![]() |
|
Plagegeister aller Art und deren Bekämpfung: win32.autorun.tmp wie werd ichs los?!Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() |
|
![]() | #1 |
![]() | ![]() win32.autorun.tmp wie werd ichs los?! hier bitte All processes killed ========== OTL ========== Prefs.js: " 62.243.224.179" removed from network.proxy.backup.ftp Prefs.js: 1080 removed from network.proxy.backup.ftp_port Prefs.js: " 62.243.224.179" removed from network.proxy.backup.gopher Prefs.js: 1080 removed from network.proxy.backup.gopher_port Prefs.js: " 62.243.224.179" removed from network.proxy.backup.socks Prefs.js: 1080 removed from network.proxy.backup.socks_port Prefs.js: " 62.243.224.179" removed from network.proxy.backup.ssl Prefs.js: 1080 removed from network.proxy.backup.ssl_port Prefs.js: " 131.247.2.247" removed from network.proxy.ftp Prefs.js: 3127 removed from network.proxy.ftp_port Prefs.js: " 131.247.2.247" removed from network.proxy.gopher Prefs.js: 3127 removed from network.proxy.gopher_port Prefs.js: " 131.247.2.247" removed from network.proxy.http Prefs.js: 3127 removed from network.proxy.http_port Prefs.js: true removed from network.proxy.share_proxy_settings Prefs.js: " 131.247.2.247" removed from network.proxy.socks Prefs.js: 3127 removed from network.proxy.socks_port Prefs.js: " 131.247.2.247" removed from network.proxy.ssl Prefs.js: 3127 removed from network.proxy.ssl_port Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Setwallpaper deleted successfully. Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully. ========== COMMANDS ========== C:\Windows\System32\drivers\etc\Hosts moved successfully. HOSTS file reset successfully [EMPTYTEMP] User: All Users User: AppData User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: mötö ->Temp folder emptied: 4549862 bytes ->Temporary Internet Files folder emptied: 1747337 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 95654215 bytes ->Flash cache emptied: 504 bytes User: Public %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32 (64bit) .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 34626 bytes %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 97.00 mb OTL by OldTimer - Version 3.2.22.3 log created on 03152011_222651 Files\Folders moved on Reboot... C:\Users\mötö\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully. File move failed. C:\Windows\temp\_avast5_\Webshlock.txt scheduled to be moved on reboot. Registry entries deleted on Reboot... |
![]() |
Themen zu win32.autorun.tmp wie werd ichs los?! |
adblock, anti-malware, avast!, cc cleaner, cleaner, code, conduit, datei, dateien, edition, entfernen, explorer, file, fix, gfnexsrv.exe, home, location, log, log datei, malware, mas, microsoft, msvcr80.dll, nicht mehr, oldtimer, otl.exe, pdfforge toolbar, plug-in, programdata, remover, rootkit, safer networking, searchplugins, seite, seiten, spigot, spybot, start menu, synchronisation, syswow64, vdeck.exe, version, webcheck, win, windows, windows 7, windows 7 home, windows 7 home premium |