![]() |
|
Plagegeister aller Art und deren Bekämpfung: Im Hintergrund läuft nicht auffindbare (audio) WerbungWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() |
|
![]() | #1 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Im Hintergrund läuft nicht auffindbare (audio) Werbung Hi, Addition.txt fehlt noch ![]()
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() | #2 |
| ![]() Im Hintergrund läuft nicht auffindbare (audio) WerbungDa hab ich den doch glatt vergessen. Danke fürs dran erinnern. Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-10-2014 01 Ran by jan at 2014-10-28 21:47:40 Running from C:\Users\jan\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: IObit Malware Fighter (Enabled - Up to date) {A751AC20-3B48-5237-898A-78C4436BB78D} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.189 - Adobe Systems Incorporated) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.189 - Adobe Systems Incorporated) Adobe Reader XI (11.0.09) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated) Advanced SystemCare 7 (HKLM-x32\...\Advanced SystemCare 7_is1) (Version: 7.4.0 - IObit) Archeage (HKLM-x32\...\Glyph Archeage) (Version: - Trion Worlds, Inc.) Cliqz (HKLM-x32\...\{5A0C0737-6AFE-4DC6-A8B4-6DFE509ACD75}_is1) (Version: 0.5.22 - Cliqz.com) Driver Booster 2 (HKLM-x32\...\Driver Booster_is1) (Version: 2.0 - IObit) Entity Framework Tools for Visual Studio 2013 (HKLM-x32\...\{08AEF86A-1956-4846-B906-B01350E96E30}) (Version: 12.0.20912.0 - Microsoft Corporation) Glyph (HKLM-x32\...\Glyph) (Version: - Trion Worlds, Inc.) Google Update Helper (x32 Version: 1.3.25.5 - Google Inc.) Hidden IObit Malware Fighter (HKLM-x32\...\IObit Malware Fighter_is1) (Version: 2.5 - IObit) IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 3.3.9.2622 - IObit) Java 7 Update 72 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417072FF}) (Version: 7.0.720 - Oracle) Language Pack (DEU) für freigegebene Windows Azure-Komponenten für Microsoft Visual Studio 2013 - v1.0 (x32 Version: 1.0.10829.1601 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (HKLM-x32\...\{21B0F482-5EF9-45DA-8840-340AFE705A6C}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (Deutsch) (HKLM-x32\...\{CBD7095F-7211-43FD-9FE7-FB08D753AF79}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft Access database engine 2010 (German) (HKLM-x32\...\{90140000-00D1-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Help Viewer 2.1 (HKLM-x32\...\Microsoft Help Viewer 2.1) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Help Viewer 2.1 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.1 Sprachpaket - DEU) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Office Home and Student 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server 2012 Command Line Utilities (HKLM\...\{F09DEB00-9F41-4BC9-BA81-9F131B12B3D5}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (HKLM-x32\...\{D4E30517-FE6F-491E-942F-AE10E1B18F38}) (Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (x64) (HKLM\...\{B4EDAE03-DB34-4DD0-BA7E-2ED80DEA50B1}) (Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Express LocalDB (HKLM\...\{269A8DF6-BBDA-441F-932B-233F9B746D72}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (HKLM-x32\...\{EC75BD20-F9CA-4E77-825F-ABD77E95BE91}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (x64) (HKLM\...\{0BF65908-D137-4A9E-B7C9-78F32F74F6FD}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Native Client (HKLM\...\{93945D16-4C3D-433E-B7E4-3D0D86B284C8}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL ScriptDom (HKLM\...\{6F173435-3F19-4043-BA3D-A46AA8472859}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 T-SQL-Sprachdienst (HKLM-x32\...\{1D812D86-D8EF-41AC-A518-BA12E1913747}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 DEU (HKLM\...\{98225B15-ECF5-4645-B5AC-F8C5E869A5D5}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Data Tools - DEU (12.0.30919.1) (HKLM-x32\...\{7CC03C58-3471-43D2-A251-EC9AE225E772}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server Data Tools Build Utilities - DEU (12.0.30919.1) (HKLM-x32\...\{BCB8A870-2B3D-4CC0-87D6-F931E065AC0C}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server System CLR Types (HKLM-x32\...\{D434E072-F482-4F52-AB97-7B19DD5DAEB5}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server System CLR Types (x64) (HKLM\...\{485F4AC6-F79E-4482-A0D2-EDF0CCE1E124}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{9634d50a-0c4d-4f52-8a9f-894a2baae370}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{307a22b8-8353-4c5e-b67b-2404c5734558}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual Studio Express 2013 für das Web - DEU (HKLM-x32\...\{81b600cc-d985-40b7-8ab1-5442fb4f4845}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual Studio Express 2013 für Windows Desktop - DEU (HKLM-x32\...\{42da2807-2142-4f67-816d-684a640cd6ff}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Web Deploy 3.5 (HKLM\...\{3674F088-9B90-473A-AAC3-20A00D8D810C}) (Version: 3.1237.1762 - Microsoft Corporation) Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{B3B750C0-8C22-439D-B7CE-67F3ED99CC2B}) (Version: 1.20.146.0 - Microsoft) Microsoft-System-CLR-Typen für SQL Server 2012 (HKLM-x32\...\{43341417-7882-4F34-8390-53DFD00F6C0F}) (Version: 11.1.3366.16 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2012 (x64) (HKLM\...\{24440413-490E-41CA-BD33-0B30FD3EBE3A}) (Version: 11.1.3366.16 - Microsoft Corporation) Mozilla Firefox 33.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 33.0 (x86 de)) (Version: 33.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 33.0 - Mozilla) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM-x32\...\{D5409B11-EF28-37A1-AE7A-6051A5BAD923}) (Version: 4.5.50932 - Microsoft Corporation) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Skype™ 6.20 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.20.104 - Skype Technologies S.A.) Surfing Protection (HKLM-x32\...\IObit Surfing Protection_is1) (Version: 1.0 - IObit) Team Explorer for Microsoft Visual Studio 2013 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden TeamSpeak 3 Client (HKCU\...\TeamSpeak 3 Client) (Version: 3.0.15 - TeamSpeak Systems GmbH) Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) Windows Azure Shared Components for Microsoft Visual Studio 2013 - v1.0 (x32 Version: 1.0.10829.1601 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation) Windows Software Development Kit (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit (x32 Version: 8.59.29989 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x64 Remote (Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x64 Remote (Version: 8.59.29989 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x86 Remote (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x86 Remote (x32 Version: 8.59.29989 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x64 Remote (Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x86 Remote (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows XP Targeting with C++ (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden Windows-Treiberpaket - TerraTec TerraTec G3 (05/14/2009 2.07.0621.00) (HKLM\...\0A69886DF174E80BE3E6317C5F33C6041A99137F) (Version: 05/14/2009 2.07.0621.00 - TerraTec ) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 26-10-2014 08:52:42 Geplanter Prüfpunkt 26-10-2014 23:12:01 Uninstall Install Macro Express 3 27-10-2014 17:57:43 Installiert Arc 27-10-2014 18:42:02 Installiert Arc 27-10-2014 21:52:11 Removed LogMeIn Hamachi ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {18CF0775-093F-4AB4-A513-C26DA6B41009} - System32\Tasks\Driver Booster SkipUAC (jan) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [2014-10-22] (IObit) Task: {2625EBB6-EB2C-4D7E-884E-BB3D7C8C8BC1} - System32\Tasks\Games\UpdateCheck_S-1-5-21-2305584309-2288151904-3530611227-1000 Task: {3107AEF9-3A18-4A2C-BC7F-69397D2908D5} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup Task: {32D5C73B-8CD1-42FC-B60D-66A61C84663E} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-10-25] (Adobe Systems Incorporated) Task: {508551AA-FF29-4044-9FDA-3AB673B70984} - System32\Tasks\SlimDrivers Startup => C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe [2013-09-24] (SlimWare Utilities, Inc.) Task: {689B8A81-B11D-4C6B-A680-63293F89B502} - System32\Tasks\Driver Booster Update => C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe [2014-10-13] (IObit) Task: {6E33EC09-B56E-41FD-B285-41B7EBBF2E76} - System32\Tasks\Uninstaller_SkipUac_Administrator => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2014-08-22] (IObit) Task: {7A5F68DA-9C4C-4B8E-81FA-AF24CBD8E03C} - System32\Tasks\Driver Booster Scan => C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe [2014-10-08] (IObit) Task: {879B8FA8-6120-411D-807F-CB7AD622FAAD} - System32\Tasks\ASC7_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe [2014-08-20] (IObit) Task: {8B241AA0-D82E-48CD-A5AD-96E7ED5D9A8F} - System32\Tasks\Abelssoft\Updater scan => C:\Program Files (x86)\CHIP Updater\CHIPUpdater.exe Task: {91246663-7765-4D2E-8605-C4CD356111BC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-19] (Google Inc.) Task: {961ADA8A-7EE9-49E8-87EA-45CC03D007AA} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe Task: {A95A5B12-E16F-4137-95F5-4CD385C302E6} - System32\Tasks\AdobeAAMUpdater-1.0-Storm-jan => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-06-13] (Adobe Systems Incorporated) Task: {A96166F1-0076-4324-914E-AA5DD764BC9E} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-09-04] (AVAST Software) Task: {ACFE3367-04CE-4DF6-AC69-ABA4254DDF65} - System32\Tasks\AdobeAAMUpdater-1.0-Storm-miles => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-06-13] (Adobe Systems Incorporated) Task: {B0BEFE57-9051-49C2-A8A2-60DC1C4872D3} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe Task: {C950AD4D-3979-443C-AC84-BD35E29392BB} - System32\Tasks\ASC7_SkipUac_jan => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe [2014-08-22] (IObit) Task: {D0138E38-A4B8-4A7A-A360-C9533252DB98} - System32\Tasks\{738BE993-E1E5-478A-B9A6-DC292F7F0A9F} => C:\Games\Guild Wars 2\Gw2.exe [2014-10-28] (ArenaNet) Task: {E2832992-9ED4-4E05-9BD1-A1FECD540440} - System32\Tasks\{7329D7C6-709F-499D-AC0F-6E2F31D74125} => C:\Games\Guild Wars 2\Gw2.exe [2014-10-28] (ArenaNet) Task: {F92A778E-F787-4022-BDE6-9204DE2F2C1A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-19] (Google Inc.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\KZFFDR.job => C:\Users\jan\AppData\Roaming\KZFFDR.exe <==== ATTENTION Task: C:\Windows\Tasks\PWAQKC.job => C:\Users\jan\AppData\Roaming\PWAQKC.exe <==== ATTENTION Task: C:\Windows\Tasks\SlimDrivers Startup.job => C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe ==================== Loaded Modules (whitelisted) ============= 2013-08-30 09:01 - 2013-08-30 09:01 - 03358064 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_v_1_1_0_x64.dll 2014-05-29 16:36 - 2014-05-29 17:40 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2013-08-30 09:01 - 2013-08-30 09:01 - 04579696 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe 2014-10-25 02:25 - 2013-10-25 11:08 - 00517408 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\sqlite3.dll 2014-09-04 21:52 - 2014-09-04 21:52 - 00301152 _____ () C:\Program Files\AVAST Software\Avast\aswProperty.dll 2014-10-28 01:29 - 2014-10-28 01:29 - 02898432 _____ () C:\Program Files\AVAST Software\Avast\defs\14102702\algo.dll 2014-10-28 11:51 - 2014-10-28 11:51 - 02898432 _____ () C:\Program Files\AVAST Software\Avast\defs\14102800\algo.dll 2014-10-25 02:25 - 2013-01-15 17:48 - 00348992 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\madExcept_.bpl 2014-10-25 02:25 - 2013-01-15 17:48 - 00183616 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\madBasic_.bpl 2014-10-25 02:25 - 2013-01-15 17:48 - 00051008 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\madDisAsm_.bpl 2014-10-25 02:25 - 2013-01-15 17:47 - 00893248 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\webres.dll 2013-09-03 14:25 - 2013-09-03 14:25 - 32726528 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\libcef.dll 2014-09-04 21:52 - 2014-09-04 21:52 - 19329904 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2013-03-13 12:42 - 2013-06-05 13:21 - 00071560 _____ () C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\zlib1.dll 2014-10-25 02:34 - 2013-01-15 17:48 - 00348992 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\madExcept_.bpl 2014-10-25 02:34 - 2013-01-15 17:48 - 00183616 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\madBasic_.bpl 2014-10-25 02:34 - 2013-01-15 17:48 - 00051008 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\madDisAsm_.bpl 2014-10-25 02:34 - 2013-12-12 17:46 - 08001344 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\WebUI.dll 2014-10-25 02:34 - 2013-05-16 18:26 - 00182080 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\unrar.dll 2014-10-25 02:34 - 2013-10-16 21:17 - 00185168 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\libcurl-4.dll 2014-10-25 02:34 - 2013-05-16 18:26 - 00145216 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\zlibwapi.dll 2014-10-17 13:42 - 2014-10-17 13:42 - 00172544 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\1eeea3ab8d69ec722bdcb28b8eb8dd75\IsdiInterop.ni.dll 2012-10-24 11:25 - 2012-02-01 15:25 - 00059904 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2014-04-11 16:27 - 2000-01-01 01:00 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2013-08-30 09:00 - 2013-08-30 09:00 - 00381808 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CCInvokeAAM.dll 2014-03-27 20:36 - 2014-03-27 20:36 - 00148480 _____ () C:\Users\jan\AppData\Local\TeamSpeak 3 Client\quazip.dll 2014-03-27 20:36 - 2014-03-27 20:36 - 00864768 _____ () C:\Users\jan\AppData\Local\TeamSpeak 3 Client\platforms\qwindows.dll 2014-03-27 20:36 - 2014-03-27 20:36 - 00677376 _____ () C:\Users\jan\AppData\Local\TeamSpeak 3 Client\sqldrivers\qsqlite.dll 2013-04-04 09:38 - 2014-07-21 12:03 - 00092104 _____ () C:\Users\jan\AppData\Local\TeamSpeak 3 Client\soundbackends\directsound_win32.dll 2013-04-04 09:38 - 2014-07-21 12:03 - 00105416 _____ () C:\Users\jan\AppData\Local\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win32.dll 2014-03-27 20:36 - 2014-03-27 20:36 - 00025600 _____ () C:\Users\jan\AppData\Local\TeamSpeak 3 Client\imageformats\qgif.dll 2014-03-27 20:36 - 2014-03-27 20:36 - 00242688 _____ () C:\Users\jan\AppData\Local\TeamSpeak 3 Client\imageformats\qjpeg.dll 2013-04-04 09:38 - 2014-07-21 12:03 - 00477128 _____ () C:\Users\jan\AppData\Local\TeamSpeak 3 Client\plugins\clientquery_plugin.dll 2013-10-22 19:58 - 2014-07-21 12:03 - 00484808 _____ () C:\Users\jan\AppData\Local\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll 2014-03-27 20:36 - 2014-03-27 20:36 - 00123904 _____ () C:\Users\jan\AppData\Local\TeamSpeak 3 Client\accessible\qtaccessiblewidgets.dll 2014-09-03 20:16 - 2014-08-21 19:15 - 01171456 _____ () C:\Users\jan\Steam\libavcodec-56.dll 2014-09-03 20:16 - 2014-08-21 19:15 - 00442368 _____ () C:\Users\jan\Steam\libavutil-54.dll 2014-09-03 20:16 - 2014-08-21 19:15 - 00332800 _____ () C:\Users\jan\Steam\libavresample-2.dll 2014-07-08 19:44 - 2014-09-03 20:28 - 00774656 _____ () C:\Users\jan\Steam\SDL2.dll 2014-07-08 19:44 - 2014-09-23 05:32 - 02226880 _____ () C:\Users\jan\Steam\video.dll 2014-09-03 20:16 - 2014-08-21 19:15 - 00403968 _____ () C:\Users\jan\Steam\libavformat-56.dll 2014-09-03 20:16 - 2014-08-21 19:15 - 00485888 _____ () C:\Users\jan\Steam\libswscale-3.dll 2014-07-08 19:43 - 2014-09-23 05:32 - 00679616 _____ () C:\Users\jan\Steam\bin\chromehtml.DLL 2014-07-08 19:43 - 2014-09-05 00:29 - 34589376 _____ () C:\Users\jan\Steam\bin\libcef.dll 2014-09-15 21:12 - 2014-10-28 04:02 - 01019904 _____ () C:\Program Files (x86)\Glyph\xlpack.dll 2014-09-15 21:12 - 2014-10-28 04:02 - 00705024 _____ () C:\Program Files (x86)\Glyph\libGLESv2.dll 2014-09-15 21:12 - 2014-10-28 04:02 - 00043008 _____ () C:\Program Files (x86)\Glyph\libEGL.dll 2014-09-15 21:12 - 2014-10-28 04:02 - 00866816 _____ () C:\Program Files (x86)\Glyph\platforms\qwindows.dll 2014-09-15 21:12 - 2014-10-28 04:02 - 00024064 _____ () C:\Program Files (x86)\Glyph\imageformats\qgif.dll 2014-09-15 21:12 - 2014-10-28 04:02 - 00242176 _____ () C:\Program Files (x86)\Glyph\imageformats\qjpeg.dll 2014-09-26 10:20 - 2014-10-11 13:53 - 03649648 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2014-10-28 21:46 - 2014-10-28 21:46 - 00307200 _____ () C:\Windows\TEMP\mrt4869.tmp\MMFS2.dll 2014-10-28 21:46 - 2014-10-28 21:46 - 00012800 _____ () C:\Windows\TEMP\mrt4869.tmp\Get.mfx 2014-10-28 21:46 - 2014-10-28 21:46 - 00059392 _____ () C:\Windows\TEMP\mrt4869.tmp\Yaso.mfx ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice => ""="Service" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-2305584309-2288151904-3530611227-500 - Administrator - Disabled) Gast (S-1-5-21-2305584309-2288151904-3530611227-501 - Limited - Disabled) isa (S-1-5-21-2305584309-2288151904-3530611227-1006 - Limited - Enabled) => C:\Users\isa jan (S-1-5-21-2305584309-2288151904-3530611227-1000 - Administrator - Enabled) => C:\Users\jan miles (S-1-5-21-2305584309-2288151904-3530611227-1005 - Limited - Enabled) => C:\Users\miles Padmin (S-1-5-21-2305584309-2288151904-3530611227-1001 - Administrator - Enabled) => C:\Users\Padmin paps (S-1-5-21-2305584309-2288151904-3530611227-1004 - Limited - Enabled) => C:\Users\paps ==================== Faulty Device Manager Devices ============= Name: Teredo Tunneling Pseudo-Interface Description: Microsoft-Teredo-Tunneling-Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (10/28/2014 03:54:19 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/28/2014 03:51:31 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (10/28/2014 03:50:09 AM) (Source: ATIeRecord) (EventID: 16386) (User: ) Description: ATI EEU Client has failed to start Error: (10/28/2014 02:22:58 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: bdagent.exe, Version: 18.17.0.1225, Zeitstempel: 0x542d16a9 Name des fehlerhaften Moduls: bdagent.exe, Version: 18.17.0.1225, Zeitstempel: 0x542d16a9 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000000761a5 ID des fehlerhaften Prozesses: 0x1988 Startzeit der fehlerhaften Anwendung: 0xbdagent.exe0 Pfad der fehlerhaften Anwendung: bdagent.exe1 Pfad des fehlerhaften Moduls: bdagent.exe2 Berichtskennung: bdagent.exe3 Error: (10/28/2014 02:22:53 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm IObitUninstaler.exe, Version 3.3.9.2622 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1f40 Startzeit: 01cff24b44abc5b8 Endzeit: 189 Anwendungspfad: C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe Berichts-ID: ec52efc8-5e40-11e4-8b89-bc5ff45b8d89 Error: (10/28/2014 02:18:39 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm installer.exe, Version 4.1.1.826 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: fe0 Startzeit: 01cff24b6060ebc5 Endzeit: 163 Anwendungspfad: C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-4159-A75F-CFD0C7EA4FBF}\installer.exe Berichts-ID: 5532816b-5e40-11e4-8b89-bc5ff45b8d89 Error: (10/28/2014 02:15:45 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm firefox.exe, Version 32.0.3.5379 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1ecc Startzeit: 01cff24bc478f1f7 Endzeit: 26 Anwendungspfad: C:\Program Files (x86)\Mozilla Firefox\firefox.exe Berichts-ID: ee6c682d-5e3f-11e4-8b89-bc5ff45b8d89 Error: (10/28/2014 02:15:00 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm ASC.exe, Version 7.4.0.474 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 710 Startzeit: 01cff24a1dd2ec51 Endzeit: 5722 Anwendungspfad: C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe Berichts-ID: cd6c0c39-5e3f-11e4-8b89-bc5ff45b8d89 Error: (10/28/2014 01:35:10 AM) (Source: ATIeRecord) (EventID: 16386) (User: ) Description: ATI EEU Client has failed to start Error: (10/28/2014 01:30:21 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (10/28/2014 03:51:31 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "BlueStacks Android Service" wurde mit folgendem Fehler beendet: %%1064 Error: (10/28/2014 03:50:47 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Adobe Licensing Console" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (10/28/2014 03:50:47 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Adobe Licensing Console erreicht. Error: (10/28/2014 03:49:05 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst VSSERV erreicht. Error: (10/28/2014 03:48:35 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst VSSERV erreicht. Error: (10/28/2014 02:15:01 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "DeleteFlag" aufgrund folgenden Fehlers fehlgeschlagen: %%5 Error: (10/28/2014 02:14:30 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "DeleteFlag" aufgrund folgenden Fehlers fehlgeschlagen: %%5 Error: (10/28/2014 02:13:54 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "DeleteFlag" aufgrund folgenden Fehlers fehlgeschlagen: %%5 Error: (10/28/2014 02:08:37 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "DeleteFlag" aufgrund folgenden Fehlers fehlgeschlagen: %%5 Error: (10/28/2014 01:32:24 AM) (Source: Microsoft-Windows-LanguagePackSetup) (EventID: 1000) (User: NT-AUTORITÄT) Description: Fehler bei der CBS-Clientinitialisierung. Letzter Fehler: 0x80080005 Microsoft Office Sessions: ========================= Error: (10/28/2014 03:54:19 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/28/2014 03:51:31 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (10/28/2014 03:50:09 AM) (Source: ATIeRecord) (EventID: 16386) (User: ) Description: Error: (10/28/2014 02:22:58 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: bdagent.exe18.17.0.1225542d16a9bdagent.exe18.17.0.1225542d16a9c000000500000000000761a5198801cff24da7f76b71C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exeC:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exef2dbda76-5e40-11e4-8b89-bc5ff45b8d89 Error: (10/28/2014 02:22:53 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: IObitUninstaler.exe3.3.9.26221f4001cff24b44abc5b8189C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exeec52efc8-5e40-11e4-8b89-bc5ff45b8d89 Error: (10/28/2014 02:18:39 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: installer.exe4.1.1.826fe001cff24b6060ebc5163C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-4159-A75F-CFD0C7EA4FBF}\installer.exe5532816b-5e40-11e4-8b89-bc5ff45b8d89 Error: (10/28/2014 02:15:45 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: firefox.exe32.0.3.53791ecc01cff24bc478f1f726C:\Program Files (x86)\Mozilla Firefox\firefox.exeee6c682d-5e3f-11e4-8b89-bc5ff45b8d89 Error: (10/28/2014 02:15:00 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: ASC.exe7.4.0.47471001cff24a1dd2ec515722C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.execd6c0c39-5e3f-11e4-8b89-bc5ff45b8d89 Error: (10/28/2014 01:35:10 AM) (Source: ATIeRecord) (EventID: 16386) (User: ) Description: Error: (10/28/2014 01:30:21 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-3450 CPU @ 3.10GHz Percentage of memory in use: 68% Total physical RAM: 8140.64 MB Available physical RAM: 2601.05 MB Total Pagefile: 16279.47 MB Available Pagefile: 9711.74 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: (Win7HPx64) (Fixed) (Total:479.36 GB) (Free:132.04 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive e: (JDATA) (Fixed) (Total:452.15 GB) (Free:359.08 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 1E08452C) Partition 1: (Active) - (Size=479.4 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=452.1 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
![]() |
Themen zu Im Hintergrund läuft nicht auffindbare (audio) Werbung |
administrator, adobe, adobe flash player, avast, bitdefender 2015, bluestacks, driver booster, explorer, fehlercode 0x3, fehlercode 0xc0000005, fehlercode windows, flash player, google, homepage, mozilla, pup.optional.downloadsponsor, security, services.exe, svchost.exe, teamspeak, this device cannot start. (code10), werbung, windows |