Kasslertier | 16.04.2014 18:18 | Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 14-04-2014
Ran by Kevin at 2014-04-15 20:38:05
Running from C:\Users\Kevin\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
==================== Installed Programs ======================
Amnesia: A Machine for Pigs (HKLM\...\Steam App 239200) (Version: - The Chinese Room)
CCleaner (HKLM\...\CCleaner) (Version: 4.12 - Piriform)
Counter-Strike: Source (HKLM\...\{9580813D-94B1-4C28-9426-A441E2BB29A5}) (Version: 1.0.0.0 - Valve)
Ether One (HKLM\...\Steam App 265950) (Version: - White Paper Games)
Gone Home (HKLM\...\Steam App 232430) (Version: - The Fullbright Company)
Google Chrome (HKLM\...\Google Chrome) (Version: 34.0.1847.116 - Google Inc.)
Google Update Helper (Version: 1.3.23.9 - Google Inc.) Hidden
Malwarebytes Anti-Malware Version 2.0.1.1004 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.1.1004 - Malwarebytes Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft_VC100_CRT_SP1_x86 (Version: 10.0.40219.1 - Nokia) Hidden
MSVC80_x86_v2 (Version: 1.0.3.0 - Nokia) Hidden
MSVC90_x86 (Version: 1.0.1.2 - Nokia) Hidden
My Game Long Name (HKLM\...\UDK-3fd7aa42-0234-43e9-818a-69f6ce60441d) (Version: - Epic Games, Inc.)
My Game Long Name (HKLM\...\UDK-543422bd-55b7-4a93-a2e6-578713739985) (Version: - Epic Games, Inc.)
Nokia Connectivity Cable Driver (HKLM\...\{29373274-977E-413C-A4DE-DC0F8E80C429}) (Version: 7.1.172.0 - Nokia)
Nokia Suite (HKLM\...\Nokia Suite) (Version: 3.8.48.0 - Nokia)
Nokia Suite (Version: 3.8.48.0 - Nokia) Hidden
NVIDIA 3D Vision Treiber 335.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 335.23 - NVIDIA Corporation)
NVIDIA Grafiktreiber 335.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 335.23 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.145.1024 - NVIDIA Corporation) Hidden
NVIDIA Stereoscopic 3D Driver (Version: 7.17.13.3523 - NVIDIA Corporation) Hidden
NVIDIA Systemsteuerung 335.23 (Version: 335.23 - NVIDIA Corporation) Hidden
NVIDIA Update 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation)
NVIDIA Update Core (Version: 10.4.0 - NVIDIA Corporation) Hidden
PC Connectivity Solution (HKLM\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia)
Shopping Helper Smartbar (HKLM\...\{AC6E9B2A-A7E6-4B17-8A6C-29D519673E12}) (Version: 10.215.63.15249 - ReSoft Ltd.) <==== ATTENTION
Spybot - Search & Destroy (HKLM\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.2.25 - Safer-Networking Ltd.)
Steam(TM) (HKLM\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve)
Windows-Treiberpaket - Nokia pccsmcfd “LegacyDriver” (05/31/2012 7.1.2.0) (HKLM\...\17D063A0A9F5D5A225B76B1D9BCB5ADBE85C8382) (Version: 05/31/2012 7.1.2.0 - Nokia)
==================== Restore Points =========================
04-04-2014 15:22:15 Windows Update
06-04-2014 16:18:42 Uniblue SpeedUpMyPC installation
14-04-2014 10:04:15 Geplanter Prüfpunkt
==================== Hosts content: ==========================
2012-07-26 06:17 - 2012-07-26 06:17 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {0FC76431-C1EB-441F-8264-0FF43DFE06CE} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe
Task: {1E84DCB8-8C84-4436-A108-209A65086823} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {2E2C2899-AF3F-4A9A-BBFE-1C47E615F2F8} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files\Spybot - Search & Destroy 2\SDImmunize.exe
Task: {39C81E78-1A32-44C6-A2D6-54B2D6FCDB72} - System32\Tasks\Microsoft\Windows\Setup\Pre-staged GDR Notification => C:\WINDOWS\system32\NotificationUI.exe [2014-01-31] (Microsoft Corporation)
Task: {4C1BCDBD-FDCE-4C38-9457-01AFC4B10606} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe
Task: {545C008C-4471-44F8-AD15-96CB8BB2BB0C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {56F59500-C4D1-4720-859F-13B4998AA792} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {6E9505E8-BABB-4770-A774-0047AE8E3FDF} - System32\Tasks\Microsoft\Windows\Setup\SetupCleanupTask
Task: {7BE357E4-8E7B-41B8-947E-15D70D5F0793} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-03-27] (Google Inc.)
Task: {8776A0BC-E040-439D-80F0-580A44E3A946} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-03-18] (Piriform Ltd)
Task: {99768757-32DC-4E02-BE1E-2FE4783695EE} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {EF9592CE-7796-47A6-9CD5-8630640D45BB} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {FA78E443-8240-4644-A97A-0306599CD4D0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-03-27] (Google Inc.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2014-03-28 00:07 - 2014-03-04 14:34 - 00109000 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll
2014-04-04 13:58 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files\Spybot - Search & Destroy 2\sqlite3.dll
2014-04-04 13:58 - 2013-05-16 10:55 - 00113496 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2014-04-04 13:58 - 2013-05-16 10:55 - 00416600 _____ () C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl
2014-04-04 13:58 - 2013-05-16 10:55 - 00161112 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2014-04-04 13:58 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files\Spybot - Search & Destroy 2\av\BDSmartDB.dll
2014-04-11 20:56 - 2014-04-02 03:57 - 00065352 _____ () C:\Program Files\Google\Chrome\Application\34.0.1847.116\chrome_elf.dll
2014-04-11 20:56 - 2014-04-02 03:57 - 00674632 _____ () C:\Program Files\Google\Chrome\Application\34.0.1847.116\libglesv2.dll
2014-04-11 20:56 - 2014-04-02 03:57 - 00093000 _____ () C:\Program Files\Google\Chrome\Application\34.0.1847.116\libegl.dll
2014-04-11 20:56 - 2014-04-02 03:57 - 04081480 _____ () C:\Program Files\Google\Chrome\Application\34.0.1847.116\pdf.dll
2014-04-11 20:56 - 2014-04-02 03:58 - 00390472 _____ () C:\Program Files\Google\Chrome\Application\34.0.1847.116\ppGoogleNaClPluginChrome.dll
2014-04-11 20:56 - 2014-04-02 03:57 - 01647432 _____ () C:\Program Files\Google\Chrome\Application\34.0.1847.116\ffmpegsumo.dll
2014-04-11 20:56 - 2014-04-02 03:58 - 13691720 _____ () C:\Program Files\Google\Chrome\Application\34.0.1847.116\PepperFlash\pepflashplayer.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== Disabled items from MSCONFIG ==============
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (04/13/2014 09:06:05 PM) (Source: Steam Client Service) (User: )
Description: Error: Failed to poke open firewall
Error: (04/13/2014 06:09:02 PM) (Source: Steam Client Service) (User: )
Description: Error: Failed to poke open firewall
Error: (04/13/2014 02:59:10 PM) (Source: Steam Client Service) (User: )
Description: Error: Failed to poke open firewall
Error: (04/13/2014 02:37:05 PM) (Source: Steam Client Service) (User: )
Description: Error: Failed to poke open firewall
Error: (04/11/2014 08:47:02 PM) (Source: Steam Client Service) (User: )
Description: Error: Failed to poke open firewall
Error: (04/11/2014 08:43:32 PM) (Source: Desktop Window Manager) (User: )
Description: Der Desktopfenster-Manager hat einen schwerwiegenden Fehler (0x8898008d) festgestellt.
Error: (04/10/2014 02:03:34 PM) (Source: .NET Runtime) (User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: System.AccessViolationException
Stapel:
bei Avira.OE.AvConnector.Interface.ILicensePlugin.GetLicenseType()
bei Avira.OE.AvConnector.AvStatusReporter.GetLicenseType()
bei Avira.OE.ServiceHost.UpdateAvailabilityChecker.CreateDevCheckUpdatePayload()
bei Avira.OE.ServiceHost.UpdateAvailabilityChecker.CheckForUpdate()
bei Avira.OE.ServiceHost.UpdateAvailabilityChecker.OnRecurrentUpdateCheck(System.Object)
bei System.Threading.TimerQueueTimer.CallCallbackInContext(System.Object)
bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
bei System.Threading.TimerQueueTimer.CallCallback()
bei System.Threading.TimerQueueTimer.Fire()
bei System.Threading.TimerQueue.FireNextTimers()
bei System.Threading.TimerQueue.AppDomainTimerCallback()
Error: (04/10/2014 02:01:59 PM) (Source: Steam Client Service) (User: )
Description: Error: Failed to poke open firewall
Error: (04/09/2014 08:01:55 PM) (Source: Steam Client Service) (User: )
Description: Error: Failed to poke open firewall
Error: (04/09/2014 02:44:50 PM) (Source: Steam Client Service) (User: )
Description: Error: Failed to poke open firewall
System errors:
=============
Error: (04/15/2014 05:58:57 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Service Component of VO" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (04/14/2014 08:22:52 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Service Component of VO" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (04/13/2014 08:47:18 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Service Component of VO" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (04/13/2014 07:52:39 PM) (Source: Service Control Manager) (User: )
Description: Dienst "NVIDIA Display Driver Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (04/13/2014 06:48:37 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Spybot-S&D 2 Updating Service" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (04/10/2014 02:03:36 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Avira Service Host" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (04/10/2014 01:57:40 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Service Component of VO" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (04/07/2014 02:23:08 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Service Component of VO" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (04/07/2014 01:59:10 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Service Component of VO" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (04/06/2014 06:23:09 PM) (Source: Service Control Manager) (User: )
Description: Dienst "Re-markit" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Microsoft Office Sessions:
=========================
Error: (04/13/2014 09:06:05 PM) (Source: Steam Client Service)(User: )
Description: Failed to poke open firewall
Error: (04/13/2014 06:09:02 PM) (Source: Steam Client Service)(User: )
Description: Failed to poke open firewall
Error: (04/13/2014 02:59:10 PM) (Source: Steam Client Service)(User: )
Description: Failed to poke open firewall
Error: (04/13/2014 02:37:05 PM) (Source: Steam Client Service)(User: )
Description: Failed to poke open firewall
Error: (04/11/2014 08:47:02 PM) (Source: Steam Client Service)(User: )
Description: Failed to poke open firewall
Error: (04/11/2014 08:43:32 PM) (Source: Desktop Window Manager)(User: )
Description: 0x8898008d
Error: (04/10/2014 02:03:34 PM) (Source: .NET Runtime)(User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: System.AccessViolationException
Stapel:
bei Avira.OE.AvConnector.Interface.ILicensePlugin.GetLicenseType()
bei Avira.OE.AvConnector.AvStatusReporter.GetLicenseType()
bei Avira.OE.ServiceHost.UpdateAvailabilityChecker.CreateDevCheckUpdatePayload()
bei Avira.OE.ServiceHost.UpdateAvailabilityChecker.CheckForUpdate()
bei Avira.OE.ServiceHost.UpdateAvailabilityChecker.OnRecurrentUpdateCheck(System.Object)
bei System.Threading.TimerQueueTimer.CallCallbackInContext(System.Object)
bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
bei System.Threading.TimerQueueTimer.CallCallback()
bei System.Threading.TimerQueueTimer.Fire()
bei System.Threading.TimerQueue.FireNextTimers()
bei System.Threading.TimerQueue.AppDomainTimerCallback()
Error: (04/10/2014 02:01:59 PM) (Source: Steam Client Service)(User: )
Description: Failed to poke open firewall
Error: (04/09/2014 08:01:55 PM) (Source: Steam Client Service)(User: )
Description: Failed to poke open firewall
Error: (04/09/2014 02:44:50 PM) (Source: Steam Client Service)(User: )
Description: Failed to poke open firewall
==================== Memory info ===========================
Percentage of memory in use: 44%
Total physical RAM: 2047.18 MB
Available physical RAM: 1130.44 MB
Total Pagefile: 4223.18 MB
Available Pagefile: 3017.23 MB
Total Virtual: 2047.88 MB
Available Virtual: 1852.27 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:931.51 GB) (Free:825.2 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 932 GB) (Disk ID: 000BF744)
Partition: GPT Partition Type.
==================== End Of Log ============================ Hallo, nochmal vielen Dank, schrauber, dass du mir helfen möchtest!
Ich hoffe,ich habe alles richtig gemacht, ich bin ja noch neu hier ;)
Und ich bin sehr gespannt was mit dem PC los ist!:heulen:
Ich habe eben erneuten Suchlauf mit Antimalwarebytes gemacht. es gab drei Funde:
dreimal : PUP.Optional.Installcore.A
Ich hoffe, es ist ein wenig hilfreich :/
Ich habe den PUP.Optional.Installcore.A entfernt. MBAM findet zurzeit nichts nach einem Neustart.
PC ist nach wie vor langsamer als langsam:aufsmaul:
Ich sitze hier seit Tagen und versuche das Problem zu lösen. Ich bitte ganz höflich um dringende Hilfe
( an schrauber und alle anderen: ich weiß dass ihr hier alles am Brennen habt zurzeit und ihr eure Freizeit opfert für uns, vielen Dank dafür) |