|
Antiviren-, Firewall- und andere Schutzprogramme: Rechner fährt plötzlich sehr langsam hoch liegt das am Antivirenprogramm?Windows 7 Sämtliche Fragen zur Bedienung von Firewalls, Anti-Viren Programmen, Anti Malware und Anti Trojaner Software sind hier richtig. Dies ist ein Diskussionsforum für Sicherheitslösungen für Windows Rechner. Benötigst du Hilfe beim Trojaner entfernen oder weil du dir einen Virus eingefangen hast, erstelle ein Thema in den oberen Bereinigungsforen. |
13.06.2013, 18:46 | #1 |
| Rechner fährt plötzlich sehr langsam hoch liegt das am Antivirenprogramm? Hi, ich habe das Antivirenprogramm Avast Free Antivirus. Zusätzlich benutze ich das Programm Malwarebytes Anti Malware. Als ich Avast installiert habe wurde mir versichert, dass es mit MBAM kompatibel ist, seitdem braucht der Rechner allerdings viel länger zum hochfahren. Liegt das am Programm oder an was anderem? Dankbar für Hilfe hypercraft |
13.06.2013, 18:53 | #2 |
/// TB-Ausbilder | Rechner fährt plötzlich sehr langsam hoch liegt das am Antivirenprogramm? Hast du Win XP?
__________________
__________________ |
14.06.2013, 12:38 | #3 |
| Rechner fährt plötzlich sehr langsam hoch liegt das am Antivirenprogramm? Hi,
__________________Nein ich habe Win 7 |
14.06.2013, 18:03 | #4 |
/// TB-Ausbilder | Rechner fährt plötzlich sehr langsam hoch liegt das am Antivirenprogramm? Hm okay. Dann schauen wir mal rein: Scan mit DDS+ (mit attach) Downloade dir bitte DDS (von sUBs) und speichere die Datei auf deinem Desktop.
__________________ Digitale Freibeuter gegen Malware! Keine Hilfe per PM! |
14.06.2013, 22:15 | #5 |
| Rechner fährt plötzlich sehr langsam hoch liegt das am Antivirenprogramm? hi, danke für die Antwort und für die hilfe ryder dds: DDS Logfile: Code:
ATTFilter DDS (Ver_2012-11-20.01) - NTFS_AMD64 Internet Explorer: 10.0.9200.16611 BrowserJavaVersion: 10.21.2 Run by Philipp at 23:10:49 on 2013-06-14 #Option Extended Search is enabled. #Option Whitelisting is disabled. Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.8081.5989 [GMT 2:00] . AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C} SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . ============== Running Processes =============== . C:\windows\system32\lsm.exe C:\windows\system32\svchost.exe -k DcomLaunch C:\windows\system32\svchost.exe -k RPCSS C:\windows\system32\atiesrxx.exe C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\windows\system32\svchost.exe -k LocalService C:\windows\system32\svchost.exe -k netsvcs C:\windows\system32\svchost.exe -k GPSvcGroup C:\windows\system32\atieclxx.exe C:\windows\system32\svchost.exe -k NetworkService C:\Program Files\AVAST Software\Avast\AvastSvc.exe C:\windows\system32\Dwm.exe C:\windows\System32\spoolsv.exe C:\windows\Explorer.EXE C:\windows\system32\taskeng.exe C:\windows\system32\taskhost.exe C:\windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Program Files (x86)\Bluetooth Suite\adminservice.exe C:\Program Files (x86)\Google\Update\1.3.21.145\GoogleCrashHandler.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files (x86)\Google\Update\1.3.21.145\GoogleCrashHandler64.exe C:\Program Files\Intel\iCLS Client\HeciServer.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe C:\windows\system32\taskeng.exe C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe C:\Program Files (x86)\Samsung\Easy Software Manager\SWMAgent.exe C:\windows\system32\taskeng.exe C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe C:\Program Files (x86)\Samsung\Easy Settings\SCCSpeedBoot.exe C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe C:\Program Files (x86)\Skype\Updater\Updater.exe C:\windows\system32\svchost.exe -k imgsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\windows\system32\wbem\wmiprvse.exe C:\windows\system32\wbem\wmiprvse.exe C:\windows\system32\igfxext.exe C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE C:\windows\system32\SearchIndexer.exe C:\Program Files\Samsung\Easy Support Center\SamoyedAgent.exe C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files\AVAST Software\Avast\AvastUI.exe C:\windows\system32\igfxsrvc.exe C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\windows\system32\svchost.exe -k bthsvcs C:\windows\servicing\TrustedInstaller.exe C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE C:\Users\Philipp\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Philipp\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Philipp\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Philipp\AppData\Local\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe C:\windows\system32\SearchProtocolHost.exe C:\windows\system32\SearchFilterHost.exe C:\windows\System32\cscript.exe . ============== Pseudo HJT Report =============== . uStart Page = hxxp://www.google.com uLocal Page = C:\windows\System32\blank.htm uSearch Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 uDefault_Page_URL = hxxp://samsung.msn.com mStart Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 mLocal Page = C:\Windows\SysWOW64\blank.htm mSearch Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 mDefault_Page_URL = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 mDefault_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896 uProxyOverride = *.local uURLSearchHooks: Microsoft Url Search Hook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll mWinlogon: Shell = explorer.exe mWinlogon: Userinit = userinit.exe, BHO: Lync Browser Helper: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\office15\OCHelper.dll BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll BHO: CIESpeechBHO Class: {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll BHO: Microsoft-Konto-Anmelde-Hilfsprogramm: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\office15\URLREDIR.DLL BHO: Microsoft SkyDrive Pro Browser Helper: {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\office15\GROOVEEX.DLL BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll TB: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll uRun: [Google Update] "C:\Users\Philipp\AppData\Local\Google\Update\GoogleUpdate.exe" /c uRunOnce: [Uninstall C:\Users\Philipp\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] C:\windows\System32\cmd.exe /q /c rmdir /s /q "C:\Users\Philipp\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64" mRun: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" mRun: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui uPolicies-Explorer: NoDriveTypeAutoRun = dword:145 uPolicies-System: LogonHoursAction = dword:2 uPolicies-System: DontDisplayLogonHoursWarnings = dword:1 mPolicies-Explorer: NoActiveDesktop = dword:1 mPolicies-Explorer: NoActiveDesktopChanges = dword:1 mPolicies-Explorer: ForceActiveDesktopOn = dword:0 mPolicies-System: ConsentPromptBehaviorAdmin = dword:5 mPolicies-System: ConsentPromptBehaviorUser = dword:3 mPolicies-System: EnableInstallerDetection = dword:1 mPolicies-System: EnableLUA = dword:1 mPolicies-System: EnableSecureUIAPaths = dword:1 mPolicies-System: EnableUIADesktopToggle = dword:0 mPolicies-System: EnableVirtualization = dword:1 mPolicies-System: PromptOnSecureDesktop = dword:1 mPolicies-System: ValidateAdminCodeSignatures = dword:0 mPolicies-System: dontdisplaylastusername = dword:0 mPolicies-System: scforceoption = dword:0 mPolicies-System: shutdownwithoutlogon = dword:1 mPolicies-System: undockwithoutlogon = dword:1 mPolicies-System: FilterAdministratorToken = dword:0 IE: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000 IE: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105 IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIE.dll IE: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\office15\OCHelper.dll IE: {7815BE26-237D-41A8-A98F-F7BD75F71086} - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIELinkedNotes.dll LSP: %SystemRoot%\system32\mswsock.dll TCP: NameServer = 192.168.2.1 TCP: Interfaces\{65CCD3D7-2C99-4B7D-B1E3-EF3835655E6B} : DHCPNameServer = 192.168.2.1 TCP: Interfaces\{65CCD3D7-2C99-4B7D-B1E3-EF3835655E6B}\058696C6960707 : DHCPNameServer = 192.168.2.1 TCP: Interfaces\{65CCD3D7-2C99-4B7D-B1E3-EF3835655E6B}\24163796373747164796F6E60274163747A7577616E676 : DHCPNameServer = 192.168.179.1 TCP: Interfaces\{65CCD3D7-2C99-4B7D-B1E3-EF3835655E6B}\4505D2C494E4B4F554874756E6465627F5836424037364 : DHCPNameServer = 192.168.0.254 TCP: Interfaces\{65CCD3D7-2C99-4B7D-B1E3-EF3835655E6B}\54550514C494E4F435F5E45647A7775627B6 : DHCPNameServer = 192.168.2.1 TCP: Interfaces\{65CCD3D7-2C99-4B7D-B1E3-EF3835655E6B}\75C414E4D2030313643364934303735413 : DHCPNameServer = 192.168.2.1 Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysWOW64\urlmon.dll Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\MSVidCtl.dll Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\windows\System32\itss.dll Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\windows\System32\inetcomm.dll Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\windows\System32\itss.dll Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\MSOSB.DLL Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysWOW64\MSVidCtl.dll Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll Name-Space Handler: mk\* - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\windows\System32\itss.dll SSODL: WebCheck - <orphaned> SecurityProviders: SecurityProviders = credssp.dll LSA: Authentication Packages = msv1_0 LSA: Notification Packages = scecli LSA: Security Packages = kerberos msv1_0 schannel wdigest tspkg pku2u livessp SubSystems: Windows = basesrv,1 winsrv:UserServerDllInitialization,3 winsrv:ConServerDllInitialization,2 sxssrv,4 mASetup: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\windows\System32\unregmp2.exe /ShowWMP mASetup: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - C:\windows\System32\regsvr32.exe /s /n /i:/UserInstall C:\windows\System32\themeui.dll mASetup: {2D46B6DC-2207-486B-B523-A557E6D54B47} - C:\windows\System32\cmd.exe /D /C start C:\windows\System32\ie4uinit.exe -ClearIconCache mASetup: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "C:\Program Files (x86)\Windows Mail\WinMail.exe" OCInstallUserConfigOE mASetup: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - C:\windows\System32\unregmp2.exe /FirstLogon /Shortcuts /RegBrowsers /ResetMUI mASetup: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll mASetup: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install CLSID: {603D3801-BD81-11d0-A3A5-00C04FD706EC} - C:\windows\System32\shell32.dll x64-mStart Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 x64-mLocal Page = C:\windows\System32\blank.htm x64-mSearch Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 x64-mDefault_Page_URL = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 x64-mDefault_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896 x64-mWinlogon: Shell = explorer.exe x64-mWinlogon: Userinit = C:\windows\System32\userinit.exe, x64-BHO: avast! Online Security: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll x64-BHO: Lync Browser Helper: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL x64-BHO: Microsoft SkyDrive Pro Browser Helper: {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL x64-TB: avast! Online Security: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe x64-Run: [Logitech Download Assistant] C:\windows\System32\rundll32.exe C:\windows\System32\LogiLDA.dll,LogiFetch x64-Run: [IntelliType Pro] "c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe" x64-Run: [IntelliPoint] "c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe" x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll x64-IE: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll x64-Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - x64-Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - x64-Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - x64-Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\windows\System32\mshtml.dll x64-Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\windows\System32\urlmon.dll x64-Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\windows\System32\MSVidCtl.dll x64-Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\windows\System32\urlmon.dll x64-Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\windows\System32\urlmon.dll x64-Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\windows\System32\urlmon.dll x64-Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\windows\System32\urlmon.dll x64-Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\windows\System32\itss.dll x64-Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\windows\System32\mshtml.dll x64-Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - <orphaned> x64-Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\windows\System32\urlmon.dll x64-Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\windows\System32\mshtml.dll x64-Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\windows\System32\inetcomm.dll x64-Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\windows\System32\urlmon.dll x64-Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\windows\System32\itss.dll x64-Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - <orphaned> x64-Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - <orphaned> x64-Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\windows\System32\mshtml.dll x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned> x64-Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\windows\System32\MSVidCtl.dll x64-Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\windows\System32\mshtml.dll x64-Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - <orphaned> x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned> x64-Name-Space Handler: mk\* - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\windows\System32\itss.dll x64-Notify: igfxcui - igfxdev.dll x64-SSODL: WebCheck - <orphaned> x64-mASetup: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\windows\System32\unregmp2.exe /ShowWMP x64-mASetup: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - C:\windows\System32\regsvr32.exe /s /n /i:/UserInstall C:\windows\System32\themeui.dll x64-mASetup: {2D46B6DC-2207-486B-B523-A557E6D54B47} - C:\windows\System32\cmd.exe /D /C start C:\windows\System32\ie4uinit.exe -ClearIconCache x64-mASetup: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "C:\Program Files (x86)\Windows Mail\WinMail.exe" OCInstallUserConfigOE x64-mASetup: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - C:\windows\System32\unregmp2.exe /FirstLogon /Shortcuts /RegBrowsers /ResetMUI x64-mASetup: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll x64-mASetup: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\windows\System32\ie4uinit.exe -UserConfig x64-mASetup: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\windows\System32\Rundll32.exe C:\windows\System32\mscories.dll,Install x64-CLSID: {603D3801-BD81-11d0-A3A5-00C04FD706EC} - C:\windows\System32\shell32.dll . ================= FIREFOX =================== . FF - ProfilePath - C:\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\yjwidrr9.default\ FF - plugin: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll FF - plugin: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\browser\nppdf32.dll FF - plugin: C:\Program Files (x86)\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin1017325.dll FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll FF - plugin: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrlui.dll FF - plugin: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll FF - plugin: C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL FF - plugin: C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npMeetingJoinPluginOC.dll FF - plugin: C:\Users\Philipp\AppData\Local\Google\Update\1.3.21.145\npGoogleUpdate3.dll FF - plugin: C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll FF - ExtSQL: 2012-10-20 20:05; {972ce4c6-7e08-4474-a285-3208198ce6fd}; C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF - ExtSQL: 2013-04-23 19:23; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; C:\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\yjwidrr9.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF - ExtSQL: 2013-05-31 18:40; wrc@avast.com; C:\Program Files\AVAST Software\Avast\WebRep\FF . ============= SERVICES / DRIVERS =============== . R0 ACPI;Microsoft ACPI Driver;C:\windows\System32\drivers\acpi.sys [2010-11-21 334208] R0 amdkmpfd;AMD PCI Root Bus Lower Filter;C:\windows\System32\drivers\amdkmpfd.sys [2012-3-19 32896] R0 amdxata;amdxata;C:\windows\System32\drivers\amdxata.sys [2012-5-25 27008] R0 aswRvrt;aswRvrt;C:\windows\System32\drivers\aswRvrt.sys [2013-5-31 65336] R0 aswVmm;aswVmm;C:\windows\System32\drivers\aswVmm.sys [2013-5-31 189936] R0 atapi;IDE Channel;C:\windows\System32\drivers\atapi.sys [2009-7-14 24128] R0 CLFS;Gemeinsames Protokoll (CLFS);C:\windows\System32\clfs.sys [2009-7-14 367696] R0 CNG;CNG;C:\windows\System32\drivers\cng.sys [2013-4-3 458712] R0 Compbatt;Microsoft Composite Battery Driver;C:\windows\System32\drivers\compbatt.sys [2009-7-14 21584] R0 Disk;Laufwerktreiber;C:\windows\System32\drivers\disk.sys [2009-7-14 73280] R0 FileInfo;File Information FS MiniFilter;C:\windows\System32\drivers\fileinfo.sys [2009-7-14 70224] R0 FltMgr;FltMgr;C:\windows\System32\drivers\fltMgr.sys [2010-11-21 289664] R0 fvevol;Filtertreiber der Bitlocker-Laufwerkverschlüsselung;C:\windows\System32\drivers\fvevol.sys [2013-4-10 223752] R0 hwpolicy;Hardware Policy Driver;C:\windows\System32\drivers\hwpolicy.sys [2010-11-21 14720] R0 iaStor;Intel AHCI Controller;C:\windows\System32\drivers\iaStor.sys [2012-5-25 568600] R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver;C:\windows\System32\drivers\iusb3hcs.sys [2012-2-27 16152] R0 KSecDD;KSecDD;C:\windows\System32\drivers\ksecdd.sys [2012-10-20 95600] R0 KSecPkg;KSecPkg;C:\windows\System32\drivers\ksecpkg.sys [2013-4-3 154480] R0 mountmgr;Bereitstellungspunkt-Manager;C:\windows\System32\drivers\mountmgr.sys [2010-11-21 94592] R0 msahci;msahci;C:\windows\System32\drivers\msahci.sys [2010-11-21 31104] R0 msisadrv;msisadrv;C:\windows\System32\drivers\msisadrv.sys [2009-7-14 15424] R0 Mup;Mup;C:\windows\System32\drivers\mup.sys [2009-7-14 60496] R0 NDIS;NDIS-Systemtreiber;C:\windows\System32\drivers\ndis.sys [2012-10-20 950128] R0 partmgr;Partitions-Manager;C:\windows\System32\drivers\partmgr.sys [2012-10-20 75120] R0 pci;PCI Bus Driver;C:\windows\System32\drivers\pci.sys [2010-11-21 184704] R0 pcw;Performance Counters for Windows Driver;C:\windows\System32\drivers\pcw.sys [2009-7-14 50768] R0 rdyboost;ReadyBoost;C:\windows\System32\drivers\rdyboost.sys [2010-11-21 213888] R0 spldr;Security Processor Loader Driver;C:\windows\System32\drivers\spldr.sys [2009-7-13 19008] R0 Tcpip;TCP/IP-Protokolltreiber;C:\windows\System32\drivers\tcpip.sys [2013-6-12 1910632] R0 vdrvroot;Microsoft Virtual Drive Enumerator Driver;C:\windows\System32\drivers\vdrvroot.sys [2009-7-14 36432] R0 volmgr;Volume Manager Driver;C:\windows\System32\drivers\volmgr.sys [2010-11-21 71552] R0 volmgrx;Dynamischer Volume-Manager;C:\windows\System32\drivers\volmgrx.sys [2010-11-21 363392] R0 volsnap;Speichervolumes;C:\windows\System32\drivers\volsnap.sys [2012-5-25 296320] R0 Wdf01000;Kernelmodustreiber-Frameworkdienst;C:\windows\System32\drivers\Wdf01000.sys [2012-11-15 785512] R1 AFD;Ancillary Function Driver for Winsock;C:\windows\System32\drivers\afd.sys [2012-5-25 498688] R1 aswRdr;aswRdr;C:\windows\System32\drivers\aswRdr2.sys [2013-5-31 72016] R1 aswSnx;aswSnx;C:\windows\System32\drivers\aswSnx.sys [2013-5-31 1025808] R1 aswSP;aswSP;C:\windows\System32\drivers\aswSP.sys [2013-5-31 378432] R1 aswTdi;avast! Network Shield Support;C:\windows\System32\drivers\aswTdi.sys [2013-5-31 64288] R1 Beep;Beep;C:\windows\System32\drivers\beep.sys [2009-7-14 6656] R1 blbdrive;blbdrive;C:\windows\System32\drivers\blbdrive.sys [2009-7-14 45056] R1 cdrom;CD-ROM-Laufwerktreiber;C:\windows\System32\drivers\cdrom.sys [2010-11-21 147456] R1 DfsC;DFS Namespace Client Driver;C:\windows\System32\drivers\dfsc.sys [2010-11-21 102400] R1 discache;System Attribute Cache;C:\windows\System32\drivers\discache.sys [2009-7-14 40448] R1 Msfs;Msfs;C:\windows\System32\drivers\msfs.sys [2009-7-14 26112] R1 mssmbios;Microsoft System Management BIOS Driver;C:\windows\System32\drivers\mssmbios.sys [2009-7-14 32320] R1 NetBIOS;NetBIOS Interface;C:\windows\System32\drivers\netbios.sys [2009-7-14 44544] R1 NetBT;NetBT;C:\windows\System32\drivers\netbt.sys [2010-11-21 261632] R1 Npfs;Npfs;C:\windows\System32\drivers\npfs.sys [2009-7-14 44032] R1 nsiproxy;NSI proxy service driver.;C:\windows\System32\drivers\nsiproxy.sys [2009-7-14 24576] R1 Null;Null;C:\windows\System32\drivers\null.sys [2009-7-14 6144] R1 Psched;QoS-Paketplaner;C:\windows\System32\drivers\pacer.sys [2010-11-21 131584] R1 rdbss;Umgeleitetes Puffersubsystem;C:\windows\System32\drivers\rdbss.sys [2010-11-21 309248] R1 RDPCDD;RDPCDD;C:\windows\System32\drivers\RDPCDD.sys [2009-7-14 7680] R1 RDPENCDD;RDP Encoder Mirror Driver;C:\windows\System32\drivers\RDPENCDD.sys [2009-7-14 7680] R1 RDPREFMP;Reflector Display Driver used to gain access to graphics data;C:\windows\System32\drivers\RDPREFMP.sys [2009-7-14 8192] R1 SABI;SAMSUNG Kernel Driver For Windows 7;C:\windows\System32\drivers\SABI.sys [2012-5-25 13824] R1 tdx;NetIO-Legacy-TDI-Supporttreiber;C:\windows\System32\drivers\tdx.sys [2010-11-21 119296] R1 TermDD;Terminal Device Driver;C:\windows\System32\drivers\termdd.sys [2010-11-21 63360] R1 VgaSave;VgaSave;C:\windows\System32\drivers\vga.sys [2009-7-14 29184] R1 vwififlt;Virtual WiFi Filter Driver;C:\windows\System32\drivers\vwififlt.sys [2012-5-25 60416] R1 Wanarpv6;Remotezugriff-IPv6-ARP-Treiber;C:\windows\System32\drivers\wanarp.sys [2010-11-21 88576] R1 WfpLwf;WFP Lightweight Filter;C:\windows\System32\drivers\wfplwf.sys [2009-7-14 12800] R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-5-11 65640] R2 AMD External Events Utility;AMD External Events Utility;C:\windows\System32\atiesrxx.exe [2012-4-18 235520] R2 Apple Mobile Device;Apple Mobile Device;C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-12-21 57008] R2 aswFsBlk;aswFsBlk;C:\windows\System32\drivers\aswFsBlk.sys [2013-5-31 33400] R2 aswMonFlt;aswMonFlt;C:\windows\System32\drivers\aswMonFlt.sys [2013-5-31 80816] R2 AtherosSvc;AtherosSvc;C:\Program Files (x86)\Bluetooth Suite\AdminService.exe [2012-3-9 107648] R2 AudioEndpointBuilder;Windows-Audio-Endpunkterstellung;C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-5-25 27648] R2 AudioSrv;Windows-Audio;C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted [2012-5-25 27648] R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-5-31 46808] R2 BFE;Basisfiltermodul;C:\windows\System32\svchost.exe -k LocalServiceNoNetwork [2012-5-25 27648] R2 BITS;Intelligenter Hintergrundübertragungsdienst;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] R2 Bonjour Service;Dienst "Bonjour";C:\Program Files\Bonjour\mDNSResponder.exe [2011-8-31 462184] R2 CryptSvc;Kryptografiedienste;C:\windows\System32\svchost.exe -k NetworkService [2012-5-25 27648] R2 cvhsvc;Client Virtualization Handler;C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE [2012-1-4 822624] R2 DcomLaunch;DCOM-Server-Prozessstart;C:\windows\System32\svchost.exe -k DcomLaunch [2012-5-25 27648] R2 Dhcp;DHCP-Client;C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted [2012-5-25 27648] R2 Dnscache;DNS-Client;C:\windows\System32\svchost.exe -k NetworkService [2012-5-25 27648] R2 DPS;Diagnoserichtliniendienst;C:\windows\System32\svchost.exe -k LocalServiceNoNetwork [2012-5-25 27648] R2 eventlog;Windows-Ereignisprotokoll;C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted [2012-5-25 27648] R2 EventSystem;COM+-Ereignissystem;C:\windows\System32\svchost.exe -k LocalService [2012-5-25 27648] R2 FontCache;Windows-Dienst für Schriftartencache;C:\windows\System32\svchost.exe -k LocalService [2012-5-25 27648] R2 gpsvc;Gruppenrichtlinienclient;C:\windows\System32\svchost.exe -k GPSvcGroup [2012-5-25 27648] R2 IKEEXT;IKE- und AuthIP IPsec-Schlüsselerstellungsmodule;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-3-6 629984] R2 iphlpsvc;IP-Hilfsdienst;C:\windows\System32\svchost.exe -k NetSvcs [2012-5-25 27648] R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe [2012-5-25 164184] R2 LanmanServer;Server;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] R2 LanmanWorkstation;Arbeitsstationsdienst;C:\windows\System32\svchost.exe -k NetworkService [2012-5-25 27648] R2 lltdio;Link-Layer Topology Discovery Mapper I/O Driver;C:\windows\System32\drivers\lltdio.sys [2009-7-14 60928] R2 lmhosts;TCP/IP-NetBIOS-Hilfsdienst;C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted [2012-5-25 27648] R2 luafv;UAC-Dateivirtualisierung;C:\windows\System32\drivers\luafv.sys [2009-7-14 113152] R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-3-2 418376] R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-3-2 701512] R2 MMCSS;Multimediaklassenplaner;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] R2 MpsSvc;Windows-Firewall;C:\windows\System32\svchost.exe -k LocalServiceNoNetwork [2012-5-25 27648] R2 NlaSvc;NLA (Network Location Awareness);C:\windows\System32\svchost.exe -k NetworkService [2012-5-25 27648] R2 nsi;Netzwerkspeicher-Schnittstellendienst;C:\windows\System32\svchost.exe -k LocalService [2012-5-25 27648] R2 OfficeSvc;Microsoft Office-Dienst;C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2013-3-4 1900728] R2 PcaSvc;Programmkompatibilitäts-Assistent-Dienst;C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-5-25 27648] R2 PEAUTH;PEAUTH;C:\windows\System32\drivers\PEAuth.sys [2009-7-14 651264] R2 PlugPlay;Plug & Play;C:\windows\System32\svchost.exe -k DcomLaunch [2012-5-25 27648] R2 Power;Stromversorgung;C:\windows\System32\svchost.exe -k DcomLaunch [2012-5-25 27648] R2 ProfSvc;Benutzerprofildienst;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] R2 RichVideo;Cyberlink RichVideo Service(CRVS);C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2012-5-25 244904] R2 RpcEptMapper;RPC-Endpunktzuordnung;C:\windows\System32\svchost.exe -k RPCSS [2012-5-25 27648] R2 RpcSs;Remoteprozeduraufruf (RPC);C:\windows\System32\svchost.exe -k rpcss [2012-5-25 27648] R2 rspndr;Link-Layer Topology Discovery Responder;C:\windows\System32\drivers\rspndr.sys [2009-7-14 76800] R2 SamSs;Sicherheitskonto-Manager;C:\windows\System32\lsass.exe [2012-5-25 31232] R2 SamsungDeviceConfigurationWinService;SamsungDeviceConfiguration;C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe [2012-7-6 31624] R2 Schedule;Aufgabenplanung;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] R2 secdrv;Security Driver;C:\windows\System32\drivers\secdrv.sys [2009-7-14 23040] R2 SENS;Benachrichtigungsdienst für Systemereignisse;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] R2 sftlist;Application Virtualization Client;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2011-10-1 508776] R2 ShellHWDetection;Shellhardwareerkennung;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] R2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-2-28 161384] R2 Spooler;Druckwarteschlange;C:\windows\System32\spoolsv.exe [2012-10-20 559104] R2 stisvc;Windows-Bilderfassung (WIA);C:\windows\System32\svchost.exe -k imgsvc [2012-5-25 27648] R2 SysMain;Superfetch;C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-5-25 27648] R2 tcpipreg;TCP/IP Registry Compatibility;C:\windows\System32\drivers\tcpipreg.sys [2012-11-16 45568] R2 Themes;Designs;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] R2 TrkWks;Überwachung verteilter Verknüpfungen (Client);C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-5-25 27648] R2 UxSms;Sitzungs-Manager für Desktopfenster-Manager;C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-5-25 27648] R2 Winmgmt;Windows-Verwaltungsinstrumentation;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] R2 Wlansvc;Automatische WLAN-Konfiguration;C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-5-25 27648] R2 wlidsvc;Windows Live ID Sign-in Assistant;C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-7-17 2292480] R2 WSearch;Windows Search;C:\windows\System32\SearchIndexer.exe [2012-5-25 591872] R2 ZAtheros Bt&Wlan Coex Agent;ZAtheros Bt&Wlan Coex Agent;C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [2012-3-9 163456] R3 AeLookupSvc;Anwendungserfahrung;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] R3 amdkmdag;amdkmdag;C:\windows\System32\drivers\atikmdag.sys [2012-4-18 10857984] R3 amdkmdap;amdkmdap;C:\windows\System32\drivers\atikmpag.sys [2012-4-17 328704] R3 Appinfo;Anwendungsinformationen;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] R3 AthBTPort;Atheros Virtual Bluetooth Class;C:\windows\System32\drivers\btath_flt.sys [2012-3-9 36480] R3 athr;Atheros Extensible Wireless LAN device driver;C:\windows\System32\drivers\athrx.sys [2012-5-25 2797056] R3 bowser;Browsersupporttreiber;C:\windows\System32\drivers\bowser.sys [2012-10-20 90624] R3 Browser;Computerbrowser;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;C:\windows\System32\drivers\btath_a2dp.sys [2012-3-9 340096] R3 btath_avdt;Atheros Bluetooth AVDT Service;C:\windows\System32\drivers\btath_avdt.sys [2012-3-9 111232] R3 BTATH_BUS;Atheros Bluetooth Bus;C:\windows\System32\drivers\btath_bus.sys [2012-3-9 30848] R3 BTATH_HCRP;Bluetooth HCRP Server driver;C:\windows\System32\drivers\btath_hcrp.sys [2012-3-9 168064] R3 BTATH_LWFLT;Bluetooth LWFLT Device;C:\windows\System32\drivers\btath_lwflt.sys [2012-3-9 68736] R3 BTATH_RCP;Bluetooth AVRCP Device;C:\windows\System32\drivers\btath_rcp.sys [2012-3-9 281472] R3 BtFilter;BtFilter;C:\windows\System32\drivers\btfilter.sys [2012-3-9 551552] R3 BthEnum;Bluetooth-Anforderungsblocktreiber;C:\windows\System32\drivers\bthenum.sys [2009-7-14 41984] R3 BTHMODEM;Bluetooth-Modemkommunikationstreiber;C:\windows\System32\drivers\bthmodem.sys [2009-7-14 72192] R3 BthPan;Bluetooth Device (Personal Area Network);C:\windows\System32\drivers\bthpan.sys [2009-7-14 118784] R3 bthserv;Bluetooth-Unterstützungsdienst;C:\windows\System32\svchost.exe -k bthsvcs [2012-5-25 27648] R3 BTHUSB;USB-Treiber für Bluetooth-Funkgerät;C:\windows\System32\drivers\BTHUSB.SYS [2012-5-25 80384] R3 clwvd;CyberLink WebCam Virtual Driver;C:\windows\System32\drivers\clwvd.sys [2012-2-16 31216] R3 CmBatt;Microsoft AC Adapter Driver;C:\windows\System32\drivers\CmBatt.sys [2009-7-14 17664] R3 CompositeBus;Composite Bus Enumerator Driver;C:\windows\System32\drivers\CompositeBus.sys [2010-11-21 38912] R3 DXGKrnl;LDDM Graphics Subsystem;C:\windows\System32\drivers\dxgkrnl.sys [2013-5-15 983400] R3 EapHost;Extensible Authentication-Protokoll;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] R3 GEARAspiWDM;GEAR ASPI Filter Driver;C:\windows\System32\drivers\GEARAspiWDM.sys [2012-10-27 33240] R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio;C:\windows\System32\drivers\hdaudbus.sys [2010-11-21 122368] R3 hidserv;Zugriff auf Eingabegeräte;C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-5-25 27648] R3 HidUsb;Microsoft HID Class-Treiber;C:\windows\System32\drivers\hidusb.sys [2010-11-21 30208] R3 HTTP;HTTP;C:\windows\System32\drivers\http.sys [2010-11-21 753664] R3 i8042prt;i8042 Keyboard and PS/2 Mouse Port Driver;C:\windows\System32\drivers\i8042prt.sys [2009-7-14 105472] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM);C:\windows\System32\drivers\RTKVHD64.sys [2012-5-25 4015592] R3 IntcDAud;Intel(R) Display Audio;C:\windows\System32\drivers\IntcDAud.sys [2011-12-5 331264] R3 intelkmd;intelkmd;C:\windows\System32\drivers\igdpmd64.sys [2012-3-26 14748416] R3 intelppm;Intel Processor Driver;C:\windows\System32\drivers\intelppm.sys [2009-7-14 62464] R3 iusb3hub;Intel(R) USB 3.0 Hub Driver;C:\windows\System32\drivers\iusb3hub.sys [2012-2-27 356120] R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver;C:\windows\System32\drivers\iusb3xhc.sys [2012-2-27 788760] R3 kbdclass;Tastaturklassentreiber;C:\windows\System32\drivers\kbdclass.sys [2009-7-14 50768] R3 kbdhid;Tastatur-HID-Treiber;C:\windows\System32\drivers\kbdhid.sys [2010-11-21 33280] R3 KeyIso;CNG-Schlüsselisolation;C:\windows\System32\lsass.exe [2012-5-25 31232] R3 ksthunk;Kernel Streaming Thunks;C:\windows\System32\drivers\ksthunk.sys [2009-7-14 20992] R3 MBAMProtector;MBAMProtector;C:\windows\System32\drivers\mbam.sys [2013-3-2 25928] R3 MEIx64;Intel(R) Management Engine Interface ;C:\windows\System32\drivers\HECIx64.sys [2012-7-17 62784] R3 Modem;Modem;C:\windows\System32\drivers\modem.sys [2009-7-14 40448] R3 monitor;Microsoft Monitor-Klassenfunktionstreiber-Dienst;C:\windows\System32\drivers\monitor.sys [2009-7-14 30208] R3 mouclass;Mausklassentreiber;C:\windows\System32\drivers\mouclass.sys [2009-7-14 49216] R3 mouhid;Maus-HID-Treiber;C:\windows\System32\drivers\mouhid.sys [2009-7-14 31232] R3 mpsdrv;Windows-Firewallautorisierungstreiber;C:\windows\System32\drivers\mpsdrv.sys [2009-7-14 77312] R3 mrxsmb;SMB-Miniredirector-Wrapper und -Modul;C:\windows\System32\drivers\mrxsmb.sys [2012-5-25 158208] R3 mrxsmb10;SMB 1.x-Miniredirector;C:\windows\System32\drivers\mrxsmb10.sys [2012-5-25 288768] R3 mrxsmb20;SMB 2.0-Miniredirector;C:\windows\System32\drivers\mrxsmb20.sys [2012-5-25 128000] R3 NativeWifiP;NativeWiFi Filter;C:\windows\System32\drivers\nwifi.sys [2009-7-14 318976] R3 NdisTapi;RAS-NDIS-TAPI-Treiber;C:\windows\System32\drivers\ndistapi.sys [2009-7-14 24064] R3 Ndisuio;NDIS Usermode I/O Protocol;C:\windows\System32\drivers\ndisuio.sys [2010-11-21 56832] R3 NdisWan;RAS-NDIS-WAN-Treiber;C:\windows\System32\drivers\ndiswan.sys [2010-11-21 164352] R3 NDProxy;NDIS Proxy;C:\windows\System32\drivers\ndproxy.sys [2010-11-21 57856] R3 Netman;Netzwerkverbindungen;C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-5-25 27648] R3 netprofm;Netzwerklistendienst;C:\windows\System32\svchost.exe -k LocalService [2012-5-25 27648] R3 Ntfs;Ntfs;C:\windows\System32\drivers\ntfs.sys [2013-4-26 1656680] R3 PolicyAgent;IPsec-Richtlinien-Agent;C:\windows\System32\svchost.exe -k NetworkServiceNetworkRestricted [2012-5-25 27648] R3 PptpMiniport;WAN-Miniport (PPTP);C:\windows\System32\drivers\raspptp.sys [2010-11-21 111104] R3 RasAgileVpn;WAN Miniport (IKEv2);C:\windows\System32\drivers\agilevpn.sys [2009-7-14 60416] R3 Rasl2tp;WAN-Miniport (L2TP);C:\windows\System32\drivers\rasl2tp.sys [2010-11-21 129536] R3 RasPppoe;Remotezugriff-PPPOE-Treiber;C:\windows\System32\drivers\raspppoe.sys [2009-7-14 92672] R3 RasSstp;WAN-Miniport (SSTP);C:\windows\System32\drivers\rassstp.sys [2009-7-14 83968] R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI);C:\windows\System32\drivers\rfcomm.sys [2009-7-14 158720] R3 RTL8167;Realtek 8167 NT Driver;C:\windows\System32\drivers\Rt64win7.sys [2012-5-25 685160] R3 Sftfs;Sftfs;C:\windows\System32\drivers\Sftfslh.sys [2011-10-1 764264] R3 Sftplay;Sftplay;C:\windows\System32\drivers\Sftplaylh.sys [2011-10-1 268648] R3 Sftredir;Sftredir;C:\windows\System32\drivers\Sftredirlh.sys [2011-10-1 25960] R3 Sftvol;Sftvol;C:\windows\System32\drivers\Sftvollh.sys [2011-10-1 22376] R3 sftvsa;Application Virtualization Service Agent;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-1 219496] R3 srv;Server-SMB-Treiber 1.xxx;C:\windows\System32\drivers\srv.sys [2012-5-25 467456] R3 srv2;Server-SMB-Treiber 2.xxx;C:\windows\System32\drivers\srv2.sys [2012-5-25 410112] R3 srvnet;srvnet;C:\windows\System32\drivers\srvnet.sys [2012-5-25 168448] R3 SSDPSRV;SSDP-Suche;C:\windows\System32\svchost.exe -k LocalServiceAndNoImpersonation [2012-5-25 27648] R3 swenum;Software Bus Driver;C:\windows\System32\drivers\swenum.sys [2009-7-14 12496] R3 SynTP;Synaptics TouchPad Driver;C:\windows\System32\drivers\SynTP.sys [2012-4-8 429328] R3 TrustedInstaller;Windows Modules Installer;C:\Windows\servicing\TrustedInstaller.exe [2010-11-21 194048] R3 tunnel;Microsoft-Tunnelminiport-Adaptertreiber;C:\windows\System32\drivers\tunnel.sys [2010-11-21 125440] R3 umbus;UMBusenumerator-Treiber;C:\windows\System32\drivers\umbus.sys [2010-11-21 48640] R3 usbccgp;Microsoft Standard-USB-Haupttreiber;C:\windows\System32\drivers\usbccgp.sys [2012-5-25 98816] R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver;C:\windows\System32\drivers\usbehci.sys [2012-5-25 52736] R3 usbhub;Microsoft USB Standard Hub Driver;C:\windows\System32\drivers\usbhub.sys [2012-5-25 343040] R3 usbvideo;USB Video Device (WDM);C:\windows\System32\drivers\usbvideo.sys [2010-11-21 184960] R3 vwifibus;Virtual WiFi Bus Driver;C:\windows\System32\drivers\vwifibus.sys [2009-7-14 24576] R3 vwifimp;Microsoft Virtual WiFi Miniport Service;C:\windows\System32\drivers\vwifimp.sys [2012-5-25 18432] R3 WdiServiceHost;Diagnosediensthost;C:\windows\System32\svchost.exe -k LocalService [2012-5-25 27648] R3 WdiSystemHost;Diagnosesystemhost;C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-5-25 27648] R3 WinHttpAutoProxySvc;WinHTTP-Web Proxy Auto-Discovery-Dienst;C:\windows\System32\svchost.exe -k LocalService [2012-5-25 27648] R3 WmiAcpi;Microsoft Windows Management Interface for ACPI;C:\windows\System32\drivers\wmiacpi.sys [2009-7-14 14336] R3 WPDBusEnum;Enumeratordienst für tragbare Geräte;C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-5-25 27648] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576] S2 gupdate;Google Update-Dienst (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-4-23 116648] S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-5-25 13592] S2 Intel(R) ME Service;Intel(R) ME Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-5-25 127320] S2 LMS;Intel(R) Management and Security Application Local Management Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-5-25 276824] S2 sppsvc;Software Protection;C:\windows\System32\sppsvc.exe [2010-11-21 3524608] S2 UNS;Intel(R) Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-5-25 362840] S2 WMPNetworkSvc;Windows Media Player-Netzwerkfreigabedienst;C:\Program Files\Windows Media Player\wmpnetwk.exe [2010-11-21 1525248] S2 wscsvc;Sicherheitscenter;C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted [2012-5-25 27648] S2 wuauserv;Windows Update;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] S3 1394ohci;1394 OHCI Compliant Host Controller;C:\windows\System32\drivers\1394ohci.sys [2010-11-21 229888] S3 AcpiPmi;ACPI Power Meter Driver;C:\windows\System32\drivers\acpipmi.sys [2010-11-21 12800] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-10-23 256904] S3 adp94xx;adp94xx;C:\windows\System32\drivers\adp94xx.sys [2009-6-10 491088] S3 adpahci;adpahci;C:\windows\System32\drivers\adpahci.sys [2009-7-13 339536] S3 adpu320;adpu320;C:\windows\System32\drivers\adpu320.sys [2009-7-13 182864] S3 agp440;Intel AGP Bus Filter;C:\windows\System32\drivers\AGP440.sys [2009-7-14 61008] S3 ALG;Gatewaydienst auf Anwendungsebene;C:\windows\System32\alg.exe [2009-7-14 79360] S3 aliide;aliide;C:\windows\System32\drivers\aliide.sys [2009-7-14 15440] S3 amdide;amdide;C:\windows\System32\drivers\amdide.sys [2009-7-14 15440] S3 AmdK8;AMD K8 Processor Driver;C:\windows\System32\drivers\amdk8.sys [2009-7-14 64512] S3 AmdPPM;AMD Processor Driver;C:\windows\System32\drivers\amdppm.sys [2009-7-14 60928] S3 amdsata;amdsata;C:\windows\System32\drivers\amdsata.sys [2012-5-25 107904] S3 amdsbs;amdsbs;C:\windows\System32\drivers\amdsbs.sys [2009-6-10 194128] S3 AppID;Anwendungs-ID-Treiber;C:\windows\System32\drivers\appid.sys [2010-11-21 61440] S3 AppIDSvc;Anwendungsidentität;C:\windows\System32\svchost.exe -k LocalServiceAndNoImpersonation [2012-5-25 27648] S3 arc;arc;C:\windows\System32\drivers\arc.sys [2009-7-13 87632] S3 arcsas;arcsas;C:\windows\System32\drivers\arcsas.sys [2009-7-13 97856] S3 aspnet_state;ASP.NET-Zustandsdienst;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-3-18 44376] S3 AsyncMac;Asynchroner RAS -Medientreiber;C:\windows\System32\drivers\asyncmac.sys [2009-7-14 23040] S3 AxInstSV;ActiveX-Installer (AxInstSV);C:\windows\System32\svchost.exe -k AxInstSVGroup [2012-5-25 27648] S3 b06bdrv;Broadcom NetXtreme II VBD;C:\windows\System32\drivers\bxvbda.sys [2009-6-10 468480] S3 b57nd60a;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;C:\windows\System32\drivers\b57nd60a.sys [2009-6-10 270848] S3 BDESVC;BitLocker-Laufwerkverschlüsselungsdienst;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] S3 BrFiltLo;Brother USB Mass-Storage Lower Filter Driver;C:\windows\System32\drivers\BrFiltLo.sys [2009-7-14 18432] S3 BrFiltUp;Brother USB Mass-Storage Upper Filter Driver;C:\windows\System32\drivers\BrFiltUp.sys [2009-7-14 8704] S3 Brserid;Brother MFC Serial Port Interface Driver (WDM);C:\windows\System32\drivers\BrSerId.sys [2009-7-14 286720] S3 BrSerWdm;Brother WDM Serial driver;C:\windows\System32\drivers\BrSerWdm.sys [2009-7-14 47104] S3 BrUsbMdm;Brother MFC USB Fax Only Modem;C:\windows\System32\drivers\BrUsbMdm.sys [2009-7-14 14976] S3 BrUsbSer;Brother MFC USB Serial WDM Driver;C:\windows\System32\drivers\BrUsbSer.sys [2009-7-14 14720] S3 BTHPORT;Bluetooth-Porttreiber;C:\windows\System32\drivers\bthport.sys [2012-10-20 552960] S3 CertPropSvc;Zertifikatverteilung;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] S3 circlass;Consumer IR Devices;C:\windows\System32\drivers\circlass.sys [2009-7-14 45568] S3 cmdide;cmdide;C:\windows\System32\drivers\cmdide.sys [2009-7-14 17488] S3 COMSysApp;COM+-Systemanwendung;C:\windows\System32\dllhost.exe [2009-7-14 9728] S3 cphs;Intel(R) Content Protection HECI Service;C:\Windows\SysWOW64\IntelCpHeciSvc.exe [2012-3-26 276248] S3 dc3d;MS Hardware Device Detection Driver (USB);C:\windows\System32\drivers\dc3d.sys [2012-11-1 75928] S3 defragsvc;Defragmentierung;C:\windows\System32\svchost.exe -k defragsvc [2012-5-25 27648] S3 dot3svc;Automatische Konfiguration (verkabelt);C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-5-25 27648] S3 drmkaud;Microsoft Trusted Audio Drivers;C:\windows\System32\drivers\drmkaud.sys [2009-7-14 5632] S3 ebdrv;Broadcom NetXtreme II 10 GigE VBD;C:\windows\System32\drivers\evbda.sys [2009-6-10 3286016] S3 EFS;Verschlüsselndes Dateisystem (EFS);C:\windows\System32\lsass.exe [2012-5-25 31232] S3 ehRecvr;Windows Media Center-Empfängerdienst;C:\Windows\ehome\ehrecvr.exe [2010-11-21 696832] S3 ehSched;Windows Media Center-Planerdienst;C:\Windows\ehome\ehsched.exe [2009-7-14 127488] S3 elxstor;elxstor;C:\windows\System32\drivers\elxstor.sys [2009-6-10 530496] S3 ErrDev;Microsoft Hardware Error Device Driver;C:\windows\System32\drivers\errdev.sys [2009-7-14 9728] S3 exfat;exFAT File System Driver;C:\windows\System32\drivers\exfat.sys [2009-7-14 195072] S3 fastfat;FAT12/16/32 File System Driver;C:\windows\System32\drivers\fastfat.sys [2009-7-14 204800] S3 Fax;Fax;C:\windows\System32\FXSSVC.exe [2010-11-21 689152] S3 fdc;Floppy Disk Controller Driver;C:\windows\System32\drivers\fdc.sys [2009-7-14 29696] S3 fdPHost;Funktionssuchanbieter-Host;C:\windows\System32\svchost.exe -k LocalService [2012-5-25 27648] S3 FDResPub;Funktionssuche-Ressourcenveröffentlichung;C:\windows\System32\svchost.exe -k LocalServiceAndNoImpersonation [2012-5-25 27648] S3 Filetrace;Filetrace;C:\windows\System32\drivers\filetrace.sys [2009-7-14 34304] S3 flpydisk;Floppy Disk Driver;C:\windows\System32\drivers\flpydisk.sys [2009-7-14 24576] S3 FontCache3.0.0.0;Windows Presentation Foundation-Schriftartcache 3.0.0.0;C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe [2010-11-21 42856] S3 FsDepends;File System Dependency Minifilter;C:\windows\System32\drivers\fsdepends.sys [2009-7-14 55376] S3 fssfltr;fssfltr;C:\windows\System32\drivers\fssfltr.sys [2013-2-17 57856] S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-9-12 1512448] S3 gagp30kx;Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms;C:\windows\System32\drivers\GAGP30KX.SYS [2009-7-14 65088] S3 gupdatem;Google Update-Dienst (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-4-23 116648] S3 hcw85cir;Hauppauge Consumer Infrared Receiver;C:\windows\System32\drivers\hcw85cir.sys [2009-7-14 31232] S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service;C:\windows\System32\drivers\HdAudio.sys [2010-11-21 350208] S3 HidBatt;HID UPS Battery Driver;C:\windows\System32\drivers\hidbatt.sys [2009-7-14 26624] S3 HidBth;Microsoft Bluetooth HID Miniport;C:\windows\System32\drivers\hidbth.sys [2009-7-14 100864] S3 HidIr;Microsoft Infrared HID Driver;C:\windows\System32\drivers\hidir.sys [2009-7-14 46592] S3 hkmsvc;Integritätsschlüssel- und Zertifikatverwaltung;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] S3 HomeGroupListener;Heimnetzgruppen-Listener;C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-5-25 27648] S3 HomeGroupProvider;Heimnetzgruppen-Anbieter;C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted [2012-5-25 27648] S3 HpSAMD;HpSAMD;C:\windows\System32\drivers\HpSAMD.sys [2010-11-21 78720] S3 iaStorV;Intel RAID Controller Windows 7;C:\windows\System32\drivers\iaStorV.sys [2012-5-25 410496] S3 idsvc;Windows CardSpace;C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe [2010-11-21 856400] S3 igfx;igfx;C:\windows\System32\drivers\igdkmd64.sys [2012-3-26 14748416] S3 iirsp;iirsp;C:\windows\System32\drivers\iirsp.sys [2009-7-13 44112] S3 intelide;intelide;C:\windows\System32\drivers\intelide.sys [2009-7-14 16960] S3 IPBusEnum;PnP-X-IP-Busenumerator;C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-5-25 27648] S3 IpFilterDriver;Filtertreiber für IP-Datenverkehr;C:\windows\System32\drivers\ipfltdrv.sys [2010-11-21 82944] S3 IPMIDRV;IPMIDRV;C:\windows\System32\drivers\IPMIDrv.sys [2010-11-21 78848] S3 IPNAT;IP Network Address Translator;C:\windows\System32\drivers\ipnat.sys [2009-7-14 116224] S3 iPod Service;iPod-Dienst;C:\Program Files\iPod\bin\iPodService.exe [2013-5-31 641352] S3 IRENUM;IR Bus Enumerator;C:\windows\System32\drivers\irenum.sys [2009-7-14 17920] S3 isapnp;isapnp;C:\windows\System32\drivers\isapnp.sys [2009-7-14 20544] S3 iScsiPrt;iScsiPort Driver;C:\windows\System32\drivers\msiscsi.sys [2010-11-21 273792] S3 KtmRm;KtmRm für Distributed Transaction Coordinator;C:\windows\System32\svchost.exe -k NetworkServiceAndNoImpersonation [2012-5-25 27648] S3 lltdsvc;Verbindungsschicht-Topologieerkennungs-Zuordnungsprogramm;C:\windows\System32\svchost.exe -k LocalService [2012-5-25 27648] S3 LSI_FC;LSI_FC;C:\windows\System32\drivers\lsi_fc.sys [2009-7-13 114752] S3 LSI_SAS;LSI_SAS;C:\windows\System32\drivers\lsi_sas.sys [2009-7-13 106560] S3 LSI_SAS2;LSI_SAS2;C:\windows\System32\drivers\lsi_sas2.sys [2009-7-13 65600] S3 LSI_SCSI;LSI_SCSI;C:\windows\System32\drivers\lsi_scsi.sys [2009-7-13 115776] S3 megasas;megasas;C:\windows\System32\drivers\megasas.sys [2009-6-10 35392] S3 MegaSR;MegaSR;C:\windows\System32\drivers\MegaSR.sys [2009-7-13 284736] S3 MozillaMaintenance;Mozilla Maintenance Service;C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-10-20 117144] S3 mpio;mpio;C:\windows\System32\drivers\mpio.sys [2010-11-21 155008] S3 MRxDAV;Redirector-Treiber für WebDav-Client;C:\windows\System32\drivers\mrxdav.sys [2010-11-21 140800] S3 msdsm;msdsm;C:\windows\System32\drivers\msdsm.sys [2010-11-21 140672] S3 MSDTC;Distributed Transaction Coordinator;C:\windows\System32\msdtc.exe [2009-7-14 141824] S3 mshidkmdf;Pass-through HID to KMDF Filter Driver;C:\windows\System32\drivers\mshidkmdf.sys [2009-7-14 8192] S3 MSiSCSI;Microsoft iSCSI-Initiator-Dienst;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] S3 msiserver;Windows Installer;C:\windows\System32\msiexec.exe [2010-11-21 128000] S3 MSKSSRV;Microsoft Streaming Service Proxy;C:\windows\System32\drivers\mskssrv.sys [2009-7-14 11136] S3 MSPCLOCK;Microsoft Streaming Clock Proxy;C:\windows\System32\drivers\mspclock.sys [2009-7-14 7168] S3 MSPQM;Microsoft Streaming Quality Manager Proxy;C:\windows\System32\drivers\mspqm.sys [2009-7-14 6784] S3 MsRPC;MsRPC;C:\windows\System32\drivers\msrpc.sys [2010-11-21 366976] S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter;C:\windows\System32\drivers\mstee.sys [2009-7-14 8064] S3 MTConfig;Microsoft Input Configuration Driver;C:\windows\System32\drivers\MTConfig.sys [2009-7-14 15360] S3 napagent;NAP-Agent (Network Access Protection);C:\windows\System32\svchost.exe -k NetworkService [2012-5-25 27648] S3 NdisCap;NDIS Capture LightWeight Filter;C:\windows\System32\drivers\ndiscap.sys [2009-7-14 35328] S3 Netlogon;Anmeldedienst;C:\windows\System32\lsass.exe [2012-5-25 31232] S3 nfrd960;nfrd960;C:\windows\System32\drivers\nfrd960.sys [2009-7-13 51264] S3 nv_agp;NVIDIA nForce AGP Bus Filter;C:\windows\System32\drivers\NV_AGP.SYS [2009-7-14 122960] S3 nvraid;nvraid;C:\windows\System32\drivers\nvraid.sys [2012-5-25 148352] S3 nvstor;nvstor;C:\windows\System32\drivers\nvstor.sys [2012-5-25 166272] S3 ohci1394;1394 OHCI Compliant Host Controller (Legacy);C:\windows\System32\drivers\ohci1394.sys [2009-7-14 72832] S3 ose;Office Source Engine;C:\Program Files (x86)\Common Files\microsoft shared\Source Engine\OSE.EXE [2013-2-21 150600] S3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2013-2-21 5132888] S3 p2pimsvc;Peernetzwerkidentitäts-Manager;C:\windows\System32\svchost.exe -k LocalServicePeerNet [2012-5-25 27648] S3 p2psvc;Peernetzwerk-Gruppenzuordnung;C:\windows\System32\svchost.exe -k LocalServicePeerNet [2012-5-25 27648] S3 Parport;Parallel port driver;C:\windows\System32\drivers\parport.sys [2009-7-14 97280] S3 pciide;pciide;C:\windows\System32\drivers\pciide.sys [2009-7-14 12352] S3 pcmcia;pcmcia;C:\windows\System32\drivers\pcmcia.sys [2009-7-14 220752] S3 PerfHost;Leistungsindikator-DLL-Host;C:\Windows\SysWOW64\perfhost.exe [2009-7-14 20992] S3 pla;Leistungsprotokolle und -warnungen;C:\windows\System32\svchost.exe -k LocalServiceNoNetwork [2012-5-25 27648] S3 PNRPAutoReg;PNRP-Computernamenveröffentlichungs-Dienst;C:\windows\System32\svchost.exe -k LocalServicePeerNet [2012-5-25 27648] S3 PNRPsvc;Peer Name Resolution-Protokoll;C:\windows\System32\svchost.exe -k LocalServicePeerNet [2012-5-25 27648] S3 Point64;Microsoft Mouse and Keyboard Center Filter Driver;C:\windows\System32\drivers\point64.sys [2012-11-2 50856] S3 Processor;Processor Driver;C:\windows\System32\drivers\processr.sys [2009-7-14 60416] S3 ProtectedStorage;Geschützter Speicher;C:\windows\System32\lsass.exe [2012-5-25 31232] S3 ql2300;ql2300;C:\windows\System32\drivers\ql2300.sys [2009-6-10 1524816] S3 ql40xx;ql40xx;C:\windows\System32\drivers\ql40xx.sys [2009-7-13 128592] S3 QWAVE;Verbessertes Windows-Audio/Video-Streaming;C:\windows\System32\svchost.exe -k LocalServiceAndNoImpersonation [2012-5-25 27648] S3 QWAVEdrv;QWAVE-Treiber;C:\windows\System32\drivers\qwavedrv.sys [2009-7-14 46592] S3 RasAcd;Remote Access Auto Connection Driver;C:\windows\System32\drivers\rasacd.sys [2009-7-14 14848] S3 RasAuto;Verwaltung für automatische RAS-Verbindung;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] S3 RasMan;RAS-Verbindungsverwaltung;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] S3 rdpbus;Remote Desktop Device Redirector Bus Driver;C:\windows\System32\drivers\rdpbus.sys [2009-7-14 24064] S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\windows\System32\drivers\rdpvideominiport.sys [2013-4-3 19456] S3 RDPWD;RDP Winstation Driver;C:\windows\System32\drivers\rdpwd.sys [2012-10-20 210944] S3 RemoteRegistry;Remoteregistrierung;C:\windows\System32\svchost.exe -k regsvc [2012-5-25 27648] S3 RpcLocator;RPC-Locator;C:\windows\System32\Locator.exe [2009-7-14 10240] S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader;C:\windows\System32\drivers\RtsUVStor.sys [2012-5-25 314472] S3 sbp2port;sbp2port;C:\windows\System32\drivers\sbp2port.sys [2010-11-21 103808] S3 SCardSvr;Smartcard;C:\windows\System32\svchost.exe -k LocalServiceAndNoImpersonation [2012-5-25 27648] S3 scfilter;Filtertreiber für Smartcards der Plug & Play-Klasse;C:\windows\System32\drivers\scfilter.sys [2010-11-21 29696] S3 SCPolicySvc;Richtlinie zum Entfernen der Scmartcard;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] S3 SDRSVC;Windows-Sicherung;C:\windows\System32\svchost.exe -k SDRSVC [2012-5-25 27648] S3 seclogon;Sekundäre Anmeldung;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] S3 SensrSvc;Adaptive Helligkeit;C:\windows\System32\svchost.exe -k LocalServiceAndNoImpersonation [2012-5-25 27648] S3 Serenum;Serenum Filter Driver;C:\windows\System32\drivers\serenum.sys [2009-7-14 23552] S3 Serial;Serial;C:\windows\System32\drivers\serial.sys [2009-7-14 94208] S3 sermouse;Serial Mouse Driver;C:\windows\System32\drivers\sermouse.sys [2009-7-14 26624] S3 SessionEnv;Konfiguration für Remotedesktops;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] S3 sffdisk;SFF Storage Class Driver;C:\windows\System32\drivers\sffdisk.sys [2009-7-14 14336] S3 sffp_mmc;SFF Storage Protocol Driver for MMC;C:\windows\System32\drivers\sffp_mmc.sys [2009-7-14 13824] S3 sffp_sd;SFF Storage Protocol Driver for SDBus;C:\windows\System32\drivers\sffp_sd.sys [2010-11-21 14336] S3 sfloppy;High-Capacity Floppy Disk Drive;C:\windows\System32\drivers\sfloppy.sys [2009-7-14 16896] S3 SiSRaid2;SiSRaid2;C:\windows\System32\drivers\sisraid2.sys [2009-6-10 43584] S3 SiSRaid4;SiSRaid4;C:\windows\System32\drivers\sisraid4.sys [2009-7-13 80464] S3 Smb;Nachrichtenorientiertes TCP/IP- und TCP/IPv6-Protokoll (SMB-Sitzung);C:\windows\System32\drivers\smb.sys [2009-7-14 93184] S3 SNMPTRAP;SNMP-Trap;C:\windows\System32\snmptrap.exe [2009-7-14 14336] S3 sppuinotify;SPP-Benachrichtigungsdienst;C:\windows\System32\svchost.exe -k LocalService [2012-5-25 27648] S3 SstpSvc;SSTP-Dienst;C:\windows\System32\svchost.exe -k LocalService [2012-5-25 27648] S3 Steam Client Service;Steam Client Service;C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2012-11-25 543656] S3 stexstor;stexstor;C:\windows\System32\drivers\stexstor.sys [2009-7-13 24656] S3 swprv;Microsoft-Softwareschattenkopie-Anbieter;C:\windows\System32\svchost.exe -k swprv [2012-5-25 27648] S3 TabletInputService;Tablet PC-Eingabedienst;C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-5-25 27648] S3 TapiSrv;Telefonie;C:\windows\System32\svchost.exe -k NetworkService [2012-5-25 27648] S3 TBS;TPM-Basisdienste;C:\windows\System32\svchost.exe -k LocalServiceAndNoImpersonation [2012-5-25 27648] S3 TCPIP6;Microsoft IPv6 Protocol Driver;C:\windows\System32\drivers\tcpip.sys [2013-6-12 1910632] S3 TDPIPE;TDPIPE;C:\windows\System32\drivers\tdpipe.sys [2009-7-14 15872] S3 TDTCP;TDTCP;C:\windows\System32\drivers\tdtcp.sys [2012-10-20 23552] S3 TermService;Remotedesktopdienste;C:\windows\System32\svchost.exe -k NetworkService [2012-5-25 27648] S3 THREADORDER;Server für Threadsortierung;C:\windows\System32\svchost.exe -k LocalService [2012-5-25 27648] S3 tssecsrv;Remote Desktop Services Security Filter Driver;C:\windows\System32\drivers\tssecsrv.sys [2010-11-21 39424] S3 TsUsbFlt;TsUsbFlt;C:\windows\System32\drivers\TsUsbFlt.sys [2013-4-3 57856] S3 TsUsbGD;Remote Desktop Generic USB Device;C:\windows\System32\drivers\TsUsbGD.sys [2013-4-3 30208] S3 uagp35;Microsoft AGPv3.5 Filter;C:\windows\System32\drivers\UAGP35.SYS [2009-7-14 64080] S3 UI0Detect;Erkennung interaktiver Dienste;C:\windows\System32\UI0Detect.exe [2009-7-14 40960] S3 uliagpkx;Uli AGP Bus Filter;C:\windows\System32\drivers\ULIAGPKX.SYS [2009-7-14 64592] S3 UmPass;Microsoft UMPass Driver;C:\windows\System32\drivers\umpass.sys [2009-7-14 9728] S3 upnphost;UPnP-Gerätehost;C:\windows\System32\svchost.exe -k LocalServiceAndNoImpersonation [2012-5-25 27648] S3 USBAAPL64;Apple Mobile USB Driver;C:\windows\System32\drivers\usbaapl64.sys [2012-12-13 54784] S3 usbaudio;USB-Audiotreiber (WDM);C:\windows\System32\drivers\USBAUDIO.sys [2010-11-21 109696] S3 usbcir;eHome Infrared Receiver (USBCIR);C:\windows\System32\drivers\usbcir.sys [2009-7-14 100352] S3 usbohci;Microsoft USB Open Host Controller Miniport Driver;C:\windows\System32\drivers\usbohci.sys [2012-5-25 25600] S3 usbprint;Microsoft USB PRINTER Class;C:\windows\System32\drivers\usbprint.sys [2009-7-14 25088] S3 USBSTOR;USB-Massenspeichertreiber;C:\windows\System32\drivers\USBSTOR.SYS [2012-5-25 91648] S3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver;C:\windows\System32\drivers\usbuhci.sys [2012-5-25 30720] S3 VaultSvc;Anmeldeinformationsverwaltung;C:\windows\System32\lsass.exe [2012-5-25 31232] S3 vds;Virtueller Datenträger;C:\windows\System32\vds.exe [2010-11-21 533504] S3 vga;vga;C:\windows\System32\drivers\vgapnp.sys [2009-7-14 29184] S3 vhdmp;vhdmp;C:\windows\System32\drivers\vhdmp.sys [2010-11-21 215936] S3 viaide;viaide;C:\windows\System32\drivers\viaide.sys [2009-7-14 17488] S3 vsmraid;vsmraid;C:\windows\System32\drivers\vsmraid.sys [2009-6-10 161872] S3 VSS;Volumeschattenkopie;C:\windows\System32\VSSVC.exe [2010-11-21 1600512] S3 W32Time;Windows-Zeitgeber;C:\windows\System32\svchost.exe -k LocalService [2012-5-25 27648] S3 WacomPen;Wacom Serial Pen HID Driver;C:\windows\System32\drivers\wacompen.sys [2009-7-14 27776] S3 WANARP;Remotezugriff-IP-ARP-Treiber;C:\windows\System32\drivers\wanarp.sys [2010-11-21 88576] S3 wbengine;Blockebenen-Sicherungsmodul;C:\windows\System32\wbengine.exe [2010-11-21 1504256] S3 WbioSrvc;Windows-Biometriedienst;C:\windows\System32\svchost.exe -k WbioSvcGroup [2012-5-25 27648] S3 wcncsvc;Windows-Sofortverbindung - Konfigurationsregistrierungsstelle;C:\windows\System32\svchost.exe -k LocalServiceAndNoImpersonation [2012-5-25 27648] S3 WcsPlugInService;Windows-Farbsystem;C:\windows\System32\svchost.exe -k wcssvc [2012-5-25 27648] S3 Wd;Wd;C:\windows\System32\drivers\wd.sys [2009-7-14 21056] S3 WebClient;WebClient;C:\windows\System32\svchost.exe -k LocalService [2012-5-25 27648] S3 Wecsvc;Windows-Ereignissammlung;C:\windows\System32\svchost.exe -k NetworkService [2012-5-25 27648] S3 wercplsupport;Unterstützung in der Systemsteuerung unter Lösungen für Probleme;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] S3 WerSvc;Windows-Fehlerberichterstattungsdienst;C:\windows\System32\svchost.exe -k WerSvcGroup [2012-5-25 27648] S3 WIMMount;WIMMount;C:\windows\System32\drivers\wimmount.sys [2009-7-14 22096] S3 WinDefend;Windows Defender;C:\windows\System32\svchost.exe -k secsvcs [2012-5-25 27648] S3 WinRM;Windows-Remoteverwaltung (WS-Verwaltung);C:\windows\System32\svchost.exe -k NetworkService [2012-5-25 27648] S3 WinUsb;WinUsb;C:\windows\System32\drivers\winusb.sys [2010-11-21 41984] S3 wmiApSrv;WMI-Leistungsadapter;C:\windows\System32\wbem\WmiApSrv.exe [2009-7-14 203264] S3 WPCSvc;Parental Controls;C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted [2012-5-25 27648] S3 WudfPf;User Mode Driver Frameworks Platform Driver;C:\windows\System32\drivers\WUDFPf.sys [2012-11-16 87040] S3 WUDFRd;WUDFRd;C:\windows\System32\drivers\WUDFRd.sys [2012-11-16 198656] S3 wudfsvc;Windows Driver Foundation - Benutzermodus-Treiberframework;C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-5-25 27648] S3 WwanSvc;WWAN - automatische Konfiguration;C:\windows\System32\svchost.exe -k LocalServiceNoNetwork [2012-5-25 27648] S4 cdfs;CD/DVD File System Reader;C:\windows\System32\drivers\cdfs.sys [2009-7-14 92160] S4 clr_optimization_v2.0.50727_32;Microsoft .NET Framework NGEN v2.0.50727_X86;C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2009-7-13 66384] S4 clr_optimization_v2.0.50727_64;Microsoft .NET Framework NGEN v2.0.50727_X64;C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe [2009-7-13 89920] S4 crcdisk;Crcdisk Filter Driver;C:\windows\System32\drivers\crcdisk.sys [2009-7-14 24144] S4 Mcx2Svc;Media Center Extender-Dienst;C:\windows\System32\svchost.exe -k LocalServiceAndNoImpersonation [2012-5-25 27648] S4 NetMsmqActivator;Net.Msmq-Listeneradapter;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-3-18 124240] S4 NetPipeActivator;Net.Pipe-Listeneradapter;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-3-18 124240] S4 NetTcpActivator;Net.Tcp-Listeneradapter;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-3-18 124240] S4 NetTcpPortSharing;Net.Tcp-Portfreigabedienst;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-3-18 124240] S4 RemoteAccess;Routing und RAS;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] S4 SharedAccess;Gemeinsame Nutzung der Internetverbindung;C:\windows\System32\svchost.exe -k netsvcs [2012-5-25 27648] S4 udfs;udfs;C:\windows\System32\drivers\udfs.sys [2010-11-21 328192] S4 ws2ifsl;Winsock-IFS-Treiber;C:\windows\System32\drivers\ws2ifsl.sys [2009-7-14 21504] . =============== File Associations =============== . FileExt: .bat: batfile="%1" %* FileExt: .cmd: cmdfile="%1" %* FileExt: .com: comfile="%1" %* FileExt: .exe: exefile="%1" %* FileExt: .pif: piffile="%1" %* FileExt: .scr: scrfile="%1" /S FileExt: .reg: regfile=regedit.exe "%1" FileExt: .txt: txtfile=C:\windows\System32\NOTEPAD.EXE %1 FileExt: .chm: chm.file="C:\windows\hh.exe" %1 FileExt: .ini: inifile=C:\windows\System32\NOTEPAD.EXE %1 FileExt: .inf: inffile=C:\windows\System32\NOTEPAD.EXE %1 ShellExec: AcroRD32.exe: Read="C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe" "%1" ShellExec: ehshell.exe: open="C:\Windows\eHome\ehshell.exe" "%1" ShellExec: gimp-2.8.exe: open="C:\Program Files\GIMP 2\bin\gimp-2.8.exe" "%1" ShellExec: GROOVE.EXE: open="C:\Program Files\Microsoft Office 15\root\office15\GROOVE.EXE" "%1" ShellExec: iexplore.exe: open="C:\Program Files\Internet Explorer\iexplore.exe" %1 ShellExec: iTunes.exe: open="C:\Program Files (x86)\iTunes\iTunes.exe" /open "%L" ShellExec: iTunes.exe: play="C:\Program Files (x86)\iTunes\iTunes.exe" /play "%L" ShellExec: MovieMaker.exe: Open="C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe" "%1" ShellExec: MSOXMLED.EXE: open="C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE15\MSOXMLED.EXE" "%1" ShellExec: mspaint.exe: edit="C:\windows\System32\mspaint.exe" "%1" ShellExec: notepad.exe: edit=C:\windows\System32\NOTEPAD.EXE %1 ShellExec: notepad.exe: open=C:\windows\System32\NOTEPAD.EXE %1 ShellExec: photoviewer.dll: open=C:\windows\System32\rundll32.exe "C:\Program Files (x86)\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 ShellExec: photoviewer.dll: print=C:\windows\System32\rundll32.exe "C:\Program Files (x86)\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 ShellExec: vlc.exe: Open="C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file "%1" ShellExec: WINWORD.EXE: edit="C:\Program Files\Microsoft Office 15\root\Office15\Winword.exe" /n "%1" ShellExec: WLXPhotoViewer.dll: open="C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe" /LaunchPhotoViewer /v "%1" ShellExec: wmplayer.exe: open="C:\Program Files (x86)\Windows Media Player\wmplayer.exe" /Open "%L" ShellExec: wmplayer.exe: play="C:\Program Files (x86)\Windows Media Player\wmplayer.exe" /Play "%L" ShellExec: wordpad.exe: open="C:\Program Files (x86)\Windows NT\Accessories\WORDPAD.EXE" "%1" ShellExec: wrar420d.exe: open="C:\Users\Philipp\Downloads\wrar420d.exe" "%1" . =============== Created Last 60 ================ . 2013-06-12 20:28:28 391168 ----a-w- C:\windows\SysWow64\ieui.dll 2013-06-12 20:28:28 2706432 ----a-w- C:\windows\SysWow64\mshtml.tlb 2013-06-12 20:28:28 2706432 ----a-w- C:\windows\System32\mshtml.tlb 2013-06-12 20:28:27 701952 ----a-w- C:\Program Files\Internet Explorer\ieproxy.dll 2013-06-12 20:28:27 526336 ----a-w- C:\windows\System32\ieui.dll 2013-06-12 20:28:27 356352 ----a-w- C:\Program Files\Internet Explorer\IEShims.dll 2013-06-12 20:28:27 278528 ----a-w- C:\Program Files\Internet Explorer\sqmapi.dll 2013-06-12 20:28:27 257536 ----a-w- C:\Program Files (x86)\Internet Explorer\ieproxy.dll 2013-06-12 20:28:27 235520 ----a-w- C:\Program Files (x86)\Internet Explorer\IEShims.dll 2013-06-12 20:28:27 217600 ----a-w- C:\Program Files (x86)\Internet Explorer\sqmapi.dll 2013-06-12 20:28:26 89600 ----a-w- C:\windows\System32\RegisterIEPKEYs.exe 2013-06-12 20:28:26 71680 ----a-w- C:\windows\SysWow64\RegisterIEPKEYs.exe 2013-06-12 20:28:26 67072 ----a-w- C:\windows\System32\iesetup.dll 2013-06-12 20:28:26 61440 ----a-w- C:\windows\SysWow64\iesetup.dll 2013-06-12 20:28:26 51712 ----a-w- C:\windows\System32\ie4uinit.exe 2013-06-12 20:28:26 39936 ----a-w- C:\windows\System32\iernonce.dll 2013-06-12 20:28:26 33280 ----a-w- C:\windows\SysWow64\iernonce.dll 2013-06-12 20:28:26 2046976 ----a-w- C:\windows\SysWow64\iertutil.dll 2013-06-12 20:28:26 136704 ----a-w- C:\windows\System32\iesysprep.dll 2013-06-12 20:28:26 109056 ----a-w- C:\windows\SysWow64\iesysprep.dll 2013-06-12 20:28:25 855552 ----a-w- C:\windows\System32\jscript.dll 2013-06-12 20:28:25 775256 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe 2013-06-12 20:28:25 770648 ----a-w- C:\Program Files (x86)\Internet Explorer\iexplore.exe 2013-06-12 20:28:25 690688 ----a-w- C:\windows\SysWow64\jscript.dll 2013-06-12 20:28:25 603136 ----a-w- C:\windows\System32\msfeeds.dll 2013-06-12 20:28:25 493056 ----a-w- C:\windows\SysWow64\msfeeds.dll 2013-06-12 20:28:25 2648064 ----a-w- C:\windows\System32\iertutil.dll 2013-06-12 20:28:24 3958784 ----a-w- C:\windows\System32\jscript9.dll 2013-06-12 20:28:24 2877440 ----a-w- C:\windows\SysWow64\jscript9.dll 2013-06-12 20:28:24 148992 ----a-w- C:\Program Files\Internet Explorer\jsdebuggeride.dll 2013-06-12 20:28:23 817664 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VGX\VGX.dll 2013-06-12 20:28:23 1365504 ----a-w- C:\windows\System32\urlmon.dll 2013-06-12 20:28:23 1141248 ----a-w- C:\windows\SysWow64\urlmon.dll 2013-06-12 20:28:23 1084928 ----a-w- C:\Program Files\Common Files\Microsoft Shared\VGX\VGX.dll 2013-06-12 20:28:23 108032 ----a-w- C:\Program Files (x86)\Internet Explorer\jsdebuggeride.dll 2013-06-12 20:28:22 53248 ----a-w- C:\windows\System32\jsproxy.dll 2013-06-12 20:28:22 39424 ----a-w- C:\windows\SysWow64\jsproxy.dll 2013-06-12 20:28:22 2241024 ----a-w- C:\windows\System32\wininet.dll 2013-06-12 20:28:22 1767936 ----a-w- C:\windows\SysWow64\wininet.dll 2013-06-12 20:28:21 13760512 ----a-w- C:\windows\SysWow64\ieframe.dll 2013-06-12 20:28:20 15404544 ----a-w- C:\windows\System32\ieframe.dll 2013-06-12 20:28:19 19233792 ----a-w- C:\windows\System32\mshtml.dll 2013-06-12 20:28:17 14327808 ----a-w- C:\windows\SysWow64\mshtml.dll 2013-06-12 17:39:53 1910632 ----a-w- C:\windows\System32\drivers\tcpip.sys 2013-06-12 17:39:51 751104 ----a-w- C:\windows\System32\win32spl.dll 2013-06-12 17:39:51 492544 ----a-w- C:\windows\SysWow64\win32spl.dll 2013-06-12 17:39:44 30720 ----a-w- C:\windows\System32\cryptdlg.dll 2013-06-12 17:39:44 24576 ----a-w- C:\windows\SysWow64\cryptdlg.dll 2013-06-12 17:39:41 1424384 ----a-w- C:\windows\System32\WindowsCodecs.dll 2013-06-12 17:39:41 1230336 ----a-w- C:\windows\SysWow64\WindowsCodecs.dll 2013-06-12 17:39:35 1192448 ----a-w- C:\windows\System32\certutil.exe 2013-06-12 17:39:34 903168 ----a-w- C:\windows\SysWow64\certutil.exe 2013-06-12 17:39:34 184320 ----a-w- C:\windows\System32\cryptsvc.dll 2013-06-12 17:39:34 1464320 ----a-w- C:\windows\System32\crypt32.dll 2013-06-12 17:39:34 139776 ----a-w- C:\windows\System32\cryptnet.dll 2013-06-12 17:39:34 1160192 ----a-w- C:\windows\SysWow64\crypt32.dll 2013-06-12 17:39:33 52224 ----a-w- C:\windows\System32\certenc.dll 2013-06-12 17:39:33 43008 ----a-w- C:\windows\SysWow64\certenc.dll 2013-06-12 17:39:33 140288 ----a-w- C:\windows\SysWow64\cryptsvc.dll 2013-06-12 17:39:33 103936 ----a-w- C:\windows\SysWow64\cryptnet.dll 2013-06-12 17:39:28 1887232 ----a-w- C:\windows\System32\d3d11.dll 2013-06-12 17:39:28 1505280 ----a-w- C:\windows\SysWow64\d3d11.dll 2013-06-07 22:14:28 -------- d-----w- C:\Program Files\iPod 2013-06-07 22:14:27 -------- d-----w- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-06-07 22:14:27 -------- d-----w- C:\Program Files\iTunes 2013-06-07 22:14:27 -------- d-----w- C:\Program Files (x86)\iTunes 2013-06-03 21:10:50 20616 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\1031\VSTOLoaderUI.dll 2013-06-03 21:10:50 10896 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\1031\VSTOInstallerUI.dll 2013-06-02 12:27:11 -------- d-----w- C:\MAGICDVDCOPY_TEMP 2013-06-01 18:40:44 84736 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\HostSideAdapters\Microsoft.VisualStudio.Tools.Office.Word.HostAdapter.v10.0.dll 2013-06-01 18:40:44 82576 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\VSTOInstaller.exe 2013-06-01 18:40:44 78592 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\HostSideAdapters\Microsoft.VisualStudio.Tools.Office.Excel.HostAdapter.v10.0.dll 2013-06-01 18:40:44 64240 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\HostSideAdapters\Microsoft.VisualStudio.Tools.Office.HostAdapter.v10.0.dll 2013-06-01 18:40:44 49832 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\VSTOMessageProvider.dll 2013-06-01 18:40:44 42248 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\HostSideAdapters\Microsoft.VisualStudio.Tools.Office.Outlook.HostAdapter.v10.0.dll 2013-06-01 18:40:44 42240 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\AddInSideAdapters\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v10.0.dll 2013-06-01 18:40:44 36096 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\HostSideAdapters\Microsoft.VisualStudio.Tools.Applications.HostAdapter.v10.0.dll 2013-06-01 18:40:44 33528 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\AddInViews\Microsoft.VisualStudio.Tools.Applications.Runtime.v10.0.dll 2013-06-01 18:40:44 268440 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\VSTOLoader.dll 2013-06-01 18:40:44 25336 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\Contracts\Microsoft.VisualStudio.Tools.Applications.Contract.v10.0.dll 2013-06-01 18:40:44 24816 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\Contracts\Microsoft.VisualStudio.Tools.Office.Contract.v10.0.dll 2013-06-01 18:40:44 19080 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\1033\VSTOLoaderUI.dll 2013-06-01 18:40:44 116880 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTO\vstoee.dll 2013-06-01 18:40:44 10912 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\1033\VSTOInstallerUI.dll 2013-06-01 17:22:46 -------- d-----w- C:\Users\Philipp\AppData\Roaming\Engelmann Media 2013-06-01 17:22:22 -------- d-----w- C:\ProgramData\Engelmann Media 2013-06-01 17:22:19 -------- d-----w- C:\Program Files (x86)\S.A.D 2013-06-01 17:22:11 -------- d-----w- C:\Program Files (x86)\Common Files\HDX4 2013-06-01 17:03:43 -------- d-----w- C:\Users\Philipp\AppData\Roaming\HandBrake 2013-05-31 16:52:46 262552 ----a-w- C:\Program Files (x86)\Mozilla Firefox\browser\components\browsercomps.dll 2013-05-31 16:41:01 33400 ----a-w- C:\windows\System32\drivers\aswFsBlk.sys 2013-05-31 16:41:00 378432 ----a-w- C:\windows\System32\drivers\aswSP.sys 2013-05-31 16:40:59 72016 ----a-w- C:\windows\System32\drivers\aswRdr2.sys 2013-05-31 16:40:57 64288 ----a-w- C:\windows\System32\drivers\aswTdi.sys 2013-05-31 16:40:52 65336 ----a-w- C:\windows\System32\drivers\aswRvrt.sys 2013-05-31 16:40:52 189936 ----a-w- C:\windows\System32\drivers\aswVmm.sys 2013-05-31 16:40:52 1025808 ----a-w- C:\windows\System32\drivers\aswSnx.sys 2013-05-31 16:40:51 80816 ----a-w- C:\windows\System32\drivers\aswMonFlt.sys 2013-05-31 16:40:51 287840 ----a-w- C:\windows\System32\aswBoot.exe 2013-05-31 16:40:38 41664 ----a-w- C:\windows\avastSS.scr 2013-05-31 16:40:27 -------- d-----w- C:\Program Files\AVAST Software 2013-05-31 16:38:53 -------- d-----w- C:\ProgramData\AVAST Software 2013-05-27 20:46:57 -------- d-----w- C:\Users\Philipp\AppData\Roaming\vlc 2013-05-18 15:59:32 -------- d-----w- C:\Program Files (x86)\DVDVideoSoft 2013-05-18 15:59:32 -------- d-----w- C:\Program Files (x86)\Common Files\DVDVideoSoft 2013-05-18 13:25:58 -------- d-----w- C:\Users\Philipp\AppData\Roaming\SharePod 2013-05-18 12:56:40 -------- d-----w- C:\FFOutput 2013-05-18 12:55:59 -------- d-----w- C:\Program Files (x86)\FreeTime 2013-05-18 11:59:10 -------- d-----w- C:\Users\Philipp\AppData\Roaming\Software4u 2013-05-18 11:59:10 -------- d-----w- C:\Users\Philipp\AppData\Local\IsolatedStorage 2013-05-15 16:07:42 983400 ----a-w- C:\windows\System32\drivers\dxgkrnl.sys 2013-05-15 16:07:42 265064 ----a-w- C:\windows\System32\drivers\dxgmms1.sys 2013-05-15 16:07:42 144384 ----a-w- C:\windows\System32\cdd.dll 2013-05-15 16:07:15 14172672 ----a-w- C:\windows\System32\shell32.dll 2013-05-15 16:07:14 70144 ----a-w- C:\windows\System32\appinfo.dll 2013-05-15 16:07:14 197120 ----a-w- C:\windows\System32\shdocvw.dll 2013-05-15 16:07:14 1930752 ----a-w- C:\windows\System32\authui.dll 2013-05-15 16:07:14 180224 ----a-w- C:\windows\SysWow64\shdocvw.dll 2013-05-15 16:07:14 1796096 ----a-w- C:\windows\SysWow64\authui.dll 2013-05-15 16:07:14 12872704 ----a-w- C:\windows\SysWow64\shell32.dll 2013-05-15 16:07:14 111448 ----a-w- C:\windows\System32\consent.exe 2013-05-15 16:06:58 48640 ----a-w- C:\windows\System32\wwanprotdim.dll 2013-05-15 16:06:58 230400 ----a-w- C:\windows\System32\wwansvc.dll 2013-05-15 16:06:57 3153920 ----a-w- C:\windows\System32\win32k.sys 2013-04-26 12:55:53 1656680 ----a-w- C:\windows\System32\drivers\ntfs.sys 2013-04-23 17:06:10 -------- d-----w- C:\windows\pss 2013-04-23 14:43:18 -------- d-----w- C:\Program Files\CCleaner 2013-04-22 15:45:03 -------- d-----w- C:\Program Files (x86)\Common Files\Skype 2013-04-19 12:12:21 -------- d-----w- C:\Program Files (x86)\Common Files\Java 2013-04-19 12:12:09 95648 ----a-w- C:\windows\SysWow64\WindowsAccessBridge-32.dll 2013-04-19 12:12:09 174496 ----a-w- C:\windows\SysWow64\javaw.exe 2013-04-19 12:12:09 174496 ----a-w- C:\windows\SysWow64\java.exe . ==================== Find6M ==================== . 2013-06-12 20:28:56 75825640 ----a-w- C:\windows\System32\MRT.exe 2013-06-12 19:29:04 71048 ----a-w- C:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-06-12 19:29:04 692104 ----a-w- C:\windows\SysWow64\FlashPlayerApp.exe 2013-04-13 05:49:23 135168 ----a-w- C:\windows\apppatch\AppPatch64\AcXtrnal.dll 2013-04-13 05:49:19 350208 ----a-w- C:\windows\apppatch\AppPatch64\AcLayers.dll 2013-04-13 05:49:19 308736 ----a-w- C:\windows\apppatch\AppPatch64\AcGenral.dll 2013-04-13 05:49:19 111104 ----a-w- C:\windows\apppatch\AppPatch64\acspecfc.dll 2013-04-13 04:45:16 474624 ----a-w- C:\windows\apppatch\AcSpecfc.dll 2013-04-13 04:45:15 2176512 ----a-w- C:\windows\apppatch\AcGenral.dll 2013-04-04 12:50:32 25928 ----a-w- C:\windows\System32\drivers\mbam.sys 2013-04-03 10:46:24 174 ----a-w- C:\windows\DeleteOnReboot.bat 2013-04-03 10:45:31 861088 ----a-w- C:\windows\SysWow64\npDeployJava1.dll 2013-04-03 10:45:31 782240 ----a-w- C:\windows\SysWow64\deployJava1.dll 2013-04-02 10:34:28 282744 ------w- C:\windows\System32\MpSigStub.exe 2013-03-19 06:04:06 5550424 ----a-w- C:\windows\System32\ntoskrnl.exe 2013-03-19 05:46:56 43520 ----a-w- C:\windows\System32\csrsrv.dll 2013-03-19 05:04:13 3968856 ----a-w- C:\windows\SysWow64\ntkrnlpa.exe 2013-03-19 05:04:10 3913560 ----a-w- C:\windows\SysWow64\ntoskrnl.exe 2013-03-19 04:47:50 6656 ----a-w- C:\windows\SysWow64\apisetschema.dll 2013-03-19 03:06:33 112640 ----a-w- C:\windows\System32\smss.exe 2013-02-12 04:12:05 19968 ----a-w- C:\windows\System32\drivers\usb8023.sys 2013-02-08 05:03:50 829264 ----a-w- C:\windows\System32\msvcr100.dll 2013-02-08 05:03:50 608080 ----a-w- C:\windows\System32\msvcp100.dll 2013-02-08 01:14:40 773968 ----a-w- C:\windows\SysWow64\msvcr100.dll 2013-02-08 01:14:40 421200 ----a-w- C:\windows\SysWow64\msvcp100.dll 2013-01-24 06:01:01 223752 ----a-w- C:\windows\System32\drivers\fvevol.sys 2013-01-13 21:17:03 9728 ---ha-w- C:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-01-13 21:17:02 2560 ---ha-w- C:\windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-01-13 21:16:42 10752 ---ha-w- C:\windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-01-13 21:12:46 3584 ---ha-w- C:\windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-01-13 21:11:21 4096 ---ha-w- C:\windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-01-13 21:11:08 5632 ---ha-w- C:\windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-01-13 21:11:07 5632 ---ha-w- C:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-01-13 21:11:07 3072 ---ha-w- C:\windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll 2013-01-13 21:11:07 3072 ---ha-w- C:\windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-01-13 20:35:31 9728 ---ha-w- C:\windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-01-13 20:35:31 2560 ---ha-w- C:\windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-01-13 20:35:18 10752 ---ha-w- C:\windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-01-13 20:32:07 3584 ---ha-w- C:\windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-01-13 20:31:48 4096 ---ha-w- C:\windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-01-13 20:31:41 5632 ---ha-w- C:\windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-01-13 20:31:40 5632 ---ha-w- C:\windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-01-13 20:31:40 3072 ---ha-w- C:\windows\System32\api-ms-win-downlevel-version-l1-1-0.dll 2013-01-13 20:31:40 3072 ---ha-w- C:\windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-01-13 20:31:00 1247744 ----a-w- C:\windows\SysWow64\DWrite.dll 2013-01-13 20:22:22 1988096 ----a-w- C:\windows\SysWow64\d3d10warp.dll 2013-01-13 20:20:31 293376 ----a-w- C:\windows\SysWow64\dxgi.dll 2013-01-13 20:09:00 249856 ----a-w- C:\windows\SysWow64\d3d10_1core.dll 2013-01-13 20:08:43 220160 ----a-w- C:\windows\SysWow64\d3d10core.dll 2013-01-13 19:59:04 1643520 ----a-w- C:\windows\System32\DWrite.dll 2013-01-13 19:58:28 1175552 ----a-w- C:\windows\System32\FntCache.dll 2013-01-13 19:54:01 604160 ----a-w- C:\windows\SysWow64\d3d10level9.dll 2013-01-13 19:53:58 207872 ----a-w- C:\windows\SysWow64\WindowsCodecsExt.dll 2013-01-13 19:53:14 187392 ----a-w- C:\windows\SysWow64\UIAnimation.dll 2013-01-13 19:51:30 2565120 ----a-w- C:\windows\System32\d3d10warp.dll 2013-01-13 19:49:17 363008 ----a-w- C:\windows\System32\dxgi.dll 2013-01-13 19:48:47 161792 ----a-w- C:\windows\SysWow64\d3d10_1.dll 2013-01-13 19:46:25 1080832 ----a-w- C:\windows\SysWow64\d3d10.dll 2013-01-13 19:38:39 333312 ----a-w- C:\windows\System32\d3d10_1core.dll 2013-01-13 19:38:21 296960 ----a-w- C:\windows\System32\d3d10core.dll 2013-01-13 19:37:57 3419136 ----a-w- C:\windows\SysWow64\d2d1.dll 2013-01-13 19:25:04 245248 ----a-w- C:\windows\System32\WindowsCodecsExt.dll 2013-01-13 19:24:33 648192 ----a-w- C:\windows\System32\d3d10level9.dll 2013-01-13 19:24:30 221184 ----a-w- C:\windows\System32\UIAnimation.dll 2013-01-13 19:20:42 194560 ----a-w- C:\windows\System32\d3d10_1.dll 2013-01-13 19:20:04 1238528 ----a-w- C:\windows\System32\d3d10.dll 2013-01-13 19:10:36 3928064 ----a-w- C:\windows\System32\d2d1.dll 2013-01-13 19:02:06 417792 ----a-w- C:\windows\SysWow64\WMPhoto.dll 2013-01-13 18:34:58 364544 ----a-w- C:\windows\SysWow64\XpsGdiConverter.dll 2013-01-13 18:32:43 465920 ----a-w- C:\windows\System32\WMPhoto.dll 2013-01-13 18:09:52 522752 ----a-w- C:\windows\System32\XpsGdiConverter.dll 2013-01-13 17:26:42 1158144 ----a-w- C:\windows\SysWow64\XpsPrint.dll 2013-01-13 17:05:09 1682432 ----a-w- C:\windows\System32\XpsPrint.dll 2013-01-04 06:11:21 2284544 ----a-w- C:\windows\SysWow64\msmpeg2vdec.dll 2013-01-04 06:11:13 2776576 ----a-w- C:\windows\System32\msmpeg2vdec.dll 2013-01-04 05:46:09 215040 ----a-w- C:\windows\System32\winsrv.dll 2013-01-04 04:51:16 5120 ----a-w- C:\windows\SysWow64\wow32.dll 2013-01-04 04:43:21 44032 ----a-w- C:\windows\apppatch\acwow64.dll 2013-01-04 02:47:35 25600 ----a-w- C:\windows\SysWow64\setup16.exe 2013-01-04 02:47:34 7680 ----a-w- C:\windows\SysWow64\instnm.exe 2013-01-04 02:47:34 2048 ----a-w- C:\windows\SysWow64\user.exe 2013-01-04 02:47:33 14336 ----a-w- C:\windows\SysWow64\ntvdm64.dll 2013-01-03 06:00:42 288088 ----a-w- C:\windows\System32\drivers\FWPKCLNT.SYS 2012-12-19 13:53:34 19632 ----a-w- C:\windows\System32\roboot64.exe . ============= FINISH: 23:12:12,69 =============== attach Code:
ATTFilter . UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG. IF REQUESTED, ZIP IT UP & ATTACH IT . DDS (Ver_2012-11-20.01) . Microsoft Windows 7 Home Premium Boot Device: \Device\HarddiskVolume1 Install Date: 21.10.2012 19:17:31 System Uptime: 14.06.2013 23:07:39 (0 hours ago) . Motherboard: SAMSUNG ELECTRONICS CO., LTD. | | 350V5 Processor: Intel(R) Core(TM) i5-3210M CPU @ 2.50GHz | SOCKET 0 | 2501/100mhz . ==== Disk Partitions ========================= . C: is FIXED (NTFS) - 675 GiB total, 514,651 GiB free. D: is CDROM () . ==== Disabled Device Manager Items ============= . ==== System Restore Points =================== . RP102: 31.05.2013 18:40:12 - avast! Free Antivirus Setup RP103: 31.05.2013 23:40:14 - Windows-Sicherung RP104: 01.06.2013 19:21:44 - Formatwandler 2D zu 3D wird installiert RP105: 02.06.2013 22:31:35 - Formatwandler 2D zu 3D wird entfernt RP106: 02.06.2013 22:33:22 - Formatwandler 2D zu 3D wird entfernt RP107: 02.06.2013 22:36:19 - Formatwandler 2D zu 3D wird entfernt RP108: 02.06.2013 22:38:12 - Formatwandler 2D zu 3D wird entfernt RP109: 05.06.2013 22:51:51 - Formatwandler 2D zu 3D wird entfernt RP110: 12.06.2013 19:28:33 - Removed Skype Click to Call RP111: 12.06.2013 19:29:38 - OpenOffice.org 3.4.1 wird entfernt RP112: 12.06.2013 19:35:57 - Formatwandler 2D zu 3D wird entfernt RP113: 12.06.2013 22:27:36 - Windows Update . ==== Installed Programs ====================== . ?? ??? ??? ???? ???? ????? ???? Windows Live ????? Windows Live ?????? ??????? ???????? ?????????? Windows Live ?????????? ?????????? (????????????? ??????) ??????????? 4Story DE 4.0.167 7-Zip 9.20 Ace of Spades Adobe Flash Player 11 ActiveX Adobe Flash Player 11 Plugin Adobe Reader XI (11.0.03) - Deutsch Amazon MP3-Downloader 1.0.17 AMD Accelerated Video Transcoding AMD APP SDK Runtime AMD Catalyst Install Manager Apple Application Support Apple Mobile Device Support Apple Software Update Atheros Bluetooth Suite (64) Atheros Client Installation Program avast! Free Antivirus „Windows Live Essentials“ „Windows Live Mail“ „Windows Live Messenger“ Bonjour Catalyst Control Center Catalyst Control Center - Branding Catalyst Control Center InstallProxy Catalyst Control Center Localization All Catalyst Control Center Profiles Mobile ccc-utility64 CCC Help Chinese Standard CCC Help Chinese Traditional CCC Help Czech CCC Help Danish CCC Help Dutch CCC Help English CCC Help Finnish CCC Help French CCC Help German CCC Help Greek CCC Help Hungarian CCC Help Italian CCC Help Japanese CCC Help Korean CCC Help Norwegian CCC Help Polish CCC Help Portuguese CCC Help Russian CCC Help Spanish CCC Help Swedish CCC Help Thai CCC Help Turkish CCleaner CyberLink Media Suite CyberLink Media+ Player10 CyberLink MediaShow CyberLink Power2Go CyberLink PowerDirector CyberLink YouCam D3DX10 E-POP Easy File Share Easy Migration Easy Settings Easy Software Manager Easy Support Center Formatwandler 2D zu 3D Fotótár Foto-galerija Fotoattelu galerija Fotogalerie Fotogalerija Fotogalleri Fotogalleriet Fotogaléria Fotograf Galerisi Free Audio CD Burner version 2.0.23.430 Free DVD Video Converter version 2.0.13.430 Free Video Dub version 2.0.18.430 Free Video to DVD Converter version 5.0.24.430 Free Video to iPod Converter version 5.0.24.430 Free Video to MP3 Converter version 5.0.24.430 Free YouTube Download version 3.2.2.430 Galeria de Fotografias Galeria de Fotos Galeria fotografii Galerie de photos Galerie foto Galerija fotografija Galería de fotos Gameforge Live 1.0 "Legend" Google Chrome Google Earth Google Update Helper Intel(R) Control Center Intel(R) Display Audio Driver Intel(R) Manageability Engine Firmware Recovery Agent Intel(R) Management Engine Components Intel(R) Rapid Storage Technology Intel(R) USB 3.0 eXtensible Host Controller Driver Intel® Trusted Connect Service Client iTunes Java 7 Update 21 Java Auto Updater Junk Mail filter update LEGO® Star Wars™: Die Komplette Saga LEGO® Star Wars™: The Complete Saga Logitech Unifying-Software 2.10 Malwarebytes Anti-Malware Version 1.75.0.1300 Microsoft-Maus- und Tastatur-Center Microsoft .NET Framework 4 Client Profile Microsoft .NET Framework 4 Client Profile DEU Language Pack Microsoft .NET Framework 4 Extended Microsoft .NET Framework 4 Extended DEU Language Pack Microsoft Application Error Reporting Microsoft Office Klick-und-Los 2010 Microsoft Office Professional Plus 2013 - de-de Microsoft Silverlight Microsoft SkyDrive Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Movie Maker Mozilla Firefox 21.0 (x86 de) Mozilla Maintenance Service MSVCRT MSVCRT_amd64 MSVCRT110 MSVCRT110_amd64 Multimedia POP Office 15 Click-to-Run Extensibility Component Office 15 Click-to-Run Licensing Component Office 15 Click-to-Run Localization Component PDF24 Creator 5.4.0 Photo Common Photo Gallery Poczta uslugi Windows Live Podstawowe programy Windows Live Pošta Windows Live PX Profile Update Raccolta foto Realtek Ethernet Controller Driver Realtek High Definition Audio Driver Realtek USB 2.0 Card Reader S?????? f?t???af??? S4 League_EU Samsung Recovery Solution 5 Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121) Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351) Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2) Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405) Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827) Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449) Security Update for Microsoft .NET Framework 4 Client Profile (KB2736428) Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019) Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595) Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642) Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576) Security Update for Microsoft .NET Framework 4 Extended (KB2487367) Security Update for Microsoft .NET Framework 4 Extended (KB2656351) Security Update for Microsoft .NET Framework 4 Extended (KB2736428) Security Update for Microsoft .NET Framework 4 Extended (KB2742595) Seterra 4.02 Skype™ 6.3 Software Launcher Some PDF to Txt Converter 2.0 Steam Stronghold 2 Stronghold Legends Synaptics Pointing Device Driver Team Fortress 2 Update for Microsoft .NET Framework 4 Client Profile (KB2468871) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) Update for Microsoft .NET Framework 4 Extended (KB2468871) Update for Microsoft .NET Framework 4 Extended (KB2533523) Update for Microsoft .NET Framework 4 Extended (KB2600217) User Guide Valokuvavalikoima VeryPDF PDF2TXT v3.2 VLC media player 2.0.7 Windows Live Windows Live ?? Windows Live ?? ??? Windows Live ??? Windows Live Communications Platform Windows Live Essentials Windows Live Family Safety Windows Live Fotogalleri Windows Live ID Sign-in Assistant Windows Live Installer Windows Live Mail Windows Live Messenger Windows Live MIME IFilter Windows Live Movie Maker Windows Live Photo Common Windows Live PIMT Platform Windows Live Pošta Windows Live SOXE Windows Live SOXE Definitions Windows Live Temel Parçalar Windows Live UX Platform Windows Live UX Platform Language Pack Windows Live Writer Windows Live Writer Resources Windows Liven peruspaketti Windows Liven sähköposti WinRAR 4.20 (32-Bit) . ==== End Of File =========================== hypercraft |
14.06.2013, 22:56 | #6 |
/// TB-Ausbilder | Rechner fährt plötzlich sehr langsam hoch liegt das am Antivirenprogramm? Bei den 100 Diensten die da starten wundert mich nix. Wir müssen da mal mit CF ran: Scan mit Combofix
__________________ --> Rechner fährt plötzlich sehr langsam hoch liegt das am Antivirenprogramm? |
15.06.2013, 11:58 | #7 |
| Rechner fährt plötzlich sehr langsam hoch liegt das am Antivirenprogramm? hi, hier ist das Logfile von ComboFix Code:
ATTFilter ComboFix 13-06-13.01 - Philipp 15.06.2013 11:34:22.1.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.8081.6193 [GMT 2:00] ausgeführt von:: c:\users\Philipp\Downloads\ComboFix.exe AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C} SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} * Neuer Wiederherstellungspunkt wurde erstellt . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . C:\Install.exe . . ((((((((((((((((((((((( Dateien erstellt von 2013-05-15 bis 2013-06-15 )))))))))))))))))))))))))))))) . . 2013-06-15 09:39 . 2013-06-15 09:39 -------- d-----w- c:\users\Default\AppData\Local\temp 2013-06-12 17:39 . 2013-05-08 06:39 1910632 ----a-w- c:\windows\system32\drivers\tcpip.sys 2013-06-07 22:14 . 2013-06-07 22:14 -------- d-----w- c:\program files\iPod 2013-06-07 22:14 . 2013-06-07 22:14 -------- d-----w- c:\programdata\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-06-07 22:14 . 2013-06-07 22:14 -------- d-----w- c:\program files\iTunes 2013-06-07 22:14 . 2013-06-07 22:14 -------- d-----w- c:\program files (x86)\iTunes 2013-06-03 21:10 . 2013-06-03 21:10 20616 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\VSTO\10.0\1031\VSTOLoaderUI.dll 2013-06-03 21:10 . 2013-06-03 21:10 10896 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\VSTO\10.0\1031\VSTOInstallerUI.dll 2013-06-02 12:27 . 2013-06-02 20:55 -------- d-----w- C:\MAGICDVDCOPY_TEMP 2013-06-01 17:22 . 2013-06-01 17:22 -------- d-----w- c:\users\Philipp\AppData\Roaming\Engelmann Media 2013-06-01 17:22 . 2013-06-01 17:22 -------- d-----w- c:\programdata\Engelmann Media 2013-06-01 17:22 . 2013-06-01 17:22 -------- d-----w- c:\program files (x86)\S.A.D 2013-06-01 17:22 . 2013-06-01 17:22 -------- d-----w- c:\program files (x86)\Common Files\HDX4 2013-06-01 17:03 . 2013-06-01 17:03 -------- d-----w- c:\users\Philipp\AppData\Roaming\HandBrake 2013-05-31 16:52 . 2013-05-11 22:27 262552 ----a-w- c:\program files (x86)\Mozilla Firefox\browser\components\browsercomps.dll 2013-05-31 16:41 . 2013-05-09 08:59 33400 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys 2013-05-31 16:41 . 2013-05-09 08:59 378432 ----a-w- c:\windows\system32\drivers\aswSP.sys 2013-05-31 16:40 . 2013-05-09 08:59 72016 ----a-w- c:\windows\system32\drivers\aswRdr2.sys 2013-05-31 16:40 . 2013-05-09 08:59 64288 ----a-w- c:\windows\system32\drivers\aswTdi.sys 2013-05-31 16:40 . 2013-05-09 08:59 65336 ----a-w- c:\windows\system32\drivers\aswRvrt.sys 2013-05-31 16:40 . 2013-05-09 08:59 189936 ----a-w- c:\windows\system32\drivers\aswVmm.sys 2013-05-31 16:40 . 2013-05-09 08:59 1025808 ----a-w- c:\windows\system32\drivers\aswSnx.sys 2013-05-31 16:40 . 2013-05-09 08:59 80816 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys 2013-05-31 16:40 . 2013-05-09 08:58 287840 ----a-w- c:\windows\system32\aswBoot.exe 2013-05-31 16:40 . 2013-05-09 08:58 41664 ----a-w- c:\windows\avastSS.scr 2013-05-31 16:40 . 2013-05-31 16:40 -------- d-----w- c:\program files\AVAST Software 2013-05-31 16:38 . 2013-05-31 16:40 -------- d-----w- c:\programdata\AVAST Software 2013-05-27 20:46 . 2013-06-12 21:07 -------- d-----w- c:\users\Philipp\AppData\Roaming\vlc 2013-05-18 15:59 . 2013-06-01 17:12 -------- d-----w- c:\program files (x86)\DVDVideoSoft 2013-05-18 15:59 . 2013-06-01 17:12 -------- d-----w- c:\program files (x86)\Common Files\DVDVideoSoft 2013-05-18 13:25 . 2013-05-18 13:25 -------- d-----w- c:\users\Philipp\AppData\Roaming\SharePod 2013-05-18 12:56 . 2013-05-18 13:32 -------- d-----w- C:\FFOutput 2013-05-18 12:55 . 2013-05-29 21:03 -------- d-----w- c:\program files (x86)\FreeTime 2013-05-18 11:59 . 2013-05-18 11:59 -------- d-----w- c:\users\Philipp\AppData\Roaming\Software4u 2013-05-18 11:59 . 2013-05-18 11:59 -------- d-----w- c:\users\Philipp\AppData\Local\IsolatedStorage . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-06-14 15:26 . 2013-03-04 20:34 564432 ----a-w- c:\programdata\Microsoft\ClickToRun\{9AC08E99-230B-47e8-9721-4577B7F124EA}\integrator.exe 2013-06-12 20:28 . 2012-10-20 19:21 75825640 ----a-w- c:\windows\system32\MRT.exe 2013-06-12 19:29 . 2012-10-23 18:53 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-06-12 19:29 . 2012-10-23 18:53 692104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2013-05-14 19:51 . 2013-02-17 14:37 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll 2013-04-13 05:49 . 2013-05-15 16:07 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll 2013-04-13 05:49 . 2013-05-15 16:07 350208 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll 2013-04-13 05:49 . 2013-05-15 16:07 308736 ----a-w- c:\windows\apppatch\AppPatch64\AcGenral.dll 2013-04-13 05:49 . 2013-05-15 16:07 111104 ----a-w- c:\windows\apppatch\AppPatch64\acspecfc.dll 2013-04-13 04:45 . 2013-05-15 16:07 474624 ----a-w- c:\windows\apppatch\AcSpecfc.dll 2013-04-13 04:45 . 2013-05-15 16:07 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll 2013-04-12 14:45 . 2013-04-26 12:55 1656680 ----a-w- c:\windows\system32\drivers\ntfs.sys 2013-04-10 06:01 . 2013-05-15 16:07 265064 ----a-w- c:\windows\system32\drivers\dxgmms1.sys 2013-04-10 06:01 . 2013-05-15 16:07 983400 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys 2013-04-10 03:30 . 2013-05-15 16:06 3153920 ----a-w- c:\windows\system32\win32k.sys 2013-04-04 12:50 . 2013-03-02 18:49 25928 ----a-w- c:\windows\system32\drivers\mbam.sys 2013-04-04 03:35 . 2013-04-19 12:12 95648 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2013-04-03 10:46 . 2013-04-03 10:45 174 ----a-w- c:\windows\DeleteOnReboot.bat 2013-04-03 10:45 . 2012-10-20 18:12 861088 ----a-w- c:\windows\SysWow64\npDeployJava1.dll 2013-04-03 10:45 . 2012-10-20 18:12 782240 ----a-w- c:\windows\SysWow64\deployJava1.dll 2013-04-02 10:34 . 2010-11-21 03:27 282744 ------w- c:\windows\system32\MpSigStub.exe 2013-03-20 17:46 . 2013-03-20 17:46 97280 ----a-w- c:\windows\system32\mshtmled.dll 2013-03-20 17:46 . 2013-03-20 17:46 92160 ----a-w- c:\windows\system32\SetIEInstalledDate.exe 2013-03-20 17:46 . 2013-03-20 17:46 905728 ----a-w- c:\windows\system32\mshtmlmedia.dll 2013-03-20 17:46 . 2013-03-20 17:46 81408 ----a-w- c:\windows\system32\icardie.dll 2013-03-20 17:46 . 2013-03-20 17:46 77312 ----a-w- c:\windows\system32\tdc.ocx 2013-03-20 17:46 . 2013-03-20 17:46 762368 ----a-w- c:\windows\system32\ieapfltr.dll 2013-03-20 17:46 . 2013-03-20 17:46 73728 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe 2013-03-20 17:46 . 2013-03-20 17:46 719360 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll 2013-03-20 17:46 . 2013-03-20 17:46 62976 ----a-w- c:\windows\system32\pngfilt.dll 2013-03-20 17:46 . 2013-03-20 17:46 61952 ----a-w- c:\windows\SysWow64\tdc.ocx 2013-03-20 17:46 . 2013-03-20 17:46 599552 ----a-w- c:\windows\system32\vbscript.dll 2013-03-20 17:46 . 2013-03-20 17:46 523264 ----a-w- c:\windows\SysWow64\vbscript.dll 2013-03-20 17:46 . 2013-03-20 17:46 52224 ----a-w- c:\windows\system32\msfeedsbs.dll 2013-03-20 17:46 . 2013-03-20 17:46 51200 ----a-w- c:\windows\system32\imgutil.dll 2013-03-20 17:46 . 2013-03-20 17:46 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll 2013-03-20 17:46 . 2013-03-20 17:46 48640 ----a-w- c:\windows\system32\mshtmler.dll 2013-03-20 17:46 . 2013-03-20 17:46 452096 ----a-w- c:\windows\system32\dxtmsft.dll 2013-03-20 17:46 . 2013-03-20 17:46 441856 ----a-w- c:\windows\system32\html.iec 2013-03-20 17:46 . 2013-03-20 17:46 38400 ----a-w- c:\windows\SysWow64\imgutil.dll 2013-03-20 17:46 . 2013-03-20 17:46 361984 ----a-w- c:\windows\SysWow64\html.iec 2013-03-20 17:46 . 2013-03-20 17:46 281600 ----a-w- c:\windows\system32\dxtrans.dll 2013-03-20 17:46 . 2013-03-20 17:46 27648 ----a-w- c:\windows\system32\licmgr10.dll 2013-03-20 17:46 . 2013-03-20 17:46 270848 ----a-w- c:\windows\system32\iedkcs32.dll 2013-03-20 17:46 . 2013-03-20 17:46 247296 ----a-w- c:\windows\system32\webcheck.dll 2013-03-20 17:46 . 2013-03-20 17:46 235008 ----a-w- c:\windows\system32\url.dll 2013-03-20 17:46 . 2013-03-20 17:46 23040 ----a-w- c:\windows\SysWow64\licmgr10.dll 2013-03-20 17:46 . 2013-03-20 17:46 226304 ----a-w- c:\windows\system32\elshyph.dll 2013-03-20 17:46 . 2013-03-20 17:46 216064 ----a-w- c:\windows\system32\msls31.dll 2013-03-20 17:46 . 2013-03-20 17:46 197120 ----a-w- c:\windows\system32\msrating.dll 2013-03-20 17:46 . 2013-03-20 17:46 185344 ----a-w- c:\windows\SysWow64\elshyph.dll 2013-03-20 17:46 . 2013-03-20 17:46 173568 ----a-w- c:\windows\system32\ieUnatt.exe 2013-03-20 17:46 . 2013-03-20 17:46 167424 ----a-w- c:\windows\system32\iexpress.exe 2013-03-20 17:46 . 2013-03-20 17:46 158720 ----a-w- c:\windows\SysWow64\msls31.dll 2013-03-20 17:46 . 2013-03-20 17:46 1509376 ----a-w- c:\windows\system32\inetcpl.cpl 2013-03-20 17:46 . 2013-03-20 17:46 150528 ----a-w- c:\windows\SysWow64\iexpress.exe 2013-03-20 17:46 . 2013-03-20 17:46 149504 ----a-w- c:\windows\system32\occache.dll 2013-03-20 17:46 . 2013-03-20 17:46 144896 ----a-w- c:\windows\system32\wextract.exe 2013-03-20 17:46 . 2013-03-20 17:46 1441280 ----a-w- c:\windows\SysWow64\inetcpl.cpl 2013-03-20 17:46 . 2013-03-20 17:46 1400416 ----a-w- c:\windows\system32\ieapfltr.dat 2013-03-20 17:46 . 2013-03-20 17:46 138752 ----a-w- c:\windows\SysWow64\wextract.exe 2013-03-20 17:46 . 2013-03-20 17:46 13824 ----a-w- c:\windows\system32\mshta.exe 2013-03-20 17:46 . 2013-03-20 17:46 137216 ----a-w- c:\windows\SysWow64\ieUnatt.exe 2013-03-20 17:46 . 2013-03-20 17:46 136192 ----a-w- c:\windows\system32\iepeers.dll 2013-03-20 17:46 . 2013-03-20 17:46 135680 ----a-w- c:\windows\system32\IEAdvpack.dll 2013-03-20 17:46 . 2013-03-20 17:46 12800 ----a-w- c:\windows\SysWow64\mshta.exe 2013-03-20 17:46 . 2013-03-20 17:46 12800 ----a-w- c:\windows\system32\msfeedssync.exe 2013-03-20 17:46 . 2013-03-20 17:46 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll 2013-03-20 17:46 . 2013-03-20 17:46 1054720 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe 2013-03-20 17:46 . 2013-03-20 17:46 102912 ----a-w- c:\windows\system32\inseng.dll 2013-03-19 06:04 . 2013-04-10 14:50 5550424 ----a-w- c:\windows\system32\ntoskrnl.exe 2013-03-19 05:53 . 2013-05-15 16:06 48640 ----a-w- c:\windows\system32\wwanprotdim.dll 2013-03-19 05:53 . 2013-05-15 16:06 230400 ----a-w- c:\windows\system32\wwansvc.dll 2013-03-19 05:46 . 2013-04-10 14:50 43520 ----a-w- c:\windows\system32\csrsrv.dll 2013-03-19 05:04 . 2013-04-10 14:50 3968856 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe 2013-03-19 05:04 . 2013-04-10 14:50 3913560 ----a-w- c:\windows\SysWow64\ntoskrnl.exe 2013-03-19 04:47 . 2013-04-10 14:50 6656 ----a-w- c:\windows\SysWow64\apisetschema.dll 2013-03-19 03:06 . 2013-04-10 14:50 112640 ----a-w- c:\windows\system32\smss.exe . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1] @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}" [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}] 2013-04-11 11:46 222808 ----a-w- c:\users\Philipp\AppData\Local\Microsoft\SkyDrive\17.0.2006.0314\SkyDriveShell.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2] @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}" [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}] 2013-04-11 11:46 222808 ----a-w- c:\users\Philipp\AppData\Local\Microsoft\SkyDrive\17.0.2006.0314\SkyDriveShell.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3] @="{BBACC218-34EA-4666-9D7A-C78F2274A524}" [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}] 2013-04-11 11:46 222808 ----a-w- c:\users\Philipp\AppData\Local\Microsoft\SkyDrive\17.0.2006.0314\SkyDriveShell.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)] @="{8BA85C75-763B-4103-94EB-9470F12FE0F7}" [HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}] 2013-06-14 15:36 1725128 ----a-w- c:\program files\Microsoft Office 15\root\office15\GROOVEEX.DLL . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)] @="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}" [HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}] 2013-06-14 15:36 1725128 ----a-w- c:\program files\Microsoft Office 15\root\office15\GROOVEEX.DLL . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)] @="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}" [HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}] 2013-06-14 15:36 1725128 ----a-w- c:\program files\Microsoft Office 15\root\office15\GROOVEEX.DLL . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "AMD AVT"="start AMD Accelerated Video Transcoding device initialization" [X] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816] "avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-05-09 4858968] . c:\users\Philipp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ An OneNote senden.lnk - c:\program files\Microsoft Office 15\root\office15\ONENOTEM.EXE /tsr [2013-3-4 158808] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) . R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R3 dc3d;MS Hardware Device Detection Driver (USB);c:\windows\system32\DRIVERS\dc3d.sys;c:\windows\SYSNATIVE\DRIVERS\dc3d.sys [x] R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys;c:\windows\SYSNATIVE\drivers\EagleX64.sys [x] R3 Point64;Microsoft Mouse and Keyboard Center Filter Driver;c:\windows\system32\DRIVERS\point64.sys;c:\windows\SYSNATIVE\DRIVERS\point64.sys [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUVStor.sys;c:\windows\SYSNATIVE\Drivers\RtsUVStor.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x] R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x] R3 X6va011;X6va011;c:\windows\SysWOW64\Drivers\X6va011;c:\windows\SysWOW64\Drivers\X6va011 [x] R3 X6va012;X6va012;c:\windows\SysWOW64\Drivers\X6va012;c:\windows\SysWOW64\Drivers\X6va012 [x] S0 amdkmpfd;AMD PCI Root Bus Lower Filter;c:\windows\system32\DRIVERS\amdkmpfd.sys;c:\windows\SYSNATIVE\DRIVERS\amdkmpfd.sys [x] S0 aswRvrt;aswRvrt; [x] S0 aswVmm;aswVmm; [x] S0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x] S1 aswSnx;aswSnx; [x] S1 aswSP;aswSP; [x] S1 SABI;SAMSUNG Kernel Driver For Windows 7;c:\windows\system32\Drivers\SABI.sys;c:\windows\SYSNATIVE\Drivers\SABI.sys [x] S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x] S2 aswFsBlk;aswFsBlk; [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x] S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Bluetooth Suite\adminservice.exe;c:\program files (x86)\Bluetooth Suite\adminservice.exe [x] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [x] S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x] S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x] S2 Intel(R) ME Service;Intel(R) ME Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [x] S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x] S2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [x] S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [x] S2 OfficeSvc;Microsoft Office-Dienst;c:\program files\Microsoft Office 15\ClientX64\integratedoffice.exe;c:\program files\Microsoft Office 15\ClientX64\integratedoffice.exe [x] S2 SamsungDeviceConfigurationWinService;SamsungDeviceConfiguration;c:\program files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe;c:\program files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe [x] S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [x] S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x] S2 ZAtheros Bt&Wlan Coex Agent;ZAtheros Bt&Wlan Coex Agent;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [x] S3 AthBTPort;Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_flt.sys [x] S3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys;c:\windows\SYSNATIVE\drivers\btath_a2dp.sys [x] S3 btath_avdt;Atheros Bluetooth AVDT Service;c:\windows\system32\drivers\btath_avdt.sys;c:\windows\SYSNATIVE\drivers\btath_avdt.sys [x] S3 BTATH_BUS;Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys;c:\windows\SYSNATIVE\DRIVERS\btath_bus.sys [x] S3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_hcrp.sys [x] S3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_lwflt.sys [x] S3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_rcp.sys [x] S3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x] S3 clwvd;CyberLink WebCam Virtual Driver;c:\windows\system32\DRIVERS\clwvd.sys;c:\windows\SYSNATIVE\DRIVERS\clwvd.sys [x] S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x] S3 intelkmd;intelkmd;c:\windows\system32\DRIVERS\igdpmd64.sys;c:\windows\SYSNATIVE\DRIVERS\igdpmd64.sys [x] S3 iusb3hub;Intel(R) USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x] S3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x] S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftfslh.sys [x] S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftplaylh.sys [x] S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftredirlh.sys [x] S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftvollh.sys [x] S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [x] . . Inhalt des "geplante Tasks" Ordners . 2013-06-14 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-10-23 19:29] . 2013-06-15 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-04-23 17:22] . 2013-06-15 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-04-23 17:22] . 2013-06-14 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3905478184-3407929709-2893840352-1000Core.job - c:\users\Philipp\AppData\Local\Google\Update\GoogleUpdate.exe [2013-04-02 18:58] . 2013-06-14 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3905478184-3407929709-2893840352-1000UA.job - c:\users\Philipp\AppData\Local\Google\Update\GoogleUpdate.exe [2013-04-02 18:58] . 2013-06-15 c:\windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job - c:\program files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2012-03-26 11:24] . 2013-06-14 c:\windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job - c:\program files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2012-03-26 11:24] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1] @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}" [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}] 2013-04-11 11:46 261704 ----a-w- c:\users\Philipp\AppData\Local\Microsoft\SkyDrive\17.0.2006.0314\amd64\SkyDriveShell64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2] @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}" [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}] 2013-04-11 11:46 261704 ----a-w- c:\users\Philipp\AppData\Local\Microsoft\SkyDrive\17.0.2006.0314\amd64\SkyDriveShell64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3] @="{BBACC218-34EA-4666-9D7A-C78F2274A524}" [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}] 2013-04-11 11:46 261704 ----a-w- c:\users\Philipp\AppData\Local\Microsoft\SkyDrive\17.0.2006.0314\amd64\SkyDriveShell64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)] @="{8BA85C75-763B-4103-94EB-9470F12FE0F7}" [HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}] 2013-06-14 15:36 2328776 ----a-w- c:\program files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)] @="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}" [HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}] 2013-06-14 15:36 2328776 ----a-w- c:\program files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)] @="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}" [HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}] 2013-06-14 15:36 2328776 ----a-w- c:\program files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2013-05-09 08:58 133840 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2012-03-27 12459112] "Logitech Download Assistant"="c:\windows\System32\LogiLDA.dll" [2012-09-20 1832760] "IntelliType Pro"="c:\program files\Microsoft Mouse and Keyboard Center\itype.exe" [2012-11-02 1464944] "IntelliPoint"="c:\program files\Microsoft Mouse and Keyboard Center\ipoint.exe" [2012-11-02 2076272] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576] "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-04-21 59720] "AthBtTray"="c:\program files (x86)\Bluetooth Suite\AthBtTray.exe" [2012-03-09 800896] "AtherosBtStack"="c:\program files (x86)\Bluetooth Suite\BtvStack.exe" [2012-03-09 1021056] "iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2013-05-31 152392] "PDFPrint"="c:\program files (x86)\PDF24\pdf24.exe" [2013-03-20 162856] . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://www.google.com mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = *.local IE: E&xport to Microsoft Excel - c:\program files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000 IE: Se&nd to OneNote - c:\program files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105 TCP: DhcpNameServer = 192.168.2.1 FF - ProfilePath - c:\users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\yjwidrr9.default\ FF - ExtSQL: 2013-04-23 19:23; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; c:\users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\yjwidrr9.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF - ExtSQL: 2013-05-31 18:40; wrc@avast.com; c:\program files\AVAST Software\Avast\WebRep\FF . - - - - Entfernte verwaiste Registrierungseinträge - - - - . Toolbar-Locked - (no file) HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start Toolbar-Locked - (no file) HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe . . . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\X6va011] "ImagePath"="\??\c:\windows\SysWOW64\Drivers\X6va011" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\X6va012] "ImagePath"="\??\c:\windows\SysWOW64\Drivers\X6va012" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\S-1-5-21-3905478184-3407929709-2893840352-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice] @Denied: (2) (LocalSystem) "Progid"="WindowsLiveMail.Email.1" . [HKEY_USERS\S-1-5-21-3905478184-3407929709-2893840352-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice] @Denied: (2) (LocalSystem) "Progid"="WindowsLiveMail.VCard.1" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2013-06-15 11:40:39 ComboFix-quarantined-files.txt 2013-06-15 09:40 . Vor Suchlauf: 11 Verzeichnis(se), 552.296.337.408 Bytes frei Nach Suchlauf: 14 Verzeichnis(se), 552.140.935.168 Bytes frei . - - End Of File - - D3979B57CD2D2EB864705297668B161F D41D8CD98F00B204E9800998ECF8427E hypercraft |
15.06.2013, 13:02 | #8 |
/// TB-Ausbilder | Rechner fährt plötzlich sehr langsam hoch liegt das am Antivirenprogramm? Das sieht aber eigentlich gut aus. Schritt 1: (Erinnerung: Antworte mir erst, wenn du alle Schritte abgearbeitet hast!) Hinweis: Der Scan kann sehr lange (einige Stunden) dauern! Schritt 2: Scan mit SecurityCheck Downloade Dir bitte SecurityCheck und:
__________________ Digitale Freibeuter gegen Malware! Keine Hilfe per PM! |
15.06.2013, 18:02 | #9 |
| Rechner fährt plötzlich sehr langsam hoch liegt das am Antivirenprogramm? hi, Log von ESET Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=1b9a0bb47f18fa4a973261d948ebaefa # engine=14077 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-06-15 03:17:23 # local_time=2013-06-15 05:17:23 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=774 16777213 85 88 1290698 148019315 0 0 # compatibility_mode=5893 16776574 100 94 6398752 122939293 0 0 # scanned=229692 # found=0 # cleaned=0 # scan_time=9231 Code:
ATTFilter Results of screen317's Security Check version 0.99.64 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 10 ``````````````Antivirus/Firewall Check:`````````````` avast! Antivirus Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware Version 1.75.0.1300 Java 7 Update 21 Adobe Flash Player 11.7.700.224 Adobe Reader XI Mozilla Firefox (21.0) Google Chrome 27.0.1453.110 Google Chrome 27.0.1453.94 ````````Process Check: objlist.exe by Laurent```````` Malwarebytes Anti-Malware mbamservice.exe Malwarebytes Anti-Malware mbamgui.exe Malwarebytes' Anti-Malware mbamscheduler.exe AVAST Software Avast AvastSvc.exe AVAST Software Avast AvastUI.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` hypercraft |
15.06.2013, 21:26 | #10 |
/// TB-Ausbilder | Rechner fährt plötzlich sehr langsam hoch liegt das am Antivirenprogramm? Prima! Damit wären wir fertig. Wir räumen jetzt noch ein wenig auf und dann habe ich am Ende etwas Lesestoff für dich. Schritt 1: Tools deinstallieren Die Reihenfolge ist hier entscheidend.
Schritt 2: ESET deinstallieren (Optional)
Abschließend noch Tipps zu folgenden Themen:
Lesestoff: Systemupdates Man kann es gar nicht oft genug erwähnen, wie wichtig es ist, sein System aktuell zu halten. Dein Auto bringst du ja auch regelmässig zur Inspektion in die Werkstatt. Stelle also bitte sicher, dass die Systemupdates aktiviert sind:
Lesestoff: Softwareupdates Ebenso wichtig wie die Systemprogramme ist auch die Software, die du täglich nutzt. Die folgende Liste gibt dir einen kleinen Überblick mit Links zu den Updates, welche Programme dringend aktuell gehalten werden müssen (falls du sie überhaupt installiert hast und nutzt), weil durch deren Sicherheitslücken oft Malware auf die Computer gelangen kann:
Lesestoff: Sicherheitssoftware Würde dich jemand nackt auf dem Motorrad auf der Autobahn überholen würdest du auch den Kopf schütteln. Dein Computer braucht auch einen Schutz vor den täglichen kleinen Angriffen durch Schädlinge. Neben hervorragenden kommerziellen Anti-Viren-Lösungen gibt es auch durchaus gute Schutzprogramme, die kostenfrei mit reduziertem Funktionsumfang erhältlich sind. Aber vorsicht, hier gilt nicht "je mehr desto besser". Was du brauchst ist genau einen Virenscanner mit Hintergrundwächter. Nicht mehr und nicht weniger. Es gibt hier viele Produkte auf dem Markt, die einem gute Dienste leisten. Ich persönlich empfehle dir Avast Free Antivirus. Es bietet relativ guten Schutz, bei wenig nerviger Werbung und installiert dir ein Browserplugin, das dich vor gefährlichen Webseiten warnt.
Lesestoff: Sicheres Surfen Zunächst muss man sagen, dass es üblicherweise immer der menschliche Faktor ist, der es Malware ermöglicht auf einen Computer zu gelangen. Kaufst du Leuten, die an deiner Haustür klingeln, auch sofort ohne nachzudenken irgendwelches Zeug ab? Gewöhne dir daher zunächst einige Verhaltensregeln beim Surfen im Internet an:
Aber selbst bei der peinlichen Einhaltung dieser Regeln kann es dennoch zu einer sogenannten Drive-By-Infektion kommen, bei der ein Schädling aus dem Schutzmechanismus des Webbrowsers ausbricht. Um die Sicherheit noch weiter zu erhöhen gibt es spezielle Schutzsoftware, die deinen Browser noch weiter absichert.
Zuletzt denke bitte über die Benutzung eines alternativen Browsers nach. Programme, die nicht so oft verwendet werden, sind auch nicht so sehr im Focus der "bösen Jungs". D.h. du bist mit einem exotischen Browser eher auf der sicheren Seite. Grundsätzlich bist du erst einmal deutlich sicherer, wenn du nicht den Internet Explorer benutzt.
Damit wünsche ich dir noch viel Spaß beim Surfen im Internet ... und vielleicht möchtest du ja das Trojaner-Board unterstützen? Eine Bitte: Gib mir eine kurze Rückmeldung, wenn alles erledigt ist und keine Fragen mehr vorhanden sind, damit ich diesen Thread aus meinen Abos löschen kann.
__________________ Digitale Freibeuter gegen Malware! Keine Hilfe per PM! |
15.06.2013, 23:53 | #11 |
| Rechner fährt plötzlich sehr langsam hoch liegt das am Antivirenprogramm? hi, ähm ich glaube ich hab da was nicht ganz verstanden. Was haben wir jetzt an der Zeit die der PC zum starten benötigt verändert?? Wir haben doch nur gescannt. Du meintest es starten zu viele Dienste. Kannst du mir dann vielleicht zeigen wie ich die überflüssigen ausschalte? Und noch was: Was war jetzt eigentlich das Problem. Kein Scanner hat was gefunden. Woran liegt es jetzt, dass mein Rechner auf einmal so langsam ist? Es wäre nett, wenn ich diese Fragen noch beantwortet bekommen würde. Viele Grüße hypercraft Geändert von hypercraft (16.06.2013 um 00:08 Uhr) |
16.06.2013, 10:00 | #12 |
/// TB-Ausbilder | Rechner fährt plötzlich sehr langsam hoch liegt das am Antivirenprogramm? Wir haben jetzt erstmal den Malwarebefall ausgeschlossen. Was du in deinem Fall testen solltest, ob es evtl der Virenscanner oder MBAM ist. Bitte mal eines deinstallieren und schauen was sich ändert. Normalerweise ärgern die sich nicht gegenseitig, aber sehr selten kommt das schon mal vor.
__________________ Digitale Freibeuter gegen Malware! Keine Hilfe per PM! |
16.06.2013, 11:16 | #13 |
| Rechner fährt plötzlich sehr langsam hoch liegt das am Antivirenprogramm? Und wie kann ich das Problem beheben, dass wie du schon gesagt hast viel zu viele Dienste starten? So ich hab Avast deeinstalliert und jetzt ist es besser. Wo der Rechner vorher 5 min zum hochfahren benötigt hat ist er jetzt schneller. Das Problem ist aber, dass ich jetzt kein Antivierenprogramm mehr habe. Kannst du mir eins empfehlen (Bitte nicht Microsoft Security Essentials)? Geändert von hypercraft (16.06.2013 um 11:38 Uhr) |
16.06.2013, 11:52 | #14 |
/// TB-Ausbilder | Rechner fährt plötzlich sehr langsam hoch liegt das am Antivirenprogramm? Ich persönlich mag Avast, unter den kostenfreien halte ich es für eines der besten. Für was gutes muss man schon etwas Geld ausgeben. Ganz brauchbar ist eignetlich noch AVG, auch wenn es viele Fehlalarme produziert.
__________________ Digitale Freibeuter gegen Malware! Keine Hilfe per PM! |
16.06.2013, 12:07 | #15 |
| Rechner fährt plötzlich sehr langsam hoch liegt das am Antivirenprogramm? aber was soll ich machen wenn sich MBAM und Avast nicht vertragen. Ich würde auch sehr gerne Avast behalten. Außerdem kann ich es irgendwie nicht deinstallieren. In der Programmliste in der Systemsteuerung wird es nicht angezeigt vorhanden ist es aber. Ist das Tool Avast Uninstall Utility nützlich (löscht avast einträge aus der Registy hab ich im internet gelesen)? Geändert von hypercraft (16.06.2013 um 12:16 Uhr) |
Themen zu Rechner fährt plötzlich sehr langsam hoch liegt das am Antivirenprogramm? |
anderem, antivirenprogramm, antivirenprogramm?, avast, brauch, free, installier, installiert, kaffee, kompatibel, langsam, länger, malwarebytes, mbam, plötzlich, programm, rechner, sehr langsam, seitdem, zusätzlich |