Plagegeister aller Art und deren Bekämpfung: Spyhunter 4 lässt sich nicht total entfernen
![]() | ![]() Spyhunter 4 lässt sich nicht total entfernen Hallo Forum, ich habe mir blöder weise Spyhunter 4 heruntergeladen im Glauben das Programm sei o.k. Ist es aber wohl nicht.Noch vor dem Starten habe ich das Gott sei Dank gelesen und zunächst mit Spyhunter Defender gelöscht.Dann Adware Cleaner und schließlich Malware Defender. Das hat scheinbar geklappt aber es ist unter Programme ein Eintrag geblieben der sich durch nichts löschen lässt auch nicht durch CCCleaner.Es heißt immer kein Zugriff. Wenn ich das in Programme mit deinstallieren versuche ( als Administrator) heißt es ich hätte keine Administrator Rechte. Ich weiß jetzt einfach nicht mehr wie ich das Problem beseitigen soll und wäre für Hilfe sehr dankbar! Bin kein Freak und bräuchte netterweise genaue Anleitung.Dann Klappt´s sicher. Danke !! |
Spyhunter 4 lässt sich nicht total entfernen

hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: ![]() (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
![]() | ![]() Spyhunter 4 lässt sich nicht total entfernen Hallo schrauber-danke für die schnelle Antwort.
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Spyhunter 4 lässt sich nicht total entfernen Unsere Tools brauchen immer ADminrechte! Scan mit Combofix
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Spyhunter 4 lässt sich nicht total entfernen

Hallo Schrauber, leider kann ich keine Code tags erstellen weil ich nicht so fit bin mit dem Computer-tut mir leid- ich hoffe das geht auch so!? Ich poste das Ergebnis unten-hat alles nach Deiner Anweisung prima geklappt-dafür schonmal danke:
ATTFilter ComboFix 14-11-12.01 - timone 15.11.2014 12:07:19.1.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.4077.2014 [GMT 1:00] ausgeführt von:: c:\users\timone_2\Downloads\ComboFix.exe AV: Avira Desktop *Disabled/Updated* {4D041356-F94D-285F-8768-AAE50FA36859} SP: Avira Desktop *Disabled/Updated* {F665F2B2-DF77-27D1-BDD8-9197742422E4} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\users\timone\Start BlitzBlank.exe c:\users\timone\Start Commandline Scanner.exe c:\users\timone\Start Emergency Kit Scanner.exe c:\windows\wininit.ini . . ((((((((((((((((((((((( Dateien erstellt von 2014-10-15 bis 2014-11-15 )))))))))))))))))))))))))))))) . . 2014-11-15 11:22 . 2014-11-15 11:22 -------- d-----w- c:\users\timone\AppData\Local\temp 2014-11-15 11:22 . 2014-11-15 11:22 -------- d-----w- c:\users\Default\AppData\Local\temp 2014-11-14 09:22 . 2014-10-14 19:59 11627712 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{D48CC2C1-D3D9-4263-9384-51402D743C79}\mpengine.dll 2014-11-13 16:32 . 2014-11-13 16:34 -------- d-----w- C:\FRST 2014-11-13 11:26 . 2014-11-13 11:26 -------- d-sh--w- c:\users\timone\AppData\Local\EmieBrowserModeList 2014-11-13 00:01 . 2014-11-13 13:02 -------- d-----w- c:\users\timone\bin 2014-11-12 23:47 . 2014-11-12 23:47 -------- d-----w- C:\EEK 2014-11-12 12:26 . 2014-11-12 12:29 -------- d-----w- C:\AdwCleaner 2014-11-12 11:14 . 2014-10-25 01:57 77824 ----a-w- c:\windows\system32\packager.dll 2014-11-12 11:14 . 2014-10-25 01:32 67584 ----a-w- c:\windows\SysWow64\packager.dll 2014-11-12 11:03 . 2014-10-14 02:13 683520 ----a-w- c:\windows\system32\termsrv.dll 2014-11-12 11:03 . 2014-10-14 02:16 155064 ----a-w- c:\windows\system32\drivers\ksecpkg.sys 2014-11-12 11:03 . 2014-10-14 02:07 681984 ----a-w- c:\windows\system32\adtschema.dll 2014-11-12 11:03 . 2014-10-14 01:46 681984 ----a-w- c:\windows\SysWow64\adtschema.dll 2014-11-12 11:03 . 2014-10-14 02:12 1460736 ----a-w- c:\windows\system32\lsasrv.dll 2014-11-12 11:03 . 2014-10-14 02:09 146432 ----a-w- c:\windows\system32\msaudite.dll 2014-11-12 11:03 . 2014-10-14 01:50 22016 ----a-w- c:\windows\SysWow64\secur32.dll 2014-11-12 11:03 . 2014-10-14 01:49 96768 ----a-w- c:\windows\SysWow64\sspicli.dll 2014-11-12 11:03 . 2014-10-14 01:47 146432 ----a-w- c:\windows\SysWow64\msaudite.dll 2014-11-12 11:02 . 2014-08-21 06:43 1882624 ----a-w- c:\windows\system32\msxml3.dll 2014-11-12 11:02 . 2014-08-21 06:40 2048 ----a-w- c:\windows\system32\msxml3r.dll 2014-11-12 11:02 . 2014-08-21 06:26 1237504 ----a-w- c:\windows\SysWow64\msxml3.dll 2014-11-12 11:02 . 2014-08-21 06:23 2048 ----a-w- c:\windows\SysWow64\msxml3r.dll 2014-11-12 11:02 . 2014-08-12 02:02 878080 ----a-w- c:\windows\system32\IMJP10K.DLL 2014-11-12 11:02 . 2014-08-12 01:36 701440 ----a-w- c:\windows\SysWow64\IMJP10K.DLL 2014-11-12 11:01 . 2014-10-03 02:12 500224 ----a-w- c:\windows\system32\AUDIOKSE.dll 2014-11-12 11:01 . 2014-10-03 02:11 680960 ----a-w- c:\windows\system32\audiosrv.dll 2014-11-12 11:01 . 2014-10-03 01:44 442880 ----a-w- c:\windows\SysWow64\AUDIOKSE.dll 2014-11-12 11:01 . 2014-10-03 02:11 284672 ----a-w- c:\windows\system32\EncDump.dll 2014-11-12 11:01 . 2014-10-03 02:11 440832 ----a-w- c:\windows\system32\AudioEng.dll 2014-11-12 11:01 . 2014-10-03 02:11 296448 ----a-w- c:\windows\system32\AudioSes.dll 2014-11-12 11:01 . 2014-10-03 01:44 374784 ----a-w- c:\windows\SysWow64\AudioEng.dll 2014-11-12 11:01 . 2014-10-03 01:44 195584 ----a-w- c:\windows\SysWow64\AudioSes.dll 2014-11-12 10:55 . 2014-10-10 00:57 3198976 ----a-w- c:\windows\system32\win32k.sys 2014-11-12 10:55 . 2014-10-14 02:13 3241984 ----a-w- c:\windows\system32\msi.dll 2014-11-12 10:55 . 2014-10-14 01:50 2363904 ----a-w- c:\windows\SysWow64\msi.dll 2014-11-12 10:54 . 2014-10-18 02:05 861696 ----a-w- c:\windows\system32\oleaut32.dll 2014-11-12 10:54 . 2014-10-18 01:33 571904 ----a-w- c:\windows\SysWow64\oleaut32.dll 2014-11-12 00:02 . 2014-10-01 10:11 63704 ----a-w- c:\windows\system32\drivers\mwac.sys 2014-11-12 00:02 . 2014-10-01 10:11 93400 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys 2014-11-12 00:02 . 2014-10-01 10:11 25816 ----a-w- c:\windows\system32\drivers\mbam.sys 2014-11-12 00:02 . 2014-11-12 00:02 -------- d-----w- c:\program files (x86)\ Malwarebytes Anti-Malware 2014-11-11 23:44 . 2014-11-11 23:44 -------- d-----w- c:\users\timone\AppData\Roaming\Dropbox 2014-11-11 23:29 . 2014-11-13 14:05 -------- d-----w- c:\users\timone\AppData\Local\AviraSpeedup 2014-11-11 23:27 . 2014-11-11 23:27 -------- d-----w- c:\users\timone\AppData\Local\NVIDIA Corporation 2014-11-11 23:23 . 2014-11-11 23:23 -------- d-----w- c:\users\timone\AppData\Local\NVIDIA 2014-11-11 19:26 . 2014-11-11 23:44 -------- d-----w- c:\users\timone_2\AppData\Roaming\Dropbox 2014-10-16 16:47 . 2014-06-18 22:23 1943696 ----a-w- c:\windows\system32\dfshim.dll 2014-10-16 16:47 . 2014-06-18 22:23 156312 ----a-w- c:\windows\system32\mscorier.dll 2014-10-16 16:47 . 2014-06-18 22:23 156824 ----a-w- c:\windows\SysWow64\mscorier.dll 2014-10-16 16:47 . 2014-06-18 22:23 1131664 ----a-w- c:\windows\SysWow64\dfshim.dll 2014-10-16 16:47 . 2014-06-18 22:23 73880 ----a-w- c:\windows\system32\mscories.dll 2014-10-16 16:47 . 2014-06-18 22:23 81560 ----a-w- c:\windows\SysWow64\mscories.dll 2014-10-16 16:45 . 2014-08-29 02:07 3179520 ----a-w- c:\windows\system32\rdpcorets.dll 2014-10-16 16:44 . 2014-09-04 05:23 424448 ----a-w- c:\windows\system32\rastls.dll 2014-10-16 16:44 . 2014-09-04 05:04 372736 ----a-w- c:\windows\SysWow64\rastls.dll 2014-10-16 16:44 . 2014-07-17 02:07 235520 ----a-w- c:\windows\system32\winsta.dll 2014-10-16 16:44 . 2014-07-17 02:07 150528 ----a-w- c:\windows\system32\rdpcorekmts.dll 2014-10-16 16:44 . 2014-07-17 02:07 455168 ----a-w- c:\windows\system32\winlogon.exe 2014-10-16 16:44 . 2014-07-17 01:40 157696 ----a-w- c:\windows\SysWow64\winsta.dll 2014-10-16 16:44 . 2014-07-17 01:21 212480 ----a-w- c:\windows\system32\drivers\rdpwd.sys 2014-10-16 16:44 . 2014-07-17 01:21 39936 ----a-w- c:\windows\system32\drivers\tssecsrv.sys 2014-10-16 16:43 . 2014-09-05 02:11 6584320 ----a-w- c:\windows\system32\mstscax.dll 2014-10-16 16:43 . 2014-09-05 01:52 5703168 ----a-w- c:\windows\SysWow64\mstscax.dll . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2014-11-13 09:44 . 2014-09-28 10:04 16152 ----a-w- c:\windows\system32\drivers\SWDUMon.sys 2014-11-13 00:24 . 2014-01-17 21:11 71344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2014-11-13 00:24 . 2014-01-17 21:11 701104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2014-11-12 20:05 . 2012-11-17 09:32 103374192 ----a-w- c:\windows\system32\MRT.exe 2014-11-12 00:03 . 2014-05-18 13:45 129752 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys 2014-10-28 05:34 . 2010-11-21 03:27 275080 ------w- c:\windows\system32\MpSigStub.exe 2014-10-14 09:03 . 2013-05-08 17:55 43064 ----a-w- c:\windows\system32\drivers\avnetflt.sys 2014-10-14 09:03 . 2013-03-27 23:03 131608 ----a-w- c:\windows\system32\drivers\avipbb.sys 2014-10-14 09:03 . 2013-03-27 23:03 119272 ----a-w- c:\windows\system32\drivers\avgntflt.sys 2014-10-02 18:11 . 2014-10-02 18:11 0 ---ha-w- c:\users\timone_2\AppData\Local\BITEA6E.tmp 2014-09-25 02:08 . 2014-10-02 23:29 371712 ----a-w- c:\windows\system32\qdvd.dll 2014-09-25 01:40 . 2014-10-02 23:29 519680 ----a-w- c:\windows\SysWow64\qdvd.dll 2014-09-17 04:51 . 2014-09-28 10:43 31520 ----a-w- c:\windows\system32\nvhdap64.dll 2014-09-17 04:51 . 2014-09-28 10:43 197408 ----a-w- c:\windows\system32\drivers\nvhda64v.sys 2014-09-17 04:51 . 2013-02-18 07:22 1538880 ----a-w- c:\windows\system32\nvhdagenco6420103.dll 2014-09-13 23:48 . 2014-09-28 10:43 31887680 ----a-w- c:\windows\system32\nvoglv64.dll 2014-09-13 23:48 . 2014-09-28 10:43 24552592 ----a-w- c:\windows\SysWow64\nvoglv32.dll 2014-09-13 23:48 . 2014-09-28 10:43 14026304 ----a-w- c:\windows\system32\nvopencl.dll 2014-09-13 23:48 . 2014-09-28 10:43 13157696 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys 2014-09-13 23:48 . 2014-09-28 10:43 11392576 ----a-w- c:\windows\SysWow64\nvopencl.dll 2014-09-13 23:48 . 2014-09-28 10:43 957584 ----a-w- c:\windows\system32\NvIFR64.dll 2014-09-13 23:48 . 2014-09-28 10:43 925896 ----a-w- c:\windows\system32\NvFBC64.dll 2014-09-13 23:48 . 2014-09-28 10:43 919240 ----a-w- c:\windows\SysWow64\NvIFR.dll 2014-09-13 23:48 . 2014-09-28 10:43 894096 ----a-w- c:\windows\SysWow64\NvFBC.dll 2014-09-13 23:48 . 2014-09-28 10:43 4287296 ----a-w- c:\windows\system32\nvcuvid.dll 2014-09-13 23:48 . 2014-09-28 10:43 4008592 ----a-w- c:\windows\SysWow64\nvcuvid.dll 2014-09-13 23:48 . 2014-09-28 10:43 1876296 ----a-w- c:\windows\system32\nvdispco6434411.dll 2014-09-13 23:48 . 2014-09-28 10:43 1539272 ----a-w- c:\windows\system32\nvdispgenco6434411.dll 2014-09-13 23:48 . 2014-09-28 10:43 13939272 ----a-w- c:\windows\system32\nvcuda.dll 2014-09-13 23:48 . 2014-09-28 10:43 20922512 ----a-w- c:\windows\system32\nvcompiler.dll 2014-09-13 23:48 . 2014-09-28 10:43 17259664 ----a-w- c:\windows\SysWow64\nvcompiler.dll 2014-09-13 23:48 . 2014-09-28 10:43 11330776 ----a-w- c:\windows\SysWow64\nvcuda.dll 2014-09-13 23:48 . 2012-10-05 06:51 3223120 ----a-w- c:\windows\system32\nvapi64.dll 2014-09-13 23:48 . 2012-10-05 06:51 2838424 ----a-w- c:\windows\SysWow64\nvapi.dll 2014-09-13 23:48 . 2012-10-05 06:51 20589536 ----a-w- c:\windows\system32\nvwgf2umx.dll 2014-09-13 23:48 . 2012-10-05 06:51 19954520 ----a-w- c:\windows\system32\nvd3dumx.dll 2014-09-13 23:48 . 2012-10-05 06:51 18106152 ----a-w- c:\windows\SysWow64\nvwgf2um.dll 2014-09-13 23:48 . 2012-10-05 06:51 16875856 ----a-w- c:\windows\SysWow64\nvd3dum.dll 2014-09-13 21:53 . 2011-06-16 20:49 6890696 ----a-w- c:\windows\system32\nvcpl.dll 2014-09-13 21:53 . 2011-06-16 20:49 3529872 ----a-w- c:\windows\system32\nvsvc64.dll 2014-09-13 21:53 . 2011-06-16 20:49 385168 ----a-w- c:\windows\system32\nvmctray.dll 2014-09-13 21:53 . 2011-06-16 20:49 934216 ----a-w- c:\windows\system32\nvvsvc.exe 2014-09-13 21:53 . 2011-06-16 20:49 62608 ----a-w- c:\windows\system32\nvshext.dll 2014-09-13 21:53 . 2011-06-16 20:49 2557640 ----a-w- c:\windows\system32\nvsvcr.dll 2014-09-13 20:13 . 2014-09-28 10:47 613696 ----a-w- c:\windows\SysWow64\nvStreaming.exe 2014-09-11 15:37 . 2014-09-28 10:46 3961833 ----a-w- c:\windows\system32\nvcoproc.bin 2014-09-09 22:11 . 2014-09-24 08:51 2048 ----a-w- c:\windows\system32\tzres.dll 2014-09-09 21:47 . 2014-09-24 08:51 2048 ----a-w- c:\windows\SysWow64\tzres.dll 2014-09-04 19:14 . 2014-09-28 10:43 38048 ----a-w- c:\windows\system32\drivers\nvvad64v.sys 2014-09-04 19:14 . 2014-09-28 10:43 34976 ----a-w- c:\windows\system32\nvaudcap64v.dll 2014-09-04 19:14 . 2014-09-28 10:43 32416 ----a-w- c:\windows\SysWow64\nvaudcap32v.dll 2014-08-30 15:42 . 2012-12-03 21:39 23256 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll 2014-08-27 20:47 . 2014-08-27 20:48 111016 ----a-w- c:\windows\system32\WindowsAccessBridge-64.dll 2014-08-27 20:39 . 2014-06-22 14:09 319912 ----a-w- c:\windows\system32\javaws.exe 2014-08-27 20:39 . 2014-06-13 09:43 191400 ----a-w- c:\windows\system32\javaw.exe 2014-08-27 20:39 . 2014-06-13 09:43 190888 ----a-w- c:\windows\system32\java.exe 2014-08-23 02:07 . 2014-08-28 08:45 404480 ----a-w- c:\windows\system32\gdi32.dll 2014-08-23 01:45 . 2014-08-28 08:45 311808 ----a-w- c:\windows\SysWow64\gdi32.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AviraSpeedup"="c:\program files (x86)\Avira\AviraSpeedup\avira_system_speedup.exe" [2014-11-11 5395192] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2011-01-12 283160] "Dolby Home Theater v4"="c:\program files (x86)\Dolby Home Theater v4\pcee4.exe" [2011-05-02 500736] "PMBVolumeWatcher"="c:\program files (x86)\Sony\PMB\PMBVolumeWatcher.exe" [2011-08-24 651832] "avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2014-11-13 703736] "hpqSRMon"="c:\program files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe" [2008-07-22 150528] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2014-08-21 959176] "Avira Systray"="c:\program files (x86)\Avira\My Avira\Avira.OE.Systray.exe" [2014-10-22 124208] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "AviraSpeedup"="c:\program files (x86)\Avira\AviraSpeedup\avira_system_speedup.exe" [2014-11-11 5395192] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) "EnableSecureUIAPath"= 1 (0x1) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk *\0sdnclean64.exe . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] @="" . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-] "ISBMgr.exe"="c:\program files (x86)\Sony\ISB Utility\ISBMgr.exe" "HP Software Update"=c:\program files (x86)\HP\HP Software Update\HPWuSchd2.exe "LexwareInfoService"=c:\program files (x86)\Lexware\Update Manager\LxUpdateManager.exe /autostart . R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R3 AthBTPort;Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_flt.sys [x] R3 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [x] R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys;c:\windows\SYSNATIVE\drivers\btath_a2dp.sys [x] R3 btath_avdt;Atheros Bluetooth AVDT Service;c:\windows\system32\drivers\btath_avdt.sys;c:\windows\SYSNATIVE\drivers\btath_avdt.sys [x] R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_hcrp.sys [x] R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_lwflt.sys [x] R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_rcp.sys [x] R3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x] R3 cleanhlp;cleanhlp;c:\users\timone\bin\cleanhlp64.sys;c:\users\timone\bin\cleanhlp64.sys [x] R3 DCDhcpService;DCDhcpService;c:\program files\Sony\VAIO Smart Network\WFDA\DCDhcpService.exe;c:\program files\Sony\VAIO Smart Network\WFDA\DCDhcpService.exe [x] R3 e1yexpress;Intel(R) Gigabit Network Connections Driver;c:\windows\system32\DRIVERS\e1y60x64.sys;c:\windows\SYSNATIVE\DRIVERS\e1y60x64.sys [x] R3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT);c:\windows\system32\DRIVERS\ICCWDT.sys;c:\windows\SYSNATIVE\DRIVERS\ICCWDT.sys [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x] R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\MBAMSwissArmy.sys;c:\windows\SYSNATIVE\drivers\MBAMSwissArmy.sys [x] R3 PSI;PSI;c:\windows\system32\DRIVERS\psi_mf_amd64.sys;c:\windows\SYSNATIVE\DRIVERS\psi_mf_amd64.sys [x] R3 PSKMAD;PSKMAD;c:\windows\system32\DRIVERS\PSKMAD.sys;c:\windows\SYSNATIVE\DRIVERS\PSKMAD.sys [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 Secunia PSI Agent;Secunia PSI Agent;c:\program files (x86)\Secunia\PSI\PSIA.exe;c:\program files (x86)\Secunia\PSI\PSIA.exe [x] R3 SmbDrvI;SmbDrvI;c:\windows\system32\DRIVERS\Smb_driver_Intel.sys;c:\windows\SYSNATIVE\DRIVERS\Smb_driver_Intel.sys [x] R3 SOHCImp;VAIO Content Importer;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe [x] R3 SOHDs;VAIO Device Searcher;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [x] R3 SWDUMon;SWDUMon;c:\windows\system32\DRIVERS\SWDUMon.sys;c:\windows\SYSNATIVE\DRIVERS\SWDUMon.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x] R3 VcmINSMgr;VAIO Content Metadata Intelligent Network Service Manager;c:\program files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe;c:\program files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe [x] R3 VcmXmlIfHelper;VAIO Content Metadata XML Interface;c:\program files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe;c:\program files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe [x] R3 whfltr2k;WheelMouse USB Lower Filter Driver;c:\windows\system32\DRIVERS\whfltr2k.sys;c:\windows\SYSNATIVE\DRIVERS\whfltr2k.sys [x] S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys;c:\windows\SYSNATIVE\Drivers\PxHlpa64.sys [x] S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys;c:\windows\SYSNATIVE\DRIVERS\avkmgr.sys [x] S2 AAV UpdateService;AAV UpdateService;c:\program files (x86)\Akademische Arbeitsgemeinschaft\AAVUpdateManager\aavus.exe;c:\program files (x86)\Akademische Arbeitsgemeinschaft\AAVUpdateManager\aavus.exe [x] S2 AdobeActiveFileMonitor9.0;Adobe Active File Monitor V9;c:\program files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe;c:\program files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe [x] S2 AntiVirSchedulerService;Avira Planer;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [x] S2 AntiVirWebService;Avira Browser-Schutz;c:\program files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE;c:\program files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [x] S2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [x] S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Bluetooth Suite\adminservice.exe;c:\program files (x86)\Bluetooth Suite\adminservice.exe [x] S2 Avira.OE.ServiceHost;Avira Service Host;c:\program files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe;c:\program files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [x] S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [x] S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x] S2 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x] S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x] S2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;c:\program files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe;c:\program files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe [x] S2 rimspci;rimspci;c:\windows\system32\DRIVERS\rimssne64.sys;c:\windows\SYSNATIVE\DRIVERS\rimssne64.sys [x] S2 risdsnpe;risdsnpe;c:\windows\system32\DRIVERS\risdsnxc64.sys;c:\windows\SYSNATIVE\DRIVERS\risdsnxc64.sys [x] S2 SampleCollector;VAIO Care Performance Service;c:\program files\Sony\VAIO Care\VCPerfService.exe;c:\program files\Sony\VAIO Care\VCPerfService.exe [x] S2 Secunia Update Agent;Secunia Update Agent;c:\program files (x86)\Secunia\PSI\sua.exe;c:\program files (x86)\Secunia\PSI\sua.exe [x] S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [x] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x] S2 uCamMonitor;CamMonitor;c:\program files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe;c:\program files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [x] S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x] S2 VAIO Power Management;VAIO Power Management;c:\program files\Sony\VAIO Power Management\SPMService.exe;c:\program files\Sony\VAIO Power Management\SPMService.exe [x] S2 VCFw;VAIO Content Folder Watcher;c:\program files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe;c:\program files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [x] S2 VcmIAlzMgr;VAIO Content Metadata Intelligent Analyzing Manager;c:\program files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe;c:\program files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [x] S2 VSNService;VSNService;c:\program files\Sony\VAIO Smart Network\VSNService.exe;c:\program files\Sony\VAIO Smart Network\VSNService.exe [x] S3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect;c:\windows\system32\DRIVERS\ArcSoftKsUFilter.sys;c:\windows\SYSNATIVE\DRIVERS\ArcSoftKsUFilter.sys [x] S3 azvusb;Virtual USB Hub;c:\windows\system32\DRIVERS\azvusb.sys;c:\windows\SYSNATIVE\DRIVERS\azvusb.sys [x] S3 BTATH_BUS;Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys;c:\windows\SYSNATIVE\DRIVERS\btath_bus.sys [x] S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3hub.sys [x] S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3xhc.sys [x] S3 NvStreamKms;NvStreamKms;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [x] S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] S3 SFEP;Sony Firmware Extension Parser;c:\windows\system32\DRIVERS\SFEP.sys;c:\windows\SYSNATIVE\DRIVERS\SFEP.sys [x] S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftfslh.sys [x] S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftplaylh.sys [x] S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftredirlh.sys [x] S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftvollh.sys [x] S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [x] S3 SpfService;VAIO Entertainment Common Service;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [x] S3 VCService;VCService;c:\program files\Sony\VAIO Care\VCService.exe;c:\program files\Sony\VAIO Care\VCService.exe [x] S3 VUAgent;VUAgent;c:\program files\Sony\VAIO Update Common\VUAgent.exe;c:\program files\Sony\VAIO Update Common\VUAgent.exe [x] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - WS2IFSL . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost] hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc . Inhalt des "geplante Tasks" Ordners . 2014-11-15 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-01-17 00:24] . 2014-11-15 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-05-17 23:39] . 2014-11-15 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-05-17 23:39] . 2014-11-15 c:\windows\Tasks\SlimDrivers Startup.job - c:\program files (x86)\SlimDrivers\SlimDrivers.exe [2013-09-24 10:49] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2000-01-01 13671640] "RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2000-01-01 1385840] "AtherosBtStack"="c:\program files (x86)\Bluetooth Suite\BtvStack.exe" [2011-07-05 947360] "AthBtTray"="c:\program files (x86)\Bluetooth Suite\AthBtTray.exe" [2011-07-05 797344] "AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-07-28 497648] "RtHDVBg_Dolby"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2000-01-01 1385840] "NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2014-09-17 2461504] "WheelMouse"="c:\program files\Mouse\Amoumain.exe" [2000-01-01 196608] "RtHDVBg_DTS"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2000-01-01 1385840] . ------- Zusätzlicher Suchlauf ------- . uStart Page = hxxp://www.google.com uLocal Page = c:\windows\system32\blank.htm mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = <local> FF - ProfilePath - . - - - - Entfernte verwaiste Registrierungseinträge - - - - . Toolbar-10 - (no file) ShellIconOverlayIdentifiers-{F241C880-6982-4CE5-8CF7-7085BA96DA5A} - (no file) ShellIconOverlayIdentifiers-{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} - (no file) ShellIconOverlayIdentifiers-{BBACC218-34EA-4666-9D7A-C78F2274A524} - (no file) Wow6432Node-HKLM-Run-<NO NAME> - (no file) SafeBoot-CleanHlp SafeBoot-CleanHlp.sys HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start Toolbar-10 - (no file) ShellIconOverlayIdentifiers-{F241C880-6982-4CE5-8CF7-7085BA96DA5A} - (no file) ShellIconOverlayIdentifiers-{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} - (no file) ShellIconOverlayIdentifiers-{BBACC218-34EA-4666-9D7A-C78F2274A524} - (no file) HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe AddRemove-Java technology allows you to work and play in a secure computing environment. Packages - c:\users\timone\AppData\Roaming\1H1Q\Java technology allows you to work and play in a secure computing environment. Packages\uninstaller.exe . . . [HKEY_LOCAL_MACHINE\system\ControlSet001\services\SampleCollector] "ImagePath"="\"c:\program files\Sony\VAIO Care\VCPerfService.exe\" \"/service\" \"/sstates\" \"/sampleinterval=5000\" \"/procinterval=5\" \"/dllinterval=120\" \"/counter=\Processor(_Total)\% Processor Time:1/counter=\PhysicalDisk(_Total)\Disk Bytes/sec:1\" \"/counter=\Network Interface(*)\Bytes Total/sec:1\" \"/expandcounter=\Processor Information(*)\Processor Frequency:1\" \"&_\" \"/expandcounter=\Processor(*)\% Idle Time:1\" \"/expandcounter=\Processor(*)\% C1 Time:1\" \"/expandcounter=\Processor(*)\% C2 Time:1\" \"/expandcounter=\Processor(*)\%C3 &_ Time:1\" \"/expandcounter=\Processor(*)\% Processor Time:1\" \"/directory=c:\programdata\Sony Corporation\VAIO Care\inteldata\"" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\S-1-5-21-1864711983-2724231092-583658258-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice] @Denied: (2) (LocalSystem) "Progid"="WindowsLiveMail.Email.1" . [HKEY_USERS\S-1-5-21-1864711983-2724231092-583658258-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice] @Denied: (2) (LocalSystem) "Progid"="WindowsLiveMail.VCard.1" . [HKEY_USERS\S-1-5-21-1864711983-2724231092-583658258-1001\Software\Microsoft\Internet Explorer\Approved Extensions] @Denied: (2) (LocalSystem) "{8DCB7100-DF86-4384-8842-8FA844297B3F}"=hex:51,66,7a,6c,4c,1d,3b,1b,10,6e,d1, 92,b5,8b,ea,0f,9d,41,ce,e8,46,6d,3c,27 "{353E2A48-6254-4BD3-88F4-3B51A0CA7870}"=hex:51,66,7a,6c,4c,1d,3b,1b,58,35,24, 2a,67,36,bd,07,9d,f7,7a,11,a2,8e,3f,68 "{0347C33E-8762-4905-BF09-768834316C61}"=hex:51,66,7a,6c,4c,1d,3b,1b,2e,dc,5d, 1c,51,d3,6b,05,aa,0a,37,c8,36,75,2b,79 "{18DF081C-E8AD-4283-A596-FA578C2EBDC3}"=hex:51,66,7a,6c,4c,1d,3b,1b,0c,17,c5, 07,9e,bc,ed,0e,b0,95,bb,17,8e,6a,fa,db "{2E250B90-0E7A-42A3-9D65-E39F9F227FA4}"=hex:51,66,7a,6c,4c,1d,3b,1b,80,14,3f, 31,49,5a,cd,0e,88,66,a2,df,9d,66,38,bc "{2EECD738-5844-4A99-B4B6-146BF802613B}"=hex:51,66,7a,6c,4c,1d,3b,1b,28,c8,f6, 31,77,0c,f7,06,a1,b5,55,2b,fa,46,26,23 "{336D0C35-8A85-403A-B9D2-65C292C39087}"=hex:51,66,7a,6c,4c,1d,3b,1b,25,13,77, 2c,b6,de,54,0c,ac,d1,24,82,90,87,d7,9f "{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}"=hex:51,66,7a,6c,4c,1d,3b,1b,d4,e9,0a, 92,32,5a,ba,07,93,02,50,ec,1d,9b,c6,3e "{9030D464-4C02-4ABF-8ECC-5164760863C6}"=hex:51,66,7a,6c,4c,1d,3b,1b,74,cb,2a, 8f,31,18,d1,06,9b,cf,10,24,74,4c,24,de "{D2CE3E00-F94A-4740-988E-03DC2F38C34F}"=hex:51,66,7a,6c,4c,1d,3b,1b,10,21,d4, cd,79,ad,2e,0b,8d,8d,42,9c,2d,7c,84,57 "{DBC80044-A445-435B-BC74-9C25C1C588A9}"=hex:51,66,7a,6c,4c,1d,3b,1b,54,1f,d2, c4,76,f0,35,0f,a9,77,dd,65,c3,81,cf,b1 "{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}"=hex:51,66,7a,6c,4c,1d,3b,1b,ef,e0,e5, e0,7d,9b,45,03,a8,c1,4f,32,e3,52,ef,4e "{555D4D79-4BD2-4094-A395-CFC534424A05}"=hex:51,66,7a,6c,4c,1d,3b,1b,69,52,47, 4a,e1,1f,fa,0c,b6,96,8e,85,36,06,0d,1d "{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}"=hex:51,66,7a,6c,4c,1d,3b,1b,ab,88,0e, 69,c3,82,42,0a,a3,e8,95,9a,f3,9d,6a,5b "{54739D49-AC03-4C57-9264-C5195596B3A1}"=hex:51,66,7a,6c,4c,1d,38,12,27,9e,60, 50,31,e2,39,09,ed,72,86,59,50,c8,f7,b5 . [HKEY_USERS\S-1-5-21-1864711983-2724231092-583658258-1001_Classes\CLSID] @DACL=(02 0000) . [HKEY_USERS\S-1-5-21-1864711983-2724231092-583658258-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}] @DACL=(02 0000) @="SyncingOverlayHandler Class" . [HKEY_USERS\S-1-5-21-1864711983-2724231092-583658258-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}] @DACL=(02 0000) @="ErrorOverlayHandler Class" . [HKEY_USERS\S-1-5-21-1864711983-2724231092-583658258-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}] @DACL=(02 0000) @="UpToDateOverlayHandler Class" . [HKEY_USERS\S-1-5-21-1864711983-2724231092-583658258-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}] @DACL=(02 0000) @="SyncFileInformationProvider Class" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_15_0_0_223_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_15_0_0_223_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}] @Denied: (A 2) (Everyone) @="IFlashBroker6" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_15_0_0_223_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_15_0_0_223_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_15_0_0_223.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.15" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_15_0_0_223.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_15_0_0_223.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_15_0_0_223.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}] @Denied: (A 2) (Everyone) @="IFlashBroker6" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2014-11-15 12:38:17 ComboFix-quarantined-files.txt 2014-11-15 11:38 . Vor Suchlauf: 24 Verzeichnis(se), 390.953.562.112 Bytes frei Nach Suchlauf: 28 Verzeichnis(se), 390.646.538.240 Bytes frei . - - End Of File - - 79E2ABE2AAA111CAB00C21A1DAECA4C6 A36C5E4F47E84449FF07ED3517B43A31 |
Hallo Schrauber, hier die geforderten log.txt

Malwarebytes Anti-Malware
Malwarebytes | Free Anti-Malware & Internet Security Software

Suchlauf Datum: 18.11.2014
Suchlauf-Zeit: 14:06:50
Logdatei: malwarebytes.txt
Administrator: Ja

Version: Malware Datenbank: v2014.11.18.04
Rootkit Datenbank: v2014.11.12.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: timone

Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 399554
Verstrichene Zeit: 1 Std, 2 Min, 53 Sek

Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Heuristik: Aktiviert
PUP: Warnen
PUM: Warnen

Prozesse: 0
(Keine schädliche Elemente erkannt)

Module: 0
(Keine schädliche Elemente erkannt)

Registrierungsschlüssel: 0
(Keine schädliche Elemente erkannt)

Registrierungswerte: 0
(Keine schädliche Elemente erkannt)

Registrierungsdaten: 1
PUP.Optional.DefaultSearch.A, HKU\S-1-5-21-1864711983-2724231092-583658258-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, Search, Gut: (Google), Schlecht: (Search),,[1acf96a418640c2ad7a980c1f213f10f]

Ordner: 0
(Keine schädliche Elemente erkannt)

Dateien: 0
(Keine schädliche Elemente erkannt)

Physische Sektoren: 0
(Keine schädliche Elemente erkannt)

(end)
