![]() |
|
Plagegeister aller Art und deren Bekämpfung: Kein Speichern von Downloads mehr möglich (Windows 7)Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() | #3 |
| ![]() Kein Speichern von Downloads mehr möglich (Windows 7) Hallo aharonov,
__________________ich habe deine Anweisungen ausgeführt, jedoch zuerst das FRST aus Versehen vom USB-Stick gestartet. Da wurden auch beide .txt-Dateien auf dem Stick gespeichert. Dann ist mir aufgefallen, dass du "auf den Desktop" geschrieben hast. Also nochmal auf den Desktop kopiert und von da gestartet. FRST.txt wurde angelegt (siehe unten), Addition.txt nicht. Ist das normal? Hier die FRST.txt: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 31-10-2013 Ran by Daniel (administrator) on DANIEL-PC on 03-11-2013 17:42:09 Running from C:\Users\Daniel\Desktop Microsoft Windows 7 Professional Service Pack 1 (X86) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (AVM Berlin) C:\Program Files\avmwlanstick\WlanNetService.exe (Protexis Inc.) c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe (TuneUp Software) C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (TuneUp Software) C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesApp32.exe (AVM Berlin) C:\Program Files\avmwlanstick\WLanGUI.exe (Elaborate Bytes AG) C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe (shbox.de) C:\Program Files\FreePDF_XP\fpassist.exe (RemoteMouse.net) C:\Program Files\Remote Mouse\RemoteMouse.exe (Dropbox, Inc.) C:\Users\Daniel\AppData\Roaming\Dropbox\bin\Dropbox.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [AVMWlanClient] - C:\Program Files\avmwlanstick\WLanGUI.exe [2105344 2010-10-22] (AVM Berlin) HKLM\...\Run: [VirtualCloneDrive] - C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [85160 2009-06-17] (Elaborate Bytes AG) HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [500208 2010-03-06] (Adobe Systems Incorporated) HKLM\...\Run: [AdobeCS5ServiceManager] - C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated) HKLM\...\Run: [SwitchBoard] - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) HKLM\...\Run: [FreePDF Assistant] - C:\Program Files\FreePDF_XP\fpassist.exe [371200 2011-02-23] (shbox.de) HKLM\...\Run: [BCSSync] - C:\Program Files\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation) HKLM\...\Run: [Ext2 Volume Manager] - C:\Program Files\Ext2Fsd\Ext2Mgr.exe [1211536 2011-02-05] (Ext2Fsd Group (www.ext2fsd.com)) HKCU\...\Run: [Remote Mouse] - C:\Program Files\Remote Mouse\RemoteMouse.exe [1150464 2013-08-08] (RemoteMouse.net) HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd) HKCU\...\Run: [Google Update*] - [x] <===== ATTENTION (ZeroAccess rootkit hidden path) MountPoints2: {791908e4-527e-11e2-b4ea-00040ec68d1b} - I:\pushinst.exe Startup: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xA8D5C3C30C4CC801 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - DefaultScope {00DA421C-AAB1-4A7D-B673-13AD87CB5DBC} URL = hxxp://search.softonic.com/MOY00621/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=48ae6a43000000000000001e8c5e55fe&r=919 SearchScopes: HKCU - {00DA421C-AAB1-4A7D-B673-13AD87CB5DBC} URL = hxxp://search.softonic.com/MOY00621/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=48ae6a43000000000000001e8c5e55fe&r=919 SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://search.v9.com/web/?q={searchTerms} BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.) BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) Toolbar: HKLM - Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.) Winsock: Catalog5 01 mswsock.dll File Not found (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll" Winsock: Catalog5 05 mswsock.dll File Not found (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\System32\mswsock.dll" Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\upba8cco.default FF Homepage: www.google.de FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll () FF Plugin: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin: @nvidia.com/3DVision - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin: @nvidia.com/3DVisionStreaming - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Adblock Plus - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\upba8cco.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF HKLM\...\Firefox\Extensions: [{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}] - C:\Program Files\Adobe\Adobe Contribute CS5\Plugins\FirefoxPlugin\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9} FF Extension: Adobe Contribute Toolbar - C:\Program Files\Adobe\Adobe Contribute CS5\Plugins\FirefoxPlugin\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9} ========================== Services (Whitelisted) ================= R2 AVM WLAN Connection Service; C:\Program Files\avmwlanstick\WlanNetService.exe [376832 2010-10-22] (AVM Berlin) R2 TuneUp.UtilitiesSvc; C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe [1729336 2013-10-11] (TuneUp Software) U2 *etadpug; "C:\Program Files\Google\Desktop\Install\{2704fa2b-d398-f4d3-7f96-39ba774139c4}\ \...\???\{2704fa2b-d398-f4d3-7f96-39ba774139c4}\GoogleUpdate.exe" < <==== ATTENTION (ZeroAccess) ==================== Drivers (Whitelisted) ==================== R3 3xHybrid; C:\Windows\System32\DRIVERS\3xHybrid.sys [1141888 2010-12-01] (NXP Semiconductors Germany GmbH) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2013-10-31] (DT Soft Ltd) R1 ElbyCDIO; C:\Windows\System32\Drivers\ElbyCDIO.sys [26024 2009-12-17] (Elaborate Bytes AG) R1 Ext2Fsd; C:\Windows\System32\Drivers\Ext2Fsd.sys [686872 2011-07-09] (www.ext2fsd.com) S3 FWLANUSB; C:\Windows\System32\DRIVERS\fwlanusb.sys [265088 2010-10-22] (AVM GmbH) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [5810 2004-08-13] () R3 SMIGrabber3C; C:\Windows\System32\Drivers\SmiUsbGrabber3C.sys [799488 2009-05-14] (Windows (R) Win 7 DDK provider) R3 TuneUpUtilitiesDrv; C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesDriver32.sys [10088 2012-11-16] (TuneUp Software) U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [48128 2009-07-14] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-11-03 17:40 - 2013-11-03 17:35 - 01089445 _____ (Farbar) C:\Users\Daniel\Desktop\FRST.exe 2013-11-03 17:38 - 2013-11-03 17:38 - 00000000 ____D C:\FRST 2013-11-03 01:26 - 2013-11-03 01:26 - 00256558 _____ C:\ProgramData\1383438349.bdinstall.bin 2013-11-03 00:56 - 2013-11-03 00:56 - 00001109 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-11-02 11:42 - 2013-11-02 11:42 - 00133848 _____ C:\Users\Daniel\AppData\Local\GDIPFONTCACHEV1.DAT 2013-11-02 11:42 - 2013-11-02 11:42 - 00000385 _____ C:\Windows\system32\user_gensett.xml 2013-11-02 11:40 - 2013-11-03 01:27 - 00005994 _____ C:\Windows\PFRO.log 2013-11-02 11:40 - 2013-11-02 11:42 - 03853648 _____ C:\Windows\system32\FNTCACHE.DAT 2013-11-02 11:24 - 2013-11-02 11:24 - 00000000 ____D C:\Users\Daniel\AppData\Local\bdch 2013-11-02 11:14 - 2013-11-02 11:14 - 00000000 ____D C:\ProgramData\bdch 2013-11-02 10:59 - 2013-11-02 10:59 - 01584983 _____ C:\ProgramData\1383383748.bdinstall.bin 2013-11-02 10:57 - 2013-11-03 17:37 - 00001634 _____ C:\Windows\setupact.log 2013-11-02 10:57 - 2013-11-02 11:41 - 00000000 ____D C:\ProgramData\BDLogging 2013-11-02 10:57 - 2013-11-02 10:57 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_avchv_01009.Wdf 2013-11-02 10:57 - 2013-11-02 10:57 - 00000000 _____ C:\Windows\setuperr.log 2013-11-02 10:57 - 2009-07-14 22:27 - 01461992 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll 2013-11-02 10:56 - 2007-04-11 10:11 - 00511328 _____ (Microsoft Corporation) C:\Windows\capicom.dll 2013-11-02 10:17 - 2013-11-03 01:27 - 00000000 ____D C:\Program Files\Bitdefender 2013-11-02 10:15 - 2013-11-02 10:15 - 00000000 ____D C:\Users\Daniel\AppData\Roaming\QuickScan 2013-11-02 10:10 - 2013-11-03 01:26 - 00000000 ____D C:\Program Files\Common Files\Bitdefender 2013-11-02 09:51 - 2013-10-11 13:59 - 00030520 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll 2013-11-02 09:44 - 2013-11-02 09:51 - 00000000 ____D C:\Program Files\TuneUp Utilities 2013 2013-11-02 09:44 - 2013-11-02 09:44 - 00002159 _____ C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk 2013-11-02 09:44 - 2013-11-02 09:44 - 00002139 _____ C:\Users\Public\Desktop\TuneUp Utilities 2013.lnk 2013-11-02 09:44 - 2013-10-11 13:59 - 00032568 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe 2013-11-02 09:44 - 2013-10-11 13:59 - 00022328 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll 2013-11-02 09:36 - 2013-11-03 13:02 - 00000000 ____D C:\AdwCleaner 2013-11-02 09:35 - 2013-11-02 09:36 - 01060070 _____ C:\Users\Daniel\Desktop\adwcleaner-3.010.exe 2013-10-31 13:26 - 2013-10-31 13:26 - 00000000 ____D C:\ProgramData\Minnetonka Audio Software 2013-10-31 13:25 - 2013-10-31 13:26 - 00000000 ____D C:\Users\Daniel\Documents\Adobe 2013-10-31 13:16 - 2013-10-31 13:16 - 00000000 ____D C:\ProgramData\FLEXnet 2013-10-31 13:07 - 2013-10-31 13:07 - 00000000 ____D C:\Program Files\Google 2013-10-31 13:02 - 2013-10-31 13:02 - 00001161 _____ C:\Users\Daniel\Desktop\Adobe Premiere Pro CS4.lnk 2013-10-31 12:55 - 2013-10-31 12:55 - 00000000 ____D C:\Program Files\Common Files\Macrovision Shared 2013-10-31 00:16 - 2013-10-31 00:16 - 00242240 _____ (DT Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2013-10-31 00:16 - 2013-10-31 00:16 - 00001900 _____ C:\Users\Public\Desktop\DAEMON Tools Lite.lnk 2013-10-31 00:16 - 2013-10-31 00:16 - 00000000 ____D C:\Program Files\DAEMON Tools Lite 2013-10-30 23:42 - 2013-10-30 23:42 - 00000000 ____D C:\Users\Daniel\Documents\VHS to DVD 2013-10-30 23:42 - 2013-10-30 23:42 - 00000000 ____D C:\Users\Daniel\AppData\Local\VHS to DVD 2013-10-30 23:41 - 2013-10-30 23:41 - 00016382 ____N C:\INSTALL.LOG 2013-10-30 23:41 - 2013-10-30 23:41 - 00002031 _____ C:\Users\Public\Desktop\honestech VHS to DVD 2.0 SE.lnk 2013-10-30 23:41 - 2013-10-30 23:41 - 00000000 ____D C:\Users\Administrator 2013-10-30 23:41 - 2013-10-30 23:41 - 00000000 ____D C:\Program Files\honestech VHS to DVD 2.0 SE 2013-10-30 23:41 - 2006-05-16 11:54 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\Mfc42loc.dll 2013-10-30 23:41 - 2002-07-26 17:02 - 00153088 _____ C:\UNWISE.EXE 2013-10-30 23:40 - 2013-10-30 23:40 - 00000000 ____D C:\Users\Daniel\AppData\Roaming\InstallShield 2013-10-30 23:40 - 2013-10-30 23:40 - 00000000 ____D C:\Program Files\honestech 2013-10-30 23:30 - 2013-11-03 03:01 - 00000000 ____D C:\Users\Daniel\Desktop\Cass.-Dig 2013-10-30 23:07 - 2013-10-31 00:06 - 00000000 ____D C:\Users\Daniel\Desktop\VHS-Dig 2013-10-30 23:05 - 2013-10-30 23:05 - 00000000 ____D C:\Users\Daniel\AppData\Local\Xenocode 2013-10-30 23:05 - 2010-02-10 23:51 - 145690644 _____ (Blog do Birungueta) C:\Users\Daniel\Desktop\Portable Adobe Premiere Pro CS4.exe 2013-10-30 22:06 - 2013-10-30 22:06 - 00000000 ____D C:\Program Files\Somagic 2013-10-30 22:06 - 2013-10-30 22:06 - 00000000 ____D C:\Program Files\Common Files\Somagic 2013-10-30 22:06 - 2009-05-14 14:19 - 00799488 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\SmiUsbGrabber3C.sys 2013-10-30 22:00 - 2013-11-03 03:01 - 00000000 ____D C:\Users\Daniel\AppData\Roaming\Audacity 2013-10-30 22:00 - 2013-10-30 22:00 - 00000969 _____ C:\Users\Public\Desktop\Audacity.lnk 2013-10-30 22:00 - 2013-10-30 22:00 - 00000000 ____D C:\Program Files\Audacity 2013-10-28 23:12 - 2013-10-28 23:12 - 00000000 ____D C:\Program Files\Finale 2012 2013-10-28 12:46 - 2013-10-28 12:46 - 01700352 _____ (Microsoft Corporation) C:\Windows\system32\gdiplus.dll 2013-10-28 12:46 - 2013-10-28 12:46 - 00000000 ____D C:\Users\Daniel\AppData\Roaming\Plogue 2013-10-28 12:42 - 2013-10-28 12:42 - 00000000 ____D C:\Users\Daniel\AppData\Roaming\Garritan 2013-10-28 12:41 - 2013-10-28 12:54 - 00000000 ____D C:\vstplugins 2013-10-28 12:40 - 2013-10-28 12:42 - 00000000 ____D C:\Program Files\Garritan 2013-10-28 09:57 - 2013-10-28 09:59 - 00000000 ____D C:\Users\Daniel\Documents\NFS Most Wanted 2013-10-28 09:55 - 2013-10-31 13:07 - 00000000 ____D C:\Users\Daniel\AppData\Local\Google 2013-10-28 09:54 - 2013-10-28 09:56 - 00000000 ____D C:\Users\Daniel\AppData\Roaming\DAEMON Tools Lite 2013-10-28 09:54 - 2013-10-28 09:56 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite 2013-10-28 09:48 - 2005-11-26 12:16 - 00000954 _____ C:\Users\Daniel\Desktop\Need for Speed Most Wanted.lnk 2013-10-28 09:43 - 2013-10-28 09:43 - 00000000 ____D C:\Program Files\EA GAMES 2013-10-27 21:07 - 2013-11-03 12:57 - 00000000 ____D C:\Program Files\Mozilla Thunderbird 2013-10-27 20:57 - 2013-10-27 20:57 - 00000000 ____D C:\Program Files\Ext2Fsd 2013-10-27 20:57 - 2011-07-09 01:32 - 00686872 _____ (www.ext2fsd.com) C:\Windows\system32\Drivers\ext2fsd.sys 2013-10-14 13:59 - 2013-09-23 00:28 - 01767936 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-10-14 13:59 - 2013-09-23 00:28 - 01141248 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-10-14 13:59 - 2013-09-23 00:28 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-10-14 13:59 - 2013-09-23 00:27 - 14335488 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-10-14 13:59 - 2013-09-23 00:27 - 13761024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-10-14 13:59 - 2013-09-23 00:27 - 02876928 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-10-14 13:59 - 2013-09-23 00:27 - 02048512 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-10-14 13:59 - 2013-09-23 00:27 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-10-14 13:59 - 2013-09-23 00:27 - 00493056 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-10-14 13:59 - 2013-09-23 00:27 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-10-14 13:59 - 2013-09-23 00:27 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-10-14 13:59 - 2013-09-23 00:27 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-10-14 13:59 - 2013-09-23 00:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-10-14 13:59 - 2013-09-23 00:27 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-10-14 13:59 - 2013-09-21 04:30 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-10-14 13:59 - 2013-09-21 03:39 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-10-14 06:46 - 2013-09-14 01:48 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2013-10-14 06:46 - 2013-09-08 03:07 - 01294272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-10-14 06:46 - 2013-09-08 03:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2013-10-14 06:46 - 2013-08-29 02:51 - 03969472 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe 2013-10-14 06:46 - 2013-08-29 02:51 - 03914176 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-10-14 06:46 - 2013-08-29 02:50 - 01289096 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-10-14 06:46 - 2013-08-29 02:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2013-10-14 06:46 - 2013-08-29 02:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2013-10-14 06:46 - 2013-08-28 01:57 - 00434688 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2013-10-14 06:46 - 2013-08-01 12:03 - 00729024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2013-10-14 06:46 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2013-10-14 06:46 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2013-10-14 06:46 - 2013-07-03 04:36 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2013-10-14 06:46 - 2013-07-03 04:36 - 00025728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2013-10-14 06:46 - 2013-06-06 05:52 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2013-10-14 06:46 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2013-10-14 06:46 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2013-10-14 06:46 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2013-10-14 06:46 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2013-10-14 06:45 - 2013-08-28 02:04 - 02348544 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-10-14 06:45 - 2013-07-12 11:07 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys 2013-10-14 06:45 - 2013-07-12 11:07 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys 2013-10-14 06:45 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2013-10-14 06:45 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2013-10-14 06:45 - 2013-07-04 10:48 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2013-10-14 06:45 - 2013-06-25 23:56 - 00527064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys ==================== One Month Modified Files and Folders ======= 2013-11-03 17:41 - 2010-11-20 22:01 - 01498142 _____ C:\Windows\system32\PerfStringBackup.INI 2013-11-03 17:38 - 2013-11-03 17:38 - 00000000 ____D C:\FRST 2013-11-03 17:37 - 2013-11-02 10:57 - 00001634 _____ C:\Windows\setupact.log 2013-11-03 17:37 - 2013-01-07 00:05 - 00000000 ____D C:\ProgramData\NVIDIA 2013-11-03 17:37 - 2013-01-03 22:46 - 00000000 ___RD C:\Dropbox 2013-11-03 17:37 - 2012-12-28 01:31 - 00000000 ____D C:\Users\Daniel\AppData\Roaming\Dropbox 2013-11-03 17:37 - 2009-07-14 05:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-11-03 17:37 - 2008-01-01 01:30 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2013-11-03 17:35 - 2013-11-03 17:40 - 01089445 _____ (Farbar) C:\Users\Daniel\Desktop\FRST.exe 2013-11-03 13:02 - 2013-11-02 09:36 - 00000000 ____D C:\AdwCleaner 2013-11-03 13:02 - 2009-07-14 05:34 - 00022592 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-11-03 13:02 - 2009-07-14 05:34 - 00022592 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-11-03 13:01 - 2013-01-12 15:24 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-11-03 12:57 - 2013-10-27 21:07 - 00000000 ____D C:\Program Files\Mozilla Thunderbird 2013-11-03 03:09 - 2012-12-26 14:23 - 01650039 _____ C:\Windows\WindowsUpdate.log 2013-11-03 03:01 - 2013-10-30 23:30 - 00000000 ____D C:\Users\Daniel\Desktop\Cass.-Dig 2013-11-03 03:01 - 2013-10-30 22:00 - 00000000 ____D C:\Users\Daniel\AppData\Roaming\Audacity 2013-11-03 01:31 - 2012-12-28 01:33 - 00000000 ____D C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2013-11-03 01:27 - 2013-11-02 11:40 - 00005994 _____ C:\Windows\PFRO.log 2013-11-03 01:27 - 2013-11-02 10:17 - 00000000 ____D C:\Program Files\Bitdefender 2013-11-03 01:26 - 2013-11-03 01:26 - 00256558 _____ C:\ProgramData\1383438349.bdinstall.bin 2013-11-03 01:26 - 2013-11-02 10:10 - 00000000 ____D C:\Program Files\Common Files\Bitdefender 2013-11-03 01:00 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\NDF 2013-11-03 00:56 - 2013-11-03 00:56 - 00001109 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-11-03 00:56 - 2013-09-19 16:21 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-11-02 11:42 - 2013-11-02 11:42 - 00133848 _____ C:\Users\Daniel\AppData\Local\GDIPFONTCACHEV1.DAT 2013-11-02 11:42 - 2013-11-02 11:42 - 00000385 _____ C:\Windows\system32\user_gensett.xml 2013-11-02 11:42 - 2013-11-02 11:40 - 03853648 _____ C:\Windows\system32\FNTCACHE.DAT 2013-11-02 11:41 - 2013-11-02 10:57 - 00000000 ____D C:\ProgramData\BDLogging 2013-11-02 11:24 - 2013-11-02 11:24 - 00000000 ____D C:\Users\Daniel\AppData\Local\bdch 2013-11-02 11:14 - 2013-11-02 11:14 - 00000000 ____D C:\ProgramData\bdch 2013-11-02 10:59 - 2013-11-02 10:59 - 01584983 _____ C:\ProgramData\1383383748.bdinstall.bin 2013-11-02 10:57 - 2013-11-02 10:57 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_avchv_01009.Wdf 2013-11-02 10:57 - 2013-11-02 10:57 - 00000000 _____ C:\Windows\setuperr.log 2013-11-02 10:15 - 2013-11-02 10:15 - 00000000 ____D C:\Users\Daniel\AppData\Roaming\QuickScan 2013-11-02 09:58 - 2013-02-12 22:39 - 00000000 __SHD C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} 2013-11-02 09:58 - 2013-01-08 20:42 - 00000000 ____D C:\Windows\Minidump 2013-11-02 09:58 - 2012-12-26 14:19 - 00000000 ____D C:\Windows\Panther 2013-11-02 09:51 - 2013-11-02 09:44 - 00000000 ____D C:\Program Files\TuneUp Utilities 2013 2013-11-02 09:51 - 2013-02-12 22:39 - 00000000 ____D C:\ProgramData\TuneUp Software 2013-11-02 09:44 - 2013-11-02 09:44 - 00002159 _____ C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk 2013-11-02 09:44 - 2013-11-02 09:44 - 00002139 _____ C:\Users\Public\Desktop\TuneUp Utilities 2013.lnk 2013-11-02 09:36 - 2013-11-02 09:35 - 01060070 _____ C:\Users\Daniel\Desktop\adwcleaner-3.010.exe 2013-10-31 13:26 - 2013-10-31 13:26 - 00000000 ____D C:\ProgramData\Minnetonka Audio Software 2013-10-31 13:26 - 2013-10-31 13:25 - 00000000 ____D C:\Users\Daniel\Documents\Adobe 2013-10-31 13:16 - 2013-10-31 13:16 - 00000000 ____D C:\ProgramData\FLEXnet 2013-10-31 13:07 - 2013-10-31 13:07 - 00000000 ____D C:\Program Files\Google 2013-10-31 13:07 - 2013-10-28 09:55 - 00000000 ____D C:\Users\Daniel\AppData\Local\Google 2013-10-31 13:03 - 2012-12-28 01:48 - 00000000 ____D C:\ProgramData\Adobe 2013-10-31 13:02 - 2013-10-31 13:02 - 00001161 _____ C:\Users\Daniel\Desktop\Adobe Premiere Pro CS4.lnk 2013-10-31 13:00 - 2012-12-28 01:49 - 00000000 ____D C:\Program Files\Adobe 2013-10-31 13:00 - 2012-12-28 01:41 - 00000000 ____D C:\Users\Daniel\AppData\Roaming\Adobe 2013-10-31 12:59 - 2012-12-28 01:47 - 00000000 ____D C:\Program Files\Common Files\Adobe 2013-10-31 12:55 - 2013-10-31 12:55 - 00000000 ____D C:\Program Files\Common Files\Macrovision Shared 2013-10-31 12:55 - 2012-12-28 01:40 - 00000000 ____D C:\Users\Daniel\AppData\Local\Adobe 2013-10-31 00:16 - 2013-10-31 00:16 - 00242240 _____ (DT Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2013-10-31 00:16 - 2013-10-31 00:16 - 00001900 _____ C:\Users\Public\Desktop\DAEMON Tools Lite.lnk 2013-10-31 00:16 - 2013-10-31 00:16 - 00000000 ____D C:\Program Files\DAEMON Tools Lite 2013-10-31 00:06 - 2013-10-30 23:07 - 00000000 ____D C:\Users\Daniel\Desktop\VHS-Dig 2013-10-30 23:42 - 2013-10-30 23:42 - 00000000 ____D C:\Users\Daniel\Documents\VHS to DVD 2013-10-30 23:42 - 2013-10-30 23:42 - 00000000 ____D C:\Users\Daniel\AppData\Local\VHS to DVD 2013-10-30 23:41 - 2013-10-30 23:41 - 00016382 ____N C:\INSTALL.LOG 2013-10-30 23:41 - 2013-10-30 23:41 - 00002031 _____ C:\Users\Public\Desktop\honestech VHS to DVD 2.0 SE.lnk 2013-10-30 23:41 - 2013-10-30 23:41 - 00000000 ____D C:\Users\Administrator 2013-10-30 23:41 - 2013-10-30 23:41 - 00000000 ____D C:\Program Files\honestech VHS to DVD 2.0 SE 2013-10-30 23:41 - 2012-12-31 17:07 - 00000000 ___HD C:\Program Files\InstallShield Installation Information 2013-10-30 23:40 - 2013-10-30 23:40 - 00000000 ____D C:\Users\Daniel\AppData\Roaming\InstallShield 2013-10-30 23:40 - 2013-10-30 23:40 - 00000000 ____D C:\Program Files\honestech 2013-10-30 23:05 - 2013-10-30 23:05 - 00000000 ____D C:\Users\Daniel\AppData\Local\Xenocode 2013-10-30 22:06 - 2013-10-30 22:06 - 00000000 ____D C:\Program Files\Somagic 2013-10-30 22:06 - 2013-10-30 22:06 - 00000000 ____D C:\Program Files\Common Files\Somagic 2013-10-30 22:06 - 2013-02-12 23:42 - 00000000 ____D C:\Program Files\Common Files\InstallShield 2013-10-30 22:00 - 2013-10-30 22:00 - 00000969 _____ C:\Users\Public\Desktop\Audacity.lnk 2013-10-30 22:00 - 2013-10-30 22:00 - 00000000 ____D C:\Program Files\Audacity 2013-10-28 23:12 - 2013-10-28 23:12 - 00000000 ____D C:\Program Files\Finale 2012 2013-10-28 12:56 - 2008-01-01 01:17 - 00000000 ____D C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Garritan Personal Orchestra 2013-10-28 12:54 - 2013-10-28 12:41 - 00000000 ____D C:\vstplugins 2013-10-28 12:46 - 2013-10-28 12:46 - 01700352 _____ (Microsoft Corporation) C:\Windows\system32\gdiplus.dll 2013-10-28 12:46 - 2013-10-28 12:46 - 00000000 ____D C:\Users\Daniel\AppData\Roaming\Plogue 2013-10-28 12:42 - 2013-10-28 12:42 - 00000000 ____D C:\Users\Daniel\AppData\Roaming\Garritan 2013-10-28 12:42 - 2013-10-28 12:40 - 00000000 ____D C:\Program Files\Garritan 2013-10-28 09:59 - 2013-10-28 09:57 - 00000000 ____D C:\Users\Daniel\Documents\NFS Most Wanted 2013-10-28 09:57 - 2012-12-28 11:04 - 00000000 ____D C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-10-28 09:56 - 2013-10-28 09:54 - 00000000 ____D C:\Users\Daniel\AppData\Roaming\DAEMON Tools Lite 2013-10-28 09:56 - 2013-10-28 09:54 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite 2013-10-28 09:43 - 2013-10-28 09:43 - 00000000 ____D C:\Program Files\EA GAMES 2013-10-27 23:00 - 2008-01-01 00:26 - 00000000 ____D C:\Program Files\Finale 2010 Demo 2013-10-27 20:57 - 2013-10-27 20:57 - 00000000 ____D C:\Program Files\Ext2Fsd 2013-10-16 14:34 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\rescache 2013-10-15 19:54 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\Microsoft.NET 2013-10-15 18:25 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\de-DE 2013-10-14 14:01 - 2008-01-01 01:22 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-10-14 08:02 - 2013-01-12 15:24 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2013-10-14 08:02 - 2013-01-12 15:24 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2013-10-11 13:59 - 2013-11-02 09:51 - 00030520 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll 2013-10-11 13:59 - 2013-11-02 09:44 - 00032568 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe 2013-10-11 13:59 - 2013-11-02 09:44 - 00022328 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll Files to move or delete: ==================== ZeroAccess: C:\Users\Daniel\AppData\Local\Google\Desktop\Install ZeroAccess: C:\Program Files\Google\Desktop\Install Some content of TEMP: ==================== C:\Users\Daniel\AppData\Local\Temp\2290.exe C:\Users\Daniel\AppData\Local\Temp\DTLite4481-0347.exe C:\Users\Daniel\AppData\Local\Temp\InstallFlashPlayer.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit C:\Program Files\Windows Defender\mpsvc.dll => ATTENTION: ZeroAccess. Use DeleteJunctionsIndirectory: C:\Program Files\Windows Defender LastRegBack: 2013-11-03 03:19 ==================== End Of Log ============================ --- --- --- |
Themen zu Kein Speichern von Downloads mehr möglich (Windows 7) |
andere, angezeigt, dasselbe, datei, dateien, downloads, einfügen, einstellungen, firefox, funktionier, funktioniert, gen, gestern, hallo zusammen, hilfe, hoffe, kopieren, nutzer, ordner, problem, speicher, speichern, windows, windows 7, zusammen |