![]() |
| |||||||
Antiviren-, Firewall- und andere Schutzprogramme: Plus NetworkWindows 7 Sämtliche Fragen zur Bedienung von Firewalls, Anti-Viren Programmen, Anti Malware und Anti Trojaner Software sind hier richtig. Dies ist ein Diskussionsforum für Sicherheitslösungen für Windows Rechner. Benötigst du Hilfe beim Trojaner entfernen oder weil du dir einen Virus eingefangen hast, erstelle ein Thema in den oberen Bereinigungsforen. |
![]() |
| |
| | #1 |
| | Plus Network Hallo ryder, hier ist meine Antwort. Ich sollte dir den Inhalt mit meiner nächsten Antwort posten:AdwCleaner Logfile: Code:
ATTFilter # AdwCleaner v5.000 - Logfile created 17/08/2015 at 18:01:28
# Updated 14/08/2015 by Xplode
# Database : 2015-08-16.2 [Server]
# Operating system : Windows 7 Professional Service Pack 1 (x64)
# Username : Oberacker - OBERACKER-PC
# Running from : C:\Users\Oberacker\Desktop\AdwCleaner_5.000.exe
# Option : Cleaning
***** [ Services ] *****
[-] Service Deleted : {21491f5b-6276-4e3c-b27f-5a32e6bfda48}Gw64
[-] Service Deleted : {6dd55e9a-3d06-4d70-b5e7-05fc3e0a3d66}Gw64
[-] Service Deleted : {848705a5-8a27-403e-9b59-732d0608bcbc}Gw64
[-] Service Deleted : scfd_1_10_0_16
[-] Service Deleted : 23cb3056
***** [ Folders ] *****
[-] Folder Deleted : C:\Program Files (x86)\Crossbrowse
[-] Folder Deleted : C:\Program Files (x86)\LighterModulator
[-] Folder Deleted : C:\Program Files (x86)\AnySend
[-] Folder Deleted : C:\Program Files (x86)\HighlightSearches
[-] Folder Deleted : C:\Program Files (x86)\app_setup
[-] Folder Deleted : C:\Program Files (x86)\bestadblocker
[-] Folder Deleted : C:\Program Files (x86)\PriceMinus
[-] Folder Deleted : C:\Program Files (x86)\ConnectPC
[-] Folder Deleted : C:\Program Files (x86)\Fragile Fixer
[-] Folder Deleted : C:\Program Files (x86)\Edu App
[!] Folder Not Deleted : C:\Program Files (x86)\bestadblocker
[!] Folder Not Deleted : C:\Program Files (x86)\LighterModulator
[-] Folder Deleted : C:\Program Files (x86)\Priceless
[!] Folder Not Deleted : C:\Program Files (x86)\PriceMiNus
[-] Folder Deleted : C:\ProgramData\Browser
[-] Folder Deleted : C:\ProgramData\NavRight
[-] Folder Deleted : C:\ProgramData\DesktopSearch
[!] Folder Not Deleted : C:\ProgramData\DesktopSearch
[-] Folder Deleted : C:\ProgramData\5367101447658642785
[-] Folder Deleted : C:\ProgramData\{40379965-111a-1893-4037-799651116594}
[-] Folder Deleted : C:\ProgramData\{aeb827bc-156d-4235-aeb8-827bc1569ef0}
[-] Folder Deleted : C:\ProgramData\hjnhmgnbmhbojgecldcnamhdpledgjkc
[-] Folder Deleted : C:\ProgramData\nifdeocakbfmbcipgnpeoobadgeocodl
[-] Folder Deleted : C:\ProgramData\paieeneblknmjfhcjekdccndhcnliaek
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse
[-] Folder Deleted : C:\Users\Oberacker\SupTab
[-] Folder Deleted : C:\Users\Oberacker\AppData\Local\globalUpdate
[-] Folder Deleted : C:\Users\Oberacker\AppData\Local\Crossbrowse
[-] Folder Deleted : C:\Users\Oberacker\AppData\Local\C055B2AD-1432623366-DD11-A9C4-8F8657D1D855
[-] Folder Deleted : C:\Users\Oberacker\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd
[-] Folder Deleted : C:\Users\Oberacker\AppData\LocalLow\SmartWeb
[-] Folder Deleted : C:\Users\Oberacker\AppData\Roaming\AnyProtectEx
[-] Folder Deleted : C:\Users\Oberacker\AppData\Roaming\OpenCandy
[-] Folder Deleted : C:\Users\Oberacker\AppData\Roaming\Microsoft\Windows\Start Menu\Desktop Search
[-] Folder Deleted : C:\Windows\SysWOW64\config\systemprofile\AppData\Local\abengine
***** [ Files ] *****
[-] File Deleted : C:\END
[-] File Deleted : C:\Users\Oberacker\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fcfenmboojpjinhpgggodefccipikbpd_0.localstorage
[-] File Deleted : C:\Users\Oberacker\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\crossbrowse.lnk
[-] File Deleted : C:\Users\Oberacker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\crossbrowse.lnk
[-] File Deleted : C:\Users\Oberacker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk
[-] File Deleted : C:\Windows\Sysnative\abengine64.dll
[-] File Deleted : C:\Windows\Sysnative\abengineOff.ini
[-] File Deleted : C:\Windows\SysWOW64\abengineOff.ini
***** [ Shortcuts ] *****
[-] Shortcut Disinfected : C:\Users\Oberacker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[-] Shortcut Disinfected : C:\Users\Oberacker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
***** [ Scheduled tasks ] *****
[-] Task Deleted : AmiUpdXp
[-] Task Deleted : APSnotifierPP1
[-] Task Deleted : APSnotifierPP2
[-] Task Deleted : APSnotifierPP3
[-] Task Deleted : Crossbrowse
[-] Task Deleted : Optimizer Pro Schedule
[-] Task Deleted : iren3006
[-] Task Deleted : LaunchPreSignup
[-] Task Deleted : amiupdaterExd
[-] Task Deleted : amiupdaterExi
[-] Task Deleted : Periodic Synchronize Task
[-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-1-6
[-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-1-7
[-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-10_user
[-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-3
[-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-5
[-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-5_user
[-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-6
[-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-7
[-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-1-6
[-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-1-7
[-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-10_user
[-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-3
[-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-5
[-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-5_user
[-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-6
[-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-7
[-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-1-6
[-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-1-7
[-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-10_user
[-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-3
[-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-5
[-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-5_user
[-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-6
[-] Task Deleted : 59e31bc9-32bd-45da-b88e-b1c3077f9375-7
[-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-1-6
[-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-1-7
[-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-10_user
[-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-3
[-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-5
[-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-5_user
[-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-6
[-] Task Deleted : 8efae85f-634a-48e7-a956-8614fbd2713b-7
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
[-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Mediaplayer\Shiminclusionlist\crossbrowse.exe
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\abengine.EXE
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\abengine
[-] Key Deleted : HKLM\SOFTWARE\Classes\CRSBRWSHTML
[-] Key Deleted : HKLM\SOFTWARE\Clients\StartMenuInternet\Crossbrowse
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\crossbrowse.exe
[-] Value Deleted : HKLM\SOFTWARE\Classes\.htm\OpenWithProgids [CRSBRWSHTML]
[-] Value Deleted : HKLM\SOFTWARE\Classes\.html\OpenWithProgids [CRSBRWSHTML]
[-] Value Deleted : HKLM\SOFTWARE\RegisteredApplications [Crossbrowse]
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\globalupdate.exe
[-] Value Deleted : HKLM\SOFTWARE\Classes\.xht\OpenWithProgIDs [CRSBRWSHTML]
[-] Value Deleted : HKLM\SOFTWARE\Classes\.webp\OpenWithProgIDs [CRSBRWSHTML]
[-] Value Deleted : HKLM\SOFTWARE\Classes\.shtml\OpenWithProgIDs [CRSBRWSHTML]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mbot_de_637]
[-] Key Deleted : HKCU\Software\a32fa5d8d99facda4e95f29eca0b566d
[-] Key Deleted : HKLM\SOFTWARE\354f0073-ee48-39d4-99d8-044aeb938c5e
[-] Key Deleted : HKLM\SOFTWARE\a01ec4dc-2868-4d29-8a97-72566705b133
[-] Key Deleted : HKLM\SOFTWARE\e1b850fc-0319-4501-93ea-3020b91f6b13
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{f6d5a24}
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaafeopjhkcolncjbedbhofpocmdbn
[-] Key Deleted : HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6EDBF8C0-C94C-4A13-956F-E393BCA5BA4B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4AEC2270-2E5F-40C8-BE5A-E5A5264714C0}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{52E8E39B-2773-448F-BC20-547CD8DA4685}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{62163814-0C94-4DC3-BA99-5E9E2420C914}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{68AEA825-D48B-4A56-87F0-6FCE988A2C48}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6A0F07D3-F28E-4F45-8D4C-BBF8000F5BB8}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{7AF435BC-80A9-466E-938B-32E4482EBD65}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{85CEBABD-A775-41E2-8B67-FE06104F06ED}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AE92A5AB-E575-4487-BCC0-96D333E5346C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C622315B-3049-43D4-9B41-D4B2DC2CD706}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{CDB85458-AE08-4106-B699-B946FF4A61CD}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{025EEF9C-90F5-417E-9196-09FA4AAB4C92}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03F13205-38FF-4361-BECE-EE939A002FA2}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1FAAF6AB-B931-4D05-BA12-B0ECCCCE2D0F}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EAC7DE5C-9520-435D-91AA-4A02E4773CEA}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{1BCB34DC-BA6D-4B44-B786-4E259598A7C8}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{B0660298-91AA-421F-BF0D-BFF6BB8BF3AE}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8415E549-C9A7-42AA-9CA2-1FAE7F485432}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{96BB8E60-6EF9-47E0-9ED8-4AD477ECF427}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}]
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4AEC2270-2E5F-40C8-BE5A-E5A5264714C0}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{52E8E39B-2773-448F-BC20-547CD8DA4685}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{62163814-0C94-4DC3-BA99-5E9E2420C914}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{68AEA825-D48B-4A56-87F0-6FCE988A2C48}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{6A0F07D3-F28E-4F45-8D4C-BBF8000F5BB8}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{7AF435BC-80A9-466E-938B-32E4482EBD65}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{85CEBABD-A775-41E2-8B67-FE06104F06ED}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{AE92A5AB-E575-4487-BCC0-96D333E5346C}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C622315B-3049-43D4-9B41-D4B2DC2CD706}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{CDB85458-AE08-4106-B699-B946FF4A61CD}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{025EEF9C-90F5-417E-9196-09FA4AAB4C92}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03F13205-38FF-4361-BECE-EE939A002FA2}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1FAAF6AB-B931-4D05-BA12-B0ECCCCE2D0F}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EAC7DE5C-9520-435D-91AA-4A02E4773CEA}
[-] Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}
[-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\Software\_CrossriderRegNamePlaceHolder_
[-] Key Deleted : HKCU\Software\AnyProtect
[-] Key Deleted : HKCU\Software\InstalledBrowserExtensions
[-] Key Deleted : HKCU\Software\MyBestOffersToday
[-] Key Deleted : HKCU\Software\OCS
[-] Key Deleted : HKCU\Software\powerpack
[-] Key Deleted : HKCU\Software\simplytech
[-] Key Deleted : HKCU\Software\Crossbrowse
[-] Key Deleted : HKCU\Software\YorkNewCin
[-] Key Deleted : HKCU\Software\sidecom
[-] Key Deleted : HKCU\Software\Edu App
[-] Key Deleted : HKCU\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885}
[-] Key Deleted : HKCU\Software\AppDataLow\Software\SmartWeb
[-] Key Deleted : HKLM\SOFTWARE\AppDataLow\SOFTWARE\_CrossriderRegNamePlaceHolder_
[-] Key Deleted : HKLM\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}
[-] Key Deleted : HKLM\SOFTWARE\TabNav
[-] Key Deleted : HKLM\SOFTWARE\Crossbrowse
[-] Key Deleted : HKLM\SOFTWARE\Edu App
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdater
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Crossbrowse
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Linkey
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{06B99631-BFA2-3B7A-F58B-D067C2BA59B7}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}
[!] Key Not Deleted : [x64] HKCU\Software\AnyProtect
[!] Key Not Deleted : [x64] HKCU\Software\InstalledBrowserExtensions
[!] Key Not Deleted : [x64] HKCU\Software\MyBestOffersToday
[!] Key Not Deleted : [x64] HKCU\Software\OCS
[!] Key Not Deleted : [x64] HKCU\Software\powerpack
[!] Key Not Deleted : [x64] HKCU\Software\simplytech
[!] Key Not Deleted : [x64] HKCU\Software\Crossbrowse
[!] Key Not Deleted : [x64] HKCU\Software\YorkNewCin
[!] Key Not Deleted : [x64] HKCU\Software\sidecom
[!] Key Not Deleted : [x64] HKCU\Software\Edu App
[!] Key Not Deleted : [x64] HKCU\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\GLOBALUPDATE.EXE
[-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
[-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
[-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
[-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
[-] Data Restored : HKU\S-1-5-21-3096738606-605287095-13954992-1001\Software\Microsoft\Internet Explorer\Main [Search Page]
[-] Data Restored : HKU\S-1-5-21-3096738606-605287095-13954992-1001\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Restored : HKU\S-1-5-21-3096738606-605287095-13954992-1001\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] Data Restored : HKU\S-1-5-21-3096738606-605287095-13954992-1001\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[!] Key Not Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}
[!] Key Not Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[-] Data Restored : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[!] Key Not Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}
[!] Key Not Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
[!] Key Not Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}
[-] Data Restored : HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command []
***** [ Web browsers ] *****
*************************
:: Proxy settings cleared
:: Winsock settings cleared
!! Unable to delete Internet Explorer policies
:: Chrome policies deleted
*************************
C:\AdwCleaner[C1].txt - [17987 octets] - [17/08/2015 18:01:28]
C:\AdwCleaner[S1].txt - [19853 octets] - [17/08/2015 17:57:45]
########## EOF - C:\AdwCleaner[C1].txt - [18115 octets] ##########
|
| | #2 |
![]() ![]() | Plus Network Hi,
__________________worauf bezieht sich deine Antwort? ![]() Link zum alten Thread, wenn es denn einen gibt? |
| | #3 |
| | Alter Link http://www.trojaner-board.de/131451-...er-gefahr.html
__________________attach: . UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG. IF REQUESTED, ZIP IT UP & ATTACH IT .DDS Logfile: Code:
ATTFilter DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 12.06.2014 16:04:05
System Uptime: 17.08.2015 18:07:33 (0 hours ago)
.
Motherboard: Acer | | BigBear2
Processor: Intel(R) Core(TM)2 Duo CPU T6400 @ 2.00GHz | U2E1 | 2000/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 149 GiB total, 12,371 GiB free.
D: is CDROM ()
E: is Removable
.
==== Disabled Device Manager Items =============
.
Class GUID: {4d36e972-e325-11ce-bfc1-08002be10318}
Description: Microsoft-Teredo-Tunneling-Adapter
Device ID: ROOT\*TEREDO\0000
Manufacturer: Microsoft
Name: Teredo Tunneling Pseudo-Interface
PNP Device ID: ROOT\*TEREDO\0000
Service: tunnel
.
Class GUID:
Description:
Device ID: ACPI\WEC1040\4&1912E939&0
Manufacturer:
Name:
PNP Device ID: ACPI\WEC1040\4&1912E939&0
Service:
.
==== System Restore Points ===================
.
RP152: 17.08.2015 14:58:35 - Geplanter Prüfpunkt
.
==== Installed Programs ======================
.
Adobe Flash Player 18 ActiveX
Adobe Flash Player 18 NPAPI
Adobe Reader 9 - Deutsch
Akamai NetSession Interface
Avira
Avira Antivirus
BlueStacks App Player
BlueStacks Notification Center
Canon MG5300 series MP Drivers
Counter-Strike: Global Offensive
Garry's Mod
Google Chrome
Google Update Helper
League of Legends
Metric Collection SDK 35
Microsoft .NET Framework 4.5.1 (DEU)
Microsoft .NET Framework 4.5.1 (Deutsch)
Microsoft .NET Framework 4.5.2
Microsoft ASP.NET MVC 4 Runtime
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Access MUI (German) 2007
Microsoft Office Excel MUI (German) 2007
Microsoft Office File Validation Add-In
Microsoft Office InfoPath MUI (German) 2007
Microsoft Office Live Add-in 1.5
Microsoft Office Office 64-bit Components 2007
Microsoft Office Outlook MUI (German) 2007
Microsoft Office PowerPoint MUI (German) 2007
Microsoft Office Professional Plus 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (German) 2007
Microsoft Office Proof (Italian) 2007
Microsoft Office Proofing (German) 2007
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Publisher MUI (German) 2007
Microsoft Office Shared 64-bit MUI (German) 2007
Microsoft Office Shared MUI (German) 2007
Microsoft Office Word MUI (German) 2007
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable (x64)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005
Minecraft
Norton Security
NVIDIA GeForce Experience 2.4.3.22
NVIDIA GeForce Experience Service
NVIDIA Grafiktreiber 341.44
NVIDIA HD-Audiotreiber 1.3.30.1
NVIDIA Install Application
NVIDIA LED Visualizer 1.0
NVIDIA Network Service
NVIDIA PhysX
NVIDIA PhysX-Systemsoftware 9.13.1220
NVIDIA ShadowPlay 2.4.3.22
NVIDIA Systemsteuerung 341.44
NVIDIA Update 2.4.3.22
NVIDIA Update Core
NVIDIA Virtual Audio 1.2.27
Security Update for Microsoft Office 2007 suites (KB2596650) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687409) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687439) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760585) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760591) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2817330) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2825645) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2837610) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2880507) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2880508) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2881069) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2920795) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB3054888) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB3054890) 32-Bit Edition
Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB2863812) 32-Bit Edition
Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB2965208) 32-Bit Edition
Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB2986254) 32-Bit Edition
Security Update for Microsoft Office Excel 2007 (KB3054992) 32-Bit Edition
Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB3055051) 32-Bit Edition
Security Update for Microsoft Office Publisher 2007 (KB2817565) 32-Bit Edition
Security Update for Microsoft Office Word 2007 (KB3055052) 32-Bit Edition
SHIELD Streaming
SHIELD Wireless Controller Driver
Skype Click to Call
Skype™ 7.6
Steam
Update für Microsoft Office Excel 2007 Help (KB963678)
Update für Microsoft Office Outlook 2007 Help (KB963677)
Update für Microsoft Office Powerpoint 2007 Help (KB963669)
Update für Microsoft Office Word 2007 Help (KB963665)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596787) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2965286) 32-Bit Edition
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition
Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB3055023) 32-Bit Edition
WinRAR 5.21 (64-Bit)
.
==== End Of File ===========================
dds:DDS Logfile:
--- --- --- |
| | #4 |
| /// Malwareteam ![]() ![]() | Plus Network http://www.trojaner-board.de/69886-a...-beachten.html Durchlesen, verstehen, abarbeiten und einen neuen Thread aufmachen. Und gib einen Link hierher an. Jeder PC ist anders, deshalb bitte nicht blind anderen Themen nachmachen, auch wenn deine Infektion ähnliche Symptome hat. |
![]() |
| Themen zu Plus Network |
| appdata, desktop, explorer, google, helper, iexplore.exe, image, internet, internet explorer, launch, logfile, microsoft, not, opera, plus network entfernen, proxy, registry, roaming, server, services, shell, software, start, system, tools, windows, winsock |