![]() |
|
Log-Analyse und Auswertung: Keine Updates/ Google öffnet falsche Seiten/ Virussoftware updated nicht mehrWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
| ![]() Keine Updates/ Google öffnet falsche Seiten/ Virussoftware updated nicht mehr Hallo ich habe in den letzten Wochen ein komische verhalten von meinem Laptop festgestellt. 1. Es kommt sehr oft vor, das dieser bei Google sachen öffnet auf die ich garnicht geklickt habe. 2. Dann ist es mir zum gegenwärtigen Zeitpunkt unmöglich Windows zum Update zu bekommen. Er Versucht es zwar, passieren tut nichts. 3. War/ist meine Antivirussoftware GData InternetSeurity 2010 auch nicht in der lage gewesen ein Software / Virenkennungsupdate durchzuführen. Ich weiss nicht was ich mit eingefangen habe und bin auch seit einigen Jahren komplett raus was den Computer angeht. Habe alle Logs die Ihr im Howto verlangt erstellt und hoffe, dass ich sie nun alle hier rein posten kann. Bin schon jetzt dankbar über jede hilfe. Gruss Stefan Code:
ATTFilter Logfile of random's system information tool 1.07 (written by random/random) Run by Ironice at 2010-05-22 21:44:26 Microsoft® Windows Vista™ Home Premium Service Pack 2 System drive C: has 92 GB (38%) free of 238 GB Total RAM: 3070 MB (64% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 21:44:46, on 22.05.2010 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v8.00 (8.00.6001.18904) Boot mode: Normal Running processes: C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\system32\taskeng.exe C:\Program Files\ASUS\ASUS Live Update\ALU.exe C:\Program Files\ASUS\ASUS CopyProtect\aspg.exe C:\Windows\system32\taskeng.exe C:\Program Files\ASUS\SmartLogon\sensorsrv.exe C:\Program files\P4G\BatteryLife.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe C:\Program Files\ATK Hotkey\HControlUser.exe C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe C:\Program Files\ASUS\ATK Media\DMedia.exe C:\Windows\System32\ASUSTPE.exe C:\Windows\ASScrPro.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Windows\starter4g.exe C:\Program Files\Winamp\winampa.exe C:\Program Files\Windows Live\Messenger\msnmsgr.exe C:\Program Files\DAEMON Tools Lite\DTLite.exe C:\Windows\System32\spool\drivers\w32x86\3\E_FATICAE.EXE C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe C:\Program Files\Synaptics\SynTP\SynTPHelper.exe C:\Windows\system32\wuauclt.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe D:\VirusProgramme\RSIT.exe C:\Program Files\trend micro\Ironice.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhost O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe" O4 - HKLM\..\Run: [P2Go_Menu] "C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0" O4 - HKLM\..\Run: [HControlUser] "C:\Program Files\ATK Hotkey\HcontrolUser.exe" O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [ADSMTray] C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMedia.exe O4 - HKLM\..\Run: [ASUSTPE] C:\Windows\system32\ASUSTPE.exe O4 - HKLM\..\Run: [ASUS Camera ScreenSaver] C:\Windows\AsScrProlog.exe O4 - HKLM\..\Run: [ASUS Screen Saver Protector] C:\Windows\ASScrPro.exe O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [starter4g] C:\Windows\starter4g.exe O4 - HKLM\..\Run: [Skytel] C:\Program Files\Realtek\Audio\HDA\Skytel.exe O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe" O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] D:\VirusProgramme\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun O4 - HKCU\..\Run: [EPSON Stylus DX4400 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE /FU "C:\Windows\TEMP\E_S4223.tmp" /EF "HKCU" O4 - HKCU\..\Run: [AutoStartNPSAgent] C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe O4 - HKCU\..\Run: [EPSON Stylus DX4000 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIBEE.EXE /FU "C:\Windows\TEMP\E_S1989.tmp" /EF "HKCU" O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKALER DIENST') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKALER DIENST') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETZWERKDIENST') O4 - Global Startup: FancyStart daemon.lnk = ? O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 O9 - Extra button: In Blog veröffentlichen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: In Windows Live Writer in Blog veröffentliche&n - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe O16 - DPF: {C1FDEE68-98D5-4F42-A4DD-D0BECF5077EB} (EPUImageControl Class) - hxxp://tools.ebayimg.com/eps/wl/activex/eBay_Enhanced_Picture_Control_v1-0-29-0.cab O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{DD25B736-B0DA-47F7-811B-E1065DA4BBFA}: NameServer = 10.74.83.22 193.254.160.1 O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll O23 - Service: ADSM Service (ADSMService) - ASUSTek Computer Inc. - C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: FsUsbExService - Teruten - C:\Windows\system32\FsUsbExService.Exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: Remote Procedure Call (RPC) Net (rpcnet) - Absolute Software Corp. - C:\Windows\system32\rpcnet.exe O23 - Service: WTGService - Unknown owner - C:\Program Files\XSManager\WTGService.exe O23 - Service: XS Stick Service - 4G Systems GmbH & Co. KG - C:\Windows\service4g.exe -- End of file - 8051 bytes ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live ID-Anmelde-Hilfsprogramm - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-03-30 403824] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-04-12 41760] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184] "CLMLServer"=C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [2008-07-19 104936] "P2Go_Menu"=C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2008-06-14 210216] "HControlUser"=C:\Program Files\ATK Hotkey\HcontrolUser.exe [2008-07-03 98304] "ATKOSD2"=C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [2009-03-04 8392704] "RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-04-14 7416352] "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-12-06 1029416] "ADSMTray"=C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe [2008-04-01 266240] "ATKMEDIA"=C:\Program Files\ASUS\ATK Media\DMedia.exe [2009-04-20 159744] "ASUSTPE"=C:\Windows\system32\ASUSTPE.exe [2007-10-12 106496] "ASUS Camera ScreenSaver"=C:\Windows\AsScrProlog.exe [2009-07-28 47672] "ASUS Screen Saver Protector"=C:\Windows\ASScrPro.exe [2009-07-28 33136] "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-12-03 35184] "SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040] "starter4g"=C:\Windows\starter4g.exe [2009-06-17 157968] "Skytel"=C:\Program Files\Realtek\Audio\HDA\Skytel.exe [2009-04-14 1833504] "NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2009-07-02 13789728] "WinampAgent"=C:\Program Files\Winamp\winampa.exe [2009-12-18 39424] "AdobeCS4ServiceManager"=C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2008-08-14 611712] "NPSStartup"= [] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Malwarebytes' Anti-Malware"=D:\VirusProgramme\Malwarebytes' Anti-Malware\mbamgui.exe [2010-04-29 437584] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"=oobefldr.dll,ShowWelcomeCenter [] "msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2009-07-26 3883840] "DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200] "EPSON Stylus DX4400 Series"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736] "AutoStartNPSAgent"=C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe [2010-01-31 102400] "EPSON Stylus DX4000 Series"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIBEE.EXE [2006-09-21 139264] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup FancyStart daemon.lnk - C:\Windows\Installer\{A9FEB6D7-9C52-49FC-B956-7AB275B78890}\_5598CE641C54B66A23693F.exe [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa] "notification packages"=scecli C:\Program Files\ASUS\ASUS Data Security Manager\ASPWDFLT [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "EnableUIADesktopToggle"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "BindDirectlyToPropertySetStorage"= [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{052eb605-7b0c-11de-b8f0-806e6f6e6963}] shell\AutoRun\command - E:\zdata\cobi.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{18119086-ebfb-11de-96e2-0026188f9e7f}] shell\AutoRun\command - F:\Autorun.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1811909a-ebfb-11de-96e2-0026188f9e7f}] shell\AutoRun\command - G:\Setup.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{2e52f405-4ab5-11df-a16e-0026188f9e7f}] shell\AutoRun\command - H:\AutoRun.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{563f88d6-e8f1-11de-926f-0026188f9e7f}] shell\AutoRun\command - J:\Menu.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{783b2e46-4a16-11df-928b-0026188f9e7f}] shell\AutoRun\command - H:\AutoRun.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{783b2e54-4a16-11df-928b-0026188f9e7f}] shell\AutoRun\command - I:\AutoRun.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{7bc91f96-f2f6-11de-a05e-0026188f9e7f}] shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL I:\Recycled\ctfmon.exe shell\Open(&0)\command - I:\Recycled\ctfmon.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{cd71eb3a-e732-11de-85e0-0026188f9e7f}] shell\AutoRun\command - H:\autorun.exe ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - "C:\Program Files\Adobe\Adobe Dreamweaver CS4\dreamweaver.exe","%1" ======List of files/folders created in the last 1 months====== 2010-05-22 21:44:26 ----D---- C:\rsit 2010-05-22 16:07:02 ----D---- C:\ProgramData\Kaspersky Lab 2010-05-16 18:25:43 ----D---- C:\Program Files\Trend Micro 2010-05-14 21:21:51 ----D---- C:\Program Files\LeechFTP 2010-05-14 21:21:51 ----A---- C:\Windows\eraser.exe 2010-05-13 18:15:16 ----D---- C:\Program Files\EA Games 2010-05-12 08:42:57 ----SHD---- C:\ProgramData\SecuROM 2010-05-12 08:41:20 ----A---- C:\Windows\system32\d3dx10_41.dll 2010-05-12 08:41:20 ----A---- C:\Windows\system32\D3DCompiler_41.dll 2010-05-12 08:41:19 ----A---- C:\Windows\system32\D3DX9_41.dll 2010-05-12 08:41:18 ----A---- C:\Windows\system32\XAudio2_4.dll 2010-05-12 08:41:18 ----A---- C:\Windows\system32\XAPOFX1_3.dll 2010-05-12 08:41:17 ----A---- C:\Windows\system32\xactengine3_4.dll 2010-05-12 08:41:16 ----A---- C:\Windows\system32\X3DAudio1_6.dll 2010-05-12 08:41:16 ----A---- C:\Windows\system32\D3DCompiler_40.dll 2010-05-12 08:41:15 ----A---- C:\Windows\system32\d3dx10_40.dll 2010-05-12 08:41:14 ----A---- C:\Windows\system32\D3DX9_40.dll 2010-05-12 08:41:13 ----A---- C:\Windows\system32\XAudio2_3.dll 2010-05-12 08:41:13 ----A---- C:\Windows\system32\XAPOFX1_2.dll 2010-05-12 08:41:12 ----A---- C:\Windows\system32\xactengine3_3.dll 2010-05-12 08:41:12 ----A---- C:\Windows\system32\X3DAudio1_5.dll 2010-05-12 08:41:10 ----A---- C:\Windows\system32\XAudio2_2.dll 2010-05-12 08:41:10 ----A---- C:\Windows\system32\XAPOFX1_1.dll 2010-05-12 08:41:09 ----A---- C:\Windows\system32\xactengine3_2.dll 2010-05-12 08:41:08 ----A---- C:\Windows\system32\d3dx10_39.dll 2010-05-12 08:41:08 ----A---- C:\Windows\system32\D3DCompiler_39.dll 2010-05-12 08:41:07 ----A---- C:\Windows\system32\D3DX9_39.dll 2010-05-12 08:41:06 ----A---- C:\Windows\system32\XAudio2_1.dll 2010-05-12 08:41:06 ----A---- C:\Windows\system32\XAPOFX1_0.dll 2010-05-12 08:41:06 ----A---- C:\Windows\system32\xactengine3_1.dll 2010-05-12 08:41:05 ----A---- C:\Windows\system32\X3DAudio1_4.dll 2010-05-12 08:41:04 ----A---- C:\Windows\system32\d3dx10_38.dll 2010-05-12 08:41:04 ----A---- C:\Windows\system32\D3DCompiler_38.dll 2010-05-12 08:41:03 ----A---- C:\Windows\system32\D3DX9_38.dll 2010-05-12 08:41:02 ----A---- C:\Windows\system32\XAudio2_0.dll 2010-05-12 08:41:01 ----A---- C:\Windows\system32\xactengine3_0.dll 2010-05-12 08:41:01 ----A---- C:\Windows\system32\X3DAudio1_3.dll 2010-05-12 08:41:00 ----A---- C:\Windows\system32\d3dx10_37.dll 2010-05-12 08:41:00 ----A---- C:\Windows\system32\D3DCompiler_37.dll 2010-05-12 08:40:59 ----A---- C:\Windows\system32\D3DX9_37.dll 2010-05-12 08:40:58 ----A---- C:\Windows\system32\xactengine2_10.dll 2010-05-12 08:40:56 ----A---- C:\Windows\system32\d3dx10_36.dll 2010-05-12 08:40:56 ----A---- C:\Windows\system32\D3DCompiler_36.dll 2010-05-12 08:40:55 ----A---- C:\Windows\system32\d3dx9_36.dll 2010-05-12 08:40:53 ----A---- C:\Windows\system32\xactengine2_9.dll 2010-05-12 08:40:52 ----A---- C:\Windows\system32\d3dx10_35.dll 2010-05-12 08:40:52 ----A---- C:\Windows\system32\D3DCompiler_35.dll 2010-05-12 08:40:51 ----A---- C:\Windows\system32\d3dx9_35.dll 2010-05-12 08:40:50 ----A---- C:\Windows\system32\xactengine2_8.dll 2010-05-12 08:40:50 ----A---- C:\Windows\system32\X3DAudio1_2.dll 2010-05-12 08:08:28 ----D---- C:\Program Files\Rockstar Games 2010-04-24 21:02:47 ----D---- C:\Users\Ironice\AppData\Roaming\Real 2010-04-24 19:50:24 ----A---- C:\Windows\system32\javaws.exe 2010-04-24 19:50:24 ----A---- C:\Windows\system32\javaw.exe 2010-04-24 19:50:24 ----A---- C:\Windows\system32\java.exe 2010-04-24 19:50:24 ----A---- C:\Windows\system32\deployJava1.dll 2010-04-23 20:35:22 ----A---- C:\Windows\system32\devil.dll 2010-04-23 20:35:22 ----A---- C:\Windows\system32\avisynth.dll 2010-04-23 20:35:21 ----D---- C:\Program Files\AviSynth 2.5 2010-04-23 20:35:21 ----A---- C:\Windows\system32\i420vfw.dll 2010-04-23 20:35:21 ----A---- C:\Windows\system32\AVSredirect.dll ======List of files/folders modified in the last 1 months====== 2010-05-22 21:44:40 ----D---- C:\Windows\Prefetch 2010-05-22 21:44:31 ----D---- C:\Windows\Temp 2010-05-22 21:34:48 ----D---- C:\Windows\system32\drivers 2010-05-22 21:27:38 ----D---- C:\Windows\Debug 2010-05-22 21:27:38 ----D---- C:\Windows 2010-05-22 21:02:58 ----SHD---- C:\Windows\Installer 2010-05-22 21:02:57 ----SD---- C:\Users\Ironice\AppData\Roaming\Microsoft 2010-05-22 21:02:48 ----SHD---- C:\System Volume Information 2010-05-22 20:52:13 ----D---- C:\Users\Ironice\AppData\Roaming\UseNeXT 2010-05-22 16:46:37 ----HD---- C:\ASUS.DAT 2010-05-22 16:46:02 ----A---- C:\Windows\system32\rpcnetp.exe 2010-05-22 16:46:00 ----A---- C:\Windows\system32\rpcnet.dll 2010-05-22 16:27:34 ----D---- C:\Program Files 2010-05-22 16:27:31 ----D---- C:\Windows\System32 2010-05-22 16:27:00 ----D---- C:\Windows\system32\catroot 2010-05-22 16:27:00 ----D---- C:\Windows\inf 2010-05-22 16:07:02 ----D---- C:\ProgramData 2010-05-22 15:53:44 ----D---- C:\Windows\winsxs 2010-05-22 15:53:37 ----D---- C:\ProgramData\G DATA 2010-05-22 15:53:37 ----D---- C:\Program Files\G Data 2010-05-22 15:53:34 ----D---- C:\Program Files\Common Files\G DATA 2010-05-21 16:20:36 ----A---- C:\Windows\system32\acovcnt.exe 2010-05-18 09:58:45 ----D---- C:\Users\Ironice\AppData\Roaming\Winamp 2010-05-18 09:58:00 ----D---- C:\Windows\system32\catroot2 2010-05-15 20:41:01 ----D---- C:\Users\Ironice\AppData\Roaming\vlc 2010-05-15 20:31:42 ----A---- C:\Windows\system32\PerfStringBackup.INI 2010-05-13 18:48:58 ----HD---- C:\Program Files\InstallShield Installation Information 2010-05-13 18:15:27 ----D---- C:\Games 2010-05-13 17:55:23 ----RSD---- C:\Windows\Fonts 2010-05-13 17:48:38 ----D---- C:\Program Files\Common Files\InstallShield 2010-05-12 08:40:32 ----RSD---- C:\Windows\assembly 2010-05-10 19:38:11 ----D---- C:\Program Files\UseNeXT 2010-04-29 20:26:59 ----A---- C:\Windows\system32\rpcnetp.dll 2010-04-28 23:15:36 ----D---- C:\Users\Ironice\AppData\Roaming\dvdcss 2010-04-28 22:10:40 ----D---- C:\Windows\ModemLogs 2010-04-24 19:50:20 ----D---- C:\Program Files\Java ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-07-24 13880] R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2010-04-11 278984] R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2010-04-11 25416] R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-09-05 1183744] R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-21 14208] R3 FsUsbExDisk;FsUsbExDisk; \??\C:\Windows\system32\FsUsbExDisk.SYS [2009-03-31 36608] R3 GearAspiWDM;GEARAspiWDM; C:\Windows\System32\drivers\GEARAspiWDM.sys [2008-02-22 16168] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-04-14 2358560] R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2008-06-03 15928] R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-14 7680] R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2009-07-02 9786752] R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSGB6.sys [2008-09-09 48128] R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2008-10-09 1753984] R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-12-06 196400] S3 arlk2bhx;arlk2bhx; C:\Windows\system32\drivers\arlk2bhx.sys [] S3 cmnsusbser;Mobile Connector USB Device for Legacy Serial Communication LCT2053s; C:\Windows\system32\DRIVERS\cmnsusbser.sys [2008-10-31 103424] S3 CRFILTER;USB Mass Storage Filter; C:\Windows\system32\DRIVERS\CRFILTER.sys [2008-04-07 6656] S3 drmkaud;Microsoft Kernel-DRM-Audioentschlüsselung; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632] S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2009-08-05 54632] S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520] S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [] S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192] S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888] S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504] S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016] S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [] S3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-02 1010560] S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\Windows\system32\DRIVERS\ss_bbus.sys [2009-03-20 90112] S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\Windows\system32\DRIVERS\ss_bmdfl.sys [2009-03-20 14976] S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\Windows\system32\DRIVERS\ss_bmdm.sys [2009-03-20 121856] S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\sscdbus.sys [2008-02-22 87936] S3 sscdmdfl;SAMSUNG Mobile Modem Filter; C:\Windows\system32\DRIVERS\sscdmdfl.sys [2008-02-22 14976] S3 sscdmdm;SAMSUNG Mobile Modem Drivers; C:\Windows\system32\DRIVERS\sscdmdm.sys [2008-02-22 114304] S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [] S3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016] S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-05-24 131000] S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448] S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328] S3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2006-11-02 194048] S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656] S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616] S4 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-21 88576] S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 ADSMService;ADSM Service; C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2008-03-31 225280] R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-10-03 94208] R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-08 94208] R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376] R2 FsUsbExService;FsUsbExService; C:\Windows\system32\FsUsbExService.Exe [2009-03-31 233472] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2009-07-02 211488] R2 rpcnet;Remote Procedure Call (RPC) Net; C:\Windows\system32\rpcnet.exe [2009-12-12 56680] R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-03-30 1533808] R2 WTGService;WTGService; C:\Program Files\XSManager\WTGService.exe [2009-06-22 304592] R2 XS Stick Service;XS Stick Service; C:\Windows\service4g.exe [2009-06-17 125200] S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-01-27 655624] S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504] S3 fsssvc;Windows Live Family Safety-Dienst; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-08-05 704864] -----------------EOF----------------- |
Themen zu Keine Updates/ Google öffnet falsche Seiten/ Virussoftware updated nicht mehr |
adobe, bho, bonjour, c:\windows\system32\rundll32.exe, computer, converter, defender, device driver, error, excel, falsche seite, fontcache, gdata, google, hdaudio.sys, hijack, hijackthis, home, home premium, installation, internet explorer, kaspersky, malwarebytes' anti-malware, menu.exe, notepad.exe, notification, nvlddmkm.sys, plug-in, programdata, realtek, registry, rundll, saver, security, shell32.dll, start menu, stick, studio, svchost.exe, system, temp, usbvideo.sys, windows, wireless lan |