![]() |
|
Plagegeister aller Art und deren Bekämpfung: Internet läuft langsam/baut nicht auf / Downloads und Aktualisierungen funktionieren nicht mehrWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() |
|
![]() | #1 |
![]() | ![]() Internet läuft langsam/baut nicht auf / Downloads und Aktualisierungen funktionieren nicht mehr Das hab ich, also genau gelesen...ich hab ja ein 64Bit System Systemtyp: 64 Bit-Betriebssystem....so stehts unter Eigenschaften. Ich hab aber davon ab beide runtergeladen, weil mich diese Fehlermeldung auch irritiert hat. Auch mit der 32er Version hats nicht geklappt. Selbe Fehlermeldung. Edit: Okay, jetzt gehts auf einmal. (also die 64er Version) Vllt. lags daran , dass ich der Computer nun neu gestartet ist...keine Ahnung. Ich lass nun laufen. FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 21-06-2014 01 Ran by Dirk Brehme (administrator) on DIRKBREHME-PC on 21-06-2014 09:14:12 Running from C:\Users\Dirk Brehme\Downloads Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe (Microsoft Corporation) C:\Windows\System32\wisptis.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Microsoft Corporation) C:\Windows\System32\wisptis.exe () C:\Program Files (x86)\NewPlayer\NewPlayerUpdaterService.exe () C:\Program Files (x86)\NewPlayer\NewPlayerUpdater.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Haufe-Lexware GmbH & Co. KG) C:\Program Files (x86)\Common Files\Lexware\Update Manager\LxUpdateManager.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Windows\System32\wisptis.exe (Microsoft Corporation) C:\Windows\System32\wisptis.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieCtrl.exe (MyPCBackup.com) C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\Dxpserver.exe () C:\Program Files (x86)\Fortunitas\bin\utilFortunitas.exe (Microsoft Corporation) C:\Windows\System32\DeviceDisplayObjectProvider.exe () C:\Program Files (x86)\Fortunitas\bin\Fortunitas.PurBrowse64.exe () C:\Program Files (x86)\Fortunitas\bin\Fortunitas.BrowserAdapter.exe () C:\Program Files (x86)\Fortunitas\bin\Fortunitas.BrowserAdapter.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Program Files (x86)\Fortunitas\updateFortunitas.exe (Google Inc.) C:\Program Files (x86)\Google\Update\Install\{9DC1043B-DF24-400B-8E09-F0DF32BB40E6}\35.0.1916.153_chrome_installer.exe (Google Inc.) C:\Windows\Temp\CR_40E3A.tmp\setup.exe (Farbar) C:\Users\Dirk Brehme\Desktop\FRST64 (1).exe ==================== Registry (Whitelisted) ================== HKLM-x32\...\Run: [LexwareInfoService] => C:\Program Files (x86)\Common Files\Lexware\Update Manager\LxUpdateManager.exe [189808 2011-07-31] (Haufe-Lexware GmbH & Co. KG) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3888648 2014-05-23] (AVAST Software) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-05-07] (Oracle Corporation) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-4072139406-44083544-3542647296-1001\...\Run: [SandboxieControl] => C:\Program Files\Sandboxie\SbieCtrl.exe [759384 2013-07-08] (Sandboxie Holdings, LLC) AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll => C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll File Not Found Startup: C:\Users\Dirk Brehme\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk ShortcutTarget: MyPC Backup.lnk -> C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (MyPCBackup.com) ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.nationzoom.com/?type=hp&ts=1388231924&from=tugs&uid=HitachiXHDT721032SLA380_STD207MT267H1S267H1SX HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xE17491459A6BCE01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.nationzoom.com/?type=hp&ts=1388231924&from=tugs&uid=HitachiXHDT721032SLA380_STD207MT267H1S267H1SX HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.nationzoom.com/web/?type=ds&ts=1388231924&from=tugs&uid=HitachiXHDT721032SLA380_STD207MT267H1S267H1SX&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.nationzoom.com/?type=hp&ts=1388231924&from=tugs&uid=HitachiXHDT721032SLA380_STD207MT267H1S267H1SX HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.nationzoom.com/?type=hp&ts=1388231924&from=tugs&uid=HitachiXHDT721032SLA380_STD207MT267H1S267H1SX HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.nationzoom.com/web/?type=ds&ts=1388231924&from=tugs&uid=HitachiXHDT721032SLA380_STD207MT267H1S267H1SX&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.nationzoom.com/web/?type=ds&ts=1388231924&from=tugs&uid=HitachiXHDT721032SLA380_STD207MT267H1S267H1SX&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.nationzoom.com/?type=hp&ts=1388231924&from=tugs&uid=HitachiXHDT721032SLA380_STD207MT267H1S267H1SX HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.nationzoom.com/?type=hp&ts=1388231924&from=tugs&uid=HitachiXHDT721032SLA380_STD207MT267H1S267H1SX HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.nationzoom.com/web/?type=ds&ts=1388231924&from=tugs&uid=HitachiXHDT721032SLA380_STD207MT267H1S267H1SX&q={searchTerms} StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.nationzoom.com/?type=sc&ts=1388231924&from=tugs&uid=HitachiXHDT721032SLA380_STD207MT267H1S267H1SX SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nationzoom.com/web/?type=ds&ts=1388231924&from=tugs&uid=HitachiXHDT721032SLA380_STD207MT267H1S267H1SX&q={searchTerms} SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nationzoom.com/web/?type=ds&ts=1388231924&from=tugs&uid=HitachiXHDT721032SLA380_STD207MT267H1S267H1SX&q={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nationzoom.com/web/?type=ds&ts=1388231924&from=tugs&uid=HitachiXHDT721032SLA380_STD207MT267H1S267H1SX&q={searchTerms} SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nationzoom.com/web/?type=ds&ts=1388231924&from=tugs&uid=HitachiXHDT721032SLA380_STD207MT267H1S267H1SX&q={searchTerms} SearchScopes: HKCU - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nationzoom.com/web/?type=ds&ts=1388231924&from=tugs&uid=HitachiXHDT721032SLA380_STD207MT267H1S267H1SX&q={searchTerms} SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nationzoom.com/web/?type=ds&ts=1388231924&from=tugs&uid=HitachiXHDT721032SLA380_STD207MT267H1S267H1SX&q={searchTerms} BHO: ValueApps - {93DBF2BB-A2B3-4683-A92E-57E60751F346} - C:\Program Files\Conduit\ValueApps\IE\ValueAppsLoader.dll (Conduit Ltd.) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: ValueApps - {93DBF2BB-A2B3-4683-A92E-57E60751F346} - C:\Program Files (x86)\Conduit\ValueApps\IE\ValueAppsLoader.dll (Conduit Ltd.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll () FF Plugin: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.60.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.60.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) Chrome: ======= CHR HomePage: https://de.yahoo.com?fr=hp-avast&type=avastbcl CHR StartupUrls: "https://de.yahoo.com?fr=hp-avast&type=avastbcl" CHR DefaultSearchKeyword: www.yahoo.com CHR DefaultSearchProvider: Yahoo! (Avast) CHR DefaultSearchURL: https://de.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms} CHR DefaultNewTabURL: CHR Extension: (avast! Online Security) - C:\Users\Dirk Brehme\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-06-20] CHR Extension: (Google Wallet) - C:\Users\Dirk Brehme\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-25] CHR Extension: (Extutil) - C:\Users\DIRKBR~1\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B [2014-03-12] CHR Extension: (Managera) - C:\Users\DIRKBR~1\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42 [2014-03-12] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-05-06] CHR HKLM-x32\...\Chrome\Extension: [ifohbjbgfchkkfhphahclmkpgejiplfo] - C:\Users\Dirk Brehme\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtab.crx [2014-05-06] ==================== Services (Whitelisted) ================= R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-05-06] (AVAST Software) S2 BackupStack; C:\Program Files (x86)\MyPC Backup\BackupStack.exe [38440 2013-09-20] (Just Develop It) R2 NewPlayerUpdaterService; C:\Program Files (x86)\NewPlayer\NewPlayerUpdaterService.exe [11776 2014-03-10] () [File not signed] R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [183896 2013-07-08] (Sandboxie Holdings, LLC) R2 Update Fortunitas; C:\Program Files (x86)\Fortunitas\updateFortunitas.exe [317728 2014-06-21] () R2 Util Fortunitas; C:\Program Files (x86)\Fortunitas\bin\utilFortunitas.exe [317728 2014-06-21] () S2 Wpm; C:\ProgramData\WPM\wprotectmanager.exe -service [X] ==================== Drivers (Whitelisted) ==================== R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-05-06] () R1 aswKbd; C:\Windows\System32\Drivers\aswKbd.sys [22600 2013-08-30] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-05-06] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-05-06] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-05-06] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1039096 2014-05-15] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [423240 2014-05-15] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [85328 2014-05-15] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [208416 2014-05-06] () R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [199384 2013-07-08] (Sandboxie Holdings, LLC) R1 {b8a90375-3b37-4954-86de-f96c458c4ce2}w64; C:\Windows\System32\drivers\{b8a90375-3b37-4954-86de-f96c458c4ce2}w64.sys [61120 2014-06-13] (StdLib) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-21 09:12 - 2014-06-21 09:13 - 00018992 _____ () C:\Users\Dirk Brehme\Downloads\Addition.txt 2014-06-21 09:10 - 2014-06-21 09:14 - 00013254 _____ () C:\Users\Dirk Brehme\Downloads\FRST.txt 2014-06-21 09:09 - 2014-06-21 09:14 - 00000000 ____D () C:\FRST 2014-06-21 09:08 - 2014-06-21 09:09 - 02083328 _____ (Farbar) C:\Users\Dirk Brehme\Desktop\FRST64 (1).exe 2014-06-20 17:01 - 2014-06-13 15:33 - 00061120 _____ (StdLib) C:\Windows\system32\Drivers\{b8a90375-3b37-4954-86de-f96c458c4ce2}w64.sys 2014-06-20 16:20 - 2014-06-20 16:20 - 02082304 _____ () C:\Users\Dirk Brehme\Downloads\FRST64.exe 2014-06-19 20:59 - 2014-06-19 20:59 - 00000000 __SHD () C:\Users\Standard Carolin\AppData\Local\EmieUserList 2014-06-19 20:59 - 2014-06-19 20:59 - 00000000 __SHD () C:\Users\Standard Carolin\AppData\Local\EmieSiteList 2014-06-11 11:04 - 2014-05-30 11:45 - 02768384 ____N (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-06-11 11:04 - 2014-05-30 10:38 - 02179072 ____N (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-06-11 11:04 - 2014-05-30 09:56 - 02266112 ____N (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-06-11 11:04 - 2014-05-30 09:30 - 01398272 ____N (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-06-11 11:04 - 2014-05-30 09:21 - 01790976 ____N (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-06-11 11:04 - 2014-05-30 09:15 - 01143296 ____N (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-06-11 11:04 - 2014-04-25 04:34 - 00801280 ____N (Microsoft Corporation) C:\Windows\system32\usp10.dll 2014-06-11 11:04 - 2014-04-25 04:06 - 00626688 ____N (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2014-06-11 11:04 - 2014-03-26 16:44 - 02002432 ____N (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-06-11 11:04 - 2014-03-26 16:44 - 01882112 ____N (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-06-11 11:04 - 2014-03-26 16:41 - 00002048 ____N (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2014-06-11 11:04 - 2014-03-26 16:41 - 00002048 ____N (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-05-30 17:33 - 2014-05-30 17:33 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-05-30 17:33 - 2014-05-30 17:33 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-05-30 17:33 - 2014-05-30 17:33 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-05-30 17:33 - 2014-05-30 17:33 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-05-30 17:33 - 2014-05-30 17:33 - 00000000 ____D () C:\ProgramData\Sun 2014-05-30 17:33 - 2014-05-30 17:33 - 00000000 ____D () C:\ProgramData\Oracle 2014-05-30 17:33 - 2014-05-30 17:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-05-30 17:33 - 2014-05-30 17:33 - 00000000 ____D () C:\Program Files (x86)\Java 2014-05-30 17:31 - 2014-05-30 17:31 - 00918952 _____ (Oracle Corporation) C:\Users\Standard Carolin\Downloads\chromeinstall-7u60.exe 2014-05-30 17:31 - 2014-05-30 17:31 - 00918952 _____ (Oracle Corporation) C:\Users\Standard Carolin\Downloads\chromeinstall-7u60 (1).exe ==================== One Month Modified Files and Folders ======= 2014-06-21 09:14 - 2014-06-21 09:10 - 00013254 _____ () C:\Users\Dirk Brehme\Downloads\FRST.txt 2014-06-21 09:14 - 2014-06-21 09:09 - 00000000 ____D () C:\FRST 2014-06-21 09:13 - 2014-06-21 09:12 - 00018992 _____ () C:\Users\Dirk Brehme\Downloads\Addition.txt 2014-06-21 09:11 - 2013-06-17 22:26 - 01788267 _____ () C:\Windows\WindowsUpdate.log 2014-06-21 09:10 - 2013-07-18 19:34 - 00000000 ____D () C:\Windows\system32\MRT 2014-06-21 09:09 - 2014-06-21 09:08 - 02083328 _____ (Farbar) C:\Users\Dirk Brehme\Desktop\FRST64 (1).exe 2014-06-21 09:08 - 2013-09-15 11:58 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-06-21 09:07 - 2013-06-17 23:17 - 95414520 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-06-21 09:04 - 2009-07-14 06:45 - 00020640 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-06-21 09:04 - 2009-07-14 06:45 - 00020640 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-06-21 09:02 - 2013-06-18 20:16 - 00001120 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-21 09:02 - 2009-07-14 04:34 - 00000505 _____ () C:\Windows\win.ini 2014-06-21 01:58 - 2013-06-18 20:16 - 00001116 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-20 16:20 - 2014-06-20 16:20 - 02082304 _____ () C:\Users\Dirk Brehme\Downloads\FRST64.exe 2014-06-20 16:06 - 2014-03-12 09:44 - 00000000 ____D () C:\Program Files (x86)\Fortunitas 2014-06-20 16:02 - 2013-10-28 00:17 - 00001966 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-06-20 16:02 - 2013-06-19 20:51 - 00003600 _____ () C:\Windows\Sandboxie.ini 2014-06-20 16:02 - 2013-06-18 01:00 - 00003924 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-06-20 15:59 - 2013-06-18 20:41 - 00000000 ____D () C:\Users\Standard Carolin 2014-06-20 15:59 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-06-20 15:58 - 2009-07-14 06:51 - 00053289 _____ () C:\Windows\setupact.log 2014-06-20 15:57 - 2013-06-18 23:05 - 00000000 ____D () C:\Users\Standard Dirk 2014-06-20 15:57 - 2013-06-18 20:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-06-20 15:57 - 2013-06-17 22:33 - 00000000 ____D () C:\Users\Dirk Brehme 2014-06-20 15:57 - 2010-11-21 09:00 - 00000000 ___RD () C:\Users\Public\Recorded TV 2014-06-20 15:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-06-20 15:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\registration 2014-06-20 15:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-06-20 15:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\AppCompat 2014-06-20 15:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-06-19 20:59 - 2014-06-19 20:59 - 00000000 __SHD () C:\Users\Standard Carolin\AppData\Local\EmieUserList 2014-06-19 20:59 - 2014-06-19 20:59 - 00000000 __SHD () C:\Users\Standard Carolin\AppData\Local\EmieSiteList 2014-06-13 15:33 - 2014-06-20 17:01 - 00061120 _____ (StdLib) C:\Windows\system32\Drivers\{b8a90375-3b37-4954-86de-f96c458c4ce2}w64.sys 2014-05-30 17:33 - 2014-05-30 17:33 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-05-30 17:33 - 2014-05-30 17:33 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-05-30 17:33 - 2014-05-30 17:33 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-05-30 17:33 - 2014-05-30 17:33 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-05-30 17:33 - 2014-05-30 17:33 - 00000000 ____D () C:\ProgramData\Sun 2014-05-30 17:33 - 2014-05-30 17:33 - 00000000 ____D () C:\ProgramData\Oracle 2014-05-30 17:33 - 2014-05-30 17:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-05-30 17:33 - 2014-05-30 17:33 - 00000000 ____D () C:\Program Files (x86)\Java 2014-05-30 17:31 - 2014-05-30 17:31 - 00918952 _____ (Oracle Corporation) C:\Users\Standard Carolin\Downloads\chromeinstall-7u60.exe 2014-05-30 17:31 - 2014-05-30 17:31 - 00918952 _____ (Oracle Corporation) C:\Users\Standard Carolin\Downloads\chromeinstall-7u60 (1).exe 2014-05-30 11:45 - 2014-06-11 11:04 - 02768384 ____N (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-05-30 10:38 - 2014-06-11 11:04 - 02179072 ____N (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-05-30 09:56 - 2014-06-11 11:04 - 02266112 ____N (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-05-30 09:30 - 2014-06-11 11:04 - 01398272 ____N (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-05-30 09:21 - 2014-06-11 11:04 - 01790976 ____N (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-05-30 09:15 - 2014-06-11 11:04 - 01143296 ____N (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-05-22 19:12 - 2013-06-18 20:17 - 00002393 _____ () C:\Users\Public\Desktop\Google Chrome.lnk Some content of TEMP: ==================== C:\Users\Dirk Brehme\AppData\Local\Temp\BackupSetup.exe C:\Users\Dirk Brehme\AppData\Local\Temp\dlLogic.exe C:\Users\Dirk Brehme\AppData\Local\Temp\EnableExtDll.dll C:\Users\Dirk Brehme\AppData\Local\Temp\InstallAX.exe C:\Users\Dirk Brehme\AppData\Local\Temp\nse5ADD.exe C:\Users\Dirk Brehme\AppData\Local\Temp\nseC628.exe C:\Users\Dirk Brehme\AppData\Local\Temp\nso5995.exe C:\Users\Dirk Brehme\AppData\Local\Temp\nsoCBE3.exe C:\Users\Dirk Brehme\AppData\Local\Temp\nst4BAF.exe C:\Users\Dirk Brehme\AppData\Local\Temp\nsyDD30.exe C:\Users\Dirk Brehme\AppData\Local\Temp\nsyED09.exe C:\Users\Dirk Brehme\AppData\Local\Temp\nsz4D07.exe C:\Users\Dirk Brehme\AppData\Local\Temp\vcredist_x64.exe C:\Users\Dirk Brehme\AppData\Local\Temp\xldizrk8.dll C:\Users\Standard Dirk\AppData\Local\Temp\SandboxieInstall.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-06-18 02:22 ==================== End Of Log ============================ --- --- --- Additional Log: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-06-2014 01 Ran by Dirk Brehme at 2014-06-21 09:15:30 Running from C:\Users\Dirk Brehme\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Disabled - Out of date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Disabled - Out of date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== Adobe Flash Player 13 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 13.0.0.214 - Adobe Systems Incorporated) Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated) ARD Ratgeber Geld Steuer 2013 (HKLM-x32\...\{D4FA2F52-40DC-414D-9007-560979846BAF}) (Version: 19.06.00.0003 - Haufe-Lexware GmbH & Co.KG) avast! Free Antivirus (HKLM-x32\...\avast) (Version: 9.0.2018 - Avast Software) Buzzdock (HKLM\...\{ac225167-00fc-452d-94c5-bb93600e7d9a}) (Version: - Alactro LLC) DMUninstaller (HKLM-x32\...\DMUninstaller) (Version: - ) <==== ATTENTION Fortunitas (HKLM\...\Fortunitas) (Version: 2014.03.11.234342 - Fortunitas) <==== ATTENTION Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.114 - Google Inc.) Google Update Helper (x32 Version: 1.3.24.7 - Google Inc.) Hidden Gyazo 1.0 (HKLM-x32\...\{6DB8C365-E719-4BA5-9594-10DFC244D3FD}_is1) (Version: - Toshiyuki Masui) Java 7 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217060FF}) (Version: 7.0.600 - Oracle) Java Auto Updater (x32 Version: 2.1.60.19 - Oracle, Inc.) Hidden JMicron Flash Media Controller Driver (HKLM-x32\...\{26604C7E-A313-4D12-867F-7C6E7820BE4C}) (Version: 1.0.67.0 - JMicron Technology Corp.) Lexware Info Service (HKLM-x32\...\{8AE7E507-BC49-4DF0-A236-26878691AB53}) (Version: 2.90.00.0009 - Haufe-Lexware GmbH & Co.KG) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mobogenie (HKLM-x32\...\Mobogenie) (Version: - Mobogenie.com) <==== ATTENTION MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MyPC Backup (HKLM\...\MyPC Backup) (Version: - MyPC Backup) <==== ATTENTION NewPlayer (HKLM-x32\...\NewPlayer) (Version: v2.1.1.2 - TUGUU SL) <==== ATTENTION Sandboxie 4.04 (64-bit) (HKLM\...\Sandboxie) (Version: 4.04 - Sandboxie Holdings, LLC) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2468871) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2533523) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2600217) (Version: 1 - Microsoft Corporation) ValueApps (HKCU\...\ValueApps) (Version: 1.4.0.3 - Conduit) <==== ATTENTION ==================== Restore Points ========================= 30-05-2014 13:44:57 Geplanter Prüfpunkt 30-05-2014 15:32:27 Installed Java 7 Update 60 06-06-2014 18:17:21 Geplanter Prüfpunkt 12-06-2014 08:18:53 Windows Update 20-06-2014 13:54:08 Wiederherstellungsvorgang 20-06-2014 13:59:57 avast! antivirus system restore point 21-06-2014 07:02:49 Windows Update ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {063E6735-CCBB-4A9D-AD2B-01171F41B168} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-18] (Google Inc.) Task: {1659CEBF-8DC1-434C-A0CD-DD80868B8186} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-05-06] (AVAST Software) Task: {19492052-24C9-4D09-B231-7E4EF55DD1C3} - System32\Tasks\Microsoft\Windows\TabletPC\InputPersonalization => C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [2009-07-14] (Microsoft Corporation) Task: {3295585C-7D85-4A89-9230-1B4DE0C327D3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-16] (Adobe Systems Incorporated) Task: {E89AA922-1525-4379-B9A7-9D2C20A8E759} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-18] (Google Inc.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-03-10 16:39 - 2014-03-10 16:39 - 00011776 _____ () C:\Program Files (x86)\NewPlayer\NewPlayerUpdaterService.exe 2014-03-10 16:39 - 2014-03-10 16:39 - 00082432 _____ () C:\Program Files (x86)\NewPlayer\NewPlayerUpdater.exe 2013-09-20 00:37 - 2013-09-20 00:37 - 00012288 _____ () C:\Program Files (x86)\MyPC Backup\GetText.dll 2013-09-20 00:32 - 2013-09-20 00:32 - 01102336 _____ () C:\Program Files (x86)\MyPC Backup\x64\System.Data.SQLite.dll 2014-03-12 10:44 - 2014-06-21 09:02 - 00317728 _____ () C:\Program Files (x86)\Fortunitas\bin\utilFortunitas.exe 2014-06-20 17:01 - 2014-06-13 15:33 - 00287008 _____ () C:\Program Files (x86)\Fortunitas\bin\Fortunitas.PurBrowse64.exe 2014-06-20 17:04 - 2014-06-19 23:49 - 00096544 _____ () C:\Program Files (x86)\Fortunitas\bin\Fortunitas.BrowserAdapter.exe 2014-03-12 01:47 - 2014-06-21 09:03 - 00317728 _____ () C:\Program Files (x86)\Fortunitas\updateFortunitas.exe ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== MSCONFIG/TASK MANAGER disabled items ========= ==================== Faulty Device Manager Devices ============= Name: Teredo Tunneling Pseudo-Interface Description: Microsoft-Teredo-Tunneling-Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: avast! Firewall NDIS Filter Miniport Description: avast! Firewall NDIS Filter Miniport Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: ALWIL Software Service: aswNdis Problem: : Windows cannot start this hardware device because its configuration information (in the registry) is incomplete or damaged. (Code 19) Resolution: A registry problem was detected. This can occur when more than one service is defined for a device, if there is a failure opening the service subkey, or if the driver name cannot be obtained from the service subkey. Try these options: On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Click "Uninstall", and then click "Scan for hardware changes" to load a usable driver. ==================== Event log errors: ========================= Application errors: ================== Error: (06/20/2014 04:01:36 PM) (Source: System Restore) (EventID: 8210) (User: ) Description: Unbekannter Fehler bei der Systemwiederherstellung: (Geplanter Prüfpunkt). Zusätzliche Informationen: 0xc0000022. Error: (06/20/2014 03:59:58 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/20/2014 10:10:36 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/19/2014 11:08:04 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/19/2014 10:49:55 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/19/2014 09:47:22 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/19/2014 08:53:24 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/19/2014 02:29:10 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/19/2014 01:08:57 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/19/2014 00:47:47 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (06/20/2014 03:59:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Computer Backup (MyPC Backup)" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (06/20/2014 03:59:46 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Computer Backup (MyPC Backup) erreicht. Error: (06/20/2014 03:59:15 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Wpm Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (06/20/2014 00:49:04 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10. Error: (06/20/2014 10:10:24 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Computer Backup (MyPC Backup)" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (06/20/2014 10:10:24 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Computer Backup (MyPC Backup) erreicht. Error: (06/20/2014 10:09:53 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Wpm Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (06/19/2014 11:07:55 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Computer Backup (MyPC Backup)" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (06/19/2014 11:07:55 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Computer Backup (MyPC Backup) erreicht. Error: (06/19/2014 11:07:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Wpm Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Microsoft Office Sessions: ========================= Error: (06/20/2014 04:01:36 PM) (Source: System Restore) (EventID: 8210) (User: ) Description: Geplanter Prüfpunkt0xc0000022 Error: (06/20/2014 03:59:58 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/20/2014 10:10:36 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/19/2014 11:08:04 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/19/2014 10:49:55 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/19/2014 09:47:22 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/19/2014 08:53:24 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/19/2014 02:29:10 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/19/2014 01:08:57 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/19/2014 00:47:47 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 CodeIntegrity Errors: =================================== Date: 2014-06-20 16:09:03.401 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\usp10.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-06-20 15:59:13.213 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\usp10.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 87% Total physical RAM: 2012.1 MB Available physical RAM: 249.13 MB Total Pagefile: 4024.2 MB Available Pagefile: 1001.8 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:141.5 GB) (Free:108.06 GB) NTFS Drive d: (DATA) (Fixed) (Total:141.5 GB) (Free:77.02 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: C6D3DC27) Partition 1: (Not Active) - (Size=15 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=141 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=141 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Geändert von Th4Prophet (21.06.2014 um 08:15 Uhr) |
![]() |
Themen zu Internet läuft langsam/baut nicht auf / Downloads und Aktualisierungen funktionieren nicht mehr |
android/mobserv.a, msil/browsefox.e, msil/browsefox.g, pup.optional.crossrider.a, pup.optional.feven.a, pup.optional.fortunitas.a, pup.optional.qone8, pup.optional.superfish.a, pup.optional.v9.a, pup.optional.valueapps.a, win32/browsefox.h, win32/browsefox.i, win32/browsefox.k, win32/conduit.searchprotect.h, win32/conduit.searchprotect.i, win32/conduit.searchprotect.q, win32/injector.afxo, win32/kryptik.beqh, win32/loadtubes.c, win32/toolbar.conduit, win32/toolbar.conduit.p, win32/toolbar.conduit.y, win32/toolbar.montiera.i, win32/toolbar.visicom.b, win64/browsefox.a |