Hallo,
die c:\combofix.txt lautet: Code:
ComboFix 13-10-19.02 - ******* 20.10.2013 22:33:33.1.4 - x86
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.3326.2084 [GMT 2:00]
ausgeführt von:: c:\users\*******\Desktop\ComboFix.exe
AV: Kaspersky Internet Security *Disabled/Updated* {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5}
FW: Kaspersky Internet Security *Disabled* {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E}
SP: Kaspersky Internet Security *Disabled/Updated* {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((( Weitere Löschungen ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\END
c:\program files\Windows Live\Messenger\msacm32.dll
c:\programdata\ntuser.dat
c:\users\.........\AppData\Roaming\.#
c:\users\*******\AppData\Roaming\.#
c:\windows\IsUn0407.exe
c:\windows\unin0407.exe
.
.
((((((((((((((((((((((( Dateien erstellt von 2013-09-20 bis 2013-10-20 ))))))))))))))))))))))))))))))
.
.
2013-10-20 20:40 . 2013-10-20 20:40 -------- d-----w- c:\users\---------\AppData\Local\temp
2013-10-20 20:40 . 2013-10-20 20:40 -------- d-----w- c:\users\*******\AppData\Local\temp
2013-10-20 13:32 . 2013-10-20 13:32 -------- d-----w- C:\FRST
2013-10-14 16:43 . 2013-09-04 01:15 258560 ----a-w- c:\windows\system32\drivers\usbhub.sys
2013-10-14 16:43 . 2013-09-04 01:14 284672 ----a-w- c:\windows\system32\drivers\usbport.sys
2013-10-14 16:43 . 2013-09-04 01:14 43008 ----a-w- c:\windows\system32\drivers\usbehci.sys
2013-10-14 16:43 . 2013-09-04 01:14 6016 ----a-w- c:\windows\system32\drivers\usbd.sys
2013-10-14 16:43 . 2013-09-04 01:14 20480 ----a-w- c:\windows\system32\drivers\usbohci.sys
2013-10-13 07:14 . 2013-10-13 13:49 -------- d-----w- c:\program files\Mozilla Thunderbird
2013-10-10 06:11 . 2013-07-12 10:08 146816 ----a-w- c:\windows\system32\drivers\usbvideo.sys
2013-10-10 06:11 . 2013-07-12 10:07 86016 ----a-w- c:\windows\system32\drivers\usbcir.sys
2013-10-10 06:11 . 2013-07-12 10:07 80896 ----a-w- c:\windows\system32\drivers\USBAUDIO.sys
2013-10-10 06:09 . 2013-07-04 11:57 205824 ----a-w- c:\windows\system32\WebClnt.dll
2013-10-10 06:09 . 2013-07-04 11:51 81920 ----a-w- c:\windows\system32\davclnt.dll
2013-10-10 06:09 . 2013-07-04 09:48 115712 ----a-w- c:\windows\system32\drivers\mrxdav.sys
2013-10-08 12:48 . 2013-10-08 12:48 -------- d-----w- c:\program files\iPod
2013-10-08 12:48 . 2013-10-08 12:49 -------- d-----w- c:\programdata\188F1432-103A-4ffb-80F1-36B633C5C9E1
2013-10-08 12:48 . 2013-10-08 12:49 -------- d-----w- c:\program files\iTunes
2013-10-05 12:10 . 2013-10-05 12:10 -------- d--h--w- c:\programdata\CanonIJEPPEX2
2013-10-05 12:10 . 2013-10-05 12:10 -------- d--h--w- c:\programdata\CanonEPP
2013-10-05 12:05 . 2013-10-05 12:05 -------- d-----w- c:\programdata\Canon IJ Network Tool
2013-10-05 12:05 . 2011-03-31 08:07 114688 ----a-w- c:\windows\system32\CNC_ATU.dll
2013-10-05 12:05 . 2011-03-31 08:05 286720 ----a-w- c:\windows\system32\CNC_ATC.dll
2013-10-05 12:05 . 2011-03-31 08:05 114688 ----a-w- c:\windows\system32\CNC_ATI.dll
2013-10-05 12:05 . 2011-03-30 10:54 323584 ----a-w- c:\windows\system32\CNC_ATL.dll
2013-10-05 12:05 . 2008-08-25 16:02 15872 ----a-w- c:\windows\system32\CNHMCA.dll
2013-10-05 12:02 . 2013-10-05 12:02 -------- d-----w- c:\programdata\CanonIJWSpt
2013-10-05 11:59 . 2012-03-14 03:00 84992 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\CNMPPAT.DLL
2013-10-05 11:59 . 2012-03-14 03:00 29184 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\CNMPDAT.DLL
2013-10-05 11:58 . 2012-03-14 03:00 311296 ----a-w- c:\windows\system32\CNMLMAT.DLL
2013-10-05 11:58 . 2011-02-03 00:20 184320 ----a-w- c:\windows\system32\CNMIUAT.DLL
2013-10-05 11:57 . 2013-10-05 11:57 -------- d-----w- c:\windows\system32\STRING
2013-10-05 11:57 . 2012-06-14 08:18 35840 ----a-w- c:\windows\system32\CNMNPUI.DLL
2013-09-29 15:22 . 2013-09-29 15:22 -------- d-----w- c:\users\+++++\AppData\Roaming\FinalBurner Video DVD
2013-09-29 13:44 . 2013-09-29 13:44 -------- d-----w- c:\users\+++++\AppData\Roaming\SumatraPDF
2013-09-26 18:00 . 2013-09-26 18:00 208760 ----a-w- c:\program files\Internet Explorer\Plugins\nppdf32.dll
2013-09-24 17:35 . 2013-09-24 17:35 -------- d-----w- c:\users\+++++\AppData\Roaming\Apple Computer
2013-09-24 10:19 . 2013-09-24 10:19 -------- d-----w- c:\users\---------\AppData\Roaming\Apple Computer
2013-09-24 05:33 . 2013-09-24 05:33 -------- d-----w- c:\users\*******\AppData\Local\Apple Computer
2013-09-24 05:32 . 2012-08-21 11:01 26840 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2013-09-24 05:31 . 2013-09-24 05:31 -------- d-----w- c:\programdata\Apple Computer
2013-09-24 05:30 . 2013-09-24 05:30 -------- d-----w- c:\program files\Bonjour
.
.
.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-10-11 05:32 . 2012-04-09 07:23 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-10-11 05:32 . 2012-01-15 17:55 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-10-10 06:11 . 2012-07-25 12:53 25696 ----a-w- c:\windows\system32\drivers\klmouflt.sys
2013-10-10 06:11 . 2012-05-25 17:38 25696 ----a-w- c:\windows\system32\drivers\klkbdflt.sys
2013-10-10 06:11 . 2012-06-19 15:28 135776 ----a-w- c:\windows\system32\drivers\kl1.sys
2013-09-14 10:49 . 2013-09-14 10:49 745472 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2013-09-14 10:49 . 2013-09-14 10:49 73728 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2013-09-14 10:49 . 2013-09-14 10:49 719360 ----a-w- c:\windows\system32\mshtmlmedia.dll
2013-09-14 10:49 . 2013-09-14 10:49 61952 ----a-w- c:\windows\system32\tdc.ocx
2013-09-14 10:49 . 2013-09-14 10:49 523264 ----a-w- c:\windows\system32\vbscript.dll
2013-09-14 10:49 . 2013-09-14 10:49 48640 ----a-w- c:\windows\system32\mshtmler.dll
2013-09-14 10:49 . 2013-09-14 10:49 38400 ----a-w- c:\windows\system32\imgutil.dll
2013-09-14 10:49 . 2013-09-14 10:49 361984 ----a-w- c:\windows\system32\html.iec
2013-09-14 10:49 . 2013-09-14 10:49 23040 ----a-w- c:\windows\system32\licmgr10.dll
2013-09-14 10:49 . 2013-09-14 10:49 185344 ----a-w- c:\windows\system32\elshyph.dll
2013-09-14 10:49 . 2013-09-14 10:49 158720 ----a-w- c:\windows\system32\msls31.dll
2013-09-14 10:49 . 2013-09-14 10:49 150528 ----a-w- c:\windows\system32\iexpress.exe
2013-09-14 10:49 . 2013-09-14 10:49 1441280 ----a-w- c:\windows\system32\inetcpl.cpl
2013-09-14 10:49 . 2013-09-14 10:49 138752 ----a-w- c:\windows\system32\wextract.exe
2013-09-14 10:49 . 2013-09-14 10:49 137216 ----a-w- c:\windows\system32\ieUnatt.exe
2013-09-14 10:49 . 2013-09-14 10:49 12800 ----a-w- c:\windows\system32\mshta.exe
2013-09-14 10:49 . 2013-09-14 10:49 110592 ----a-w- c:\windows\system32\IEAdvpack.dll
2013-09-08 06:14 . 2013-09-08 06:14 286568 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\sx_p8_pro7_p.dll
2013-08-02 01:50 . 2013-09-11 14:25 169984 ----a-w- c:\windows\system32\winsrv.dll
2013-08-02 01:49 . 2013-09-11 14:25 293376 ----a-w- c:\windows\system32\KernelBase.dll
2013-08-02 01:48 . 2013-09-11 14:25 5120 ---ha-w- c:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 4608 ---ha-w- c:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 4096 ---ha-w- c:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 4096 ---ha-w- c:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 4096 ---ha-w- c:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 3584 ---ha-w- c:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 3584 ---ha-w- c:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 3584 ---ha-w- c:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 3584 ---ha-w- c:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 3584 ---ha-w- c:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 3584 ---ha-w- c:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 3072 ---ha-w- c:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 3072 ---ha-w- c:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 3072 ---ha-w- c:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 3072 ---ha-w- c:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 3072 ---ha-w- c:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 3072 ---ha-w- c:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 3072 ---ha-w- c:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 3072 ---ha-w- c:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 3072 ---ha-w- c:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 3072 ---ha-w- c:\windows\system32\api-ms-win-core-date.........e-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 14:25 3072 ---ha-w- c:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-08-02 00:52 . 2013-09-11 14:25 271360 ----a-w- c:\windows\system32\conhost.exe
2013-08-02 00:43 . 2013-09-11 14:25 6144 ---ha-w- c:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-08-02 00:43 . 2013-09-11 14:25 4608 ---ha-w- c:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-08-02 00:43 . 2013-09-11 14:25 3584 ---ha-w- c:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-08-02 00:43 . 2013-09-11 14:25 3072 ---ha-w- c:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-07-25 08:57 . 2013-08-25 07:00 1620992 ----a-w- c:\windows\system32\WMVDECOD.DLL
.
.
(((((((((((((((((((((((((((( Autostartpunkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legi.........e Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\~\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}]
2013-04-30 16:55 280736 ----a-w- c:\program files\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 130736 ----a-w- c:\users\*******\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 130736 ----a-w- c:\users\*******\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 130736 ----a-w- c:\users\*******\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AVP"="c:\program files\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe" [2013-10-10 356128]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-05-11 958576]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-04-21 59720]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2013-10-01 152392]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"Duden Korrektor SysTray"="c:\program files\Duden\Duden Korrektor\DKTray.exe" [2010-10-04 336560]
.
c:\users\.........\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE /tsr [2009-2-26 97680]
.
c:\users\*******\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\*******\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2013-5-25 27776968]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux2"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk /p \??\F:\0autocheck autochk *
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Haneke Software - AutoUpdate (C:
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Haneke Software - AutoUpdate (C:\HERA-SD
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe"
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
.
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [2013-02-28 161384]
R3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\program files\Common Files\MAGIX Services\Database\bin\fbserver.exe [2008-08-07 3276800]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 14848]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2012-08-23 49664]
R3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\Wat\WatAdminSvc.exe [2010-04-29 1343400]
S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys [2012-08-02 24408]
S1 kltdi;kltdi;c:\windows\system32\DRIVERS\kltdi.sys [2013-06-19 44000]
S1 kneps;kneps;c:\windows\system32\DRIVERS\kneps.sys [2013-05-13 145040]
S2 AAV UpdateService;AAV UpdateService;c:\program files\Akademische Arbeitsgemeinschaft\AAVUpdateManager\aavus.exe [2008-10-24 128296]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2010-04-07 172032]
S2 Fabs;FABS - Helping agent for MAGIX media database;c:\program files\Common Files\MAGIX Services\Database\bin\FABS.exe [2009-02-03 1155072]
S2 Garmin Core Update Service;Garmin Core Update Service;c:\program files\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [2013-07-22 219480]
S2 Secunia PSI Agent;Secunia PSI Agent;c:\program files\Secunia\PSI\PSIA.exe [2012-09-24 1328736]
S2 Secunia Update Agent;Secunia Update Agent;c:\program files\Secunia\PSI\sua.exe [2012-09-24 656480]
S2 SProtection;SProtection;c:\program files\Common Files\Umbrella\umbrella.exe [2013-08-02 2864448]
S2 WajamUpdater;WajamUpdater;c:\program files\Wajam\Updater\WajamUpdater.exe [2013-02-07 109064]
S3 klkbdflt;Kaspersky Lab KLKBDFLT;c:\windows\system32\DRIVERS\klkbdflt.sys [2013-10-10 25696]
S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys [2013-10-10 25696]
S3 PSI;PSI;c:\windows\system32\DRIVERS\psi_mf.sys [2011-12-16 15544]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856]
S3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\DRIVERS\RTL8192su.sys [2010-11-25 603240]
S3 SXDS10;soft Xpansion Dispatch Service;c:\program files\Common Files\soft Xpansion\sxds10.exe \Service [x]
S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys [2009-12-22 30392]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
WindowsMobile REG_MULTI_SZ wcescomm rapimgr
LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr
.
Inhalt des "geplante Tasks" Ordners
.
2013-10-20 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-20 05:32]
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = hxxp://www.google.de/
uInternet Settings,ProxyOverride = *.local
IE: Free YouTube Download - c:\program files\Common Files\DVDVideoSoft\plugins\freeytvdownloader.htm
IE: Free YouTube to MP3 Converter - c:\users\*******\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
IE: {{0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - hxxp://rover.ebay.com/rover/1/707-37276-17534-31/4
IE: {{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - c:\program files\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll
TCP: DhcpNameServer = 192.168.178.1
DPF: Garmin Communicator Plug-In - hxxps://static.garmincdn.com/gcp/ie/4.0.4.0/GarminAxControl_32.CAB
FF - ProfilePath - c:\users\*******\AppData\Roaming\Mozilla\Firefox\Profiles\sa63r7yj.default\
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
URLSearchHooks-{0027da2d-c9f2-4b0b-ae05-e2cd1bdb6cff} - (no file)
Toolbar-Locked - (no file)
WebBrowser-{0027DA2D-C9F2-4B0B-AE05-E2CD1BDB6CFF} - (no file)
SafeBoot-BsScanner
MSConfigStartUp-) - c:\hera-sd\AutoUpdate.exe
AddRemove-Campbell aktiv! - c:\windows\IsUn0407.exe
AddRemove-Mediothek Biologie 1 - c:\windows\IsUn0407.exe
AddRemove-Natura Aufgabensammlung 1 - c:\windows\unin0407.exe
AddRemove-The Print Shop Premier Edition 5.0 - c:\windows\unin0407.exe
.
.
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_USERS\S-1-5-21-2040739403-2952388629-1273809138-1000\Software\SecuROM\License information*]
"datasecu"=hex:fc,a5,e5,36,16,e0,0b,f9,bb,25,e4,10,69,fa,d2,e1,51,3a,46,8c,d4,
3c,f2,8c,77,82,22,97,0b,7c,32,47,68,ae,e8,57,ce,34,62,4f,fb,e3,56,d3,5b,d0,\
"rkeysecu"=hex:96,6a,d5,c9,80,11,eb,ab,b7,1e,f4,42,19,c2,ec,ee
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Zeit der Fertigstellung: 2013-10-20 22:41:27
ComboFix-quarantined-files.txt 2013-10-20 20:41
.
Vor Suchlauf: 11 Verzeichnis(se), 825.231.171.584 Bytes frei
Nach Suchlauf: 16 Verzeichnis(se), 825.110.687.744 Bytes frei
.
- - End Of File - - 8B67B0399BAFAC2534D1A8115F8CDBA1
8BCB23B30DB1819E7D8DDAE01AEBB583 Ich habe den Rechner noch nicht neu gestartet, werde dies aber nun durchführen.
Viele Dank und viele Grüße
Dibelgo |