|
|
|
Altnet ist Spyware
Altnet ist Spyware, die sich zusammen
mit bewusst installierten Programmen auf dem Rechner "einnistet"
Die Programme müssen deinstalliert, die Registry gereinigt und die temporären Dateien gelöscht werden.
%Programme%\Kazaa\topsearch.dll
%Programme%\Altnet\Download Manager\asm.exe
%Programme%\Altnet\Download Manager\asmps.dll
%Programme%\Altnet\Download Manager\altinst1.dll
%Programme%\Altnet\Download Manager\altinst2.dll
%Programme%\Altnet\My Altnet Shares\
%Programme%\Altnet\DBBackup\Sigfiles.db
%Programme%\Altnet\Points Manager\Local Pages
%Programme%\Altnet\Points Manager\Skin
%Programme%\Altnet\Points Manager\Temp Internet Shares
%Programme%\Altnet\Points Manager\points manager.exe
%Programme%\Altnet\Points Manager\Points Manager.exe.Manifest
%Programme%\Altnet\Points Manager\settings.cab
%Programme%\Altnet\Points Manager\setup.cab
%Programme%\Altnet\Points Manager\sysdetect.dll
%Windir%\smdat32m.sys
%Windir%\smdat32a.sys
%Windir%\Fonts\acrsec.fon
%Windir%\Fonts\acrsecI.fon
%Windir%\Fonts\acrsecB.fon
%System%\TopSearch.dll
Registry
HKLM\SOFTWARE\Classes\AppID\adm.EXE
HKLM\SOFTWARE\Classes\AppID\Altnet Signing Module.EXE
HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser\{6ad2f325-2f86-473e-908f-9d4d30698a62}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{6ad2f325-2f86-473e-908f-9d4d30698a62}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AltnetDM
HKEY_LOCAL_MACHINE\SOFTWARE\Altnet
HKEY_CLASSES_ROOT/CLSID/{E813099D-5529-47F4-9B37-4AFAFCB00A43}
HKEY_CLASSES_ROOT/Interface/{AD5BC1F0-72D8-44B3-8E3D-8E8FECCE43FB}
HKEY_CLASSES_ROOT/Interface/{E813099D-5529-47F4-9B37-4AFAFCB00A43}
HKEY_LOCAL_MACHINE/SOFTWARE/Classes/CLSID/{E813099D-5529-47F4-9B37-4AFAFCB00A43}
HKEY_LOCAL_MACHINE/SOFTWARE/Classes/Interface/{AD5BC1F0-72D8-44B3-8E3D-8E8FECCE43FB}
HKEY_LOCAL_MACHINE/SOFTWARE/Classes/Interface/{E813099D-5529-47F4-9B37-4AFAFCB00A43}
Download Manager - AdWare.Altnet.a.
C:\Program Files\Altnet\Download Manager\adm25.dll ->AdWare.Altnet.a.
C:\Program Files\Altnet\Download Manager\adm4.dll -> AdWare.Altnet.a.
C:\Program Files\Altnet\Download Manager\adm4.dll
C:\Program Files\Altnet\Download Manager\adm4005.exe
C:\Program Files\Altnet\Download Manager\admdloader.dll
C:\Program Files\Altnet\Download Manager\admfdi.dll
C:\Program Files\Altnet\Download Manager\admprog.dll
C:\Program Files\Altnet\Download Manager\altnetuninstall.exe
C:\Program Files\Altnet\Download Manager\asm.exe
C:\Program Files\Altnet\Download Manager\asmps.dll
C:\Program Files\Altnet\Points Manager\Points Manager.exe
C:\Program Files\Altnet\Points Manager\sysdetect.dll
C:\WINDOWS\Temp\Altnet\adm.exe
C:\WINDOWS\Temp\Altnet\adm25.dll
C:\WINDOWS\Temp\Altnet\adm4.dll
C:\WINDOWS\Temp\Altnet\admdloader.dll
C:\WINDOWS\Temp\Altnet\admfdi.dll
C:\WINDOWS\Temp\Altnet\admprog.dll
C:\WINDOWS\Temp\Altnet\dmfiles.cab
C:\WINDOWS\Temp\Altnet\mysearch.cab
C:\WINDOWS\Temp\Altnet\pmexe.cab
C:\WINDOWS\Temp\Altnet\pmfiles.cab
C:\WINDOWS\Temp\Altnet\Setup.exe
C:\WINDOWS\Temp\Altnet\dman25.dll
Ewido
C:\Program Files\Altnet\Download Manager\adm4005.exe -> Spyware.Altnet : Gesäubert mit Backup
C:\Program Files\Altnet\Download Manager\admprog.dll -> Spyware.Altnet : Gesäubert mit Backup
C:\Program Files\Altnet\Download Manager\asm.exe -> Spyware.Altnet : Gesäubert mit Backup
C:\Program Files\Altnet\Download Manager\asmps.dll -> Spyware.Altnet : Gesäubert mit Backup
C:\Program Files\Altnet\Download Manager\__delete_on_reboot__ASM.exe -> Spyware.Altnet : Gesäubert mit Backup
C:\Program Files\Altnet\Download Manager\__delete_on_reboot__ASMps.dll -> Spyware.Altnet : Gesäubert mit Backup
Stop Prozess: mit dem Task Manager:
points manager.exe
C:\Program Files\grokster\rungrokster.exe
C:\Dokumente und Einstellungen\username\start menu\
programs\startup\update grokster.lnk
Points Manager
O4 - HKLM\..\Run: [AltnetPointsManager] c:\program files\altnet\points manager\points manager.exe -s
peer points manager.lnk
points manager.exe
points manager.exe.manifest
points manager.exe-33e92ffa.pf
C:\Program Files\altnet\points manager\localpages\altnet.css
C:\Program Files\grokster\rungrokster.exe
C:\Program Files\grokster\topsearch.dll
C:\Program Files\kazaa lite\topsearch.dll
C:\Program Files\kazaa\topsearch.dll
C:\Program Files\Altnet\Points Manager\sysdetect.dll -> AdWare.BrilliantDigital.1007
C:\Program Files\Altnet\Download Manager\asmps.dll -> mit der Killbox loeschen
C:\Dokumente und Einstellungen\username\start menu\programme\altnet
C:\Program Files\altnet
C:\Program Files\altnet\points manager\localpages
C:\Program Files\altnet\points manager\skin
C:\WINDOWS\Temp\Altnet
C:\Dokumente und Einstellungen\User\Lokale Einstellungen\Temp\asmfiles.cab
C:\Dokumente und Einstellungen\User\Lokale Einstellungen\Temp\cd_clint.dll
C:\Dokumente und Einstellungen\User\Lokale Einstellungen\Temp\__unin__.exe
Adware - Brilliant Digital
BDE C:\WINDOWS\Temp\Altnet\bdedata2.dll
BDE C:\WINDOWS\Temp\Altnet\bdedownloader.dll
BDE C:\WINDOWS\Temp\Altnet\bdefdi.dll
Alt Net C:\WINDOWS\Temp\Altnet\dman25.dll
BDE C:\WINDOWS\system32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}
BDE C:\WINDOWS\system32\CatRoot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}
Adware - c2 Media Ltd
Lop.com C:\WINDOWS\Downloaded Program Files\freemp3z.exe
|
|
|