Code:
Alles auswählen Aufklappen ATTFilter
ComboFix 13-10-13.01 - Wild-Pako 13.10.2013 15:18:38.1.4 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1252.49.1031.18.6142.3288 [GMT 2:00]
ausgeführt von:: c:\users\Wild-Pako\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Spybot - Search and Destroy *Enabled/Updated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((( Weitere Löschungen ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\#Short company name#
c:\programdata\#Short company name#\#settings_subfolder#\Timerlist.xml
c:\users\Wild-Pako\AppData\Roaming\#Short company name#
c:\users\Wild-Pako\AppData\Roaming\#Short company name#\#settings_subfolder#\#dvr.ini
c:\users\Wild-Pako\AppData\Roaming\#Short company name#\#settings_subfolder#\Log\VersionCheck.log
c:\users\Wild-Pako\AppData\Roaming\#Short company name#\#settings_subfolder#\Log\VersionCheck01.log
c:\windows\wininit.ini
.
.
((((((((((((((((((((((( Dateien erstellt von 2013-09-13 bis 2013-10-13 ))))))))))))))))))))))))))))))
.
.
2013-10-13 13:24 . 2013-10-13 13:24 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-10-13 09:15 . 2013-10-13 09:15 -------- d-----w- c:\users\Wild-Pako\AppData\Local\TransMac
2013-10-13 09:15 . 2013-10-13 09:15 -------- d-----w- c:\program files (x86)\TransMac
2013-10-12 23:16 . 2013-10-12 23:16 -------- d-----w- c:\program files (x86)\XeMu360
2013-10-12 18:10 . 2013-10-12 18:10 -------- d-----w- C:\FRST
2013-10-12 17:48 . 2013-10-12 17:49 -------- d-----w- C:\AdwCleaner
2013-10-12 15:56 . 2013-10-12 18:24 -------- d-----w- c:\program files (x86)\Mozilla Thunderbird
2013-10-12 15:08 . 2013-10-12 15:08 -------- d-----w- c:\users\Wild-Pako\AppData\Local\SCE
2013-10-11 13:19 . 2013-09-15 22:50 9694160 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{CE404130-0FE8-4176-A6D3-20F6AE8EE0CF}\mpengine.dll
2013-10-09 16:03 . 2013-07-04 12:50 633856 ----a-w- c:\windows\system32\comctl32.dll
2013-10-08 19:32 . 2013-10-08 19:32 -------- d-----w- c:\programdata\Orbit
2013-10-08 18:31 . 2013-10-08 18:31 -------- d--h--w- c:\program files (x86)\Common Files\EAInstaller
2013-10-08 17:58 . 2013-08-30 07:48 33400 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2013-10-08 17:58 . 2013-08-30 07:48 378944 ----a-w- c:\windows\system32\drivers\aswSP.sys
2013-10-08 17:58 . 2013-08-30 07:48 72016 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2013-10-08 17:58 . 2013-08-30 07:48 64288 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2013-10-08 17:58 . 2013-08-30 07:48 1030952 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-10-08 17:58 . 2013-08-30 07:48 204880 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2013-10-08 17:58 . 2013-08-30 07:48 65336 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2013-10-08 17:58 . 2013-08-30 07:48 80816 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-10-08 17:58 . 2013-08-30 07:47 287840 ----a-w- c:\windows\system32\aswBoot.exe
2013-10-08 17:56 . 2013-08-30 07:47 41664 ----a-w- c:\windows\avastSS.scr
2013-10-08 17:56 . 2013-10-08 17:56 -------- d-----w- c:\program files\AVAST Software
2013-10-08 17:52 . 2013-10-08 17:56 -------- d-----w- c:\programdata\AVAST Software
2013-10-08 17:08 . 2013-10-08 17:08 -------- d-----w- c:\programdata\Futuremark
2013-10-08 17:06 . 2013-10-08 17:06 -------- d-----w- c:\program files (x86)\NVIDIA Corporation
2013-10-08 17:06 . 2013-10-08 17:06 -------- d-----w- c:\program files (x86)\AGEIA Technologies
2013-10-07 19:38 . 2013-10-07 19:59 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2013-10-07 19:38 . 2009-01-25 11:14 17272 ----a-w- c:\windows\system32\sdnclean64.exe
2013-10-07 19:38 . 2013-10-07 19:39 -------- d-----w- c:\program files (x86)\Spybot - Search & Destroy 2
2013-10-07 17:10 . 2013-10-07 17:10 -------- d-----w- c:\programdata\ATI
2013-10-07 16:58 . 2013-10-07 16:58 -------- d-----w- c:\programdata\AMD
2013-10-07 16:58 . 2013-10-07 16:58 -------- d-----w- c:\program files (x86)\AMD AVT
2013-10-07 16:58 . 2013-10-07 16:58 -------- d-----w- c:\program files (x86)\Common Files\ATI Technologies
2013-10-07 16:55 . 2013-10-07 16:55 -------- d-----w- c:\program files\Common Files\ATI Technologies
2013-10-07 16:52 . 2013-10-07 16:53 -------- d-----w- c:\programdata\Package Cache
2013-10-03 16:20 . 2013-10-03 16:26 25640 ----a-w- c:\windows\gdrv.sys
2013-10-03 13:26 . 2008-08-28 07:16 26351 ----a-w- c:\users\Wild-Pako\FLASHSPI.EXE
2013-10-02 21:03 . 2013-10-02 21:03 -------- d-----w- c:\users\Wild-Pako\AppData\Roaming\Sinvise Systems
2013-10-02 21:03 . 2013-10-02 21:03 -------- d-----w- c:\program files (x86)\Sinvise Systems
2013-10-02 19:24 . 2013-10-02 19:24 -------- d-----w- c:\users\Wild-Pako\AppData\Roaming\Leadertech
2013-10-02 19:06 . 2013-10-02 19:06 -------- d-----w- c:\programdata\Electronic Arts
2013-10-02 19:06 . 2013-10-02 19:06 -------- d-----w- c:\programdata\EA Core
2013-10-01 10:42 . 2013-10-07 20:10 -------- d-----w- c:\users\Wild-Pako\AppData\Local\CrossLoop
2013-09-29 11:43 . 2013-09-29 11:43 -------- d-----w- c:\program files\Core Temp
2013-09-29 09:49 . 2013-09-29 09:49 49152 ----a-r- c:\users\Wild-Pako\AppData\Roaming\Microsoft\Installer\{AF80D8A3-CCEC-4CC2-BE6C-3E8512286993}\NewShortcut1_109A2A71E4394D28A5ACD8F8321BB21B.exe
2013-09-29 09:43 . 2013-09-29 09:43 49152 ----a-r- c:\users\Wild-Pako\AppData\Roaming\Microsoft\Installer\{12F865ED-8D74-427A-8F73-8687D37E9C5D}\NewShortcut2_B81EF528E6964545A57DCFB2387636B2.exe
2013-09-29 09:43 . 2013-09-29 09:43 49152 ----a-r- c:\users\Wild-Pako\AppData\Roaming\Microsoft\Installer\{12F865ED-8D74-427A-8F73-8687D37E9C5D}\NewShortcut1_D82E1A21FF374417B3E68D61F803C35D.exe
2013-09-28 20:35 . 2013-09-28 20:35 -------- d-----w- c:\program files\Uninstaller
2013-09-28 20:32 . 2013-09-28 20:32 -------- d-----w- c:\program files\CPUID
2013-09-28 20:31 . 2013-09-28 20:33 -------- d-----w- c:\program files (x86)\Feven 1.5
2013-09-28 20:12 . 2013-09-28 20:12 -------- d-----w- c:\program files\Defraggler
2013-09-28 20:07 . 2013-09-28 20:07 -------- d-----w- c:\users\Wild-Pako\AppData\Local\avgchrome
2013-09-28 19:41 . 2013-09-28 19:41 -------- d-----w- c:\users\Wild-Pako\AppData\Local\2K Games
2013-09-28 16:00 . 2013-09-28 16:00 -------- d-----w- c:\program files (x86)\Microsoft.NET
2013-09-28 11:51 . 2013-09-28 11:51 -------- d-----w- c:\program files (x86)\FileZilla FTP Client
2013-09-27 21:05 . 2013-09-27 21:05 -------- d-----w- c:\users\Wild-Pako\AppData\Local\Rockstar Games
2013-09-27 21:05 . 2013-09-27 21:05 -------- d-sh--w- c:\programdata\SecuROM
2013-09-27 20:54 . 2013-09-27 20:54 -------- d-----w- c:\windows\SysWow64\xlive
2013-09-27 20:54 . 2013-09-27 20:54 -------- d-----w- c:\program files (x86)\Microsoft Games for Windows - LIVE
2013-09-27 20:52 . 2007-03-05 10:42 15128 ----a-w- c:\windows\SysWow64\x3daudio1_1.dll
2013-09-27 15:14 . 2013-09-27 15:18 -------- d-----w- C:\tempvideo
2013-09-27 10:43 . 2013-09-27 10:43 -------- d-----w- c:\programdata\Hagel Technologies
2013-09-27 10:43 . 2013-09-27 10:45 -------- d-----w- c:\program files (x86)\DU Meter
2013-09-27 10:20 . 2013-10-13 09:03 -------- d-----w- c:\users\Wild-Pako\AppData\Roaming\Dropbox
2013-09-27 06:22 . 2013-09-27 06:22 -------- d-----w- c:\users\Wild-Pako\AppData\Roaming\OpenOffice
2013-09-27 06:18 . 2013-09-27 06:19 -------- d-----w- c:\program files (x86)\OpenOffice 4
2013-09-26 18:17 . 2013-09-26 18:17 -------- d-----w- c:\program files (x86)\TeamViewer
2013-09-26 13:00 . 2013-09-26 13:00 -------- d-----w- c:\windows\SysWow64\searchplugins
2013-09-26 13:00 . 2013-09-26 13:00 -------- d-----w- c:\windows\SysWow64\Extensions
2013-09-25 19:57 . 2013-09-25 19:57 -------- d-----w- c:\programdata\Canneverbe Limited
2013-09-25 19:56 . 2013-09-25 19:56 -------- d-----w- c:\users\Wild-Pako\AppData\Roaming\Canneverbe Limited
2013-09-25 19:56 . 2013-09-25 19:56 -------- d-----w- c:\program files (x86)\CDBurnerXP
2013-09-25 19:34 . 2013-09-25 19:34 -------- d-----w- c:\program files (x86)\Electronics Line
2013-09-25 18:40 . 2013-09-25 18:40 -------- d-----w- c:\users\Wild-Pako\Programme
2013-09-25 18:29 . 2013-09-25 18:31 -------- d-----w- c:\windows\rescache
2013-09-25 17:39 . 2013-09-25 17:40 -------- d-----w- c:\users\Wild-Pako\AppData\Local\Google
2013-09-25 17:39 . 2013-09-25 17:40 -------- d-----w- c:\program files (x86)\Google
2013-09-25 17:39 . 2013-10-04 20:11 -------- d-----w- c:\program files\MPC-HC
2013-09-25 17:07 . 2013-10-09 16:23 -------- d-----w- c:\windows\system32\MRT
2013-09-25 15:59 . 2013-08-02 02:23 5550528 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-09-25 15:43 . 2013-02-27 05:48 1930752 ----a-w- c:\windows\system32\authui.dll
2013-09-25 15:38 . 2013-04-09 23:34 1247744 ----a-w- c:\windows\SysWow64\DWrite.dll
2013-09-25 15:38 . 2013-04-02 22:51 1643520 ----a-w- c:\windows\system32\DWrite.dll
2013-09-25 15:38 . 2013-09-25 15:38 -------- d-----w- c:\programdata\Oracle
2013-09-25 15:37 . 2013-09-25 15:37 -------- d-----w- c:\program files (x86)\Common Files\Java
2013-09-25 15:37 . 2013-09-25 15:36 868264 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2013-09-25 15:37 . 2013-09-25 15:36 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-09-25 15:02 . 2012-07-26 07:46 2560 ----a-w- c:\windows\system32\drivers\de-DE\wdf01000.sys.mui
2013-09-25 15:02 . 2012-07-26 04:55 54376 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2013-09-25 15:02 . 2012-07-26 04:47 2560 ----a-w- c:\windows\system32\drivers\en-US\wdf01000.sys.mui
2013-09-25 15:02 . 2012-07-26 02:36 9728 ----a-w- c:\windows\system32\Wdfres.dll
2013-09-25 14:54 . 2012-08-23 15:09 3584 ----a-w- c:\windows\system32\drivers\de-DE\tsusbflt.sys.mui
2013-09-25 14:51 . 2012-07-26 03:08 84992 ----a-w- c:\windows\system32\WUDFSvc.dll
2013-09-25 14:51 . 2012-07-26 02:26 87040 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2013-09-25 14:51 . 2012-07-26 02:26 198656 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2013-09-25 14:51 . 2012-07-26 03:08 229888 ----a-w- c:\windows\system32\WUDFHost.exe
2013-09-25 14:51 . 2012-07-26 03:08 744448 ----a-w- c:\windows\system32\WUDFx.dll
2013-09-25 14:51 . 2012-07-26 03:08 45056 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2013-09-25 14:51 . 2012-07-26 03:08 194048 ----a-w- c:\windows\system32\WUDFPlatform.dll
2013-09-25 14:46 . 2012-12-07 13:20 441856 ----a-w- c:\windows\system32\Wpc.dll
2013-09-25 14:42 . 2011-05-04 05:25 2315776 ----a-w- c:\windows\system32\tquery.dll
2013-09-25 14:39 . 2009-09-04 15:29 1892184 ----a-w- c:\windows\SysWow64\D3DX9_42.dll
2013-09-25 14:39 . 2006-09-28 14:05 2414360 ----a-w- c:\windows\SysWow64\d3dx9_31.dll
2013-09-25 14:38 . 2013-09-25 14:38 -------- d-----w- c:\program files (x86)\Winamp Detect
2013-09-25 14:38 . 2013-09-25 14:38 -------- d-----w- c:\program files (x86)\Common Files\PX Storage Engine
2013-09-25 13:28 . 2013-09-11 02:28 271256 ----a-w- c:\program files (x86)\Mozilla Firefox\browser\components\browsercomps.dll
2013-09-25 13:28 . 2013-09-11 02:27 107416 ----a-w- c:\program files (x86)\Mozilla Firefox\webapprt-stub.exe
2013-09-25 13:28 . 2013-09-11 02:27 170232 ----a-w- c:\program files (x86)\Mozilla Firefox\webapp-uninstaller.exe
2013-09-25 13:28 . 2013-09-11 02:27 27544 ----a-w- c:\program files (x86)\Mozilla Firefox\plugin-hang-ui.exe
2013-09-25 13:28 . 2013-09-11 02:26 74648 ----a-w- c:\program files (x86)\Mozilla Firefox\breakpadinjector.dll
2013-09-24 17:14 . 2011-03-04 19:44 133616 ------w- c:\windows\SysWow64\pxafs.dll
2013-09-24 17:14 . 2013-09-25 15:22 -------- d-----w- c:\users\Wild-Pako\AppData\Roaming\Winamp
2013-09-24 17:14 . 2013-09-25 14:39 -------- d-----w- c:\program files (x86)\Winamp
2013-09-22 16:16 . 2013-09-27 06:11 -------- d-----w- c:\windows\system32\appmgmt
2013-09-22 08:15 . 2013-09-22 08:18 -------- d-----w- c:\program files (x86)\Common Files\Wise Installation Wizard
2013-09-20 17:52 . 2005-12-05 16:09 3815120 ----a-w- c:\windows\system32\d3dx9_28.dll
2013-09-20 17:49 . 2013-09-20 17:54 466456 ----a-w- c:\windows\system32\wrap_oal.dll
2013-09-20 17:49 . 2013-09-20 17:54 444952 ----a-w- c:\windows\SysWow64\wrap_oal.dll
2013-09-20 17:49 . 2013-09-20 17:54 122904 ----a-w- c:\windows\system32\OpenAL32.dll
2013-09-20 17:49 . 2013-09-20 17:54 109080 ----a-w- c:\windows\SysWow64\OpenAL32.dll
2013-09-20 17:49 . 2013-09-20 17:49 -------- d-----w- c:\program files (x86)\OpenAL
2013-09-20 17:47 . 2013-09-20 17:47 -------- d-----w- c:\program files (x86)\Futuremark
2013-09-20 17:44 . 2013-09-20 17:44 -------- d-----w- c:\users\Wild-Pako\AppData\Roaming\ATI
2013-09-20 17:44 . 2013-09-20 17:44 -------- d-----w- c:\users\Wild-Pako\AppData\Local\ATI
.
.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-10-09 16:38 . 2012-07-31 18:20 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-10-09 16:38 . 2012-07-31 18:20 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2013-10-09 16:22 . 2010-10-02 12:30 80541720 ----a-w- c:\windows\system32\MRT.exe
2013-09-29 16:23 . 2009-08-18 10:49 564632 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\wlidui.dll
2013-09-29 16:23 . 2009-08-18 09:24 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2013-09-28 18:02 . 2010-08-07 20:58 43520 ----a-w- c:\windows\SysWow64\CmdLineExt03.dll
2013-09-25 15:36 . 2010-10-02 12:28 790440 ----a-w- c:\windows\SysWow64\deployJava1.dll
2013-08-31 00:14 . 2013-08-31 00:14 78432 ----a-w- c:\windows\system32\atimpc64.dll
2013-08-31 00:14 . 2013-08-31 00:14 78432 ----a-w- c:\windows\system32\amdpcom64.dll
2013-08-31 00:14 . 2013-08-31 00:14 71704 ----a-w- c:\windows\SysWow64\atimpc32.dll
2013-08-31 00:14 . 2013-08-31 00:14 71704 ----a-w- c:\windows\SysWow64\amdpcom32.dll
2013-08-31 00:14 . 2013-08-31 00:14 142792 ----a-w- c:\windows\system32\atiuxp64.dll
2013-08-31 00:14 . 2013-08-31 00:14 125824 ----a-w- c:\windows\SysWow64\atiuxpag.dll
2013-08-31 00:13 . 2013-08-31 00:13 97984 ----a-w- c:\windows\SysWow64\atiu9pag.dll
2013-08-31 00:13 . 2013-08-31 00:13 114488 ----a-w- c:\windows\system32\atiu9p64.dll
2013-08-31 00:13 . 2013-08-31 00:13 1233080 ----a-w- c:\windows\system32\aticfx64.dll
2013-08-31 00:13 . 2013-08-31 00:13 1027544 ----a-w- c:\windows\SysWow64\aticfx32.dll
2013-08-31 00:13 . 2013-08-31 00:13 9464840 ----a-w- c:\windows\system32\atidxx64.dll
2013-08-31 00:13 . 2013-08-31 00:13 8215992 ----a-w- c:\windows\SysWow64\atidxx32.dll
2013-08-31 00:13 . 2013-08-31 00:13 6176008 ----a-w- c:\windows\SysWow64\atiumdva.dll
2013-08-31 00:13 . 2013-08-31 00:13 6189416 ----a-w- c:\windows\SysWow64\atiumdag.dll
2013-08-31 00:13 . 2013-08-31 00:13 6767240 ----a-w- c:\windows\system32\atiumd6a.dll
2013-08-31 00:13 . 2013-08-31 00:13 7256496 ----a-w- c:\windows\system32\atiumd64.dll
2013-08-31 00:11 . 2013-08-31 00:11 12528640 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2013-08-30 23:48 . 2013-08-30 23:48 127488 ----a-w- c:\windows\system32\coinst_13.152.dll
2013-08-30 23:48 . 2013-08-30 23:48 229376 ----a-w- c:\windows\system32\clinfo.exe
2013-08-30 23:47 . 2013-08-30 23:47 995342 ----a-w- c:\windows\SysWow64\amdocl_as32.exe
2013-08-30 23:47 . 2013-08-30 23:47 798734 ----a-w- c:\windows\SysWow64\amdocl_ld32.exe
2013-08-30 23:47 . 2013-08-30 23:47 1187342 ----a-w- c:\windows\system32\amdocl_as64.exe
2013-08-30 23:47 . 2013-08-30 23:47 1061902 ----a-w- c:\windows\system32\amdocl_ld64.exe
2013-08-30 23:47 . 2013-08-30 23:47 98816 ----a-w- c:\windows\system32\OpenVideo64.dll
2013-08-30 23:47 . 2013-08-30 23:47 83456 ----a-w- c:\windows\SysWow64\OpenVideo.dll
2013-08-30 23:47 . 2013-08-30 23:47 86528 ----a-w- c:\windows\system32\OVDecode64.dll
2013-08-30 23:47 . 2013-08-30 23:47 73216 ----a-w- c:\windows\SysWow64\OVDecode.dll
2013-08-30 23:47 . 2013-08-30 23:47 28192256 ----a-w- c:\windows\system32\amdocl64.dll
2013-08-30 23:45 . 2013-08-30 23:45 23760896 ----a-w- c:\windows\SysWow64\amdocl.dll
2013-08-30 23:43 . 2013-08-30 23:43 63488 ----a-w- c:\windows\system32\OpenCL.dll
2013-08-30 23:43 . 2013-08-30 23:43 57344 ----a-w- c:\windows\SysWow64\OpenCL.dll
2013-08-30 23:35 . 2013-08-30 23:35 25387520 ----a-w- c:\windows\system32\atio6axx.dll
2013-08-30 23:18 . 2013-08-30 23:18 368640 ----a-w- c:\windows\system32\atiapfxx.exe
2013-08-30 23:18 . 2013-08-30 23:18 62464 ----a-w- c:\windows\system32\aticalrt64.dll
2013-08-30 23:18 . 2013-08-30 23:18 52224 ----a-w- c:\windows\SysWow64\aticalrt.dll
2013-08-30 23:18 . 2013-08-30 23:18 55808 ----a-w- c:\windows\system32\aticalcl64.dll
2013-08-30 23:18 . 2013-08-30 23:18 49152 ----a-w- c:\windows\SysWow64\aticalcl.dll
2013-08-30 23:17 . 2013-08-30 23:17 15716352 ----a-w- c:\windows\system32\aticaldd64.dll
2013-08-30 23:14 . 2013-08-30 23:14 14302208 ----a-w- c:\windows\SysWow64\aticaldd.dll
2013-08-30 23:13 . 2013-08-30 23:13 21400064 ----a-w- c:\windows\SysWow64\atioglxx.dll
2013-08-30 22:59 . 2013-08-30 22:59 442368 ----a-w- c:\windows\system32\atidemgy.dll
2013-08-30 22:58 . 2013-08-30 22:58 26112 ----a-w- c:\windows\system32\atimuixx.dll
2013-08-30 22:58 . 2013-08-30 22:58 571904 ----a-w- c:\windows\system32\atieclxx.exe
2013-08-30 22:57 . 2013-08-30 22:57 239616 ----a-w- c:\windows\system32\atiesrxx.exe
2013-08-30 22:56 . 2013-08-30 22:56 190976 ----a-w- c:\windows\system32\atitmm64.dll
2013-08-30 22:33 . 2010-02-11 04:48 784384 ----a-w- c:\windows\system32\atiadlxx.dll
2013-08-30 22:33 . 2013-08-30 22:33 594944 ----a-w- c:\windows\SysWow64\atiadlxy.dll
2013-08-30 22:33 . 2013-08-30 22:33 43520 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2013-08-30 22:32 . 2013-08-30 22:32 75264 ----a-w- c:\windows\system32\atig6pxx.dll
2013-08-30 22:32 . 2013-08-30 22:32 69632 ----a-w- c:\windows\SysWow64\atiglpxx.dll
2013-08-30 22:32 . 2013-08-30 22:32 69632 ----a-w- c:\windows\system32\atiglpxx.dll
2013-08-30 22:32 . 2013-08-30 22:32 100352 ----a-w- c:\windows\system32\atig6txx.dll
2013-08-30 22:32 . 2013-08-30 22:32 96768 ----a-w- c:\windows\SysWow64\atigktxx.dll
2013-08-30 22:32 . 2013-08-30 22:32 618496 ----a-w- c:\windows\system32\drivers\atikmpag.sys
2013-08-30 17:58 . 2013-08-30 17:58 51200 ----a-w- c:\windows\system32\kdbsdk64.dll
2013-08-30 17:53 . 2013-08-30 17:53 38912 ----a-w- c:\windows\SysWow64\kdbsdk32.dll
2013-08-07 02:22 . 2009-10-03 12:03 278800 ------w- c:\windows\system32\MpSigStub.exe
2013-08-02 01:48 . 2013-09-25 15:59 44032 ----a-w- c:\windows\apppatch\acwow64.dll
.
.
(((((((((((((((((((((((((((( Autostartpunkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-06-05 17:17 130736 ----a-w- c:\users\Wild-Pako\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-06-05 17:17 130736 ----a-w- c:\users\Wild-Pako\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-06-05 17:17 130736 ----a-w- c:\users\Wild-Pako\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-06-05 17:17 130736 ----a-w- c:\users\Wild-Pako\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DU Meter"="c:\program files (x86)\DU Meter\DUMeter.exe" [2013-09-27 2749984]
"Spybot-S&D Cleaning"="c:\program files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe" [2013-05-16 3642312]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2012-10-25 421888]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-07-02 254336]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" [2013-08-30 766208]
"SDTray"="c:\program files (x86)\Spybot - Search & Destroy 2\SDTray.exe" [2013-07-25 5624784]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-08-30 4858968]
.
c:\users\Wild-Pako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Core Temp.lnk - c:\program files\Core Temp\Core Temp.exe [2013-9-29 856016]
Dropbox.lnk - c:\users\Wild-Pako\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2013-6-5 27370808]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
"SoftwareSASGeneration"= 3 (0x3)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean64.exe
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R3 athur;Wireless Network Adapter Service;c:\windows\system32\DRIVERS\athurx.sys;c:\windows\SYSNATIVE\DRIVERS\athurx.sys [x]
R3 cpuz135;cpuz135;c:\users\WILD-P~1\AppData\Local\Temp\cpuz135\cpuz135_x64.sys;c:\users\WILD-P~1\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [x]
R3 Futuremark SystemInfo Service;Futuremark SystemInfo Service;c:\program files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe;c:\program files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe [x]
R3 MTSBDA;Cinergy S2 BDA service;c:\windows\system32\DRIVERS\MtsBda.sys;c:\windows\SYSNATIVE\DRIVERS\MtsBda.sys [x]
R3 MtsHID;Cinergy C/S2 PCI HID service;c:\windows\system32\DRIVERS\MtsHid.sys;c:\windows\SYSNATIVE\DRIVERS\MtsHid.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys;c:\windows\SYSNATIVE\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys;c:\windows\SYSNATIVE\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys;c:\windows\SYSNATIVE\drivers\rdvgkmd.sys [x]
R4 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x]
S0 aswRvrt;aswRvrt; [x]
S0 aswVmm;aswVmm; [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 DUMeterSvc;DU Meter Service;c:\program files (x86)\DU Meter\DUMeterSvc.exe;c:\program files (x86)\DU Meter\DUMeterSvc.exe [x]
S2 SDScannerService;Spybot-S&D 2 Scanner Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [x]
S2 SDUpdateService;Spybot-S&D 2 Updating Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [x]
S2 SDWSCService;Spybot-S&D 2 Security Center Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [x]
S2 TeamViewer8;TeamViewer 8;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [x]
S3 ALSysIO;ALSysIO;c:\users\WILD-P~1\AppData\Local\Temp\ALSysIO64.sys;c:\users\WILD-P~1\AppData\Local\Temp\ALSysIO64.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-10-07 22:45 1185744 ----a-w- c:\program files (x86)\Google\Chrome\Application\30.0.1599.69\Installer\chrmstp.exe
.
Inhalt des "geplante Tasks" Ordners
.
2013-10-13 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-07-31 16:38]
.
2013-10-13 c:\windows\Tasks\Feven 1.5-chromeinstaller.job
- c:\program files (x86)\Feven 1.5\Feven 1.5-chromeinstaller.exe [2013-09-28 20:31]
.
2013-10-13 c:\windows\Tasks\Feven 1.5-codedownloader.job
- c:\program files (x86)\Feven 1.5\Feven 1.5-codedownloader.exe [2013-09-28 20:33]
.
2013-10-13 c:\windows\Tasks\Feven 1.5-enabler.job
- c:\program files (x86)\Feven 1.5\Feven 1.5-enabler.exe [2013-09-28 20:33]
.
2013-10-13 c:\windows\Tasks\Feven 1.5-firefoxinstaller.job
- c:\program files (x86)\Feven 1.5\Feven 1.5-firefoxinstaller.exe [2013-09-28 20:32]
.
2013-10-13 c:\windows\Tasks\Feven 1.5-updater.job
- c:\program files (x86)\Feven 1.5\Feven 1.5-updater.exe [2013-09-28 20:33]
.
2013-10-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-09-25 17:39]
.
2013-10-13 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-09-25 17:39]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2013-08-30 07:47 133840 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-06-05 17:17 164016 ----a-w- c:\users\Wild-Pako\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-06-05 17:17 164016 ----a-w- c:\users\Wild-Pako\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-06-05 17:17 164016 ----a-w- c:\users\Wild-Pako\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-06-05 17:17 164016 ----a-w- c:\users\Wild-Pako\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2009-06-25 7883296]
"Skytel"="c:\program files\Realtek\Audio\HDA\Skytel.exe" [2009-06-25 1833504]
.
------- Zusätzlicher Suchlauf -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.searchgol.com/?babsrc=HP_ss&mntrId=6CFE001FD08EC324&affID=120523&tt=240913_238&tsp=5019
mLocal Page = c:\windows\SysWOW64\blank.htm
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: soe.com
Trusted Zone: sony.com
TCP: DhcpNameServer = 192.168.0.1 192.168.0.2
DPF: {971FC730-55F1-461F-83FD-B3BF5E1F039E} - hxxp://wg.dyndns.ws/AVC_AX_742.cab
FF - ProfilePath - c:\users\Wild-Pako\AppData\Roaming\Mozilla\Firefox\Profiles\kueee1xm.default\
FF - ExtSQL: 2013-09-28 22:33; 249911bc-d1bd-4d66-8c17-df533609e6d8@c76f3de9-939e-4922-b73c-5d7a3139375d.com; c:\users\Wild-Pako\AppData\Roaming\Mozilla\Firefox\Profiles\kueee1xm.default\extensions\249911bc-d1bd-4d66-8c17-df533609e6d8@c76f3de9-939e-4922-b73c-5d7a3139375d.com
FF - ExtSQL: 2013-10-06 20:22; adblockpopups@jessehakanen.net; c:\users\Wild-Pako\AppData\Roaming\Mozilla\Firefox\Profiles\kueee1xm.default\extensions\adblockpopups@jessehakanen.net.xpi
FF - ExtSQL: 2013-10-07 21:30; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; c:\users\Wild-Pako\AppData\Roaming\Mozilla\Firefox\Profiles\kueee1xm.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF - ExtSQL: 2013-10-08 19:57; wrc@avast.com; c:\program files\AVAST Software\Avast\WebRep\FF
FF - ExtSQL: 2013-10-10 19:02; {3d7eb24f-2740-49df-8937-200b1cc08f8a}; c:\users\Wild-Pako\AppData\Roaming\Mozilla\Firefox\Profiles\kueee1xm.default\extensions\{3d7eb24f-2740-49df-8937-200b1cc08f8a}
.
.
------- Dateityp-Verknüpfung -------
.
JSEFile=%SystemRoot%\SysWow64\CScript.exe "%1" %*
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
Wow6432Node-HKCU-Run-Remote Control Editor - c:\program files (x86)\Common Files\TerraTec\Remote\TTTvRc.exe
Wow6432Node-HKCU-Run-MobileDocuments - c:\program files (x86)\Common Files\Apple\Internet Services\ubd.exe
Wow6432Node-HKCU-Run-CrossLoop - c:\users\Wild-Pako\AppData\Local\CrossLoop\CrossLoopConnect.exe
Notify-SDWinLogon - SDWinLogon.dll
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
AddRemove-CrossLoop_is1 - c:\users\Wild-Pako\AppData\Local\CrossLoop\unins000.exe
AddRemove-FMS - d:\fms\Uninstall.exe
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\DUMeterSvc]
"ImagePath"="c:\program files (x86)\DU Meter\DUMeterSvc.exe /startedbyscm:E1F6D4BE-40E33354-DUMeterService"
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_USERS\S-1-5-21-3470926038-3106149513-4058150324-1001\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{762233AF-A805-52A0-ED1A-E354D2EA0822}*]
"paojgldoldphmghcbnplaikokdplmelp"=hex:6b,61,6a,6a,64,6e,62,6d,67,65,62,69,65,
68,62,61,66,6b,6a,67,6e,66,00,00
"oamjhkofbemkilijfbinnknafcgghf"=hex:6b,61,6a,6a,64,6e,62,6d,67,65,62,69,65,68,
62,61,66,6b,6a,67,6e,66,00,00
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10c.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10c.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}]
@Denied: (A 2) (Everyone)
@="IFlashBroker3"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Zeit der Fertigstellung: 2013-10-13 15:26:40
ComboFix-quarantined-files.txt 2013-10-13 13:26
.
Vor Suchlauf: 5.755.215.872 Bytes frei
Nach Suchlauf: 5.638.819.840 Bytes frei
.
- - End Of File - - 1A839589BDD099142F2E5F251F207A13
A36C5E4F47E84449FF07ED3517B43A31