Hallo Leo,
wow, das geht wieder schnell. Ich habe den FRST-Scan, allerdings habe ich in der Eile den "Service"-Haken nicht abgewählt.
Hier die logs: FRST
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 03-10-2013
Ran by xxxxx (administrator) on xxxxxxx-PC on 05-10-2013 15:31:32
Running from C:\Users\xxxxx\Desktop
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: German Standard
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Logitech Inc.) C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
(Microsoft Corporation) C:\Windows\system32\SLsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(brother Industries Ltd) C:\Windows\system32\brsvc01a.exe
(brother Industries Ltd) C:\Windows\system32\brss01a.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(Memeo) C:\Program Files\Memeo\AutoBackup\MemeoService.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
() C:\Windows\system32\PSIService.exe
() C:\Program Files\CyberLink\Shared Files\RichVideo.exe
() C:\Program Files\Tor\tor.exe
() C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVECapSvc.exe
() C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVESched.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
(Chicony) C:\Windows\CNYHKey.exe
(Chicony) C:\Windows\ModLEDKey.exe
(Cyberlink Corp.) C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
(ScanSoft, Inc.) C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
(Motorola Inc.) C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
(Brother Industries, Ltd.) C:\Program Files\Browny02\Brother\BrStMonW.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdcBase.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Brother Industries, Ltd.) C:\Program Files\Brother\ControlCenter3\brccMCtl.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Brother Industries, Ltd.) C:\Program Files\Browny02\BrYNSvc.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [JMB36X IDE Setup] - C:\Windows\JM\JMInsIDE.exe [36864 2006-10-30] ()
HKLM\...\Run: [ledpointer] - C:\Windows\CNYHKey.exe [5585408 2006-11-09] (Chicony)
HKLM\...\Run: [MoLed] - C:\Windows\ModLEDKey.exe [53248 2006-11-09] (Chicony)
HKLM\...\Run: [RemoteControl] - C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [69216 2006-12-06] (Cyberlink Corp.)
HKLM\...\Run: [LanguageShortcut] - C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [54832 2006-12-05] ()
HKLM\...\Run: [PaperPort PTD] - C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe [57393 2005-03-17] (ScanSoft, Inc.)
HKLM\...\Run: [IndexSearch] - C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe [40960 2005-03-17] (ScanSoft, Inc.)
HKLM\...\Run: [SMSERIAL] - C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [1458176 2009-10-26] (Motorola Inc.)
HKLM\...\Run: [APSDaemon] - C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59280 2012-10-11] (Apple Inc.)
HKLM\...\Run: [ControlCenter3] - C:\Program Files\Brother\ControlCenter3\brctrcen.exe [114688 2008-12-24] (Brother Industries, Ltd.)
HKLM\...\Run: [BrStsMon00] - C:\Program Files\Browny02\Brother\BrStMonW.exe [2621440 2010-02-09] (Brother Industries, Ltd.)
HKLM\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\QTTask.exe [421888 2012-10-25] (Apple Inc.)
HKLM\...\Run: [iTunesHelper] - C:\Program Files\iTunes\iTunesHelper.exe [421776 2012-09-10] (Apple Inc.)
HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [347192 2013-09-05] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKLM\...\Run: [Windows Mobile-based device management] - C:\Windows\WindowsMobile\wmdcBase.exe [648072 2007-05-31] (Microsoft Corporation)
Winlogon\Notify\!SASWinLogon: C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
HKCU\...\Run: [ehTray.exe] - C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
HKCU\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-19] (Microsoft Corporation)
HKCU\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [68856 2008-08-02] (Google Inc.)
HKU\xxxxxxa\...\Run: [BullGuard] - "C:\Program Files\BullGuard Software\BullGuard\BullGuard.exe"
HKU\xxxxxxa\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\qttask.exe [ 2012-10-25] (Apple Inc.)
HKU\xxxxxxa\...\Run: [ehTray.exe] - C:\Windows\ehome\ehTray.exe [ 2008-01-19] (Microsoft Corporation)
HKU\xxxxxxa\...\Run: [Insofta Document Backup] - "C:\Program Files\Insofta Document Backup\DocumentBackup.exe" /logon
HKU\xxxxxxa\...\Run: [updateMgr] - "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9
HKU\xxxxxxa\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [ 2008-08-02] (Google Inc.)
HKU\xxxxxxa\...\Run: [EA Core] - C:\Program Files\Electronic Arts\EADM\Core.exe -silent
HKU\xxxxxxa\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [ 2008-01-19] (Microsoft Corporation)
HKU\xxxxxxa\...\Policies\system: [LogonHoursAction] 2
HKU\xxxxxxa\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\xxxxxxb\...\Run: [BullGuard] - "C:\Program Files\BullGuard Software\BullGuard\BullGuard.exe"
HKU\xxxxxxb\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\qttask.exe [ 2012-10-25] (Apple Inc.)
HKU\xxxxxxb\...\Run: [ehTray.exe] - C:\Windows\ehome\ehTray.exe [ 2008-01-19] (Microsoft Corporation)
HKU\xxxxxxb\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [ 2008-01-19] (Microsoft Corporation)
HKU\xxxxxxb\...\Run: [Insofta Document Backup] - "C:\Program Files\Insofta Document Backup\DocumentBackup.exe" /logon
HKU\xxxxxxb\...\Run: [updateMgr] - "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9
HKU\xxxxxxb\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [ 2008-08-02] (Google Inc.)
HKU\xxxxxxb\...\Run: [ICQ] - 榤矔
HKU\xxxxxxb\...\Policies\system: [LogonHoursAction] 2
HKU\xxxxxxb\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\Default\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\xxxxx_User\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\qttask.exe [ 2012-10-25] (Apple Inc.)
HKU\xxxxx_User\...\Run: [ehTray.exe] - C:\Windows\ehome\ehTray.exe [ 2008-01-19] (Microsoft Corporation)
HKU\xxxxx_User\...\Run: [Insofta Document Backup] - "C:\Program Files\Insofta Document Backup\DocumentBackup.exe" /logon
HKU\xxxxx_User\...\Run: [updateMgr] - "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9
HKU\xxxxx_User\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [ 2008-08-02] (Google Inc.)
HKU\xxxxx_User\...\Run: [EA Core] - C:\Program Files\Electronic Arts\EADM\Core.exe -silent
HKU\xxxxx_User\...\Policies\system: [LogonHoursAction] 2
HKU\xxxxx_User\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\UpdatusUser\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
Startup: C:\Users\xxxxxxa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DSL-Manager.lnk
ShortcutTarget: DSL-Manager.lnk -> (No File)
Startup: C:\Users\xxxxxxb\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DSL-Manager.lnk
ShortcutTarget: DSL-Manager.lnk -> C:\Program Files\T-Online\DSL-Manager\DslMgr.exe (T-Systems Enterprise Services GmbH)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DSL-Manager.lnk
ShortcutTarget: DSL-Manager.lnk -> C:\Program Files\T-Online\DSL-Manager\DslMgr.exe (T-Systems Enterprise Services GmbH)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\T-Online DSL-Manager.lnk
ShortcutTarget: T-Online DSL-Manager.lnk -> C:\Program Files\T-Online\DSL-Manager\TODslMgr.exe (No File)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DSL-Manager.lnk
ShortcutTarget: DSL-Manager.lnk -> C:\Program Files\T-Online\DSL-Manager\DslMgr.exe (T-Systems Enterprise Services GmbH)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\T-Online DSL-Manager.lnk
ShortcutTarget: T-Online DSL-Manager.lnk -> C:\Program Files\T-Online\DSL-Manager\TODslMgr.exe (No File)
Startup: C:\Users\xxxxx_User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DSL-Manager.lnk
ShortcutTarget: DSL-Manager.lnk -> C:\Program Files\T-Online\DSL-Manager\DslMgr.exe (T-Systems Enterprise Services GmbH)
Startup: C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DSL-Manager.lnk
ShortcutTarget: DSL-Manager.lnk -> C:\Program Files\T-Online\DSL-Manager\DslMgr.exe (T-Systems Enterprise Services GmbH)
Startup: C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\T-Online DSL-Manager.lnk
ShortcutTarget: T-Online DSL-Manager.lnk -> C:\Program Files\T-Online\DSL-Manager\TODslMgr.exe (No File)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.focus.de/
BHO: IE7Pro BHO - {00011268-E188-40DF-A514-835FCD78B1BF} - C:\Program Files\IEPro\iepro.dll (IE7Pro.com)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll No File
BHO: WOT Helper - {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} - C:\Program Files\WOT\WOT.dll ()
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Grab Pro - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files\IEPro\IEProRecorder.dll ()
Toolbar: HKLM - WOT - {71576546-354D-41c9-AAE8-31F2EC22BF0D} - C:\Program Files\WOT\WOT.dll ()
Toolbar: HKCU -WOT - {71576546-354D-41C9-AAE8-31F2EC22BF0D} - C:\Program Files\WOT\WOT.dll ()
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_09-windows-i586.cab
DPF: {CAFEEFAC-0017-0000-0009-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_09-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_09-windows-i586.cab
Handler: fluxhttp\0x00000007 - {8E2D00A0-82C6-4821-90BC-07F290841BB6} - C:\Program Files\Common Files\fluxDVD\Lib\XEB\xebnavigation.ax No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Handler: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - C:\Program Files\WOT\WOT.dll ()
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Winsock: Catalog9 01 C:\Windows\system32\wpclsp.dll [72192] (Microsoft Corporation)
Winsock: Catalog9 02 C:\Windows\system32\wpclsp.dll [72192] (Microsoft Corporation)
Winsock: Catalog9 03 C:\Windows\system32\wpclsp.dll [72192] (Microsoft Corporation)
Winsock: Catalog9 04 C:\Windows\system32\wpclsp.dll [72192] (Microsoft Corporation)
Winsock: Catalog9 11 C:\Windows\system32\wpclsp.dll [72192] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Chrome:
=======
CHR Extension: (Google Drive) - C:\Users\xxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0
CHR Extension: (YouTube) - C:\Users\xxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0
CHR Extension: (Google Search) - C:\Users\xxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0
CHR Extension: (Gmail) - C:\Users\xxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
========================== Services (Whitelisted) =================
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2011-08-12] (SUPERAntiSpyware.com)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [84024 2013-09-05] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [108088 2013-09-05] (Avira Operations GmbH & Co. KG)
S4 bgsvcgen; C:\Windows\System32\bgsvcgen.exe [145504 2007-06-15] (B.H.A Corporation)
R2 BMUService; C:\Program Files\Memeo\AutoBackup\MemeoService.exe [31768 2007-04-07] (Memeo)
R2 Brother XP spl Service; C:\Windows\system32\brsvc01a.exe [57344 2002-04-11] (brother Industries Ltd)
R3 BrYNSvc; C:\Program Files\Browny02\BrYNSvc.exe [245760 2010-01-25] (Brother Industries, Ltd.)
S2 CheckStage2_svc; C:\Windows\CheckStage2.exe [462848 2007-03-12] ()
S4 ClipInc001; C:\Program Files\Tobit ClipInc\Server\ClipInc-Server.exe [1064960 2007-12-20] ()
R2 MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 ProtexisLicensing; C:\Windows\system32\PSIService.exe [174656 2006-11-02] ()
R2 RichVideo; C:\Program Files\CyberLink\Shared Files\RichVideo.exe [272024 2006-12-19] ()
S3 TDslMgrService; C:\Program Files\T-Online\DSL-Manager\DslMgrSvc.exe [294912 2007-11-26] (T-Systems Enterprise Services GmbH)
R2 tor; C:\Program Files\Tor\tor.exe [3233806 2013-09-09] ()
R2 TVECapSvc; C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVECapSvc.exe [299093 2007-05-08] ()
R2 TVESched; C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVESched.exe [127059 2007-05-08] ()
R2 UMVPFSrv; C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [450848 2012-01-18] (Logitech Inc.)
S2 ACDaemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [x]
S3 IDriverT; "C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe" [x]
S2 LightScribeService; "C:\Program Files\Common Files\LightScribe\LSSrvc.exe" [x]
S4 NMIndexingService; "C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe" [x]
S2 wlidsvc; "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE" [x]
==================== Drivers (Whitelisted) ====================
R3 3xHybrid; C:\Windows\System32\DRIVERS\3xHybrid.sys [2814080 2006-10-27] (ASUSTeK)
R3 Afc; C:\Windows\System32\drivers\Afc.sys [18688 2006-11-10] (Arcsoft, Inc.)
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [281760 2009-06-27] ()
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [88840 2013-09-05] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136672 2013-09-05] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-03-28] (Avira Operations GmbH & Co. KG)
R1 cdrbsdrv; C:\Windows\System32\Drivers\cdrbsdrv.sys [33408 2006-02-20] (B.H.A Corporation)
R0 CLFS; C:\Windows\System32\CLFS.sys [245736 2009-04-11] (Microsoft Corporation)
R1 DslMNLwf; C:\Windows\System32\DRIVERS\dslmnlwf.sys [16448 2007-08-01] (T-Systems Enterprise Services GmbH)
S3 dsltestSp5; C:\Windows\System32\Drivers\dsltestSp5.sys [26816 2007-09-12] (Printing Communications Assoc., Inc. (PCAUSA))
R0 JGOGO; C:\Windows\System32\DRIVERS\JGOGO.sys [6912 2006-02-07] (JMicron )
R0 JRAID; C:\Windows\System32\DRIVERS\jraid.sys [43648 2006-10-30] (JMicron Technology Corp.)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [25888 2009-06-27] ()
S3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2Mon.sys [25824 2010-05-07] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R0 sfdrv01a; C:\Windows\System32\drivers\sfdrv01a.sys [63352 2006-07-05] (Protection Technology (StarForce))
R0 sfsync04; C:\Windows\System32\drivers\sfsync04.sys [59776 2006-08-11] (Protection Technology (StarForce))
R1 SSHDRV86; C:\Windows\system32\drivers\SSHDRV86.sys [81408 2007-06-22] ()
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2013-03-01] (Avira GmbH)
S3 wanatw; C:\Windows\System32\DRIVERS\wanatw4.sys [33588 2006-11-01] (America Online, Inc.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [x]
S3 IpInIp; system32\DRIVERS\ipinip.sys [x]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [x]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-10-05 15:30 - 2013-10-05 15:30 - 00000000 ____D C:\FRST
2013-10-05 15:17 - 2013-10-05 15:15 - 01087213 _____ (Farbar) C:\Users\xxxxx\Desktop\FRST.exe
2013-10-05 15:16 - 2013-10-05 15:16 - 00000000 ____D C:\Users\xxxxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD
2013-10-05 09:32 - 2013-10-05 14:41 - 00000000 ____D C:\Users\xxxxx\Desktop\Trojaner
2013-10-05 00:06 - 2013-10-05 00:06 - 00000000 ____D C:\Windows\ERUNT
2013-10-04 18:51 - 2013-10-04 18:52 - 00000000 ____D C:\Users\xxxxx\AppData\Roaming\Foxit Software
2013-10-04 18:51 - 2013-10-04 18:51 - 00000000 ____D C:\Program Files\Foxit Software
2013-10-04 18:51 - 2013-06-09 21:59 - 00216064 _____ C:\Windows\system32\gcapi_dll.dll
2013-10-04 18:18 - 2013-10-04 18:18 - 00454373 _____ C:\Users\xxxxx\Downloads\pdf
2013-10-04 16:43 - 2013-10-04 16:43 - 00000000 ____D C:\Program Files\WOT
2013-10-04 15:47 - 2013-07-31 12:30 - 12335104 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-04 15:47 - 2013-07-31 12:05 - 09738752 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-04 15:47 - 2013-07-31 12:00 - 01800704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-04 15:47 - 2013-07-31 11:53 - 01104896 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-04 15:47 - 2013-07-31 11:52 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-10-04 15:47 - 2013-07-31 11:52 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-04 15:47 - 2013-07-31 11:51 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-10-04 15:47 - 2013-07-31 11:49 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-04 15:47 - 2013-07-31 11:48 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-04 15:47 - 2013-07-31 11:48 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-10-04 15:47 - 2013-07-31 11:48 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-10-04 15:47 - 2013-07-31 11:47 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-04 15:47 - 2013-07-31 11:46 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-04 15:47 - 2013-07-31 11:45 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-04 15:47 - 2013-07-31 11:45 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-10-04 15:47 - 2013-07-31 11:42 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-10-04 15:27 - 2013-08-08 03:45 - 02049536 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-04 15:27 - 2013-07-16 06:35 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2013-10-04 15:13 - 2013-10-04 15:13 - 00000000 _____ C:\Windows\win.ini.INI
2013-10-04 12:52 - 2013-10-04 12:52 - 00000000 ____D C:\Users\xxxxx_User\Desktop\Virensuche
2013-10-04 12:44 - 2013-10-04 12:44 - 00000000 ____D C:\Users\xxxxx_User\AppData\Roaming\Malwarebytes
2013-10-04 12:40 - 2013-10-04 12:55 - 00000000 ____D C:\Users\xxxxx_User\AppData\Roaming\MiniDm
2013-10-04 12:39 - 2013-10-04 12:39 - 00000000 ____D C:\Users\xxxxx_User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD
2013-09-17 17:38 - 2013-09-17 17:39 - 00000000 ____D C:\Users\xxxxxxa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD
2013-09-06 19:50 - 2013-10-04 15:37 - 00000000 ____D C:\Windows\system32\MRT
2013-09-06 19:25 - 2013-07-05 06:53 - 00905664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-09-06 19:25 - 2013-06-15 15:22 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll
2013-09-06 19:25 - 2013-06-15 13:23 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2013-09-06 19:24 - 2013-07-17 21:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-09-06 19:24 - 2013-07-09 14:10 - 01205168 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-09-06 19:24 - 2013-07-08 06:55 - 03603904 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2013-09-06 19:24 - 2013-07-08 06:55 - 03551680 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-09-06 19:24 - 2013-04-24 06:00 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2013-09-06 19:24 - 2013-04-24 03:46 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2013-09-06 19:24 - 2013-04-17 14:30 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2013-09-06 19:24 - 2013-04-17 13:28 - 01029120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2013-09-06 19:24 - 2013-04-17 13:28 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2013-09-06 19:24 - 2013-04-17 13:28 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2013-09-06 19:24 - 2013-04-17 13:28 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2013-09-06 19:24 - 2013-04-17 12:34 - 01172480 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2013-09-06 19:24 - 2013-04-17 12:33 - 00486400 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2013-09-06 19:24 - 2013-04-17 12:14 - 00683008 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2013-09-06 19:24 - 2013-04-17 12:10 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2013-09-06 19:24 - 2013-04-17 12:10 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2013-09-06 19:23 - 2013-08-02 06:09 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-09-06 19:23 - 2013-07-10 11:47 - 00783360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2013-09-06 19:23 - 2013-07-08 06:20 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2013-09-06 19:23 - 2013-07-08 06:16 - 00992768 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-09-06 19:23 - 2013-07-08 06:16 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2013-09-06 19:23 - 2013-07-08 06:16 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2013-09-06 19:23 - 2013-06-01 06:06 - 00505344 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2013-09-06 19:23 - 2013-05-02 06:04 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2013-09-06 19:23 - 2013-05-02 06:03 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\printcom.dll
2013-09-06 19:23 - 2013-04-15 16:20 - 00638328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-09-06 19:23 - 2013-04-13 12:56 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2013-09-06 19:05 - 2013-10-04 13:29 - 00000000 ____D C:\AdwCleaner
2013-09-06 18:44 - 2013-09-06 18:44 - 96334488 _____ C:\Windows\system32\黸皩ᴼ
==================== One Month Modified Files and Folders =======
2013-10-05 15:31 - 2006-11-02 14:47 - 00003296 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-05 15:31 - 2006-11-02 14:47 - 00003296 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-05 15:30 - 2013-10-05 15:30 - 00000000 ____D C:\FRST
2013-10-05 15:20 - 2006-11-02 12:33 - 01483864 _____ C:\Windows\system32\PerfStringBackup.INI
2013-10-05 15:19 - 2007-04-10 11:58 - 01345386 _____ C:\Windows\WindowsUpdate.log
2013-10-05 15:16 - 2013-10-05 15:16 - 00000000 ____D C:\Users\xxxxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD
2013-10-05 15:16 - 2007-04-30 16:05 - 00639184 _____ C:\Windows\system32\CheckStage2.log
2013-10-05 15:15 - 2013-10-05 15:17 - 01087213 _____ (Farbar) C:\Users\xxxxx\Desktop\FRST.exe
2013-10-05 14:43 - 2007-07-23 19:57 - 00002695 _____ C:\Users\xxxxx\Desktop\Microsoft Office Outlook 2007.lnk
2013-10-05 14:41 - 2013-10-05 09:32 - 00000000 ____D C:\Users\xxxxx\Desktop\Trojaner
2013-10-05 09:30 - 2007-04-30 13:53 - 00177346 _____ C:\Windows\PFRO.log
2013-10-05 00:06 - 2013-10-05 00:06 - 00000000 ____D C:\Windows\ERUNT
2013-10-04 18:52 - 2013-10-04 18:51 - 00000000 ____D C:\Users\xxxxx\AppData\Roaming\Foxit Software
2013-10-04 18:51 - 2013-10-04 18:51 - 00000000 ____D C:\Program Files\Foxit Software
2013-10-04 18:43 - 2007-06-10 14:49 - 00000000 ____D C:\Users\xxxxx\AppData\Local\Adobe
2013-10-04 18:42 - 2011-11-26 14:32 - 00000000 ____D C:\ProgramData\Adobe
2013-10-04 18:42 - 2011-11-26 14:32 - 00000000 ____D C:\Program Files\Common Files\Adobe
2013-10-04 18:18 - 2013-10-04 18:18 - 00454373 _____ C:\Users\xxxxx\Downloads\pdf
2013-10-04 17:22 - 2007-06-26 17:34 - 00000000 ____D C:\Users\xxxxx\Documents\Geld
2013-10-04 16:43 - 2013-10-04 16:43 - 00000000 ____D C:\Program Files\WOT
2013-10-04 15:53 - 2006-11-02 14:47 - 00359672 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-04 15:48 - 2007-06-29 18:57 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-10-04 15:37 - 2013-09-06 19:50 - 00000000 ____D C:\Windows\system32\MRT
2013-10-04 15:34 - 2006-11-02 12:24 - 76725432 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2013-10-04 15:20 - 2006-11-02 17:31 - 00000000 ____D C:\Windows\WindowsMobile
2013-10-04 15:13 - 2013-10-04 15:13 - 00000000 _____ C:\Windows\win.ini.INI
2013-10-04 15:08 - 2008-08-02 11:00 - 00000000 ____D C:\ProgramData\Google
2013-10-04 15:08 - 2007-11-05 22:13 - 00000000 ____D C:\Program Files\Google
2013-10-04 15:08 - 2007-06-13 21:49 - 00000000 ____D C:\Users\xxxxx\AppData\Local\Google
2013-10-04 15:07 - 2009-07-17 21:16 - 00000974 _____ C:\Windows\Tasks\Google Software Updater.job
2013-10-04 15:07 - 2008-08-02 11:00 - 00000000 ____D C:\ProgramData\Google Updater
2013-10-04 13:29 - 2013-09-06 19:05 - 00000000 ____D C:\AdwCleaner
2013-10-04 12:55 - 2013-10-04 12:40 - 00000000 ____D C:\Users\xxxxx_User\AppData\Roaming\MiniDm
2013-10-04 12:52 - 2013-10-04 12:52 - 00000000 ____D C:\Users\xxxxx_User\Desktop\Virensuche
2013-10-04 12:44 - 2013-10-04 12:44 - 00000000 ____D C:\Users\xxxxx_User\AppData\Roaming\Malwarebytes
2013-10-04 12:43 - 2012-05-13 18:31 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-10-04 12:39 - 2013-10-04 12:39 - 00000000 ____D C:\Users\xxxxx_User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD
2013-09-29 17:11 - 2012-11-09 18:23 - 00000000 ____D C:\Users\xxxxx\Citrix
2013-09-27 18:39 - 2007-06-26 17:41 - 00000000 ____D C:\Users\Public\Documents\Korrespondenz
2013-09-26 18:37 - 2007-06-26 17:35 - 00000000 ____D C:\Users\xxxxx\Documents\Kredit_neu
2013-09-26 18:36 - 2012-02-29 18:41 - 00000000 ____D C:\Users\xxxxx\Documents\Hauskauf xxxxxx
2013-09-22 11:51 - 2007-06-10 15:12 - 00042496 _____ C:\Users\xxxxx\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-09-17 17:39 - 2013-09-17 17:38 - 00000000 ____D C:\Users\xxxxxxa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD
2013-09-17 17:39 - 2007-08-23 16:13 - 00002695 _____ C:\Users\xxxxxxa\Desktop\Outlook.lnk
2013-09-08 14:05 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\Microsoft.NET
2013-09-06 20:02 - 2009-12-11 13:21 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-09-06 19:59 - 2006-11-02 14:37 - 00000000 ____D C:\Windows\system32\XPSViewer
2013-09-06 19:59 - 2006-11-02 14:37 - 00000000 ____D C:\Program Files\Windows Journal
2013-09-06 19:59 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\system32\de-DE
2013-09-06 19:07 - 2013-06-30 13:34 - 00000857 _____ C:\Users\xxxxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk
2013-09-06 18:44 - 2013-09-06 18:44 - 96334488 _____ C:\Windows\system32\黸皩ᴼ
2013-09-06 18:42 - 2011-01-08 21:14 - 00001092 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-09-06 18:41 - 2006-11-02 15:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-09-05 22:39 - 2006-11-02 15:01 - 00032554 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-09-05 22:19 - 2011-01-08 21:14 - 00001096 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-09-05 22:11 - 2012-05-31 11:51 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-09-05 21:03 - 2013-03-02 11:28 - 00136672 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-09-05 21:03 - 2013-03-02 11:28 - 00088840 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
Files to move or delete:
====================
C:\Users\xxxxx\CTX.DAT
Some content of TEMP:
====================
C:\Users\xxxxxxa\AppData\Local\temp\AskSLib.dll
C:\Users\xxxxx\AppData\Local\temp\drm_dyndata_7400009.dll
C:\Users\xxxxx\AppData\Local\temp\_is254C.exe
C:\Users\xxxxx\AppData\Local\temp\_isCFA.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-10-05 15:22
==================== End Of Log ============================ --- --- ---
und die addition.txt: Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 03-10-2013
Ran by Frank at 2013-10-05 15:32:14
Running from C:\Users\xxxxx\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
Update for Microsoft Office 2007 (KB2508958)
7-Zip 9.20
Adobe Flash Player 11 ActiveX (Version: 11.7.700.224)
Adobe Shockwave Player 11.6 (Version: 11.6.3.633)
ANNO 1404 - Venedig (Version: 2.0.5008.0)
Anno 1404 (Version: 1.00.0000)
ANNO 1404 (Version: 1.02.0000)
Anno 1701 - Der Fluch des Drachen (Version: 2.03)
Anno 1701 (Version: 1.00)
Apple Application Support (Version: 2.3)
Apple Mobile Device Support (Version: 6.0.0.59)
Apple Software Update (Version: 2.1.3.127)
ArcSoft Software Suite (Version: 1.0)
Atheros AR5007 Wireless LAN - USB
Avira Free Antivirus (Version: 13.0.0.4052)
Brother MFL-Pro Suite DCP-J315W (Version: 1.0.3.0)
CameraHelperMsi (Version: 13.25.1010.0)
CheckStage2 Version 1.0 (Version: Version 1.0)
ClipInc.
Corel Paint Shop Pro X (Version: 10.01)
Corel Photo Album 6 (Version: 6.40)
CPUID CPU-Z 1.58
DEUTSCHLAND SPIELT GAME CENTER
DHTML Editing Component (Version: 6.02.0001)
DivX Codec
Doctris Deluxe
Documents To Go Desktop for iPhone (Version: 2.0000.006)
DSL-Manager
EA Download Manager (Version: 4.0.0.462)
ESET Online Scanner v3
Exact Audio Copy 0.99pb4 (Version: 0.99pb4)
Foxit Reader (Version: 6.0.6.722)
Free MP4 Video Converter version 5.0.25.610 (Version: 5.0.25.610)
Free Video to iPad Converter version 5.0.24.422 (Version: 5.0.24.422)
Google Chrome (Version: 30.0.1599.69)
Google Earth (Version: 5.2.0.5932)
Google Earth Plug-in (Version: 7.1.1.1888)
Google Updater (Version: 2.4.2432.1652)
Hardcopy (Version: 2012.08.01)
iCloud (Version: 2.0.2.187)
IE7Pro (Version: 2.5.0)
ifolor Designer (Version: 3.2.8.0)
ifolor Gestaltungs-Vorlagen (Version: 2.5.12.22)
IPIX ActiveX Viewer
IPIX Netscape Plugin Viewer
IPIX Viewer
iTunes (Version: 10.7.0.21)
Java 7 Update 25 (Version: 7.0.250)
Java Auto Updater (Version: 2.1.9.5)
JMB36X Raid Configurer (Version: 1.00.0000)
K-Lite Codec Pack 6.4.0 (Standard) (Version: 6.4.0)
LetsTrade Komponenten
LIDL Fotoservice
LightScribe 1.4.124.1 (Version: 1.4.124.1)
Logitech Vid (Version: 1.70.1044)
LWS Facebook (Version: 13.20.1166.0)
LWS Gallery (Version: 13.20.1166.0)
LWS Help_main (Version: 13.25.1016.0)
LWS Launcher (Version: 13.20.1166.0)
LWS Motion Detection (Version: 13.20.1176.0)
LWS Pictures And Video (Version: 13.25.1010.0)
LWS Twitter (Version: 13.20.1166.0)
LWS Video Mask Maker (Version: 13.10.1216.0)
LWS VideoEffects (Version: 13.25.1005.0)
LWS Webcam Software (Version: 13.20.1168.0)
LWS WLM Plugin (Version: 1.20.1166.0)
LWS YouTube Plugin (Version: 13.20.1166.0)
Malwarebytes Anti-Malware Version 1.75.0.1300 (Version: 1.75.0.1300)
MCE Software Encoder 1.1 (Version: 1.1.0.1207)
MediaProSoft Free Mobile Media Converter 5.2.1
Megamind
Memeo AutoBackup (HKCU Version: 2.00.1451)
Memeo AutoBackup (Version: 2.00.1451)
Microsoft .NET Framework 1.1 (Version: 1.1.4322)
Microsoft .NET Framework 1.1 German Language Pack (Version: 1.1.4322)
Microsoft .NET Framework 1.1 Security Update (KB2698023)
Microsoft .NET Framework 1.1 Security Update (KB2833941)
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
Microsoft .NET Framework 3.5 Language Pack SP1 - deu (Version: 3.5.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319)
Microsoft Age of Empires Gold
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Choice Guard (Version: 2.0.48.0)
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Excel MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office File Validation Add-In (Version: 14.0.5130.5003)
Microsoft Office Live Add-in 1.5 (Version: 2.0.4024.1)
Microsoft Office Outlook Connector (Version: 12.0.6423.1000)
Microsoft Office Outlook MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office PowerPoint MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (Italian) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proofing (German) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Shared MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office Standard 2007 (Version: 12.0.6612.1000)
Microsoft Office Word MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Silverlight (Version: 5.1.20513.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft SQL Server Compact 3.5 SP1 English (Version: 3.5.5692.0)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual J# .NET Redistributable Package 1.1 (Version: 1.1.4322)
MobileMe Control Panel (Version: 2.6.0.29)
Moorhuhn Remake (Version: 1.00.0000)
Motorola SM56 Speakerphone Modem (Version: 6.12.25.06)
MSVCRT (Version: 14.0.1468.721)
MSXML 4.0 SP2 (KB927978) (Version: 4.20.9841.0)
MSXML 4.0 SP2 (KB936181) (Version: 4.20.9848.0)
MSXML 4.0 SP2 (KB941833) (Version: 4.20.9849.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MSXML 4.0 SP2 Parser and SDK (Version: 4.20.9818.0)
MSXML4 Parser (Version: 1.0.0)
neroxml (Version: 1.0.0)
NVIDIA Display Control Panel (Version: 6.14.12.5896)
NVIDIA Drivers (Version: 1.10.62.40)
NVIDIA Grafiktreiber 311.06 (Version: 311.06)
NVIDIA Install Application (Version: 2.1002.108.688)
NVIDIA Systemsteuerung 311.06 (Version: 311.06)
NVIDIA Update 1.11.3 (Version: 1.11.3)
NVIDIA Update Components (Version: 1.11.3)
NVIDIA VISTA Kiosk (Version: 1.0.0)
Octava SD4 (Version: 5.01)
Office-Bibliothek 4.1
OGA Notifier 2.0.0048.0 (Version: 2.0.0048.0)
Opera 11.10 (Version: 11.10.2092)
PaperPort (Version: 9.02.0823)
Phonetik (Version: 1.0.0)
PHOTOfunSTUDIO 4.0 HD Edition (Version: 4.00.262)
PhotoNow! 1.0
PowerDirector
PowerDVD (Version: 7.0.2707.0)
PPMate Network TV 2.0.0.40 (Version: 2.0.0.40)
PVSonyDll (Version: 1.00.0001)
QuickTime (Version: 7.73.80.64)
Rechtschreibkorrektur für den ifolor Designer (Version: 2.4.22.582)
RTC Client API v1.2 (Version: 1.2.0000)
Safari (Version: 5.34.57.2)
Schmidt Interaktivspaß Doppelkopf
Sibelius Scorch (ActiveX Only) (Version: 6.2.0)
SILKYPIX Developer Studio 3.0 SE (Version: 3)
Skype Click to Call (Version: 5.9.9216)
Skype™ 5.10 (Version: 5.10.116)
SoundMAX (Version: 6.10.1.6140)
SPORE™ Süß & Schrecklich Ergänzungs-Pack (Version: 1.00.0000)
SUPERAntiSpyware (Version: 5.0.1150)
swMSM (Version: 12.0.0.1)
Targa VFD Display (Version: 1.0.0)
Tinypic 3.18 (Version: Tinypic 3.18)
TomTom HOME (Version: 2.9.5)
TomTom HOME Visual Studio Merge Modules (Version: 1.0.2)
TV Enhance (Version: 1.0.4108)
Ulead Drop Spot 1.0 (Version: 1.0)
Ulead Photo Explorer 8.0 (Version: 8.0)
Ulead PhotoImpact XL (Version: 8.5)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB2836940) (Version: 1)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (Version: 1)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2825641) 32-Bit Edition
Update für Microsoft Office Excel 2007 Help (KB963678)
Update für Microsoft Office Outlook 2007 Help (KB963677)
Update für Microsoft Office Powerpoint 2007 Help (KB963669)
Update für Microsoft Office Word 2007 Help (KB963665)
USB Wireless Keyboard Driver (Version: V1.1)
Videoload Manager 1.0.1545 (Version: 1.0.1545)
VLC media player 2.0.6 (Version: 2.0.6)
Waldmeister Sause XXL
Wildlife Park 2 (Version: 1.24)
Windows Live Communications Platform (Version: 14.0.8117.416)
Windows Live Essentials (Version: 14.0.8117.0416)
Windows Live Essentials (Version: 14.0.8117.416)
Windows Live Fotogalerie (Version: 14.0.8117.416)
Windows Live ID-Anmelde-Assistent (Version: 6.500.3165.0)
Windows Live Sync (Version: 14.0.8117.416)
Windows Live-Uploadtool (Version: 14.0.8014.1029)
WinRAR 4.11 (32-Bit) (Version: 4.11.0)
WISO Mein Geld 2013 Standard
WISO Mein Geld 2013 Standard (Version: 15.0.0.1)
WISO Steuer-Sparbuch 2011 (Version: 18.00.6928)
WISO Steuer-Sparbuch 2012 (Version: 19.00.7303)
WISO Steuer-Sparbuch 2013 (HKCU Version: 20.03.8202)
WordPerfect Office X3 (Version: 13.1)
WOT for Internet Explorer (Version: 13.9.2.0)
Yahoo Community Smartbar (Version: 1.51.66.11081)
Yahoo Community Smartbar Engine (HKCU Version: 1.51.66.11081)
==================== Restore Points =========================
06-09-2013 17:27:38 Windows Update
06-09-2013 18:13:39 Windows Update
06-09-2013 18:19:14 Windows Update
04-10-2013 11:03:16 Removed Bonjour
04-10-2013 13:10:19 Removed Adobe Reader X (10.1.8) - Deutsch.
04-10-2013 13:15:30 Removed Yahoo Community Smartbar
04-10-2013 13:16:40 Removed Windows Mobile-Gerätecenter
04-10-2013 13:19:47 Removed Windows Mobile-Gerätecenter: Treiberupdate
04-10-2013 13:26:32 Entfernt SPORE™ Süß & Schrecklich Ergänzungs-Pack
04-10-2013 13:33:53 Windows Update
04-10-2013 14:42:42 Installed WOT for Internet Explorer
==================== Hosts content: ==========================
2012-05-26 08:51 - 2012-05-28 18:01 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: {00C14607-2A9F-4F75-9DE5-DC4DF0BFE5E4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2011-01-08] (Google Inc.)
Task: {0410F10B-5388-472E-A5CB-A7B54BB24013} - System32\Tasks\hcdll2_ex_Win32 => C:\Program Files\Hardcopy\hcdll2_ex_Win32.exe [2012-07-05] ()
Task: {056639BE-6C30-402B-9C20-9760D53B9F91} - System32\Tasks\Google Software Updater => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2013-10-04] (Google)
Task: {11E37A00-B888-470B-ACE5-CD4E6E987813} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: {1CC81347-6204-4B83-900C-01E02F50F067} - System32\Tasks\Microsoft\Windows\MobilePC\TMM
Task: {3BCDF251-CA5C-4045-A1FC-8FCEF9FBDC93} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages
Task: {44980BEE-7809-44A9-AC24-D6E578A3B7DF} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\system32\RacAgent.exe [2008-01-19] (Microsoft Corporation)
Task: {9859D8E6-32A5-4882-AE5D-F536797FAAD8} - System32\Tasks\AdobeFlashPlayerUpdate 2 => C:\Windows\system32\FlashPlayerUpdateService.exe
Task: {9BA6F872-F04E-4AE7-BF8D-C35706DF8709} - System32\Tasks\AdobeFlashPlayerUpdate => C:\Windows\system32\FlashPlayerUpdateService.exe
Task: {9FA924A3-FCFD-4F44-9749-E8AEA1EAB985} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI
Task: {AE332D70-E88E-4D53-B9F9-C6645C094432} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2011-01-08] (Google Inc.)
Task: {C3033860-FE1C-4F89-9F56-125DFBF58592} - System32\Tasks\{F254DEDD-47F8-4CA8-AD15-245A75038689} => C:\Program Files\Skype\\Phone\Skype.exe [2012-07-13] (Skype Technologies S.A.)
Task: {E0792863-C811-4CC6-A588-C7B013A7870F} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {E2606FEF-8FF5-4376-957E-FC68672D01B9} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe [2010-02-12] (Microsoft Corporation)
Task: {E5150B95-F9B4-4D5D-95A2-7EC1ACBA95F8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\system32\gatherWirelessInfo.vbs [2008-01-05] ()
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\Google Software Updater.job => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2012-05-29 11:26 - 2012-02-17 20:55 - 00166912 _____ () C:\Program Files\WinRAR\rarext.dll
2007-04-30 10:35 - 2002-09-26 03:07 - 00005120 _____ () C:\Windows\HKCYDLL.dll
2007-04-30 10:35 - 2003-06-16 20:13 - 00049152 _____ () C:\Windows\CNYUSB.dll
2012-10-30 20:46 - 2009-02-27 17:38 - 00139264 ____R () C:\Program Files\Brother\BrUtilities\BrLogAPI.dll
2011-09-27 08:23 - 2011-09-27 08:23 - 00087912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2011-09-27 08:22 - 2011-09-27 08:22 - 01242472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (10/05/2013 03:33:05 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2013/10/05 15:33:05.374]: [00002100]: GetDeviceIpAddress: GetAddressByName [BRW00809282C38C] Error
Error: (10/05/2013 03:33:05 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2013/10/05 15:33:05.131]: [00002100]: GetDeviceIpAddress: GetAddressByName [BRW00809282C38C] Error
Error: (10/05/2013 03:32:35 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2013/10/05 15:32:35.350]: [00002100]: GetDeviceIpAddress: GetAddressByName [BRW00809282C38C] Error
Error: (10/05/2013 03:32:35 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2013/10/05 15:32:35.107]: [00002100]: GetDeviceIpAddress: GetAddressByName [BRW00809282C38C] Error
Error: (10/05/2013 03:32:05 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2013/10/05 15:32:05.328]: [00002100]: GetDeviceIpAddress: GetAddressByName [BRW00809282C38C] Error
Error: (10/05/2013 03:32:05 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2013/10/05 15:32:05.085]: [00002100]: GetDeviceIpAddress: GetAddressByName [BRW00809282C38C] Error
Error: (10/05/2013 03:31:35 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2013/10/05 15:31:35.287]: [00002100]: GetDeviceIpAddress: GetAddressByName [BRW00809282C38C] Error
Error: (10/05/2013 03:31:35 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2013/10/05 15:31:35.064]: [00002100]: GetDeviceIpAddress: GetAddressByName [BRW00809282C38C] Error
Error: (10/05/2013 03:31:05 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2013/10/05 15:31:05.264]: [00002100]: GetDeviceIpAddress: GetAddressByName [BRW00809282C38C] Error
Error: (10/05/2013 03:31:05 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2013/10/05 15:31:05.040]: [00002100]: GetDeviceIpAddress: GetAddressByName [BRW00809282C38C] Error
System errors:
=============
Error: (10/05/2013 03:19:02 PM) (Source: Service Control Manager) (User: )
Description: NVIDIA Update Service Daemon%%1069
Error: (10/05/2013 03:19:02 PM) (Source: Service Control Manager) (User: )
Description: nvUpdatusService.\UpdatusUser%%1330
Error: (10/05/2013 03:17:00 PM) (Source: Service Control Manager) (User: )
Description: i8042prt
Error: (10/05/2013 03:17:00 PM) (Source: Service Control Manager) (User: )
Description: Windows Live ID Sign-in Assistant%%2
Error: (10/05/2013 03:05:57 PM) (Source: DCOM) (User: )
Description: {73C9DFA0-750D-11E1-B0C4-0800200C9A66}
Error: (10/05/2013 03:03:13 PM) (Source: Service Control Manager) (User: )
Description: NVIDIA Update Service Daemon%%1069
Error: (10/05/2013 03:03:13 PM) (Source: Service Control Manager) (User: )
Description: nvUpdatusService.\UpdatusUser%%1330
Error: (10/05/2013 03:01:16 PM) (Source: Service Control Manager) (User: )
Description: Windows Live ID Sign-in Assistant%%2
Error: (10/05/2013 02:50:32 PM) (Source: Service Control Manager) (User: )
Description: NVIDIA Update Service Daemon%%1069
Error: (10/05/2013 02:50:32 PM) (Source: Service Control Manager) (User: )
Description: nvUpdatusService.\UpdatusUser%%1330
Microsoft Office Sessions:
=========================
Error: (07/15/2013 07:22:28 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 98 seconds with 60 seconds of active time. This session ended with a crash.
Error: (06/23/2013 00:45:01 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 115 seconds with 60 seconds of active time. This session ended with a crash.
Error: (04/03/2013 00:42:11 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6665.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 154 seconds with 120 seconds of active time. This session ended with a crash.
Error: (02/14/2013 04:18:11 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 1011 seconds with 900 seconds of active time. This session ended with a crash.
Error: (02/14/2013 03:47:46 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 23 seconds with 0 seconds of active time. This session ended with a crash.
Error: (02/14/2013 03:47:06 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 623 seconds with 480 seconds of active time. This session ended with a crash.
Error: (02/03/2013 09:29:15 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 336 seconds with 300 seconds of active time. This session ended with a crash.
Error: (01/29/2013 08:54:25 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6665.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 774 seconds with 240 seconds of active time. This session ended with a crash.
Error: (01/29/2013 08:49:36 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.6600.1000, Microsoft Office Version: 12.0.6612.1000. This session lasted 161 seconds with 120 seconds of active time. This session ended with a crash.
Error: (01/11/2013 08:05:30 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 97 seconds with 60 seconds of active time. This session ended with a crash.
CodeIntegrity Errors:
===================================
Date: 2013-07-22 21:32:27.080
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\System32\msiltcfg.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-07-22 21:30:47.430
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\System32\msiltcfg.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-07-03 00:01:44.427
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-07-03 00:01:43.951
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-07-03 00:01:43.467
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-07-03 00:01:42.988
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-07-03 00:01:42.510
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-07-03 00:01:42.029
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-07-03 00:01:41.487
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22636_none_b38d4a937f96be60\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-07-03 00:01:41.009
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22636_none_b38d4a937f96be60\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 34%
Total physical RAM: 3069.57 MB
Available physical RAM: 2023.93 MB
Total Pagefile: 6375.61 MB
Available Pagefile: 5114.7 MB
Total Virtual: 2047.88 MB
Available Virtual: 1943.02 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:452.08 GB) (Free:226.07 GB) NTFS ==>[System with boot components (obtained from reading drive)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 466 GB) (Disk ID: 2D117D68)
Partition 1: (Active) - (Size=452 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=14 GB) - (Type=27)
==================== End Of Log ============================ Gruß
Frank |