You are not logged in.

Monday, September 1st 2014, 1:12pm

The Avira Forum will be moved to the new platform Avira Answers soon. We'll make the transition of existing user profiles and threads as smooth as possible.
New visitors are able to log in on Avira Answers with the existing Avira account directly or sign up with a new account.

  • "mona2204" started this thread

Date of registration:
Feb 22nd 2013

Version:
Avira Free Antivirus

Operating System:
Windows Vista

  • Send private message

1

Friday, February 22nd 2013, 2:56pm

update schlägt immer fehl

hab mal wie im anderen thema beschrieben OTL durchlaufen lassen


http://www.file-upload.net/download-7242350/datei.txt.html

hier der link dazu.

hoffe ihr könnt mir erklären wo der fehler ist.

  • "mona2204" started this thread

Date of registration:
Feb 22nd 2013

Version:
Avira Free Antivirus

Operating System:
Windows Vista

  • Send private message

2

Friday, February 22nd 2013, 4:43pm

hab mal wie im anderen thema beschrieben OTL durchlaufen lassen


http://www.file-upload.net/download-7242350/datei.txt.html

hier der link dazu.

hoffe ihr könnt mir erklären wo der fehler ist.
oder hilft das gar nicht weiter. sollte ich was anderes tun?

3

Friday, February 22nd 2013, 6:34pm

Im Moment sehe ich nur viel zuviel Adware.

• Starte bitte die OTL.exe
• Kopiere nun das Folgende in die Textbox Ausser das Wort Zitat :

Quoted


:OTL
SRV - (Updater Service for StartNow Toolbar) -- C:\Programme\StartNow Toolbar\ToolbarUpdaterService.exe ()
DRV - (NwlnkFwd) -- system32\DRIVERS\nwlnkfwd.sys File not found
DRV - (NwlnkFlt) -- system32\DRIVERS\nwlnkflt.sys File not found
DRV - (IpInIp) -- system32\DRIVERS\ipinip.sys File not found
DRV - (gdrv) -- C:\Windows\gdrv.sys File not found
DRV - (blbdrive) -- C:\Windows\system32\drivers\blbdrive.sys File not found
IE - HKLM\..\URLSearchHook: {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Programme\Vuze_Remote\prxtbVuze.dll (Conduit Ltd.)
IE - HKLM\..\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}: "URL" = http://feed.snap.do/?publisher=SnapdoOpenCandy&dpid=SnapdoOpenCandy&co=DE&userid=bf401ee7-f9e7-42f4-904e-493ee7caf802&searchtype=ds&q={searchTerms}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = http://dts.search-results.com/sr?src=ieb&appid=113&systemid=406&sr=0&q={searchTerms}
IE - HKU\S-1-5-21-3125747682-339867682-992166002-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://feed.snap.do/?publisher=SnapdoOpenCandy&dpid=SnapdoOpenCandy&co=DE&userid=bf401ee7-f9e7-42f4-904e-493ee7caf802&searchtype=ds&q={searchTerms}
IE - HKU\S-1-5-21-3125747682-339867682-992166002-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://feed.snap.do/?publisher=SnapdoOpenCandy&dpid=SnapdoOpenCandy&co=DE&userid=bf401ee7-f9e7-42f4-904e-493ee7caf802&searchtype=ds&q={searchTerms}
IE - HKU\S-1-5-21-3125747682-339867682-992166002-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://klit.startnow.com/?src=startpage&provider=&provider_name=yahoo&provider_code=&partner_id=693&product_id=741&affiliate_id=&channel=&toolbar_id=200&toolbar_version=2.4.0&install_country=DE&install_date=20130203&user_guid=D320B75562144A6AA0A9CF860316D6B5&machine_id=bfd71a6de0d3c5c727e7b4033264b5f0&browser=IE&os=win&os_version=6.0-x86-SP2
IE - HKU\S-1-5-21-3125747682-339867682-992166002-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://feed.snap.do/?publisher=SnapdoOpenCandy&dpid=SnapdoOpenCandy&co=DE&userid=bf401ee7-f9e7-42f4-904e-493ee7caf802&searchtype=hp&exp=true
IE - HKU\S-1-5-21-3125747682-339867682-992166002-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.snap.do/?publisher=SnapdoOpenCandy&dpid=SnapdoOpenCandy&co=DE&userid=bf401ee7-f9e7-42f4-904e-493ee7caf802&searchtype=ds&q={searchTerms}
IE - HKU\S-1-5-21-3125747682-339867682-992166002-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.snap.do/?publisher=SnapdoOpenCandy&dpid=SnapdoOpenCandy&co=DE&userid=bf401ee7-f9e7-42f4-904e-493ee7caf802&searchtype=ds&q={searchTerms}
IE - HKU\S-1-5-21-3125747682-339867682-992166002-1000\..\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}: "URL" = http://feed.snap.do/?publisher=SnapdoOpenCandy&dpid=SnapdoOpenCandy&co=DE&userid=bf401ee7-f9e7-42f4-904e-493ee7caf802&searchtype=ds&q={searchTerms}
IE - HKU\S-1-5-21-3125747682-339867682-992166002-1000\..\SearchScopes\{0388404D-6072-4CEB-B521-8F090FEAEE57}: "URL" = http://klit.startnow.com/s/?q={searchTerms}&src=defsearch&provider=&provider_name=yahoo&provider_code=&partner_id=693&product_id=741&affiliate_id=&channel=&toolbar_id=200&toolbar_version=2.4.0&install_country=DE&install_date=20130203&user_guid=D320B75562144A6AA0A9CF860316D6B5&machine_id=bfd71a6de0d3c5c727e7b4033264b5f0&browser=IE&os=win&os_version=6.0-x86-SP2&iesrc={referrer:source}
IE - HKU\S-1-5-21-3125747682-339867682-992166002-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-3125747682-339867682-992166002-1000\..\SearchScopes\{0D7562AE-8EF6-416d-A838-AB665251703A}: "URL" = http://start.facemoods.com/?a=ddrnw&s={searchTerms}&f=4
IE - HKU\S-1-5-21-3125747682-339867682-992166002-1000\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://isearch.babylon.com/?q={searchTerms}&affID=116216&tt=4612_8&babsrc=SP_ss&mntrId=1cf9c61000000000000000241d8273d9
IE - HKU\S-1-5-21-3125747682-339867682-992166002-1000\..\SearchScopes\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}: "URL" = http://www.crawler.com/search/dispatcher.aspx?tp=bs&qkw={searchTerms}&tbid=60747
IE - HKU\S-1-5-21-3125747682-339867682-992166002-1000\..\SearchScopes\{2E855A30-A130-4081-A682-4AA79C9AE3AC}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2504091
IE - HKU\S-1-5-21-3125747682-339867682-992166002-1000\..\SearchScopes\{73B3C1D0-958C-4BBF-8478-4ED85B735346}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=AVR-3&o=APN10395&src=kw&q={searchTerms}&locale=&apn_ptnrs=^ABT&apn_dtid=^YYYYYY^YY^DE&apn_uid=af09abb4-fb6b-47c5-b7b9-cc97740a12f5&apn_sauid=92F2E08E-E2B5-4EE4-8C87-4AB31A78EBA7
IE - HKU\S-1-5-21-3125747682-339867682-992166002-1000\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = http://dts.search-results.com/sr?src=ieb&appid=113&systemid=406&sr=0&q={searchTerms}
IE - HKU\S-1-5-21-3125747682-339867682-992166002-1000\..\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A}: "URL" = http://mystart.incredibar.com/mb128/?search={searchTerms}&loc=IB_DS&a=6OyU09uNpy&i=26
IE - HKU\S-1-5-21-3125747682-339867682-992166002-1000\..\SearchScopes\{E88E0043-C9D4-4e33-8555-FEE4F5B63060}: "URL" = http://go.mail.ru/search?q={searchTerms}&utf8in=1&fr=ietb
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaulturl: "http://go.mail.ru/search?fr=fftb&utf8in&q="
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..browser.startup.homepage: "http://klit.startnow.com/?src=startpage&provider=&provider_name=yahoo&provider_code=&partner_id=693&product_id=741&affiliate_id=&channel=&toolbar_id=200&toolbar_version=2.4.0&install_country=DE&install_date=20130203&user_guid=D320B75562144A6AA0A9CF860316D6B5&machine_id=bfd71a6de0d3c5c727e7b4033264b5f0&browser=FF&os=win&os_version=6.0-x86-SP2"
FF - prefs.js..keyword.URL: "http://klit.startnow.com/s/?src=addrbar&provider=&provider_name=yahoo&provider_code=&partner_id=693&product_id=741&affiliate_id=&channel=&toolbar_id=200&toolbar_version=2.4.0&install_country=DE&install_date=20130203&user_guid=D320B75562144A6AA0A9CF860316D6B5&machine_id=bfd71a6de0d3c5c727e7b4033264b5f0&browser=FF&os=win&os_version=6.0-x86-SP2&q="
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\mona\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\mona\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
[2013.02.03 15:49:13 | 000,000,000 | ---D | M] (StartNow Toolbar) -- C:\Users\mona\AppData\Roaming\mozilla\Firefox\Profiles\brfc4u4j.default\extensions\{5911488E-9D1E-40ec-8CBB-06B231CC153F}
[2012.08.30 16:47:11 | 000,002,413 | ---- | M] () -- C:\Users\mona\AppData\Roaming\mozilla\firefox\profiles\brfc4u4j.default\searchplugins\askcom.xml
[2012.11.17 14:54:21 | 000,002,537 | ---- | M] () -- C:\Users\mona\AppData\Roaming\mozilla\firefox\profiles\brfc4u4j.default\searchplugins\browsemngr.xml
[2012.11.12 20:35:41 | 000,002,203 | ---- | M] () -- C:\Users\mona\AppData\Roaming\mozilla\firefox\profiles\brfc4u4j.default\searchplugins\MyStart Search.xml
[2013.02.01 11:08:11 | 000,002,399 | ---- | M] () -- C:\Users\mona\AppData\Roaming\mozilla\firefox\profiles\brfc4u4j.default\searchplugins\Web Search.xml
[2013.02.03 15:48:58 | 000,001,390 | ---- | M] () -- C:\Users\mona\AppData\Roaming\mozilla\firefox\profiles\brfc4u4j.default\searchplugins\yahoo-zugo.xml
[2012.09.03 14:18:48 | 000,001,392 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazondotcom-de.xml
[2012.11.17 14:53:46 | 000,002,351 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml
[2012.09.03 14:18:48 | 000,002,465 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2007.07.26 13:05:16 | 000,001,329 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\crawlersrch.xml
[2012.09.03 14:18:48 | 000,001,153 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-de.xml
[2012.07.17 20:11:07 | 000,002,048 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fcmdSrch.xml
[2012.09.03 14:18:48 | 000,006,805 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\leo_ende_de.xml
[2012.01.15 17:08:40 | 000,002,519 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\Search_Results.xml
[2012.09.03 14:18:48 | 000,001,178 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-de.xml
[2012.09.03 14:18:48 | 000,001,105 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-de.xml
O2 - BHO: (StartNow Toolbar Helper) - {6E13D095-45C3-4271-9475-F3B48227DD9F} - C:\Programme\StartNow Toolbar\Toolbar32.dll ()
O2 - BHO: (Vuze Remote Toolbar) - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Programme\Vuze_Remote\prxtbVuze.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (StartNow Toolbar) - {5911488E-9D1E-40ec-8CBB-06B231CC153F} - C:\Programme\StartNow Toolbar\Toolbar32.dll ()
O3 - HKLM\..\Toolbar: (no name) - {99079a25-328f-4bd4-be04-00955acaa0a7} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - {ae07101b-46d4-4a98-af68-0333ea26e113} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Vuze Remote Toolbar) - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Programme\Vuze_Remote\prxtbVuze.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3 - HKU\S-1-5-21-3125747682-339867682-992166002-1000\..\Toolbar\WebBrowser: (no name) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No CLSID value found.
O3 - HKU\S-1-5-21-3125747682-339867682-992166002-1000\..\Toolbar\WebBrowser: (no name) - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No CLSID value found.
O3 - HKU\S-1-5-21-3125747682-339867682-992166002-1000\..\Toolbar\WebBrowser: (Vuze Remote Toolbar) - {BA14329E-9550-4989-B3F2-9732E92D17CC} - C:\Programme\Vuze_Remote\prxtbVuze.dll (Conduit Ltd.)
O8 - Extra context menu item: An vorhandene PDF-Datei anfügen - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html File not found
O8 - Extra context menu item: Linkziel an vorhandene PDF-Datei anhängen - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html File not found
O8 - Extra context menu item: Linkziel in Adobe PDF konvertieren - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html File not found
O18 - Protocol\Handler\livecall - No CLSID value found
O18 - Protocol\Handler\msnim - No CLSID value found
O20 - AppInit_DLLs: (c:\progra~2\browse~1\23796~1.11\{16cdf~1\browse~1.dll) - File not found
MsConfig - StartUpFolder: C:^Users^mona^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^ZooskMessenger.lnk - - File not found
MsConfig - StartUpReg: iTunesHelper - hkey= - key= - Reg Error: Value error. File not found
ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} -
ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} -
[2013.02.22 13:51:00 | 000,001,094 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013.02.22 13:50:00 | 000,001,116 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3125747682-339867682-992166002-1000UA.job
[2013.02.22 13:12:00 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013.02.22 12:26:00 | 000,001,064 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3125747682-339867682-992166002-1000Core.job
[2012.03.21 20:27:22 | 000,000,000 | ---D | M] -- C:\Users\mona\AppData\Roaming\Babylon
@Alternate Data Stream - 64 bytes -> C:\Users\mona\Desktop\MOV01269.MP4:TOC.WMV
@Alternate Data Stream - 64 bytes -> C:\Users\mona\Desktop\MOV01268.MP4:TOC.WMV
@Alternate Data Stream - 64 bytes -> C:\Users\mona\Desktop\MOV01267.MP4:TOC.WMV


:Files

ipconfig /flushdns /c

:Commands
[emptyflash]
[emptytemp]
[Reboot]




• Schliesse bitte nun alle Programme.
• Klicke nun bitte auf den Fix Button.
• OTL kann gegebenfalls einen Neustart verlangen. Bitte dies zulassen.
• Nach dem Neustart findest Du ein Textdokument, dessen inhalt in deiner nächsten antwort hier reinkopieren.

Danach AVG deinstallieren, Adobe Reader 11 installieren und danach:

Lade dir die Software ADW Cleaner von hier: http://www.bleepingcomputer.com/download/adwcleaner/dl/125/
Programm starten und Search wählen
Anschließend Logfile posten

  • "mona2204" started this thread

Date of registration:
Feb 22nd 2013

Version:
Avira Free Antivirus

Operating System:
Windows Vista

  • Send private message

4

Friday, February 22nd 2013, 8:05pm

ich hoffe dass ich jetzt auch das richtige dokument poste


http://www.file-upload.net/download-7244…193740.log.html

  • "mona2204" started this thread

Date of registration:
Feb 22nd 2013

Version:
Avira Free Antivirus

Operating System:
Windows Vista

  • Send private message

5

Friday, February 22nd 2013, 8:31pm

http://www.file-upload.net/download-7244…er-R1-.txt.html

das ist der link zu dem logfile von AdwCleaner

6

Friday, February 22nd 2013, 10:40pm

Hast du OTL mehrmals laufenlassen, das das Logfile nicht passt?

Bitte ADW starten, löschen drücken, neustart machen - dann wieder starten, löschen drücken und Neustart - anschließend nach dem Neustart ADW starten und scannen - diese Logfile posten - sollte ziemlich leer sein dann.

  • "mona2204" started this thread

Date of registration:
Feb 22nd 2013

Version:
Avira Free Antivirus

Operating System:
Windows Vista

  • Send private message

7

Friday, February 22nd 2013, 11:28pm


8

Saturday, February 23rd 2013, 8:49am

Ok. ADW starten und deinstallieren wählen - dann nochmal einen neuen Scan mit OTL wie am Anfang und Log posten - möchte schauen ob der fix vielleicht doch erfolgreich war. Bitte OTL immer als Admin ausführen.

  • "mona2204" started this thread

Date of registration:
Feb 22nd 2013

Version:
Avira Free Antivirus

Operating System:
Windows Vista

  • Send private message

10

Saturday, February 23rd 2013, 4:55pm

Sieht gut aus:

• Starte bitte die OTL.exe
• Kopiere nun das Folgende in die Textbox Ausser das Wort Zitat :

Quoted


:OTL
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[2013.02.23 10:34:54 | 000,001,090 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job




:Files

ipconfig /flushdns /c

:Commands
[emptyflash]
[emptytemp]
[Reboot]




• Schliesse bitte nun alle Programme.
• Klicke nun bitte auf den Fix Button.
• OTL kann gegebenfalls einen Neustart verlangen. Bitte dies zulassen.
• Nach dem Neustart findest Du ein Textdokument, dessen inhalt in deiner nächsten antwort hier reinkopieren.


Danach OTL starten und mit Button Bereinigung entfernen. Anschließend Antivir neu installieren und Update versuchen.

  • "mona2204" started this thread

Date of registration:
Feb 22nd 2013

Version:
Avira Free Antivirus

Operating System:
Windows Vista

  • Send private message
  • "mona2204" started this thread

Date of registration:
Feb 22nd 2013

Version:
Avira Free Antivirus

Operating System:
Windows Vista

  • Send private message

12

Friday, March 1st 2013, 12:05pm

danke für die nette hilfe, jetzt klappt wieder alles.