![]() |
Google leitet mich auf sinnlose Seiten um Hallo :) Ich bin völlig verzweifelt, mit Mühe und Not habe ich es geschafft, überhaupt auf diese Seite zu gelangen. Google leitet mich immer auf andere Seiten um, sobald ich einen Link aus den Suchergebnissen anklicke. Also zuerst steht noch der richtige Link in der Adress-Zeile und dann stellt der Laptop das selbständig um.. Außerdem ist die komplette Leistung des Laptops gestört: Alles ist auf einmal extrem verlangsamt, auch Vorgänge ohne Internet, wie Öffnen der Systemsteuerung o.Ä., manchmal hängen sich einzelne Fenster total auf, sodass ich nichts mehr tun kann und per strg+alt+entf das Programm schließen muss (was zwischendurch auch nicht geht). Der Laptop ist unnatürlich laut, ich weiß nicht ob das etwas damit zu tun hat, aber normalerweise ist er relativ ruhig, erst seit die anderen Symptome aufgetreten sind, ist er lauter geworden. Manchmal sehe ich auch nur noch meinen Desktop-Hintergrund, ohne Taskleiste oder Symbole, wenn ich gerade auf "Ausschalten" geklickt habe. Ich weiß, dass das für einen Moment normal ist, aber bei mir bleibt das dann einfach so und ich muss per Dauerdruck auf den Startknopf ausschalten. Ach ja, und zwischendurch kommt immer mal wieder so ein Ton, wie wenn man eine Fehlermeldung kriegt, aber ich seh nichts.. So, ich hoffe ich hab nichts vergessen und dass mir jemand helfen kann.. Vielen Dank im Voraus, LG Caro |
hiho Systemscan mit OTL download otl: http://filepony.de/download-otl/ Doppelklick auf die OTL.exe (user von Windows 7 und Vista: Rechtsklick als Administrator ausführen) 1. Oben findest Du ein Kästchen mit Output. Wähle bitte Minimal Output 2. Hake an "scan all users" 3. Unter "Extra Registry wähle: "Use Safelist" "LOP Check" "Purity Check" 4. Kopiere in die Textbox: netsvcs msconfig safebootminimal safebootnetwork activex drivers32 %ALLUSERSPROFILE%\Application Data\*. %ALLUSERSPROFILE%\Application Data\*.exe /s %APPDATA%\*. %APPDATA%\*.exe /s %SYSTEMDRIVE%\*.exe /md5start userinit.exe eventlog.dll scecli.dll netlogon.dll cngaudit.dll ws2ifsl.sys sceclt.dll ntelogon.dll winlogon.exe logevent.dll user32.DLL explorer.exe iaStor.sys nvstor.sys atapi.sys IdeChnDr.sys viasraid.sys AGP440.sys vaxscsi.sys nvatabus.sys viamraid.sys nvata.sys nvgts.sys iastorv.sys ViPrt.sys eNetHook.dll ahcix86.sys KR10N.sys nvstor32.sys ahcix86s.sys /md5stop %systemroot%\system32\drivers\*.sys /lockedfiles %systemroot%\System32\config\*.sav %systemroot%\*. /mp /s %systemroot%\system32\*.dll /lockedfiles CREATERESTOREPOINT 5. Klicke "Scan" 6. 2 reporte werden erstellt: OTL.Txt Extras.Txt beide posten |
Danke für die schnelle Antwort, hier die Reporte: |
der text ergibt keinen sinn, hast du otl so ausgeführt und dieses zeug da bekommen was du gepostet hast? |
Ja, also eigentlich schon.. es sei denn, ich habe beim Hochladen was falsch gemacht.. Ich kenn mich da nicht so aus^^ |
dann machs mal bitte erneut. und kopiere von mir aus den inhalt der otl.txt einfach hier rein :-) |
OTL Logfile: Code: OTL logfile created on: 22.06.2011 15:55:26 - Run 3 |
das sieht doch gut aus zumindest das log ist da. deine internet verbindung könnte nach dem otl script gekapt sein. schreib dir die arbeitsschritte mit den proxy einstellungen, die nach otl folgen auf. achtung! dieses script sowie evtl. folgende scripts sind nur für den jeweiligen user. wenn ihr probleme habt, eröffnet eigene topics und wartet auf, für euch angepasste scripts. • Starte bitte die OTL.exe • Kopiere nun das Folgende in die Textbox. Code: :OTL • Schliesse bitte nun alle Programme. • Klicke nun bitte auf den Fix Button. • OTL kann gegebenfalls einen Neustart verlangen. Bitte dies zulassen. • Nach dem Neustart findest Du ein Textdokument, dessen inhalt in deiner nächsten antwort hier reinkopieren. proxy einstellungen: öffne internet explorer, extras, internet optionen, verbindung, lanverbindung. eintrag bei proxy löschen und keinen proxy verwenden einstellen, übernehmen ok. öffne firefox, extras einstellungen erweitert, netzwerk, keinen proxy verwenden, übernehmen ok. öffne arbeitsplatz, öffne C: dann _OTL dort rechtsklick auf moved files wähle zu moved files.rar oder zip hinzufügen. http://www.trojaner-board.de/54791-a...ner-board.html |
Wow, ok, ich hoffe das war jetzt alles i.O., wie ich das gemacht habe, aber ich habe deine Anleitung genauestens befolgt =) All processes killed ========== OTL ========== No active process named dwm.exe was found! No active process named conhost.exe was found! Service SSHNAS stopped successfully! Service SSHNAS deleted successfully! File File not found not found. Error: No service named 0035151258721312mcinstcleanup) McAfee Application Installer Cleanup (0035151258721312 was found to stop! Service\Driver key 0035151258721312mcinstcleanup) McAfee Application Installer Cleanup (0035151258721312 not found. File File not found not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{0BF43445-2F28-4351-9252-17FE6E806AA0} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0BF43445-2F28-4351-9252-17FE6E806AA0}\ not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\comctl32 deleted successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\conhost deleted successfully. File move failed. C:\Dokumente und Einstellungen\Caro\Anwendungsdaten\Microsoft\conhost.exe scheduled to be moved on reboot. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Regedit32 deleted successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Windows System Manager deleted successfully. Registry value HKEY_USERS\S-1-5-21-3940611076-4115891190-78566518-1006\Software\Microsoft\Windows\CurrentVersion\Run\\{0E0A6A5A-B7BA-D0B0-1E0B-76A3A46E006A} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E0A6A5A-B7BA-D0B0-1E0B-76A3A46E006A}\ not found. Registry value HKEY_USERS\S-1-5-21-3940611076-4115891190-78566518-1006\Software\Microsoft\Windows\CurrentVersion\Run\\comctl32 deleted successfully. Registry value HKEY_USERS\S-1-5-21-3940611076-4115891190-78566518-1006\Software\Microsoft\Windows\CurrentVersion\Run\\EA Core deleted successfully. Registry value HKEY_USERS\S-1-5-21-3940611076-4115891190-78566518-1006\Software\Microsoft\Windows\CurrentVersion\Run\\M5T8QL3YW3 deleted successfully. Registry value HKEY_USERS\S-1-5-21-3940611076-4115891190-78566518-1006\Software\Microsoft\Windows\CurrentVersion\Run\\msnmsgr deleted successfully. Registry value HKEY_USERS\S-1-5-21-3940611076-4115891190-78566518-1006\Software\Microsoft\Windows\CurrentVersion\Run\\pj6vi7wlh9 deleted successfully. Registry value HKEY_USERS\S-1-5-21-3940611076-4115891190-78566518-1006\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\Load:C:\DOKUME~1\Caro\LOKALE~1\Temp\csrss.exe deleted successfully. Registry value HKEY_USERS\S-1-5-21-3940611076-4115891190-78566518-1006\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell:C:\Dokumente und Einstellungen\Caro\Anwendungsdaten\dwm.exe deleted successfully. File C:\Dokumente und not found. ========== FILES ========== C:\Dokumente und Einstellungen\Caro\Anwendungsdaten\dwm.exe moved successfully. File\Folder C:\Dokumente und Einstellungen\Caro\Anwendungsdaten\Microsoft\conhost.exe not found. ========== COMMANDS ========== [EMPTYFLASH] User: Administrator ->Flash cache emptied: 2180 bytes User: All Users User: Caro ->Flash cache emptied: 211352 bytes User: Default User ->Flash cache emptied: 56502 bytes User: LocalService User: NetworkService ->Flash cache emptied: 6209 bytes Total Flash Files Cleaned = 0,00 mb [EMPTYTEMP] User: Administrator ->Temp folder emptied: 65109854 bytes ->Temporary Internet Files folder emptied: 79156535 bytes ->Java cache emptied: 13689500 bytes ->FireFox cache emptied: 92350544 bytes ->Flash cache emptied: 0 bytes User: All Users User: Caro ->Temp folder emptied: 18633873 bytes ->Temporary Internet Files folder emptied: 116558231 bytes ->Java cache emptied: 77712 bytes ->FireFox cache emptied: 502118184 bytes ->Google Chrome cache emptied: 6124169 bytes ->Apple Safari cache emptied: 773120 bytes ->Flash cache emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 32902 bytes ->Flash cache emptied: 0 bytes User: LocalService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 1534122 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 255556664 bytes ->Java cache emptied: 0 bytes ->Flash cache emptied: 0 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 19569 bytes %systemroot%\System32 .tmp files removed: 2951 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 844514 bytes RecycleBin emptied: 589735 bytes Total Files Cleaned = 1.100,00 mb OTL by OldTimer - Version 3.2.24.1 log created on 06222011_182824 Files\Folders moved on Reboot... File\Folder C:\Dokumente und Einstellungen\Caro\Anwendungsdaten\Microsoft\conhost.exe not found! C:\Dokumente und Einstellungen\Caro\Lokale Einstellungen\Temporary Internet Files\Content.IE5\W8OBIXJL\player_v2[1].swf moved successfully. C:\Dokumente und Einstellungen\Caro\Lokale Einstellungen\Temporary Internet Files\Content.IE5\S7WAH3QC\searchnation_net[1].htm moved successfully. C:\Dokumente und Einstellungen\Caro\Lokale Einstellungen\Temporary Internet Files\Content.IE5\S7WAH3QC\searchnation_net[2].htm moved successfully. C:\Dokumente und Einstellungen\Caro\Lokale Einstellungen\Temporary Internet Files\Content.IE5\OXPT8ES3\button[1].txt moved successfully. C:\Dokumente und Einstellungen\Caro\Lokale Einstellungen\Temporary Internet Files\Content.IE5\IKSKUVAD\132153.0.0[1].swf moved successfully. C:\Dokumente und Einstellungen\Caro\Lokale Einstellungen\Temporary Internet Files\Content.IE5\HHN95SY0\g1309779[1].txt moved successfully. C:\Dokumente und Einstellungen\Caro\Lokale Einstellungen\Temporary Internet Files\Content.IE5\HHN95SY0\in[1].htm moved successfully. C:\Dokumente und Einstellungen\Caro\Lokale Einstellungen\Temporary Internet Files\Content.IE5\DB2K1XUC\proxy[1].html moved successfully. File\Folder C:\WINDOWS\temp\hsperfdata_SYSTEM\1292 not found! C:\WINDOWS\temp\MPC1D.tmp moved successfully. Registry entries deleted on Reboot... |
na ganz befolgt hast du sie nicht, ich warte auf den upload, im upload channel. |
danke, hat geklappt bitte erstelle und poste ein combofix log. Ein Leitfaden und Tutorium zur Nutzung von ComboFix |
Ok, erledigt: Combofix Logfile: Code: ComboFix 11-06-22.01 - Caro 22.06.2011 21:23:45.1.2 - x86 |
sieht gut aus. download malwarebytes: Malwarebytes : Malwarebytes Anti-Malware is a free download that removes viruses and malware from your computer instalieren, öffnen, registerkarte aktualisierung, programm updaten. schalte alle laufenden programme ab, trenne die internetverbindung. registerkarte scanner, komplett scan, funde entfernen, log posten. |
Malwarebytes' Anti-Malware 1.51.0.1200 Malwarebytes : Free anti-malware, anti-virus and spyware removal download Datenbank Version: 6924 Windows 5.1.2600 Service Pack 3 Internet Explorer 8.0.6001.18702 23.06.2011 15:26:54 mbam-log-2011-06-23 (15-26-54).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|E:\|F:\|G:\|I:\|) Durchsuchte Objekte: 298534 Laufzeit: 1 Stunde(n), 30 Minute(n), 19 Sekunde(n) Infizierte Speicherprozesse: 0 Infizierte Speichermodule: 0 Infizierte Registrierungsschlüssel: 11 Infizierte Registrierungswerte: 1 Infizierte Dateiobjekte der Registrierung: 1 Infizierte Verzeichnisse: 0 Infizierte Dateien: 128 Infizierte Speicherprozesse: (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: HKEY_CLASSES_ROOT\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{D518921A-4A03-425E-9873-B9A71756821E} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{CF54BE1C-9359-4395-8533-1657CF209CFE} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{E47CAEE0-DEEA-464A-9326-3F2801535A4D} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{3E1656ED-F60E-4597-B6AA-B6A58E171495} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{F42228FB-E84E-479E-B922-FBBD096E792C} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{6E74766C-4D93-4CC0-96D1-47B8E07FF9CA} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\MyWebSearch.ThirdPartyInstaller (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\MyWebSearch.ThirdPartyInstaller.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\RunDll32Policy\f3ScrCtr.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully. Infizierte Registrierungswerte: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Media\WMSDK\Sources\f3PopularScreensavers (Adware.MyWebSearch) -> Value: f3PopularScreensavers -> Quarantined and deleted successfully. Infizierte Dateiobjekte der Registrierung: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\StartMenuLogoff (PUM.Hijack.StartMenu) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. Infizierte Verzeichnisse: (Keine bösartigen Objekte gefunden) Infizierte Dateien: c:\programme\msn messenger\msimg32.dll (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\programme\msn messenger\riched20.dll (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\qoobox\quarantine\c\dokumente und einstellungen\caro\anwendungsdaten\adobe\plugs\mmc19216421.txt.vir (Trojan.Agent) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\2.bin\m3fftbpr.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\2.bin\m3patch.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\f3imstub.dll.vir (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\m3medint.exe.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\f3cjpeg.dll.vir (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\f3dtactl.dll.vir (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\f3histsw.dll.vir (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\f3hkstub.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\f3htmlmu.dll.vir (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\f3httpct.dll.vir (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\f3popswt.dll.vir (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\f3pssavr.scr.vir (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\f3reghk.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\f3reprox.dll.vir (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\f3restub.dll.vir (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\f3schmon.exe.vir (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\f3scrctr.dll.vir (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\m3auxstb.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\m3dlghk.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\m3highin.exe.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\m3html.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\m3idle.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\m3impipe.exe.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\m3msg.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\m3outlcn.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\m3plugin.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\m3skin.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\m3skplay.exe.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\m3slsrch.exe.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\m3srchmn.exe.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\mwsbar.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\mwsmlbtn.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\mwsoeplg.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\mwsoestb.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\mwssrcas.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\mwssvc.exe.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\mwsuabtn.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\programme\mywebsearch\bar\3.bin\npmywebs.dll.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\PROGRA~1\MYWEBS~1\bar\3.bin\mwsoemon.exe.vir (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\Qoobox\quarantine\C\WINDOWS\system32\f3pssavr.scr.vir (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033757.exe (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033761.dll (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033762.dll (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033763.scr (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033773.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033774.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033775.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033776.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033777.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033778.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033779.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033780.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033781.SCR (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033782.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033783.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033784.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033785.EXE (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033786.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033787.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033788.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033789.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033791.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033792.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033793.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033794.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033795.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033796.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033797.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033798.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033799.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033800.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033801.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033802.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033803.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033804.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033805.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033806.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033808.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033809.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033810.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033814.exe (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033790.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP213\A0033807.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\rp263\a0044627.exe (Trojan.Agent) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044694.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044695.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044696.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044698.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044699.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044700.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044701.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044702.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044703.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044704.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044705.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044706.SCR (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044707.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044708.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044709.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044711.DLL (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044712.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044713.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044714.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044715.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044716.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044717.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044718.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044719.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044720.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044721.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044722.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044723.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044724.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044725.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044727.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044710.EXE (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044728.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044729.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044730.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044731.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044732.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044733.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044734.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. c:\system volume information\_restore{b32aee6a-215a-4a68-95fc-9cabbf245d43}\RP263\A0044743.scr (PUP.FunWebProducts) -> Quarantined and deleted successfully. c:\_OTL\movedfiles\06222011_182824\c_dokumente und einstellungen\Caro\anwendungsdaten\dwm.exe (Trojan.Agent) -> Quarantined and deleted successfully. |
wie läuft das system? |
Alle Zeitangaben in WEZ +1. Es ist jetzt 21:26 Uhr. |
Copyright ©2000-2025, Trojaner-Board