![]() |
|
Log-Analyse und Auswertung: Extrem Langsames Internet nur an 1 Rechner!Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #9 |
![]() ![]() | ![]() Extrem Langsames Internet nur an 1 Rechner! Soo hab alles durchgeführt. Hat leider lange gedauert da sich schon während des Downloads das langsame Internet bemerkbar machte. ![]() Hier der Log: Code:
ATTFilter ComboFix 14-07-29.01 - Sasha 29.07.2014 22:37:01.1.8 - x64 Microsoft Windows 8 6.2.9200.1.1252.49.1031.18.16329.12529 [GMT 1:00] ausgeführt von:: c:\users\Sasha\Desktop\ComboFix.exe AV: Kaspersky PURE 3.0 *Disabled/Outdated* {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5} AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky PURE 3.0 *Disabled* {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E} SP: Kaspersky PURE 3.0 *Disabled/Updated* {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\background.html c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\content.js c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\lsdb.js c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\manifest.json c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\yjDmewmddr.js c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\background.html c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\content.js c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\lsdb.js c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\manifest.json c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\yjDmewmddr.js c:\users\ASPNET\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh c:\users\ASPNET\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\background.html c:\users\ASPNET\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\content.js c:\users\ASPNET\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\lsdb.js c:\users\ASPNET\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\manifest.json c:\users\ASPNET\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\yjDmewmddr.js c:\users\ASPNET\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh c:\users\ASPNET\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\background.html c:\users\ASPNET\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\content.js c:\users\ASPNET\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\lsdb.js c:\users\ASPNET\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\manifest.json c:\users\ASPNET\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\yjDmewmddr.js c:\users\ASPNET\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh c:\users\Gast\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh c:\users\Gast\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\background.html c:\users\Gast\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\content.js c:\users\Gast\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\lsdb.js c:\users\Gast\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\manifest.json c:\users\Gast\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\yjDmewmddr.js c:\users\Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh c:\users\Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\background.html c:\users\Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\content.js c:\users\Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\lsdb.js c:\users\Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\manifest.json c:\users\Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\yjDmewmddr.js c:\users\Gast\AppData\Local\Google\Chrome\User Data\Default\preferences c:\users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh c:\users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\background.html c:\users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\content.js c:\users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\lsdb.js c:\users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\manifest.json c:\users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\yjDmewmddr.js c:\users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh c:\users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\background.html c:\users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\content.js c:\users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\lsdb.js c:\users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\manifest.json c:\users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\yjDmewmddr.js c:\users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh c:\users\Sasha\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh c:\users\Sasha\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\background.html c:\users\Sasha\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\content.js c:\users\Sasha\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\lsdb.js c:\users\Sasha\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\manifest.json c:\users\Sasha\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\yjDmewmddr.js c:\users\Sasha\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh c:\users\Sasha\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\background.html c:\users\Sasha\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\content.js c:\users\Sasha\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\lsdb.js c:\users\Sasha\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\manifest.json c:\users\Sasha\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbmepphonbklekgniaanohaicijbcndh\5.14\yjDmewmddr.js c:\users\Sasha\AppData\Local\Google\Chrome\User Data\Default\Preferences c:\users\Sasha\AppData\Local\Temp\INS_22e28b0c.TMP c:\users\Sasha\AppData\Local\Temp\INS_f245fba7.TMP c:\users\Sasha\AppData\Local\TempDIR c:\users\Sasha\AppData\Local\TempDIR\Offercast2810_NDV_.exe c:\users\Sasha\AppData\Roaming\miner\nircmd.exe c:\users\Sasha\AppData\Roaming\WindowsHelp c:\users\Sasha\AppData\Roaming\WindowsHelp\coinutil.dll c:\users\Sasha\AppData\Roaming\WindowsHelp\killer.bat c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\compile.bat c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part10 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part11 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part12 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part13 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part14 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part15 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part16 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part17 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part18 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part19 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part2 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part20 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part21 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part22 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part23 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part24 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part25 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part26 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part27 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part28 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part29 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part3 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part30 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part31 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part32 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part33 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part34 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part35 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part36 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part37 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part38 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part39 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part4 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part40 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part41 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part42 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part43 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part44 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part45 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part46 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part47 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part48 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part49 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part5 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part50 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part51 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part52 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part53 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part54 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part55 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part56 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part57 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part58 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part59 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part6 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part60 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part61 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part62 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part63 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part64 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part65 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part66 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part67 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part68 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part69 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part7 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part70 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part71 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part72 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part73 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part74 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part75 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part76 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part77 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part78 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part79 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part8 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part80 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part81 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part82 c:\users\Sasha\AppData\Roaming\WindowsHelp\macro\macromedia.exe_part9 c:\users\Sasha\AppData\Roaming\WindowsHelp\openssl.dll c:\users\Sasha\AppData\Roaming\WindowsHelp\phatk.cl c:\users\Sasha\AppData\Roaming\WindowsHelp\phatk.ptx c:\users\Sasha\AppData\Roaming\WindowsHelp\puts.vbs c:\users\Sasha\AppData\Roaming\WindowsHelp\serials.txt c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\compile.bat c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part10 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part11 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part12 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part13 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part14 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part15 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part16 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part17 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part18 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part19 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part2 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part20 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part21 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part22 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part23 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part24 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part25 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part26 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part27 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part28 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part29 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part3 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part30 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part31 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part32 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part33 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part34 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part35 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part36 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part37 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part38 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part39 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part4 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part40 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part41 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part42 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part43 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part44 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part45 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part46 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part47 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part48 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part49 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part5 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part50 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part51 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part52 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part53 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part54 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part55 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part56 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part57 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part58 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part59 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part6 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part60 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part61 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part62 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part63 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part64 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part65 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part66 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part67 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part68 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part69 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part7 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part70 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part71 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part72 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part73 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part74 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part75 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part76 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part77 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part78 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part79 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part8 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part80 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part81 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part82 c:\users\Sasha\AppData\Roaming\WindowsHelp\shel\shell.exe_part9 c:\users\Sasha\AppData\Roaming\WindowsHelp\usft_ext.dll c:\windows\IsUn0407.exe c:\windows\SysWow64\SET632E.tmp . . ((((((((((((((((((((((((((((((((((((((( Treiber/Dienste ))))))))))))))))))))))))))))))))))))))))))))))))) . . -------\Service_acedrv11 -------\Service_NPF -------\Service_WiseBootAssistant . . ((((((((((((((((((((((( Dateien erstellt von 2014-06-28 bis 2014-07-29 )))))))))))))))))))))))))))))) . . 2014-07-29 21:40 . 2014-07-29 21:40 -------- d-----w- c:\users\Gast\AppData\Local\temp 2014-07-29 21:40 . 2014-07-29 21:40 -------- d-----w- c:\users\Default\AppData\Local\temp 2014-07-29 19:53 . 2014-07-29 20:37 -------- d-----w- C:\FRST 2014-07-29 15:42 . 2014-07-25 13:50 1291280 ----a-w- c:\windows\SysWow64\nvspbridge.dll 2014-07-29 15:42 . 2014-07-25 13:50 1715224 ----a-w- c:\windows\system32\nvspbridge64.dll 2014-07-29 10:30 . 2014-07-29 15:56 -------- d-----w- c:\users\Sasha\AppData\Roaming\Synthesia 2014-07-29 09:57 . 2014-07-29 09:57 -------- d-----w- c:\users\Sasha\AppData\Roaming\Spiritsoft 2014-07-28 14:47 . 2014-07-28 14:47 -------- d-----w- c:\users\Sasha\AppData\Roaming\BitTorrent Sync 2014-07-25 13:05 . 2014-07-25 13:05 -------- d-----w- c:\windows\rescache 2014-07-24 10:53 . 2014-07-24 10:53 -------- d-----w- c:\users\Sasha\AppData\Local\Bohemia_Interactive 2014-07-24 10:53 . 2014-07-24 10:53 -------- d-----w- c:\users\Sasha\AppData\Local\Arma 3 Launcher 2014-07-23 03:07 . 2014-04-29 22:32 1301504 ----a-w- c:\windows\system32\gdi32.dll 2014-07-23 03:07 . 2014-04-29 22:22 1023488 ----a-w- c:\windows\SysWow64\gdi32.dll 2014-07-23 03:05 . 2014-05-03 05:47 3246592 ----a-w- c:\windows\system32\rdpcorets.dll 2014-07-23 03:05 . 2014-05-03 03:34 235520 ----a-w- c:\windows\system32\rdpudd.dll 2014-07-23 03:03 . 2014-03-23 22:11 269592 ----a-w- c:\windows\system32\drivers\WdFilter.sys 2014-07-23 03:02 . 2014-06-19 02:09 1508864 ----a-w- c:\windows\system32\inetcpl.cpl 2014-07-23 03:01 . 2014-03-07 00:47 1419264 ----a-w- c:\windows\SysWow64\msxml3.dll 2014-07-22 15:38 . 2014-07-28 20:47 -------- d-----w- c:\users\Sasha\AppData\Roaming\.minecraft 2014-07-20 23:49 . 2014-07-20 23:49 -------- d-----w- c:\users\Sasha\AVM_Driver 2014-07-20 19:04 . 2014-07-20 19:04 -------- d-----w- c:\users\Sasha\.SquashOccurrences 2014-07-18 11:48 . 2014-07-18 11:48 -------- d-----w- c:\program files\Microsoft Xbox One Controller for Windows 2014-07-17 19:25 . 2014-07-17 19:25 -------- d-----w- c:\program files (x86)\LogMeIn Hamachi 2014-07-16 16:29 . 2014-07-16 16:29 -------- d-----w- c:\users\Sasha\AppData\Roaming\DarkWave Studio 2014-07-15 10:09 . 2014-07-15 10:09 46136 ---ha-w- c:\windows\system32\drivers\Hamdrv.sys 2014-07-13 03:34 . 2014-07-13 03:34 -------- d-----w- c:\program files (x86)\Common Files\PX Storage Engine 2014-07-13 03:34 . 2014-07-13 03:36 -------- d-----w- c:\users\Sasha\AppData\Roaming\Winamp 2014-07-12 22:24 . 2014-07-12 22:24 -------- d-----w- c:\users\Sasha\AppData\Local\Arktos Entertainment 2014-07-11 21:30 . 2014-07-11 21:30 -------- d-----w- c:\users\Sasha\.MCTranscodingSDK 2014-07-02 15:21 . 2014-07-02 15:21 -------- d-----w- c:\program files (x86)\Sony Media Go Install 2014-07-02 15:20 . 2014-07-02 15:20 -------- d-----w- c:\users\Sasha\Podcasts 2014-07-02 15:18 . 2014-07-02 15:22 -------- d-----w- c:\program files (x86)\Common Files\Sony Shared 2014-07-02 15:18 . 2014-07-02 15:18 -------- d-----w- c:\programdata\Sony Corporation 2014-07-02 15:07 . 2014-07-02 15:07 -------- d-----w- c:\users\Sasha\AppData\Local\FileViewPro 2014-07-02 15:07 . 2014-07-02 15:07 -------- d-----w- c:\users\Sasha\AppData\Roaming\IsolatedStorage 2014-07-02 15:05 . 2014-07-02 15:05 -------- d-----w- C:\Spacekace 2014-07-01 05:46 . 2014-07-01 05:46 257704 ----a-w- c:\programdata\Microsoft\Windows\Sqm\Manifest\Sqm10243.bin . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2014-07-27 12:45 . 2012-12-30 03:55 281688 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr 2014-07-27 12:45 . 2012-12-30 03:48 281688 ----a-w- c:\windows\SysWow64\PnkBstrB.exe 2014-07-27 11:27 . 2012-12-30 03:48 281688 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0 2014-07-25 13:50 . 2013-11-14 20:34 1126480 ----a-w- c:\windows\SysWow64\nvspcap.dll 2014-07-25 13:50 . 2013-11-14 20:34 1283136 ----a-w- c:\windows\system32\nvspcap64.dll 2014-06-26 20:53 . 2013-11-21 01:38 703968 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2014-06-26 20:53 . 2013-11-21 01:38 105440 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2014-06-26 16:40 . 2012-12-31 05:43 96441528 ----a-w- c:\windows\system32\MRT.exe 2014-06-20 05:10 . 2012-12-30 03:48 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe 2014-05-27 00:13 . 2014-05-27 00:13 34016 ----a-w- c:\windows\system32\drivers\xb1usb.sys 2014-05-24 14:02 . 2013-01-10 17:24 4660752 ----a-w- c:\windows\PE_Rom.dll 2014-05-20 02:44 . 2014-05-26 21:11 9697640 ----a-w- c:\windows\SysWow64\nvopencl.dll 2014-05-20 02:44 . 2014-05-26 21:11 837056 ----a-w- c:\windows\SysWow64\nvumdshim.dll 2014-05-20 02:44 . 2014-05-26 21:11 354016 ----a-w- c:\windows\system32\nvoglshim64.dll 2014-05-20 02:44 . 2014-05-26 21:11 31387936 ----a-w- c:\windows\system32\nvoglv64.dll 2014-05-20 02:44 . 2014-05-26 21:11 305600 ----a-w- c:\windows\SysWow64\nvoglshim32.dll 2014-05-20 02:44 . 2014-05-26 21:11 24025376 ----a-w- c:\windows\SysWow64\nvoglv32.dll 2014-05-20 02:44 . 2014-05-26 21:11 11599072 ----a-w- c:\windows\system32\nvopencl.dll 2014-05-20 02:44 . 2014-05-26 21:11 9735256 ----a-w- c:\windows\SysWow64\nvcuda.dll 2014-05-20 02:44 . 2014-05-26 21:11 895776 ----a-w- c:\windows\system32\NvIFR64.dll 2014-05-20 02:44 . 2014-05-26 21:11 892704 ----a-w- c:\windows\system32\NvFBC64.dll 2014-05-20 02:44 . 2014-05-26 21:11 867784 ----a-w- c:\windows\SysWow64\NvIFR.dll 2014-05-20 02:44 . 2014-05-26 21:11 861128 ----a-w- c:\windows\SysWow64\NvFBC.dll 2014-05-20 02:44 . 2014-05-26 21:11 492376 ----a-w- c:\windows\system32\nvEncodeAPI64.dll 2014-05-20 02:44 . 2014-05-26 21:11 416712 ----a-w- c:\windows\SysWow64\nvEncodeAPI.dll 2014-05-20 02:44 . 2014-05-26 21:11 382240 ----a-w- c:\windows\system32\NvIFROpenGL.dll 2014-05-20 02:44 . 2014-05-26 21:11 335704 ----a-w- c:\windows\SysWow64\NvIFROpenGL.dll 2014-05-20 02:44 . 2014-05-26 21:11 3141976 ----a-w- c:\windows\system32\nvcuvid.dll 2014-05-20 02:44 . 2014-05-26 21:11 2953672 ----a-w- c:\windows\SysWow64\nvcuvid.dll 2014-05-20 02:44 . 2014-05-26 21:11 2785568 ----a-w- c:\windows\system32\nvcuvenc.dll 2014-05-20 02:44 . 2014-05-26 21:11 25256224 ----a-w- c:\windows\system32\nvcompiler.dll 2014-05-20 02:44 . 2014-05-26 21:11 2412376 ----a-w- c:\windows\SysWow64\nvcuvenc.dll 2014-05-20 02:44 . 2014-05-26 21:11 1889112 ----a-w- c:\windows\system32\nvdispco6433788.dll 2014-05-20 02:44 . 2014-05-26 21:11 17561544 ----a-w- c:\windows\SysWow64\nvcompiler.dll 2014-05-20 02:44 . 2014-05-26 21:11 17480432 ----a-w- c:\windows\system32\nvd3dumx.dll 2014-05-20 02:44 . 2014-05-26 21:11 166568 ----a-w- c:\windows\system32\nvinitx.dll 2014-05-20 02:44 . 2014-05-26 21:11 1541576 ----a-w- c:\windows\system32\nvdispgenco6433788.dll 2014-05-20 02:44 . 2014-05-26 21:11 146480 ----a-w- c:\windows\SysWow64\nvinit.dll 2014-05-20 02:44 . 2014-05-26 21:11 12688328 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys 2014-05-20 02:44 . 2014-05-26 21:11 11644928 ----a-w- c:\windows\system32\nvcuda.dll 2014-05-20 02:44 . 2014-04-09 15:49 16003912 ----a-w- c:\windows\SysWow64\nvwgf2um.dll 2014-05-20 02:44 . 2013-11-14 21:57 2730208 ----a-w- c:\windows\SysWow64\nvapi.dll 2014-05-20 02:44 . 2013-11-14 21:57 14434704 ----a-w- c:\windows\SysWow64\nvd3dum.dll 2014-05-20 02:44 . 2013-10-08 21:58 952952 ----a-w- c:\windows\system32\nvumdshimx.dll 2014-05-20 02:44 . 2013-10-08 21:58 3109248 ----a-w- c:\windows\system32\nvapi64.dll 2014-05-20 02:44 . 2013-10-08 21:58 18531568 ----a-w- c:\windows\system32\nvwgf2umx.dll 2014-05-20 02:44 . 2012-12-04 22:08 61216 ----a-w- c:\windows\system32\OpenCL.dll 2014-05-20 02:44 . 2012-12-04 22:08 52056 ----a-w- c:\windows\SysWow64\OpenCL.dll 2014-05-20 01:25 . 2012-12-04 22:08 6769096 ----a-w- c:\windows\system32\nvcpl.dll 2014-05-20 01:25 . 2012-12-04 22:08 3514144 ----a-w- c:\windows\system32\nvsvc64.dll 2014-05-20 01:25 . 2012-12-04 22:08 927520 ----a-w- c:\windows\system32\nvvsvc.exe 2014-05-20 01:25 . 2012-12-04 22:08 62808 ----a-w- c:\windows\system32\nvshext.dll 2014-05-20 01:25 . 2012-12-04 22:08 387528 ----a-w- c:\windows\system32\nvmctray.dll 2014-05-20 01:25 . 2012-12-04 22:08 2560968 ----a-w- c:\windows\system32\nvsvcr.dll 2014-05-19 23:10 . 2014-05-26 21:17 601432 ----a-w- c:\windows\SysWow64\nvStreaming.exe 2014-05-14 23:49 . 2012-12-04 22:08 3774821 ----a-w- c:\windows\system32\nvcoproc.bin 2014-05-11 07:39 . 2014-05-11 07:39 283064 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys 2014-05-10 09:11 . 2014-05-10 09:11 1795952 ----a-w- c:\windows\system32\drivers\WdfCoInstaller01011.dll 2014-05-08 00:12 . 2014-05-08 00:12 715038 ----a-w- c:\windows\unins000.exe . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1] @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}" [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}] 2013-09-06 23:34 222832 ----a-w- c:\users\Sasha\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\SkyDriveShell.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2] @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}" [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}] 2013-09-06 23:34 222832 ----a-w- c:\users\Sasha\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\SkyDriveShell.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3] @="{BBACC218-34EA-4666-9D7A-C78F2274A524}" [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}] 2013-09-06 23:34 222832 ----a-w- c:\users\Sasha\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\SkyDriveShell.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-10 23:54 131248 ----a-w- c:\users\Sasha\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-10 23:54 131248 ----a-w- c:\users\Sasha\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-10 23:54 131248 ----a-w- c:\users\Sasha\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\KAVOverlayIcon] @="{dd230880-495a-11d1-b064-008048ec2fc5}" [HKEY_CLASSES_ROOT\CLSID\{dd230880-495a-11d1-b064-008048ec2fc5}] 2014-04-02 08:38 458944 ----a-w- c:\program files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\shellex.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\P4EXPCheckoutOverlay] @="{80E008A4-EAE7-4867-AEB0-1A245F070F25}" [HKEY_CLASSES_ROOT\CLSID\{80E008A4-EAE7-4867-AEB0-1A245F070F25}] 2012-09-24 13:48 1954440 ----a-w- d:\program files\Perforce\p4exp.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\P4EXPSyncdOverlay] @="{ADF262C1-E8FE-49BE-AD63-F77CD4A6CCD9}" [HKEY_CLASSES_ROOT\CLSID\{ADF262C1-E8FE-49BE-AD63-F77CD4A6CCD9}] 2012-09-24 13:48 1954440 ----a-w- d:\program files\Perforce\p4exp.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\P4EXPUpdateOverlay] @="{C550CDA2-37D7-4838-A9D7-65ECB1EB5AB2}" [HKEY_CLASSES_ROOT\CLSID\{C550CDA2-37D7-4838-A9D7-65ECB1EB5AB2}] 2012-09-24 13:48 1954440 ----a-w- d:\program files\Perforce\p4exp.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ShareOverlay] @="{594D4122-1F87-41E2-96C7-825FB4796516}" [HKEY_CLASSES_ROOT\CLSID\{594D4122-1F87-41E2-96C7-825FB4796516}] 2014-01-18 16:11 674496 ----a-w- c:\program files\Classic Shell\ClassicExplorer32.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "DisplayFusion"="d:\program files (x86)\DisplayFusion\DisplayFusion.exe" [2013-11-27 7952224] "RocketDock"="d:\program files (x86)\RocketDock\RocketDock.exe" [2007-09-02 495616] "Sony PC Companion"="c:\program files (x86)\Sony\Sony PC Companion\PCCompanion.exe" [2014-05-23 466656] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "AVP"="c:\program files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\runner_avp.exe" [2013-10-16 24256] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableUIADesktopToggle"= 0 (0x0) "EnableCursorSuppression"= 1 (0x1) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32] "aux5"=wdmaud.drv . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus] "DisableMonitoring"=dword:00000001 . R0 klelam;klelam;c:\windows\system32\DRIVERS\klelam.sys;c:\windows\SYSNATIVE\DRIVERS\klelam.sys [x] R2 BstHdAndroidSvc;BlueStacks Android Service;c:\program files (x86)\BlueStacks\HD-Service.exe BstHdAndroidSvc Android;c:\program files (x86)\BlueStacks\HD-Service.exe BstHdAndroidSvc Android [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R3 AppObserver;Application creation observer;c:\program files (x86)\NetRatingsNetSight\NetSight\meter2\appobserver64.sys;c:\program files (x86)\NetRatingsNetSight\NetSight\meter2\appobserver64.sys [x] R3 AU8168;AU 8168 NT Driver;c:\windows\system32\DRIVERS\au630x64.sys;c:\windows\SYSNATIVE\DRIVERS\au630x64.sys [x] R3 BEService;BattlEye Service;c:\program files (x86)\Common Files\BattlEye\BEService.exe;c:\program files (x86)\Common Files\BattlEye\BEService.exe [x] R3 BTCOM;Bluetooth Serial port driver;c:\windows\system32\DRIVERS\btcomport.sys;c:\windows\SYSNATIVE\DRIVERS\btcomport.sys [x] R3 BtHidBus;BtHidBus;c:\windows\System32\Drivers\BtHidBus.sys;c:\windows\SYSNATIVE\Drivers\BtHidBus.sys [x] R3 cpuz136;cpuz136;c:\windows\TEMP\cpuz136\cpuz136_x64.sys;c:\windows\TEMP\cpuz136\cpuz136_x64.sys [x] R3 dc3d;MS Hardware Device Detection Driver (USB);c:\windows\System32\drivers\dc3d.sys;c:\windows\SYSNATIVE\drivers\dc3d.sys [x] R3 DfSdkS;Defragmentation-Service;d:\program files (x86)\Ashampoo\Ashampoo WinOptimizer 10\DfsdkS64.exe;d:\program files (x86)\Ashampoo\Ashampoo WinOptimizer 10\DfsdkS64.exe [x] R3 dump_wmimmc;dump_wmimmc;d:\aeriagames\Wolfteam-DE\GameGuard\dump_wmimmc.sys;d:\aeriagames\Wolfteam-DE\GameGuard\dump_wmimmc.sys [x] R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys;c:\windows\SYSNATIVE\drivers\EagleX64.sys [x] R3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [x] R3 GPUZ;GPUZ;c:\windows\TEMP\GPUZ.sys;c:\windows\TEMP\GPUZ.sys [x] R3 IvtAudioBusSrv;IvtAudioBusSrv;c:\windows\System32\Drivers\IvtBtBus.sys;c:\windows\SYSNATIVE\Drivers\IvtBtBus.sys [x] R3 IvtComBusSrv;IvtComBusSrv;c:\windows\System32\Drivers\btcombus.sys;c:\windows\SYSNATIVE\Drivers\btcombus.sys [x] R3 IvtPanBusSrv;IvtPanBusSrv;c:\windows\System32\Drivers\btnetBus.sys;c:\windows\SYSNATIVE\Drivers\btnetBus.sys [x] R3 MySQL95;MySQL95;d:\program files\MySQL\MySQL Server 5.6\bin\mysqld --defaults-file=d:\programdata\MySQL\MySQL Server 5.6\my.ini MySQL95;d:\program files\MySQL\MySQL Server 5.6\bin\mysqld --defaults-file=d:\programdata\MySQL\MySQL Server 5.6\my.ini MySQL95 [x] R3 NdisImPlatformMp;Microsoft-Multiplexortreiber für Netzwerkadapter;c:\windows\system32\DRIVERS\NdisImPlatform.sys;c:\windows\SYSNATIVE\DRIVERS\NdisImPlatform.sys [x] R3 Netaapl;Apple Mobile Device Ethernet Service;c:\windows\system32\DRIVERS\netaapl64.sys;c:\windows\SYSNATIVE\DRIVERS\netaapl64.sys [x] R3 npggsvc;nProtect GameGuard Service;c:\windows\system32\GameMon.des;c:\windows\SYSNATIVE\GameMon.des [x] R3 OverwolfUpdater;Overwolf Updater Windows SCM;c:\program files (x86)\Overwolf\OverwolfUpdater.exe;c:\program files (x86)\Overwolf\OverwolfUpdater.exe [x] R3 PGUSBWDM_AQVOX;AQVOX.com USB Driver;c:\windows\System32\Drivers\aqvoxusb.sys;c:\windows\SYSNATIVE\Drivers\aqvoxusb.sys [x] R3 Sony PC Companion;Sony PC Companion;c:\program files (x86)\Sony\Sony PC Companion\PCCService.exe;c:\program files (x86)\Sony\Sony PC Companion\PCCService.exe [x] R3 taphss6;Anchorfree HSS VPN Adapter;c:\windows\system32\DRIVERS\taphss6.sys;c:\windows\SYSNATIVE\DRIVERS\taphss6.sys [x] R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\System32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x] R3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\DRIVERS\VBoxNetAdp.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxNetAdp.sys [x] R3 VBoxNetFlt;VirtualBox Bridged Networking Service;c:\windows\system32\DRIVERS\VBoxNetFlt.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxNetFlt.sys [x] R3 WO_LiveService;Ashampoo LiveTuner Service;d:\program files (x86)\Ashampoo\Ashampoo WinOptimizer 10\LiveTunerService.exe;d:\program files (x86)\Ashampoo\Ashampoo WinOptimizer 10\LiveTunerService.exe [x] R3 WUDFWpdMtp;WUDFWpdMtp;c:\windows\system32\DRIVERS\WUDFRd.sys;c:\windows\SYSNATIVE\DRIVERS\WUDFRd.sys [x] R3 X6va011;X6va011;c:\windows\SysWOW64\Drivers\X6va011;c:\windows\SysWOW64\Drivers\X6va011 [x] R3 xb1usb;Microsoft Xbox One Controller Driver;c:\windows\System32\drivers\xb1usb.sys;c:\windows\SYSNATIVE\drivers\xb1usb.sys [x] R3 xhunter1;xhunter1;c:\windows\xhunter1.sys;c:\windows\xhunter1.sys [x] S0 CSCrySec;InfoWatch Encrypt Sector Library driver;c:\windows\system32\DRIVERS\CSCrySec.sys;c:\windows\SYSNATIVE\DRIVERS\CSCrySec.sys [x] S0 iaStorA;iaStorA;c:\windows\System32\drivers\iaStorA.sys;c:\windows\SYSNATIVE\drivers\iaStorA.sys [x] S0 oodisr;O&O DiskImage Snapshot/Restore Driver;c:\windows\system32\DRIVERS\oodisr.sys;c:\windows\SYSNATIVE\DRIVERS\oodisr.sys [x] S0 oodisrh;oodisrh;c:\windows\system32\DRIVERS\oodisrh.sys;c:\windows\SYSNATIVE\DRIVERS\oodisrh.sys [x] S0 oodivd;O&O DiskImage Virtual Devices Driver;c:\windows\system32\DRIVERS\oodivd.sys;c:\windows\SYSNATIVE\DRIVERS\oodivd.sys [x] S0 oodivdh;oodivdh;c:\windows\system32\DRIVERS\oodivdh.sys;c:\windows\SYSNATIVE\DRIVERS\oodivdh.sys [x] S0 vmci;VMware VMCI Bus Driver;c:\windows\System32\drivers\vmci.sys;c:\windows\SYSNATIVE\drivers\vmci.sys [x] S0 vsock;vSockets Driver;c:\windows\system32\drivers\vsock.sys;c:\windows\SYSNATIVE\drivers\vsock.sys [x] S1 AsUpIO;AsUpIO;SysWow64\drivers\AsUpIO.sys;SysWow64\drivers\AsUpIO.sys [x] S1 CSVirtualDiskDrv;InfoWatch Virtual Disk driver;c:\windows\system32\DRIVERS\CSVirtualDiskDrv.sys;c:\windows\SYSNATIVE\DRIVERS\CSVirtualDiskDrv.sys [x] S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\System32\drivers\dtsoftbus01.sys;c:\windows\SYSNATIVE\drivers\dtsoftbus01.sys [x] S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys;c:\windows\SYSNATIVE\DRIVERS\klim6.sys [x] S1 klwfp;klwfp;c:\windows\system32\DRIVERS\klwfp.sys;c:\windows\SYSNATIVE\DRIVERS\klwfp.sys [x] S1 kneps;kneps;c:\windows\system32\DRIVERS\kneps.sys;c:\windows\SYSNATIVE\DRIVERS\kneps.sys [x] S2 ADExchange;ArcSoft Exchange Service;c:\program files (x86)\Common Files\ArcSoft\esinter\Bin\eservutil.exe;c:\program files (x86)\Common Files\ArcSoft\esinter\Bin\eservutil.exe [x] S2 aksdf;aksdf;c:\windows\system32\drivers\aksdf.sys;c:\windows\SYSNATIVE\drivers\aksdf.sys [x] S2 asComSvc;ASUS Com Service;c:\program files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe;c:\program files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [x] S2 asHmComSvc;ASUS HM Com Service;c:\program files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe;c:\program files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [x] S2 AsSysCtrlService;ASUS System Control Service;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [x] S2 BstHdDrv;BlueStacks Hypervisor;c:\program files (x86)\BlueStacks\HD-Hypervisor-amd64.sys;c:\program files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [x] S2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service;c:\program files (x86)\BlueStacks\HD-LogRotatorService.exe;c:\program files (x86)\BlueStacks\HD-LogRotatorService.exe [x] S2 CGVPNCliService;CyberGhost VPN 5 Client Service;c:\program files\CyberGhost 5\Service.exe;c:\program files\CyberGhost 5\Service.exe [x] S2 CSObjectsSrv;Verwaltungsservice vom CryproStorage-System;c:\program files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe;c:\program files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [x] S2 DisplayFusionService;DisplayFusionService;d:\program files (x86)\DisplayFusion\DisplayFusionService.exe;d:\program files (x86)\DisplayFusion\DisplayFusionService.exe [x] S2 Fabs;FABS - Helping agent for MAGIX media database;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [x] S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [x] S2 hasplms;Sentinel Local License Manager;c:\windows\system32\hasplms.exe -run;c:\windows\SYSNATIVE\hasplms.exe -run [x] S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x] S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x] S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x] S2 LiveTunerPM;Ashampoo LiveTuner ProcessMonitor Driver;d:\program files (x86)\Ashampoo\Ashampoo WinOptimizer 10\LiveTunerProcessMonitor64.sys;d:\program files (x86)\Ashampoo\Ashampoo WinOptimizer 10\LiveTunerProcessMonitor64.sys [x] S2 LMIGuardianSvc;LMIGuardianSvc;c:\program files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe;c:\program files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [x] S2 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x] S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x] S2 OO DiskImage;OO DiskImage;c:\program files\OO Software\DiskImage\oodiag.exe;c:\program files\OO Software\DiskImage\oodiag.exe [x] S2 Perforce Proxy;Perforce Proxy;d:\program files\Perforce\Proxy\p4ps.exe;d:\program files\Perforce\Proxy\p4ps.exe [x] S2 Perforce;Perforce;d:\program files\Perforce\Server\p4s.exe;d:\program files\Perforce\Server\p4s.exe [x] S2 RzKLService;RzKLService;d:\program files (x86)\Razer\Razer Game Booster\RzKLService.exe;d:\program files (x86)\Razer\Razer Game Booster\RzKLService.exe [x] S2 RzMaelstromVADStreamingService;Razer Surround Audio Service;c:\programdata\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe;c:\programdata\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe [x] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x] S2 TeamViewer8;TeamViewer 8;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [x] S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x] S2 Virtual Router;VirtualRouterService;d:\program files (x86)\Virtual Router\VirtualRouterService.exe;d:\program files (x86)\Virtual Router\VirtualRouterService.exe [x] S2 VMUSBArbService;VMware USB Arbitration Service;c:\program files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe;c:\program files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [x] S3 AiChargerPlus;AiChargerPlus;SysWow64\drivers\AiChargerPlus.sys;SysWow64\drivers\AiChargerPlus.sys [x] S3 BEHRINGER_2902;usb-audio.de driver for BEHRINGER USB AUDIO;c:\windows\System32\Drivers\BUSB2902.sys;c:\windows\SYSNATIVE\Drivers\BUSB2902.sys [x] S3 bthav;Bluetooth-AV-Profil;c:\windows\system32\drivers\bthav.sys;c:\windows\SYSNATIVE\drivers\bthav.sys [x] S3 BUSB_AUDIO_WDM;BEHRINGER USB WDM AUDIO;c:\windows\system32\drivers\busbwdm.sys;c:\windows\SYSNATIVE\drivers\busbwdm.sys [x] S3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT);c:\windows\System32\drivers\ICCWDT.sys;c:\windows\SYSNATIVE\drivers\ICCWDT.sys [x] S3 klkbdflt;Kaspersky Lab KLKBDFLT;c:\windows\system32\DRIVERS\klkbdflt.sys;c:\windows\SYSNATIVE\DRIVERS\klkbdflt.sys [x] S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys;c:\windows\SYSNATIVE\DRIVERS\klmouflt.sys [x] S3 ManyCam;ManyCam Virtual Webcam;c:\windows\system32\DRIVERS\mcvidrv_x64.sys;c:\windows\SYSNATIVE\DRIVERS\mcvidrv_x64.sys [x] S3 mcaudrv_simple;ManyCam Virtual Microphone;c:\windows\system32\drivers\mcaudrv_x64.sys;c:\windows\SYSNATIVE\drivers\mcaudrv_x64.sys [x] S3 NvStreamKms;NvStreamKms;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [x] S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x] S3 RTL8168;Realtek 8168 NT Driver;c:\windows\system32\DRIVERS\Rt630x64.sys;c:\windows\SYSNATIVE\DRIVERS\Rt630x64.sys [x] S3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\DRIVERS\RTL8192su.sys;c:\windows\SYSNATIVE\DRIVERS\RTL8192su.sys [x] S3 RZMAELSTROMVADService;Razer Surround Audio Enhancer Service;c:\windows\system32\drivers\RzMaelstromVAD.sys;c:\windows\SYSNATIVE\drivers\RzMaelstromVAD.sys [x] S3 xusb22;Treiberdienst 22 für Xbox 360 Wireless Receiver;c:\windows\System32\drivers\xusb22.sys;c:\windows\SYSNATIVE\drivers\xusb22.sys [x] . . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2014-07-19 03:31 1104200 ----a-w- c:\program files (x86)\Google\Chrome\Application\36.0.1985.125\Installer\chrmstp.exe . Inhalt des "geplante Tasks" Ordners . 2014-07-29 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-01-23 18:57] . 2014-07-05 c:\windows\Tasks\DriverEasy Scheduled Scan.job - d:\program files\Easeware\DriverEasy\DriverEasy.exe [2013-12-05 09:38] . 2014-07-29 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-852994989-324450782-3891972763-1001Core.job - c:\users\Sasha\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-10-30 13:40] . 2014-07-29 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-852994989-324450782-3891972763-1001UA.job - c:\users\Sasha\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-10-30 13:40] . 2014-07-29 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-05-09 22:59] . 2014-07-29 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-05-09 22:59] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1] @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}" [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}] 2013-09-06 23:34 261744 ----a-w- c:\users\Sasha\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2] @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}" [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}] 2013-09-06 23:34 261744 ----a-w- c:\users\Sasha\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3] @="{BBACC218-34EA-4666-9D7A-C78F2274A524}" [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}] 2013-09-06 23:34 261744 ----a-w- c:\users\Sasha\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-10 23:54 164016 ----a-w- c:\users\Sasha\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-10 23:54 164016 ----a-w- c:\users\Sasha\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-10 23:54 164016 ----a-w- c:\users\Sasha\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4] @="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-10 23:54 164016 ----a-w- c:\users\Sasha\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\KAVOverlayIcon] @="{dd230880-495a-11d1-b064-008048ec2fc5}" [HKEY_CLASSES_ROOT\CLSID\{dd230880-495a-11d1-b064-008048ec2fc5}] 2014-04-02 08:39 491200 ----a-w- c:\program files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\shellex.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\OODIIcon] @="{14A94384-BBED-47ed-86C0-6BF63FD892D0}" [HKEY_CLASSES_ROOT\CLSID\{14A94384-BBED-47ed-86C0-6BF63FD892D0}] 2013-09-09 15:36 114992 ----a-w- c:\program files\OO Software\DiskImage\oodishi.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\P4EXPCheckoutOverlay] @="{80E008A4-EAE7-4867-AEB0-1A245F070F25}" [HKEY_CLASSES_ROOT\CLSID\{80E008A4-EAE7-4867-AEB0-1A245F070F25}] 2012-09-24 13:49 2394760 ----a-w- d:\program files\Perforce\p4exp64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\P4EXPSyncdOverlay] @="{ADF262C1-E8FE-49BE-AD63-F77CD4A6CCD9}" [HKEY_CLASSES_ROOT\CLSID\{ADF262C1-E8FE-49BE-AD63-F77CD4A6CCD9}] 2012-09-24 13:49 2394760 ----a-w- d:\program files\Perforce\p4exp64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\P4EXPUpdateOverlay] @="{C550CDA2-37D7-4838-A9D7-65ECB1EB5AB2}" [HKEY_CLASSES_ROOT\CLSID\{C550CDA2-37D7-4838-A9D7-65ECB1EB5AB2}] 2012-09-24 13:49 2394760 ----a-w- d:\program files\Perforce\p4exp64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ShareOverlay] @="{594D4122-1F87-41E2-96C7-825FB4796516}" [HKEY_CLASSES_ROOT\CLSID\{594D4122-1F87-41E2-96C7-825FB4796516}] 2014-01-18 16:12 796352 ----a-w- c:\program files\Classic Shell\ClassicExplorer64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2013-10-22 7203032] "NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2014-07-25 2403104] "Classic Start Menu"="c:\program files\Classic Shell\ClassicStartMenu.exe" [2014-01-18 161984] "XboxStat"="c:\program files\Microsoft Xbox 360 Accessories\XboxStat.exe" [2009-10-01 825184] "ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2014-07-25 1283136] . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://www.google.com uDefault_Search_URL = hxxp://www.google.com mDefault_Search_URL = hxxp://www.google.com mDefault_Page_URL = hxxp://www.google.com mStart Page = hxxp://www.google.com mLocal Page = c:\windows\SysWOW64\blank.htm mSearch Page = hxxp://www.google.com uInternet Settings,ProxyOverride = <local> uSearchAssistant = hxxp://www.google.com IE: Free YouTube to MP3 Converter - c:\program files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm IE: Hinzufügen zu Anti-Banner - c:\program files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ie_banner_deny.htm Trusted Zone: aeriagames.com Trusted Zone: clonewarsadventures.com Trusted Zone: freerealms.com Trusted Zone: soe.com Trusted Zone: sony.com TCP: DhcpNameServer = 192.168.2.1 192.168.2.1 TCP: Interfaces\{EF50FB12-8FE7-49B4-8BBC-E2045BA799CC}: NameServer = 192.168.137.1 DPF: {A672558F-A878-4D5A-A921-627C091CEB6A} - hxxp://download.flatcast.net/objects/NpFp530.dll FF - ProfilePath - c:\users\Sasha\AppData\Roaming\Mozilla\Firefox\Profiles\zntnjtxn.default\ FF - prefs.js: network.proxy.gopher - FF - prefs.js: network.proxy.gopher_port - 0 FF - prefs.js: network.proxy.http - www-proxy.t-online.de FF - prefs.js: network.proxy.http_port - 80 FF - prefs.js: network.proxy.type - 0 . - - - - Entfernte verwaiste Registrierungseinträge - - - - . Toolbar-Locked - (no file) Wow6432Node-HKLM-Run-<NO NAME> - (no file) Toolbar-Locked - (no file) AddRemove-Adobe Acrobat 4.0 - c:\windows\ISUN0407.EXE AddRemove-ForceBindIP - c:\windows\system32\ForceBindIP-Uninstaller.exe AddRemove-{6F30AB4A-C67B-3DFB-D44A-BF7450D55EB6} - c:\progra~3\INSTAL~1\{54C53~1\Setup.exe AddRemove-Google Chrome - c:\users\Sasha\AppData\Local\Google\Chrome\Application\24.0.1312.57\Installer\setup.exe . . Binary file temp00 matches . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MySQL] "ImagePath"="\"d:\program files\MySQL\MySQL Server 5.6\bin\mysqld\" --defaults-file=\"d:\programdata\MySQL\MySQL Server 5.6\my.ini\" MySQL" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MySQL95] "ImagePath"="\"d:\program files\MySQL\MySQL Server 5.6\bin\mysqld\" --defaults-file=\"d:\programdata\MySQL\MySQL Server 5.6\my.ini\" MySQL95" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\npggsvc] "ImagePath"="c:\windows\system32\GameMon.des -service" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\X6va011] "ImagePath"="\??\c:\windows\SysWOW64\Drivers\X6va011" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WiseBootAssistant |