|
Plagegeister aller Art und deren Bekämpfung: Bedrohung SpeedingUpMyPCWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
08.05.2014, 09:22 | #16 |
/// the machine /// TB-Ausbilder | Bedrohung SpeedingUpMyPC Setze folgendermassen den Internet Explorer zurück:
Für Firefox: https://support.mozilla.org/de/kb/fi...einfach-loesen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
09.05.2014, 18:36 | #17 |
| Bedrohung SpeedingUpMyPC Ich habe das so probiert und den Laptop nach dem Zurücksetzen neu gestartet. Die Seite wird leider noch immer angezeigt. Auch eine andere (Bing) aber diese kann ich problemlos entfernen. Sehr hartnäckig...gibt´s noch eine andere Möglichkeit? |
10.05.2014, 17:35 | #18 |
/// the machine /// TB-Ausbilder | Bedrohung SpeedingUpMyPC POste bitte nochmal ein frisches FRST log.
__________________
__________________ |
12.05.2014, 19:02 | #19 |
| Bedrohung SpeedingUpMyPC FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-05-2014 01 Ran by Karoline (administrator) on EMMCHEN on 12-05-2014 19:55:54 Running from C:\Users\Karoline\Downloads Platform: Windows 8.1 (Update 1) (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Qualcomm Atheros Commnucations) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Dritek System INC.) C:\Windows\RfBtnSvc64.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psia.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe (TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avpui.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Hidfind.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe (Microsoft Corporation) C:\Windows\Camera\Camera.exe (CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\klwtblfs.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9654.17044_x64__8wekyb3d8bbwe\glcnd.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Apoint] => C:\Program Files\Apoint2K\Apoint.exe [655256 2012-08-24] (Alps Electric Co., Ltd.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12937872 2012-07-27] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1214608 2012-07-10] (Realtek Semiconductor) HKLM\...\Run: [BtPreLoad] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtPreLoad.exe [64640 2013-01-28] () HKLM\...\Run: [Nvtmru] => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\nvspcap64.dll [1225920 2014-04-02] (NVIDIA Corporation) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2201032 2014-04-02] (NVIDIA Corporation) HKLM-x32\...\Run: [Dolby Home Theater v4] => C:\Dolby PCEE4\pcee4.exe [508656 2012-07-25] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [LManager] => [X] Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132736 2013-01-28] ( (Atheros Communications)) HKU\S-1-5-21-827286464-1191435713-3838452255-1002\...\Run: [TomTomHOME.exe] => C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [248208 2013-03-22] (TomTom) HKU\S-1-5-21-827286464-1191435713-3838452255-1002\...\MountPoints2: {dbb2478f-52d7-11e3-bf76-20689d78f6e5} - "E:\Startme.exe" AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [174296 2014-03-04] (NVIDIA Corporation) AppInit_DLLs: , C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [174296 2014-03-04] (NVIDIA Corporation) AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll => c:\windows\syswow64\nvinit.dll [148016 2014-03-04] (NVIDIA Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Acer Backup Manager Tray.lnk ShortcutTarget: Acer Backup Manager Tray.lnk -> C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (NTI Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Secunia) ==================== Internet (Whitelisted) ==================== SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=dvd_14_18_ff&cd=2XzuyEtN2Y1L1QzuyE0CyBtB0Bzy0DyCyEtB0B0DzyyB0F0BtN0D0Tzu0SzzyDtDtN1L2XzutBtFtBtDtFyCtFtDtN1L1CzutCyEtDtAtDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2SyC0Ezz0FyB0FyDtCtGyC0AtD0FtGzytB0FtCtGtByDzz0CtGyC0AtDzyzz0C0ByByDtCtDyD2QtN1M1F1B2Z1V1N2Y1L1Qzu2StB0B0B0AyDyEtDyBtGzyyEyCyCtGzzyCzyzytGyEtD0B0FtGtC0BtBtB0E0Azy0DzytAtByB2Q&cr=466585706&ir= SearchScopes: HKLM - {FDE3A3BC-13CF-48C1-9701-B7B8717DE877} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM-x32 - {FDE3A3BC-13CF-48C1-9701-B7B8717DE877} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {FDE3A3BC-13CF-48C1-9701-B7B8717DE877} URL = BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Users\Karoline\AppData\Roaming\Mozilla\Firefox\Profiles\yanjqme9.default-1399655628862 FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_13_0_0_206.dll () FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_206.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll No File FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: NoScript - C:\Users\Karoline\AppData\Roaming\Mozilla\Firefox\Profiles\yanjqme9.default-1399655628862\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2014-05-09] FF Extension: Adblock Plus - C:\Users\Karoline\AppData\Roaming\Mozilla\Firefox\Profiles\yanjqme9.default-1399655628862\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-05-09] FF HKLM-x32\...\Firefox\Extensions: - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\url_advisor@kaspersky.com FF Extension: 卡巴斯基網址顧問 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\url_advisor@kaspersky.com [2013-12-12] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\virtual_keyboard@kaspersky.com FF Extension: 虛擬鍵盤 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\virtual_keyboard@kaspersky.com [2013-12-12] FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\content_blocker@kaspersky.com FF Extension: 惡意網站攔截器 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\content_blocker@kaspersky.com [2013-12-12] FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\anti_banner@kaspersky.com FF Extension: Chặn quảng cáo - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\anti_banner@kaspersky.com [2013-12-12] FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\online_banking@kaspersky.com [2013-12-12] FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK ==================== Services (Whitelisted) ================= R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [227456 2013-01-28] (Qualcomm Atheros Commnucations) R2 avp; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe [214512 2013-10-17] (Kaspersky Lab ZAO) S3 DeviceFastLaneService; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [468624 2012-08-23] (Acer Incorporated) R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [658576 2012-08-22] (Acer Incorporated) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation) R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [259136 2012-11-02] (NTI Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1615192 2014-04-02] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [20541216 2014-04-02] (NVIDIA Corporation) R2 RfButtonDriverService; C:\Windows\RfBtnSvc64.exe [93296 2012-09-27] (Dritek System INC.) R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1229528 2013-12-06] (Secunia) S2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [662232 2013-12-06] (Secunia) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [348392 2013-10-31] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2013-10-31] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider) S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-01-28] (Qualcomm Atheros) S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation) S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation) S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation) S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2013-12-12] (Kaspersky Lab ZAO) S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [29792 2013-12-19] (Kaspersky Lab) U5 klflt; C:\Windows\System32\Drivers\klflt.sys [115296 2014-03-20] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [625760 2014-03-20] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [30304 2013-10-17] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [29280 2014-02-17] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [29280 2013-10-17] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\system32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO) R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [65120 2014-03-20] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [178272 2013-12-19] (Kaspersky Lab ZAO) S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation) S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-21] (NVIDIA Corporation) R3 Ps2Kb2Hid; C:\Windows\System32\drivers\aPs2Kb2Hid.sys [26736 2012-09-27] (Dritek System Inc.) R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-12-06] (Secunia) S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924504 2014-02-22] (Microsoft Corporation) S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation) S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation) S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124760 2013-10-31] (Microsoft Corporation) R0 Wof; C:\Windows\System32\Drivers\Wof.sys [157016 2014-03-13] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-12 19:55 - 2014-05-12 19:56 - 00018612 _____ () C:\Users\Karoline\Downloads\FRST.txt 2014-05-12 19:55 - 2014-05-12 19:55 - 02066944 _____ (Farbar) C:\Users\Karoline\Downloads\FRST64.exe 2014-05-12 19:55 - 2014-05-12 19:55 - 00000000 ____D () C:\FRST 2014-05-09 19:42 - 2014-05-09 19:42 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-05-06 21:43 - 2014-05-06 21:43 - 00001175 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-05-06 21:43 - 2014-05-06 21:43 - 00001163 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-05-06 21:42 - 2014-05-06 21:42 - 00283376 _____ (Mozilla) C:\Users\Karoline\Downloads\Firefox Setup Stub 29.0.exe 2014-05-06 20:55 - 2014-05-06 20:55 - 00448512 _____ (OldTimer Tools) C:\Users\Karoline\Downloads\TFC.exe 2014-05-06 20:30 - 2014-05-06 20:30 - 00000000 __SHD () C:\Users\Karoline\AppData\Local\EmieUserList 2014-05-06 20:30 - 2014-05-06 20:30 - 00000000 __SHD () C:\Users\Karoline\AppData\Local\EmieSiteList 2014-05-06 20:29 - 2014-05-06 20:29 - 00001089 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Secunia PSI.lnk 2014-05-06 20:29 - 2014-05-06 20:29 - 00000000 ____D () C:\Users\Karoline\AppData\Local\Secunia PSI 2014-05-06 20:29 - 2014-05-06 20:29 - 00000000 ____D () C:\Program Files (x86)\Secunia 2014-05-06 20:28 - 2014-05-06 20:28 - 05329480 _____ (Secunia) C:\Users\Karoline\Downloads\PSISetup_3.0.0.9016.exe 2014-05-03 23:18 - 2014-05-03 23:18 - 00383613 _____ () C:\Users\Karoline\Documents\kaspersky.txt 2014-05-02 20:58 - 2014-04-29 16:01 - 23547904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-05-02 20:58 - 2014-04-29 14:48 - 17384448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-05-02 20:37 - 2014-05-02 20:37 - 00000258 _____ () C:\Users\Karoline\Documents\eset.txt 2014-05-02 20:33 - 2014-05-02 20:33 - 00009371 _____ () C:\Users\Karoline\Documents\anti-malware.txt 2014-05-02 17:22 - 2014-05-06 21:02 - 00119512 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-05-02 17:22 - 2014-05-02 17:22 - 00001118 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-02 17:22 - 2014-05-02 17:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-02 17:22 - 2014-05-02 17:22 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-05-02 17:22 - 2014-04-03 09:51 - 00088280 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2014-05-02 17:22 - 2014-04-03 09:51 - 00063192 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2014-05-02 17:22 - 2014-04-03 09:50 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2014-04-29 22:25 - 2014-04-29 22:25 - 00003134 _____ () C:\WINDOWS\System32\Tasks\{4C33E753-0BA8-4711-B714-6670782C8692} 2014-04-28 22:13 - 2014-04-28 22:13 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaws.exe 2014-04-28 22:13 - 2014-04-28 22:13 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaw.exe 2014-04-28 22:13 - 2014-04-28 22:13 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\java.exe 2014-04-28 22:13 - 2014-04-28 22:13 - 00096168 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2014-04-28 22:13 - 2014-04-28 22:13 - 00000000 ____D () C:\Program Files (x86)\Java 2014-04-28 22:12 - 2014-04-28 22:12 - 00921512 _____ (Oracle Corporation) C:\Users\Karoline\Downloads\jxpiinstall.exe 2014-04-28 06:33 - 2014-04-28 06:33 - 00599240 _____ (Qualcomm Atheros) C:\WINDOWS\system32\Drivers\btfilter.sys 2014-04-22 19:23 - 2014-03-21 21:43 - 00040392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys 2014-04-22 19:23 - 2014-03-21 21:43 - 00033568 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll 2014-04-22 19:00 - 2014-04-09 14:00 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-04-22 19:00 - 2014-04-09 05:32 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-04-22 19:00 - 2014-04-09 05:31 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-04-22 19:00 - 2014-04-09 05:23 - 01705984 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-04-22 19:00 - 2014-04-09 05:21 - 03408896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll ==================== One Month Modified Files and Folders ======= 2014-05-12 19:56 - 2014-05-12 19:55 - 00018612 _____ () C:\Users\Karoline\Downloads\FRST.txt 2014-05-12 19:55 - 2014-05-12 19:55 - 02066944 _____ (Farbar) C:\Users\Karoline\Downloads\FRST64.exe 2014-05-12 19:55 - 2014-05-12 19:55 - 00000000 ____D () C:\FRST 2014-05-12 19:54 - 2013-11-01 19:50 - 01091281 _____ () C:\WINDOWS\WindowsUpdate.log 2014-05-12 19:53 - 2013-04-18 19:44 - 00000000 ____D () C:\ProgramData\Kaspersky Lab 2014-05-12 19:52 - 2013-11-06 00:02 - 00003938 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{7C0D20F5-9E9C-47EB-B84B-25B4ABC52DD6} 2014-05-12 19:52 - 2012-12-13 20:39 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-05-12 19:47 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-05-12 19:47 - 2013-08-22 16:46 - 00371090 _____ () C:\WINDOWS\setupact.log 2014-05-12 19:46 - 2013-08-28 19:55 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-05-12 19:46 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-05-09 22:02 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-05-09 19:42 - 2014-05-09 19:42 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-05-09 01:14 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2014-05-07 22:15 - 2012-11-28 20:09 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-827286464-1191435713-3838452255-1002 2014-05-06 21:44 - 2012-12-13 17:41 - 00000000 ____D () C:\Users\Karoline\AppData\Roaming\Mozilla 2014-05-06 21:43 - 2014-05-06 21:43 - 00001175 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-05-06 21:43 - 2014-05-06 21:43 - 00001163 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-05-06 21:42 - 2014-05-06 21:42 - 00283376 _____ (Mozilla) C:\Users\Karoline\Downloads\Firefox Setup Stub 29.0.exe 2014-05-06 21:02 - 2014-05-02 17:22 - 00119512 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-05-06 20:55 - 2014-05-06 20:55 - 00448512 _____ (OldTimer Tools) C:\Users\Karoline\Downloads\TFC.exe 2014-05-06 20:30 - 2014-05-06 20:30 - 00000000 __SHD () C:\Users\Karoline\AppData\Local\EmieUserList 2014-05-06 20:30 - 2014-05-06 20:30 - 00000000 __SHD () C:\Users\Karoline\AppData\Local\EmieSiteList 2014-05-06 20:29 - 2014-05-06 20:29 - 00001089 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Secunia PSI.lnk 2014-05-06 20:29 - 2014-05-06 20:29 - 00000000 ____D () C:\Users\Karoline\AppData\Local\Secunia PSI 2014-05-06 20:29 - 2014-05-06 20:29 - 00000000 ____D () C:\Program Files (x86)\Secunia 2014-05-06 20:29 - 2013-08-22 17:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp 2014-05-06 20:28 - 2014-05-06 20:28 - 05329480 _____ (Secunia) C:\Users\Karoline\Downloads\PSISetup_3.0.0.9016.exe 2014-05-06 20:12 - 2013-04-09 19:39 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-05-05 21:09 - 2013-09-29 21:04 - 00009096 _____ () C:\WINDOWS\PFRO.log 2014-05-03 23:18 - 2014-05-03 23:18 - 00383613 _____ () C:\Users\Karoline\Documents\kaspersky.txt 2014-05-03 18:53 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\NDF 2014-05-02 21:07 - 2013-09-30 06:14 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-05-02 21:07 - 2013-09-30 05:56 - 00765582 _____ () C:\WINDOWS\system32\perfh007.dat 2014-05-02 21:07 - 2013-09-30 05:56 - 00159366 _____ () C:\WINDOWS\system32\perfc007.dat 2014-05-02 21:03 - 2013-08-22 16:46 - 00003716 _____ () C:\WINDOWS\setuperr.log 2014-05-02 20:37 - 2014-05-02 20:37 - 00000258 _____ () C:\Users\Karoline\Documents\eset.txt 2014-05-02 20:33 - 2014-05-02 20:33 - 00009371 _____ () C:\Users\Karoline\Documents\anti-malware.txt 2014-05-02 17:45 - 2013-04-05 14:35 - 00000000 ____D () C:\WINDOWS\Downloaded Installations 2014-05-02 17:22 - 2014-05-02 17:22 - 00001118 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-02 17:22 - 2014-05-02 17:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-02 17:22 - 2014-05-02 17:22 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-05-02 17:22 - 2013-04-05 10:58 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-01 13:34 - 2013-10-12 16:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 2014-04-29 23:05 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache 2014-04-29 22:25 - 2014-04-29 22:25 - 00003134 _____ () C:\WINDOWS\System32\Tasks\{4C33E753-0BA8-4711-B714-6670782C8692} 2014-04-29 16:01 - 2014-05-02 20:58 - 23547904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-04-29 14:48 - 2014-05-02 20:58 - 17384448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-04-28 22:14 - 2013-11-02 18:56 - 00000000 ____D () C:\ProgramData\Oracle 2014-04-28 22:13 - 2014-04-28 22:13 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaws.exe 2014-04-28 22:13 - 2014-04-28 22:13 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaw.exe 2014-04-28 22:13 - 2014-04-28 22:13 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\java.exe 2014-04-28 22:13 - 2014-04-28 22:13 - 00096168 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2014-04-28 22:13 - 2014-04-28 22:13 - 00000000 ____D () C:\Program Files (x86)\Java 2014-04-28 22:12 - 2014-04-28 22:12 - 00921512 _____ (Oracle Corporation) C:\Users\Karoline\Downloads\jxpiinstall.exe 2014-04-28 20:53 - 2012-12-13 20:39 - 00003772 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2014-04-28 06:33 - 2014-04-28 06:33 - 00599240 _____ (Qualcomm Atheros) C:\WINDOWS\system32\Drivers\btfilter.sys 2014-04-23 02:24 - 2013-08-22 17:38 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2014-04-23 02:24 - 2013-08-22 17:38 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2014-04-22 19:24 - 2013-11-01 19:49 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-04-22 19:23 - 2013-11-13 21:14 - 00000000 ____D () C:\Users\Karoline\AppData\Local\NVIDIA Corporation 2014-04-22 19:23 - 2013-11-13 21:07 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-04-16 19:57 - 2013-07-17 19:50 - 00000000 ____D () C:\Users\Karoline\AppData\Local\Adobe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-05-09 21:40 ==================== End Of Log ============================ --- --- --- --- --- --- --- --- --- |
13.05.2014, 15:24 | #20 |
/// the machine /// TB-Ausbilder | Bedrohung SpeedingUpMyPC Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=dvd_14_18_ff&cd=2XzuyEtN2Y1L1QzuyE0CyBtB0Bzy0DyCyEtB0B0DzyyB0F0BtN0D0Tzu0SzzyDtDtN1L2XzutBtFtBtDtFyCtFtDtN1L1CzutCyEtDtAtDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2SyC0Ezz0FyB0FyDtCtGyC0AtD0FtGzytB0FtCtGtByDzz0CtGyC0AtDzyzz0C0ByByDtCtDyD2QtN1M1F1B2Z1V1N2Y1L1Qzu2StB0B0B0AyDyEtDyBtGzyyEyCyCtGzzyCzyzytGyEtD0B0FtGtC0BtBtB0E0Azy0DzytAtByB2Q&cr=466585706&ir= SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {FDE3A3BC-13CF-48C1-9701-B7B8717DE877} URL = Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
13.05.2014, 18:12 | #21 |
| Bedrohung SpeedingUpMyPC Hier der Fixlog Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-05-2014 01 Ran by Karoline at 2014-05-13 19:10:43 Run:1 Running from C:\Users\Karoline\Downloads Boot Mode: Normal ============================================== Content of fixlist: ***************** SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=dvd_14_18_ff&cd=2XzuyEtN2Y1L1QzuyE0CyBtB0Bzy0DyCyEtB0B0DzyyB0F0BtN0D0Tzu0SzzyDtDtN1L2XzutBtFtBtDtFyCtFtDtN1L1CzutCyEtDtAtDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2SyC0Ezz0FyB0FyDtCtGyC0AtD0FtGzytB0FtCtGtByDzz0CtGyC0AtDzyzz0C0ByByDtCtDyD2QtN1M1F1B2Z1V1N2Y1L1Qzu2StB0B0B0AyDyEtDyBtGzyyEyCyCtGzzyCzyzytGyEtD0B0FtGtC0BtBtB0E0Azy0DzytAtByB2Q&cr=466585706&ir= SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {FDE3A3BC-13CF-48C1-9701-B7B8717DE877} URL = ***************** HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key deleted successfully. HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{FDE3A3BC-13CF-48C1-9701-B7B8717DE877} => Key deleted successfully. HKCR\CLSID\{FDE3A3BC-13CF-48C1-9701-B7B8717DE877} => Key not found. ==== End of Fixlog ==== |
14.05.2014, 19:07 | #22 |
/// the machine /// TB-Ausbilder | Bedrohung SpeedingUpMyPC Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
16.05.2014, 19:14 | #23 |
| Bedrohung SpeedingUpMyPC Hallo Schrauber, die Seite wird bei Internet Explorer nun nicht mehr angezeigt. Vielen Dank für deine hilfe. Ich habe da noch ein weiteres Problem..und zwar kann ich meine Windows-Update Einstellungen nicht ändern (siehe Anhang). Obwohl ich als Administrator angemeldet bin, kann ich diese nicht ändern. Auch das Programm Secunia PSI zeigt mir an, dass ich Windows Update angeblich nicht installiert habe. Hast du vielleicht eine Idee woran das liegen könnte? |
17.05.2014, 19:38 | #24 |
/// the machine /// TB-Ausbilder | Bedrohung SpeedingUpMyPC Mach das mal. http://www.trojaner-board.de/126216-...epair-aio.html
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
19.05.2014, 16:32 | #25 |
| Bedrohung SpeedingUpMyPC Ich habe mir die Version runtergeladen die angegeben ist. Nun sagt er mir, dass es eine neuere Version (Update) dafür gibt. Kann ich den angegebenen Download trotzdem benutzen? |
20.05.2014, 11:36 | #26 |
/// the machine /// TB-Ausbilder | Bedrohung SpeedingUpMyPC ja, einfach updaten auf die neue
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
20.05.2014, 21:21 | #27 |
| Bedrohung SpeedingUpMyPC Habe das so ausprobiert..die Update Einstellungen kann ich leider noch immer nicht ändern. Gibt´s vielleicht noch eine andere Möglichkeit? Hier der Log falls der wichtig sein sollte. Code:
ATTFilter System Variables -------------------------------------------------------------------------------- OS: Windows 8.1 OS Architecture: 64-bit OS Version: 6.3.9600 OS Service Pack: Computer Name: EMMCHEN Windows Drive: C:\ Windows Path: C:\Windows Current Profile: C:\Users\Karoline Current Profile SID: S-1-5-21-827286464-1191435713-3838452255-1002 Current Profile Classes: S-1-5-21-827286464-1191435713-3838452255-1002_Classes Profiles Location: C:\Users Profiles Location 2: C:\Windows\ServiceProfiles Local Settings AppData: C:\Users\Karoline\AppData\Local -------------------------------------------------------------------------------- System Information -------------------------------------------------------------------------------- System Up Time: 0 Days 00:07:36 Process Count: 86 Commit Total: 1,56 GB Commit Limit: 15,82 GB Commit Peak: 1,95 GB Handle Count: 24733 Kernel Total: 311,33 MB Kernel Paged: 201,84 MB Kernel Non Paged: 109,48 MB System Cache: 1,49 GB Thread Count: 921 -------------------------------------------------------------------------------- Memory Before Cleaning with CleanMem -------------------------------------------------------------------------------- Memory Total: 7,82 GB Memory Used: 1,24 GB(15,8164%) Memory Avail.: 6,59 GB -------------------------------------------------------------------------------- Cleaning Memory Before Starting Repairs... Memory After Cleaning with CleanMem -------------------------------------------------------------------------------- Memory Total: 7,82 GB Memory Used: 1.022,79 MB(12,7685%) Memory Avail.: 6,82 GB -------------------------------------------------------------------------------- Starting Repairs... Start (20.05.2014 21:05:15) 01 - Reset Registry Permissions 01/03 HKEY_CURRENT_USER & Sub Keys Start (20.05.2014 21:05:18) Running Repair Under Current User Account Done (20.05.2014 21:05:31) 01 - Reset Registry Permissions 02/03 HKEY_LOCAL_MACHINE & Sub Keys Start (20.05.2014 21:05:31) Running Repair Under System Account Done (20.05.2014 21:09:59) 01 - Reset Registry Permissions 03/03 HKEY_CLASSES_ROOT & Sub Keys Start (20.05.2014 21:09:59) Running Repair Under System Account Done (20.05.2014 21:11:06) 02 - Reset File Permissions: C: C: & Sub Folders Start (20.05.2014 21:11:07) Running Repair Under System Account Done (20.05.2014 21:18:12) 02 - Reset File Permissions: All Profiles C:\Users & Sub Folders Start (20.05.2014 21:18:12) Running Repair Under System Account Done (20.05.2014 21:18:56) 02 - Reset File Permissions: Current Profile C:\Users\Karoline & Sub Folders Start (20.05.2014 21:18:56) Running Repair Under System Account Done (20.05.2014 21:19:16) 02 - Reset File Permissions: Cleanup Repairing Restricted Folders Permissions To Avoid Infinite Loops Start (20.05.2014 21:19:16) Running Repair Under System Account Processing ACL of: <\\?\C:\Documents and Settings> SetACL finished successfully. Processing ACL of: <\\?\C:\ProgramData\Application Data> SetACL finished successfully. Processing ACL of: <\\?\C:\ProgramData\Desktop> SetACL finished successfully. Processing ACL of: <\\?\C:\ProgramData\Documents> SetACL finished successfully. Processing ACL of: <\\?\C:\ProgramData\Favorites> Reading the SD from <\\?\C:\ProgramData\Favorites> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\ProgramData\Start Menu> SetACL finished successfully. Processing ACL of: <\\?\C:\ProgramData\Templates> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\All Users\Application Data> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\All Users\Desktop> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\All Users\Documents> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\All Users\Favorites> Reading the SD from <\\?\C:\Users\All Users\Favorites> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\All Users\Start Menu> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\All Users\Templates> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default User> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\Application Data> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\Cookies> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\Local Settings> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\My Documents> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\NetHood> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\PrintHood> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\Recent> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\SendTo> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\Start Menu> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\Templates> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\AppData\Local\Application Data> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\AppData\Local\History> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\AppData\Local\Temporary Internet Files> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\Documents\My Music> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\Documents\My Pictures> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\Documents\My Videos> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Public\Documents\My Music> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Public\Documents\My Pictures> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Public\Documents\My Videos> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Administrator\Application Data> Reading the SD from <\\?\C:\Users\Administrator\Application Data> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\Cookies> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Administrator\Local Settings> Reading the SD from <\\?\C:\Users\Administrator\Local Settings> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\My Documents> Reading the SD from <\\?\C:\Users\Administrator\My Documents> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\NetHood> Reading the SD from <\\?\C:\Users\Administrator\NetHood> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\PrintHood> Reading the SD from <\\?\C:\Users\Administrator\PrintHood> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\Recent> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Administrator\SendTo> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Administrator\Start Menu> Reading the SD from <\\?\C:\Users\Administrator\Start Menu> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\Templates> Reading the SD from <\\?\C:\Users\Administrator\Templates> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\AppData\Local\Application Data> Reading the SD from <\\?\C:\Users\Administrator\AppData\Local\Application Data> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\AppData\Local\History> Reading the SD from <\\?\C:\Users\Administrator\AppData\Local\History> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\AppData\Local\Temporary Internet Files> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Administrator\Documents\My Music> Reading the SD from <\\?\C:\Users\Administrator\Documents\My Music> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\Documents\My Pictures> Reading the SD from <\\?\C:\Users\Administrator\Documents\My Pictures> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\Documents\My Videos> Reading the SD from <\\?\C:\Users\Administrator\Documents\My Videos> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Default.migrated\Application Data> Reading the SD from <\\?\C:\Users\Default.migrated\Application Data> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Default.migrated\Cookies> Reading the SD from <\\?\C:\Users\Default.migrated\Cookies> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Default.migrated\Local Settings> Reading the SD from <\\?\C:\Users\Default.migrated\Local Settings> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Default.migrated\My Documents> Reading the SD from <\\?\C:\Users\Default.migrated\My Documents> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Default.migrated\NetHood> Reading the SD from <\\?\C:\Users\Default.migrated\NetHood> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Default.migrated\PrintHood> Reading the SD from <\\?\C:\Users\Default.migrated\PrintHood> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Default.migrated\Recent> Reading the SD from <\\?\C:\Users\Default.migrated\Recent> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Default.migrated\SendTo> Reading the SD from <\\?\C:\Users\Default.migrated\SendTo> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Default.migrated\Start Menu> Reading the SD from <\\?\C:\Users\Default.migrated\Start Menu> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Default.migrated\Templates> Reading the SD from <\\?\C:\Users\Default.migrated\Templates> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Default.migrated\AppData\Local\Application Data> Reading the SD from <\\?\C:\Users\Default.migrated\AppData\Local\Application Data> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Default.migrated\AppData\Local\History> Reading the SD from <\\?\C:\Users\Default.migrated\AppData\Local\History> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Default.migrated\AppData\Local\Temporary Internet Files> Reading the SD from <\\?\C:\Users\Default.migrated\AppData\Local\Temporary Internet Files> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Default.migrated\Documents\My Music> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default.migrated\Documents\My Pictures> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default.migrated\Documents\My Videos> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Karoline\Application Data> Reading the SD from <\\?\C:\Users\Karoline\Application Data> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Karoline\Cookies> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Karoline\Local Settings> Reading the SD from <\\?\C:\Users\Karoline\Local Settings> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Karoline\My Documents> Reading the SD from <\\?\C:\Users\Karoline\My Documents> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Karoline\NetHood> Reading the SD from <\\?\C:\Users\Karoline\NetHood> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Karoline\PrintHood> Reading the SD from <\\?\C:\Users\Karoline\PrintHood> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Karoline\Recent> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Karoline\SendTo> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Karoline\Start Menu> Reading the SD from <\\?\C:\Users\Karoline\Start Menu> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Karoline\Templates> Reading the SD from <\\?\C:\Users\Karoline\Templates> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Karoline\AppData\Local\Application Data> Reading the SD from <\\?\C:\Users\Karoline\AppData\Local\Application Data> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Karoline\AppData\Local\History> Reading the SD from <\\?\C:\Users\Karoline\AppData\Local\History> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Karoline\AppData\Local\Temporary Internet Files> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Karoline\Documents\My Music> Reading the SD from <\\?\C:\Users\Karoline\Documents\My Music> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Karoline\Documents\My Pictures> Reading the SD from <\\?\C:\Users\Karoline\Documents\My Pictures> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Karoline\Documents\My Videos> Reading the SD from <\\?\C:\Users\Karoline\Documents\My Videos> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Done (20.05.2014 21:19:23) 03 - Reset Service Permissions Start (20.05.2014 21:19:23) Running Repair Under System Account Done (20.05.2014 21:19:31) 04 - Register System Files Start (20.05.2014 21:19:31) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:20:28) 05 - Repair WMI Start (20.05.2014 21:20:28) Starting Security Center So We Can Export The Security Info. Exporting Antivirus Info... Kaspersky Internet Security Exported. Windows Defender Exported. Exporting AntiSpyware Info... Kaspersky Internet Security Exported. Windows Defender Exported. Exporting 3rd Party Firewall Info... Kaspersky Internet Security Exported. Running Repair Under Current User Account Done (20.05.2014 21:29:53) 06 - Repair Windows Firewall Start (20.05.2014 21:29:53) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:30:37) 07 - Repair Internet Explorer Start (20.05.2014 21:30:37) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:31:16) 08 - Repair MDAC/MS Jet Start (20.05.2014 21:31:16) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:31:31) 09 - Repair Hosts File Start (20.05.2014 21:31:31) Running Repair Under System Account Done (20.05.2014 21:31:34) 10 - Remove Policies Set By Infections Start (20.05.2014 21:31:34) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:31:39) 11 - Repair Start Menu Icons Removed By Infections Start (20.05.2014 21:31:39) Running Repair Under System Account Done (20.05.2014 21:31:41) 12 - Repair Icons Start (20.05.2014 21:31:41) Running Repair Under Current User Account Done (20.05.2014 21:31:43) 13 - Repair Winsock & DNS Cache Start (20.05.2014 21:31:44) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:31:56) 14 - Remove Temp Files Start (20.05.2014 21:31:56) Running Repair Under System Account Done (20.05.2014 21:31:59) 15 - Repair Proxy Settings Start (20.05.2014 21:31:59) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:32:03) 16 - Unhide Non System Files Start (20.05.2014 21:32:03) C:\ - Total Files Unhidden: 973 - Check Unhidden_Files.txt for list of files unhidden Done (20.05.2014 21:32:31) 17 - Repair Windows Updates Start (20.05.2014 21:32:31) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:32:52) 18 - Repair CD/DVD Missing/Not Working Start (20.05.2014 21:32:52) iTunes not found, not applying UpperFilters iTunes Reg Key Done (20.05.2014 21:32:52) 19 - Repair Volume Shadow Copy Service Start (20.05.2014 21:32:52) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:33:03) 20 - Repair Windows Sidebar/Gadgets Start (20.05.2014 21:33:03) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:33:08) 21 - Repair MSI (Windows Installer) Start (20.05.2014 21:33:08) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:33:21) 22 - Repair Windows Snipping Tool Start (20.05.2014 21:33:21) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:33:25) 23.01 - Repair bat Association Start (20.05.2014 21:33:25) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:33:30) 23.02 - Repair cmd Association Start (20.05.2014 21:33:30) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:33:35) 23.03 - Repair com Association Start (20.05.2014 21:33:35) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:33:40) 23.04 - Repair Directory Association Start (20.05.2014 21:33:40) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:33:44) 23.05 - Repair Drive Association Start (20.05.2014 21:33:45) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:33:49) 23.06 - Repair exe Association Start (20.05.2014 21:33:49) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:33:54) 23.07 - Repair Folder Association Start (20.05.2014 21:33:54) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:33:59) 23.08 - Repair inf Association Start (20.05.2014 21:33:59) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:34:03) 23.09 - Repair lnk (Shortcuts) Association Start (20.05.2014 21:34:03) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:34:08) 23.10 - Repair msc Association Start (20.05.2014 21:34:08) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:34:13) 23.11 - Repair reg Association Start (20.05.2014 21:34:13) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:34:18) 23.12 - Repair scr Association Start (20.05.2014 21:34:18) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:34:22) 24 - Repair Windows Safe Mode Start (20.05.2014 21:34:22) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:34:27) 25 - Repair Print Spooler Start (20.05.2014 21:34:27) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:34:44) 26 - Restore Important Windows Services Start (20.05.2014 21:34:44) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:35:05) 27 - Set Windows Services To Default Startup Start (20.05.2014 21:35:05) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:35:14) 28 - Repair Windows 8 App Store Start (20.05.2014 21:35:14) Running Repair Under Current User Account Running Repair Under System Account Done (20.05.2014 21:35:49) 29 - Repair Windows 8 Component Store Start (20.05.2014 21:35:49) Running Repair Under Current User Account Done (20.05.2014 22:04:30) 30 - Restore Windows 8 COM+ Unmarshalers Start (20.05.2014 22:04:30) Running Repair Under System Account Processing ACL of: <classes_root\Unmarshalers> SetACL finished with error(s): SetACL error message: The call to SetNamedSecurityInfo () failed Operating system error message: Zugriff verweigert Done (20.05.2014 22:04:32) Cleaning up empty logs... All Selected Repairs Done. Done (20.05.2014 22:04:32) Total Repair Time: 00:59:19 ...YOU MUST RESTART YOUR SYSTEM... Running Repair Under Current User Account |
21.05.2014, 10:40 | #28 |
/// the machine /// TB-Ausbilder | Bedrohung SpeedingUpMyPC Welche Updateeinstellungen?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
22.05.2014, 16:50 | #29 |
| Bedrohung SpeedingUpMyPC Also wenn ich auf Systemsteuerung --> System und Sicherheit --> Windows Update --> Einstellungen ändern gehe sagt er mir, dass einige Einstellungen vom Systemadministrator verwaltet werden. Und das, obwohl ich als Administrator angemeldet bin. Das ist doch merkwürdig, oder? Oder muss ich dazu nur irgendwo ein Haken setzen bzw. wegnehmen? Sorry, bin nicht soo firm. Hab dir die Grafik nochmal angehängt. |
23.05.2014, 16:09 | #30 |
/// the machine /// TB-Ausbilder | Bedrohung SpeedingUpMyPC Geh mal bitte in Regedit zu HKLM\Software\Policies\Microsoft\Windows Und lösche den Zweig WIndows Update. Rechner neu starten, sollte jetzt gehen.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |