Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Win 7 - Firefox - Bundespolizei "ihr browser hat gesperrt"

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

 
Alt 07.01.2014, 14:35   #1
Sandra666
 
Win 7 - Firefox - Bundespolizei "ihr browser hat gesperrt" - Standard

Win 7 - Firefox - Bundespolizei "ihr browser hat gesperrt"



Hallöchen,

ich habe seit zwei Tagen o. genanntes Problem. Firefox lässt sich nur noch über den Taskmanager schließen. Ansonsten kann ich ganz normal mit dem PC arbeiten.

Rechner mit Windows 7 CD (Windows 7 Home Premium 64 Bit) gestartet - Computerreparatur ausgewählt...

Zuerst probierte ich Frst32. Fehlerhinweis: Das zum Unterstützen des Abbildtyps erforderliche Subsystem ist nicht vorhanden.

Systemscan mit Frst64 (Prog. vorhin erst heruntergeladen)
Frst.txt
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 05-01-2014
Ran by SYSTEM on MININT-ERQBN51 on 07-01-2014 14:03:50
Running from I:\
Microsoft Windows XP (X64) OS Language: German Standard
Internet Explorer Version 8
Boot Mode: Recovery

The current controlset is ControlSet002
ATTENTION!:=====> If the system is bootable FRST could be run from normal or Safe mode to create a complete log.


ATTENTION!:=====> THE OPERATING SYSTEM IS A X86 SYSTEM BUT THE BOOT DISK THAT IS USED TO BOOT TO RECOVERY ENVIRONMENT IS A X64 SYSTEM DISK.

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [] - [x]
HKLM\...\Run: [RTHDCPL] - C:\WINDOWS\RTHDCPL.exe [16143872 2006-04-17] (Realtek Semiconductor Corp.)
HKLM\...\Run: [NvCplDaemon] - RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [nwiz] - nwiz.exe /install
HKLM\...\Run: [ccApp] - C:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe [84640 2006-09-03] (Symantec Corporation)
HKLM\...\Run: [avgnt] - C:\Programme\Avira\AntiVir Desktop\avgnt.exe [281768 2010-12-13] (Avira GmbH)
HKLM\...\Winlogon: [Userinit] C:\WINDOWS\system32\userinit.exe,,C:\Programme\SUVOTdeDïÏNšËgfvcermb.exe\gfvcermb.exe
HKLM-x32\...\Winlogon: [Userinit]  [x]
HKLM\...\Winlogon: [Shell] Explorer.exe
HKLM-x32\...\Winlogon: [Shell]  [ ] () <=== ATTENTION
HKLM\...\Winlogon: [UIHost] C:\WINDOWS\system32\logonui.exe [515072 2006-06-01] ( (Microsoft Corporation))
Winlogon\Notify\crypt32chain: C:\Windows\system32\crypt32.dll (Microsoft Corporation)
Winlogon\Notify\cryptnet: C:\Windows\system32\cryptnet.dll (Microsoft Corporation)
Winlogon\Notify\cscdll: C:\Windows\system32\cscdll.dll (Microsoft Corporation)
Winlogon\Notify\ScCertProp: C:\Windows\system32\wlnotify.dll (Microsoft Corporation)
Winlogon\Notify\Schedule: C:\Windows\system32\wlnotify.dll (Microsoft Corporation)
Winlogon\Notify\sclgntfy: C:\Windows\system32\sclgntfy.dll (Microsoft Corporation)
Winlogon\Notify\SensLogn: C:\Windows\system32\WlNotify.dll (Microsoft Corporation)
Winlogon\Notify\termsrv: C:\Windows\system32\wlnotify.dll (Microsoft Corporation)
Winlogon\Notify\WgaLogon: C:\Windows\system32\WgaLogon.dll (Microsoft Corporation)
Winlogon\Notify\wlballoon: C:\Windows\system32\wlnotify.dll (Microsoft Corporation)
HKLM\...\Command Processor:  <======= ATTENTION
IFEO\Your Image File Name Here without a path: [Debugger] ntsd -d
SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - %SystemRoot%\system32\SHELL32.dll (Microsoft Corporation)
SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - %SystemRoot%\system32\SHELL32.dll (Microsoft Corporation)
SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll (Microsoft Corporation)
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll (Microsoft Corporation)
BootExecute: autocheck autochk * oodbs

==================== Services (Whitelisted) =================

S3 Adobe LM Service; C:\Programme\Gemeinsame Dateien\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2007-07-07] (Adobe Systems)
S4 Alerter; C:\Windows\system32\alrsvc.dll [17408 2006-06-01] (Microsoft Corporation)
S2 AntiVirSchedulerService; C:\Programme\Avira\AntiVir Desktop\sched.exe [135336 2010-12-13] (Avira GmbH)
S2 AntiVirService; C:\Programme\Avira\AntiVir Desktop\avguard.exe [267944 2010-12-13] (Avira GmbH)
S2 Apple Mobile Device; C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceService.exe [144176 2010-06-10] (Apple Inc.)
S3 aspnet_state; C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [34312 2008-07-25] (Microsoft Corporation)
S2 ATKKeyboardService; C:\WINDOWS\ATKKBService.exe [241152 2005-10-18] (ASUSTeK COMPUTER INC.)
S2 Automatisches LiveUpdate - Scheduler; C:\Programme\Symantec\LiveUpdate\ALUSchedulerSvc.exe [198336 2006-09-08] (Symantec Corporation)
S2 Bonjour Service; C:\Programme\Bonjour\mDNSResponder.exe [345376 2010-05-18] (Apple Inc.)
S2 btwdins; C:\Programme\WIDCOMM\Bluetooth Software\bin\btwdins.exe [135168 2004-01-20] (WIDCOMM, Inc.)
S2 ccEvtMgr; C:\Programme\Gemeinsame Dateien\Symantec Shared\ccSvcHst.exe [105632 2006-09-03] (Symantec Corporation)
S3 ccPwdSvc; C:\Programme\Gemeinsame Dateien\Symantec Shared\ccPwdSvc.exe [79208 2008-01-31] (Symantec Corporation)
S2 ccSetMgr; C:\Programme\Gemeinsame Dateien\Symantec Shared\ccSvcHst.exe [105632 2006-09-03] (Symantec Corporation)
S4 ClipSrv; C:\Windows\system32\clipsrv.exe [33280 2006-06-01] (Microsoft Corporation)
S2 CLTNetCnService; C:\Programme\Gemeinsame Dateien\Symantec Shared\ccSvcHst.exe [105632 2006-09-03] (Symantec Corporation)
S3 dmadmin; C:\Windows\System32\dmadmin.exe [225280 2006-06-01] (Microsoft Corp., Veritas Software)
S2 dmserver; C:\Windows\System32\dmserver.dll [24064 2006-06-01] (Microsoft Corp.)
S4 ERSvc; C:\Windows\System32\ersvc.dll [23040 2006-06-01] (Microsoft Corporation)
S3 FastUserSwitchingCompatibility; C:\Windows\System32\shsvcs.dll [135168 2006-12-19] (Microsoft Corporation)
S3 FLEXnet Licensing Service; C:\Programme\Gemeinsame Dateien\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [655624 2009-10-07] (Acresso Software Inc.)
S3 FontCache3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [46104 2008-07-29] (Microsoft Corporation)
S2 gupdate; C:\Programme\Google\Update\GoogleUpdate.exe [133104 2009-07-12] (Google Inc.)
S2 helpsvc; C:\Windows\PCHealth\HelpCtr\Binaries\pchsvc.dll [38912 2006-06-01] (Microsoft Corporation)
S3 HTTPFilter; C:\Windows\System32\w3ssl.dll [15872 2006-06-01] (Microsoft Corporation)
S3 IDriverT; C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation)
S3 idsvc; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [881664 2008-07-29] (Microsoft Corporation)
S4 ImapiService; C:\WINDOWS\system32\imapi.exe [150016 2006-06-01] (Microsoft Corporation)
S3 iPod Service; C:\Programme\iPod\bin\iPodService.exe [540968 2010-07-16] (Apple Inc.)
S3 LiveUpdate; C:\Programme\Symantec\LiveUpdate\LuComServer_3_1.EXE [2528960 2006-09-08] (Symantec Corporation)
S2 LiveUpdate Notice Ex; C:\Programme\Gemeinsame Dateien\Symantec Shared\ccSvcHst.exe [105632 2006-09-03] (Symantec Corporation)
S2 LiveUpdate Notice Service; C:\Programme\Gemeinsame Dateien\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe [583048 2008-01-29] (Symantec Corporation)
S4 Messenger; C:\Windows\System32\msgsvc.dll [33792 2006-06-01] (Microsoft Corporation)
S3 mnmsrvc; C:\WINDOWS\system32\mnmsrvc.exe [32768 2006-06-01] (Microsoft Corporation)
S4 NetDDE; C:\Windows\system32\netdde.exe [114176 2006-06-01] (Microsoft Corporation)
S4 NetDDEdsdm; C:\Windows\system32\netdde.exe [114176 2006-06-01] (Microsoft Corporation)
S3 Nla; C:\Windows\System32\mswsock.dll [247296 2008-06-20] (Microsoft Corporation)
S3 NtLmSsp; C:\Windows\system32\lsass.exe [13312 2006-06-01] (Microsoft Corporation)
S3 NtmsSvc; C:\Windows\system32\ntmssvc.dll [438272 2006-06-01] (Microsoft Corporation)
S2 NVSvc; C:\Windows\system32\nvsvc32.exe [159812 2008-05-16] (NVIDIA Corporation)
S2 O&O Defrag; C:\WINDOWS\system32\oodag.exe [225280 2005-05-11] (O&O Software GmbH)
S3 OpenVPNService; C:\Programme\OpenVPN\bin\openvpnserv.exe [36352 2010-08-15] ()
S3 ose; C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE [89136 2006-06-01] (Microsoft Corporation)
S2 PlugPlay; C:\Windows\system32\services.exe [111104 2009-02-09] (Microsoft Corporation)
S2 Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [73728 2007-08-09] (HP)
S2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [66872 2008-09-21] ()
S2 PolicyAgent; C:\Windows\system32\lsass.exe [13312 2006-06-01] (Microsoft Corporation)
S3 RDSessMgr; C:\WINDOWS\system32\sessmgr.exe [142848 2006-06-01] (Microsoft Corporation)
S3 RSVP; C:\Windows\system32\rsvp.exe [132608 2006-06-01] (Microsoft Corporation)
S3 SCardSvr; C:\Windows\System32\SCardSvr.exe [99840 2006-06-01] (Microsoft Corporation)
S3 ServiceLayer; C:\Programme\PC Connectivity Solution\ServiceLayer.exe [353280 2007-12-10] (Nokia.)
S2 softOSD; C:\Programme\softOSD\softosd.exe [259832 2007-07-31] (EnTech Taiwan)
S2 srservice; C:\WINDOWS\system32\srsvc.dll [171008 2006-06-01] (Microsoft Corporation)
S2 StarWindService; C:\Programme\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe [217600 2005-04-02] (Rocket Division Software)
S2 Symantec Core LC; C:\Programme\Gemeinsame Dateien\Symantec Shared\CCPD-LC\symlcsvc.exe [1251720 2009-09-22] ()
S3 SysmonLog; C:\Windows\system32\smlogsvc.exe [94208 2006-06-01] (Microsoft Corporation)
S4 TlntSvr; C:\WINDOWS\system32\tlntsvr.exe [75264 2006-06-01] (Microsoft Corporation)
S2 TomTomHOMEService; C:\Programme\TomTom HOME 2\TomTomHOMEService.exe [92008 2009-08-07] (TomTom)
S3 TUWinStylerThemeSvc; C:\Programme\TuneUpUtilities2006\WinStylerThemeSvc.exe [118272 2005-08-24] (TuneUp Software GmbH)
S3 UPS; C:\Windows\System32\ups.exe [18432 2006-06-01] (Microsoft Corporation)
S3 WmdmPmSN; C:\WINDOWS\system32\MsPMSNSv.dll [27136 2006-10-18] (Microsoft Corporation)
S3 Wmi; C:\Windows\System32\advapi32.dll [677888 2009-02-09] (Microsoft Corporation)
S3 WMPNetworkSvc; C:\Programme\Windows Media Player\WMPNetwk.exe [920576 2006-11-03] (Microsoft Corporation)
S2 wuauserv; C:\WINDOWS\system32\wuauserv.dll [6656 2006-06-01] (Microsoft Corporation)
S2 WZCSVC; C:\Windows\System32\wzcsvc.dll [359936 2006-06-01] (Microsoft Corporation)
S3 xmlprov; C:\Windows\System32\xmlprov.dll [129536 2006-06-01] (Microsoft Corporation)
S2 Eventlog;  [x]
S2 NProtectService; C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXE [x]
S2 Speed Disk service; C:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.EXE [x]

==================== Drivers (Whitelisted) ====================

S4 Abiosdsk; No ImagePath
S4 abp480n5; No ImagePath
S4 ACPIEC; C:\Windows\System32\Drivers\ACPIEC.sys [12160 2006-06-01] (Microsoft Corporation)
S4 adpu160m; No ImagePath
S3 aec; C:\Windows\System32\drivers\aec.sys [142464 2006-02-15] (Microsoft Corporation)
S4 Aha154x; No ImagePath
S4 aic78u2; No ImagePath
S4 aic78xx; No ImagePath
S4 AliIde; No ImagePath
S4 amsint; No ImagePath
S3 AnyDVD; C:\Windows\System32\Drivers\AnyDVD.sys [106432 2010-06-09] (SlySoft, Inc.)
S3 Arp1394; C:\Windows\System32\DRIVERS\arp1394.sys [60800 2006-06-01] (Microsoft Corporation)
S4 asc; No ImagePath
S4 asc3350p; No ImagePath
S4 asc3550; No ImagePath
S1 AsIO; C:\Windows\System32\drivers\AsIO.sys [5685 2005-12-22] ()
S2 Aspi32; C:\Windows\System32\drivers\aspi32.sys [16512 2009-08-13] (Adaptec)
S1 asuskbnt; C:\Windows\System32\drivers\atkkbnt.sys [11008 2005-10-18] (ASUSTeK COMPUTER INC.)
S4 Atdisk; No ImagePath
S3 Atmarpc; C:\Windows\System32\DRIVERS\atmarpc.sys [59904 2006-06-01] (Microsoft Corporation)
S3 audstub; C:\Windows\System32\DRIVERS\audstub.sys [3072 2001-08-17] (Microsoft Corporation)
S1 avgio; C:\Programme\Avira\AntiVir Desktop\avgio.sys [11608 2010-06-17] (Avira GmbH)
S2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [61960 2010-12-13] (Avira GmbH)
S1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [135096 2010-12-13] (Avira GmbH)
S3 btaudio; C:\Windows\System32\drivers\btaudio.sys [16640 2004-01-20] (WIDCOMM, Inc.)
S3 BTDriver; C:\Windows\System32\DRIVERS\btport.sys [30235 2004-01-20] (WIDCOMM, Inc.)
S0 BTKRNL; C:\Windows\System32\drivers\btkrnl.sys [1258154 2003-09-17] (WIDCOMM, Inc.)
S2 BTSERIAL; C:\WINDOWS\system32\drivers\btserial.sys [22183 2003-09-15] ()
S2 BTSLBCSP; C:\WINDOWS\system32\drivers\btslbcsp.sys [222876 2003-09-15] (WIDCOMM, Inc.)
S3 btwhid; C:\Windows\System32\DRIVERS\btwhid.sys [43299 2004-01-20] (WIDCOMM, Inc.)
S3 BTWUSB; C:\Windows\System32\Drivers\btwusb.sys [52856 2004-01-20] (WIDCOMM, Inc.)
S2 CAPI20; C:\Windows\System32\Drivers\CAPI20.SYS [966352 2004-04-05] (DeTeWe Berlin)
S4 cbidf2k; C:\Windows\System32\Drivers\cbidf2k.sys [13952 2006-06-01] (Microsoft Corporation)
S4 cd20xrnt; No ImagePath
S1 Cdaudio; C:\Windows\System32\Drivers\Cdaudio.sys [18688 2006-06-01] (Microsoft Corporation)
S1 Changer; No ImagePath
S4 CmdIde; No ImagePath
S4 Cpqarray; No ImagePath
S4 dac2w2k; No ImagePath
S4 dac960nt; No ImagePath
S2 DETEWECP; C:\Windows\System32\drivers\detewecp.sys [37696 2003-03-19] (DeTeWe Berlin)
S4 dmboot; C:\Windows\System32\drivers\dmboot.sys [800384 2006-06-01] (Microsoft Corp., Veritas Software)
S0 dmio; C:\Windows\System32\drivers\dmio.sys [154112 2006-06-01] (Microsoft Corp., Veritas Software)
S0 dmload; C:\Windows\System32\drivers\dmload.sys [5888 2006-06-01] (Microsoft Corp., Veritas Software.)
S3 DMusic; C:\Windows\System32\drivers\DMusic.sys [52864 2004-08-03] (Microsoft Corporation)
S4 dpti2o; No ImagePath
S1 eeCtrl; C:\Programme\Gemeinsame Dateien\Symantec Shared\EENGINE\eeCtrl.sys [371248 2010-05-27] (Symantec Corporation)
S2 EIO; C:\WINDOWS\system32\drivers\EIO.sys [11264 2006-02-08] (ASUSTeK Computer Inc.)
S3 EraserUtilRebootDrv; C:\Programme\Gemeinsame Dateien\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [102448 2010-05-27] (Symantec Corporation)
S1 Fips; C:\Windows\System32\Drivers\Fips.sys [35072 2006-06-01] (Microsoft Corporation)
S0 Ftdisk; C:\Windows\System32\DRIVERS\ftdisk.sys [126336 2006-06-01] (Microsoft Corporation)
S3 Gpc; C:\Windows\System32\DRIVERS\msgpc.sys [35072 2006-06-01] (Microsoft Corporation)
S3 HDAudBus; C:\Windows\System32\DRIVERS\HDAudBus.sys [138752 2005-01-07] (Windows (R) Server 2003 DDK provider)
S4 hpn; No ImagePath
S3 HPZid412; C:\Windows\System32\DRIVERS\HPZid412.sys [51120 2005-03-08] (HP)
S3 HPZipr12; C:\Windows\System32\DRIVERS\HPZipr12.sys [16496 2005-03-08] (HP)
S3 HPZius12; C:\Windows\System32\DRIVERS\HPZius12.sys [21744 2005-03-08] (HP)
S1 i2omgmt; No ImagePath
S4 i2omp; No ImagePath
S1 Imapi; C:\Windows\System32\DRIVERS\imapi.sys [41856 2006-06-01] (Microsoft Corporation)
S4 ini910u; No ImagePath
S3 IntcAzAudAddService; C:\Windows\System32\drivers\RtkHDAud.sys [4262912 2006-04-17] (Realtek Semiconductor Corp.)
S4 IntelIde; No ImagePath
S3 Ip6Fw; C:\Windows\System32\DRIVERS\Ip6Fw.sys [29056 2006-06-01] (Microsoft Corporation)
S3 IpInIp; C:\Windows\System32\DRIVERS\ipinip.sys [20992 2006-06-01] (Microsoft Corporation)
S1 IPSec; C:\Windows\System32\DRIVERS\ipsec.sys [74752 2006-06-01] (Microsoft Corporation)
S3 Iviaspi; C:\Windows\System32\drivers\iviaspi.sys [10368 2005-09-20] (InterVideo, Inc.)
S3 kmixer; C:\Windows\System32\drivers\kmixer.sys [172416 2006-06-14] (Microsoft Corporation)
S1 lbrtfdc; No ImagePath
S1 mnmdd; C:\Windows\System32\Drivers\mnmdd.sys [4224 2006-06-01] (Microsoft Corporation)
S4 mraid35x; No ImagePath
S3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [5810 2004-08-13] ()
S3 NIC1394; C:\Windows\System32\DRIVERS\nic1394.sys [61824 2006-06-01] (Microsoft Corporation)
S3 nmwcd; C:\Windows\System32\drivers\ccdcmb.sys [17664 2009-02-09] (Nokia)
S3 nmwcdc; C:\Windows\System32\drivers\ccdcmbo.sys [22016 2009-02-09] (Nokia)
S3 nmwcdnsu; C:\Windows\System32\drivers\nmwcdnsu.sys [136704 2009-03-19] (Nokia)
S3 nmwcdnsuc; C:\Windows\System32\drivers\nmwcdnsuc.sys [8320 2009-03-19] (Nokia)
S3 NPDriver; C:\WINDOWS\system32\Drivers\NPDRIVER.SYS [81748 2004-08-30] (Symantec Corporation)
S3 nv; C:\Windows\System32\DRIVERS\nv4_mini.sys [6557408 2008-05-16] (NVIDIA Corporation)
S3 NwlnkFlt; C:\Windows\System32\DRIVERS\nwlnkflt.sys [12416 2006-06-01] (Microsoft Corporation)
S3 NwlnkFwd; C:\Windows\System32\DRIVERS\nwlnkfwd.sys [32512 2006-06-01] (Microsoft Corporation)
S1 PCIDump; No ImagePath
S3 PDCOMP; No ImagePath
S3 PDFRAME; No ImagePath
S3 PDRELI; No ImagePath
S3 PDRFRAME; No ImagePath
S4 perc2; No ImagePath
S4 perc2hib; No ImagePath
S1 PQNTDrv; C:\Windows\System32\Drivers\PQNTDrv.sys [4228 2004-05-05] (PowerQuest Corporation)
S3 PSched; C:\Windows\System32\DRIVERS\psched.sys [69120 2006-06-01] (Microsoft Corporation)
S3 Ptilink; C:\Windows\System32\DRIVERS\ptilink.sys [17792 2006-06-01] (Parallel Technologies, Inc.)
S0 PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [44944 2009-04-17] (Sonic Solutions)
S4 ql1080; No ImagePath
S4 Ql10wnt; No ImagePath
S4 ql12160; No ImagePath
S4 ql1240; No ImagePath
S4 ql1280; No ImagePath
S3 Raspti; C:\Windows\System32\DRIVERS\raspti.sys [16512 2006-06-01] (Microsoft Corporation)
S1 redbook; C:\Windows\System32\DRIVERS\redbook.sys [57600 2004-08-04] (Microsoft Corporation)
S3 SDdriver; C:\WINDOWS\system32\Drivers\sddriver.sys [90272 2004-08-30] (Symantec Corporation)
S1 se32; C:\Windows\System32\Drivers\se32.sys [12112 2007-05-03] (EnTech Taiwan)
S3 Secdrv; C:\Windows\System32\DRIVERS\secdrv.sys [27440 2006-06-01] ()
S4 Simbad; No ImagePath
S4 Sparrow; No ImagePath
S3 splitter; C:\Windows\System32\drivers\splitter.sys [6400 2006-06-14] (Microsoft Corporation)
S0 sr; C:\Windows\System32\DRIVERS\sr.sys [73472 2006-06-01] (Microsoft Corporation)
S1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2010-06-17] (Avira GmbH)
S3 swmidi; C:\Windows\System32\drivers\swmidi.sys [54272 2001-08-17] (Microsoft Corporation)
S4 symc810; No ImagePath
S4 symc8xx; No ImagePath
S3 SymEvent; C:\WINDOWS\system32\Drivers\SYMEVENT.SYS [124976 2009-09-25] (Symantec Corporation)
S0 symlcbrd; C:\Windows\System32\drivers\symlcbrd.sys [10344 2009-09-25] (Symantec Corporation)
S4 sym_hi; No ImagePath
S4 sym_u3; No ImagePath
S3 sysaudio; C:\Windows\System32\drivers\sysaudio.sys [60800 2004-08-03] (Microsoft Corporation)
S4 TosIde; No ImagePath
S1 uigxrdr; C:\Windows\System32\DRIVERS\uigxrdr.sys [149120 2008-07-29] (GMX GmbH)
S3 ulisa; C:\Windows\System32\Drivers\ulisa.sys [120732 2003-04-17] (DeTeWe Berlin)
S4 ultra; No ImagePath
S3 Update; C:\Windows\System32\DRIVERS\update.sys [364160 2007-04-23] (Microsoft Corporation)
S3 upperdev; C:\Windows\System32\DRIVERS\usbser_lowerflt.sys [7808 2009-02-09] (Nokia)
S3 UsbserFilt; C:\Windows\System32\DRIVERS\usbser_lowerfltj.sys [7808 2009-02-09] (Nokia)
S0 Vax347b; C:\Windows\System32\DRIVERS\Vax347b.sys [159616 2005-04-25] ( )
S0 Vax347s; C:\Windows\System32\Drivers\Vax347s.sys [5248 2004-04-30] ( )
S4 ViaIde; No ImagePath
S3 WDICA; No ImagePath
S3 wdmaud; C:\Windows\System32\drivers\wdmaud.sys [82944 2006-06-14] (Microsoft Corporation)
S3 yukonwxp; C:\Windows\System32\DRIVERS\yk51x86.sys [232064 2005-05-06] (Marvell)
S4 BthServ; 
S1 WS2IFSL; 

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-01-07 13:42 - 2014-01-07 13:42 - 00000000 ____D C:\FRST

==================== One Month Modified Files and Folders =======

2014-01-07 13:42 - 2014-01-07 13:42 - 00000000 ____D C:\FRST

==================== Known DLLs (Whitelisted) ================

C:\Windows\SysWOW64\advapi32.dll IS MISSING <==== ATTENTION!
C:\Windows\SysWOW64\comdlg32.dll IS MISSING <==== ATTENTION!
C:\Windows\SysWOW64\gdi32.dll IS MISSING <==== ATTENTION!
C:\Windows\SysWOW64\imagehlp.dll IS MISSING <==== ATTENTION!
C:\Windows\SysWOW64\kernel32.dll IS MISSING <==== ATTENTION!
C:\Windows\SysWOW64\lz32.dll IS MISSING <==== ATTENTION!
C:\Windows\SysWOW64\ole32.dll IS MISSING <==== ATTENTION!
C:\Windows\SysWOW64\oleaut32.dll IS MISSING <==== ATTENTION!
[2006-06-01 20:06] - [2006-06-01 20:06] - 0074752 ____A (Microsoft Corporation) C:\Windows\System32\olecli32.dll
C:\Windows\SysWOW64\olecli32.dll IS MISSING <==== ATTENTION!
[2006-06-01 20:06] - [2006-06-01 20:06] - 0037888 ____A (Microsoft Corporation) C:\Windows\System32\olecnv32.dll
C:\Windows\SysWOW64\olecnv32.dll IS MISSING <==== ATTENTION!
[2006-06-01 20:06] - [2006-06-01 20:06] - 0022016 ____A (Microsoft Corporation) C:\Windows\System32\olesvr32.dll
C:\Windows\SysWOW64\olesvr32.dll IS MISSING <==== ATTENTION!
[2006-06-01 20:06] - [2006-06-01 20:06] - 0069120 ____A (Microsoft Corporation) C:\Windows\System32\olethk32.dll
C:\Windows\SysWOW64\olethk32.dll IS MISSING <==== ATTENTION!
C:\Windows\SysWOW64\rpcrt4.dll IS MISSING <==== ATTENTION!
C:\Windows\SysWOW64\shell32.dll IS MISSING <==== ATTENTION!
C:\Windows\SysWOW64\url.dll IS MISSING <==== ATTENTION!
C:\Windows\SysWOW64\urlmon.dll IS MISSING <==== ATTENTION!
C:\Windows\SysWOW64\user32.dll IS MISSING <==== ATTENTION!
C:\Windows\SysWOW64\version.dll IS MISSING <==== ATTENTION!
C:\Windows\SysWOW64\wininet.dll IS MISSING <==== ATTENTION!
C:\Windows\SysWOW64\wldap32.dll IS MISSING <==== ATTENTION!

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe IS MISSING <==== ATTENTION!.
C:\Windows\System32\wininit.exe IS MISSING <==== ATTENTION!.
C:\Windows\SysWOW64\wininit.exe IS MISSING <==== ATTENTION!.
C:\Windows\explorer.exe IS MISSING <==== ATTENTION!.
C:\Windows\SysWOW64\explorer.exe IS MISSING <==== ATTENTION!.
C:\Windows\System32\svchost.exe
[2006-06-01 20:06] - [2006-06-01 20:06] - 0014336 ____A (Microsoft Corporation) 65A819B121EB6FDAB4400EA42BDFFE64

C:\Windows\SysWOW64\svchost.exe IS MISSING <==== ATTENTION!.
C:\Windows\System32\services.exe
[2006-06-01 20:06] - [2009-02-09 11:04] - 0111104 ____A (Microsoft Corporation) 65F6B774819BD727358157CEDEA67B8E

C:\Windows\System32\User32.dll
[2006-06-01 20:06] - [2007-03-08 16:36] - 0579072 ____A (Microsoft Corporation) 492E166CFD26A50FB9160DB536FF7D2B

C:\Windows\SysWOW64\User32.dll IS MISSING <==== ATTENTION!.
C:\Windows\System32\userinit.exe
[2006-06-01 20:06] - [2006-06-01 20:06] - 0025088 ____A (Microsoft Corporation) D1E53DC57143F2584B1DD53B036C0633

C:\Windows\SysWOW64\userinit.exe IS MISSING <==== ATTENTION!.
C:\Windows\System32\rpcss.dll
[2006-06-01 20:06] - [2009-02-09 11:18] - 0399360 ____A (Microsoft Corporation) D45BBCDDC74A1B0259A0C4B00C190D20

C:\Windows\System32\Drivers\volsnap.sys
[2006-06-01 20:06] - [2006-06-01 20:06] - 0053760 ____A (Microsoft Corporation) D6888520FF56D72A50437E371CA25FC9

C:\Windows\system32\codeintegrity\Bootcat.cache IS MISSING <==== ATTENTION!.

==================== EXE ASSOCIATION =====================

HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK

==================== Restore Points  =========================


==================== Memory info =========================== 

Percentage of memory in use: 6%
Total physical RAM: 16365.23 MB
Available physical RAM: 15272.99 MB
Total Pagefile: 16363.38 MB
Available Pagefile: 15279.02 MB
Total Virtual: 8192 MB
Available Virtual: 8191.88 MB

==================== Drives ================================

Drive c: (TB 2) (Fixed) (Total:713.6 GB) (Free:47.48 GB) NTFS
Drive d: (TB 1) (Fixed) (Total:683.65 GB) (Free:61.11 GB) NTFS
Drive f: (320 C) (Fixed) (Total:298.09 GB) (Free:1.14 GB) NTFS
Drive g: () (Fixed) (Total:1862.92 GB) (Free:12.55 GB) NTFS
Drive h: (GRMCHPXFREO_DE_DVD) (CDROM) (Total:2.97 GB) (Free:0 GB) UDF
Drive i: (USB_DISK) (Removable) (Total:3.91 GB) (Free:3.89 GB) FAT32
Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
Drive y: (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 298 GB) (Disk ID: C63AC63A)
Partition 1: (Active) - (Size=298 GB) - (Type=42)
Partition 2: (Not Active) - (Size=2361 KB) - (Type=42)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: CAB6BD6F)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=-198731366400) - (Type=07 NTFS)

========================================================
Disk: 2 (Size: 1397 GB) (Disk ID: FD0BD189)
Partition 1: (Not Active) - (Size=-698732183552) - (Type=OF Extended)

========================================================
Disk: 3 (Size: 4 GB) (Disk ID: B3627CBC)
Partition 1: (Not Active) - (Size=4 GB) - (Type=0B)

==================== End Of Log ============================
         
Ich hoffe alle wichtigen Infos geliefert zu haben!? Vielen Dank vorab für Eure Hilfe!

VG

 

Themen zu Win 7 - Firefox - Bundespolizei "ihr browser hat gesperrt"
association, bonjour, browser, bundespolizei, desktop, explorer, firefox, firefox gesperrt, fontcache, geliefert, gesperrt, home, ihr browser hat gesperrt, nvidia, policyagent, realtek, registry, rundll, services.exe, software, symantec, taskmanager, windows, windows xp, winlogon.exe




Ähnliche Themen: Win 7 - Firefox - Bundespolizei "ihr browser hat gesperrt"


  1. Internetseite öffnete sich "Bundespolizei 100 Euro Strafe innerhalb 48 Stunden sonst Laptop gesperrt "
    Plagegeister aller Art und deren Bekämpfung - 16.02.2015 (5)
  2. Trojaner/Virus, Firefoxfenster lässt sich nicht Schliessen "Ihr Browser hat gesperrt", Bundespolizei, Paysafe Card
    Log-Analyse und Auswertung - 07.01.2014 (10)
  3. "Ihr Computer wurde gesperrt... - Bundespolizei"
    Plagegeister aller Art und deren Bekämpfung - 18.12.2013 (3)
  4. "Bundespolizei" Browser gesperrt
    Log-Analyse und Auswertung - 13.12.2013 (9)
  5. Bundespolizei "Firefox gesperrt" (Windows 7) / Trojaner ja oder nein
    Plagegeister aller Art und deren Bekämpfung - 20.11.2013 (17)
  6. "Firefox gesperrt" Bundespolizei virus - Win7
    Log-Analyse und Auswertung - 17.11.2013 (19)
  7. "monstermarketplace.com" Infektion und ihre Folgen; "Anti-Virus-Blocker"," unsichtbare Toolbars" + "Browser-Hijacker" von selbst installiert
    Log-Analyse und Auswertung - 16.11.2013 (21)
  8. Firefox BKA "Ihr Browser hat gesperrt"
    Plagegeister aller Art und deren Bekämpfung - 13.11.2013 (15)
  9. Win7 - Firefox - "Ihr Browser hat gesperrt" - Bundespolizei
    Plagegeister aller Art und deren Bekämpfung - 11.11.2013 (15)
  10. Bundespolizei-Trojaner "Light" - sperrt nur Browser, aber wie?
    Alles rund um Windows - 22.09.2013 (9)
  11. Bundespolizei "Ihr Computer wurde gesperrt."
    Plagegeister aller Art und deren Bekämpfung - 23.07.2013 (5)
  12. Ihr Computer wurde gesperrt "Bundespolizei"...
    Plagegeister aller Art und deren Bekämpfung - 17.08.2012 (1)
  13. WinXP verseucht: "...ihr Computer wurde gesperrt... Bundespolizei..."
    Plagegeister aller Art und deren Bekämpfung - 05.08.2012 (1)
  14. Laie mit großem Problem - "Bundespolizei - Ihr PC wurde gesperrt"
    Log-Analyse und Auswertung - 30.07.2012 (2)
  15. Brauche Hilfe: Entfernen des Trojaners "BUNDESPOLIZEI - Ihr Computer wurde gesperrt"
    Plagegeister aller Art und deren Bekämpfung - 26.07.2012 (29)
  16. PC durch Trojaner gesperrt "Bundespolizei"
    Plagegeister aller Art und deren Bekämpfung - 12.03.2012 (17)
  17. "Bundespolizei..."auf dem Notebook und der Book ist gesperrt
    Plagegeister aller Art und deren Bekämpfung - 05.08.2011 (19)

Zum Thema Win 7 - Firefox - Bundespolizei "ihr browser hat gesperrt" - Hallöchen, ich habe seit zwei Tagen o. genanntes Problem. Firefox lässt sich nur noch über den Taskmanager schließen. Ansonsten kann ich ganz normal mit dem PC arbeiten. Rechner mit Windows - Win 7 - Firefox - Bundespolizei "ihr browser hat gesperrt"...
Archiv
Du betrachtest: Win 7 - Firefox - Bundespolizei "ihr browser hat gesperrt" auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.