So Log datei auch gemacht =)
Code:
Alles auswählen Aufklappen ATTFilter
ComboFix 14-03-19.01 - Micky 19.03.2014 10:31:18.2.2 - x86
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.3067.2196 [GMT 1:00]
ausgeführt von:: c:\users\Micky\Downloads\ComboFix.exe
Benutzte Befehlsschalter :: c:\users\Micky\Desktop\CFScript.txt
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\programdata\cis33CC.exe"
"c:\programdata\cisCD50.exe"
"c:\windows\Tasks\CIS_{15198508-521A-4D69-8E5B-B94A6CCFF805}.job"
"c:\windows\Tasks\CIS_{81EFDD93-DBBE-415B-BE6E-49B9664E3E82}.job"
.
.
(((((((((((((((((((((((((((((((((((( Weitere Löschungen ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\AdTrustMedia
c:\program files\AdTrustMedia\PrivDog\finalizesetup.exe
c:\program files\AdTrustMedia\PrivDog\PrivDog_chrome.crx
c:\program files\AdTrustMedia\PrivDog\PrivDog_dragon.crx
c:\program files\AdTrustMedia\PrivDog\UninstallTrustedAds.exe
c:\programdata\Adtrustmedia
c:\programdata\Comodo Downloader
c:\programdata\Comodo
c:\programdata\Comodo\Installer\cis_setup_x86.msi
.
.
((((((((((((((((((((((( Dateien erstellt von 2014-02-19 bis 2014-03-19 ))))))))))))))))))))))))))))))
.
.
2014-03-19 09:39 . 2014-03-19 09:39 -------- d-----w- c:\users\Micky\AppData\Local\temp
2014-03-19 09:39 . 2014-03-19 09:39 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-03-18 18:33 . 2014-03-18 18:33 -------- d-----w- c:\program files\Acer
2014-03-18 18:33 . 2008-09-09 18:02 106496 ----a-w- c:\windows\FixUVC.exe
2014-03-18 18:32 . 2014-03-18 18:32 -------- d-----w- c:\users\Micky\AppData\Roaming\InstallShield
2014-03-18 17:59 . 2014-03-18 17:59 -------- d-----w- c:\program files\SeeingMachines
2014-03-18 17:58 . 2014-03-18 17:58 -------- d-----w- c:\windows\Downloaded Installations
2014-03-18 17:15 . 2014-03-18 17:15 -------- d-----w- c:\windows\system32\x64
2014-03-18 17:15 . 2007-08-13 13:54 1749376 ----a-w- c:\windows\system32\snp2uvc.sys
2014-03-18 17:15 . 2007-08-06 13:04 28032 ----a-w- c:\windows\system32\sncduvc.sys
2014-03-18 17:15 . 2007-07-05 11:35 94208 ----a-w- c:\windows\system32\PLFSetL.exe
2014-03-18 17:15 . 2007-04-02 11:40 172032 ----a-w- c:\windows\system32\rsnp2uvc.dll
2014-03-18 17:15 . 2006-11-07 08:17 286720 ----a-w- c:\windows\system32\vsnp2uvc.dll
2014-03-18 16:16 . 2014-03-18 17:59 -------- d-----w- c:\programdata\Seeing Machines
2014-03-18 16:16 . 2014-03-18 18:01 -------- d-----w- c:\users\Micky\AppData\Roaming\Seeing Machines
2014-03-18 16:14 . 2014-03-18 17:49 -------- d-----w- c:\program files\VJoy Virtual Joystick Driver
2014-03-18 16:14 . 2012-10-15 08:08 12672 ----a-w- c:\windows\system32\drivers\vjoy.sys
2014-03-18 16:12 . 2014-03-18 16:12 -------- d-----w- c:\program files\Abbequerque Inc
2014-03-18 09:21 . 2014-03-18 14:32 -------- d-----w- C:\FRST
2014-03-18 06:56 . 2013-09-24 10:53 3765976 ----a-w- c:\programdata\cisCD50.exe
2014-03-18 06:56 . 2013-09-24 10:53 3765976 ----a-w- c:\programdata\cis33CC.exe
2014-03-17 12:11 . 2014-03-17 12:13 196608 ----a-w- c:\windows\ServiceProfiles\NetworkService\msmqlog.bin
2014-03-17 12:09 . 2014-03-17 12:13 -------- d-----w- C:\inetpub
2014-03-16 21:54 . 2014-03-16 21:54 -------- d-----w- C:\VTRoot
2014-03-16 21:54 . 2014-03-17 14:07 46618 ----a-w- c:\windows\system32\drivers\fvstore.dat
2014-03-16 21:48 . 2014-03-18 10:42 -------- d-----w- c:\program files\VS Revo Group
2014-03-16 20:50 . 2014-03-18 06:57 207680 ----a-w- c:\windows\system32\drivers\sfi.dat
2014-03-16 19:17 . 2014-03-04 11:32 599840 ----a-w- c:\windows\system32\nvStreaming.exe
2014-03-16 19:15 . 2014-03-04 14:29 9728064 ----a-w- c:\windows\system32\nvcuda.dll
2014-03-16 19:15 . 2014-03-04 14:29 9690424 ----a-w- c:\windows\system32\nvopencl.dll
2014-03-16 19:15 . 2014-03-04 14:29 894296 ----a-w- c:\windows\system32\nvdispgenco3233523.dll
2014-03-16 19:15 . 2014-03-04 14:29 865224 ----a-w- c:\windows\system32\NvIFR.dll
2014-03-16 19:15 . 2014-03-04 14:29 847136 ----a-w- c:\windows\system32\NvFBC.dll
2014-03-16 19:15 . 2014-03-04 14:29 2956632 ----a-w- c:\windows\system32\nvcuvid.dll
2014-03-16 19:15 . 2014-03-04 14:29 2411976 ----a-w- c:\windows\system32\nvcuvenc.dll
2014-03-16 19:15 . 2014-03-04 14:29 23716640 ----a-w- c:\windows\system32\nvoglv32.dll
2014-03-16 19:15 . 2014-03-04 14:29 17559384 ----a-w- c:\windows\system32\nvcompiler.dll
2014-03-16 19:15 . 2014-03-04 14:29 14709720 ----a-w- c:\windows\system32\nvd3dum.dll
2014-03-16 19:15 . 2014-03-04 14:29 10523480 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2014-03-16 19:15 . 2014-03-04 14:29 1049888 ----a-w- c:\windows\system32\nvdispco3233523.dll
2014-03-16 19:00 . 2014-03-16 19:00 -------- d-----w- c:\program files\Nuvoton Technology Corporation
2014-03-16 18:53 . 2014-03-16 18:53 -------- d-----w- c:\users\Micky\AppData\Roaming\NVIDIA
2014-03-16 15:31 . 2014-03-16 15:31 -------- d-----w- c:\program files\Microsoft
2014-03-16 14:44 . 2014-03-16 19:12 -------- d-----w- C:\direct
2014-03-16 13:01 . 2014-03-16 16:37 -------- d-----w- c:\program files\MSI Afterburner
2014-03-16 12:34 . 2014-03-16 16:37 -------- d-----w- c:\program files\HWiNFO32
2014-03-16 09:25 . 2014-03-16 09:25 -------- d-----w- c:\program files\NirSoft
2014-03-15 23:02 . 2014-03-15 23:02 -------- d-----w- c:\users\Micky\AppData\Roaming\MotioninJoy
2014-03-15 23:02 . 2014-03-15 23:03 99400 ----a-w- c:\windows\system32\drivers\MijXfilt.sys
2014-03-15 23:02 . 2014-03-15 23:02 -------- d-----w- c:\program files\MotioninJoy
2014-03-15 23:02 . 2011-12-07 18:42 61984 ----a-w- c:\windows\system32\drivers\xusb21.sys
2014-03-15 23:02 . 2011-12-07 18:42 255496 ----a-w- c:\windows\system32\MijFrc.dll
2014-03-14 11:02 . 2014-03-14 11:02 -------- d-----w- c:\program files\Common Files\PX Storage Engine
2014-03-14 11:02 . 2014-03-16 16:35 -------- d-----w- c:\users\Micky\AppData\Roaming\Winamp
2014-03-14 11:02 . 2014-03-14 11:02 -------- d-----w- c:\program files\Winamp
2014-03-14 09:59 . 2014-03-14 09:59 -------- d-----w- c:\program files\VirtualDJ
2014-03-10 11:04 . 2014-03-17 10:57 -------- d-----w- c:\users\Micky\AppData\Local\Diagnostics
2014-03-09 18:18 . 2014-03-09 18:18 -------- d-----w- c:\programdata\Steam
2014-03-09 18:06 . 2014-03-09 18:22 -------- d-----w- c:\program files\Southpark Stick of Truth
2014-03-09 18:06 . 2014-03-09 18:06 -------- d-----w- c:\users\Micky\AppData\Local\Programs
2014-03-09 14:37 . 2014-03-16 16:37 -------- d-----w- c:\program files\ExpressFiles
2014-03-09 14:37 . 2014-03-09 14:39 -------- d-----w- c:\users\Micky\AppData\Roaming\ExpressFiles
2014-03-09 14:11 . 2014-03-17 11:00 -------- d-----w- c:\users\Micky\AppData\Local\ElevatedDiagnostics
2014-03-09 14:00 . 2014-03-09 14:00 -------- d-----w- c:\users\Micky\AppData\Local\BEETmobile
2014-03-09 14:00 . 2014-03-09 14:00 -------- d-----w- c:\program files\BEETmobile
2014-03-08 19:23 . 2014-01-09 02:22 5694464 ----a-w- c:\windows\system32\mstscax.dll
2014-03-07 21:18 . 2013-10-01 23:45 32256 ----a-w- c:\windows\system32\TsUsbGDCoInstaller.dll
2014-03-07 21:18 . 2013-10-02 00:32 12800 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-03-07 21:18 . 2013-10-02 00:42 49152 ----a-w- c:\windows\system32\drivers\TsUsbFlt.sys
2014-03-07 21:18 . 2013-10-02 00:30 14336 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-03-07 21:18 . 2013-10-02 00:14 50176 ----a-w- c:\windows\system32\MsRdpWebAccess.dll
2014-03-07 21:18 . 2013-10-02 00:14 17920 ----a-w- c:\windows\system32\wksprtPS.dll
2014-03-07 21:18 . 2013-10-01 23:58 53248 ----a-w- c:\windows\system32\tsgqec.dll
2014-03-07 21:18 . 2013-10-01 23:08 855552 ----a-w- c:\windows\system32\rdvidcrl.dll
2014-03-07 21:18 . 2013-10-01 23:00 76288 ----a-w- c:\windows\system32\TSWbPrxy.exe
2014-03-07 21:18 . 2013-10-01 22:53 350208 ----a-w- c:\windows\system32\wksprt.exe
2014-03-07 21:18 . 2013-10-01 22:34 1068544 ----a-w- c:\windows\system32\mstsc.exe
2014-03-07 21:17 . 2013-09-25 01:57 792576 ----a-w- c:\windows\system32\TSWorkspace.dll
2014-03-07 21:14 . 2014-03-16 19:19 -------- d-----w- c:\users\Micky\AppData\Local\NVIDIA Corporation
2014-03-07 21:10 . 2014-03-16 16:55 -------- d-----w- c:\users\Micky\AppData\Local\NVIDIA
2014-03-07 21:10 . 2014-02-05 09:31 1048152 ----a-w- c:\windows\system32\nvspcap.dll
2014-03-07 21:08 . 2014-03-07 21:08 -------- d-----w- c:\program files\AGEIA Technologies
2014-03-07 21:07 . 2014-03-04 12:34 663896 ----a-w- c:\windows\system32\nvvsvc.exe
2014-03-07 21:07 . 2014-03-04 12:34 62752 ----a-w- c:\windows\system32\nvshext.dll
2014-03-07 21:07 . 2014-03-04 12:34 4348704 ----a-w- c:\windows\system32\nvcpl.dll
2014-03-07 21:07 . 2014-03-04 12:34 3044696 ----a-w- c:\windows\system32\nvsvc.dll
2014-03-07 21:07 . 2014-03-04 12:34 2556360 ----a-w- c:\windows\system32\nvsvcr.dll
2014-03-07 21:07 . 2014-03-04 12:34 375128 ----a-w- c:\windows\system32\nvmctray.dll
2014-03-07 21:06 . 2014-03-04 14:29 53024 ----a-w- c:\windows\system32\OpenCL.dll
2014-03-07 21:06 . 2014-03-16 14:54 -------- d-----w- c:\programdata\NVIDIA Corporation
2014-03-07 21:00 . 2013-12-27 18:42 34080 ----a-w- c:\windows\system32\drivers\nvvad32v.sys
2014-03-07 21:00 . 2013-12-27 18:42 33056 ----a-w- c:\windows\system32\nvaudcap32v.dll
2014-03-07 21:00 . 2013-11-28 13:38 28448 ----a-w- c:\windows\system32\nvhdap32.dll
2014-03-07 21:00 . 2013-11-28 13:38 162592 ----a-w- c:\windows\system32\drivers\nvhda32v.sys
2014-03-07 21:00 . 2014-03-04 14:29 2715264 ----a-w- c:\windows\system32\nvapi.dll
2014-03-07 21:00 . 2014-03-04 14:29 15783992 ----a-w- c:\windows\system32\nvwgf2um.dll
2014-03-07 21:00 . 2014-02-08 18:27 895264 ----a-w- c:\windows\system32\nvdispgenco3233489.dll
2014-03-07 21:00 . 2014-02-08 18:27 1049888 ----a-w- c:\windows\system32\nvdispco3233489.dll
2014-03-07 12:36 . 2014-03-07 12:36 -------- d-----w- c:\users\Micky\AppData\Local\CrashRpt
2014-03-07 12:35 . 2014-03-07 12:35 -------- d-----w- c:\programdata\Package Cache
2014-03-07 02:03 . 2014-03-07 02:03 -------- d-----w- c:\windows\Migration
2014-03-06 22:47 . 2014-03-16 19:04 -------- d-----w- c:\program files\CCleaner
2014-03-06 20:59 . 2008-10-15 05:22 452440 ----a-w- c:\windows\system32\d3dx10_40.dll
2014-03-06 19:12 . 2014-03-06 22:14 -------- d-----w- c:\program files\Common Files\Steam
2014-03-06 19:12 . 2014-03-19 08:21 -------- d-----w- c:\program files\Steam
2014-02-23 01:14 . 2014-02-23 01:14 -------- d-----w- c:\users\Micky\AppData\Local\Aspyr
2014-02-23 01:13 . 2014-02-23 01:13 -------- d--h--r- c:\users\Micky\AppData\Roaming\SecuROM
2014-02-23 01:05 . 2014-02-23 01:05 -------- d-----w- c:\program files\Aspyr
2014-02-23 01:05 . 2007-07-19 17:14 3727720 ----a-w- c:\windows\system32\d3dx9_35.dll
2014-02-23 01:05 . 2007-04-04 17:53 81768 ----a-w- c:\windows\system32\xinput1_3.dll
2014-02-19 18:14 . 2013-12-21 08:56 454656 ----a-w- c:\windows\system32\vbscript.dll
2014-02-19 14:48 . 2013-12-06 02:02 2048 ----a-w- c:\windows\system32\msxml3r.dll
2014-02-19 14:48 . 2013-12-06 02:02 1237504 ----a-w- c:\windows\system32\msxml3.dll
2014-02-19 14:46 . 2013-12-24 23:09 1987584 ----a-w- c:\windows\system32\d3d10warp.dll
2014-02-19 14:46 . 2013-11-26 08:16 3419136 ----a-w- c:\windows\system32\d2d1.dll
2014-02-19 14:45 . 2013-12-04 02:03 423936 ----a-w- c:\windows\system32\secproc_isv.dll
2014-02-19 14:45 . 2013-12-04 02:03 428032 ----a-w- c:\windows\system32\secproc.dll
2014-02-19 14:45 . 2013-12-04 01:54 510976 ----a-w- c:\windows\system32\RMActivate_ssp.exe
2014-02-19 14:45 . 2013-12-04 01:54 594944 ----a-w- c:\windows\system32\RMActivate_isv.exe
2014-02-19 14:45 . 2013-12-04 01:54 572416 ----a-w- c:\windows\system32\RMActivate.exe
2014-02-19 14:45 . 2013-12-04 01:54 508928 ----a-w- c:\windows\system32\RMActivate_ssp_isv.exe
2014-02-19 14:45 . 2013-12-04 02:03 87040 ----a-w- c:\windows\system32\secproc_ssp_isv.dll
2014-02-19 14:45 . 2013-12-04 02:03 87040 ----a-w- c:\windows\system32\secproc_ssp.dll
2014-02-19 14:45 . 2013-12-04 02:02 390144 ----a-w- c:\windows\system32\msdrm.dll
.
.
.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-02-22 19:23 . 2013-06-07 18:26 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-02-22 19:23 . 2013-06-07 18:26 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-12-19 21:30 . 2013-07-24 21:07 69240 ----a-w- c:\windows\system32\drivers\avnetflt.sys
2013-12-19 21:30 . 2013-07-24 21:04 90400 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2013-12-19 21:30 . 2013-07-24 21:04 135648 ----a-w- c:\windows\system32\drivers\avipbb.sys
.
.
(((((((((((((((((((((((((((( Autostartpunkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"="c:\program files\NVIDIA Corporation\Update Core\NvBackend.exe" [2014-02-05 2234144]
"ShadowPlay"="c:\windows\system32\nvspcap.dll" [2014-02-05 1048152]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"SPReview"="c:\windows\System32\SPReview\SPReview.exe" [2013-06-08 280576]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2014-03-01 108032]
R3 MotioninJoyXFilter;MotioninJoy Virtual Xinput device Filter Driver;c:\windows\system32\DRIVERS\MijXfilt.sys [2014-03-15 99400]
R3 NETw5s32;Intel(R) Wireless WiFi Link Adaptertreiber für Windows 7 32-Bit;c:\windows\system32\DRIVERS\NETw5s32.sys [2009-09-15 6114816]
R3 netw5v32;Intel(R) Wireless WiFi Link 5000-Serie - Adaptertreiber für Windows Vista 32 Bit;c:\windows\system32\DRIVERS\netw5v32.sys [2009-07-13 4231168]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 14848]
R3 rzudd;Razer Keyboard Driver;c:\windows\system32\DRIVERS\rzudd.sys [2013-05-17 105472]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2013-10-02 49152]
R3 WRfiltv;WRfiltv;c:\windows\system32\drivers\WRfiltv.sys [2009-07-31 17920]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys [2013-11-26 37352]
S2 NvNetworkService;NVIDIA Network Service;c:\program files\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-02-05 1593632]
S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-02-05 15904544]
S2 PCAutoShutdown_Service;PCAutoShutdown_Service;c:\program files\PC Auto Shutdown\ShutdownService.exe [2011-11-14 442136]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-03-04 411936]
S3 hidshim;Service for HID-KMDF Shim layer;c:\windows\system32\DRIVERS\hidshim.sys [2009-07-21 5632]
S3 k57nd60x;Broadcom NetLink (TM)-Gigabit-Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60x.sys [2009-07-13 229888]
S3 NETwNs32;___ Intel(R) Wireless WiFi Link der Serie 5000 Adaptertreiber für Windows 7 32-Bit;c:\windows\system32\DRIVERS\NETwNs32.sys [2013-11-26 7530736]
S3 nuvotonhidgeneric;Nuvoton EC Generic HID;c:\windows\system32\DRIVERS\nuvotonhidgeneric.sys [2009-07-21 22528]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad32v.sys [2013-12-27 34080]
.
.
Inhalt des "geplante Tasks" Ordners
.
2014-03-18 c:\windows\Tasks\CIS_{15198508-521A-4D69-8E5B-B94A6CCFF805}.job
- c:\programdata\cis33CC.exe [2014-03-18 10:53]
.
2014-03-18 c:\windows\Tasks\CIS_{81EFDD93-DBBE-415B-BE6E-49B9664E3E82}.job
- c:\programdata\cisCD50.exe [2014-03-18 10:53]
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = hxxp://de.yahoo.com?fr=fp-comodo
uInternet Settings,ProxyOverride = *.local
TCP: DhcpNameServer = 172.22.22.1
TCP: Interfaces\{7E770A5E-3D98-4638-B24B-DC14863F408B}: NameServer = 172.22.22.1
TCP: Interfaces\{FD24474E-351D-4961-8B47-B62C40F267FA}: NameServer = 156.154.70.25,156.154.71.25
FF - ProfilePath - c:\users\Micky\AppData\Roaming\Mozilla\Firefox\Profiles\ujgtxps2.default\
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: browser.startup.homepage - hxxp://de.yahoo.com?fr=fp-comodo
FF - prefs.js: keyword.URL - hxxp://de.search.yahoo.com/search?fr=ytff-comodo&p=
FF - prefs.js: network.proxy.ftp - 213.133.141.197
FF - prefs.js: network.proxy.ftp_port - 8080
FF - prefs.js: network.proxy.http - 213.133.141.197
FF - prefs.js: network.proxy.http_port - 8080
FF - prefs.js: network.proxy.socks - 213.133.141.197
FF - prefs.js: network.proxy.socks_port - 8080
FF - prefs.js: network.proxy.ssl - 213.133.141.197
FF - prefs.js: network.proxy.ssl_port - 8080
FF - prefs.js: network.proxy.type - 0
FF - ExtSQL: 2014-03-17 14:59; PrivDog@AdTrustMedia.com; c:\users\Micky\AppData\Roaming\Mozilla\Firefox\Profiles\ujgtxps2.default\extensions\PrivDog@AdTrustMedia.com.xpi
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
AddRemove-PrivDog - c:\program files\AdTrustMedia\PrivDog\UninstallTrustedAds.exe
.
.
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Zeit der Fertigstellung: 2014-03-19 10:40:24
ComboFix-quarantined-files.txt 2014-03-19 09:40
ComboFix2.txt 2014-03-18 15:58
.
Vor Suchlauf: 11 Verzeichnis(se), 64.986.796.032 Bytes frei
Nach Suchlauf: 12 Verzeichnis(se), 64.568.680.448 Bytes frei
.
- - End Of File - - 4140C7A8F2FE234FA4E097DBA0D0FDB8
A36C5E4F47E84449FF07ED3517B43A31