:hallo: Fixen mit OTL Lade (falls noch nicht vorhanden) OTL von Oldtimer herunter und speichere es auf Deinem Desktop (nicht woanders hin). - Deaktiviere etwaige Virenscanner wie Avira, Kaspersky etc.
- Starte die OTL.exe.
Vista- und Windows 7-User starten mit Rechtsklick auf das Programm-Icon und wählen "Als Administrator ausführen". - Kopiere folgendes Skript in das Textfeld unterhalb von Benuterdefinierte Scans/Fixes:
Code:
:OTL
PRC - C:\Program Files\Application Updater\ApplicationUpdater.exe (Spigot, Inc.)
SRV - (Application Updater) -- C:\Program Files\Application Updater\ApplicationUpdater.exe (Spigot, Inc.)
IE - HKLM\..\URLSearchHook: {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - C:\Program Files\softonic-de3\tbsoft.dll (Conduit Ltd.)
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKCU\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
IE - HKCU\..\URLSearchHook: {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\6.0\pdfforgeToolbarIE.dll (Spigot, Inc.)
IE - HKCU\..\URLSearchHook: {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - C:\Program Files\softonic-de3\tbsoft.dll (Conduit Ltd.)
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{A9CB6E3D-2572-471C-B51F-6DD3340EAC8E}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=AVR-3&o=APN10397&src=kw&q={searchTerms}&locale=de_AT&apn_ptnrs=^ABV&apn_dtid=^YYYYYY^YY^AT&apn_uid=bff0b613-041e-4043-af23-992223cacfd2&apn_sauid=C282B1C3-E72F-462A-9D06-9C3838D72E53
IE - HKCU\..\SearchScopes\{E768FBAC-9BB3-4317-BF27-893460BB5F72}: "URL" = http://at.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=302398&p={searchTerms}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
FF - prefs.js..extensions.enabledItems: MapShare-status@tomtom.com:1.7.1
FF - prefs.js..extensions.enabledItems: baseTheme@tomtom.com:1.0.2
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Privat\AppData\Local\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Privat\AppData\Local\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
O2 - BHO: (pdfforge Toolbar) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\6.0\pdfforgeToolbarIE.dll (Spigot, Inc.)
O2 - BHO: (softonic-de3 Toolbar) - {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - C:\Program Files\softonic-de3\tbsoft.dll (Conduit Ltd.)
O2 - BHO: (Avira SearchFree Toolbar plus Web Protection) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKLM\..\Toolbar: (pdfforge Toolbar) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\6.0\pdfforgeToolbarIE.dll (Spigot, Inc.)
O3 - HKLM\..\Toolbar: (softonic-de3 Toolbar) - {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - C:\Program Files\softonic-de3\tbsoft.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Avira SearchFree Toolbar plus Web Protection) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKCU\..\Toolbar\WebBrowser: (softonic-de3 Toolbar) - {CC05A3E3-64C3-4AF2-BFC1-AF0D66B69065} - C:\Program Files\softonic-de3\tbsoft.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (Avira SearchFree Toolbar plus Web Protection) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [AcWin7Hlpr] C:\Program Files\Lenovo\Access Connections\AcTBenabler.exe ()
O4 - HKLM..\Run: [ApnUpdater] C:\Program Files\Ask.com\Updater\Updater.exe (Ask)
O4 - HKLM..\Run: [FtpServer.exe] D:\Sharp\Sharpdesk\FtpServer.exe -usedefault File not found
O4 - HKLM..\Run: [IndexTray] "D:\Sharp\Sharpdesk\IndexTray.exe /n" File not found
O4 - HKLM..\Run: [SearchSettings] C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe (Spigot, Inc.)
O4 - HKLM..\Run: [SharpTray] D:\Sharp\Sharpdesk\SharpTray.exe File not found
O4 - HKLM..\Run: [tsnp2uvc] C:\Windows\tsnp2uvc.exe File not found
O4 - HKLM..\Run: [TypeRegChecker] D:\Sharp\Sharpdesk\TypeRegChecker.exe File not found
O4 - HKLM..\Run: [Update] C:\Users\Privat\AppData\Roaming\fest0r_ot.exe ()
O4 - HKCU..\Run: [DAEMON Tools Lite] "D:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun File not found
O4 - HKCU..\Run: [Update] C:\Users\Privat\AppData\Roaming\fest0r_ot.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} http://www.sibelius.com/download/software/win/ActiveXPlugin.cab (Reg Error: Key error.)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{0a605c94-3fd4-11df-9b6c-005056c00008}\Shell - "" = AutoRun
O33 - MountPoints2\{0a605c94-3fd4-11df-9b6c-005056c00008}\Shell\AutoRun\command - "" = F:\AutoRun.exe
O33 - MountPoints2\{0a605cc9-3fd4-11df-9b6c-005056c00008}\Shell - "" = AutoRun
O33 - MountPoints2\{0a605cc9-3fd4-11df-9b6c-005056c00008}\Shell\AutoRun\command - "" = L:\AutoRun.exe
O33 - MountPoints2\{0f4bd9f0-3dcc-11df-b5e3-005056c00008}\Shell - "" = AutoRun
O33 - MountPoints2\{0f4bd9f0-3dcc-11df-b5e3-005056c00008}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\{0f4bd9fd-3dcc-11df-b5e3-005056c00008}\Shell - "" = AutoRun
O33 - MountPoints2\{0f4bd9fd-3dcc-11df-b5e3-005056c00008}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\{12070774-3e7e-11df-b5e6-005056c00008}\Shell - "" = AutoRun
O33 - MountPoints2\{12070774-3e7e-11df-b5e6-005056c00008}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\{12070780-3e7e-11df-b5e6-005056c00008}\Shell - "" = AutoRun
O33 - MountPoints2\{12070780-3e7e-11df-b5e6-005056c00008}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\{20debf7c-fbfb-11df-90bc-00242cbe1d98}\Shell - "" = AutoRun
O33 - MountPoints2\{20debf7c-fbfb-11df-90bc-00242cbe1d98}\Shell\AutoRun\command - "" = D:\AutoRun.exe
O33 - MountPoints2\{47a256d6-5747-11df-a0fe-0022fae21644}\Shell - "" = AutoRun
O33 - MountPoints2\{47a256d6-5747-11df-a0fe-0022fae21644}\Shell\AutoRun\command - "" = H:\AutoRun.exe
O33 - MountPoints2\{750cf803-fbfa-11df-910e-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{750cf803-fbfa-11df-910e-806e6f6e6963}\Shell\AutoRun\command - "" = D:\AutoRun.exe
O33 - MountPoints2\{a14fe43a-3dc4-11df-b54f-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{a14fe43a-3dc4-11df-b54f-806e6f6e6963}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\{b4f03daf-f17f-11df-9b35-00242cbe1d98}\Shell - "" = AutoRun
O33 - MountPoints2\{b4f03daf-f17f-11df-9b35-00242cbe1d98}\Shell\AutoRun\command - "" = D:\AutoRun.exe
O33 - MountPoints2\{bc19896d-f194-11df-9273-00247e6a4cbf}\Shell - "" = AutoRun
O33 - MountPoints2\{bc19896d-f194-11df-9273-00247e6a4cbf}\Shell\AutoRun\command - "" = D:\AutoRun.exe
O33 - MountPoints2\{bf7052e4-0b72-11e1-adaa-00242cbe1d98}\Shell - "" = AutoRun
O33 - MountPoints2\{bf7052e4-0b72-11e1-adaa-00242cbe1d98}\Shell\AutoRun\command - "" = D:\LaunchU3.exe -a
O33 - MountPoints2\{f5f6eeb9-43c4-11df-b5cb-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{f5f6eeb9-43c4-11df-b5cb-806e6f6e6963}\Shell\AutoRun\command - "" = H:\AutoRun.exe
O33 - MountPoints2\F\Shell - "" = AutoRun
O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\AutoRun.exe
O33 - MountPoints2\G\Shell - "" = AutoRun
O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\L\Shell - "" = AutoRun
O33 - MountPoints2\L\Shell\AutoRun\command - "" = L:\AutoRun.exe
[2012.07.15 14:12:52 | 000,000,000 | ---D | C] -- C:\Program Files\Ask.com
[2012.07.15 14:13:01 | 000,000,000 | ---D | C] -- C:\Users\Privat\AppData\Local\AskToolbar
[2012.07.02 17:49:33 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Spigot
[2012.07.02 17:49:33 | 000,000,000 | ---D | C] -- C:\Program Files\pdfforge Toolbar
[2012.07.02 17:49:33 | 000,000,000 | ---D | C] -- C:\Program Files\Application Updater
[2012.07.15 18:04:00 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012.07.15 17:27:00 | 000,001,098 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012.07.15 17:26:00 | 000,001,124 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-905036566-1828708054-3587640490-1000UA.job
[2012.07.15 16:27:00 | 000,001,094 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012.07.15 14:26:05 | 000,001,072 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-905036566-1828708054-3587640490-1000Core.job
[2012.07.15 13:29:59 | 000,000,466 | ---- | M] () -- C:\Windows\tasks\SystemToolsDailyTest.job
[2012.07.15 13:29:59 | 000,000,466 | ---- | M] () -- C:\Windows\Tasks\SystemToolsDailyTest.job
[2012.06.30 18:07:36 | 000,000,528 | ---- | M] () -- C:\Windows\tasks\PCDoctorBackgroundMonitorTask.job
[2012.06.30 18:07:36 | 000,000,528 | ---- | M] () -- C:\Windows\Tasks\PCDoctorBackgroundMonitorTask.job
:Files
C:\Program Files\Lenovo\Access Connections\AcTBenabler.exe
C:\Users\Privat\AppData\Roaming\fest0r_ot.exe
F:\AutoRun.exe
L:\AutoRun.exe
G:\AutoRun.exe
D:\AutoRun.exe
H:\AutoRun.exe
D:\LaunchU3.exe -a
C:\Program Files\Ask.com
C:\Program Files\Common Files\Spigot
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\SystemToolsDailyTest.job
ipconfig /flushdns /c
:Commands
[purity]
[emptytemp]
[emptyflash] - Schließe alle Programme.
- Klicke auf den Fix Button.
- Wenn OTL einen Neustart verlangt, bitte zulassen.
- Kopiere den Inhalt des Logfiles hier in Code-Tags in Deinen Thread.
Nachträglich kannst Du das Logfile hier einsehen => C:\_OTL\MovedFiles\ Hinweis für Mitleser: Obiges OTL-Script ist ausschließlich für diesen User in dieser Situtation erstellt worden. Auf keinen Fall auf anderen Rechnern anwenden, das kann andere Systeme nachhaltig schädigen! |