![]() |
|
Plagegeister aller Art und deren Bekämpfung: Unterstrichene Links in Firefox, Rechnerperformance geht in die Knie ...Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
|
![]() | #3 |
![]() ![]() | ![]() Unterstrichene Links in Firefox, Rechnerperformance geht in die Knie ... hey smeenk
__________________danke uendlichst ![]() klar, ohne logs ist das sinnlos. wollte gestern eigentlich nur ne erfolgsmeldung loswerden ... status: schlimmer geht's nimmer ![]() hab grad deine anweisungen ausgeführt, jetzt ist grad ruhe, keine unterichenen links, keine verdächigen urls in der browser(firefox) console. hier das ergebnis deiner anweisungen: ich war mir nicht sicher, wie das mit firewalls, etc. sein sollte. bei mir lieg zone alarm als firewall im spielemodus(weniger ging nich) und avast zoek log: Code:
ATTFilter Zoek.exe Version 4.0.0.2 Updated 28-03-2013 Tool run by HP on 30.03.2013 at 20:44:54,26. Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x86 Running in: Normal Mode Internet Access Detected ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== FireFox Fix ====================== ProfilePath: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\0cv0rhgx.default user.js not found ---- Lines Downloader.com removed from prefs.js ---- ---- Lines Downloader.com modified from prefs.js ---- ---- Lines Movie2KDownloader removed from prefs.js ---- ---- Lines Movie2KDownloader modified from prefs.js ---- ---- FireFox user.js and prefs.js backups ---- prefs__2054_.backup ProfilePath: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\rpjangqc.default-1353024861136 user.js not found ---- Lines Downloader.com removed from prefs.js ---- ---- Lines Downloader.com modified from prefs.js ---- ---- Lines Movie2KDownloader removed from prefs.js ---- ---- Lines Movie2KDownloader modified from prefs.js ---- ---- FireFox user.js and prefs.js backups ---- prefs__2019_.backup prefs__2054_.backup ==== Deleting Files \ Folders ====================== "C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\rpjangqc.default-1353024861136\extensions\movie2kdownloader@movie2kdownloader.com.xpi" deleted "C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\rpjangqc.default-1353024861136\extensions\movie2kdownloader@movie2kdownloader.com.xpi" deleted "C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\BrowserMngrPreferences" deleted "C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\rpjangqc.default-1353024861136\extensions\movie2kdownloader@movie2kdownloader.com.xpi" deleted "C:\windows\system32\roboot.exe" deleted "C:\Program Files\Gophoto.it" deleted "C:\Users\HP\AppData\Roaming\Systweak" deleted "C:\Users\HP\AppData\LocalLow\DataMngr" deleted "C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\rpjangqc.default-1353024861136\jetpack" deleted ==== Firefox Extensions ====================== ProfilePath: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\rpjangqc.default-1353024861136 - avast WebRep - C:\projects\AVAST Software\Avast\WebRep\FF - GoPhotoIt - %ProfilePath%\extensions\gophoto@gophoto.it.xpi AppDir: C:\Program Files\Mozilla Firefox - Default - %AppDir%\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} - Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} ==== Firefox Plugins ====================== Profilepath: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\rpjangqc.default-1353024861136 24B57188208F9326F2AF8B2EAD6967A7 - C:\projects\QuickTime\Plugins\npqtplugin7.dll - QuickTime Plug-in 7.7.3 24B57188208F9326F2AF8B2EAD6967A7 - C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll - QuickTime Plug-in 7.7.3 79015395CD86C12A7BF696F14C04191C - C:\projects\QuickTime\Plugins\npqtplugin6.dll - QuickTime Plug-in 7.7.3 79015395CD86C12A7BF696F14C04191C - C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll - QuickTime Plug-in 7.7.3 6E7690D2EE4E530DAC8C562CF8CCE70B - C:\projects\QuickTime\Plugins\npqtplugin5.dll - QuickTime Plug-in 7.7.3 6E7690D2EE4E530DAC8C562CF8CCE70B - C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll - QuickTime Plug-in 7.7.3 D2E4BDDD297B6A481BAC612C25A1F10A - C:\projects\QuickTime\Plugins\npqtplugin4.dll - QuickTime Plug-in 7.7.3 D2E4BDDD297B6A481BAC612C25A1F10A - C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll - QuickTime Plug-in 7.7.3 7A14B17E24CE74BBB603B824EDA79A72 - C:\projects\QuickTime\Plugins\npqtplugin3.dll - QuickTime Plug-in 7.7.3 7A14B17E24CE74BBB603B824EDA79A72 - C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll - QuickTime Plug-in 7.7.3 2A92F41DCBB5832872D8B0E941746112 - C:\projects\QuickTime\Plugins\npqtplugin2.dll - QuickTime Plug-in 7.7.3 2A92F41DCBB5832872D8B0E941746112 - C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll - QuickTime Plug-in 7.7.3 C1FD5EE5FD1F65CE223A5C3AE846DDF6 - C:\projects\QuickTime\Plugins\npqtplugin.dll - QuickTime Plug-in 7.7.3 C1FD5EE5FD1F65CE223A5C3AE846DDF6 - C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll - QuickTime Plug-in 7.7.3 05C4A7136F3012BB47107333B5D351D3 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U17 D4BD9F86123C87ECA570418B69326F99 - C:\windows\system32\npdeployJava1.dll - Java Deployment Toolkit 7.0.170.2 47299371607DC2FB234444EEACB1639E - C:\windows\system32\Macromed\Flash\NPSWF32_11_6_602_180.dll - Shockwave Flash E0FF893763BA82BAABB869A351F0C455 - C:\Users\HP\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll - Google Update F647D0BEA553C1D0C251CE07DA6A5511 - C:\Program Files\Adobe\Reader 10.0\Reader\browser\nppdf32.dll - Adobe Acrobat F647D0BEA553C1D0C251CE07DA6A5511 - C:\Program Files\Mozilla Firefox\plugins\nppdf32.dll - Adobe Acrobat DB988B4550DB9BCE86F9199D961057FC - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll - Adobe Acrobat A5C14075B571AF1C9592595BE724D9D2 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll - Silverlight Plug-In A843FC35574ECFD9E7A41C5505A9921B - C:\projects\VideoLAN\VLC\npvlc.dll - VLC Web Plugin 787FBCB838B5A7BA4F7DB3CF089C9CF6 - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\npFFApi.dll - npFFApi F35229053FBC3C1A1BDC5491CC401012 - C:\Program Files\Mozilla Firefox\plugins\npwachk.dll - Winamp Application Detector C517E5EA7CEE783F3681F62D2A362E5B - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Windows Live? Photo Gallery B938C1AE3ADCE166190895685B0BEB0D - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll - DivX VOD Helper Plug-in 15E298B5EC5B89C5994A59863969D9FF - C:\windows\system32\npmproxy.dll - Microsoft® Windows® Operating System 2AA3703D87E1327A2290C9D416D89A28 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrlui.dll - Microsoft® Silverlight ==== Deleting Files \ Folders ====================== "C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\rpjangqc.default-1353024861136\extensions\gophoto@gophoto.it.xpi" deleted ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions icmlaeflemplmjndnaapfdbbnpncnbda - C:\projects\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[07.03.2013 00:29] pfmopbbadnfoelckkcmjjeaaegjpjjbk - C:\Program Files\Gophoto.it\gophotoit14.crx[] YouTube - HP - Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Firebug Lite for Google Chrome\u2122 - HP - Default\Extensions\bmagokdooijbeehmkpknfglimnifench Google Search - HP - Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Applet2Object - HP - Default\Extensions\djgfnbkiakemcmleeihmdngpamaknnem avast WebRep - HP - Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda DivX Plus Web Player HTML5 <video> - HP - Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm GoPhoto.it - HP - Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk Gmail - HP - Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chrome Fix ====================== C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Page"="hxxp://www.google.com" "Search Bar"="hxxp://www.google.com" "Use Search Asst"="yes" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl] "Default"="hxxp://feed.snap.do/?publisher=Download&dpid=Download&co=DE&userid=5e688286-ec9d-43f0-a5e7-fb14d8f06328&searchtype=ds&q={searchTerms}" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "Default"="hxxp://feed.snap.do/?publisher=Download&dpid=Download&co=DE&userid=5e688286-ec9d-43f0-a5e7-fb14d8f06328&searchtype=ds&q={searchTerms}" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="hxxp://www.google.com" "SearchAssistant"="hxxp://www.google.com" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="hxxp://go.microsoft.com/fwlink/?LinkId=69157" "Use Search Asst"="no" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="hxxp://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="hxxp://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="hxxp://go.microsoft.com/fwlink/?LinkId=54896" "SearchAssistant"="hxxp://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{63E077AD-E0F7-4A00-B1FE-B15F95196C82}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} @ieframe.dll,-12512 Url="hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC" {27E5E464-75FB-4D5F-9A59-0E8E6A43B790} Bing Url="hxxp://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox" {483830EE-A4CD-4b71-B0A3-3D82E62A6909} Unknown Url="Not_Found" {63E077AD-E0F7-4A00-B1FE-B15F95196C82} Google Url="hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?}" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} deleted successfully HKEY_USERS\S-1-5-21-4093947724-3987431265-750155669-1002\Software\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk deleted successfully ==== Empty IE Cache ====================== C:\Users\HP\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\HP\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\windows\serviceprofiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\windows\serviceprofiles\LocalService\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\windows\serviceprofiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== C:\users\HP\AppData\Local\Mozilla\Firefox\Profiles\rpjangqc.default-1353024861136\Cache emptied successfully ==== Empty Chrome Cache ====================== C:\users\HP\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully After Reboot ==== Empty Temp Folders ====================== C:\windows\Temp successfully emptied C:\Users\HP\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied OTL log in den nöchsten posts .. |
Themen zu Unterstrichene Links in Firefox, Rechnerperformance geht in die Knie ... |
adresse, anleitung, applaus, beheben, browser, bytes, cache, dinge, erkennung, firefox, folge, folgende, gelöscht, gen, gepostet, hallo zusammen, links, links unterstrichen in firefox, löscht, malware, malware bytes, natürlich, nicht mehr, problem, rechnerperformance down, unternehmen, unterschied, wiederholt, zusammen |