ADW_SYSTWEAK
Windows
Malware-Typ:
Adware
Zerstrerisch?:
Nein
Verschlsselt?:
In the wild::
Ja
Überblick
Löscht Dateien, so dass Programme und Anwendungen nicht ordnungsgemäß ausgeführt werden.
Technische Details
Installation
Erstellt die folgenden Ordner:
- %User Temp%\is-3F1CR.tmp
- %User Temp%\is-OTV1E.tmp
- %User Temp%\is-OTV1E.tmp\_isetup
- %User Profile%\Application Data\Tuneup Pro
- %Program Files%\Tuneup Pro
- %Start Menu%\Programs\Tuneup Pro
- %User Temp%\is-DL7FQ.tmp
- %User Temp%\is-JLORE.tmp
- %User Temp%\is-JLORE.tmp\_isetup
- %User Profile%\Application Data\ASP
- %User Temp%\is-HSJKC.tmp
- %User Temp%\is-LG5PC.tmp
- %User Temp%\is-LG5PC.tmp\_isetup
(Hinweis: %User Temp% ist der Ordner 'Temp' des aktuellen Benutzers, normalerweise C:\Dokumente und Einstellungen\{Benutzername}\Lokale Einstellungen\Temp unter Windows 2000, XP und Server 2003.. %User Profile% ist der Ordner für Benutzerprofile des aktuellen Benutzers, normalerweise C:\Windows\Profile\{Benutzername} unter Windows 98 und ME, C:\WINNT\Profile\{Benutzername} unter Windows NT und C:\Dokumente und Einstellungen\{Benutzername} unter Windows 2000, XP und Server 2003.. %Program Files%ist der Standardordner 'Programme', normalerweise C:\Programme.. %Start Menu% ist der Ordner 'Startmenü' des aktuellen Benutzers, normalerweise C:\Windows\Profile\{Benutzername}\Startmenü unter Windows 98 und ME, C:\WINNT\Profile\{Benutzername}\Startmenü unter Windows NT und C:\Windows\Startmenü oder C:\Dokumente und Einstellungen\{Benutzername}\Startmenü unter Windows 2000, XP und Server 2003.)
Autostart-Technik
Fügt folgende Registrierungseinträge hinzu, um bei jedem Systemstart automatisch ausgeführt zu werden.
HKEY_CURRENT_USER\Software\Microsoft\
Windows\CurrentVersion\Run
TUPPRDReminder = "%Program Files%\Tuneup Pro\TuneupPro.exe -rem"
HKEY_CURRENT_USER\Software\Microsoft\
Windows\CurrentVersion\Run
SystweakASP = "%Program Files%\Tuneup Pro\systweakasp.exe /verysilent"
Andere Systemänderungen
Löscht die folgenden Dateien:
- %Start Menu%\Programs\Tuneup Pro\Tuneup Pro.pif
- %Start Menu%\Programs\Tuneup Pro\Tuneup Pro.url
- %Start Menu%\Programs\Tuneup Pro\Register Tuneup Pro.pif
- %Start Menu%\Programs\Tuneup Pro\Register Tuneup Pro.url
- %Start Menu%\Programs\Tuneup Pro\Uninstall Tuneup Pro.pif
- %Start Menu%\Programs\Tuneup Pro\Uninstall Tuneup Pro.url
- %Desktop%\Tuneup Pro.pif
- %Desktop%\Tuneup Pro.url
- %Windows%\Tasks\Tuneup Pro.job
- %Windows%\Tasks\Tuneup Pro_Updates.job
(Hinweis: %Start Menu% ist der Ordner 'Startmenü' des aktuellen Benutzers, normalerweise C:\Windows\Profile\{Benutzername}\Startmenü unter Windows 98 und ME, C:\WINNT\Profile\{Benutzername}\Startmenü unter Windows NT und C:\Windows\Startmenü oder C:\Dokumente und Einstellungen\{Benutzername}\Startmenü unter Windows 2000, XP und Server 2003.. %Desktop% ist der Ordner 'Desktop' für den aktuellen Benutzer, normalerweise C:\Windows\Profile\{Benutzername}\Desktop unter Windows 98 und ME, C:\WINNT\Profile\{Benutzername}\Desktop unter Windows NT und C:\Dokumente und Einstellungen\{Benutzername}\Desktop unter Windows 2000, XP und Server 2003.. %Windows% ist der Windows Ordner, normalerweise C:\Windows oder C:\WINNT.)
Fügt die folgenden Registrierungsschlüssel hinzu:
HKEY_LOCAL_MACHINE\Software\Tuneup Pro
HKEY_CURRENT_USER\Software\Tuneup Pro
HKEY_LOCAL_MACHINE\Software\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
HKEY_CURRENT_USER\Software\Tuneup Pro\
LANG
HKEY_LOCAL_MACHINE\Software\Tuneup Pro\
LANG
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JScript\OLEScript
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
LiveScript\OLEScript
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript\OLEScript
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript1.1\OLEScript
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript1.2\OLEScript
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript1.3\OLEScript
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
ECMAScript\OLEScript
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}\OLEScript
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JScript Author\OLEScript
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
LiveScript Author\OLEScript
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript Author\OLEScript
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript1.1 Author\OLEScript
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript1.2 Author\OLEScript
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}\OLEScript
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JScript.Encode\OLEScript
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c262-6ac0-11cf-b6d1-00aa00bbbb58}\OLEScript
HKEY_CURRENT_USER\Software\Tune\
up\pro\key\
6
HKEY_LOCAL_MACHINE\Software\Tune\
up\pro\key\
6
Fügt die folgenden Registrierungseinträge hinzu:
HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro
TELNO = "(855) 973-2093"
HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro
ShowExitPage = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro
RCPURL = "http://www.{BLOCKED}pro.com/tupp/price.asp?"
HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro
RENEWALURL = "http://www.{BLOCKED}pro.com/tupp/renewal.asp?"
HKEY_CURRENT_USER\Software\Tuneup Pro
StartAutoScanPMUI = "1"
HKEY_CURRENT_USER\Software\Tuneup Pro
StartAutoScanOnLaunch = "0"
HKEY_CURRENT_USER\Software\Tuneup Pro
StartAutoTutorial = "1"
HKEY_CURRENT_USER\Software\Tuneup Pro
TrialType = "0"
HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro
MaxFixLimit = "f"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
Inno Setup: Setup Version = "5.5.4 (u)"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
Inno Setup: App Path = "%Program Files%\Tuneup Pro"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
InstallLocation = "%Program Files%\Tuneup Pro"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
Inno Setup: Icon Group = "Tuneup Pro"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
Inno Setup: User = "Wilbert"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
Inno Setup: Language = "en"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
DisplayName = "Tuneup Pro"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
DisplayIcon = "%Program Files%\Tuneup Pro\TuneupPro.exe"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
UninstallString = "%Program Files%\Tuneup Pro\unins000.exe "
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
QuietUninstallString = "%Program Files%\Tuneup Pro\unins000.exe /SILENT"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
DisplayVersion = "1.08"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
Publisher = "tuneuppro.com"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
URLInfoAbout = "http://www.{BLOCKED}pro.com"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
HelpLink = "http://www.{BLOCKED}pro.com"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
NoModify = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
NoRepair = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
InstallDate = "20141017"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
MajorVersion = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
MinorVersion = "8"
HKEY_CURRENT_USER\Software\Tuneup Pro\
LANG
LangCode = "en"
HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro\
LANG
LangID = "0"
HKEY_CURRENT_USER\Software\Tuneup Pro\
LANG
LangID = "0"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
UninstallString = "%Program Files%\Tuneup Pro\unins000.exe /silent"
HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro
LaunchASP = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro
InstallASP = "1"
HKEY_CLASSES_ROOT
JScript = "JScript Language"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JScript
CLSID = "{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}"
HKEY_CLASSES_ROOT
LiveScript = "JScript Language"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
LiveScript
CLSID = "{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}"
HKEY_CLASSES_ROOT
JavaScript = "JScript Language"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript
CLSID = "{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}"
HKEY_CLASSES_ROOT
JavaScript1.1 = "JScript Language"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript1.1
CLSID = "{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}"
HKEY_CLASSES_ROOT
JavaScript1.2 = "JScript Language"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript1.2
CLSID = "{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}"
HKEY_CLASSES_ROOT
JavaScript1.3 = "JScript Language"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript1.3
CLSID = "{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}"
HKEY_CLASSES_ROOT
ECMAScript = "JScript Language"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
ECMAScript
CLSID = "{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID
{f414c260-6ac0-11cf-b6d1-00aa00bbbb58} = "JScript Language"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}
ProgID = "JScript"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}
InprocServer32 = "%System%\jscript.dll"
HKEY_CLASSES_ROOT
JScript Author = "JScript Language Authoring"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JScript Author
CLSID = "{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}"
HKEY_CLASSES_ROOT
LiveScript Author = "JScript Language Authoring"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
LiveScript Author
CLSID = "{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}"
HKEY_CLASSES_ROOT
JavaScript Author = "JScript Language Authoring"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript Author
CLSID = "{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}"
HKEY_CLASSES_ROOT
JavaScript1.1 Author = "JScript Language Authoring"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript1.1 Author
CLSID = "{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}"
HKEY_CLASSES_ROOT
JavaScript1.2 Author = "JScript Language Authoring"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript1.2 Author
CLSID = "{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID
{f414c261-6ac0-11cf-b6d1-00aa00bbbb58} = "JScript Language Authoring"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}
ProgID = "JScript Author"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}
InprocServer32 = "%System%\jscript.dll"
HKEY_CLASSES_ROOT
JScript.Encode = "JScript Language Encoding"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JScript.Encode
CLSID = "{f414c262-6ac0-11cf-b6d1-00aa00bbbb58}"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID
{f414c262-6ac0-11cf-b6d1-00aa00bbbb58} = "JScript Language Encoding"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c262-6ac0-11cf-b6d1-00aa00bbbb58}
ProgID = "JScript.Encode"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c262-6ac0-11cf-b6d1-00aa00bbbb58}
InprocServer32 = "%System%\jscript.dll"
HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro
Expired = "0"
HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro
FirstTimeASPFired = "1"
HKEY_CURRENT_USER\Software\Tuneup Pro
SetChkDontShowRedTrayPopup = "0"
HKEY_CURRENT_USER\Software\Tuneup Pro
SetChkREmovableMedia = "1"
HKEY_CURRENT_USER\Software\Tuneup Pro
SetChkSkipEmptyKeys = "1"
HKEY_CURRENT_USER\Software\Tuneup Pro
ImprovementProgram = "1"
HKEY_CURRENT_USER\Software\Tuneup Pro
StartWhenWinBoots = "1"
HKEY_CURRENT_USER\Software\Tuneup Pro
GoToSystemTrayOnClose = "0"
HKEY_CURRENT_USER\Software\Tuneup Pro
SetEnableSound = "1"
HKEY_CURRENT_USER\Software\Tuneup Pro
ConfirmBkUps = "1"
HKEY_CURRENT_USER\Software\Tuneup Pro
StartScan = "0"
HKEY_CURRENT_USER\Software\Tuneup Pro
StartMinimized = "0"
HKEY_CURRENT_USER\Software\Tuneup Pro
AutoRepair = "0"
HKEY_CURRENT_USER\Software\Tuneup Pro
StrLastScanResults = "0"
HKEY_CURRENT_USER\Software\Tuneup Pro
ErrorCount = "0"
HKEY_CURRENT_USER\Software\Tuneup Pro
RegErrFoundTillDate = "0"
HKEY_CURRENT_USER\Software\Tuneup Pro
RegErrsFixedTillDate = "0"
HKEY_CURRENT_USER\Software\Tuneup Pro
RegErrsFixedLast = "0"
HKEY_CURRENT_USER\Software\Tuneup Pro
NumTimesRCPRunned = "1"
HKEY_CURRENT_USER\Software\Tuneup Pro
FirstRun = "1"
HKEY_CURRENT_USER\Software\Tuneup Pro
StartAutoScanPMUI = "0"
Ändert die folgenden Registrierungseinträge:
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}\InprocServer32
ThreadingModel = "Both"
(Note: The default value data of the said registry entry is Both.)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}\InprocServer32
ThreadingModel = "Both"
(Note: The default value data of the said registry entry is Both.)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c262-6ac0-11cf-b6d1-00aa00bbbb58}\InprocServer32
ThreadingModel = "Both"
(Note: The default value data of the said registry entry is Both.)
Löscht die folgenden Registrierungsschlüssel:
HKEY_CURRENT_USER\Software\Microsoft\
Windows\CurrentVersion\Uninstall\
Tuneup Pro_is1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JScript\CLSID
HKEY_CLASSES_ROOT\JScript
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
LiveScript\CLSID
HKEY_CLASSES_ROOT\LiveScript
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript\CLSID
HKEY_CLASSES_ROOT\JavaScript
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript1.1\CLSID
HKEY_CLASSES_ROOT\JavaScript1.1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript1.2\CLSID
HKEY_CLASSES_ROOT\JavaScript1.2
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript1.3\CLSID
HKEY_CLASSES_ROOT\JavaScript1.3
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
ECMAScript\CLSID
HKEY_CLASSES_ROOT\ECMAScript
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}\ProgID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}\Implemented Categories
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JScript Author\CLSID
HKEY_CLASSES_ROOT\JScript Author
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
LiveScript Author\CLSID
HKEY_CLASSES_ROOT\LiveScript Author
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript Author\CLSID
HKEY_CLASSES_ROOT\JavaScript Author
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript1.1 Author\CLSID
HKEY_CLASSES_ROOT\JavaScript1.1 Author
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JavaScript1.2 Author\CLSID
HKEY_CLASSES_ROOT\JavaScript1.2 Author
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}\ProgID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}\Implemented Categories
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
JScript.Encode\CLSID
HKEY_CLASSES_ROOT\JScript.Encode
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c262-6ac0-11cf-b6d1-00aa00bbbb58}\ProgID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c262-6ac0-11cf-b6d1-00aa00bbbb58}\Implemented Categories
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c262-6ac0-11cf-b6d1-00aa00bbbb58}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{f414c262-6ac0-11cf-b6d1-00aa00bbbb58}
Einschleusungsroutine
Schleust die folgenden Dateien ein:
- %User Temp%\is-3f1cr.tmp\{malware file name}.tmp
- %User Temp%\is-OTV1E.tmp\_isetup\_shfoldr.dll
- %User Temp%\is-OTV1E.tmp\_isetup\_iscrypt.dll
- %User Profile%\Tuneup Pro\ipini.ini
- %User Temp%\is-OTV1E.tmp\setup_en.bmp
- %Program Files%\Tuneup Pro\unins000.dat
- %Program Files%\Tuneup Pro\is-QL60Q.tmp
- %Program Files%\Tuneup Pro\is-SOGCV.tmp
- %Program Files%\Tuneup Pro\is-HCHM1.tmp
- %Program Files%\Tuneup Pro\is-8M30H.tmp
- %Program Files%\Tuneup Pro\is-A5O7B.tmp
- %Program Files%\Tuneup Pro\is-7E34J.tmp
- %Program Files%\Tuneup Pro\is-MT5V3.tmp
- %Program Files%\Tuneup Pro\is-EJPCR.tmp
- %Program Files%\Tuneup Pro\is-RDSVS.tmp
- %Program Files%\Tuneup Pro\is-VK369.tmp
- %Program Files%\Tuneup Pro\is-OKFAH.tmp
- %Program Files%\Tuneup Pro\is-V9LL3.tmp
- %Program Files%\Tuneup Pro\is-3HDK5.tmp
- %Program Files%\Tuneup Pro\is-DV72P.tmp
- %Program Files%\Tuneup Pro\is-L2MC4.tmp
- %Program Files%\Tuneup Pro\is-BKQS2.tmp
- %Program Files%\Tuneup Pro\is-8SHI0.tmp
- %Program Files%\Tuneup Pro\is-3IBUS.tmp
- %Program Files%\Tuneup Pro\is-FJ4RJ.tmp
- %Program Files%\Tuneup Pro\is-1THOF.tmp
- %Program Files%\Tuneup Pro\is-U7CB2.tmp
- %Program Files%\Tuneup Pro\is-FFRJA.tmp
- %Program Files%\Tuneup Pro\is-223KN.tmp
- %Program Files%\Tuneup Pro\is-44UL3.tmp
- %Program Files%\Tuneup Pro\is-8QBL6.tmp
- %Program Files%\Tuneup Pro\is-BFICQ.tmp
- %Program Files%\Tuneup Pro\is-2BON8.tmp
- %Program Files%\Tuneup Pro\is-1FNGL.tmp
- %Program Files%\Tuneup Pro\is-L3LA1.tmp
- %Program Files%\Tuneup Pro\is-HA5C5.tmp
- %Program Files%\Tuneup Pro\is-J456T.tmp
- %Program Files%\Tuneup Pro\is-7TPTU.tmp
- %Program Files%\Tuneup Pro\is-5DL7E.tmp
- %Program Files%\Tuneup Pro\is-I9862.tmp
- %Program Files%\Tuneup Pro\is-V83BE.tmp
- %Program Files%\Tuneup Pro\is-BV13M.tmp
- %Program Files%\Tuneup Pro\is-E6BF2.tmp
- %Program Files%\Tuneup Pro\is-ICJ39.tmp
- %Program Files%\Tuneup Pro\is-7N4GK.tmp
- %Program Files%\Tuneup Pro\is-BKRSJ.tmp
- %Program Files%\Tuneup Pro\is-R7Q6N.tmp
- %Program Files%\Tuneup Pro\is-GK90J.tmp
- %Program Files%\Tuneup Pro\is-J6F67.tmp
- %Program Files%\Tuneup Pro\is-QH2NG.tmp
- %Program Files%\Tuneup Pro\is-1HJO5.tmp
- %Program Files%\Tuneup Pro\is-DVTEO.tmp
- %Program Files%\Tuneup Pro\is-MSSVU.tmp
- %Program Files%\Tuneup Pro\is-C1DN3.tmp
- %Program Files%\Tuneup Pro\is-938H3.tmp
- %Program Files%\Tuneup Pro\is-CIQIF.tmp
- %Program Files%\Tuneup Pro\is-O7OLH.tmp
- %Start Menu%\Programs\Tuneup Pro\Tuneup Pro.lnk
- %Start Menu%\Programs\Tuneup Pro\Register Tuneup Pro.lnk
- %Start Menu%\Programs\Tuneup Pro\Uninstall Tuneup Pro.lnk
- %Desktop%\Tuneup Pro.lnk
- %Program Files%\Tuneup Pro\unins000.msg
- %User Temp%\is-OTV1E.tmp\roboot.exe
- %User Profile%\Tuneup Pro\backup6.bin
- %User Profile%\Tuneup Pro\eng_rcp.dat
- %Windows%\Tasks\Tuneup Pro_UPDATES.job
- %Windows%\Tasks\Tuneup Pro_DEFAULT.job
- %User Temp%\is-DL7FQ.tmp\systweakasp.tmp
- %User Temp%\is-JLORE.tmp\_isetup\_shfoldr.dll
- %User Temp%\is-JLORE.tmp\_isetup\_iscrypt.dll
- %User Temp%\is-JLORE.tmp\isxdl.dll
- %User Profile%\ASP\aspsetup.exe
- %User Temp%\is-HSJKC.tmp\aspsetup.tmp
- %User Temp%\is-LG5PC.tmp\_isetup\_shfoldr.dll
- %User Temp%\is-LG5PC.tmp\_isetup\_iscrypt.dll
- %User Temp%\is-LG5PC.tmp\isxdl.dll
- %System%\roboot.exe
(Hinweis: %User Temp% ist der Ordner 'Temp' des aktuellen Benutzers, normalerweise C:\Dokumente und Einstellungen\{Benutzername}\Lokale Einstellungen\Temp unter Windows 2000, XP und Server 2003.. %User Profile% ist der Ordner für Benutzerprofile des aktuellen Benutzers, normalerweise C:\Windows\Profile\{Benutzername} unter Windows 98 und ME, C:\WINNT\Profile\{Benutzername} unter Windows NT und C:\Dokumente und Einstellungen\{Benutzername} unter Windows 2000, XP und Server 2003.. %Program Files%ist der Standardordner 'Programme', normalerweise C:\Programme.. %Start Menu% ist der Ordner 'Startmenü' des aktuellen Benutzers, normalerweise C:\Windows\Profile\{Benutzername}\Startmenü unter Windows 98 und ME, C:\WINNT\Profile\{Benutzername}\Startmenü unter Windows NT und C:\Windows\Startmenü oder C:\Dokumente und Einstellungen\{Benutzername}\Startmenü unter Windows 2000, XP und Server 2003.. %Desktop% ist der Ordner 'Desktop' für den aktuellen Benutzer, normalerweise C:\Windows\Profile\{Benutzername}\Desktop unter Windows 98 und ME, C:\WINNT\Profile\{Benutzername}\Desktop unter Windows NT und C:\Dokumente und Einstellungen\{Benutzername}\Desktop unter Windows 2000, XP und Server 2003.. %Windows% ist der Windows Ordner, normalerweise C:\Windows oder C:\WINNT.. %System% ist der Windows Systemordner. Er lautet in der Regel C:\Windows\System unter Windows 98 und ME, C:\WINNT\System32 unter Windows NT und 2000 sowie C:\Windows\System32 unter Windows XP und Server 2003.)
Lösungen
Step 1
Für Windows ME und XP Benutzer: Stellen Sie vor einer Suche sicher, dass die Systemwiederherstellung deaktiviert ist, damit der gesamte Computer durchsucht werden kann.
Step 2
Im abgesicherten Modus neu starten
Step 3
Diesen Registrierungsschlüssel löschen
Wichtig: Eine nicht ordnungsgemäße Bearbeitung der Windows Registrierung kann zu einer dauerhaften Fehlfunktion des Systems führen. Führen Sie diesen Schritt nur durch, wenn Sie mit der Vorgehensweise vertraut sind oder wenn Sie Ihren Systemadministrator um Unterstützung bitten können. Lesen Sie ansonsten zuerst diesen Microsoft Artikel, bevor Sie die Registrierung Ihres Computers ändern.
- In HKEY_LOCAL_MACHINE\Software
- Tuneup Pro
- In HKEY_CURRENT_USER\Software
- Tuneup Pro
- In HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall
- Tuneup Pro_is1
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- LANG
- In HKEY_LOCAL_MACHINE\Software\Tuneup Pro
- LANG
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JScript
- OLEScript
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LiveScript
- OLEScript
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JavaScript
- OLEScript
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JavaScript1.1
- OLEScript
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JavaScript1.2
- OLEScript
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JavaScript1.3
- OLEScript
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ECMAScript
- OLEScript
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}
- OLEScript
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JScript Author
- OLEScript
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LiveScript Author
- OLEScript
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JavaScript Author
- OLEScript
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JavaScript1.1 Author
- OLEScript
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JavaScript1.2 Author
- OLEScript
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}
- OLEScript
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JScript.Encode
- OLEScript
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f414c262-6ac0-11cf-b6d1-00aa00bbbb58}
- OLEScript
- In HKEY_CURRENT_USER\Software\Tune\up\pro\key
- 6
- In HKEY_LOCAL_MACHINE\Software\Tune\up\pro\key
- 6
Step 4
Diesen Registrierungswert löschen
Wichtig: Eine nicht ordnungsgemäße Bearbeitung der Windows Registrierung kann zu einer dauerhaften Fehlfunktion des Systems führen. Führen Sie diesen Schritt nur durch, wenn Sie mit der Vorgehensweise vertraut sind oder wenn Sie Ihren Systemadministrator um Unterstützung bitten können. Lesen Sie ansonsten zuerst diesen Microsoft Artikel, bevor Sie die Registrierung Ihres Computers ändern.
- In HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run
- TUPPRDReminder = "%Program Files%\Tuneup Pro\TuneupPro.exe -rem"
- In HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run
- SystweakASP = "%Program Files%\Tuneup Pro\systweakasp.exe /verysilent"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro
- TELNO = "(855) 973-2093"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro
- ShowExitPage = "1"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro
- RCPURL = "http://www.{BLOCKED}pro.com/tupp/price.asp?"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro
- RENEWALURL = "http://www.{BLOCKED}pro.com/tupp/renewal.asp?"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- StartAutoScanPMUI = "1"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- StartAutoScanOnLaunch = "0"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- StartAutoTutorial = "1"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- TrialType = "0"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro
- MaxFixLimit = "f"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- Inno Setup: Setup Version = "5.5.4 (u)"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- Inno Setup: App Path = "%Program Files%\Tuneup Pro"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- InstallLocation = "%Program Files%\Tuneup Pro"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- Inno Setup: Icon Group = "Tuneup Pro"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- Inno Setup: User = "Wilbert"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- Inno Setup: Language = "en"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- DisplayName = "Tuneup Pro"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- DisplayIcon = "%Program Files%\Tuneup Pro\TuneupPro.exe"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- UninstallString = "%Program Files%\Tuneup Pro\unins000.exe "
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- QuietUninstallString = "%Program Files%\Tuneup Pro\unins000.exe /SILENT"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- DisplayVersion = "1.08"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- Publisher = "tuneuppro.com"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- URLInfoAbout = "http://www.{BLOCKED}pro.com"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- HelpLink = "http://www.{BLOCKED}pro.com"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- NoModify = "1"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- NoRepair = "1"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- InstallDate = "20141017"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- MajorVersion = "1"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- MinorVersion = "8"
- In HKEY_CURRENT_USER\Software\Tuneup Pro\LANG
- LangCode = "en"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro\LANG
- LangID = "0"
- In HKEY_CURRENT_USER\Software\Tuneup Pro\LANG
- LangID = "0"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tuneup Pro_is1
- UninstallString = "%Program Files%\Tuneup Pro\unins000.exe /silent"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro
- LaunchASP = "1"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro
- InstallASP = "1"
- In HKEY_CLASSES_ROOT
- JScript = "JScript Language"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JScript
- CLSID = "{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}"
- In HKEY_CLASSES_ROOT
- LiveScript = "JScript Language"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LiveScript
- CLSID = "{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}"
- In HKEY_CLASSES_ROOT
- JavaScript = "JScript Language"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JavaScript
- CLSID = "{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}"
- In HKEY_CLASSES_ROOT
- JavaScript1.1 = "JScript Language"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JavaScript1.1
- CLSID = "{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}"
- In HKEY_CLASSES_ROOT
- JavaScript1.2 = "JScript Language"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JavaScript1.2
- CLSID = "{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}"
- In HKEY_CLASSES_ROOT
- JavaScript1.3 = "JScript Language"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JavaScript1.3
- CLSID = "{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}"
- In HKEY_CLASSES_ROOT
- ECMAScript = "JScript Language"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ECMAScript
- CLSID = "{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID
- {f414c260-6ac0-11cf-b6d1-00aa00bbbb58} = "JScript Language"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}
- ProgID = "JScript"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}
- InprocServer32 = "%System%\jscript.dll"
- In HKEY_CLASSES_ROOT
- JScript Author = "JScript Language Authoring"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JScript Author
- CLSID = "{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}"
- In HKEY_CLASSES_ROOT
- LiveScript Author = "JScript Language Authoring"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LiveScript Author
- CLSID = "{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}"
- In HKEY_CLASSES_ROOT
- JavaScript Author = "JScript Language Authoring"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JavaScript Author
- CLSID = "{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}"
- In HKEY_CLASSES_ROOT
- JavaScript1.1 Author = "JScript Language Authoring"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JavaScript1.1 Author
- CLSID = "{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}"
- In HKEY_CLASSES_ROOT
- JavaScript1.2 Author = "JScript Language Authoring"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JavaScript1.2 Author
- CLSID = "{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID
- {f414c261-6ac0-11cf-b6d1-00aa00bbbb58} = "JScript Language Authoring"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}
- ProgID = "JScript Author"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}
- InprocServer32 = "%System%\jscript.dll"
- In HKEY_CLASSES_ROOT
- JScript.Encode = "JScript Language Encoding"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JScript.Encode
- CLSID = "{f414c262-6ac0-11cf-b6d1-00aa00bbbb58}"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID
- {f414c262-6ac0-11cf-b6d1-00aa00bbbb58} = "JScript Language Encoding"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f414c262-6ac0-11cf-b6d1-00aa00bbbb58}
- ProgID = "JScript.Encode"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f414c262-6ac0-11cf-b6d1-00aa00bbbb58}
- InprocServer32 = "%System%\jscript.dll"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro
- Expired = "0"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Tuneup Pro
- FirstTimeASPFired = "1"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- SetChkDontShowRedTrayPopup = "0"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- SetChkREmovableMedia = "1"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- SetChkSkipEmptyKeys = "1"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- ImprovementProgram = "1"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- StartWhenWinBoots = "1"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- GoToSystemTrayOnClose = "0"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- SetEnableSound = "1"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- ConfirmBkUps = "1"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- StartScan = "0"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- StartMinimized = "0"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- AutoRepair = "0"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- StrLastScanResults = "0"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- ErrorCount = "0"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- RegErrFoundTillDate = "0"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- RegErrsFixedTillDate = "0"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- RegErrsFixedLast = "0"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- NumTimesRCPRunned = "1"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- FirstRun = "1"
- In HKEY_CURRENT_USER\Software\Tuneup Pro
- StartAutoScanPMUI = "0"
Step 5
Diesen geänderten Registrierungswert wiederherstellen
Wichtig: Eine nicht ordnungsgemäße Bearbeitung der Windows Registrierung kann zu einer dauerhaften Fehlfunktion des Systems führen. Führen Sie diesen Schritt nur durch, wenn Sie mit der Vorgehensweise vertraut sind oder wenn Sie Ihren Systemadministrator um Unterstützung bitten können. Lesen Sie ansonsten zuerst diesen Microsoft Artikel, bevor Sie die Registrierung Ihres Computers ändern.
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}\InprocServer32
- From: ThreadingModel = "Both"
To: ThreadingModel = ""Both""
- From: ThreadingModel = "Both"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f414c261-6ac0-11cf-b6d1-00aa00bbbb58}\InprocServer32
- From: ThreadingModel = "Both"
To: ThreadingModel = ""Both""
- From: ThreadingModel = "Both"
- In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f414c262-6ac0-11cf-b6d1-00aa00bbbb58}\InprocServer32
- From: ThreadingModel = "Both"
To: ThreadingModel = ""Both""
- From: ThreadingModel = "Both"
Step 6
Diese Dateien suchen und löschen
- %User Temp%\is-3f1cr.tmp\{malware file name}.tmp
- %User Temp%\is-OTV1E.tmp\_isetup\_shfoldr.dll
- %User Temp%\is-OTV1E.tmp\_isetup\_iscrypt.dll
- %User Profile%\Tuneup Pro\ipini.ini
- %User Temp%\is-OTV1E.tmp\setup_en.bmp
- %Program Files%\Tuneup Pro\unins000.dat
- %Program Files%\Tuneup Pro\is-QL60Q.tmp
- %Program Files%\Tuneup Pro\is-SOGCV.tmp
- %Program Files%\Tuneup Pro\is-HCHM1.tmp
- %Program Files%\Tuneup Pro\is-8M30H.tmp
- %Program Files%\Tuneup Pro\is-A5O7B.tmp
- %Program Files%\Tuneup Pro\is-7E34J.tmp
- %Program Files%\Tuneup Pro\is-MT5V3.tmp
- %Program Files%\Tuneup Pro\is-EJPCR.tmp
- %Program Files%\Tuneup Pro\is-RDSVS.tmp
- %Program Files%\Tuneup Pro\is-VK369.tmp
- %Program Files%\Tuneup Pro\is-OKFAH.tmp
- %Program Files%\Tuneup Pro\is-V9LL3.tmp
- %Program Files%\Tuneup Pro\is-3HDK5.tmp
- %Program Files%\Tuneup Pro\is-DV72P.tmp
- %Program Files%\Tuneup Pro\is-L2MC4.tmp
- %Program Files%\Tuneup Pro\is-BKQS2.tmp
- %Program Files%\Tuneup Pro\is-8SHI0.tmp
- %Program Files%\Tuneup Pro\is-3IBUS.tmp
- %Program Files%\Tuneup Pro\is-FJ4RJ.tmp
- %Program Files%\Tuneup Pro\is-1THOF.tmp
- %Program Files%\Tuneup Pro\is-U7CB2.tmp
- %Program Files%\Tuneup Pro\is-FFRJA.tmp
- %Program Files%\Tuneup Pro\is-223KN.tmp
- %Program Files%\Tuneup Pro\is-44UL3.tmp
- %Program Files%\Tuneup Pro\is-8QBL6.tmp
- %Program Files%\Tuneup Pro\is-BFICQ.tmp
- %Program Files%\Tuneup Pro\is-2BON8.tmp
- %Program Files%\Tuneup Pro\is-1FNGL.tmp
- %Program Files%\Tuneup Pro\is-L3LA1.tmp
- %Program Files%\Tuneup Pro\is-HA5C5.tmp
- %Program Files%\Tuneup Pro\is-J456T.tmp
- %Program Files%\Tuneup Pro\is-7TPTU.tmp
- %Program Files%\Tuneup Pro\is-5DL7E.tmp
- %Program Files%\Tuneup Pro\is-I9862.tmp
- %Program Files%\Tuneup Pro\is-V83BE.tmp
- %Program Files%\Tuneup Pro\is-BV13M.tmp
- %Program Files%\Tuneup Pro\is-E6BF2.tmp
- %Program Files%\Tuneup Pro\is-ICJ39.tmp
- %Program Files%\Tuneup Pro\is-7N4GK.tmp
- %Program Files%\Tuneup Pro\is-BKRSJ.tmp
- %Program Files%\Tuneup Pro\is-R7Q6N.tmp
- %Program Files%\Tuneup Pro\is-GK90J.tmp
- %Program Files%\Tuneup Pro\is-J6F67.tmp
- %Program Files%\Tuneup Pro\is-QH2NG.tmp
- %Program Files%\Tuneup Pro\is-1HJO5.tmp
- %Program Files%\Tuneup Pro\is-DVTEO.tmp
- %Program Files%\Tuneup Pro\is-MSSVU.tmp
- %Program Files%\Tuneup Pro\is-C1DN3.tmp
- %Program Files%\Tuneup Pro\is-938H3.tmp
- %Program Files%\Tuneup Pro\is-CIQIF.tmp
- %Program Files%\Tuneup Pro\is-O7OLH.tmp
- %Start Menu%\Programs\Tuneup Pro\Tuneup Pro.lnk
- %Start Menu%\Programs\Tuneup Pro\Register Tuneup Pro.lnk
- %Start Menu%\Programs\Tuneup Pro\Uninstall Tuneup Pro.lnk
- %Desktop%\Tuneup Pro.lnk
- %Program Files%\Tuneup Pro\unins000.msg
- %User Temp%\is-OTV1E.tmp\roboot.exe
- %User Profile%\Tuneup Pro\backup6.bin
- %User Profile%\Tuneup Pro\eng_rcp.dat
- %Windows%\Tasks\Tuneup Pro_UPDATES.job
- %Windows%\Tasks\Tuneup Pro_DEFAULT.job
- %User Temp%\is-DL7FQ.tmp\systweakasp.tmp
- %User Temp%\is-JLORE.tmp\_isetup\_shfoldr.dll
- %User Temp%\is-JLORE.tmp\_isetup\_iscrypt.dll
- %User Temp%\is-JLORE.tmp\isxdl.dll
- %User Profile%\ASP\aspsetup.exe
- %User Temp%\is-HSJKC.tmp\aspsetup.tmp
- %User Temp%\is-LG5PC.tmp\_isetup\_shfoldr.dll
- %User Temp%\is-LG5PC.tmp\_isetup\_iscrypt.dll
- %User Temp%\is-LG5PC.tmp\isxdl.dll
- %System%\roboot.exe
Step 7
Diese Ordner suchen und löschen
- %User Temp%\is-3F1CR.tmp
- %User Temp%\is-OTV1E.tmp
- %User Temp%\is-OTV1E.tmp\_isetup
- %User Profile%\Application Data\Tuneup Pro
- %Program Files%\Tuneup Pro
- %Start Menu%\Programs\Tuneup Pro
- %User Temp%\is-DL7FQ.tmp
- %User Temp%\is-JLORE.tmp
- %User Temp%\is-JLORE.tmp\_isetup
- %User Profile%\Application Data\ASP
- %User Temp%\is-HSJKC.tmp
- %User Temp%\is-LG5PC.tmp
- %User Temp%\is-LG5PC.tmp\_isetup
Step 8
Führen Sie den Neustart im normalen Modus durch, und durchsuchen Sie Ihren Computer mit Ihrem Trend Micro Produkt nach Dateien, die als ADW_SYSTWEAK entdeckt werden. Falls die entdeckten Dateien bereits von Ihrem Trend Micro Produkt gesäubert, gelöscht oder in Quarantäne verschoben wurden, sind keine weiteren Schritte erforderlich. Dateien in Quarantäne können einfach gelöscht werden. Auf dieser Knowledge-Base-Seite finden Sie weitere Informationen.
Nehmen Sie an unserer Umfrage teil