Euch auch noch einen entspannten Abend - und ja ich werde wieder ohne Cheaten zocken
Beiträge von Sir Leroy von Amn
-
-
puh... endlich geschafft, ich bin die Seite los (bzw. poppt der Fox nicht mehr auf)
Ich habe die Anleitung vonZitronella abgearbeitet, hat super funktioniert.
Die oonyx-Games sind sauber, ich hatte einen kostenlosen Trainer für X Rebirth runtergeladen und weil Antivir gemeckert hat, dieses abgeschalten... Der Trainer war von einem Russen programmiert worden... :oops:
Vielen Tausend Dank an Euch :klasse:
-
Zitat von Zitronella
:-?? Da wurde doch erneut eine Menge gefunden.
sorry, falschen report gepostet..hat nix gefunden
Code
Alles anzeigen~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.0.6 (04.25.2016) Operating System: Windows 7 Home Premium x64 Ran by Marco (Administrator) on 20.06.2016 at 20:50:18,84 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 2 Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UOK9F028 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UOK9F028 (Temporary Internet Files Folder) Deleted the following from C:\Users\Marco\AppData\Roaming\Mozilla\Firefox\Profiles\80pj3r29.default-1466014094484\prefs.js user_pref(lightweightThemes.usedThemes, [{\id\:\258460\,\name\:\Converse Hunk\,\headerURL\:\hxxps://addons.cdn.mozilla.net/user-media/addons/258460/converse.png? Registry: 0 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 20.06.2016 at 20:50:54,96 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
-
Autostart... der erste Eintrag scheint der Übeltäter zu sein...
Code
Alles anzeigenSysteminformationsbericht erstellt am: 06/20/16 20:41:37 Systemname: MARCO-PC [Autostartprogramme] Programm Befehl Benutzername Ort aogxztsrqr explorer "http://dorvali.ru/?utm_source=uoua03&utm_content=05607cd124c4af7e237b16fd26118f23&utm_term=040dbdc27cb42afb134f250f1ac22819&utm_d=20160614" Marco-PC\Marco Start IAStorIcon "c:\program files\intel\intel(r) rapid storage technology\iastoriconlaunch.exe" "c:\program files\intel\intel(r) rapid storage technology\iastoricon.exe" 60 Public HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run RTHDVCPL "c:\program files\realtek\audio\hda\ravcpl64.exe" -s Public HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run NvBackend "c:\program files (x86)\nvidia corporation\update core\nvbackend.exe" Public HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run Launch LCore c:\program files\logitech gaming software\lcore.exe /minimized Public HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
-
Programme
Code
Alles anzeigenSysteminformationsbericht erstellt am: 06/20/16 20:40:32 Systemname: MARCO-PC [Programmgruppen] Gruppenname Name Benutzername Start Menu Default:Start Menu Default Start Menu\Programme Default:Start Menu\Programme Default Start Menu\Programs Default:Start Menu\Programs Default Start Menu\Programs\Accessories Default:Start Menu\Programs\Accessories Default Start Menu\Programs\Accessories\Accessibility Default:Start Menu\Programs\Accessories\Accessibility Default Start Menu\Programs\Accessories\System Tools Default:Start Menu\Programs\Accessories\System Tools Default Start Menu\Programs\Maintenance Default:Start Menu\Programs\Maintenance Default Start Menu Public:Start Menu Public Start Menu\Programme Public:Start Menu\Programme Public Start Menu\Programs Public:Start Menu\Programs Public Start Menu\Programs\7-Zip Public:Start Menu\Programs\7-Zip Public Start Menu\Programs\Accessories Public:Start Menu\Programs\Accessories Public Start Menu\Programs\Accessories\Accessibility Public:Start Menu\Programs\Accessories\Accessibility Public Start Menu\Programs\Accessories\System Tools Public:Start Menu\Programs\Accessories\System Tools Public Start Menu\Programs\Accessories\Tablet PC Public:Start Menu\Programs\Accessories\Tablet PC Public Start Menu\Programs\Accessories\Windows PowerShell Public:Start Menu\Programs\Accessories\Windows PowerShell Public Start Menu\Programs\Administrative Tools Public:Start Menu\Programs\Administrative Tools Public Start Menu\Programs\Avira Public:Start Menu\Programs\Avira Public Start Menu\Programs\Avira\Antivirus Public:Start Menu\Programs\Avira\Antivirus Public Start Menu\Programs\AVS4YOU Public:Start Menu\Programs\AVS4YOU Public Start Menu\Programs\AVS4YOU\Video Public:Start Menu\Programs\AVS4YOU\Video Public Start Menu\Programs\Bejeweled 3 Public:Start Menu\Programs\Bejeweled 3 Public Start Menu\Programs\Die Sims 4 Public:Start Menu\Programs\Die Sims 4 Public Start Menu\Programs\FreePDF Public:Start Menu\Programs\FreePDF Public Start Menu\Programs\Games Public:Start Menu\Programs\Games Public Start Menu\Programs\Ghostscript Public:Start Menu\Programs\Ghostscript Public Start Menu\Programs\GROM Public:Start Menu\Programs\GROM Public Start Menu\Programs\Innonics Public:Start Menu\Programs\Innonics Public Start Menu\Programs\Innonics\Wiggles Public:Start Menu\Programs\Innonics\Wiggles Public Start Menu\Programs\Intel Public:Start Menu\Programs\Intel Public Start Menu\Programs\Intel\Intel(R) Update Manager Public:Start Menu\Programs\Intel\Intel(R) Update Manager Public Start Menu\Programs\Java Public:Start Menu\Programs\Java Public Start Menu\Programs\JoWooD Public:Start Menu\Programs\JoWooD Public Start Menu\Programs\JoWooD\Silent Storm Public:Start Menu\Programs\JoWooD\Silent Storm Public Start Menu\Programs\Kalypso Media Public:Start Menu\Programs\Kalypso Media Public Start Menu\Programs\Kalypso Media\Patrician IV Gold Public:Start Menu\Programs\Kalypso Media\Patrician IV Gold Public Start Menu\Programs\Logitech Public:Start Menu\Programs\Logitech Public Start Menu\Programs\Logitech\Maus und Tastatur Public:Start Menu\Programs\Logitech\Maus und Tastatur Public Start Menu\Programs\Logitech\Unifying Public:Start Menu\Programs\Logitech\Unifying Public Start Menu\Programs\Maintenance Public:Start Menu\Programs\Maintenance Public Start Menu\Programs\Microsoft Office Public:Start Menu\Programs\Microsoft Office Public Start Menu\Programs\Microsoft Office\Microsoft Office 2010-Tools Public:Start Menu\Programs\Microsoft Office\Microsoft Office 2010-Tools Public Start Menu\Programs\Microsoft Silverlight Public:Start Menu\Programs\Microsoft Silverlight Public Start Menu\Programs\Neverwinter Nights Public:Start Menu\Programs\Neverwinter Nights Public Start Menu\Programs\Notepad++ Public:Start Menu\Programs\Notepad++ Public Start Menu\Programs\NVIDIA Corporation Public:Start Menu\Programs\NVIDIA Corporation Public Start Menu\Programs\NVIDIA Corporation\3D Vision Public:Start Menu\Programs\NVIDIA Corporation\3D Vision Public Start Menu\Programs\OONYX Games Public:Start Menu\Programs\OONYX Games Public Start Menu\Programs\Origin Public:Start Menu\Programs\Origin Public Start Menu\Programs\Purplehills Public:Start Menu\Programs\Purplehills Public Start Menu\Programs\Quadriga Games Public:Start Menu\Programs\Quadriga Games Public Start Menu\Programs\Quadriga Games\Emergency 2014 Public:Start Menu\Programs\Quadriga Games\Emergency 2014 Public Start Menu\Programs\Samsung Public:Start Menu\Programs\Samsung Public Start Menu\Programs\Samsung\Kies3 Public:Start Menu\Programs\Samsung\Kies3 Public Start Menu\Programs\Skype Public:Start Menu\Programs\Skype Public Start Menu\Programs\Startup Public:Start Menu\Programs\Startup Public Start Menu\Programs\Steam Public:Start Menu\Programs\Steam Public Start Menu\Programs\Tablet PC Public:Start Menu\Programs\Tablet PC Public Start Menu\Programs\Ubisoft Public:Start Menu\Programs\Ubisoft Public Start Menu\Programs\Ubisoft\Funatics Public:Start Menu\Programs\Ubisoft\Funatics Public Start Menu\Programs\Ubisoft\Funatics\Die Siedler II - Die nächste Generation Public:Start Menu\Programs\Ubisoft\Funatics\Die Siedler II - Die nächste Generation Public Start Menu\Programs\Unity 5.1.3f1 (64-bit) Public:Start Menu\Programs\Unity 5.1.3f1 (64-bit) Public Start Menu\Programs\Vulkan 1.0.3.0 Public:Start Menu\Programs\Vulkan 1.0.3.0 Public Start Menu\Programs\Vulkan 1.0.3.0\Demos Public:Start Menu\Programs\Vulkan 1.0.3.0\Demos Public Start Menu\Programs\Windows Server Essentials Public:Start Menu\Programs\Windows Server Essentials Public Start Menu\Programs\Windows Virtual PC Public:Start Menu\Programs\Windows Virtual PC Public Start Menu\Programs\WinRAR Public:Start Menu\Programs\WinRAR Public Start Menu Marco-PC\Marco:Start Menu Marco-PC\Marco Start Menu\Programme Marco-PC\Marco:Start Menu\Programme Marco-PC\Marco Start Menu\Programs Marco-PC\Marco:Start Menu\Programs Marco-PC\Marco Start Menu\Programs\Accessories Marco-PC\Marco:Start Menu\Programs\Accessories Marco-PC\Marco Start Menu\Programs\Accessories\Accessibility Marco-PC\Marco:Start Menu\Programs\Accessories\Accessibility Marco-PC\Marco Start Menu\Programs\Accessories\System Tools Marco-PC\Marco:Start Menu\Programs\Accessories\System Tools Marco-PC\Marco Start Menu\Programs\Administrative Tools Marco-PC\Marco:Start Menu\Programs\Administrative Tools Marco-PC\Marco Start Menu\Programs\AVS4YOU Marco-PC\Marco:Start Menu\Programs\AVS4YOU Marco-PC\Marco Start Menu\Programs\Games Marco-PC\Marco:Start Menu\Programs\Games Marco-PC\Marco Start Menu\Programs\Innonics Marco-PC\Marco:Start Menu\Programs\Innonics Marco-PC\Marco Start Menu\Programs\Innonics\Wiggles Marco-PC\Marco:Start Menu\Programs\Innonics\Wiggles Marco-PC\Marco Start Menu\Programs\IrfanView Marco-PC\Marco:Start Menu\Programs\IrfanView Marco-PC\Marco Start Menu\Programs\Maintenance Marco-PC\Marco:Start Menu\Programs\Maintenance Marco-PC\Marco Start Menu\Programs\OONYX Starter 2.11.1 Marco-PC\Marco:Start Menu\Programs\OONYX Starter 2.11.1 Marco-PC\Marco Start Menu\Programs\Quadriga Games Marco-PC\Marco:Start Menu\Programs\Quadriga Games Marco-PC\Marco Start Menu\Programs\Startup Marco-PC\Marco:Start Menu\Programs\Startup Marco-PC\Marco Start Menu\Programs\Storage Executive Marco-PC\Marco:Start Menu\Programs\Storage Executive Marco-PC\Marco Start Menu\Programs\Ubisoft Marco-PC\Marco:Start Menu\Programs\Ubisoft Marco-PC\Marco Start Menu\Programs\Ubisoft\Uplay Marco-PC\Marco:Start Menu\Programs\Ubisoft\Uplay Marco-PC\Marco Start Menu\Programs\WinRAR Marco-PC\Marco:Start Menu\Programs\WinRAR Marco-PC\Marco
-
ja, das passiert immer noch
ok, mom...
-
JRT auch nix
Code
Alles anzeigen~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.0.6 (04.25.2016) Operating System: Windows 7 Home Premium x64 Ran by Marco (Administrator) on 20.06.2016 at 20:32:57,05 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 6 Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\33FH8TI9 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QR8AN0XG (Temporary Internet Files Folder) Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UOK9F028 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\33FH8TI9 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QR8AN0XG (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UOK9F028 (Temporary Internet Files Folder) Deleted the following from C:\Users\Marco\AppData\Roaming\Mozilla\Firefox\Profiles\80pj3r29.default-1466014094484\prefs.js user_pref(lightweightThemes.usedThemes, [{\id\:\258460\,\name\:\Converse Hunk\,\headerURL\:\hxxps://addons.cdn.mozilla.net/user-media/addons/258460/converse.png? Registry: 0 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 20.06.2016 at 20:33:32,38 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
-
MWB auch keine Funde
Code
Alles anzeigenMalwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 20.06.2016 Suchlaufzeit: 20:23 Protokolldatei: mwb.txt Administrator: Ja Version: 2.2.1.1043 Malware-Datenbank: v2016.06.20.05 Rootkit-Datenbank: v2016.05.27.01 Lizenz: Kostenlose Version Malware-Schutz: Deaktiviert Schutz vor bösartigen Websites: Deaktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: Marco Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 305268 Abgelaufene Zeit: 4 Min., 25 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (keine bösartigen Elemente erkannt) Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 0 (keine bösartigen Elemente erkannt) Registrierungswerte: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Ordner: 0 (keine bösartigen Elemente erkannt) Dateien: 0 (keine bösartigen Elemente erkannt) Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end)
-
ADW hat nix gefunden
Code
Alles anzeigen# AdwCleaner v5.200 - Bericht erstellt am 20/06/2016 um 20:21:41 # Aktualisiert am 14/06/2016 von ToolsLib # Datenbank : 2016-06-20.3 [Server] # Betriebssystem : Windows 7 Home Premium Service Pack 1 (X64) # Benutzername : Marco - MARCO-PC # Gestartet von : E:\Eigene Dateien\Downloads\adwcleaner_5.200.exe # Option : Suchlauf # Unterstützung : https://toolslib.net/forum ***** [ Dienste ] ***** ***** [ Ordner ] ***** ***** [ Dateien ] ***** ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Verknüpfungen ] ***** ***** [ Aufgabenplanung ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Internetbrowser ] ***** ************************* C:\AdwCleaner\AdwCleaner[C1].txt - [4366 Bytes] - [15/06/2016 19:13:12] C:\AdwCleaner\AdwCleaner[C2].txt - [1372 Bytes] - [20/06/2016 18:22:50] C:\AdwCleaner\AdwCleaner[S1].txt - [4533 Bytes] - [15/06/2016 19:11:01] C:\AdwCleaner\AdwCleaner[S2].txt - [999 Bytes] - [15/06/2016 19:19:33] C:\AdwCleaner\AdwCleaner[S3].txt - [1071 Bytes] - [15/06/2016 19:22:28] C:\AdwCleaner\AdwCleaner[S4].txt - [1274 Bytes] - [20/06/2016 18:19:34] C:\AdwCleaner\AdwCleaner[S5].txt - [1292 Bytes] - [20/06/2016 18:29:32] C:\AdwCleaner\AdwCleaner[S6].txt - [1213 Bytes] - [20/06/2016 20:21:41] ########## EOF - C:\AdwCleaner\AdwCleaner[S6].txt - [1286 Bytes] ##########
-
was ist das eigentlich für ein dienst, kann der deaktiviert werden?
[Blockierte Grafik: http://www.bilder-upload.eu/thumb/cb6869-1466445459.jpg]
-
hier noch der Report von JRT... hat aber auch nichts gebracht.
Code
Alles anzeigen~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.0.6 (04.25.2016) Operating System: Windows 7 Home Premium x64 Ran by Marco (Administrator) on 20.06.2016 at 19:43:18,90 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 33 Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1HFS5XWM (Temporary Internet Files Folder) Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1Q5FJT29 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\33FH8TI9 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6Y4IBD3C (Temporary Internet Files Folder) Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DK6DTZ6F (Temporary Internet Files Folder) Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MYY5JG0J (Temporary Internet Files Folder) Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NDZSVECT (Temporary Internet Files Folder) Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\P73T00GW (Temporary Internet Files Folder) Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QR8AN0XG (Temporary Internet Files Folder) Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RTIX6OTF (Temporary Internet Files Folder) Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UOK9F028 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Marco\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZKYGD1MS (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1HFS5XWM (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1Q5FJT29 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\33FH8TI9 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6Y4IBD3C (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DK6DTZ6F (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MYY5JG0J (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NDZSVECT (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\P73T00GW (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QR8AN0XG (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RTIX6OTF (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UOK9F028 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZKYGD1MS (Temporary Internet Files Folder) Successfully deleted: C:\Windows\SysWOW64\REN36A.tmp (File) Deleted the following from C:\Users\Marco\AppData\Roaming\Mozilla\Firefox\Profiles\80pj3r29.default-1466014094484\prefs.js user_pref(lightweightThemes.usedThemes, [{\id\:\258460\,\name\:\Converse Hunk\,\headerURL\:\hxxps://addons.cdn.mozilla.net/user-media/addons/258460/converse.png? Registry: 0 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 20.06.2016 at 19:43:55,90 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
-
im Autostart im Startmenü ist der fox nicht drin.
danke 2002Andreas für den Tipp ich habe das gefunden
[Blockierte Grafik: http://www.bilder-upload.eu/thumb/a1d1a7-1466444477.jpg]nach Bereinigung Neustart und die Seite...war wieder da.
Ich probier noch den Junkware Removal aus.
-
die Verknüpfen sind sauber
-
nach dem Löschen der quarantäne von MWB habe ich den rechner neu gestartet - die seite ist wieder da
Allerdings kommt die Seite nur wenn der Fox bei PC Start automatisch startet. Wenn ich den Fox beende und ein neues Fenster aufmache lädt er die Google-Seite - wie es sein soll.
Der Fox soll auch gar nicht starten bei PC Start - wo stellt man das ein?
-
Code
Alles anzeigenMalwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 20.06.2016 Suchlaufzeit: 18:35 Protokolldatei: mwb.txt Administrator: Ja Version: 2.2.1.1043 Malware-Datenbank: v2016.06.20.04 Rootkit-Datenbank: v2016.05.27.01 Lizenz: Kostenlose Version Malware-Schutz: Deaktiviert Schutz vor bösartigen Websites: Deaktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: Marco Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 305432 Abgelaufene Zeit: 3 Min., 40 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (keine bösartigen Elemente erkannt) Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 5 PUP.Optional.TorrentSearch, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\EXTENSIONS\{03AE1B7B-A9E7-4D5A-9D34-89999C31B659}, , [a98b46b91980c472f6039bf30df5de22], PUP.Optional.TorrentSearch, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\EXTENSIONS\{03AE1B7B-A9E7-4D5A-9D34-89999C31B659}, , [a98b46b91980c472f6039bf30df5de22], PUP.Optional.TorrentSearch, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DCFCC2EC-3F33-45A8-8ADF-A6C81F11232F}, , [8fa5d52a801982b43cbe2e601ee4619f], PUP.Optional.TSearch, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{6E727987-C8EA-44DA-8749-310C0FBE3C3E}, , [0430b04f7d1c94a24e0d5438c0424fb1], PUP.Optional.StartPage, HKU\S-1-5-21-3159015623-2977164125-1696957992-1000\SOFTWARE\START PAGE, , [01334fb0fa9f9d99cae354984cb7936d], Registrierungswerte: 1 PUP.Optional.StartPage, HKU\S-1-5-21-3159015623-2977164125-1696957992-1000\SOFTWARE\START PAGE|Start Page, http://dorvali.ru/?utm_source=startpage03&utm_content=782c461c0edd2ac48308bb2b300525de&utm_term=040DBDC27CB42AFB134F250F1AC22819&utm_d=20160614, , [01334fb0fa9f9d99cae354984cb7936d] Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Ordner: 0 (keine bösartigen Elemente erkannt) Dateien: 0 (keine bösartigen Elemente erkannt) Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end)
-
Adwcleaner:
Code
Alles anzeigen# AdwCleaner v5.200 - Bericht erstellt am 20/06/2016 um 18:19:34 # Aktualisiert am 14/06/2016 von ToolsLib # Datenbank : 2016-06-20.3 [Server] # Betriebssystem : Windows 7 Home Premium Service Pack 1 (X64) # Benutzername : Marco - MARCO-PC # Gestartet von : E:\Eigene Dateien\Downloads\adwcleaner_5.200.exe # Option : Suchlauf # Unterstützung : https://toolslib.net/forum ***** [ Dienste ] ***** ***** [ Ordner ] ***** ***** [ Dateien ] ***** ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Verknüpfungen ] ***** ***** [ Aufgabenplanung ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel gefunden : HKCU\Software\OCS Schlüssel gefunden : HKU\S-1-5-21-3159015623-2977164125-1696957992-1000\Software\OCS ***** [ Internetbrowser ] ***** ************************* C:\AdwCleaner\AdwCleaner[C1].txt - [4366 Bytes] - [15/06/2016 19:13:12] C:\AdwCleaner\AdwCleaner[S1].txt - [4533 Bytes] - [15/06/2016 19:11:01] C:\AdwCleaner\AdwCleaner[S2].txt - [999 Bytes] - [15/06/2016 19:19:33] C:\AdwCleaner\AdwCleaner[S3].txt - [1071 Bytes] - [15/06/2016 19:22:28] C:\AdwCleaner\AdwCleaner[S4].txt - [1122 Bytes] - [20/06/2016 18:19:34] ########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [1195 Bytes] ##########
-
Code
Alles anzeigenAllgemeine Informationen ------------------------ Name: Firefox Version: 47.0 Build-ID: 20160604131506 Update-Kanal: release User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:47.0) Gecko/20100101 Firefox/47.0 Betriebssystem: Windows_NT 6.1 x86 Fenster mit mehreren Prozessen: 0/2 (deaktiviert) Abgesicherter Modus: false Absturzberichte der letzten 3 Tage ---------------------------------- Alle Absturzberichte Erweiterungen ------------- Name: Adblock Plus Version: 2.7.3 Aktiviert: true ID: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} Name: Firefox Hello Version: 1.3.2 Aktiviert: true ID: loop@mozilla.org Name: Multi-process staged rollout Version: 1.0 Aktiviert: true ID: e10srollout@mozilla.org Name: Pocket Version: 1.0.2 Aktiviert: true ID: firefox@getpocket.com Name: Logitech SetPoint Version: 6.5 Aktiviert: false ID: {F003DA68-8256-4b37-A6C4-350FA04494DF} Grafik ------ Asynchrones Wischen und Zoomen: nichts Direct2D aktiviert: true DirectWrite aktiviert: true (6.2.9200.17461) Gerätekennung: 0x0dc4 GPU #2 aktiv: false GPU-beschleunigte Fenster: 2/2 Direct3D 11 (OMTC) H264-Hardware-Dekodierung unterstützt: Yes Herstellerkennung: 0x10de Karten-Beschreibung: NVIDIA GeForce GTS 450 Karten-RAM: 1024 Karten-Treiber: nvd3dumx,nvwgf2umx,nvwgf2umx nvd3dum,nvwgf2um,nvwgf2um Subsys-ID: 085a196e Treiber-Datum: 6-2-2016 Treiber-Version: 10.18.13.6839 WebGL-Renderer: Google Inc. -- ANGLE (NVIDIA GeForce GTS 450 Direct3D11 vs_5_0 ps_5_0) windowLayerManagerRemote: true AzureCanvasAccelerated: 0 AzureCanvasBackend: direct2d 1.1 AzureContentBackend: direct2d 1.1 AzureFallbackCanvasBackend: cairo (#0) Error: [D2D1.1] 4CreateBitmap failure Size(210,20320) Code: 0x80070057 format 0 (#1) Error: [D2D1.1] 4CreateBitmap failure Size(210,20320) Code: 0x80070057 format 0 (#2) Error: [D2D1.1] 4CreateBitmap failure Size(210,20320) Code: 0x80070057 format 0 (#3) Error: [D2D1.1] 4CreateBitmap failure Size(210,20320) Code: 0x80070057 format 0 (#4) Error: [D2D1.1] 4CreateBitmap failure Size(210,20320) Code: 0x80070057 format 0 Wichtige modifizierte Einstellungen ----------------------------------- browser.cache.disk.capacity: 358400 browser.cache.disk.filesystem_reported: 1 browser.cache.disk.smart_size.first_run: false browser.cache.disk.smart_size.use_old_max: false browser.cache.frecency_experiment: 1 browser.download.importedFromSqlite: true browser.places.smartBookmarksVersion: 7 browser.sessionstore.upgradeBackup.latestBuildID: 20160604131506 browser.startup.homepage: http://www.google.de/ browser.startup.homepage_override.buildID: 20160604131506 browser.startup.homepage_override.mstone: 47.0 browser.tabs.warnOnClose: false dom.apps.reset-permissions: true dom.mozApps.used: true extensions.lastAppVersion: 47.0 gfx.crash-guard.d3d11layers.appVersion: 47.0 gfx.crash-guard.d3d11layers.deviceID: 0x0dc4 gfx.crash-guard.d3d11layers.driverVersion: 10.18.13.6839 gfx.crash-guard.d3d11layers.feature-d2d: true gfx.crash-guard.d3d11layers.feature-d3d11: true gfx.crash-guard.status.d3d11layers: 2 gfx.crash-guard.status.d3d9video: 2 media.gmp-eme-adobe.abi: x86-msvc-x64 media.gmp-eme-adobe.lastUpdate: 1466014785 media.gmp-eme-adobe.version: 17 media.gmp-gmpopenh264.abi: x86-msvc-x64 media.gmp-gmpopenh264.lastUpdate: 1466014785 media.gmp-gmpopenh264.version: 1.5.3 media.gmp-manager.buildID: 20160604131506 media.gmp-manager.lastCheck: 1466434235 media.gmp-widevinecdm.abi: x86-msvc-x64 media.gmp-widevinecdm.lastUpdate: 1466014786 media.gmp-widevinecdm.version: 1.4.8.866 media.gmp.storage.version.observed: 1 media.hardware-video-decoding.failed: false network.cookie.prefsMigrated: true network.predictor.cleaned-up: true places.database.lastMaintenance: 1466018248 places.history.expiration.transient_current_max_pages: 104858 plugin.disable_full_page_plugin_for_types: application/pdf plugin.importedState: true print.printer_Brother_HL-2130_series.print_bgcolor: false print.printer_Brother_HL-2130_series.print_bgimages: false print.printer_Brother_HL-2130_series.print_duplex: -437918235 print.printer_Brother_HL-2130_series.print_edge_bottom: 0 print.printer_Brother_HL-2130_series.print_edge_left: 0 print.printer_Brother_HL-2130_series.print_edge_right: 0 print.printer_Brother_HL-2130_series.print_edge_top: 0 print.printer_Brother_HL-2130_series.print_evenpages: true print.printer_Brother_HL-2130_series.print_in_color: true print.printer_Brother_HL-2130_series.print_margin_bottom: 0.5 print.printer_Brother_HL-2130_series.print_margin_left: 0.5 print.printer_Brother_HL-2130_series.print_margin_right: 0.5 print.printer_Brother_HL-2130_series.print_margin_top: 0.5 print.printer_Brother_HL-2130_series.print_oddpages: true print.printer_Brother_HL-2130_series.print_orientation: 0 print.printer_Brother_HL-2130_series.print_page_delay: 50 print.printer_Brother_HL-2130_series.print_paper_data: 9 print.printer_Brother_HL-2130_series.print_paper_height: 297,00 print.printer_Brother_HL-2130_series.print_paper_name: print.printer_Brother_HL-2130_series.print_paper_size_unit: 1 print.printer_Brother_HL-2130_series.print_paper_width: 210,00 print.printer_Brother_HL-2130_series.print_resolution: 600 print.printer_Brother_HL-2130_series.print_reversed: false print.printer_Brother_HL-2130_series.print_scaling: 1,00 print.printer_Brother_HL-2130_series.print_shrink_to_fit: true print.printer_Brother_HL-2130_series.print_to_file: false print.printer_Brother_HL-2130_series.print_unwriteable_margin_bottom: 0 print.printer_Brother_HL-2130_series.print_unwriteable_margin_left: 0 print.printer_Brother_HL-2130_series.print_unwriteable_margin_right: 0 print.printer_Brother_HL-2130_series.print_unwriteable_margin_top: 0 privacy.donottrackheader.enabled: true services.sync.declinedEngines: services.sync.engine.prefs.modified: false services.sync.lastPing: 1466434190 services.sync.lastSync: Mon Jun 20 2016 17:16:27 GMT+0200 services.sync.numClients: 3 storage.vacuum.last.index: 1 storage.vacuum.last.places.sqlite: 1466018247 Wichtige nicht veränderbare Einstellungen ----------------------------------------- JavaScript ---------- Inkrementelle GC: true Barrierefreiheit ---------------- Aktiviert: false Barrierefreiheit verhindern: 0 Bibliotheken-Versionen ---------------------- NSPR Minimal vorausgesetzte Version: 4.12 Verwendete Version: 4.12 NSS Minimal vorausgesetzte Version: 3.23 Basic ECC Verwendete Version: 3.23 Basic ECC NSSSMIME Minimal vorausgesetzte Version: 3.23 Basic ECC Verwendete Version: 3.23 Basic ECC NSSSSL Minimal vorausgesetzte Version: 3.23 Basic ECC Verwendete Version: 3.23 Basic ECC NSSUTIL Minimal vorausgesetzte Version: 3.23 Verwendete Version: 3.23 Experimentelle Funktionen -------------------------
-
Code
Alles anzeigen{ "application": { "name": "Firefox", "osVersion": "Windows_NT 6.1", "arch": "x86", "version": "47.0", "buildID": "20160604131506", "userAgent": "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:47.0) Gecko/20100101 Firefox/47.0", "safeMode": false, "updateChannel": "release", "supportURL": "https://support.mozilla.org/1/firefox/47.0/WINNT/de/", "numTotalWindows": 2, "numRemoteWindows": 0, "remoteAutoStart": false, "autoStartStatus": 2 }, "modifiedPreferences": { "browser.cache.frecency_experiment": 1, "browser.cache.disk.smart_size.first_run": false, "browser.cache.disk.smart_size.use_old_max": false, "browser.cache.disk.capacity": 358400, "browser.cache.disk.filesystem_reported": 1, "browser.download.importedFromSqlite": true, "browser.places.smartBookmarksVersion": 7, "browser.sessionstore.upgradeBackup.latestBuildID": "20160604131506", "browser.startup.homepage": "http://www.google.de/", "browser.startup.homepage_override.buildID": "20160604131506", "browser.startup.homepage_override.mstone": "47.0", "browser.tabs.warnOnClose": false, "dom.apps.reset-permissions": true, "dom.mozApps.used": true, "extensions.lastAppVersion": "47.0", "gfx.crash-guard.d3d11layers.appVersion": "47.0", "gfx.crash-guard.d3d11layers.feature-d3d11": true, "gfx.crash-guard.d3d11layers.feature-d2d": true, "gfx.crash-guard.d3d11layers.driverVersion": "10.18.13.6839", "gfx.crash-guard.d3d11layers.deviceID": "0x0dc4", "gfx.crash-guard.status.d3d9video": 2, "gfx.crash-guard.status.d3d11layers": 2, "media.gmp-eme-adobe.abi": "x86-msvc-x64", "media.gmp.storage.version.observed": 1, "media.gmp-eme-adobe.lastUpdate": 1466014785, "media.gmp-widevinecdm.lastUpdate": 1466014786, "media.gmp-gmpopenh264.version": "1.5.3", "media.gmp-gmpopenh264.lastUpdate": 1466014785, "media.hardware-video-decoding.failed": false, "media.gmp-eme-adobe.version": "17", "media.gmp-gmpopenh264.abi": "x86-msvc-x64", "media.gmp-manager.buildID": "20160604131506", "media.gmp-widevinecdm.abi": "x86-msvc-x64", "media.gmp-manager.lastCheck": 1466434235, "media.gmp-widevinecdm.version": "1.4.8.866", "network.cookie.prefsMigrated": true, "network.predictor.cleaned-up": true, "places.database.lastMaintenance": 1466018248, "places.history.expiration.transient_current_max_pages": 104858, "plugin.importedState": true, "plugin.disable_full_page_plugin_for_types": "application/pdf", "print.printer_Brother_HL-2130_series.print_paper_name": "", "print.printer_Brother_HL-2130_series.print_margin_bottom": "0.5", "print.printer_Brother_HL-2130_series.print_unwriteable_margin_bottom": 0, "print.printer_Brother_HL-2130_series.print_edge_right": 0, "print.printer_Brother_HL-2130_series.print_oddpages": true, "print.printer_Brother_HL-2130_series.print_in_color": true, "print.printer_Brother_HL-2130_series.print_orientation": 0, "print.printer_Brother_HL-2130_series.print_paper_width": "210,00", "print.printer_Brother_HL-2130_series.print_margin_top": "0.5", "print.printer_Brother_HL-2130_series.print_bgcolor": false, "print.printer_Brother_HL-2130_series.print_margin_right": "0.5", "print.printer_Brother_HL-2130_series.print_paper_height": "297,00", "print.printer_Brother_HL-2130_series.print_edge_left": 0, "print.printer_Brother_HL-2130_series.print_shrink_to_fit": true, "print.printer_Brother_HL-2130_series.print_resolution": 600, "print.printer_Brother_HL-2130_series.print_paper_data": 9, "print.printer_Brother_HL-2130_series.print_to_file": false, "print.printer_Brother_HL-2130_series.print_edge_bottom": 0, "print.printer_Brother_HL-2130_series.print_unwriteable_margin_left": 0, "print.printer_Brother_HL-2130_series.print_duplex": -437918235, "print.printer_Brother_HL-2130_series.print_unwriteable_margin_top": 0, "print.printer_Brother_HL-2130_series.print_edge_top": 0, "print.printer_Brother_HL-2130_series.print_margin_left": "0.5", "print.printer_Brother_HL-2130_series.print_evenpages": true, "print.printer_Brother_HL-2130_series.print_scaling": " 1,00", "print.printer_Brother_HL-2130_series.print_unwriteable_margin_right": 0, "print.printer_Brother_HL-2130_series.print_reversed": false, "print.printer_Brother_HL-2130_series.print_paper_size_unit": 1, "print.printer_Brother_HL-2130_series.print_bgimages": false, "print.printer_Brother_HL-2130_series.print_page_delay": 50, "privacy.donottrackheader.enabled": true, "services.sync.declinedEngines": "", "services.sync.lastPing": 1466434190, "services.sync.lastSync": "Mon Jun 20 2016 17:16:27 GMT+0200", "services.sync.numClients": 3, "services.sync.engine.prefs.modified": false, "storage.vacuum.last.places.sqlite": 1466018247, "storage.vacuum.last.index": 1 }, "lockedPreferences": {}, "javaScript": { "incrementalGCEnabled": true }, "accessibility": { "isActive": false, "forceDisabled": 0 }, "libraryVersions": { "NSPR": { "minVersion": "4.12", "version": "4.12" }, "NSS": { "minVersion": "3.23 Basic ECC", "version": "3.23 Basic ECC" }, "NSSUTIL": { "minVersion": "3.23", "version": "3.23" }, "NSSSSL": { "minVersion": "3.23 Basic ECC", "version": "3.23 Basic ECC" }, "NSSSMIME": { "minVersion": "3.23 Basic ECC", "version": "3.23 Basic ECC" } }, "userJS": { "exists": false }, "crashes": { "submitted": [], "pending": 0 }, "extensions": [ { "name": "Adblock Plus", "version": "2.7.3", "isActive": true, "id": "{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}" }, { "name": "Firefox Hello", "version": "1.3.2", "isActive": true, "id": "loop@mozilla.org" }, { "name": "Multi-process staged rollout", "version": "1.0", "isActive": true, "id": "e10srollout@mozilla.org" }, { "name": "Pocket", "version": "1.0.2", "isActive": true, "id": "firefox@getpocket.com" }, { "name": "Logitech SetPoint", "version": "6.5", "isActive": false, "id": "{F003DA68-8256-4b37-A6C4-350FA04494DF}" } ], "experiments": [], "graphics": { "numTotalWindows": 2, "numAcceleratedWindows": 2, "windowLayerManagerType": "Direct3D 11", "windowLayerManagerRemote": true, "supportsHardwareH264": "Yes", "adapterDescription": "NVIDIA GeForce GTS 450", "adapterVendorID": "0x10de", "adapterDeviceID": "0x0dc4", "adapterSubsysID": "085a196e", "adapterRAM": "1024", "adapterDrivers": "nvd3dumx,nvwgf2umx,nvwgf2umx nvd3dum,nvwgf2um,nvwgf2um", "driverVersion": "10.18.13.6839", "driverDate": "6-2-2016", "adapterDescription2": "", "adapterVendorID2": "", "adapterDeviceID2": "", "adapterSubsysID2": "", "adapterRAM2": "", "adapterDrivers2": "", "driverVersion2": "", "driverDate2": "", "isGPU2Active": false, "direct2DEnabled": true, "directWriteEnabled": true, "directWriteVersion": "6.2.9200.17461", "webglRenderer": "Google Inc. -- ANGLE (NVIDIA GeForce GTS 450 Direct3D11 vs_5_0 ps_5_0)", "info": { "AzureCanvasBackend": "direct2d 1.1", "AzureCanvasAccelerated": 0, "AzureFallbackCanvasBackend": "cairo", "AzureContentBackend": "direct2d 1.1" }, "failures": [ "[GFX1-]: [D2D1.1] 4CreateBitmap failure Size(210,20320) Code: 0x80070057 format 0", "[GFX1-]: [D2D1.1] 4CreateBitmap failure Size(210,20320) Code: 0x80070057 format 0", "[GFX1-]: [D2D1.1] 4CreateBitmap failure Size(210,20320) Code: 0x80070057 format 0", "[GFX1-]: [D2D1.1] 4CreateBitmap failure Size(210,20320) Code: 0x80070057 format 0", "[GFX1-]: [D2D1.1] 4CreateBitmap failure Size(210,20320) Code: 0x80070057 format 0" ], "indices": [ 0, 1, 2, 3, 4 ] } }
-
Moin,
ich habe fast dasselbe Problem. Ich habe mir einen Trainer für ein Game heruntergeladen und dafür Antivir ausgeschaltet. Ich weiß - total schlau^^ Der Trainer hat übrigens nicht funktioniert.
Dafür startet der Fox jetzt bei PC-Start automatisch und zeigt mir statt der eingerichteten Startseite Google eine wunderschön nervige russische Site. Und ich werd die nicht wieder los.
ADWCleaner habe ich ausgeführt
Shortcut Cleaner von bleepingcomputer habe ich ausgeführt
Firefox bereinigen habe ich ausgeführt
alle .js-Dateien habe ich entfernt...hat alles nix gebracht. nervig.
LG Leroy
Edit von 2002Andreas
Zur Information für Dich:
Bitte vor dem Posten lesen sagt unter Punkt 5:ZitatEröffne Deinen eigenen Thread im Forum. Auch wenn das in einem anderen Thread geschilderte Problem auf den ersten Blick identisch mit Deinem Problem ist: es gibt immer die eine oder andere Abweichung (anderes Betriebssystem, andere Erweiterungen, andere Sicherheitssoftware usw.). Ausserdem werden Threads, in denen mehrere User das +- gleiche Problem schildern schnell unübersichtlich und es könnte sogar sein, dass Deine Frage schlicht und einfach übersehen wird.
Deswegen habe ich Deine Frage abgetrennt von hier:
Startseite in Firefox ändern
und in einen neuen Thread verschoben.