![]() |
| |||||||
Log-Analyse und Auswertung: Trojaner, Malware Löschungs Prüfung nach delta search über DDS+Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
| | #1 | ||
| | Trojaner, Malware Löschungs Prüfung nach delta search über DDS+ Guten Tag, ich habe mir irgendwie den delta search Toolbar, der sich auf mein Google Chrome Browser besetzt hat, auf mein Computer unbewusst installiert etc. Habe es nach dieser Reinfolge "behoben", doch möchte euch mein LOG Posten um es mit eurer Hilfe wirklich auszuschließen das ich noch Trojaner, Malware etc unbewusst habe,. Säuberungs Reinfolge: 1 Deinstallation 2 AdwCleaner 3 Temporäre Dateien löschen mit TFC 4 Scan mit DDS+ Informationen über mein System: Windows 7 Ultimate 64x Google Chrome als Hauptbrowser ( IE gelöscht ) AdwCleaner installiert sowie Kaspersky Antivirus 2011 ( mit allen Aktuellen updates ) Mein LOG-File aus DDS+ ausgeführt über Attache! DDS+ LOG FILE: DDS Logfile: DDS Logfile: Code:
ATTFilter DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer:
Run by RSR at 13:49:53 on 2013-03-31
Microsoft Windows 7 Ultimate 6.1.7601.1.1252.49.1031.18.8069.5661 [GMT 2:00]
.
AV: Lavasoft Ad-Aware *Disabled/Updated* {E0D97DD4-42BA-B3F2-A5A7-22E9ACE81FC7}
AV: Kaspersky Anti-Virus *Enabled/Updated* {2EAA32A5-1EE1-1B22-95DA-337730C6E984}
SP: Kaspersky Anti-Virus *Enabled/Updated* {95CBD341-38DB-14AC-AF6A-08054B41A339}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Lavasoft Ad-Aware *Disabled/Updated* {5BB89C30-6480-BC7C-9F17-199BD76F557A}
FW: Lavasoft Ad-Aware *Disabled* {D8E2FCF1-08D5-B2AA-8EF8-8BDC523B58BC}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\atieclxx.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE
C:\Windows\system32\WLANExt.exe
C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe
C:\Windows\SysWOW64\brsvc01a.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.08\AsusFanControlService.exe
C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe
C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
C:\Program Files\ASUS\ROG GameFirst II\spd.exe
C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe
C:\Program Files\Intel\iCLS Client\HeciServer.exe
C:\Windows\system32\IProsetMonitor.exe
C:\Windows\SysWOW64\brss01a.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
C:\Windows\system32\taskhost.exe
C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedul2.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files (x86)\Google\Update\1.3.21.135\GoogleCrashHandler.exe
C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ Power Control\PowerControlHelp.exe
C:\Program Files (x86)\ASUS\ASUS ROG Connect Plus\RC TweakIt Server\AsBCLK.exe
C:\Program Files (x86)\ASUS\AI Suite II\Wi-Fi GO!\AssistTools\WiFi GO! Server.exe
C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files (x86)\Google\Update\1.3.21.135\GoogleCrashHandler64.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.EXE
C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe
C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr64.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\ASUS\ROG GameFirst II\cfosspeed.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
F:\Kies\External\FirmwareUpdate\KiesPDLR.exe
C:\Users\RSR\AppData\Local\Apps\2.0\KNHYN9AB.25W\GGHYG954.4L0\frit..tion_8488884cfbcefd60_0002.0003_f406d43803d5433d\fritzbox-usb-fernanschluss.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files (x86)\ASUS\ASUS ROG Connect Plus\GPU TweakIt Server\GPUTweakit.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\PROGRA~2\AD-AWA~1\AdAware.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe
C:\Program Files (x86)\ASUS\AI Suite II\EPU\EPUHelp.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe
C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe
C:\Program Files (x86)\ASUS\AI Suite II\Wi-Fi GO!\AsDLNAServerReal.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Windows\system32\sppsvc.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://securesearch.lavasoft.com/?source=f439e2c0&tbp=homepage&toolbarid=adawaretb&v=2_5&u=4B20A05D6006F8073F366A51571C4D0C
mStart Page = about:blank
uURLSearchHooks: Ad-Aware Security Add-on: {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\adawaretb\adawareDx.dll
mWinlogon: Userinit = userinit.exe
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: IEVkbdBHO Class: {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\ievkbd.dll
BHO: Ad-Aware Security Add-on: {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\adawaretb\adawareDx.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL
BHO: FilterBHO Class: {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll
TB: Ad-Aware Security Add-on: {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\adawaretb\adawareDx.dll
uRun: [AVMUSBFernanschluss] "C:\Users\RSR\AppData\Local\Apps\2.0\KNHYN9AB.25W\GGHYG954.4L0\frit..tion_8488884cfbcefd60_0002.0003_f406d43803d5433d\AVMAutoStart.exe"
uRun: [] F:\Kies\External\FirmwareUpdate\KiesPDLR.exe
mRun: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
mRun: [ASUS AiChargerPlus Execute] C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun: [GPU TweakIt Server Execute] "C:\Program Files (x86)\ASUS\ASUS ROG Connect Plus\GPU TweakIt Server\GPUTweakit.exe"
mRun: [AVP] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe"
mRun: [Ad-Aware Browsing Protection] "C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe"
mRun: [Ad-Aware Antivirus] "C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareLauncher" --windows-run
dRunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"hxxp://go.microsoft.com/fwlink/?LinkID=122915" /build:7601
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:60
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: An OneNote s&enden - C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
IE: Bild an &Bluetooth-Gerät senden... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Nach Microsoft E&xcel exportieren - C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
IE: Seite an &Bluetooth-Gerät senden... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
IE: {4248FE82-7FCB-46AC-B270-339F08212110} - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: {CCF151D8-D089-449F-A5A4-D9909053F20F} - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll
TCP: NameServer = 192.168.178.1
TCP: Interfaces\{9D181D5A-BF67-424D-8988-FA3B9EB3286E} : DHCPNameServer = 192.168.178.1
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
SSODL: WebCheck - <orphaned>
LSA: Notification Packages = scecli C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.43\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
x64-mStart Page = about:blank
x64-BHO: IEVkbdBHO Class: {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\x64\ievkbd.dll
x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL
x64-BHO: FilterBHO Class: {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\x64\klwtbbho.dll
x64-Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s
x64-Run: [RtHDVBg_DTS] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /DTSU2P
x64-Run: [Broadcom Wireless Manager UI] C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.exe
x64-Run: [ROG GameFirst II] C:\Program Files\ASUS\ROG GameFirst II\cFosSpeed.exe
x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
x64-IE: {4248FE82-7FCB-46AC-B270-339F08212110} - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\x64\klwtbbho.dll
x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
x64-IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
x64-IE: {CCF151D8-D089-449F-A5A4-D9909053F20F} - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\x64\klwtbbho.dll
x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
x64-Notify: igfxcui - igfxdev.dll
x64-Notify: klogon - C:\Windows\System32\klogon.dll
x64-SSODL: WebCheck - <orphaned>
.
============= SERVICES / DRIVERS ===============
.
R0 asahci64;asahci64;C:\Windows\System32\drivers\asahci64.sys [2012-1-6 49760]
R0 gfibto;gfibto;C:\Windows\System32\drivers\gfibto.sys [2013-3-30 14456]
R0 iusb3hcs;Intel(R) USB 3.0 Hostcontroller-Switchtreiber;C:\Windows\System32\drivers\iusb3hcs.sys [2013-3-29 19224]
R0 vididr;Acronis Virtual Disk;C:\Windows\System32\drivers\vididr.sys [2013-3-29 210016]
R0 vidsflt53;Acronis Disk Storage Filter (53);C:\Windows\System32\drivers\vsflt53.sys [2013-3-29 141920]
R1 kl2;kl2;C:\Windows\System32\drivers\kl2.sys [2010-6-9 11864]
R1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;C:\Windows\System32\drivers\klim6.sys [2010-4-22 27736]
R2 Ad-Aware Service;Ad-Aware Service;C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe [2013-3-18 1236336]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2012-12-19 240640]
R2 asComSvc;ASUS Com Service;C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [2013-3-29 920736]
R2 asHmComSvc;ASUS HM Com Service;C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [2013-3-29 951936]
R2 AsSysCtrlService;ASUS System Control Service;C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [2013-3-29 149120]
R2 AsusFanControlService;AsusFanControlService;C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.08\AsusFanControlService.exe [2013-3-29 324608]
R2 AVP;Kaspersky Anti-Virus Service;C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe [2011-4-25 365336]
R2 DTSAudioSvc;DTSAudioSvc;C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe [2013-3-29 233328]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-3-29 13592]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-4-20 635104]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service;C:\Windows\System32\IPROSetMonitor.exe [2012-7-27 170824]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe [2013-3-29 166720]
R2 SBAMSvc;Ad-Aware;C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe [2012-9-20 3677000]
R2 SgtSch2Svc;Seagate Scheduler2 Service;C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedul2.exe [2011-6-30 1191896]
R2 UNS;Intel(R) Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2013-3-29 365376]
R3 asmthub3;ASMedia USB3 Hub Service;C:\Windows\System32\drivers\asmthub3.sys [2011-11-3 130536]
R3 asmtxhci;ASMEDIA XHCI Service;C:\Windows\System32\drivers\asmtxhci.sys [2011-11-3 395752]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\Windows\System32\drivers\AtihdW76.sys [2012-11-6 96256]
R3 avmaura;AVM USB-Fernanschluss;C:\Windows\System32\drivers\avmaura.sys [2013-3-30 116480]
R3 bcbtums;Bluetooth RAM Firmware Download USB Filter;C:\Windows\System32\drivers\bcbtums.sys [2013-3-29 134696]
R3 BcmVWL;Broadcom Virtual Wireless;C:\Windows\System32\drivers\bcmvwl64.sys [2013-3-29 21568]
R3 btwampfl;btwampfl Bluetooth filter driver;C:\Windows\System32\drivers\btwampfl.sys [2013-3-29 620584]
R3 BTWDPAN;Bluetooth Personal Area Network;C:\Windows\System32\drivers\btwdpan.sys [2013-3-29 89640]
R3 btwl2cap;Bluetooth L2CAP Service;C:\Windows\System32\drivers\btwl2cap.sys [2013-3-29 39976]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2013-3-29 160768]
R3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT);C:\Windows\System32\drivers\ICCWDT.sys [2013-3-29 26136]
R3 IntcDAud;Intel(R) Display-Audio;C:\Windows\System32\drivers\IntcDAud.sys [2013-3-29 331264]
R3 iusb3hub;Intel(R) USB 3.0-Hubtreiber;C:\Windows\System32\drivers\iusb3hub.sys [2013-3-29 356632]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible-Hostcontrollertreiber;C:\Windows\System32\drivers\iusb3xhc.sys [2013-3-29 789272]
R3 klmouflt;Kaspersky Lab KLMOUFLT;C:\Windows\System32\drivers\klmouflt.sys [2009-11-2 22544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-7-9 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-7-9 123856]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);C:\Windows\System32\drivers\ssudbus.sys [2013-3-30 102936]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2013-3-29 20992]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);C:\Windows\System32\drivers\ssudmdm.sys [2013-3-30 203544]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2013-3-30 59392]
.
=============== Created Last 30 ================
.
2013-03-30 17:53:44 -------- d-----w- C:\Program Files\CCleaner
2013-03-30 17:32:36 -------- d-----w- C:\Windows\System32\appmgmt
2013-03-30 17:13:14 -------- d-----w- C:\Users\RSR\AppData\Roaming\LavasoftStatistics
2013-03-30 17:13:14 -------- d-----w- C:\ProgramData\Ad-Aware Antivirus
2013-03-30 17:08:37 -------- d-----w- C:\Program Files (x86)\Common Files\Wise Installation Wizard
2013-03-30 17:08:28 47496 ----a-w- C:\Windows\System32\sbbd.exe
2013-03-30 17:08:28 14456 ----a-w- C:\Windows\System32\drivers\gfibto.sys
2013-03-30 17:08:27 -------- d-----w- C:\Users\RSR\AppData\Roaming\Ad-Aware Antivirus
2013-03-30 11:40:57 -------- d-----w- C:\ProgramData\FanXpert2
2013-03-30 10:28:31 -------- d-----w- C:\Users\RSR\AppData\Local\AVM_Berlin
2013-03-30 10:27:19 -------- d-----w- C:\Windows\SysWow64\searchplugins
2013-03-30 10:27:19 -------- d-----w- C:\Windows\SysWow64\Extensions
2013-03-30 10:26:44 -------- d-----w- C:\Users\RSR\AppData\Roaming\Babylon
2013-03-30 10:26:44 -------- d-----w- C:\ProgramData\Babylon
2013-03-30 10:26:01 564824 ----a-w- C:\Windows\System32\drivers\sptd.sys
2013-03-30 10:25:47 -------- d-----w- C:\Users\RSR\AppData\Roaming\DAEMON Tools Lite
2013-03-30 10:25:46 -------- d-----w- C:\Users\RSR\AppData\Roaming\OpenCandy
2013-03-30 10:24:19 -------- d-----w- C:\ProgramData\DAEMON Tools Lite
2013-03-30 10:18:15 -------- d-----w- C:\Program Files (x86)\MarkAny
2013-03-30 10:17:45 -------- d-----w- C:\Users\RSR\AppData\Local\Samsung
2013-03-30 10:17:44 -------- d-----w- C:\Users\RSR\AppData\Roaming\Samsung
2013-03-30 10:15:51 203544 ----a-w- C:\Windows\System32\drivers\ssudmdm.sys
2013-03-30 10:15:51 102936 ----a-w- C:\Windows\System32\drivers\ssudbus.sys
2013-03-30 10:13:11 4659712 ----a-w- C:\Windows\SysWow64\Redemption.dll
2013-03-30 10:13:05 821824 ----a-w- C:\Windows\SysWow64\dgderapi.dll
2013-03-30 10:12:58 -------- d-----w- C:\ProgramData\Samsung
2013-03-30 10:12:07 -------- d-----w- C:\Users\RSR\AppData\Local\Downloaded Installations
2013-03-30 09:33:30 -------- d-----w- C:\Windows\pss
2013-03-30 09:24:54 15088 ----a-w- C:\Users\RSR\AppData\Roaming\Microsoft\IdentityCRL\Production\ppcrlconfig.dll
2013-03-30 09:12:59 -------- d-----w- C:\Program Files (x86)\MSECache
2013-03-30 08:53:27 -------- d-----w- C:\Windows\System32\SPReview
2013-03-30 08:53:18 -------- d-----w- C:\Windows\System32\EventProviders
2013-03-30 08:36:57 116480 ----a-w- C:\Windows\System32\drivers\avmaura.sys
2013-03-30 08:36:42 -------- d-----w- C:\Users\RSR\AppData\Local\Deployment
2013-03-30 08:36:42 -------- d-----w- C:\Users\RSR\AppData\Local\Apps
2013-03-29 16:42:43 -------- d-----w- C:\Windows\PCHEALTH
2013-03-29 16:40:01 -------- d-----w- C:\Program Files (x86)\Microsoft Analysis Services
2013-03-29 16:39:45 -------- d-----w- C:\Users\RSR\AppData\Local\Microsoft Help
2013-03-29 14:29:32 9728 ----a-w- C:\Windows\System32\Wdfres.dll
2013-03-29 14:29:32 785512 ----a-w- C:\Windows\System32\drivers\Wdf01000.sys
2013-03-29 14:29:32 54376 ----a-w- C:\Windows\System32\drivers\WdfLdr.sys
2013-03-29 14:29:32 2560 ----a-w- C:\Windows\System32\drivers\de-DE\wdf01000.sys.mui
2013-03-29 14:24:16 294912 ----a-w- C:\Windows\System32\browserchoice.exe
2013-03-29 14:23:52 273840 ------w- C:\Windows\System32\MpSigStub.exe
2013-03-29 14:17:04 9311288 ------w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{10D82720-735A-4E64-BAAE-D42586D6B0B8}\mpengine.dll
2013-03-29 14:15:44 81408 ----a-w- C:\Windows\System32\imagehlp.dll
2013-03-29 14:15:44 5120 ----a-w- C:\Windows\SysWow64\wmi.dll
2013-03-29 14:15:44 5120 ----a-w- C:\Windows\System32\wmi.dll
2013-03-29 14:15:44 23408 ----a-w- C:\Windows\System32\drivers\fs_rec.sys
2013-03-29 14:15:44 159232 ----a-w- C:\Windows\SysWow64\imagehlp.dll
2013-03-29 14:14:13 2871808 ----a-w- C:\Windows\explorer.exe
2013-03-29 14:14:13 2616320 ----a-w- C:\Windows\SysWow64\explorer.exe
2013-03-29 14:12:29 760320 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VGX\VGX.dll
2013-03-29 14:11:22 976896 ----a-w- C:\Windows\System32\inetcomm.dll
2013-03-29 14:10:16 690688 ----a-w- C:\Windows\SysWow64\msvcrt.dll
2013-03-29 14:10:16 634880 ----a-w- C:\Windows\System32\msvcrt.dll
2013-03-29 14:08:45 826880 ----a-w- C:\Windows\SysWow64\rdpcore.dll
2013-03-29 14:08:45 23552 ----a-w- C:\Windows\System32\drivers\tdtcp.sys
2013-03-29 14:08:45 1031680 ----a-w- C:\Windows\System32\rdpcore.dll
2013-03-29 14:07:27 2622464 ----a-w- C:\Windows\System32\wucltux.dll
2013-03-29 14:07:26 99840 ----a-w- C:\Windows\System32\wudriver.dll
2013-03-29 14:07:26 36864 ----a-w- C:\Windows\System32\wuapp.exe
2013-03-29 14:07:26 186752 ----a-w- C:\Windows\System32\wuwebv.dll
2013-03-29 13:54:01 -------- d-----w- C:\ProgramData\Kaspersky Lab
2013-03-29 13:54:01 -------- d-----w- C:\Program Files (x86)\Kaspersky Lab
2013-03-29 13:52:20 -------- d-----w- C:\Program Files\CPUID
2013-03-29 13:51:38 -------- d-----w- C:\Users\RSR\AppData\Roaming\ASUS WebStorage
2013-03-29 13:51:35 -------- d-----w- C:\ProgramData\ASUS WebStorage
2013-03-29 13:48:03 1671552 ----a-r- C:\Windows\System32\drivers\cfosspeed6.sys
2013-03-29 13:47:46 -------- d-----w- C:\Users\RSR\AppData\Local\cFos
2013-03-29 13:47:44 -------- d-----w- C:\ProgramData\cFos
2013-03-29 13:47:40 680960 ----a-r- C:\Windows\SysWow64\ROGThemeSetup.exe
2013-03-29 13:47:38 2868224 ----a-w- C:\Windows\explorer.exe.rogbak
2013-03-29 13:47:36 -------- d---a-w- C:\Windows\SysWow64\ROG_Video Intro dir
2013-03-29 13:41:10 -------- d-----w- C:\Users\RSR\AppData\Roaming\Seagate
2013-03-29 13:39:40 -------- d-----w- C:\Users\RSR\AppData\Local\ATI
2013-03-29 13:39:35 0 ----a-w- C:\Windows\ativpsrm.bin
2013-03-29 13:38:43 -------- d-----w- C:\ProgramData\AMD
2013-03-29 13:38:43 -------- d-----w- C:\Program Files (x86)\AMD AVT
2013-03-29 13:38:42 -------- d-----w- C:\Program Files\Common Files\ATI Technologies
2013-03-29 13:38:42 -------- d-----w- C:\Program Files (x86)\Common Files\ATI Technologies
2013-03-29 13:38:42 -------- d-----w- C:\Program Files (x86)\AMD APP
2013-03-29 13:38:36 -------- d-----w- C:\Program Files (x86)\ATI Technologies
2013-03-29 13:38:00 -------- d-----w- C:\Program Files\ATI
2013-03-29 13:37:29 -------- d-----w- C:\Program Files\ATI Technologies
2013-03-29 13:36:15 -------- d-----w- C:\AMD
2013-03-29 13:36:05 -------- d-----w- C:\ProgramData\Seagate
2013-03-29 13:36:04 971360 ----a-w- C:\Windows\System32\drivers\timntr.sys
2013-03-29 13:36:03 275552 ----a-w- C:\Windows\System32\drivers\snapman.sys
2013-03-29 13:36:03 210016 ----a-w- C:\Windows\System32\drivers\vididr.sys
2013-03-29 13:36:03 141920 ----a-w- C:\Windows\System32\drivers\vsflt53.sys
2013-03-29 13:36:02 -------- d-----w- C:\Program Files (x86)\Seagate
2013-03-29 13:36:02 -------- d-----w- C:\Program Files (x86)\Common Files\Seagate
2013-03-29 13:31:48 1048576 ----a-w- C:\Windows\PE_Rom.dll
2013-03-29 13:31:28 -------- d-----w- C:\ProgramData\ASUS OC Profiles
2013-03-29 13:31:26 -------- d-----w- C:\ProgramData\ASUS PowerControl Profiles
2013-03-29 13:29:10 46152 ----a-w- C:\Windows\SysWow64\drivers\ASUSFILTER.sys
2013-03-29 13:28:11 14464 ----a-w- C:\Windows\SysWow64\drivers\AsUpIO.sys
2013-03-29 13:28:06 14848 ----a-w- C:\Windows\SysWow64\drivers\AiChargerPlus.sys
2013-03-29 13:28:02 192512 ----a-w- C:\Windows\SysWow64\drivers\UpdateHelper.dll
2013-03-29 13:26:59 -------- d-----w- C:\Program Files (x86)\Common Files\Intel Corporation
2013-03-29 13:26:00 -------- d-----w- C:\Users\RSR\AppData\Roaming\Intel Corporation
2013-03-29 13:23:33 -------- d-----w- C:\Program Files (x86)\ASUS
2013-03-29 13:23:07 -------- d-----w- C:\Program Files (x86)\ASM106xSATA
2013-03-29 13:22:38 568600 ----a-w- C:\Windows\System32\drivers\iaStor.sys
2013-03-29 13:17:50 -------- d-----w- C:\Program Files (x86)\Cisco
2013-03-29 13:16:37 -------- d-----w- C:\Users\RSR\AppData\Local\Broadcom
2013-03-29 13:16:35 21568 ----a-w- C:\Windows\System32\drivers\bcmvwl64.sys
2013-03-29 13:15:54 620584 ----a-w- C:\Windows\System32\drivers\btwampfl.sys
2013-03-29 13:14:07 89640 ----a-w- C:\Windows\System32\drivers\btwdpan.sys
2013-03-29 13:14:07 39976 ----a-w- C:\Windows\System32\drivers\btwl2cap.sys
2013-03-29 13:14:07 21544 ----a-w- C:\Windows\System32\drivers\btwrchid.sys
2013-03-29 13:14:07 178728 ----a-w- C:\Windows\System32\drivers\btwavdt.sys
2013-03-29 13:14:07 167976 ----a-w- C:\Windows\System32\drivers\btwaudio.sys
2013-03-29 13:14:07 134696 ----a-w- C:\Windows\System32\drivers\bcbtums.sys
2013-03-29 13:13:56 -------- d-----w- C:\Program Files\WIDCOMM
2013-03-29 13:10:24 -------- d-----w- C:\Program Files (x86)\ASM104xUSB3
2013-03-29 13:10:16 19224 ----a-w- C:\Windows\System32\drivers\iusb3hcs.sys
2013-03-29 13:10:10 789272 ----a-w- C:\Windows\System32\drivers\iusb3xhc.sys
2013-03-29 13:10:10 356632 ----a-w- C:\Windows\System32\drivers\iusb3hub.sys
2013-03-29 13:10:05 -------- d-----w- C:\Temp
2013-03-29 13:09:58 15168 ----a-w- C:\Windows\System32\drivers\IntelMEFWVer.dll
2013-03-29 13:09:04 -------- d-----w- C:\Program Files (x86)\Common Files\postureAgent
2013-03-29 13:09:01 62784 ----a-w- C:\Windows\System32\drivers\HECIx64.sys
2013-03-29 13:08:43 538496 ----a-r- C:\Windows\System32\PROUnstl.exe
2013-03-29 13:08:10 73032 ----a-w- C:\Windows\System32\e1cmsg.dll
2013-03-29 13:08:10 482128 ----a-w- C:\Windows\System32\drivers\e1c62x64.sys
2013-03-29 13:08:10 36472 ----a-w- C:\Windows\System32\NicCo36.dll
2013-03-29 13:08:09 101224 ----a-w- C:\Windows\System32\NicInstC.dll
2013-03-29 13:05:25 -------- d-----w- C:\Windows\SysWow64\RTCOM
2013-03-29 13:05:25 -------- d-----w- C:\Program Files\Realtek
2013-03-29 13:02:38 53248 ----a-r- C:\Windows\SysWow64\CSVer.dll
2013-03-29 13:02:31 -------- d-----w- C:\Intel
2013-03-29 13:02:28 -------- d-----w- C:\Program Files\ASUS
2013-03-29 13:00:49 -------- d-----w- C:\Windows\AsusInstAll
2013-03-29 13:00:48 296320 ----a-w- C:\Windows\System32\drivers\volsnap.sys
2013-03-29 13:00:35 -------- d-sh--w- C:\Windows\Installer
2013-03-29 13:00:34 -------- d-----w- C:\Users\RSR\AppData\Local\Google
2013-03-29 12:46:35 -------- d-----w- C:\Windows\Panther
.
==================== Find3M ====================
.
2013-03-30 09:01:55 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll
2013-03-30 09:01:54 175616 ----a-w- C:\Windows\System32\msclmd.dll
2013-03-29 13:16:49 73728 ----a-w- C:\Windows\System32\wltrynt.dll
2013-03-29 13:16:47 445 ----a-w- C:\Windows\System32\vcredist_x64.bat
2013-03-29 13:16:47 35344 ----a-w- C:\Windows\System32\drivers\npf.sys
2013-03-29 13:16:47 3161088 ----a-w- C:\Windows\System32\vcredist_x64.exe
2013-03-29 13:16:45 4658688 ----a-w- C:\Windows\System32\bcmttls.dll
2013-03-29 13:16:44 4961800 ----a-w- C:\Windows\SysWow64\vcredist_x64.exe
2013-03-29 13:16:44 22592 ----a-w- C:\Windows\System32\drivers\bcm42rly.sys
2013-03-29 13:16:44 1047552 ----a-w- C:\Windows\System32\BCMLogon.dll
2013-03-29 13:16:43 446 ----a-w- C:\Windows\SysWow64\vcredist_x64.bat
2013-03-29 13:16:41 6656 ----a-w- C:\Windows\System32\bcmwlrc.dll
2013-03-29 13:10:49 95544 ----a-w- C:\Windows\System32\bcmwlcoi.dll
2013-03-29 13:10:49 4746816 ----a-w- C:\Windows\System32\drivers\BCMWL664.SYS
2013-03-29 13:10:48 3952128 ----a-w- C:\Windows\System32\bcmihvsrv64.dll
2013-03-29 13:10:48 3617280 ----a-w- C:\Windows\System32\bcmihvui64.dll
2013-03-29 10:11:40 26136 ----a-w- C:\Windows\System32\drivers\ICCWDT.sys
2013-03-29 10:11:37 28672 ----a-w- C:\Windows\SysWow64\AsIO.dll
2013-03-29 10:11:37 15232 ----a-w- C:\Windows\SysWow64\drivers\AsIO.sys
2013-03-29 10:11:36 929844 ------w- C:\Windows\SysWow64\drivers\MFDLL\MFC42D.DLL
2013-03-29 10:11:36 385100 ------w- C:\Windows\SysWow64\drivers\MFDLL\MSVCRTD.DLL
2013-03-29 10:11:36 343040 ------w- C:\Windows\SysWow64\drivers\MFDLL\msvcrt.dll
2013-03-29 10:11:36 11832 ------w- C:\Windows\SysWow64\drivers\AsInsHelp64.sys
2013-03-29 10:11:36 1028096 ------w- C:\Windows\SysWow64\drivers\MFDLL\MFC42.DLL
2013-03-29 10:11:36 10216 ------w- C:\Windows\SysWow64\drivers\AsInsHelp32.sys
2013-02-12 04:12:05 19968 ----a-w- C:\Windows\System32\drivers\usb8023.sys
2013-01-05 05:53:43 5553512 ----a-w- C:\Windows\System32\ntoskrnl.exe
2013-01-05 05:00:15 3967848 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2013-01-05 05:00:11 3913064 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2013-01-04 05:46:09 215040 ----a-w- C:\Windows\System32\winsrv.dll
2013-01-04 04:51:16 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
2013-01-04 04:43:21 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
2013-01-04 03:26:48 3153408 ----a-w- C:\Windows\System32\win32k.sys
2013-01-04 02:47:35 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2013-01-04 02:47:34 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2013-01-04 02:47:34 2048 ----a-w- C:\Windows\SysWow64\user.exe
2013-01-04 02:47:33 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2013-01-03 06:00:54 1913192 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2013-01-03 06:00:42 288088 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS
.
============= FINISH: 13:50:13,37 ===============
--- --- --- --- --- --- ATTACH LOG-FILE 2: Zitat:
Mban-log: Zitat:
|
| Themen zu Trojaner, Malware Löschungs Prüfung nach delta search über DDS+ |
| aktuelle, antivirus, bewusst, browser, computer, cpu-z, dateien, device driver, error, failed, folge, gelöscht, google, guten, hilfe!, kaspersky, log, log-file, löschen, malware, outlook 2010, scan, system, temporäre, trojaner, unbewusst, updates, vcredist |