|
Log-Analyse und Auswertung: Auf Link in Spam-/Scam Email geklicktWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
14.12.2024, 20:25 | #16 |
| Auf Link in Spam-/Scam Email geklickt Ich habe die Chocolatley GUI deinstalliert, ist damit das gesamte Chocolatley deinstalliert oder war das nur die Oberfläche? Ich denke, es passt soweit, bis auf dass KpRm nicht alles entfernt hat, aber das kann ich auch manuell machen. Eine Frage beschäftigt mich noch. Ist bei den Scans auch die Netzwerkfestplatte, welche an meiner Fritzbox dranhängt, gescannt worden? Könnte sich da theoretisch noch was eingenistet haben, oder sogar im Router? Oder wäre das komplett abwegig? Ansonsten tausend Dank für deine mega Arbeit hier!!! Geändert von leoberg (14.12.2024 um 20:44 Uhr) |
15.12.2024, 11:46 | #17 | ||
/// TB-Ausbilder | Auf Link in Spam-/Scam Email geklicktZitat:
Cosinus ist ein Fan davon. Ich bitte ihn, sich hier zu melden. Zitat:
Dazu muss man externe Datenträger vor dem Scanbeginn auswählen. Es gibt Malware, die Router infizieren. Diese sind aber selten. Dann würde man aber entsprechende Einstellungen im Router bzw. in FRST sehen. Geändert von M-K-D-B (15.12.2024 um 15:49 Uhr) |
15.12.2024, 11:58 | #18 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Auf Link in Spam-/Scam Email geklickt Die GUI ist nur die grafische Ausgabe und für den Betrieb von choco nicht erforderlich.
__________________Ich schlage vor du startest choco von der Konsole aus, cmd.exe als Admin ausführen, dort das hier eintippen und ausführen: Code:
ATTFilter choco upgrade all -y
__________________ |
15.12.2024, 17:44 | #19 | |
| Auf Link in Spam-/Scam Email geklicktZitat:
Hallo cosinus Code:
ATTFilter Chocolatey v1.3.1 This is try 1/3. Retrying after 300 milliseconds. Error converted to warning: Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\choco.exe.old" wurde verweigert. This is try 2/3. Retrying after 400 milliseconds. Error converted to warning: Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\choco.exe.old" wurde verweigert. Maximum tries of 3 reached. Throwing error. Chocolatey detected you are not running from an elevated command shell (cmd/powershell). You may experience errors - many functions/packages require admin rights. Only advanced users should run choco w/out an elevated shell. When you open the command shell, you should ensure that you do so with "Run as Administrator" selected. If you are attempting to use Chocolatey in a non-administrator setting, you must select a different location other than the default install location. See https://docs.chocolatey.org/en-us/choco/setup#non-administrative-install for details. For the question below, you have 20 seconds to make a selection. Do you want to continue?([Y]es/[N]o): Timeout or your choice of '' is not a valid selection. Upgrading the following packages: all By upgrading, you accept licenses for the packages. You have 7zip.install v22.1 installed. Version 24.9.0 is available based on your source(s). This is try 1/3. Retrying after 300 milliseconds. Error converted to warning: (5) Zugriff verweigert: [\\?\C:\ProgramData\chocolatey\lib-bkp\7zip.install] This is try 2/3. Retrying after 400 milliseconds. Error converted to warning: (5) Zugriff verweigert: [\\?\C:\ProgramData\chocolatey\lib-bkp\7zip.install] Maximum tries of 3 reached. Throwing error. This is try 1/3. Retrying after 300 milliseconds. Error converted to warning: Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib-bkp\7zip.install" wurde verweigert. This is try 2/3. Retrying after 400 milliseconds. Error converted to warning: Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib-bkp\7zip.install" wurde verweigert. Maximum tries of 3 reached. Throwing error. This is try 1/3. Retrying after 300 milliseconds. Error converted to warning: Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib-bkp\7zip.install" wurde verweigert. This is try 2/3. Retrying after 400 milliseconds. Error converted to warning: Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib-bkp\7zip.install" wurde verweigert. Maximum tries of 3 reached. Throwing error. This is try 1/3. Retrying after 300 milliseconds. Error converted to warning: Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib-bkp\7zip.install" wurde verweigert. This is try 2/3. Retrying after 400 milliseconds. Error converted to warning: Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib-bkp\7zip.install" wurde verweigert. Maximum tries of 3 reached. Throwing error. This is try 1/3. Retrying after 300 milliseconds. Error converted to warning: Der Zugriff auf den Pfad wurde verweigert. This is try 2/3. Retrying after 400 milliseconds. Error converted to warning: Der Zugriff auf den Pfad wurde verweigert. Maximum tries of 3 reached. Throwing error. Error during backup (move phase): Der Zugriff auf den Pfad wurde verweigert. Directory 'C:\ProgramData\chocolatey\lib-bkp\7zip.install' does not exist. This is try 1/3. Retrying after 300 milliseconds. Error converted to warning: Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib\7zip.install\tools\chocolateyInstall.ps1" wurde verweigert. This is try 2/3. Retrying after 400 milliseconds. Error converted to warning: Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib\7zip.install\tools\chocolateyInstall.ps1" wurde verweigert. Maximum tries of 3 reached. Throwing error. Error during backup (reset phase): Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib\7zip.install\tools\chocolateyInstall.ps1" wurde verweigert. There was an error accessing files. This could mean there is a process locking the folder or files. Please make sure nothing is running that would lock the files or folders in this directory prior to upgrade. If the package fails to upgrade, this is likely the cause. This is try 1/3. Retrying after 300 milliseconds. Error converted to warning: Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib\7zip.install\tools\7zip_x64.exe.ignore" wurde verweigert. This is try 2/3. Retrying after 400 milliseconds. Error converted to warning: Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib\7zip.install\tools\7zip_x64.exe.ignore" wurde verweigert. Maximum tries of 3 reached. Throwing error. Error deleting shim director file: Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib\7zip.install\tools\7zip_x64.exe.ignore" wurde verweigert. Progress: Downloading 7zip.install 24.9.0... 100% [NuGet] Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib\7zip.install\tools\chocolateyInstall.ps1" wurde verweigert. [NuGet] Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib\7zip.install\tools\chocolateyUninstall.ps1" wurde verweigert. [NuGet] Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib\7zip.install\legal\LICENSE.txt" wurde verweigert. [NuGet] Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib\7zip.install\legal\VERIFICATION.txt" wurde verweigert. [NuGet] Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib\7zip.install\7zip.install.nuspec" wurde verweigert. [NuGet] Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib\7zip.install\7zip.install.nupkg" wurde verweigert. 7zip.install not upgraded. An error occurred during installation: Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib\7zip.install\tools\7zip_x32.exe" wurde verweigert. This is try 1/3. Retrying after 300 milliseconds. Error converted to warning: Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib\7zip.install\.chocolateyPending" wurde verweigert. This is try 2/3. Retrying after 400 milliseconds. Error converted to warning: Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib\7zip.install\.chocolateyPending" wurde verweigert. Maximum tries of 3 reached. Throwing error. Chocolatey upgraded 0/0 packages. See the log for details (C:\ProgramData\chocolatey\logs\chocolatey.log). Enjoy using Chocolatey? Explore more amazing features to take your experience to the next level at https://chocolatey.org/compare Der Zugriff auf den Pfad "C:\ProgramData\chocolatey\lib\7zip.install\.chocolateyPending" wurde verweigert. PS C:\Users\Verwalter> |
15.12.2024, 19:27 | #20 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Auf Link in Spam-/Scam Email geklicktZitat:
__________________ Logfiles bitte immer in CODE-Tags posten |
15.12.2024, 19:51 | #21 |
| Auf Link in Spam-/Scam Email geklickt Shit, ich dachte ich hätte auf Administrator geklickt... Code:
ATTFilter C:\WINDOWS\system32>choco upgrade all -y Chocolatey v1.3.1 Upgrading the following packages: all By upgrading, you accept licenses for the packages. You have 7zip.install v22.1 installed. Version 24.9.0 is available based on your source(s). 7zip.install v24.9.0 [Approved] 7zip.install package files upgrade completed. Performing other installation steps. Installing 64 bit version Installing 7zip.install... 7zip.install has been installed. 7zip installed to 'C:\Program Files\7-Zip' Added C:\ProgramData\chocolatey\bin\7z.exe shim pointed to 'c:\program files\7-zip\7z.exe'. The upgrade of 7zip.install was successful. Software installed as 'exe', install location is likely default. You have adobereader v2023.001.20143 installed. Version 2024.4.20220 is available based on your source(s). Progress: Downloading adobereader 2024.4.20220... 100% adobereader v2024.4.20220 adobereader package files upgrade completed. Performing other installation steps. WARNING: Adobe Acrobat (64-bit) v2024.005.20320 installed. WARNING: This package installs v2024.4.20220 and cannot replace a newer version. ERROR: Installation halted. The upgrade of adobereader was NOT successful. Error while running 'C:\ProgramData\chocolatey\lib\adobereader\tools\chocolateyinstall.ps1'. See log for details. You have autohotkey.portable v2.0.2 installed. Version 2.0.18 is available based on your source(s). Progress: Downloading autohotkey.portable 2.0.18... 100% autohotkey.portable v2.0.18 [Approved] autohotkey.portable package files upgrade completed. Performing other installation steps. Extracting C:\ProgramData\chocolatey\lib\autohotkey.portable\tools\AutoHotkey_2.0.18.zip to C:\ProgramData\chocolatey\lib\autohotkey.portable\tools... C:\ProgramData\chocolatey\lib\autohotkey.portable\tools Removing ANSI-32 version ShimGen has successfully created a shim for AutoHotkey.exe The upgrade of autohotkey.portable was successful. Software installed to 'C:\ProgramData\chocolatey\lib\autohotkey.portable\tools' chocolatey-compatibility.extension v1.0.0 is the latest version available based on your source(s). chocolatey-core.extension v1.4.0 is the latest version available based on your source(s). chocolatey-dotnetfx.extension v1.0.1 is the latest version available based on your source(s). You have chocolateygui v2.0.0 installed. Version 2.1.1 is available based on your source(s). Progress: Downloading chocolatey 2.0.0... 100% Progress: Downloading ChocolateyGUI 2.1.1... 100% Failed to run backup or beforeModify steps for package 'chocolatey': Der Objektverweis wurde nicht auf eine Objektinstanz festgelegt. chocolatey v2.0.0 chocolatey package files upgrade completed. Performing other installation steps. Creating ChocolateyInstall as an environment variable (targeting 'Machine') Setting ChocolateyInstall to 'C:\ProgramData\chocolatey' WARNING: It's very likely you will need to close and reopen your shell before you can use choco. Restricting write permissions to Administrators We are setting up the Chocolatey package repository. The packages themselves go to 'C:\ProgramData\chocolatey\lib' (i.e. C:\ProgramData\chocolatey\lib\yourPackageName). A shim file for the command line goes to 'C:\ProgramData\chocolatey\bin' and points to an executable in 'C:\ProgramData\chocolatey\lib\yourPackageName'. Creating Chocolatey folders if they do not already exist. Removing shim C:\ProgramData\chocolatey\redirects\chocolatey.exe Removing shim C:\ProgramData\chocolatey\redirects\cinst.exe Removing shim C:\ProgramData\chocolatey\redirects\clist.exe Removing shim C:\ProgramData\chocolatey\redirects\cpush.exe Removing shim C:\ProgramData\chocolatey\redirects\cuninst.exe Removing shim C:\ProgramData\chocolatey\redirects\cup.exe WARNING: Not setting tab completion: Profile file does not exist at 'C:\Users\Verwalter\Documents\WindowsPowerShell\Microsoft.PowerShell_profile.ps1'. Chocolatey (choco.exe) is now ready. You can call choco from anywhere, command line or powershell by typing choco. Run choco /? for a list of functions. You may need to shut down and restart powershell and/or consoles first prior to using choco. Removing shim C:\ProgramData\chocolatey\bin\chocolatey.exe Removing shim C:\ProgramData\chocolatey\bin\cinst.exe Removing shim C:\ProgramData\chocolatey\bin\clist.exe Removing shim C:\ProgramData\chocolatey\bin\cpush.exe Removing shim C:\ProgramData\chocolatey\bin\cuninst.exe Removing shim C:\ProgramData\chocolatey\bin\cup.exe Environment Vars (like PATH) have changed. Close/reopen your shell to see the changes (or in powershell/cmd.exe just type `refreshenv`). The upgrade of chocolatey was successful. Software install location not explicitly set, it could be in package or default install location of installer. ChocolateyGUI v2.1.1 [Approved] chocolateygui package files upgrade completed. Performing other installation steps. Installing ChocolateyGUI... ChocolateyGUI has been installed. Added C:\ProgramData\chocolatey\bin\chocolateygui.exe shim pointed to 'c:\program files (x86)\chocolatey gui\chocolateygui.exe'. Added C:\ProgramData\chocolatey\bin\chocolateyguicli.exe shim pointed to 'c:\program files (x86)\chocolatey gui\chocolateyguicli.exe'. chocolateygui may be able to be automatically uninstalled. The upgrade of chocolateygui was successful. Software installed as 'msi', install location is likely default. dotnetfx v4.8.0.20220524 is the latest version available based on your source(s). You have drivesnapshot v1.50.1136 installed. Version 1.501639.0 is available based on your source(s). Progress: Downloading drivesnapshot 1.501639.0... 100% drivesnapshot v1.501639.0 [Approved] drivesnapshot package files upgrade completed. Performing other installation steps. File appears to be downloaded already. Verifying with package checksum to determine if it needs to be redownloaded. Error - hashes do not match. Actual value was '45F4EE458DAC82842E4135E4CCD6993AC9F1115EC0B63DA588F0553EF9F17232'. Downloading drivesnapshot 64 bit from 'hxxp://www.drivesnapshot.de/download/snapshot64.exe' Progress: 100% - Completed download of C:\ProgramData\chocolatey\lib\drivesnapshot\tools\snapshot64.exe (1.34 MB). Download of snapshot64.exe (1.34 MB) completed. Hashes match. C:\ProgramData\chocolatey\lib\drivesnapshot\tools\snapshot64.exe ShimGen has successfully created a shim for snapshot64.exe The upgrade of drivesnapshot was successful. Software install location not explicitly set, it could be in package or default install location of installer. You have eac v1.6 installed. Version 1.8.0.20241108 is available based on your source(s). Progress: Downloading eac 1.8.0.20241108... 100% eac v1.8.0.20241108 [Approved] eac package files upgrade completed. Performing other installation steps. WARNING: Url has SSL/TLS available, switching to HTTPS for download Downloading eac from 'https://www.exactaudiocopy.de/eac-1.8.exe' Progress: 100% - Completed download of C:\Users\Verwalter\AppData\Local\Temp\chocolatey\eac\1.8.0.20241108\eac-1.8.exe (5.23 MB). Download of eac-1.8.exe (5.23 MB) completed. Hashes match. Installing eac... eac has been installed. WARNING: No registry key found based on 'Exact Audio Copy' eac installed to 'C:\Program Files (x86)\Exact Audio Copy' eac may be able to be automatically uninstalled. The upgrade of eac was successful. Software installed as 'EXE', install location is likely default. You have irfanview v4.62 installed. Version 4.70.0 is available based on your source(s). Progress: Downloading DotNet4.6.1 4.6.01055.20170308... 100% Progress: Downloading IrfanView 4.70.0... 100% DotNet4.6.1 v4.6.01055.20170308 [Approved] dotnet4.6.1 package files upgrade completed. Performing other installation steps. Microsoft .NET Framework 4.6.1 or later is already installed The upgrade of dotnet4.6.1 was successful. Software install location not explicitly set, it could be in package or default install location of installer. IrfanView v4.70.0 [Approved] irfanview package files upgrade completed. Performing other installation steps. Installing 64-bit IrfanView... IrfanView has been installed. The upgrade of irfanview was successful. Software installed as 'exe', install location is likely default. You have jre8 v8.0.361 installed. Version 8.0.431 is available based on your source(s). Progress: Downloading jre8 8.0.431... 100% jre8 v8.0.431 [Approved] jre8 package files upgrade completed. Performing other installation steps. The software license has changed for Java and this software must be licensed for general business use. Please ensure your licensing is compliant before installing. Checking to see if local install is already up to date... Downloading 32-bit installer Downloading jre8 from 'https://javadl.oracle.com/webapps/download/AutoDL?BundleId=251407_0d8f12bc927a4e2c9f8568ca567db4ee' Progress: 100% - Completed download of C:\Users\Verwalter\AppData\Local\Temp\chocolatey\jre8\8.0.4310.10\JRE8x86.exe (60.78 MB). Download of JRE8x86.exe (60.78 MB) completed. Hashes match. C:\Users\Verwalter\AppData\Local\Temp\chocolatey\jre8\8.0.4310.10\JRE8x86.exe Installing JRE 8.0.4310.10 32-bit Installing JRE8... JRE8 has been installed. Downloading 64-bit installer Downloading jre8 64 bit from 'https://javadl.oracle.com/webapps/download/AutoDL?BundleId=251408_0d8f12bc927a4e2c9f8568ca567db4ee' Progress: 100% - Completed download of C:\Users\Verwalter\AppData\Local\Temp\chocolatey\jre8\8.0.4310.10\JRE8x64.exe (66.03 MB). Download of JRE8x64.exe (66.03 MB) completed. Hashes match. C:\Users\Verwalter\AppData\Local\Temp\chocolatey\jre8\8.0.4310.10\JRE8x64.exe Installing JRE 8.0.4310.10 64-bit Installing 64-bit JRE8... JRE8 has been installed. Searching if the previous version exists... jre8 may be able to be automatically uninstalled. Environment Vars (like PATH) have changed. Close/reopen your shell to see the changes (or in powershell/cmd.exe just type `refreshenv`). The upgrade of jre8 was successful. Software installed to 'C:\Program Files\Java\jre1.8.0_431\' KB2919355 v1.0.20160915 is the latest version available based on your source(s). KB2919442 v1.0.20160915 is the latest version available based on your source(s). You have vlc v3.0.18 installed. Version 3.0.21 is available based on your source(s). Progress: Downloading vlc.install 3.0.21... 100% Progress: Downloading vlc 3.0.21... 100% vlc.install v3.0.21 [Approved] vlc.install package files upgrade completed. Performing other installation steps. Installing 64-bit vlc.install... vlc.install has been installed. WARNING: No registry key found based on 'vlc.install' WARNING: Can't find vlc.install install location vlc.install may be able to be automatically uninstalled. The upgrade of vlc.install was successful. Software installed to 'C:\Program Files\VideoLAN\VLC' vlc v3.0.21 [Approved] vlc package files upgrade completed. Performing other installation steps. The upgrade of vlc was successful. Software installed to 'C:\ProgramData\chocolatey\lib\vlc' vlc.install v3.0.21 is the latest version available based on your source(s). Chocolatey upgraded 11/18 packages. 1 packages failed. See the log for details (C:\ProgramData\chocolatey\logs\chocolatey.log). Upgraded: - vlc v3.0.21 - eac v1.8.0.20241108 - jre8 v8.0.431 - chocolatey v2.0.0 - chocolateygui v2.1.1 - dotnet4.6.1 v4.6.01055.20170308 - irfanview v4.70.0 - 7zip.install v24.9.0 - vlc.install v3.0.21 - autohotkey.portable v2.0.18 - drivesnapshot v1.501639.0 Failures - adobereader (exited -1) - Error while running 'C:\ProgramData\chocolatey\lib\adobereader\tools\chocolateyinstall.ps1'. See log for details. |
15.12.2024, 20:19 | #22 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Auf Link in Spam-/Scam Email geklickt Und genau so soll choco funktionieren wie es bei dir tut. Es hat da allerhand Programme aktualisiert: Zitat:
__________________ Logfiles bitte immer in CODE-Tags posten |
15.12.2024, 20:36 | #23 |
| Auf Link in Spam-/Scam Email geklickt Okay, dann hatte sich anscheinend nur die Choko GUI zerschossen, weil die sich ja nicht mehr starten lies... Kannst du da rauslesen, was mit dem AdobeReader los ist, der lässt sich von Choko nicht mehr updaten? |
16.12.2024, 04:07 | #24 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Auf Link in Spam-/Scam Email geklickt Ja, steht auch da: Zitat:
__________________ Logfiles bitte immer in CODE-Tags posten |
16.12.2024, 11:22 | #25 |
| Auf Link in Spam-/Scam Email geklickt Ah okay, konnte nur nicht glauben dass im Choko nur eine veraltete Version angeboten wird. |
16.12.2024, 11:42 | #26 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Auf Link in Spam-/Scam Email geklickt Du darfst halt nicht wenn Programme mit choco verwaltet werden über den Autoupdater des Programms aktualisieren.
__________________ Logfiles bitte immer in CODE-Tags posten |
16.12.2024, 14:00 | #27 |
/// TB-Ausbilder | Auf Link in Spam-/Scam Email geklickt Wenn es sonst keine Fragen mehr gibt, wären wir durch. |
16.12.2024, 14:24 | #28 | |
| Auf Link in Spam-/Scam Email geklicktZitat:
Wegen dem Router...bei FRST hast du nix gesehen, oder? Was wären denn die entsprechenden Einstellungen im Router, an denen ich das erkennen würde? |
16.12.2024, 14:33 | #29 | |
/// TB-Ausbilder | Auf Link in Spam-/Scam Email geklicktZitat:
Pauschal kann ich das nicht sagen, jede Infektion ist anders. |
16.12.2024, 15:06 | #30 | |
| Auf Link in Spam-/Scam Email geklicktZitat:
Hier im Rahmen des Forumshilfe gibt es vermutlich keine Möglichkeit dazu, oder? |
Themen zu Auf Link in Spam-/Scam Email geklickt |
adobe, avira, bildschirmschoner, browser, computer, defender, desktop, email, fehler, google, homepage, installation, internet explorer, karte, mozilla, prozesse, realtek, registry, scan, services.exe, software, starten, udp, windows, wmi |