRY ========== Registry key HKEY_LOCAL_MACHINE\SOFTWARE\EnigmaSoftwareGroup\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{6B6C4C46-1B7E-4A41-9E70-ACFBB22B1D81}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6B6C4C46-1B7E-4A41-9E70-ACFBB22B1D81}\ not found. ========== COMMANDS ========== OTL by OldTimer - Version 3.2.69.0 log created on 02122013_220404 |
Themen zu SpyHunter 4 + Optimizer Pro |
administrator, anti-malware, autostart, dateien, eingefangen, entfernung, erfolgreich, exploit.drop.gsa, explorer, gelöscht, installcore, microsoft, optimizer, optimizer pro, pup.adware.mediaget, pup.funmoods, quarantäne, rootkit.0access, speicher, trojan.agent, trojan.banker, trojan.dropper.bcminer, version, viren |