momolol404 | 18.01.2015 18:23 | Erscheint gleich
Also hier die FRST.txt Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 18-01-2015 01
Ran by ... (administrator) on ...-PC on 18-01-2015 17:58:37
Running from C:\Users\.......-PC\Downloads\FRST-OlderVersion
Loaded Profiles: ... (Available profiles: ...)
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 10 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Acronis) C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-LogRotatorService.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-UpdaterService.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE
() C:\Windows\System32\PnkBstrA.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Microsoft Corporation) C:\Windows\System32\audiodg.exe
(Abelssoft) C:\Program Files\CheckDrive\CheckDriveBackgroundGuard.exe
(AimerSoft) C:\Program Files\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\InputPersonalization.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgwdsvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgnsx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgemcx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgrsx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgcsrvx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgcsrvx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgui.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Reader 10.0\Reader\reader_sl.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AVG_UI] => C:\Program Files\AVG\AVG2014\avgui.exe [5188112 2014-12-16] (AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM\...\Run: [Aimersoft Helper Compact.exe] => C:\Program Files\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe [1734144 2013-05-29] (AimerSoft)
HKU\S-1-5-21-2908931533-4132489533-110418967-1000\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-2908931533-4132489533-110418967-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-2908931533-4132489533-110418967-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-18\...\RunOnce: [{91140000-0011-0000-0000-0000000FF1CE}] => C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck" /Q /A:H
HKU\S-1-5-18\...\RunOnce: [{90140000-001A-0407-0000-0000000FF1CE}] => C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck" /Q /A:H
AppInit_DLLs: C:\PROGRA~1\SEARCH~1\SEARCH~1\bin\VC32LO~1.DLL => C:\PROGRA~1\SEARCH~1\SEARCH~1\bin\VC32LO~1.DLL File Not Found
AppInit_DLLs: c:\progra~1\suptab\search~1.dll => c:\progra~1\suptab\search~1.dll File Not Found
Startup: C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mozilla Firefox.lnk
ShortcutTarget: Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Startup: C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mozilla Firefox.lnk
ShortcutTarget: Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-2908931533-4132489533-110418967-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
URLSearchHook: HKLM - (No Name) - {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - No File
SearchScopes: HKLM -> DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2908931533-4132489533-110418967-1000 -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2908931533-4132489533-110418967-1000 -> {1} URL =
Toolbar: HKLM - No Name - {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - No File
Toolbar: HKLM - No Name - {30F9B915-B755-4826-820B-08FBA6BD249D} - No File
Toolbar: HKLM - No Name - {828DC97A-2277-4E10-92A9-4907FA0922A9} - No File
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\..\Interfaces\{4007158E-A27E-4722-834C-9092AFB70BBA}: [NameServer] 192.168.178.1
Tcpip\..\Interfaces\{6390599D-EB38-4EAF-A9A7-CA69DB545DE2}: [NameServer] 192.168.178.1
Tcpip\..\Interfaces\{63BBC024-99F8-45D3-AB40-74F50224FE54}: [NameServer] 192.168.178.1
Tcpip\..\Interfaces\{D7A7E645-6BCA-4CC9-801C-D2007BE4C6DC}: [NameServer] 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
Tcpip\..\Interfaces\{EA104EC2-7169-4026-98D9-7FA51715A643}: [NameServer] 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
FireFox:
========
FF ProfilePath: C:\Users\.......-PC\AppData\Roaming\Mozilla\Firefox\Profiles\1fcf5fo1.default-1417951851860
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_15_0_0_246.dll ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\18.1.10\\npsitesafety.dll No File
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll No File
FF Extension: Adblock Plus - C:\Users\.......-PC\AppData\Roaming\Mozilla\Firefox\Profiles\1fcf5fo1.default-1417951851860\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-01-10]
FF HKLM\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF HKLM\...\Firefox\Extensions: [OKitSpace@Vittalia.es] - C:\Users\...\AppData\Roaming\okitspace\Firefox
FF HKLM\...\Firefox\Extensions: [quick_start@gmail.com] - C:\Users\...\AppData\Roaming\Mozilla\Firefox\Profiles\9bd6yrxo.default\extensions\quick_start@gmail.com
FF HKLM\...\Firefox\Extensions: [e-webprint@epson.com] - C:\Program Files\Epson Software\E-Web Print\Firefox Add-on
FF Extension: E-Web Print - C:\Program Files\Epson Software\E-Web Print\Firefox Add-on [2014-11-05]
Chrome:
=======
CHR StartupUrls: Default -> "hxxp://www.google.com"
CHR DefaultSearchKeyword: Default -> google
CHR DefaultSuggestURL: Default ->
CHR Profile: C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-09-22]
CHR Extension: (Google Drive) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-09-22]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-09-22]
CHR Extension: (YouTube) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-09-22]
CHR Extension: (Google-Suche) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-09-22]
CHR Extension: (Google Tabellen) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-09-22]
CHR Extension: (Google Wallet) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-22]
CHR Extension: (Google Mail) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-09-22]
CHR HKLM\...\Chrome\Extension: [aacbndibbcpajfgnkdkaakeiojmmgmnk] - C:\Users\...\AppData\Roaming\Media Finder\Extensions\mf_plugin_gc.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [bakijjialdiiboeaknfpmflphhmljfkd] - No Path
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path
CHR HKLM\...\Chrome\Extension: [ifohbjbgfchkkfhphahclmkpgejiplfo] - C:\Users\...\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtab.crx [2013-11-20]
CHR HKLM\...\Chrome\Extension: [jpihmmhdcobmllpcnpfbhnipmhamldje] - C:\Users\...\AppData\Roaming\Media Finder\Extensions\gencrawler_gc.crx [2012-02-15]
CHR HKLM\...\Chrome\Extension: [mggiecmcgkpfmegnobeimepgndgdhbjm] - C:\Users\...\AppData\Roaming\okitspace\Chrome\OKitSpace.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [pelmeidfhdlhlbjimpabfcbnnojbboma] - C:\Users\...\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv3.crx [2014-06-01]
CHR HKLM\...\Chrome\Extension: [pilobbegphefikcgjpajnneiiahhejam] - C:\Users\...\Econa\Gutscheinsammler\Chrome\chrome.crx [Not Found]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 AcrSch2Svc; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [661072 2009-11-12] (Acronis)
R2 afcdpsrv; C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe [2480048 2010-07-25] (Acronis)
S2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3247120 2014-12-16] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [289328 2014-12-16] (AVG Technologies CZ, s.r.o.)
S2 BstHdAndroidSvc; C:\Program Files\BlueStacks\HD-Service.exe [409304 2014-10-08] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files\BlueStacks\HD-LogRotatorService.exe [388824 2014-10-08] (BlueStack Systems, Inc.)
R2 BstHdUpdaterSvc; C:\Program Files\BlueStacks\HD-UpdaterService.exe [782040 2014-10-08] (BlueStack Systems, Inc.)
R2 EPSON_PM_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [142432 2012-02-21] (SEIKO EPSON CORPORATION)
S3 FlexNet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [1074480 2014-09-22] (Flexera Software LLC)
R3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-23] (Hewlett-Packard Co.) [File not signed]
R2 hpqddsvc; C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-23] (Hewlett-Packard Co.) [File not signed]
R2 HPSLPSVC; C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL [694784 2009-09-23] (Hewlett-Packard Co.) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [44544 2008-12-03] (Hewlett-Packard) [File not signed]
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53760 2008-12-03] (Hewlett-Packard) [File not signed]
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [75136 2014-03-05] ()
S3 WatAdminSvc; C:\Windows\system32\Wat\WatAdminSvc.exe [1343400 2013-11-18] () [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
S2 !SASCORE; "C:\Program Files\SUPERAntiSpyware\SASCORE.EXE" [X]
S2 EZ Software Updater; C:\Program Files\EZ Software Updater\EZ Software Updater.exe [X]
S2 Orbiter; C:/Program Files/ORBTR/orbiter.dll [X]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AegisP; C:\Windows\System32\DRIVERS\AegisP.sys [21035 2012-05-17] (Meetinghouse Data Communications) [File not signed]
R1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [121624 2014-06-30] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [200984 2014-07-21] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [147736 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [21272 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [189720 2014-10-24] (AVG Technologies CZ, s.r.o.)
R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [241944 2014-06-17] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [98584 2014-10-29] (AVG Technologies CZ, s.r.o.)
R0 AvgRkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [27416 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [197400 2014-10-20] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [42784 2014-11-13] (AVG Technologies)
R2 BstHdDrv; C:\Program Files\BlueStacks\HD-Hypervisor-x86.sys [112344 2014-10-08] (BlueStack Systems)
R0 giveio; C:\Windows\System32\giveio.sys [5248 1996-04-03] () [File not signed]
S3 RTLWUSB; C:\Windows\System32\DRIVERS\RTL8187.sys [172416 2006-04-21] (Realtek Semiconductor Corporation ) [File not signed]
S3 SjyPkt; C:\Windows\System32\Drivers\SjyPkt.sys [13532 2002-10-02] (Windows (R) 2000 DDK provider) [File not signed]
S3 SMARTMouseFilterx86; C:\Windows\System32\DRIVERS\SMARTMouseFilterx86.sys [8192 2014-03-25] (SMART Technologies) [File not signed]
S3 SMARTVHidMini2000x86; C:\Windows\System32\DRIVERS\SMARTVHidMini2000x86.sys [7680 2014-03-25] (SMART Technologies) [File not signed]
S3 SMARTVTabletPCx86; C:\Windows\System32\DRIVERS\SMARTVTabletPCx86.sys [15872 2014-03-25] (SMART Technologies ULC) [File not signed]
R0 tdrpman258; C:\Windows\System32\DRIVERS\tdrpm258.sys [911680 2010-07-25] (Acronis)
S3 CEDRIVER60; \??\C:\Program Files\Cheat Engine 6.4\dbk32.sys [X]
S2 eamonm; system32\DRIVERS\eamonm.sys [X]
S3 FLASHSYS; \??\C:\Program Files\MSI\Live Update 4\LU4\FLASHSYS.sys [X]
S3 fsbl; \??\C:\Program Files\F-Secure\apps\ComputerSecurity\Anti-Virus\fsbldrv.sys [X]
S1 ntiomin; No ImagePath
S3 OSFMount; \??\C:\Users\.......-PC\AppData\Local\Temp\Rar$EXa0.041\bin\OSFMount.sys [X]
S1 SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [X]
S1 SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [X]
S2 sbmntr; \??\C:\PROGRA~1\YTDOWN~1\sbmntr.sys [X]
S2 SPDRIVER_1.38.0.1434; \??\C:\Program Files\ShopperPro\JSDriver\1.38.0.1434\jsdrv.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 XDva401; \??\C:\Windows\system32\XDva401.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-18 17:40 - 2015-01-18 17:58 - 00000000 ____D () C:\Users\.......-PC\Downloads\FRST-OlderVersion
2015-01-17 15:24 - 2009-12-17 00:39 - 938946094 _____ () C:\Windows\MEMORY.DMP
2015-01-16 19:55 - 2015-01-16 19:55 - 05609736 ____R (Swearware) C:\Users\.......-PC\Desktop\ComboFix.exe
2015-01-16 18:41 - 2015-01-16 18:45 - 00034347 _____ () C:\Users\.......-PC\Downloads\Addition.txt
2015-01-16 18:32 - 2015-01-16 18:45 - 00041486 _____ () C:\Users\.......-PC\Downloads\FRST.txt
2015-01-16 16:26 - 2015-01-16 16:26 - 00640424 _____ (Akeo Consulting (hxxp://akeo.ie)) C:\Users\.......-PC\Downloads\rufus-1.4.12.exe
2015-01-14 17:44 - 2009-12-17 00:39 - 00086226 _____ () C:\Windows\PFRO.log
2015-01-14 17:27 - 2010-02-11 06:32 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIDEMGX.dll
2015-01-14 17:27 - 2010-02-11 06:30 - 00348160 _____ (ATI Technologies, Inc.) C:\Windows\system32\atipdlxx.dll
2015-01-14 17:27 - 2010-02-11 06:30 - 00274432 _____ (ATI Technologies, Inc.) C:\Windows\system32\Oemdspif.dll
2015-01-14 17:27 - 2010-02-11 06:30 - 00159744 _____ () C:\Windows\system32\atitmmxx.dll
2015-01-14 17:27 - 2010-02-11 06:29 - 00043520 _____ (ATI Technologies, Inc.) C:\Windows\system32\ati2edxx.dll
2015-01-14 17:27 - 2010-02-11 06:29 - 00012288 _____ (AMD) C:\Windows\system32\atimuixx.dll
2015-01-14 17:27 - 2010-02-11 05:58 - 11513856 _____ (ATI Technologies Inc.) C:\Windows\system32\atioglxx.dll
2015-01-14 17:27 - 2010-02-11 05:48 - 00135168 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2015-01-14 17:27 - 2010-02-11 05:34 - 00053248 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\ati2erec.dll
2015-01-14 17:27 - 2009-07-14 02:14 - 04772352 _____ (ATI Technologies Inc. ) C:\Windows\system32\atiumdva.dll
2015-01-14 17:27 - 2009-07-14 02:14 - 04030976 _____ (ATI Technologies Inc. ) C:\Windows\system32\atiumdag.dll
2015-01-14 17:27 - 2009-07-14 02:14 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom32.dll
2015-01-14 17:27 - 2009-07-13 23:09 - 04194816 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\atikmdag.sys
2015-01-14 17:27 - 2009-06-10 22:19 - 00069112 _____ () C:\Windows\system32\atiumdva.cap
2015-01-14 17:24 - 2015-01-14 17:31 - 00000000 ____D () C:\Program Files\ATI Technologies
2015-01-14 17:24 - 2009-12-16 00:22 - 00000000 ____D () C:\Program Files\ATI
2015-01-14 17:24 - 2009-07-21 11:41 - 00278528 _____ (ATI Technologies Inc.) C:\Windows\system32\Ati2evxx.dll
2015-01-14 17:24 - 2009-07-21 11:40 - 00733184 _____ (ATI Technologies Inc.) C:\Windows\system32\Ati2evxx.exe
2015-01-14 17:24 - 2009-05-05 00:30 - 00014392 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\Drivers\AtiPcie.sys
2015-01-14 17:16 - 2015-01-14 17:16 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\DriverToolkit
2015-01-14 17:15 - 2015-01-14 17:19 - 00000000 ____D () C:\Program Files\DriverToolkit
2015-01-14 17:15 - 2015-01-14 17:15 - 02448688 _____ (Megaify Software ) C:\Users\.......-PC\Downloads\driver_setup.exe
2015-01-14 16:48 - 2015-01-14 16:48 - 69104008 _____ (SiSoftware ) C:\Users\.......-PC\Downloads\san2015x-2115_CB-DL-Manager [1].exe
2015-01-14 16:47 - 2015-01-14 16:47 - 00823792 _____ ( ) C:\Users\.......-PC\Downloads\san2015x-2115_CB-DL-Manager.exe
2015-01-14 16:46 - 2015-01-14 16:46 - 01179936 _____ () C:\Users\.......-PC\Downloads\SiSoft Sandra Lite 2015 - CHIP-Installer.exe
2015-01-14 16:46 - 2015-01-14 16:46 - 01179936 _____ () C:\Users\.......-PC\Downloads\SiSoft Sandra Lite 2015 - CHIP-Installer(1).exe
2015-01-14 16:39 - 2015-01-14 16:40 - 00633360 _____ (Copyright © 2010 eSupport.com. All Rights Reserved.) C:\Users\.......-PC\Downloads\biosagentplus_1218(1).exe
2015-01-14 16:37 - 2015-01-14 16:37 - 00000000 _____ () C:\Users\.......-PC\Downloads\cpu-z_1.71-setup-en_CB-DL-Manager.exe
2015-01-13 17:36 - 2009-12-17 00:40 - 00000488 __RSH () C:\ProgramData\ntuser.pol
2015-01-13 17:35 - 2015-01-13 17:35 - 00639400 _____ (Akeo Consulting (hxxp://akeo.ie)) C:\Users\.......-PC\Downloads\rufus.exe
2015-01-13 17:32 - 2015-01-13 17:32 - 01179936 _____ () C:\Users\.......-PC\Downloads\Rufus - CHIP-Installer.exe
2015-01-13 17:12 - 2015-01-13 17:13 - 03852472 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-01-12 16:01 - 2015-01-18 17:31 - 00000784 _____ () C:\Windows\setupact.log
2015-01-12 16:01 - 2015-01-12 16:01 - 00115592 _____ () C:\Users\.......-PC\AppData\Local\GDIPFONTCACHEV1.DAT
2015-01-12 16:01 - 2015-01-12 16:01 - 00000000 _____ () C:\Windows\setuperr.log
2015-01-11 18:52 - 2015-01-11 18:52 - 00019456 _____ () C:\Users\.......-PC\Downloads\launcher32.dll
2015-01-11 18:50 - 2015-01-11 18:50 - 00633360 _____ (Copyright © 2010 eSupport.com. All Rights Reserved.) C:\Users\.......-PC\Downloads\biosagentplus_1218.exe
2015-01-11 18:50 - 2015-01-11 18:50 - 00023456 _____ (Phoenix Technologies) C:\Windows\system32\Drivers\DrvAgent32.sys
2015-01-11 18:50 - 2015-01-11 18:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\eSupport.com
2015-01-11 18:28 - 2015-01-11 18:28 - 01297519 _____ (KC Softwares ) C:\Users\.......-PC\Downloads\ramexpert_nork_CB-DL-Manager [1].exe
2015-01-11 14:42 - 2015-01-11 14:42 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-01-11 14:05 - 2015-01-11 14:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Sparta
2015-01-11 14:05 - 2015-01-11 14:05 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\sparta111
2015-01-11 14:05 - 2015-01-11 14:05 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Pirates
2015-01-11 13:15 - 2015-01-11 15:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ImgBurn
2015-01-11 11:56 - 2006-10-13 08:18 - 00380928 _____ (NVIDIA) C:\Windows\ntuneoem.dll
2015-01-11 11:56 - 2006-10-13 08:18 - 00018216 _____ (NVidia Corp.) C:\Windows\nvoclk64.sys
2015-01-11 11:56 - 2006-10-13 08:18 - 00006912 _____ (NVidia Corp.) C:\Windows\nvoclock.sys
2015-01-11 11:56 - 2006-10-13 08:16 - 00421888 _____ (NVIDIA) C:\Windows\nvsulib.dll
2015-01-11 11:56 - 2006-10-13 08:13 - 01622016 _____ (NVIDIA) C:\Windows\NVBenchMarks.dll
2015-01-11 11:56 - 2006-10-13 08:12 - 00028672 _____ (NVIDIA) C:\Windows\AutoTuneScript.dll
2015-01-11 11:56 - 2006-09-05 14:59 - 00217088 _____ () C:\Windows\NVGfxOgl.dll
2015-01-11 11:56 - 2006-08-21 09:20 - 00045056 _____ (NVIDIA) C:\Windows\NTuneGpu.dll
2015-01-11 11:56 - 2006-06-01 17:22 - 00053248 _____ (NVIDIA Corporation) C:\Windows\Nvgpio.dll
2015-01-11 11:56 - 2005-09-23 16:33 - 01060864 _____ (Microsoft Corporation) C:\Windows\MFC71.dll
2015-01-11 11:56 - 2005-09-23 16:33 - 00499712 _____ (Microsoft Corporation) C:\Windows\msvcp71.dll
2015-01-11 11:56 - 2005-09-23 16:33 - 00348160 _____ (Microsoft Corporation) C:\Windows\msvcr71.dll
2015-01-10 20:56 - 2015-01-10 20:57 - 02191360 _____ () C:\Users\.......-PC\Desktop\adwcleaner_4.107.exe
2015-01-10 17:00 - 2015-01-10 17:00 - 00001881 _____ () C:\Users\Public\Desktop\MSI Live Update 6.lnk
2015-01-10 17:00 - 2015-01-10 17:00 - 00000000 ____D () C:\MSI
2015-01-10 16:57 - 2015-01-10 16:59 - 00013817 _____ () C:\Windows\system32\Utility.xml
2015-01-10 16:56 - 2014-04-30 16:23 - 00011248 _____ (Windows (R) Win 7 DDK provider) C:\Windows\acpimof.dll
2015-01-10 15:17 - 2015-01-10 15:19 - 00000000 _____ () C:\Users\.......-PC\AppData\Local\{9D9B305F-6B8C-4AA5-94D7-474EAA096BC4}
2014-12-24 09:38 - 2014-12-24 09:38 - 00016648 ____N () C:\bootsqm.dat
2014-12-24 09:38 - 2014-12-24 09:38 - 00000000 __SHD () C:\found.002
2014-12-22 12:49 - 2014-12-22 12:49 - 00000000 ___HD () C:\MediaServer_Temp
2014-12-22 12:48 - 2014-12-22 12:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Wondershare Video Converter Pro
2014-12-22 12:48 - 2014-12-22 12:48 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Wondershare
2014-12-22 12:48 - 2014-12-22 12:48 - 00000000 ____D () C:\Program Files\Common Files\Wondershare
2014-12-22 12:47 - 2014-12-22 13:30 - 00000000 ____D () C:\Program Files\Wondershare
2014-12-22 12:47 - 2014-12-22 13:29 - 00000000 ____D () C:\ProgramData\Wondershare
2014-12-22 12:47 - 2014-12-22 13:01 - 00000000 ____D () C:\ProgramData\Wondershare Video Converter Pro
2014-12-22 12:47 - 2014-10-24 14:16 - 00214528 _____ () C:\Windows\system32\WSCM32.dll
2014-12-22 12:45 - 2014-12-22 12:45 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\HandBrake
2014-12-22 12:41 - 2014-12-22 12:41 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\4Videosoft Studio
2014-12-22 12:28 - 2014-12-22 12:28 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Aiseesoft Studio
2014-12-22 10:32 - 2014-12-22 10:32 - 00000213 _____ () C:\Users\.......-PC\Desktop\Team Fortress 2.url
2014-12-22 10:26 - 2015-01-18 17:57 - 00000000 ____D () C:\Program Files\Steam
2014-12-22 10:26 - 2014-12-22 10:26 - 00000897 _____ () C:\Users\Public\Desktop\Steam.lnk
2014-12-22 10:26 - 2014-12-22 10:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2014-12-21 16:44 - 2014-12-21 16:44 - 00000000 __RSH () C:\MSDOS.SYS
2014-12-21 16:44 - 2014-12-21 16:44 - 00000000 __RSH () C:\IO.SYS
2014-12-21 12:27 - 2014-12-21 12:27 - 00000000 ____D () C:\Program Files\ESET
2014-12-21 12:13 - 2015-01-18 17:59 - 00000000 ____D () C:\FRST
2014-12-21 11:58 - 2014-12-21 11:58 - 00000083 _____ () C:\Users\.......-PC\Desktop\Neues Textdokument (2).txt
2014-12-20 17:20 - 2014-12-20 17:25 - 00000000 ____D () C:\Program Files\RMPrepUSB
2014-12-20 14:32 - 2014-12-22 11:23 - 00000000 ____D () C:\Users\.......-PC\Desktop\Hausbau
2014-12-20 11:49 - 2014-12-20 14:38 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
2014-12-20 11:49 - 2014-12-20 11:49 - 00001965 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk
2014-12-20 11:49 - 2014-12-20 11:49 - 00000000 ____D () C:\Program Files\Adobe
2014-12-20 11:32 - 2014-12-20 11:32 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Mael
2014-12-20 11:14 - 2015-01-11 13:14 - 00000373 _____ () C:\Users\.......-PC\AppData\Roaming\burnaware.ini
2014-12-20 11:14 - 2014-12-20 11:14 - 00000988 _____ () C:\Users\Public\Desktop\BurnAware Free.lnk
2014-12-20 11:14 - 2014-12-20 11:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BurnAware Free
2014-12-20 11:14 - 2014-12-20 11:14 - 00000000 ____D () C:\Program Files\BurnAware Free
2014-12-20 10:46 - 2014-12-20 10:46 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Ashampoo
2014-12-20 10:45 - 2014-12-20 10:45 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\ashampoo
2014-12-20 10:45 - 2014-12-20 10:45 - 00000000 ____D () C:\ProgramData\ashampoo
2014-12-20 09:15 - 2011-07-11 11:39 - 00324834 _____ () C:\Windows6.1-KB2566584-x86.msu
2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Aimersoft Video Converter Ultimate
2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A}
2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Aimersoft
2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Program Files\Common Files\Aimersoft
2014-12-19 20:00 - 2014-12-20 11:11 - 00000000 ____D () C:\Program Files\Aimersoft
2014-12-19 19:50 - 2014-12-19 19:52 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\tiger-k
2014-12-19 19:49 - 2014-12-19 19:49 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Leawo
2014-12-19 19:49 - 2014-12-19 19:49 - 00000000 ____D () C:\ProgramData\Leawo
2014-12-19 19:49 - 2012-01-10 10:18 - 00066944 _____ (TOSHIBA Corporation) C:\Windows\system32\Drivers\thdudf.sys
2014-12-19 18:44 - 2014-12-19 18:44 - 00001133 _____ () C:\Users\.......-PC\Desktop\Any Video Converter.lnk
2014-12-19 18:44 - 2014-12-19 18:44 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Anvsoft
2014-12-19 18:44 - 2014-12-19 18:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvsoft
2014-12-19 18:44 - 2014-12-19 18:44 - 00000000 ____D () C:\Program Files\Anvsoft
2014-12-19 18:10 - 2014-12-19 19:34 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Microsoft Games
2014-12-19 05:49 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2014-12-19 05:49 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2014-12-19 05:49 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2014-12-19 05:49 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2014-12-19 05:49 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2014-12-19 05:49 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2014-12-19 05:49 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2014-12-19 05:49 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2014-12-19 05:49 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2014-12-19 05:49 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2014-12-19 05:49 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2014-12-19 05:49 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2014-12-19 05:49 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2014-12-19 05:49 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2014-12-19 05:49 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2014-12-19 05:49 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2014-12-19 05:49 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2014-12-19 05:49 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2014-12-19 05:49 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2014-12-19 05:49 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2014-12-19 05:49 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2014-12-19 05:49 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2014-12-19 05:49 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2014-12-19 05:49 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2014-12-19 05:49 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2014-12-19 05:49 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2014-12-19 05:49 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2014-12-19 05:49 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2014-12-19 05:49 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2014-12-19 05:49 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2014-12-19 05:49 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2014-12-19 05:49 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2014-12-19 05:49 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2014-12-19 05:49 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2014-12-19 05:49 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2014-12-19 05:49 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2014-12-19 05:49 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2014-12-19 05:49 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2014-12-19 05:49 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2014-12-19 05:49 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2014-12-19 05:49 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2014-12-19 05:49 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2014-12-19 05:49 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2014-12-19 05:49 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2014-12-19 05:49 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2014-12-19 05:49 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2014-12-19 05:49 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2014-12-19 05:49 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2014-12-19 05:49 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2014-12-19 05:49 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2014-12-19 05:49 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-18 18:01 - 2014-04-20 13:06 - 01326765 _____ () C:\Windows\WindowsUpdate.log
2015-01-18 17:47 - 2014-08-03 12:20 - 00000927 _____ () C:\Users\Public\Desktop\AVG 2014.lnk
2015-01-18 17:47 - 2014-08-03 12:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2015-01-18 17:44 - 2014-08-03 12:16 - 00000000 ____D () C:\ProgramData\MFAData
2015-01-18 17:31 - 2009-07-14 05:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-16 19:58 - 2009-07-14 05:34 - 00037504 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-16 19:58 - 2009-07-14 05:34 - 00037504 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-16 19:57 - 2014-02-01 15:17 - 00000000 ___DC () C:\32788R22FWJFW
2015-01-16 19:40 - 2010-05-02 07:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2015-01-16 19:28 - 2014-11-30 18:14 - 00007606 _____ () C:\Users\.......-PC\AppData\Local\Resmon.ResmonCfg
2015-01-16 17:35 - 2010-05-02 06:57 - 00000000 ____D () C:\Program Files\Mozilla Thunderbird
2015-01-16 16:38 - 2014-09-01 14:20 - 00000000 ____D () C:\Users\.......-PC
2015-01-16 15:39 - 2014-12-18 16:40 - 00000000 ____D () C:\Program Files\Common Files\Steam
2015-01-16 15:19 - 2014-04-30 15:08 - 00000000 ____D () C:\Users\.......-PC\Desktop\video
2015-01-15 19:25 - 2014-09-01 14:20 - 00000000 ___RD () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-01-15 19:08 - 2013-08-06 17:45 - 00000000 ____D () C:\Windows\pss
2015-01-11 15:02 - 2010-05-02 06:58 - 00000000 ___RD () C:\Users\.......-PC\Desktop\support
2015-01-11 14:51 - 2014-11-22 18:21 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\JAM Software
2015-01-11 11:56 - 2010-05-02 07:06 - 00000000 ____D () C:\Program Files\MSI
2015-01-10 20:54 - 2014-10-26 16:25 - 00000000 ____D () C:\Users\.......-PC\Desktop\POwer
2014-12-22 14:16 - 2014-09-01 14:20 - 00001397 _____ () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-12-22 14:16 - 2014-03-28 17:20 - 00002097 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-12-22 14:16 - 2012-01-22 11:26 - 00001035 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-12-22 14:16 - 2010-05-02 06:51 - 00001023 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-12-22 10:15 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\NDF
2014-12-21 16:49 - 2014-11-01 19:29 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\vlc
2014-12-21 16:45 - 2010-05-02 09:08 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-12-21 16:45 - 2010-05-02 09:08 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-12-21 16:45 - 2009-07-14 03:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-12-21 16:44 - 2014-05-05 14:57 - 00000033 _____ () C:\Windows\Nscal.ini
2014-12-21 16:44 - 2014-05-05 14:51 - 00302592 _____ (InstallShield Corporation, Inc.) C:\Windows\unin0407.exe
2014-12-21 16:44 - 2009-07-14 09:56 - 00000000 ____D () C:\Windows\ShellNew
2014-12-21 16:40 - 2014-11-05 17:10 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\DVDVideoSoft
2014-12-21 16:26 - 2013-06-04 19:46 - 00000000 __RHD () C:\Users\Public\Libraries
2014-12-21 12:57 - 2014-12-18 16:49 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-12-20 11:53 - 2013-05-10 12:32 - 00000000 ____D () C:\ProgramData\Adobe
2014-12-20 11:52 - 2014-11-03 05:38 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Adobe
2014-12-20 11:52 - 2014-09-01 14:20 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Adobe
2014-12-20 11:49 - 2014-06-09 11:40 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-12-20 10:59 - 2013-01-18 15:50 - 00000000 ____D () C:\Program Files\Ashampoo
==================== Files in the root of some directories =======
2014-10-26 14:03 - 2014-11-24 04:50 - 1177208 _____ () C:\Users\.......-PC\AppData\Roaming\AndyCleanupTool.exe
2014-10-26 14:03 - 2014-11-24 04:50 - 1176696 _____ () C:\Users\.......-PC\AppData\Roaming\AndyCleanVM.exe
2014-12-20 11:14 - 2015-01-11 13:14 - 0000373 _____ () C:\Users\.......-PC\AppData\Roaming\burnaware.ini
2014-11-30 18:14 - 2015-01-16 19:28 - 0007606 _____ () C:\Users\.......-PC\AppData\Local\Resmon.ResmonCfg
2002-01-01 00:05 - 2002-01-01 00:06 - 0000000 _____ () C:\Users\.......-PC\AppData\Local\{6022A40E-BF22-4886-B895-874490022456}
2015-01-10 15:17 - 2015-01-10 15:19 - 0000000 _____ () C:\Users\.......-PC\AppData\Local\{9D9B305F-6B8C-4AA5-94D7-474EAA096BC4}
Some content of TEMP:
====================
C:\Users\...\AppData\Local\Temp\avgnt.exe
C:\Users\...\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\...\AppData\Local\Temp\SDShelEx-win32.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
und hier die Additional Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 18-01-2015 01
Ran by ... at 2015-01-18 18:10:26
Running from C:\Users\.......-PC\Downloads\FRST-OlderVersion
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: AVG AntiVirus 2014 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
AS: AVG AntiVirus 2014 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
32 Bit HP CIO Components Installer (Version: 6.1.1 - Hewlett-Packard) Hidden
8500A909_eDocs (Version: 1.00.0000 - Hewlett-Packard) Hidden
8500A909_Help (Version: 1.00.0000 - Hewlett-Packard) Hidden
8500A909g (Version: 50.0.165.000 - Hewlett-Packard) Hidden
Adobe Acrobat Reader 3.01 (HKLM\...\Adobe Acrobat Reader 3.01) (Version: - )
Adobe Flash Player 15 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 15.0.0.246 - Adobe Systems Incorporated)
Adobe Reader X (10.1.13) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AA1000000001}) (Version: 10.1.13 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.6 (HKLM\...\Adobe Shockwave Player) (Version: 11.6.1.629 - Adobe Systems, Inc.)
Any Video Converter 5.7.6 (HKLM\...\Any Video Converter_is1) (Version: - Any-Video-Converter.com)
ATI Catalyst Install Manager (HKLM\...\{47FDEFC7-BFE6-FD75-41D1-28DD572BD2D9}) (Version: 3.0.715.0 - ATI Technologies, Inc.)
Audacity 2.0.5 (HKLM\...\Audacity_is1) (Version: 2.0.5 - Audacity Team)
AVG 2014 (HKLM\...\AVG) (Version: 2014.0.4800 - AVG Technologies)
AVG 2014 (Version: 14.0.4257 - AVG Technologies) Hidden
AVG 2014 (Version: 14.0.4794 - AVG Technologies) Hidden
AVG 2014 (Version: 14.0.4800 - AVG Technologies) Hidden
AVG PC TuneUp 2015 (de-DE) (Version: 15.0.1001.105 - AVG Technologies) Hidden
AVG Web TuneUp (HKLM\...\AVG Web TuneUp) (Version: 4.0.0.19 - AVG Technologies)
BlueStacks App Player (HKLM\...\BlueStacks App Player) (Version: 0.9.4.4079 - BlueStack Systems, Inc.)
BlueStacks Notification Center (HKLM\...\{8DCCC556-265B-478A-8B32-C12DA988BA74}) (Version: 0.9.4.4079 - BlueStack Systems, Inc.)
BPD_DSWizards (Version: 1.00.0000 - Hewlett-Packard) Hidden
bpd_scan (Version: 3.00.0000 - Hewlett-Packard) Hidden
BPDSoftware (Version: 50.0.165.000 - Hewlett-Packard) Hidden
BPDSoftware_Ini (Version: 1.00.0000 - Hewlett-Packard) Hidden
BufferChm (Version: 130.0.331.000 - Hewlett-Packard) Hidden
Bundled software uninstaller (HKLM\...\bi_uninstaller) (Version: - ) <==== ATTENTION
BurnAware Free 7.7 (HKLM\...\BurnAware Free_is1) (Version: - Burnaware)
CCleaner (HKLM\...\CCleaner) (Version: 4.05 - Piriform)
Cheat Engine 6.4 (HKLM\...\Cheat Engine 6.4_is1) (Version: - Cheat Engine)
CheckDrive (HKLM\...\{B83513EC-2E4D-4621-816D-4CCF397BE702}_is1) (Version: 4.4 - Abelssoft)
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
Destinations (Version: 130.0.0.0 - Hewlett-Packard) Hidden
DeviceDiscovery (Version: 130.0.465.000 - Hewlett-Packard) Hidden
DocMgr (Version: 130.0.000.000 - Ihr Firmenname) Hidden
DocProc (Version: 13.0.0.0 - Hewlett-Packard) Hidden
Dota 2 (HKLM\...\Steam App 570) (Version: - Valve)
Druckerdeinstallation für EPSON XP-302 303 305 306 Series (HKLM\...\EPSON XP-302 303 305 306 Series) (Version: - SEIKO EPSON Corporation)
Epson Connect Printer Setup (HKLM\...\{D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C}) (Version: 1.3.0 - SEIKO EPSON CORPORATION)
Epson E-Web Print (HKLM\...\{896667C8-53F8-47B8-B6B0-B113B10F05BC}) (Version: 1.20.0000 - SEIKO EPSON CORPORATION)
EPSON Printer Finder (HKLM\...\{B8ECD0D3-AE08-4891-B6C7-32F96B75EB6C}) (Version: 1.0.0 - SEIKO EPSON CORPORATION)
EZ Software Updater version 1.2.0.4 (HKLM\...\EZ Software Updater_is1) (Version: 1.2.0.4 - )
Fax (Version: 130.0.418.000 - Hewlett-Packard) Hidden
Fotogalerie (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Free YouTube Download version 3.2.49.1022 (HKLM\...\Free YouTube Download_is1) (Version: 3.2.49.1022 - DVDVideoSoft Ltd.)
GeoGebra 5 (HKLM\...\GeoGebra 5) (Version: 5.0.4.0 - International GeoGebra Institute)
Google Chrome (HKLM\...\Google Chrome) (Version: 39.0.2171.95 - Google Inc.)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Earth (HKLM\...\{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}) (Version: 6.1.0.5001 - Google)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
GPBaseService2 (Version: 130.0.371.000 - Hewlett-Packard) Hidden
Haali Media Splitter (HKLM\...\HaaliMkx) (Version: - FreeCodecPack)
HPProductAssistant (Version: 130.0.371.000 - Hewlett-Packard) Hidden
HPSSupply (Version: 130.0.371.000 - Hewlett-Packard) Hidden
HxD Hex Editor Version 1.7.7.0 (HKLM\...\HxD Hex Editor_is1) (Version: 1.7.7.0 - Maël Hörz)
Java 8 Update 25 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
Key hack Setup version 1.5 (HKLM\...\{ADF6D3E3-02C1-47CE-9788-7E19C8B1753C}_is1) (Version: 1.5 - My Company, Inc.)
Liveupdate4 (HKLM\...\Liveupdate4_is1) (Version: - MSI, Inc.)
MarketResearch (Version: 130.0.374.000 - Hewlett-Packard) Hidden
Media Downloader version 1.5 (HKLM\...\Media Downloader_is1) (Version: 1.5 - Media Downloader)
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0100-0407-0000-0000000FF1CE}_OMUI.de-de_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}) (Version: - Microsoft)
Microsoft Office Language Pack 2007 - German/Deutsch (HKLM\...\OMUI.de-de) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{402ED4A1-8F5B-387A-8688-997ABF58B8F2}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Movie Maker (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Mozilla Firefox 34.0.5 (x86 de) (HKLM\...\Mozilla Firefox 34.0.5 (x86 de)) (Version: 34.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
Mozilla Thunderbird 12.0.1 (x86 de) (HKLM\...\Mozilla Thunderbird 12.0.1 (x86 de)) (Version: 12.0.1 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
Netscape Communicator 4.6 (HKLM\...\Netscape Communicator 4.6) (Version: - )
Network (Version: 130.0.579.000 - Hewlett-Packard) Hidden
Nitro PDF Professional (HKLM\...\{853F9C53-2518-4AD0-ABA2-A72EDF4441A4}) (Version: 5.5.2.0 - Nitro PDF Software )
Oracle VM VirtualBox 4.3.12 (HKLM\...\{D90E08B8-E7BB-4D29-8249-8670D4CC24BD}) (Version: 4.3.12 - Oracle Corporation)
Phase 5 HTML-Editor (HKLM\...\{20B1B020-DEAE-48D1-9960-D4C3185D758B}) (Version: 5.6.2.3 - Systemberatung Schommer)
ProductContext (Version: 50.0.165.000 - Hewlett-Packard) Hidden
Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Scan (Version: 13.0.0.0 - Hewlett-Packard) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
Skype™ 6.16 (HKLM\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.)
SmartWebPrinting (Version: 130.0.457.000 - Hewlett-Packard) Hidden
Software Updater (HKLM\...\{FA7EE274-7370-43B7-9A45-A39B17CCCDC5}) (Version: 4.3.3 - SEIKO EPSON CORPORATION)
SolutionCenter (Version: 130.0.373.000 - Hewlett-Packard) Hidden
Status (Version: 130.0.469.000 - Hewlett-Packard) Hidden
Steam (HKLM\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1168 - SUPERAntiSpyware.com)
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TIPP10 Version 2.1.0 (HKLM\...\TIPP10_is1) (Version: - (c) 2006-2011, Tom Thielicke IT Solutions)
TL-WN851ND Driver (HKLM\...\{4BAE4C76-44C3-418F-B715-6BBF5A65323E}) (Version: 1.00.0000 - TP-LINK)
Toolbox (Version: 130.0.648.000 - Hewlett-Packard) Hidden
TrayApp (Version: 130.0.422.000 - Hewlett-Packard) Hidden
TreeSize Personal V6.1.1 (HKLM\...\TreeSize Personal_is1) (Version: 6.1.1 - JAM Software)
TuneUp Utilities Language Pack (de-DE) (Version: 10.0.3000.99 - TuneUp Software) Hidden
TuneUp Utilities Language Pack (de-DE) (Version: 9.0.5100.2 - TuneUp Software) Hidden
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_OMUI.de-de_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft)
Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM\...\{90120000-001A-0407-0000-0000000FF1CE}_OMUI.de-de_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_OMUI.de-de_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_OMUI.de-de_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft)
VideoSoft ActiveX Controls (HKLM\...\VideoSoft ActiveX Controls) (Version: - )
Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VLC media player 2.0.5 (HKLM\...\VLC media player) (Version: 2.0.5 - VideoLAN)
WebReg (Version: 130.0.132.017 - Hewlett-Packard) Hidden
Windows 7 USB/DVD Download Tool (HKLM\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation)
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation)
WinRAR 5.01 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
==================== Restore Points =========================
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:04 - 2009-06-10 22:39 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {060974C6-EB13-439D-B0A4-E1A5D3E04852} - System32\Tasks\Microsoft\Windows\TabletPC\InputPersonalization => C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [2009-07-14] (Microsoft Corporation)
Task: {28D2D37D-4310-475D-B318-49C33F2169C9} - \ProPCCleaner_Popup No Task File <==== ATTENTION
Task: {297C0F65-1E10-49F0-9DC5-D11301A7F843} - \SMupdate1 No Task File <==== ATTENTION
Task: {2D589190-9944-476E-A573-222791290DD5} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {3359158A-07D9-4850-95C6-0D9D97452A6D} - \GoogleUpdateTaskMachineCore No Task File <==== ATTENTION
Task: {41C9A7D1-822F-4722-9213-78D4AB6B4C21} - \PCHelpers1st No Task File <==== ATTENTION
Task: {459268AE-08D6-45FB-91CC-5E706DBF30D9} - System32\Tasks\Abelssoft\CheckDriveBackgroundGuard => C:\Program Files\CheckDrive\CheckDriveBackgroundGuard.exe [2014-01-28] (Abelssoft)
Task: {4D5E15B7-CCF8-4F94-9FE2-98CFF7A3D34C} - System32\Tasks\Microsoft\Windows\Multimedia\SMupdate3 => Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update3 <==== ATTENTION
Task: {56DBA06F-5936-424B-B712-0FFC44314AD0} - \SUPERAntiSpyware Scheduled Task 3065c5e0-abed-44dd-b0b5-72815b0aa146 No Task File <==== ATTENTION
Task: {5F1DBE2B-B0CF-4627-95DE-DE5185968F92} - \GoogleUpdateTaskMachineUA No Task File <==== ATTENTION
Task: {61827672-FD8A-419B-8509-E1B3E4BE2E86} - \Adobe Flash Player Updater No Task File <==== ATTENTION
Task: {668EDF93-5C13-42D2-A209-14C2A435D05D} - \ProPCCleaner_Start No Task File <==== ATTENTION
Task: {7F66F5E4-A742-4D44-A1E6-8702EE739B5D} - System32\Tasks\Abelssoft\Updater scan => C:\Program Files\CHIP Updater\CHIPUpdater.exe
Task: {81A76310-0754-42B7-89AC-993D9450C662} - \SUPERAntiSpyware Scheduled Task 06bbf209-d338-4d60-be59-4e63b86481f1 No Task File <==== ATTENTION
Task: {84B9A19E-C07B-4C2F-B2C2-2DC5A5A722AD} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask => C:\Windows\system32\Wat\WatAdminSvc.exe [2013-11-18] ()
Task: {95D2F5DE-7EBF-4966-B590-390DCC9F9652} - \{4FC590E3-B3EA-44D9-A548-0576CF073E8B} No Task File <==== ATTENTION
Task: {990DE140-CCEF-429D-8697-D5B3F80B76FF} - System32\Tasks\Microsoft\Windows\Maintenance\SMupdate2 => Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update2 <==== ATTENTION
Task: {9A4C242F-092D-40E9-B426-17495392768E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {BC2154AC-4836-44A5-8FE5-BE39C0831DED} - \{7DE81AF0-5EBE-406B-94EA-BEB1B10BA181} No Task File <==== ATTENTION
Task: {CD72CD6A-F320-4DC8-B8D7-56142B2FC220} - \OMESupervisor No Task File <==== ATTENTION
Task: {D425DFCE-F4F9-4C60-AFD0-73F3C7D5AD27} - \RocketTab Update Task No Task File <==== ATTENTION
Task: {D59C6E92-8185-4EC8-9CDB-0BD63EA6729A} - \RocketTab No Task File <==== ATTENTION
Task: {F28A6735-8C38-406E-9E77-6E185897AB51} - \Fifth No Task File <==== ATTENTION
Task: {FF042177-2ECB-464E-9EC1-4F2FB2EAB17B} - System32\Tasks\Games\UpdateCheck_S-1-5-21-2908931533-4132489533-110418967-1000
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Loaded Modules (whitelisted) =============
2014-03-05 16:39 - 2014-03-05 16:39 - 00075136 _____ () C:\Windows\system32\PnkBstrA.exe
2014-12-09 18:58 - 2014-01-28 17:33 - 00019744 _____ () C:\Program Files\CheckDrive\AbStartManager.dll
2014-12-09 18:58 - 2014-01-28 17:33 - 00014112 _____ () C:\Program Files\CheckDrive\AbMessages.dll
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2014-07-02 12:53 - 2014-12-09 18:52 - 03758192 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51
AlternateDataStreams: C:\ProgramData\TEMP:373E1720
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver"
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
MSCONFIG\startupreg: BlueStacks Agent => C:\Program Files\BlueStacks\HD-Agent.exe
MSCONFIG\startupreg: EPLTarget =>
MSCONFIG\startupreg: SUPERAntiSpyware => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
MSCONFIG\startupreg: Uninstall C: =>
========================= Accounts: ==========================
Administrator (S-1-5-21-2908931533-4132489533-110418967-500 - Administrator - Disabled)
Gast (S-1-5-21-2908931533-4132489533-110418967-501 - Limited - Disabled)
... (S-1-5-21-2908931533-4132489533-110418967-1000 - Administrator - Enabled) => C:\Users\.......-PC
==================== Faulty Device Manager Devices =============
Name: ntiomin
Description: ntiomin
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: ntiomin
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: SASDIFSV
Description: SASDIFSV
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: SASDIFSV
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: Officejet Pro 8500 A909g
Description: Officejet Pro 8500 A909g
Class Guid:
Manufacturer:
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: SASKUTIL
Description: SASKUTIL
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: SASKUTIL
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: SBMNTR
Description: SBMNTR
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: sbmntr
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: SPDRIVER_1.38.0.1434
Description: SPDRIVER_1.38.0.1434
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: SPDRIVER_1.38.0.1434
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
==================== Event log errors: =========================
Application errors:
==================
Error: (01/18/2015 06:10:29 PM) (Source: VSS) (EventID: 12292) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
] ist ein Fehler aufgetreten.
Vorgang:
Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
Schattenkopien abfragen
Kontext:
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
Snapshotkontext: 13
Snapshotkontext: 13
Ausführungskontext: Coordinator
Error: (01/18/2015 06:10:29 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
]
Vorgang:
Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
Schattenkopien abfragen
Kontext:
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
Snapshotkontext: 13
Snapshotkontext: 13
Ausführungskontext: Coordinator
Error: (01/18/2015 05:36:28 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (01/18/2015 04:27:44 PM) (Source: Windows Backup) (EventID: 4104) (User: )
Description: Die Sicherung war nicht erfolgreich. Fehler: "Fehler beim Bestimmen des Bibliothekenspeicherorts eines der in die Scherung eingeschlossenen Benutzer durch die Windows-Sicherung. (0x81000031)"
Error: (01/18/2015 04:27:44 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "GetProviderMgmtInterface" ist ein unerwarteter Fehler aufgetreten. hr = 0x8004230f, Unerwarteter Fehler beim Schattenkopieanbieter bei dem Versuch, den angegebenen Vorgang zu verarbeiten.
.
Error: (01/18/2015 04:27:43 PM) (Source: VSS) (EventID: 12292) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
] ist ein Fehler aufgetreten.
Vorgang:
Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
Anbieterverwaltungsschnittstelle wird abgerufen
Kontext:
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Klassen-ID: {00000000-0000-0000-0000-000000000000}
Snapshotkontext: -1
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Error: (01/18/2015 04:27:43 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
]
Vorgang:
Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
Anbieterverwaltungsschnittstelle wird abgerufen
Kontext:
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Klassen-ID: {00000000-0000-0000-0000-000000000000}
Snapshotkontext: -1
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Error: (01/18/2015 04:12:55 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 12292) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
] ist ein Fehler aufgetreten.
Vorgang:
Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
Schattenkopien abfragen
Kontext:
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
Snapshotkontext: 13
Snapshotkontext: 13
Ausführungskontext: Coordinator
Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
]
Vorgang:
Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
Schattenkopien abfragen
Kontext:
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
Snapshotkontext: 13
Snapshotkontext: 13
Ausführungskontext: Coordinator
System errors:
=============
Error: (01/18/2015 06:11:28 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden.
Error: (01/18/2015 05:55:08 PM) (Source: VDS Basic Provider) (EventID: 1) (User: )
Description: Unerwarteter Fehler. Fehlercode: D@01010004
Error: (01/18/2015 05:55:08 PM) (Source: VDS Basic Provider) (EventID: 1) (User: )
Description: Unerwarteter Fehler. Fehlercode: D@01010004
Error: (01/18/2015 05:31:57 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am 18.01.2015 um 16:47:32 unerwartet heruntergefahren.
Error: (01/18/2015 04:19:40 PM) (Source: atikmdag) (EventID: 19468) (User: )
Description: CPLIB :: General - Invalid Parameter
Error: (01/18/2015 04:19:36 PM) (Source: atikmdag) (EventID: 19468) (User: )
Description: CPLIB :: General - Invalid Parameter
Error: (01/18/2015 04:19:32 PM) (Source: atikmdag) (EventID: 19468) (User: )
Description: CPLIB :: General - Invalid Parameter
Error: (01/18/2015 04:19:28 PM) (Source: atikmdag) (EventID: 19468) (User: )
Description: CPLIB :: General - Invalid Parameter
Error: (01/18/2015 04:19:25 PM) (Source: atikmdag) (EventID: 19468) (User: )
Description: CPLIB :: General - Invalid Parameter
Error: (01/18/2015 04:19:21 PM) (Source: atikmdag) (EventID: 19468) (User: )
Description: CPLIB :: General - Invalid Parameter
Microsoft Office Sessions:
=========================
Error: (01/18/2015 06:10:29 PM) (Source: VSS) (EventID: 12292) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Vorgang:
Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
Schattenkopien abfragen
Kontext:
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
Snapshotkontext: 13
Snapshotkontext: 13
Ausführungskontext: Coordinator
Error: (01/18/2015 06:10:29 PM) (Source: VSS) (EventID: 13) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Vorgang:
Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
Schattenkopien abfragen
Kontext:
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
Snapshotkontext: 13
Snapshotkontext: 13
Ausführungskontext: Coordinator
Error: (01/18/2015 05:36:28 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (01/18/2015 04:27:44 PM) (Source: Windows Backup) (EventID: 4104) (User: )
Description: Fehler beim Bestimmen des Bibliothekenspeicherorts eines der in die Scherung eingeschlossenen Benutzer durch die Windows-Sicherung. (0x81000031)
Error: (01/18/2015 04:27:44 PM) (Source: VSS) (EventID: 8193) (User: )
Description: GetProviderMgmtInterface0x8004230f, Unerwarteter Fehler beim Schattenkopieanbieter bei dem Versuch, den angegebenen Vorgang zu verarbeiten.
Error: (01/18/2015 04:27:43 PM) (Source: VSS) (EventID: 12292) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Vorgang:
Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
Anbieterverwaltungsschnittstelle wird abgerufen
Kontext:
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Klassen-ID: {00000000-0000-0000-0000-000000000000}
Snapshotkontext: -1
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Error: (01/18/2015 04:27:43 PM) (Source: VSS) (EventID: 13) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Vorgang:
Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
Anbieterverwaltungsschnittstelle wird abgerufen
Kontext:
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Klassen-ID: {00000000-0000-0000-0000-000000000000}
Snapshotkontext: -1
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Error: (01/18/2015 04:12:55 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 12292) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Vorgang:
Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
Schattenkopien abfragen
Kontext:
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
Snapshotkontext: 13
Snapshotkontext: 13
Ausführungskontext: Coordinator
Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 13) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Vorgang:
Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
Schattenkopien abfragen
Kontext:
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
Snapshotkontext: 13
Snapshotkontext: 13
Ausführungskontext: Coordinator
==================== Memory info ===========================
Processor: AMD Athlon(tm) 64 X2 Dual Core Processor 5000+
Percentage of memory in use: 57%
Total physical RAM: 991.43 MB
Available physical RAM: 419.44 MB
Total Pagefile: 20991.43 MB
Available Pagefile: 19862.29 MB
Total Virtual: 2047.88 MB
Available Virtual: 1917.81 MB
==================== Drives ================================
Drive c: (Windows7 Deutsch) (Fixed) (Total:247.49 GB) (Free:174.64 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (Volume) (Fixed) (Total:50.59 GB) (Free:39.45 GB) NTFS
gruss |