![]() |
|
Log-Analyse und Auswertung: Aus sicherheitsgründen wurde ihr Windows blockiert !Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #6 |
| ![]() Aus sicherheitsgründen wurde ihr Windows blockiert ! omboFix 11-12-16.01 - Sustanon 16.12.2011 12:40:20.1.4 - x64 Microsoft Windows 7 Home Premium 6.1.7600.0.1252.49.1031.18.4094.2439 [GMT 1:00] ausgeführt von:: c:\users\Sustanon\Desktop\ComboFix.exe SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . D:\install.exe . . ((((((((((((((((((((((( Dateien erstellt von 2011-11-16 bis 2011-12-16 )))))))))))))))))))))))))))))) . . 2011-12-16 11:43 . 2011-12-16 11:43 -------- d-----w- c:\users\Default\AppData\Local\temp 2011-12-16 11:25 . 2011-12-16 11:25 -------- d-----w- c:\program files (x86)\Common Files\Java 2011-12-16 11:17 . 2011-12-16 11:17 69000 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{24D44003-46B4-4D46-9D34-99DDDFD9BE9F}\offreg.dll 2011-12-16 11:11 . 2011-12-16 11:11 -------- d-----w- c:\programdata\Malwarebytes 2011-12-16 11:11 . 2011-12-16 11:11 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware 2011-12-16 11:11 . 2011-08-31 16:00 25416 ----a-w- c:\windows\system32\drivers\mbam.sys 2011-12-16 10:11 . 2011-12-16 11:19 -------- d-----w- C:\_OTL 2011-12-16 09:12 . 2011-12-16 11:30 -------- d-----w- c:\programdata\Spybot - Search & Destroy 2011-12-16 09:12 . 2011-12-16 11:23 -------- d-----w- c:\program files (x86)\Spybot - Search & Destroy 2011-12-15 04:32 . 2011-12-15 04:32 -------- d-----w- c:\program files (x86)\PokerStove 2011-12-13 08:28 . 2011-11-21 11:40 8822856 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{24D44003-46B4-4D46-9D34-99DDDFD9BE9F}\mpengine.dll 2011-12-06 08:54 . 2011-12-06 08:55 -------- d-----w- C:\HM2Archive 2011-12-06 08:52 . 2011-12-06 08:52 -------- d-----w- c:\program files (x86)\RVG Software 2011-12-06 08:46 . 2011-12-06 08:46 -------- d-----w- c:\programdata\XHEO INC 2011-12-06 08:43 . 2011-12-06 08:53 -------- d-----w- c:\program files (x86)\PSQLINSTALL 2011-12-05 00:44 . 2011-12-07 22:03 -------- d-----w- c:\program files (x86)\Tournament Indicator 2011-12-04 06:13 . 2011-12-11 11:22 -------- d-----w- c:\users\postgres 2011-12-04 06:09 . 2011-12-04 06:09 -------- d-----w- c:\program files (x86)\PostgreSQL 2011-12-04 06:04 . 2011-12-04 06:13 -------- d-----w- c:\program files (x86)\PokerTracker 3 2011-11-28 19:35 . 2011-12-05 23:14 -------- d-----w- c:\program files (x86)\PokerStars 2011-11-23 03:04 . 2011-11-23 03:46 -------- d-----w- c:\program files (x86)\Diablo II 2011-11-22 20:10 . 2011-11-22 20:11 -------- d-----w- c:\program files (x86)\OpenOffice.org 3 2011-11-22 20:09 . 2011-11-10 04:54 472808 ----a-w- c:\windows\SysWow64\deployJava1.dll 2011-11-22 20:09 . 2011-12-16 11:24 -------- d-----w- c:\program files (x86)\Java 2011-11-21 18:13 . 2011-11-21 18:13 279616 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys 2011-11-21 18:13 . 2011-11-21 18:13 -------- d-----w- c:\program files (x86)\DAEMON Tools Lite 2011-11-21 18:13 . 2011-11-21 18:13 -------- d-----w- c:\programdata\DAEMON Tools Lite 2011-11-21 16:45 . 2011-11-21 16:45 -------- d-----w- c:\program files (x86)\Common Files\Adobe 2011-11-21 03:30 . 2011-11-21 03:30 -------- d-----w- c:\program files (x86)\Conduit 2011-11-21 03:30 . 2011-11-21 03:30 -------- d-----w- c:\program files (x86)\uTorrent 2011-11-21 02:03 . 2011-11-21 02:03 -------- d-----w- c:\program files (x86)\Microsoft.NET 2011-11-20 23:31 . 2011-12-08 06:52 280904 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr 2011-11-20 23:31 . 2011-11-20 23:31 -------- d-----w- c:\program files (x86)\Battlelog Web Plugins 2011-11-20 23:29 . 2011-11-20 23:29 -------- d-----w- c:\programdata\EA Core 2011-11-20 23:29 . 2011-11-20 23:29 -------- d--h--w- c:\program files (x86)\Common Files\EAInstaller 2011-11-20 23:28 . 2011-12-08 06:52 280904 ----a-w- c:\windows\SysWow64\PnkBstrB.exe 2011-11-20 23:28 . 2011-12-08 06:47 280904 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0 2011-11-20 23:28 . 2011-11-22 17:51 75136 ----a-w- c:\windows\SysWow64\PnkBstrA.exe 2011-11-20 23:07 . 2008-07-10 10:00 3851784 ----a-w- c:\windows\SysWow64\D3DX9_39.dll 2011-11-20 19:54 . 2009-10-10 03:17 14336 ----a-w- c:\windows\system32\drivers\sffp_sd.sys 2011-11-20 19:52 . 2011-02-19 06:37 1135104 ----a-w- c:\windows\system32\FntCache.dll 2011-11-20 19:52 . 2011-02-19 05:32 1074176 ----a-w- c:\windows\SysWow64\DWrite.dll 2011-11-20 19:52 . 2011-02-19 06:37 1540608 ----a-w- c:\windows\system32\DWrite.dll 2011-11-20 19:52 . 2011-02-19 06:36 902656 ----a-w- c:\windows\system32\d2d1.dll 2011-11-20 19:52 . 2011-02-19 05:32 739840 ----a-w- c:\windows\SysWow64\d2d1.dll 2011-11-20 19:48 . 2011-11-20 19:48 -------- d-----w- c:\programdata\ATI 2011-11-20 19:43 . 2011-11-20 19:43 0 ----a-w- c:\windows\ativpsrm.bin 2011-11-20 19:38 . 2010-09-14 06:45 367104 ----a-w- c:\windows\system32\wcncsvc.dll 2011-11-20 19:38 . 2010-09-14 06:07 276992 ----a-w- c:\windows\SysWow64\wcncsvc.dll 2011-11-20 19:31 . 2009-09-10 06:28 311808 ----a-w- c:\windows\system32\msv1_0.dll 2011-11-20 19:31 . 2009-09-10 05:52 257024 ----a-w- c:\windows\SysWow64\msv1_0.dll 2011-11-20 19:29 . 2011-05-24 17:14 270720 ------w- c:\windows\system32\MpSigStub.exe 2011-11-20 19:28 . 2011-11-20 19:28 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2011-11-20 19:28 . 2011-11-20 19:28 -------- d-----w- c:\windows\system32\Macromed 2011-11-20 19:27 . 2011-11-20 19:27 -------- d-----w- c:\programdata\McAfee 2011-11-20 19:27 . 2011-11-20 19:27 -------- d-----w- c:\programdata\McAfee Security Scan 2011-11-20 19:27 . 2011-11-23 21:14 -------- d-----w- c:\program files (x86)\McAfee Security Scan 2011-11-20 19:25 . 2009-11-25 11:47 99176 ----a-w- c:\windows\SysWow64\PresentationHostProxy.dll 2011-11-20 19:25 . 2009-11-25 11:47 49472 ----a-w- c:\windows\SysWow64\netfxperf.dll 2011-11-20 19:25 . 2009-11-25 11:47 48960 ----a-w- c:\windows\system32\netfxperf.dll 2011-11-20 19:25 . 2009-11-25 11:47 297808 ----a-w- c:\windows\SysWow64\mscoree.dll 2011-11-20 19:25 . 2009-11-25 11:47 295264 ----a-w- c:\windows\SysWow64\PresentationHost.exe 2011-11-20 19:25 . 2009-11-25 11:47 1130824 ----a-w- c:\windows\SysWow64\dfshim.dll 2011-11-20 19:25 . 2009-11-25 11:47 109912 ----a-w- c:\windows\system32\PresentationHostProxy.dll 2011-11-20 19:25 . 2009-11-25 11:47 444752 ----a-w- c:\windows\system32\mscoree.dll 2011-11-20 19:25 . 2009-11-25 11:47 320352 ----a-w- c:\windows\system32\PresentationHost.exe 2011-11-20 19:25 . 2009-11-25 11:47 1942856 ----a-w- c:\windows\system32\dfshim.dll 2011-11-20 19:25 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe 2011-11-20 19:22 . 2011-11-20 23:29 -------- d-----w- c:\programdata\Electronic Arts 2011-11-20 19:22 . 2011-11-20 23:29 -------- d-----w- c:\programdata\Origin 2011-11-20 19:22 . 2011-11-20 19:23 -------- d-----w- c:\program files (x86)\Origin Games 2011-11-20 19:22 . 2011-11-20 19:22 -------- d-----w- c:\program files (x86)\Origin 2011-11-20 19:19 . 2011-12-09 14:53 -------- d-----w- c:\program files (x86)\Common Files\Steam 2011-11-20 19:19 . 2011-12-16 11:45 -------- d-----w- c:\program files (x86)\Steam 2011-11-20 19:18 . 2010-03-04 04:40 184832 ----a-w- c:\windows\system32\drivers\usbvideo.sys 2011-11-20 19:18 . 2010-03-04 04:32 243712 ----a-w- c:\windows\system32\drivers\ks.sys 2011-11-20 19:16 . 2010-09-01 05:14 167424 ----a-w- c:\program files\Windows Media Player\wmplayer.exe 2011-11-20 19:15 . 2011-09-29 16:24 1897328 ----a-w- c:\windows\system32\drivers\tcpip.sys 2011-11-20 19:14 . 2011-02-23 05:15 90624 ----a-w- c:\windows\system32\drivers\bowser.sys 2011-11-20 19:14 . 2011-11-20 19:14 -------- d-----w- C:\ATI 2011-11-20 19:14 . 2011-11-20 19:14 -------- d-----w- c:\program files (x86)\VideoLAN 2011-11-20 19:14 . 2011-08-27 05:40 861184 ----a-w- c:\windows\system32\oleaut32.dll 2011-11-20 19:14 . 2011-08-27 05:40 331776 ----a-w- c:\windows\system32\oleacc.dll 2011-11-20 19:14 . 2011-08-27 04:43 571904 ----a-w- c:\windows\SysWow64\oleaut32.dll 2011-11-20 19:14 . 2011-08-27 04:43 233472 ----a-w- c:\windows\SysWow64\oleacc.dll 2011-11-20 19:13 . 2011-06-23 05:29 5507968 ----a-w- c:\windows\system32\ntoskrnl.exe 2011-11-20 19:13 . 2011-06-23 04:38 3957120 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe 2011-11-20 19:13 . 2011-06-23 04:38 3902336 ----a-w- c:\windows\SysWow64\ntoskrnl.exe 2011-11-20 19:12 . 2010-10-16 05:17 720896 ----a-w- c:\windows\system32\odbc32.dll 2011-11-20 19:12 . 2010-10-16 05:16 1425408 ----a-w- c:\program files\Common Files\System\ado\msado15.dll 2011-11-20 19:12 . 2010-10-16 04:34 573440 ----a-w- c:\windows\SysWow64\odbc32.dll 2011-11-20 19:12 . 2010-10-16 05:16 495616 ----a-w- c:\program files\Common Files\System\ado\msadox.dll 2011-11-20 19:12 . 2010-10-16 05:16 466944 ----a-w- c:\program files\Common Files\System\ado\msadomd.dll 2011-11-20 19:12 . 2010-10-16 05:16 258048 ----a-w- c:\program files\Common Files\System\msadc\msadco.dll 2011-11-20 19:12 . 2010-10-16 04:33 372736 ----a-w- c:\program files (x86)\Common Files\System\ado\msadox.dll 2011-11-20 19:12 . 2010-10-16 04:33 352256 ----a-w- c:\program files (x86)\Common Files\System\ado\msadomd.dll 2011-11-20 19:12 . 2010-10-16 04:33 987136 ----a-w- c:\program files (x86)\Common Files\System\ado\msado15.dll 2011-11-20 19:12 . 2010-10-16 04:33 208896 ----a-w- c:\program files (x86)\Common Files\System\msadc\msadco.dll 2011-11-20 19:12 . 2010-08-27 06:14 236032 ----a-w- c:\windows\system32\srvsvc.dll 2011-11-20 19:12 . 2010-08-27 05:46 9728 ----a-w- c:\windows\SysWow64\sscore.dll 2011-11-20 19:10 . 2011-11-20 19:10 -------- d-----w- c:\program files (x86)\SteelSeries Ikari Laser 2011-11-20 19:03 . 2011-11-20 19:03 -------- d-----w- c:\programdata\ASUS OC Profiles 2011-11-20 19:01 . 2011-11-20 19:01 -------- d-----w- c:\windows\system32\drivers\NISx64 2011-11-20 19:01 . 2011-11-20 19:03 -------- d-----w- c:\programdata\Norton 2011-11-20 19:01 . 2011-11-20 19:01 -------- d-----w- c:\program files (x86)\Norton Internet Security 2011-11-20 19:01 . 2011-11-20 19:01 -------- d-----w- c:\program files (x86)\NortonInstaller 2011-11-20 18:59 . 2011-11-20 18:59 -------- d-----w- C:\RaidTool 2011-11-20 18:59 . 2009-07-14 01:15 315904 ----a-w- c:\windows\SysWow64\Difx212.rra 2011-11-20 18:59 . 2010-01-11 11:28 115824 ----a-w- c:\windows\system32\drivers\jraid.sys 2011-11-20 18:59 . 2011-11-20 18:59 -------- d-----w- c:\windows\RaidTool 2011-11-20 18:59 . 2011-11-20 18:59 -------- d-----w- c:\program files\Common Files\logishrd 2011-11-20 18:59 . 2011-11-20 18:59 -------- d-----w- c:\program files (x86)\Common Files\logishrd 2011-11-20 18:59 . 2009-12-29 08:03 220672 ----a-w- c:\windows\system32\wintrust.dll 2011-11-20 18:59 . 2009-12-29 06:55 172032 ----a-w- c:\windows\SysWow64\wintrust.dll 2011-11-20 18:59 . 2010-01-09 07:19 139264 ----a-w- c:\windows\system32\cabview.dll 2011-11-20 18:59 . 2010-01-09 06:52 132608 ----a-w- c:\windows\SysWow64\cabview.dll 2011-11-20 18:59 . 2011-11-20 18:59 -------- d-----w- c:\program files (x86)\Renesas Electronics 2011-11-20 18:58 . 2011-11-20 18:58 -------- d--h--w- c:\program files (x86)\DeviceVM 2011-11-20 18:57 . 2011-11-20 18:57 -------- d-----w- c:\windows\SysWow64\Macromed 2011-11-20 18:57 . 2011-11-20 18:58 -------- d-----w- c:\program files (x86)\ASUS 2011-11-20 18:57 . 2010-04-22 11:20 13440 ----a-r- c:\windows\SysWow64\drivers\AsIO.sys 2011-11-20 18:57 . 2009-09-30 03:33 24576 ----a-r- c:\windows\SysWow64\AsIO.dll 2011-11-20 18:57 . 2011-11-20 18:57 -------- d-----w- c:\program files\ASUS 2011-11-20 18:57 . 2008-01-04 12:34 11832 ----a-w- c:\windows\SysWow64\drivers\AsInsHelp64.sys 2011-11-20 18:57 . 2008-01-04 12:34 10216 ----a-w- c:\windows\SysWow64\drivers\AsInsHelp32.sys . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2011-10-26 03:05 . 2011-10-26 03:05 10496512 ----a-w- c:\windows\system32\drivers\atikmdag.sys 2011-10-26 02:16 . 2011-10-26 02:16 24866816 ----a-w- c:\windows\system32\atio6axx.dll 2011-10-26 02:06 . 2011-10-26 02:06 159744 ----a-w- c:\windows\system32\atiapfxx.exe 2011-10-26 02:05 . 2011-10-26 02:05 748544 ----a-w- c:\windows\SysWow64\aticfx32.dll 2011-10-26 02:04 . 2011-10-26 02:04 892416 ----a-w- c:\windows\system32\aticfx64.dll 2011-10-26 02:01 . 2011-10-26 02:01 466944 ----a-w- c:\windows\system32\ATIDEMGX.dll 2011-10-26 02:01 . 2011-10-26 02:01 517120 ----a-w- c:\windows\system32\atieclxx.exe 2011-10-26 02:00 . 2011-10-26 02:00 204288 ----a-w- c:\windows\system32\atiesrxx.exe 2011-10-26 01:59 . 2011-10-26 01:59 18757120 ----a-w- c:\windows\SysWow64\atioglxx.dll 2011-10-26 01:59 . 2011-10-26 01:59 120320 ----a-w- c:\windows\system32\atitmm64.dll 2011-10-26 01:59 . 2011-10-26 01:59 423424 ----a-w- c:\windows\system32\atipdl64.dll 2011-10-26 01:59 . 2011-10-26 01:59 356352 ----a-w- c:\windows\SysWow64\atipdlxx.dll 2011-10-26 01:59 . 2011-10-26 01:59 278528 ----a-w- c:\windows\SysWow64\Oemdspif.dll 2011-10-26 01:58 . 2011-10-26 01:58 21504 ----a-w- c:\windows\system32\atimuixx.dll 2011-10-26 01:58 . 2011-10-26 01:58 59392 ----a-w- c:\windows\system32\atiedu64.dll 2011-10-26 01:58 . 2011-10-26 01:58 43520 ----a-w- c:\windows\SysWow64\ati2edxx.dll 2011-10-26 01:55 . 2011-10-26 01:55 4292096 ----a-w- c:\windows\SysWow64\atidxx32.dll 2011-10-26 01:46 . 2011-10-26 01:46 5041664 ----a-w- c:\windows\system32\atidxx64.dll 2011-10-26 01:43 . 2011-10-26 01:43 1113088 ----a-w- c:\windows\system32\atiumd6v.dll 2011-10-26 01:43 . 2011-10-26 01:43 1828864 ----a-w- c:\windows\SysWow64\atiumdmv.dll 2011-10-26 01:43 . 2011-10-26 01:43 4044288 ----a-w- c:\windows\system32\atiumd6a.dll 2011-10-26 01:38 . 2011-10-26 01:38 51200 ----a-w- c:\windows\system32\aticalrt64.dll 2011-10-26 01:38 . 2011-10-26 01:38 46080 ----a-w- c:\windows\SysWow64\aticalrt.dll 2011-10-26 01:38 . 2011-10-26 01:38 44544 ----a-w- c:\windows\system32\aticalcl64.dll 2011-10-26 01:38 . 2011-10-26 01:38 44032 ----a-w- c:\windows\SysWow64\aticalcl.dll 2011-10-26 01:38 . 2011-10-26 01:38 9978880 ----a-w- c:\windows\system32\aticaldd64.dll 2011-10-26 01:35 . 2011-10-26 01:35 4353536 ----a-w- c:\windows\SysWow64\atiumdag.dll 2011-10-26 01:34 . 2011-10-26 01:34 8449024 ----a-w- c:\windows\SysWow64\aticaldd.dll 2011-10-26 01:32 . 2011-10-26 01:32 4189184 ----a-w- c:\windows\SysWow64\atiumdva.dll 2011-10-26 01:29 . 2011-10-26 01:29 5510144 ----a-w- c:\windows\system32\atiumd64.dll 2011-10-26 01:29 . 2011-10-26 01:29 58880 ----a-w- c:\windows\system32\coinst.dll 2011-10-26 01:22 . 2011-10-26 01:22 486912 ----a-w- c:\windows\system32\atiadlxx.dll 2011-10-26 01:22 . 2011-10-26 01:22 339968 ----a-w- c:\windows\SysWow64\atiadlxy.dll 2011-10-26 01:22 . 2011-10-26 01:22 17408 ----a-w- c:\windows\system32\atig6pxx.dll 2011-10-26 01:22 . 2011-10-26 01:22 14336 ----a-w- c:\windows\SysWow64\atiglpxx.dll 2011-10-26 01:22 . 2011-10-26 01:22 14336 ----a-w- c:\windows\system32\atiglpxx.dll 2011-10-26 01:22 . 2011-10-26 01:22 39936 ----a-w- c:\windows\system32\atig6txx.dll 2011-10-26 01:22 . 2011-10-26 01:22 32768 ----a-w- c:\windows\SysWow64\atigktxx.dll 2011-10-26 01:21 . 2011-10-26 01:21 326656 ----a-w- c:\windows\system32\drivers\atikmpag.sys 2011-10-26 01:21 . 2011-10-26 01:21 40960 ----a-w- c:\windows\system32\atiuxp64.dll 2011-10-26 01:21 . 2011-10-26 01:21 31744 ----a-w- c:\windows\SysWow64\atiuxpag.dll 2011-10-26 01:21 . 2011-10-26 01:21 38912 ----a-w- c:\windows\system32\atiu9p64.dll 2011-10-26 01:20 . 2011-10-26 01:20 29184 ----a-w- c:\windows\SysWow64\atiu9pag.dll 2011-10-26 01:20 . 2011-10-26 01:20 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll 2011-10-26 01:16 . 2011-10-26 01:16 54784 ----a-w- c:\windows\system32\atimpc64.dll 2011-10-26 01:16 . 2011-10-26 01:16 54784 ----a-w- c:\windows\system32\amdpcom64.dll 2011-10-26 01:15 . 2011-10-26 01:15 53760 ----a-w- c:\windows\SysWow64\atimpc32.dll 2011-10-26 01:15 . 2011-10-26 01:15 53760 ----a-w- c:\windows\SysWow64\amdpcom32.dll 2011-10-25 20:21 . 2011-10-25 20:21 66560 ----a-w- c:\windows\system32\OpenVideo64.dll 2011-10-25 20:21 . 2011-10-25 20:21 56832 ----a-w- c:\windows\SysWow64\OpenVideo.dll 2011-10-25 20:21 . 2011-10-25 20:21 66560 ----a-w- c:\windows\system32\OVDecoder64.dll 2011-10-25 20:21 . 2011-10-25 20:21 56832 ----a-w- c:\windows\SysWow64\OVDecoder.dll 2011-10-25 20:21 . 2011-10-25 20:21 16991744 ----a-w- c:\windows\system32\amdocl64.dll 2011-10-25 20:20 . 2011-10-25 20:20 13950464 ----a-w- c:\windows\SysWow64\amdocl.dll 2011-10-25 20:19 . 2011-10-25 20:19 51200 ----a-w- c:\windows\system32\OpenCL.dll 2011-10-25 20:19 . 2011-10-25 20:19 44032 ----a-w- c:\windows\SysWow64\OpenCL.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{c840e246-6b95-475e-9bd7-caa1c7eca9f2}] 2011-05-09 09:49 176936 ----a-w- c:\program files (x86)\uTorrentBar_DE\prxtbuTor.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar] "{c840e246-6b95-475e-9bd7-caa1c7eca9f2}"= "c:\program files (x86)\uTorrentBar_DE\prxtbuTor.dll" [2011-05-09 176936] . [HKEY_CLASSES_ROOT\clsid\{c840e246-6b95-475e-9bd7-caa1c7eca9f2}] . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Steam"="c:\program files (x86)\Steam\Steam.exe" [2011-11-20 1242448] "DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2011-11-10 3514176] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "HDAudDeck"="c:\program files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" [2010-03-15 2369536] "TurboV EVO"="c:\program files\ASUS\TurboV EVO\TurboV_EVO.exe" [2010-07-15 9936512] "Six Engine"="c:\program files (x86)\ASUS\EPU\EPU.exe" [2010-03-16 5309056] "BCU"="c:\program files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe" [2009-10-26 375000] "NUSB3MON"="c:\program files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2010-04-27 113288] "JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2010-01-19 43632] "StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-10-25 343168] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-06-06 937920] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696] . c:\users\Sustanon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ OpenOffice.org 3.3.lnk - c:\program files (x86)\OpenOffice.org 3\program\quickstart.exe [2010-12-13 1198592] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ McAfee Security Scan Plus.lnk - c:\program files (x86)\McAfee Security Scan\2.0.181\SSScheduler.exe [2010-1-15 255536] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . R2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-10-25 361984] R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe [2010-01-15 227232] R4 BCUService;Browser Configuration Utility Service;c:\program files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe [2009-10-26 223464] S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x] S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952] S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x] S2 AODDriver4.01;AODDriver4.01;c:\program files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2011-06-24 55424] S2 AsSysCtrlService;ASUS System Control Service;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.05\AsSysCtrlService.exe [2010-06-24 109056] S2 NIS;Norton Internet Security;c:\program files (x86)\Norton Internet Security\Engine\17.5.0.127\ccSvcHst.exe [2009-12-09 126392] S2 pgsql-8.3;PostgreSQL Database Server 8.3;c:\program files (x86)\PostgreSQL\8.3\bin\pg_ctl.exe [2008-09-19 65536] S2 UMVPFSrv;UMVPFSrv;c:\program files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [2011-08-19 450848] S3 amdiox64;AMD IO Driver;c:\windows\system32\DRIVERS\amdiox64.sys [x] S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x] S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x] S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [x] S3 LVUVC64;Logitech Webcam 200(UVC);c:\windows\system32\DRIVERS\lvuvc64.sys [x] S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [x] S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x] S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys [x] S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [x] . . . --------- x86-64 ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "LoadAppInit_DLLs"=0x0 . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://search.linkury.com mLocal Page = c:\windows\SysWOW64\blank.htm uSearchAssistant = hxxp://cloud-search.linkury.com/results.htm?cx=partner-pub-7890126930977991:1926905636&cof=FORID:11&q={searchTerms}&sa=Search&siteurl=search.linkury.com TCP: DhcpNameServer = 192.168.2.1 FF - ProfilePath - c:\users\Sustanon\AppData\Roaming\Mozilla\Firefox\Profiles\kdz59o9r.default\ FF - prefs.js: browser.search.selectedEngine - Linkury Smartbar Search FF - prefs.js: browser.startup.homepage - hxxp://search.linkury.com FF - prefs.js: keyword.URL - hxxp://cloud-search.linkury.com/results.htm?cx=partner-pub-7890126930977991:7317400059&cof=FORID:11&sa=Search&siteurl=search.linkury.com&q= . - - - - Entfernte verwaiste Registrierungseinträge - - - - . WebBrowser-{C840E246-6B95-475E-9BD7-CAA1C7ECA9F2} - (no file) . . . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NIS] "ImagePath"="\"c:\program files (x86)\Norton Internet Security\Engine\17.5.0.127\ccSvcHst.exe\" /s \"NIS\" /m \"c:\program files (x86)\Norton Internet Security\Engine\17.5.0.127\diMaster.dll\" /prefetch:1" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10d.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10d.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}] @Denied: (A 2) (Everyone) @="IFlashBroker3" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\RNG*] "Seed"=hex:49,31,f4,88,04,28,01,14,c5,ca,fa,5f,f5,cf,66,6e,1f,6c,42,48,3b,1d, bb,84,6e,c3,98,a3,07,68,b8,a1,8e,3f,71,ca,a8,53,6d,af,a8,e5,29,51,a3,e5,99,\ "Seed"=hex:49,31,f4,88,04,28,01,14,c5,ca,fa,5f,f5,cf,66,6e,1f,6c,42,48,3b,1d, bb,84,6e,c3,98,a3,07,68,b8,a1,8e,3f,71,ca,a8,53,6d,af,a8,e5,29,51,a3,e5,99,\ . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Weitere laufende Prozesse ------------------------ . c:\windows\DAODx.exe c:\program files\ASUS\TurboV EVO\TurboVHELP.exe c:\windows\SysWOW64\PnkBstrA.exe c:\program files (x86)\PostgreSQL\8.3\bin\postgres.exe c:\program files (x86)\PostgreSQL\8.3\bin\postgres.exe c:\program files (x86)\PostgreSQL\8.3\bin\postgres.exe c:\program files (x86)\PostgreSQL\8.3\bin\postgres.exe c:\program files (x86)\PostgreSQL\8.3\bin\postgres.exe c:\program files (x86)\PostgreSQL\8.3\bin\postgres.exe c:\program files (x86)\NortonInstaller\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS\A5E82D02\17.5.0.127\InstStub.exe c:\program files (x86)\OpenOffice.org 3\program\soffice.exe c:\program files (x86)\OpenOffice.org 3\program\soffice.bin . ************************************************************************** . Zeit der Fertigstellung: 2011-12-16 12:48:32 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2011-12-16 11:48 . Vor Suchlauf: 10 Verzeichnis(se), 379.072.794.624 Bytes frei Nach Suchlauf: 13 Verzeichnis(se), 379.003.932.672 Bytes frei . - - End Of File - - 6B894CB50C258A78C1D4393495C5718B |
Themen zu Aus sicherheitsgründen wurde ihr Windows blockiert ! |
.dll, asus, autorun, bho, blockiert, browser, conduit, explorer, explorer.exe, firefox, format, home, installation, intrusion prevention, langs, launch, logfile, microsoft, mozilla, plug-in, programme, realtek, registry, safer networking, scan, security, security scan, smartbar, software, symantec, usb, usb 3.0, vdeck.exe, webcheck, windows, winlogon, wurde ihr |