Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.
Windows Vista Update schlägt fehl, teilweise kein Internet... Hallo Trojaner-Board Team, Mein Notebook verhält sich merkwürdig. Manchmal geht das WLAN Internet nicht und neuerdings installiert er keine Windows Updates mehr. Hier das LOG. Bitte um Hilfe. Habe ich einen Trojaner ? FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 04-07-2013 Ran by User (administrator) on 05-07-2013 06:46:52 Running from C:\Users\User\Bewerbungen\Desktop\Sicherheit Microsoft® Windows Vista™ Home Basic Service Pack 2 (X86) OS Language: German Standard Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (Microsoft Corporation) C:\Windows\system32\SLsvc.exe (Microsoft Corporation) C:\Windows\system32\WLANExt.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Secunia) C:\Program Files\Secunia\PSI\sua.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avmailc.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe (BillP Studios) C:\Program Files\BillP Studios\WinPatrol\WinPatrol.exe (Microsoft Corporation) C:\Windows\system32\wbem\unsecapp.exe (Microsoft Corporation) C:\Windows\system32\wuauclt.exe (Microsoft Corporation) C:\Windows\system32\conime.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min [345144 2013-06-26] (Avira Operations GmbH & Co. KG) HKCU\...\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun [19603048 2013-06-03] (Skype Technologies S.A.) HKCU\...\Run: [WinPatrol] C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe -expressboot [423144 2013-04-27] (BillP Studios) HKCU\...\Policies\system: [DisableRegistryTools] 0 HKCU\...\Policies\system: [DisableTaskMgr] 0 MountPoints2: F - F:\AutoRun.exe MountPoints2: {a662e390-c59f-11de-813a-001fc6e45ea5} - F:\AutoRun.exe MountPoints2: {a662e3af-c59f-11de-813a-001fc6e45ea5} - F:\AutoRun.exe MountPoints2: {a662e3cb-c59f-11de-813a-001fc6e45ea5} - F:\AutoRun.exe MountPoints2: {cfa7f39b-b628-11dd-9205-001fc6e45ea5} - G:\LaunchU3.exe -a ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.facebook.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.asus.com BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO: WOT Helper - {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} - C:\Program Files\WOT\WOT.dll () Toolbar: HKLM - WOT - {71576546-354D-41c9-AAE8-31F2EC22BF0D} - C:\Program Files\WOT\WOT.dll () Toolbar: HKCU -WOT - {71576546-354D-41C9-AAE8-31F2EC22BF0D} - C:\Program Files\WOT\WOT.dll () DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10} hxxp://cdn.scan.onecare.live.com/resource/download/scanner/de-de/wlscctrl2.cab DPF: {99FE5072-78AA-4FEE-89BA-69A5FA55343F} hxxp://download.microsoft.com/download/B/3/A/B3A2EA73-793D-4ABE-992D-C81140384044/igdtoolx.cab DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) Handler: ipp - No CLSID Value - Handler: msdaipp - No CLSID Value - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Handler: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - C:\Program Files\WOT\WOT.dll () Winsock: Catalog9 01 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG) Winsock: Catalog9 02 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG) Winsock: Catalog9 03 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG) Winsock: Catalog9 04 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG) Winsock: Catalog9 12 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] Tcpip\..\Interfaces\{8F587694-91BC-4204-9812-41857F042C63}: [NameServer] FireFox: ======== FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\9o9vlvm8.default FF Homepage: www.facebook.com FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll () FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin: @java.com/DTPlugin,version=10.11.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin: @microsoft.com/WPF,version=3.5 - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.0.7 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\User\AppData\Local\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\User\AppData\Local\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: facebook.com/fbDesktopPlugin - C:\Users\User\AppData\Local\Facebook\Messenger\2.1.4651.0\npFbDesktopPlugin.dll (Facebook, Inc.) FF Extension: WOT - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\9o9vlvm8.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} FF Extension: No Name - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\9o9vlvm8.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: Default - C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR RestoreOnStartup: "hxxp://www.facebook.com/" CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Remoting Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\User\AppData\Local\Google\Chrome\Application\27.0.1453.116\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Users\User\AppData\Local\Google\Chrome\Application\27.0.1453.116\pdf.dll () CHR Plugin: (Shockwave Flash) - C:\Users\User\AppData\Local\Google\Chrome\Application\27.0.1453.116\gcswf32.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_11_2_202_233.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Picasa) - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.) CHR Plugin: (Silverlight Plug-In) - C:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll No File CHR Plugin: (Windows Live\u00AE Photo Gallery) - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll No File CHR Plugin: (Google Update) - C:\Users\User\AppData\Local\Google\Update\\npGoogleUpdate3.dll No File CHR Plugin: (Windows Presentation Foundation) - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) CHR Extension: (ProxTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek\1.2.3_0 CHR Extension: (WOT) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\1.4.13_0 CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\ CHR Extension: (AdBlock) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.2_0 CHR Extension: (Gmail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1 ========================== Services (Whitelisted) ================= R2 AntiVirMailService; C:\Program Files\Avira\AntiVir Desktop\avmailc.exe [371768 2013-06-26] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [84024 2013-06-26] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [108088 2013-06-26] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [589368 2013-06-26] (Avira Operations GmbH & Co. KG) S3 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [1228504 2013-07-03] (Secunia) R2 Secunia Update Agent; C:\Program Files\Secunia\PSI\sua.exe [660184 2013-07-03] (Secunia) S4 UMVPFSrv; C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [450848 2012-01-18] (Logitech Inc.) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [84744 2013-04-02] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [135136 2013-04-02] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-04-02] (Avira Operations GmbH & Co. KG) S2 DgiVecp; C:\Windows\system32\Drivers\DgiVecp.sys [41984 2008-01-10] (Samsung Electronics Co., Ltd.) R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [5632 2007-01-24] ( ) R3 MTsensor; C:\Windows\System32\DRIVERS\ATKACPI.sys [7680 2006-12-14] (ATK0100) R0 nhcDriverDevice; C:\Windows\System32\drivers\nhcDriver.sys [71680 2012-05-08] (Notebook Hardware Control) S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_x86.sys [16024 2013-07-03] (Secunia) R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2012-10-31] (Avira GmbH) R2 SSPORT; C:\Windows\system32\Drivers\SSPORT.sys [5120 2008-01-10] (Samsung Electronics) S3 BDFsDrv; \??\C:\Program Files\Softwin\BitDefender10\bdfsdrv.sys [x] S3 BDRsDrv; \??\C:\Program Files\Softwin\BitDefender10\bdrsdrv.sys [x] S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [x] S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [x] S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [x] S3 IpInIp; system32\DRIVERS\ipinip.sys [x] S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [x] S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [x] S3 USBAAPL; System32\Drivers\usbaapl.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-07-05 06:46 - 2013-07-05 06:46 - 00000000 ____D C:\FRST 2013-07-04 21:52 - 2013-07-04 21:52 - 02434048 ____A C:\Users\User\Downloads\msxml.msi 2013-07-04 21:40 - 2013-07-04 21:40 - 00000000 ____D C:\Users\User\AppData\Local\Secunia PSI 2013-07-04 21:39 - 2013-07-04 21:39 - 00000000 ____D C:\Program Files\Secunia 2013-07-04 21:19 - 2013-07-04 21:19 - 00000784 ____A C:\DelFix.txt 2013-07-04 21:18 - 2013-07-04 21:18 - 00000824 ____A C:\Users\User\Desktop\JRT.txt 2013-07-04 20:44 - 2013-07-04 20:44 - 00000000 ____D C:\Program Files\ESET 2013-07-04 20:30 - 2013-07-04 20:43 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2013-07-04 20:27 - 2013-07-04 20:27 - 00000000 ____D C:\ProgramData\Licenses 2013-07-04 20:27 - 2013-07-04 20:27 - 00000000 ____D C:\Program Files\SpywareBlaster 2013-07-04 18:47 - 2013-07-04 18:47 - 01142784 ____A C:\Users\User\Downloads\WOT-latest-all.msi 2013-07-04 18:47 - 2013-07-04 18:47 - 00000000 ____D C:\Program Files\WOT 2013-07-04 18:39 - 2013-07-04 18:39 - 13399154 ____A C:\Users\User\Downloads\mbar- 2013-07-04 18:28 - 2013-07-04 18:28 - 00906440 ____A (BillP Studios) C:\Users\User\Downloads\wpsetup.exe 2013-07-04 18:28 - 2013-07-04 18:28 - 00000000 ____D C:\Users\User\AppData\Roaming\WinPatrol 2013-07-04 18:28 - 2013-07-04 18:28 - 00000000 ____D C:\Program Files\BillP Studios 2013-07-04 18:24 - 2013-07-04 18:24 - 00140125 ____A C:\Users\User\Downloads\hosts.zip 2013-07-04 07:51 - 2013-07-04 07:52 - 00000000 ____D C:\Users\User\Downloads\Tools 2013-07-04 07:49 - 2013-07-04 07:49 - 00076288 ____A C:\Users\User\Downloads\pcwVistaServices1.2 (2).zip 2013-07-04 07:43 - 2013-07-04 07:43 - 00000873 ____A C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-07-04 07:43 - 2013-07-04 07:43 - 00000000 ____D C:\Users\User\AppData\Roaming\Malwarebytes 2013-07-04 07:43 - 2013-07-04 07:43 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-07-04 07:43 - 2013-07-04 07:43 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware 2013-07-04 07:43 - 2013-04-04 14:50 - 00022856 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys 2013-07-04 07:39 - 2013-07-04 07:39 - 00019470 ____A C:\Users\User\Downloads\svc2kxp.zip 2013-07-04 07:28 - 2013-07-04 07:28 - 00000000 ____D C:\Windows\ERUNT 2013-07-04 07:21 - 2013-07-04 07:24 - 00000000 ____D C:\Program Files\Hosts_Anti_Adwares_PUPs 2013-07-04 07:03 - 2013-07-04 07:03 - 01176629 ____A C:\Users\User\Downloads\ProcessExplorer.zip 2013-07-03 10:32 - 2013-07-03 10:32 - 00016024 ____A (Secunia) C:\Windows\System32\Drivers\psi_mf_x86.sys 2013-06-27 15:44 - 2013-06-27 15:45 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-06-13 09:21 - 2013-05-17 01:08 - 12329984 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-13 09:21 - 2013-05-17 00:49 - 09738752 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-13 09:21 - 2013-05-17 00:39 - 01800704 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2013-06-13 09:21 - 2013-05-17 00:28 - 01129472 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll 2013-06-13 09:21 - 2013-05-17 00:28 - 01104384 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-13 09:21 - 2013-05-17 00:27 - 01427968 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl 2013-06-13 09:21 - 2013-05-17 00:26 - 00231936 ____A (Microsoft Corporation) C:\Windows\System32\url.dll 2013-06-13 09:21 - 2013-05-17 00:23 - 00065024 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2013-06-13 09:21 - 2013-05-17 00:21 - 00717824 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll 2013-06-13 09:21 - 2013-05-17 00:21 - 00142848 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe 2013-06-13 09:21 - 2013-05-17 00:20 - 00420864 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll 2013-06-13 09:21 - 2013-05-17 00:19 - 00607744 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2013-06-13 09:21 - 2013-05-17 00:17 - 01796096 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-13 09:21 - 2013-05-17 00:17 - 00073216 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll 2013-06-13 09:21 - 2013-05-17 00:16 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-13 09:21 - 2013-05-17 00:12 - 00176640 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-12 09:22 - 2013-05-08 06:37 - 00905576 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys 2013-06-12 09:22 - 2013-05-02 06:04 - 00443904 ____A (Microsoft Corporation) C:\Windows\System32\win32spl.dll 2013-06-12 09:22 - 2013-05-02 06:03 - 00037376 ____A (Microsoft Corporation) C:\Windows\System32\printcom.dll 2013-06-12 09:22 - 2013-04-24 06:00 - 00985600 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll 2013-06-12 09:22 - 2013-04-24 06:00 - 00133120 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll 2013-06-12 09:22 - 2013-04-24 06:00 - 00098304 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll 2013-06-12 09:22 - 2013-04-24 06:00 - 00041984 ____A (Microsoft Corporation) C:\Windows\System32\certenc.dll 2013-06-12 09:22 - 2013-04-24 03:46 - 00812544 ____A (Microsoft Corporation) C:\Windows\System32\certutil.exe 2013-06-12 09:21 - 2013-05-03 00:03 - 03603832 ____A (Microsoft Corporation) C:\Windows\System32\ntkrnlpa.exe 2013-06-12 09:21 - 2013-05-03 00:03 - 03551096 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe 2013-06-12 09:21 - 2013-04-17 14:30 - 00024576 ____A (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll ==================== One Month Modified Files and Folders ======== 2013-07-05 06:46 - 2013-07-05 06:46 - 00000000 ____D C:\FRST 2013-07-05 06:44 - 2010-01-04 13:46 - 00000000 ____D C:\Users\User\AppData\Roaming\Skype 2013-07-05 06:42 - 2006-11-02 14:58 - 00000006 ___AH C:\Windows\Tasks\SA.DAT 2013-07-05 06:42 - 2006-11-02 14:45 - 00003168 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 2013-07-05 06:42 - 2006-11-02 14:45 - 00003168 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 2013-07-05 06:40 - 2013-04-27 16:43 - 00000000 ____A C:\Windows\System32\Drivers\lvuvc.hs 2013-07-04 22:19 - 2013-01-30 13:02 - 01799581 ____A C:\Windows\WindowsUpdate.log 2013-07-04 22:19 - 2006-11-02 14:58 - 00032510 ____A C:\Windows\Tasks\SCHEDLGU.TXT 2013-07-04 21:53 - 2013-04-02 19:43 - 00001116 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3820691633-4151992636-2547996523-1000UA.job 2013-07-04 21:52 - 2013-07-04 21:52 - 02434048 ____A C:\Users\User\Downloads\msxml.msi 2013-07-04 21:40 - 2013-07-04 21:40 - 00000000 ____D C:\Users\User\AppData\Local\Secunia PSI 2013-07-04 21:39 - 2013-07-04 21:39 - 00000000 ____D C:\Program Files\Secunia 2013-07-04 21:19 - 2013-07-04 21:19 - 00000784 ____A C:\DelFix.txt 2013-07-04 21:18 - 2013-07-04 21:18 - 00000824 ____A C:\Users\User\Desktop\JRT.txt 2013-07-04 20:44 - 2013-07-04 20:44 - 00000000 ____D C:\Program Files\ESET 2013-07-04 20:43 - 2013-07-04 20:30 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2013-07-04 20:34 - 2013-02-17 17:23 - 00000884 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-04 20:27 - 2013-07-04 20:27 - 00000000 ____D C:\ProgramData\Licenses 2013-07-04 20:27 - 2013-07-04 20:27 - 00000000 ____D C:\Program Files\SpywareBlaster 2013-07-04 20:23 - 2013-01-30 13:50 - 00004852 ____A C:\Windows\PFRO.log 2013-07-04 18:47 - 2013-07-04 18:47 - 01142784 ____A C:\Users\User\Downloads\WOT-latest-all.msi 2013-07-04 18:47 - 2013-07-04 18:47 - 00000000 ____D C:\Program Files\WOT 2013-07-04 18:39 - 2013-07-04 18:39 - 13399154 ____A C:\Users\User\Downloads\mbar- 2013-07-04 18:28 - 2013-07-04 18:28 - 00906440 ____A (BillP Studios) C:\Users\User\Downloads\wpsetup.exe 2013-07-04 18:28 - 2013-07-04 18:28 - 00000000 ____D C:\Users\User\AppData\Roaming\WinPatrol 2013-07-04 18:28 - 2013-07-04 18:28 - 00000000 ____D C:\Program Files\BillP Studios 2013-07-04 18:24 - 2013-07-04 18:24 - 00140125 ____A C:\Users\User\Downloads\hosts.zip 2013-07-04 08:40 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\Microsoft.NET 2013-07-04 08:12 - 2007-04-18 08:37 - 00000012 ____A C:\Windows\bthservsdp.dat 2013-07-04 07:53 - 2009-09-11 15:08 - 00196608 ____A C:\Windows\System32\Ikeext.etl 2013-07-04 07:52 - 2013-07-04 07:51 - 00000000 ____D C:\Users\User\Downloads\Tools 2013-07-04 07:51 - 2008-10-02 12:38 - 00029392 ____A C:\Users\User\Downloads\pcwVistaServices.hta 2013-07-04 07:49 - 2013-07-04 07:49 - 00076288 ____A C:\Users\User\Downloads\pcwVistaServices1.2 (2).zip 2013-07-04 07:43 - 2013-07-04 07:43 - 00000873 ____A C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-07-04 07:43 - 2013-07-04 07:43 - 00000000 ____D C:\Users\User\AppData\Roaming\Malwarebytes 2013-07-04 07:43 - 2013-07-04 07:43 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-07-04 07:43 - 2013-07-04 07:43 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware 2013-07-04 07:39 - 2013-07-04 07:39 - 00019470 ____A C:\Users\User\Downloads\svc2kxp.zip 2013-07-04 07:28 - 2013-07-04 07:28 - 00000000 ____D C:\Windows\ERUNT 2013-07-04 07:24 - 2013-07-04 07:21 - 00000000 ____D C:\Program Files\Hosts_Anti_Adwares_PUPs 2013-07-04 07:11 - 2010-01-04 14:01 - 00000000 ____D C:\ProgramData\ICQ 2013-07-04 07:03 - 2013-07-04 07:03 - 01176629 ____A C:\Users\User\Downloads\ProcessExplorer.zip 2013-07-04 06:53 - 2006-11-02 12:33 - 01469896 ____A C:\Windows\System32\PerfStringBackup.INI 2013-07-04 06:38 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\tracing 2013-07-03 10:32 - 2013-07-03 10:32 - 00016024 ____A (Secunia) C:\Windows\System32\Drivers\psi_mf_x86.sys 2013-06-29 08:53 - 2013-04-02 19:43 - 00001064 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3820691633-4151992636-2547996523-1000Core.job 2013-06-28 11:36 - 2012-10-31 19:39 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2013-06-27 15:45 - 2013-06-27 15:44 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-06-27 09:49 - 2013-02-07 21:30 - 00000000 ___RD C:\Program Files\Skype 2013-06-27 09:49 - 2010-01-04 13:45 - 00000000 ____D C:\ProgramData\Skype 2013-06-13 10:01 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\rescache 2013-06-13 09:41 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\System32\de-DE 2013-06-13 09:34 - 2012-03-29 20:08 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerApp.exe 2013-06-13 09:34 - 2011-05-18 20:42 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerCPLApp.cpl 2013-06-13 09:25 - 2008-05-09 16:07 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-06-13 09:14 - 2006-11-02 12:24 - 73381792 ____A (Microsoft Corporation) C:\Windows\System32\mrt.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-07-04 22:08 ==================== End Of Log ============================ --- --- --- --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version: 04-07-2013 Ran by User at 2013-07-05 06:47:57 Running from C:\Users\User\Bewerbungen\Desktop\Sicherheit Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= 7-Zip 9.20 Adobe Flash Player 11 ActiveX (Version: 11.7.700.224) Adobe Flash Player 11 Plugin (Version: 11.7.700.224) Adobe Reader X (10.1.7) - Deutsch (Version: 10.1.7) Atheros Client Installation Program (Version: 7.0) Avira Antivirus Premium (Version: ElsterFormular 2007/2008 (Version: ESET Online Scanner v3 Facebook Messenger 2.1.4651.0 (Version: 2.1.4651.0) Google Chrome (HKCU Version: 27.0.1453.116) Google Toolbar for Internet Explorer (Version: 1.0.0) inSSIDer (Version: 2.1.6) Intel(R) Graphics Media Accelerator Driver LightScribe (Version: Malwarebytes Anti-Malware Version (Version: Microsoft .NET Framework 3.5 Language Pack SP1 - DEU Microsoft .NET Framework 3.5 Language Pack SP1 - deu (Version: 3.5.30729) Microsoft .NET Framework 3.5 SP1 Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft Application Error Reporting (Version: 12.0.6012.5000) Microsoft Choice Guard (Version: Microsoft Office 2007 Service Pack 3 (SP3) Microsoft Office Access MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Enterprise 2007 (Version: 12.0.6612.1000) Microsoft Office Excel MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office File Validation Add-In (Version: 14.0.5130.5003) Microsoft Office Groove MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office InfoPath MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Live Add-in 1.5 (Version: 2.0.4024.1) Microsoft Office OneNote MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Outlook MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office PowerPoint MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000) Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000) Microsoft Office Proof (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Proof (Italian) 2007 (Version: 12.0.6612.1000) Microsoft Office Proofing (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) Microsoft Office Publisher MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Shared MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Word MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219) Motorola SM56 Data Fax Modem Mozilla Firefox 22.0 (x86 de) (Version: 22.0) Mozilla Maintenance Service (Version: 22.0) neroxml (Version: 1.0.0) Picasa 3 (Version: 3.9) Power4Gear eXtreme (Version: 1.00.0014) Realtek 8139 and 8139C+ Ethernet Network Card Driver for Windows Vista (Version: 1.00.0000) Realtek High Definition Audio Driver (Version: RICOH R5C83x/84x Flash Media Controller Driver Ver.3.52.02 (Version: 3.52.02) Secunia PSI ( (Version: Skype™ 6.5 (Version: 6.5.158) SpywareBlaster 5.0 (Version: 5.0.0) Synaptics Pointing Device Driver (Version: Update for 2007 Microsoft Office System (KB967642) Update for Microsoft .NET Framework 3.5 SP1 (KB2836940) (Version: 1) Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (Version: 1) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2596802) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2817327) 32-Bit Edition Update für Microsoft Office Excel 2007 Help (KB963678) Update für Microsoft Office Outlook 2007 Help (KB963677) Update für Microsoft Office Powerpoint 2007 Help (KB963669) Update für Microsoft Office Word 2007 Help (KB963665) VLC media player 2.0.7 (Version: 2.0.7) Windows Live OneCare safety scanner WinPatrol (Version: 28.1.2013.0) WOT for Internet Explorer (Version: ==================== Restore Points ========================= Could not list Restore Points. ==================== Hosts content: ========================== 2013-05-21 14:54 - 2013-07-04 18:25 - 00571847 ____A C:\Windows\system32\Drivers\etc\hosts localhost fr.a2dfp.net m.fr.a2dfp.net ad.a8.net asy.a8ww.net abcstats.com a.abv.bg adserver.abv.bg adv.abv.bg bimg.abv.bg ca.abv.bg www2.a-counter.kiev.ua track.acclaimnetwork.com accuserveadsystem.com www.accuserveadsystem.com achmedia.com csh.actiondesk.com www.activemeter.com #[Tracking.Cookie] ads.activepower.net stat.active24stats.nl #[Tracking.Cookie] cms.ad2click.nl ad2games.com ads.ad2games.com content.ad20.net core.ad20.net banner.ad.nu cl21.v4.adaction.se adadvisor.net tag1.adaptiveads.com There are 1000 more lines. ==================== Scheduled Tasks (whitelisted) ============= Task: {18DFD9FC-082E-4E9B-8285-5F21D2B4EDAE} - System32\Tasks\Microsoft\Windows\MobilePC\TMM Task: {19471B6F-BE0D-4D0F-ADD3-1846179FEBD9} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI Task: {21CCBD5F-B50D-47BC-9264-B7B57537A773} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3820691633-4151992636-2547996523-1000Core => C:\Users\User\AppData\Local\Google\Update\GoogleUpdate.exe [2012-04-26] (Google Inc.) Task: {2D2DEC4F-74BB-4FB5-9626-21B3A60365F1} - System32\Tasks\Microsoft\Windows\PLA\System\ConvertLogEntries => C:\Windows\system32\rundll32.exe [2006-11-02] (Microsoft Corporation) Task: {49D67EE0-C9D2-4AAD-A9DD-442C89A129FA} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => c:\program files\windows defender\MpCmdRun.exe [2008-01-19] (Microsoft Corporation) Task: {55DF897B-8D0B-478B-A7D0-86C4BEF205A1} - System32\Tasks\Microsoft\Windows\Tcpip\WSHReset => C:\Windows\system32\schtasks.exe [2008-01-19] (Microsoft Corporation) Task: {5916F864-469C-4391-8604-E4EA141A2699} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\system32\gatherWirelessInfo.vbs [2008-01-05] () Task: {5A2AFC34-B30A-40FD-9FCF-D27F9960AF9A} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3820691633-4151992636-2547996523-1000UA => C:\Users\User\AppData\Local\Google\Update\GoogleUpdate.exe [2012-04-26] (Google Inc.) Task: {60460F69-EDDF-41DB-A8C4-992BBE6D1568} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\OptinNotification => C:\Windows\System32\wsqmcons.exe [2008-01-19] (Microsoft Corporation) Task: {6088EBC2-43C2-43A5-B938-18635788D8A0} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => C:\Windows\system32\rundll32.exe [2006-11-02] (Microsoft Corporation) Task: {654CEFC5-C6F9-4B58-86B1-5A7EDC528473} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-13] (Adobe Systems Incorporated) Task: {8B0E6FAB-F43A-4988-AF0A-A21646C212F0} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages Task: {8E7C1D04-5DD2-4A46-A4B8-9E7D5A5AD76B} - System32\Tasks\Microsoft\Windows\WindowsCalendar\Reminders - User => C:\Program Files\Windows Calendar\WinCal.exe [2009-04-11] (Microsoft Corporation) Task: {9ED703A9-5FFD-40D5-895A-4385EE1509DE} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\system32\RacAgent.exe [2008-01-19] (Microsoft Corporation) Task: {D0DDE08B-2E41-4530-8FE6-9CC3C553802C} - System32\Tasks\Microsoft\Windows\Defrag\ManualDefrag => C:\Windows\system32\defrag.exe [2008-01-19] (Microsoft Corp.) Task: {DEC515C9-A425-4FCA-9760-D4EDB87B0F5C} - System32\Tasks\{7B611E14-4544-437C-87A6-AA3985CA045D} => c:\program files\mozilla firefox\firefox.exe [2013-06-27] (Mozilla Corporation) Task: {F513ED44-CE4E-4DE2-9AE2-E2A4FAAD4548} - System32\Tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor => C:\Windows\System32\sdclt.exe [2010-12-14] (Microsoft Corporation) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3820691633-4151992636-2547996523-1000Core.job => C:\Users\User\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3820691633-4151992636-2547996523-1000UA.job => C:\Users\User\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/05/2013 06:47:59 AM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070422. Vorgang: VSS-Server wird instanziiert Error: (07/05/2013 06:47:59 AM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienst-Fehler: Der Volumeschattenkopie-Dienst (VSS) ist deaktiviert. Aktivieren Sie den Dienst, und wiederholen Sie den Vorgang. Vorgang: VSS-Server wird instanziiert Error: (07/04/2013 10:06:39 PM) (Source: System Restore) (User: ) Description: Fehler beim Erstellen des Wiederherstellungspunkts auf dem Volume (Prozess = C:\Windows\system32\svchost.exe -k netsvcs; Beschreibung = Windows Update; Hr = 0x8000ffff). Error: (07/04/2013 10:06:39 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070422. Vorgang: VSS-Server wird instanziiert Error: (07/04/2013 10:06:39 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienst-Fehler: Der Volumeschattenkopie-Dienst (VSS) ist deaktiviert. Aktivieren Sie den Dienst, und wiederholen Sie den Vorgang. Vorgang: VSS-Server wird instanziiert Error: (07/04/2013 10:05:10 PM) (Source: MsiInstaller) (User: User-PC) Description: Product: MSXML 4.0 SP3 Parser -- Error 1935. An error occured during the installation of assembly component {74974F83-779E-3983-A06B-D6B9ABF34537}. HRESULT: 0x80070422. assembly interface: IAssemblyCacheItem, function: Commit, assembly name: Microsoft.MSXML2,type="win32",version="4.30.2100.0",publicKeyToken="6bd6b9abf345378f",processorArchitecture="x86" Error: (07/04/2013 10:05:05 PM) (Source: System Restore) (User: ) Description: Fehler beim Erstellen des Wiederherstellungspunkts auf dem Volume (Prozess = C:\Windows\system32\msiexec.exe /V; Beschreibung = Installed MSXML 4.0 SP3 Parser; Hr = 0x8000ffff). Error: (07/04/2013 10:05:05 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070422. Vorgang: VSS-Server wird instanziiert Error: (07/04/2013 10:05:05 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienst-Fehler: Der Volumeschattenkopie-Dienst (VSS) ist deaktiviert. Aktivieren Sie den Dienst, und wiederholen Sie den Vorgang. Vorgang: VSS-Server wird instanziiert Error: (07/04/2013 10:05:03 PM) (Source: System Restore) (User: ) Description: Fehler beim Erstellen des Wiederherstellungspunkts auf dem Volume (Prozess = C:\Windows\system32\msiexec.exe /V; Beschreibung = Installed MSXML 4.0 SP3 Parser; Hr = 0x8000ffff). System errors: ============= Error: (07/05/2013 06:46:30 AM) (Source: Service Control Manager) (User: ) Description: RAS-VerbindungsverwaltungSSTP-Dienst%%1058 Error: (07/05/2013 06:46:30 AM) (Source: Service Control Manager) (User: ) Description: RAS-VerbindungsverwaltungSSTP-Dienst%%1058 Error: (07/05/2013 06:46:30 AM) (Source: Service Control Manager) (User: ) Description: RAS-VerbindungsverwaltungSSTP-Dienst%%1058 Error: (07/05/2013 06:46:29 AM) (Source: Service Control Manager) (User: ) Description: RAS-VerbindungsverwaltungSSTP-Dienst%%1058 Error: (07/05/2013 06:46:29 AM) (Source: Service Control Manager) (User: ) Description: RAS-VerbindungsverwaltungSSTP-Dienst%%1058 Error: (07/05/2013 06:46:29 AM) (Source: Service Control Manager) (User: ) Description: RAS-VerbindungsverwaltungSSTP-Dienst%%1058 Error: (07/05/2013 06:46:29 AM) (Source: Service Control Manager) (User: ) Description: RAS-VerbindungsverwaltungSSTP-Dienst%%1058 Error: (07/05/2013 06:46:29 AM) (Source: Service Control Manager) (User: ) Description: RAS-VerbindungsverwaltungSSTP-Dienst%%1058 Error: (07/05/2013 06:46:29 AM) (Source: Service Control Manager) (User: ) Description: RAS-VerbindungsverwaltungSSTP-Dienst%%1058 Error: (07/05/2013 06:46:29 AM) (Source: Service Control Manager) (User: ) Description: RAS-VerbindungsverwaltungSSTP-Dienst%%1058 Microsoft Office Sessions: ========================= ==================== Memory info =========================== Percentage of memory in use: 44% Total physical RAM: 2038.48 MB Available physical RAM: 1123.54 MB Total Pagefile: 4312.26 MB Available Pagefile: 3483.96 MB Total Virtual: 2047.88 MB Available Virtual: 1896.83 MB ==================== Drives ================================ Drive c: (Windows) (Fixed) (Total:74.52 GB) (Free:27.19 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (Datensicherung) (Fixed) (Total:66.71 GB) (Free:53.37 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 149 GB) (Disk ID: 6C2421E8) Partition 1: (Not Active) - (Size=8 GB) - (Type=1C) Partition 2: (Active) - (Size=75 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=67 GB) - (Type=OF Extended) ==================== End Of Log ============================ Geändert von TuxedoMask (05.07.2013 um 10:34 Uhr) |
Downloade dir bitte
Poste bitte den Inhalt hier. Downloade dir bitte Farbar's MiniToolBox auf deinen Desktop und starte das Tool Setze einen Haken bei folgenden Einträgen
__________________ |
Windows Vista Update schlägt fehl, teilweise kein Internet...Code:
ATTFilter MiniToolBox by Farbar Version: 16-06-2013 Ran by User (administrator) on 06-07-2013 at 10:17:22 Running from "C:\Users\User\Bewerbungen\Desktop\Sicherheit" Windows Vista (TM) Home Basic Service Pack 2 (X86) Boot Mode: Normal *************************************************************************** ========================= Flush DNS: =================================== Windows-IP-Konfiguration Der DNS-Aufl”sungscache wurde geleert. ========================= IE Proxy Settings: ============================== Proxy is not enabled. No Proxy Server is set. "Reset IE Proxy Settings": IE Proxy Settings were reset. ========================= FF Proxy Settings: ============================== "Reset FF Proxy Settings": Firefox Proxy settings were reset. ========================= Hosts content: ================================= ::1 localhost localhost fr.a2dfp.net m.fr.a2dfp.net ad.a8.net asy.a8ww.net abcstats.com a.abv.bg adserver.abv.bg adv.abv.bg bimg.abv.bg ca.abv.bg www2.a-counter.kiev.ua track.acclaimnetwork.com accuserveadsystem.com www.accuserveadsystem.com achmedia.com csh.actiondesk.com www.activemeter.com ads.activepower.net stat.active24stats.nl cms.ad2click.nl There are 12637 more lines starting with "" ========================= IP Configuration: ================================ Atheros AR5007EG Wireless Network Adapter = Drahtlosnetzwerkverbindung (Connected) Realtek RTL8139/810x Family Fast Ethernet NIC = LAN-Verbindung (Media disconnected) # ---------------------------------- # IPv4-Konfiguration # ---------------------------------- pushd interface ipv4 reset set global defaultcurhoplimit=64 icmpredirects=enabled set interface interface="Drahtlosnetzwerkverbindung" forwarding=disabled advertise=disabled mtu=1492 metric=0 siteprefixlength=0 nud=disabled routerdiscovery=disabled managedaddress=disabled otherstateful=disabled weakhostsend=disabled weakhostreceive=disabled ignoredefaultroutes=disabled set subinterface interface= subinterface=wireless_0 mtu=1492 set subinterface interface= subinterface=ethernet_4 mtu=1492 set subinterface interface= subinterface=loopback_0 mtu=1492 popd # Ende der IPv4-Konfiguration Windows-IP-Konfiguration Hostname . . . . . . . . . . . . : User-PC Prim„res DNS-Suffix . . . . . . . : Knotentyp . . . . . . . . . . . . : Hybrid IP-Routing aktiviert . . . . . . : Nein WINS-Proxy aktiviert . . . . . . : Nein DNS-Suffixsuchliste . . . . . . . : fritz.box Drahtlos-LAN-Adapter Drahtlosnetzwerkverbindung: Verbindungsspezifisches DNS-Suffix: fritz.box Beschreibung. . . . . . . . . . . : Atheros AR5007EG Wireless Network Adapter Physikalische Adresse . . . . . . : 00-15-AF-A4-E2-85 DHCP aktiviert. . . . . . . . . . : Ja Autokonfiguration aktiviert . . . : Ja Verbindungslokale IPv6-Adresse . : fe80::9963:50a6:a6d6:ea27%9(Bevorzugt) IPv4-Adresse . . . . . . . . . . : Subnetzmaske . . . . . . . . . . : Lease erhalten. . . . . . . . . . : Samstag, 6. Juli 2013 10:00:59 Lease l„uft ab. . . . . . . . . . : Dienstag, 16. Juli 2013 10:00:59 Standardgateway . . . . . . . . . : DHCP-Server . . . . . . . . . . . : DHCPv6-IAID . . . . . . . . . . . : 167777711 DHCPv6-Client-DUID. . . . . . . . : 00-01-00-01-0F-B6-10-DD-00-1F-C6-E4-5E-A5 DNS-Server . . . . . . . . . . . : NetBIOS ber TCP/IP . . . . . . . : Deaktiviert Ethernet-Adapter LAN-Verbindung: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Realtek RTL8139/810x Family Fast Ethernet NIC Physikalische Adresse . . . . . . : 00-1F-C6-E4-5E-A5 DHCP aktiviert. . . . . . . . . . : Ja Autokonfiguration aktiviert . . . : Ja Tunneladapter LAN-Verbindung* 6: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : isatap.fritz.box Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0 DHCP aktiviert. . . . . . . . . . : Nein Autokonfiguration aktiviert . . . : Ja Tunneladapter LAN-Verbindung* 9: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Teredo Tunneling Pseudo-Interface Physikalische Adresse . . . . . . : 02-00-54-55-4E-01 DHCP aktiviert. . . . . . . . . . : Nein Autokonfiguration aktiviert . . . : Ja Tunneladapter LAN-Verbindung* 13: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : 6TO4 Adapter Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0 DHCP aktiviert. . . . . . . . . . : Nein Autokonfiguration aktiviert . . . : Ja Tunneladapter LAN-Verbindung* 14: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : 6TO4 Adapter Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0 DHCP aktiviert. . . . . . . . . . : Nein Autokonfiguration aktiviert . . . : Ja Tunneladapter LAN-Verbindung* 15: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : isatap.{23D27E66-0F43-4CFC-BBF5-3B05D4AD727E} Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0 DHCP aktiviert. . . . . . . . . . : Nein Autokonfiguration aktiviert . . . : Ja Server: fritz.box Address: Name: google.com Addresses: 2a00:1450:4016:800::100e Ping wird ausgefhrt fr google.com [] mit 32 Bytes Daten: Antwort von Bytes=32 Zeit=31ms TTL=57 Antwort von Bytes=32 Zeit=31ms TTL=57 Ping-Statistik fr Pakete: Gesendet = 2, Empfangen = 2, Verloren = 0 (0% Verlust), Ca. Zeitangaben in Millisek.: Minimum = 31ms, Maximum = 31ms, Mittelwert = 31ms Server: fritz.box Address: Name: yahoo.com Addresses: Ping wird ausgefhrt fr yahoo.com [] mit 32 Bytes Daten: Antwort von Bytes=32 Zeit=207ms TTL=53 Antwort von Bytes=32 Zeit=205ms TTL=53 Ping-Statistik fr Pakete: Gesendet = 2, Empfangen = 2, Verloren = 0 (0% Verlust), Ca. Zeitangaben in Millisek.: Minimum = 205ms, Maximum = 207ms, Mittelwert = 206ms Ping wird ausgefhrt fr mit 32 Bytes Daten: Antwort von Bytes=32 Zeit<1ms TTL=64 Antwort von Bytes=32 Zeit<1ms TTL=64 Ping-Statistik fr Pakete: Gesendet = 2, Empfangen = 2, Verloren = 0 (0% Verlust), Ca. Zeitangaben in Millisek.: Minimum = 0ms, Maximum = 0ms, Mittelwert = 0ms =========================================================================== Schnittstellenliste 9 ...00 15 af a4 e2 85 ...... Atheros AR5007EG Wireless Network Adapter 8 ...00 1f c6 e4 5e a5 ...... Realtek RTL8139/810x Family Fast Ethernet NIC 1 ........................... Software Loopback Interface 1 17 ...00 00 00 00 00 00 00 e0 isatap.fritz.box 10 ...02 00 54 55 4e 01 ...... Teredo Tunneling Pseudo-Interface 14 ...00 00 00 00 00 00 00 e0 6TO4 Adapter 15 ...00 00 00 00 00 00 00 e0 6TO4 Adapter 16 ...00 00 00 00 00 00 00 e0 isatap.{23D27E66-0F43-4CFC-BBF5-3B05D4AD727E} =========================================================================== IPv4-Routentabelle =========================================================================== Aktive Routen: Netzwerkziel Netzwerkmaske Gateway Schnittstelle Metrik 25 Auf Verbindung 306 Auf Verbindung 306 Auf Verbindung 306 Auf Verbindung 281 Auf Verbindung 281 Auf Verbindung 281 Auf Verbindung 306 Auf Verbindung 281 Auf Verbindung 306 Auf Verbindung 281 =========================================================================== St„ndige Routen: Keine IPv6-Routentabelle =========================================================================== Aktive Routen: If Metrik Netzwerkziel Gateway 1 306 ::1/128 Auf Verbindung 9 281 fe80::/64 Auf Verbindung 9 281 fe80::9963:50a6:a6d6:ea27/128 Auf Verbindung 1 306 ff00::/8 Auf Verbindung 9 281 ff00::/8 Auf Verbindung =========================================================================== St„ndige Routen: Keine ========================= Winsock entries ===================================== Catalog5 01 C:\Windows\system32\NLAapi.dll [48128] (Microsoft Corporation) Catalog5 02 C:\Windows\system32\napinsp.dll [50176] (Microsoft Corporation) Catalog5 03 C:\Windows\system32\pnrpnsp.dll [62464] (Microsoft Corporation) Catalog5 04 C:\Windows\system32\pnrpnsp.dll [62464] (Microsoft Corporation) Catalog5 05 C:\Windows\system32\wshbth.dll [34304] (Microsoft Corporation) Catalog5 06 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog5 07 C:\Windows\system32\winrnr.dll [19968] (Microsoft Corporation) Catalog9 01 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG) Catalog9 02 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG) Catalog9 03 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG) Catalog9 04 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG) Catalog9 05 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 06 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 07 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 08 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 09 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 10 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 11 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 12 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG) Catalog9 13 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 14 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 15 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 16 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 17 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 18 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 19 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 20 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 21 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 22 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 23 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 24 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 25 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 26 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 27 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 28 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 29 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 30 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 31 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 32 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 33 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) Catalog9 34 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation) ========================= Event log errors: =============================== Application errors: ================== System errors: ============= Microsoft Office Sessions: ========================= =========================== Installed Programs ============================ 7-Zip 9.20 Adobe Flash Player 11 ActiveX (Version: 11.7.700.224) Adobe Flash Player 11 Plugin (Version: 11.7.700.224) Adobe Reader X (10.1.7) - Deutsch (Version: 10.1.7) Atheros Client Installation Program (Version: 7.0) Avira Antivirus Premium (Version: Facebook Messenger 2.1.4651.0 (Version: 2.1.4651.0) Google Chrome (Version: 27.0.1453.116) Google Toolbar for Internet Explorer (Version: 1.0.0) Intel(R) Graphics Media Accelerator Driver LightScribe (Version: Malwarebytes Anti-Malware Version (Version: Microsoft .NET Framework 3.5 Language Pack SP1 - DEU Microsoft .NET Framework 3.5 Language Pack SP1 - deu (Version: 3.5.30729) Microsoft .NET Framework 3.5 SP1 Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft Application Error Reporting (Version: 12.0.6012.5000) Microsoft Choice Guard (Version: Microsoft Office 2007 Service Pack 3 (SP3) Microsoft Office Access MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Enterprise 2007 (Version: 12.0.6612.1000) Microsoft Office Excel MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office File Validation Add-In (Version: 14.0.5130.5003) Microsoft Office Groove MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office InfoPath MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Live Add-in 1.5 (Version: 2.0.4024.1) Microsoft Office OneNote MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Outlook MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office PowerPoint MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000) Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000) Microsoft Office Proof (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Proof (Italian) 2007 (Version: 12.0.6612.1000) Microsoft Office Proofing (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) Microsoft Office Publisher MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Shared MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Word MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219) Motorola SM56 Data Fax Modem Mozilla Firefox 22.0 (x86 de) (Version: 22.0) Mozilla Maintenance Service (Version: 22.0) MSXML 4.0 SP3 Parser (KB2758694) (Version: 4.30.2117.0) MSXML 4.0 SP3 Parser (Version: 4.30.2100.0) neroxml (Version: 1.0.0) Picasa 3 (Version: 3.9) Power4Gear eXtreme (Version: 1.00.0014) Realtek 8139 and 8139C+ Ethernet Network Card Driver for Windows Vista (Version: 1.00.0000) Realtek High Definition Audio Driver (Version: RICOH R5C83x/84x Flash Media Controller Driver Ver.3.52.02 (Version: 3.52.02) Secunia PSI ( (Version: Skype™ 6.5 (Version: 6.5.158) SpywareBlaster 5.0 (Version: 5.0.0) Synaptics Pointing Device Driver (Version: Update for 2007 Microsoft Office System (KB967642) Update for Microsoft .NET Framework 3.5 SP1 (KB2836940) (Version: 1) Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (Version: 1) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2596802) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2817327) 32-Bit Edition Update für Microsoft Office Excel 2007 Help (KB963678) Update für Microsoft Office Outlook 2007 Help (KB963677) Update für Microsoft Office Powerpoint 2007 Help (KB963669) Update für Microsoft Office Word 2007 Help (KB963665) VLC media player 2.0.7 (Version: 2.0.7) Windows Live OneCare safety scanner WinPatrol (Version: 28.1.2013.0) WOT for Internet Explorer (Version: ========================= Memory info: =================================== Percentage of memory in use: 56% Total physical RAM: 2038.48 MB Available physical RAM: 883.52 MB Total Pagefile: 4314.23 MB Available Pagefile: 3171.38 MB Total Virtual: 2047.88 MB Available Virtual: 1946.73 MB ========================= Partitions: ===================================== 1 Drive c: (Windows) (Fixed) (Total:74.52 GB) (Free:28.44 GB) NTFS 2 Drive d: (Datensicherung) (Fixed) (Total:66.71 GB) (Free:52.38 GB) NTFS ========================= Users: ======================================== Benutzerkonten fr \\ Administrator Gast User Der Befehl wurde mit einem oder mehreren Fehlern ausgefhrt. ========================= Minidump Files ================================== C:\Windows\Minidump\Mini013013-01.dmp **** End of log **** Code:
ATTFilter Farbar Service Scanner Version: 27-06-2013 Ran by User (administrator) on 06-07-2013 at 10:25:18 Running from "C:\Users\User\Bewerbungen\Desktop\Sicherheit" Microsoft® Windows Vista™ Home Basic Service Pack 2 (X86) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Google IP is accessible. Google.com is accessible. Yahoo.com is accessible. Windows Firewall: ============= Firewall Disabled Policy: ================== System Restore: ============ System Restore Disabled Policy: ======================== Security Center: ============ Windows Update: ============ Windows Autoupdate Disabled Policy: ============================ Windows Defender: ============== Other Services: ============== File Check: ======== C:\Windows\system32\nsisvc.dll => MD5 is legit C:\Windows\system32\Drivers\nsiproxy.sys => MD5 is legit C:\Windows\system32\dhcpcsvc.dll => MD5 is legit C:\Windows\system32\Drivers\afd.sys => MD5 is legit C:\Windows\system32\Drivers\tdx.sys => MD5 is legit C:\Windows\system32\Drivers\tcpip.sys [2013-06-12 09:22] - [2013-05-08 06:37] - 0905576 ____A (Microsoft Corporation) 548E198BAE21EFC21F8B5F0C1728AD27 C:\Windows\system32\dnsrslvr.dll => MD5 is legit C:\Windows\system32\mpssvc.dll => MD5 is legit C:\Windows\system32\bfe.dll => MD5 is legit C:\Windows\system32\Drivers\mpsdrv.sys => MD5 is legit C:\Windows\system32\SDRSVC.dll => MD5 is legit C:\Windows\system32\vssvc.exe => MD5 is legit C:\Windows\system32\wscsvc.dll => MD5 is legit C:\Windows\system32\wbem\WMIsvc.dll => MD5 is legit C:\Windows\system32\wuaueng.dll => MD5 is legit C:\Windows\system32\qmgr.dll => MD5 is legit C:\Windows\system32\es.dll => MD5 is legit C:\Windows\system32\cryptsvc.dll [2013-06-12 09:22] - [2013-04-24 06:00] - 0133120 ____A (Microsoft Corporation) 3EDE4C1F9672C972479201544969ADCB C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit C:\Windows\system32\ipnathlp.dll => MD5 is legit C:\Windows\system32\iphlpsvc.dll => MD5 is legit C:\Windows\system32\svchost.exe => MD5 is legit C:\Windows\system32\rpcss.dll => MD5 is legit **** End of log **** |
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
