Code:
Alles auswählen Aufklappen ATTFilter
Fix result of Farbar Recovery Scan Tool (x64) Version:05-07-2015
Ran by AnimaAngelo at 2015-07-12 12:27:09 Run:1
Running from C:\Users\AnimaAngelo\Desktop
Loaded Profiles: AnimaAngelo (Available Profiles: AnimaAngelo)
Boot Mode: Normal
==============================================
fixlist content:
*****************
HKU\S-1-5-19\...\Winlogon: [Shell] C:\Windows\explorer.exe [2871808 2011-02-25] (Microsoft Corporation) <==== ATTENTION
HKU\S-1-5-20\...\Winlogon: [Shell] C:\Windows\explorer.exe [2871808 2011-02-25] (Microsoft Corporation) <==== ATTENTION
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
GroupPolicyUsers\S-1-5-21-2414973931-2264080825-886326512-1004\User: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
Winsock: Catalog9-x64 01 C:\Windows\system32\ColorMedia64.dll [378640 2015-01-01] ()
Winsock: Catalog9-x64 02 C:\Windows\system32\ColorMedia64.dll [378640 2015-01-01] ()
Winsock: Catalog9-x64 03 C:\Windows\system32\ColorMedia64.dll [378640 2015-01-01] ()
Winsock: Catalog9-x64 04 C:\Windows\system32\ColorMedia64.dll [378640 2015-01-01] ()
Winsock: Catalog9-x64 15 C:\Windows\system32\ColorMedia64.dll [378640 2015-01-01] ()
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{524AAAB2-4000-4EF8-A966-E188B9E7B364}: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{53B91DE2-2530-461A-A801-BF1CC8839912}: [NameServer] 10.74.210.210 10.74.210.211
Tcpip\..\Interfaces\{53B91DE2-2530-461A-A801-BF1CC8839912}: [DhcpNameServer] 10.74.210.210 10.74.210.211
Tcpip\..\Interfaces\{D4B7BC8A-52DC-4545-93F5-A9D734E39B1D}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{FAD4FCBB-98C1-4E3F-9136-68110F77C474}: [NameServer] 10.74.210.210 10.74.210.211
cmd: netsh winsock reset
C:\Windows\system32\ColorMedia64.dll
RemoveProxy:
Emptytemp:
*****************
HKU\S-1-5-19\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell => value removed successfully
HKU\S-1-5-20\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell => value removed successfully
C:\Windows\system32\GroupPolicy\Machine => moved successfully.
C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully.
C:\Windows\system32\GroupPolicyUsers\S-1-5-21-2414973931-2264080825-886326512-1004\User => moved successfully.
"HKLM\SOFTWARE\Policies\Google" => key removed successfully
Winsock: Catalog entry 000000000001 => removed successfully
Winsock: Catalog entry 000000000002 => removed successfully
Winsock: Catalog entry 000000000003 => removed successfully
Winsock: Catalog entry 000000000004 => removed successfully
Winsock: Catalog entry 000000000015 => removed successfully
HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\\DhcpNameServer => value removed successfully
HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{524AAAB2-4000-4EF8-A966-E188B9E7B364}\\DhcpNameServer => value removed successfully
HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{53B91DE2-2530-461A-A801-BF1CC8839912}\\NameServer => value removed successfully
HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{53B91DE2-2530-461A-A801-BF1CC8839912}\\DhcpNameServer => value removed successfully
HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{D4B7BC8A-52DC-4545-93F5-A9D734E39B1D}\\DhcpNameServer => value removed successfully
HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{FAD4FCBB-98C1-4E3F-9136-68110F77C474}\\NameServer => value removed successfully
========= netsh winsock reset =========
Die Initialisierungsfunktion InitHelperDll in NSHHTTP.DLL konnte nicht gestartet werden. Fehlercode 10107
Der Winsock-Katalog wurde zur�ckgesetzt.
Sie m�ssen den Computer neu starten, um den Vorgang abzuschlie�en.
========= End of CMD: =========
C:\Windows\system32\ColorMedia64.dll => moved successfully.
========= RemoveProxy: =========
"HKU\S-1-5-21-2414973931-2264080825-886326512-1000\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value removed successfully
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully
HKU\S-1-5-21-2414973931-2264080825-886326512-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
HKU\S-1-5-21-2414973931-2264080825-886326512-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully
========= End of RemoveProxy: =========
EmptyTemp: => 191 MB temporary data Removed.
The system needed a reboot..
==== End of Fixlog 12:27:20 ====
Hier schon einmal der erste Teil. Der Rest folgt in kürze^^