ComboFix 15-07-20.01 - Conny4 21.07.2015 23:07:43.1.2 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.4095.2001 [GMT 2:00] ausgeführt von:: c:\users\Conny4\Downloads\ComboFix.exe AV: McAfee Anti-Virus und Anti-Spyware *Disabled/Updated* {DA9F8ED0-D0DE-39CC-F55A-51AB4CC1B556} FW: McAfee Firewall *Enabled* {E2A40FF5-9AB1-3894-DE05-F89EB212F22D} SP: McAfee Anti-Virus und Anti-Spyware *Disabled/Updated* {61FE6F34-F6E4-3642-CFEA-6AD93746FFEB} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\programdata\221901819d2346c8 c:\programdata\221901819d2346c8\{94851E46-5E5B-DD67-2593-709E8D27DC4C}.20150316094329 c:\programdata\221901819d2346c8\04fbea7a3702443f0319df3704d0da6f.ini c:\programdata\221901819d2346c8\73a5cd548c868dbd0319df3704d0da6f.ini c:\programdata\221901819d2346c8\c012be0f86ee25a50319df3704d0da6f.ini c:\programdata\221901819d2346c8\fffe902d234ddce80319df3704d0da6f.ini . . ((((((((((((((((((((((( Dateien erstellt von 2015-06-21 bis 2015-07-21 )))))))))))))))))))))))))))))) . . 2015-07-21 21:25 . 2015-07-21 21:25 -------- d-----w- c:\users\Default\AppData\Local\temp 2015-07-21 18:05 . 2015-07-21 18:05 -------- d-----w- c:\program files\Common Files\AV 2015-07-21 16:23 . 2015-07-21 16:26 -------- d-----w- c:\users\Conny4\AppData\Roaming\RavensburgerTipToi 2015-07-21 16:23 . 2015-07-21 16:23 -------- d-----w- c:\programdata\RavensburgerTipToi 2015-07-21 16:22 . 2015-07-21 16:22 -------- d-----w- c:\program files (x86)\Ravensburger tiptoi 2015-07-20 15:48 . 2015-07-20 15:48 -------- d-----w- c:\program files (x86)\Common Files\Java 2015-07-19 17:11 . 2015-07-19 17:11 -------- d-----w- c:\users\Conny4\AppData\Roaming\TomTom 2015-07-19 17:04 . 2015-07-19 17:05 -------- d-----w- c:\program files (x86)\TomTom HOME 2 2015-07-17 11:16 . 2015-07-17 11:16 -------- d-----w- c:\programdata\Motorola 2015-07-17 11:14 . 2015-07-17 11:36 -------- d-----w- C:\Temp 2015-07-17 11:14 . 2015-07-17 11:14 -------- d-----w- c:\users\Conny4\AppData\Roaming\Motorola Mobility 2015-07-17 11:06 . 2015-07-17 11:13 -------- d-----w- c:\program files (x86)\Motorola Mobility 2015-07-17 11:06 . 2015-07-17 11:06 -------- d-----w- c:\program files (x86)\Motorola 2015-07-17 10:45 . 2015-07-17 10:45 -------- d-----w- c:\program files\Common Files\Motorola Shared 2015-07-17 10:44 . 2015-07-17 10:44 -------- d-----w- c:\users\Conny4\AppData\Roaming\Motorola 2015-07-08 13:34 . 2015-07-18 03:48 -------- d-----w- c:\program files (x86)\Dropbox 2015-07-03 05:09 . 2015-07-03 05:09 207544 ----a-w- c:\program files (x86)\Internet Explorer\Plugins\nppdf32.dll 2015-06-23 19:05 . 2013-09-23 11:49 197704 ----a-w- c:\windows\system32\drivers\HipShieldK.sys . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2015-07-20 16:05 . 2014-08-07 11:22 778416 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2015-07-20 16:05 . 2014-08-07 11:22 142512 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2015-07-20 15:47 . 2014-11-19 12:12 97888 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2015-05-05 01:29 . 2015-05-12 18:41 342016 ----a-w- c:\windows\system32\schannel.dll 2015-05-05 01:12 . 2015-05-12 18:41 248832 ----a-w- c:\windows\SysWow64\schannel.dll 2015-05-01 13:17 . 2015-05-17 10:19 124112 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll 2015-05-01 13:16 . 2015-05-17 10:19 102608 ----a-w- c:\windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll 2015-04-30 08:07 . 2015-03-30 13:53 140425016 ----a-w- c:\windows\system32\MRT.exe 2015-04-27 19:28 . 2015-05-12 18:39 5569984 ----a-w- c:\windows\system32\ntoskrnl.exe 2015-04-27 19:28 . 2015-05-12 18:39 95680 ----a-w- c:\windows\system32\drivers\ksecdd.sys 2015-04-27 19:28 . 2015-05-12 18:39 155584 ----a-w- c:\windows\system32\drivers\ksecpkg.sys 2015-04-27 19:26 . 2015-05-12 18:39 1728960 ----a-w- c:\windows\system32\ntdll.dll 2015-04-27 19:23 . 2015-05-12 18:39 362496 ----a-w- c:\windows\system32\wow64win.dll 2015-04-27 19:23 . 2015-05-12 18:39 243712 ----a-w- c:\windows\system32\wow64.dll 2015-04-27 19:23 . 2015-05-12 18:39 215040 ----a-w- c:\windows\system32\winsrv.dll 2015-04-27 19:23 . 2015-05-12 18:39 13312 ----a-w- c:\windows\system32\wow64cpu.dll 2015-04-27 19:23 . 2015-05-12 18:39 210944 ----a-w- c:\windows\system32\wdigest.dll 2015-04-27 19:23 . 2015-05-12 18:39 1254400 ----a-w- c:\windows\system32\diagtrack.dll 2015-04-27 19:23 . 2015-05-12 18:39 86528 ----a-w- c:\windows\system32\TSpkg.dll 2015-04-27 19:23 . 2015-05-12 18:39 879104 ----a-w- c:\windows\system32\tdh.dll 2015-04-27 19:23 . 2015-05-12 18:39 136192 ----a-w- c:\windows\system32\sspicli.dll 2015-04-27 19:23 . 2015-05-12 18:39 29184 ----a-w- c:\windows\system32\sspisrv.dll 2015-04-27 19:23 . 2015-05-12 18:39 503808 ----a-w- c:\windows\system32\srcore.dll 2015-04-27 19:23 . 2015-05-12 18:39 50176 ----a-w- c:\windows\system32\srclient.dll 2015-04-27 19:23 . 2015-05-12 18:39 113664 ----a-w- c:\windows\system32\sechost.dll 2015-04-27 19:23 . 2015-05-12 18:39 28160 ----a-w- c:\windows\system32\secur32.dll 2015-04-27 19:23 . 2015-05-12 18:39 314880 ----a-w- c:\windows\system32\msv1_0.dll 2015-04-27 19:23 . 2015-05-12 18:39 309760 ----a-w- c:\windows\system32\ncrypt.dll 2015-04-27 19:23 . 2015-05-12 18:39 16384 ----a-w- c:\windows\system32\ntvdm64.dll 2015-04-27 19:23 . 2015-05-12 18:39 424448 ----a-w- c:\windows\system32\KernelBase.dll 2015-04-27 19:23 . 2015-05-12 18:39 1162752 ----a-w- c:\windows\system32\kernel32.dll 2015-04-27 19:23 . 2015-05-12 18:39 1461760 ----a-w- c:\windows\system32\lsasrv.dll 2015-04-27 19:23 . 2015-05-12 18:39 728064 ----a-w- c:\windows\system32\kerberos.dll 2015-04-27 19:23 . 2015-05-12 18:39 43520 ----a-w- c:\windows\system32\csrsrv.dll 2015-04-27 19:23 . 2015-05-12 18:39 22016 ----a-w- c:\windows\system32\credssp.dll 2015-04-27 19:23 . 2015-05-12 18:39 879104 ----a-w- c:\windows\system32\advapi32.dll 2015-04-27 19:22 . 2015-05-12 18:39 404992 ----a-w- c:\windows\system32\tracerpt.exe 2015-04-27 19:22 . 2015-05-12 18:39 47104 ----a-w- c:\windows\system32\typeperf.exe 2015-04-27 19:22 . 2015-05-12 18:39 112640 ----a-w- c:\windows\system32\smss.exe 2015-04-27 19:22 . 2015-05-12 18:39 296960 ----a-w- c:\windows\system32\rstrui.exe 2015-04-27 19:22 . 2015-05-12 18:39 43008 ----a-w- c:\windows\system32\relog.exe 2015-04-27 19:22 . 2015-05-12 18:39 31232 ----a-w- c:\windows\system32\lsass.exe 2015-04-27 19:22 . 2015-05-12 18:39 104448 ----a-w- c:\windows\system32\logman.exe 2015-04-27 19:22 . 2015-05-12 18:39 19456 ----a-w- c:\windows\system32\diskperf.exe 2015-04-27 19:22 . 2015-05-12 18:39 338432 ----a-w- c:\windows\system32\conhost.exe 2015-04-27 19:21 . 2015-05-12 18:39 64000 ----a-w- c:\windows\system32\auditpol.exe 2015-04-27 19:18 . 2015-05-12 18:39 60416 ----a-w- c:\windows\system32\msobjs.dll 2015-04-27 19:18 . 2015-05-12 18:39 146432 ----a-w- c:\windows\system32\msaudite.dll 2015-04-27 19:16 . 2015-05-12 18:39 6656 ----a-w- c:\windows\system32\apisetschema.dll 2015-04-27 19:16 . 2015-05-12 18:39 6144 ---ha-w- c:\windows\system32\api-ms-win-security-base-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 4608 ---ha-w- c:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 4608 ---ha-w- c:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 4096 ---ha-w- c:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 4096 ---ha-w- c:\windows\system32\api-ms-win-core-synch-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3584 ---ha-w- c:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3584 ---ha-w- c:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3584 ---ha-w- c:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3584 ---ha-w- c:\windows\system32\api-ms-win-core-misc-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3584 ---ha-w- c:\windows\system32\api-ms-win-core-memory-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3584 ---ha-w- c:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3072 ---ha-w- c:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3072 ---ha-w- c:\windows\system32\api-ms-win-core-util-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3072 ---ha-w- c:\windows\system32\api-ms-win-core-profile-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3072 ---ha-w- c:\windows\system32\api-ms-win-core-io-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3072 ---ha-w- c:\windows\system32\api-ms-win-core-string-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localization-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 5120 ---ha-w- c:\windows\system32\api-ms-win-core-file-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3584 ---ha-w- c:\windows\system32\api-ms-win-core-heap-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3072 ---ha-w- c:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3072 ---ha-w- c:\windows\system32\api-ms-win-core-handle-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3072 ---ha-w- c:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3072 ---ha-w- c:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3072 ---ha-w- c:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3072 ---ha-w- c:\windows\system32\api-ms-win-core-debug-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3072 ---ha-w- c:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 3072 ---ha-w- c:\windows\system32\api-ms-win-core-console-l1-1-0.dll 2015-04-27 19:16 . 2015-05-12 18:39 686080 ----a-w- c:\windows\system32\adtschema.dll 2015-04-27 19:11 . 2015-05-12 18:39 3934144 ----a-w- c:\windows\SysWow64\ntoskrnl.exe 2015-04-27 19:11 . 2015-05-12 18:39 3989440 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe 2015-04-27 19:08 . 2015-05-12 18:39 1310744 ----a-w- c:\windows\SysWow64\ntdll.dll 2015-04-27 19:05 . 2015-05-12 18:39 172032 ----a-w- c:\windows\SysWow64\wdigest.dll 2015-04-27 19:05 . 2015-05-12 18:39 65536 ----a-w- c:\windows\SysWow64\TSpkg.dll 2015-04-27 19:05 . 2015-05-12 18:39 635392 ----a-w- c:\windows\SysWow64\tdh.dll 2015-04-27 19:05 . 2015-05-12 18:39 43008 ----a-w- c:\windows\SysWow64\srclient.dll 2015-04-27 19:05 . 2015-05-12 18:39 92160 ----a-w- c:\windows\SysWow64\sechost.dll 2015-04-27 19:05 . 2015-05-12 18:39 22016 ----a-w- c:\windows\SysWow64\secur32.dll 2015-04-27 19:05 . 2015-05-12 18:39 14336 ----a-w- c:\windows\SysWow64\ntvdm64.dll 2015-04-27 19:05 . 2015-05-12 18:39 221184 ----a-w- c:\windows\SysWow64\ncrypt.dll 2015-04-27 19:05 . 2015-05-12 18:39 259584 ----a-w- c:\windows\SysWow64\msv1_0.dll 2015-04-27 19:04 . 2015-05-12 18:39 550912 ----a-w- c:\windows\SysWow64\kerberos.dll 2015-04-27 19:04 . 2015-05-12 18:39 17408 ----a-w- c:\windows\SysWow64\credssp.dll 2015-04-27 19:04 . 2015-05-12 18:39 641536 ----a-w- c:\windows\SysWow64\advapi32.dll 2015-04-27 19:04 . 2015-05-12 18:39 44032 ----a-w- c:\windows\apppatch\acwow64.dll 2015-04-27 19:04 . 2015-05-12 18:39 364544 ----a-w- c:\windows\SysWow64\tracerpt.exe 2015-04-27 19:04 . 2015-05-12 18:39 40448 ----a-w- c:\windows\SysWow64\typeperf.exe 2015-04-27 19:04 . 2015-05-12 18:39 25600 ----a-w- c:\windows\SysWow64\setup16.exe 2015-04-27 19:04 . 2015-05-12 18:39 37888 ----a-w- c:\windows\SysWow64\relog.exe 2015-04-27 19:04 . 2015-05-12 18:39 82944 ----a-w- c:\windows\SysWow64\logman.exe 2015-04-27 19:03 . 2015-05-12 18:39 17408 ----a-w- c:\windows\SysWow64\diskperf.exe . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt1] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 151576 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.26.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt2] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 151576 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.26.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt3] @="{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 151576 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.26.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt4] @="{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 151576 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.26.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt5] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 151576 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.26.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt6] @="{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 151576 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.26.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt7] @="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 151576 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.26.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt8] @="{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 151576 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.26.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "GoogleDriveSync"="c:\program files (x86)\Google\Drive\googledrivesync.exe" [2014-10-21 22869088] "MyDriveConnect.exe"="c:\program files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe" [2015-06-04 1917832] "TomTomHOME.exe"="c:\program files (x86)\TomTom HOME 2\TomTomHOMERunner.exe" [2015-04-30 248176] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "HDAudDeck"="c:\program files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" [2014-07-19 2792448] "mcpltui_exe"="c:\program files\Common Files\McAfee\Platform\mcuicnt.exe" [2015-04-02 719272] "SoundTouch Music Server"="c:\program files (x86)\SoundTouch\SoundTouchMusicServer\SoundTouch music server.exe" [2014-12-11 1082880] "NBAgent"="c:\program files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" [2011-04-08 1406248] "QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2014-10-02 421888] "PMBVolumeWatcher"="c:\program files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe" [2015-04-17 2669568] "Dropbox"="c:\program files (x86)\Dropbox\Client\Dropbox.exe" [2015-07-07 44236896] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2015-06-08 334896] . c:\users\Conny4\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ Adobe Gamma.lnk - c:\program files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2005-3-16 113664] HiDrive.lnk - c:\program files (x86)\Strato\HiDrive\HiDrive.App.exe /hideexp [2015-4-1 9164912] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) "EnableLinkedConnections"= 1 (0x1) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32] "aux1"=wdmaud.drv . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] @="" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc] @="" . R2 0132391437386083mcinstcleanup;McAfee Application Installer Cleanup (0132391437386083);c:\windows\TEMP\013239~1.EXE;c:\windows\TEMP\013239~1.EXE [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 dbupdate;Dropbox-Update-Service (dbupdate);c:\program files (x86)\Dropbox\Update\DropboxUpdate.exe;c:\program files (x86)\Dropbox\Update\DropboxUpdate.exe [x] R2 DiskBoss Service;DiskBoss Service;c:\program files (x86)\DiskBoss\bin\diskbsa.exe;c:\program files (x86)\DiskBoss\bin\diskbsa.exe [x] R2 lxduCATSCustConnectService;lxduCATSCustConnectService;c:\windows\system32\spool\DRIVERS\x64\3\\lxduserv.exe;c:\windows\SYSNATIVE\spool\DRIVERS\x64\3\\lxduserv.exe [x] R3 AndnetBus;LGE Mobile USB Composite Device;c:\windows\system32\DRIVERS\lgandnetbus64.sys;c:\windows\SYSNATIVE\DRIVERS\lgandnetbus64.sys [x] R3 AndNetDiag;LGE AndroidNet USB Serial Port;c:\windows\system32\DRIVERS\lgandnetdiag64.sys;c:\windows\SYSNATIVE\DRIVERS\lgandnetdiag64.sys [x] R3 ANDNetModem;LGE AndroidNet USB Modem;c:\windows\system32\DRIVERS\lgandnetmodem64.sys;c:\windows\SYSNATIVE\DRIVERS\lgandnetmodem64.sys [x] R3 dbupdatem;Dropbox-Update-Service (dbupdatem);c:\program files (x86)\Dropbox\Update\DropboxUpdate.exe;c:\program files (x86)\Dropbox\Update\DropboxUpdate.exe [x] R3 HipShieldK;McAfee Inc. HipShieldK;c:\windows\system32\drivers\HipShieldK.sys;c:\windows\SYSNATIVE\drivers\HipShieldK.sys [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x] R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\MBAMSwissArmy.sys;c:\windows\SYSNATIVE\drivers\MBAMSwissArmy.sys [x] R3 mfencrk;McAfee Inc. mfencrk;c:\windows\system32\DRIVERS\mfencrk.sys;c:\windows\SYSNATIVE\DRIVERS\mfencrk.sys [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\DRIVERS\ssadbus.sys;c:\windows\SYSNATIVE\DRIVERS\ssadbus.sys [x] R3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\DRIVERS\ssadmdfl.sys;c:\windows\SYSNATIVE\DRIVERS\ssadmdfl.sys [x] R3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\DRIVERS\ssadmdm.sys;c:\windows\SYSNATIVE\DRIVERS\ssadmdm.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x] R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x] R3 WPRO_41_2001;WinPcap Packet Driver (WPRO_41_2001);c:\windows\system32\drivers\WPRO_41_2001.sys;c:\windows\SYSNATIVE\drivers\WPRO_41_2001.sys [x] R4 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x] S0 mfedisk;McAfee AAC Disk Filter Driver;c:\windows\system32\DRIVERS\mfedisk.sys;c:\windows\SYSNATIVE\DRIVERS\mfedisk.sys [x] S0 mfewfpk;McAfee Inc. mfewfpk;c:\windows\system32\drivers\mfewfpk.sys;c:\windows\SYSNATIVE\drivers\mfewfpk.sys [x] S1 {0bab8292-6c5d-4497-a29c-a0f9172b118b}Gw64;{0bab8292-6c5d-4497-a29c-a0f9172b118b}Gw64;c:\windows\system32\drivers\{0bab8292-6c5d-4497-a29c-a0f9172b118b}Gw64.sys;c:\windows\SYSNATIVE\drivers\{0bab8292-6c5d-4497-a29c-a0f9172b118b}Gw64.sys [x] S1 cbfs5;cbfs5;c:\windows\system32\drivers\cbfs5.sys;c:\windows\SYSNATIVE\drivers\cbfs5.sys [x] S2 Apple Mobile Device Service;Apple Mobile Device Service;c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe;c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [x] S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 HomeNetSvc;McAfee Home Network;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [x] S2 lxdu_device;lxdu_device;c:\windows\system32\lxducoms.exe;c:\windows\SYSNATIVE\lxducoms.exe [x] S2 McAPExe;McAfee AP Service;c:\program files\McAfee\MSC\McAPExe.exe;c:\program files\McAfee\MSC\McAPExe.exe [x] S2 mccspsvc;McAfee CSP Service;c:\program files\Common Files\McAfee\CSP\1.5.450.0\McCSPServiceHost.exe;c:\program files\Common Files\McAfee\CSP\1.5.450.0\McCSPServiceHost.exe [x] S2 McMPFSvc;McAfee Personal Firewall Service;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [x] S2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [x] S2 mcpltsvc;McAfee Platform Services;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [x] S2 mfefire;McAfee Firewall Core Service;c:\program files\Common Files\McAfee\SystemCore\\mfefire.exe;c:\program files\Common Files\McAfee\SystemCore\\mfefire.exe [x] S2 mfemms;McAfee Service Controller;c:\program files\Common Files\McAfee\SystemCore\\mfemms.exe;c:\program files\Common Files\McAfee\SystemCore\\mfemms.exe [x] S2 mfevtp;McAfee Validation Trust Protection Service;c:\windows\system32\mfevtps.exe;c:\windows\SYSNATIVE\mfevtps.exe [x] S2 NAUpdate;Nero Update;c:\program files (x86)\Nero\Update\NASvc.exe;c:\program files (x86)\Nero\Update\NASvc.exe [x] S2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;c:\program files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe;c:\program files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [x] S2 ss_conn_service;SAMSUNG Mobile Connectivity Service;c:\program files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe;c:\program files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [x] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x] S2 TomTomHOMEService;TomTomHOMEService;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe [x] S3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys;c:\windows\SYSNATIVE\drivers\cfwids.sys [x] S3 clwvd;CyberLink WebCam Virtual Driver;c:\windows\system32\DRIVERS\clwvd.sys;c:\windows\SYSNATIVE\DRIVERS\clwvd.sys [x] S3 mfeaack;McAfee Inc. mfeaack;c:\windows\system32\drivers\mfeaack.sys;c:\windows\SYSNATIVE\drivers\mfeaack.sys [x] S3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys;c:\windows\SYSNATIVE\drivers\mfefirek.sys [x] S3 mfencbdc;McAfee Inc. mfencbdc;c:\windows\system32\DRIVERS\mfencbdc.sys;c:\windows\SYSNATIVE\DRIVERS\mfencbdc.sys [x] S3 RTL8023x64;Realtek 10/100-Netzwerkkartenfamilie-NDIS-x64-Treiber;c:\windows\system32\DRIVERS\Rtnic64.sys;c:\windows\SYSNATIVE\DRIVERS\Rtnic64.sys [x] S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys;c:\windows\SYSNATIVE\drivers\viahduaa.sys [x] . . Inhalt des "geplante Tasks" Ordners . 2015-07-21 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-08-07 16:05] . 2015-07-21 c:\windows\Tasks\DropboxUpdateTaskMachineCore.job - c:\program files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-07-08 13:33] . 2015-07-21 c:\windows\Tasks\DropboxUpdateTaskMachineUA.job - c:\program files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-07-08 13:33] . 2015-07-21 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-07-19 13:24] . 2015-07-21 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-07-19 13:24] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt1] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt1"] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 184856 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.26.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt2] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt2"] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 184856 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.26.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt3] @="{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt3"] @="{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 184856 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.26.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt4] @="{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt4"] @="{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 184856 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.26.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt5] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt5"] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 184856 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.26.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt6] @="{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt6"] @="{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 184856 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.26.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt7] @="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt7"] @="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 184856 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.26.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt8] @="{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt8"] @="{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 184856 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.26.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt1] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt1"] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 184856 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.26.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt2] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt2"] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 184856 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.26.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt3] @="{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt3"] @="{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 184856 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.26.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt4] @="{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt4"] @="{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 184856 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.26.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt5] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt5"] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 184856 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.26.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt6] @="{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt6"] @="{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 184856 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.26.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt7] @="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt7"] @="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 184856 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.26.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt8] @="{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt8"] @="{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}] 2015-07-07 19:24 184856 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.26.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}] 2014-10-21 16:52 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}] 2014-10-21 16:52 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}] 2014-10-21 16:52 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}] 2014-10-21 16:52 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}] 2014-10-21 16:52 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\HiDriveOverlayIcon1] @="{45a23d58-ebdc-3d73-ae36-80fd48cb363e}" [HKEY_CLASSES_ROOT\CLSID\{45a23d58-ebdc-3d73-ae36-80fd48cb363e}] 2010-11-21 03:23 444752 ----a-w- c:\windows\System32\mscoree.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\HiDriveOverlayIcon2] @="{654b0053-308a-3fcf-8a68-08cc1f1e7783}" [HKEY_CLASSES_ROOT\CLSID\{654b0053-308a-3fcf-8a68-08cc1f1e7783}] 2010-11-21 03:23 444752 ----a-w- c:\windows\System32\mscoree.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "lxdumon.exe"="c:\program files (x86)\Lexmark 5600-6600 Series\lxdumon.exe" [2010-02-04 676520] "lxduamon"="c:\program files (x86)\Lexmark 5600-6600 Series\lxduamon.exe" [2010-02-04 16040] "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2015-04-06 169768] . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = about:blank mStart Page = about:blank mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = *.local;192.168.*.* IE: Nach Microsoft E&xel exportieren - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000 IE: {{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - LSP: c:\program files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll TCP: DhcpNameServer = 192.168.0.1 192.168.0.2 FF - ProfilePath - c:\users\Conny4\AppData\Roaming\Mozilla\Firefox\Profiles\hlqta3hd.default\ FF - prefs.js: browser.startup.homepage - www.msn.de . - - - - Entfernte verwaiste Registrierungseinträge - - - - . BHO-{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - (no file) . . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\S-1-5-21-806302984-4192167818-1978550639-1000\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{4B58A4AD-3E0F-C366-A9A4-380012A567EC}*] "pajcnpfedfcoolfhenebcnmkdippppif"=hex:6a,61,65,62,6e,65,62,6c,6c,68,64,6b,6b, 6e,68,63,69,6d,68,65,00,00 "oapcpacicfaompjignbmjlcbclghel"=hex:6a,61,65,62,6e,65,62,6c,6c,68,64,6b,6b,6e, 68,63,69,6d,68,65,00,00 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_18_0_0_209_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_18_0_0_209_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}] @Denied: (A 2) (Everyone) @="IFlashBroker6" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_18_0_0_209_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_18_0_0_209_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_18_0_0_209.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.18" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_18_0_0_209.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_18_0_0_209.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_18_0_0_209.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}] @Denied: (A 2) (Everyone) @="IFlashBroker6" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\McAfee] "SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\ . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2015-07-22 00:00:22 ComboFix-quarantined-files.txt 2015-07-21 21:58 . Vor Suchlauf: 12 Verzeichnis(se), 12.376.506.368 Bytes frei Nach Suchlauf: 16 Verzeichnis(se), 12.289.638.400 Bytes frei . - - End Of File - - 53CDF28FBE2A27B58E8E192F2A1E454F A36C5E4F47E84449FF07ED3517B43A31