![]() |
Ich kann die Internetseite von Kabel Deutschland nicht öffnen Hallo, ich kann mit meinem PC die Seite von Kabel Deutschland, www.kabeldeutschland.de nicht mehr öffnen. Egal, mit welchem Browser ich es versuche, ich bekomme immer eine Fehlermeldung. Beim IE 9 "Die Webseite kann nicht angezeigt werden". Bei den anderen Browsern kommt eine ähnliche Meldung. Wenn ich die Antivirensoftware ausschalte, komme ich auch nicht auf die Seite. Mit meinem Laptop, der am selben Router hängt oder mit dem PC meines Sohnes, ist der Zugriff ohne Probleme möglich. Ich vermute, dass es sich um ein lokales, nur den einen PC betreffendes Problem handelt. Vielleicht kann mir hier jemand weiterhelfen, dass wäre super. |
Hi, http://www.trojaner-board.de/69886-a...-beachten.html Bitte abarbeiten und die Logs posten, nicht anhängen. |
Hallo, ich habe alles abgearbeitet, hier die benötigten Daten:OTL Logfile: Code: OTL logfile created on: 26.09.2012 17:33:56 - Run 1 |
nicht anhängen bedeutet alle logs hier posten :) Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte es erneut nicht klappen teile mir das bitte mit. |
Hallo Schrauber, vielen Dank für die schnelle Antwort und sorry dass ich die Datei angehängt hatte. Hier der Post der aswMBR.txt: aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software Run date: 2012-09-29 17:16:09 ----------------------------- 17:16:09.868 OS Version: Windows x64 6.1.7601 Service Pack 1 17:16:09.868 Number of processors: 8 586 0x1A05 17:16:09.869 ComputerName: PC-BÜRO UserName: *** 17:16:10.701 Initialize success 17:16:36.669 AVAST engine defs: 12092900 17:16:43.034 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 17:16:43.037 Disk 0 Vendor: Hitachi_ ST6O Size: 953869MB BusType: 3 17:16:43.041 Disk 1 \Device\Harddisk1\DR1 -> \Device\Ide\IdeDeviceP1T0L0-1 17:16:43.044 Disk 1 Vendor: ST3320820AS 3.AAX Size: 305245MB BusType: 11 17:16:43.092 Disk 0 MBR read successfully 17:16:43.097 Disk 0 MBR scan 17:16:43.104 Disk 0 Windows 7 default MBR code 17:16:43.132 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 16000 MB offset 2048 17:16:43.151 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 468946 MB offset 32770048 17:16:43.184 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 468921 MB offset 993171456 17:16:43.235 Disk 0 scanning C:\Windows\system32\drivers 17:17:00.546 Service scanning 17:17:08.063 Service Dnscache C:\Windows\System32\poua1evnd.dll **INFECTED** Win32:Malware-gen 17:17:33.169 Modules scanning 17:17:33.181 Disk 0 trace - called modules: 17:17:33.200 ntoskrnl.exe CLASSPNP.SYS disk.sys vsflt58.sys iaStor.sys hal.dll 17:17:33.204 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa800658b790] 17:17:33.207 3 CLASSPNP.SYS[fffff88000db943f] -> nt!IofCallDriver -> [0xfffffa800649ab30] 17:17:33.211 5 vsflt58.sys[fffff88000e120ed] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa80062de050] 17:17:37.179 AVAST engine scan C:\Windows 17:17:44.528 AVAST engine scan C:\Windows\system32 17:18:57.814 File: C:\Windows\system32\poua1evnd.dll **INFECTED** Win32:Malware-gen 17:20:41.557 AVAST engine scan C:\Windows\system32\drivers 17:20:56.980 AVAST engine scan C:\Users\*** 17:29:35.179 AVAST engine scan C:\ProgramData 17:31:56.211 Scan finished successfully 17:33:48.742 Disk 0 MBR has been saved successfully to "C:\Users\***\Desktop\Trojaner Board\MBR.dat" 17:33:48.746 The log file has been saved successfully to "C:\Users\***\Desktop\Trojaner Board\aswMBR.txt" |
Zitat:
Schauen wir mal was er sonst noch so ummöbliert hat und dann gehen wir dem Freund an den Pelz. OTL öffnen, in die Custom Scan Box folgendes kopieren und dann auf Run Scan klicken. Code: HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Telephony\Providers |
Hallo Schrauber, da hat man GData Total Protection auf dem Rechner und fühlt sich sicher...:heulen: Hier die LogfileOTL Logfile: Code: OTL logfile created on: 29.09.2012 20:24:02 - Run 2 |
Ganz sicher ist man vor neuer malware nie wirklich :) Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!Downloade dir bitte Combofix vom folgenden Downloadspiegel Link 1 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
|
So, die nächste Logfile: Combofix Logfile: Code: ComboFix 12-09-27.03 - *** 29.09.2012 21:21:29.2.8 - x64 |
Hinweis für Mitleser: Folgendes ComboFix Skript ist ausschließlich für diesen User in dieser Situtation erstellt worden. Auf keinen Fall auf anderen Rechnern anwenden, das kann andere Systeme nachhaltig schädigen! Lösche die vorhandene Combofix.exe von deinem Desktop und lade das Programm vom folgenden Download-Spiegel neu herunter: BleepingComputer.comund speichere es erneut auf dem Desktop (nicht woanders hin, das ist wichtig)! Drücke die Windows + R Taste --> Notepad (hinein schreiben) --> OK Kopiere nun den Text aus der folgenden Codebox komplett in das leere Textdokument. Code: Driver:: Wichtig:
|
Guten Morgen Schrauber, hier die Logfile: Combofix Logfile: Code: ComboFix 12-09-29.01 - *** 30.09.2012 9:44.3.8 - x64 |
Hast Du das mit dem Script korrekt ausgeführt? Wiederhol bitte den Custom Scan mit OTL von hier: http://www.trojaner-board.de/124666-...tml#post927076 |
Hallo Schrauber, das Script wurde nach deiner Anleitung ausgeführt. Der Zugriff auf www.kabeldeutschland.de funktioniert auch wieder :crazy: Hier das Ergebnis des Custom Scan mit OTL:OTL Logfile: Code: OTL logfile created on: 30.09.2012 10:48:04 - Run 3 |
Fixen mit OTL
Code: :OTL
Poste das Fix-Log sowie danach einen neuen Scan mit OTL mit dem Script. |
Hallo Schrauber, wenn ich den Fix-Butten drücke bekomme ich die Meldung: "Range check error" und es passiert nichts... |
war ja klar :pfeiff: dann gibts jetzt eben was mit der groben kelle für den knecht :glaskugel2: Bitte downloade dir LSPFix
Fixen mit OTL
Code: :OTL
Poste das Fix-Log sowie danach einen neuen Scan mit OTL mit dem Script. |
Hallo Schrauber, die grobe Kelle hat funktioniert :taenzer: Hier die Log-Files: Fix-Log: All processes killed ========== OTL ========== Error: No service named Dnscache was found to stop! Service\Driver key Dnscache not found. File C:\Windows\SysNative\poua1evnd.dll not found. Error: No service named Update-Service was found to stop! Service\Driver key Update-Service not found. File C:\Windows\SysWOW64\UpdSvc.dll not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BFC736F1-E305-4392-A2FB-A23FBFF20201}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BFC736F1-E305-4392-A2FB-A23FBFF20201}\ not found. Prefs.js: "Ask.com" removed from browser.search.order.1 Prefs.js: "Ask.com" removed from browser.search.selectedEngine Unable to delete ADS C:\ProgramData\Temp:1CE11B51 . ========== FILES ========== File\Folder C:\Windows\SysNative\poua1evnd.dll not found. File\Folder C:\Windows\SysWOW64\UpdSvc.dll not found. ========== REGISTRY ========== Registry key HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost\Update-Service-Installer-Service\ not found. Registry key HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost\Update-Service\ not found. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\Parameters\\"ServiceDll"|hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f ,00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,64,00,6e,00,73,00,72,00,73,00,6c,00,76,00,72,00,2e,00,64,00,6c,00,6c,00,00 ,00 /E : value set successfully! ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: *** ->Temp folder emptied: 181577 bytes ->Temporary Internet Files folder emptied: 364839959 bytes ->Java cache emptied: 2495057 bytes ->FireFox cache emptied: 96378714 bytes ->Google Chrome cache emptied: 383974044 bytes ->Apple Safari cache emptied: 16384 bytes ->Flash cache emptied: 57051 bytes User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 56466 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Public ->Temp folder emptied: 0 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32 (64bit) .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 39386586 bytes %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 66885 bytes %systemroot%\sysnative\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 749 bytes RecycleBin emptied: 23059 bytes Total Files Cleaned = 846,00 mb OTL by OldTimer - Version 3.2.68.0 log created on 09302012_124119 Files\Folders moved on Reboot... C:\Users\***\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully. File move failed. C:\Windows\temp\CLDigitalHome\CLMS_AGENT_LOG1.txt scheduled to be moved on reboot. C:\Windows\temp\CLDigitalHome\PCMMediaServer.log moved successfully. File\Folder C:\Windows\temp\JET5FCB.tmp not found! PendingFileRenameOperations files... Registry entries deleted on Reboot... OTL Log:OTL Logfile: Code: OTL logfile created on: 30.09.2012 12:49:57 - Run 4 Wollte gerade meine eMails mit Outlook abrufen, bekomme aber immer (auch nach Neustart) die Meldung: "Fehler bei der Übermittlung". Outlook kann Nachrichten senden, aber keine mehr empfangen. |
Kannst Du bitte nochmal ein OTL log mit dem Custom Scan posten von hier: http://www.trojaner-board.de/124666-...tml#post927076 |
Hallo Schrauber, hier die neue OTL-Log:OTL Logfile: Code: OTL logfile created on: 30.09.2012 14:00:02 - Run 5 |
Fixen mit OTL
Code: :files
Nochmal neues OTL Log mit dem gleichen Custom Scan wie eben bitte. |
So, dann bin ich wieder...alles erledigt. Hier die Log-Files: All processes killed ========== FILES ========== C:\Windows\SysNative\inttx1j6s.tsp moved successfully. ========== REGISTRY ========== Registry value HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost\\Update-Service-Installer-Service deleted successfully. Registry value HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost\\Update-Service deleted successfully. Registry value HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\\Update-Service-Installer-Service not found. Registry value HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\\Update-Service not found. ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: *** ->Temp folder emptied: 569909 bytes ->Temporary Internet Files folder emptied: 9907637 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 5939706 bytes ->Google Chrome cache emptied: 0 bytes ->Apple Safari cache emptied: 0 bytes ->Flash cache emptied: 506 bytes User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Public ->Temp folder emptied: 0 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32 (64bit) .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 1216 bytes %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 33170 bytes %systemroot%\sysnative\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 0 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 16,00 mb OTL by OldTimer - Version 3.2.68.0 log created on 09302012_143055 Files\Folders moved on Reboot... C:\Users\***\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully. C:\Users\***\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\1NIMWMPB\124666-internetseite-kabel-deutschland-oeffnen-2[1].htm moved successfully. C:\Users\***\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\AntiPhishing\ED8654D5-B9F0-4DD9-B3E8-F8F560086FDF.dat moved successfully. C:\Users\***\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\MSIMGSIZ.DAT moved successfully. File move failed. C:\Windows\temp\CLDigitalHome\CLMS_AGENT_LOG1.txt scheduled to be moved on reboot. File\Folder C:\Windows\temp\JET4DC1.tmp not found! PendingFileRenameOperations files... Registry entries deleted on Reboot... ...und die OTL.txtOTL Logfile: Code: OTL logfile created on: 30.09.2012 14:39:02 - Run 6 |
Hi, Du hast als Custom Scan den letzten Fix benutzt :). Du solltest aber den letzten Custom Scan benutzen. http://www.trojaner-board.de/124666-...tml#post927076 |
Sorry, vor lauter Fix und Custom war ich etwas durcheinander gekommen :confused: Hier die korrekte Datei:OTL Logfile: Code: OTL logfile created on: 30.09.2012 17:11:40 - Run 7 |
das sieht doch schon besser aus :) Noch Probleme? |
Hallo Schrauber, es bestehen immer noch die Probleme mit Outlook, IE9 32-Bit und MyTomTom. Outlook meldet im Dialogfeld:"Fehler (0x800408FC) beim Ausführen der Aufgabe "*** GMX - Nachrichten werden empfangen": "Der eingegebene Servername wurde im Netzwerk nicht gefunden. (Das Netzwerk steht möglicherweise gerade nicht zur Verfügung.) Überprüfen Sie den Namen und die Netzwerkverbindung." Die Meldung bekomme ich für alle eMail-Konten. GData Total Protection kann auch keine Verbindung zum Update-Server herstellen. Google Chrome geht auch nicht. Gruß Astralie |
Downloade dir Complete Internet Repair.
Downloade dir bitte Farbar's Service Scanner
Downloade dir bitte Farbar's MiniToolBox auf deinen Desktop und starte das Tool Setze einen Haken bei folgenden Einträgen
|
Guten Morgen Schrauber, habe die Programme ausgeführt, hier die Logs: ClntRep: ./ (o o) --------------------------------------oOOo-(_)-oOOo-------------------------------------- [01/10/2012 07:17:51] Resetting all TCP/IP Interfaces, Please wait..... ----------------------------------------------------------------------------------------- [01/10/2012 07:17:52] TCP/IP interfaces reset successful. [01/10/2012 07:17:52] TCP/IP v6 interfaces reset successful. [01/10/2012 07:17:52] You may need to restart your computer for the settings to take effect. [01/10/2012 07:17:52] Finished resetting the Internet Protocol (TCP/IP). ----------------------------------------------------------------------------------------- [01/10/2012 07:17:52] Attempting to reset Winsock catalog, Please wait..... ----------------------------------------------------------------------------------------- [01/10/2012 07:17:52] Successfully reset the Winsock Catalog. [01/10/2012 07:17:52] Finished repairing Winsock ----------------------------------------------------------------------------------------- [01/10/2012 07:17:53] Releasing TCP/IP connections, Please wait..... ----------------------------------------------------------------------------------------- [01/10/2012 07:17:53] Successfully released TCP/IP connections. ----------------------------------------------------------------------------------------- [01/10/2012 07:17:53] Renewing TCP/IP connections, Please wait..... ----------------------------------------------------------------------------------------- [01/10/2012 07:17:57] Successfully renewed TCP/IP adapters. ----------------------------------------------------------------------------------------- [01/10/2012 07:17:57] Configuring the Windows Event Log Service, Please wait..... ----------------------------------------------------------------------------------------- [01/10/2012 07:17:57] Windows Event Log Service Configured. [01/10/2012 07:17:57] Starting the Windows Event Log Service..... [01/10/2012 07:17:58] Windows Event Log Service Started Successfully. ----------------------------------------------------------------------------------------- [01/10/2012 07:17:58] Flushing DNS Resolver Cache, Please wait..... ----------------------------------------------------------------------------------------- [01/10/2012 07:17:58] Successfully flushed DNS Resolver Cache. [01/10/2012 07:17:58] Refreshing all DHCP leases and re-registering DNS names, Please wait..... [01/10/2012 07:17:58] Registration of the DNS resource records has been initiated. [01/10/2012 07:17:58] Note: Any errors will be reported in the 'Event Viewer' in about 15 minutes. [01/10/2012 07:17:58] Note: Click on 'File' and then 'Event Viewer...' to open the Event Viewer. ----------------------------------------------------------------------------------------- [01/10/2012 07:17:58] Repairing Internet Explorer 9.0.8112, Please wait..... ----------------------------------------------------------------------------------------- [01/10/2012 07:18:06] RegSvr32.exe: 'actxprxy.dll' registration succeeded. [01/10/2012 07:18:06] RegSvr32.exe: 'asctrls.ocx' Specified module not found [01/10/2012 07:18:06] RegSvr32.exe: 'browseui.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:06] RegSvr32.exe: 'cdfview.dll' Specified module not found [01/10/2012 07:18:06] RegSvr32.exe: 'comcat.dll' registration succeeded. [01/10/2012 07:18:06] RegSvr32.exe: 'comctl32.dll' registration succeeded. [01/10/2012 07:18:07] RegSvr32.exe: 'corpol.dll' Specified module not found [01/10/2012 07:18:07] RegSvr32.exe: 'cryptdlg.dll' registration succeeded. [01/10/2012 07:18:07] RegSvr32.exe: '"C:\Program Files (x86)\Internet Explorer\custsat.dll"' Specified module not found [01/10/2012 07:18:07] RegSvr32.exe: 'digest.dll' Specified module not found [01/10/2012 07:18:07] RegSvr32.exe: 'dispex.dll' registration succeeded. [01/10/2012 07:18:07] RegSvr32.exe: 'dxtmsft.dll' registration succeeded. [01/10/2012 07:18:07] RegSvr32.exe: 'dxtrans.dll' registration succeeded. [01/10/2012 07:18:07] RegSvr32.exe: 'extmgr.dll' Specified module not found [01/10/2012 07:18:07] RegSvr32.exe: '"C:\Program Files (x86)\Internet Explorer\hmmapi.dll"' Specified module not found [01/10/2012 07:18:07] RegSvr32.exe: 'hlink.dll' registration succeeded. [01/10/2012 07:18:07] RegSvr32.exe: 'ieaksie.dll' registration succeeded. [01/10/2012 07:18:07] RegSvr32.exe: 'ieapfltr.dll' Error number: 0x80070005 [01/10/2012 07:18:07] RegSvr32.exe: 'iedkcs32.dll' registration succeeded. [01/10/2012 07:18:08] RegSvr32.exe: '"C:\Program Files (x86)\Internet Explorer\iedvtool.dll"' registration succeeded. [01/10/2012 07:18:08] RegSvr32.exe: 'iedvtool.dll' Specified module not found [01/10/2012 07:18:08] RegSvr32.exe: 'ieframe.dll' registration succeeded. [01/10/2012 07:18:08] RegSvr32.exe: 'iepeers.dll' registration succeeded. [01/10/2012 07:18:09] RegSvr32.exe: '"C:\Program Files (x86)\Internet Explorer\ieproxy.dll"' registration succeeded. [01/10/2012 07:18:09] RegSvr32.exe: 'ieproxy.dll' Specified module not found [01/10/2012 07:18:09] RegSvr32.exe: 'iesetup.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:09] RegSvr32.exe: 'imgutil.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:09] RegSvr32.exe: 'inetcpl.cpl' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:09] RegSvr32.exe: 'inetcpl.cpl' registration succeeded. [01/10/2012 07:18:09] RegSvr32.exe: 'initpki.dll' Specified module not found [01/10/2012 07:18:09] RegSvr32.exe: 'inseng.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:09] RegSvr32.exe: 'jscript.dll' registration succeeded. [01/10/2012 07:18:10] RegSvr32.exe: 'licmgr10.dll' registration succeeded. [01/10/2012 07:18:10] RegSvr32.exe: 'mlang.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:10] RegSvr32.exe: 'mobsync.dll' Specified module not found [01/10/2012 07:18:10] RegSvr32.exe: 'msapsspc.dll' Specified module not found [01/10/2012 07:18:10] RegSvr32.exe: 'mscoree.dll' registration succeeded. [01/10/2012 07:18:10] RegSvr32.exe: 'mscorier.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:10] RegSvr32.exe: 'mscories.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:10] RegSvr32.exe: 'msdbg2.dll' Specified module not found [01/10/2012 07:18:10] RegSvr32.exe: 'mshta.exe' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:10] RegSvr32.exe: 'mshtml.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:10] RegSvr32.exe: 'mshtmled.dll' registration succeeded. [01/10/2012 07:18:10] RegSvr32.exe: 'msident.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:10] RegSvr32.exe: 'msieftp.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:10] RegSvr32.exe: 'msnsspc.dll' Specified module not found [01/10/2012 07:18:11] RegSvr32.exe: 'msr2c.dll' Specified module not found [01/10/2012 07:18:11] RegSvr32.exe: 'msrating.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:11] RegSvr32.exe: 'mstime.dll' Specified module not found [01/10/2012 07:18:11] RegSvr32.exe: 'msxml.dll' Specified module not found [01/10/2012 07:18:11] RegSvr32.exe: 'ole32.dll' registration succeeded. [01/10/2012 07:18:11] RegSvr32.exe: 'oleacc.dll' registration succeeded. [01/10/2012 07:18:11] RegSvr32.exe: 'occache.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:13] RegSvr32.exe: 'oleaut32.dll' registration succeeded. [01/10/2012 07:18:13] RegSvr32.exe: '"C:\Program Files (x86)\Internet Explorer\pdm.dll"' registration succeeded. [01/10/2012 07:18:13] RegSvr32.exe: 'plugin.ocx' Specified module not found [01/10/2012 07:18:14] RegSvr32.exe: 'pngfilt.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:14] RegSvr32.exe: 'proctexe.ocx' Specified module not found [01/10/2012 07:18:14] RegSvr32.exe: 'scrobj.dll' Error number: 0x80070005 [01/10/2012 07:18:14] RegSvr32.exe: 'sendmail.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:14] RegSvr32.exe: 'setupwbv.dll' Specified module not found [01/10/2012 07:18:14] RegSvr32.exe: 'shdocvw.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:14] RegSvr32.exe: 'tdc.ocx' registration succeeded. [01/10/2012 07:18:14] RegSvr32.exe: 'url.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:15] RegSvr32.exe: 'urlmon.dll' registration succeeded. [01/10/2012 07:18:15] RegSvr32.exe: 'urlmon.dll,NI,HKLM' Specified module not found [01/10/2012 07:18:15] RegSvr32.exe: 'vbscript.dll' registration succeeded. [01/10/2012 07:18:15] RegSvr32.exe: '"C:\Program Files (x86)\microsoft shared\vgx\vgx.dll"' Specified module not found [01/10/2012 07:18:15] RegSvr32.exe: 'webcheck.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:15] Finished repairing Internet Explorer 9.0.8112 ----------------------------------------------------------------------------------------- [01/10/2012 07:18:15] Repairing Windows Update / Automatic Updates, Please wait..... ----------------------------------------------------------------------------------------- [01/10/2012 07:18:15] Stopping the BITS Service..... [01/10/2012 07:18:15] BITS Stopped Successfully. [01/10/2012 07:18:16] Stopping the Automatic Updates (wuauserv) Service..... [01/10/2012 07:18:16] Automatic Updates (wuauserv) Service Stopped Successfully. [01/10/2012 07:18:16] Clearing File Stores (Update History)..... [01/10/2012 07:18:16] Clearing [C:\Windows\SoftwareDistribution\Download]..... [01/10/2012 07:18:20] [C:\Windows\SoftwareDistribution\Download] Cleared. [01/10/2012 07:18:20] Clearing [C:\Windows\SoftwareDistribution\DataStore]..... [01/10/2012 07:18:20] [C:\Windows\SoftwareDistribution\DataStore] Cleared. [01/10/2012 07:18:20] Clearing [C:\Windows\SysWOW64\CatRoot2]..... [01/10/2012 07:18:20] [C:\Windows\SysWOW64\CatRoot2] Cleared. [01/10/2012 07:18:20] Setting BITS Security Descriptor..... [01/10/2012 07:18:20] BITS Security Descriptor Set. [01/10/2012 07:18:20] Setting Automatic Updates (wuauserv) Service Security Descriptor..... [01/10/2012 07:18:20] Automatic Updates (wuauserv) Security Descriptor Set. [01/10/2012 07:18:20] Configuring the Automatic Updates (wuauserv) Service..... [01/10/2012 07:18:21] Automatic Updates (wuauserv) Service Configured. [01/10/2012 07:18:21] Configuring BITS..... [01/10/2012 07:18:21] BITS Configured. [01/10/2012 07:18:21] Registering WUAU DLLs..... [01/10/2012 07:18:21] RegSvr32.exe: 'actxprxy.dll' registration succeeded. [01/10/2012 07:18:21] RegSvr32.exe: 'atl.dll' registration succeeded. [01/10/2012 07:18:21] RegSvr32.exe: 'browseui.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:22] RegSvr32.exe: 'corpol.dll' Specified module not found [01/10/2012 07:18:22] RegSvr32.exe: 'cryptdlg.dll' registration succeeded. [01/10/2012 07:18:22] RegSvr32.exe: 'dispex.dll' registration succeeded. [01/10/2012 07:18:22] RegSvr32.exe: 'dssenh.dll' registration succeeded. [01/10/2012 07:18:22] RegSvr32.exe: 'gpkcsp.dll' Specified module not found [01/10/2012 07:18:22] RegSvr32.exe: 'initpki.dll' Specified module not found [01/10/2012 07:18:22] RegSvr32.exe: 'jscript.dll' registration succeeded. [01/10/2012 07:18:22] RegSvr32.exe: 'mshtml.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:22] RegSvr32.exe: 'msscript.ocx' registration succeeded. [01/10/2012 07:18:22] RegSvr32.exe: 'msxml.dll' Specified module not found [01/10/2012 07:18:22] RegSvr32.exe: 'msxml2.dll' Specified module not found [01/10/2012 07:18:22] RegSvr32.exe: 'msxml3.dll' registration succeeded. [01/10/2012 07:18:23] RegSvr32.exe: 'msxml4.dll' registration succeeded. [01/10/2012 07:18:23] RegSvr32.exe: 'msxml6.dll' registration succeeded. [01/10/2012 07:18:23] RegSvr32.exe: 'muweb.dll' Specified module not found [01/10/2012 07:18:23] RegSvr32.exe: 'ole.dll' Specified module not found [01/10/2012 07:18:23] RegSvr32.exe: 'ole32.dll' registration succeeded. [01/10/2012 07:18:23] RegSvr32.exe: 'oleaut.dll' Specified module not found [01/10/2012 07:18:24] RegSvr32.exe: 'oleaut32.dll' registration succeeded. [01/10/2012 07:18:24] RegSvr32.exe: 'qmgr.dll' Specified module not found [01/10/2012 07:18:24] RegSvr32.exe: 'qmgrprxy.dll' registration succeeded. [01/10/2012 07:18:24] RegSvr32.exe: 'gpkcsp.dll' Specified module not found [01/10/2012 07:18:24] RegSvr32.exe: 'rsaenh.dll' registration succeeded. [01/10/2012 07:18:24] RegSvr32.exe: 'sccbase.dll' Specified module not found [01/10/2012 07:18:24] RegSvr32.exe: 'scrobj.dll' registration succeeded. [01/10/2012 07:18:24] RegSvr32.exe: 'scrrun.dll' registration succeeded. [01/10/2012 07:18:25] RegSvr32.exe: 'shdocvw.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:25] RegSvr32.exe: 'shell.dll' Specified module not found [01/10/2012 07:18:25] RegSvr32.exe: 'shell32.dll' registration succeeded. [01/10/2012 07:18:25] RegSvr32.exe: 'slbcsp.dll' Specified module not found [01/10/2012 07:18:25] RegSvr32.exe: 'softpub.dll' registration succeeded. [01/10/2012 07:18:25] RegSvr32.exe: 'urlmon.dll' registration succeeded. [01/10/2012 07:18:25] RegSvr32.exe: 'vbscript.dll' registration succeeded. [01/10/2012 07:18:25] RegSvr32.exe: 'winhttp.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:18:25] RegSvr32.exe: 'wintrust.dll' registration succeeded. [01/10/2012 07:18:25] RegSvr32.exe: 'wshext.dll' Error number: 0x80070005 [01/10/2012 07:18:25] RegSvr32.exe: 'wuapi.dll' registration succeeded. [01/10/2012 07:18:25] RegSvr32.exe: 'wuaueng.dll' Specified module not found [01/10/2012 07:18:25] RegSvr32.exe: 'wuaueng1.dll' Specified module not found [01/10/2012 07:18:26] RegSvr32.exe: 'wucltui.dll' Specified module not found [01/10/2012 07:18:26] RegSvr32.exe: 'wucltux.dll' Specified module not found [01/10/2012 07:18:26] RegSvr32.exe: 'wups.dll' registration succeeded. [01/10/2012 07:18:26] RegSvr32.exe: 'wups2.dll' Specified module not found [01/10/2012 07:18:26] RegSvr32.exe: 'wuweb.dll' Specified module not found [01/10/2012 07:18:26] RegSvr32.exe: 'wuwebv.dll' registration succeeded. [01/10/2012 07:18:26] WUAU DLLs Reregistered. [01/10/2012 07:18:26] Resetting proxy settings..... [01/10/2012 07:18:26] Proxy settings reset successfully. [01/10/2012 07:18:26] Restarting the Automatic Updates (wuauserv) Service..... [01/10/2012 07:18:26] Automatic Updates (wuauserv) Service Restarted. [01/10/2012 07:18:26] Restarting the BITS Service..... [01/10/2012 07:18:26] BITS Service Restarted. [01/10/2012 07:18:27] Clearing the BITS queue..... [01/10/2012 07:18:27] BITS queue cleared. [01/10/2012 07:18:27] Initiating Windows Updates detection right away..... [01/10/2012 07:19:00] Finished repairing Windows Update / Automatic Updates. ----------------------------------------------------------------------------------------- [01/10/2012 07:19:00] Repairing SSL / HTTPS / Cryptography service, Please wait..... ----------------------------------------------------------------------------------------- [01/10/2012 07:19:00] Configuring the Cryptographic Service..... [01/10/2012 07:19:00] Cryptographic Service Configured. [01/10/2012 07:19:00] Stopping the Cryptographic Service..... [01/10/2012 07:19:00] Cryptographic service Stopped Successfully. [01/10/2012 07:19:00] Clearing [C:\Windows\system32\CatRoot]..... [01/10/2012 07:19:02] [C:\Windows\system32\CatRoot] cleared. [01/10/2012 07:19:02] Re-registering SSL / HTTPS / Cryptography DLLs..... [01/10/2012 07:19:02] RegSvr32.exe: 'cryptdlg.dll' registration succeeded. [01/10/2012 07:19:03] RegSvr32.exe: 'cryptext.dll' registration succeeded. [01/10/2012 07:19:03] RegSvr32.exe: 'cryptui.dll' registration succeeded. [01/10/2012 07:19:03] RegSvr32.exe: 'dssenh.dll' registration succeeded. [01/10/2012 07:19:03] RegSvr32.exe: 'gpkcsp.dll' Specified module not found [01/10/2012 07:19:03] RegSvr32.exe: 'initpki.dll' Specified module not found [01/10/2012 07:19:03] RegSvr32.exe: 'licdll.dll' Specified module not found [01/10/2012 07:19:03] RegSvr32.exe: 'mssign32.dll' registration succeeded. [01/10/2012 07:19:03] RegSvr32.exe: 'mssip32.dll' registration succeeded. [01/10/2012 07:19:04] RegSvr32.exe: 'regwizc.dll' Specified module not found [01/10/2012 07:19:04] RegSvr32.exe: 'rsaenh.dll' registration succeeded. [01/10/2012 07:19:04] RegSvr32.exe: 'scardssp.dll' Specified module not found [01/10/2012 07:19:04] RegSvr32.exe: 'sccbase.dll' Specified module not found [01/10/2012 07:19:06] RegSvr32.exe: 'scecli.dll' registration succeeded. [01/10/2012 07:19:06] RegSvr32.exe: 'slbcsp.dll' Specified module not found [01/10/2012 07:19:06] RegSvr32.exe: 'softpub.dll' registration succeeded. [01/10/2012 07:19:06] RegSvr32.exe: 'winhttp.dll' Module loaded but entry-point DllRegisterServer was not found. [01/10/2012 07:19:06] RegSvr32.exe: 'wintrust.dll' registration succeeded. [01/10/2012 07:19:06] SSL / HTTPS / Cryptography DLLs re-registered. [01/10/2012 07:19:07] Restarting the Cryptographic Service..... [01/10/2012 07:19:07] Cryptographic Service restarted. [01/10/2012 07:19:07] Finished repairing SSL / HTTPS / Cryptography service. ----------------------------------------------------------------------------------------- [01/10/2012 07:19:07] Resetting the Windows Firewall configuraton, Please wait..... ----------------------------------------------------------------------------------------- [01/10/2012 07:19:08] Windows Firewall configuration reset successful. [01/10/2012 07:19:08] Finished resetting the Windows Firewall configuraton. ----------------------------------------------------------------------------------------- [01/10/2012 07:19:08] Restoring the default Windows HOSTS file, Please wait..... ----------------------------------------------------------------------------------------- [01/10/2012 07:19:08] Writing data to the HOSTS file..... [01/10/2012 07:19:08] HOSTS file created successfully. ----------------------------------------------------------------------------------------- [01/10/2012 07:19:08] Repairing Workgroup Computers view, Please wait..... ----------------------------------------------------------------------------------------- [01/10/2012 07:19:08] Finished repairing Workgroup Computers view. ----------------------------------------------------------------------------------------- [01/10/2012 07:19:08] You will need to reboot your computer before the settings will take effect. ----------------------------------------------------------------------------------------- [01/10/2012 07:20:08] Your computer is restarting now..... ----------------------------------------------------------------------------------------- FSS: Farbar Service Scanner Version: 19-09-2012 Ran by *** (administrator) on 01-10-2012 at 07:26:06 Running from "C:\Users\***\Desktop\Trojaner Board\10. Mail" Microsoft Windows 7 Home Premium Service Pack 1 (X64) Boot Mode: Normal **************************************************************** Internet Services: ============ Dnscache Service is not running. Checking service configuration: Checking Start type: ATTENTION!=====> Unable to retrieve start type of Dnscache. The value does not exist. Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of Dnscache. The value does not exist. The ServiceDll of Dnscache service is OK. Connection Status: ============== Attempt to access Local Host IP returned error: Localhost is blocked: Other errors LAN connected. Attempt to access Google IP returned error: Other errors Attempt to access Google.com returned error: Other errors Attempt to access Yahoo IP returned error: Other errors Attempt to access Yahoo.com returned error: Other errors Windows Firewall: ============= Firewall Disabled Policy: ================== System Restore: ============ System Restore Disabled Policy: ======================== Action Center: ============ Windows Update: ============ wuauserv Service is not running. Checking service configuration: The start type of wuauserv service is OK. The ImagePath of wuauserv service is OK. The ServiceDll of wuauserv service is OK. Windows Autoupdate Disabled Policy: ============================ Windows Defender: ============== Other Services: ============== File Check: ======== C:\Windows\System32\nsisvc.dll => MD5 is legit C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit C:\Windows\System32\dhcpcore.dll => MD5 is legit C:\Windows\System32\drivers\afd.sys => MD5 is legit C:\Windows\System32\drivers\tdx.sys => MD5 is legit C:\Windows\System32\Drivers\tcpip.sys => MD5 is legit C:\Windows\System32\dnsrslvr.dll => MD5 is legit C:\Windows\System32\mpssvc.dll => MD5 is legit C:\Windows\System32\bfe.dll => MD5 is legit C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit C:\Windows\System32\SDRSVC.dll => MD5 is legit C:\Windows\System32\vssvc.exe => MD5 is legit C:\Windows\System32\wscsvc.dll => MD5 is legit C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit C:\Windows\System32\wuaueng.dll => MD5 is legit C:\Windows\System32\qmgr.dll => MD5 is legit C:\Windows\System32\es.dll => MD5 is legit C:\Windows\System32\cryptsvc.dll => MD5 is legit C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit C:\Windows\System32\ipnathlp.dll => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit **** End of log **** Result: MiniToolBox by Farbar Version: 23-07-2012 Ran by *** (administrator) on 01-10-2012 at 07:28:46 Microsoft Windows 7 Home Premium Service Pack 1 (X64) Boot Mode: Normal *************************************************************************** ========================= Flush DNS: =================================== Windows-IP-Konfiguration Der DNS-Aufl”sungscache konnte nicht geleert werden: Beim Ausfhren der Funktion ist ein Fehler aufgetreten. ========================= IE Proxy Settings: ============================== Proxy is not enabled. No Proxy Server is set. "Reset IE Proxy Settings": IE Proxy Settings were reset. ========================= FF Proxy Settings: ============================== "Reset FF Proxy Settings": Firefox Proxy settings were reset. ========================= Hosts content: ================================= ========================= IP Configuration: ================================ Intel(R) 82567LF-2 Gigabit Network Connection = LAN-Verbindung (Connected) # ---------------------------------- # IPv4-Konfiguration # ---------------------------------- pushd interface ipv4 reset popd # Ende der IPv4-Konfiguration Windows-IP-Konfiguration Hostname . . . . . . . . . . . . : PC-Bro Prim„res DNS-Suffix . . . . . . . : Knotentyp . . . . . . . . . . . . : Hybrid IP-Routing aktiviert . . . . . . : Nein WINS-Proxy aktiviert . . . . . . : Nein DNS-Suffixsuchliste . . . . . . . : fritz.box Ethernet-Adapter LAN-Verbindung: Verbindungsspezifisches DNS-Suffix: fritz.box Beschreibung. . . . . . . . . . . : Intel(R) 82567LF-2 Gigabit Network Connection Physikalische Adresse . . . . . . : 00-01-6C-6B-8E-33 DHCP aktiviert. . . . . . . . . . : Ja Autokonfiguration aktiviert . . . : Ja Verbindungslokale IPv6-Adresse . : fe80::457f:6a45:8767:fb40%9(Bevorzugt) IPv4-Adresse . . . . . . . . . . : 192.168.178.20(Bevorzugt) Subnetzmaske . . . . . . . . . . : 255.255.255.0 Lease erhalten. . . . . . . . . . : Montag, 1. Oktober 2012 07:21:28 Lease l„uft ab. . . . . . . . . . : Donnerstag, 11. Oktober 2012 07:21:27 Standardgateway . . . . . . . . . : 192.168.178.1 DHCP-Server . . . . . . . . . . . : 192.168.178.1 DHCPv6-IAID . . . . . . . . . . . : 218104172 DHCPv6-Client-DUID. . . . . . . . : 00-01-00-01-12-1C-7D-67-00-01-6C-6B-8E-33 DNS-Server . . . . . . . . . . . : 192.168.178.1 NetBIOS ber TCP/IP . . . . . . . : Aktiviert Tunneladapter Teredo Tunneling Pseudo-Interface: Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Teredo Tunneling Pseudo-Interface Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0 DHCP aktiviert. . . . . . . . . . : Nein Autokonfiguration aktiviert . . . : Ja IPv6-Adresse. . . . . . . . . . . : 2001:0:5ef5:79fd:2484:a53:a0a5:4ef9(Bevorzugt) Verbindungslokale IPv6-Adresse . : fe80::2484:a53:a0a5:4ef9%11(Bevorzugt) Standardgateway . . . . . . . . . : :: NetBIOS ber TCP/IP . . . . . . . : Deaktiviert Tunneladapter isatap.fritz.box: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: fritz.box Beschreibung. . . . . . . . . . . : Microsoft-ISATAP-Adapter #2 Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0 DHCP aktiviert. . . . . . . . . . : Nein Autokonfiguration aktiviert . . . : Ja Server: fritz.box Address: 192.168.178.1 Name: google.com Addresses: 2a00:1450:4008:c01::8a 173.194.69.139 173.194.69.100 173.194.69.102 173.194.69.138 173.194.69.113 173.194.69.101 Ping-Anforderung konnte Host "google.com" nicht finden. šberprfen Sie den Namen, und versuchen Sie es erneut. Server: fritz.box Address: 192.168.178.1 Name: yahoo.com Addresses: 98.139.183.24 72.30.38.140 98.138.253.109 Ping-Anforderung konnte Host "yahoo.com" nicht finden. šberprfen Sie den Namen, und versuchen Sie es erneut. Server: fritz.box Address: 192.168.178.1 Name: bleepingcomputer.com Address: 208.43.87.2 Ping-Anforderung konnte Host "bleepingcomputer.com" nicht finden. šberprfen Sie den Namen, und versuchen Sie es erneut. Ping wird ausgefhrt fr 127.0.0.1 mit 32 Bytes Daten: Antwort von 127.0.0.1: Bytes=32 Zeit<1ms TTL=128 Antwort von 127.0.0.1: Bytes=32 Zeit<1ms TTL=128 Ping-Statistik fr 127.0.0.1: Pakete: Gesendet = 2, Empfangen = 2, Verloren = 0 (0% Verlust), Ca. Zeitangaben in Millisek.: Minimum = 0ms, Maximum = 0ms, Mittelwert = 0ms =========================================================================== Schnittstellenliste 9...00 01 6c 6b 8e 33 ......Intel(R) 82567LF-2 Gigabit Network Connection 1...........................Software Loopback Interface 1 11...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface 20...00 00 00 00 00 00 00 e0 Microsoft-ISATAP-Adapter #2 =========================================================================== IPv4-Routentabelle =========================================================================== Aktive Routen: Netzwerkziel Netzwerkmaske Gateway Schnittstelle Metrik 0.0.0.0 0.0.0.0 192.168.178.1 192.168.178.20 10 127.0.0.0 255.0.0.0 Auf Verbindung 127.0.0.1 306 127.0.0.1 255.255.255.255 Auf Verbindung 127.0.0.1 306 127.255.255.255 255.255.255.255 Auf Verbindung 127.0.0.1 306 192.168.178.0 255.255.255.0 Auf Verbindung 192.168.178.20 266 192.168.178.20 255.255.255.255 Auf Verbindung 192.168.178.20 266 192.168.178.255 255.255.255.255 Auf Verbindung 192.168.178.20 266 224.0.0.0 240.0.0.0 Auf Verbindung 127.0.0.1 306 224.0.0.0 240.0.0.0 Auf Verbindung 192.168.178.20 266 255.255.255.255 255.255.255.255 Auf Verbindung 127.0.0.1 306 255.255.255.255 255.255.255.255 Auf Verbindung 192.168.178.20 266 =========================================================================== St„ndige Routen: Keine IPv6-Routentabelle =========================================================================== Aktive Routen: If Metrik Netzwerkziel Gateway 11 58 ::/0 Auf Verbindung 1 306 ::1/128 Auf Verbindung 11 58 2001::/32 Auf Verbindung 11 306 2001:0:5ef5:79fd:2484:a53:a0a5:4ef9/128 Auf Verbindung 9 266 fe80::/64 Auf Verbindung 11 306 fe80::/64 Auf Verbindung 11 306 fe80::2484:a53:a0a5:4ef9/128 Auf Verbindung 9 266 fe80::457f:6a45:8767:fb40/128 Auf Verbindung 1 306 ff00::/8 Auf Verbindung 11 306 ff00::/8 Auf Verbindung 9 266 ff00::/8 Auf Verbindung =========================================================================== St„ndige Routen: Keine ========================= Winsock entries ===================================== Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog9 11 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation) x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation) x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation) x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation) x64-Catalog5 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog5 06 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation) x64-Catalog5 07 C:\Windows\System32\wshbth.dll [47104] (Microsoft Corporation) x64-Catalog9 01 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog9 02 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog9 03 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog9 04 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog9 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog9 06 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog9 07 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog9 08 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog9 09 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog9 10 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog9 11 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) ========================= Event log errors: =============================== Application errors: ================== Error: (10/01/2012 07:23:07 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/01/2012 07:21:35 AM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.CRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"1". Die abhängige Assemblierung "Microsoft.VC80.CRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (10/01/2012 07:21:31 AM) (Source: TSNxGService) (User: ) Description: G Data Datensafe Die Initialisierung des Dateischutzmoduls (AFP) ist fehlgeschlagen Fehlercode: 1 Error: (10/01/2012 06:41:57 AM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.CRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"1". Die abhängige Assemblierung "Microsoft.VC80.CRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (10/01/2012 06:34:10 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/01/2012 06:32:31 AM) (Source: TSNxGService) (User: ) Description: G Data Datensafe Die Initialisierung des Dateischutzmoduls (AFP) ist fehlgeschlagen Fehlercode: 1 Error: (09/30/2012 08:19:22 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/30/2012 08:17:54 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.CRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"1". Die abhängige Assemblierung "Microsoft.VC80.CRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (09/30/2012 08:17:46 PM) (Source: TSNxGService) (User: ) Description: G Data Datensafe Die Initialisierung des Dateischutzmoduls (AFP) ist fehlgeschlagen Fehlercode: 1 Error: (09/30/2012 02:36:51 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (10/01/2012 07:23:34 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "MBAMService" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (10/01/2012 07:22:12 AM) (Source: WMPNetworkSvc) (User: ) Description: Ein neuer Medienserver konnte nicht initialisiert werden, a ein Fehler "0x80070422" in "CoCreateInstance(CLSID_UPnPRegistrar)" aufgetreten ist. Überprüfen Sie, ob der Dienst "UPnPHost" ausgeführt wird und ob die Windows-Komponente "UPnPHost" richtig installiert ist. Error: (10/01/2012 07:22:12 AM) (Source: WMPNetworkSvc) (User: ) Description: Ein neuer Medienserver konnte nicht initialisiert werden, a ein Fehler "0x80070422" in "CoCreateInstance(CLSID_UPnPRegistrar)" aufgetreten ist. Überprüfen Sie, ob der Dienst "UPnPHost" ausgeführt wird und ob die Windows-Komponente "UPnPHost" richtig installiert ist. Error: (10/01/2012 07:21:32 AM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: GLogin Error: (10/01/2012 07:04:36 AM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert: 40. Der interne Fehlerstatus lautet: 107. Error: (10/01/2012 07:04:36 AM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Eine SSL 3.0-Verbindungsanforderung wurde von einer Remoteclientanwendung übermittelt, jedoch werden keine der Verschlüsselungssammlungen, die von der Clientanwendung unterstützt werden, vom Server unterstützt. Fehler bei der SSL-Verbindungsanforderung. Error: (10/01/2012 07:04:36 AM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert: 40. Der interne Fehlerstatus lautet: 107. Error: (10/01/2012 07:04:36 AM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Eine SSL 3.0-Verbindungsanforderung wurde von einer Remoteclientanwendung übermittelt, jedoch werden keine der Verschlüsselungssammlungen, die von der Clientanwendung unterstützt werden, vom Server unterstützt. Fehler bei der SSL-Verbindungsanforderung. Error: (10/01/2012 07:04:36 AM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert: 40. Der interne Fehlerstatus lautet: 107. Error: (10/01/2012 07:04:36 AM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Eine SSL 3.0-Verbindungsanforderung wurde von einer Remoteclientanwendung übermittelt, jedoch werden keine der Verschlüsselungssammlungen, die von der Clientanwendung unterstützt werden, vom Server unterstützt. Fehler bei der SSL-Verbindungsanforderung. Microsoft Office Sessions: ========================= Error: (09/28/2012 03:09:52 PM) (Source: Microsoft Office 12 Sessions)(User: ) Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 49 seconds with 0 seconds of active time. This session ended with a crash. Error: (09/15/2012 07:55:29 AM) (Source: Microsoft Office 12 Sessions)(User: ) Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 98 seconds with 0 seconds of active time. This session ended with a crash. Error: (09/01/2012 01:53:29 PM) (Source: Microsoft Office 12 Sessions)(User: ) Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 91 seconds with 0 seconds of active time. This session ended with a crash. Error: (05/25/2012 07:25:26 AM) (Source: Microsoft Office 12 Sessions)(User: ) Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 54 seconds with 0 seconds of active time. This session ended with a crash. =========================== Installed Programs ============================ ACDSee Foto-Manager 2009 (Version: 11.0.113) ACDSee Image Decoder Update (Version: 2.0.5) ACDSee RAW Image Decoder Plug-In Update 4.0 (Version: 4.0.76) Acer Arcade Deluxe (Version: 2.6.6209) Acer Product Registration (Version: 3.0.0.10) Acer ScreenSaver (Version: 4.01.0718) Acer Updater (Version: 1.02.3502) Active@ ISO Burner (Version: 2.5.1) Adobe Acrobat 9 Pro Extended - English, Français, Deutsch (Version: 9.0.0) Adobe Acrobat 9 Pro Extended 64-bit Add-On (Version: 9.0.0) Adobe AIR (Version: 2.6.0.19120) Adobe Flash Player 11 ActiveX (Version: 11.4.402.265) Adobe Flash Player 11 Plugin (Version: 11.0.1.152) Adobe Reader 9.5.0 - Deutsch (Version: 9.5.0) Advertising Center (Version: 0.0.0.2) AVM FRITZ!Box AddOn (IE) (x64) (Version: 1.5.5) Biet-O-Matic v2.12.6 (Version: Biet-O-Matic v2.12.6) BufferChm (Version: 90.0.146.000) C:\Program Files (x86)\Acer GameZone\GameConsole (Version: 2.0.1.6) CameraHelperMsi (Version: 13.25.1010.0) Canon Easy-PhotoPrint EX Canon Easy-WebPrint EX Canon My Printer Catalyst Control Center - Branding (Version: 1.00.0000) Catalyst Control Center Core Implementation (Version: 2009.0702.1239.20840) Catalyst Control Center Graphics Full Existing (Version: 2009.0702.1239.20840) Catalyst Control Center Graphics Full New (Version: 2009.0702.1239.20840) Catalyst Control Center Graphics Light (Version: 2009.0702.1239.20840) Catalyst Control Center Graphics Previews Vista (Version: 2009.0702.1239.20840) Catalyst Control Center InstallProxy (Version: 2008.1003.1759.30358) Catalyst Control Center InstallProxy (Version: 2009.0702.1239.20840) Catalyst Control Center Localization All (Version: 2009.0702.1239.20840) ccc-core-static (Version: 2009.0702.1239.20840) ccc-utility64 (Version: 2009.0702.1239.20840) CCC Help Chinese Standard (Version: 2009.0702.1238.20840) CCC Help Chinese Traditional (Version: 2009.0702.1238.20840) CCC Help Czech (Version: 2009.0702.1238.20840) CCC Help Danish (Version: 2009.0702.1238.20840) CCC Help Dutch (Version: 2009.0702.1238.20840) CCC Help English (Version: 2009.0702.1238.20840) CCC Help Finnish (Version: 2009.0702.1238.20840) CCC Help French (Version: 2009.0702.1238.20840) CCC Help German (Version: 2009.0702.1238.20840) CCC Help Greek (Version: 2009.0702.1238.20840) CCC Help Hungarian (Version: 2009.0702.1238.20840) CCC Help Italian (Version: 2009.0702.1238.20840) CCC Help Japanese (Version: 2009.0702.1238.20840) CCC Help Korean (Version: 2009.0702.1238.20840) CCC Help Norwegian (Version: 2009.0702.1238.20840) CCC Help Polish (Version: 2009.0702.1238.20840) CCC Help Portuguese (Version: 2009.0702.1238.20840) CCC Help Russian (Version: 2009.0702.1238.20840) CCC Help Spanish (Version: 2009.0702.1238.20840) CCC Help Swedish (Version: 2009.0702.1238.20840) CCC Help Thai (Version: 2009.0702.1238.20840) CCC Help Turkish (Version: 2009.0702.1238.20840) Choice Guard (Version: 1.2.87.0) CloneDVD2 Compatibility Pack für 2007 Office System (Version: 12.0.4518.1014) CyberLink MediaShow (Version: 4.1.2325) CyberLink PowerDirector (Version: 7.0.2514) CyberLink PowerDVD 9 (Version: 9.0.1501) Destination Component (Version: 090.000.091.086) DeviceManagementQFolder (Version: 1.00.0000) DHTML Editing Component (Version: 6.02.0001) dLAN Cockpit (Version: 3.2.28) DocProc (Version: 9.0.0.0) DocProcQFolder (Version: 1.00.0000) DolbyFiles (Version: 2.0) EAS erLT (Version: 1.20.138.34) eSupportQFolder (Version: 1.00.0000) FastStone Image Viewer 3.9 (Version: 3.9) Feedback Tool (Version: 1.1.0) Feedback Tool (Version: 1.2.0) FileZilla Client 3.5.3 (Version: 3.5.3) Firebird SQL Server - MAGIX Edition (Version: 2.1.23.0) Free YouTube to MP3 Converter version 3.11.22.508 (Version: 3.11.22.508) G Data TotalCare 2012 G Data TotalProtection 2013 (Version: 23.0.0.0) Garmin USB Drivers (Version: 2.3.1.0) Garmin WebUpdater (Version: 2.5.6) GO Contact Sync Mod (Version: 3.5.8) Google Chrome (Version: 22.0.1229.79) Google Earth (Version: 6.2.2.6613) Google Update Helper (Version: 1.3.21.123) HP Imaging Device Functions 9.0 (Version: 9.0) HP OCR Software 9.0 (Version: 9.0) HP Photosmart Essential (Version: 1.12.0.46) HP Scanjet 3800 series 9.0 (Version: 9.0) HP Share-to-Web HP Solution Center 9.0 (Version: 9.0) HP Update (Version: 5.002.001.004) hpg3800 (Version: 8.0.0.0) hpg3800QFolder (Version: 1.00.0000) HPProductAssistant (Version: 90.0.146.000) ImagXpress (Version: 7.0.74.0) ImgBurn (Version: 2.5.6.0) Intel(R) Network Connections 16.7.166.0 (Version: 16.7.166.0) Intel® Matrix Storage Manager Java Auto Updater (Version: 2.0.7.1) Java(TM) 6 Update 24 (64-bit) (Version: 6.0.240) Java(TM) 6 Update 35 (Version: 6.0.350) Junk Mail filter update (Version: 14.0.8050.1202) Lexmark Software deinstallieren Logitech Gaming Software 5.10 (Version: 5.10.127) Logitech Harmony Remote Software 7 (Version: 7.7.0.0) Logitech SetPoint 6.30 (Version: 6.30.43) Logitech Vid HD (Version: 7.2 (7240)) Logitech Webcam Software (Version: 2.0) LWS Facebook (Version: 13.20.1166.0) LWS Gallery (Version: 13.20.1166.0) LWS Help_main (Version: 13.25.1016.0) LWS Launcher (Version: 13.20.1166.0) LWS Motion Detection (Version: 13.20.1176.0) LWS Pictures And Video (Version: 13.25.1010.0) LWS Twitter (Version: 13.20.1166.0) LWS Video Mask Maker (Version: 13.10.1216.0) LWS VideoEffects (Version: 13.25.1005.0) LWS Webcam Software (Version: 13.20.1168.0) LWS WLM Plugin (Version: 1.20.1166.0) LWS YouTube Plugin (Version: 13.20.1166.0) MAGIX Foto Manager 8 (Version: 6.0.1.471) MAGIX Fotobuch 3.6 (Version: 3.6) MAGIX Media Suite (Version: 1.13.0.112) MAGIX Online Druck Service 3.4.3.0 (D) (Version: 3.4.3.0) MAGIX Ringtone Maker SE (Version: 3.1.0.5) Malwarebytes Anti-Malware Version 1.65.0.1400 (Version: 1.65.0.1400) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30320) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Office 2003 Primary Interop Assemblies (Version: 11.0.6553.0) Microsoft Office Access MUI (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Enterprise 2007 (Version: 12.0.4518.1014) Microsoft Office Excel MUI (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Groove MUI (German) 2007 (Version: 12.0.4518.1014) Microsoft Office InfoPath MUI (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Office 64-bit Components 2007 (Version: 12.0.4518.1014) Microsoft Office OneNote MUI (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Outlook MUI (German) 2007 (Version: 12.0.4518.1014) Microsoft Office PowerPoint MUI (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Proof (English) 2007 (Version: 12.0.4518.1014) Microsoft Office Proof (French) 2007 (Version: 12.0.4518.1014) Microsoft Office Proof (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Proof (Italian) 2007 (Version: 12.0.4518.1014) Microsoft Office Proofing (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Publisher MUI (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Shared MUI (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Suite Activation Assistant (Version: 2.9) Microsoft Office Word MUI (German) 2007 (Version: 12.0.4518.1014) Microsoft Silverlight (Version: 4.0.60129.0) Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000) Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (Version: 10.0.30319) Microsoft Visual Studio 2005 Tools for Office Runtime (Version: 8.0.60816.0) Microsoft_VC100_CRT_SP1_x64 (Version: 10.0.40219.1) Microsoft_VC100_CRT_SP1_x86 (Version: 10.0.40219.1) Movie Templates - Starter Kit (Version: 9.4.6.0) Mozilla Firefox 15.0 (x86 de) (Version: 15.0) Mozilla Maintenance Service (Version: 15.0) MSVC80_x64_v2 (Version: 1.0.3.0) MSVC80_x86_v2 (Version: 1.0.3.0) MSVC90_x64 (Version: 1.0.1.2) MSVC90_x86 (Version: 1.0.1.2) MSVCRT (Version: 14.0.1468.721) MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0) MSXML 4.0 SP3 Parser (KB2721691) (Version: 4.30.2114.0) MSXML 4.0 SP3 Parser (KB973685) (Version: 4.30.2107.0) MSXML 4.0 SP3 Parser (Version: 4.30.2100.0) mufin player (Version: 1.0.0.98) MyPhoneExplorer (Version: 1.8.2) MyTomTom 3.2.0.802 (Version: 3.2.0.802) Nero 9 Trial Nero BurnRights (Version: 3.4.13.100) Nero ControlCenter (Version: 9.0.0.1) Nero CoverDesigner (Version: 4.4.12.100) Nero Disc Copy Gadget (Version: 2.4.34.0) Nero DiscSpeed (Version: 5.4.13.100) Nero DriveSpeed (Version: 4.4.12.100) Nero InfoTool (Version: 6.4.12.100) Nero Installer (Version: 4.4.9.0) Nero PhotoSnap (Version: 2.4.28.0) Nero Recode (Version: 4.4.38.1) Nero Rescue Agent (Version: 2.4.14.100) Nero ShowTime (Version: 5.4.21.100) Nero StartSmart (Version: 9.4.19.100) Nero Vision (Version: 6.4.16.100) Nero WaveEditor (Version: 5.4.37.1) NeroBurningROM (Version: 9.4.26.100) NeroExpress (Version: 9.4.26.100) neroxml (Version: 1.0.0) Nokia Connectivity Cable Driver (Version: 7.1.78.0) Nokia PC Suite (Version: 7.1.62.1) Nokia Software Updater (Version: 3.0.655) Nokia Suite (Version: 3.5.34.0) NSU (Version: 1.00.1000) NTI Backup Now 5 (Version: 5.1.2.616) NTI Backup Now Standard (Version: 5.1.2.616) NTI Media Maker 8 (Version: 8.0.2.6509) Nur Deinstallierung der CopyTrans Suite möglich. (Version: 2.15) Outlook Synchronization Server for Outlook 2003 (Version: 1.0.0) PanoStandAlone (Version: 90.0.146.000) PC Connectivity Solution (Version: 12.0.32.0) PKH-fix 3.2 PlayReady PC Runtime amd64 (Version: 1.3.0) Realtek High Definition Audio Driver (Version: 6.0.1.5898) Realtek USB 2.0 Card Reader (Version: 6.0.6000.20113) Realtek USB 2.0 Card Reader (Version: 6.1.7600.30126) Remote Control USB Driver (Version: 2.3.2.317) Samsung Kies (Version: 2.3.2.12054_20) Samsung Networking Wizard (Version: 1.1.11052.2) SAMSUNG USB Driver for Mobile Phones (Version: 1.5.6.0) Samsung_MonSetup (Version: 1.00.0000) Scan (Version: 9.0.0.0) ScannerCopy (Version: 9.0.0.0) Skype Click to Call (Version: 6.2.10687) Skype™ 5.9 (Version: 5.9.123) SmartCopy SmartLauncher SolutionCenter (Version: 90.0.146.000) SoundTrax (Version: 4.4.37.1) Spelling Dictionaries Support For Adobe Reader 9 (Version: 9.0.0) Sprite Backup (Version: 5.10) System Requirements Lab for Intel (64-bit) (Version: 4.4.24.0) TomTom HOME Visual Studio Merge Modules (Version: 1.0.2) Turbo Lister 2 (Version: 2.00.0000) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1) Visual Studio 2005 Tools for Office Second Edition Runtime Visual Studio C++ 10.0 Runtime (Version: 10.0.0) Visual Studio C++ 9.0 Runtime (Version: 1.0.0) WebReg (Version: 90.0.146.000) Windows-Treiberpaket - Nokia Modem (02/25/2011 4.7) (Version: 02/25/2011 4.7) Windows-Treiberpaket - Nokia Modem (02/25/2011 7.01.0.9) (Version: 02/25/2011 7.01.0.9) Windows-Treiberpaket - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (Version: 05/31/2012 7.1.2.0) Windows Driver Package - Garmin (grmnusb) GARMIN Devices (04/19/2012 2.3.1.0) (Version: 04/19/2012 2.3.1.0) Windows Live-Uploadtool (Version: 14.0.8014.1029) Windows Live Anmelde-Assistent (Version: 5.000.817.1) Windows Live Call (Version: 14.0.8050.1202) Windows Live Communications Platform (Version: 14.0.8050.1202) Windows Live Essentials (Version: 14.0.8050.1202) Windows Live Fotogalerie (Version: 14.0.8051.1204) Windows Live Mail (Version: 14.0.8050.1202) Windows Live Messenger (Version: 14.0.8050.1202) Windows Live Sync (Version: 14.0.8050.1202) Windows Live Writer (Version: 14.0.8050.1202) Windows Mobile-Gerätecenter (Version: 6.1.6965.0) Windows Mobile-Gerätecenter: Treiberupdate (Version: 6.1.6965.0) WinRAR WISO Steuer-Sparbuch 2011 (Version: 18.00.6928) WISO Steuer-Sparbuch 2012 (Version: 19.00.7303) Your Uninstaller! 7 (Version: 7.4.2011.11) ========================= Memory info: =================================== Percentage of memory in use: 29% Total physical RAM: 6135.17 MB Available physical RAM: 4316.19 MB Total Pagefile: 12268.54 MB Available Pagefile: 10039.48 MB Total Virtual: 4095.88 MB Available Virtual: 3976.32 MB ========================= Partitions: ===================================== 1 Drive c: (ACER) (Fixed) (Total:457.96 GB) (Free:372.11 GB) NTFS 2 Drive h: (DATEN) (Fixed) (Total:457.93 GB) (Free:351.73 GB) NTFS 4 Drive j: (EXT(S-ATA)) (Fixed) (Total:298.09 GB) (Free:50.66 GB) NTFS ========================= Users: ======================================== Benutzerkonten fr \\PC-BšRO Administrator ***‚ Gast Der Befehl wurde erfolgreich ausgefhrt. ========================= Minidump Files ================================== No minidump file found **** End of log **** |
bitte lade diese dateien auf den desktop und führe sie aus mit doppelklick, evtl meldungen erlauben. rechner neu starten und neues FSS log bitte. Probleme behoben? http://download.bleepingcomputer.com...7/Dnscache.reg http://download.bleepingcomputer.com...7/wuauserv.reg |
und Dir auch nen guten Morgen :) |
So, erledigt. Problem ist aber leider nicht behoben. Hier die FSS log: Farbar Service Scanner Version: 19-09-2012 Ran by *** (administrator) on 01-10-2012 at 07:56:12 Running from "C:\Users\***\Desktop\Trojaner Board\10. Mail" Microsoft Windows 7 Home Premium Service Pack 1 (X64) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Attempt to access Local Host IP returned error: Localhost is blocked: Other errors LAN connected. Attempt to access Google IP returned error: Other errors Attempt to access Google.com returned error: Other errors Attempt to access Yahoo IP returned error: Other errors Attempt to access Yahoo.com returned error: Other errors Windows Firewall: ============= Firewall Disabled Policy: ================== System Restore: ============ System Restore Disabled Policy: ======================== Action Center: ============ Windows Update: ============ Windows Autoupdate Disabled Policy: ============================ Windows Defender: ============== Other Services: ============== File Check: ======== C:\Windows\System32\nsisvc.dll => MD5 is legit C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit C:\Windows\System32\dhcpcore.dll => MD5 is legit C:\Windows\System32\drivers\afd.sys => MD5 is legit C:\Windows\System32\drivers\tdx.sys => MD5 is legit C:\Windows\System32\Drivers\tcpip.sys => MD5 is legit C:\Windows\System32\dnsrslvr.dll => MD5 is legit C:\Windows\System32\mpssvc.dll => MD5 is legit C:\Windows\System32\bfe.dll => MD5 is legit C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit C:\Windows\System32\SDRSVC.dll => MD5 is legit C:\Windows\System32\vssvc.exe => MD5 is legit C:\Windows\System32\wscsvc.dll => MD5 is legit C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit C:\Windows\System32\wuaueng.dll => MD5 is legit C:\Windows\System32\qmgr.dll => MD5 is legit C:\Windows\System32\es.dll => MD5 is legit C:\Windows\System32\cryptsvc.dll => MD5 is legit C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit C:\Windows\System32\ipnathlp.dll => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit **** End of log **** |
|
Ich glaube, dass funktioniert bei mir nicht, weil meine Windows 7 CD eine Upgradeversion ohne Service Pack 1 war? Gruß Astralie |
Da musst Du evtl Sp1 nochmal installieren. Mit diesem Schritt ersetzen wir nur die Windows-Sachen, da die Malware da einiges verbogen hat. |
Hallo Schrauber, hier die aktuelle OTL Logfile als Anhang. |
Sehr schön :). Rest dann wie besprochen (windows.old) Noch Probleme? |
Hallo Schrauber, hat alles prima funktioniert, es gibt keine Probleme mehr!!! Vielen Dank für die tolle Unterstützung :applaus: Kann ich den Ordner _OTL jetzt auch löschen oder wird er noch benötigt? Gruß Astralie |
Starte OTl und drück auf Bereinigung :) Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann. __________________ |
Hallo Schrauber, alles erledigt, Sysetem läuft gut! Vielen Dank. Gruß Astralie |
Gern geschehen :) |
Alle Zeitangaben in WEZ +1. Es ist jetzt 14:27 Uhr. |
Copyright ©2000-2025, Trojaner-Board