|
Alles rund um Windows: Nach Windows Start, Bildschirm für paar sek Weiß.Windows 7 Hilfe zu allen Windows-Betriebssystemen: Windows XP, Windows Vista, Windows 7, Windows 8(.1) und Windows 10 / Windows 11- als auch zu sämtlicher Windows-Software. Alles zu Windows 10 ist auch gerne willkommen. Bitte benenne etwaige Fehler oder Bluescreens unter Windows mit dem Wortlaut der Fehlermeldung und Fehlercode. Erste Schritte für Hilfe unter Windows. |
14.04.2016, 22:08 | #1 |
| Problem: Nach Windows Start, Bildschirm für paar sek Weiß. Hallöchen. Seid ca 4 Tagen, immer wenn ich Windows Starte ist mein Rechter (Hauptbildschirm) TFT weiß für ein paar Sek. Zur Betonung das ich 2 Monitore angeschlossen habe. Beide sind die gleichen Modelle. Der Rechte Monitor ist normal wie immer, nur der Hauptbildschirm ist für ca 5 sek weiß. Wenn ich auf den Rechten Button gehe (Bildschirm anzeigen), wo man alles ausblendet um zum desktop zu kommen etc. ist es zwar auch kurz weg, aber sobald ich in den paar Sek, wo der Bildschirm weiß ist, ein anderes Programm öffne, ist es wieder da. Aber nach ca 5-7 sek. Verschwindet etc. Leider weiß ich nicht weiter woran es liegen kann. Ein virenscan mit Eset Onlinescanner lasse ich gerade durchlaufen. Eine Fehler meldung von Windows etc, kommt aber nicht. Bitte hiermit um rat was ich tun könnte. Mittlerweile ich aheb mal Adware scaaner reingehauen und nichts gefunden. Combofix mal drüber gebückelt mit folgenden Log.: Combofix Logfile: Code:
ATTFilter ComboFix 16-04-13.01 - Kronok 14.04.2016 23:03:20.1.8 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.16303.13450 [GMT 2:00] ausgeführt von:: c:\users\Kronok\Desktop\ComboFix.exe SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\programdata\1448842307.bdinstall.bin c:\programdata\1449570493.bdinstall.bin c:\programdata\1451956087.bdinstall.bin c:\users\Kronok\AppData\Local\Temp\nsp97CD.tmp\newadvsplash.dll c:\users\Kronok\AppData\Local\Temp\nsp97CD.tmp\registry.dll c:\users\Kronok\AppData\Local\Temp\nsp97CD.tmp\System.dll c:\windows\SysWow64\SET6137.tmp c:\windows\SysWow64\SET663C.tmp c:\windows\SysWow64\SET69AE.tmp c:\windows\wininit.ini . . ((((((((((((((((((((((( Dateien erstellt von 2016-03-14 bis 2016-04-14 )))))))))))))))))))))))))))))) . . 2016-04-14 20:58 . 2016-04-14 21:00 -------- d-----w- C:\AdwCleaner 2016-04-14 08:22 . 2016-04-14 08:22 510952 ----a-w- c:\windows\system32\drivers\e1d62x64.sys 2016-04-14 08:20 . 2016-04-14 08:20 -------- d-----w- c:\windows\IObit 2016-04-12 20:13 . 2016-04-12 20:13 -------- d-----w- c:\users\Kronok\AppData\Roaming\NCH Software 2016-04-12 20:13 . 2016-04-12 20:13 -------- d-----w- c:\programdata\NCH Software 2016-04-12 20:10 . 2016-04-12 20:10 -------- d-----w- c:\users\Kronok\AppData\Roaming\VideoEditor 2016-04-12 20:10 . 2016-04-12 20:10 -------- d-----w- c:\users\Kronok\AppData\Roaming\FlashIntegro 2016-04-10 12:41 . 2016-04-10 12:41 -------- d-----w- C:\Intel 2016-04-10 12:41 . 2015-11-20 04:19 806128 ----a-w- c:\windows\system32\drivers\iusb3xhc.sys 2016-04-10 12:41 . 2015-11-20 04:19 395504 ----a-w- c:\windows\system32\drivers\iusb3hub.sys 2016-04-10 12:41 . 2015-11-20 04:19 22768 ----a-w- c:\windows\system32\drivers\iusb3hcs.sys 2016-04-10 12:32 . 2016-04-10 12:38 -------- d-----w- c:\program files (x86)\BlueScreenView 2016-04-09 15:40 . 2016-04-09 15:40 -------- d-----w- c:\users\Kronok\AppData\Roaming\NVIDIA 2016-04-09 15:39 . 2016-04-09 15:39 -------- d-----w- c:\program files (x86)\directx 2016-04-02 02:26 . 2016-04-02 02:26 -------- d-----w- c:\program files (x86)\Common Files\Skype 2016-04-01 05:35 . 2016-04-01 05:35 -------- d-----w- c:\users\Kronok\AppData\Roaming\Brotsoft 2016-04-01 05:35 . 2016-04-01 05:35 -------- d-----w- c:\program files (x86)\NarutoOnline 2016-04-01 05:35 . 2016-04-01 05:35 26674504 ----a-w- c:\users\Kronok\AppData\Roaming\gameboxsetup.exe 2016-03-31 01:34 . 2016-03-31 01:34 180480 ----a-w- c:\windows\system32\drivers\TeeDriverx64.sys 2016-03-31 01:33 . 2016-03-31 01:33 31144 ----a-w- c:\windows\system32\drivers\iaStorF.sys 2016-03-31 01:33 . 2016-03-31 01:33 1462720 ----a-w- c:\windows\system32\drivers\iaStorA.sys 2016-03-30 02:37 . 2016-03-30 02:37 119808 ----a-r- c:\users\Kronok\AppData\Roaming\Microsoft\Installer\{CCF298AF-9CE1-4B26-B251-486E98A34789}\icons.exe 2016-03-29 04:19 . 2016-03-21 20:01 56384 ----a-w- c:\windows\system32\drivers\nvvad64v.sys 2016-03-29 04:19 . 2016-03-21 20:01 109632 ----a-w- c:\windows\system32\nvaudcap64v.dll 2016-03-29 04:19 . 2016-03-21 20:01 100416 ----a-w- c:\windows\SysWow64\nvaudcap32v.dll 2016-03-28 01:12 . 2016-03-28 01:12 -------- d-----w- c:\users\Kronok\AppData\Local\Campbell Wild 2016-03-26 04:26 . 2016-03-26 04:26 -------- d-----w- c:\program files (x86)\Common Files\Java 2016-03-26 02:44 . 2016-03-26 02:44 -------- d-----w- C:\NVIDIA 2016-03-16 21:30 . 2016-03-16 21:30 128792 ----a-w- c:\windows\SysWow64\vulkan-1-1-0-5-1.dll 2016-03-16 21:29 . 2016-03-16 21:29 41752 ----a-w- c:\windows\SysWow64\vulkaninfo-1-1-0-5-1.exe 2016-03-16 21:29 . 2016-03-16 21:29 127768 ----a-w- c:\windows\system32\vulkan-1-1-0-5-1.dll 2016-03-16 21:28 . 2016-03-16 21:28 45848 ----a-w- c:\windows\system32\vulkaninfo-1-1-0-5-1.exe 2016-03-15 23:39 . 2016-03-27 04:14 -------- d-----w- C:\mdumps . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2016-04-08 17:28 . 2014-09-19 18:07 797376 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2016-04-08 17:28 . 2014-09-19 18:07 142528 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2016-03-29 10:06 . 2016-01-20 17:50 53008 ----a-w- c:\windows\system32\TURegOpt.exe 2016-03-29 09:53 . 2016-01-21 18:22 56080 ----a-w- c:\windows\system32\uxtuneup.dll 2016-03-29 09:53 . 2016-01-21 18:22 49424 ----a-w- c:\windows\SysWow64\uxtuneup.dll 2016-03-29 09:53 . 2016-01-20 17:50 44304 ----a-w- c:\windows\system32\authuitu.dll 2016-03-29 09:53 . 2016-01-20 17:50 39696 ----a-w- c:\windows\SysWow64\authuitu.dll 2016-03-26 04:26 . 2015-11-06 08:56 97856 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2016-03-25 01:49 . 2016-02-09 21:23 1373864 ----a-w- c:\windows\SysWow64\nvspcap.dll 2016-03-25 01:49 . 2016-02-09 21:23 1316184 ----a-w- c:\windows\SysWow64\nvspbridge.dll 2016-03-25 01:48 . 2016-02-09 21:23 1767432 ----a-w- c:\windows\system32\nvspcap64.dll 2016-03-25 01:48 . 2016-02-09 21:23 1756608 ----a-w- c:\windows\system32\nvspbridge64.dll 2016-03-25 01:48 . 2016-02-09 21:23 112216 ----a-w- c:\windows\system32\NvRtmpStreamer64.dll 2016-03-10 12:09 . 2015-11-06 10:04 64896 ----a-w- c:\windows\system32\drivers\mwac.sys 2016-03-10 12:08 . 2015-11-06 10:04 140672 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys 2016-03-10 12:08 . 2015-11-06 10:04 27008 ----a-w- c:\windows\system32\drivers\mbam.sys 2016-03-06 17:48 . 2014-08-27 23:26 146614896 ----a-w- c:\windows\system32\MRT.exe 2016-02-24 23:20 . 2016-02-24 23:20 81920 ----a-w- c:\windows\SysWow64\acedrv07.dll 2016-02-24 23:20 . 2016-02-24 23:20 125440 ----a-w- c:\windows\system32\drivers\acedrv07.sys 2016-02-23 23:58 . 2016-02-16 11:08 16995384 ----a-w- c:\windows\system32\SET5C75.tmp 2016-02-23 23:58 . 2016-02-09 21:22 18758400 ----a-w- c:\windows\system32\SET6085.tmp 2016-02-23 23:58 . 2016-02-09 21:22 3684072 ----a-w- c:\windows\system32\SET56E5.tmp 2016-02-20 22:43 . 2016-02-20 22:43 43520 ----a-w- c:\windows\SysWow64\CmdLineExt03.dll 2016-02-20 22:36 . 2016-02-20 22:36 40960 ----a-r- c:\users\Kronok\AppData\Roaming\Microsoft\Installer\{3571656A-575D-4CED-809D-5547587121FF}\NewShortcut8.EXE 2016-02-09 09:38 . 2016-02-09 09:38 5 ----a-w- c:\windows\SysWow64\lMMLDeleteUserData42107612FX.tmp 2016-02-06 10:48 . 2016-03-06 17:45 25839104 ----a-w- c:\windows\system32\mshtml.dll 2016-02-06 10:32 . 2016-03-06 17:45 2724864 ----a-w- c:\windows\system32\mshtml.tlb 2016-02-06 10:24 . 2016-03-06 17:45 2887680 ----a-w- c:\windows\system32\iertutil.dll 2016-02-06 10:11 . 2016-03-06 17:45 615936 ----a-w- c:\windows\system32\ieui.dll 2016-02-06 10:10 . 2016-03-06 17:45 144384 ----a-w- c:\windows\system32\ieUnatt.exe 2016-02-06 09:54 . 2016-03-06 17:45 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb 2016-02-06 09:37 . 2016-03-06 17:45 115712 ----a-w- c:\windows\SysWow64\ieUnatt.exe 2016-02-06 09:32 . 2016-03-06 17:45 14458368 ----a-w- c:\windows\system32\ieframe.dll 2016-02-06 09:09 . 2016-03-06 17:45 1547264 ----a-w- c:\windows\system32\urlmon.dll 2016-02-03 03:16 . 2016-02-03 03:16 44744 ----a-w- c:\windows\system32\drivers\ISCTD.sys 2016-01-24 23:49 . 2015-11-30 23:35 282296 ----a-w- c:\windows\SysWow64\PnkBstrB.exe 2016-01-24 23:49 . 2015-11-30 23:35 282296 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr 2016-01-23 16:18 . 2015-11-30 23:35 282296 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0 2016-01-23 03:42 . 2016-02-09 21:23 213952 ----a-w- c:\windows\system32\OpenCL.dll 2016-01-23 03:42 . 2016-02-09 21:23 203320 ----a-w- c:\windows\SysWow64\OpenCL.dll 2016-01-22 20:31 . 2016-03-06 17:45 387784 ----a-w- c:\windows\system32\iedkcs32.dll 2016-01-22 06:56 . 2016-03-06 17:45 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll 2016-01-22 06:41 . 2016-03-06 17:45 66560 ----a-w- c:\windows\system32\iesetup.dll 2016-01-22 06:40 . 2016-03-06 17:45 48640 ----a-w- c:\windows\system32\ieetwproxystub.dll 2016-01-22 06:40 . 2016-03-06 17:45 417792 ----a-w- c:\windows\system32\html.iec 2016-01-22 06:40 . 2016-03-06 17:45 88064 ----a-w- c:\windows\system32\MshtmlDac.dll 2016-01-22 06:40 . 2016-03-06 17:45 571904 ----a-w- c:\windows\system32\vbscript.dll 2016-01-22 06:33 . 2016-03-06 17:45 54784 ----a-w- c:\windows\system32\jsproxy.dll 2016-01-22 06:32 . 2016-03-06 17:44 5552576 ----a-w- c:\windows\system32\ntoskrnl.exe 2016-01-22 06:32 . 2016-03-06 17:44 706496 ----a-w- c:\windows\system32\winload.efi 2016-01-22 06:32 . 2016-03-06 17:44 95680 ----a-w- c:\windows\system32\drivers\ksecdd.sys 2016-01-22 06:32 . 2016-03-06 17:44 154560 ----a-w- c:\windows\system32\drivers\ksecpkg.sys 2016-01-22 06:32 . 2016-03-06 17:45 34304 ----a-w- c:\windows\system32\iernonce.dll 2016-01-22 06:30 . 2016-03-06 17:44 631384 ----a-w- c:\windows\system32\winresume.efi 2016-01-22 06:30 . 2016-03-06 17:44 1733080 ----a-w- c:\windows\system32\ntdll.dll 2016-01-22 06:29 . 2016-03-06 17:45 6052352 ----a-w- c:\windows\system32\jscript9.dll 2016-01-22 06:28 . 2016-03-06 17:44 362496 ----a-w- c:\windows\system32\wow64win.dll 2016-01-22 06:28 . 2016-03-06 17:44 243712 ----a-w- c:\windows\system32\wow64.dll 2016-01-22 06:28 . 2016-03-06 17:44 215552 ----a-w- c:\windows\system32\winsrv.dll 2016-01-22 06:28 . 2016-03-06 17:44 13312 ----a-w- c:\windows\system32\wow64cpu.dll 2016-01-22 06:28 . 2016-03-06 17:44 210944 ----a-w- c:\windows\system32\wdigest.dll 2016-01-22 06:28 . 2016-03-06 17:44 86528 ----a-w- c:\windows\system32\TSpkg.dll 2016-01-22 06:28 . 2016-03-06 17:44 29184 ----a-w- c:\windows\system32\sspisrv.dll 2016-01-22 06:28 . 2016-03-06 17:44 136192 ----a-w- c:\windows\system32\sspicli.dll 2016-01-22 06:28 . 2016-03-06 17:44 503808 ----a-w- c:\windows\system32\srcore.dll 2016-01-22 06:28 . 2016-03-06 17:44 50176 ----a-w- c:\windows\system32\srclient.dll 2016-01-22 06:28 . 2016-03-06 17:44 1213952 ----a-w- c:\windows\system32\rpcrt4.dll 2016-01-22 06:28 . 2016-03-06 17:44 63488 ----a-w- c:\windows\system32\setbcdlocale.dll 2016-01-22 06:28 . 2016-03-06 17:44 344064 ----a-w- c:\windows\system32\schannel.dll 2016-01-22 06:28 . 2016-03-06 17:44 28160 ----a-w- c:\windows\system32\secur32.dll 2016-01-22 06:28 . 2016-03-06 17:44 190464 ----a-w- c:\windows\system32\rpchttp.dll 2016-01-22 06:28 . 2016-03-06 17:44 16384 ----a-w- c:\windows\system32\ntvdm64.dll 2016-01-22 06:28 . 2016-03-06 17:44 316416 ----a-w- c:\windows\system32\msv1_0.dll 2016-01-22 06:28 . 2016-03-06 17:44 312320 ----a-w- c:\windows\system32\ncrypt.dll 2016-01-22 06:28 . 2016-03-06 17:44 731136 ----a-w- c:\windows\system32\kerberos.dll 2016-01-22 06:28 . 2016-03-06 17:44 419840 ----a-w- c:\windows\system32\KernelBase.dll 2016-01-22 06:28 . 2016-03-06 17:44 1464832 ----a-w- c:\windows\system32\lsasrv.dll 2016-01-22 06:28 . 2016-03-06 17:44 1164288 ----a-w- c:\windows\system32\kernel32.dll 2016-01-22 06:28 . 2016-03-06 17:44 44032 ----a-w- c:\windows\system32\cryptbase.dll 2016-01-22 06:28 . 2016-03-06 17:44 43520 ----a-w- c:\windows\system32\csrsrv.dll 2016-01-22 06:28 . 2016-03-06 17:44 22016 ----a-w- c:\windows\system32\credssp.dll 2016-01-22 06:28 . 2016-03-06 17:44 463872 ----a-w- c:\windows\system32\certcli.dll 2016-01-22 06:28 . 2016-03-06 17:44 59904 ----a-w- c:\windows\system32\appidapi.dll 2016-01-22 06:28 . 2016-03-06 17:44 34816 ----a-w- c:\windows\system32\appidsvc.dll 2016-01-22 06:28 . 2016-03-06 17:44 881152 ----a-w- c:\windows\system32\advapi32.dll 2016-01-22 06:27 . 2016-03-06 17:44 112640 ----a-w- c:\windows\system32\smss.exe 2016-01-22 06:27 . 2016-03-06 17:45 114688 ----a-w- c:\windows\system32\ieetwcollector.exe 2016-01-22 06:27 . 2016-03-06 17:44 296960 ----a-w- c:\windows\system32\rstrui.exe 2016-01-22 06:27 . 2016-03-06 17:45 817664 ----a-w- c:\windows\system32\jscript.dll 2016-01-22 06:27 . 2016-03-06 17:45 814080 ----a-w- c:\windows\system32\jscript9diag.dll 2016-01-22 06:27 . 2016-03-06 17:44 31232 ----a-w- c:\windows\system32\lsass.exe 2016-01-22 06:27 . 2016-03-06 17:44 338432 ----a-w- c:\windows\system32\conhost.exe 2016-01-22 06:27 . 2016-03-06 17:44 64000 ----a-w- c:\windows\system32\auditpol.exe 2016-01-22 06:27 . 2016-03-06 17:44 17920 ----a-w- c:\windows\system32\appidcertstorecheck.exe 2016-01-22 06:27 . 2016-03-06 17:44 148480 ----a-w- c:\windows\system32\appidpolicyconverter.exe 2016-01-22 06:23 . 2016-03-06 17:44 60416 ----a-w- c:\windows\system32\msobjs.dll 2016-01-22 06:22 . 2016-03-06 17:44 146432 ----a-w- c:\windows\system32\msaudite.dll 2016-01-22 06:20 . 2016-03-06 17:45 968704 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe 2016-01-22 06:18 . 2016-03-06 17:44 961024 ----a-w- c:\windows\system32\CPFilters.dll 2016-01-22 06:18 . 2016-03-06 17:44 723968 ----a-w- c:\windows\system32\EncDec.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)] @="{8BA85C75-763B-4103-94EB-9470F12FE0F7}" [HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}] 2015-07-31 09:01 1512152 ----a-w- c:\progra~2\MICROS~2\Office16\GROOVEEX.DLL . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)] @="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}" [HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}] 2015-07-31 09:01 1512152 ----a-w- c:\progra~2\MICROS~2\Office16\GROOVEEX.DLL . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)] @="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}" [HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}] 2015-07-31 09:01 1512152 ----a-w- c:\progra~2\MICROS~2\Office16\GROOVEEX.DLL . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "DU Meter"="c:\program files (x86)\DU Meter\DUMeter.exe" [2016-03-09 4245400] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584] "DAEMON Tools Lite Automount"="c:\program files (x86)\DAEMON Tools Lite\DTAgent.exe" [2015-06-18 4468056] "Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2016-03-01 50676864] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "XFastUSB"="c:\program files (x86)\XFastUSB\XFastUsb.exe" [2014-08-28 6311104] "HostsMan"="c:\program files (x86)\HostsMan\hm.exe" [2015-11-20 8161280] "Razer Synapse"="c:\program files (x86)\Razer\Synapse\RzSynapse.exe" [2016-01-13 594240] "AvgUi"="c:\program files (x86)\AVG\Framework\Common\avguirnx.exe" [2016-03-23 186640] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2016-03-20 595480] "USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2015-11-20 298776] . c:\users\Kronok\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ Samsung Magician.lnk - c:\windows\system32\schtasks.exe [2010-11-21 285696] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ UltraMon.lnk - c:\windows\Installer\{9069EE0A-7615-4D86-AD80-CA263E936DA6}\IcoUltraMon.ico [2014-8-28 29310] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 0 (0x0) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) "EnableLinkedConnections"= 1 (0x1) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32] "aux"=wdmaud.drv . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk *\0sdnclean64.exe . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-] "USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" "Raptr"="c:\program files (x86)\Raptr\raptrstub.exe" --startup "AvgUi"="c:\program files (x86)\AVG\Framework\Common\avguirnx.exe" /lps=fmw . 2;2 MBAMService;MBAMService;c:\program files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe;c:\program files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [x] R1 RzFilter;RzFilter;c:\windows\system32\drivers\RzFilter.sys;c:\windows\SYSNATIVE\drivers\RzFilter.sys [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe;c:\program files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [x] R3 BEService;BattlEye Service;c:\program files (x86)\Common Files\BattlEye\BEService.exe;c:\program files (x86)\Common Files\BattlEye\BEService.exe [x] R3 BRDriver64_1_3_3_E02B25FC;BRDriver64_1_3_3_E02B25FC;c:\programdata\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys;c:\programdata\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [x] R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys;c:\windows\SYSNATIVE\DRIVERS\ssudbus.sys [x] R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service;c:\program files (x86)\DAEMON Tools Lite\DiscSoftBusService.exe;c:\program files (x86)\DAEMON Tools Lite\DiscSoftBusService.exe [x] R3 DUMeterDrv;Hagel Technologies DU Meter traffic accounting driver;c:\program files (x86)\DU Meter\DUMETR64.SYS;c:\program files (x86)\DU Meter\DUMETR64.SYS [x] R3 EasyAntiCheat;EasyAntiCheat;c:\windows\system32\EasyAntiCheat.exe;c:\windows\SYSNATIVE\EasyAntiCheat.exe [x] R3 EsgScanner;EsgScanner;c:\windows\system32\DRIVERS\EsgScanner.sys;c:\windows\SYSNATIVE\DRIVERS\EsgScanner.sys [x] R3 FNETTBOH_305;FNETTBOH_305;c:\windows\system32\drivers\FNETTBOH_305.SYS;c:\windows\SYSNATIVE\drivers\FNETTBOH_305.SYS [x] R3 HTCAND64;HTC Device Driver;c:\windows\system32\Drivers\ANDROIDUSB.sys;c:\windows\SYSNATIVE\Drivers\ANDROIDUSB.sys [x] R3 htcnprot;HTC NDIS Protocol Driver;c:\windows\system32\DRIVERS\htcnprot.sys;c:\windows\SYSNATIVE\DRIVERS\htcnprot.sys [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x] R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys;c:\windows\SYSNATIVE\drivers\mwac.sys [x] R3 npggsvc;nProtect GameGuard Service;c:\windows\system32\GameMon.des;c:\windows\SYSNATIVE\GameMon.des [x] R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 RivaTuner64;RivaTuner64;c:\program files (x86)\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner64.sys;c:\program files (x86)\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner64.sys [x] R3 RzDxgk;RzDxgk;c:\windows\system32\drivers\RzDxgk.sys;c:\windows\SYSNATIVE\drivers\RzDxgk.sys [x] R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys;c:\windows\SYSNATIVE\DRIVERS\ssudmdm.sys [x] R3 taphss6;Anchorfree HSS VPN Adapter;c:\windows\system32\DRIVERS\taphss6.sys;c:\windows\SYSNATIVE\DRIVERS\taphss6.sys [x] R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys;c:\windows\SYSNATIVE\drivers\terminpt.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x] R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [x] R3 UHSfiltv;UHSfiltv;c:\windows\system32\drivers\UHSfiltv.sys;c:\windows\SYSNATIVE\drivers\UHSfiltv.sys [x] R3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\DRIVERS\VBoxNetAdp.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxNetAdp.sys [x] R3 VBoxNetFlt;VirtualBox Bridged Networking Service;c:\windows\system32\DRIVERS\VBoxNetFlt.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxNetFlt.sys [x] R3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x] R3 xhunter1;xhunter1;c:\windows\xhunter1.sys;c:\windows\xhunter1.sys [x] R4 BRSptStub;BitRaider Mini-Support Service Stub Loader;c:\programdata\BitRaider\BRSptStub.exe;c:\programdata\BitRaider\BRSptStub.exe [x] R4 DigitalWave.Update.Service;Digital Wave Update Service;c:\program files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe;c:\program files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [x] R4 ose64;Office 64 Source Engine;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [x] R4 OverwolfUpdater;Overwolf Updater Windows SCM;c:\program files (x86)\Overwolf\OverwolfUpdater.exe;c:\program files (x86)\Overwolf\OverwolfUpdater.exe [x] R4 PassThru Service;Internet Pass-Through Service;c:\program files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe;c:\program files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [x] R4 VMUSBArbService;VMware USB Arbitration Service;c:\program files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe;c:\program files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [x] S0 iaStorA;iaStorA;c:\windows\system32\DRIVERS\iaStorA.sys;c:\windows\SYSNATIVE\DRIVERS\iaStorA.sys [x] S0 iaStorF;iaStorF;c:\windows\system32\DRIVERS\iaStorF.sys;c:\windows\SYSNATIVE\DRIVERS\iaStorF.sys [x] S0 iusb3hcs;Intel(R) USB 3.0 Hostcontroller-Switchtreiber;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x] S0 vmci;VMware VMCI Bus Driver;c:\windows\system32\DRIVERS\vmci.sys;c:\windows\SYSNATIVE\DRIVERS\vmci.sys [x] S0 vsock;vSockets Driver;c:\windows\system32\drivers\vsock.sys;c:\windows\SYSNATIVE\drivers\vsock.sys [x] S1 FNETURPX;FNETURPX;c:\windows\system32\drivers\FNETURPX.SYS;c:\windows\SYSNATIVE\drivers\FNETURPX.SYS [x] S1 HWiNFO32;HWiNFO32/64 Kernel Driver;c:\windows\SysWOW64\drivers\HWiNFO64A.SYS;c:\windows\SysWOW64\drivers\HWiNFO64A.SYS [x] S2 avgsvc;AVG Service;c:\program files (x86)\AVG\Framework\Common\avgsvca.exe;c:\program files (x86)\AVG\Framework\Common\avgsvca.exe [x] S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 DUMeterSvc;DU Meter Service;c:\program files (x86)\DU Meter\DUMeterSvc.exe;c:\program files (x86)\DU Meter\DUMeterSvc.exe [x] S2 GfExperienceService;NVIDIA GeForce Experience Service;c:\program files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe;c:\program files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [x] S2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service;c:\windows\system32\IProsetMonitor.exe;c:\windows\SYSNATIVE\IProsetMonitor.exe [x] S2 nldrv;nldrv;c:\program files\NetLimiter 4\nldrv.sys;c:\program files\NetLimiter 4\nldrv.sys [x] S2 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x] S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [x] S2 Razer Game Scanner Service;Razer Game Scanner;c:\program files (x86)\Razer\Razer Services\GSS\GameScannerService.exe;c:\program files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [x] S2 RtkAudioService;Realtek Audio Service;c:\program files\Realtek\Audio\HDA\RtkAudioService64.exe;c:\program files\Realtek\Audio\HDA\RtkAudioService64.exe [x] S2 rzpmgrk;rzpmgrk;c:\windows\system32\drivers\rzpmgrk.sys;c:\windows\SYSNATIVE\drivers\rzpmgrk.sys [x] S2 rzpnk;rzpnk;c:\windows\system32\drivers\rzpnk.sys;c:\windows\SYSNATIVE\drivers\rzpnk.sys [x] S2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] S2 ss_conn_service;SAMSUNG Mobile Connectivity Service;c:\program files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe;c:\program files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [x] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x] S2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [x] S2 UltraMonUtility;UltraMon Utility Driver;c:\program files (x86)\Common Files\Realtime Soft\UltraMonMirrorDrv\x64\UltraMonUtility.sys;c:\program files (x86)\Common Files\Realtime Soft\UltraMonMirrorDrv\x64\UltraMonUtility.sys [x] S3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus;c:\windows\system32\DRIVERS\dtlitescsibus.sys;c:\windows\SYSNATIVE\DRIVERS\dtlitescsibus.sys [x] S3 e1dexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver D;c:\windows\system32\DRIVERS\e1d62x64.sys;c:\windows\SYSNATIVE\DRIVERS\e1d62x64.sys [x] S3 ISCT;Intel(R) Smart Connect Technology Device Driver;c:\windows\system32\DRIVERS\ISCTD.sys;c:\windows\SYSNATIVE\DRIVERS\ISCTD.sys [x] S3 iusb3hub;Intel(R) USB 3.0-Hubtreiber;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x] S3 iusb3xhc;Intel(R) USB 3.0 eXtensible-Hostcontrollertreiber;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x] S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x] S3 nvoclk64;NVIDIA Enthusiasts Platform KDM;c:\windows\system32\DRIVERS\nvoclk64.sys;c:\windows\SYSNATIVE\DRIVERS\nvoclk64.sys [x] S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x] S3 rzp1endpt;Razer platform 1 end point;c:\windows\system32\DRIVERS\rzp1endpt.sys;c:\windows\SYSNATIVE\DRIVERS\rzp1endpt.sys [x] S3 rzudd;Razer Mouse Driver;c:\windows\system32\DRIVERS\rzudd.sys;c:\windows\SYSNATIVE\DRIVERS\rzudd.sys [x] S3 rzvmouse;Razer Virtual Mouse;c:\windows\system32\DRIVERS\rzvmouse.sys;c:\windows\SYSNATIVE\DRIVERS\rzvmouse.sys [x] . . Inhalt des "geplante Tasks" Ordners . 2016-04-14 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-19 17:28] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)] @="{8BA85C75-763B-4103-94EB-9470F12FE0F7}" [HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}] 2015-07-31 08:59 2165976 ----a-w- c:\progra~1\MICROS~3\Office16\GROOVEEX.DLL . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)] @="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}" [HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}] 2015-07-31 08:59 2165976 ----a-w- c:\progra~1\MICROS~3\Office16\GROOVEEX.DLL . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)] @="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}" [HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}] 2015-07-31 08:59 2165976 ----a-w- c:\progra~1\MICROS~3\Office16\GROOVEEX.DLL . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2016-04-06 16418560] "NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2016-03-25 2397752] "ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2016-03-25 1767432] . HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs UxTuneUp . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://google.de/ mDefault_Search_URL = www.google.com mDefault_Page_URL = www.google.com mStart Page = www.google.com mSearch Page = www.google.com uInternet Settings,ProxyServer = localhost:21320 IE: An OneNote s&enden - c:\progra~1\MICROS~3\Office16\ONBttnIE.dll/105 IE: Free YouTube Download - c:\program files (x86)\Common Files\DVDVideoSoft\plugins\freeytvdownloader.htm IE: Nach Microsoft E&xcel exportieren - c:\progra~1\MICROS~3\Office16\EXCEL.EXE/3000 IE: {{c0e8ae32-0758-4c8d-ab71-23b361fe8964} Trusted Zone: clonewarsadventures.com Trusted Zone: freerealms.com Trusted Zone: localhost Trusted Zone: soe.com Trusted Zone: sony.com Trusted Zone: webcompanion.com TCP: DhcpNameServer = 192.168.0.1 Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - c:\program files (x86)\Common Files\microsoft shared\OFFICE16\MSOXMLMF.DLL Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - c:\program files (x86)\Microsoft Office\Office16\MSOSB.DLL Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - c:\program files (x86)\Microsoft Office\Office16\MSOSB.DLL FF - ProfilePath - c:\users\Kronok\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\ FF - prefs.js: browser.search.selectedEngine - Bing® FF - prefs.js: browser.startup.homepage - hxxps://www.malwarebytes.org/restorebrowser//?mode=ffseng&ptid=sqr&uid=E435AEADE156E122AC1C005124B44258&v=20160108&ts=AHEpAnAkAHQsBU.. . - - - - Entfernte verwaiste Registrierungseinträge - - - - . Wow6432Node-HKLM-Run-<NO NAME> - (no file) SafeBoot-PAexec AddRemove-Dying Light Ultimate Edition Incl. Update 4 MULTi2 1.5.0 - d:\games\Dying Light\Uninstall.exe AddRemove-Dying Light Ultimate Edition Update 8 Incl. DLCs MULTi2 1.6.1 - d:\games\Dying Light\Uninstall.exe . . . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\services\DUMeterSvc] "ImagePath"="c:\program files (x86)\DU Meter\DUMeterSvc.exe /startedbyscm:E1F6D4BE-40E33354-DUMeterService" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\services\MagicianSataModeReader] "ImagePath"="\??\c:\program files (x86)\Samsung\Samsung Magician\magdrvamd64.sys" -- . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\services\NvStreamKms] "ImagePath"="\??\c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\services\npggsvc] "ImagePath"="c:\windows\system32\GameMon.des -service" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_21_0_0_213_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_21_0_0_213_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}] @Denied: (A 2) (Everyone) @="IFlashBroker6" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_21_0_0_213_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_21_0_0_213_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_21_0_0_213.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.21" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_21_0_0_213.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_21_0_0_213.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_21_0_0_213.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}] @Denied: (A 2) (Everyone) @="IFlashBroker6" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Weitere laufende Prozesse ------------------------ . c:\program files (x86)\Fraps\fraps.exe c:\program files (x86)\AVG\Framework\Common\avguix.exe c:\users\Kronok\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe c:\progra~2\DUMETE~1\DUMeter.exe c:\windows\SysWOW64\PnkBstrA.exe c:\program files (x86)\Common Files\Realtime Soft\RTSHookInterop\x32\RTSHookInterop.exe c:\program files (x86)\Samsung\Samsung Magician\Samsung Magician.exe c:\program files (x86)\Razer\InGameEngine\32bit\RazerIngameEngine.exe c:\users\Kronok\AppData\Local\razer\InGameEngine\cache\RzSynapse\RzCefRenderProcess.exe c:\windows\SysWOW64\rundll32.exe . ************************************************************************** . Zeit der Fertigstellung: 2016-04-14 23:07:31 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2016-04-14 21:07 . Vor Suchlauf: 11 Verzeichnis(se), 22.367.952.896 Bytes frei Nach Suchlauf: 15 Verzeichnis(se), 22.341.332.992 Bytes frei . - - End Of File - - 69CDD06903A77F4CFC3430D806C5A1E8 A36C5E4F47E84449FF07ED3517B43A31 Geändert von Lotte2525 (14.04.2016 um 22:16 Uhr) |
Themen zu Nach Windows Start, Bildschirm für paar sek Weiß. |
anderes, anzeige, anzeigen, bildschirm, button, desktop, device driver, escan, eset, esgscanner.sys, fehler, geschlossen, meldung, onlinescan, programm, rechten, scan, sobald, start, starte, tagen, tft, verschwindet, virenscan, virtualbox, windows, windows start, woran |