Wildstyle | 28.03.2015 17:23 | Hallo Matthias,
danke dir für das schnelle Reagieren.
Nach dem durchlauf von Combofix sehe ich meinen mauszeiger nicht mehr.
Hier die logs: Code:
ComboFix 15-03-25.01 - Privat 28.03.2015 16:30:37.3.4 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1252.49.1031.18.8191.6326 [GMT 1:00]
ausgeführt von:: c:\users\Privat\Desktop\ComboFix_2.exe
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((( Dateien erstellt von 2015-02-28 bis 2015-03-28 ))))))))))))))))))))))))))))))
.
.
2015-03-28 15:46 . 2015-03-28 15:46 -------- d-----w- c:\users\Public\AppData\Local\temp
2015-03-28 15:46 . 2015-03-28 15:46 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-03-28 13:11 . 2015-03-28 13:11 -------- d-----w- c:\program files (x86)\ESET
2015-03-28 12:05 . 2015-03-28 12:07 -------- d-----w- C:\FRST
2015-03-28 01:13 . 2015-03-28 01:13 -------- d--h--w- c:\users\Privat\AppData\Local\Songshoot
2015-03-27 14:45 . 2015-03-27 14:45 -------- d-----w- c:\program files\W10-Beta
2015-03-27 11:31 . 2015-03-27 23:10 -------- d-----w- c:\users\Privat\AppData\Local\immersive-explorer.com
2015-03-27 11:16 . 2015-03-28 12:19 -------- d-----w- c:\program files (x86)\MetroSidebar
2015-03-27 11:05 . 2015-03-27 11:05 -------- d-----w- c:\programdata\StartMenuReviver.exe
2015-03-27 11:05 . 2015-03-27 11:05 -------- d-----w- c:\programdata\ReviverSoft
2015-03-27 11:05 . 2015-03-27 11:29 -------- d-----w- c:\users\Privat\AppData\Roaming\MetroSidebar
2015-03-27 11:04 . 2015-03-27 11:04 -------- d-----w- C:\W7P_Backups
2015-03-27 11:02 . 2015-03-27 11:05 -------- d-----w- C:\SkinPack
2015-03-27 10:54 . 2015-03-27 11:01 -------- d-----w- c:\users\Privat\AppData\Local\VMware
2015-03-27 10:54 . 2015-03-27 10:54 -------- d-----w- c:\users\Privat\AppData\Roaming\VMware
2015-03-27 10:52 . 2015-01-07 14:55 76480 ----a-w- c:\windows\system32\drivers\vsock.sys
2015-03-27 10:52 . 2015-01-07 14:55 68288 ----a-w- c:\windows\system32\vsocklib.dll
2015-03-27 10:52 . 2015-01-07 14:55 64192 ----a-w- c:\windows\SysWow64\vsocklib.dll
2015-03-27 10:52 . 2015-02-06 17:40 66752 ----a-w- c:\windows\system32\drivers\vmx86.sys
2015-03-27 10:52 . 2015-02-06 17:39 33472 ----a-w- c:\windows\system32\drivers\VMkbd.sys
2015-03-27 10:51 . 2015-02-06 17:40 359104 ----a-w- c:\windows\SysWow64\vmnetdhcp.exe
2015-03-27 10:51 . 2015-02-06 17:40 26816 ----a-w- c:\windows\system32\drivers\vmnetuserif.sys
2015-03-27 10:51 . 2015-02-06 17:40 438464 ----a-w- c:\windows\SysWow64\vmnat.exe
2015-03-27 10:51 . 2015-02-06 17:39 931008 ----a-w- c:\windows\system32\vnetlib64.dll
2015-03-27 10:51 . 2015-01-07 07:02 55488 ----a-w- c:\windows\system32\drivers\hcmon.sys
2015-03-27 10:50 . 2015-03-27 10:50 -------- d-----w- c:\program files\Common Files\VMware
2015-03-27 10:50 . 2015-03-28 13:05 -------- d-----w- c:\programdata\VMware
2015-03-27 10:50 . 2015-03-27 10:50 -------- d-----w- c:\program files (x86)\VMware
2015-03-27 10:50 . 2015-03-27 10:50 -------- d-----w- c:\program files (x86)\Common Files\VMware
2015-03-27 08:32 . 2015-03-14 10:02 12002392 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{2E12228A-2EC4-41A4-B083-D542B0A447C7}\mpengine.dll
2015-03-26 17:26 . 2015-03-26 17:26 -------- d--h--w- c:\users\Privat\AppData\Roaming\Desire_profit
2015-03-26 15:43 . 2015-03-26 15:43 -------- d--h--w- c:\users\Privat\AppData\Local\Range-must
2015-03-26 10:02 . 2015-03-26 10:02 -------- d-----w- c:\users\Privat\AppData\Roaming\Alien Isolation
2015-03-25 23:47 . 2015-03-25 23:47 -------- d--h--w- c:\users\Privat\AppData\Roaming\Chart_plate
2015-03-25 23:19 . 2015-03-27 14:46 -------- d-----w- c:\programdata\ywfme
2015-03-25 23:05 . 2015-03-25 23:05 -------- d--h--w- c:\users\Privat\AppData\Roaming\Forcedog
2015-03-25 22:12 . 2015-03-27 09:22 -------- d--h--w- c:\users\Privat\AppData\Roaming\Song-open
2015-03-25 10:17 . 2015-03-11 04:06 677888 ----a-w- c:\windows\system32\generaltel.dll
2015-03-25 10:17 . 2015-03-11 04:06 760832 ----a-w- c:\windows\system32\invagent.dll
2015-03-25 10:17 . 2015-03-11 04:06 414720 ----a-w- c:\windows\system32\devinv.dll
2015-03-25 10:17 . 2015-03-11 04:06 943616 ----a-w- c:\windows\system32\appraiser.dll
2015-03-25 10:17 . 2015-03-11 04:05 30720 ----a-w- c:\windows\system32\acmigration.dll
2015-03-25 10:17 . 2015-03-11 04:05 227328 ----a-w- c:\windows\system32\aepdu.dll
2015-03-25 10:17 . 2015-03-11 04:05 192000 ----a-w- c:\windows\system32\aepic.dll
2015-03-25 10:17 . 2015-03-11 04:02 1107456 ----a-w- c:\windows\system32\aeinv.dll
2015-03-22 22:14 . 2015-03-23 05:02 -------- d-----w- c:\users\Privat\AppData\Local\Darksiders2
2015-03-22 22:14 . 2015-03-22 22:14 -------- d-----w- c:\users\Privat\AppData\Local\SKIDROW
2015-03-19 03:08 . 2015-03-19 02:27 191960 ----a-w- c:\windows\system32\drivers\idmwfp.sys
2015-03-14 12:19 . 2015-03-14 12:20 -------- d-----w- c:\program files (x86)\Microsoft Games for Windows - LIVE
2015-03-14 12:19 . 2015-03-14 12:19 -------- d-----w- c:\windows\SysWow64\xlive
2015-03-13 09:15 . 2015-03-13 09:21 -------- d---a-w- C:\Verschlüsselt
2015-03-11 13:36 . 2015-01-31 03:48 3179520 ----a-w- c:\windows\system32\rdpcorets.dll
2015-03-10 17:06 . 2015-03-11 04:05 -------- d-----w- c:\programdata\Codemasters
2015-03-08 21:57 . 2015-03-08 21:57 -------- d-----w- c:\users\Privat\AppData\Local\BANDAI NAMCO Games
2015-03-08 04:50 . 2014-08-02 12:37 -------- d-----w- c:\program files\WindowBlinds
2015-03-08 04:45 . 2015-03-08 04:45 -------- d-----w- c:\windows\SysWow64\AMD64
2015-03-08 04:44 . 2015-03-12 09:21 -------- d-----w- c:\program files (x86)\ProcessSystem
2015-03-08 04:44 . 2015-03-12 16:27 -------- d-----w- c:\program files (x86)\Sinhala Meaning
2015-03-08 04:42 . 2015-03-08 05:14 -------- d-----w- c:\programdata\{9a05f486-54c6-b219-9a05-5f48654cd219}
2015-03-08 03:36 . 2015-03-08 05:32 -------- d-----w- c:\programdata\Stardock
2015-03-08 03:14 . 2015-03-08 03:14 -------- d--h--w- c:\programdata\{CEC42AA7-80BC-42B4-B5F3-8E754D04A118}
2015-03-08 03:07 . 2015-03-08 04:36 -------- d-----w- c:\users\Privat\AppData\Local\Stardock
2015-03-08 03:07 . 2015-03-27 11:26 -------- d-----w- c:\program files (x86)\Stardock
2015-03-08 01:33 . 2007-09-21 08:57 81920 ----a-w- c:\windows\SysWow64\dancemat.exe
2015-03-07 20:35 . 2015-03-07 21:26 -------- d-----w- c:\program files\X360ce
2015-03-07 15:57 . 2008-08-08 14:31 40856 ----a-w- c:\windows\SysWow64\drivers\hid8103.sys
2015-03-06 23:43 . 2015-03-07 16:20 -------- d-----w- c:\programdata\{adb05eb9-8e80-1ef7-adb0-05eb98e87ae6}
2015-03-06 23:43 . 2015-03-07 15:56 -------- d-----w- c:\users\Privat\AppData\Local\winengine
2015-03-06 23:16 . 2015-03-06 23:16 -------- d-----w- c:\programdata\KONAMI
2015-03-06 09:46 . 2015-03-06 09:46 -------- d-----w- c:\users\Privat\AppData\Local\My Games
2015-03-06 09:36 . 2015-03-06 20:18 281688 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2015-03-06 09:36 . 2015-03-10 13:15 -------- d-----w- c:\programdata\Orbit
2015-03-06 09:26 . 2015-03-06 09:36 281688 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2015-03-06 00:15 . 2015-03-06 00:15 -------- d-----w- c:\users\Privat\AppData\Local\Crytek
2015-03-05 13:54 . 2015-03-05 13:54 270468 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0700\Intel32\Setup.dll
2015-03-05 13:54 . 2015-03-05 13:54 159876 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0700\Intel32\IGdi.dll
2015-03-04 15:42 . 2015-03-04 16:05 -------- d-----w- c:\users\Privat\AppData\Roaming\Origin
2015-03-04 15:42 . 2015-03-04 16:05 -------- d-----w- c:\users\Privat\AppData\Local\Origin
2015-03-04 15:41 . 2015-03-04 15:42 -------- d-----w- c:\program files (x86)\Origin
2015-03-04 15:12 . 2015-03-04 15:12 -------- d--h--w- c:\program files (x86)\Common Files\EAInstaller
2015-03-04 09:50 . 2015-03-04 09:50 -------- d-----w- c:\windows\SysWow64\0E1D~1
2015-03-04 04:05 . 2015-03-04 04:05 -------- d-----w- c:\programdata\EA Core
2015-03-02 01:23 . 2015-03-02 01:23 1700352 ----a-w- c:\windows\SysWow64\gdiplus.dll
2015-03-02 01:23 . 2015-03-02 01:23 1060864 ----a-w- c:\windows\SysWow64\mfc71.dll
2015-03-02 01:06 . 2015-03-02 01:06 -------- d-----w- c:\program files (x86)\WEB.DE MailCheck
2015-03-01 23:58 . 2015-03-01 23:58 -------- d-----w- c:\users\Privat\AppData\Local\storage
2015-03-01 23:57 . 2015-03-06 09:36 -------- d-----w- c:\users\Privat\AppData\Local\PunkBuster
2015-03-01 23:57 . 2015-03-21 15:41 -------- d-----w- c:\users\Privat\AppData\Roaming\Ubisoft
2015-03-01 16:32 . 2015-03-01 16:32 -------- d-----w- c:\users\Privat\AppData\Local\Rockstar Games
2015-03-01 16:32 . 2015-03-01 16:32 -------- d-sh--w- c:\programdata\SecuROM
2015-03-01 15:56 . 2015-03-01 15:56 -------- d--h--r- c:\users\Privat\AppData\Roaming\SecuROM
2015-03-01 04:35 . 2015-03-15 13:21 -------- d-----w- c:\users\Privat\AppData\Local\CAPCOM
2015-03-01 04:35 . 2015-03-01 04:35 -------- d-----w- c:\users\Privat\AppData\Roaming\Steam
2015-03-01 01:56 . 2015-03-01 01:56 -------- d-----w- c:\program files (x86)\UltraISO
2015-03-01 01:56 . 2015-03-01 01:56 -------- d-----w- c:\program files (x86)\Common Files\EZB Systems
2015-03-01 01:42 . 2015-03-27 11:26 -------- d-----w- c:\users\Privat\AppData\Roaming\IDM
2015-03-01 01:42 . 2015-03-01 01:42 -------- d-----w- c:\programdata\IDM
2015-03-01 01:42 . 2015-03-28 15:47 -------- d-----w- c:\users\Privat\AppData\Roaming\DMCache
2015-03-01 01:42 . 2015-03-23 14:17 -------- d-----w- c:\program files (x86)\Internet Download Manager
.
.
.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-03-27 11:04 . 2014-08-14 20:40 3849216 ----a-w- c:\windows\SysWow64\authui.dll
2015-03-27 11:04 . 2009-07-13 23:42 51167232 ----a-w- c:\windows\SysWow64\imageres.dll
2015-03-27 11:04 . 2009-07-13 23:57 51167232 ----a-w- c:\windows\system32\imageres.dll
2015-03-27 11:04 . 2014-08-14 20:40 3984896 ----a-w- c:\windows\system32\authui.dll
2015-03-24 15:15 . 2013-11-22 23:07 1656 ----a-w- c:\windows\system32\ASOROSet.bin
2015-03-19 00:47 . 2013-12-19 13:55 893552 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
2015-03-19 00:47 . 2013-12-19 13:55 42168 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll
2015-03-11 22:48 . 2013-11-23 12:54 122905848 ----a-w- c:\windows\system32\MRT.exe
2015-02-24 08:57 . 2015-02-24 03:02 129752 ----a-w- c:\windows\system32\drivers\2CAD687B.sys
2015-02-24 03:17 . 2010-11-21 03:27 295552 ----a-w- c:\windows\system32\MpSigStub.exe
2015-02-06 17:39 . 2015-02-06 17:39 81088 ----a-w- c:\windows\system32\vmnetbridge.dll
2015-02-06 17:39 . 2015-02-06 17:39 49856 ----a-w- c:\windows\system32\vnetinst.dll
2015-02-06 17:39 . 2015-02-06 17:39 48832 ----a-w- c:\windows\system32\drivers\vmnetbridge.sys
2015-02-06 17:39 . 2015-02-06 17:39 28864 ----a-w- c:\windows\system32\drivers\vmnetadapter.sys
2015-02-06 17:39 . 2015-02-06 17:39 27328 ----a-w- c:\windows\system32\drivers\vmnet.sys
2015-02-05 21:01 . 2015-02-11 11:36 995248 ----a-w- c:\windows\system32\nvumdshimx.dll
2015-02-05 21:01 . 2015-02-11 11:36 969872 ----a-w- c:\windows\system32\NvIFR64.dll
2015-02-05 21:01 . 2015-02-11 11:36 943760 ----a-w- c:\windows\system32\NvFBC64.dll
2015-02-05 21:01 . 2015-02-11 11:36 929936 ----a-w- c:\windows\SysWow64\NvIFR.dll
2015-02-05 21:01 . 2015-02-11 11:36 908104 ----a-w- c:\windows\SysWow64\NvFBC.dll
2015-02-05 21:01 . 2015-02-11 11:36 877816 ----a-w- c:\windows\SysWow64\nvumdshim.dll
2015-02-05 21:01 . 2015-02-11 11:36 3610768 ----a-w- c:\windows\system32\nvcuvid.dll
2015-02-05 21:01 . 2015-02-11 11:36 353224 ----a-w- c:\windows\system32\nvoglshim64.dll
2015-02-05 21:01 . 2015-02-11 11:36 3247248 ----a-w- c:\windows\SysWow64\nvcuvid.dll
2015-02-05 21:01 . 2015-02-11 11:36 32106640 ----a-w- c:\windows\system32\nvoglv64.dll
2015-02-05 21:01 . 2015-02-11 11:36 305136 ----a-w- c:\windows\SysWow64\nvoglshim32.dll
2015-02-05 21:01 . 2015-02-11 11:36 2902784 ----a-w- c:\windows\SysWow64\nvapi.dll
2015-02-05 21:01 . 2015-02-11 11:36 25460880 ----a-w- c:\windows\system32\nvcompiler.dll
2015-02-05 21:01 . 2015-02-11 11:36 24768144 ----a-w- c:\windows\SysWow64\nvoglv32.dll
2015-02-05 21:01 . 2015-02-11 11:36 20466496 ----a-w- c:\windows\SysWow64\nvcompiler.dll
2015-02-05 21:01 . 2015-02-11 11:36 1895240 ----a-w- c:\windows\system32\nvdispco6434752.dll
2015-02-05 21:01 . 2015-02-11 11:36 177624 ----a-w- c:\windows\system32\nvinitx.dll
2015-02-05 21:01 . 2015-02-11 11:36 164752 ----a-w- c:\windows\SysWow64\nvinit.dll
2015-02-05 21:01 . 2015-02-11 11:36 16017040 ----a-w- c:\windows\SysWow64\nvwgf2um.dll
2015-02-05 21:01 . 2015-02-11 11:36 1557648 ----a-w- c:\windows\system32\nvdispgenco6434752.dll
2015-02-05 21:01 . 2015-02-11 11:36 13294528 ----a-w- c:\windows\system32\nvopencl.dll
2015-02-05 21:01 . 2015-02-11 11:36 13208200 ----a-w- c:\windows\system32\nvcuda.dll
2015-02-05 21:01 . 2015-02-11 11:36 10773704 ----a-w- c:\windows\SysWow64\nvopencl.dll
2015-02-05 21:01 . 2015-02-11 11:36 10713256 ----a-w- c:\windows\SysWow64\nvcuda.dll
2015-02-05 21:01 . 2015-02-11 11:36 10284872 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2015-02-05 21:01 . 2014-07-29 21:40 17253848 ----a-w- c:\windows\system32\nvd3dumx.dll
2015-02-05 21:01 . 2014-04-10 02:10 74056 ----a-w- c:\windows\system32\OpenCL.dll
2015-02-05 21:01 . 2014-04-10 02:10 60560 ----a-w- c:\windows\SysWow64\OpenCL.dll
2015-02-05 21:01 . 2014-04-10 02:06 18575880 ----a-w- c:\windows\system32\nvwgf2umx.dll
2015-02-05 21:01 . 2014-04-10 02:06 14119744 ----a-w- c:\windows\SysWow64\nvd3dum.dll
2015-02-05 21:01 . 2014-04-10 02:06 3299512 ----a-w- c:\windows\system32\nvapi64.dll
2015-02-05 19:07 . 2014-04-10 02:10 6861128 ----a-w- c:\windows\system32\nvcpl.dll
2015-02-05 19:07 . 2014-04-10 02:10 3517584 ----a-w- c:\windows\system32\nvsvc64.dll
2015-02-05 19:07 . 2014-04-10 02:10 935056 ----a-w- c:\windows\system32\nvvsvc.exe
2015-02-05 19:07 . 2014-04-10 02:10 62792 ----a-w- c:\windows\system32\nvshext.dll
2015-02-05 19:07 . 2014-04-10 02:10 2558792 ----a-w- c:\windows\system32\nvsvcr.dll
2015-02-05 19:06 . 2014-04-10 02:10 385168 ----a-w- c:\windows\system32\nvmctray.dll
2015-02-05 17:57 . 2015-02-11 11:39 621384 ----a-w- c:\windows\SysWow64\nvStreaming.exe
2015-02-05 16:16 . 2013-11-22 21:29 71344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2015-02-05 16:16 . 2013-11-22 21:29 701616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2015-02-05 12:50 . 2014-04-10 02:10 4236870 ----a-w- c:\windows\system32\nvcoproc.bin
2015-01-28 09:46 . 2015-01-27 10:32 129752 ----a-w- c:\windows\system32\drivers\3EA435C6.sys
2015-01-27 23:36 . 2015-02-11 11:01 1239720 ----a-w- c:\windows\system32\aitstatic.exe
2015-01-13 07:52 . 2015-01-12 03:54 129752 ----a-w- c:\windows\system32\drivers\76777137.sys
2015-01-10 08:07 . 2015-01-25 09:02 1895240 ----a-w- c:\windows\system32\nvdispco6434725.dll
2015-01-10 08:07 . 2015-01-25 09:02 1556808 ----a-w- c:\windows\system32\nvdispgenco6434725.dll
2015-01-10 07:22 . 2015-01-09 07:20 129752 ----a-w- c:\windows\system32\drivers\0DE7241C.sys
2015-01-09 03:14 . 2015-02-25 18:18 91136 ----a-w- c:\windows\system32\wdi.dll
2015-01-09 03:14 . 2015-02-25 18:18 950272 ----a-w- c:\windows\system32\perftrack.dll
2015-01-09 03:14 . 2015-02-25 18:18 29696 ----a-w- c:\windows\system32\powertracker.dll
2015-01-09 02:48 . 2015-02-25 18:18 76800 ----a-w- c:\windows\SysWow64\wdi.dll
2015-01-08 07:10 . 2015-01-07 05:36 129752 ----a-w- c:\windows\system32\drivers\79483828.sys
2015-01-07 14:55 . 2015-01-07 14:55 85584 ----a-w- c:\windows\system32\drivers\vmci.sys
2015-01-01 11:53 . 2014-12-31 02:01 129752 ----a-w- c:\windows\system32\drivers\4C6B708B.sys
.
.
(((((((((((((((((((((((((((( Autostartpunkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Dxtory Update Checker 2.0"="c:\program files (x86)\ExKode\Dxtory2.0\UpdateChecker.exe" [2010-10-17 93696]
"phonostar-PlayerTimer"="c:\program files (x86)\phonostar-Player\phonostarTimer.exe" [2013-04-25 42496]
"KiesPreload"="c:\program files (x86)\Samsung\Kies\Kies.exe" [2014-07-25 1562264]
"IDMan"="c:\program files (x86)\Internet Download Manager\IDMan.exe" [2015-03-19 3890768]
"force-survive"="c:\users\Privat\AppData\Roaming\Forcedog\force-feed.exe" [2015-03-25 182272]
"chart_table"="c:\users\Privat\AppData\Roaming\Chart_plate\chart_go.exe" [2015-03-25 182272]
"range-horse"="c:\users\Privat\AppData\Local\Range-must\rangepractice.exe" [2015-03-26 97792]
"desire-card"="c:\users\Privat\AppData\Roaming\Desire_profit\desire_boss.exe" [2015-03-26 184320]
"tssop"="c:\programdata\Blizzard Entertainment\Battle.net\Cache\1e\6f\design_for_testability\valve.exe" [2012-03-02 209920]
"CursorFX"="c:\program files (x86)\Stardock\CursorFX\CursorFX.exe" [2012-06-27 653128]
"song_fill"="c:\users\Privat\AppData\Local\Songshoot\songprogram.exe" [2015-03-28 151552]
.
c:\users\Privat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
CurseClientStartup.ccip [2014-8-28 0]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
ImmersiveExplorer.lnk - c:\skinpack\ImmersiveExplorer\Immersive Explorer.exe [2014-9-30 721080]
MetroSidebar.lnk - c:\skinpack\MetroSidebar\MetroSidebar.exe [2014-9-30 1081856]
StartMenu.lnk - c:\skinpack\StartMenu\StartMenuReviver.exe [2014-9-17 14817400]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"EnableSecureUIAPath"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
R2 6d75c4f6;ProcessSystem;c:\windows\system32\rundll32.exe;c:\windows\SYSNATIVE\rundll32.exe [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 androidusb;SAMSUNG Android Composite ADB Interface Driver;c:\windows\system32\Drivers\ssadadb.sys;c:\windows\SYSNATIVE\Drivers\ssadadb.sys [x]
R3 Asushwio;Asushwio;d:\bin\64bit\Asushwio.sys;d:\bin\64bit\Asushwio.sys [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys;c:\windows\SYSNATIVE\drivers\dmvsc.sys [x]
R3 h647906;DragonRise H647906 AMD64 Driver;c:\windows\system32\drivers\h647906.sys;c:\windows\SYSNATIVE\drivers\h647906.sys [x]
R3 h648101;DragonRise H648101 AMD64 Driver;c:\windows\system32\drivers\h648101.sys;c:\windows\SYSNATIVE\drivers\h648101.sys [x]
R3 h648103;DragonRise H648103 AMD64 Driver;c:\windows\system32\drivers\h648103.sys;c:\windows\SYSNATIVE\drivers\h648103.sys [x]
R3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys;c:\windows\SYSNATIVE\DRIVERS\HECIx64.sys [x]
R3 hid7906;hid7906;c:\windows\system32\drivers\hid7906.sys;c:\windows\SYSNATIVE\drivers\hid7906.sys [x]
R3 hid8101;hid8101;c:\windows\system32\drivers\hid8101.sys;c:\windows\SYSNATIVE\drivers\hid8101.sys [x]
R3 hid8103;hid8103;c:\windows\system32\drivers\hid8103.sys;c:\windows\SYSNATIVE\drivers\hid8103.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 LVRS64;Logitech RightSound Filter Driver;c:\windows\system32\DRIVERS\lvrs64.sys;c:\windows\SYSNATIVE\DRIVERS\lvrs64.sys [x]
R3 LVUVC64;Logitech HD Webcam C270(UVC);c:\windows\system32\DRIVERS\lvuvc64.sys;c:\windows\SYSNATIVE\DRIVERS\lvuvc64.sys [x]
R3 NvStreamKms;NvStreamKms;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [x]
R3 Origin Client Service;Origin Client Service;c:\program files (x86)\Origin\OriginClientService.exe;c:\program files (x86)\Origin\OriginClientService.exe [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 SmbDrvI;SmbDrvI;c:\windows\system32\DRIVERS\Smb_driver_Intel.sys;c:\windows\SYSNATIVE\DRIVERS\Smb_driver_Intel.sys [x]
R3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\DRIVERS\ssadbus.sys;c:\windows\SYSNATIVE\DRIVERS\ssadbus.sys [x]
R3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\DRIVERS\ssadmdfl.sys;c:\windows\SYSNATIVE\DRIVERS\ssadmdfl.sys [x]
R3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\DRIVERS\ssadmdm.sys;c:\windows\SYSNATIVE\DRIVERS\ssadmdm.sys [x]
R3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);c:\windows\system32\DRIVERS\ssadserd.sys;c:\windows\SYSNATIVE\DRIVERS\ssadserd.sys [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys;c:\windows\SYSNATIVE\drivers\synth3dvsc.sys [x]
R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys;c:\windows\SYSNATIVE\drivers\terminpt.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys;c:\windows\SYSNATIVE\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys;c:\windows\SYSNATIVE\drivers\rdvgkmd.sys [x]
R3 xhunter1;xhunter1;c:\windows\xhunter1.sys;c:\windows\xhunter1.sys [x]
R4 GfExperienceService;NVIDIA GeForce Experience Service;c:\program files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe;c:\program files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [x]
R4 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x]
R4 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x]
R4 RzOvlMon;Razer Overlay Subsystem Emergency Service;c:\program files (x86)\Razer\Core\64bit\rzovlmon.exe;c:\program files (x86)\Razer\Core\64bit\rzovlmon.exe [x]
R4 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
R4 UMVPFSrv;UMVPFSrv;c:\program files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe;c:\program files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [x]
R4 UNS;Intel(R) Active Management Technology User Notification Service;c:\program files (x86)\Intel\AMT\UNS.exe;c:\program files (x86)\Intel\AMT\UNS.exe [x]
S0 amdkmpfd;AMD PCI Root Bus Lower Filter;c:\windows\system32\DRIVERS\amdkmpfd.sys;c:\windows\SYSNATIVE\DRIVERS\amdkmpfd.sys [x]
S0 vmci;VMware VMCI Bus Driver;c:\windows\system32\DRIVERS\vmci.sys;c:\windows\SYSNATIVE\DRIVERS\vmci.sys [x]
S0 vsock;vSockets Driver;c:\windows\system32\drivers\vsock.sys;c:\windows\SYSNATIVE\drivers\vsock.sys [x]
S1 RzFilter;RzFilter;c:\windows\system32\drivers\RzFilter.sys;c:\windows\SYSNATIVE\drivers\RzFilter.sys [x]
S2 IDMWFP;IDMWFP;c:\windows\system32\DRIVERS\idmwfp.sys;c:\windows\SYSNATIVE\DRIVERS\idmwfp.sys [x]
S2 UnsignedThemes;Unsigned Themes;c:\windows\UnsignedThemesSvc.exe;c:\windows\UnsignedThemesSvc.exe [x]
S2 uxpatch;uxpatch;c:\windows\system32\drivers\uxpatch.sys;c:\windows\SYSNATIVE\drivers\uxpatch.sys [x]
S2 VMUSBArbService;VMware USB Arbitration Service;c:\program files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe;c:\program files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [x]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys;c:\windows\SYSNATIVE\DRIVERS\k57nd60a.sys [x]
S3 ManyCam;ManyCam Virtual Webcam;c:\windows\system32\DRIVERS\mcvidrv.sys;c:\windows\SYSNATIVE\DRIVERS\mcvidrv.sys [x]
S3 mcaudrv_simple;ManyCam Virtual Microphone;c:\windows\system32\drivers\mcaudrv_x64.sys;c:\windows\SYSNATIVE\drivers\mcaudrv_x64.sys [x]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x]
S3 RzDxgk;RzDxgk;c:\windows\system32\drivers\RzDxgk.sys;c:\windows\SYSNATIVE\drivers\RzDxgk.sys [x]
S3 rzudd;Razer Mouse Driver;c:\windows\system32\DRIVERS\rzudd.sys;c:\windows\SYSNATIVE\DRIVERS\rzudd.sys [x]
S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys;c:\windows\SYSNATIVE\DRIVERS\usbfilter.sys [x]
.
.
Inhalt des "geplante Tasks" Ordners
.
2015-03-28 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-11-22 16:16]
.
2015-03-28 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-02-16 07:33]
.
2015-03-28 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-02-16 07:33]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\IDM Shell Extension]
@="{CDC95B92-E27C-4745-A8C5-64A52A78855D}"
[HKEY_CLASSES_ROOT\CLSID\{CDC95B92-E27C-4745-A8C5-64A52A78855D}]
2014-04-21 08:02 25112 ----a-w- c:\program files (x86)\Internet Download Manager\IDMShellExt64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"FAHConsole"="c:\program files\File Association Helper\FAHConsole.exe" [2013-09-26 216248]
"atchk"="c:\program files (x86)\Intel\AMT\atchk.exe" [2009-12-01 401408]
"Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [BU]
"ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2014-12-13 2824504]
"NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2014-12-13 2531472]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2013-10-24 13662936]
"VX1000"="c:\windows\vVX1000.exe" [2010-05-20 762736]
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\SharedTaskScheduler]
"{F791A188-699D-4FD4-955A-EB59E89B1907}"= "c:\skinpack\ThemeResourceChanger.dll" [2014-09-30 103936]
.
------- Zusätzlicher Suchlauf -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.com/
mDefault_Search_URL = hxxp://www.google.com
mDefault_Page_URL = hxxp://www.google.com/
mStart Page = hxxp://www.google.com/
mLocal Page = c:\windows\SysWOW64\blank.htm
mSearch Page = hxxp://www.google.com
uSearchAssistant = hxxp://www.bing.com/search?q={searchTerms}
IE: Download aller Links mit IDM - c:\program files (x86)\Internet Download Manager\IEGetAll.htm
IE: Download mit IDM - c:\program files (x86)\Internet Download Manager\IEExt.htm
IE: Free YouTube Download - c:\program files (x86)\Common Files\DVDVideoSoft\plugins\freeytvdownloader.htm
TCP: DhcpNameServer = 192.168.0.1
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
ShellIconOverlayIdentifiers-{472083B0-C522-11CF-8763-00608CC02F24} - (no file)
AddRemove-Darksiders II_is1 - c:\r.g. catalyst\Darksiders II\uninstall\unins000.exe
AddRemove-Reload Icons Cache 1.00 - c:\program files (x86)\Mr Blade Design's\Reload Icons Cache\Uninstall.exe
AddRemove-{FB0127F3-985B-44CE-AE29-378CAF60B361}_is1 - c:\r.g. catalyst\Need for Speed - Most Wanted\uninstall\unins000.exe
.
.
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_USERS\S-1-5-21-599707613-2096614801-711580207-1000\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
@DACL=(02 0000)
"ExcludeProfileDirs"="AppData\\Local;AppData\\LocalLow;$Recycle.Bin"
"BuildNumber"=dword:00001db1
"FirstLogon"=dword:00000000
"ParseAutoexec"="1"
.
[HKEY_USERS\S-1-5-21-599707613-2096614801-711580207-1000\Software\SecuROM\License information*]
"datasecu"=hex:45,b3,19,ac,ab,9b,34,c2,ec,fe,b7,15,50,47,92,36,c8,93,83,44,fb,
bd,91,4a,38,22,35,03,d0,32,9f,55,32,08,83,fd,cc,50,75,22,c5,b6,b7,b9,16,b3,\
"rkeysecu"=hex:1f,8d,70,35,c9,d5,0b,4c,10,9d,1b,22,b6,72,88,55
.
[HKEY_USERS\S-1-5-21-599707613-2096614801-711580207-1000_Classes\Wow6432Node\CLSID\{5ED60779-4DE2-4E07-B862-974CA4FF2E9C}]
@Denied: (Full) (Everyone)
@Allowed: (Read) (RestrictedCode)
"scansk"=hex(0):51,07,aa,a5,14,df,c4,72,fe,6c,22,ef,51,eb,a3,45,59,90,9e,f2,fe,
35,fc,64,67,39,99,04,70,99,5e,69,4f,2a,47,ce,82,e6,71,35,00,00,00,00,00,00,\
.
[HKEY_USERS\S-1-5-21-599707613-2096614801-711580207-1000_Classes\Wow6432Node\CLSID\{8652aae3-33bf-43c0-978b-a3a1de03c3fc}]
@Denied: (Full) (Everyone)
@Allowed: (Read) (RestrictedCode)
"Model"=dword:00000056
"Therad"=dword:0000001c
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_16_0_0_305_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_16_0_0_305_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_16_0_0_305_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_16_0_0_305_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_16_0_0_305.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.16"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_16_0_0_305.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_16_0_0_305.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_16_0_0_305.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Zeit der Fertigstellung: 2015-03-28 17:16:18
ComboFix-quarantined-files.txt 2015-03-28 16:16
ComboFix2.txt 2015-03-28 12:23
ComboFix3.txt 2014-08-06 01:55
.
Vor Suchlauf: 21 Verzeichnis(se), 233.794.703.360 Bytes frei
Nach Suchlauf: 22 Verzeichnis(se), 233.949.241.344 Bytes frei
.
- - End Of File - - 145AAC1A06E82C997065565A299412D3
A36C5E4F47E84449FF07ED3517B43A31 |