![]() |
Sofwareupdater.ui.exe Guten Tag, nach dem ich mein PC (Betriebssystem: Windows Vista) hochgefahren habe kommt nach eine paar Sekunden die Meldung ob ich die Anwendung "Sofwareupdater.Ui.exe" zulassen will. Am Anfang habe ich immer auf nein gedrückt,aber auch einmal auf ja. In Beiden Fällen ist allerdings nichts passiert. Ich hab in eurem Forum schon ein bißchen zu dem Thema gelsen, da die Antworten allerdings immer individuell zugeschnitten waren und diese sich glaube ich nicht Allgemein anwenden lassen poste ich jetzt mein Problem hier. Jetzt schon vielen Dank für eure Hiilfe :) |
Hi, Systemscan mit FRST Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Start > Computer (Rechtsklick) > Eigenschaften)
|
FRST: FRST Logfile: Code: Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 03-07-2013 Addition:FRST Additions Logfile: Code: Additional scan result of Farbar Recovery Scan Tool (x86) Version: 03-07-2013 |
Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!Downloade dir bitte Combofix vom folgenden Downloadspiegel Link 1 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
|
Combofix Logfile: Code: ComboFix 13-07-02.03 - Achim 03.07.2013 14:58:03.1.4 - x86 5C616939100B85E558DA92B899A0FC36 |
Downloade Dir bitte ![]()
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
ESET Online Scanner
Downloade Dir bitte ![]()
und ein frisches FRST Log bitte. |
AdwCleaner Logfile: Code: # AdwCleaner v2.303 - Datei am 03/07/2013 um 15:19:42 erstellt ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 4.9.4 (05.06.2013:1) OS: Windows Vista (TM) Home Premium x86 Ran by Achim on 03.07.2013 at 15:28:58,08 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files Successfully deleted: [File] C:\eula.1028.txt Successfully deleted: [File] C:\eula.1031.txt Successfully deleted: [File] C:\eula.1033.txt Successfully deleted: [File] C:\eula.1036.txt Successfully deleted: [File] C:\eula.1040.txt Successfully deleted: [File] C:\eula.1041.txt Successfully deleted: [File] C:\eula.1042.txt Successfully deleted: [File] C:\eula.1049.txt Successfully deleted: [File] C:\eula.2052.txt Successfully deleted: [File] C:\install.res.1028.dll Successfully deleted: [File] C:\install.res.1031.dll Successfully deleted: [File] C:\install.res.1033.dll Successfully deleted: [File] C:\install.res.1036.dll Successfully deleted: [File] C:\install.res.1040.dll Successfully deleted: [File] C:\install.res.1041.dll Successfully deleted: [File] C:\install.res.1042.dll Successfully deleted: [File] C:\install.res.1049.dll Successfully deleted: [File] C:\install.res.2052.dll Successfully deleted: [File] C:\install.res.3082.dll ~~~ Folders Successfully deleted: [Folder] "C:\Windows\system32\ai_recyclebin" ~~~ FireFox Emptied folder: C:\Users\Achim\AppData\Roaming\mozilla\firefox\profiles\q6i8e3dd.default\minidumps [64 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 03.07.2013 at 15:30:05,36 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=39b13c69eb85354cb05b86299e28284b # engine=14247 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-07-03 03:01:20 # local_time=2013-07-03 05:01:20 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1033 # osver=6.0.6002 NT Service Pack 2 # compatibility_mode=1799 16775165 100 97 13356 143534985 6136 0 # compatibility_mode=5892 16776574 100 100 36190080 210396408 0 0 # scanned=173728 # found=0 # cleaned=0 # scan_time=4826 UNSUPPORTED OPERATING SYSTEM! ABORTED! FRST Logfile: FRST Logfile: Code: Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 03-07-2013 --- --- --- Die Meldung "UNSUPPORTED OPERATING SYSTEM! ABORTED!" hat SecurityCheck ausgespuckt. Sonst sind die Logs der Reihenfolge nach geordnet wie du deine Anleitung geschrieben hast. |
Noch Probleme? :) |
Hab meinen PC grade neu gestartet und hab ne Minute gewartet und wolle dir schreiben, dass jetzt Alles okay is und dann kam des Fenster doch wieder und hat mich gefragt ob ich Sofwareupdater.ui.exe ausführen will. Es is also noch nicht weg :/ Trotzdem schonmal danke für deine jetztige Arbeit :) |
Scan mit SystemLook Lade SystemLook von jpshortstuff vom folgenden Spiegel herunter und speichere das Tool auf dem Desktop: SystemLook (32 bit)
|
SystemLook 30.07.11 by jpshortstuff Log created at 20:04 on 03/07/2013 by Achim Administrator - Elevation successful ========== filefind ========== Searching for "*SoftwareUpdater*" C:\Program Files\SoftwareUpdater\SoftwareUpdater.Bootstrapper.exe --a---- 60928 bytes [17:03 21/12/2012] [19:22 11/06/2013] 4D62C3A7FA7C4FF08D5015D75124C92A C:\Program Files\SoftwareUpdater\SoftwareUpdater.dll --a---- 168960 bytes [23:27 13/02/2013] [19:21 11/06/2013] 1EF11ADFB5DD20F4F78D5AACC309F633 C:\Program Files\SoftwareUpdater\SoftwareUpdater.Ui.exe --a---- 1281536 bytes [23:28 13/02/2013] [19:21 11/06/2013] 99345050F950EAD86726BB63715FEDE6 C:\Windows\Prefetch\SOFTWAREUPDATER.BOOTSTRAPPER.-6E4C5D70.pf --a---- 87448 bytes [17:37 03/07/2013] [17:37 03/07/2013] 10149506C04BC1017A16F42EC4466549 ========== regfind ========== Searching for "SoftwareUpdater" [HKEY_CURRENT_USER\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] "C:\Program Files\SoftwareUpdater\SoftwareUpdater.Ui.exe"="Software Updater" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\657AA5DB75E22EA4AB2BA345ADC1054F] "SoftwareUpdater"="ProductFeature" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files\SoftwareUpdater\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\657AA5DB75E22EA4AB2BA345ADC1054F\Features] "SoftwareUpdater"="ProductFeature" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SystemStoreService] "ImagePath"=""C:\Program Files\SoftwareUpdater\SystemStore.exe" -displayname "System Store" -servicename "SystemStoreService"" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\SystemStoreService] "ImagePath"=""C:\Program Files\SoftwareUpdater\SystemStore.exe" -displayname "System Store" -servicename "SystemStoreService"" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SystemStoreService] "ImagePath"=""C:\Program Files\SoftwareUpdater\SystemStore.exe" -displayname "System Store" -servicename "SystemStoreService"" [HKEY_USERS\S-1-5-21-1612617536-3735999980-2912043539-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] "C:\Program Files\SoftwareUpdater\SoftwareUpdater.Ui.exe"="Software Updater" [HKEY_USERS\S-1-5-21-1612617536-3735999980-2912043539-1000_Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] "C:\Program Files\SoftwareUpdater\SoftwareUpdater.Ui.exe"="Software Updater" Searching for " " [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\GameUX\Games\{C2419F44-7B03-4759-9485-1794DB48A276}] "RatingsInfo"="<Ratings xmlns="urn:schemas-microsoft-com:GameDescription.v1"> <Rating ratingSystemID="{768BD93D-63BE-46A9-8994-0B53C4B5248F}" ratingID="{18CD34B7-7AA3-42b9-A303-5A729B2FF228}"> <Descriptor descriptorID="{9A82F712-5A9D-4409-9539-666BBCDFE12D}"/> <Descriptor descriptorID="{6AB026D3-FAD5-4a18-A53B-2CAFA358AE8F}"/> <Descriptor descriptorID="{1A796A5D-1E25-4862-9443-1550578FF4C4}"/> <Descriptor descriptorID="{E04AAEE8-950C-43c4-B75C-D87736A7FAFD}"/> <Descriptor descriptorID="{BE562A5F-2A80-4c28-9752-74C696E2ABAF}"/> </Rating> <Rating ratingSystemID="{EC290BBB-D618-4cb9-9963-1CAAE515443E}" ratingID="{068D40C4-7809-4c67-8FEA-DA457CF990B4}"/> <Rating ratingSystemID="{36798944-B235-48ac-BF21-E25671F597EE}" ratingID="{CEC5DB5A-B4C9-4809-96C6-39CE715E4790} [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\GameUX\Games\{CFC62AB2-3432-49A3-A5BB-4BCD420E3082}] "RatingsInfo"="<Ratings xmlns="urn:schemas-microsoft-com:GameDescription.v1"> <Rating ratingSystemID="{768BD93D-63BE-46A9-8994-0B53C4B5248F}" ratingID="{18CD34B7-7AA3-42b9-A303-5A729B2FF228}"> <Descriptor descriptorID="{9A82F712-5A9D-4409-9539-666BBCDFE12D}"/> <Descriptor descriptorID="{6AB026D3-FAD5-4a18-A53B-2CAFA358AE8F}"/> <Descriptor descriptorID="{1A796A5D-1E25-4862-9443-1550578FF4C4}"/> <Descriptor descriptorID="{E04AAEE8-950C-43c4-B75C-D87736A7FAFD}"/> <Descriptor descriptorID="{BE562A5F-2A80-4c28-9752-74C696E2ABAF}"/> </Rating> <Rating ratingSystemID="{36798944-B235-48ac-BF21-E25671F597EE}" ratingID="{CEC5DB5A-B4C9-4809-96C6-39CE715E4790}"> <Descriptor descriptorID="{F110F831-9412-40c9-860A-B489407ED374}"/> </Rating> <Rati [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WSMAN\Plugin\Microsoft.PowerShell] "ConfigXML"=" <PlugInConfiguration xmlns="hxxp://schemas.microsoft.com/wbem/wsman/1/config/PluginConfiguration" Name="microsoft.powershell" Filename="%windir%\system32\pwrshplugin.dll" SDKVersion="1" XmlRenderingType="text" > <InitializationParameters> <Param Name="PSVersion" Value="2.0"/> </InitializationParameters> <Resources> <Resource ResourceUri="hxxp://schemas.microsoft.com/powershell/microsoft.powershell" SupportsOptions="true" ExactMatch="true"> <Security xmlns="hxxp://schemas.microsoft.com/wbem/wsman/1/config/PluginConfiguration" Uri="hxxp://schemas.microsoft.com/powershell/microsoft.powershell" ExactMatch="true" Sddl="O:NSG:BAD:P(A;;GA;;;BA)S:P(AU;FA;GA;;;WD)(AU;SA;GXGW;;;WD)"/> <Capability Type="Shell"/> </Resource> </Res [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#1&19F7E59C&0&_??_USBSTOR#DISK&VEN_APPLE&PROD_IPOD&REV_1.70# 000A270020D09A61&0#] "DeviceDesc"="iPod " [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#1&19F7E59C&0&_??_USBSTOR#DISK&VEN_APPLE&PROD_IPOD&REV_1.70# 000A270020D09A61&0#] "DeviceDesc"="iPod " [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#1&19F7E59C&0&_??_USBSTOR#DISK&VEN_APPLE&PROD_IPOD&REV_1 .70#000A270020D09A61&0#] "DeviceDesc"="iPod " -= EOF =- |
OTL bitte downloaden. Fixen mit OTL
Code: :otl
|
========== OTL ========== ========== REGISTRY ========== Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\657AA5DB75E22EA4AB2BA345ADC1054F\\SoftwareUpdater deleted successfully. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\SoftwareUpdater\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SystemStoreService\ deleted successfully. OTL by OldTimer - Version 3.2.69.0 log created on 07032013_221138 |
Noch nen Fix mit OTL bitte, dismal damit: Code: :files |
========== FILES ========== C:\Program Files\SoftwareUpdater folder moved successfully. OTL by OldTimer - Version 3.2.69.0 log created on 07052013_173725 |
Alle Zeitangaben in WEZ +1. Es ist jetzt 11:31 Uhr. |
Copyright ©2000-2025, Trojaner-Board