![]() |
|
Log-Analyse und Auswertung: Windows 7 startet extrem langsam und arbeitet dann auch sehr ruckhaftWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #5 |
![]() | ![]() Windows 7 startet extrem langsam und arbeitet dann auch sehr ruckhaft Hi, ja ich habe die Lizenz von meinem Vater. Unten ist die Logfile von Combofix. LG Code:
ATTFilter ComboFix 14-02-05.02 - Lemi 09.02.2014 17:03:04.1.4 - x64 Microsoft Windows 7 Professional 6.1.7601.1.1252.49.1031.18.7768.5404 [GMT 1:00] ausgeführt von:: c:\users\Lemi\Downloads\ComboFix.exe AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B} SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . ADS - Windows: deleted 192 bytes in 1 streams. . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\programdata\Roaming Q:\Autorun.inf . . ((((((((((((((((((((((((((((((((((((((( Treiber/Dienste ))))))))))))))))))))))))))))))))))))))))))))))))) . . -------\Service_vpnagent . . ((((((((((((((((((((((( Dateien erstellt von 2014-01-09 bis 2014-02-09 )))))))))))))))))))))))))))))) . . 2014-02-09 14:06 . 2014-02-09 14:06 -------- d-----w- c:\users\Lemi\AppData\Roaming\AVAST Software 2014-02-09 13:52 . 2014-02-09 13:52 80184 ----a-w- c:\windows\system32\drivers\aswStm.sys 2014-02-07 09:47 . 2013-12-04 03:28 10315576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{5E55C34D-87D1-4F0F-8C83-C465AE2025F6}\mpengine.dll 2014-02-06 19:44 . 2014-02-09 11:54 -------- d-----w- C:\FRST 2014-02-03 15:22 . 2014-02-03 15:22 -------- d-----w- c:\program files\AuthenTec 2014-02-03 15:22 . 2014-02-03 15:22 -------- d-----w- c:\program files\Common Files\SPBA 2014-02-03 15:21 . 2014-02-03 15:21 -------- d-----w- c:\users\Lemi\AppData\Roaming\LSC 2014-01-17 10:37 . 2014-01-17 10:37 -------- d-----w- c:\users\Public\Foxit Software 2014-01-16 17:02 . 2013-12-05 19:41 272496 ----a-w- c:\program files (x86)\Mozilla Firefox\browser\components\browsercomps.dll 2014-01-16 09:12 . 2013-12-18 20:09 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2014-01-15 10:26 . 2013-11-27 01:42 343040 ----a-w- c:\windows\system32\drivers\usbhub.sys 2014-01-15 10:26 . 2013-11-27 01:42 99840 ----a-w- c:\windows\system32\drivers\usbccgp.sys 2014-01-15 10:26 . 2013-11-27 01:42 325120 ----a-w- c:\windows\system32\drivers\usbport.sys 2014-01-15 10:26 . 2013-11-27 01:42 53248 ----a-w- c:\windows\system32\drivers\usbehci.sys 2014-01-15 10:26 . 2013-11-27 01:42 25600 ----a-w- c:\windows\system32\drivers\usbohci.sys 2014-01-15 10:26 . 2013-11-27 01:42 30720 ----a-w- c:\windows\system32\drivers\usbuhci.sys 2014-01-15 10:26 . 2013-11-27 01:42 7808 ----a-w- c:\windows\system32\drivers\usbd.sys 2014-01-15 10:26 . 2013-11-26 11:40 376768 ----a-w- c:\windows\system32\drivers\netio.sys 2014-01-15 10:26 . 2013-11-26 10:32 3156480 ----a-w- c:\windows\system32\win32k.sys 2014-01-13 16:28 . 2014-01-13 16:28 -------- d-----w- c:\program files (x86)\Foxit Software . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2014-02-09 13:52 . 2013-06-13 11:04 421704 ----a-w- c:\windows\system32\drivers\aswSP.sys 2014-02-09 13:52 . 2013-06-13 11:04 1038072 ----a-w- c:\windows\system32\drivers\aswSnx.sys 2014-02-09 13:52 . 2013-06-13 11:04 65776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys 2014-02-09 13:52 . 2013-06-13 11:04 207904 ----a-w- c:\windows\system32\drivers\aswVmm.sys 2014-02-09 13:52 . 2013-06-13 11:04 78648 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys 2014-02-09 13:52 . 2013-06-13 11:04 334136 ----a-w- c:\windows\system32\aswBoot.exe 2014-02-09 13:52 . 2013-06-13 11:04 92544 ----a-w- c:\windows\system32\drivers\aswRdr2.sys 2014-02-09 13:52 . 2013-06-13 11:04 43152 ----a-w- c:\windows\avastSS.scr 2014-02-05 15:54 . 2013-06-13 11:44 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2014-02-05 15:54 . 2013-06-13 11:44 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2014-01-22 14:52 . 2013-06-13 11:04 64288 ----a-w- c:\windows\system32\drivers\aswTdi.sys 2014-01-15 11:54 . 2013-06-14 22:32 86054176 ----a-w- c:\windows\system32\MRT.exe 2013-12-18 05:13 . 2010-11-21 03:27 270496 ------w- c:\windows\system32\MpSigStub.exe 2013-11-26 11:54 . 2013-12-14 10:37 23183360 ----a-w- c:\windows\system32\mshtml.dll 2013-11-26 10:19 . 2013-12-14 10:37 2724864 ----a-w- c:\windows\system32\mshtml.tlb 2013-11-26 10:18 . 2013-12-14 10:37 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll 2013-11-26 09:48 . 2013-12-14 10:37 66048 ----a-w- c:\windows\system32\iesetup.dll 2013-11-26 09:46 . 2013-12-14 10:37 48640 ----a-w- c:\windows\system32\ieetwproxystub.dll 2013-11-26 09:41 . 2013-12-14 10:37 2764288 ----a-w- c:\windows\system32\iertutil.dll 2013-11-26 09:29 . 2013-12-14 10:37 53760 ----a-w- c:\windows\system32\jsproxy.dll 2013-11-26 09:27 . 2013-12-14 10:37 33792 ----a-w- c:\windows\system32\iernonce.dll 2013-11-26 09:23 . 2013-12-14 10:37 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb 2013-11-26 09:21 . 2013-12-14 10:37 574976 ----a-w- c:\windows\system32\ieui.dll 2013-11-26 09:18 . 2013-12-14 10:37 139264 ----a-w- c:\windows\system32\ieUnatt.exe 2013-11-26 09:18 . 2013-12-14 10:37 111616 ----a-w- c:\windows\system32\ieetwcollector.exe 2013-11-26 09:16 . 2013-12-14 10:37 708608 ----a-w- c:\windows\system32\jscript9diag.dll 2013-11-26 08:57 . 2013-12-14 10:37 218624 ----a-w- c:\windows\system32\ie4uinit.exe 2013-11-26 08:35 . 2013-12-14 10:36 5769216 ----a-w- c:\windows\system32\jscript9.dll 2013-11-26 08:28 . 2013-12-14 10:37 553472 ----a-w- c:\windows\SysWow64\jscript9diag.dll 2013-11-26 08:16 . 2013-12-14 10:36 4243968 ----a-w- c:\windows\SysWow64\jscript9.dll 2013-11-26 08:02 . 2013-12-14 10:37 1995264 ----a-w- c:\windows\system32\inetcpl.cpl 2013-11-26 07:48 . 2013-12-14 10:37 12996608 ----a-w- c:\windows\system32\ieframe.dll 2013-11-26 07:32 . 2013-12-14 10:37 1928192 ----a-w- c:\windows\SysWow64\inetcpl.cpl 2013-11-26 07:07 . 2013-12-14 10:37 2334208 ----a-w- c:\windows\system32\wininet.dll 2013-11-26 06:40 . 2013-12-14 10:37 1395200 ----a-w- c:\windows\system32\urlmon.dll 2013-11-26 06:34 . 2013-12-14 10:37 817664 ----a-w- c:\windows\system32\ieapfltr.dll 2013-11-26 06:33 . 2013-12-14 10:37 1820160 ----a-w- c:\windows\SysWow64\wininet.dll 2013-11-23 18:26 . 2013-12-14 00:39 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll 2013-11-23 17:47 . 2013-12-14 00:39 465920 ----a-w- c:\windows\system32\WMPhoto.dll 2013-11-19 16:10 . 2013-11-19 16:10 940032 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe 2013-11-19 16:10 . 2013-11-19 16:10 194048 ----a-w- c:\windows\SysWow64\elshyph.dll 2013-11-19 16:10 . 2013-11-19 16:10 942592 ----a-w- c:\windows\system32\jsIntl.dll 2013-11-19 16:10 . 2013-11-19 16:10 90112 ----a-w- c:\windows\system32\SetIEInstalledDate.exe 2013-11-19 16:10 . 2013-11-19 16:10 86016 ----a-w- c:\windows\SysWow64\iesysprep.dll 2013-11-19 16:10 . 2013-11-19 16:10 86016 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe 2013-11-19 16:10 . 2013-11-19 16:10 84992 ----a-w- c:\windows\system32\mshtmled.dll 2013-11-19 16:10 . 2013-11-19 16:10 83968 ----a-w- c:\windows\system32\MshtmlDac.dll 2013-11-19 16:10 . 2013-11-19 16:10 81408 ----a-w- c:\windows\system32\icardie.dll 2013-11-19 16:10 . 2013-11-19 16:10 774144 ----a-w- c:\windows\system32\jscript.dll 2013-11-19 16:10 . 2013-11-19 16:10 77312 ----a-w- c:\windows\system32\tdc.ocx 2013-11-19 16:10 . 2013-11-19 16:10 74240 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe 2013-11-19 16:10 . 2013-11-19 16:10 71680 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe 2013-11-19 16:10 . 2013-11-19 16:10 645120 ----a-w- c:\windows\SysWow64\jsIntl.dll 2013-11-19 16:10 . 2013-11-19 16:10 626176 ----a-w- c:\windows\system32\msfeeds.dll 2013-11-19 16:10 . 2013-11-19 16:10 62464 ----a-w- c:\windows\SysWow64\tdc.ocx 2013-11-19 16:10 . 2013-11-19 16:10 62464 ----a-w- c:\windows\system32\pngfilt.dll 2013-11-19 16:10 . 2013-11-19 16:10 61952 ----a-w- c:\windows\SysWow64\MshtmlDac.dll 2013-11-19 16:10 . 2013-11-19 16:10 61952 ----a-w- c:\windows\SysWow64\iesetup.dll 2013-11-19 16:10 . 2013-11-19 16:10 616104 ----a-w- c:\windows\system32\ieapfltr.dat 2013-11-19 16:10 . 2013-11-19 16:10 548352 ----a-w- c:\windows\system32\vbscript.dll 2013-11-19 16:10 . 2013-11-19 16:10 52224 ----a-w- c:\windows\system32\msfeedsbs.dll 2013-11-19 16:10 . 2013-11-19 16:10 51200 ----a-w- c:\windows\SysWow64\ieetwproxystub.dll 2013-11-19 16:10 . 2013-11-19 16:10 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll 2013-11-19 16:10 . 2013-11-19 16:10 48640 ----a-w- c:\windows\system32\mshtmler.dll 2013-11-19 16:10 . 2013-11-19 16:10 48128 ----a-w- c:\windows\system32\imgutil.dll 2013-11-19 16:10 . 2013-11-19 16:10 454656 ----a-w- c:\windows\SysWow64\vbscript.dll 2013-11-19 16:10 . 2013-11-19 16:10 453120 ----a-w- c:\windows\system32\dxtmsft.dll 2013-11-19 16:10 . 2013-11-19 16:10 413696 ----a-w- c:\windows\system32\html.iec 2013-11-19 16:10 . 2013-11-19 16:10 40448 ----a-w- c:\windows\system32\JavaScriptCollectionAgent.dll 2013-11-19 16:10 . 2013-11-19 16:10 36352 ----a-w- c:\windows\SysWow64\imgutil.dll 2013-11-19 16:10 . 2013-11-19 16:10 34816 ----a-w- c:\windows\SysWow64\JavaScriptCollectionAgent.dll 2013-11-19 16:10 . 2013-11-19 16:10 337408 ----a-w- c:\windows\SysWow64\html.iec 2013-11-19 16:10 . 2013-11-19 16:10 30208 ----a-w- c:\windows\system32\licmgr10.dll 2013-11-19 16:10 . 2013-11-19 16:10 296960 ----a-w- c:\windows\system32\dxtrans.dll 2013-11-19 16:10 . 2013-11-19 16:10 263376 ----a-w- c:\windows\system32\iedkcs32.dll 2013-11-19 16:10 . 2013-11-19 16:10 247808 ----a-w- c:\windows\system32\msls31.dll 2013-11-19 16:10 . 2013-11-19 16:10 24576 ----a-w- c:\windows\SysWow64\licmgr10.dll 2013-11-19 16:10 . 2013-11-19 16:10 243200 ----a-w- c:\windows\system32\webcheck.dll 2013-11-19 16:10 . 2013-11-19 16:10 235520 ----a-w- c:\windows\system32\url.dll 2013-11-19 16:10 . 2013-11-19 16:10 235008 ----a-w- c:\windows\system32\elshyph.dll 2013-11-19 16:10 . 2013-11-19 16:10 195584 ----a-w- c:\windows\system32\msrating.dll 2013-11-19 16:10 . 2013-11-19 16:10 182272 ----a-w- c:\windows\SysWow64\msls31.dll 2013-11-19 16:10 . 2013-11-19 16:10 167424 ----a-w- c:\windows\system32\iexpress.exe 2013-11-19 16:10 . 2013-11-19 16:10 151552 ----a-w- c:\windows\SysWow64\iexpress.exe 2013-11-19 16:10 . 2013-11-19 16:10 147968 ----a-w- c:\windows\system32\occache.dll 2013-11-19 16:10 . 2013-11-19 16:10 143872 ----a-w- c:\windows\system32\wextract.exe 2013-11-19 16:10 . 2013-11-19 16:10 139264 ----a-w- c:\windows\SysWow64\wextract.exe 2013-11-19 16:10 . 2013-11-19 16:10 13824 ----a-w- c:\windows\system32\mshta.exe 2013-11-19 16:10 . 2013-11-19 16:10 135680 ----a-w- c:\windows\system32\iepeers.dll 2013-11-19 16:10 . 2013-11-19 16:10 13312 ----a-w- c:\windows\SysWow64\mshta.exe 2013-11-19 16:10 . 2013-11-19 16:10 13312 ----a-w- c:\windows\system32\msfeedssync.exe 2013-11-19 16:10 . 2013-11-19 16:10 131072 ----a-w- c:\windows\system32\IEAdvpack.dll 2013-11-19 16:10 . 2013-11-19 16:10 1228800 ----a-w- c:\windows\system32\mshtmlmedia.dll 2013-11-19 16:10 . 2013-11-19 16:10 112128 ----a-w- c:\windows\SysWow64\ieUnatt.exe 2013-11-19 16:10 . 2013-11-19 16:10 111616 ----a-w- c:\windows\SysWow64\IEAdvpack.dll 2013-11-19 16:10 . 2013-11-19 16:10 105984 ----a-w- c:\windows\system32\iesysprep.dll 2013-11-19 16:10 . 2013-11-19 16:10 1051136 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll 2013-11-19 16:10 . 2013-11-19 16:10 101376 ----a-w- c:\windows\system32\inseng.dll 2013-11-12 02:23 . 2013-12-14 00:39 2048 ----a-w- c:\windows\system32\tzres.dll 2013-11-12 02:07 . 2013-12-14 00:39 2048 ----a-w- c:\windows\SysWow64\tzres.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1] @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}" [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}] 2014-01-08 13:38 222832 ----a-w- c:\users\Lemi\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\SkyDriveShell.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2] @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}" [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}] 2014-01-08 13:38 222832 ----a-w- c:\users\Lemi\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\SkyDriveShell.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3] @="{BBACC218-34EA-4666-9D7A-C78F2274A524}" [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}] 2014-01-08 13:38 222832 ----a-w- c:\users\Lemi\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\SkyDriveShell.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-10 23:54 131248 ----a-w- c:\users\Lemi\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-10 23:54 131248 ----a-w- c:\users\Lemi\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-10 23:54 131248 ----a-w- c:\users\Lemi\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "RotateImage"="c:\program files (x86)\Integrated Camera Driver\X64\RCIMGDIR.exe" [2008-10-30 55808] "PWMTRV"="c:\progra~2\ThinkPad\UTILIT~1\PWMTR64V.DLL" [2012-05-15 5941344] "USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2012-02-27 291608] "Dolby Advanced Audio v2"="c:\program files (x86)\Dolby Advanced Audio v2\pcee4.exe" [2011-06-01 506712] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904] "Lenovo Registration"="c:\program files (x86)\Lenovo Registration\LenovoReg.exe" [2011-06-01 4315872] "Fastboot"="c:\program files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe" [2012-01-17 1091376] "BCSSync"="c:\program files (x86)\Microsoft Office\Office14\BCSSync.exe" [2012-11-05 89184] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-07-02 254336] "AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-02-09 3767096] . c:\users\Lemi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ Dropbox.lnk - c:\users\Lemi\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2014-1-3 30714328] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ Bluetooth.lnk - c:\program files\ThinkPad\Bluetooth Software\BTTray.exe [2012-4-1 1390368] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Notification Packages REG_MULTI_SZ scecli c:\program files\ThinkPad\Bluetooth Software\BtwProximityCP.dll c:\program files\ThinkVantage Fingerprint Software\psqlpwd.dll . R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 HyperW7Svc;HyperW7 Service;c:\program files\Lenovo\RapidBoot\HyperW7Svc64.exe;c:\program files\Lenovo\RapidBoot\HyperW7Svc64.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R2 smihlp2;SMI Helper Driver (smihlp2);c:\program files\ThinkVantage Fingerprint Software\smihlp.sys;c:\program files\ThinkVantage Fingerprint Software\smihlp.sys [x] R3 acsock;acsock;c:\windows\system32\DRIVERS\acsock64.sys;c:\windows\SYSNATIVE\DRIVERS\acsock64.sys [x] R3 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x] R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys;c:\windows\SYSNATIVE\drivers\dmvsc.sys [x] R3 DozeSvc;Lenovo Doze Mode Service;c:\program files (x86)\ThinkPad\Utilities\DZSVC64.EXE;c:\program files (x86)\ThinkPad\Utilities\DZSVC64.EXE [x] R3 Fastboot;Fastboot;c:\windows\system32\DRIVERS\Fastboot.sys;c:\windows\SYSNATIVE\DRIVERS\Fastboot.sys [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x] R3 intaud_WaveExtensible;Intel WiDi Audio Device;c:\windows\system32\drivers\intelaud.sys;c:\windows\SYSNATIVE\drivers\intelaud.sys [x] R3 LSCWinService;LSCWinService;c:\program files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe;c:\program files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [x] R3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;c:\program files\Intel\WiFi\bin\PanDhcpDns.exe;c:\program files\Intel\WiFi\bin\PanDhcpDns.exe [x] R3 Power Manager DBC Service;Power Manager DBC Service;c:\program files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE;c:\program files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE [x] R3 PwmEWSvc;Cisco EnergyWise Enabler;c:\program files (x86)\ThinkPad\Utilities\PWMEWSVC.EXE;c:\program files (x86)\ThinkPad\Utilities\PWMEWSVC.EXE [x] R3 RSP2STOR;Realtek PCIE CardReader Driver - P2;c:\windows\system32\DRIVERS\RtsP2Stor.sys;c:\windows\SYSNATIVE\DRIVERS\RtsP2Stor.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x] R3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x] S0 aswRvrt;avast! Revert; [x] S0 aswVmm;avast! VM Monitor; [x] S0 DzHDD64;DzHDD64;c:\windows\System32\DRIVERS\DzHDD64.sys;c:\windows\SYSNATIVE\DRIVERS\DzHDD64.sys [x] S0 iusb3hcs;Intel(R) USB 3.0 Hostcontroller-Switchtreiber;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x] S0 TPDIGIMN;TPDIGIMN;c:\windows\System32\DRIVERS\ApsHM64.sys;c:\windows\SYSNATIVE\DRIVERS\ApsHM64.sys [x] S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x] S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x] S1 PHCORE;PHCORE;c:\program files\Lenovo\RapidBoot\PHCORE64.SYS;c:\program files\Lenovo\RapidBoot\PHCORE64.SYS [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x] S2 FastbootService;FastbootService;c:\program files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe;c:\program files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe [x] S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x] S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x] S2 LENOVO.CAMMUTE;Lenovo Camera Mute;c:\program files\Lenovo\Communications Utility\CAMMUTE.exe;c:\program files\Lenovo\Communications Utility\CAMMUTE.exe [x] S2 LENOVO.MICMUTE;Lenovo Microphone Mute;c:\program files\LENOVO\HOTKEY\MICMUTE.exe;c:\program files\LENOVO\HOTKEY\MICMUTE.exe [x] S2 LENOVO.TPKNRSVC;Lenovo Keyboard Noise Reduction;c:\program files\Lenovo\Communications Utility\TPKNRSVC.exe;c:\program files\Lenovo\Communications Utility\TPKNRSVC.exe [x] S2 LENOVO.TVTVCAM;ThinkVantage Virtual Camera Controller;c:\program files\Lenovo\Communications Utility\vcamsvc.exe;c:\program files\Lenovo\Communications Utility\vcamsvc.exe [x] S2 Lenovo.VIRTSCRLSVC;Lenovo Auto Scroll;c:\program files\LENOVO\VIRTSCRL\lvvsst.exe;c:\program files\LENOVO\VIRTSCRL\lvvsst.exe [x] S2 NitroDriverReadSpool8;NitroPDFDriverCreatorReadSpool8;c:\program files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe;c:\program files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe [x] S2 nlsX86cc;Nalpeiron Licensing Service;c:\windows\SysWOW64\NLSSRV32.EXE;c:\windows\SysWOW64\NLSSRV32.EXE [x] S2 TPHKLOAD;Lenovo Hotkey Client Loader;c:\program files\LENOVO\HOTKEY\TPHKLOAD.exe;c:\program files\LENOVO\HOTKEY\TPHKLOAD.exe [x] S2 TPHKSVC;Anzeige am Bildschirm;c:\program files\LENOVO\HOTKEY\TPHKSVC.exe;c:\program files\LENOVO\HOTKEY\TPHKSVC.exe [x] S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x] S2 VIPAppService;VIPAppService;c:\program files (x86)\Symantec\VIP Access Client\VIPAppService.exe;c:\program files (x86)\Symantec\VIP Access Client\VIPAppService.exe [x] S2 ZeroConfigService;Intel(R) PROSet/Wireless Zero Configuration Service;c:\program files\Intel\WiFi\bin\ZeroConfigService.exe;c:\program files\Intel\WiFi\bin\ZeroConfigService.exe [x] S3 5U877;5U877;c:\windows\system32\DRIVERS\5U877.sys;c:\windows\SYSNATIVE\DRIVERS\5U877.sys [x] S3 bcbtums;Bluetooth RAM Firmware Download USB Filter;c:\windows\system32\drivers\bcbtums.sys;c:\windows\SYSNATIVE\drivers\bcbtums.sys [x] S3 btwampfl;btwampfl Bluetooth filter driver;c:\windows\system32\drivers\btwampfl.sys;c:\windows\SYSNATIVE\drivers\btwampfl.sys [x] S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys;c:\windows\SYSNATIVE\DRIVERS\btwl2cap.sys [x] S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys;c:\windows\SYSNATIVE\DRIVERS\ETD.sys [x] S3 IntcDAud;Intel(R) Display-Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x] S3 iusb3hub;Intel(R) USB 3.0-Hubtreiber;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x] S3 iusb3xhc;Intel(R) USB 3.0 eXtensible-Hostcontrollertreiber;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x] S3 iwdbus;IWD Bus Enumerator;c:\windows\system32\DRIVERS\iwdbus.sys;c:\windows\SYSNATIVE\DRIVERS\iwdbus.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] S3 TVTI2C;Lenovo SM bus driver;c:\windows\system32\DRIVERS\Tvti2c.sys;c:\windows\SYSNATIVE\DRIVERS\Tvti2c.sys [x] S3 tvtvcamd;ThinkVantage Virtual Camera;c:\windows\system32\DRIVERS\tvtvcamd.sys;c:\windows\SYSNATIVE\DRIVERS\tvtvcamd.sys [x] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - WS2IFSL . Inhalt des "geplante Tasks" Ordners . 2014-02-09 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-13 15:54] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2014-02-09 13:52 287280 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\SugarSyncBackedUp] @="{0C4A258A-3F3B-4FFF-80A7-9B3BEC139472}" [HKEY_CLASSES_ROOT\CLSID\{0C4A258A-3F3B-4FFF-80A7-9B3BEC139472}] 2012-05-14 17:39 463952 ----a-w- c:\program files (x86)\SugarSync\SugarSyncShellExt_x64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\SugarSyncPending] @="{62CCD8E3-9C21-41E1-B55E-1E26DFC68511}" [HKEY_CLASSES_ROOT\CLSID\{62CCD8E3-9C21-41E1-B55E-1E26DFC68511}] 2012-05-14 17:39 463952 ----a-w- c:\program files (x86)\SugarSync\SugarSyncShellExt_x64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\SugarSyncRoot] @="{A759AFF6-5851-457D-A540-F4ECED148351}" [HKEY_CLASSES_ROOT\CLSID\{A759AFF6-5851-457D-A540-F4ECED148351}] 2012-05-14 17:39 463952 ----a-w- c:\program files (x86)\SugarSync\SugarSyncShellExt_x64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\SugarSyncShared] @="{1574C9EF-7D58-488F-B358-8B78C1538F51}" [HKEY_CLASSES_ROOT\CLSID\{1574C9EF-7D58-488F-B358-8B78C1538F51}] 2012-05-14 17:39 463952 ----a-w- c:\program files (x86)\SugarSync\SugarSyncShellExt_x64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2012-03-27 12459112] "RtHDVBg_Dolby"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2012-03-09 1158248] "IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-03-28 170264] "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-03-28 398616] "Persistence"="c:\windows\system32\igfxpers.exe" [2012-03-28 439064] "TpShocks"="TpShocks.exe" [2012-02-24 382528] "LENOVO.TPKNRRES"="c:\program files\Lenovo\Communications Utility\TPKNRRES.exe" [2012-06-01 290160] . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://www.google.de/ mLocal Page = c:\windows\SysWOW64\blank.htm IE: An OneNote s&enden - c:\progra~2\MICROS~3\Office14\ONBttnIE.dll/105 IE: Nach Microsoft E&xcel exportieren - c:\progra~2\MICROS~3\Office14\EXCEL.EXE/3000 TCP: DhcpNameServer = 192.168.0.1 FF - ProfilePath - c:\users\Lemi\AppData\Roaming\Mozilla\Firefox\Profiles\s08fsgpa.default\ FF - prefs.js: browser.search.selectedEngine - Google FF - prefs.js: browser.startup.homepage - hxxp://www.google.de FF - prefs.js: keyword.URL - hxxp://www.google.com/search?ie=UTF-8&oe=utf-8&q= . - - - - Entfernte verwaiste Registrierungseinträge - - - - . Toolbar-Locked - (no file) Toolbar-Locked - (no file) ShellIconOverlayIdentifiers-{F241C880-6982-4CE5-8CF7-7085BA96DA5A} - (no file) ShellIconOverlayIdentifiers-{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} - (no file) ShellIconOverlayIdentifiers-{BBACC218-34EA-4666-9D7A-C78F2274A524} - (no file) ShellIconOverlayIdentifiers-{FB314ED9-A251-47B7-93E1-CDD82E34AF8B} - (no file) ShellIconOverlayIdentifiers-{FB314EDA-A251-47B7-93E1-CDD82E34AF8B} - (no file) ShellIconOverlayIdentifiers-{FB314EDB-A251-47B7-93E1-CDD82E34AF8B} - (no file) ShellIconOverlayIdentifiers-{FB314EDC-A251-47B7-93E1-CDD82E34AF8B} - (no file) HKLM-Run-ETDCtrl - c:\program files (x86)\Elantech\ETDCtrl.exe . . . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Fastboot] "ImagePath"=multi:"System32\DRIVERS\Fastboot.sys\00" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Fastboot] "ImagePath"=multi:"System32\DRIVERS\Fastboot.sys\00" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\S-1-5-21-537655518-1101721113-3190381077-1000_Classes\CLSID] @DACL=(02 0000) . [HKEY_USERS\S-1-5-21-537655518-1101721113-3190381077-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}] @DACL=(02 0000) @="Dropbox Autoplay COM Server" . [HKEY_USERS\S-1-5-21-537655518-1101721113-3190381077-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}] @DACL=(02 0000) @="SyncingOverlayHandler Class" . [HKEY_USERS\S-1-5-21-537655518-1101721113-3190381077-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}] @DACL=(02 0000) @="ErrorOverlayHandler Class" . [HKEY_USERS\S-1-5-21-537655518-1101721113-3190381077-1000_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}] @DACL=(02 0000) @="SkyDriveEx" . [HKEY_USERS\S-1-5-21-537655518-1101721113-3190381077-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}] @DACL=(02 0000) @="UpToDateOverlayHandler Class" . [HKEY_USERS\S-1-5-21-537655518-1101721113-3190381077-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}] @DACL=(02 0000) @="SyncFileInformationProvider Class" . [HKEY_USERS\S-1-5-21-537655518-1101721113-3190381077-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] @DACL=(02 0000) @="DropboxExt" . [HKEY_USERS\S-1-5-21-537655518-1101721113-3190381077-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] @DACL=(02 0000) @="DropboxExt" . [HKEY_USERS\S-1-5-21-537655518-1101721113-3190381077-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] @DACL=(02 0000) @="DropboxExt" . [HKEY_USERS\S-1-5-21-537655518-1101721113-3190381077-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}] @DACL=(02 0000) @="DropboxExt" . [HKEY_USERS\S-1-5-21-537655518-1101721113-3190381077-1000_Classes\CLSID\{FD4DF9E0-E3DE-11CE-BFCF-ABCD1DE12345}] @DACL=(02 0000) @="DVD-RW-Laufwerk (D:)(ausgeschaltet)" "InfoTip"="@\"c:\\PROGRA~2\\ThinkPad\\UTILIT~1\\GR\\PWMRT64V.DLL\",-951" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10c.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10c.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}] @Denied: (A 2) (Everyone) @="IFlashBroker3" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] @="Microsoft Windows Media Player" "Version"="12,0,7601,18150" "IsInstalled"=dword:00000000 "ComponentID"="WMPACCESS" "LocalizedName"=expand:"@%SystemRoot%\\system32\\wmploc.dll,-128" "StubPath"=expand:"%SystemRoot%\\system32\\unregmp2.exe /ShowWMP" "DontAsk"=dword:00000002 "Locale"="*" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components\{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] @="Microsoft Windows Media Player 12.0" "IsInstalled"=dword:00000001 "Version"="12,0,7601,18150" "DontAsk"=dword:00000002 "Locale"="EN" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components\{25FFAAD0-F4A3-4164-95FF-4461E9F35D51}] @=".NET Framework" "Version"="2,0,50727,1" "ComponentID"=".NETFramework" "Locale"="" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components\{2D46B6DC-2207-486B-B523-A557E6D54B47}] @="Internet Explorer" "ComponentID"="ClearIconCache" "IsInstalled"=dword:00000001 "Locale"="*" "StubPath"="c:\\Windows\\system32\\cmd.exe /D /C start c:\\Windows\\system32\\ie4uinit.exe -ClearIconCache" "Version"="11,0,9600,16428" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components\{3af36230-a269-11d1-b5bf-0000f8051515}] @="Offline Browsing Pack" "IsInstalled"=dword:00000001 "Version"="11,0,9600,16428" "ComponentID"="MobilePk" "Locale"="*" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components\{45ea75a0-a269-11d1-b5bf-0000f8051515}] @="Internet Explorer Help" "IsInstalled"=dword:00000001 "Version"="11,0,9600,16428" "ComponentID"="HelpCont" "Locale"="*" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components\{5fd399c0-a70a-11d1-9948-00c04f98bbc9}] @="Internet Explorer Setup Tools" "IsInstalled"=dword:00000001 "Version"="11,0,9600,16428" "ComponentID"="GenSetup" "Locale"="*" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}] @="Microsoft Windows Media Player" "IsInstalled"=dword:00000001 "Version"="12,0,7601,18150" "ComponentID"="Microsoft Windows Media Player" "LocalizedName"=expand:"@%SystemRoot%\\system32\\wmploc.dll,-128" "StubPath"=expand:"%SystemRoot%\\system32\\unregmp2.exe /FirstLogon /Shortcuts /RegBrowsers /ResetMUI" "DontAsk"=dword:00000002 "Locale"="EN" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components\{6fab99d0-bab8-11d1-994a-00c04f98bbc9}] @="MSN Site Access" "IsInstalled"=dword:00000001 "Version"="4,9,9,2" "ComponentID"="MSN_Auth" "Locale"="*" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}] "IsInstalled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components\{9381D8F2-0288-11D0-9501-00AA00B911A5}] @="Dynamic HTML Data Binding" "IsInstalled"=dword:00000001 "Version"="11,0,9600,16428" "ComponentID"="Tridata" "Locale"="*" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components\{C9E9A340-D1F1-11D0-821E-444553540600}] @="Internet Explorer Core Fonts" "IsInstalled"=dword:00000001 "Version"="11,0,9600,0" "ComponentID"="Fontcore" "Locale"="*" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components\{D27CDB6E-AE6D-11CF-96B8-444553540000}] @="Adobe Flash Player" "ComponentID"="Flash" "IsInstalled"=hex:01,00,00,00 "Version"="10.0.32.18" "Locale"="EN" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components\{de5aed00-a4bf-11d1-9948-00c04f98bbc9}] @="HTML Help" "IsInstalled"=dword:00000001 "Version"="6,3,9600,16428" "ComponentID"="HTMLHelp" "Locale"="*" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}] "Locale"="" "Version"="4,0,30319,0" "ComponentID"=".NETFramework" @=".NET Framework" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}] @Denied: (A) (Everyone) "Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3] @Denied: (A) (Everyone) . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0] "Key"="ActionsPane3" "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Weitere laufende Prozesse ------------------------ . c:\program files\AVAST Software\Avast\AvastSvc.exe c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe c:\program files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe c:\progra~1\Lenovo\HOTKEY\TPONSCR.EXE c:\program files (x86)\Lenovo\message center plus\mcplaunch.exe c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe c:\program files (x86)\Common Files\Protexis\License Service\PsiService_2.exe . ************************************************************************** . Zeit der Fertigstellung: 2014-02-09 17:28:53 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2014-02-09 16:28 . Vor Suchlauf: 13 Verzeichnis(se), 404.984.762.368 Bytes frei Nach Suchlauf: 19 Verzeichnis(se), 404.691.824.640 Bytes frei . - - End Of File - - 257AA8423AA00E5987F8482623035C83 |
Themen zu Windows 7 startet extrem langsam und arbeitet dann auch sehr ruckhaft |
4d36e972-e325-11ce-bfc1-08002be10318, antivirus, bildschirm, browser, cpu, desktop, error, excel, feedback, festplatte, firefox, flash player, homepage, langsam, logfile, mozilla, newtab, pwmtr64v.dll, realtek, registry, rundll, scan, security, sehr langsam, software, svchost.exe, symantec, system, usb, windows, windows 7 |