Hallo Arne, danke, dass du mein Flehen erhörst
ich habe alles gemacht:
Zitat:
All processes killed
========== OTL ==========
Service ewdmaudn stopped successfully!
Service ewdmaudn deleted successfully!
C:\Dokumente und Einstellungen\***\Lokale Einstellungen\Temp\ewdmaudn.sys moved successfully.
========== COMMANDS ==========
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
[EMPTYTEMP]
User: All Users
User: All Users.WINDOWS
User: ***
->Temp folder emptied: 43598804 bytes
->Temporary Internet Files folder emptied: 22696500 bytes
->Flash cache emptied: 300 bytes
User: ***
->Temp folder emptied: 306602330 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 35287060 bytes
->Flash cache emptied: 3569 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: Default User.WINDOWS
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: HelpAssistant
->Temp folder emptied: 49765250 bytes
->Temporary Internet Files folder emptied: 12557145 bytes
->Java cache emptied: 22773116 bytes
->FireFox cache emptied: 161912996 bytes
->Flash cache emptied: 27440 bytes
User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: LocalService.NT-AUTORITÄT
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: **
->Temp folder emptied: 11504656 bytes
->Temporary Internet Files folder emptied: 344198 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 20620345 bytes
->Flash cache emptied: 724 bytes
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 402 bytes
User: NetworkService.NT-AUTORITÄT
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 49554 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 1139177 bytes
%systemroot%\System32 .tmp files removed: 1163143 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 7550836 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 665,00 mb
OTL by OldTimer - Version 3.2.3.0 log created on 04292010_112550
Files\Folders moved on Reboot...
File move failed. C:\WINDOWS\temp\$$$dq3e scheduled to be moved on reboot.
File move failed. C:\WINDOWS\temp\$67we.$ scheduled to be moved on reboot.
Registry entries deleted on Reboot...
|
muss aber noch was fragen:
mir ist ja gestern erst richtig "aufgefallen", dass wir hier 2 Benutzer sind.
Ist denn das malware und otl dann richtig oder hätte ich da nicht noch all user anklicken müssen???
Öhm...