![]() |
|
Plagegeister aller Art und deren Bekämpfung: Internet sehr langsam brauche dringend HilfeWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() | #13 |
![]() | ![]() Internet sehr langsam brauche dringend Hilfe Combofix Logfile: Code:
ATTFilter ComboFix 11-03-02.01 - Nilgün 02.03.2011 20:03:34.1.2 - x64 ausgeführt von:: c:\users\Nilgün\Desktop\cofi.exe . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . c:\program files (x86)\AutocompletePro c:\program files (x86)\AutocompletePro\support@predictad.com\chrome.manifest c:\program files (x86)\AutocompletePro\support@predictad.com\chrome\content\browserOverlay.xul c:\program files (x86)\AutocompletePro\support@predictad.com\chrome\content\options.js c:\program files (x86)\AutocompletePro\support@predictad.com\chrome\content\options.xul c:\program files (x86)\AutocompletePro\support@predictad.com\chrome\content\utils.js c:\program files (x86)\AutocompletePro\support@predictad.com\defaults\preferences\predictad.js c:\program files (x86)\AutocompletePro\support@predictad.com\install.rdf c:\program files (x86)\AutocompletePro\unins000.dat c:\program files (x86)\AutocompletePro\unins000.exe c:\users\Nilgün\AppData\Roaming\.# c:\windows\system32\twunk_32.exe c:\windows\SysWow64\twunk_32.exe . ((((((((((((((((((((((( Dateien erstellt von 2011-02-02 bis 2011-03-02 )))))))))))))))))))))))))))))) . 2011-03-02 19:08 . 2011-03-02 19:08 -------- d-----w- c:\users\Default\AppData\Local\temp 2011-03-01 14:18 . 2011-02-11 07:30 7947600 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{BE0F4345-DE18-45EE-9FD7-181ED0593EBD}\mpengine.dll 2011-02-27 18:11 . 2011-02-27 18:11 -------- d-----w- c:\program files (x86)\ERUNT 2011-02-25 21:16 . 2011-02-25 21:18 -------- d-----w- c:\users\Nilgün\AppData\Roaming\PCFix 2011-02-24 10:30 . 2011-02-24 10:30 -------- d-----w- c:\users\Nilgün\AppData\Roaming\Protector Suite 2011-02-24 10:15 . 2010-01-25 07:37 504832 ----a-w- c:\windows\system32\imapi2.dll 2011-02-24 10:15 . 2010-01-25 07:11 392192 ----a-w- c:\windows\SysWow64\imapi2.dll 2011-02-24 10:00 . 2011-02-24 10:00 -------- d-----w- C:\Click to Disc 2011-02-24 09:27 . 2011-02-24 14:11 -------- d-----w- C:\Update 2011-02-24 08:23 . 2011-02-24 09:29 -------- d-----w- c:\users\Nilgün\Mozila Fav 2011-02-23 10:50 . 2010-09-14 06:45 367104 ----a-w- c:\windows\system32\wcncsvc.dll 2011-02-23 10:50 . 2010-09-14 06:07 276992 ----a-w- c:\windows\SysWow64\wcncsvc.dll 2011-02-23 09:03 . 2011-02-23 09:03 -------- d-----w- c:\program files\OO Software 2011-02-23 07:55 . 2011-02-23 08:06 -------- d-----w- c:\program files\PC Beschleunigen 2011-02-23 06:42 . 2011-01-07 08:07 662528 ----a-w- c:\windows\system32\XpsPrint.dll 2011-02-23 06:42 . 2011-01-07 07:31 442880 ----a-w- c:\windows\SysWow64\XpsPrint.dll 2011-02-23 06:42 . 2011-01-07 08:07 475648 ----a-w- c:\windows\system32\XpsGdiConverter.dll 2011-02-23 06:42 . 2011-01-07 07:31 288256 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll 2011-02-22 11:55 . 2011-02-22 11:55 -------- d-----w- c:\users\Nilgün\AppData\Roaming\Malwarebytes 2011-02-22 11:52 . 2010-12-20 17:09 38224 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys 2011-02-22 11:52 . 2011-02-22 11:52 -------- d-----w- c:\programdata\Malwarebytes 2011-02-22 11:52 . 2011-03-02 17:59 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware 2011-02-22 11:52 . 2010-12-20 17:08 24152 ----a-w- c:\windows\system32\drivers\mbam.sys 2011-02-22 09:49 . 2011-02-24 08:28 -------- d-----w- c:\users\Nilgün\Prog 2011-02-21 10:41 . 2011-03-01 16:20 -------- d-----w- c:\programdata\Spybot - Search & Destroy 2011-02-21 10:41 . 2011-02-23 07:41 -------- d-----w- c:\program files (x86)\Spybot - Search & Destroy 2011-02-21 08:16 . 2011-02-21 08:17 -------- d-----w- c:\users\Nilgün\AppData\Roaming\QuickScan 2011-02-18 21:20 . 2011-02-18 21:20 -------- d-----w- c:\users\Nilgün\AppData\Roaming\Avira 2011-02-18 21:16 . 2011-01-10 13:23 83120 ----a-w- c:\windows\system32\drivers\avgntflt.sys 2011-02-18 21:16 . 2011-01-10 13:23 116568 ----a-w- c:\windows\system32\drivers\avipbb.sys 2011-02-18 21:16 . 2011-02-18 21:16 -------- d-----w- c:\programdata\Avira 2011-02-18 20:18 . 2010-04-24 04:00 336896 ----a-w- c:\windows\system32\CNMLMA0.DLL 2011-02-18 20:15 . 2009-10-10 03:17 14336 ----a-w- c:\windows\system32\drivers\sffp_sd.sys 2011-02-18 20:15 . 2009-10-10 02:41 109056 ----a-w- c:\windows\system32\drivers\sdbus.sys 2011-02-18 19:17 . 2011-02-18 19:21 42664 ----a-w- c:\windows\SysWow64\drivers\fsbts.sys 2011-02-18 19:16 . 2011-02-18 19:15 573608 ----a-w- c:\windows\SysWow64\msvcp50.dll 2011-02-18 19:15 . 2011-02-19 07:38 -------- d-----w- c:\program files (x86)\F-Secure 2011-02-18 19:12 . 2011-02-18 19:15 -------- d-----w- c:\programdata\fssg 2011-02-18 19:11 . 2011-02-18 19:16 -------- d-----w- c:\programdata\f-secure 2011-02-17 09:46 . 2011-02-17 09:46 787456 ----a-w- c:\windows\system32\NETw5c64.dll 2011-02-17 09:46 . 2011-02-17 09:46 6952960 ----a-w- c:\windows\system32\drivers\NETw5s64.sys 2011-02-17 09:46 . 2011-02-17 09:46 2747904 ----a-w- c:\windows\system32\NETw5r64.dll 2011-02-17 09:45 . 2011-02-17 09:45 592272 ----a-w- c:\windows\system32\ipcoin80.dll 2011-02-17 09:36 . 2011-02-17 09:36 501536 ----a-w- c:\windows\system32\yk62x64.dll 2011-02-17 09:36 . 2011-02-17 09:36 402720 ----a-w- c:\windows\system32\drivers\yk62x64.sys 2011-02-17 09:35 . 2011-02-17 09:35 84512 ----a-w- c:\windows\system32\drivers\nvhda64v.sys 2011-02-17 09:35 . 2011-02-17 09:35 62976 ----a-w- c:\windows\system32\nvapo64v.dll 2011-02-17 09:35 . 2011-02-17 09:35 541216 ----a-w- c:\windows\system32\nvuhda6.exe 2011-02-17 09:35 . 2011-02-17 09:35 22528 ----a-w- c:\windows\system32\nvhdap64.dll 2011-02-17 09:34 . 2011-02-17 09:34 36616 ----a-w- c:\windows\system32\drivers\btcusb.sys 2011-02-17 09:34 . 2011-02-17 09:34 19464 ----a-w- c:\windows\system32\btinstall.dll 2011-02-17 09:32 . 2011-02-17 09:32 132648 ----a-w- c:\windows\system32\drivers\btwavdt.sys 2011-02-17 09:29 . 2011-02-17 09:29 -------- d-----w- c:\programdata\Uniblue 2011-02-17 08:20 . 2011-02-28 17:30 -------- d-----w- c:\users\Nilgün\AppData\Roaming\Uniblue 2011-02-17 08:20 . 2011-02-17 08:20 -------- d-----w- c:\users\Nilgün\AppData\Local\PackageAware 2011-02-13 13:02 . 2011-02-13 13:02 50688 ----a-w- c:\windows\system32\KCDSMSNO.DLL 2011-02-12 19:07 . 2011-02-12 19:07 -------- d-----w- c:\program files (x86)\Common Files\PCSuite 2011-02-12 19:07 . 2011-02-12 19:07 -------- d-----w- c:\program files (x86)\Common Files\Nokia 2011-02-12 19:06 . 2011-02-12 19:06 -------- d-----w- c:\program files (x86)\PC Connectivity Solution 2011-02-12 18:06 . 2011-02-12 18:10 -------- d-----w- c:\users\Nilgün\AppData\Roaming\Apple Computer 2011-02-12 18:06 . 2011-02-12 18:06 -------- d-----w- c:\users\Nilgün\AppData\Local\Apple Computer 2011-02-12 18:05 . 2011-02-12 18:05 -------- d-----w- c:\programdata\{93E26451-CD9A-43A5-A2FA-C42392EA4001} 2011-02-10 06:58 . 2010-12-18 06:17 696592 ----a-w- c:\program files\Internet Explorer\iexplore.exe 2011-02-10 06:58 . 2010-12-18 06:11 1013248 ----a-w- c:\program files\Internet Explorer\iedvtool.dll 2011-02-10 06:58 . 2010-12-18 05:33 673040 ----a-w- c:\program files (x86)\Internet Explorer\iexplore.exe 2011-02-10 06:58 . 2010-12-18 05:29 860160 ----a-w- c:\program files (x86)\Internet Explorer\iedvtool.dll 2011-02-06 09:47 . 2011-02-06 09:47 -------- d-----w- c:\users\Nilgün\Neuer Ordner . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2011-02-22 09:16 . 2009-12-22 10:14 3704088 ----a-w- c:\windows\system32\AutoPartNt.exe 2011-02-17 09:35 . 2009-08-18 02:22 171520 ----a-w- c:\windows\system32\nvcohda6.dll 2011-02-17 09:35 . 2009-08-17 17:24 541216 ----a-w- c:\windows\system32\NVUNINST.EXE 2011-02-08 12:55 . 2009-12-17 19:38 16432 ----a-w- c:\windows\system32\lsdelete.exe 2011-02-02 16:11 . 2009-12-17 15:14 270720 ------w- c:\windows\system32\MpSigStub.exe 2010-12-14 17:51 . 2010-12-14 17:51 51712 ----a-w- c:\windows\system32\drivers\usbaapl64.sys 2010-12-14 17:51 . 2010-12-14 17:51 4184352 ----a-w- c:\windows\system32\usbaaplrc.dll 2010-12-12 19:59 . 2010-12-12 19:59 15256 ----a-w- c:\users\Nilgün\AppData\Roaming\Microsoft\IdentityCRL\production\ppcrlconfig.dll 2010-12-12 19:59 . 2010-12-12 19:59 15256 ----a-w- c:\users\Nilgün\AppData\Roaming\Microsoft\IdentityCRL\production\ppcrlconfig.dll . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks] "{e7f88e02-0c78-48a1-86d2-82d8865de2df}"= "c:\program files (x86)\Oryte_Games_1.9\tbOry2.dll" [2010-10-18 3908192] [HKEY_CLASSES_ROOT\clsid\{e7f88e02-0c78-48a1-86d2-82d8865de2df}] [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{e7f88e02-0c78-48a1-86d2-82d8865de2df}] 2010-10-18 10:26 3908192 ----a-w- c:\program files (x86)\Oryte_Games_1.9\tbOry2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar] "{e7f88e02-0c78-48a1-86d2-82d8865de2df}"= "c:\program files (x86)\Oryte_Games_1.9\tbOry2.dll" [2010-10-18 3908192] [HKEY_CLASSES_ROOT\clsid\{e7f88e02-0c78-48a1-86d2-82d8865de2df}] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IncrediMail"="c:\program files (x86)\IncrediMail\bin\IncMail.exe" [2009-12-22 251336] "Lingoes"="c:\program files (x86)\Lingoes\Translator2\Lingoes.exe" [2010-07-23 2252800] "PC Suite Tray"="c:\program files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" [2010-12-21 1483264] "SpybotSD TeaTimer"="c:\program files (x86)\Spybot - Search & Destroy\TeaTimer.exe" [2009-03-05 2260480] [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "TrueImageMonitor.exe"="c:\program files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe" [2009-08-28 5078416] "avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2011-01-10 281768] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 0 (0x0) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service] @="Service" [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-] "ISBMgr.exe"="c:\program files (x86)\Sony\ISB Utility\ISBMgr.exe" "MarketingTools"=c:\program files (x86)\Sony\Marketing Tools\MarketingTools.exe "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" "Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] R2 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2009-09-06 133104] R2 Roxio Upnp Server 10;Roxio Upnp Server 10;c:\program files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe [2009-06-26 362992] R2 VAIO Power Management;VAIO Power Management;c:\program files\Sony\VAIO Power Management\SPMService.exe [2009-07-16 411496] R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [2009-08-03 35104] R3 JMCR_CFS;JMCR_CFS;c:\windows\system32\DRIVERS\jmcr_cfs.sys [2009-07-31 73128] R3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys [2009-06-05 5435904] R3 Roxio UPnP Renderer 10;Roxio UPnP Renderer 10;c:\program files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe [2009-06-26 313840] R3 SOHCImp;VAIO Media plus Content Importer;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe [2009-07-27 120104] R3 SOHDBSvr;VAIO Media plus Database Manager;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe [2009-07-27 70952] R3 SOHDms;VAIO Media plus Digital Media Server;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [2009-07-27 427304] R3 SOHDs;VAIO Media plus Device Searcher;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [2009-07-27 75048] R3 SOHPlMgr;VAIO Media plus Playlist Manager;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe [2009-07-27 91432] R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864] R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312] R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864] R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [2010-12-14 51712] R3 VcmIAlzMgr;VAIO Content Metadata Intelligent Analyzing Manager;c:\program files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [2009-06-26 468264] R3 VcmINSMgr;VAIO Content Metadata Intelligent Network Service Manager;c:\program files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe [2009-06-26 357672] R3 VcmXmlIfHelper;VAIO Content Metadata XML Interface;c:\program files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe [2009-06-17 110888] R3 VUAgent;VUAgent;c:\program files\Sony\VAIO Update 5\VUAgent.exe [2010-04-09 1223024] S0 Lbd;Lbd;c:\windows\system32\DRIVERS\Lbd.sys [2010-07-06 69152] S0 oodisr;O&O DiskImage Snapshot/Restore Driver;c:\windows\system32\DRIVERS\oodisr.sys [2009-10-24 117328] S0 oodisrh;oodisrh;c:\windows\system32\DRIVERS\oodisrh.sys [2009-10-24 40016] S0 oodivd;O&O DiskImage Virtual Devices Driver;c:\windows\system32\DRIVERS\oodivd.sys [2009-10-24 210512] S0 oodivdh;oodivdh;c:\windows\system32\DRIVERS\oodivdh.sys [2009-10-24 42576] S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys [2010-08-12 55856] S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-02-09 834544] S0 tdrpman251;Acronis Try&Decide and Restore Points filter (build 251);c:\windows\system32\DRIVERS\tdrpm251.sys [2009-12-18 1455648] S1 VWiFiFlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904] S2 AdobeActiveFileMonitor7.0;Adobe Active File Monitor V7;c:\program files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe [2008-12-08 169312] S2 afcdpsrv;Acronis Nonstop Backup service;c:\program files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [2009-12-18 2326912] S2 AntiVirSchedulerService;Avira AntiVir Planer;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [2011-01-10 135336] S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files (x86)\Lavasoft\Ad-Aware\AAWService.exe [2011-03-01 1405384] S2 SBSDWSCService;SBSD Security Center Service;c:\program files (x86)\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368] S2 uCamMonitor;CamMonitor;c:\program files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [2008-09-18 104960] S2 VCFw;VAIO Content Folder Watcher;c:\program files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [2009-07-22 642920] S2 VSNService;VSNService;c:\program files\Sony\VAIO Smart Network\VSNService.exe [2009-08-12 522240] S2 yksvc;Marvell Yukon Service;c:\windows\System32\svchost.exe [2009-07-14 27136] S3 afcdp;afcdp;c:\windows\system32\DRIVERS\afcdp.sys [2009-12-18 240672] S3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect;c:\windows\system32\DRIVERS\ArcSoftKsUFilter.sys [2009-05-26 19968] S3 NETw5s64;Intel(R) Wireless WiFi Link Adaptertreiber für Windows 7 64-Bit;c:\windows\system32\DRIVERS\NETw5s64.sys [2011-02-17 6952960] S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [2011-02-17 84512] S3 Point64;Microsoft IntelliPoint Filter Driver;c:\windows\system32\DRIVERS\point64k.sys [2009-05-28 33160] S3 SFEP;Sony Firmware Extension Parser;c:\windows\system32\DRIVERS\SFEP.sys [2009-06-11 11392] S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920] S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys [2011-02-17 402720] . Inhalt des "geplante Tasks" Ordners 2011-03-02 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2009-09-06 09:06] 2011-03-02 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2009-09-06 09:06] . --------- x86-64 ----------- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IAAnotif"="c:\program files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2009-06-04 186904] "IntelliPoint"="c:\program files\Microsoft IntelliPoint\ipoint.exe" [2009-05-28 2314120] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-07-29 16335904] "CanonSolutionMenu"="c:\program files (x86)\Canon\SolutionMenu\CNSLMAIN.exe" [2009-03-18 767312] "RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2009-07-24 7938080] "Acronis Scheduler2 Service"="c:\program files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe" [2009-08-28 357936] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "LoadAppInit_DLLs"=0x0 . ------- Zusätzlicher Suchlauf ------- . uStart Page = hxxp://search.conduit.com/?searchsource=10&ctid=ct2476266 mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = *.local IE: &Add animation to IncrediMail Style Box IE: Bild an &Bluetooth-Gerät senden... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm IE: Google Sidewiki... - c:\program files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html IE: Nach Microsoft E&xel exportieren - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000 IE: Seite an &Bluetooth-Gerät senden... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm FF - ProfilePath - c:\users\Nilgün\AppData\Roaming\Mozilla\Firefox\Profiles\yjism3e0.default\ FF - prefs.js: browser.search.selectedEngine - MyStart Search FF - prefs.js: browser.startup.homepage - hxxp://www.internetcologne.de/ FF - prefs.js: keyword.URL - hxxp://mystart.incredimail.com/?loc=ff_address_bar_im2_test_v2&search= FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - c:\program files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} - c:\program files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} FF - Ext: DAEMON Tools Toolbar: DTToolbar@toolbarnet.com - %profile%\extensions\DTToolbar@toolbarnet.com FF - Ext: Personas: personas@christopher.beard - %profile%\extensions\personas@christopher.beard FF - Ext: Yahoo! Toolbar: {635abd67-4fe9-1b23-4f01-e679fa7484c1} - %profile%\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} FF - Ext: Adblock Plus: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} - %profile%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} FF - Ext: Feedback: testpilot@labs.mozilla.com - %profile%\extensions\testpilot@labs.mozilla.com FF - Ext: PC Sync 2 Synchronisation Extension: bkmrksync@nokia.com - c:\program files (x86)\Nokia\Nokia PC Suite 7\bkmrksync FF - user.js: network.http.max-persistent-connections-per-server - 4 FF - user.js: nglayout.initialpaint.delay - 600 FF - user.js: content.notify.interval - 600000 FF - user.js: content.max.tokenizing.time - 1800000 FF - user.js: content.switch.threshold - 600000 . - - - - Entfernte verwaiste Registrierungseinträge - - - - Notify-VESWinlogon - VESWinlogon.dll SafeBoot-mcmscsvc SafeBoot-MCODS WebBrowser-{E7F88E02-0C78-48A1-86D2-82D8865DE2DF} - (no file) AddRemove-AutocompletePro3_is1 - c:\program files (x86)\AutocompletePro\unins000.exe AddRemove-{C03434E6-C4D3-4045-95A1-31301675E404} - c:\windows\system32\unM9205.exe [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Lavasoft Kernexplorer] "ImagePath"="\??\c:\program files (x86)\Lavasoft\Ad-Aware\KernExplorer64.sys" . --------------------- Gesperrte Registrierungsschluessel --------------------- [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0BE09CC1-42E0-11DD-AE16-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10a.exe,-101" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0BE09CC1-42E0-11DD-AE16-0800200C9A66}\Elevation] "Enabled"=dword:00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0BE09CC1-42E0-11DD-AE16-0800200C9A66}\LocalServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10a.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0BE09CC1-42E0-11DD-AE16-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10a.ocx" "ThreadingModel"="Apartment" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10a.ocx, 1" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10a.ocx" "ThreadingModel"="Apartment" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10a.ocx, 1" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{DDF4CE26-4BDA-42BC-B0F0-0E75243AD285}] @Denied: (A 2) (Everyone) @="IFlashBroker2" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{DDF4CE26-4BDA-42BC-B0F0-0E75243AD285}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{DDF4CE26-4BDA-42BC-B0F0-0E75243AD285}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Weitere laufende Prozesse ------------------------ . c:\program files (x86)\Avira\AntiVir Desktop\avguard.exe c:\program files (x86)\Bonjour\mDNSResponder.exe c:\progra~2\COMMON~1\mcafee\mcproxy\mcproxy.exe c:\program files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe c:\program files (x86)\Sony\VAIO Event Service\VESMgr.exe c:\program files (x86)\IncrediMail\bin\IMApp.exe c:\windows\SysWOW64\DllHost.exe c:\program files (x86)\Sony\VAIO Event Service\VESMgrSub.exe c:\program files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe c:\program files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe c:\program files (x86)\PC Connectivity Solution\ServiceLayer.exe c:\program files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe c:\program files (x86)\PC Connectivity Solution\Transports\NclRSSrv.exe c:\program files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe . ************************************************************************** . Zeit der Fertigstellung: 2011-03-02 20:14:53 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2011-03-02 19:14 Vor Suchlauf: 13 Verzeichnis(se), 381.926.424.576 Bytes frei Nach Suchlauf: 16 Verzeichnis(se), 381.754.519.552 Bytes frei - - End Of File - - 3F65FC94D762277AB768A13A925B0AE7
__________________ MfG Ayhan ![]() |
Themen zu Internet sehr langsam brauche dringend Hilfe |
?????, adaware, antivir, aufbau, aufsetzen, chip, dringend, foren, funktioniert, hijack, hijackthis, hilfe gesucht, internet, internet sehr langsam, internetverbindung, lan, langsam, laptop, neu, neu aufsetzen, neustart, problem, router, sehr langsam, seite, seiten, system neu, system neu aufsetzen, systemwiederherstellung, verbindung |