![]() |
|
Log-Analyse und Auswertung: Trojaner, Malware Löschungs Prüfung nach delta search über DDS+Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 | ||
| ![]() Trojaner, Malware Löschungs Prüfung nach delta search über DDS+ Guten Tag, ich habe mir irgendwie den delta search Toolbar, der sich auf mein Google Chrome Browser besetzt hat, auf mein Computer unbewusst installiert etc. Habe es nach dieser Reinfolge "behoben", doch möchte euch mein LOG Posten um es mit eurer Hilfe wirklich auszuschließen das ich noch Trojaner, Malware etc unbewusst habe,. Säuberungs Reinfolge: 1 Deinstallation 2 AdwCleaner 3 Temporäre Dateien löschen mit TFC 4 Scan mit DDS+ Informationen über mein System: Windows 7 Ultimate 64x Google Chrome als Hauptbrowser ( IE gelöscht ) AdwCleaner installiert sowie Kaspersky Antivirus 2011 ( mit allen Aktuellen updates ) Mein LOG-File aus DDS+ ausgeführt über Attache! DDS+ LOG FILE: DDS Logfile: DDS Logfile: Code:
ATTFilter DDS (Ver_2012-11-20.01) - NTFS_AMD64 Internet Explorer: Run by RSR at 13:49:53 on 2013-03-31 Microsoft Windows 7 Ultimate 6.1.7601.1.1252.49.1031.18.8069.5661 [GMT 2:00] . AV: Lavasoft Ad-Aware *Disabled/Updated* {E0D97DD4-42BA-B3F2-A5A7-22E9ACE81FC7} AV: Kaspersky Anti-Virus *Enabled/Updated* {2EAA32A5-1EE1-1B22-95DA-337730C6E984} SP: Kaspersky Anti-Virus *Enabled/Updated* {95CBD341-38DB-14AC-AF6A-08054B41A339} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} SP: Lavasoft Ad-Aware *Disabled/Updated* {5BB89C30-6480-BC7C-9F17-199BD76F557A} FW: Lavasoft Ad-Aware *Disabled* {D8E2FCF1-08D5-B2AA-8EF8-8BDC523B58BC} . ============== Running Processes =============== . C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\system32\atiesrxx.exe C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\atieclxx.exe C:\Windows\system32\svchost.exe -k NetworkService C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE C:\Windows\system32\WLANExt.exe C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe C:\Windows\SysWOW64\brsvc01a.exe C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.08\AsusFanControlService.exe C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe C:\Program Files\ASUS\ROG GameFirst II\spd.exe C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe C:\Program Files\Intel\iCLS Client\HeciServer.exe C:\Windows\system32\IProsetMonitor.exe C:\Windows\SysWOW64\brss01a.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe C:\Windows\system32\taskhost.exe C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedul2.exe C:\Windows\system32\svchost.exe -k imgsvc C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\system32\taskeng.exe C:\Program Files (x86)\Google\Update\1.3.21.135\GoogleCrashHandler.exe C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ Power Control\PowerControlHelp.exe C:\Program Files (x86)\ASUS\ASUS ROG Connect Plus\RC TweakIt Server\AsBCLK.exe C:\Program Files (x86)\ASUS\AI Suite II\Wi-Fi GO!\AssistTools\WiFi GO! Server.exe C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe C:\Windows\system32\svchost.exe -k bthsvcs C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Program Files (x86)\Google\Update\1.3.21.135\GoogleCrashHandler64.exe C:\Windows\System32\rundll32.exe C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.EXE C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr64.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Program Files\ASUS\ROG GameFirst II\cfosspeed.exe C:\Windows\System32\igfxpers.exe C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe F:\Kies\External\FirmwareUpdate\KiesPDLR.exe C:\Users\RSR\AppData\Local\Apps\2.0\KNHYN9AB.25W\GGHYG954.4L0\frit..tion_8488884cfbcefd60_0002.0003_f406d43803d5433d\fritzbox-usb-fernanschluss.exe C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe C:\Program Files (x86)\ASUS\ASUS ROG Connect Plus\GPU TweakIt Server\GPUTweakit.exe C:\Windows\system32\SearchIndexer.exe C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe C:\Windows\system32\wbem\unsecapp.exe C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\PROGRA~2\AD-AWA~1\AdAware.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe C:\Program Files (x86)\ASUS\AI Suite II\EPU\EPUHelp.exe C:\Windows\system32\wbem\unsecapp.exe C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe C:\Program Files (x86)\ASUS\AI Suite II\Wi-Fi GO!\AsDLNAServerReal.exe C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe C:\Windows\system32\sppsvc.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe C:\Windows\system32\wuauclt.exe C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\System32\cscript.exe . ============== Pseudo HJT Report =============== . uStart Page = hxxp://securesearch.lavasoft.com/?source=f439e2c0&tbp=homepage&toolbarid=adawaretb&v=2_5&u=4B20A05D6006F8073F366A51571C4D0C mStart Page = about:blank uURLSearchHooks: Ad-Aware Security Add-on: {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\adawaretb\adawareDx.dll mWinlogon: Userinit = userinit.exe BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll BHO: IEVkbdBHO Class: {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\ievkbd.dll BHO: Ad-Aware Security Add-on: {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\adawaretb\adawareDx.dll BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL BHO: FilterBHO Class: {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll TB: Ad-Aware Security Add-on: {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\adawaretb\adawareDx.dll uRun: [AVMUSBFernanschluss] "C:\Users\RSR\AppData\Local\Apps\2.0\KNHYN9AB.25W\GGHYG954.4L0\frit..tion_8488884cfbcefd60_0002.0003_f406d43803d5433d\AVMAutoStart.exe" uRun: [] F:\Kies\External\FirmwareUpdate\KiesPDLR.exe mRun: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" mRun: [ASUS AiChargerPlus Execute] C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun mRun: [GPU TweakIt Server Execute] "C:\Program Files (x86)\ASUS\ASUS ROG Connect Plus\GPU TweakIt Server\GPUTweakit.exe" mRun: [AVP] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe" mRun: [Ad-Aware Browsing Protection] "C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe" mRun: [Ad-Aware Antivirus] "C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareLauncher" --windows-run dRunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"hxxp://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 mPolicies-Explorer: NoActiveDesktopChanges = dword:1 mPolicies-Explorer: NoDriveTypeAutoRun = dword:60 mPolicies-System: ConsentPromptBehaviorAdmin = dword:5 mPolicies-System: ConsentPromptBehaviorUser = dword:3 mPolicies-System: EnableUIADesktopToggle = dword:0 IE: An OneNote s&enden - C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105 IE: Bild an &Bluetooth-Gerät senden... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm IE: Nach Microsoft E&xcel exportieren - C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000 IE: Seite an &Bluetooth-Gerät senden... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll IE: {4248FE82-7FCB-46AC-B270-339F08212110} - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm IE: {CCF151D8-D089-449F-A5A4-D9909053F20F} - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll TCP: NameServer = 192.168.178.1 TCP: Interfaces\{9D181D5A-BF67-424D-8988-FA3B9EB3286E} : DHCPNameServer = 192.168.178.1 Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL SSODL: WebCheck - <orphaned> LSA: Notification Packages = scecli C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.43\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome x64-mStart Page = about:blank x64-BHO: IEVkbdBHO Class: {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\x64\ievkbd.dll x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL x64-BHO: FilterBHO Class: {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\x64\klwtbbho.dll x64-Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s x64-Run: [RtHDVBg_DTS] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /DTSU2P x64-Run: [Broadcom Wireless Manager UI] C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.exe x64-Run: [ROG GameFirst II] C:\Program Files\ASUS\ROG GameFirst II\cFosSpeed.exe x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll x64-IE: {4248FE82-7FCB-46AC-B270-339F08212110} - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\x64\klwtbbho.dll x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll x64-IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm x64-IE: {CCF151D8-D089-449F-A5A4-D9909053F20F} - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\x64\klwtbbho.dll x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL x64-Notify: igfxcui - igfxdev.dll x64-Notify: klogon - C:\Windows\System32\klogon.dll x64-SSODL: WebCheck - <orphaned> . ============= SERVICES / DRIVERS =============== . R0 asahci64;asahci64;C:\Windows\System32\drivers\asahci64.sys [2012-1-6 49760] R0 gfibto;gfibto;C:\Windows\System32\drivers\gfibto.sys [2013-3-30 14456] R0 iusb3hcs;Intel(R) USB 3.0 Hostcontroller-Switchtreiber;C:\Windows\System32\drivers\iusb3hcs.sys [2013-3-29 19224] R0 vididr;Acronis Virtual Disk;C:\Windows\System32\drivers\vididr.sys [2013-3-29 210016] R0 vidsflt53;Acronis Disk Storage Filter (53);C:\Windows\System32\drivers\vsflt53.sys [2013-3-29 141920] R1 kl2;kl2;C:\Windows\System32\drivers\kl2.sys [2010-6-9 11864] R1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;C:\Windows\System32\drivers\klim6.sys [2010-4-22 27736] R2 Ad-Aware Service;Ad-Aware Service;C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe [2013-3-18 1236336] R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2012-12-19 240640] R2 asComSvc;ASUS Com Service;C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [2013-3-29 920736] R2 asHmComSvc;ASUS HM Com Service;C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [2013-3-29 951936] R2 AsSysCtrlService;ASUS System Control Service;C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [2013-3-29 149120] R2 AsusFanControlService;AsusFanControlService;C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.08\AsusFanControlService.exe [2013-3-29 324608] R2 AVP;Kaspersky Anti-Virus Service;C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe [2011-4-25 365336] R2 DTSAudioSvc;DTSAudioSvc;C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe [2013-3-29 233328] R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-3-29 13592] R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-4-20 635104] R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service;C:\Windows\System32\IPROSetMonitor.exe [2012-7-27 170824] R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe [2013-3-29 166720] R2 SBAMSvc;Ad-Aware;C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe [2012-9-20 3677000] R2 SgtSch2Svc;Seagate Scheduler2 Service;C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedul2.exe [2011-6-30 1191896] R2 UNS;Intel(R) Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2013-3-29 365376] R3 asmthub3;ASMedia USB3 Hub Service;C:\Windows\System32\drivers\asmthub3.sys [2011-11-3 130536] R3 asmtxhci;ASMEDIA XHCI Service;C:\Windows\System32\drivers\asmtxhci.sys [2011-11-3 395752] R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\Windows\System32\drivers\AtihdW76.sys [2012-11-6 96256] R3 avmaura;AVM USB-Fernanschluss;C:\Windows\System32\drivers\avmaura.sys [2013-3-30 116480] R3 bcbtums;Bluetooth RAM Firmware Download USB Filter;C:\Windows\System32\drivers\bcbtums.sys [2013-3-29 134696] R3 BcmVWL;Broadcom Virtual Wireless;C:\Windows\System32\drivers\bcmvwl64.sys [2013-3-29 21568] R3 btwampfl;btwampfl Bluetooth filter driver;C:\Windows\System32\drivers\btwampfl.sys [2013-3-29 620584] R3 BTWDPAN;Bluetooth Personal Area Network;C:\Windows\System32\drivers\btwdpan.sys [2013-3-29 89640] R3 btwl2cap;Bluetooth L2CAP Service;C:\Windows\System32\drivers\btwl2cap.sys [2013-3-29 39976] R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2013-3-29 160768] R3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT);C:\Windows\System32\drivers\ICCWDT.sys [2013-3-29 26136] R3 IntcDAud;Intel(R) Display-Audio;C:\Windows\System32\drivers\IntcDAud.sys [2013-3-29 331264] R3 iusb3hub;Intel(R) USB 3.0-Hubtreiber;C:\Windows\System32\drivers\iusb3hub.sys [2013-3-29 356632] R3 iusb3xhc;Intel(R) USB 3.0 eXtensible-Hostcontrollertreiber;C:\Windows\System32\drivers\iusb3xhc.sys [2013-3-29 789272] R3 klmouflt;Kaspersky Lab KLMOUFLT;C:\Windows\System32\drivers\klmouflt.sys [2009-11-2 22544] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-7-9 104912] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-7-9 123856] S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);C:\Windows\System32\drivers\ssudbus.sys [2013-3-30 102936] S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2013-3-29 20992] S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);C:\Windows\System32\drivers\ssudmdm.sys [2013-3-30 203544] S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2013-3-30 59392] . =============== Created Last 30 ================ . 2013-03-30 17:53:44 -------- d-----w- C:\Program Files\CCleaner 2013-03-30 17:32:36 -------- d-----w- C:\Windows\System32\appmgmt 2013-03-30 17:13:14 -------- d-----w- C:\Users\RSR\AppData\Roaming\LavasoftStatistics 2013-03-30 17:13:14 -------- d-----w- C:\ProgramData\Ad-Aware Antivirus 2013-03-30 17:08:37 -------- d-----w- C:\Program Files (x86)\Common Files\Wise Installation Wizard 2013-03-30 17:08:28 47496 ----a-w- C:\Windows\System32\sbbd.exe 2013-03-30 17:08:28 14456 ----a-w- C:\Windows\System32\drivers\gfibto.sys 2013-03-30 17:08:27 -------- d-----w- C:\Users\RSR\AppData\Roaming\Ad-Aware Antivirus 2013-03-30 11:40:57 -------- d-----w- C:\ProgramData\FanXpert2 2013-03-30 10:28:31 -------- d-----w- C:\Users\RSR\AppData\Local\AVM_Berlin 2013-03-30 10:27:19 -------- d-----w- C:\Windows\SysWow64\searchplugins 2013-03-30 10:27:19 -------- d-----w- C:\Windows\SysWow64\Extensions 2013-03-30 10:26:44 -------- d-----w- C:\Users\RSR\AppData\Roaming\Babylon 2013-03-30 10:26:44 -------- d-----w- C:\ProgramData\Babylon 2013-03-30 10:26:01 564824 ----a-w- C:\Windows\System32\drivers\sptd.sys 2013-03-30 10:25:47 -------- d-----w- C:\Users\RSR\AppData\Roaming\DAEMON Tools Lite 2013-03-30 10:25:46 -------- d-----w- C:\Users\RSR\AppData\Roaming\OpenCandy 2013-03-30 10:24:19 -------- d-----w- C:\ProgramData\DAEMON Tools Lite 2013-03-30 10:18:15 -------- d-----w- C:\Program Files (x86)\MarkAny 2013-03-30 10:17:45 -------- d-----w- C:\Users\RSR\AppData\Local\Samsung 2013-03-30 10:17:44 -------- d-----w- C:\Users\RSR\AppData\Roaming\Samsung 2013-03-30 10:15:51 203544 ----a-w- C:\Windows\System32\drivers\ssudmdm.sys 2013-03-30 10:15:51 102936 ----a-w- C:\Windows\System32\drivers\ssudbus.sys 2013-03-30 10:13:11 4659712 ----a-w- C:\Windows\SysWow64\Redemption.dll 2013-03-30 10:13:05 821824 ----a-w- C:\Windows\SysWow64\dgderapi.dll 2013-03-30 10:12:58 -------- d-----w- C:\ProgramData\Samsung 2013-03-30 10:12:07 -------- d-----w- C:\Users\RSR\AppData\Local\Downloaded Installations 2013-03-30 09:33:30 -------- d-----w- C:\Windows\pss 2013-03-30 09:24:54 15088 ----a-w- C:\Users\RSR\AppData\Roaming\Microsoft\IdentityCRL\Production\ppcrlconfig.dll 2013-03-30 09:12:59 -------- d-----w- C:\Program Files (x86)\MSECache 2013-03-30 08:53:27 -------- d-----w- C:\Windows\System32\SPReview 2013-03-30 08:53:18 -------- d-----w- C:\Windows\System32\EventProviders 2013-03-30 08:36:57 116480 ----a-w- C:\Windows\System32\drivers\avmaura.sys 2013-03-30 08:36:42 -------- d-----w- C:\Users\RSR\AppData\Local\Deployment 2013-03-30 08:36:42 -------- d-----w- C:\Users\RSR\AppData\Local\Apps 2013-03-29 16:42:43 -------- d-----w- C:\Windows\PCHEALTH 2013-03-29 16:40:01 -------- d-----w- C:\Program Files (x86)\Microsoft Analysis Services 2013-03-29 16:39:45 -------- d-----w- C:\Users\RSR\AppData\Local\Microsoft Help 2013-03-29 14:29:32 9728 ----a-w- C:\Windows\System32\Wdfres.dll 2013-03-29 14:29:32 785512 ----a-w- C:\Windows\System32\drivers\Wdf01000.sys 2013-03-29 14:29:32 54376 ----a-w- C:\Windows\System32\drivers\WdfLdr.sys 2013-03-29 14:29:32 2560 ----a-w- C:\Windows\System32\drivers\de-DE\wdf01000.sys.mui 2013-03-29 14:24:16 294912 ----a-w- C:\Windows\System32\browserchoice.exe 2013-03-29 14:23:52 273840 ------w- C:\Windows\System32\MpSigStub.exe 2013-03-29 14:17:04 9311288 ------w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{10D82720-735A-4E64-BAAE-D42586D6B0B8}\mpengine.dll 2013-03-29 14:15:44 81408 ----a-w- C:\Windows\System32\imagehlp.dll 2013-03-29 14:15:44 5120 ----a-w- C:\Windows\SysWow64\wmi.dll 2013-03-29 14:15:44 5120 ----a-w- C:\Windows\System32\wmi.dll 2013-03-29 14:15:44 23408 ----a-w- C:\Windows\System32\drivers\fs_rec.sys 2013-03-29 14:15:44 159232 ----a-w- C:\Windows\SysWow64\imagehlp.dll 2013-03-29 14:14:13 2871808 ----a-w- C:\Windows\explorer.exe 2013-03-29 14:14:13 2616320 ----a-w- C:\Windows\SysWow64\explorer.exe 2013-03-29 14:12:29 760320 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VGX\VGX.dll 2013-03-29 14:11:22 976896 ----a-w- C:\Windows\System32\inetcomm.dll 2013-03-29 14:10:16 690688 ----a-w- C:\Windows\SysWow64\msvcrt.dll 2013-03-29 14:10:16 634880 ----a-w- C:\Windows\System32\msvcrt.dll 2013-03-29 14:08:45 826880 ----a-w- C:\Windows\SysWow64\rdpcore.dll 2013-03-29 14:08:45 23552 ----a-w- C:\Windows\System32\drivers\tdtcp.sys 2013-03-29 14:08:45 1031680 ----a-w- C:\Windows\System32\rdpcore.dll 2013-03-29 14:07:27 2622464 ----a-w- C:\Windows\System32\wucltux.dll 2013-03-29 14:07:26 99840 ----a-w- C:\Windows\System32\wudriver.dll 2013-03-29 14:07:26 36864 ----a-w- C:\Windows\System32\wuapp.exe 2013-03-29 14:07:26 186752 ----a-w- C:\Windows\System32\wuwebv.dll 2013-03-29 13:54:01 -------- d-----w- C:\ProgramData\Kaspersky Lab 2013-03-29 13:54:01 -------- d-----w- C:\Program Files (x86)\Kaspersky Lab 2013-03-29 13:52:20 -------- d-----w- C:\Program Files\CPUID 2013-03-29 13:51:38 -------- d-----w- C:\Users\RSR\AppData\Roaming\ASUS WebStorage 2013-03-29 13:51:35 -------- d-----w- C:\ProgramData\ASUS WebStorage 2013-03-29 13:48:03 1671552 ----a-r- C:\Windows\System32\drivers\cfosspeed6.sys 2013-03-29 13:47:46 -------- d-----w- C:\Users\RSR\AppData\Local\cFos 2013-03-29 13:47:44 -------- d-----w- C:\ProgramData\cFos 2013-03-29 13:47:40 680960 ----a-r- C:\Windows\SysWow64\ROGThemeSetup.exe 2013-03-29 13:47:38 2868224 ----a-w- C:\Windows\explorer.exe.rogbak 2013-03-29 13:47:36 -------- d---a-w- C:\Windows\SysWow64\ROG_Video Intro dir 2013-03-29 13:41:10 -------- d-----w- C:\Users\RSR\AppData\Roaming\Seagate 2013-03-29 13:39:40 -------- d-----w- C:\Users\RSR\AppData\Local\ATI 2013-03-29 13:39:35 0 ----a-w- C:\Windows\ativpsrm.bin 2013-03-29 13:38:43 -------- d-----w- C:\ProgramData\AMD 2013-03-29 13:38:43 -------- d-----w- C:\Program Files (x86)\AMD AVT 2013-03-29 13:38:42 -------- d-----w- C:\Program Files\Common Files\ATI Technologies 2013-03-29 13:38:42 -------- d-----w- C:\Program Files (x86)\Common Files\ATI Technologies 2013-03-29 13:38:42 -------- d-----w- C:\Program Files (x86)\AMD APP 2013-03-29 13:38:36 -------- d-----w- C:\Program Files (x86)\ATI Technologies 2013-03-29 13:38:00 -------- d-----w- C:\Program Files\ATI 2013-03-29 13:37:29 -------- d-----w- C:\Program Files\ATI Technologies 2013-03-29 13:36:15 -------- d-----w- C:\AMD 2013-03-29 13:36:05 -------- d-----w- C:\ProgramData\Seagate 2013-03-29 13:36:04 971360 ----a-w- C:\Windows\System32\drivers\timntr.sys 2013-03-29 13:36:03 275552 ----a-w- C:\Windows\System32\drivers\snapman.sys 2013-03-29 13:36:03 210016 ----a-w- C:\Windows\System32\drivers\vididr.sys 2013-03-29 13:36:03 141920 ----a-w- C:\Windows\System32\drivers\vsflt53.sys 2013-03-29 13:36:02 -------- d-----w- C:\Program Files (x86)\Seagate 2013-03-29 13:36:02 -------- d-----w- C:\Program Files (x86)\Common Files\Seagate 2013-03-29 13:31:48 1048576 ----a-w- C:\Windows\PE_Rom.dll 2013-03-29 13:31:28 -------- d-----w- C:\ProgramData\ASUS OC Profiles 2013-03-29 13:31:26 -------- d-----w- C:\ProgramData\ASUS PowerControl Profiles 2013-03-29 13:29:10 46152 ----a-w- C:\Windows\SysWow64\drivers\ASUSFILTER.sys 2013-03-29 13:28:11 14464 ----a-w- C:\Windows\SysWow64\drivers\AsUpIO.sys 2013-03-29 13:28:06 14848 ----a-w- C:\Windows\SysWow64\drivers\AiChargerPlus.sys 2013-03-29 13:28:02 192512 ----a-w- C:\Windows\SysWow64\drivers\UpdateHelper.dll 2013-03-29 13:26:59 -------- d-----w- C:\Program Files (x86)\Common Files\Intel Corporation 2013-03-29 13:26:00 -------- d-----w- C:\Users\RSR\AppData\Roaming\Intel Corporation 2013-03-29 13:23:33 -------- d-----w- C:\Program Files (x86)\ASUS 2013-03-29 13:23:07 -------- d-----w- C:\Program Files (x86)\ASM106xSATA 2013-03-29 13:22:38 568600 ----a-w- C:\Windows\System32\drivers\iaStor.sys 2013-03-29 13:17:50 -------- d-----w- C:\Program Files (x86)\Cisco 2013-03-29 13:16:37 -------- d-----w- C:\Users\RSR\AppData\Local\Broadcom 2013-03-29 13:16:35 21568 ----a-w- C:\Windows\System32\drivers\bcmvwl64.sys 2013-03-29 13:15:54 620584 ----a-w- C:\Windows\System32\drivers\btwampfl.sys 2013-03-29 13:14:07 89640 ----a-w- C:\Windows\System32\drivers\btwdpan.sys 2013-03-29 13:14:07 39976 ----a-w- C:\Windows\System32\drivers\btwl2cap.sys 2013-03-29 13:14:07 21544 ----a-w- C:\Windows\System32\drivers\btwrchid.sys 2013-03-29 13:14:07 178728 ----a-w- C:\Windows\System32\drivers\btwavdt.sys 2013-03-29 13:14:07 167976 ----a-w- C:\Windows\System32\drivers\btwaudio.sys 2013-03-29 13:14:07 134696 ----a-w- C:\Windows\System32\drivers\bcbtums.sys 2013-03-29 13:13:56 -------- d-----w- C:\Program Files\WIDCOMM 2013-03-29 13:10:24 -------- d-----w- C:\Program Files (x86)\ASM104xUSB3 2013-03-29 13:10:16 19224 ----a-w- C:\Windows\System32\drivers\iusb3hcs.sys 2013-03-29 13:10:10 789272 ----a-w- C:\Windows\System32\drivers\iusb3xhc.sys 2013-03-29 13:10:10 356632 ----a-w- C:\Windows\System32\drivers\iusb3hub.sys 2013-03-29 13:10:05 -------- d-----w- C:\Temp 2013-03-29 13:09:58 15168 ----a-w- C:\Windows\System32\drivers\IntelMEFWVer.dll 2013-03-29 13:09:04 -------- d-----w- C:\Program Files (x86)\Common Files\postureAgent 2013-03-29 13:09:01 62784 ----a-w- C:\Windows\System32\drivers\HECIx64.sys 2013-03-29 13:08:43 538496 ----a-r- C:\Windows\System32\PROUnstl.exe 2013-03-29 13:08:10 73032 ----a-w- C:\Windows\System32\e1cmsg.dll 2013-03-29 13:08:10 482128 ----a-w- C:\Windows\System32\drivers\e1c62x64.sys 2013-03-29 13:08:10 36472 ----a-w- C:\Windows\System32\NicCo36.dll 2013-03-29 13:08:09 101224 ----a-w- C:\Windows\System32\NicInstC.dll 2013-03-29 13:05:25 -------- d-----w- C:\Windows\SysWow64\RTCOM 2013-03-29 13:05:25 -------- d-----w- C:\Program Files\Realtek 2013-03-29 13:02:38 53248 ----a-r- C:\Windows\SysWow64\CSVer.dll 2013-03-29 13:02:31 -------- d-----w- C:\Intel 2013-03-29 13:02:28 -------- d-----w- C:\Program Files\ASUS 2013-03-29 13:00:49 -------- d-----w- C:\Windows\AsusInstAll 2013-03-29 13:00:48 296320 ----a-w- C:\Windows\System32\drivers\volsnap.sys 2013-03-29 13:00:35 -------- d-sh--w- C:\Windows\Installer 2013-03-29 13:00:34 -------- d-----w- C:\Users\RSR\AppData\Local\Google 2013-03-29 12:46:35 -------- d-----w- C:\Windows\Panther . ==================== Find3M ==================== . 2013-03-30 09:01:55 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll 2013-03-30 09:01:54 175616 ----a-w- C:\Windows\System32\msclmd.dll 2013-03-29 13:16:49 73728 ----a-w- C:\Windows\System32\wltrynt.dll 2013-03-29 13:16:47 445 ----a-w- C:\Windows\System32\vcredist_x64.bat 2013-03-29 13:16:47 35344 ----a-w- C:\Windows\System32\drivers\npf.sys 2013-03-29 13:16:47 3161088 ----a-w- C:\Windows\System32\vcredist_x64.exe 2013-03-29 13:16:45 4658688 ----a-w- C:\Windows\System32\bcmttls.dll 2013-03-29 13:16:44 4961800 ----a-w- C:\Windows\SysWow64\vcredist_x64.exe 2013-03-29 13:16:44 22592 ----a-w- C:\Windows\System32\drivers\bcm42rly.sys 2013-03-29 13:16:44 1047552 ----a-w- C:\Windows\System32\BCMLogon.dll 2013-03-29 13:16:43 446 ----a-w- C:\Windows\SysWow64\vcredist_x64.bat 2013-03-29 13:16:41 6656 ----a-w- C:\Windows\System32\bcmwlrc.dll 2013-03-29 13:10:49 95544 ----a-w- C:\Windows\System32\bcmwlcoi.dll 2013-03-29 13:10:49 4746816 ----a-w- C:\Windows\System32\drivers\BCMWL664.SYS 2013-03-29 13:10:48 3952128 ----a-w- C:\Windows\System32\bcmihvsrv64.dll 2013-03-29 13:10:48 3617280 ----a-w- C:\Windows\System32\bcmihvui64.dll 2013-03-29 10:11:40 26136 ----a-w- C:\Windows\System32\drivers\ICCWDT.sys 2013-03-29 10:11:37 28672 ----a-w- C:\Windows\SysWow64\AsIO.dll 2013-03-29 10:11:37 15232 ----a-w- C:\Windows\SysWow64\drivers\AsIO.sys 2013-03-29 10:11:36 929844 ------w- C:\Windows\SysWow64\drivers\MFDLL\MFC42D.DLL 2013-03-29 10:11:36 385100 ------w- C:\Windows\SysWow64\drivers\MFDLL\MSVCRTD.DLL 2013-03-29 10:11:36 343040 ------w- C:\Windows\SysWow64\drivers\MFDLL\msvcrt.dll 2013-03-29 10:11:36 11832 ------w- C:\Windows\SysWow64\drivers\AsInsHelp64.sys 2013-03-29 10:11:36 1028096 ------w- C:\Windows\SysWow64\drivers\MFDLL\MFC42.DLL 2013-03-29 10:11:36 10216 ------w- C:\Windows\SysWow64\drivers\AsInsHelp32.sys 2013-02-12 04:12:05 19968 ----a-w- C:\Windows\System32\drivers\usb8023.sys 2013-01-05 05:53:43 5553512 ----a-w- C:\Windows\System32\ntoskrnl.exe 2013-01-05 05:00:15 3967848 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe 2013-01-05 05:00:11 3913064 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe 2013-01-04 05:46:09 215040 ----a-w- C:\Windows\System32\winsrv.dll 2013-01-04 04:51:16 5120 ----a-w- C:\Windows\SysWow64\wow32.dll 2013-01-04 04:43:21 44032 ----a-w- C:\Windows\apppatch\acwow64.dll 2013-01-04 03:26:48 3153408 ----a-w- C:\Windows\System32\win32k.sys 2013-01-04 02:47:35 25600 ----a-w- C:\Windows\SysWow64\setup16.exe 2013-01-04 02:47:34 7680 ----a-w- C:\Windows\SysWow64\instnm.exe 2013-01-04 02:47:34 2048 ----a-w- C:\Windows\SysWow64\user.exe 2013-01-04 02:47:33 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll 2013-01-03 06:00:54 1913192 ----a-w- C:\Windows\System32\drivers\tcpip.sys 2013-01-03 06:00:42 288088 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS . ============= FINISH: 13:50:13,37 =============== --- --- --- --- --- --- ATTACH LOG-FILE 2: Zitat:
Mban-log: Zitat:
|
Themen zu Trojaner, Malware Löschungs Prüfung nach delta search über DDS+ |
aktuelle, antivirus, bewusst, browser, computer, cpu-z, dateien, device driver, error, failed, folge, gelöscht, google, guten, hilfe!, kaspersky, log, log-file, löschen, malware, outlook 2010, scan, system, temporäre, trojaner, unbewusst, updates, vcredist |