cracksmack | 07.12.2013 13:45 | Code:
ComboFix 13-12-07.01 - Nico 07.12.2013 13:39:23.1.8 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.8154.5259 [GMT 1:00]
ausgeführt von:: c:\users\Nico\Downloads\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AV: Microsoft Security Essentials *Enabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Microsoft Security Essentials *Enabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((( Weitere Löschungen ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Nico\AppData\Local\Temp\10d2ca4a-28d7-4d81-8c1e-dc42bb6c83fc\CliSecureRT64.dll
.
.
((((((((((((((((((((((( Dateien erstellt von 2013-11-07 bis 2013-12-07 ))))))))))))))))))))))))))))))
.
.
2013-12-07 12:43 . 2013-12-07 12:43 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-12-06 21:34 . 2013-12-06 21:34 -------- d-----w- c:\program files (x86)\GameforgeLive
2013-12-06 11:37 . 2013-12-06 11:37 -------- d-----w- C:\FRST
2013-12-04 18:51 . 2013-12-04 18:51 -------- d-----w- c:\programdata\Aeria Games
2013-12-04 18:46 . 2013-12-04 18:46 -------- d-----w- c:\program files (x86)\Aeria Games
2013-12-04 17:46 . 2013-12-04 17:46 -------- d-----w- C:\gPotato.eu
2013-12-04 17:46 . 2013-12-04 18:46 -------- d-----w- C:\AeriaGames
2013-12-04 14:08 . 2013-12-04 14:08 -------- dc----w- c:\windows\system32\DRVSTORE
2013-12-04 14:08 . 2012-08-21 12:01 33240 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2013-12-04 14:08 . 2013-12-04 14:08 -------- d-----w- c:\programdata\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-12-04 14:08 . 2013-12-04 14:08 -------- d-----w- c:\program files\iTunes
2013-12-04 14:08 . 2013-12-04 14:08 -------- d-----w- c:\program files (x86)\iTunes
2013-12-04 14:08 . 2013-12-04 14:08 -------- d-----w- c:\programdata\Apple Computer
2013-12-04 14:08 . 2013-12-04 14:08 -------- d-----w- c:\program files\iPod
2013-12-04 14:07 . 2013-12-04 14:07 -------- d-----w- c:\program files (x86)\Apple Software Update
2013-12-04 14:07 . 2013-12-04 14:07 -------- d-----w- c:\program files\Common Files\Apple
2013-12-04 14:07 . 2013-12-04 14:07 -------- d-----w- c:\program files\Bonjour
2013-12-04 14:07 . 2013-12-04 14:07 -------- d-----w- c:\program files (x86)\Bonjour
2013-12-04 14:07 . 2013-12-04 14:08 -------- d-----w- c:\program files (x86)\Common Files\Apple
2013-12-04 14:07 . 2013-12-04 14:07 -------- d-----w- c:\programdata\Apple
2013-12-03 14:52 . 2013-10-30 17:03 39200 ----a-w- c:\windows\system32\drivers\nvvad64v.sys
2013-12-03 14:52 . 2013-10-30 17:02 32544 ----a-w- c:\windows\SysWow64\nvaudcap32v.dll
2013-12-03 12:33 . 2013-12-03 12:33 -------- d-----w- c:\programdata\Malwarebytes
2013-12-03 12:33 . 2013-12-03 12:33 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2013-12-03 12:33 . 2013-04-04 13:50 25928 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-12-03 12:27 . 2013-12-03 12:27 -------- d--h--w- c:\windows\msdownld.tmp
2013-12-03 12:26 . 2013-12-03 13:21 -------- d-----w- c:\program files (x86)\MSI Afterburner
2013-12-03 12:24 . 2013-11-08 03:12 10285968 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{55A42252-9F36-4A1A-9246-FB362BCC0225}\mpengine.dll
2013-12-02 14:58 . 2013-11-11 15:02 6674208 ----a-w- c:\windows\system32\nvcpl.dll
2013-12-02 14:58 . 2013-11-11 15:02 3490080 ----a-w- c:\windows\system32\nvsvc64.dll
2013-12-02 14:58 . 2013-11-11 15:01 922912 ----a-w- c:\windows\system32\nvvsvc.exe
2013-12-02 14:58 . 2013-11-11 15:01 63776 ----a-w- c:\windows\system32\nvshext.dll
2013-12-02 14:58 . 2013-11-11 15:01 2559776 ----a-w- c:\windows\system32\nvsvcr.dll
2013-12-02 14:58 . 2013-11-11 15:01 219424 ----a-w- c:\windows\system32\nvmctray.dll
2013-12-02 14:58 . 2013-11-11 15:01 3467927 ----a-w- c:\windows\system32\nvcoproc.bin
2013-12-02 14:09 . 2013-12-06 19:24 -------- d-----w- c:\program files (x86)\SpeedFan
2013-12-02 12:27 . 2013-12-02 12:27 -------- d-----w- c:\programdata\id Software
2013-11-29 23:52 . 2013-11-29 23:52 -------- d-----w- c:\program files (x86)\Battlelog Web Plugins
2013-11-29 23:51 . 2013-11-29 23:51 -------- d-----w- c:\programdata\EA Core
2013-11-29 23:51 . 2013-11-30 16:11 -------- d-----w- c:\programdata\EA Logs
2013-11-29 13:57 . 2013-11-29 13:57 -------- d-----w- c:\program files (x86)\MKJogo
2013-11-28 20:17 . 2013-11-28 20:17 -------- d--h--w- c:\program files (x86)\Common Files\EAInstaller
2013-11-26 20:55 . 2013-11-26 20:56 -------- d-----w- c:\program files (x86)\OpenOffice 4
2013-11-22 14:42 . 2013-11-29 16:56 1096480 ----a-w- c:\windows\system32\nvspcap64.dll
2013-11-22 14:42 . 2013-11-29 16:56 979744 ----a-w- c:\windows\SysWow64\nvspcap.dll
2013-11-22 14:41 . 2013-11-22 14:41 -------- d-----w- c:\program files (x86)\AGEIA Technologies
2013-11-22 14:37 . 2013-10-30 17:02 35104 ----a-w- c:\windows\system32\nvaudcap64v.dll
2013-11-22 14:36 . 2013-11-22 14:36 -------- d-----w- C:\NVIDIA
2013-11-22 14:32 . 2013-11-22 14:32 -------- d-----w- c:\programdata\Oracle
2013-11-22 14:32 . 2013-11-22 14:32 -------- d-----w- c:\program files (x86)\Common Files\Java
2013-11-22 14:32 . 2013-11-22 14:32 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-11-22 14:32 . 2013-11-22 14:32 -------- d-----w- c:\program files (x86)\Java
2013-11-19 14:28 . 2013-11-19 14:28 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2013-11-19 14:28 . 2013-11-19 14:28 -------- d-----w- c:\windows\system32\Macromed
2013-11-19 12:44 . 2013-11-19 12:46 205320 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2013-11-19 12:44 . 2013-11-19 12:46 65776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2013-11-19 12:41 . 2013-11-19 12:46 38984 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2013-11-19 12:41 . 2013-11-19 12:46 409832 ----a-w- c:\windows\system32\drivers\aswSP.sys
2013-11-19 12:41 . 2013-11-19 12:46 92544 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2013-11-19 12:41 . 2013-11-19 12:46 65264 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2013-11-19 12:41 . 2013-11-19 12:46 1032416 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-11-19 12:41 . 2013-11-19 12:46 84328 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-11-19 12:41 . 2013-11-19 12:46 334648 ----a-w- c:\windows\system32\aswBoot.exe
2013-11-19 12:40 . 2013-11-19 12:46 43152 ----a-w- c:\windows\avastSS.scr
2013-11-19 12:40 . 2012-10-30 22:50 227648 ----a-w- c:\windows\SysWow64\aswBoot.exe
2013-11-19 12:40 . 2013-11-19 12:44 -------- d-----w- c:\programdata\AVAST Software
2013-11-19 12:40 . 2013-11-19 12:40 -------- d-----w- c:\program files\AVAST Software
2013-11-16 18:35 . 2013-11-16 18:36 -------- d-----w- c:\program files (x86)\Origin Games
2013-11-16 18:33 . 2013-11-29 23:51 -------- d-----w- c:\programdata\Electronic Arts
2013-11-16 18:33 . 2013-11-16 18:36 -------- d-----w- c:\programdata\Origin
2013-11-16 18:33 . 2013-12-06 23:56 -------- d-----w- c:\program files (x86)\Origin
2013-11-16 12:05 . 2013-12-06 19:24 -------- d-----w- c:\program files (x86)\Common Files\Steam
2013-11-16 12:05 . 2013-12-06 20:51 -------- d-----w- c:\program files (x86)\Steam
2013-11-15 13:25 . 2013-11-15 13:25 -------- d-----w- c:\program files (x86)\GIGABYTE
2013-11-14 16:05 . 2013-12-06 21:06 290184 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2013-11-13 16:42 . 2013-12-06 21:06 290184 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2013-11-13 16:42 . 2013-12-06 20:54 290184 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2013-11-13 16:42 . 2013-11-13 16:42 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2013-11-13 14:44 . 2013-11-13 16:33 -------- d-----w- c:\program files (x86)\Ubisoft
2013-11-13 14:40 . 2013-10-14 17:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE
2013-11-13 14:37 . 2013-10-02 04:51 3584 ----a-w- c:\windows\system32\drivers\de-DE\tsusbflt.sys.mui
2013-11-13 14:34 . 2013-09-25 02:23 1030144 ----a-w- c:\windows\system32\TSWorkspace.dll
2013-11-13 14:34 . 2013-09-25 01:57 792576 ----a-w- c:\windows\SysWow64\TSWorkspace.dll
2013-11-13 12:42 . 2013-10-05 20:25 1474048 ----a-w- c:\windows\system32\crypt32.dll
2013-11-11 20:30 . 2013-12-06 16:54 -------- d-----w- c:\programdata\Hi-Rez Studios
2013-11-11 20:30 . 2013-12-06 16:54 -------- d-----w- c:\program files (x86)\Hi-Rez Studios
2013-11-11 07:59 . 2013-11-11 07:59 590112 ----a-w- c:\windows\SysWow64\nvStreaming.exe
2013-11-10 14:17 . 2013-11-10 14:17 -------- d-----w- c:\program files\WinRAR
2013-11-10 11:49 . 2013-11-10 11:49 -------- d-----w- c:\program files (x86)\Common Files\Skype
2013-11-10 11:49 . 2013-11-10 11:49 -------- d-----r- c:\program files (x86)\Skype
2013-11-10 11:49 . 2013-11-10 11:49 -------- d-----w- c:\programdata\Skype
2013-11-10 09:28 . 2013-11-10 09:28 -------- d-----w- c:\windows\SysWow64\Wat
2013-11-10 09:27 . 2013-11-10 09:28 -------- d-----w- c:\windows\system32\Wat
2013-11-09 21:55 . 2013-11-09 21:59 -------- d-----w- c:\program files (x86)\Common Files\Overwolf
2013-11-09 21:43 . 2013-11-09 21:43 -------- d-----w- c:\program files\TeamSpeak 3 Client
2013-11-09 21:42 . 2013-11-09 21:42 -------- d-----w- c:\program files (x86)\ROCCAT
2013-11-09 21:40 . 2013-11-09 21:40 -------- d-----w- c:\programdata\SteelSeries
2013-11-09 21:39 . 2013-11-09 21:39 -------- d-----w- c:\program files\SteelSeries
2013-11-09 20:48 . 2008-07-31 09:41 68616 ----a-w- c:\windows\SysWow64\XAPOFX1_1.dll
2013-11-09 20:48 . 2008-07-31 09:40 509448 ----a-w- c:\windows\SysWow64\XAudio2_2.dll
2013-11-09 20:48 . 2008-07-12 07:18 467984 ----a-w- c:\windows\SysWow64\d3dx10_39.dll
2013-11-09 20:48 . 2008-07-12 07:18 3851784 ----a-w- c:\windows\SysWow64\D3DX9_39.dll
2013-11-09 20:48 . 2008-07-12 07:18 1493528 ----a-w- c:\windows\SysWow64\D3DCompiler_39.dll
2013-11-09 20:47 . 2013-12-04 18:46 -------- d-sh--w- c:\windows\SysWow64\AI_RecycleBin
2013-11-09 20:47 . 2013-11-09 20:47 -------- d-----w- C:\Riot Games
2013-11-09 20:44 . 2013-11-09 20:51 -------- d-----w- c:\programdata\PMB Files
2013-11-09 20:44 . 2013-11-09 20:44 -------- d-----w- c:\program files (x86)\Pando Networks
2013-11-09 20:33 . 2012-01-27 09:39 16152 ----a-w- c:\windows\system32\drivers\iusb3hcs.sys
2013-11-09 20:32 . 2012-01-27 09:39 356120 ----a-w- c:\windows\system32\drivers\iusb3hub.sys
2013-11-09 20:32 . 2012-01-27 09:39 787736 ----a-w- c:\windows\system32\drivers\iusb3xhc.sys
2013-11-09 20:29 . 2011-12-06 23:55 53248 ----a-r- c:\windows\SysWow64\CSVer.dll
2013-11-09 20:29 . 2013-11-15 13:25 -------- d-----w- c:\program files (x86)\Intel
2013-11-09 20:29 . 2013-11-09 20:29 -------- d-----w- C:\Intel
2013-11-09 20:21 . 2013-11-09 20:21 -------- d-----w- C:\VIA_XHCI
2013-11-09 20:21 . 2012-01-20 04:39 205312 ----a-r- c:\windows\system32\drivers\ViaHub3.sys
2013-11-09 20:21 . 2012-01-20 04:39 254464 ----a-r- c:\windows\system32\drivers\xhcdrv.sys
2013-11-09 20:21 . 2009-07-14 06:21 1721576 ----a-w- c:\windows\system32\WdfCoInstaller01009.dll
2013-11-09 20:21 . 2009-07-14 06:21 1721576 ----a-r- c:\windows\system32\drivers\WdfCoInstaller01009.dll
2013-11-09 20:21 . 2013-11-09 20:21 -------- d-----w- c:\program files (x86)\VIA
2013-11-09 20:20 . 2013-11-09 21:42 -------- d-----w- c:\program files (x86)\Common Files\InstallShield
2013-11-09 20:12 . 2013-09-04 12:12 343040 ----a-w- c:\windows\system32\drivers\usbhub.sys
2013-11-09 20:12 . 2013-09-04 12:11 325120 ----a-w- c:\windows\system32\drivers\usbport.sys
2013-11-09 20:12 . 2013-09-04 12:11 99840 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2013-11-09 20:12 . 2013-09-04 12:11 52736 ----a-w- c:\windows\system32\drivers\usbehci.sys
2013-11-09 20:12 . 2013-09-04 12:11 30720 ----a-w- c:\windows\system32\drivers\usbuhci.sys
.
.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-11-14 11:56 . 2013-10-27 08:12 18293608 ----a-w- c:\windows\system32\nvwgf2umx.dll
2013-11-14 11:56 . 2013-10-27 08:12 1436528 ----a-w- c:\windows\system32\nvumdshimx.dll
2013-11-14 11:56 . 2013-10-27 08:12 18208624 ----a-w- c:\windows\system32\nvd3dumx.dll
2013-11-14 11:56 . 2013-10-27 08:12 15218504 ----a-w- c:\windows\SysWow64\nvd3dum.dll
2013-11-14 11:56 . 2013-10-27 08:12 3069608 ----a-w- c:\windows\system32\nvapi64.dll
2013-11-14 11:56 . 2013-10-27 08:12 2697248 ----a-w- c:\windows\SysWow64\nvapi.dll
2013-11-09 19:13 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2013-11-09 19:13 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2013-10-30 16:15 . 2013-10-30 16:15 140800 ----a-w- c:\windows\system32\drivers\SteelBus64.sys
2013-10-27 08:12 . 2013-10-27 08:12 31520 ----a-w- c:\windows\system32\nvhdap64.dll
2013-10-27 08:12 . 2013-10-27 08:12 196384 ----a-w- c:\windows\system32\drivers\nvhda64v.sys
2013-10-27 08:12 . 2013-10-27 08:12 1884448 ----a-w- c:\windows\system32\nvdispco6433165.dll
2013-10-27 08:12 . 2013-10-27 08:12 1511712 ----a-w- c:\windows\system32\nvdispgenco6433165.dll
2013-10-27 08:12 . 2013-10-27 08:12 1510176 ----a-w- c:\windows\system32\nvhdagenco64.dll
.
.
(((((((((((((((((((((((((((( Autostartpunkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"VSA"="c:\users\Nico\AppData\Roaming\Microsoft\VSA\9.0\VSA.exe" [2013-11-05 1915392]
"SteelSeries Engine"="c:\program files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe" [2013-11-05 242688]
"Akamai NetSession Interface"="c:\users\Nico\AppData\Local\Akamai\netsession_win.exe" [2013-06-05 4489472]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2013-11-19 3568312]
"USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2012-01-27 291608]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-07-02 254336]
"20131121"="c:\program files\AVAST Software\Avast\setup\emupdate\61df2c2e-68bd-4673-972d-2b9f0a7b5b20.exe" [2013-11-23 180184]
"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-09-13 59720]
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2013-11-01 152392]
"Aeria Ignite"="c:\program files (x86)\Aeria Games\Ignite\aeriaignite.exe" [2013-06-06 1925656]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [x]
R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x]
R3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 aswRvrt;avast! Revert; [x]
S0 aswVmm;avast! VM Monitor; [x]
S0 iusb3hcs;Intel(R) USB 3.0 Hostcontroller-Switchtreiber;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x]
S2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys;c:\windows\SYSNATIVE\drivers\aswFsBlk.sys [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x]
S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S3 busenum;SteelBusSvc;c:\windows\system32\DRIVERS\SteelBus64.sys;c:\windows\SYSNATIVE\DRIVERS\SteelBus64.sys [x]
S3 iusb3hub;Intel(R) USB 3.0-Hubtreiber;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x]
S3 iusb3xhc;Intel(R) USB 3.0 eXtensible-Hostcontrollertreiber;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x]
S3 KovaPlusFltr;ROCCAT Kova[+] Mouse;c:\windows\system32\drivers\KovaPlusFltr.sys;c:\windows\SYSNATIVE\drivers\KovaPlusFltr.sys [x]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys;c:\windows\SYSNATIVE\DRIVERS\L1C62x64.sys [x]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x]
S3 SAlphamHid;SteelHIDSvc;c:\windows\system32\DRIVERS\SAlpham64.sys;c:\windows\SYSNATIVE\DRIVERS\SAlpham64.sys [x]
S3 VUSB3HUB;VIA USB 3 Root Hub Service;c:\windows\system32\DRIVERS\ViaHub3.sys;c:\windows\SYSNATIVE\DRIVERS\ViaHub3.sys [x]
S3 xhcdrv;VIA USB eXtensible Host Controller Service;c:\windows\system32\DRIVERS\xhcdrv.sys;c:\windows\SYSNATIVE\DRIVERS\xhcdrv.sys [x]
.
.
--- Andere Dienste/Treiber im Speicher ---
.
*Deregistered* - NisDrv
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-12-05 12:58 1210320 ----a-w- c:\program files (x86)\Google\Chrome\Application\31.0.1650.63\Installer\chrmstp.exe
.
Inhalt des "geplante Tasks" Ordners
.
2013-12-07 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-11-19 14:28]
.
2013-12-07 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-11-09 18:46]
.
2013-12-07 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-11-09 18:46]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2013-11-19 12:46 326944 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"VIAxHCUtl"="c:\via_xhci\usb3Monitor.exe" [2011-07-12 331776]
"ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2013-11-29 1096480]
"Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-11-14 1028384]
"NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2013-11-29 2273056]
.
------- Zusätzlicher Suchlauf -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = *.local;<local>
Trusted Zone: aeriagames.com
TCP: DhcpNameServer = 192.168.2.1
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
Wow6432Node-HKCU-Run-Overwolf - c:\program files (x86)\Overwolf\Overwolf.exe
Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
.
.
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration]
@Denied: (2) (LocalSystem)
"Timestamp"=hex:d0,48,21,00,97,dd,ce,01
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (LocalSystem)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,51,f5,05,a3,40,e9,8f,45,88,f1,05,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,51,f5,05,a3,40,e9,8f,45,88,f1,05,\
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Zeit der Fertigstellung: 2013-12-07 13:44:46
ComboFix-quarantined-files.txt 2013-12-07 12:44
.
Vor Suchlauf: 13 Verzeichnis(se), 850.675.515.392 Bytes frei
Nach Suchlauf: 17 Verzeichnis(se), 851.266.633.728 Bytes frei
.
- - End Of File - - 2957EAAB1F5DA0A987EC9A1BAB4983FC
A36C5E4F47E84449FF07ED3517B43A31 |