![]() |
Unbekannte Fehlerquelle , Virus Hallo , Ich habe folgendes Problem : Meine Browser spielen oft verrückt und Chrome den ich am meisten nutze funktioniert manchmal garnicht mehr. Im Moment funktioniert er überhaupt nicht mehr (icq geht immer)da hab ich Google um rate gefragt und alles ausprobiert nichts hat geholfen auch habe ich alles nach Malware durchsucht 2-3 Sachen wurden gefunden und escan gibt noch folgende Probleme : Objekt "Backdoor (IRCBot) Trojans Spyware/Adware" im Dateisystem gefunden! Maßnahme ergriffen: Keine Maßnahme ergriffen. Objekt "AntiSpyware Pro XP Corrupted Adware/Spyware" im Dateisystem gefunden! Maßnahme ergriffen: Keine Maßnahme ergriffen. Objekt "XP AntiMalware Spyware/Adware" im Dateisystem gefunden! Maßnahme ergriffen: Keine Maßnahme ergriffen. Objekt "Orifice2K.plugin Trojan" im Dateisystem gefunden! Maßnahme ergriffen: Keine Maßnahme ergriffen. Habe auch einen Hijackthis Bericht : Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 19:53:09, on 10.06.2011 Platform: Windows 7 (WinNT 6.00.3504) MSIE: Internet Explorer v8.00 (8.00.7600.16385) Boot mode: Normal Running processes: C:\Program Files (x86)\ICQ7.5\ICQ.exe C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUNMain.exe C:\Program Files (x86)\Common Files\Real\Update_OB\realsched.exe C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files (x86)\iTunes\iTunesHelper.exe C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe C:\Program Files (x86)\TeamViewer\Version6\TeamViewer.exe C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANToManager.exe C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUNMain.exe C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10s_ActiveX.exe C:\totalcmd\TOTALCMD.EXE C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\David\Desktop\HiJackThis204.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://google.de/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=www.youtube.de R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: (no name) - - (no file) O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll O2 - BHO: Use the DivX Plus Web Player to watch web videos with less interruptions and smoother playback on supported sites - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL O2 - BHO: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll O4 - HKLM\..\Run: [PSUNMain] "C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUNMain.exe" /Traybar O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files (x86)\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [HTC Sync Loader] "C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe" -startup O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent O4 - HKCU\..\Run: [Google Update] "C:\Users\David\AppData\Local\Google\Update\GoogleUpdate.exe" /c O4 - HKCU\..\Run: [OfficeSyncProcess] "C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE" O4 - HKCU\..\Run: [ICQ] "C:\Program Files (x86)\ICQ7.5\ICQ.exe" silent loginmode=4 O4 - Startup: FRITZ!DSL Startcenter.lnk = ? O4 - Startup: OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk = C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE O4 - Global Startup: FRITZ!DSL Protect.lnk = C:\Program Files\FRITZ!DSL\FwebProt.exe O8 - Extra context menu item: An OneNote s&enden - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105 O8 - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\David\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm O8 - Extra context menu item: Nach Microsoft E&xcel exportieren - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000 O9 - Extra button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra 'Tools' menuitem: An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe O9 - Extra 'Tools' menuitem: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe O9 - Extra button: Verknüpfte &OneNote-Notizen - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: Verknüpfte &OneNote-Notizen - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Broken Internet access because of LSP provider '%programfiles%\fritz!dsl\\sarah.dll' missing O12 - Plugin for .spop: C:\Program Files (x86)\Internet Explorer\Plugins\NPDocBox.dll O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Dienst "Bonjour" (Bonjour Service) - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Futuremark SystemInfo Service - Futuremark Corporation - C:\Program Files (x86)\Common Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exe O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-Dienst (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: AVM IGD CTRL Service (IGDCTRL) - AVM Berlin - C:\Program Files\FRITZ!DSL\IGDCTRL.EXE O23 - Service: iPod-Dienst (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Lavasoft Ad-Aware Service - Lavasoft Limited - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: Panda Cloud Antivirus Service (NanoServiceMain) - Panda Security, S.L. - C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANHost.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Driver Helper Service (NVSvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: Internet Pass-Through Service (PassThru Service) - Unknown owner - C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) O23 - Service: Intel(R) Extreme Tuning Utility (XTUService) - Intel Corporation - C:\Program Files (x86)\Common Files\Intel\Intel Extreme Tuning Utility\PerfTuneService.exe -- End of file - 13334 bytes Bitte bitte ich brauche Hilfe , Ich würde mich riesieg über welche freuen ich weiß nicht mehr weiter :( |
|
Danke, dann ergänz ich das mal hier : Defogger : defogger_disable by jpshortstuff (23.02.10.1) Log created at 11:39 on 11/06/2011 (David) Checking for autostart values... HKCU\~\Run values retrieved. HKLM\~\Run values retrieved. Checking for services/drivers... -=E.O.F=- OTL.txt:OTL Logfile: Code: OTL logfile created on: 11.06.2011 11:42:28 - Run 1 extras.txt:OTL Logfile: Code: OTL Extras logfile created on: 11.06.2011 11:42:28 - Run 1 |
Mach einen OTL-Fix, beende alle evtl. geöffneten Programme, auch Virenscanner deaktivieren (!), starte OTL und kopiere folgenden Text in die "Custom Scan/Fixes" Box (unten in OTL): (das ":OTL" muss mitkopiert werden!!!) Code: :OTL Das Logfile müsste geöffnet werden, wenn Du nach dem Fixen auf ok klickst, poste das bitte. Evtl. wird der Rechner neu gestartet. Die mit diesem Script gefixten Einträge, Dateien und Ordner werden zur Sicherheit nicht vollständig gelöscht, es wird eine Sicherheitskopie auf der Systempartition im Ordner "_OTL" erstellt. |
Danke , so hier der Log : ========== OTL ========== HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully! HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride| /E : value set successfully! HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully! Prefs.js: "ICQ Search" removed from browser.search.defaultenginename Prefs.js: "DVDVideoSoftTB Customized Web Search" removed from browser.search.defaultthis.engineName Prefs.js: "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2269050&SearchSource=3&q={searchTerms}" removed from browser.search.defaulturl Prefs.js: "ICQ Search" removed from browser.search.selectedEngine Prefs.js: "hxxp://start.icq.com/" removed from browser.startup.homepage Prefs.js: "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.1.9&q=" removed from keyword.URL C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\search_engine folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\META-INF folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\defaults\preferences folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\defaults folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\components folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\skin folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\tr folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\sk folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\ru folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\it folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\he folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\fr folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\es folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\en-US folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\de folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\cs folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\bg folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\content\img folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\content folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}\searchplugin folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}\META-INF folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}\lib folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}\defaults folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}\components folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}\chrome folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5} folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}\chrome folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C} folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\engine@conduit.com\searchplugin folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\engine@conduit.com\META-INF folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\engine@conduit.com\lib folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\engine@conduit.com\DualPackage folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\engine@conduit.com\defaults folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\engine@conduit.com\components folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\engine@conduit.com\chrome folder moved successfully. C:\Users\David\AppData\Roaming\mozilla\Firefox\Profiles\i0l7udn7.default\extensions\engine@conduit.com folder moved successfully. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom\\AutoRun|DWORD:1 /E : value set successfully! File move failed. D:\autorun.inf scheduled to be moved on reboot. C:\Windows\SysWow64\runouce.exe folder moved successfully. C:\Windows\rundll16.exe folder moved successfully. C:\Windows\logo_1.exe folder moved successfully. C:\Users\David\AppData\Local\{334294B6-8746-4037-B8C3-E8CB5734FC8D} folder moved successfully. C:\Users\David\AppData\Local\{1C3614C5-40F9-4314-A6D6-271855DCF459} folder moved successfully. C:\ruu_log folder moved successfully. C:\TempEI4 folder moved successfully. ADS C:\Users\David\AppData\Local\G8dHZFWb:bzoSicG2hszlPqL5DTm deleted successfully. ========== COMMANDS ========== C:\Windows\System32\drivers\etc\Hosts moved successfully. HOSTS file reset successfully OTL by OldTimer - Version 3.2.23.0 log created on 06112011_190032 Files\Folders moved on Reboot... File move failed. D:\autorun.inf scheduled to be moved on reboot. Registry entries deleted on Reboot... |
Bitte nun dieses Tool von Kaspersky ausführen und das Log posten => http://www.trojaner-board.de/82358-t...entfernen.html Das Tool so einstellen wie unten im Bild angegeben - also beide Haken setzen, auf Start scan klicken und wenn es durch ist auf den Button Report klicken um das Log anzuzeigen. Dieses bitte komplett posten. http://www.trojaner-board.de/attachm...rnen-start.png Falls du durch die Infektion auf deine Dokumente/Eigenen Dateien nicht zugreifen kannst, bitte unhide ausführen: Downloade dir bitte unhide.exe und speichere diese Datei auf deinem Desktop. Starte das Tool und es sollten alle Dateien und Ordner wieder sichtbar sein. ( Könnte eine Weile dauern ) http://www.trojaner-board.de/images/icons/icon4.gif Vista und 7 User müssen das Tool per Rechtsklick als Administrator ausführen! http://www.trojaner-board.de/images/icons/icon4.gif |
2011/06/11 19:55:17.0098 17332 TDSS rootkit removing tool 2.5.4.0 Jun 7 2011 17:31:48 2011/06/11 19:55:19.0108 17332 ================================================================================ 2011/06/11 19:55:19.0108 17332 SystemInfo: 2011/06/11 19:55:19.0108 17332 2011/06/11 19:55:19.0108 17332 OS Version: 6.1.7600 ServicePack: 0.0 2011/06/11 19:55:19.0108 17332 Product type: Workstation 2011/06/11 19:55:19.0108 17332 ComputerName: DAVE 2011/06/11 19:55:19.0108 17332 UserName: David 2011/06/11 19:55:19.0108 17332 Windows directory: C:\Windows 2011/06/11 19:55:19.0108 17332 System windows directory: C:\Windows 2011/06/11 19:55:19.0108 17332 Running under WOW64 2011/06/11 19:55:19.0108 17332 Processor architecture: Intel x64 2011/06/11 19:55:19.0108 17332 Number of processors: 8 2011/06/11 19:55:19.0108 17332 Page size: 0x1000 2011/06/11 19:55:19.0108 17332 Boot type: Normal boot 2011/06/11 19:55:19.0108 17332 ================================================================================ 2011/06/11 19:55:19.0878 17332 Initialize success 2011/06/11 19:56:09.0138 13096 ================================================================================ 2011/06/11 19:56:09.0138 13096 Scan started 2011/06/11 19:56:09.0138 13096 Mode: Manual; 2011/06/11 19:56:09.0138 13096 ================================================================================ 2011/06/11 19:56:10.0248 13096 1394ohci (1b00662092f9f9568b995902f0cc40d5) C:\Windows\system32\DRIVERS\1394ohci.sys 2011/06/11 19:56:10.0288 13096 ACPI (6f11e88748cdefd2f76aa215f97ddfe5) C:\Windows\system32\DRIVERS\ACPI.sys 2011/06/11 19:56:10.0318 13096 AcpiPmi (63b05a0420ce4bf0e4af6dcc7cada254) C:\Windows\system32\DRIVERS\acpipmi.sys 2011/06/11 19:56:10.0338 13096 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys 2011/06/11 19:56:10.0378 13096 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys 2011/06/11 19:56:10.0388 13096 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys 2011/06/11 19:56:10.0428 13096 AFD (b9384e03479d2506bc924c16a3db87bc) C:\Windows\system32\drivers\afd.sys 2011/06/11 19:56:10.0448 13096 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\DRIVERS\agp440.sys 2011/06/11 19:56:10.0458 13096 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\DRIVERS\aliide.sys 2011/06/11 19:56:10.0468 13096 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\DRIVERS\amdide.sys 2011/06/11 19:56:10.0478 13096 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys 2011/06/11 19:56:10.0498 13096 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys 2011/06/11 19:56:10.0528 13096 amdsata (7a4b413614c055935567cf88a9734d38) C:\Windows\system32\DRIVERS\amdsata.sys 2011/06/11 19:56:10.0558 13096 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys 2011/06/11 19:56:10.0578 13096 amdxata (b4ad0cacbab298671dd6f6ef7e20679d) C:\Windows\system32\DRIVERS\amdxata.sys 2011/06/11 19:56:10.0598 13096 AppID (42fd751b27fa0e9c69bb39f39e409594) C:\Windows\system32\drivers\appid.sys 2011/06/11 19:56:10.0648 13096 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys 2011/06/11 19:56:10.0668 13096 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys 2011/06/11 19:56:10.0708 13096 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys 2011/06/11 19:56:10.0738 13096 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\DRIVERS\atapi.sys 2011/06/11 19:56:10.0808 13096 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys 2011/06/11 19:56:10.0848 13096 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys 2011/06/11 19:56:10.0888 13096 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys 2011/06/11 19:56:10.0928 13096 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys 2011/06/11 19:56:10.0978 13096 bowser (91ce0d3dc57dd377e690a2d324022b08) C:\Windows\system32\DRIVERS\bowser.sys 2011/06/11 19:56:11.0018 13096 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys 2011/06/11 19:56:11.0028 13096 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys 2011/06/11 19:56:11.0058 13096 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys 2011/06/11 19:56:11.0068 13096 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys 2011/06/11 19:56:11.0088 13096 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys 2011/06/11 19:56:11.0098 13096 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys 2011/06/11 19:56:11.0118 13096 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys 2011/06/11 19:56:11.0138 13096 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys 2011/06/11 19:56:11.0178 13096 cdrom (83d2d75e1efb81b3450c18131443f7db) C:\Windows\system32\DRIVERS\cdrom.sys 2011/06/11 19:56:11.0218 13096 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys 2011/06/11 19:56:11.0248 13096 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys 2011/06/11 19:56:11.0268 13096 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys 2011/06/11 19:56:11.0288 13096 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\DRIVERS\cmdide.sys 2011/06/11 19:56:11.0308 13096 CNG (f95fd4cb7da00ba2a63ce9f6b5c053e1) C:\Windows\system32\Drivers\cng.sys 2011/06/11 19:56:11.0328 13096 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys 2011/06/11 19:56:11.0358 13096 CompositeBus (f26b3a86f6fa87ca360b879581ab4123) C:\Windows\system32\DRIVERS\CompositeBus.sys 2011/06/11 19:56:11.0378 13096 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys 2011/06/11 19:56:11.0418 13096 CSC (4a6173c2279b498cd8f57cae504564cb) C:\Windows\system32\drivers\csc.sys 2011/06/11 19:56:11.0458 13096 DfsC (3f1dc527070acb87e40afe46ef6da749) C:\Windows\system32\Drivers\dfsc.sys 2011/06/11 19:56:11.0478 13096 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys 2011/06/11 19:56:11.0498 13096 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys 2011/06/11 19:56:11.0548 13096 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys 2011/06/11 19:56:11.0588 13096 DXGKrnl (7cb7d2b73813ce05c7bc0f5f95d27cec) C:\Windows\System32\drivers\dxgkrnl.sys 2011/06/11 19:56:11.0648 13096 e1yexpress (1f20aeaad1be0121647257235b788224) C:\Windows\system32\DRIVERS\e1y62x64.sys 2011/06/11 19:56:11.0728 13096 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys 2011/06/11 19:56:11.0858 13096 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys 2011/06/11 19:56:11.0878 13096 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\DRIVERS\errdev.sys 2011/06/11 19:56:11.0938 13096 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys 2011/06/11 19:56:11.0968 13096 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys 2011/06/11 19:56:11.0988 13096 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys 2011/06/11 19:56:12.0018 13096 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys 2011/06/11 19:56:12.0028 13096 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys 2011/06/11 19:56:12.0038 13096 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys 2011/06/11 19:56:12.0068 13096 FltMgr (f7866af72abbaf84b1fa5aa195378c59) C:\Windows\system32\drivers\fltmgr.sys 2011/06/11 19:56:12.0098 13096 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys 2011/06/11 19:56:12.0118 13096 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys 2011/06/11 19:56:12.0168 13096 fvevol (b8b2a6e1558f8f5de5ce431c5b2c7b09) C:\Windows\system32\DRIVERS\fvevol.sys 2011/06/11 19:56:12.0318 13096 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys 2011/06/11 19:56:12.0378 13096 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys 2011/06/11 19:56:12.0448 13096 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys 2011/06/11 19:56:12.0488 13096 HdAudAddService (6410f6f415b2a5a9037224c41da8bf12) C:\Windows\system32\drivers\HdAudio.sys 2011/06/11 19:56:12.0528 13096 HDAudBus (0a49913402747a0b67de940fb42cbdbb) C:\Windows\system32\DRIVERS\HDAudBus.sys 2011/06/11 19:56:12.0548 13096 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys 2011/06/11 19:56:12.0558 13096 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys 2011/06/11 19:56:12.0578 13096 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys 2011/06/11 19:56:12.0628 13096 HidUsb (b3bf6b5b50006def50b66306d99fcf6f) C:\Windows\system32\DRIVERS\hidusb.sys 2011/06/11 19:56:12.0678 13096 HpSAMD (0886d440058f203eba0e1825e4355914) C:\Windows\system32\DRIVERS\HpSAMD.sys 2011/06/11 19:56:12.0748 13096 HTCAND64 (f47cec45fb85791d4ab237563ad0fa8f) C:\Windows\system32\Drivers\ANDROIDUSB.sys 2011/06/11 19:56:12.0828 13096 htcnprot (b8b1b284362e1d8135112573395d5da5) C:\Windows\system32\DRIVERS\htcnprot.sys 2011/06/11 19:56:12.0898 13096 HTTP (cee049cac4efa7f4e1e4ad014414a5d4) C:\Windows\system32\drivers\HTTP.sys 2011/06/11 19:56:12.0928 13096 hwpolicy (f17766a19145f111856378df337a5d79) C:\Windows\system32\drivers\hwpolicy.sys 2011/06/11 19:56:12.0988 13096 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys 2011/06/11 19:56:13.0018 13096 iaStorV (d83efb6fd45df9d55e9a1afc63640d50) C:\Windows\system32\DRIVERS\iaStorV.sys 2011/06/11 19:56:13.0078 13096 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys 2011/06/11 19:56:13.0148 13096 IntcAzAudAddService (4a725cdde1a0c3d1b1eaca0d9d0d95d0) C:\Windows\system32\drivers\RTKVHD64.sys 2011/06/11 19:56:13.0158 13096 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\DRIVERS\intelide.sys 2011/06/11 19:56:13.0188 13096 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys 2011/06/11 19:56:13.0278 13096 IOCBIOS (d6ef3558d9a7e4024cf1cfb12d56e81d) C:\ProgramData\Intel\Extreme Tuning Utility\IOCbios\64bit\IOCBIOS.sys 2011/06/11 19:56:13.0288 13096 IpFilterDriver (722dd294df62483cecaae6e094b4d695) C:\Windows\system32\DRIVERS\ipfltdrv.sys 2011/06/11 19:56:13.0318 13096 IPMIDRV (e2b4a4494db7cb9b89b55ca268c337c5) C:\Windows\system32\DRIVERS\IPMIDrv.sys 2011/06/11 19:56:13.0328 13096 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys 2011/06/11 19:56:13.0378 13096 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys 2011/06/11 19:56:13.0398 13096 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\DRIVERS\isapnp.sys 2011/06/11 19:56:13.0418 13096 iScsiPrt (fa4d2557de56d45b0a346f93564be6e1) C:\Windows\system32\DRIVERS\msiscsi.sys 2011/06/11 19:56:13.0438 13096 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys 2011/06/11 19:56:13.0458 13096 kbdhid (6def98f8541e1b5dceb2c822a11f7323) C:\Windows\system32\DRIVERS\kbdhid.sys 2011/06/11 19:56:13.0478 13096 KSecDD (e8b6fcc9c83535c67f835d407620bd27) C:\Windows\system32\Drivers\ksecdd.sys 2011/06/11 19:56:13.0498 13096 KSecPkg (bbe1bf6d9b661c354d4857d5fadb943b) C:\Windows\system32\Drivers\ksecpkg.sys 2011/06/11 19:56:13.0518 13096 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys 2011/06/11 19:56:13.0618 13096 Lavasoft Kernexplorer (9a7fa6371f68335fd3c3d6488bc5a9f8) C:\Program Files (x86)\Lavasoft\Ad-Aware\KernExplorer64.sys 2011/06/11 19:56:13.0668 13096 Lbd (c8b3131857931ae76798a741cc52b021) C:\Windows\system32\DRIVERS\Lbd.sys 2011/06/11 19:56:13.0718 13096 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys 2011/06/11 19:56:13.0758 13096 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys 2011/06/11 19:56:13.0768 13096 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys 2011/06/11 19:56:13.0788 13096 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys 2011/06/11 19:56:13.0798 13096 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys 2011/06/11 19:56:13.0828 13096 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys 2011/06/11 19:56:13.0838 13096 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys 2011/06/11 19:56:13.0858 13096 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys 2011/06/11 19:56:13.0898 13096 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys 2011/06/11 19:56:13.0928 13096 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys 2011/06/11 19:56:13.0948 13096 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys 2011/06/11 19:56:13.0978 13096 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys 2011/06/11 19:56:13.0988 13096 mountmgr (791af66c4d0e7c90a3646066386fb571) C:\Windows\system32\drivers\mountmgr.sys 2011/06/11 19:56:14.0008 13096 mpio (609d1d87649ecc19796f4d76d4c15cea) C:\Windows\system32\DRIVERS\mpio.sys 2011/06/11 19:56:14.0038 13096 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys 2011/06/11 19:56:14.0048 13096 MRxDAV (30524261bb51d96d6fcbac20c810183c) C:\Windows\system32\drivers\mrxdav.sys 2011/06/11 19:56:14.0068 13096 mrxsmb (cfdcd8ca87c2a657debc150ac35b5e08) C:\Windows\system32\DRIVERS\mrxsmb.sys 2011/06/11 19:56:14.0088 13096 mrxsmb10 (1bee517b220b7f024f411aec1571dd5a) C:\Windows\system32\DRIVERS\mrxsmb10.sys 2011/06/11 19:56:14.0108 13096 mrxsmb20 (6b2d5fef385828b6e485c1c90afb8195) C:\Windows\system32\DRIVERS\mrxsmb20.sys 2011/06/11 19:56:14.0138 13096 msahci (5c37497276e3b3a5488b23a326a754b7) C:\Windows\system32\DRIVERS\msahci.sys 2011/06/11 19:56:14.0158 13096 msdsm (8d27b597229aed79430fb9db3bcbfbd0) C:\Windows\system32\DRIVERS\msdsm.sys 2011/06/11 19:56:14.0188 13096 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys 2011/06/11 19:56:14.0198 13096 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys 2011/06/11 19:56:14.0208 13096 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\DRIVERS\msisadrv.sys 2011/06/11 19:56:14.0248 13096 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys 2011/06/11 19:56:14.0248 13096 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys 2011/06/11 19:56:14.0268 13096 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys 2011/06/11 19:56:14.0298 13096 MsRPC (89cb141aa8616d8c6a4610fa26c60964) C:\Windows\system32\drivers\MsRPC.sys 2011/06/11 19:56:14.0308 13096 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\DRIVERS\mssmbios.sys 2011/06/11 19:56:14.0328 13096 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys 2011/06/11 19:56:14.0338 13096 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys 2011/06/11 19:56:14.0368 13096 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys 2011/06/11 19:56:14.0418 13096 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys 2011/06/11 19:56:14.0448 13096 NDIS (cad515dbd07d082bb317d9928ce8962c) C:\Windows\system32\drivers\ndis.sys 2011/06/11 19:56:14.0468 13096 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys 2011/06/11 19:56:14.0488 13096 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys 2011/06/11 19:56:14.0498 13096 Ndisuio (f105ba1e22bf1f2ee8f005d4305e4bec) C:\Windows\system32\DRIVERS\ndisuio.sys 2011/06/11 19:56:14.0518 13096 NdisWan (557dfab9ca1fcb036ac77564c010dad3) C:\Windows\system32\DRIVERS\ndiswan.sys 2011/06/11 19:56:14.0528 13096 NDProxy (659b74fb74b86228d6338d643cd3e3cf) C:\Windows\system32\drivers\NDProxy.sys 2011/06/11 19:56:14.0548 13096 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys 2011/06/11 19:56:14.0568 13096 NetBT (9162b273a44ab9dce5b44362731d062a) C:\Windows\system32\DRIVERS\netbt.sys 2011/06/11 19:56:14.0618 13096 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys 2011/06/11 19:56:14.0638 13096 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys 2011/06/11 19:56:14.0648 13096 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys 2011/06/11 19:56:14.0688 13096 Ntfs (356698a13c4630d5b31c37378d469196) C:\Windows\system32\drivers\Ntfs.sys 2011/06/11 19:56:14.0748 13096 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys 2011/06/11 19:56:14.0788 13096 NVHDA (857fb74754ebff94ee3ad40788740916) C:\Windows\system32\drivers\nvhda64v.sys 2011/06/11 19:56:15.0078 13096 nvlddmkm (f12c5f17d48d9f5c70e4408b3ccb5443) C:\Windows\system32\DRIVERS\nvlddmkm.sys 2011/06/11 19:56:15.0208 13096 nvraid (3e38712941e9bb4ddbee00affe3fed3d) C:\Windows\system32\DRIVERS\nvraid.sys 2011/06/11 19:56:15.0238 13096 nvstor (477dc4d6deb99be37084c9ac6d013da1) C:\Windows\system32\DRIVERS\nvstor.sys 2011/06/11 19:56:15.0258 13096 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\DRIVERS\nv_agp.sys 2011/06/11 19:56:15.0278 13096 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\DRIVERS\ohci1394.sys 2011/06/11 19:56:15.0358 13096 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys 2011/06/11 19:56:15.0378 13096 partmgr (7daa117143316c4a1537e074a5a9eaf0) C:\Windows\system32\drivers\partmgr.sys 2011/06/11 19:56:15.0418 13096 pci (f36f6504009f2fb0dfd1b17a116ad74b) C:\Windows\system32\DRIVERS\pci.sys 2011/06/11 19:56:15.0438 13096 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\DRIVERS\pciide.sys 2011/06/11 19:56:15.0458 13096 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys 2011/06/11 19:56:15.0478 13096 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys 2011/06/11 19:56:15.0508 13096 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys 2011/06/11 19:56:15.0598 13096 PptpMiniport (27cc19e81ba5e3403c48302127bda717) C:\Windows\system32\DRIVERS\raspptp.sys 2011/06/11 19:56:15.0618 13096 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys 2011/06/11 19:56:15.0668 13096 Psched (ee992183bd8eaefd9973f352e587a299) C:\Windows\system32\DRIVERS\pacer.sys 2011/06/11 19:56:15.0708 13096 PSINAflt (118603a97cd639d25f4448dd25273173) C:\Windows\system32\DRIVERS\PSINAflt.sys 2011/06/11 19:56:15.0748 13096 PSINFile (bf625c0afaf796c80e3b75be2284fde8) C:\Windows\system32\DRIVERS\PSINFile.sys 2011/06/11 19:56:15.0778 13096 PSINKNC (18487175ba65c66acc6f94354f0552de) C:\Windows\system32\DRIVERS\psinknc.sys 2011/06/11 19:56:15.0808 13096 PSINProc (44f40ccaca74dcb1915398712fad8342) C:\Windows\system32\DRIVERS\PSINProc.sys 2011/06/11 19:56:15.0838 13096 PSINProt (38474fbd900a9e3199438fb372db8e36) C:\Windows\system32\DRIVERS\PSINProt.sys 2011/06/11 19:56:15.0918 13096 PxHlpa64 (87b04878a6d59d6c79251dc960c674c1) C:\Windows\system32\Drivers\PxHlpa64.sys 2011/06/11 19:56:15.0968 13096 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys 2011/06/11 19:56:15.0998 13096 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys 2011/06/11 19:56:16.0028 13096 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys 2011/06/11 19:56:16.0038 13096 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys 2011/06/11 19:56:16.0078 13096 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys 2011/06/11 19:56:16.0098 13096 Rasl2tp (87a6e852a22991580d6d39adc4790463) C:\Windows\system32\DRIVERS\rasl2tp.sys 2011/06/11 19:56:16.0108 13096 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys 2011/06/11 19:56:16.0128 13096 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys 2011/06/11 19:56:16.0158 13096 rdbss (3bac8142102c15d59a87757c1d41dce5) C:\Windows\system32\DRIVERS\rdbss.sys 2011/06/11 19:56:16.0178 13096 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys 2011/06/11 19:56:16.0198 13096 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys 2011/06/11 19:56:16.0208 13096 RDPDR (9706b84dbabfc4b4ca46c5a82b14dfa3) C:\Windows\system32\drivers\rdpdr.sys 2011/06/11 19:56:16.0228 13096 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys 2011/06/11 19:56:16.0248 13096 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys 2011/06/11 19:56:16.0268 13096 RDPWD (8a3e6bea1c53ea6177fe2b6eba2c80d7) C:\Windows\system32\drivers\RDPWD.sys 2011/06/11 19:56:16.0288 13096 rdyboost (634b9a2181d98f15941236886164ec8b) C:\Windows\system32\drivers\rdyboost.sys 2011/06/11 19:56:16.0338 13096 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys 2011/06/11 19:56:16.0368 13096 s3cap (88af6e02ab19df7fd07ecdf9c91e9af6) C:\Windows\system32\DRIVERS\vms3cap.sys 2011/06/11 19:56:16.0388 13096 sbp2port (e3bbb89983daf5622c1d50cf49f28227) C:\Windows\system32\DRIVERS\sbp2port.sys 2011/06/11 19:56:16.0418 13096 scfilter (c94da20c7e3ba1dca269bc8460d98387) C:\Windows\system32\DRIVERS\scfilter.sys 2011/06/11 19:56:16.0458 13096 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys 2011/06/11 19:56:16.0488 13096 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys 2011/06/11 19:56:16.0498 13096 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys 2011/06/11 19:56:16.0508 13096 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys 2011/06/11 19:56:16.0538 13096 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\DRIVERS\sffdisk.sys 2011/06/11 19:56:16.0548 13096 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\DRIVERS\sffp_mmc.sys 2011/06/11 19:56:16.0558 13096 sffp_sd (5588b8c6193eb1522490c122eb94dffa) C:\Windows\system32\DRIVERS\sffp_sd.sys 2011/06/11 19:56:16.0568 13096 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys 2011/06/11 19:56:16.0598 13096 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys 2011/06/11 19:56:16.0608 13096 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys 2011/06/11 19:56:16.0638 13096 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys 2011/06/11 19:56:16.0668 13096 smbusp (3b47f81c3c3b4742221a5391ef8d499d) C:\Windows\system32\DRIVERS\intelsmb.sys 2011/06/11 19:56:16.0698 13096 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys 2011/06/11 19:56:16.0738 13096 srv (ec8f67289105bf270498095f14963464) C:\Windows\system32\DRIVERS\srv.sys 2011/06/11 19:56:16.0778 13096 srv2 (f773d2ed090b7baa1c1a034f3ca476c8) C:\Windows\system32\DRIVERS\srv2.sys 2011/06/11 19:56:16.0828 13096 srvnet (26e84d3649019c3244622e654dfcd75b) C:\Windows\system32\DRIVERS\srvnet.sys 2011/06/11 19:56:16.0878 13096 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys 2011/06/11 19:56:16.0908 13096 storflt (ffd7a6f15b14234b5b0e5d49e7961895) C:\Windows\system32\DRIVERS\vmstorfl.sys 2011/06/11 19:56:16.0928 13096 storvsc (8fccbefc5c440b3c23454656e551b09a) C:\Windows\system32\DRIVERS\storvsc.sys 2011/06/11 19:56:16.0948 13096 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\DRIVERS\swenum.sys 2011/06/11 19:56:17.0038 13096 Tcpip (912107716bab424c7870e8e6af5e07e1) C:\Windows\system32\drivers\tcpip.sys 2011/06/11 19:56:17.0088 13096 TCPIP6 (912107716bab424c7870e8e6af5e07e1) C:\Windows\system32\DRIVERS\tcpip.sys 2011/06/11 19:56:17.0118 13096 tcpipreg (76d078af6f587b162d50210f761eb9ed) C:\Windows\system32\drivers\tcpipreg.sys 2011/06/11 19:56:17.0148 13096 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys 2011/06/11 19:56:17.0158 13096 TDTCP (e4245bda3190a582d55ed09e137401a9) C:\Windows\system32\drivers\tdtcp.sys 2011/06/11 19:56:17.0178 13096 tdx (079125c4b17b01fcaeebce0bcb290c0f) C:\Windows\system32\DRIVERS\tdx.sys 2011/06/11 19:56:17.0208 13096 TermDD (c448651339196c0e869a355171875522) C:\Windows\system32\DRIVERS\termdd.sys 2011/06/11 19:56:17.0248 13096 tssecsrv (61b96c26131e37b24e93327a0bd1fb95) C:\Windows\system32\DRIVERS\tssecsrv.sys 2011/06/11 19:56:17.0268 13096 tunnel (3836171a2cdf3af8ef10856db9835a70) C:\Windows\system32\DRIVERS\tunnel.sys 2011/06/11 19:56:17.0278 13096 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys 2011/06/11 19:56:17.0318 13096 udfs (d47baead86c65d4f4069d7ce0a4edceb) C:\Windows\system32\DRIVERS\udfs.sys 2011/06/11 19:56:17.0348 13096 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\DRIVERS\uliagpkx.sys 2011/06/11 19:56:17.0368 13096 umbus (eab6c35e62b1b0db0d1b48b671d3a117) C:\Windows\system32\DRIVERS\umbus.sys 2011/06/11 19:56:17.0378 13096 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys 2011/06/11 19:56:17.0418 13096 USBAAPL64 (54d4b48d443e7228bf64cf7cdc3118ac) C:\Windows\system32\Drivers\usbaapl64.sys 2011/06/11 19:56:17.0438 13096 usbccgp (b26afb54a534d634523c4fb66765b026) C:\Windows\system32\DRIVERS\usbccgp.sys 2011/06/11 19:56:17.0458 13096 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\DRIVERS\usbcir.sys 2011/06/11 19:56:17.0478 13096 usbehci (2ea4aff7be7eb4632e3aa8595b0803b5) C:\Windows\system32\DRIVERS\usbehci.sys 2011/06/11 19:56:17.0498 13096 usbhub (4c9042b8df86c1e8e6240c218b99b39b) C:\Windows\system32\DRIVERS\usbhub.sys 2011/06/11 19:56:17.0508 13096 usbohci (58e546bbaf87664fc57e0f6081e4f609) C:\Windows\system32\DRIVERS\usbohci.sys 2011/06/11 19:56:17.0528 13096 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys 2011/06/11 19:56:17.0548 13096 USBSTOR (080d3820da6c046be82fc8b45a893e83) C:\Windows\system32\DRIVERS\USBSTOR.SYS 2011/06/11 19:56:17.0568 13096 usbuhci (81fb2216d3a60d1284455d511797db3d) C:\Windows\system32\DRIVERS\usbuhci.sys 2011/06/11 19:56:17.0618 13096 usb_rndisx (70d05ee263568a742d14e1876df80532) C:\Windows\system32\DRIVERS\usb8023x.sys 2011/06/11 19:56:17.0668 13096 vcd10bus (f0faf3fb9b138f8cafb65ecffe9f4ab6) C:\Windows\system32\DRIVERS\vcd10bus.sys 2011/06/11 19:56:17.0698 13096 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\DRIVERS\vdrvroot.sys 2011/06/11 19:56:17.0718 13096 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys 2011/06/11 19:56:17.0728 13096 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys 2011/06/11 19:56:17.0758 13096 vhdmp (c82e748660f62a242b2dfac1442f22a4) C:\Windows\system32\DRIVERS\vhdmp.sys 2011/06/11 19:56:17.0768 13096 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\DRIVERS\viaide.sys 2011/06/11 19:56:17.0788 13096 vmbus (1501699d7eda984abc4155a7da5738d1) C:\Windows\system32\DRIVERS\vmbus.sys 2011/06/11 19:56:17.0798 13096 VMBusHID (ae10c35761889e65a6f7176937c5592c) C:\Windows\system32\DRIVERS\VMBusHID.sys 2011/06/11 19:56:17.0818 13096 volmgr (2b1a3dae2b4e70dbba822b7a03fbd4a3) C:\Windows\system32\DRIVERS\volmgr.sys 2011/06/11 19:56:17.0838 13096 volmgrx (99b0cbb569ca79acaed8c91461d765fb) C:\Windows\system32\drivers\volmgrx.sys 2011/06/11 19:56:17.0858 13096 volsnap (58f82eed8ca24b461441f9c3e4f0bf5c) C:\Windows\system32\DRIVERS\volsnap.sys 2011/06/11 19:56:17.0888 13096 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys 2011/06/11 19:56:17.0908 13096 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys 2011/06/11 19:56:17.0918 13096 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys 2011/06/11 19:56:17.0958 13096 WANARP (47ca49400643effd3f1c9a27e1d69324) C:\Windows\system32\DRIVERS\wanarp.sys 2011/06/11 19:56:17.0968 13096 Wanarpv6 (47ca49400643effd3f1c9a27e1d69324) C:\Windows\system32\DRIVERS\wanarp.sys 2011/06/11 19:56:17.0988 13096 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys 2011/06/11 19:56:18.0008 13096 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys 2011/06/11 19:56:18.0048 13096 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys 2011/06/11 19:56:18.0058 13096 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys 2011/06/11 19:56:18.0118 13096 WinUsb (817eaff5d38674edd7713b9dfb8e9791) C:\Windows\system32\DRIVERS\WinUsb.sys 2011/06/11 19:56:18.0158 13096 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\DRIVERS\wmiacpi.sys 2011/06/11 19:56:18.0188 13096 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys 2011/06/11 19:56:18.0208 13096 WudfPf (7cadc74271dd6461c452c271b30bd378) C:\Windows\system32\drivers\WudfPf.sys 2011/06/11 19:56:18.0248 13096 WUDFRd (3b197af0fff08aa66b6b2241ca538d64) C:\Windows\system32\DRIVERS\WUDFRd.sys 2011/06/11 19:56:18.0458 13096 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0 2011/06/11 19:56:18.0478 13096 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk1\DR1 2011/06/11 19:56:18.0478 13096 ================================================================================ 2011/06/11 19:56:18.0478 13096 Scan finished 2011/06/11 19:56:18.0478 13096 ================================================================================ 2011/06/11 19:56:18.0488 16960 Detected object count: 0 2011/06/11 19:56:18.0488 16960 Actual detected object count: 0 |
Dann bitte jetzt CF ausführen: ComboFix Ein Leitfaden und Tutorium zur Nutzung von ComboFix
http://saved.im/mtm0nzyzmzd5/cofi.jpg
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat! |
Vielen Dank Arne , dass du dir hier die Zeit nimmst mir bei meinem Problem zu helfen dafür bin ich dir wirklich dankbar :) Hier der Log Bericht von Combofix : Combofix Logfile: Code: ComboFix 11-06-11.01 - David 11.06.2011 21:42:06.2.8 - x64 |
Downloade Dir bitte MBRCheck (by a_d_13) und speichere die Datei auf dem Desktop.
|
MBRCheck, version 1.2.3 (c) 2010, AD Command-line: Windows Version: Windows 7 Ultimate Edition Windows Information: (build 7600), 64-bit Base Board Manufacturer: Intel Corporation BIOS Manufacturer: Intel Corp. System Manufacturer: System Product Name: Logical Drives Mask: 0x0002000c Kernel Drivers (total 156): 0x0301B000 \SystemRoot\system32\ntoskrnl.exe 0x035F8000 \SystemRoot\system32\hal.dll 0x00BD3000 \SystemRoot\system32\kdcom.dll 0x00C3B000 \SystemRoot\system32\mcupdate_GenuineIntel.dll 0x00C7F000 \SystemRoot\system32\PSHED.dll 0x00C93000 \SystemRoot\system32\CLFS.SYS 0x00CF1000 \SystemRoot\system32\CI.dll 0x00ED5000 \SystemRoot\system32\drivers\Wdf01000.sys 0x00F79000 \SystemRoot\system32\drivers\WDFLDR.SYS 0x00F88000 \SystemRoot\system32\DRIVERS\ACPI.sys 0x00FDF000 \SystemRoot\system32\DRIVERS\WMILIB.SYS 0x00FE8000 \SystemRoot\system32\DRIVERS\msisadrv.sys 0x00E00000 \SystemRoot\system32\DRIVERS\pci.sys 0x00E33000 \SystemRoot\system32\DRIVERS\vdrvroot.sys 0x00E40000 \SystemRoot\System32\drivers\partmgr.sys 0x00E55000 \SystemRoot\system32\DRIVERS\volmgr.sys 0x00E6A000 \SystemRoot\System32\drivers\volmgrx.sys 0x00EC6000 \SystemRoot\system32\DRIVERS\pciide.sys 0x00DB1000 \SystemRoot\system32\DRIVERS\PCIIDEX.SYS 0x00DC1000 \SystemRoot\System32\drivers\mountmgr.sys 0x00FF2000 \SystemRoot\system32\DRIVERS\atapi.sys 0x00C00000 \SystemRoot\system32\DRIVERS\ataport.SYS 0x00C2A000 \SystemRoot\system32\DRIVERS\amdxata.sys 0x010A2000 \SystemRoot\system32\drivers\fltmgr.sys 0x010EE000 \SystemRoot\system32\drivers\fileinfo.sys 0x01102000 \SystemRoot\system32\DRIVERS\Lbd.sys 0x01117000 \SystemRoot\System32\Drivers\PxHlpa64.sys 0x01243000 \SystemRoot\System32\Drivers\Ntfs.sys 0x01124000 \SystemRoot\System32\Drivers\msrpc.sys 0x013E6000 \SystemRoot\System32\Drivers\ksecdd.sys 0x01182000 \SystemRoot\System32\Drivers\cng.sys 0x01200000 \SystemRoot\System32\drivers\pcw.sys 0x01211000 \SystemRoot\System32\Drivers\Fs_Rec.sys 0x01451000 \SystemRoot\system32\drivers\ndis.sys 0x01543000 \SystemRoot\system32\drivers\NETIO.SYS 0x015A3000 \SystemRoot\System32\Drivers\ksecpkg.sys 0x01602000 \SystemRoot\System32\drivers\tcpip.sys 0x01400000 \SystemRoot\System32\drivers\fwpkclnt.sys 0x015CE000 \SystemRoot\system32\DRIVERS\vmstorfl.sys 0x01000000 \SystemRoot\system32\DRIVERS\volsnap.sys 0x015DE000 \SystemRoot\System32\Drivers\spldr.sys 0x0104C000 \SystemRoot\System32\drivers\rdyboost.sys 0x015E6000 \SystemRoot\System32\Drivers\mup.sys 0x0121B000 \SystemRoot\System32\drivers\hwpolicy.sys 0x0187D000 \SystemRoot\System32\DRIVERS\fvevol.sys 0x018B7000 \SystemRoot\system32\DRIVERS\disk.sys 0x018CD000 \SystemRoot\system32\DRIVERS\CLASSPNP.SYS 0x01933000 \SystemRoot\system32\DRIVERS\cdrom.sys 0x0195D000 \SystemRoot\System32\Drivers\Null.SYS 0x01966000 \SystemRoot\System32\Drivers\Beep.SYS 0x0196D000 \SystemRoot\System32\drivers\vga.sys 0x0197B000 \SystemRoot\System32\drivers\VIDEOPRT.SYS 0x019A0000 \SystemRoot\System32\drivers\watchdog.sys 0x019B0000 \SystemRoot\System32\DRIVERS\RDPCDD.sys 0x019B9000 \SystemRoot\system32\drivers\rdpencdd.sys 0x019C2000 \SystemRoot\system32\drivers\rdprefmp.sys 0x019CB000 \SystemRoot\System32\Drivers\Msfs.SYS 0x019D6000 \SystemRoot\System32\Drivers\Npfs.SYS 0x01800000 \SystemRoot\system32\DRIVERS\tdx.sys 0x0181E000 \SystemRoot\system32\DRIVERS\TDI.SYS 0x02CD5000 \SystemRoot\system32\drivers\afd.sys 0x02D5F000 \SystemRoot\System32\DRIVERS\netbt.sys 0x02DA4000 \SystemRoot\system32\drivers\ws2ifsl.sys 0x02DAF000 \SystemRoot\system32\DRIVERS\wfplwf.sys 0x02DB8000 \SystemRoot\system32\DRIVERS\pacer.sys 0x02DDE000 \SystemRoot\system32\DRIVERS\netbios.sys 0x02C00000 \SystemRoot\system32\DRIVERS\wanarp.sys 0x02C1B000 \SystemRoot\system32\DRIVERS\termdd.sys 0x02C2F000 \SystemRoot\system32\DRIVERS\rdbss.sys 0x02C80000 \SystemRoot\system32\DRIVERS\psinknc.sys 0x02CA9000 \SystemRoot\system32\drivers\nsiproxy.sys 0x02CB5000 \SystemRoot\system32\DRIVERS\mssmbios.sys 0x02CC0000 \SystemRoot\System32\drivers\discache.sys 0x040F3000 \SystemRoot\system32\drivers\csc.sys 0x04176000 \SystemRoot\System32\Drivers\dfsc.sys 0x04194000 \SystemRoot\system32\DRIVERS\blbdrive.sys 0x041A5000 \SystemRoot\system32\DRIVERS\tunnel.sys 0x041CB000 \SystemRoot\system32\DRIVERS\intelppm.sys 0x0FE15000 \SystemRoot\system32\DRIVERS\nvlddmkm.sys 0x10A70000 \SystemRoot\System32\Drivers\nvBridge.kmd 0x10A72000 \SystemRoot\System32\drivers\dxgkrnl.sys 0x10B66000 \SystemRoot\System32\drivers\dxgmms1.sys 0x10BAC000 \SystemRoot\system32\DRIVERS\HDAudBus.sys 0x04000000 \SystemRoot\system32\DRIVERS\e1y62x64.sys 0x10BD0000 \SystemRoot\system32\DRIVERS\usbuhci.sys 0x0404A000 \SystemRoot\system32\DRIVERS\USBPORT.SYS 0x10BDD000 \SystemRoot\system32\DRIVERS\usbehci.sys 0x040A0000 \SystemRoot\system32\DRIVERS\1394ohci.sys 0x10BEE000 \SystemRoot\system32\DRIVERS\intelsmb.sys 0x0FE00000 \SystemRoot\system32\DRIVERS\GEARAspiWDM.sys 0x10BF7000 \SystemRoot\system32\DRIVERS\wmiacpi.sys 0x040DE000 \SystemRoot\system32\DRIVERS\CompositeBus.sys 0x041E1000 \SystemRoot\system32\DRIVERS\AgileVpn.sys 0x0182B000 \SystemRoot\system32\DRIVERS\rasl2tp.sys 0x02DED000 \SystemRoot\system32\DRIVERS\ndistapi.sys 0x044BB000 \SystemRoot\system32\DRIVERS\ndiswan.sys 0x044EA000 \SystemRoot\system32\DRIVERS\raspppoe.sys 0x04505000 \SystemRoot\system32\DRIVERS\raspptp.sys 0x04526000 \SystemRoot\system32\DRIVERS\rassstp.sys 0x04540000 \SystemRoot\system32\DRIVERS\rdpbus.sys 0x0454B000 \SystemRoot\system32\DRIVERS\kbdclass.sys 0x0455A000 \SystemRoot\system32\DRIVERS\mouclass.sys 0x04569000 \SystemRoot\system32\DRIVERS\swenum.sys 0x0456B000 \SystemRoot\system32\DRIVERS\ks.sys 0x045AE000 \SystemRoot\system32\DRIVERS\umbus.sys 0x04400000 \SystemRoot\system32\DRIVERS\usbhub.sys 0x0445A000 \SystemRoot\System32\Drivers\NDProxy.SYS 0x0446F000 \SystemRoot\system32\drivers\nvhda64v.sys 0x045C0000 \SystemRoot\system32\drivers\portcls.sys 0x04498000 \SystemRoot\system32\drivers\drmk.sys 0x0FE0D000 \SystemRoot\system32\drivers\ksthunk.sys 0x05250000 \SystemRoot\system32\drivers\RTKVHD64.sys 0x00070000 \SystemRoot\System32\win32k.sys 0x053BA000 \SystemRoot\System32\drivers\Dxapi.sys 0x053C6000 \SystemRoot\system32\DRIVERS\hidusb.sys 0x053D4000 \SystemRoot\system32\DRIVERS\HIDCLASS.SYS 0x053ED000 \SystemRoot\system32\DRIVERS\HIDPARSE.SYS 0x053F6000 \SystemRoot\system32\DRIVERS\USBD.SYS 0x02AC7000 \SystemRoot\system32\DRIVERS\udfs.sys 0x02B1B000 \SystemRoot\system32\DRIVERS\mouhid.sys 0x02B28000 \SystemRoot\system32\DRIVERS\monitor.sys 0x02B36000 \SystemRoot\system32\DRIVERS\usbccgp.sys 0x02B53000 \SystemRoot\system32\DRIVERS\kbdhid.sys 0x00440000 \SystemRoot\System32\TSDDD.dll 0x02B61000 \SystemRoot\System32\Drivers\crashdmp.sys 0x02B6F000 \SystemRoot\System32\Drivers\dump_dumpata.sys 0x02B7B000 \SystemRoot\System32\Drivers\dump_atapi.sys 0x02B84000 \SystemRoot\System32\Drivers\dump_dumpfve.sys 0x006D0000 \SystemRoot\System32\cdd.dll 0x008D0000 \SystemRoot\System32\ATMFD.DLL 0x02B97000 \SystemRoot\system32\drivers\luafv.sys 0x02BBA000 \SystemRoot\system32\DRIVERS\PSINAflt.sys 0x02A00000 \SystemRoot\system32\DRIVERS\PSINProt.sys 0x02A23000 \SystemRoot\system32\DRIVERS\PSINFile.sys 0x02A42000 \SystemRoot\system32\DRIVERS\PSINProc.sys 0x02A63000 \SystemRoot\system32\drivers\WudfPf.sys 0x02A84000 \SystemRoot\system32\DRIVERS\lltdio.sys 0x02A99000 \SystemRoot\system32\DRIVERS\rspndr.sys 0x056AB000 \SystemRoot\system32\drivers\HTTP.sys 0x05773000 \SystemRoot\system32\DRIVERS\bowser.sys 0x05791000 \SystemRoot\System32\drivers\mpsdrv.sys 0x057A9000 \SystemRoot\system32\DRIVERS\mrxsmb.sys 0x05600000 \SystemRoot\system32\DRIVERS\mrxsmb10.sys 0x0564D000 \SystemRoot\system32\DRIVERS\mrxsmb20.sys 0x05670000 \??\C:\ProgramData\Intel\Extreme Tuning Utility\IOCbios\64bit\IOCBIOS.sys 0x05EEF000 \SystemRoot\system32\drivers\peauth.sys 0x05F95000 \SystemRoot\System32\Drivers\secdrv.SYS 0x05FA0000 \SystemRoot\System32\DRIVERS\srvnet.sys 0x05FCD000 \SystemRoot\System32\drivers\tcpipreg.sys 0x05E00000 \SystemRoot\System32\DRIVERS\srv2.sys 0x064E8000 \SystemRoot\System32\DRIVERS\srv.sys 0x06400000 \SystemRoot\system32\DRIVERS\asyncmac.sys 0x0642B000 \??\C:\Windows\system32\Drivers\PROCEXP113.SYS 0x76FD0000 \Windows\System32\ntdll.dll 0x47AC0000 \Windows\System32\smss.exe 0xFF2F0000 \Windows\System32\apisetschema.dll Processes (total 76): 0 System Idle Process 4 System 444 C:\Windows\System32\smss.exe 608 csrss.exe 684 C:\Windows\System32\wininit.exe 704 csrss.exe 740 C:\Windows\System32\services.exe 760 C:\Windows\System32\lsass.exe 768 C:\Windows\System32\lsm.exe 872 C:\Windows\System32\svchost.exe 948 C:\Windows\System32\winlogon.exe 976 C:\Windows\System32\nvvsvc.exe 1016 C:\Windows\System32\svchost.exe 616 C:\Windows\System32\svchost.exe 812 C:\Windows\System32\svchost.exe 1000 C:\Windows\System32\svchost.exe 1188 C:\Windows\System32\svchost.exe 1284 C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe 1296 C:\Windows\System32\nvvsvc.exe 1360 C:\Windows\System32\svchost.exe 1612 C:\Windows\System32\spoolsv.exe 1640 C:\Windows\System32\svchost.exe 1720 C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 1784 C:\Program Files (x86)\Bonjour\mDNSResponder.exe 1852 C:\Windows\System32\taskhost.exe 1932 C:\Program Files\FRITZ!DSL\IGDCTRL.EXE 1348 C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANHost.exe 1860 C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe 1708 C:\Windows\SysWOW64\PnkBstrA.exe 2068 C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe 2100 C:\Windows\System32\svchost.exe 2168 C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe 2212 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE 2544 C:\Windows\explorer.exe 2660 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE 2904 C:\Windows\System32\dwm.exe 2232 WmiPrvSE.exe 3992 C:\Windows\System32\svchost.exe 1092 C:\Windows\System32\svchost.exe 3896 C:\Windows\System32\SearchIndexer.exe 3324 C:\Windows\RAVCpl64.exe 4092 C:\Program Files\Windows Sidebar\sidebar.exe 4208 C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE 4420 C:\Program Files\FRITZ!DSL\FwebProt.exe 4796 C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUNMain.exe 4816 C:\Program Files (x86)\Common Files\Real\Update_OB\realsched.exe 4896 C:\Windows\System32\svchost.exe 3548 C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 3144 C:\Program Files (x86)\iTunes\iTunesHelper.exe 1528 C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe 2848 C:\Program Files\Windows Media Player\wmpnetwk.exe 5204 C:\Program Files\iPod\bin\iPodService.exe 5748 dllhost.exe 6292 C:\Windows\System32\svchost.exe 6696 C:\Program Files (x86)\Common Files\Intel\Intel Extreme Tuning Utility\PerfTuneService.exe 12616 C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE 6316 C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe 764 C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe 15064 C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe 6792 C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe 11232 C:\Windows\SysWOW64\rundll32.exe 6712 C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe 7448 C:\Program Files (x86)\ICQ7.5\ICQ.exe 11900 C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe 11032 C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe 11056 C:\Users\David\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghgabhipcejejjmhhchfonmamedcbeod\7.6.0.0_0\plugin\ClickClean.exe 11140 C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe 7564 C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe 9636 C:\Windows\System32\audiodg.exe 11640 C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe 12512 C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe 17768 C:\Windows\System32\SearchProtocolHost.exe 11836 C:\Windows\System32\SearchFilterHost.exe 19236 C:\Users\David\Desktop\MBRCheck.exe 18908 C:\Windows\System32\conhost.exe 10752 C:\Windows\System32\dllhost.exe \\.\C: --> \\.\PhysicalDrive1 at offset 0x00000000`00100000 (NTFS) \\.\R: --> \\.\PhysicalDrive0 at offset 0x00000000`06500000 (NTFS) PhysicalDrive1 Model Number: SAMSUNGHD161GJ, Rev: 1AC01118 PhysicalDrive0 Model Number: WDCWD20EADS-00R6B0, Rev: 01.00A01 Size Device Name MBR Status -------------------------------------------- 149 GB \\.\PhysicalDrive1 Windows 7 MBR code detected SHA1: 4379A3D43019B46FA357F7DD6A53B45A3CA8FB79 1863 GB \\.\PhysicalDrive0 Windows 7 MBR code detected SHA1: 4379A3D43019B46FA357F7DD6A53B45A3CA8FB79 Done! |
Sieht ok aus. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SASW und poste die Logs. Denk dran beide Tools zu updaten vor dem Scan!! Anschließend über den OnlineScanner von ESET eine zusätzliche Meinung zu holen ist auch nicht verkehrt: ESET Online Scanner
|
Malwarebytes' Anti-Malware 1.51.0.1200 www.malwarebytes.org Datenbank Version: 6840 Windows 6.1.7600 Internet Explorer 8.0.7600.16385 12.06.2011 14:56:05 mbam-log-2011-06-12 (14-56-05).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|R:\|) Durchsuchte Objekte: 391141 Laufzeit: 1 Stunde(n), 1 Minute(n), 17 Sekunde(n) Infizierte Speicherprozesse: 0 Infizierte Speichermodule: 0 Infizierte Registrierungsschlüssel: 0 Infizierte Registrierungswerte: 0 Infizierte Dateiobjekte der Registrierung: 0 Infizierte Verzeichnisse: 0 Infizierte Dateien: 0 Infizierte Speicherprozesse: (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: (Keine bösartigen Objekte gefunden) Infizierte Dateien: (Keine bösartigen Objekte gefunden) SUPERAntiSpyware Scan Log hxxp://www.superantispyware.com Generated 06/12/2011 at 03:42 PM Application Version : 4.53.1000 Core Rules Database Version : 7254 Trace Rules Database Version: 5066 Scan type : Complete Scan Total Scan Time : 01:52:03 Memory items scanned : 678 Memory threats detected : 0 Registry items scanned : 15358 Registry threats detected : 0 File items scanned : 232182 File threats detected : 4 Adware.Tracking Cookie C:\Users\David\AppData\Roaming\Microsoft\Windows\Cookies\david@tracking.quisma[2].txt s0.2mdn.net [ C:\Users\David\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\F3LQJTWE ] www.adservercentral.info [ C:\Users\David\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\F3LQJTWE ] www.naiadsystems.com [ C:\Users\David\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\F3LQJTWE ] ESETSmartInstaller@High as CAB hook log: OnlineScanner64.ocx - registred OK OnlineScanner.ocx - registred OK # version=7 # iexplore.exe=8.00.7600.16385 (win7_rtm.090713-1255) # OnlineScanner.ocx=1.0.0.6526 # api_version=3.0.2 # EOSSerial=0a7ebd6150e30d4087bd07a08c3e366d # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2011-06-12 03:57:58 # local_time=2011-06-12 05:57:58 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1033 # osver=6.1.7600 NT # compatibility_mode=512 16777215 100 0 0 0 0 0 # compatibility_mode=1538 16774142 20 3 8266363 136439327 0 0 # compatibility_mode=5893 16776573 100 94 16501205 60295508 0 0 # compatibility_mode=8192 67108863 100 0 534 534 0 0 # scanned=234519 # found=2 # cleaned=0 # scan_time=4446 C:\Users\David\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\57\396b96f9-2042ed7e multiple threats (unable to clean) 00000000000000000000000000000000 I C:\Users\David\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\62\412e85be-72eeab9e multiple threats (unable to clean) 00000000000000000000000000000000 I Browser spinnen jedoch immer noch gestern nachdem ich mbr check gemacht ging alles. Heute Morgen aber wieder nicht mehr . |
Nur Cookies und Überreste. Kann weg. Rechner jetzt wieder im Lot? |
Nein Chrome funktioniert immer noch nicht und die anderen Browser sind lahm und spinnen . Ich bin am verzweifeln hab schon sämtliches probiert :( . Aber danke Arne :) |
Alle Zeitangaben in WEZ +1. Es ist jetzt 22:32 Uhr. |
Copyright ©2000-2025, Trojaner-Board