Hallo jetzt die Datei.
Code:
Alles auswählen Aufklappen ATTFilter
ComboFix 14-03-05.01 - xsterni 06.03.2014 15:10:58.1.4 - x86
Microsoft Windows 7 Professional 6.1.7601.1.1252.49.1031.18.3327.1932 [GMT 1:00]
ausgeführt von:: c:\users\xsterni\Desktop\ComboFix.exe
AV: Kaspersky Internet Security *Enabled/Updated* {179979E8-273D-D14E-0543-2861940E4886}
FW: Kaspersky Internet Security *Enabled* {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD}
SP: Kaspersky Internet Security *Enabled/Updated* {ACF8980C-0107-DEC0-3FF3-1313EF89023B}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((( Weitere Löschungen ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\install.exe
c:\programdata\SearchNewTab
c:\programdata\SearchNewTab\kMVjh.dat
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Extensions\lclemeknkkfldgcomkdemnhobjbhbfgj
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Extensions\lclemeknkkfldgcomkdemnhobjbhbfgj\1.0\background.html
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Extensions\lclemeknkkfldgcomkdemnhobjbhbfgj\1.0\content.js
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Extensions\lclemeknkkfldgcomkdemnhobjbhbfgj\1.0\i_fy7Tc.js
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Extensions\lclemeknkkfldgcomkdemnhobjbhbfgj\1.0\lsdb.js
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Extensions\lclemeknkkfldgcomkdemnhobjbhbfgj\1.0\manifest.json
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Extensions\lclemeknkkfldgcomkdemnhobjbhbfgj\1.0\newtab.html
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Extensions\lclemeknkkfldgcomkdemnhobjbhbfgj\1.0\sqlite.js
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\lclemeknkkfldgcomkdemnhobjbhbfgj
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\lclemeknkkfldgcomkdemnhobjbhbfgj\000016.ldb
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\lclemeknkkfldgcomkdemnhobjbhbfgj\000018.ldb
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\lclemeknkkfldgcomkdemnhobjbhbfgj\000021.ldb
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\lclemeknkkfldgcomkdemnhobjbhbfgj\000022.log
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\lclemeknkkfldgcomkdemnhobjbhbfgj\CURRENT
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\lclemeknkkfldgcomkdemnhobjbhbfgj\LOCK
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\lclemeknkkfldgcomkdemnhobjbhbfgj\LOG
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\lclemeknkkfldgcomkdemnhobjbhbfgj\LOG.old
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\lclemeknkkfldgcomkdemnhobjbhbfgj\MANIFEST-000020
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_lclemeknkkfldgcomkdemnhobjbhbfgj_0.localstorage
c:\users\xsterni\AppData\Local\Google\Chrome\User Data\Default\Preferences
.
.
((((((((((((((((((((((( Dateien erstellt von 2014-02-06 bis 2014-03-06 ))))))))))))))))))))))))))))))
.
.
2014-03-06 14:20 . 2014-03-06 14:20 -------- d-----w- c:\users\NeroMediaHomeUser.4\AppData\Local\temp
2014-03-06 14:20 . 2014-03-06 14:20 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-03-05 14:49 . 2014-03-05 14:59 -------- d-----w- C:\FRST
2014-03-04 23:21 . 2014-02-06 07:08 7947048 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{ACBE7A27-992F-423B-8A22-1262DFAF2A8A}\mpengine.dll
2014-02-26 00:07 . 2014-02-26 00:07 -------- d-----w- c:\users\xsterni\AppData\Local\Blizzard
2014-02-24 07:54 . 2014-02-24 07:54 40776 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2014-02-23 20:17 . 2014-02-23 20:18 -------- d-----w- c:\users\xsterni\AppData\Local\ElevatedDiagnostics
2014-02-23 12:37 . 2014-02-23 12:37 -------- d-----w- c:\programdata\Cateia Games
2014-02-22 01:29 . 2014-02-22 01:29 -------- d-----w- c:\program files\HD Tune
2014-02-22 01:14 . 2014-02-22 01:14 -------- d-----w- c:\programdata\Auslogics
2014-02-22 01:14 . 2014-02-22 01:14 -------- d-----w- c:\program files\Auslogics
2014-02-21 18:50 . 2014-02-21 18:50 -------- d-----w- c:\users\xsterni\AppData\Roaming\Malwarebytes
2014-02-21 18:49 . 2014-02-21 18:49 -------- d-----w- c:\programdata\Malwarebytes
2014-02-21 18:49 . 2014-02-21 18:50 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2014-02-21 18:49 . 2013-04-04 13:50 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2014-02-21 18:43 . 2014-02-21 18:43 -------- d-----w- c:\program files\Enigma Software Group
2014-02-21 18:42 . 2014-02-21 18:48 -------- d-----w- c:\windows\455F074C814E4520B69B5584BD90400C.TMP
2014-02-21 18:42 . 2014-02-21 18:42 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2014-02-21 15:27 . 2014-02-21 15:27 -------- d-----w- c:\users\xsterni\AppData\Roaming\Fighters
2014-02-21 15:26 . 2014-02-21 15:27 -------- d-----w- c:\programdata\Fighters
2014-02-20 19:43 . 2014-02-26 00:07 -------- d-----w- c:\program files\Hearthstone
2014-02-20 19:41 . 2014-03-06 14:04 -------- d-----w- c:\users\xsterni\AppData\Local\Battle.net
2014-02-20 19:41 . 2014-02-20 19:48 -------- d-----w- c:\users\xsterni\AppData\Roaming\Battle.net
2014-02-20 19:41 . 2014-03-05 03:27 -------- d-----w- c:\program files\Battle.net
2014-02-20 19:41 . 2014-02-20 19:43 -------- d-----w- c:\program files\Common Files\Blizzard Entertainment
2014-02-20 08:20 . 2014-02-20 08:20 -------- d-----w- c:\program files\AGEIA Technologies
2014-02-20 08:19 . 2014-02-08 16:18 599840 ----a-w- c:\windows\system32\nvStreaming.exe
2014-02-20 07:30 . 2014-02-20 07:30 -------- d-----w- c:\users\xsterni\AppData\Roaming\DeepBurner
2014-02-20 07:30 . 2014-02-20 07:30 -------- d-----w- c:\program files\Astonsoft
2014-02-19 08:48 . 2014-02-19 08:48 -------- d-----w- c:\program files\CCleaner
2014-02-14 21:49 . 2014-02-14 21:49 -------- d-----w- c:\windows\ELAMBKUP
2014-02-14 21:49 . 2014-02-14 21:49 -------- d-----w- c:\program files\Kaspersky Lab
2014-02-14 21:49 . 2014-02-18 22:07 94304 ----a-w- c:\windows\system32\drivers\klflt.sys
2014-02-12 23:11 . 2013-12-21 08:56 454656 ----a-w- c:\windows\system32\vbscript.dll
2014-02-10 21:13 . 2014-02-10 21:13 -------- d-----w- c:\users\xsterni\AppData\Roaming\AlawarEntertainment
.
.
.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-02-21 08:39 . 2013-08-07 21:42 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-02-21 08:39 . 2013-08-07 21:42 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2014-02-18 22:07 . 2013-10-17 14:47 25184 ----a-w- c:\windows\system32\drivers\klkbdflt.sys
2014-02-18 22:07 . 2013-10-17 14:47 135776 ----a-w- c:\windows\system32\drivers\kl1.sys
2014-02-18 22:07 . 2013-06-06 16:38 144992 ----a-w- c:\windows\system32\drivers\kneps.sys
2014-02-08 18:27 . 2013-08-07 18:12 15740232 ----a-w- c:\windows\system32\nvwgf2um.dll
2014-02-08 18:27 . 2013-08-07 17:47 53024 ----a-w- c:\windows\system32\OpenCL.dll
2014-02-08 18:27 . 2013-02-25 22:22 832424 ----a-w- c:\windows\system32\nvumdshim.dll
2014-02-08 18:27 . 2013-02-25 22:22 2713728 ----a-w- c:\windows\system32\nvapi.dll
2014-02-08 18:27 . 2013-02-25 22:22 14669032 ----a-w- c:\windows\system32\nvd3dum.dll
2014-02-08 17:11 . 2013-08-07 17:48 4348704 ----a-w- c:\windows\system32\nvcpl.dll
2014-02-08 17:11 . 2013-08-07 17:48 3045664 ----a-w- c:\windows\system32\nvsvc.dll
2014-02-08 17:11 . 2013-08-07 17:48 664864 ----a-w- c:\windows\system32\nvvsvc.exe
2014-02-08 17:11 . 2013-08-07 17:48 62752 ----a-w- c:\windows\system32\nvshext.dll
2014-02-08 17:11 . 2013-08-07 17:48 376096 ----a-w- c:\windows\system32\nvmctray.dll
2014-02-08 17:11 . 2013-08-07 17:48 2555168 ----a-w- c:\windows\system32\nvsvcr.dll
2014-01-27 08:58 . 2013-08-07 17:26 231584 ------w- c:\windows\system32\MpSigStub.exe
2014-01-22 07:52 . 2014-01-22 07:52 581192 ----a-w- c:\windows\system32\WinUSBCoInstaller.dll
2014-01-22 07:52 . 2014-01-22 07:52 1112288 ----a-w- c:\windows\system32\WdfCoInstaller01007.dll
2014-01-06 19:23 . 2014-01-06 19:23 4558848 ----a-w- c:\windows\system32\GPhotos.scr
2013-12-19 20:26 . 2014-01-08 18:16 893728 ----a-w- c:\windows\system32\nvdispgenco3233221.dll
2013-12-19 20:26 . 2014-01-08 18:16 1049888 ----a-w- c:\windows\system32\nvdispco3233221.dll
2013-12-18 20:10 . 2014-01-15 23:58 94632 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-12-10 02:15 . 2013-11-11 22:09 982232 ----a-w- c:\windows\system32\nvspcap.dll
.
.
(((((((((((((((((((((((((((( Autostartpunkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2013-03-14 3672640]
"ApplePhotoStreams"="c:\program files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe" [2013-09-15 59720]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
"WSHelperSetup.exe"="c:\program files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe" [2013-07-25 1985824]
"Nero MediaHome 4"="c:\program files\Nero\Nero MediaHome 4\NeroMediaHome.exe" [2010-10-26 5178664]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Nvtmru"="c:\program files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-10-18 1028384]
"EvtMgr6"="c:\program files\Logitech\SetPointP\SetPoint.exe" [2013-07-31 2296600]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2013-03-29 11930696]
"CanonSolutionMenuEx"="c:\program files\Canon\Solution Menu EX\CNSEMAIN.EXE" [2012-10-09 1637528]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2013-05-01 421888]
"IJNetworkScannerSelectorEX"="c:\program files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe" [2011-01-15 452016]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2013-07-02 254336]
"ShadowPlay"="c:\windows\system32\nvspcap.dll" [2013-12-10 982232]
"KiesTrayAgent"="c:\program files\Samsung\Kies\KiesTrayAgent.exe" [2013-12-11 311152]
"WSHelperSetup.exe"="c:\program files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe" [2013-07-25 1985824]
"Wondershare Helper Compact.exe"="c:\program files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe" [2013-07-25 1985824]
"Nero MediaHome 4"="c:\program files\Nero\Nero MediaHome 4\NeroMediaHome.exe" [2010-10-26 5178664]
"VC10Player"="c:\program files\Virtual CD v10\System\VC10Play.exe" [2011-10-19 411976]
"NvBackend"="c:\program files\NVIDIA Corporation\Update Core\NvBackend.exe" [2013-12-10 2279712]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2014-01-20 152392]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
.
c:\users\xsterni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled\
curseclientstartup.ccip [2013-8-13 0]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]
2013-06-13 19:31 64280 ----a-w- c:\program files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
2014-01-20 12:16 43848 ----a-w- c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2014-01-20 15:32 152392 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MobMapUpdater]
2010-10-12 22:40 1631872 ----a-w- c:\program files\MobMapUpdater\MobMapUpdater.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"CIS_{81EFDD93-DBBE-415B-BE6E-49B9664E3E82}"="c:\users\xsterni\AppData\Local\Temp\cis86CE.exe" --PostUninstall {81EFDD93-DBBE-415B-BE6E-49B9664E3E82}
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe"
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe"
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
.
R2 MBAMScheduler;MBAMScheduler;c:\program files\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [2013-10-23 172192]
R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys [2013-08-21 84248]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
R3 HH10Help.sys;HH10Help.sys;c:\windows\system32\drivers\HH10Help.sys [2010-03-10 13952]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2014-02-06 108032]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-04-04 22856]
R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2014-02-24 40776]
R3 Netaapl;Apple Mobile Device Ethernet Service;c:\windows\system32\DRIVERS\netaapl.sys [2012-09-10 18432]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 14848]
R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys [2013-08-21 182680]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2012-08-23 49664]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2012-08-23 27136]
R3 WSDScan;WSD-Scanunterstützung durch UMB;c:\windows\system32\drivers\WSDScan.sys [2009-07-14 20480]
R4 klflt;klflt;c:\windows\system32\DRIVERS\klflt.sys [2014-02-18 94304]
S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys [2013-10-17 25696]
S1 klpd;klpd;c:\windows\system32\DRIVERS\klpd.sys [2013-04-12 14432]
S1 kltdi;kltdi;c:\windows\system32\DRIVERS\kltdi.sys [2013-05-14 45024]
S1 kneps;kneps;c:\windows\system32\DRIVERS\kneps.sys [2014-02-18 144992]
S1 vdrv1000;vdrv1000;c:\windows\system32\DRIVERS\vdrv1000.sys [2011-04-19 186392]
S2 NAUpdate;Nero Update;c:\program files\Nero\Update\NASvc.exe [2013-07-18 762192]
S2 NvNetworkService;NVIDIA Network Service;c:\program files\NVIDIA Corporation\NetService\NvNetworkService.exe [2013-12-10 1494304]
S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2013-12-10 14658848]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-02-08 411936]
S2 TeamViewer9;TeamViewer 9;c:\program files\TeamViewer\Version9\TeamViewer_Service.exe [2013-12-17 5341536]
S2 VC10SecS;Virtual CD v10 Management Service;c:\program files\Virtual CD v10\System\VC10SecS.exe [2011-10-19 144712]
S3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2013-08-07 242240]
S3 klkbdflt;Kaspersky Lab KLKBDFLT;c:\windows\system32\DRIVERS\klkbdflt.sys [2014-02-18 25184]
S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys [2013-10-17 25696]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad32v.sys [2013-12-05 34080]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-03-04 08:49 1150280 ----a-w- c:\program files\Google\Chrome\Application\33.0.1750.146\Installer\chrmstp.exe
.
Inhalt des "geplante Tasks" Ordners
.
2014-03-06 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-07 08:39]
.
2014-03-06 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2013-10-28 13:30]
.
2014-03-06 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2013-10-28 13:30]
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = about :blank
uDefault_Search_URL = hxxp://www.google.com/ie
mStart Page = about :blank
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: Nach Microsoft E&xcel exportieren - c:\progra~1\MICROS~1\Office15\EXCEL.EXE/3000
IE: Zu Anti-Banner hinzufügen - c:\program files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ie_banner_deny.htm
TCP: DhcpNameServer = 192.168.2.1
Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - c:\program files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL
FF - ProfilePath - c:\users\xsterni\AppData\Roaming\Mozilla\Firefox\Profiles\am4k9dic.default-1393156618842\
FF - prefs.js: browser.startup.homepage - www.google.de
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
WebBrowser-{41564952-412D-5637-00A7-7A786E7484D7} - (no file)
HKCU-Run-Battle.net - c:\program files\Battle.net\Battle.net
MSConfigStartUp-com.apple.dav.bookmarks - c:\program files\Common Files\Apple\Internet Services\BookmarkDAV_client.exe
AddRemove-01_Simmental - c:\program files\Samsung\USB Drivers\01_Simmental\Uninstall.exe
AddRemove-02_Siberian - c:\program files\Samsung\USB Drivers\02_Siberian\Uninstall.exe
AddRemove-03_Swallowtail - c:\program files\Samsung\USB Drivers\03_Swallowtail\Uninstall.exe
AddRemove-04_semseyite - c:\program files\Samsung\USB Drivers\04_semseyite\Uninstall.exe
AddRemove-07_Schorl - c:\program files\Samsung\USB Drivers\07_Schorl\Uninstall.exe
AddRemove-09_Hsp - c:\program files\Samsung\USB Drivers\09_Hsp\Uninstall.exe
AddRemove-11_HSP_Plus_Default - c:\program files\Samsung\USB Drivers\11_HSP_Plus_Default\Uninstall.exe
AddRemove-16_Shrewsbury - c:\program files\Samsung\USB Drivers\16_Shrewsbury\Uninstall.exe
AddRemove-20_NXP_Driver - c:\program files\Samsung\USB Drivers\20_NXP_Driver\Uninstall.exe
AddRemove-24_flashusbdriver - c:\program files\Samsung\USB Drivers\24_flashusbdriver\Uninstall.exe
AddRemove-25_escape - c:\program files\Samsung\USB Drivers\25_escape\Uninstall.exe
.
.
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\vdrv1000]
"ImagePath"="system32\DRIVERS\vdrv1000.sys"
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Zeit der Fertigstellung: 2014-03-06 15:21:56
ComboFix-quarantined-files.txt 2014-03-06 14:21
.
Vor Suchlauf: 18 Verzeichnis(se), 70.990.573.568 Bytes frei
Nach Suchlauf: 24 Verzeichnis(se), 70.935.396.352 Bytes frei
.
- - End Of File - - 4A166D15958F545F2A4EC1980C83E201
A36C5E4F47E84449FF07ED3517B43A31
Danke im vorraus.