![]() |
|
Log-Analyse und Auswertung: NT Autoritäts-Countdown und Fehlermeldung "dww...0x00000"Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #11 |
![]() ![]() | ![]() NT Autoritäts-Countdown und Fehlermeldung "dww...0x00000" Hallo Arne, zunächst vielen Dank für den Upload. So und hier das Logfile: All processes killed ========== OTL ========== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom\\AutoRun|DWORD:1 /E : value set successfully! Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{77c09e59-19d7-11de-99c0-00038a000015}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{77c09e59-19d7-11de-99c0-00038a000015}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{77c09e59-19d7-11de-99c0-00038a000015}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{77c09e59-19d7-11de-99c0-00038a000015}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{77c09e59-19d7-11de-99c0-00038a000015}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{77c09e59-19d7-11de-99c0-00038a000015}\ not found. File K:\LaunchU3.exe -a not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{dba250fe-73dd-11df-9a91-001cf0bcd1fb}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{dba250fe-73dd-11df-9a91-001cf0bcd1fb}\ not found. File K:\start.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{fd2d8a34-783a-11de-9a06-00038a000015}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fd2d8a34-783a-11de-9a06-00038a000015}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{fd2d8a34-783a-11de-9a06-00038a000015}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fd2d8a34-783a-11de-9a06-00038a000015}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{fd2d8a34-783a-11de-9a06-00038a000015}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fd2d8a34-783a-11de-9a06-00038a000015}\ not found. File K:\LaunchU3.exe -a not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\K\ deleted successfully. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\K\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\K\ not found. File K:\LaunchU3.exe -a not found. File C:\WINDOWS\System32\drivers\qont.sys not found. File C:\WINDOWS\System32\drivers\irmhkm.sys not found. ADS D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\TEMP:F65D490F deleted successfully. ========== COMMANDS ========== C:\WINDOWS\System32\drivers\etc\Hosts moved successfully. HOSTS file reset successfully [EMPTYTEMP] User: All Users User: David ->Temp folder emptied: 2290787061 bytes ->Temporary Internet Files folder emptied: 26141559 bytes ->Java cache emptied: 8300599 bytes ->FireFox cache emptied: 102886699 bytes ->Flash cache emptied: 1888008 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 32902 bytes User: LocalService ->Temp folder emptied: 65716 bytes ->Temporary Internet Files folder emptied: 15281948 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 194347 bytes %systemdrive% .tmp files removed: 4 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 227719 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 23914533 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 2.355,00 mb OTL by OldTimer - Version 3.2.21.0 log created on 03012011_130704 Files\Folders moved on Reboot... File\Folder D:\Dokumente und Einstellungen\David\Lokale Einstellungen\Temp\Temporäres Verzeichnis 6 für Poundingtechno.com_presents_Fingerprints_vol.9_-_Mixed_by_Boris_Naumann.zip\Poundingtechno.com presents Fingerprints vol.9 - Mixed by Boris Naumann\Poundingtechno.com presents Fingerprints vol.9 - M not found! File\Folder D:\Dokumente und Einstellungen\David\Lokale Einstellungen\Temp\Temporäres Verzeichnis 4 für Poundingtechno.com_presents_Fingerprints_vol.9_-_Mixed_by_Boris_Naumann.zip\Poundingtechno.com presents Fingerprints vol.9 - Mixed by Boris Naumann\Poundingtechno.com presents Fingerprints vol.9 - M not found! File\Folder D:\Dokumente und Einstellungen\David\Lokale Einstellungen\Temp\Temporäres Verzeichnis 3 für Poundingtechno.com_presents_Fingerprints_vol.9_-_Mixed_by_Boris_Naumann.zip\Poundingtechno.com presents Fingerprints vol.9 - Mixed by Boris Naumann\Poundingtechno.com presents Fingerprints vol.9 - M not found! File\Folder D:\Dokumente und Einstellungen\David\Lokale Einstellungen\Temp\Temporäres Verzeichnis 3 für Pablo_Ramirez@TanzhausWest_Frankfurt_300705.zip\Pablo Ramirez @ Tanzhaus West, Frankfurt - Samstag 30.07.2005 - Inconsederate Beat Impact [www.booking.sonic-warrior.de].MP3 not found! File\Folder D:\Dokumente und Einstellungen\David\Lokale Einstellungen\Temp\Temporäres Verzeichnis 2 für Poundingtechno.com_presents_Fingerprints_vol.9_-_Mixed_by_Boris_Naumann.zip\Poundingtechno.com presents Fingerprints vol.9 - Mixed by Boris Naumann\Poundingtechno.com presents Fingerprints vol.9 - M not found! File\Folder D:\Dokumente und Einstellungen\David\Lokale Einstellungen\Temp\Temporäres Verzeichnis 2 für Pablo_Ramirez@TanzhausWest_Frankfurt_300705.zip\Pablo Ramirez @ Tanzhaus West, Frankfurt - Samstag 30.07.2005 - Inconsederate Beat Impact [www.booking.sonic-warrior.de].MP3 not found! File\Folder D:\Dokumente und Einstellungen\David\Lokale Einstellungen\Temp\Temporary Internet Files\Content.IE5\D8CNTHW1\adlink%7C516%7C1034910%7C0%7C1%7CAdId%3D1030809%3BBnId%3D1%3Bitime%3D348802720%3Blink%3Dhttp%3A%2F%2Far%2Eatwola%2Ecom%2Fre dir%2FB0%2FhJW1kUIixSc8XglJl6vXe5snMfqyH%5FHDm8mH[2] not found! Registry entries deleted on Reboot... |
Themen zu NT Autoritäts-Countdown und Fehlermeldung "dww...0x00000" |
ad-aware, antivir, antivir guard, antivirus, avira, bho, desktop, down, excel, firefox, google, highjackthis, hijack, hijackthis, hkus\s-1-5-18, home, logfile, mozilla, object, problem, scan, software, symantec, system, windows, windows xp |