Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: loadstart.net,webitar production

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 06.10.2016, 10:03   #1
heisele
 
loadstart.net,webitar production - Standard

loadstart.net,webitar production



Code:
ATTFilter
Users shortcut scan result (x86) Version: 04-10-2016
durchgeführt von admin (06-10-2016 10:53:23)
Gestartet von C:\Users\user\Downloads
Start-Modus: Normal

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)





Shortcut: C:\Users\admin\Links\Desktop.lnk -> C:\Users\admin\Desktop ()
Shortcut: C:\Users\admin\Links\Downloads.lnk -> C:\Users\admin\Downloads ()
Shortcut: C:\Users\admin\Links\RecentPlaces.lnk -> L ᐁ  À  䘀                         耟穭⊇㞡䘚낑�깚馼 ć 	ꀀz 匱卐뜥䟯ယ怂麌곫1 
 ἀ က 娀甀氀攀琀稀琀 戀攀猀甀挀栀琀 ⴀ Ѐ   
 Systemordner     匱卐檦⡣锽ᇒ횵쀀�퀘e  ἀ ⤀ 㨀㨀笀㈀㈀㠀㜀㜀䄀㘀䐀ⴀ㌀㜀䄀㄀ⴀ㐀㘀㄀䄀ⴀ㤀㄀䈀 ⴀ䐀䈀䐀䄀㔀䄀䄀䔀䈀䌀㤀㤀紀        
Shortcut: C:\Users\admin\Desktop\Die Installation von Skype Free Download fortsetzen.lnk -> C:\Users\admin\AppData\Local\Temp\ICReinstall_SkypeUpdateSetup.exe (Keine Datei)
Shortcut: C:\Users\admin\Desktop\FinalTorrent.lnk -> C:\Program Files\FinalTorrent\FinalTorrent.EXE (Keine Datei)
Shortcut: C:\Users\admin\Desktop\Free Torrent Viewer.lnk -> C:\Program Files\FreeTorrentViewer\FreeTorrentViewer.exe ()
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\ComTest v7.00.lnk -> C:\COMTEST_HOME\BIN\COMTEST.EXE (Keine Datei)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\FinalTorrent.lnk -> C:\Program Files\FinalTorrent\FinalTorrent.EXE (Keine Datei)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GMX.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PriceMetér\Uninstall Price Metér.lnk -> C:\Users\admin\AppData\Local\PriceMeter\uninst.exe (Keine Datei)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FreeTorrentViewer\Free Torrent Viewer.lnk -> C:\Program Files\FreeTorrentViewer\FreeTorrentViewer.exe ()
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FreeTorrentViewer\Uninstall.lnk -> C:\Program Files\FreeTorrentViewer\uninst.exe ()
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Windows\SendTo\Bluetooth-Dateiübertragung.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\FinalTorrent.lnk -> C:\Program Files\FinalTorrent\FinalTorrent.EXE (Keine Datei)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk -> C:\Windows\Installer\{AC76BA86-7AD7-1031-7B44-AB0000000001}\SC_Reader.ico ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Check for TWS Updates.lnk -> C:\Jts\WiseUpdt.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth.lnk -> C:\Program Files\Google\Google Earth\client\googleearth.exe (Google)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk -> C:\Windows\ehome\ehshell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk -> C:\Windows\System32\WindowsAnytimeUpgradeUI.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk -> C:\Program Files\DVD Maker\DVDMaker.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype\Skype.lnk -> C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers\Samsung ML-2160 Series\View User's Guide.lnk -> C:\Program Files\Samsung\Samsung ML-2160 Series\Setup\MANUAL\Samsung ML-2160 Series\GERMAN\start_here.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers\Samsung Easy Printer Manager\Order Supplies.lnk -> C:\Program Files\Samsung\Easy Printer Manager\OrderSupplies.exe (Samsung Electronics Co., Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers\Samsung Easy Printer Manager\Samsung Easy Printer Manager.lnk -> C:\Program Files\Samsung\Easy Printer Manager\IDS.Application.exe (Samsung Electronics Co., Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers\Samsung Easy Printer Manager\Uninstall.lnk -> C:\Program Files\Samsung\Easy Printer Manager\Uninst.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.2\OpenOffice Base.lnk -> C:\Program Files\OpenOffice 4\program\sbase.exe (Apache Software Foundation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.2\OpenOffice Calc.lnk -> C:\Program Files\OpenOffice 4\program\scalc.exe (Apache Software Foundation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.2\OpenOffice Draw.lnk -> C:\Program Files\OpenOffice 4\program\sdraw.exe (Apache Software Foundation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.2\OpenOffice Impress.lnk -> C:\Program Files\OpenOffice 4\program\simpress.exe (Apache Software Foundation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.2\OpenOffice Math.lnk -> C:\Program Files\OpenOffice 4\program\smath.exe (Apache Software Foundation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.2\OpenOffice Writer.lnk -> C:\Program Files\OpenOffice 4\program\swriter.exe (Apache Software Foundation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.2\OpenOffice.lnk -> C:\Program Files\OpenOffice 4\program\soffice.exe (Apache Software Foundation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OnVista Bank\Global Trading System Deutschland 4.lnk -> C:\Windows\Installer\{909D42D6-8FCE-4A07-9181-2D9571B122E8}\GTS.exe2_E7B54B39AEC64248B82151CD6AB66EBA.exe (Acresso Software Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird\Mozilla Thunderbird.lnk -> C:\Program Files\Mozilla Thunderbird\thunderbird.exe (Mozilla Messaging)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight\Microsoft Silverlight.lnk -> C:\Program Files\Microsoft Silverlight\5.1.50709.0\Silverlight.Configuration.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware \Malwarebytes Anti-Malware entfernen.lnk -> C:\Program Files\ Malwarebytes Anti-Malware \unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware \ Malwarebytes Anti-Malware .lnk -> C:\Program Files\ Malwarebytes Anti-Malware \mbam.exe (Malwarebytes)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware \Tools\Malwarebytes Anti-Malware Chameleon.lnk -> C:\Program Files\ Malwarebytes Anti-Malware \Chameleon\Windows\chameleon.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Create Recovery Disc.lnk -> C:\Windows\System32\recdisc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Remote Assistance.lnk -> C:\Windows\System32\msra.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Anti-Virus\Hilfe für Kaspersky Anti-Virus.lnk -> C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\Doc\de-DE\kav\context.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Anti-Virus\Kaspersky Anti-Virus.lnk -> C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\avpui.exe (AO Kaspersky Lab)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Anti-Virus\Kaspersky Lab im Internet.lnk -> C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\kl.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Anti-Virus\Lizenzvertrag.lnk -> C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\Doc\de\license.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Java konfigurieren.lnk -> C:\Program Files\Java\jre1.8.0_91\bin\javacpl.exe (Oracle Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Chess.lnk -> C:\Program Files\Microsoft Games\Chess\Chess.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\FreeCell.lnk -> C:\Program Files\Microsoft Games\FreeCell\FreeCell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\GameExplorer.lnk -> C:\Windows\System32\gameux.dll (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Hearts.lnk -> C:\Program Files\Microsoft Games\Hearts\Hearts.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Internet Backgammon.lnk -> C:\Program Files\Microsoft Games\Multiplayer\Backgammon\bckgzm.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Internet Checkers.lnk -> C:\Program Files\Microsoft Games\Multiplayer\Checkers\chkrzm.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Internet Spades.lnk -> C:\Program Files\Microsoft Games\Multiplayer\Spades\shvlzm.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Mahjong.lnk -> C:\Program Files\Microsoft Games\Mahjong\Mahjong.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Minesweeper.lnk -> C:\Program Files\Microsoft Games\Minesweeper\Minesweeper.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\More Games from Microsoft.lnk -> C:\Program Files\Microsoft Games\More Games\MoreGames.dll (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Purble Place.lnk -> C:\Program Files\Microsoft Games\Purble Place\PurblePlace.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Solitaire.lnk -> C:\Program Files\Microsoft Games\Solitaire\Solitaire.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Spider Solitaire.lnk -> C:\Program Files\Microsoft Games\SpiderSolitaire\SpiderSolitaire.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Data Sources (ODBC).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Bluetooth File Transfer Wizard.lnk -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Calculator.lnk -> C:\Windows\System32\calc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\displayswitch.lnk -> C:\Windows\System32\displayswitch.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sound Recorder.lnk -> C:\Windows\System32\SoundRecorder.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk -> C:\Windows\System32\StikyNot.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sync Center.lnk -> C:\Windows\System32\mobsync.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\ShapeCollector.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\ShapeCollector.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\TabTip.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\TabTip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Restore.lnk -> C:\Windows\System32\rstrui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer Reports.lnk -> C:\Windows\System32\migwiz\PostMig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer.lnk -> C:\Windows\System32\migwiz\migwiz.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Public\Desktop\Adobe Reader XI.lnk -> C:\Program Files\Adobe\Reader 11.0\Reader\AcroRd32.exe (Adobe Systems Incorporated)
Shortcut: C:\Users\Public\Desktop\Kaspersky Anti-Virus.lnk -> C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\avpui.exe (AO Kaspersky Lab)
Shortcut: C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk -> C:\Program Files\ Malwarebytes Anti-Malware \mbam.exe (Malwarebytes)
Shortcut: C:\Users\Public\Desktop\Markets-pro Trading Plattform.lnk -> C:\Program Files\Markets-pro\Markets-pro Trading Plattform\MM5\iiDownloader.exe ()
Shortcut: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\Public\Desktop\Mozilla Thunderbird.lnk -> C:\Program Files\Mozilla Thunderbird\thunderbird.exe (Mozilla Messaging)
Shortcut: C:\Users\Public\Desktop\OnVista Bank.lnk -> C:\Windows\Installer\{909D42D6-8FCE-4A07-9181-2D9571B122E8}\GTS.exe1_8E5A0E80082D4BD78C0D9300413F731E.exe (Acresso Software Inc.)
Shortcut: C:\Users\Public\Desktop\OpenOffice 4.1.2.lnk -> C:\Program Files\OpenOffice 4\program\soffice.exe (Apache Software Foundation)
Shortcut: C:\Users\Public\Desktop\Skype.lnk -> C:\Windows\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\SkypeIcon.exe ()
Shortcut: C:\Users\user\Links\advanced (2).lnk -> C:\Users\user\Searches\advanced (2).search-ms ()
Shortcut: C:\Users\user\Links\advanced.lnk -> C:\Users\user\Searches\advanced.search-ms ()
Shortcut: C:\Users\user\Links\Desktop.lnk -> C:\Users\user\Desktop ()
Shortcut: C:\Users\user\Links\dokumente flatex.lnk -> C:\Users\user\Searches\dokumente flatex.search-ms ()
Shortcut: C:\Users\user\Links\Downloads.lnk -> C:\Users\user\Downloads ()
Shortcut: C:\Users\user\Links\finanzamt deutsch.lnk -> C:\Users\user\Searches\finanzamt deutsch.search-ms ()
Shortcut: C:\Users\user\Links\heiler.lnk -> C:\Users\user\Searches\heiler.search-ms ()
Shortcut: C:\Users\user\Links\Importierte Bilder und Videos (2).lnk -> C:\Users\user\Searches\Importierte Bilder und Videos (2).search-ms ()
Shortcut: C:\Users\user\Links\Importierte Bilder und Videos (3).lnk -> C:\Users\user\Searches\Importierte Bilder und Videos (3).search-ms ()
Shortcut: C:\Users\user\Links\Importierte Bilder und Videos (4).lnk -> C:\Users\user\Searches\Importierte Bilder und Videos (4).search-ms ()
Shortcut: C:\Users\user\Links\Importierte Bilder und Videos.lnk -> C:\Users\user\Searches\Importierte Bilder und Videos.search-ms ()
Shortcut: C:\Users\user\Links\inflight.lnk -> C:\Users\user\Searches\inflight.search-ms ()
Shortcut: C:\Users\user\Links\keytrade.lnk -> C:\Users\user\Searches\keytrade.search-ms ()
Shortcut: C:\Users\user\Links\novasoft2.lnk -> C:\Users\user\Searches\novasoft2.search-ms ()
Shortcut: C:\Users\user\Links\pass.lnk -> C:\Users\user\Searches\pass.search-ms ()
Shortcut: C:\Users\user\Links\RecentPlaces.lnk -> L ᐁ  À  䘀                         耟穭⊇㞡䘚낑�깚馼 ć 	ꀀz 匱卐뜥䟯ယ怂麌곫1 
 ἀ က 娀甀氀攀琀稀琀 戀攀猀甀挀栀琀 ⴀ Ѐ   
 Systemordner     匱卐檦⡣锽ᇒ횵쀀�퀘e  ἀ ⤀ 㨀㨀笀㈀㈀㠀㜀㜀䄀㘀䐀ⴀ㌀㜀䄀㄀ⴀ㐀㘀㄀䄀ⴀ㤀㄀䈀 ⴀ䐀䈀䐀䄀㔀䄀䄀䔀䈀䌀㤀㤀紀        
Shortcut: C:\Users\user\Links\reisepass.lnk -> C:\Users\user\Searches\reisepass.search-ms ()
Shortcut: C:\Users\user\Links\sri lanka.lnk -> C:\Users\user\Documents\sri lanka.search-ms ()
Shortcut: C:\Users\user\Links\testament.lnk -> C:\Users\user\Searches\testament.search-ms ()
Shortcut: C:\Users\user\Links\vkw.lnk -> C:\Users\user\Searches\vkw.search-ms ()
Shortcut: C:\Users\user\Links\waltr.lnk -> C:\Users\user\Searches\waltr.search-ms ()
Shortcut: C:\Users\user\Documents\heiler.lnk -> C:\Users\user\Searches\heiler.search-ms ()
Shortcut: C:\Users\user\Desktop\Google Chrome.lnk -> C:\Users\user\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Users\user\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk -> C:\Users\user\AppData\Local\Mozilla Thunderbird\thunderbird.exe (Keine Datei)
Shortcut: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\user\AppData\Roaming\Microsoft\Windows\SendTo\Bluetooth-Dateiübertragung.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation)
Shortcut: C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Thunderbird.lnk -> C:\Program Files\Mozilla Thunderbird\thunderbird.exe (Mozilla Messaging)
Shortcut: C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)


ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Interactive Brokers\IB Gateway.LNK -> C:\Windows\System32\cmd.exe (Microsoft Corporation) -> /C "C:\Jts\StartIBGateway.bat C:\Jts"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Interactive Brokers\Trader Workstation 4.0.LNK -> C:\Windows\System32\cmd.exe (Microsoft Corporation) -> /C "C:\Jts\StartTws.bat C:\Jts"
ShortcutWithArgument: C:\Users\Public\Desktop\Trader Workstation 4.0.LNK -> C:\Windows\System32\cmd.exe (Microsoft Corporation) -> /C "C:\Jts\StartTws.bat C:\Jts"
ShortcutWithArgument: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> "hxxp://loadstart.net/?ssid=1475505941&a=1004438&src=sh&uuid=d18668a0-9cce-44ad-991d-c4dfc5686623,1475505830130"
ShortcutWithArgument: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> "hxxp://loadstart.net/?ssid=1475505941&a=1004438&src=sh&uuid=d18668a0-9cce-44ad-991d-c4dfc5686623,1475505830130"
ShortcutWithArgument: C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> "hxxp://loadstart.net/?ssid=1475505941&a=1004438&src=sh&uuid=d18668a0-9cce-44ad-991d-c4dfc5686623,1475505830130"
ShortcutWithArgument: C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> "hxxp://loadstart.net/?ssid=1475505941&a=1004438&src=sh&uuid=d18668a0-9cce-44ad-991d-c4dfc5686623,1475505830130"
ShortcutWithArgument: C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> "hxxp://loadstart.net/?ssid=1475505941&a=1004438&src=sh&uuid=d18668a0-9cce-44ad-991d-c4dfc5686623,1475505830130"


ShortcutWithArgument: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Check for TWS Updates.lnk -> C:\Jts\WiseUpdt.exe () -> /C
ShortcutWithArgument: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) ->  -extoff
ShortcutWithArgument: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\admin\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\admin\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk -> C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.) -> /sendto:
ShortcutWithArgument: C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk -> C:\Program Files\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DefaultPrograms
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk -> C:\Windows\System32\wuapp.exe (Microsoft Corporation) -> startmenu
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) -> /showgadgets
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers\Samsung ML-2160 Series\Uninstall.lnk -> C:\Program Files\Samsung\Samsung ML-2160 Series\Setup\setup.exe () -> /R
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird\Mozilla Thunderbird (Abgesicherter Modus).lnk -> C:\Program Files\Mozilla Thunderbird\thunderbird.exe (Mozilla Messaging) -> -safe-mode
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Backup and Restore Center.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.BackupAndRestore
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Anti-Virus\Kaspersky Anti-Virus entfernen.lnk -> C:\Windows\System32\msiexec.exe (Microsoft Corporation) -> /i{F575F386-57EF-4943-B003-A13F13B05EEB} REMOVE=ALL
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Auf Updates prüfen.lnk -> C:\Program Files\Java\jre1.8.0_91\bin\javacpl.exe (Oracle Corporation) -> -tab update
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Info zu Java.lnk -> C:\Program Files\Java\jre1.8.0_91\bin\javacpl.exe (Oracle Corporation) -> -tab about
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell Modules.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) -> -NoExit -ImportSystemModules
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) -> /open
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Welcome Center.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\user\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\user\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk -> C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.) -> /sendto:
ShortcutWithArgument: C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk -> C:\Program Files\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1


InternetURL: C:\Users\admin\Favorites\Bing.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/417
InternetURL: C:\Users\admin\Favorites\Windows Live\Fotos und Dokumente.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/416
InternetURL: C:\Users\admin\Favorites\Windows Live\Windows Live Gallery.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=70742
InternetURL: C:\Users\admin\Favorites\Windows Live\Windows Live Hotmail.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/415
InternetURL: C:\Users\admin\Favorites\Windows Live\Windows Live Ideas.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72700
InternetURL: C:\Users\admin\Favorites\Windows Live\Windows Live Mail.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72681
InternetURL: C:\Users\admin\Favorites\Windows Live\Windows Live Messenger.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/414
InternetURL: C:\Users\admin\Favorites\Windows Live\Windows Live Spaces.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72682
InternetURL: C:\Users\admin\Favorites\MSN-Websites\MSN Auto.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72680
InternetURL: C:\Users\admin\Favorites\MSN-Websites\MSN Fernsehen.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72659
InternetURL: C:\Users\admin\Favorites\MSN-Websites\MSN Money.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72640
InternetURL: C:\Users\admin\Favorites\MSN-Websites\MSN Nachrichten.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72636
InternetURL: C:\Users\admin\Favorites\MSN-Websites\MSN Sport.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72635
InternetURL: C:\Users\admin\Favorites\MSN-Websites\MSN.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72630
InternetURL: C:\Users\admin\Favorites\MSN\MSN Auto.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/402
InternetURL: C:\Users\admin\Favorites\MSN\MSN Homepage.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/401
InternetURL: C:\Users\admin\Favorites\MSN\MSN Horoskop.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/403
InternetURL: C:\Users\admin\Favorites\MSN\MSN Immobilien.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/404
InternetURL: C:\Users\admin\Favorites\MSN\MSN Jobs & Karriere.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/405
InternetURL: C:\Users\admin\Favorites\MSN\MSN Lifestyle.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/406
InternetURL: C:\Users\admin\Favorites\MSN\MSN Nachrichten.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/407
InternetURL: C:\Users\admin\Favorites\MSN\MSN Partnersuche.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/409
InternetURL: C:\Users\admin\Favorites\MSN\MSN Reisen.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/410
InternetURL: C:\Users\admin\Favorites\MSN\MSN Spiele.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/411
InternetURL: C:\Users\admin\Favorites\MSN\MSN Sport.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/412
InternetURL: C:\Users\admin\Favorites\MSN\MSN Unterhaltung.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/408
InternetURL: C:\Users\admin\Favorites\MSN\MSN Wetter.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/413
InternetURL: C:\Users\admin\Favorites\Microsoft-Websites\IE-Site auf Microsoft.com.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72186
InternetURL: C:\Users\admin\Favorites\Microsoft-Websites\Microsoft Deutschland GmbH.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72520
InternetURL: C:\Users\admin\Favorites\Microsoft-Websites\Microsoft Store.url -> URL: hxxp://go.microsoft.com/fwlink/?linkid=140813
InternetURL: C:\Users\admin\Favorites\Microsoft-Websites\Microsoft Windows - Start.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72629
InternetURL: C:\Users\admin\Favorites\Microsoft-Websites\Microsoft zu Hause.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72406
InternetURL: C:\Users\admin\Favorites\Microsoft-Websites\Microsoft.com durchsuchen.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72893
InternetURL: C:\Users\admin\Favorites\Microsoft-Websites\Site für IE Add-Ons.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=50893
InternetURL: C:\Users\admin\Favorites\Microsoft Websites\IE Add-on site.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=50893
InternetURL: C:\Users\admin\Favorites\Microsoft Websites\IE site on Microsoft.com.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=44661
InternetURL: C:\Users\admin\Favorites\Microsoft Websites\Microsoft At Home.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=55424
InternetURL: C:\Users\admin\Favorites\Microsoft Websites\Microsoft At Work.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=68920
InternetURL: C:\Users\admin\Favorites\Microsoft Websites\Microsoft Store.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=140813
InternetURL: C:\Users\admin\Favorites\Microsoft Websites\Welcome to IE9.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=191282
InternetURL: C:\Users\admin\Favorites\Links\Vorgeschlagene Sites.url -> URL: hxxps://ieonline.microsoft.com/#ieslice
InternetURL: C:\Users\admin\Favorites\Links\Web Slice-Katalog.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=121315
InternetURL: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PriceMetér\Price Metér Help.url -> URL: hxxp://support.pricemeter.net/
InternetURL: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PriceMetér\Price Metér.url -> URL: hxxp://www.pricemeter.net/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers\Samsung AnyWeb Print\Download the latest version.url -> URL: hxxp://solution.samsungprinter.com/personal/anywebprint
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Besuchen Sie Java.com.url -> URL: hxxp://java.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Hilfe aufrufen.url -> URL: hxxp://java.com/help
InternetURL: C:\Users\user\Favorites\Bing.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/417
InternetURL: C:\Users\user\Favorites\Windows Live\Fotos und Dokumente.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/416
InternetURL: C:\Users\user\Favorites\Windows Live\Windows Live Gallery.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=70742
InternetURL: C:\Users\user\Favorites\Windows Live\Windows Live Hotmail.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/415
InternetURL: C:\Users\user\Favorites\Windows Live\Windows Live Ideas.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72700
InternetURL: C:\Users\user\Favorites\Windows Live\Windows Live Mail.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72681
InternetURL: C:\Users\user\Favorites\Windows Live\Windows Live Messenger.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/414
InternetURL: C:\Users\user\Favorites\Windows Live\Windows Live Spaces.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72682
InternetURL: C:\Users\user\Favorites\MSN-Websites\MSN Auto.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72680
InternetURL: C:\Users\user\Favorites\MSN-Websites\MSN Fernsehen.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72659
InternetURL: C:\Users\user\Favorites\MSN-Websites\MSN Money.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72640
InternetURL: C:\Users\user\Favorites\MSN-Websites\MSN Nachrichten.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72636
InternetURL: C:\Users\user\Favorites\MSN-Websites\MSN Sport.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72635
InternetURL: C:\Users\user\Favorites\MSN-Websites\MSN.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72630
InternetURL: C:\Users\user\Favorites\MSN\MSN Auto.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/402
InternetURL: C:\Users\user\Favorites\MSN\MSN Homepage.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/401
InternetURL: C:\Users\user\Favorites\MSN\MSN Horoskop.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/403
InternetURL: C:\Users\user\Favorites\MSN\MSN Immobilien.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/404
InternetURL: C:\Users\user\Favorites\MSN\MSN Jobs & Karriere.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/405
InternetURL: C:\Users\user\Favorites\MSN\MSN Lifestyle.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/406
InternetURL: C:\Users\user\Favorites\MSN\MSN Nachrichten.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/407
InternetURL: C:\Users\user\Favorites\MSN\MSN Partnersuche.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/409
InternetURL: C:\Users\user\Favorites\MSN\MSN Reisen.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/410
InternetURL: C:\Users\user\Favorites\MSN\MSN Spiele.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/411
InternetURL: C:\Users\user\Favorites\MSN\MSN Sport.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/412
InternetURL: C:\Users\user\Favorites\MSN\MSN Unterhaltung.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/408
InternetURL: C:\Users\user\Favorites\MSN\MSN Wetter.url -> URL: hxxp://g.msn.com/1me10IE9DEAT01/413
InternetURL: C:\Users\user\Favorites\Microsoft-Websites\IE-Site auf Microsoft.com.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72186
InternetURL: C:\Users\user\Favorites\Microsoft-Websites\Microsoft Deutschland GmbH.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72520
InternetURL: C:\Users\user\Favorites\Microsoft-Websites\Microsoft Store.url -> URL: hxxp://go.microsoft.com/fwlink/?linkid=140813
InternetURL: C:\Users\user\Favorites\Microsoft-Websites\Microsoft Windows - Start.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72629
InternetURL: C:\Users\user\Favorites\Microsoft-Websites\Microsoft zu Hause.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72406
InternetURL: C:\Users\user\Favorites\Microsoft-Websites\Microsoft.com durchsuchen.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72893
InternetURL: C:\Users\user\Favorites\Microsoft-Websites\Site für IE Add-Ons.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=50893
InternetURL: C:\Users\user\Favorites\Microsoft Websites\IE Add-on site.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=50893
InternetURL: C:\Users\user\Favorites\Microsoft Websites\IE site on Microsoft.com.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=44661
InternetURL: C:\Users\user\Favorites\Microsoft Websites\Microsoft At Home.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=55424
InternetURL: C:\Users\user\Favorites\Microsoft Websites\Microsoft At Work.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=68920
InternetURL: C:\Users\user\Favorites\Microsoft Websites\Microsoft Store.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=140813
InternetURL: C:\Users\user\Favorites\Microsoft Websites\Welcome to IE9.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=191282
InternetURL: C:\Users\user\Favorites\Links\Amazon.url -> URL: hxxp://go.gmx.net/br/ie9_bm_amazon
InternetURL: C:\Users\user\Favorites\Links\eBay.url -> URL: hxxp://go.gmx.net/br/ie9_bm_ebay
InternetURL: C:\Users\user\Favorites\Links\FreeMail.url -> URL: hxxp://go.gmx.net/br/ie9_bm_freemail
InternetURL: C:\Users\user\Favorites\Links\Games.url -> URL: hxxp://go.gmx.net/br/ie9_bm_games
InternetURL: C:\Users\user\Favorites\Links\Lastminute.url -> URL: hxxp://go.gmx.net/br/ie9_bm_reise
InternetURL: C:\Users\user\Favorites\Links\Nachrichten.url -> URL: hxxp://go.gmx.net/br/ie9_bm_news
InternetURL: C:\Users\user\Favorites\Links\Suche.url -> URL: hxxp://go.gmx.net/br/ie9_bm_suche
InternetURL: C:\Users\user\Favorites\Links\Tchibo.url -> URL: hxxp://go.gmx.net/br/ie9_bm_tchibo
InternetURL: C:\Users\user\Favorites\Links\Vorgeschlagene Sites.url -> URL: hxxps://ieonline.microsoft.com/#ieslice
InternetURL: C:\Users\user\Favorites\Links\Web Slice-Katalog.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=121315
InternetURL: C:\Users\user\Favorites\Links\Zalando.url -> URL: hxxp://go.gmx.net/br/ie9_bm_zalando
InternetURL: C:\Users\user\Favorites\Links\GMX Services\De-Mail.url -> URL: hxxp://go.gmx.net/br/ie9_bm_demail
InternetURL: C:\Users\user\Favorites\Links\GMX Services\DSL Internet VOIP.url -> URL: hxxp://go.gmx.net/br/ie9_bm_dsl
InternetURL: C:\Users\user\Favorites\Links\GMX Services\Facebook Login.url -> URL: hxxp://go.gmx.net/br/ie9_search_web/?su=facebook
InternetURL: C:\Users\user\Favorites\Links\GMX Services\FreePhone & Internet Flat.url -> URL: hxxp://go.gmx.net/br/ie9_bm_freephone
InternetURL: C:\Users\user\Favorites\Links\GMX Services\GMX Hilfe & Kundencenter.url -> URL: hxxp://go.gmx.net/br/ie9_bm_hilfecenter
InternetURL: C:\Users\user\Favorites\Links\GMX Services\GMX Mobile.url -> URL: hxxp://go.gmx.net/br/ie9_bm_mobile
InternetURL: C:\Users\user\Favorites\Links\GMX Services\GMX Posteingang Login.url -> URL: hxxp://go.gmx.net/br/ie9_search_web/?su=web.de
InternetURL: C:\Users\user\Favorites\Links\GMX Services\GMX Postfach Login Anmeldung.url -> URL: hxxp://go.gmx.net/br/ie9_bm_home
InternetURL: C:\Users\user\Favorites\Links\GMX Services\Google Suche bei GMX.url -> URL: hxxp://go.gmx.net/br/ie9_search_web/?su=google
InternetURL: C:\Users\user\Favorites\Links\GMX Services\Hotelsuche Notdienst Maps.url -> URL: hxxp://go.gmx.net/br/ie9_bm_maps
InternetURL: C:\Users\user\Favorites\Links\GMX Services\MailCheck.url -> URL: hxxp://go.gmx.net/br/ie9_bm_mailcheck
InternetURL: C:\Users\user\Favorites\Links\GMX Services\Mobil Telefonieren.url -> URL: hxxp://go.gmx.net/br/ie9_bm_telefoninternet
InternetURL: C:\Users\user\Favorites\Links\GMX Services\Phishing Filter.url -> URL: hxxp://go.gmx.net/br/ie9_bm_security3
InternetURL: C:\Users\user\Favorites\Links\GMX Services\Pics & Bilder Flickr und Yahoo!.url -> URL: hxxp://go.gmx.net/br/ie9_bm_pic
InternetURL: C:\Users\user\Favorites\Links\GMX Services\ProMail.url -> URL: hxxp://go.gmx.net/br/ie9_bm_promail
InternetURL: C:\Users\user\Favorites\Links\GMX Services\Routenplaner.url -> URL: hxxp://go.gmx.net/br/ie9_bm_routenplaner
InternetURL: C:\Users\user\Favorites\Links\GMX Services\Singlebörse & Partnersuche.url -> URL: hxxp://go.gmx.net/br/ie9_bm_singletreff
InternetURL: C:\Users\user\Favorites\Links\GMX Services\SmartSurfer.url -> URL: hxxp://go.gmx.net/br/ie9_bm_smartsurfer
InternetURL: C:\Users\user\Favorites\Links\GMX Services\SMS & MMS.url -> URL: hxxp://go.gmx.net/br/ie9_bm_sms
InternetURL: C:\Users\user\Favorites\Links\GMX Services\Spam Filter Spam Schutz.url -> URL: hxxp://go.gmx.net/br/ie9_bm_security2
InternetURL: C:\Users\user\Favorites\Links\GMX Services\TopMail.url -> URL: hxxp://go.gmx.net/br/ie9_bm_topmail
InternetURL: C:\Users\user\Favorites\Links\GMX Services\Virenschutz Sicherheit Antivirus.url -> URL: hxxp://go.gmx.net/br/ie9_bm_security1
InternetURL: C:\Users\user\Favorites\Links\GMX Services\Wetter.url -> URL: hxxp://go.gmx.net/br/ie9_bm_wetter

==================== Ende vom Shortcut.txt =============================
         
Hallo Jürgen,

Auf Meinungen würde ich mich in dieser Materie nicht verlassen.Nicht einmal auf die von Warren Buffet.

P.S:Habt ihr eigentlich kein Smiley,wo man mit einem Auge zwinkert?Das würde am Besten auf meine Antworten passen.(Zwinker)

Alt 06.10.2016, 10:42   #2
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
loadstart.net,webitar production - Standard

loadstart.net,webitar production



Naja, der hatte es leicht. Der ist schon 30 Jahre investiert.

Schritt 1



Drücke bitte die + R Taste und schreibe notepad in das Ausführen Fenster.
Klicke auf OK und kopiere nun den Text aus der Codebox in das leere Textdokument:
Code:
ATTFilter
CloseProcesses:
ShortcutWithArgument: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> "hxxp://loadstart.net/?ssid=1475505941&a=1004438&src=sh&uuid=d18668a0-9cce-44ad-991d-c4dfc5686623,1475505830130"
ShortcutWithArgument: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> "hxxp://loadstart.net/?ssid=1475505941&a=1004438&src=sh&uuid=d18668a0-9cce-44ad-991d-c4dfc5686623,1475505830130"
ShortcutWithArgument: C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> "hxxp://loadstart.net/?ssid=1475505941&a=1004438&src=sh&uuid=d18668a0-9cce-44ad-991d-c4dfc5686623,1475505830130"
ShortcutWithArgument: C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> "hxxp://loadstart.net/?ssid=1475505941&a=1004438&src=sh&uuid=d18668a0-9cce-44ad-991d-c4dfc5686623,1475505830130"
ShortcutWithArgument: C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> "hxxp://loadstart.net/?ssid=1475505941&a=1004438&src=sh&uuid=d18668a0-9cce-44ad-991d-c4dfc5686623,1475505830130"
         
Speichere dieses bitte als Fixlist.txt in das Verzeichnis ab, in dem sich auch die FRST-Anwendung befindet.
  • Starte FRST und drücke auf den Entfernen-Button.
  • Das Tool erstellt eine "Fixlog.txt" -Datei.
  • Poste mir bitte deren Inhalt.

Wie sieht es nach dem Reboot aus?
__________________

__________________

Alt 06.10.2016, 15:05   #3
heisele
 
loadstart.net,webitar production - Standard

loadstart.net,webitar production



abc
__________________

Antwort

Themen zu loadstart.net,webitar production
browser, deinstalliere, deinstallieren, eingefangen, gefangen, herbert, herunterladen, laptop, meinem, namens, nicht, programm, starte, startet, treiber





Zum Thema loadstart.net,webitar production - Code: Alles auswählen Aufklappen ATTFilter Users shortcut scan result (x86) Version: 04-10-2016 durchgeführt von admin (06-10-2016 10:53:23) Gestartet von C:\Users\user\Downloads Start-Modus: Normal ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, - loadstart.net,webitar production...
Archiv
Du betrachtest: loadstart.net,webitar production auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.