![]() |
| |||||||
Plagegeister aller Art und deren Bekämpfung: Google öffnet plötzlich komische Seiten, Werbung und Videos. Außerdem sehr langsam geworden!Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
| | #5 |
![]() | Google öffnet plötzlich komische Seiten, Werbung und Videos. Außerdem sehr langsam geworden! Alles klar. Oh Gott entschuldige bitte, der 2. Code ist der gleiche wie der erste !! Hier der 2te. Additional : Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version:24-05-2014 1
Ran by Linus at 2014-05-24 18:33:35
Running from C:\Users\Linus\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
==================== Installed Programs ======================
Adobe Flash Player 13 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 13.0.0.206 - Adobe Systems Incorporated)
Ask Toolbar Updater (HKCU\...\{79A765E1-C399-405B-85AF-466F52E918B0}) (Version: 1.2.4.36191 - Ask.com) <==== ATTENTION
avast! Free Antivirus (HKLM\...\Avast) (Version: 9.0.2018 - Avast Software)
Genesis (HKCU\...\genesis) (Version: - ) <==== ATTENTION
Google Chrome (HKCU\...\Google Chrome) (Version: 34.0.1847.131 - Google Inc.)
Google Update Helper (Version: 1.3.24.7 - Google Inc.) Hidden
Skype Click to Call (HKLM\...\{BB285C9F-C821-4770-8970-56C4AB52C87E}) (Version: 7.2.15747.10003 - Microsoft Corporation)
Spotify (HKCU\...\Spotify) (Version: 0.9.8.296.g91f68827 - Spotify AB)
VLC media player 2.1.3 (HKLM\...\VLC media player) (Version: 2.1.3 - VideoLAN)
==================== Restore Points =========================
22-04-2014 18:21:36 Windows Update
22-04-2014 18:45:36 Windows Update
27-04-2014 16:38:19 avast! antivirus system restore point
30-04-2014 18:58:56 Windows Update
30-04-2014 20:04:00 Windows Update
02-05-2014 22:58:12 Windows Update
09-05-2014 18:09:21 Windows Update
10-05-2014 18:00:18 Windows Update
24-05-2014 16:31:21 Windows Update
==================== Hosts content: ==========================
2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {246093A0-2725-412A-AF5C-CFC239B56959} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1241924687-3867605904-1504032025-1000Core => C:\Users\Linus\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-17] (Google Inc.)
Task: {31D347CC-B8FC-41D3-BC2B-F9167D65AADB} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-04-27] (AVAST Software)
Task: {33C1B404-58F7-465C-B57D-B645EA50B671} - System32\Tasks\Google Updater and Installer => C:\Users\Linus\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-17] (Google Inc.)
Task: {49D4BB58-E1D8-47F8-9747-A072BA21780E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2012-07-01] (Google Inc.)
Task: {4ADB7910-F846-4750-BAEC-778E8FCE2A87} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2012-07-01] (Google Inc.)
Task: {55552314-8E3F-4FA8-AC2E-425F31B51D10} - System32\Tasks\Scheduled Update for Ask Toolbar => C:\Program Files\Ask.com\UpdateTask.exe <==== ATTENTION
Task: {797E2384-555E-4ACD-9709-CB729CE5EA09} - System32\Tasks\Java Update Scheduler => C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation)
Task: {B98E1998-885E-4679-BD17-59548BB06822} - System32\Tasks\5a636f9e-a346-412f-966b-8a9f44275746-4 => C:\Program Files\Plus-HD9.5vj\5a636f9e-a346-412f-966b-8a9f44275746-4.exe [2014-04-10] (HDshoplus) <==== ATTENTION
Task: {D2A5BA40-8B3C-48C5-BE97-EF0A1A71031F} - System32\Tasks\HP-Online-Aktualisierungsprogramm => C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2011-10-28] (Hewlett-Packard)
Task: {E72207F3-0355-4D83-A242-7D044FF88B67} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-04-30] (Adobe Systems Incorporated)
Task: {EF12318B-21B3-49CF-A417-E0E21AE34373} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21] (Adobe Systems Incorporated)
Task: {F50778C3-9C77-4DB4-9704-0BCF3DC0462E} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1241924687-3867605904-1504032025-1000UA => C:\Users\Linus\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-17] (Google Inc.)
Task: {F84C53C5-72DE-485A-B3D9-134AEC2B12C8} - System32\Tasks\5a636f9e-a346-412f-966b-8a9f44275746-3 => C:\Program Files\Plus-HD9.5vj\5a636f9e-a346-412f-966b-8a9f44275746-3.exe [2014-04-10] (HDshoplus) <==== ATTENTION
Task: C:\Windows\Tasks\5a636f9e-a346-412f-966b-8a9f44275746-3.job => C:\Program Files\Plus-HD9.5vj\5a636f9e-a346-412f-966b-8a9f44275746-3.exe <==== ATTENTION
Task: C:\Windows\Tasks\5a636f9e-a346-412f-966b-8a9f44275746-4.job => C:\Program Files\Plus-HD9.5vj\5a636f9e-a346-412f-966b-8a9f44275746-4.exe <==== ATTENTION
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1241924687-3867605904-1504032025-1000Core.job => C:\Users\Linus\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1241924687-3867605904-1504032025-1000UA.job => C:\Users\Linus\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2014-05-10 20:22 - 2014-05-10 20:22 - 02253312 _____ () C:\Program Files\AVAST Software\Avast\defs\14051001\algo.dll
2014-05-24 18:22 - 2014-05-24 18:22 - 02255872 _____ () C:\Program Files\AVAST Software\Avast\defs\14052400\algo.dll
2011-06-21 07:42 - 2011-06-21 07:42 - 00024064 _____ () C:\Windows\System32\sst3cl3.dll
2014-02-06 01:52 - 2014-02-06 01:52 - 00073544 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2014-02-06 01:52 - 2014-02-06 01:52 - 01044808 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2012-05-16 15:02 - 2008-07-29 19:29 - 00200704 _____ () C:\Windows\PLFSetI.exe
2013-10-23 14:43 - 2013-10-23 14:44 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2012-12-07 22:48 - 2012-12-07 22:48 - 03093624 _____ () C:\Program Files\Pando Networks\Media Booster\PMB.exe
2014-04-30 21:04 - 2014-04-24 02:33 - 00065352 _____ () C:\Users\Linus\AppData\Local\Google\Chrome\Application\34.0.1847.131\chrome_elf.dll
2014-04-30 21:04 - 2014-04-24 02:33 - 00674632 _____ () C:\Users\Linus\AppData\Local\Google\Chrome\Application\34.0.1847.131\libglesv2.dll
2014-04-30 21:04 - 2014-04-24 02:33 - 00093000 _____ () C:\Users\Linus\AppData\Local\Google\Chrome\Application\34.0.1847.131\libegl.dll
2014-04-30 21:04 - 2014-04-24 02:33 - 04081480 _____ () C:\Users\Linus\AppData\Local\Google\Chrome\Application\34.0.1847.131\pdf.dll
2014-04-30 21:04 - 2014-04-24 02:33 - 00390472 _____ () C:\Users\Linus\AppData\Local\Google\Chrome\Application\34.0.1847.131\ppGoogleNaClPluginChrome.dll
2014-04-30 21:04 - 2014-04-24 02:33 - 01647432 _____ () C:\Users\Linus\AppData\Local\Google\Chrome\Application\34.0.1847.131\ffmpegsumo.dll
2014-04-30 21:04 - 2014-04-24 02:33 - 13692232 _____ () C:\Users\Linus\AppData\Local\Google\Chrome\Application\34.0.1847.131\PepperFlash\pepflashplayer.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== EXE Association (whitelisted) =============
==================== Disabled items from MSCONFIG ==============
==================== Faulty Device Manager Devices =============
Name: Bluetooth-Peripheriegerät
Description: Bluetooth-Peripheriegerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Bluetooth-Peripheriegerät
Description: Bluetooth-Peripheriegerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: hp LaserJet 1320 series
Description: hp LaserJet 1320 series
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: Officejet Pro 8600
Description: Officejet Pro 8600
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: HP
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: Bluetooth-Peripheriegerät
Description: Bluetooth-Peripheriegerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (05/24/2014 06:31:22 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".
Details:
AddCoreCsiFiles : GetNextFileMapContent() failed.
System Error:
Falscher Parameter.
.
Error: (05/24/2014 06:31:21 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".
Details:
AddCoreCsiFiles : GetNextFileMapContent() failed.
System Error:
Falscher Parameter.
.
Error: (05/10/2014 08:00:18 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".
Details:
AddCoreCsiFiles : GetNextFileMapContent() failed.
System Error:
Falscher Parameter.
.
Error: (05/10/2014 08:00:17 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".
Details:
AddCoreCsiFiles : GetNextFileMapContent() failed.
System Error:
Falscher Parameter.
.
Error: (05/10/2014 06:02:19 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 5211
Error: (05/10/2014 06:02:19 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 5211
Error: (05/10/2014 06:02:19 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (05/10/2014 06:02:18 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 4197
Error: (05/10/2014 06:02:18 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 4197
Error: (05/10/2014 06:02:18 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
System errors:
=============
Error: (05/24/2014 06:21:00 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%-2140993535
Error: (05/24/2014 06:21:00 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet:
%%-2140993535
Error: (05/24/2014 06:21:00 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%-2140993535
Error: (05/24/2014 06:21:00 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet:
%%-2140993535
Error: (05/24/2014 06:21:00 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet:
%%-2140993535
Error: (05/24/2014 06:21:00 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%-2140993535
Error: (05/24/2014 06:21:00 PM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: 0x80630801
Error: (05/24/2014 06:21:00 PM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: 0x80630801
Error: (05/24/2014 06:21:00 PM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: 0x80630801
Error: (05/24/2014 06:20:50 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%-2140993535
Microsoft Office Sessions:
=========================
Error: (06/13/2012 10:38:13 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 6 seconds with 0 seconds of active time. This session ended with a crash.
==================== Memory info ===========================
Percentage of memory in use: 67%
Total physical RAM: 3036.86 MB
Available physical RAM: 1000.76 MB
Total Pagefile: 7589.15 MB
Available Pagefile: 5227.95 MB
Total Virtual: 2047.88 MB
Available Virtual: 1898.74 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:298.09 GB) (Free:157.71 GB) NTFS
Drive d: (LateinGuide) (CDROM) (Total:0.01 GB) (Free:0 GB) CDFS
Drive z: (Altes System Platte 1) (Fixed) (Total:144.04 GB) (Free:92.34 GB) NTFS ==>[System with boot components (obtained from reading drive)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 298 GB) (Disk ID: E90E337A)
Partition 1: (Not Active) - (Size=298 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: C009BC38)
Partition 1: (Not Active) - (Size=10 GB) - (Type=27)
Partition 2: (Active) - (Size=144 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=4 GB) - (Type=12)
==================== End Of Log ============================
Danke und bis gleich ! |
| Themen zu Google öffnet plötzlich komische Seiten, Werbung und Videos. Außerdem sehr langsam geworden! |
| anderen, brauch, browser, computer, desktop, einfach, google, google öffnet seiten, hilfe benötigt, internet, itunes, komische, langsam, laptop, musik, namens, neues, plötzlich, problem, programme, seite, seiten, startet, suche, websearch, werbung, öffnet |