Ich hoffe so ist es richtig, denn ich habe Sie nicht richtig verstanden. Ich bitte um Entschuldigung.
Code:
Alles auswählen Aufklappen ATTFilter
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 03-09-2013
Ran by SYSTEM at 2013-09-04 15:22:35 Run:3
Running from H:\
Boot Mode: Recovery
==============================================
Content of fixlist:
*****************
HKU\Hani\...\Run: [qcgce2mrvjq91kk1e7pnbb19m52fx] - C:\Users\Hani\AppData\Local\Temp\ndeairvrmjnxfewww.exe [ 2013-09-02] (Valve Corporation) <===== ATTENTION HKU\Hani\...\Winlogon: [Shell] cmd.exe [ 2010-11-20] (Microsoft Corporation) <==== ATTENTION HKU\Hani\...\Command Processor: "C:\Users\Hani\AppData\Local\Temp\ndeairvrmjnxfewww.exe" <===== ATTENTION! C:\Users\Hani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tbhcn.lnk HKLM\...\Run: [aSQw8ccL0] - C:\Users\Hani\AppData\Local\xajhmqxegrrunejqwqm.bfg [144384 2013-07-31] () HKU\Hani\...\Run: [aSQw8ccL0] - C:\Users\Hani\AppData\Local\xajhmqxegrrunejqwqm.bfg [ 2013-07-31] () 2013-09-02 15:47 - 2013-09-02 15:47 - 00163071 _____ C:\ProgramData\2433f433 2013-09-02 15:47 - 2013-09-02 15:47 - 00163032 _____ C:\Users\Hani\AppData\Local\2433f433 2013-09-02 15:47 - 2013-09-02 15:47 - 00163011 _____ C:\Users\Hani\AppData\Roaming\2433f433 C:\Users\Hani\AppData\Local\Temp\ndeairvrmjnxfewww.exe C:\Users\Hani\AppData\Local\Temp\ndeairvrmjnxfewww.dll C:\Users\Hani\AppData\Local\xajhmqxegrrunejqwqm.bfg
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\HKU\Hani\...\Run: [qcgce2mrvjq91kk1e7pnbb19m52fx] - C:\Users\Hani\AppData\Local\Temp\ndeairvrmjnxfewww.exe [ 2013-09-02] (Valve Corporation) <===== ATTENTION HKU\Hani\...\Winlogon: [Shell] cmd.exe [ 2010-11-20] (Microsoft Corporation) <==== ATTENTION HKU\Hani\...\Command Processor: "C:\Users\Hani\AppData\Local\Temp\ndeairvrmjnxfewww.exe" <===== ATTENTION! C:\Users\Hani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tbhcn.lnk aSQw8ccL0] - C:\Users\Hani\AppData\Local\xajhmqxegrrunejqwqm.bfg [144384 2013-07-31] () HKU\Hani\...\Run: [aSQw8ccL0 => Value not found.
HKLM\Software\Microsoft\Command Processor\\AutoRun => Value not found.
HKU\Hani\...\Run: [qcgce2mrvjq91kk1e7pnbb19m52fx] - C:\Users\Hani\AppData\Local\Temp\ndeairvrmjnxfewww.exe [ 2013-09-02] (Valve Corporation) <===== ATTENTION HKU\Hani\...\Winlogon: [Shell] cmd.exe [ 2010-11-20] (Microsoft Corporation) <==== ATTENTION HKU\Hani\Software\Microsoft\Command Processor\\AutoRun => Value not found.
HKU\Hani\...\Run: [qcgce2mrvjq91kk1e7pnbb19m52fx] - C:\Users\Hani\AppData\Local\Temp\ndeairvrmjnxfewww.exe [ 2013-09-02] (Valve Corporation) <===== ATTENTION HKU\Hani\...\Winlogon: [Shell] cmd.exe [ 2010-11-20] (Microsoft Corporation) <==== ATTENTION HKU\Hani\...\Command Processor: "C:\Users\Hani\AppData\Local\Temp\ndeairvrmjnxfewww.exe" <===== ATTENTION! C:\Users\Hani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tbhcn.lnk HKLM\...\Run: [aSQw8ccL0] - C:\Users\Hani\AppData\Local\xajhmqxegrrunejqwqm.bfg [144384 2013-07-31] () HKU\Hani\Software\Microsoft\Windows\CurrentVersion\Run\\aSQw8ccL0 => Value not found.
HKU\Hani\...\Run: [qcgce2mrvjq91kk1e7pnbb19m52fx] - C:\Users\Hani\AppData\Local\Temp\ndeairvrmjnxfewww.exe [ 2013-09-02] (Valve Corporation) <===== ATTENTION HKU\Hani\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell => Value not found.
==== End of Fixlog ====