|
Log-Analyse und Auswertung: Virusbefall auf externer Festplatte und nun auf dem Notebook?Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
29.07.2015, 10:48 | #16 |
| Virusbefall auf externer Festplatte und nun auf dem Notebook? Danke! Insgesamt läuft mein Rechner immer noch sehr langsam. Auch das Problem aus dem Anhang meines allerersten Posts in diesem Thema scheint noch nicht gelöst... |
29.07.2015, 11:29 | #17 |
/// TB-Ausbilder | Virusbefall auf externer Festplatte und nun auf dem Notebook? Dann schauen wir weiter:
__________________Downloade dir bitte Farbar Service Scanner
Poste bitte den Inhalt hier.
__________________ |
29.07.2015, 11:41 | #18 |
| Virusbefall auf externer Festplatte und nun auf dem Notebook? FSS file:
__________________Code:
ATTFilter Farbar Service Scanner Version: 26-07-2015 Ran by Timojogi (administrator) on 29-07-2015 at 12:37:55 Running from "C:\Users\Timojogi\Downloads" Microsoft Windows 7 Home Premium Service Pack 1 (X64) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Google IP is accessible. Google.com is accessible. Yahoo.com is accessible. Windows Firewall: ============= Firewall Disabled Policy: ================== System Restore: ============ System Restore Policy: ======================== Action Center: ============ Windows Update: ============ Windows Autoupdate Disabled Policy: ============================ Windows Defender: ============== WinDefend Service is not running. Checking service configuration: The start type of WinDefend service is set to Demand. The default start type is Auto. The ImagePath of WinDefend service is OK. The ServiceDll of WinDefend service is OK. Windows Defender Disabled Policy: ========================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender] "DisableAntiSpyware"=DWORD:1 Other Services: ============== File Check: ======== C:\Windows\System32\nsisvc.dll => File is digitally signed C:\Windows\System32\drivers\nsiproxy.sys => File is digitally signed C:\Windows\System32\dhcpcore.dll => File is digitally signed C:\Windows\System32\drivers\afd.sys => File is digitally signed C:\Windows\System32\drivers\tdx.sys => File is digitally signed C:\Windows\System32\Drivers\tcpip.sys => File is digitally signed C:\Windows\System32\dnsrslvr.dll => File is digitally signed C:\Windows\System32\mpssvc.dll => File is digitally signed C:\Windows\System32\bfe.dll => File is digitally signed C:\Windows\System32\drivers\mpsdrv.sys => File is digitally signed C:\Windows\System32\SDRSVC.dll => File is digitally signed C:\Windows\System32\vssvc.exe => File is digitally signed C:\Windows\System32\wscsvc.dll => File is digitally signed C:\Windows\System32\wbem\WMIsvc.dll => File is digitally signed C:\Windows\System32\wuaueng.dll => File is digitally signed C:\Windows\System32\qmgr.dll => File is digitally signed C:\Windows\System32\es.dll => File is digitally signed C:\Windows\System32\cryptsvc.dll => File is digitally signed C:\Program Files\Windows Defender\MpSvc.dll => File is digitally signed C:\Windows\System32\ipnathlp.dll => File is digitally signed C:\Windows\System32\iphlpsvc.dll => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed **** End of log **** |
29.07.2015, 11:59 | #19 |
/// TB-Ausbilder | Virusbefall auf externer Festplatte und nun auf dem Notebook? Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter cmd: sc queryex sens cmd: sc qc sens Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
__________________ Lerne, zurück zu schlagen und unterstütze uns! TB Akademie | Spende | Lob & Kritik |
29.07.2015, 12:06 | #20 |
| Virusbefall auf externer Festplatte und nun auf dem Notebook?Code:
ATTFilter Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version:28-07-2015 durchgeführt von Timojogi (2015-07-29 13:04:56) Run:1 Gestartet von C:\Users\Timojogi\Desktop Geladene Profile: Timojogi (Verfügbare Profile: Timojogi & Administrator) Start-Modus: Normal ============================================== fixlist Inhalt: ***************** cmd: sc queryex sens cmd: sc qc sens ***************** ========= sc queryex sens ========= SERVICE_NAME: sens TYPE : 20 WIN32_SHARE_PROCESS STATE : 4 RUNNING (STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN) WIN32_EXIT_CODE : 0 (0x0) SERVICE_EXIT_CODE : 0 (0x0) CHECKPOINT : 0x0 WAIT_HINT : 0x0 PID : 984 FLAGS : ========= Ende von CMD: ========= ========= sc qc sens ========= [SC] QueryServiceConfig ERFOLG SERVICE_NAME: sens TYPE : 20 WIN32_SHARE_PROCESS START_TYPE : 2 AUTO_START ERROR_CONTROL : 1 NORMAL BINARY_PATH_NAME : C:\Windows\system32\svchost.exe -k netsvcs LOAD_ORDER_GROUP : ProfSvc_Group TAG : 0 DISPLAY_NAME : Benachrichtigungsdienst f�r Systemereignisse DEPENDENCIES : EventSystem SERVICE_START_NAME : LocalSystem ========= Ende von CMD: ========= ==== Ende von Fixlog 13:04:59 ==== |
29.07.2015, 13:00 | #21 |
/// TB-Ausbilder | Virusbefall auf externer Festplatte und nun auf dem Notebook? Ok soweit - die Meldung aus dem Screenshot besteht weiterhin ? Deinstallier mal bitte AVIRA komplett, mach nen Neustart. Dann http://dlpro.antivir.com/package/reg...cleaner_de.exe runterladen, ausführen, Neustart. Dann Avira neu installieren. Schuld ist entweder defektes Avira oder, was ich eher vermute, TuneUp.
__________________ --> Virusbefall auf externer Festplatte und nun auf dem Notebook? Geändert von Warlord711 (29.07.2015 um 13:10 Uhr) |
29.07.2015, 13:38 | #22 |
| Virusbefall auf externer Festplatte und nun auf dem Notebook? Einen Teil von Avira konnte ich deinstallieren, beim anderen Teil hat er Mucken gemacht. Hier also die Log-Datei vom Problem: Code:
ATTFilter [179C:17A8][2015-07-29T14:28:29]i001: Burn v3.8.1128.0, Windows v6.1 (Build 7601: Service Pack 1), path: C:\ProgramData\Package Cache\{9480d4af-12b9-4e56-8034-4031ef6ab39d}\Avira.OE.Setup.Bundle.exe, cmdline: '/uninstall -burn.unelevated BurnPipe.{8B95DEEB-3874-4409-9AD8-7ECB6D16FD17} {E659B8C5-5B02-40B8-A50D-96ECC1EA7B29} 660' [179C:17A8][2015-07-29T14:28:29]i000: Initializing string variable 'SkipSuccessPageAfterInstall' to value 'yes' [179C:17A8][2015-07-29T14:28:29]i000: Initializing string variable 'ShowProgressInTaskBar' to value 'no' [179C:17A8][2015-07-29T14:28:29]i000: Initializing string variable 'RebootImmediatly' to value 'yes' [179C:17A8][2015-07-29T14:28:29]i000: Initializing string variable 'ShowSendErrorReport' to value 'yes' [179C:17A8][2015-07-29T14:28:29]i000: Initializing string variable 'LogFileUploadUrl' to value 'https://wl-win.oes.avira.com/sendreport' [179C:17A8][2015-07-29T14:28:29]i000: Initializing string variable 'SERVER_URL' to value '' [179C:17A8][2015-07-29T14:28:29]i000: Initializing string variable 'SHORT_MSG_FORMAT' to value '' [179C:17A8][2015-07-29T14:28:29]i000: Initializing string variable 'TRACKING_TOKEN' to value '' [179C:17A8][2015-07-29T14:28:29]i000: Initializing numeric variable 'DISABLE_MIXPANEL_TRACKING' to value '0' [179C:17A8][2015-07-29T14:28:29]i000: Initializing string variable 'CUSTOM_KIT_TOKEN' to value '' [179C:17A8][2015-07-29T14:28:29]i000: Initializing string variable 'DOWNLOAD_SOURCE' to value '' [179C:17A8][2015-07-29T14:28:29]i000: Initializing string variable 'TRACKING_ID' to value '' [179C:17A8][2015-07-29T14:28:29]i000: Initializing string variable 'BUNDLE_ID' to value '' [179C:17A8][2015-07-29T14:28:29]i000: Initializing numeric variable 'NOAFTERINSTALLPAGE' to value '0' [179C:17A8][2015-07-29T14:28:30]i000: Setting string variable 'WixBundleLog' to value 'C:\Users\Timojogi\AppData\Local\Temp\Avira_20150729142830.log' [179C:10BC][2015-07-29T14:28:30]i000: Setting string variable 'CUSTOM_KIT_TOKEN' to value '' [179C:10BC][2015-07-29T14:28:30]i000: Setting string variable 'DOWNLOAD_SOURCE' to value '' [179C:10BC][2015-07-29T14:28:30]i000: Setting string variable 'BUNDLE_ID' to value '' [179C:10BC][2015-07-29T14:28:30]i000: Setting string variable 'TRACKING_ID' to value '' [179C:10BC][2015-07-29T14:28:30]i000: Setting string variable 'LANGUAGE' to value 'de' [179C:17A8][2015-07-29T14:28:31]i100: Detect begin, 3 packages [179C:17A8][2015-07-29T14:28:31]i000: Setting string variable 'NETFRAMEWORK35' to value '1' [179C:17A8][2015-07-29T14:28:31]i000: Setting string variable 'NETFRAMEWORK35SP1' to value '1' [179C:17A8][2015-07-29T14:28:31]i000: Setting string variable 'NETFRAMEWORK40CLIENT' to value '1' [179C:17A8][2015-07-29T14:28:31]i000: Registry key not found. Key = 'SOFTWARE\Avira\AntiVir Server' [179C:17A8][2015-07-29T14:28:31]i000: Setting numeric variable 'AviraServerSecurityIsInstalled' to value 0 [179C:17A8][2015-07-29T14:28:31]i052: Condition '(NETFRAMEWORK40CLIENT = 1)' evaluates to true. [179C:17A8][2015-07-29T14:28:31]i101: Detected package: Avira.OE.Setup.Prerequisites.exe, state: Absent, cached: Complete [179C:17A8][2015-07-29T14:28:31]i101: Detected package: NetFx40ClientWeb, state: Present, cached: None [179C:17A8][2015-07-29T14:28:31]i101: Detected package: Id.Avira.OE.Setup.Msi, state: Present, cached: Complete [179C:17A8][2015-07-29T14:28:31]i052: Condition 'NTProductType = 1 AND ( ((VersionNT = v5.1) AND (ServicePackLevel >= 3)) OR ((VersionNT64 = v5.2) AND (ServicePackLevel >= 2)) OR ((VersionNT = v6.0)) OR ((VersionNT = v6.1)) OR (VersionNT >= v6.2) )' evaluates to true. [179C:17A8][2015-07-29T14:28:31]i052: Condition 'NOT AviraServerSecurityIsInstalled' evaluates to true. [179C:17A8][2015-07-29T14:28:31]i199: Detect complete, result: 0x0 [179C:17A8][2015-07-29T14:28:42]i200: Plan begin, 3 packages, action: Uninstall [179C:17A8][2015-07-29T14:28:42]i000: Setting string variable 'WixBundleRollbackLog_Id.Avira.OE.Setup.Msi' to value 'C:\Users\Timojogi\AppData\Local\Temp\Avira_20150729142830_0_Id.Avira.OE.Setup.Msi_rollback.log' [179C:17A8][2015-07-29T14:28:42]i000: Setting string variable 'WixBundleLog_Id.Avira.OE.Setup.Msi' to value 'C:\Users\Timojogi\AppData\Local\Temp\Avira_20150729142830_0_Id.Avira.OE.Setup.Msi.log' [179C:17A8][2015-07-29T14:28:42]w321: Skipping dependency registration on package with no dependency providers: NetFx40ClientWeb [179C:17A8][2015-07-29T14:28:42]w321: Skipping dependency registration on package with no dependency providers: Avira.OE.Setup.Prerequisites.exe [179C:17A8][2015-07-29T14:28:42]i201: Planned package: Id.Avira.OE.Setup.Msi, state: Present, default requested: Absent, ba requested: Absent, execute: Uninstall, rollback: Install, cache: No, uncache: Yes, dependency: Unregister [179C:17A8][2015-07-29T14:28:42]i201: Planned package: NetFx40ClientWeb, state: Present, default requested: None, ba requested: None, execute: None, rollback: None, cache: No, uncache: No, dependency: None [179C:17A8][2015-07-29T14:28:42]i201: Planned package: Avira.OE.Setup.Prerequisites.exe, state: Absent, default requested: Absent, ba requested: Absent, execute: None, rollback: None, cache: No, uncache: Yes, dependency: None [179C:17A8][2015-07-29T14:28:42]i299: Plan complete, result: 0x0 [179C:17A8][2015-07-29T14:28:42]i300: Apply begin [0294:10F4][2015-07-29T14:28:43]i326: Removed dependency: {9480d4af-12b9-4e56-8034-4031ef6ab39d} on package provider: {D2763B4E-5BF4-468B-BB00-9B3B121E0FB2}, package Id.Avira.OE.Setup.Msi [0294:10F4][2015-07-29T14:28:43]i329: Removed package dependency provider: {D2763B4E-5BF4-468B-BB00-9B3B121E0FB2}, package: Id.Avira.OE.Setup.Msi [0294:10F4][2015-07-29T14:28:43]i301: Applying execute package: Id.Avira.OE.Setup.Msi, action: Uninstall, path: C:\ProgramData\Package Cache\{D2763B4E-5BF4-468B-BB00-9B3B121E0FB2}v1.1.25.25607\Avira.OE.Setup.Msi.msi, arguments: ' ARPSYSTEMCOMPONENT="1" TRANSFORMS="loc.de.mst" SERVER_URL="" SHORT_MSG_FORMAT="" TRACKING_TOKEN="" DISABLE_MIXPANEL_TRACKING="0" CUSTOM_KIT_TOKEN="" DOWNLOAD_SOURCE="" BUNDLE_ID="" TRACKING_ID="" WCF_AUTH_VERIFY_SIGNATURE="TRUE" NOAFTERINSTALLPAGE="0"' [0294:10F4][2015-07-29T14:28:46]e000: Error 0x80070652: Failed to uninstall MSI package. [0294:10F4][2015-07-29T14:28:46]e000: Error 0x80070652: Failed to execute MSI package. [179C:17A8][2015-07-29T14:28:46]e000: Error 0x80070652: Failed to configure per-machine MSI package. [179C:17A8][2015-07-29T14:28:46]w348: Application requested retry of package: Id.Avira.OE.Setup.Msi, encountered error: 0x80070652. Retrying... [0294:10F4][2015-07-29T14:28:49]i301: Applying execute package: Id.Avira.OE.Setup.Msi, action: Uninstall, path: C:\ProgramData\Package Cache\{D2763B4E-5BF4-468B-BB00-9B3B121E0FB2}v1.1.25.25607\Avira.OE.Setup.Msi.msi, arguments: ' ARPSYSTEMCOMPONENT="1" TRANSFORMS="loc.de.mst" SERVER_URL="" SHORT_MSG_FORMAT="" TRACKING_TOKEN="" DISABLE_MIXPANEL_TRACKING="0" CUSTOM_KIT_TOKEN="" DOWNLOAD_SOURCE="" BUNDLE_ID="" TRACKING_ID="" WCF_AUTH_VERIFY_SIGNATURE="TRUE" NOAFTERINSTALLPAGE="0"' [0294:10F4][2015-07-29T14:28:52]e000: Error 0x80070652: Failed to uninstall MSI package. [0294:10F4][2015-07-29T14:28:52]e000: Error 0x80070652: Failed to execute MSI package. [179C:17A8][2015-07-29T14:28:52]e000: Error 0x80070652: Failed to configure per-machine MSI package. [179C:17A8][2015-07-29T14:28:52]w348: Application requested retry of package: Id.Avira.OE.Setup.Msi, encountered error: 0x80070652. Retrying... [0294:10F4][2015-07-29T14:28:55]i301: Applying execute package: Id.Avira.OE.Setup.Msi, action: Uninstall, path: C:\ProgramData\Package Cache\{D2763B4E-5BF4-468B-BB00-9B3B121E0FB2}v1.1.25.25607\Avira.OE.Setup.Msi.msi, arguments: ' ARPSYSTEMCOMPONENT="1" TRANSFORMS="loc.de.mst" SERVER_URL="" SHORT_MSG_FORMAT="" TRACKING_TOKEN="" DISABLE_MIXPANEL_TRACKING="0" CUSTOM_KIT_TOKEN="" DOWNLOAD_SOURCE="" BUNDLE_ID="" TRACKING_ID="" WCF_AUTH_VERIFY_SIGNATURE="TRUE" NOAFTERINSTALLPAGE="0"' [0294:10F4][2015-07-29T14:28:58]e000: Error 0x80070652: Failed to uninstall MSI package. [0294:10F4][2015-07-29T14:28:58]e000: Error 0x80070652: Failed to execute MSI package. [179C:17A8][2015-07-29T14:28:58]e000: Error 0x80070652: Failed to configure per-machine MSI package. [179C:17A8][2015-07-29T14:28:58]w348: Application requested retry of package: Id.Avira.OE.Setup.Msi, encountered error: 0x80070652. Retrying... [0294:10F4][2015-07-29T14:29:01]i301: Applying execute package: Id.Avira.OE.Setup.Msi, action: Uninstall, path: C:\ProgramData\Package Cache\{D2763B4E-5BF4-468B-BB00-9B3B121E0FB2}v1.1.25.25607\Avira.OE.Setup.Msi.msi, arguments: ' ARPSYSTEMCOMPONENT="1" TRANSFORMS="loc.de.mst" SERVER_URL="" SHORT_MSG_FORMAT="" TRACKING_TOKEN="" DISABLE_MIXPANEL_TRACKING="0" CUSTOM_KIT_TOKEN="" DOWNLOAD_SOURCE="" BUNDLE_ID="" TRACKING_ID="" WCF_AUTH_VERIFY_SIGNATURE="TRUE" NOAFTERINSTALLPAGE="0"' [0294:10F4][2015-07-29T14:29:25]e000: Error 0x80070652: Failed to uninstall MSI package. [0294:10F4][2015-07-29T14:29:25]e000: Error 0x80070652: Failed to execute MSI package. [179C:17A8][2015-07-29T14:29:25]e000: Error 0x80070652: Failed to configure per-machine MSI package. [179C:17A8][2015-07-29T14:29:25]i319: Applied execute package: Id.Avira.OE.Setup.Msi, result: 0x80070652, restart: None [179C:17A8][2015-07-29T14:29:25]e000: Error 0x80070652: Failed to execute MSI package. [0294:10F4][2015-07-29T14:29:25]i318: Skipped rollback of package: Id.Avira.OE.Setup.Msi, action: Install, already: Present [179C:17A8][2015-07-29T14:29:25]i319: Applied rollback package: Id.Avira.OE.Setup.Msi, result: 0x0, restart: None [0294:10F4][2015-07-29T14:29:25]i323: Registering package dependency provider: {D2763B4E-5BF4-468B-BB00-9B3B121E0FB2}, version: 1.1.25.25607, package: Id.Avira.OE.Setup.Msi [0294:10F4][2015-07-29T14:29:25]i325: Registering dependency: {9480d4af-12b9-4e56-8034-4031ef6ab39d} on package provider: {D2763B4E-5BF4-468B-BB00-9B3B121E0FB2}, package: Id.Avira.OE.Setup.Msi [179C:17A8][2015-07-29T14:29:26]i399: Apply complete, result: 0x80070652, restart: None, ba requested restart: No Code:
ATTFilter Removing product "Avira Antivirus (Free, Pro, Professional, Security Suite, Internet Security)" Key "HKEY_LOCAL_MACHINE\SOFTWARE\AVIRA\AntiVir Desktop" not found Key "HKEY_CLASSES_ROOT\SOFTWARE\AVIRA\Enterprise Management Console\Plugins" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\X-AVCSD\Workstation\Antivir Desktop" not found Key "HKEY_CURRENT_USER\Software\Avira\AntiVir Desktop" deleted Key "HKEY_CLASSES_ROOT\.key" not found Key "HKEY_CLASSES_ROOT\AntiVir.Keyfile" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ANTIVIRMAILSERVICE" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ANTIVIRSCHEDULERSERVICE" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ANTIVIRSERVICE" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ANTIVIRWEBSERVICE" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIO" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGNTFLT" not deleted (access denied or locked) Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVIPBB" not deleted (access denied or locked) Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVKMGR" not deleted (access denied or locked) Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AntiVirMailService" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AntiVirSchedulerService" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AntiVirService" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AntiVirWebService" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\avgntflt" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\avipbb" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\avkmgr" not found Key "HKEY_CLASSES_ROOT\CLSID\{45AC2688-0253-4ED8-97DE-B5370FA7D48A}" not found Key "HKEY_CLASSES_ROOT\CLSID\{9086709A-DF58-4F4F-B6FC-406DAB7080AA}" not found Key "HKEY_CLASSES_ROOT\CLSID\{B25C4B00-60DF-4A30-A3B0-4B50AACDF94B}" not found Key "HKEY_CLASSES_ROOT\TypeLib\{0623B03B-EC25-47A1-A8CA-7466651044CE}" not found Name "HKEY_CURRENT_USER\Control Panel\MMCPL\avconfig.cpl" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AntiVir.Keyfile" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{45AC2688-0253-4ED8-97DE-B5370FA7D48A}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9086709A-DF58-4F4F-B6FC-406DAB7080AA}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B25C4B00-60DF-4A30-A3B0-4B50AACDF94B}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{0623B03B-EC25-47A1-A8CA-7466651044CE}" not found Name "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\avgnt" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Avira AntiVir Desktop" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\AV_FLTDEV9MP" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ANTIVIRFIREWALLSERVICE" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVFWOT" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SSMDRV" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AntiVirFirewallService" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\avfwot" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ssmdrv" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\avgio" not found Key "HKEY_CLASSES_ROOT\CLSID\{305CA226-D286-468e-B848-2B2E8E697B74}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{305CA226-D286-468e-B848-2B2E8E697B74}" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\avnetflt" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVNETFLT" not deleted (access denied or locked) Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avira Antivirus" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avira Firewall" not found Key "HKEY_USERS\.DEFAULT\Software\Avira\AntiVir Desktop" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Avira AntiVir Desktop" not found Key "HKEY_CLASSES_ROOT\CLSID\{305CA226-D286-468e-B848-2B2E8E697B74}" not found Key "HKEY_CLASSES_ROOT\CLSID\{45AC2688-0253-4ED8-97DE-B5370FA7D48A}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{305CA226-D286-468e-B848-2B2E8E697B74}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{45AC2688-0253-4ED8-97DE-B5370FA7D48A}" not found Key "HKEY_CURRENT_USER\Software\Avira\Antivirus" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Avira\Antivirus" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ControlPanel\NameSpace\{305CA226-D286-468e-B848-2B2E8E697B74}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Avira Antivirus" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\X-AVCSD\Server\Antivirus" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\X-AVCSD\Workstation\Antivirus" not found Done: Failure Removing product "Avira Server Security" Key "HKEY_CLASSES_ROOT\CLSID\{45AC2688-0253-4ED8-97DE-B5370FA7D48A}" not found Key "HKEY_CLASSES_ROOT\TypeLib\{0623B03B-EC25-47A1-A8CA-7466651044CE}" not found Key "HKEY_CLASSES_ROOT\TypeLib\{B8551571-FB28-4400-B3DC-CB95B05946BD}" not found Key "HKEY_CLASSES_ROOT\CLSID\{1A078301-72EC-49E6-959D-BE4ADE04E1AC}" not found Key "HKEY_CLASSES_ROOT\CLSID\{5EFCD284-1B3F-4E65-8A59-33E093818E82}" not found Key "HKEY_CLASSES_ROOT\CLSID\{6158DC5A-6B0A-48A3-A820-7627E3176781}" not found Key "HKEY_CLASSES_ROOT\CLSID\{9086709A-DF58-4F4F-B6FC-406DAB7080AA}" not found Key "HKEY_CLASSES_ROOT\CLSID\{B25C4B00-60DF-4A30-A3B0-4B50AACDF94B}" not found Key "HKEY_CLASSES_ROOT\CLSID\{D1545232-F8AC-4C71-9780-C1F64EBB531D}" not found Key "HKEY_CLASSES_ROOT\TypeLib\{0623B03B-EC25-47A1-A8CA-7466651044CE}" not found Key "HKEY_CLASSES_ROOT\TypeLib\{B8551571-FB28-4400-B3DC-CB95B05946BD}" not found Key "HKEY_CURRENT_USER\Software\Avira\AntiVir Server" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{45AC2688-0253-4ED8-97DE-B5370FA7D48A}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{0623B03B-EC25-47A1-A8CA-7466651044CE}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{B8551571-FB28-4400-B3DC-CB95B05946BD}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A078301-72EC-49E6-959D-BE4ADE04E1AC}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5EFCD284-1B3F-4E65-8A59-33E093818E82}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6158DC5A-6B0A-48A3-A820-7627E3176781}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9086709A-DF58-4F4F-B6FC-406DAB7080AA}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B25C4B00-60DF-4A30-A3B0-4B50AACDF94B}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D1545232-F8AC-4C71-9780-C1F64EBB531D}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Avira\AntiVir Server" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Avira\Enterprise Management Console\Plugins" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{D1545232-F8AC-4C71-9780-C1F64EBB531D}" not found Name "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\avgnt" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AntiVir Server" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\X-AVCSD\Server\AntiVir Server" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\AntiVirScheduler" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\AntiVirService" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\avgntflt" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\avipbb" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\avkmgr" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\eventlog\Application\Avira Antivirus" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\vstor2-mntapi10" not found Done: Success Removing product "Avira System Speedup" Key "HKEY_CURRENT_USER\Software\AviraSpeedup" not found Name "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\AviraSpeedup" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\AviraSpeedup" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\avira_system_speedup_RASAPI32" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AviraSpeedup" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F2C7B3C5-87D7-4D86-9BF6-17031BFB6782}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AviraSpeedup" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\AviraSpeedup" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6ACAC064-1B2E-44F7-BC44-42A8F5D8B520}" not found Done: Success Removing product "Avira Management Console Agent" Key "HKEY_LOCAL_MACHINE\SOFTWARE\Avira\Enterprise Management Console\Agent" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{F3493E2F-B147-4EDD-9AE2-5DEDB8776232}" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ANTIVIR_SECURITY_MANAGEMENT_CENTER_AGENT" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AntiVir Security Management Center Agent" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avira Management Console Agent" not found Done: Success Removing product "Avira Management Console Server" Key "HKEY_LOCAL_MACHINE\SOFTWARE\Avira\Enterprise Management Console" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{82C24932-07D7-4D8F-A291-4E65C0BB8504}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBC.INI\ev_mgr" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Avira Security Management Center Event Manager" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Avira Security Management Center Server" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\eventlog\Application\Avira Management Console Event Manager" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\eventlog\Application\Avira Management Console Server" not found Name "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{5D45901C-1CF2-4256-BF1E-3B090E52F61D}" not found Name "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{A8162359-C34D-4BB8-835D-BA282BADD940}" not found Done: Success Removing product "Avira Management Console Frontend" Key "HKEY_CLASSES_ROOT\ManagementCenterAbout.1" not found Key "HKEY_CLASSES_ROOT\TypeLib\{3543647C-8F9A-4EC4-9454-621DABFDDBE5}" not found Key "HKEY_CLASSES_ROOT\TypeLib\{B8551571-FB28-4400-B3DC-CB95B05946BD}" not found Key "HKEY_CLASSES_ROOT\TypeLib\{D4BD37F3-068F-4776-8C68-0992BE40C5D9}" not found Key "HKEY_CLASSES_ROOT\CLSID\{0431AF1C-B64C-43A7-AD0F-3D84F200E2EF}" not found Key "HKEY_CLASSES_ROOT\CLSID\{09867931-F6F3-4133-A52E-285BADBADE45}" not found Key "HKEY_CLASSES_ROOT\CLSID\{1A078301-72EC-49E6-959D-BE4ADE04E1AC}" not found Key "HKEY_CLASSES_ROOT\CLSID\{40044164-1074-4C3E-8CB4-091470A13D27}" not found Key "HKEY_CLASSES_ROOT\CLSID\{4527D563-77DD-4A43-A161-2FCACE2FB1EC}" not found Key "HKEY_CLASSES_ROOT\CLSID\{61F69FA7-23C7-49D8-AAEE-64C76EA9C857}" not found Key "HKEY_CLASSES_ROOT\CLSID\{8913CA40-58E5-4705-AA69-331605B8D68F}" not found Key "HKEY_CLASSES_ROOT\CLSID\{E64FCF74-EDA6-4AFD-A72A-346AF7C6BA41}" not found Key "HKEY_CURRENT_USER\Software\Avira\Internet Update Manager Frontend" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ManagementCenterAbout.1" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3543647C-8F9A-4EC4-9454-621DABFDDBE5}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{B8551571-FB28-4400-B3DC-CB95B05946BD}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D4BD37F3-068F-4776-8C68-0992BE40C5D9}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0431AF1C-B64C-43A7-AD0F-3D84F200E2EF}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{09867931-F6F3-4133-A52E-285BADBADE45}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A078301-72EC-49E6-959D-BE4ADE04E1AC}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40044164-1074-4C3E-8CB4-091470A13D27}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4527D563-77DD-4A43-A161-2FCACE2FB1EC}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{61F69FA7-23C7-49D8-AAEE-64C76EA9C857}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8913CA40-58E5-4705-AA69-331605B8D68F}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E64FCF74-EDA6-4AFD-A72A-346AF7C6BA41}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Avira\Enterprise Management Console" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Avira\Enterprise Management Console" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Avira\Enterprise Management Console" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Avira\Enterprise Management Console" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{09867931-F6F3-4133-A52E-285BADBADE45}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{40044164-1074-4C3E-8CB4-091470A13D27}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E59A9441-8EDD-473D-BDC6-4CAFD51D0955}" not found Done: Success Removing product "Avira Update Manager" Key "HKEY_LOCAL_MACHINE\SOFTWARE\Avira\Internet Update Manager" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Avira Security Management Center Internet Update Manager" not found Key "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\eventlog\Application\Avira Update Manager" not found Name "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{37F8C02C-0551-4A80-9425-DE28BCB7FED3}" not found Key "HKEY_CLASSES_ROOT\TypeLib\{B8551571-FB28-4400-B3DC-CB95B05946BD}" not found Key "HKEY_CLASSES_ROOT\CLSID\{1A078301-72EC-49E6-959D-BE4ADE04E1AC}" not found Key "HKEY_CLASSES_ROOT\CLSID\{5B9C25F2-8924-4B27-B3C2-4CAC1EB1B88D}" not found Key "HKEY_CLASSES_ROOT\CLSID\{A2FCF1EA-A318-41C3-AD0D-BAF2DAF4CF6A}" not found Key "HKEY_CLASSES_ROOT\CLSID\{E5B9BD25-1933-47C9-9CDE-75DA86D2CC01}" not found Key "HKEY_CLASSES_ROOT\TypeLib\{B8551571-FB28-4400-B3DC-CB95B05946BD}" not found Key "HKEY_CURRENT_USER\Software\Avira\Internet Update Manager Frontend" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{B8551571-FB28-4400-B3DC-CB95B05946BD}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A078301-72EC-49E6-959D-BE4ADE04E1AC}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5B9C25F2-8924-4B27-B3C2-4CAC1EB1B88D}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A2FCF1EA-A318-41C3-AD0D-BAF2DAF4CF6A}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E5B9BD25-1933-47C9-9CDE-75DA86D2CC01}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{B806F1A7-6278-405A-ABE4-E1AA3A3A550B}" deleted Key "HKEY_LOCAL_MACHINE\SOFTWARE\Avira\Internet Update Manager Frontend" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{5B9C25F2-8924-4B27-B3C2-4CAC1EB1B88D}" not found Key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1A1A81B3-2D24-459D-B524-5AE2774D57DA}" not found Name "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{69C36F76-4A6C-44EF-9820-909B9FD83D18}" not found Done: Success Ich soll meinen Rechner im abgesichterten Modus nochmal starten. Wie mache ich denn das? |
29.07.2015, 13:49 | #23 |
/// TB-Ausbilder | Virusbefall auf externer Festplatte und nun auf dem Notebook? Rechner Neustarten und während des Startvorgangs die Taste F8 drücken, dann erscheinen die erweiterten Startoptionen:
__________________ Lerne, zurück zu schlagen und unterstütze uns! TB Akademie | Spende | Lob & Kritik |
29.07.2015, 14:58 | #24 |
| Virusbefall auf externer Festplatte und nun auf dem Notebook? Habe Avira deinstalliert, dann von computerbild neu heruntergeladen und den Computer neu gestartet. Dennoch bleibt die Fehlermeldung und die Geschwindigkeit des Computers gleich. |
29.07.2015, 15:04 | #25 |
/// TB-Ausbilder | Virusbefall auf externer Festplatte und nun auf dem Notebook? Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter cmd: netsh int ip reset cmd: netsh winsock reset Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Schau mal obs dadurch besser wird. Ansonsten mal bitte diesen Hotfix probieren: Microsoft Support
__________________ Lerne, zurück zu schlagen und unterstütze uns! TB Akademie | Spende | Lob & Kritik |
29.07.2015, 15:49 | #26 |
| Virusbefall auf externer Festplatte und nun auf dem Notebook? Ich hab die Hotfix auf dem Laufwerk C: entpacken lassen und den Computer neugestartet, aber einen Unterschied sehe ich nicht. |
30.07.2015, 08:00 | #27 |
/// TB-Ausbilder | Virusbefall auf externer Festplatte und nun auf dem Notebook? Du hast die darin befindliche .msu Datei aber schon doppelt angeklickt ?
__________________ Lerne, zurück zu schlagen und unterstütze uns! TB Akademie | Spende | Lob & Kritik |
30.07.2015, 08:45 | #28 |
| Virusbefall auf externer Festplatte und nun auf dem Notebook? So, jetzt ist der Fehler behoben, hatte das natürlich nicht gemacht. Vielen Dank! Müsste jetzt noch schauen, wie es mit dem Tempo des Computers ist. |
30.07.2015, 09:22 | #29 |
/// TB-Ausbilder | Virusbefall auf externer Festplatte und nun auf dem Notebook?
__________________ Lerne, zurück zu schlagen und unterstütze uns! TB Akademie | Spende | Lob & Kritik |
04.08.2015, 09:10 | #30 |
| Virusbefall auf externer Festplatte und nun auf dem Notebook? Vielen Dank! Ich habe alle Schritte durchgeführt. Wenn ich wieder (oder immer noch) Probleme haben sollte, öffne ich ein neues Thema. Hi, ich habe jetzt da Java Script gelöscht oder deaktiviert wurde, ein Problem mit meinem Facebook Account. Wo kann ich Java Script sicher herunterladen? Danke! |
Themen zu Virusbefall auf externer Festplatte und nun auf dem Notebook? |
beschädigt, conduitsearch, conduitsearch entfernen, fehlermeldung, festplatte, festplatten, nicht mehr, notebook, pup.optional.bandoo.a, pup.optional.conduit.a, pup.optional.crossrider.a, pup.optional.dvdvideosofttb.a, pup.optional.mediabuzz.a, pup.optional.mediaview.a, pup.optional.mediaviewer.a, pup.optional.mediawatch.a, pup.optional.softonic.a, pup.optional.trustmediaviewer.a, pup.optional.videoplayer.a, screenshot, verändert, windows 7, wirklich |