|
Antiviren-, Firewall- und andere Schutzprogramme: Plus NetworkWindows 7 Sämtliche Fragen zur Bedienung von Firewalls, Anti-Viren Programmen, Anti Malware und Anti Trojaner Software sind hier richtig. Dies ist ein Diskussionsforum für Sicherheitslösungen für Windows Rechner. Benötigst du Hilfe beim Trojaner entfernen oder weil du dir einen Virus eingefangen hast, erstelle ein Thema in den oberen Bereinigungsforen. |
17.08.2015, 17:33 | #1 |
| Plus Network Hallo ryder, hier ist meine Antwort. Ich sollte dir den Inhalt mit meiner nächsten Antwort posten:AdwCleaner Logfile: Code:
ATTFilter # AdwCleaner v5.000 - Logfile created 17/08/2015 at 18:01:28 # Updated 14/08/2015 by Xplode # Database : 2015-08-16.2 [Server] # Operating system : Windows 7 Professional Service Pack 1 (x64) # Username : Oberacker - OBERACKER-PC # Running from : C:\Users\Oberacker\Desktop\AdwCleaner_5.000.exe # Option : Cleaning ***** [ Services ] ***** [-] Service Deleted : {21491f5b-6276-4e3c-b27f-5a32e6bfda48}Gw64 [-] Service Deleted : {6dd55e9a-3d06-4d70-b5e7-05fc3e0a3d66}Gw64 [-] Service Deleted : {848705a5-8a27-403e-9b59-732d0608bcbc}Gw64 [-] Service Deleted : scfd_1_10_0_16 [-] Service Deleted : 23cb3056 ***** [ Folders ] ***** [-] Folder Deleted : C:\Program Files (x86)\Crossbrowse [-] Folder Deleted : C:\Program Files (x86)\LighterModulator [-] Folder Deleted : C:\Program Files (x86)\AnySend [-] Folder Deleted : C:\Program Files (x86)\HighlightSearches [-] Folder Deleted : C:\Program Files (x86)\app_setup [-] Folder Deleted : C:\Program Files (x86)\bestadblocker [-] Folder Deleted : C:\Program Files (x86)\PriceMinus [-] Folder Deleted : C:\Program Files (x86)\ConnectPC [-] Folder Deleted : C:\Program Files (x86)\Fragile Fixer [-] Folder Deleted : C:\Program Files (x86)\Edu App [!] Folder Not Deleted : C:\Program Files (x86)\bestadblocker [!] Folder Not Deleted : C:\Program Files (x86)\LighterModulator [-] Folder Deleted : C:\Program Files (x86)\Priceless [!] Folder Not Deleted : C:\Program Files (x86)\PriceMiNus [-] Folder Deleted : C:\ProgramData\Browser [-] Folder Deleted : C:\ProgramData\NavRight [-] Folder Deleted : C:\ProgramData\DesktopSearch [!] Folder Not Deleted : C:\ProgramData\DesktopSearch [-] Folder Deleted : C:\ProgramData\5367101447658642785 [-] Folder Deleted : C:\ProgramData\{40379965-111a-1893-4037-799651116594} [-] Folder Deleted : C:\ProgramData\{aeb827bc-156d-4235-aeb8-827bc1569ef0} [-] Folder Deleted : C:\ProgramData\hjnhmgnbmhbojgecldcnamhdpledgjkc [-] Folder Deleted : C:\ProgramData\nifdeocakbfmbcipgnpeoobadgeocodl [-] Folder Deleted : C:\ProgramData\paieeneblknmjfhcjekdccndhcnliaek [-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse [-] Folder Deleted : C:\Users\Oberacker\SupTab [-] Folder Deleted : C:\Users\Oberacker\AppData\Local\globalUpdate [-] Folder Deleted : C:\Users\Oberacker\AppData\Local\Crossbrowse [-] Folder Deleted : C:\Users\Oberacker\AppData\Local\C055B2AD-1432623366-DD11-A9C4-8F8657D1D855 [-] Folder Deleted : C:\Users\Oberacker\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd [-] Folder Deleted : C:\Users\Oberacker\AppData\LocalLow\SmartWeb [-] Folder Deleted : C:\Users\Oberacker\AppData\Roaming\AnyProtectEx [-] Folder Deleted : C:\Users\Oberacker\AppData\Roaming\OpenCandy [-] Folder Deleted : C:\Users\Oberacker\AppData\Roaming\Microsoft\Windows\Start Menu\Desktop Search [-] Folder Deleted : C:\Windows\SysWOW64\config\systemprofile\AppData\Local\abengine ***** [ Files ] ***** [-] File Deleted : C:\END [-] File Deleted : C:\Users\Oberacker\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fcfenmboojpjinhpgggodefccipikbpd_0.localstorage [-] File Deleted : C:\Users\Oberacker\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\crossbrowse.lnk [-] File Deleted : C:\Users\Oberacker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\crossbrowse.lnk [-] File Deleted : C:\Users\Oberacker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk [-] File Deleted : C:\Windows\Sysnative\abengine64.dll [-] File Deleted : C:\Windows\Sysnative\abengineOff.ini [-] File Deleted : C:\Windows\SysWOW64\abengineOff.ini ***** [ Shortcuts ] ***** [-] Shortcut Disinfected : C:\Users\Oberacker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk [-] Shortcut Disinfected : C:\Users\Oberacker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk ***** [ Scheduled tasks ] ***** [-] Task Deleted : AmiUpdXp [-] Task Deleted : APSnotifierPP1 [-] Task Deleted : APSnotifierPP2 [-] Task Deleted : APSnotifierPP3 [-] Task Deleted : Crossbrowse [-] Task Deleted : Optimizer Pro Schedule [-] Task Deleted : iren3006 [-] Task Deleted : LaunchPreSignup [-] Task Deleted : amiupdaterExd [-] Task Deleted : amiupdaterExi [-] Task Deleted : Periodic Synchronize Task [-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-1-6 [-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-1-7 [-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-10_user [-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-3 [-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-5 [-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-5_user [-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-6 [-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-7 [-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-1-6 [-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-1-7 [-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-10_user [-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-3 [-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-5 [-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-5_user [-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-6 [-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-7 [-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-1-6 [-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-1-7 [-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-10_user [-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-3 [-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-5 [-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-5_user [-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-6 [-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-7 [-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-1-6 [-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-1-7 [-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-10_user [-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-3 [-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-5 [-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-5_user [-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-6 [-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-7 ***** [ Registry ] ***** [-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10 [-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4 [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Mediaplayer\Shiminclusionlist\crossbrowse.exe [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\abengine.EXE [-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\abengine [-] Key Deleted : HKLM\SOFTWARE\Classes\CRSBRWSHTML [-] Key Deleted : HKLM\SOFTWARE\Clients\StartMenuInternet\Crossbrowse [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\crossbrowse.exe [-] Value Deleted : HKLM\SOFTWARE\Classes\.htm\OpenWithProgids [CRSBRWSHTML] [-] Value Deleted : HKLM\SOFTWARE\Classes\.html\OpenWithProgids [CRSBRWSHTML] [-] Value Deleted : HKLM\SOFTWARE\RegisteredApplications [Crossbrowse] [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\globalupdate.exe [-] Value Deleted : HKLM\SOFTWARE\Classes\.xht\OpenWithProgIDs [CRSBRWSHTML] [-] Value Deleted : HKLM\SOFTWARE\Classes\.webp\OpenWithProgIDs [CRSBRWSHTML] [-] Value Deleted : HKLM\SOFTWARE\Classes\.shtml\OpenWithProgIDs [CRSBRWSHTML] [-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mbot_de_637] [-] Key Deleted : HKCU\Software\a32fa5d8d99facda4e95f29eca0b566d [-] Key Deleted : HKLM\SOFTWARE\354f0073-ee48-39d4-99d8-044aeb938c5e [-] Key Deleted : HKLM\SOFTWARE\a01ec4dc-2868-4d29-8a97-72566705b133 [-] Key Deleted : HKLM\SOFTWARE\e1b850fc-0319-4501-93ea-3020b91f6b13 [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{f6d5a24} [-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaafeopjhkcolncjbedbhofpocmdbn [-] Key Deleted : HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492} [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52} [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6EDBF8C0-C94C-4A13-956F-E393BCA5BA4B} [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB} [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5} [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4AEC2270-2E5F-40C8-BE5A-E5A5264714C0} [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{52E8E39B-2773-448F-BC20-547CD8DA4685} [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{62163814-0C94-4DC3-BA99-5E9E2420C914} [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{68AEA825-D48B-4A56-87F0-6FCE988A2C48} [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6A0F07D3-F28E-4F45-8D4C-BBF8000F5BB8} [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{7AF435BC-80A9-466E-938B-32E4482EBD65} [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{85CEBABD-A775-41E2-8B67-FE06104F06ED} [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AE92A5AB-E575-4487-BCC0-96D333E5346C} [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C622315B-3049-43D4-9B41-D4B2DC2CD706} [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{CDB85458-AE08-4106-B699-B946FF4A61CD} [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{025EEF9C-90F5-417E-9196-09FA4AAB4C92} [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03F13205-38FF-4361-BECE-EE939A002FA2} [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1FAAF6AB-B931-4D05-BA12-B0ECCCCE2D0F} [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EAC7DE5C-9520-435D-91AA-4A02E4773CEA} [-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66} [-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{1BCB34DC-BA6D-4B44-B786-4E259598A7C8} [-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{B0660298-91AA-421F-BF0D-BFF6BB8BF3AE} [-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8415E549-C9A7-42AA-9CA2-1FAE7F485432} [-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{96BB8E60-6EF9-47E0-9ED8-4AD477ECF427} [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298} [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A} [-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}] [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB} [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5} [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4AEC2270-2E5F-40C8-BE5A-E5A5264714C0} [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{52E8E39B-2773-448F-BC20-547CD8DA4685} [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{62163814-0C94-4DC3-BA99-5E9E2420C914} [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{68AEA825-D48B-4A56-87F0-6FCE988A2C48} [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{6A0F07D3-F28E-4F45-8D4C-BBF8000F5BB8} [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{7AF435BC-80A9-466E-938B-32E4482EBD65} [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{85CEBABD-A775-41E2-8B67-FE06104F06ED} [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{AE92A5AB-E575-4487-BCC0-96D333E5346C} [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C622315B-3049-43D4-9B41-D4B2DC2CD706} [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{CDB85458-AE08-4106-B699-B946FF4A61CD} [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{025EEF9C-90F5-417E-9196-09FA4AAB4C92} [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03F13205-38FF-4361-BECE-EE939A002FA2} [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1FAAF6AB-B931-4D05-BA12-B0ECCCCE2D0F} [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EAC7DE5C-9520-435D-91AA-4A02E4773CEA} [-] Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} [-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\Software\_CrossriderRegNamePlaceHolder_ [-] Key Deleted : HKCU\Software\AnyProtect [-] Key Deleted : HKCU\Software\InstalledBrowserExtensions [-] Key Deleted : HKCU\Software\MyBestOffersToday [-] Key Deleted : HKCU\Software\OCS [-] Key Deleted : HKCU\Software\powerpack [-] Key Deleted : HKCU\Software\simplytech [-] Key Deleted : HKCU\Software\Crossbrowse [-] Key Deleted : HKCU\Software\YorkNewCin [-] Key Deleted : HKCU\Software\sidecom [-] Key Deleted : HKCU\Software\Edu App [-] Key Deleted : HKCU\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} [-] Key Deleted : HKCU\Software\AppDataLow\Software\SmartWeb [-] Key Deleted : HKLM\SOFTWARE\AppDataLow\SOFTWARE\_CrossriderRegNamePlaceHolder_ [-] Key Deleted : HKLM\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81} [-] Key Deleted : HKLM\SOFTWARE\TabNav [-] Key Deleted : HKLM\SOFTWARE\Crossbrowse [-] Key Deleted : HKLM\SOFTWARE\Edu App [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdater [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Crossbrowse [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Linkey [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{06B99631-BFA2-3B7A-F58B-D067C2BA59B7} [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC} [!] Key Not Deleted : [x64] HKCU\Software\AnyProtect [!] Key Not Deleted : [x64] HKCU\Software\InstalledBrowserExtensions [!] Key Not Deleted : [x64] HKCU\Software\MyBestOffersToday [!] Key Not Deleted : [x64] HKCU\Software\OCS [!] Key Not Deleted : [x64] HKCU\Software\powerpack [!] Key Not Deleted : [x64] HKCU\Software\simplytech [!] Key Not Deleted : [x64] HKCU\Software\Crossbrowse [!] Key Not Deleted : [x64] HKCU\Software\YorkNewCin [!] Key Not Deleted : [x64] HKCU\Software\sidecom [!] Key Not Deleted : [x64] HKCU\Software\Edu App [!] Key Not Deleted : [x64] HKCU\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\GLOBALUPDATE.EXE [-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page] [-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] [-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] [-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL] [-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] [-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] [-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] [-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] [-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] [-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] [-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] [-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] [-] Data Restored : HKU\S-1-5-21-3096738606-605287095-13954992-1001\Software\Microsoft\Internet Explorer\Main [Search Page] [-] Data Restored : HKU\S-1-5-21-3096738606-605287095-13954992-1001\Software\Microsoft\Internet Explorer\Main [Start Page] [-] Data Restored : HKU\S-1-5-21-3096738606-605287095-13954992-1001\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] [-] Data Restored : HKU\S-1-5-21-3096738606-605287095-13954992-1001\Software\Microsoft\Internet Explorer\Main [Default_Search_URL] [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] [!] Key Not Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C} [!] Key Not Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [-] Data Restored : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] [!] Key Not Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} [!] Key Not Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} [!] Key Not Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C} [-] Data Restored : HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command [] ***** [ Web browsers ] ***** ************************* :: Proxy settings cleared :: Winsock settings cleared !! Unable to delete Internet Explorer policies :: Chrome policies deleted ************************* C:\AdwCleaner[C1].txt - [17987 octets] - [17/08/2015 18:01:28] C:\AdwCleaner[S1].txt - [19853 octets] - [17/08/2015 17:57:45] ########## EOF - C:\AdwCleaner[C1].txt - [18115 octets] ########## |
17.08.2015, 17:46 | #2 |
| Plus Network Hi,
__________________worauf bezieht sich deine Antwort? Link zum alten Thread, wenn es denn einen gibt? |
17.08.2015, 17:54 | #3 |
| Alter Link http://www.trojaner-board.de/131451-...er-gefahr.html
__________________attach: . UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG. IF REQUESTED, ZIP IT UP & ATTACH IT .DDS Logfile: Code:
ATTFilter DDS (Ver_2012-11-20.01) . Microsoft Windows 7 Professional Boot Device: \Device\HarddiskVolume1 Install Date: 12.06.2014 16:04:05 System Uptime: 17.08.2015 18:07:33 (0 hours ago) . Motherboard: Acer | | BigBear2 Processor: Intel(R) Core(TM)2 Duo CPU T6400 @ 2.00GHz | U2E1 | 2000/200mhz . ==== Disk Partitions ========================= . C: is FIXED (NTFS) - 149 GiB total, 12,371 GiB free. D: is CDROM () E: is Removable . ==== Disabled Device Manager Items ============= . Class GUID: {4d36e972-e325-11ce-bfc1-08002be10318} Description: Microsoft-Teredo-Tunneling-Adapter Device ID: ROOT\*TEREDO\0000 Manufacturer: Microsoft Name: Teredo Tunneling Pseudo-Interface PNP Device ID: ROOT\*TEREDO\0000 Service: tunnel . Class GUID: Description: Device ID: ACPI\WEC1040\4&1912E939&0 Manufacturer: Name: PNP Device ID: ACPI\WEC1040\4&1912E939&0 Service: . ==== System Restore Points =================== . RP152: 17.08.2015 14:58:35 - Geplanter Prüfpunkt . ==== Installed Programs ====================== . Adobe Flash Player 18 ActiveX Adobe Flash Player 18 NPAPI Adobe Reader 9 - Deutsch Akamai NetSession Interface Avira Avira Antivirus BlueStacks App Player BlueStacks Notification Center Canon MG5300 series MP Drivers Counter-Strike: Global Offensive Garry's Mod Google Chrome Google Update Helper League of Legends Metric Collection SDK 35 Microsoft .NET Framework 4.5.1 (DEU) Microsoft .NET Framework 4.5.1 (Deutsch) Microsoft .NET Framework 4.5.2 Microsoft ASP.NET MVC 4 Runtime Microsoft Office 2007 Service Pack 3 (SP3) Microsoft Office Access MUI (German) 2007 Microsoft Office Excel MUI (German) 2007 Microsoft Office File Validation Add-In Microsoft Office InfoPath MUI (German) 2007 Microsoft Office Live Add-in 1.5 Microsoft Office Office 64-bit Components 2007 Microsoft Office Outlook MUI (German) 2007 Microsoft Office PowerPoint MUI (German) 2007 Microsoft Office Professional Plus 2007 Microsoft Office Proof (English) 2007 Microsoft Office Proof (French) 2007 Microsoft Office Proof (German) 2007 Microsoft Office Proof (Italian) 2007 Microsoft Office Proofing (German) 2007 Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) Microsoft Office Publisher MUI (German) 2007 Microsoft Office Shared 64-bit MUI (German) 2007 Microsoft Office Shared MUI (German) 2007 Microsoft Office Word MUI (German) 2007 Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 Minecraft Norton Security NVIDIA GeForce Experience 2.4.3.22 NVIDIA GeForce Experience Service NVIDIA Grafiktreiber 341.44 NVIDIA HD-Audiotreiber 1.3.30.1 NVIDIA Install Application NVIDIA LED Visualizer 1.0 NVIDIA Network Service NVIDIA PhysX NVIDIA PhysX-Systemsoftware 9.13.1220 NVIDIA ShadowPlay 2.4.3.22 NVIDIA Systemsteuerung 341.44 NVIDIA Update 2.4.3.22 NVIDIA Update Core NVIDIA Virtual Audio 1.2.27 Security Update for Microsoft Office 2007 suites (KB2596650) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2687409) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2687439) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2760585) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2760591) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2817330) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2825645) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2837610) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2880507) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2880508) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2881069) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2920795) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB3054888) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB3054890) 32-Bit Edition Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB2863812) 32-Bit Edition Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB2965208) 32-Bit Edition Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB2986254) 32-Bit Edition Security Update for Microsoft Office Excel 2007 (KB3054992) 32-Bit Edition Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition Security Update for Microsoft Office PowerPoint 2007 (KB3055051) 32-Bit Edition Security Update for Microsoft Office Publisher 2007 (KB2817565) 32-Bit Edition Security Update for Microsoft Office Word 2007 (KB3055052) 32-Bit Edition SHIELD Streaming SHIELD Wireless Controller Driver Skype Click to Call Skype™ 7.6 Steam Update für Microsoft Office Excel 2007 Help (KB963678) Update für Microsoft Office Outlook 2007 Help (KB963677) Update für Microsoft Office Powerpoint 2007 Help (KB963669) Update für Microsoft Office Word 2007 Help (KB963665) Update for 2007 Microsoft Office System (KB967642) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2596787) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2965286) 32-Bit Edition Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition Update for Microsoft Office Outlook 2007 Junk Email Filter (KB3055023) 32-Bit Edition WinRAR 5.21 (64-Bit) . ==== End Of File =========================== dds:DDS Logfile: --- --- --- |
17.08.2015, 19:54 | #4 |
/// Malwareteam | Plus Network http://www.trojaner-board.de/69886-a...-beachten.html Durchlesen, verstehen, abarbeiten und einen neuen Thread aufmachen. Und gib einen Link hierher an. Jeder PC ist anders, deshalb bitte nicht blind anderen Themen nachmachen, auch wenn deine Infektion ähnliche Symptome hat. |
Themen zu Plus Network |
appdata, desktop, explorer, google, helper, iexplore.exe, image, internet, internet explorer, launch, logfile, microsoft, not, opera, plus network entfernen, proxy, registry, roaming, server, services, shell, software, start, system, tools, windows, winsock |