![]() |
|
Log-Analyse und Auswertung: Recycler auf USBWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #16 |
![]() | ![]() Recycler auf USB wurde gemacht. was wurde da eig für sachen gelöscht? OTL: All processes killed ========== OTL ========== No active process named snuvcdsm.exe was found! Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SNUVCDSM deleted successfully. C:\Windows\snuvcdsm.exe moved successfully. File C:\Users\Alina\Desktop\removerecycler.exe not found. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom\\AutoRun|DWORD:1 /E : value set successfully! C:\Windows\System32\Setup.exe moved successfully. C:\Windows\System32\drivers\sncduvc.sys moved successfully. C:\autoexec.bat moved successfully. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{610f0dd8-e2b3-11df-b994-00030ddc98ac}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{610f0dd8-e2b3-11df-b994-00030ddc98ac}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{610f0dd8-e2b3-11df-b994-00030ddc98ac}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{610f0dd8-e2b3-11df-b994-00030ddc98ac}\ not found. File E:\AutoRun.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{7491a688-1d5b-11df-a473-00030ddc98ac}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7491a688-1d5b-11df-a473-00030ddc98ac}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{7491a688-1d5b-11df-a473-00030ddc98ac}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7491a688-1d5b-11df-a473-00030ddc98ac}\ not found. File D:\AutoRun.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{de5e6d65-3404-11df-855d-00030ddc98ac}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{de5e6d65-3404-11df-855d-00030ddc98ac}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{de5e6d65-3404-11df-855d-00030ddc98ac}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{de5e6d65-3404-11df-855d-00030ddc98ac}\ not found. File E:\AutoRun.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e37e4743-6651-11df-9742-00030ddc98ac}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e37e4743-6651-11df-9742-00030ddc98ac}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e37e4743-6651-11df-9742-00030ddc98ac}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e37e4743-6651-11df-9742-00030ddc98ac}\ not found. File E:\AutoRun.exe not found. Prefs.js: "isa.w13.local" removed from network.proxy.http Prefs.js: 8080 removed from network.proxy.http_port Prefs.js: 0 removed from network.proxy.type ========== COMMANDS ========== C:\Windows\System32\drivers\etc\Hosts moved successfully. HOSTS file reset successfully [EMPTYTEMP] User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes ->Flash cache emptied: 56502 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Alina ->Temp folder emptied: 544789 bytes ->Temporary Internet Files folder emptied: 89650061 bytes ->Java cache emptied: 13689500 bytes ->FireFox cache emptied: 25091996 bytes ->Flash cache emptied: 2203 bytes User: Public User: Alina ->Temp folder emptied: 8075 bytes ->Temporary Internet Files folder emptied: 11716138 bytes ->Java cache emptied: 822696 bytes ->FireFox cache emptied: 116353896 bytes ->Google Chrome cache emptied: 0 bytes ->Flash cache emptied: 2863964 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 55799 bytes RecycleBin emptied: 42570973 bytes Total Files Cleaned = 289,00 mb OTL by OldTimer - Version 3.2.22.3 log created on 04262011_211345 Files\Folders moved on Reboot... C:\Users\Alina\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRF{2A84D48F-0773-4828-BC0B-A6B6C9967033}.tmp moved successfully. C:\Users\Alina\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{2D056031-45B6-4165-9B39-C7DCEBE04C79}.tmp moved successfully. C:\Users\Alina\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{2F92DDD1-075A-451B-BB34-025019F2B5A0}.tmp moved successfully. C:\Users\Alina\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{4AFC0474-6DEF-4638-89D4-DDD224C6BF87}.tmp moved successfully. C:\Users\Alina\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{725329E6-D33C-4E99-BD6E-B143246BBBEE}.tmp moved successfully. C:\Users\Alina\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{995F4F23-D99A-4223-9D8C-9C3624A6624B}.tmp moved successfully. C:\Users\Alina\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{9B8D2CF4-7FD7-46B9-8F17-198B71AF4275}.tmp moved successfully. C:\Users\Alina\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{A9B9444D-64D8-4F90-BD71-7C66DD54051F}.tmp moved successfully. C:\Users\Alina\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{AD5C3043-2169-43AB-94E3-DDD686141A18}.tmp moved successfully. C:\Users\Alina\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{BD79456B-01A8-4285-9596-18F2E161DE4B}.tmp moved successfully. File\Folder C:\Users\Alina\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.MSO\msoB3BC.tmp not found! File\Folder C:\Users\Alina\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.MSO\msoB3DC.tmp not found! Registry entries deleted on Reboot... |
Themen zu Recycler auf USB |
antivir, autoruns, avira, avira antivir, avp, computer, computern, entdeck, gebraucht, gelöscht, gen, infizierte, internet, laptop, löschen, malware, meldungen, nichts, ordner, plötzlich, recycler, retten, scan, systemüberprüfung, usb, viren, warum |