Code:
Alles auswählen Aufklappen ATTFilter
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 29-04-2014
Ran by user at 2014-04-30 11:31:25 Run:1
Running from C:\Users\user\Downloads
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X]
R2 sxhsshtiaq64; C:\Program Files\002\sxhsshtiaq64.exe [706560 2014-04-21] ()
Task: {280B1095-9FC9-40BE-86CA-60CBF4F4B01A} - \DealPlyLiveUpdateTaskMachineUA No Task File <==== ATTENTION
Task: {2A1F5E4F-A142-4227-8E34-5D9C767CB0CC} - \Desk 365 RunAsStdUser No Task File <==== ATTENTION
Task: {3D3EB231-B1F2-49DA-A30E-13189D1C7EB1} - \Software Updater No Task File <==== ATTENTION
Task: {4B8FA8F9-6705-4EE8-B6F2-0BC86780BCE6} - \3d6799c0-7f57-4f60-ab8f-1e65a97fb73f-5 No Task File <==== ATTENTION
Task: {4CF12411-2A0A-4C1B-B7E9-84A7E864D990} - \DealPlyLiveUpdateTaskMachineCore No Task File <==== ATTENTION
Task: {8F25F4F1-007B-45FE-B11A-ED20FEB27096} - System32\Tasks\RunAsStdUser Task for VeohWebPlayer => C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe <==== ATTENTION
Task: {A854BEE5-BB75-41EC-9462-94079BDFCAE2} - \3d6799c0-7f57-4f60-ab8f-1e65a97fb73f-4 No Task File <==== ATTENTION
Task: {B830C4E1-F204-4542-B7AE-2A1F3CB19A3E} - \Freemium1ClickMaint No Task File <==== ATTENTION
Task: {C21C5C7B-497D-45FC-A588-8B577CAE21B0} - \Software Updater Ui No Task File <==== ATTENTION
Task: {D3263602-2F50-43E3-A952-8725C30EBD9E} - \Dealply No Task File <==== ATTENTION
AlternateDataStreams: C:\ProgramData\TEMP:373E1720
AlternateDataStreams: C:\ProgramData\TEMP:AD022376
C:\Program Files\002
C:\Users\user\AppData\Local\Temp\BackupSetup.exe
C:\Users\user\AppData\Local\Temp\new_somoto_rrsavings.exe
C:\Users\user\AppData\Local\Temp\OnlineWeatherSetup.exe
C:\Users\user\AppData\Local\Temp\PCSpeedMaximizer_AQDE_SOMOTO_PPI.exe
C:\Users\user\AppData\Local\Temp\pcspeedmaxsetup.exe
C:\Users\user\AppData\Local\Temp\Quarantine.exe
C:\Users\user\AppData\Local\Temp\SHSetup.exe
C:\Users\user\AppData\Local\Temp\smt_qone8.exe
C:\Users\user\AppData\Local\Temp\UpdateCheckerSetup.exe
C:\ProgramData\1123b3724a4e3997
C:\Program Files\Enigma Software Group
*****************
esgiguard => Service deleted successfully.
sxhsshtiaq64 => Service stopped successfully.
sxhsshtiaq64 => Service deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{280B1095-9FC9-40BE-86CA-60CBF4F4B01A} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{280B1095-9FC9-40BE-86CA-60CBF4F4B01A} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DealPlyLiveUpdateTaskMachineUA => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2A1F5E4F-A142-4227-8E34-5D9C767CB0CC} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2A1F5E4F-A142-4227-8E34-5D9C767CB0CC} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Desk 365 RunAsStdUser => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3D3EB231-B1F2-49DA-A30E-13189D1C7EB1} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3D3EB231-B1F2-49DA-A30E-13189D1C7EB1} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Software Updater => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4B8FA8F9-6705-4EE8-B6F2-0BC86780BCE6} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4B8FA8F9-6705-4EE8-B6F2-0BC86780BCE6} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\3d6799c0-7f57-4f60-ab8f-1e65a97fb73f-5 => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4CF12411-2A0A-4C1B-B7E9-84A7E864D990} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4CF12411-2A0A-4C1B-B7E9-84A7E864D990} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DealPlyLiveUpdateTaskMachineCore => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8F25F4F1-007B-45FE-B11A-ED20FEB27096} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8F25F4F1-007B-45FE-B11A-ED20FEB27096} => Key deleted successfully.
C:\Windows\System32\Tasks\RunAsStdUser Task for VeohWebPlayer => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RunAsStdUser Task for VeohWebPlayer => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A854BEE5-BB75-41EC-9462-94079BDFCAE2} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A854BEE5-BB75-41EC-9462-94079BDFCAE2} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\3d6799c0-7f57-4f60-ab8f-1e65a97fb73f-4 => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B830C4E1-F204-4542-B7AE-2A1F3CB19A3E} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B830C4E1-F204-4542-B7AE-2A1F3CB19A3E} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Freemium1ClickMaint => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C21C5C7B-497D-45FC-A588-8B577CAE21B0} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C21C5C7B-497D-45FC-A588-8B577CAE21B0} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Software Updater Ui => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D3263602-2F50-43E3-A952-8725C30EBD9E} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D3263602-2F50-43E3-A952-8725C30EBD9E} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Dealply => Key deleted successfully.
C:\ProgramData\TEMP => ":373E1720" ADS removed successfully.
C:\ProgramData\TEMP => ":AD022376" ADS removed successfully.
C:\Program Files\002 => Moved successfully.
C:\Users\user\AppData\Local\Temp\BackupSetup.exe => Moved successfully.
C:\Users\user\AppData\Local\Temp\new_somoto_rrsavings.exe => Moved successfully.
C:\Users\user\AppData\Local\Temp\OnlineWeatherSetup.exe => Moved successfully.
C:\Users\user\AppData\Local\Temp\PCSpeedMaximizer_AQDE_SOMOTO_PPI.exe => Moved successfully.
C:\Users\user\AppData\Local\Temp\pcspeedmaxsetup.exe => Moved successfully.
C:\Users\user\AppData\Local\Temp\Quarantine.exe => Moved successfully.
C:\Users\user\AppData\Local\Temp\SHSetup.exe => Moved successfully.
C:\Users\user\AppData\Local\Temp\smt_qone8.exe => Moved successfully.
C:\Users\user\AppData\Local\Temp\UpdateCheckerSetup.exe => Moved successfully.
C:\ProgramData\1123b3724a4e3997 => Moved successfully.
"C:\Program Files\Enigma Software Group" => File/Directory not found.
==== End of Fixlog ====