Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.
Moin, bin neu hier und bin auf die Seite gestoßen, da hier ähnliche Probleme der User auftraten.
Leider kann ich nicht in die bestehenden Threads posten (evtl. sind diese geschlossen?!), daher versuche ich nun so mein Glück.
Chrome öffnet gefühlt mit jedem 10. Klick eine Spamseite mit Werbung obwohl ich überhaupt nicht auf sowas klicke. Das ist schon sehr nervig und ich weiß nicht wie ich es loswerden soll
Habe OTL.exe ausgeführt und hier sind die logfiles, hoffentlich kann mir jemand helfen, ich wäre sehr dankbar!!
Code:
ATTFilter
OTL Logfile:
Code:
ATTFilter
OTL Extras logfile created on: 18.04.2015 09:22:39 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Mitnik\Downloads
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17041)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
7,90 Gb Total Physical Memory | 5,04 Gb Available Physical Memory | 63,74% Memory free
15,80 Gb Paging File | 12,33 Gb Available in Paging File | 78,06% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 232,79 Gb Total Space | 9,60 Gb Free Space | 4,12% Space Free | Partition Type: NTFS
Drive E: | 465,75 Gb Total Space | 26,31 Gb Free Space | 5,65% Space Free | Partition Type: NTFS
Computer Name: MITNIK-PC | User Name: Mitnik | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
[HKEY_USERS\S-1-5-21-2332205044-1271837436-1391146079-1000\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- "C:\Program Files (x86)\Smart File Advisor\sfa.exe" /unknown "%1" (Filefacts.net)
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Bridge] -- E:\Photoshop\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- "C:\Program Files (x86)\Smart File Advisor\sfa.exe" /unknown "%1" (Filefacts.net)
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Bridge] -- E:\Photoshop\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{02AE3F61-30ED-408A-8338-00DC7D349C22}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{0A456532-E447-42C3-BDF4-91334BB9B8B7}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{1EEED9E7-0A1B-4030-BC07-4E1C6E38C1B1}" = lport=137 | protocol=17 | dir=in | app=system |
"{20CAB744-552B-4D6F-B7E8-B7EDDFEEC83F}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=c:\windows\system32\svchost.exe |
"{21E02BE7-D3E3-4E94-9E71-723650789806}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{30B0E6B0-6F44-4740-814F-CBEE1D2AD8C9}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{30E8D25D-BF6D-4CF2-BE82-6023A4B02DF4}" = rport=139 | protocol=6 | dir=out | app=system |
"{3734F51F-FDD7-4DB2-A796-E1E743CE2856}" = lport=445 | protocol=6 | dir=in | app=system |
"{38DCC429-0196-4E80-811E-E1D7E25111E3}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |
"{3B5AA056-007B-4638-B1CC-2EF6EF656005}" = lport=139 | protocol=6 | dir=in | app=system |
"{40A67E19-F597-4B44-B40F-10F9FCD8D14C}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{41578DA2-A3FE-427D-BCAC-12D81019627C}" = rport=138 | protocol=17 | dir=out | app=system |
"{43EBAD1A-8C97-4153-AD19-5A162C9D01E8}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{465C4190-7413-4E4A-8E7F-763D9C44E510}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{47A6621E-7FF6-4D27-99BB-6422D1B9DDD5}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{4B5B3F2F-4DE9-4E56-A82C-D5E4485D1B83}" = lport=47984 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{4BC95474-4C5A-4F3B-AC97-292CFB5C1253}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{57B834F2-A8D1-4C3A-9BB8-5D7CD3FBB38C}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{88986230-D31E-4C40-B103-79529DC4EA3E}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office15\outlook.exe |
"{8A99436F-54E4-44E1-9A8C-7CF7DF6829FF}" = lport=5432 | protocol=6 | dir=in | name=postgres |
"{8C097FA1-87CF-4981-ACF4-0DB0A11162C3}" = rport=445 | protocol=6 | dir=out | app=system |
"{9AB9A141-8A78-426E-9604-8687C56F795A}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{AD4EE98A-6DD5-49A8-8644-362520C4CBA0}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |
"{AE085562-7FCE-4942-9536-9CC9708A97FC}" = lport=138 | protocol=17 | dir=in | app=system |
"{B74C782D-2577-4188-917F-CAA9F18CEC01}" = rport=137 | protocol=17 | dir=out | app=system |
"{BD675AC9-DF51-4929-BE69-31C444B5EF40}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{C4166EC4-4D9C-4DF7-9565-567E09F41763}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{C94507FF-7A98-4DA6-9B68-9A1715CFB437}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{D21CE8B4-C5B5-4EEC-95B4-DDF463392C78}" = lport=2869 | protocol=6 | dir=in | app=system |
"{DEBF5ADF-425A-4400-8096-319AE2C3F6D6}" = rport=10243 | protocol=6 | dir=out | app=system |
"{F42C244E-72F4-4321-BE19-308AE7FB5233}" = lport=10243 | protocol=6 | dir=in | app=system |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{03E0231C-8E84-49C5-96A6-E34BCDA4BE17}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{0776E8F6-F6E0-43DD-8DBD-2763F367556F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{0E734DA3-6F13-480C-8C58-D7A47BBAFEBA}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{1C000A26-9CB3-49BC-9D4C-402BB9D24E71}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\lync.exe |
"{1F375AD7-B6F5-4155-A42D-5B874149CAA6}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{228C3A7B-C824-42CD-B3F1-1E12B02D1184}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{2683C0C0-48D7-4628-8AA5-48A25F7E5FDA}" = protocol=6 | dir=in | app=c:\program files (x86)\sony mobile\update engine\sony mobile update engine.exe |
"{287F26A4-73FE-4C66-A356-682AA07439DB}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{325CAAB1-7335-4973-B1CB-A8DF956CC9DC}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{3F98E5C3-01F0-4C7A-AB4A-FCD868601F08}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{4AA85778-3BCD-44F8-BEFE-4B28DFDE86A4}" = protocol=17 | dir=in | app=c:\users\mitnik\appdata\roaming\acestream\engine\ace_engine.exe |
"{50C94575-247A-4588-8559-7742024AF53B}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{517DC39D-A41F-43FB-8395-7D20D7C3B374}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{5C383555-2F01-4171-B526-9DCB2BD86429}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{61C5D1B2-DE67-45EC-BEA4-6DD930954369}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe |
"{63DD0AF0-0A37-4A8B-BA42-9ABCA0ABF706}" = protocol=6 | dir=out | app=system |
"{870A561A-CC1D-4C19-8AB1-8C61892C5E77}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 |
"{8F968AFD-9617-4D05-93C2-40E05F7DFED6}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\lync.exe |
"{9E79CDE0-4969-4C7F-9F19-28D4F1A4B86A}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{AAE38A7C-78F2-4AD2-BA0A-F5D6E0F3DD47}" = protocol=17 | dir=in | app=c:\program files (x86)\sony mobile\update engine\sony mobile update engine.exe |
"{B2720F4D-3157-4F6B-88B3-7EF064D1CF2E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{B30C5A88-DB82-4704-B309-96452690A4EA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{B7AC6F1A-BFBF-4634-94B9-748CC9D29F59}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{BDAF85D0-9939-48F6-AAB1-11C44F5CE0E2}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{CC233709-DEE4-4CB4-B165-92EE72E4730D}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{D7EC19C3-9A30-47A3-B9A1-F69C6234267A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{E3030322-3B7D-4E02-A958-39D1D7D8A877}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe |
"{E3E5E645-F6DC-4EE8-869E-DBBCF440F42F}" = protocol=6 | dir=in | app=c:\users\mitnik\appdata\roaming\acestream\engine\ace_engine.exe |
"{E5675537-557A-4E03-AE35-A0D0AB45EF7C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{E6BC2EF7-BA0B-4C61-B25D-1A7CA8FB0D82}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{E7283BD9-C5BB-413C-83F1-A6A97EA9D3B2}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{EC580750-93C7-4B07-8886-190C46F5454D}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{EEC2C5FD-482B-46C5-B263-3E20672E2E13}" = protocol=58 | dir=in | app=system |
"{FFB38BF0-8B19-4AD9-AEC2-FC2ABBE1EED6}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"TCP Query User{A5E5837F-BABF-4CDF-9B50-CF1B5D0EBF00}C:\program files (x86)\streamtorrent 1.0\streamtorrent.exe" = protocol=6 | dir=in | app=c:\program files (x86)\streamtorrent 1.0\streamtorrent.exe |
"TCP Query User{AD9F7D73-51BD-4608-ADB3-0D5E4544D45F}C:\program files (x86)\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe |
"UDP Query User{0481D902-74C3-4932-B287-3D11C1C63D3A}C:\program files (x86)\streamtorrent 1.0\streamtorrent.exe" = protocol=17 | dir=in | app=c:\program files (x86)\streamtorrent 1.0\streamtorrent.exe |
"UDP Query User{504069A7-D1FC-421D-B44F-D75E90E77AA4}C:\program files (x86)\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5100_series" = Canon MG5100 series MP Drivers
"{180500C1-57BB-3AA8-8E55-DCD5ECD16537}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{2DD71ACB-552D-402C-9529-7906ACB95C30}" = Adobe Photoshop Lightroom 5.3 64-bit
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{787136D2-F0F8-4625-AA3F-72D7795AC842}" = Apple Mobile Device Support
"{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90150000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2013
"{90150000-0015-0407-1000-0000000FF1CE}" = Microsoft Access MUI (German) 2013
"{90150000-0016-0407-1000-0000000FF1CE}" = Microsoft Excel MUI (German) 2013
"{90150000-0018-0407-1000-0000000FF1CE}" = Microsoft PowerPoint MUI (German) 2013
"{90150000-0019-0407-1000-0000000FF1CE}" = Microsoft Publisher MUI (German) 2013
"{90150000-001A-0407-1000-0000000FF1CE}" = Microsoft Outlook MUI (German) 2013
"{90150000-001B-0407-1000-0000000FF1CE}" = Microsoft Word MUI (German) 2013
"{90150000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Korrekturhilfen 2013 - Deutsch
"{90150000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - English
"{90150000-001F-040C-1000-0000000FF1CE}" = Outils de vérification linguistique 2013 de Microsoft Office*- Français
"{90150000-001F-0410-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - Italiano
"{90150000-002C-0407-1000-0000000FF1CE}" = Microsoft Office Proofing (German) 2013
"{90150000-0044-0407-1000-0000000FF1CE}" = Microsoft InfoPath MUI (German) 2013
"{90150000-006E-0407-1000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2013
"{90150000-0090-0407-1000-0000000FF1CE}" = Microsoft DCF MUI (German) 2013
"{90150000-00A1-0407-1000-0000000FF1CE}" = Microsoft OneNote MUI (German) 2013
"{90150000-00BA-0407-1000-0000000FF1CE}" = Microsoft Groove MUI (German) 2013
"{90150000-00C1-0000-1000-0000000FF1CE}" = Microsoft Office 32-bit Components 2013
"{90150000-00C1-0407-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (German) 2013
"{90150000-00E1-0407-1000-0000000FF1CE}" = Microsoft Office OSM MUI (German) 2013
"{90150000-00E2-0407-1000-0000000FF1CE}" = Microsoft Office OSM UX MUI (German) 2013
"{90150000-012B-0407-1000-0000000FF1CE}" = Microsoft Lync MUI (German) 2013
"{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031" = Microsoft .NET Framework 4.5.1 (Deutsch)
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
"{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA 3D Vision Treiber 344.65
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Systemsteuerung 344.65
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Grafiktreiber 344.65
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 2.1.5
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA 3D Vision Controller-Treiber 344.65
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX-Systemsoftware 9.14.0702
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 16.18.9
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService" = NVIDIA GeForce Experience Service
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA HD-Audiotreiber 1.3.32.1
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 16.18.9
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController" = SHIELD Wireless Controller Driver
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.27
"{C513739C-5F16-37B5-9ACF-99925FF1C1F3}" = Microsoft .NET Framework 4.5.1 (DEU)
"{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones
"0B624A43DD66DBF5CF3EDFA9741A364E688062A4" = Windows Driver Package - GoPro (WinUSB) Universal Serial Bus devices (03/07/2012 )
"CCleaner" = CCleaner
"jdownloader2" = JDownloader 2
"jdownloader2-1" = JDownloader 2
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU" = Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU
"Office15.PROPLUS" = Microsoft Office Professional Plus 2013
"Recuva" = Recuva
"VLC media player" = VLC media player
"WinRAR archiver" = WinRAR 5.00 (64-Bit)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{07B7CC6B-DC59-4497-8652-C1DEF6F8267A}" = Seagate DiscWizard
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{111EE7DF-FC45-40C7-98A7-753AC46B12FB}" = QuickTime 7
"{127BEFB3-24B2-4B44-8E99-AD22C2A5A8ED}" = Full Tilt Poker.Eu
"{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype™ 7.0
"{26A24AE4-039D-4CA4-87B4-2F83218031F0}" = Java 8 Update 31
"{316EB047-4627-4B63-B0A6-8CD32D07D962}" = Avira
"{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
"{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}" = Microsoft ASP.NET MVC 4 Runtime
"{437C8730-3505-11E3-9509-F04DA23A5C58}" = Sound Forge Pro 11.0
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4fcf070a-daac-45e9-a8b0-6850941f7ed8}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005
"{59E0381C-1047-45A3-B68A-57F586EAF3C2}" = WD Drive Utilities
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{61942EF5-2CD8-47D4-869C-2E9A8BB085F1}" = Asmedia ASM106x SATA Host Controller Driver
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7f51bdb9-ee21-49ee-94d6-90afc321780e}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005
"{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1" = PDF24 Creator 6.7.0
"{847C6940-D852-11E2-81D2-F04DA23A5C58}" = Noise Reduction Plug-In 2.0
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{AC76BA86-0804-1033-1959-001802114130}" = Adobe Refresh Manager
"{AC76BA86-1033-FFFF-7760-000000000006}" = Adobe Acrobat XI Pro
"{AC76BA86-7AD7-1031-7B44-AB0000000001}" = Adobe Reader XI (11.0.10) - Deutsch
"{B175520C-86A2-35A7-8619-86DC379688B9}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030
"{B455E95A-B804-439F-B533-336B1635AE97}" = NVIDIA PhysX
"{b5675cc4-ab8b-4945-8c1d-4c5479556d6a}" = Avira
"{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030
"{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}" = PDF Settings CS6
"{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}" = ASUS Product Register Program
"{D08A30AC-A663-4EA8-8D81-B98E17F19F1C}_is1" = ISO to USB
"{D9DAD0FF-495A-472B-9F10-BAE430A26682}" = Apple Application Support
"{E1D7DF5E-3771-11E3-9588-1040F3E7010F}" = MSVCRT Redists
"{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}" = Asmedia ASM104x USB 3.0 Host Controller Driver
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{f65db027-aff3-4070-886a-0d87064aabb1}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501
"{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"Adobe Flash Player ActiveX" = Adobe Flash Player 17 ActiveX
"Avira Antivirus" = Avira Antivirus
"CL-Eye Driver" = CL-Eye Driver
"EaseUS Data Recovery Wizard 7.5_is1" = EaseUS Data Recovery Wizard 7.5
"EaseUS Partition Master_is1" = EaseUS Partition Master 10.0
"Easy-WebPrint EX" = Canon Easy-WebPrint EX
"ElsterFormular" = ElsterFormular
"Google Chrome" = Google Chrome
"HD Tune_is1" = HD Tune 2.55
"HoldemManager2" = Holdem Manager 2
"iFunbox_is1" = iFunbox (v2.8.2414.748), iFunbox DevTeam
"IsoBuster3_is1" = IsoBuster 3.3
"LenovoUsbDriver" = LenovoUsbDriver 1.0.9
"Magic Photo Recovery" = Magic Photo Recovery 3.3
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"PhotomatixEssentials4x32_is1" = Photomatix Essentials version 4.0
"PokerStars.eu" = PokerStars.eu
"PokerStars.fr" = PokerStars.fr
"PostgreSQL 8.4" = PostgreSQL 8.4
"SeaTools for Windows" = SeaTools for Windows
"SopCast" = SopCast 3.8.3
"Stellar Phoenix JPEG Repair_is1" = Stellar Phoenix JPEG Repair
"Stellar Phoenix Windows Data Recovery - Professional_is1" = Stellar Phoenix Windows Data Recovery - Professional
"StreamTorrent 1.0" = StreamTorrent 1.0
"Update Engine" = Sony Mobile Update Engine
"VibeRomFlash" = Lenovo Smart Assistant 1.03
"WAV To MP3_is1" = WAV To MP3 V2
"Xilisoft HD Video Converter" = Xilisoft HD Video Converter
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-2332205044-1271837436-1391146079-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 17.04.2015 12:06:13 | Computer Name = Mitnik-PC | Source = Bonjour Service | ID = 100
Description = mDNSCoreReceiveResponse: Resetting to Probing: 4 Mitnik-PC.local.
Addr 192.168.2.106
Error - 17.04.2015 12:06:13 | Computer Name = Mitnik-PC | Source = Bonjour Service | ID = 100
Description = mDNSCoreReceiveResponse: Received from 192.168.2.106:5353 16 Mitnik-PC.local.
AAAA 2003:0056:2F75:7698:6C62:73DE:8E8C:CDED
Error - 17.04.2015 12:06:13 | Computer Name = Mitnik-PC | Source = Bonjour Service | ID = 100
Description = mDNSCoreReceiveResponse: Resetting to Probing: 16 Mitnik-PC.local.
AAAA FE80:0000:0000:0000:6C62:73DE:8E8C:CDED
Error - 17.04.2015 12:06:13 | Computer Name = Mitnik-PC | Source = Bonjour Service | ID = 100
Description = mDNSCoreReceiveResponse: Received from 192.168.2.106:5353 16 Mitnik-PC.local.
AAAA 2003:0056:2F75:7698:6C62:73DE:8E8C:CDED
Error - 17.04.2015 12:06:13 | Computer Name = Mitnik-PC | Source = Bonjour Service | ID = 100
Description = mDNSCoreReceiveResponse: ProbeCount 2; will deregister 4 Mitnik-PC.local.
Addr 192.168.2.106
Error - 17.04.2015 12:06:13 | Computer Name = Mitnik-PC | Source = Bonjour Service | ID = 100
Description = Local Hostname Mitnik-PC.local already in use; will try Mitnik-PC-2.local
instead
Error - 17.04.2015 12:07:39 | Computer Name = Mitnik-PC | Source = WinMgmt | ID = 10
Description =
Error - 17.04.2015 18:08:54 | Computer Name = Mitnik-PC | Source = WinMgmt | ID = 10
Description =
Error - 17.04.2015 18:17:11 | Computer Name = Mitnik-PC | Source = Office 2013 Licensing Service | ID = 0
Description =
Error - 18.04.2015 02:56:55 | Computer Name = Mitnik-PC | Source = WinMgmt | ID = 10
Description =
[ System Events ]
Error - 15.04.2015 16:22:38 | Computer Name = Mitnik-PC | Source = Schannel | ID = 36888
Description = Es wurde eine schwerwiegende Warnung generiert: 40. Der interne Fehlerstatus
lautet: 252.
Error - 15.04.2015 16:22:38 | Computer Name = Mitnik-PC | Source = Schannel | ID = 36888
Description = Es wurde eine schwerwiegende Warnung generiert: 40. Der interne Fehlerstatus
lautet: 252.
Error - 15.04.2015 16:22:38 | Computer Name = Mitnik-PC | Source = Schannel | ID = 36888
Description = Es wurde eine schwerwiegende Warnung generiert: 40. Der interne Fehlerstatus
lautet: 252.
Error - 16.04.2015 15:22:24 | Computer Name = Mitnik-PC | Source = Disk | ID = 262155
Description = Der Treiber hat einen Controllerfehler auf \Device\Harddisk2\DR5 gefunden.
Error - 16.04.2015 15:22:26 | Computer Name = Mitnik-PC | Source = Disk | ID = 262155
Description = Der Treiber hat einen Controllerfehler auf \Device\Harddisk3\DR7 gefunden.
Error - 16.04.2015 15:22:27 | Computer Name = Mitnik-PC | Source = Disk | ID = 262155
Description = Der Treiber hat einen Controllerfehler auf \Device\Harddisk3\DR7 gefunden.
Error - 16.04.2015 15:22:27 | Computer Name = Mitnik-PC | Source = Disk | ID = 262155
Description = Der Treiber hat einen Controllerfehler auf \Device\Harddisk3\DR7 gefunden.
Error - 16.04.2015 15:22:28 | Computer Name = Mitnik-PC | Source = Disk | ID = 262155
Description = Der Treiber hat einen Controllerfehler auf \Device\Harddisk3\DR7 gefunden.
Error - 16.04.2015 15:22:28 | Computer Name = Mitnik-PC | Source = Disk | ID = 262155
Description = Der Treiber hat einen Controllerfehler auf \Device\Harddisk3\DR7 gefunden.
Error - 16.04.2015 15:22:39 | Computer Name = Mitnik-PC | Source = Disk | ID = 262155
Description = Der Treiber hat einen Controllerfehler auf \Device\Harddisk2\DR5 gefunden.
< End of report >
Zum Thema Chrome öffnet falsche Links/Spamseiten - Moin, bin neu hier und bin auf die Seite gestoßen, da hier ähnliche Probleme der User auftraten.
Leider kann ich nicht in die bestehenden Threads posten (evtl. sind diese geschlossen?!), - Chrome öffnet falsche Links/Spamseiten...