![]() |
|
Log-Analyse und Auswertung: Schädlicher Software verursacht das meinem Browser Seiten nicht verfügung stehen und mein Welan wirt unterbrochenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() |
|
![]() | #1 |
![]() ![]() | ![]() Schädlicher Software verursacht das meinem Browser Seiten nicht verfügung stehen und mein Welan wirt unterbrochen Hi schrauber, ich kann den Eset Smartinstaller nicht ausführen bekomme immer die Meldung can not update Is Proxy config gured angezeigt Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok ESETSmartInstaller@High as downloader log: Can not read file from internet.ESETSmartInstaller@High as downloader log: Can not read file from internet.Can not read file from internet.ESETSmartInstaller@High as downloader log: Can not read file from internet.Can not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: all ok ESETSmartInstaller@High as downloader log: all ok ESETSmartInstaller@High as downloader log: all ok ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=99f42ec750570545a51542c14096db20 # engine=15841 # end=stopped # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-11-11 08:04:39 # local_time=2013-11-11 09:04:39 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=5893 16776573 100 94 94902 135830129 0 0 # scanned=1265 # found=0 # cleaned=0 # scan_time=330 ESETSmartInstaller@High as downloader log: Can not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not read file from internet.ESETSmartInstaller@High as downloader log: Can not read file from internet.Can not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internet Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok ESETSmartInstaller@High as downloader log: Can not read file from internet.ESETSmartInstaller@High as downloader log: Can not read file from internet.Can not read file from internet.ESETSmartInstaller@High as downloader log: Can not read file from internet.Can not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: all ok ESETSmartInstaller@High as downloader log: all ok ESETSmartInstaller@High as downloader log: all ok ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=99f42ec750570545a51542c14096db20 # engine=15841 # end=stopped # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-11-11 08:04:39 # local_time=2013-11-11 09:04:39 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=5893 16776573 100 94 94902 135830129 0 0 # scanned=1265 # found=0 # cleaned=0 # scan_time=330 ESETSmartInstaller@High as downloader log: Can not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not read file from internet.ESETSmartInstaller@High as downloader log: Can not read file from internet.Can not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=99f42ec750570545a51542c14096db20 # engine=15844 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-11-12 05:32:20 # local_time=2013-11-12 06:32:20 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=5893 16776573 100 94 125363 135864190 0 0 # scanned=248059 # found=0 # cleaned=0 # scan_time=7972 Code:
ATTFilter Results of screen317's Security Check version 0.99.76 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 10 ``````````````Antivirus/Firewall Check:`````````````` WMI entry may not exist for antivirus; attempting automatic update. `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware Version 1.75.0.1300 Java(TM) 6 Update 22 Java 7 Update 25 Java version out of Date! Adobe Flash Player 10 Flash Player out of Date! Adobe Flash Player 11.9.900.117 Adobe Reader 9 Adobe Reader out of Date! Mozilla Firefox 24.0 Firefox out of Date! Google Chrome 30.0.1599.101 Google Chrome 30.0.1599.69 ````````Process Check: objlist.exe by Laurent```````` Malwarebytes Anti-Malware mbamservice.exe Malwarebytes Anti-Malware mbamgui.exe Malwarebytes' Anti-Malware mbamscheduler.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-11-2013 01 Ran by Klara (administrator) on KLARA-PC on 12-11-2013 06:46:04 Running from C:\Users\Klara\Downloads\Neuer Ordner Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe (Hewlett-Packard) C:\Windows\system32\Hpservice.exe (Microsoft Corporation) C:\Windows\system32\WLANExt.exe (Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe (SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40STB.EXE (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RPB.EXE (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE () C:\Windows\SysWOW64\PnkBstrA.exe (Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe () C:\Program Files (x86)\NETGEAR\WNA1100\WifiSvc.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe () C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe () C:\Program Files (x86)\NETGEAR\WNA1100\WNA1100.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE () C:\Program Files (x86)\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe ( Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\tv_w32.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\tv_x64.exe () C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe (CyberLink) c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SmartMenu] - C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe [610872 2009-08-25] () HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-03-23] (IDT, Inc.) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1814312 2009-08-15] (Synaptics Incorporated) HKCU\...\Run: [LightScribe Control Panel] - C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2009-08-20] (Hewlett-Packard Company) HKCU\...\Policies\system: [DisableLockWorkstation] 0 HKCU\...\Policies\system: [DisableChangePassword] 0 HKLM-x32\...\Run: [Corel File Shell Monitor] - C:\Program Files (x86)\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe [15544 2009-08-25] () HKLM-x32\...\Run: [HPCam_Menu] - C:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink Corp.) HKLM-x32\...\Run: [QlbCtrl.exe] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe [322104 2009-08-20] ( Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [Easybits Recovery] - C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [60464 2009-09-02] (EasyBits Software AS) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [WirelessAssistant] - C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [498744 2009-07-23] (Hewlett-Packard) HKLM-x32\...\Run: [EEventManager] - C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [665424 2008-12-04] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1259376 2011-07-29] () HKLM-x32\...\Run: [jswtrayutil] - "C:\Program Files (x86)\NETGEAR\WNA1100\jswtrayutil.exe" Startup: C:\Users\Klara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk ShortcutTarget: OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope {8CCEADB4-4D1D-48A7-9B85-0AA734ED5B11} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - DefaultScope {D27A80A4-AFFC-4A25-B189-65E8698EA17E} URL = hxxp://www.google.de/search?q={searchTerms} SearchScopes: HKCU - {D27A80A4-AFFC-4A25-B189-65E8698EA17E} URL = hxxp://www.google.de/search?q={searchTerms} BHO: Plus-HD-2.2 - {11111111-1111-1111-1111-110311301136} - No File BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWow64\EZUPBH~1.DLL [52272 2010-01-09] (EasyBits Software Corp.) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Klara\AppData\Roaming\Mozilla\Firefox\Profiles\xs0p7z1n.default FF SelectedSearchEngine: user_pref("browser.search.selectedEngine", ""); FF NetworkProxy: "type", 4 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: PinkHope - C:\Users\Klara\AppData\Roaming\Mozilla\Firefox\Profiles\xs0p7z1n.default\Extensions\{333b42b0-9c75-11db-b606-0800200c9a66} FF Extension: toolbar_ORJ-V7 - C:\Users\Klara\AppData\Roaming\Mozilla\Firefox\Profiles\xs0p7z1n.default\Extensions\toolbar_ORJ-V7@apn.ask.com.xpi FF Extension: Adblock Plus - C:\Users\Klara\AppData\Roaming\Mozilla\Firefox\Profiles\xs0p7z1n.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 Chrome: ======= CHR RestoreOnStartup: "urls_to_restore_on_startup": null CHR DefaultSearchURL: (exceltabelle.com) - hxxp://exceltabelle.com/index.php?s={searchTerms} CHR DefaultSuggestURL: (exceltabelle.com) - "suggest_url": "", CHR Plugin: (Remoting Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\pdf.dll () CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\gcswf32.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Java Deployment Toolkit 6.0.220.4) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll (Sun Microsystems, Inc.) CHR Plugin: (Java(TM) Platform SE 6 U22) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) CHR Plugin: (Microsoft Office 2003) - C:\Program Files (x86)\Mozilla Firefox\plugins\NPOFFICE.DLL (Microsoft Corporation) CHR Plugin: (QuickTime Plug-in 7.1.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll (Apple Computer, Inc.) CHR Plugin: (QuickTime Plug-in 7.1.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll (Apple Computer, Inc.) CHR Plugin: (QuickTime Plug-in 7.1.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll (Apple Computer, Inc.) CHR Plugin: (QuickTime Plug-in 7.1.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll (Apple Computer, Inc.) CHR Plugin: (QuickTime Plug-in 7.1.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll (Apple Computer, Inc.) CHR Plugin: (QuickTime Plug-in 7.1.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll (Apple Computer, Inc.) CHR Plugin: (QuickTime Plug-in 7.1.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll (Apple Computer, Inc.) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File CHR Plugin: (Windows Live\u00AE Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Shockwave for Director) - C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll No File CHR Extension: (Love Smoke) - C:\Users\Klara\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgibfhhccaknggplelmbaepoikkcnllb\1_1 CHR Extension: (Google Wallet) - C:\Users\Klara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0 CHR Extension: (DivX Plus Web Player HTML5 \u003Cvideo\u003E) - C:\Users\Klara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0 CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx ==================== Services (Whitelisted) ================= R2 AESTFilters; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe [89600 2009-03-02] (Andrea Electronics Corporation) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [66872 2013-03-30] () R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152 2009-07-06] () R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe [247808 2010-03-23] (IDT, Inc.) R2 WSWNA1100; C:\Program Files (x86)\NETGEAR\WNA1100\WifiSvc.exe [297440 2011-07-28] () R2 ezSharedSvc; C:\Windows\System32\ezsvc7.dll [x] ==================== Drivers (Whitelisted) ==================== R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R2 {55662437-DA8C-40c0-AADA-2C816A897A49}; c:\Program Files (x86)\Hewlett-Packard\Media\DVD\000.fcl [146928 2009-10-16] (CyberLink Corp.) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-11-11 21:14 - 2013-11-11 21:14 - 00000000 ____D C:\Intel 2013-11-11 19:02 - 2013-11-11 19:02 - 00000000 ____D C:\Program Files (x86)\ESET 2013-11-10 19:44 - 2013-11-10 19:44 - 00003304 _____ C:\Users\Klara\Desktop\JRT.txt 2013-11-10 19:35 - 2013-11-10 19:35 - 00000000 ____D C:\Windows\ERUNT 2013-11-10 19:28 - 2013-11-10 19:31 - 00000000 ____D C:\AdwCleaner 2013-11-10 18:15 - 2013-11-10 18:15 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-11-10 18:15 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-11-08 15:07 - 2013-11-08 15:07 - 00017808 _____ C:\ComboFix.txt 2013-11-08 13:24 - 2013-11-08 15:07 - 00000000 ____D C:\Qoobox 2013-11-08 13:24 - 2013-11-08 13:58 - 00000000 ____D C:\Windows\erdnt 2013-11-08 13:24 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe 2013-11-08 13:24 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe 2013-11-08 13:24 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2013-11-08 13:24 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2013-11-08 13:24 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2013-11-08 13:24 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe 2013-11-08 13:24 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe 2013-11-08 13:24 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe 2013-11-07 18:48 - 2013-11-07 18:48 - 00000000 ____D C:\FRST 2013-11-07 16:23 - 2013-11-12 06:46 - 00000000 ____D C:\Users\Klara\Downloads\Neuer Ordner 2013-11-07 16:22 - 2013-09-04 13:12 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2013-11-07 16:22 - 2013-09-04 13:11 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2013-11-07 16:22 - 2013-09-04 13:11 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2013-11-07 16:22 - 2013-09-04 13:11 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2013-11-07 16:22 - 2013-09-04 13:11 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2013-11-07 16:22 - 2013-09-04 13:11 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2013-11-07 16:22 - 2013-09-04 13:11 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2013-11-07 16:17 - 2013-11-08 21:21 - 00001117 _____ C:\Users\Public\Desktop\NETGEAR WNA1100 Genie.lnk 2013-11-07 16:17 - 2013-11-07 16:17 - 00000000 ____D C:\Program Files (x86)\NETGEAR 2013-11-07 16:17 - 2011-07-22 10:33 - 00025056 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\SCMNdisP.sys 2013-11-07 16:17 - 2010-10-11 01:11 - 01924096 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\athurx.sys 2013-11-07 16:17 - 2008-05-15 02:28 - 00026624 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\jswpslwfx.sys 2013-10-27 07:37 - 2013-10-27 07:37 - 00000000 ____D C:\Users\Klara\AppData\Roaming\Malwarebytes 2013-10-27 07:37 - 2013-10-27 07:37 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-10-27 07:34 - 2013-10-27 07:35 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Klara\Downloads\mbam-setup-1.75.0.1300.exe ==================== One Month Modified Files and Folders ======= 2013-11-12 06:46 - 2013-11-07 16:23 - 00000000 ____D C:\Users\Klara\Downloads\Neuer Ordner 2013-11-12 06:27 - 2012-12-07 14:25 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-11-12 06:26 - 2012-06-24 07:38 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-11-12 06:24 - 2010-03-04 01:19 - 01281134 _____ C:\Windows\WindowsUpdate.log 2013-11-12 04:22 - 2009-07-14 05:45 - 00023024 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-11-12 04:22 - 2009-07-14 05:45 - 00023024 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-11-12 04:19 - 2010-01-09 07:37 - 00654400 _____ C:\Windows\system32\perfh007.dat 2013-11-12 04:19 - 2010-01-09 07:37 - 00130240 _____ C:\Windows\system32\perfc007.dat 2013-11-12 04:19 - 2009-07-14 06:13 - 01498742 _____ C:\Windows\system32\PerfStringBackup.INI 2013-11-12 04:17 - 2012-06-24 07:38 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-11-12 04:14 - 2013-07-20 05:07 - 00012951 _____ C:\Windows\setupact.log 2013-11-12 04:14 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-11-11 21:17 - 2013-08-06 15:44 - 00031588 _____ C:\Windows\PFRO.log 2013-11-11 21:16 - 2010-01-08 23:24 - 00000000 ____D C:\Program Files (x86)\Intel 2013-11-11 21:14 - 2013-11-11 21:14 - 00000000 ____D C:\Intel 2013-11-11 21:08 - 2010-01-09 00:51 - 00000000 ____D C:\Program Files (x86)\CyberLink 2013-11-11 21:05 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\zh-HK 2013-11-11 21:05 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\tr-TR 2013-11-11 21:05 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\th-TH 2013-11-11 21:05 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\sl-SI 2013-11-11 21:05 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\sk-SK 2013-11-11 21:05 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\ro-RO 2013-11-11 21:05 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\lv-LV 2013-11-11 21:05 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\lt-LT 2013-11-11 21:05 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\hr-HR 2013-11-11 21:05 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\he-IL 2013-11-11 21:05 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\et-EE 2013-11-11 21:05 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\bg-BG 2013-11-11 21:05 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\ar-SA 2013-11-11 20:57 - 2010-12-10 14:15 - 00000000 ____D C:\ProgramData\TuneUp Software 2013-11-11 19:02 - 2013-11-11 19:02 - 00000000 ____D C:\Program Files (x86)\ESET 2013-11-10 19:44 - 2013-11-10 19:44 - 00003304 _____ C:\Users\Klara\Desktop\JRT.txt 2013-11-10 19:35 - 2013-11-10 19:35 - 00000000 ____D C:\Windows\ERUNT 2013-11-10 19:31 - 2013-11-10 19:28 - 00000000 ____D C:\AdwCleaner 2013-11-10 18:15 - 2013-11-10 18:15 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-11-08 21:26 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2013-11-08 21:21 - 2013-11-07 16:17 - 00001117 _____ C:\Users\Public\Desktop\NETGEAR WNA1100 Genie.lnk 2013-11-08 15:07 - 2013-11-08 15:07 - 00017808 _____ C:\ComboFix.txt 2013-11-08 15:07 - 2013-11-08 13:24 - 00000000 ____D C:\Qoobox 2013-11-08 15:07 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default 2013-11-08 14:31 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini 2013-11-08 13:58 - 2013-11-08 13:24 - 00000000 ____D C:\Windows\erdnt 2013-11-08 13:31 - 2012-06-29 18:34 - 00000000 ____D C:\Users\Klara\AppData\Roaming\convert 2013-11-08 13:31 - 2010-04-02 15:28 - 00000000 ____D C:\Users\Klara 2013-11-07 19:06 - 2013-07-20 05:07 - 00456680 _____ C:\Windows\system32\FNTCACHE.DAT 2013-11-07 19:04 - 2013-08-06 16:34 - 00000000 ____D C:\ProgramData\Avira 2013-11-07 18:48 - 2013-11-07 18:48 - 00000000 ____D C:\FRST 2013-11-07 18:38 - 2013-07-20 05:08 - 00128136 _____ C:\Users\Klara\AppData\Local\GDIPFONTCACHEV1.DAT 2013-11-07 18:30 - 2010-07-23 19:38 - 00000000 ___RD C:\Users\Klara\Documents\ordnung 2013-11-07 18:30 - 2010-01-08 23:57 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-11-07 16:17 - 2013-11-07 16:17 - 00000000 ____D C:\Program Files (x86)\NETGEAR 2013-11-07 16:17 - 2010-01-08 22:58 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-10-27 09:08 - 2012-06-29 18:36 - 00000000 ____D C:\Users\Klara\AppData\Roaming\DivX 2013-10-27 07:37 - 2013-10-27 07:37 - 00000000 ____D C:\Users\Klara\AppData\Roaming\Malwarebytes 2013-10-27 07:37 - 2013-10-27 07:37 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-10-27 07:35 - 2013-10-27 07:34 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Klara\Downloads\mbam-setup-1.75.0.1300.exe 2013-10-14 21:21 - 2012-06-24 07:38 - 00004104 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-10-14 21:21 - 2012-06-24 07:38 - 00003852 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-10-14 18:59 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-10-13 13:44 - 2013-10-05 11:23 - 00000898 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog 2013-10-13 11:51 - 2013-10-06 07:49 - 00000000 ____D C:\Users\Klara\AppData\Local\Corel 2013-10-13 07:22 - 2013-10-06 08:53 - 00003584 _____ C:\Users\Klara\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2013-10-13 07:22 - 2013-05-22 12:57 - 00000848 ___SH C:\ProgramData\KGyGaAvL.sys 2013-10-13 07:22 - 2010-05-16 16:29 - 00000000 ____D C:\Users\Klara\Documents\My PSP Files Some content of TEMP: ==================== C:\Users\Klara\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-11-08 06:48 ==================== End Of Log ============================ --- --- --- |
![]() |
Themen zu Schädlicher Software verursacht das meinem Browser Seiten nicht verfügung stehen und mein Welan wirt unterbrochen |
adapter, anbieter, beseitigen, bieter, browser, e-mail, einiger, fenster, googel, legen, neu, probleme, router, seite, seiten, software, stehe, troja, trojaner, verbindung, verfügbar, versuche, verursacht, werbeseite, wlan |