erpelfolie | 10.07.2014 22:47 | Hallo,
anbei die die FRST und die Addition.
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:05-07-2014 01
Ran by deVries (administrator) on DEVRIES-PC on 10-07-2014 23:40:46
Running from C:\Users\deVries\Desktop
Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkUserAgent.exe
(DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkUI.exe
() C:\Program Files\Samsung\Samsung Update Plus\SUPBackGround.exe
(SAMSUNG Electronics) C:\Program Files\Samsung\Samsung Support Center\SSCKbdHk.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\EasySpeedUpManager\EasySpeedUpManager.exe
(SEC) C:\Program Files\Samsung\Samsung Recovery Solution 4\WCScheduler.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Easy Display Manager\dmhkcore.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.24.15\GoogleCrashHandler.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\VS7DEBUG\MDM.EXE
() C:\Program Files\Samsung Casual Games\GameConsole\OberonGameConsoleService.exe
() C:\Program Files\CyberLink\Shared files\RichVideo.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [NvCplDaemon] => C:\windows\system32\NvCpl.dll [13830760 2009-11-05] (NVIDIA Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [8092192 2009-11-21] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1578280 2009-10-10] (Synaptics Incorporated)
HKLM\...\Run: [UCam_Menu] => C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink Corp.)
HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [931200 2012-03-26] (Microsoft Corporation)
Winlogon\Notify\PCANotify: C:\windows\system32\PCANotify.dll (Symantec Corporation)
HKU\.DEFAULT\...\Run: [Nokia.PCSync] => C:\Users\deVries\Nokia PC Suite 6\PcSync2.exe /NoDialog
HKU\S-1-5-21-1072828290-3828818215-1948454868-1000\...\MountPoints2: {1bf63d14-feba-11de-b739-806e6f6e6963} - E:\wubi.exe
==================== Internet (Whitelisted) ====================
Key found and deleted: HKU\S-1-5-21-1072828290-3828818215-1948454868-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com/ig/redirectdomain?brand=smsn&bmod=smsn
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=smsn&bmod=smsn
SearchScopes: HKLM - DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7SMSN
SearchScopes: HKLM - {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7SMSN
SearchScopes: HKCU - DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7SMSN_de
SearchScopes: HKCU - {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7SMSN_de
BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
DPF: {87BE3784-6977-4E84-AA08-55A96B9CEAC5} hxxp://fadevries.dyndns.org:81/bl_camera.cab
DPF: {B9940246-4344-4D1B-BD82-DBAF7E657FF9} hxxp://fadevriesleer.dyndns.org/SysCamInst.cab
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [152864] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
FF Plugin: @Apple.com/iTunes,version=1.0 - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=14.0.8081.0709 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
Chrome:
=======
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\35.0.1916.153\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\35.0.1916.153\pdf.dll ()
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files\QuickTime\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files\QuickTime\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files\QuickTime\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files\QuickTime\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files\QuickTime\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files\QuickTime\plugins\npqtplugin6.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files\QuickTime\plugins\npqtplugin7.dll (Apple Inc.)
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File
CHR Plugin: (Silverlight Plug-In) - C:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
CHR Plugin: (Windows Live® Photo Gallery) - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (iTunes Application Detector) - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Extension: (Google Docs) - C:\Users\deVries\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-09-13]
CHR Extension: (Google Drive) - C:\Users\deVries\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-09-13]
CHR Extension: (YouTube) - C:\Users\deVries\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-09-13]
CHR Extension: (Google-Suche) - C:\Users\deVries\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-09-13]
CHR Extension: (Google Wallet) - C:\Users\deVries\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-13]
CHR Extension: (Google Mail) - C:\Users\deVries\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-09-13]
========================== Services (Whitelisted) =================
S3 awhost32; C:\Program Files\Symantec\pcAnywhere\awhost32.exe [136568 2009-02-10] (Symantec Corporation)
R2 DisplayLinkService; C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe [5240168 2011-04-10] (DisplayLink Corp.)
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [11552 2012-03-26] (Microsoft Corporation)
S3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [214952 2012-03-26] (Microsoft Corporation)
R2 OberonGameConsoleService; C:\Program Files\Samsung Casual Games\GameConsole\OberonGameConsoleService.exe [44312 2009-08-13] ()
R2 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [247152 2009-07-07] ()
S3 ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [657408 2009-10-27] (Nokia) [File not signed]
==================== Drivers (Whitelisted) ====================
R1 awecho; C:\windows\System32\drivers\awechomd.sys [13368 2007-03-30] (Symantec Corporation)
R1 awlegacy; C:\windows\System32\Drivers\awlegacy.sys [17848 2007-03-30] (Symantec Corporation)
R1 AW_HOST; C:\windows\System32\drivers\aw_host5.sys [18232 2007-03-30] (Symantec Corporation)
S3 DisplayLinkUsbPort; C:\windows\System32\DRIVERS\DisplayLinkUsbPort_5.6.31854.0.sys [21888 2011-04-10] (hxxp://libusb-win32.sourceforge.net)
R3 dlkmd; C:\windows\system32\drivers\dlkmd.sys [182896 2011-04-10] (DisplayLink Corp.)
R0 dlkmdldr; C:\windows\System32\drivers\dlkmdldr.sys [14448 2011-04-10] (DisplayLink Corp.)
R1 Gernuwa; C:\windows\system32\Drivers\Gernuwa.sys [20536 2007-03-30] (Symantec Corporation)
S3 MOSUMAC; C:\windows\System32\DRIVERS\MOSUMAC.SYS [44032 2009-12-07] (--)
R0 MpFilter; C:\windows\System32\DRIVERS\MpFilter.sys [171064 2012-03-20] (Microsoft Corporation)
R3 yukonw7; C:\windows\System32\DRIVERS\yk62x86.sys [315392 2009-09-28] ()
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-07-10 23:40 - 2014-07-10 23:41 - 00011939 _____ () C:\Users\deVries\Desktop\FRST.txt
2014-07-10 23:40 - 2014-07-08 09:32 - 01074688 _____ (Farbar) C:\Users\deVries\Desktop\FRST.exe
2014-07-08 19:40 - 2014-07-10 23:40 - 00000000 ____D () C:\FRST
2014-07-07 11:45 - 2014-07-07 11:46 - 00000117 _____ () C:\ProgramData\RUNDLL32.EXE-3688-F.txt
2014-07-07 09:42 - 2014-07-07 09:57 - 00000740 _____ () C:\ProgramData\RUNDLL32.EXE-2768-F.txt
2014-07-07 09:42 - 2014-07-07 09:42 - 00000000 ____D () C:\ProgramData\HitmanPro
2014-07-07 09:37 - 2014-07-07 11:51 - 00000517 _____ () C:\ProgramData\RUNDLL32.EXE-3764-F.txt
2014-07-07 09:32 - 2014-07-07 09:33 - 00000173 _____ () C:\ProgramData\RUNDLL32.EXE-2912-F.txt
2014-07-06 22:17 - 2014-07-06 22:18 - 00000117 _____ () C:\ProgramData\RUNDLL32.EXE-1016-F.txt
2014-07-06 22:16 - 2014-07-06 22:16 - 00000173 _____ () C:\ProgramData\RUNDLL32.EXE-3696-F.txt
2014-07-06 19:56 - 2014-07-06 19:56 - 00000114 _____ () C:\ProgramData\RUNDLL32.EXE-2316-F.txt
2014-07-06 19:14 - 2014-07-07 11:58 - 00000666 _____ () C:\ProgramData\RUNDLL32.EXE-3544-F.txt
2014-07-06 08:56 - 2014-07-06 08:56 - 00000735 _____ () C:\ProgramData\RUNDLL32.EXE-2956-F.txt
2014-07-06 01:35 - 2014-07-06 01:35 - 00000057 _____ () C:\ProgramData\RUNDLL32.EXE-928-F.txt
2014-07-06 00:37 - 2014-07-06 00:40 - 00003005 _____ () C:\ProgramData\RUNDLL32.EXE-308-F.txt
2014-07-06 00:24 - 2014-07-06 00:28 - 00003759 _____ () C:\ProgramData\RUNDLL32.EXE-2584-F.txt
2014-07-06 00:16 - 2014-07-06 00:17 - 00000810 _____ () C:\ProgramData\RUNDLL32.EXE-2700-F.txt
2014-07-05 23:50 - 2014-07-05 23:52 - 00001885 _____ () C:\ProgramData\RUNDLL32.EXE-3148-F.txt
2014-07-05 23:41 - 2014-07-05 23:44 - 00003010 _____ () C:\ProgramData\RUNDLL32.EXE-3500-F.txt
2014-07-05 23:39 - 2014-07-05 23:39 - 00000378 _____ () C:\ProgramData\RUNDLL32.EXE-2460-F.txt
2014-07-05 23:35 - 2014-07-05 23:36 - 00003315 _____ () C:\ProgramData\RUNDLL32.EXE-4836-F.txt
2014-06-15 22:12 - 2014-06-15 22:09 - 00000404 _____ () C:\Users\deVries\Desktop\Lieblingsstauden - Pflanzenversand Gaissmayer.url
==================== One Month Modified Files and Folders =======
2014-07-10 23:41 - 2014-07-10 23:40 - 00011939 _____ () C:\Users\deVries\Desktop\FRST.txt
2014-07-10 23:41 - 2009-12-05 01:54 - 02004405 _____ () C:\windows\WindowsUpdate.log
2014-07-10 23:40 - 2014-07-08 19:40 - 00000000 ____D () C:\FRST
2014-07-10 23:40 - 2009-07-26 22:06 - 01529084 _____ () C:\windows\system32\PerfStringBackup.INI
2014-07-10 23:38 - 2013-09-13 21:36 - 00001096 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-10 23:38 - 2010-10-27 22:22 - 00094825 _____ () C:\windows\setupact.log
2014-07-10 23:38 - 2009-07-14 06:53 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-07-10 12:16 - 2013-09-13 21:36 - 00001100 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-10 12:11 - 2009-07-14 06:34 - 00022288 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-10 12:11 - 2009-07-14 06:34 - 00022288 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-08 09:32 - 2014-07-10 23:40 - 01074688 _____ (Farbar) C:\Users\deVries\Desktop\FRST.exe
2014-07-07 11:58 - 2014-07-06 19:14 - 00000666 _____ () C:\ProgramData\RUNDLL32.EXE-3544-F.txt
2014-07-07 11:51 - 2014-07-07 09:37 - 00000517 _____ () C:\ProgramData\RUNDLL32.EXE-3764-F.txt
2014-07-07 11:46 - 2014-07-07 11:45 - 00000117 _____ () C:\ProgramData\RUNDLL32.EXE-3688-F.txt
2014-07-07 09:57 - 2014-07-07 09:42 - 00000740 _____ () C:\ProgramData\RUNDLL32.EXE-2768-F.txt
2014-07-07 09:42 - 2014-07-07 09:42 - 00000000 ____D () C:\ProgramData\HitmanPro
2014-07-07 09:33 - 2014-07-07 09:32 - 00000173 _____ () C:\ProgramData\RUNDLL32.EXE-2912-F.txt
2014-07-06 22:18 - 2014-07-06 22:17 - 00000117 _____ () C:\ProgramData\RUNDLL32.EXE-1016-F.txt
2014-07-06 22:16 - 2014-07-06 22:16 - 00000173 _____ () C:\ProgramData\RUNDLL32.EXE-3696-F.txt
2014-07-06 19:56 - 2014-07-06 19:56 - 00000114 _____ () C:\ProgramData\RUNDLL32.EXE-2316-F.txt
2014-07-06 19:56 - 2013-12-09 23:38 - 00000884 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-07-06 08:56 - 2014-07-06 08:56 - 00000735 _____ () C:\ProgramData\RUNDLL32.EXE-2956-F.txt
2014-07-06 01:35 - 2014-07-06 01:35 - 00000057 _____ () C:\ProgramData\RUNDLL32.EXE-928-F.txt
2014-07-06 00:40 - 2014-07-06 00:37 - 00003005 _____ () C:\ProgramData\RUNDLL32.EXE-308-F.txt
2014-07-06 00:28 - 2014-07-06 00:24 - 00003759 _____ () C:\ProgramData\RUNDLL32.EXE-2584-F.txt
2014-07-06 00:17 - 2014-07-06 00:16 - 00000810 _____ () C:\ProgramData\RUNDLL32.EXE-2700-F.txt
2014-07-05 23:52 - 2014-07-05 23:50 - 00001885 _____ () C:\ProgramData\RUNDLL32.EXE-3148-F.txt
2014-07-05 23:44 - 2014-07-05 23:41 - 00003010 _____ () C:\ProgramData\RUNDLL32.EXE-3500-F.txt
2014-07-05 23:39 - 2014-07-05 23:39 - 00000378 _____ () C:\ProgramData\RUNDLL32.EXE-2460-F.txt
2014-07-05 23:36 - 2014-07-05 23:35 - 00003315 _____ () C:\ProgramData\RUNDLL32.EXE-4836-F.txt
2014-06-16 10:59 - 2009-07-14 04:37 - 00000000 ____D () C:\windows\system32\NDF
2014-06-15 22:09 - 2014-06-15 22:12 - 00000404 _____ () C:\Users\deVries\Desktop\Lieblingsstauden - Pflanzenversand Gaissmayer.url
2014-06-13 20:16 - 2013-09-13 21:38 - 00002121 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-06-10 22:16 - 2009-07-14 06:53 - 00032640 _____ () C:\windows\Tasks\SCHEDLGU.TXT
==================== Bamital & volsnap Check =================
C:\windows\explorer.exe => File is digitally signed
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-07-01 22:11
==================== End Of Log ============================ --- --- ---
--- --- ---
--- --- ---
--- --- --- Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version:05-07-2014 01
Ran by deVries at 2014-07-10 23:41:58
Running from C:\Users\deVries\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Microsoft Security Essentials (Enabled - Out of date) {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Microsoft Security Essentials (Enabled - Out of date) {2C040BB5-2B06-7275-5A21-2B969A740B4B}
==================== Installed Programs ======================
Adobe Flash Player 13 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 13.0.0.214 - Adobe Systems Incorporated)
Adobe Reader 9.1 - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-A91000000001}) (Version: 9.1.0 - Adobe Systems Incorporated)
Alice Greenfingers (HKLM\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112920767}) (Version: - Oberon Media)
AnyPC Client (HKLM\...\{1AFA1FEF-8CF9-4A51-AC46-64FAA7F3D9E2}) (Version: 1.0.0.23 - Doctorsoft)
Apple Application Support (HKLM\...\{B3575D00-27EF-49C2-B9E0-14B3D954E992}) (Version: 1.5.2 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{C23CD6DA-1958-43A5-ADD0-59396572E02E}) (Version: 3.4.1.2 - Apple Inc.)
Apple Software Update (HKLM\...\{C6579A65-9CAE-4B31-8B6B-3306E0630A66}) (Version: 2.1.3.127 - Apple Inc.)
Atheros Client Installation Program (HKLM\...\{D1434266-0486-4469-B338-A60082CC04E1}) (Version: 1.0.1.0805 - Atheros)
BatteryLifeExtender (HKLM\...\{853F8A41-A3C9-43FA-87FA-1AE74FC6F3F7}) (Version: 1.0.1 - Samsung)
Bonjour (HKLM\...\{C2E4B5BD-32DB-4817-A060-341AB17C3F90}) (Version: 2.0.5.0 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 2.36 - Piriform)
CyberLink DVD Suite (HKLM\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 6.0.2806 - CyberLink Corp.)
CyberLink DVD Suite (Version: 6.0.2806 - CyberLink Corp.) Hidden
CyberLink LabelPrint (HKLM\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1916 - CyberLink Corp.)
CyberLink LabelPrint (Version: 2.5.1916 - CyberLink Corp.) Hidden
CyberLink Power2Go (HKLM\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.0.3108a - CyberLink Corp.)
CyberLink Power2Go (Version: 6.0.3108a - CyberLink Corp.) Hidden
CyberLink PowerDirector (HKLM\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 7.0.3213 - CyberLink Corp.)
CyberLink PowerDirector (Version: 7.0.3213 - CyberLink Corp.) Hidden
CyberLink PowerDVD 8 (HKLM\...\InstallShield_{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}) (Version: 8.0.2815b - CyberLink Corp.)
CyberLink PowerDVD 8 (Version: 8.0.2815b - CyberLink Corp.) Hidden
CyberLink PowerProducer (HKLM\...\InstallShield_{B7A0CE06-068E-11D6-97FD-0050BACBF861}) (Version: 5.0.1.1812 - CyberLink Corp.)
CyberLink PowerProducer (Version: 5.0.1.1812 - CyberLink Corp.) Hidden
CyberLink YouCam (HKLM\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 2.0.3304 - CyberLink Corp.)
CyberLink YouCam (Version: 2.0.3304 - CyberLink Corp.) Hidden
Dairy Dash (HKLM\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115053100}) (Version: - Oberon Media)
DisplayLink Core Software (HKLM\...\{E9F84632-2789-49C9-BDC8-11C6B6B4D86E}) (Version: 5.6.31854.0 - DisplayLink Corp.)
DisplayLink Graphics (HKLM\...\{4D883D79-E7BC-44D3-BC22-6434D3FB122E}) (Version: 5.6.31548.0 - DisplayLink Corp.)
Easy Display Manager (HKLM\...\{17283B95-21A8-4996-97DA-547A48DB266F}) (Version: 3.0 - Samsung Electronics Co., Ltd.)
Easy Network Manager (HKLM\...\{A5675A9E-F073-414A-9A04-F9BCD50459D7}) (Version: 4.2.6 - Samsung)
Easy SpeedUp Manager (HKLM\...\{EF367AA4-070B-493C-9575-85BE59D789C9}) (Version: 3.0.0.5 - Samsung Electronics Co.,Ltd.)
EasyBatteryManager (HKLM\...\{178EE5F4-0F86-4BF0-A0D1-9790AFF409D1}) (Version: 4.0.0.3 - Samsung)
Farm Frenzy 2 (HKLM\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11531173}) (Version: - Oberon Media)
Game Pack (HKLM\...\{63eafc52-b963-4297-a7eb-d412944e7065}_is1) (Version: 5.3.0.10 - Oberon Media, Inc.)
Go-Go Gourmet (HKLM\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-114072167}) (Version: - Oberon Media)
Google Chrome (HKLM\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Toolbar for Internet Explorer (HKLM\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.5111.1712 - Google Inc.)
Google Toolbar for Internet Explorer (Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.24.15 - Google Inc.) Hidden
Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version: - Intel Corporation)
iTunes (HKLM\...\{C897FCB3-2F8B-4185-8035-79E2AF3A92A4}) (Version: 10.3.1.55 - Apple Inc.)
Junk Mail filter update (Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Marvell Miniport Driver (HKLM\...\Marvell Miniport Driver) (Version: 11.22.3.3 - Marvell)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Client Profile DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Antimalware Service DE-DE Language Pack (Version: 3.0.8402.2 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden
Microsoft Choice Guard (Version: 2.0.48.0 - Microsoft Corporation) Hidden
Microsoft Office Professional Edition 2003 (HKLM\...\{90110407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Security Client (Version: 4.0.1526.0 - Microsoft Corporation) Hidden
Microsoft Security Client DE-DE Language Pack (Version: 2.1.1116.0 - Microsoft Corporation) Hidden
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.0.1526.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.1.10329.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Works (HKLM\...\{39D0E034-1042-4905-BECB-5502909FCB7C}) (Version: 9.7.0621 - Microsoft Corporation)
MSVC80_x86_v2 (Version: 1.0.3.0 - Nokia) Hidden
MSVCRT (Version: 14.0.1468.721 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Nokia Connectivity Cable Driver (HKLM\...\{C50EF365-2898-489A-B6C7-30DAA466E9A2}) (Version: 7.1.23.0 - Nokia)
Nokia Ovi Player (HKLM\...\{A528306A-C5EC-481C-A619-6106334E6800}) (Version: 2.0.1106 - Nokia Ovi Player)
Nokia PC Suite (HKLM\...\Nokia PC Suite) (Version: 7.1.40.6 - Nokia)
Nokia PC Suite (Version: 7.1.40.6 - Nokia) Hidden
Nokia_Multimedia_Common_Components_2_5 (HKLM\...\{3762698E-E9DF-4DD8-99F1-8192D0F8EE06}) (Version: 2.5.197 - Nokia)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.3 - NVIDIA Corporation)
PC Connectivity Solution (HKLM\...\{6E0352EE-6F0D-4FBC-B1B8-4FF032C78BE0}) (Version: 9.44.0.3 - Nokia)
QuickTime (HKLM\...\{57752979-A1C9-4C02-856B-FBB27AC4E02C}) (Version: 7.69.80.9 - Apple Inc.)
Ravensburger tiptoi (HKLM\...\Ravensburger tiptoi) (Version: - )
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5986 - Realtek Semiconductor Corp.)
Samsung Recovery Solution 4 (HKLM\...\{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}) (Version: 4.0.0.4 - Samsung)
Samsung Support Center (HKLM\...\{CCC2B140-B47A-45FA-AAE3-BD60DA41AE00}) (Version: 1.0.21 - Samsung)
Samsung Update Plus (HKLM\...\{D3F2FAA5-FEC4-42AA-9ABA-1F763919A2B5}) (Version: 2.0 - Samsung Electronics Co., Ltd.)
Symantec pcAnywhere (HKLM\...\{12518183-866A-11D3-97DF-0000F8D8F2E9}) (Version: 12.5.0 - Symantec Corporation)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 14.0.10.0 - Synaptics Incorporated)
TERRA Datensicherungsassistent (HKLM\...\TERRA Datensicherungsassistent) (Version: 1.2010.11.173 - TERRA Data GmbH)
TERRA Pro-Plus X5 (HKLM\...\TERRA Pro-Plus X5) (Version: - )
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2468871) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2533523) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2600217) (Version: 1 - Microsoft Corporation)
USB-Ethernet Adapter Device (HKLM\...\USB-Ethernet Adapter Device) (Version: - )
User Guide (HKLM\...\{BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}) (Version: 1.0 - )
Veiling Rhein-Maas Fernkaufer v2.0.18.0 (HKLM\...\Veiling Rhein-Maas Fernkaufer_is1) (Version: - Aucxis Trading Solutions)
Windows Live Anmelde-Assistent (HKLM\...\{52B97218-98CB-4B8B-9283-D213C85E1AA4}) (Version: 5.000.818.5 - Microsoft Corporation)
Windows Live Call (Version: 14.0.8064.0206 - Microsoft Corporation) Hidden
Windows Live Communications Platform (Version: 14.0.8064.206 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8089.0726 - Microsoft Corporation)
Windows Live Essentials (Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Windows Live Family Safety (Version: 14.0.8093.805 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (Version: 14.0.8081.709 - Microsoft Corporation) Hidden
Windows Live Mail (Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Messenger (Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Movie Maker (Version: 14.0.8091.0730 - Microsoft Corporation) Hidden
Windows Live Sync (HKLM\...\{76618402-179D-4699-A66B-D351C59436BC}) (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live Writer (Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live-Uploadtool (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Windows-Treiberpaket - Nokia Modem (02/15/2007 3.1) (HKLM\...\0C5EDC3653FED5B121F464339EAC12534D253B25) (Version: 02/15/2007 3.1 - Nokia)
Windows-Treiberpaket - Nokia Modem (02/15/2007 3.1) (HKLM\...\B726756F5B5A5AA9D798B399386FC6205A45F19E) (Version: 02/15/2007 3.1 - Nokia)
Windows-Treiberpaket - Nokia Modem (05/24/2007 6.84.0.1) (HKLM\...\CD8424B9400BFF7D34AA18F816C71322AC4BDAA7) (Version: 05/24/2007 6.84.0.1 - Nokia)
Windows-Treiberpaket - Nokia Modem (06/01/2009 7.01.0.4) (HKLM\...\8CDCFB95BB84DD9C0F88F22266A0CA86035E55BA) (Version: 06/01/2009 7.01.0.4 - Nokia)
Windows-Treiberpaket - Nokia Modem (10/05/2009 4.2) (HKLM\...\05B59228C7E1C21DFBE89260F879BD95880548D8) (Version: 10/05/2009 4.2 - Nokia)
Windows-Treiberpaket - Nokia pccsmcfd (08/22/2008 7.0.0.0) (HKLM\...\504244733D18C8F63FF584AEB290E3904E791693) (Version: 08/22/2008 7.0.0.0 - Nokia)
==================== Restore Points =========================
15-05-2014 13:54:55 Windows Update
19-05-2014 17:42:11 Windows Update
23-05-2014 13:40:54 Windows Update
27-05-2014 11:49:52 Windows Update
30-05-2014 20:19:34 Windows Update
03-06-2014 19:28:30 Windows Update
06-06-2014 21:38:57 Windows Update
10-06-2014 20:26:39 Windows Update
13-06-2014 21:20:41 Windows Update
18-06-2014 19:39:16 Windows Update
22-06-2014 13:06:22 Windows Update
26-06-2014 09:47:02 Windows Update
29-06-2014 13:17:56 Windows Update
03-07-2014 20:00:15 Windows Update
==================== Hosts content: ==========================
2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {0125262C-427A-4DFE-BB7B-A01F82677284} - System32\Tasks\SUPBackground => C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe [2010-04-20] ()
Task: {01636CEE-3686-4F81-AA35-6E3801647ED5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2013-09-13] (Google Inc.)
Task: {127433D5-9313-4503-9C86-6DC7AC452E2E} - System32\Tasks\APSchedulerC => C:\Program Files\AnyPC Client\APLanMgrC.exe [2009-10-20] (DoctorSoft)
Task: {14F5FD8D-AF63-4046-8A73-4A945CF28A19} - System32\Tasks\Adobe Flash Player Updater => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-15] (Adobe Systems Incorporated)
Task: {1F17BFD7-CFCD-4F08-9700-3A157E04441A} - System32\Tasks\EasySpeedUpManager => C:\Program Files\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe [2009-10-13] (Samsung Electronics Co., Ltd.)
Task: {2748628F-A9EB-4010-94C1-1DED464FA34B} - System32\Tasks\SamsungSupportCenter => C:\Program Files\Samsung\Samsung Support Center\SSCKbdHk.exe [2009-10-26] (SAMSUNG Electronics)
Task: {2BEE9C2A-EAC7-4CC4-8026-1B7B32F55B48} - System32\Tasks\EasyBatteryManager => C:\Program Files\Samsung\EasyBatteryManager\EasyBatteryMgr4.exe [2009-10-16] (SAMSUNG Electronics co., LTD.)
Task: {3CFCADBD-30B8-4137-824C-4359DF28514E} - System32\Tasks\advSRS4 => C:\Program Files\Samsung\Samsung Recovery Solution 4\WCScheduler.exe [2009-10-07] (SEC)
Task: {A8796045-6B5A-4EE0-AA97-F2702ED52FA3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2013-09-13] (Google Inc.)
Task: {BE38DE8D-8415-4C76-B88C-943DD387E425} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {C5521848-C645-436A-9BCC-46ADB8A42C14} - System32\Tasks\BatteryLifeExtender => C:\Program Files\Samsung\BatteryLifeExtender\BatteryLifeExtender.exe [2009-11-19] (Samsung Electronics. Co. Ltd.)
Task: {C7C152FF-FAA9-49B3-8CFD-6F062F3D8BA6} - System32\Tasks\EasyDisplayMgr => C:\Program Files\Samsung\Easy Display Manager\dmhkcore.exe [2009-11-04] (Samsung Electronics Co., Ltd.)
Task: {E5A578CA-5778-45F4-939A-8B90379221FE} - System32\Tasks\Microsoft\Windows\MobilePC\DisplayLink TMM Control
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2009-12-05 01:56 - 2010-04-20 14:26 - 00300912 _____ () C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe
2009-12-05 01:56 - 2010-04-16 14:11 - 00155648 _____ () C:\Program Files\Samsung\Samsung Update Plus\HMXML.dll
2009-12-05 02:05 - 2006-08-12 05:48 - 00049152 _____ () C:\Program Files\Samsung\Easy Display Manager\HookDllPS2.dll
2010-02-16 17:25 - 2009-08-13 22:58 - 00044312 _____ () C:\Program Files\Samsung Casual Games\GameConsole\OberonGameConsoleService.exe
2009-12-05 02:00 - 2009-07-07 20:23 - 00247152 ____N () C:\Program Files\CyberLink\Shared files\RichVideo.exe
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\ProgramData\Temp:ABE89FFE
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcmscsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MpfService => ""="Service"
==================== EXE Association (whitelisted) =============
==================== MSCONFIG/TASK MANAGER disabled items =========
MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
MSCONFIG\startupreg: APLangApp => "C:\Program Files\AnyPC Client\APLangApp.exe"
MSCONFIG\startupreg: CLMLServer => "C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe"
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: NokiaMServer => C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
MSCONFIG\startupreg: NokiaMusic FastStart => "C:\Program Files\Nokia\Ovi Player\NokiaOviPlayer.exe" /command:faststart
MSCONFIG\startupreg: PC Suite Tray => "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
MSCONFIG\startupreg: PDVD8LanguageShortcut => "C:\Program Files\CyberLink\PowerDVD8\Language\Language.exe"
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: RemoteControl8 => "C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe"
MSCONFIG\startupreg: UpdateLBPShortCut => "C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
MSCONFIG\startupreg: UpdateP2GoShortCut => "C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
MSCONFIG\startupreg: UpdatePDRShortCut => "C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\PowerDirector" UpdateWithCreateOnce "Software\CyberLink\PowerDirector\7.0"
MSCONFIG\startupreg: UpdatePPShortCut => "C:\Program Files\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\PowerProducer" UpdateWithCreateOnce "Software\CyberLink\PowerProducer\5.0"
MSCONFIG\startupreg: UpdatePSTShortCut => "C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\DVD Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (07/07/2014 11:50:24 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SUPBackground.exe, Version: 0.0.0.0, Zeitstempel: 0x4bcd39e5
Name des fehlerhaften Moduls: SUPBackground.exe, Version: 0.0.0.0, Zeitstempel: 0x4bcd39e5
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000ae3f
ID des fehlerhaften Prozesses: 0x7e8
Startzeit der fehlerhaften Anwendung: 0xSUPBackground.exe0
Pfad der fehlerhaften Anwendung: SUPBackground.exe1
Pfad des fehlerhaften Moduls: SUPBackground.exe2
Berichtskennung: SUPBackground.exe3
Error: (07/07/2014 09:43:03 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SUPBackground.exe, Version: 0.0.0.0, Zeitstempel: 0x4bcd39e5
Name des fehlerhaften Moduls: SUPBackground.exe, Version: 0.0.0.0, Zeitstempel: 0x4bcd39e5
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000ae3f
ID des fehlerhaften Prozesses: 0x454
Startzeit der fehlerhaften Anwendung: 0xSUPBackground.exe0
Pfad der fehlerhaften Anwendung: SUPBackground.exe1
Pfad des fehlerhaften Moduls: SUPBackground.exe2
Berichtskennung: SUPBackground.exe3
Error: (07/07/2014 09:37:39 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SUPBackground.exe, Version: 0.0.0.0, Zeitstempel: 0x4bcd39e5
Name des fehlerhaften Moduls: SUPBackground.exe, Version: 0.0.0.0, Zeitstempel: 0x4bcd39e5
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000ae3f
ID des fehlerhaften Prozesses: 0x7cc
Startzeit der fehlerhaften Anwendung: 0xSUPBackground.exe0
Pfad der fehlerhaften Anwendung: SUPBackground.exe1
Pfad des fehlerhaften Moduls: SUPBackground.exe2
Berichtskennung: SUPBackground.exe3
Error: (07/07/2014 09:33:09 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SUPBackground.exe, Version: 0.0.0.0, Zeitstempel: 0x4bcd39e5
Name des fehlerhaften Moduls: SUPBackground.exe, Version: 0.0.0.0, Zeitstempel: 0x4bcd39e5
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000ae3f
ID des fehlerhaften Prozesses: 0x860
Startzeit der fehlerhaften Anwendung: 0xSUPBackground.exe0
Pfad der fehlerhaften Anwendung: SUPBackground.exe1
Pfad des fehlerhaften Moduls: SUPBackground.exe2
Berichtskennung: SUPBackground.exe3
Error: (07/06/2014 07:56:16 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm rundll32.exe, Version 6.1.7600.16385 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: dd8
Startzeit: 01cf993dc366cbc5
Endzeit: 15
Anwendungspfad: C:\windows\system32\rundll32.exe
Berichts-ID: d16fdf68-0536-11e4-9bb9-00245441fe51
Error: (07/06/2014 07:16:03 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SUPBackground.exe, Version: 0.0.0.0, Zeitstempel: 0x4bcd39e5
Name des fehlerhaften Moduls: SUPBackground.exe, Version: 0.0.0.0, Zeitstempel: 0x4bcd39e5
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000ae3f
ID des fehlerhaften Prozesses: 0x5e8
Startzeit der fehlerhaften Anwendung: 0xSUPBackground.exe0
Pfad der fehlerhaften Anwendung: SUPBackground.exe1
Pfad des fehlerhaften Moduls: SUPBackground.exe2
Berichtskennung: SUPBackground.exe3
Error: (07/06/2014 08:55:39 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SUPBackground.exe, Version: 0.0.0.0, Zeitstempel: 0x4bcd39e5
Name des fehlerhaften Moduls: SUPBackground.exe, Version: 0.0.0.0, Zeitstempel: 0x4bcd39e5
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000ae3f
ID des fehlerhaften Prozesses: 0x174
Startzeit der fehlerhaften Anwendung: 0xSUPBackground.exe0
Pfad der fehlerhaften Anwendung: SUPBackground.exe1
Pfad des fehlerhaften Moduls: SUPBackground.exe2
Berichtskennung: SUPBackground.exe3
Error: (07/06/2014 01:34:47 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SUPBackground.exe, Version: 0.0.0.0, Zeitstempel: 0x4bcd39e5
Name des fehlerhaften Moduls: SUPBackground.exe, Version: 0.0.0.0, Zeitstempel: 0x4bcd39e5
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000ae3f
ID des fehlerhaften Prozesses: 0x680
Startzeit der fehlerhaften Anwendung: 0xSUPBackground.exe0
Pfad der fehlerhaften Anwendung: SUPBackground.exe1
Pfad des fehlerhaften Moduls: SUPBackground.exe2
Berichtskennung: SUPBackground.exe3
Error: (07/06/2014 00:36:48 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SUPBackground.exe, Version: 0.0.0.0, Zeitstempel: 0x4bcd39e5
Name des fehlerhaften Moduls: SUPBackground.exe, Version: 0.0.0.0, Zeitstempel: 0x4bcd39e5
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000ae3f
ID des fehlerhaften Prozesses: 0x6b4
Startzeit der fehlerhaften Anwendung: 0xSUPBackground.exe0
Pfad der fehlerhaften Anwendung: SUPBackground.exe1
Pfad des fehlerhaften Moduls: SUPBackground.exe2
Berichtskennung: SUPBackground.exe3
Error: (07/06/2014 00:23:48 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SUPBackground.exe, Version: 0.0.0.0, Zeitstempel: 0x4bcd39e5
Name des fehlerhaften Moduls: SUPBackground.exe, Version: 0.0.0.0, Zeitstempel: 0x4bcd39e5
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000ae3f
ID des fehlerhaften Prozesses: 0x89c
Startzeit der fehlerhaften Anwendung: 0xSUPBackground.exe0
Pfad der fehlerhaften Anwendung: SUPBackground.exe1
Pfad des fehlerhaften Moduls: SUPBackground.exe2
Berichtskennung: SUPBackground.exe3
System errors:
=============
Error: (07/10/2014 00:14:07 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Beim Aktualisieren der Signaturen wurde von %NT-AUTORITÄT60 ein Fehler festgestellt.
Neue Signaturversion:
Vorherige Signaturversion: 1.177.1583.0
Aktualisierungsquelle: %NT-AUTORITÄT51
Aktualisierungsphase: 4.0.1526.00
Quellpfad: 4.0.1526.01
Signaturtyp: %NT-AUTORITÄT602
Aktualisierungstyp: %NT-AUTORITÄT604
Benutzer: NT-AUTORITÄT\NETZWERKDIENST
Aktuelle Modulversion: %NT-AUTORITÄT605
Vorherige Modulversion: %NT-AUTORITÄT606
Fehlercode: %NT-AUTORITÄT607
Fehlerbeschreibung: %NT-AUTORITÄT608
Error: (07/10/2014 00:14:07 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Beim Aktualisieren der Signaturen wurde von %NT-AUTORITÄT60 ein Fehler festgestellt.
Neue Signaturversion:
Vorherige Signaturversion: 1.177.1583.0
Aktualisierungsquelle: %NT-AUTORITÄT51
Aktualisierungsphase: 4.0.1526.00
Quellpfad: 4.0.1526.01
Signaturtyp: %NT-AUTORITÄT602
Aktualisierungstyp: %NT-AUTORITÄT604
Benutzer: NT-AUTORITÄT\NETZWERKDIENST
Aktuelle Modulversion: %NT-AUTORITÄT605
Vorherige Modulversion: %NT-AUTORITÄT606
Fehlercode: %NT-AUTORITÄT607
Fehlerbeschreibung: %NT-AUTORITÄT608
Error: (07/10/2014 00:14:07 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Beim Aktualisieren der Signaturen wurde von %NT-AUTORITÄT60 ein Fehler festgestellt.
Neue Signaturversion:
Vorherige Signaturversion: 1.177.1583.0
Aktualisierungsquelle: %NT-AUTORITÄT51
Aktualisierungsphase: 4.0.1526.00
Quellpfad: 4.0.1526.01
Signaturtyp: %NT-AUTORITÄT602
Aktualisierungstyp: %NT-AUTORITÄT604
Benutzer: NT-AUTORITÄT\NETZWERKDIENST
Aktuelle Modulversion: %NT-AUTORITÄT605
Vorherige Modulversion: %NT-AUTORITÄT606
Fehlercode: %NT-AUTORITÄT607
Fehlerbeschreibung: %NT-AUTORITÄT608
Error: (07/10/2014 00:14:07 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Beim Aktualisieren der Signaturen wurde von %NT-AUTORITÄT60 ein Fehler festgestellt.
Neue Signaturversion:
Vorherige Signaturversion: 1.177.1583.0
Aktualisierungsquelle: %NT-AUTORITÄT51
Aktualisierungsphase: 4.0.1526.00
Quellpfad: 4.0.1526.01
Signaturtyp: %NT-AUTORITÄT602
Aktualisierungstyp: %NT-AUTORITÄT604
Benutzer: NT-AUTORITÄT\NETZWERKDIENST
Aktuelle Modulversion: %NT-AUTORITÄT605
Vorherige Modulversion: %NT-AUTORITÄT606
Fehlercode: %NT-AUTORITÄT607
Fehlerbeschreibung: %NT-AUTORITÄT608
Error: (07/10/2014 00:14:07 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Beim Aktualisieren der Signaturen wurde von %NT-AUTORITÄT60 ein Fehler festgestellt.
Neue Signaturversion:
Vorherige Signaturversion: 1.177.1583.0
Aktualisierungsquelle: %NT-AUTORITÄT51
Aktualisierungsphase: 4.0.1526.00
Quellpfad: 4.0.1526.01
Signaturtyp: %NT-AUTORITÄT602
Aktualisierungstyp: %NT-AUTORITÄT604
Benutzer: NT-AUTORITÄT\NETZWERKDIENST
Aktuelle Modulversion: %NT-AUTORITÄT605
Vorherige Modulversion: %NT-AUTORITÄT606
Fehlercode: %NT-AUTORITÄT607
Fehlerbeschreibung: %NT-AUTORITÄT608
Error: (07/10/2014 00:14:07 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Beim Aktualisieren der Signaturen wurde von %NT-AUTORITÄT60 ein Fehler festgestellt.
Neue Signaturversion:
Vorherige Signaturversion: 1.177.1583.0
Aktualisierungsquelle: %NT-AUTORITÄT51
Aktualisierungsphase: 4.0.1526.00
Quellpfad: 4.0.1526.01
Signaturtyp: %NT-AUTORITÄT602
Aktualisierungstyp: %NT-AUTORITÄT604
Benutzer: NT-AUTORITÄT\NETZWERKDIENST
Aktuelle Modulversion: %NT-AUTORITÄT605
Vorherige Modulversion: %NT-AUTORITÄT606
Fehlercode: %NT-AUTORITÄT607
Fehlerbeschreibung: %NT-AUTORITÄT608
Error: (07/10/2014 00:14:07 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Beim Aktualisieren der Signaturen wurde von %NT-AUTORITÄT60 ein Fehler festgestellt.
Neue Signaturversion:
Vorherige Signaturversion: 1.177.1583.0
Aktualisierungsquelle: %NT-AUTORITÄT51
Aktualisierungsphase: 4.0.1526.00
Quellpfad: 4.0.1526.01
Signaturtyp: %NT-AUTORITÄT602
Aktualisierungstyp: %NT-AUTORITÄT604
Benutzer: NT-AUTORITÄT\NETZWERKDIENST
Aktuelle Modulversion: %NT-AUTORITÄT605
Vorherige Modulversion: %NT-AUTORITÄT606
Fehlercode: %NT-AUTORITÄT607
Fehlerbeschreibung: %NT-AUTORITÄT608
Error: (07/10/2014 00:14:07 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Beim Aktualisieren der Signaturen wurde von %NT-AUTORITÄT60 ein Fehler festgestellt.
Neue Signaturversion:
Vorherige Signaturversion: 1.177.1583.0
Aktualisierungsquelle: %NT-AUTORITÄT51
Aktualisierungsphase: 4.0.1526.00
Quellpfad: 4.0.1526.01
Signaturtyp: %NT-AUTORITÄT602
Aktualisierungstyp: %NT-AUTORITÄT604
Benutzer: NT-AUTORITÄT\NETZWERKDIENST
Aktuelle Modulversion: %NT-AUTORITÄT605
Vorherige Modulversion: %NT-AUTORITÄT606
Fehlercode: %NT-AUTORITÄT607
Fehlerbeschreibung: %NT-AUTORITÄT608
Error: (07/10/2014 00:14:07 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Beim Aktualisieren der Signaturen wurde von %NT-AUTORITÄT60 ein Fehler festgestellt.
Neue Signaturversion:
Vorherige Signaturversion: 1.177.1583.0
Aktualisierungsquelle: %NT-AUTORITÄT59
Aktualisierungsphase: 4.0.1526.00
Quellpfad: 4.0.1526.01
Signaturtyp: %NT-AUTORITÄT602
Aktualisierungstyp: %NT-AUTORITÄT604
Benutzer: NT-AUTORITÄT\SYSTEM
Aktuelle Modulversion: %NT-AUTORITÄT605
Vorherige Modulversion: %NT-AUTORITÄT606
Fehlercode: %NT-AUTORITÄT607
Fehlerbeschreibung: %NT-AUTORITÄT608
Error: (07/07/2014 00:02:06 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen:
awlegacy
AW_HOST
discache
Gernuwa
MpFilter
SABI
spldr
Wanarpv6
Microsoft Office Sessions:
=========================
Error: (07/07/2014 11:50:24 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: SUPBackground.exe0.0.0.04bcd39e5SUPBackground.exe0.0.0.04bcd39e5c00000050000ae3f7e801cf99c8b55087e0C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exeC:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe1d7ec71b-05bc-11e4-b44f-00245441fe51
Error: (07/07/2014 09:43:03 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: SUPBackground.exe0.0.0.04bcd39e5SUPBackground.exe0.0.0.04bcd39e5c00000050000ae3f45401cf99b6bf7bdd43C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exeC:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe53576441-05aa-11e4-be01-00245441fe51
Error: (07/07/2014 09:37:39 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: SUPBackground.exe0.0.0.04bcd39e5SUPBackground.exe0.0.0.04bcd39e5c00000050000ae3f7cc01cf99b6194224cdC:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exeC:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe9246d789-05a9-11e4-9c8a-00245441fe51
Error: (07/07/2014 09:33:09 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: SUPBackground.exe0.0.0.04bcd39e5SUPBackground.exe0.0.0.04bcd39e5c00000050000ae3f86001cf99b56b8b710cC:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exeC:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exef13c1412-05a8-11e4-b9fb-00245441fe51
Error: (07/06/2014 07:56:16 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: rundll32.exe6.1.7600.16385dd801cf993dc366cbc515C:\windows\system32\rundll32.exed16fdf68-0536-11e4-9bb9-00245441fe51
Error: (07/06/2014 07:16:03 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: SUPBackground.exe0.0.0.04bcd39e5SUPBackground.exe0.0.0.04bcd39e5c00000050000ae3f5e801cf993d8ea7993fC:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exeC:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe35100441-0531-11e4-9bb9-00245441fe51
Error: (07/06/2014 08:55:39 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: SUPBackground.exe0.0.0.04bcd39e5SUPBackground.exe0.0.0.04bcd39e5c00000050000ae3f17401cf98e70b7e6108C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exeC:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe89c6628f-04da-11e4-be55-00245441fe51
Error: (07/06/2014 01:34:47 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: SUPBackground.exe0.0.0.04bcd39e5SUPBackground.exe0.0.0.04bcd39e5c00000050000ae3f68001cf98a97787cbb9C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exeC:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exef2e7a516-049c-11e4-9c41-00245441fe51
Error: (07/06/2014 00:36:48 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: SUPBackground.exe0.0.0.04bcd39e5SUPBackground.exe0.0.0.04bcd39e5c00000050000ae3f6b401cf98a15dc0b618C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exeC:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exed960008f-0494-11e4-b4fc-00245441fe51
Error: (07/06/2014 00:23:48 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: SUPBackground.exe0.0.0.04bcd39e5SUPBackground.exe0.0.0.04bcd39e5c00000050000ae3f89c01cf989fae3a4ea5C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exeC:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe088181bf-0493-11e4-b422-00245441fe51
==================== Memory info ===========================
Percentage of memory in use: 32%
Total physical RAM: 3036.61 MB
Available physical RAM: 2062.06 MB
Total Pagefile: 6069.45 MB
Available Pagefile: 4763.54 MB
Total Virtual: 2047.88 MB
Available Virtual: 1923.17 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:141.49 GB) (Free:101.17 GB) NTFS
Drive d: () (Fixed) (Total:141.5 GB) (Free:132.18 GB) NTFS
Drive f: () (Removable) (Total:1.85 GB) (Free:1.82 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 298 GB) (Disk ID: 711561A4)
Partition 1: (Not Active) - (Size=15 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=141 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=141 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (Size: 2 GB) (Disk ID: C4C52B90)
Partition 1: (Not Active) - (Size=2 GB) - (Type=07 NTFS)
==================== End Of Log ============================
Gruß Erpelfolie |