Luffe1231 | 25.08.2013 10:29 | Hi,
ich dachte ich kann bei der Installation von Combofix aussuchen wo es hingespeichert wird... Das war nicht der Fall und deswegen habe ich 2 logs, einmal vom Downloadordner
aus und einmal vom Desktop aus.
Hier die Logs:
Downloadordner Code:
ComboFix 13-08-25.01 - Lordofweed 25.08.2013 11:10:58.1.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.16337.14608 [GMT 2:00]
ausgeführt von:: c:\users\Lordofweed\Downloads\ComboFix.exe
AV: Avira Desktop *Enabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Enabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((( Weitere Löschungen ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Lordofweed\createfileassoc.exe
c:\users\Lordofweed\package_inst.exe
c:\users\Lordofweed\ts3client_win64.exe
c:\users\Lordofweed\Uninstall.exe
c:\users\Lordofweed\update.exe
c:\windows\SysWow64\frapsvid.dll
.
.
((((((((((((((((((((((( Dateien erstellt von 2013-07-25 bis 2013-08-25 ))))))))))))))))))))))))))))))
.
.
2013-08-25 09:12 . 2013-08-25 09:12 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-08-25 09:12 . 2013-08-25 09:12 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-08-24 09:53 . 2013-08-24 09:53 -------- d-----w- C:\FRST
2013-08-23 23:04 . 2013-08-24 13:07 -------- d-----w- c:\users\Lordofweed\AppData\Local\Origin
2013-08-23 20:06 . 2013-08-19 22:46 9515512 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{96FB252D-99A5-4DC6-B2E5-88EEACFEEEFE}\mpengine.dll
2013-08-22 22:15 . 2013-08-22 22:16 -------- d-----w- c:\windows\system32\MRT
2013-08-22 21:32 . 2013-08-22 21:32 -------- d-----w- c:\users\Lordofweed\AppData\Local\Criterion Games
2013-08-22 21:31 . 2013-08-22 21:31 -------- d--h--r- c:\users\Lordofweed\AppData\Roaming\SecuROM
2013-08-11 15:31 . 2009-03-18 16:35 33856 ---ha-w- c:\windows\system32\hamachi.sys
2013-08-11 15:30 . 2013-08-25 09:12 -------- d-----w- c:\users\Lordofweed\AppData\Local\LogMeIn Hamachi
2013-08-09 18:18 . 2013-08-24 13:04 -------- d-----w- c:\users\Lordofweed\AppData\Roaming\.minecraft
2013-08-09 18:18 . 2013-08-09 18:18 -------- d-----w- c:\program files (x86)\Common Files\Java
2013-08-09 18:18 . 2013-08-09 18:18 867240 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2013-08-09 18:18 . 2013-08-09 18:18 789416 ----a-w- c:\windows\SysWow64\deployJava1.dll
2013-08-09 18:18 . 2013-08-09 18:18 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-08-07 10:35 . 2013-08-07 10:35 -------- d-----w- c:\users\Lordofweed\old
2013-07-29 20:27 . 2013-07-29 20:31 -------- d-----w- c:\users\Lordofweed\AppData\Roaming\TeamViewer
.
.
.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-08-24 16:12 . 2013-05-05 20:15 280904 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2013-08-24 16:12 . 2013-05-05 18:30 280904 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2013-08-24 16:01 . 2013-05-05 18:30 280904 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2013-08-22 22:15 . 2013-05-08 11:28 78161360 ----a-w- c:\windows\system32\MRT.exe
2013-07-22 18:19 . 2013-05-05 18:30 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2013-07-02 15:18 . 2013-07-02 15:18 97280 ----a-w- c:\windows\system32\mshtmled.dll
2013-07-02 15:18 . 2013-07-02 15:18 92160 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2013-07-02 15:18 . 2013-07-02 15:18 905728 ----a-w- c:\windows\system32\mshtmlmedia.dll
2013-07-02 15:18 . 2013-07-02 15:18 81408 ----a-w- c:\windows\system32\icardie.dll
2013-07-02 15:18 . 2013-07-02 15:18 77312 ----a-w- c:\windows\system32\tdc.ocx
2013-07-02 15:18 . 2013-07-02 15:18 762368 ----a-w- c:\windows\system32\ieapfltr.dll
2013-07-02 15:18 . 2013-07-02 15:18 73728 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2013-07-02 15:18 . 2013-07-02 15:18 719360 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll
2013-07-02 15:18 . 2013-07-02 15:18 62976 ----a-w- c:\windows\system32\pngfilt.dll
2013-07-02 15:18 . 2013-07-02 15:18 61952 ----a-w- c:\windows\SysWow64\tdc.ocx
2013-07-02 15:18 . 2013-07-02 15:18 599552 ----a-w- c:\windows\system32\vbscript.dll
2013-07-02 15:18 . 2013-07-02 15:18 523264 ----a-w- c:\windows\SysWow64\vbscript.dll
2013-07-02 15:18 . 2013-07-02 15:18 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
2013-07-02 15:18 . 2013-07-02 15:18 51200 ----a-w- c:\windows\system32\imgutil.dll
2013-07-02 15:18 . 2013-07-02 15:18 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2013-07-02 15:18 . 2013-07-02 15:18 48640 ----a-w- c:\windows\system32\mshtmler.dll
2013-07-02 15:18 . 2013-07-02 15:18 452096 ----a-w- c:\windows\system32\dxtmsft.dll
2013-07-02 15:18 . 2013-07-02 15:18 441856 ----a-w- c:\windows\system32\html.iec
2013-07-02 15:18 . 2013-07-02 15:18 38400 ----a-w- c:\windows\SysWow64\imgutil.dll
2013-07-02 15:18 . 2013-07-02 15:18 361984 ----a-w- c:\windows\SysWow64\html.iec
2013-07-02 15:18 . 2013-07-02 15:18 281600 ----a-w- c:\windows\system32\dxtrans.dll
2013-07-02 15:18 . 2013-07-02 15:18 27648 ----a-w- c:\windows\system32\licmgr10.dll
2013-07-02 15:18 . 2013-07-02 15:18 270848 ----a-w- c:\windows\system32\iedkcs32.dll
2013-07-02 15:18 . 2013-07-02 15:18 247296 ----a-w- c:\windows\system32\webcheck.dll
2013-07-02 15:18 . 2013-07-02 15:18 235008 ----a-w- c:\windows\system32\url.dll
2013-07-02 15:18 . 2013-07-02 15:18 23040 ----a-w- c:\windows\SysWow64\licmgr10.dll
2013-07-02 15:18 . 2013-07-02 15:18 226304 ----a-w- c:\windows\system32\elshyph.dll
2013-07-02 15:18 . 2013-07-02 15:18 216064 ----a-w- c:\windows\system32\msls31.dll
2013-07-02 15:18 . 2013-07-02 15:18 197120 ----a-w- c:\windows\system32\msrating.dll
2013-07-02 15:18 . 2013-07-02 15:18 185344 ----a-w- c:\windows\SysWow64\elshyph.dll
2013-07-02 15:18 . 2013-07-02 15:18 173568 ----a-w- c:\windows\system32\ieUnatt.exe
2013-07-02 15:18 . 2013-07-02 15:18 167424 ----a-w- c:\windows\system32\iexpress.exe
2013-07-02 15:18 . 2013-07-02 15:18 158720 ----a-w- c:\windows\SysWow64\msls31.dll
2013-07-02 15:18 . 2013-07-02 15:18 1509376 ----a-w- c:\windows\system32\inetcpl.cpl
2013-07-02 15:18 . 2013-07-02 15:18 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2013-07-02 15:18 . 2013-07-02 15:18 149504 ----a-w- c:\windows\system32\occache.dll
2013-07-02 15:18 . 2013-07-02 15:18 144896 ----a-w- c:\windows\system32\wextract.exe
2013-07-02 15:18 . 2013-07-02 15:18 1441280 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2013-07-02 15:18 . 2013-07-02 15:18 1400416 ----a-w- c:\windows\system32\ieapfltr.dat
2013-07-02 15:18 . 2013-07-02 15:18 138752 ----a-w- c:\windows\SysWow64\wextract.exe
2013-07-02 15:18 . 2013-07-02 15:18 13824 ----a-w- c:\windows\system32\mshta.exe
2013-07-02 15:18 . 2013-07-02 15:18 137216 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2013-07-02 15:18 . 2013-07-02 15:18 136192 ----a-w- c:\windows\system32\iepeers.dll
2013-07-02 15:18 . 2013-07-02 15:18 135680 ----a-w- c:\windows\system32\IEAdvpack.dll
2013-07-02 15:18 . 2013-07-02 15:18 12800 ----a-w- c:\windows\SysWow64\mshta.exe
2013-07-02 15:18 . 2013-07-02 15:18 12800 ----a-w- c:\windows\system32\msfeedssync.exe
2013-07-02 15:18 . 2013-07-02 15:18 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2013-07-02 15:18 . 2013-07-02 15:18 1054720 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2013-07-02 15:18 . 2013-07-02 15:18 102912 ----a-w- c:\windows\system32\inseng.dll
2013-07-02 15:17 . 2013-07-02 15:17 9728 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 9728 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 648192 ----a-w- c:\windows\system32\d3d10level9.dll
2013-07-02 15:17 . 2013-07-02 15:17 604160 ----a-w- c:\windows\SysWow64\d3d10level9.dll
2013-07-02 15:17 . 2013-07-02 15:17 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 522752 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2013-07-02 15:17 . 2013-07-02 15:17 465920 ----a-w- c:\windows\system32\WMPhoto.dll
2013-07-02 15:17 . 2013-07-02 15:17 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll
2013-07-02 15:17 . 2013-07-02 15:17 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 4096 ---ha-w- c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 3928064 ----a-w- c:\windows\system32\d2d1.dll
2013-07-02 15:17 . 2013-07-02 15:17 364544 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll
2013-07-02 15:17 . 2013-07-02 15:17 363008 ----a-w- c:\windows\system32\dxgi.dll
2013-07-02 15:17 . 2013-07-02 15:17 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 3584 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 3419136 ----a-w- c:\windows\SysWow64\d2d1.dll
2013-07-02 15:17 . 2013-07-02 15:17 333312 ----a-w- c:\windows\system32\d3d10_1core.dll
2013-07-02 15:17 . 2013-07-02 15:17 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 296960 ----a-w- c:\windows\system32\d3d10core.dll
2013-07-02 15:17 . 2013-07-02 15:17 293376 ----a-w- c:\windows\SysWow64\dxgi.dll
2013-07-02 15:17 . 2013-07-02 15:17 2776576 ----a-w- c:\windows\system32\msmpeg2vdec.dll
2013-07-02 15:17 . 2013-07-02 15:17 2565120 ----a-w- c:\windows\system32\d3d10warp.dll
2013-07-02 15:17 . 2013-07-02 15:17 2560 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 2560 ---ha-w- c:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 249856 ----a-w- c:\windows\SysWow64\d3d10_1core.dll
2013-07-02 15:17 . 2013-07-02 15:17 245248 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2013-07-02 15:17 . 2013-07-02 15:17 2284544 ----a-w- c:\windows\SysWow64\msmpeg2vdec.dll
2013-07-02 15:17 . 2013-07-02 15:17 221184 ----a-w- c:\windows\system32\UIAnimation.dll
2013-07-02 15:17 . 2013-07-02 15:17 220160 ----a-w- c:\windows\SysWow64\d3d10core.dll
2013-07-02 15:17 . 2013-07-02 15:17 207872 ----a-w- c:\windows\SysWow64\WindowsCodecsExt.dll
2013-07-02 15:17 . 2013-07-02 15:17 1988096 ----a-w- c:\windows\SysWow64\d3d10warp.dll
2013-07-02 15:17 . 2013-07-02 15:17 194560 ----a-w- c:\windows\system32\d3d10_1.dll
2013-07-02 15:17 . 2013-07-02 15:17 1887232 ----a-w- c:\windows\system32\d3d11.dll
2013-07-02 15:17 . 2013-07-02 15:17 187392 ----a-w- c:\windows\SysWow64\UIAnimation.dll
2013-07-02 15:17 . 2013-07-02 15:17 1682432 ----a-w- c:\windows\system32\XpsPrint.dll
2013-07-02 15:17 . 2013-07-02 15:17 161792 ----a-w- c:\windows\SysWow64\d3d10_1.dll
2013-07-02 15:17 . 2013-07-02 15:17 1504768 ----a-w- c:\windows\SysWow64\d3d11.dll
2013-07-02 15:17 . 2013-07-02 15:17 1424384 ----a-w- c:\windows\system32\WindowsCodecs.dll
2013-07-02 15:17 . 2013-07-02 15:17 1238528 ----a-w- c:\windows\system32\d3d10.dll
2013-07-02 15:17 . 2013-07-02 15:17 1230336 ----a-w- c:\windows\SysWow64\WindowsCodecs.dll
.
.
(((((((((((((((((((((((((((( Autostartpunkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Akamai NetSession Interface"="c:\users\Lordofweed\AppData\Local\Akamai\netsession_win.exe" [2013-06-04 4489472]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2013-07-02 345144]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816]
"LogMeIn Hamachi Ui"="f:\hamachi\hamachi-2-ui.exe" [2013-06-28 2255184]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"Userinit"="userinit.exe"
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer1"=wdmaud.drv
.
R2 ASGT;ASGT;c:\windows\SysWOW64\ASGT.exe;c:\windows\SysWOW64\ASGT.exe [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 BEService;BattlEye Service;c:\program files (x86)\Common Files\BattlEye\BEService.exe;c:\program files (x86)\Common Files\BattlEye\BEService.exe [x]
R3 Sony PC Companion;Sony PC Companion;c:\program files (x86)\Sony\Sony PC Companion\PCCService.exe;c:\program files (x86)\Sony\Sony PC Companion\PCCService.exe [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 wolf;wolf;f:\wolfteam\WolfTeam-DE\avital\wolf64.sys;f:\wolfteam\WolfTeam-DE\avital\wolf64.sys [x]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys;c:\windows\SYSNATIVE\DRIVERS\avkmgr.sys [x]
S2 AntiVirSchedulerService;Avira Planer;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [x]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;f:\hamachi\hamachi-2.exe;f:\hamachi\hamachi-2.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S2 TeamViewer8;TeamViewer 8;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [x]
S3 asmthub3;ASMedia USB3 Hub Service;c:\windows\system32\DRIVERS\asmthub3.sys;c:\windows\SYSNATIVE\DRIVERS\asmthub3.sys [x]
S3 asmtxhci;ASMEDIA XHCI Service;c:\windows\system32\DRIVERS\asmtxhci.sys;c:\windows\SYSNATIVE\DRIVERS\asmtxhci.sys [x]
S3 LADF_CaptureOnly;LADF Capture Filter Driver;c:\windows\system32\DRIVERS\ladfGSCamd64.sys;c:\windows\SYSNATIVE\DRIVERS\ladfGSCamd64.sys [x]
S3 LADF_RenderOnly;LADF Render Filter Driver;c:\windows\system32\DRIVERS\ladfGSRamd64.sys;c:\windows\SYSNATIVE\DRIVERS\ladfGSRamd64.sys [x]
S3 LGBusEnum;Logitech GamePanel Virtual Bus Enumerator Driver;c:\windows\system32\drivers\LGBusEnum.sys;c:\windows\SYSNATIVE\drivers\LGBusEnum.sys [x]
S3 LGSHidFilt;Logitech Gaming KMDF HID Filter Driver;c:\windows\system32\DRIVERS\LGSHidFilt.Sys;c:\windows\SYSNATIVE\DRIVERS\LGSHidFilt.Sys [x]
S3 LGVirHid;Logitech Gamepanel Virtual HID Device Driver;c:\windows\system32\drivers\LGVirHid.sys;c:\windows\SYSNATIVE\drivers\LGVirHid.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S4 IOMap;IOMap;c:\windows\system32\drivers\IOMap64.sys;c:\windows\SYSNATIVE\drivers\IOMap64.sys [x]
.
.
Inhalt des "geplante Tasks" Ordners
.
2013-07-16 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2598136450-1614280718-3552877610-1000Core.job
- c:\users\Lordofweed\AppData\Local\Google\Update\GoogleUpdate.exe [2013-05-04 13:16]
.
2013-08-24 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2598136450-1614280718-3552877610-1000UA.job
- c:\users\Lordofweed\AppData\Local\Google\Update\GoogleUpdate.exe [2013-05-04 13:16]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"EvtMgr6"="c:\program files\Logitech\SetPointP\SetPoint.exe" [2013-02-21 2991856]
"Launch LCore"="c:\program files\Logitech Gaming Software\LCore.exe" [2013-02-28 7468784]
.
------- Zusätzlicher Suchlauf -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = <local>
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: soe.com
Trusted Zone: sony.com
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
Wow6432Node-HKCU-Run-AdobeBridge - (no file)
Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe
AddRemove-TeamSpeak 3 Client - c:\users\Lordofweed\uninstall.exe
.
.
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_USERS\S-1-5-21-2598136450-1614280718-3552877610-1000\Software\SecuROM\License information*]
"datasecu"=hex:40,d5,71,22,87,34,9e,6e,b4,44,30,d8,18,72,3f,e7,54,a3,12,ce,4b,
55,33,1e,ab,a5,59,66,cc,b2,7e,04,71,8a,3b,7b,d0,57,07,b6,df,db,10,a4,75,94,\
"rkeysecu"=hex:eb,3c,e1,5c,1c,f6,06,29,37,58,09,ee,c7,50,67,3a
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Zeit der Fertigstellung: 2013-08-25 11:13:23
ComboFix-quarantined-files.txt 2013-08-25 09:13
.
Vor Suchlauf: 12 Verzeichnis(se), 157.686.247.424 Bytes frei
Nach Suchlauf: 15 Verzeichnis(se), 157.820.235.776 Bytes frei
.
- - End Of File - - D4B72B6967C55FDB7253646BEEB4CA1C
A36C5E4F47E84449FF07ED3517B43A31
Desktop Code:
ComboFix 13-08-25.01 - Lordofweed 25.08.2013 11:23:13.2.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.16337.14349 [GMT 2:00]
ausgeführt von:: c:\users\Lordofweed\Desktop\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((( Dateien erstellt von 2013-07-25 bis 2013-08-25 ))))))))))))))))))))))))))))))
.
.
2013-08-25 09:24 . 2013-08-25 09:24 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-08-25 09:24 . 2013-08-25 09:24 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-08-24 09:53 . 2013-08-24 09:53 -------- d-----w- C:\FRST
2013-08-23 23:04 . 2013-08-24 13:07 -------- d-----w- c:\users\Lordofweed\AppData\Local\Origin
2013-08-23 20:06 . 2013-08-19 22:46 9515512 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{96FB252D-99A5-4DC6-B2E5-88EEACFEEEFE}\mpengine.dll
2013-08-22 22:15 . 2013-08-22 22:16 -------- d-----w- c:\windows\system32\MRT
2013-08-22 21:32 . 2013-08-22 21:32 -------- d-----w- c:\users\Lordofweed\AppData\Local\Criterion Games
2013-08-22 21:31 . 2013-08-22 21:31 -------- d--h--r- c:\users\Lordofweed\AppData\Roaming\SecuROM
2013-08-11 15:31 . 2009-03-18 16:35 33856 ---ha-w- c:\windows\system32\hamachi.sys
2013-08-11 15:30 . 2013-08-25 09:24 -------- d-----w- c:\users\Lordofweed\AppData\Local\LogMeIn Hamachi
2013-08-09 18:18 . 2013-08-24 13:04 -------- d-----w- c:\users\Lordofweed\AppData\Roaming\.minecraft
2013-08-09 18:18 . 2013-08-09 18:18 -------- d-----w- c:\program files (x86)\Common Files\Java
2013-08-09 18:18 . 2013-08-09 18:18 867240 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2013-08-09 18:18 . 2013-08-09 18:18 789416 ----a-w- c:\windows\SysWow64\deployJava1.dll
2013-08-09 18:18 . 2013-08-09 18:18 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-08-07 10:35 . 2013-08-07 10:35 -------- d-----w- c:\users\Lordofweed\old
2013-07-29 20:27 . 2013-07-29 20:31 -------- d-----w- c:\users\Lordofweed\AppData\Roaming\TeamViewer
.
.
.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-08-24 16:12 . 2013-05-05 20:15 280904 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2013-08-24 16:12 . 2013-05-05 18:30 280904 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2013-08-24 16:01 . 2013-05-05 18:30 280904 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2013-08-22 22:15 . 2013-05-08 11:28 78161360 ----a-w- c:\windows\system32\MRT.exe
2013-07-22 18:19 . 2013-05-05 18:30 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2013-07-02 15:18 . 2013-07-02 15:18 97280 ----a-w- c:\windows\system32\mshtmled.dll
2013-07-02 15:18 . 2013-07-02 15:18 92160 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2013-07-02 15:18 . 2013-07-02 15:18 905728 ----a-w- c:\windows\system32\mshtmlmedia.dll
2013-07-02 15:18 . 2013-07-02 15:18 81408 ----a-w- c:\windows\system32\icardie.dll
2013-07-02 15:18 . 2013-07-02 15:18 77312 ----a-w- c:\windows\system32\tdc.ocx
2013-07-02 15:18 . 2013-07-02 15:18 762368 ----a-w- c:\windows\system32\ieapfltr.dll
2013-07-02 15:18 . 2013-07-02 15:18 73728 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2013-07-02 15:18 . 2013-07-02 15:18 719360 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll
2013-07-02 15:18 . 2013-07-02 15:18 62976 ----a-w- c:\windows\system32\pngfilt.dll
2013-07-02 15:18 . 2013-07-02 15:18 61952 ----a-w- c:\windows\SysWow64\tdc.ocx
2013-07-02 15:18 . 2013-07-02 15:18 599552 ----a-w- c:\windows\system32\vbscript.dll
2013-07-02 15:18 . 2013-07-02 15:18 523264 ----a-w- c:\windows\SysWow64\vbscript.dll
2013-07-02 15:18 . 2013-07-02 15:18 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
2013-07-02 15:18 . 2013-07-02 15:18 51200 ----a-w- c:\windows\system32\imgutil.dll
2013-07-02 15:18 . 2013-07-02 15:18 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2013-07-02 15:18 . 2013-07-02 15:18 48640 ----a-w- c:\windows\system32\mshtmler.dll
2013-07-02 15:18 . 2013-07-02 15:18 452096 ----a-w- c:\windows\system32\dxtmsft.dll
2013-07-02 15:18 . 2013-07-02 15:18 441856 ----a-w- c:\windows\system32\html.iec
2013-07-02 15:18 . 2013-07-02 15:18 38400 ----a-w- c:\windows\SysWow64\imgutil.dll
2013-07-02 15:18 . 2013-07-02 15:18 361984 ----a-w- c:\windows\SysWow64\html.iec
2013-07-02 15:18 . 2013-07-02 15:18 281600 ----a-w- c:\windows\system32\dxtrans.dll
2013-07-02 15:18 . 2013-07-02 15:18 27648 ----a-w- c:\windows\system32\licmgr10.dll
2013-07-02 15:18 . 2013-07-02 15:18 270848 ----a-w- c:\windows\system32\iedkcs32.dll
2013-07-02 15:18 . 2013-07-02 15:18 247296 ----a-w- c:\windows\system32\webcheck.dll
2013-07-02 15:18 . 2013-07-02 15:18 235008 ----a-w- c:\windows\system32\url.dll
2013-07-02 15:18 . 2013-07-02 15:18 23040 ----a-w- c:\windows\SysWow64\licmgr10.dll
2013-07-02 15:18 . 2013-07-02 15:18 226304 ----a-w- c:\windows\system32\elshyph.dll
2013-07-02 15:18 . 2013-07-02 15:18 216064 ----a-w- c:\windows\system32\msls31.dll
2013-07-02 15:18 . 2013-07-02 15:18 197120 ----a-w- c:\windows\system32\msrating.dll
2013-07-02 15:18 . 2013-07-02 15:18 185344 ----a-w- c:\windows\SysWow64\elshyph.dll
2013-07-02 15:18 . 2013-07-02 15:18 173568 ----a-w- c:\windows\system32\ieUnatt.exe
2013-07-02 15:18 . 2013-07-02 15:18 167424 ----a-w- c:\windows\system32\iexpress.exe
2013-07-02 15:18 . 2013-07-02 15:18 158720 ----a-w- c:\windows\SysWow64\msls31.dll
2013-07-02 15:18 . 2013-07-02 15:18 1509376 ----a-w- c:\windows\system32\inetcpl.cpl
2013-07-02 15:18 . 2013-07-02 15:18 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2013-07-02 15:18 . 2013-07-02 15:18 149504 ----a-w- c:\windows\system32\occache.dll
2013-07-02 15:18 . 2013-07-02 15:18 144896 ----a-w- c:\windows\system32\wextract.exe
2013-07-02 15:18 . 2013-07-02 15:18 1441280 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2013-07-02 15:18 . 2013-07-02 15:18 1400416 ----a-w- c:\windows\system32\ieapfltr.dat
2013-07-02 15:18 . 2013-07-02 15:18 138752 ----a-w- c:\windows\SysWow64\wextract.exe
2013-07-02 15:18 . 2013-07-02 15:18 13824 ----a-w- c:\windows\system32\mshta.exe
2013-07-02 15:18 . 2013-07-02 15:18 137216 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2013-07-02 15:18 . 2013-07-02 15:18 136192 ----a-w- c:\windows\system32\iepeers.dll
2013-07-02 15:18 . 2013-07-02 15:18 135680 ----a-w- c:\windows\system32\IEAdvpack.dll
2013-07-02 15:18 . 2013-07-02 15:18 12800 ----a-w- c:\windows\SysWow64\mshta.exe
2013-07-02 15:18 . 2013-07-02 15:18 12800 ----a-w- c:\windows\system32\msfeedssync.exe
2013-07-02 15:18 . 2013-07-02 15:18 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2013-07-02 15:18 . 2013-07-02 15:18 1054720 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2013-07-02 15:18 . 2013-07-02 15:18 102912 ----a-w- c:\windows\system32\inseng.dll
2013-07-02 15:17 . 2013-07-02 15:17 9728 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 9728 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 648192 ----a-w- c:\windows\system32\d3d10level9.dll
2013-07-02 15:17 . 2013-07-02 15:17 604160 ----a-w- c:\windows\SysWow64\d3d10level9.dll
2013-07-02 15:17 . 2013-07-02 15:17 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 522752 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2013-07-02 15:17 . 2013-07-02 15:17 465920 ----a-w- c:\windows\system32\WMPhoto.dll
2013-07-02 15:17 . 2013-07-02 15:17 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll
2013-07-02 15:17 . 2013-07-02 15:17 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 4096 ---ha-w- c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 3928064 ----a-w- c:\windows\system32\d2d1.dll
2013-07-02 15:17 . 2013-07-02 15:17 364544 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll
2013-07-02 15:17 . 2013-07-02 15:17 363008 ----a-w- c:\windows\system32\dxgi.dll
2013-07-02 15:17 . 2013-07-02 15:17 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 3584 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 3419136 ----a-w- c:\windows\SysWow64\d2d1.dll
2013-07-02 15:17 . 2013-07-02 15:17 333312 ----a-w- c:\windows\system32\d3d10_1core.dll
2013-07-02 15:17 . 2013-07-02 15:17 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 296960 ----a-w- c:\windows\system32\d3d10core.dll
2013-07-02 15:17 . 2013-07-02 15:17 293376 ----a-w- c:\windows\SysWow64\dxgi.dll
2013-07-02 15:17 . 2013-07-02 15:17 2776576 ----a-w- c:\windows\system32\msmpeg2vdec.dll
2013-07-02 15:17 . 2013-07-02 15:17 2565120 ----a-w- c:\windows\system32\d3d10warp.dll
2013-07-02 15:17 . 2013-07-02 15:17 2560 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 2560 ---ha-w- c:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-07-02 15:17 . 2013-07-02 15:17 249856 ----a-w- c:\windows\SysWow64\d3d10_1core.dll
2013-07-02 15:17 . 2013-07-02 15:17 245248 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2013-07-02 15:17 . 2013-07-02 15:17 2284544 ----a-w- c:\windows\SysWow64\msmpeg2vdec.dll
2013-07-02 15:17 . 2013-07-02 15:17 221184 ----a-w- c:\windows\system32\UIAnimation.dll
2013-07-02 15:17 . 2013-07-02 15:17 220160 ----a-w- c:\windows\SysWow64\d3d10core.dll
2013-07-02 15:17 . 2013-07-02 15:17 207872 ----a-w- c:\windows\SysWow64\WindowsCodecsExt.dll
2013-07-02 15:17 . 2013-07-02 15:17 1988096 ----a-w- c:\windows\SysWow64\d3d10warp.dll
2013-07-02 15:17 . 2013-07-02 15:17 194560 ----a-w- c:\windows\system32\d3d10_1.dll
2013-07-02 15:17 . 2013-07-02 15:17 1887232 ----a-w- c:\windows\system32\d3d11.dll
2013-07-02 15:17 . 2013-07-02 15:17 187392 ----a-w- c:\windows\SysWow64\UIAnimation.dll
2013-07-02 15:17 . 2013-07-02 15:17 1682432 ----a-w- c:\windows\system32\XpsPrint.dll
2013-07-02 15:17 . 2013-07-02 15:17 161792 ----a-w- c:\windows\SysWow64\d3d10_1.dll
2013-07-02 15:17 . 2013-07-02 15:17 1504768 ----a-w- c:\windows\SysWow64\d3d11.dll
2013-07-02 15:17 . 2013-07-02 15:17 1424384 ----a-w- c:\windows\system32\WindowsCodecs.dll
2013-07-02 15:17 . 2013-07-02 15:17 1238528 ----a-w- c:\windows\system32\d3d10.dll
2013-07-02 15:17 . 2013-07-02 15:17 1230336 ----a-w- c:\windows\SysWow64\WindowsCodecs.dll
.
.
(((((((((((((((((((((((((((( Autostartpunkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Akamai NetSession Interface"="c:\users\Lordofweed\AppData\Local\Akamai\netsession_win.exe" [2013-06-04 4489472]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2013-07-02 345144]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816]
"LogMeIn Hamachi Ui"="f:\hamachi\hamachi-2-ui.exe" [2013-06-28 2255184]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"Userinit"="userinit.exe"
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer1"=wdmaud.drv
.
R2 ASGT;ASGT;c:\windows\SysWOW64\ASGT.exe;c:\windows\SysWOW64\ASGT.exe [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 BEService;BattlEye Service;c:\program files (x86)\Common Files\BattlEye\BEService.exe;c:\program files (x86)\Common Files\BattlEye\BEService.exe [x]
R3 Sony PC Companion;Sony PC Companion;c:\program files (x86)\Sony\Sony PC Companion\PCCService.exe;c:\program files (x86)\Sony\Sony PC Companion\PCCService.exe [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 wolf;wolf;f:\wolfteam\WolfTeam-DE\avital\wolf64.sys;f:\wolfteam\WolfTeam-DE\avital\wolf64.sys [x]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys;c:\windows\SYSNATIVE\DRIVERS\avkmgr.sys [x]
S2 AntiVirSchedulerService;Avira Planer;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [x]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;f:\hamachi\hamachi-2.exe;f:\hamachi\hamachi-2.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S2 TeamViewer8;TeamViewer 8;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [x]
S3 asmthub3;ASMedia USB3 Hub Service;c:\windows\system32\DRIVERS\asmthub3.sys;c:\windows\SYSNATIVE\DRIVERS\asmthub3.sys [x]
S3 asmtxhci;ASMEDIA XHCI Service;c:\windows\system32\DRIVERS\asmtxhci.sys;c:\windows\SYSNATIVE\DRIVERS\asmtxhci.sys [x]
S3 LADF_CaptureOnly;LADF Capture Filter Driver;c:\windows\system32\DRIVERS\ladfGSCamd64.sys;c:\windows\SYSNATIVE\DRIVERS\ladfGSCamd64.sys [x]
S3 LADF_RenderOnly;LADF Render Filter Driver;c:\windows\system32\DRIVERS\ladfGSRamd64.sys;c:\windows\SYSNATIVE\DRIVERS\ladfGSRamd64.sys [x]
S3 LGBusEnum;Logitech GamePanel Virtual Bus Enumerator Driver;c:\windows\system32\drivers\LGBusEnum.sys;c:\windows\SYSNATIVE\drivers\LGBusEnum.sys [x]
S3 LGSHidFilt;Logitech Gaming KMDF HID Filter Driver;c:\windows\system32\DRIVERS\LGSHidFilt.Sys;c:\windows\SYSNATIVE\DRIVERS\LGSHidFilt.Sys [x]
S3 LGVirHid;Logitech Gamepanel Virtual HID Device Driver;c:\windows\system32\drivers\LGVirHid.sys;c:\windows\SYSNATIVE\drivers\LGVirHid.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S4 IOMap;IOMap;c:\windows\system32\drivers\IOMap64.sys;c:\windows\SYSNATIVE\drivers\IOMap64.sys [x]
.
.
Inhalt des "geplante Tasks" Ordners
.
2013-07-16 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2598136450-1614280718-3552877610-1000Core.job
- c:\users\Lordofweed\AppData\Local\Google\Update\GoogleUpdate.exe [2013-05-04 13:16]
.
2013-08-24 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2598136450-1614280718-3552877610-1000UA.job
- c:\users\Lordofweed\AppData\Local\Google\Update\GoogleUpdate.exe [2013-05-04 13:16]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"EvtMgr6"="c:\program files\Logitech\SetPointP\SetPoint.exe" [2013-02-21 2991856]
"Launch LCore"="c:\program files\Logitech Gaming Software\LCore.exe" [2013-02-28 7468784]
.
------- Zusätzlicher Suchlauf -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = <local>
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: soe.com
Trusted Zone: sony.com
.
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_USERS\S-1-5-21-2598136450-1614280718-3552877610-1000\Software\SecuROM\License information*]
"datasecu"=hex:40,d5,71,22,87,34,9e,6e,b4,44,30,d8,18,72,3f,e7,54,a3,12,ce,4b,
55,33,1e,ab,a5,59,66,cc,b2,7e,04,71,8a,3b,7b,d0,57,07,b6,df,db,10,a4,75,94,\
"rkeysecu"=hex:eb,3c,e1,5c,1c,f6,06,29,37,58,09,ee,c7,50,67,3a
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Zeit der Fertigstellung: 2013-08-25 11:25:29
ComboFix-quarantined-files.txt 2013-08-25 09:25
ComboFix2.txt 2013-08-25 09:13
.
Vor Suchlauf: 14 Verzeichnis(se), 157.866.831.872 Bytes frei
Nach Suchlauf: 15 Verzeichnis(se), 157.812.293.632 Bytes frei
.
- - End Of File - - 5E70C2220D2B0DF321446B687954AA91
A36C5E4F47E84449FF07ED3517B43A31 So, hoffe, dass mein Fehler nicht schlimm ist. Vielen Dank für deine Mühe!
Grüße
EDIT: Meine Spiele funktionieren alle wieder und die Verbindungen zu den Internetseiten sind wieder Stabil! Vielen Dank für deine Hilfe!
Combofix hat anscheinend das Problem beseitigt. Aber... [" c:\users\Lordofweed\ts3client_win64.exe "] Teamspeak 3 ???
Ich werde zur Sicherheit wieder im Thread vorbeigucken falls wir noch etwas machen müssen.
Grüße |