|
Alles rund um Windows: Google Chrome- Systemabsturz (Freezing)Windows 7 Hilfe zu allen Windows-Betriebssystemen: Windows XP, Windows Vista, Windows 7, Windows 8(.1) und Windows 10 / Windows 11- als auch zu sämtlicher Windows-Software. Alles zu Windows 10 ist auch gerne willkommen. Bitte benenne etwaige Fehler oder Bluescreens unter Windows mit dem Wortlaut der Fehlermeldung und Fehlercode. Erste Schritte für Hilfe unter Windows. |
01.08.2013, 04:32 | #1 |
| Problem: Google Chrome- Systemabsturz (Freezing) Hallo Trojaner-Board Gemeinde Ich habe ein Problem mit Google Chrome, und zwar kommt es bei einigen Ausführungen in Google Chrome zu einem Systemstillstand (Freezing, kein Bluescreen) . So wie es aussieht bei Anwendungen von bestimmten Scripten. Ich weiß momentan nicht weiter habe schon einiges probiert darunter auch schon die Löschung von Chrome, sowie die Suche nach Schad- und Adware. Ich habe zuvor bereits Hilfe in einem anderen Forum aufgesucht bis jetzt haben dort die Lösungsvorschläge mir nicht weiterhelfen können. Link: hxxp://www.drxwindows.de/programme-und-tools/66522-google-chrome-systemabsturz-freezing.html Ich hoffe das man mir hier weiterhelfen kann. MfG Chesspower88 |
01.08.2013, 13:12 | #2 |
/// Helfer-Team | Google Chrome- Systemabsturz (Freezing) Anleitung / Hilfe"Dr. Windows" ist gut fuer Silversurfer Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
01.08.2013, 15:49 | #3 |
| Google Chrome- Systemabsturz (Freezing) Details Hier sind die erstellten Logfiles mit FRST64.exe.
__________________Gruß Chesspower FRST.txt: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 30-07-2013 03 Ran by Gerd (administrator) on 01-08-2013 16:27:01 Running from C:\Users\Gerd\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe (Check Point Software Technologies LTD) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe (AMD) C:\Windows\system32\atieclxx.exe (Check Point Software Technologies) C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe () C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint\Apoint.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Microsoft Corporation) C:\Program Files\Microsoft Device Center\ipoint.exe (Microsoft Corporation) C:\Program Files\Microsoft Device Center\itype.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint\ApMsgFwd.exe (Sony Corporation) c:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe (EmTec Innovative Software) C:\Program Files (x86)\AtomSync\atomsync.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Sony Corporation) C:\Program Files (x86)\SONY\VAIO Event Service\VESMgr.exe (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint\Apntex.exe (Check Point Software Technologies LTD) C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe (ALPS) C:\Program Files\Apoint\Apvfb.exe (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe () C:\Program Files (x86)\Razer\Lachesis\razerhid.exe (Sony Corporation) C:\Program Files (x86)\SONY\VAIO Event Service\VESMgrSub.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Razer Inc.) C:\Program Files (x86)\Razer\Lachesis\razerofa.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe () C:\Users\Gerd\Logox für alle Anwendungen\Logox 4 Erweiterung.exe (G DATA Software AG) C:\PROGRA~2\COMMON~1\LOGOX4~1.0\Logox4.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Apoint] - C:\Program Files\Apoint\Apoint.exe [208384 2009-11-04] (Alps Electric Co., Ltd.) HKLM\...\Run: [IntelliPoint] - c:\Program Files\Microsoft Device Center\ipoint.exe [2004584 2012-06-26] (Microsoft Corporation) HKLM\...\Run: [IntelliType Pro] - c:\Program Files\Microsoft Device Center\itype.exe [1464928 2012-06-26] (Microsoft Corporation) HKLM\...\Run: [ISW] - [x] HKLM\...\InprocServer32: [Default-cscui] <==== ATTENTION! HKCU\...\Run: [AtomSync] - C:\Program Files (x86)\AtomSync\atomsync.exe [546232 2008-11-17] (EmTec Innovative Software) HKLM-x32\...\Run: [ZoneAlarm] - C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe [73360 2011-11-09] (Check Point Software Technologies LTD) HKLM-x32\...\Run: [Lachesis] - C:\Program Files (x86)\Razer\Lachesis\razerhid.exe [248320 2009-11-10] () BootExecute: autocheck autochk /p \??\X:autocheck autochk * ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://de.wikipedia.org/wiki/Wikipedia:Hauptseite SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - DefaultScope {D67B1DF1-58D4-4491-93B5-F17C5F133D20} URL = hxxp://de.wikipedia.org/w/index.php?title=Spezial:Suche&search={searchTerms} SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKCU - {B4D1E127-FE08-43F0-A8D2-7323A321C978} URL = hxxp://www.resultscan.com/?prt=RstscnAMON&keywords={searchTerms} SearchScopes: HKCU - {D67B1DF1-58D4-4491-93B5-F17C5F133D20} URL = hxxp://de.wikipedia.org/w/index.php?title=Spezial:Suche&search={searchTerms} BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~4\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO: ZoneAlarm Security Engine Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~4\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: SimpleAdblock Class - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files (x86)\Common Files\Simple Adblock\SimpleAdblockx64.dll (Simple Adblock) BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC) BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: WebSpeechBHO Class - {83A30C59-3A50-49E6-9DAF-4923C4EA3C23} - C:\PROGRA~2\COMMON~1\WEBSPE~1.0\LgxIEBar.dll (G DATA Software AG) BHO-x32: ZoneAlarm Security Engine Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: af0.Adblock.BHO - {90EFF544-3981-4d46-85C9-C0361D0931D6} - C:\Windows\\SysWOW64\mscoree.dll (Microsoft Corporation) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: SimpleAdblock Class - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files (x86)\Common Files\Simple Adblock\SimpleAdblock.dll (Simple Adblock) Toolbar: HKLM - ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies) Toolbar: HKLM-x32 - ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies) Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Toolbar: HKCU - ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies) Toolbar: HKCU - No Name - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - No File DPF: HKLM {67DABFBF-D0AB-41FA-9C46-CC0F21721616} hxxp://download.divx.com/player/DivXBrowserPlugin.cab DPF: HKLM-x32 {67DABFBF-D0AB-41FA-9C46-CC0F21721616} hxxp://download.divx.com/player/DivXBrowserPlugin.cab DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File Handler: msdaipp - No CLSID Value - Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File Handler-x32: msdaipp - No CLSID Value - Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Winsock: Catalog5 10 %SystemRoot%\system32\PrxerNsp.dll [56424] () Winsock: Catalog9 01 %SystemRoot%\system32\PrxerDrv.dll [70248] (Initex) Winsock: Catalog9 02 %SystemRoot%\system32\PrxerDrv.dll [70248] (Initex) Winsock: Catalog9 03 %SystemRoot%\system32\PrxerDrv.dll [70248] (Initex) Winsock: Catalog9 04 %SystemRoot%\system32\PrxerDrv.dll [70248] (Initex) Winsock: Catalog9 16 %SystemRoot%\system32\vsocklib.dll [63088] (VMware, Inc.) Winsock: Catalog9 17 %SystemRoot%\system32\vsocklib.dll [63088] (VMware, Inc.) Winsock: Catalog9 18 %SystemRoot%\system32\PrxerDrv.dll [70248] (Initex) Winsock: Catalog5-x64 10 %SystemRoot%\system32\PrxerNsp.dll [57448] () Winsock: Catalog9-x64 01 %SystemRoot%\system32\PrxerDrv.dll [76392] (Initex) Winsock: Catalog9-x64 02 %SystemRoot%\system32\PrxerDrv.dll [76392] (Initex) Winsock: Catalog9-x64 03 %SystemRoot%\system32\PrxerDrv.dll [76392] (Initex) Winsock: Catalog9-x64 04 %SystemRoot%\system32\PrxerDrv.dll [76392] (Initex) Winsock: Catalog9-x64 16 %SystemRoot%\system32\vsocklib.dll [67184] (VMware, Inc.) Winsock: Catalog9-x64 17 %SystemRoot%\system32\vsocklib.dll [67184] (VMware, Inc.) Winsock: Catalog9-x64 18 %SystemRoot%\system32\PrxerDrv.dll [76392] (Initex) FireFox: ======== FF ProfilePath: C:\Users\Gerd\AppData\Roaming\Mozilla\Firefox\Profiles\uxc6fp4v.default FF Homepage: hxxp://www.tagesschau.de/ FF Keyword.URL: hxxp://www.google.com/search?ie=utf-8&mssrc=ms_kwd&mstb=adawaretb&q= FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.0.4 - C:\Program Files\VideoLAN\VLC\npvlc.dll No File FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.4 - C:\Program Files (x86)\VideoLAN\VLC 2.0.4\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Gerd\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Gerd\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File FF Extension: HTTPS-Everywhere - C:\Users\Gerd\AppData\Roaming\Mozilla\Firefox\Profiles\uxc6fp4v.default\Extensions\https-everywhere@eff.org FF Extension: No Name - C:\Users\Gerd\AppData\Roaming\Mozilla\Firefox\Profiles\uxc6fp4v.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi FF Extension: No Name - C:\Users\Gerd\AppData\Roaming\Mozilla\Firefox\Profiles\uxc6fp4v.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi FF Extension: No Name - C:\Users\Gerd\AppData\Roaming\Mozilla\Firefox\Profiles\uxc6fp4v.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM\...\Firefox\Extensions: [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}] C:\Program Files\CheckPoint\ZAForceField\TrustChecker FF Extension: No Name - C:\Program Files\CheckPoint\ZAForceField\TrustChecker FF HKLM-x32\...\Firefox\Extensions: [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}] C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker FF Extension: ZoneAlarm Security Engine - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 Chrome: ======= CHR HomePage: hxxp://de.wikipedia.org/wiki/Wikipedia:Hauptseite CHR RestoreOnStartup: "hxxp://www.startfenster.com" CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) CHR Plugin: (AdobeAAMDetect) - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems) CHR Plugin: (DivX VOD Helper Plug-in) - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) CHR Plugin: (DivX Plus Web Player) - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) CHR Plugin: (Java(TM) Platform SE 7 U25) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) CHR Plugin: (VLC Web Plugin) - C:\Program Files (x86)\VideoLAN\VLC 2.0.4\npvlc.dll (VideoLAN) CHR Plugin: (Windows Live\u0099 Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () CHR Plugin: (Java Deployment Toolkit 7.0.250.17) - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) CHR Extension: (Google Translate) - C:\Users\Gerd\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb\1.2.4_0 CHR Extension: (Magic Actions for YouTube\u2122) - C:\Users\Gerd\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif\6.0.3_0 CHR Extension: (YouTube) - C:\Users\Gerd\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\Users\Gerd\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (Stylish) - C:\Users\Gerd\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjnbnpbmkenffdnngjfgmeleoegfcffe\1.2_0 CHR Extension: (AdBlock) - C:\Users\Gerd\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.4_0 CHR Extension: (FVD Downloader) - C:\Users\Gerd\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfmhcpmkbdkbgbmkjoiopeeegenkdikp\5.3.6_0 CHR Extension: (Skype Click to Call) - C:\Users\Gerd\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.9.0.9216_0 CHR Extension: () - C:\Users\Gerd\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.172_0 CHR Extension: (ScriptSafe) - C:\Users\Gerd\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiigbmnaadbkfbmpbfijlflahbdbdgdf\1.0.6.16_0 CHR Extension: (Click&Clean App) - C:\Users\Gerd\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp\8.0_0 CHR Extension: (Gmail) - C:\Users\Gerd\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 CHR Extension: (Black Black Chrome Theme Purple Highlight) - C:\Users\Gerd\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnhjkffljijlebgbmppbgeoikaafbbek\3.4_0 CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx CHR StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Services (Whitelisted) ================= S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) R2 DokanMounter; C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe [14848 2011-01-10] () R2 IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [827520 2011-11-03] (Check Point Software Technologies) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) S4 Nero BackItUp Scheduler 3; C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe [836904 2007-09-10] (Nero AG) S3 NMIndexingService; C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe [382248 2007-08-21] (Nero AG) S3 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [75064 2013-06-16] () S3 Roxio UPnP Renderer 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe [313840 2009-08-31] (Sonic Solutions) S2 Roxio Upnp Server 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe [362992 2009-08-31] (Sonic Solutions) R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [183896 2013-07-08] (Sandboxie Holdings, LLC) S3 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960 2008-09-18] (ArcSoft, Inc.) S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe [74496 2010-09-27] (Sony Corporation) S3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [887000 2011-01-20] (Sony Corporation) S4 VMwareHostd; C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [11839488 2011-11-13] () R2 vsmon; C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe [2420616 2011-11-09] (Check Point Software Technologies LTD) S4 McAfee SiteAdvisor Service; ==================== Drivers (Whitelisted) ==================== R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.) S3 AVerAF35; C:\Windows\System32\Drivers\AVerAF35.sys [511232 2009-10-19] (AVerMedia TECHNOLOGIES, Inc.) S3 Bcfilter; C:\Windows\System32\DRIVERS\bcfilter.sys [30784 2010-10-01] (Jetico, Inc.) S3 BcfilterMP; C:\Windows\System32\DRIVERS\bcfilter.sys [30784 2010-10-01] (Jetico, Inc.) R2 bcfsrm; C:\Windows\System32\drivers\bcfsrm.sys [20544 2010-10-01] (Jetico, Inc.) R1 bcftdi; C:\Windows\System32\Drivers\bcftdi.sys [68672 2010-10-01] (Jetico, Inc.) R1 bc_hash_f; C:\Windows\System32\Drivers\bc_hash_f.sys [17984 2010-10-01] (Jetico, Inc.) R1 bc_ip_f; C:\Windows\System32\Drivers\bc_ip_f.sys [38976 2010-10-01] (Jetico, Inc.) R0 bc_ngn; C:\Windows\System32\Drivers\bc_ngn.sys [22080 2010-10-01] (Jetico, Inc.) R1 bc_pat_f; C:\Windows\System32\Drivers\bc_pat_f.sys [17984 2010-10-01] (Jetico, Inc.) R1 bc_prt_f; C:\Windows\System32\Drivers\bc_prt_f.sys [19520 2010-10-01] (Jetico, Inc.) R1 bc_tdi_f; C:\Windows\System32\Drivers\bc_tdi_f.sys [23104 2010-10-01] (Jetico, Inc.) S3 CPen; C:\Windows\System32\Drivers\CPen.sys [21184 2010-04-08] () R2 Dokan; C:\Windows\system32\drivers\dokan.sys [120408 2011-01-10] (Windows (R) Win 7 DDK provider) R2 Dokan; C:\Windows\system32\drivers\dokan.sys [120408 2011-01-10] (Windows (R) Win 7 DDK provider) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [256576 2011-04-19] (DT Soft Ltd) S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [16776 2011-07-29] () S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [16776 2011-07-29] () S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [9096 2011-07-29] () S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [9096 2011-07-29] () R2 ISWKL; C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [33672 2011-11-03] (Check Point Software Technologies) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) S3 OXUDIDRV; C:\Windows\system32\Drivers\OXUDIDRV_X64.sys [31280 2010-05-25] () R1 SbFw; C:\Windows\System32\drivers\SbFw.sys [253528 2011-04-05] (Sunbelt Software, Inc.) S3 SBFWIMCL; C:\Windows\System32\DRIVERS\sbfwim.sys [84568 2011-02-08] (Sunbelt Software, Inc.) R3 SBFWIMCLMP; C:\Windows\System32\DRIVERS\SBFWIM.sys [84568 2011-02-08] (Sunbelt Software, Inc.) S3 sbhips; C:\Windows\System32\drivers\sbhips.sys [60504 2011-04-05] (Sunbelt Software, Inc.) R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [199384 2013-07-08] (Sandboxie Holdings, LLC) R1 SbTis; C:\Windows\System32\drivers\sbtis.sys [94296 2011-04-05] (Sunbelt Software, Inc.) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2010-10-06] () S3 TVICHW64; C:\Windows\system32\DRIVERS\TVICHW64.SYS [21200 2010-12-19] (EnTech Taiwan) R1 UimBus; C:\Windows\System32\DRIVERS\uimx64.sys [90960 2013-03-15] (Windows (R) 2000 DDK provider) R1 Uim_IM; C:\Windows\System32\Drivers\Uim_IMx64.sys [633680 2013-03-15] (Paragon) R1 Uim_VIM; C:\Windows\System32\Drivers\uim_vimx64.sys [390352 2013-03-15] (Paragon) S3 VaneFltr; C:\Windows\System32\drivers\Lachesis.sys [29952 2009-10-16] (Razer (Asia-Pacific) Pte Ltd) R1 Vsdatant; C:\Windows\System32\DRIVERS\vsdatant.sys [454232 2011-05-07] (Check Point Software Technologies LTD) R3 yukonw7; C:\Windows\System32\DRIVERS\yk62x64.sys [395264 2009-11-12] () U3 a2w7z93n; C:\Windows\System32\Drivers\a2w7z93n.sys [0 ] (Microsoft Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [x] S3 cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x64.sys [x] S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [x] S0 Lbd; system32\DRIVERS\Lbd.sys [x] S1 SBRE; \??\C:\Windows\system32\drivers\SBREdrv.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-01 16:26 - 2013-08-01 16:26 - 00000000 ____D C:\FRST 2013-08-01 16:23 - 2013-08-01 16:23 - 01781589 _____ (Farbar) C:\Users\Gerd\Desktop\FRST64.exe 2013-07-31 19:22 - 2013-07-31 19:22 - 00000316 _____ C:\Windows\PFRO.log 2013-07-31 18:33 - 2013-07-31 18:33 - 00002215 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2013-07-31 18:32 - 2013-07-31 18:32 - 00784888 _____ (Google Inc.) C:\Users\Gerd\Downloads\ChromeSetup.exe 2013-07-31 18:30 - 2013-07-31 18:30 - 00176840 _____ C:\Users\Gerd\AppData\Local\GDIPFONTCACHEV1.DAT 2013-07-31 18:29 - 2013-08-01 16:21 - 00000224 _____ C:\Windows\setupact.log 2013-07-31 18:29 - 2013-07-31 18:29 - 05120704 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-31 18:29 - 2013-07-31 18:29 - 00000000 _____ C:\Windows\setuperr.log 2013-07-31 17:47 - 2013-07-31 17:47 - 00001026 _____ C:\Users\Public\Desktop\VLC media player.lnk 2013-07-31 16:53 - 2013-07-31 16:53 - 00903080 _____ (Oracle Corporation) C:\Users\Gerd\Downloads\chromeinstall-7u25.exe 2013-07-30 21:56 - 2013-07-30 21:56 - 00000874 _____ C:\Users\Gerd\Desktop\Sandboxed Web Browser.lnk 2013-07-30 21:48 - 2013-07-30 21:48 - 00000000 ____D C:\Users\Gerd\AppData\Local\Macromedia 2013-07-30 21:32 - 2013-07-30 21:32 - 00001305 _____ C:\AdwCleaner[S7].txt 2013-07-30 21:31 - 2013-07-30 21:32 - 00001243 _____ C:\AdwCleaner[R9].txt 2013-07-30 21:17 - 2013-07-30 23:18 - 00001810 _____ C:\Windows\Sandboxie.ini 2013-07-30 21:17 - 2013-07-30 21:17 - 00000000 ____D C:\Program Files\Sandboxie 2013-07-30 21:16 - 2013-07-30 21:16 - 02590808 _____ (Sandboxie Holdings, LLC) C:\Users\Gerd\Downloads\SandboxieInstall.exe 2013-07-30 19:35 - 2013-07-30 19:35 - 00002234 _____ C:\AdwCleaner[S6].txt 2013-07-30 19:34 - 2013-07-30 19:35 - 00002172 _____ C:\AdwCleaner[R8].txt 2013-07-30 19:24 - 2013-07-30 19:25 - 00002112 _____ C:\AdwCleaner[R7].txt 2013-07-30 19:24 - 2013-07-30 19:24 - 00666633 _____ C:\Users\Gerd\Downloads\adwcleaner06.exe 2013-07-30 18:05 - 2010-11-20 14:40 - 00379342 ___RH C:\bootmgr~2 2013-07-30 18:05 - 2010-11-20 14:40 - 00379342 ___RH C:\bootmgr 2013-07-20 13:27 - 2013-07-20 13:27 - 00003544 ____N C:\bootsqm.dat 2013-07-20 08:51 - 2013-07-20 08:51 - 00702176 _____ C:\Users\Gerd\Downloads\4684.tmp 2013-07-20 08:33 - 2013-07-20 08:36 - 00000000 ____D C:\Windows\system32\MRT 2013-07-10 23:57 - 2013-06-12 01:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-10 23:57 - 2013-06-12 01:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-10 23:57 - 2013-06-12 01:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-10 23:57 - 2013-06-12 01:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-10 23:57 - 2013-06-12 01:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-10 23:57 - 2013-06-12 01:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-10 23:57 - 2013-06-12 01:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-07-10 23:57 - 2013-06-12 01:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-10 23:57 - 2013-06-12 01:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-10 23:57 - 2013-06-12 01:42 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-07-10 23:57 - 2013-06-12 01:42 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-07-10 23:57 - 2013-06-12 01:42 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-07-10 23:57 - 2013-06-12 01:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-07-10 23:57 - 2013-06-12 01:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-07-10 23:57 - 2013-06-12 01:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-07-10 23:57 - 2013-06-12 01:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-07-10 23:57 - 2013-06-12 01:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-07-10 23:57 - 2013-06-12 01:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-07-10 23:57 - 2013-06-12 01:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-07-10 23:57 - 2013-06-12 01:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-07-10 23:57 - 2013-06-12 01:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-07-10 23:57 - 2013-06-12 01:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-07-10 23:57 - 2013-06-12 01:25 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-07-10 23:57 - 2013-06-12 01:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-07-10 23:57 - 2013-06-12 01:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-07-10 23:57 - 2013-06-12 01:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-07-10 23:57 - 2013-06-12 01:25 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-07-10 23:57 - 2013-06-12 00:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-07-10 23:57 - 2013-06-12 00:50 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-07-10 23:57 - 2013-06-07 05:22 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-07-10 23:57 - 2013-06-07 04:37 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-07-10 19:39 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2013-07-10 19:39 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-07-10 19:39 - 2013-05-06 08:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-07-10 19:39 - 2013-05-06 06:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-07-10 19:38 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-07-10 19:38 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-07-10 19:38 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-07-08 15:00 - 2013-07-08 16:48 - 333333335 _____ C:\Users\Gerd\Downloads\W8P.x64.AU.F13-MCU.part12.rar 2013-07-06 16:10 - 2013-07-06 17:59 - 333333333 _____ C:\Users\Gerd\Downloads\W8P.x64.AU.F13-MCU.part11.rar 2013-07-06 13:49 - 2013-07-06 15:37 - 333333333 _____ C:\Users\Gerd\Downloads\W8P.x64.AU.F13-MCU.part10.rar 2013-07-02 15:43 - 2013-07-02 17:31 - 333333333 _____ C:\Users\Gerd\Downloads\W8P.x64.AU.F13-MCU.part09.rar 2013-07-02 08:32 - 2013-07-02 10:21 - 333333335 _____ C:\Users\Gerd\Downloads\W8P.x64.AU.F13-MCU.part08.rar ==================== One Month Modified Files and Folders ======= 2013-08-01 16:26 - 2013-08-01 16:26 - 00000000 ____D C:\FRST 2013-08-01 16:23 - 2013-08-01 16:23 - 01781589 _____ (Farbar) C:\Users\Gerd\Desktop\FRST64.exe 2013-08-01 16:21 - 2013-07-31 18:29 - 00000224 _____ C:\Windows\setupact.log 2013-08-01 16:21 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-07-31 19:53 - 2012-08-30 06:27 - 01560256 _____ C:\Windows\WindowsUpdate.log 2013-07-31 19:52 - 2009-07-14 06:45 - 00022752 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-07-31 19:52 - 2009-07-14 06:45 - 00022752 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-07-31 19:22 - 2013-07-31 19:22 - 00000316 _____ C:\Windows\PFRO.log 2013-07-31 18:57 - 2012-04-02 17:20 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-31 18:33 - 2013-07-31 18:33 - 00002215 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2013-07-31 18:33 - 2010-08-06 17:30 - 00000000 ____D C:\Program Files (x86)\Google 2013-07-31 18:32 - 2013-07-31 18:32 - 00784888 _____ (Google Inc.) C:\Users\Gerd\Downloads\ChromeSetup.exe 2013-07-31 18:30 - 2013-07-31 18:30 - 00176840 _____ C:\Users\Gerd\AppData\Local\GDIPFONTCACHEV1.DAT 2013-07-31 18:29 - 2013-07-31 18:29 - 05120704 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-31 18:29 - 2013-07-31 18:29 - 00000000 _____ C:\Windows\setuperr.log 2013-07-31 18:26 - 2011-07-11 06:29 - 00000000 ____D C:\Users\Gerd\Documents\Reg File 2013-07-31 18:25 - 2011-05-02 22:13 - 00000000 ____D C:\Users\Gerd\AppData\Roaming\TS3Client 2013-07-31 18:25 - 2010-12-29 00:23 - 00000000 ____D C:\Windows\Minidump 2013-07-31 18:25 - 2010-08-21 13:50 - 00000000 ____D C:\Program Files (x86)\Steam 2013-07-31 18:25 - 2010-08-20 16:46 - 00000000 ____D C:\Users\Gerd\AppData\Roaming\Media Player Classic 2013-07-31 18:25 - 2010-05-19 23:44 - 00000000 ____D C:\Windows\Panther 2013-07-31 17:56 - 2012-02-06 19:12 - 00000000 ___RD C:\Users\Gerd\Desktop\Vm Ordner 2013-07-31 17:47 - 2013-07-31 17:47 - 00001026 _____ C:\Users\Public\Desktop\VLC media player.lnk 2013-07-31 16:59 - 2012-03-05 09:04 - 00000000 ____D C:\Program Files (x86)\Java 2013-07-31 16:53 - 2013-07-31 16:53 - 00903080 _____ (Oracle Corporation) C:\Users\Gerd\Downloads\chromeinstall-7u25.exe 2013-07-31 16:21 - 2013-01-23 19:35 - 00000000 ____D C:\Users\Gerd\AppData\Local\Vidalia 2013-07-31 16:20 - 2012-02-05 17:14 - 00000000 ____D C:\Users\Gerd\AppData\Local\VMware 2013-07-31 16:19 - 2012-02-05 17:14 - 00000000 ____D C:\Users\Gerd\AppData\Roaming\VMware 2013-07-31 16:17 - 2012-03-21 07:32 - 00000000 ____D C:\Users\Gerd\AppData\Roaming\tor 2013-07-30 23:18 - 2013-07-30 21:17 - 00001810 _____ C:\Windows\Sandboxie.ini 2013-07-30 22:14 - 2012-04-02 17:20 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-07-30 22:06 - 2010-08-23 18:27 - 00000000 ____D C:\Users\Gerd\AppData\Local\Adobe 2013-07-30 22:05 - 2012-04-02 17:20 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-07-30 22:05 - 2011-05-21 10:54 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-07-30 22:02 - 2012-05-05 16:29 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-07-30 22:00 - 2011-01-18 08:39 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-30 22:00 - 2009-07-14 04:34 - 00000884 _____ C:\Windows\win.ini 2013-07-30 21:56 - 2013-07-30 21:56 - 00000874 _____ C:\Users\Gerd\Desktop\Sandboxed Web Browser.lnk 2013-07-30 21:48 - 2013-07-30 21:48 - 00000000 ____D C:\Users\Gerd\AppData\Local\Macromedia 2013-07-30 21:44 - 2011-10-31 21:52 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-30 21:32 - 2013-07-30 21:32 - 00001305 _____ C:\AdwCleaner[S7].txt 2013-07-30 21:32 - 2013-07-30 21:31 - 00001243 _____ C:\AdwCleaner[R9].txt 2013-07-30 21:21 - 2013-06-08 10:13 - 00000000 ____D C:\Users\Gerd\Desktop\WoT Screenshots XVM Symbole 2013-07-30 21:17 - 2013-07-30 21:17 - 00000000 ____D C:\Program Files\Sandboxie 2013-07-30 21:16 - 2013-07-30 21:16 - 02590808 _____ (Sandboxie Holdings, LLC) C:\Users\Gerd\Downloads\SandboxieInstall.exe 2013-07-30 20:24 - 2010-08-20 16:21 - 00000000 ____D C:\Users\Gerd\AppData\Local\Google 2013-07-30 19:35 - 2013-07-30 19:35 - 00002234 _____ C:\AdwCleaner[S6].txt 2013-07-30 19:35 - 2013-07-30 19:34 - 00002172 _____ C:\AdwCleaner[R8].txt 2013-07-30 19:25 - 2013-07-30 19:24 - 00002112 _____ C:\AdwCleaner[R7].txt 2013-07-30 19:24 - 2013-07-30 19:24 - 00666633 _____ C:\Users\Gerd\Downloads\adwcleaner06.exe 2013-07-30 19:23 - 2011-09-04 12:41 - 00000000 ____D C:\Users\Gerd\Downloads\Programme 2013-07-30 18:42 - 2010-08-29 07:25 - 00000000 ____D C:\Users\Gerd\AppData\Roaming\TrueCrypt 2013-07-20 13:27 - 2013-07-20 13:27 - 00003544 ____N C:\bootsqm.dat 2013-07-20 08:51 - 2013-07-20 08:51 - 00702176 _____ C:\Users\Gerd\Downloads\4684.tmp 2013-07-20 08:36 - 2013-07-20 08:33 - 00000000 ____D C:\Windows\system32\MRT 2013-07-20 08:34 - 2010-12-12 21:34 - 00000069 _____ C:\Windows\NeroDigital.ini 2013-07-17 21:49 - 2010-08-06 18:17 - 00703330 _____ C:\Windows\system32\perfh007.dat 2013-07-17 21:49 - 2010-08-06 18:17 - 00150620 _____ C:\Windows\system32\perfc007.dat 2013-07-17 21:49 - 2009-07-14 07:13 - 01630418 _____ C:\Windows\system32\PerfStringBackup.INI 2013-07-16 14:55 - 2010-08-20 16:16 - 00000000 ____D C:\Users\Gerd 2013-07-15 12:06 - 2010-08-20 16:39 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-07-15 12:06 - 2010-08-20 16:39 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-07-15 11:36 - 2011-08-28 17:36 - 00000000 ____D C:\Program Files (x86)\Trillian 2013-07-14 14:43 - 2010-08-20 16:39 - 00004108 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-07-14 14:43 - 2010-08-20 16:39 - 00003856 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-07-12 20:35 - 2010-09-02 19:11 - 00000000 ____D C:\Users\Gerd\AppData\Roaming\Skype 2013-07-12 20:17 - 2013-03-14 01:47 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-07-12 20:16 - 2013-03-14 01:47 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-11 00:22 - 2010-05-20 04:02 - 00000000 ____D C:\Program Files\Windows Journal 2013-07-11 00:22 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-07-11 00:22 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-07-08 16:48 - 2013-07-08 15:00 - 333333335 _____ C:\Users\Gerd\Downloads\W8P.x64.AU.F13-MCU.part12.rar 2013-07-06 17:59 - 2013-07-06 16:10 - 333333333 _____ C:\Users\Gerd\Downloads\W8P.x64.AU.F13-MCU.part11.rar 2013-07-06 15:37 - 2013-07-06 13:49 - 333333333 _____ C:\Users\Gerd\Downloads\W8P.x64.AU.F13-MCU.part10.rar 2013-07-06 13:12 - 2011-08-31 01:41 - 00050176 _____ C:\Users\Gerd\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2013-07-02 17:31 - 2013-07-02 15:43 - 333333333 _____ C:\Users\Gerd\Downloads\W8P.x64.AU.F13-MCU.part09.rar 2013-07-02 14:13 - 2012-10-16 01:26 - 00000000 ____D C:\Users\Gerd\Desktop\Mumble 2013-07-02 10:21 - 2013-07-02 08:32 - 333333335 _____ C:\Users\Gerd\Downloads\W8P.x64.AU.F13-MCU.part08.rar ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-07-14 22:00 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-07-2013 03 Ran by Gerd at 2013-08-01 16:28:29 Running from C:\Users\Gerd\Desktop Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= (De)Coder 4.1 Public Beta 4b (x32 Version: 4.1.0.0) 7-Zip 9.20 (x64 edition) (Version: 9.20.00.0) aborange Crypter - Deinstallation (x32 Version: 3.00) ACE COMBAT ASSAULT HORIZON Enhanced Edition (x32) AdblockIE (x32 Version: 1.2) Adobe Flash Player 11 ActiveX (x32 Version: 11.7.700.224) Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94) Adobe Photoshop CS5.1 (x32 Version: 12.1) Adobe Reader XI (11.0.03) - Deutsch (x32 Version: 11.0.03) Alps Pointing-device for VAIO AMD Accelerated Video Transcoding (Version: 12.5.100.21219) AMD APP SDK Runtime (Version: 10.0.1084.4) AMD Catalyst Install Manager (Version: 8.0.903.0) AMD Drag and Drop Transcoding (Version: 2.00.0000) AMD Media Foundation Decoders (Version: 1.0.71219.1540) Apple Software Update (x32 Version: 2.1.3.127) ArcSoft Magic-i Visual Effects 2 (x32 Version: 2.0.1.85) ArcSoft WebCam Companion 3 (x32 Version: 3.0.21.278) Audacity 1.2.6 (x32) BEWERBUNGS-MASTER (x32) Blair Witch II (x32 Version: 1.00.0000) Blair Witch Vol. III - Die Elly Kedward Sage (x32) Call of Duty - United Offensive (x32 Version: 1.00.0000) Call of Duty (x32) Call of Duty(R) 2 (x32 Version: 1.2) Call of Duty(R) 2 (x32 Version: 1.3) Call of Duty(R) 2 Patch 1.3 (x32 Version: 1.3) Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32) Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32) Call of Duty: Modern Warfare 2 - Multiplayer (x32) Call of Duty: Modern Warfare 2 (x32) Call of Duty: Modern Warfare 3 - Dedicated Server (x32) Call of Duty: Modern Warfare 3 - Multiplayer (x32) Call of Duty: Modern Warfare 3 (x32) Canon MX330 series MP Drivers Catalyst Control Center - Branding (x32 Version: 1.00.0000) Catalyst Control Center (x32 Version: 2012.1219.1521.27485) Catalyst Control Center Graphics Previews Common (x32 Version: 2012.1219.1521.27485) Catalyst Control Center InstallProxy (x32 Version: 2010.0113.2257.41150) Catalyst Control Center InstallProxy (x32 Version: 2012.1219.1521.27485) Catalyst Control Center Localization All (x32 Version: 2012.1219.1521.27485) CCC Help Chinese Standard (x32 Version: 2012.1219.1520.27485) CCC Help Chinese Traditional (x32 Version: 2012.1219.1520.27485) CCC Help Czech (x32 Version: 2012.1219.1520.27485) CCC Help Danish (x32 Version: 2012.1219.1520.27485) CCC Help Dutch (x32 Version: 2012.1219.1520.27485) CCC Help English (x32 Version: 2012.1219.1520.27485) CCC Help Finnish (x32 Version: 2012.1219.1520.27485) CCC Help French (x32 Version: 2012.1219.1520.27485) CCC Help German (x32 Version: 2012.1219.1520.27485) CCC Help Greek (x32 Version: 2012.1219.1520.27485) CCC Help Hungarian (x32 Version: 2012.1219.1520.27485) CCC Help Italian (x32 Version: 2012.1219.1520.27485) CCC Help Japanese (x32 Version: 2012.1219.1520.27485) CCC Help Korean (x32 Version: 2012.1219.1520.27485) CCC Help Norwegian (x32 Version: 2012.1219.1520.27485) CCC Help Polish (x32 Version: 2012.1219.1520.27485) CCC Help Portuguese (x32 Version: 2012.1219.1520.27485) CCC Help Russian (x32 Version: 2012.1219.1520.27485) CCC Help Spanish (x32 Version: 2012.1219.1520.27485) CCC Help Swedish (x32 Version: 2012.1219.1520.27485) CCC Help Thai (x32 Version: 2012.1219.1520.27485) CCC Help Turkish (x32 Version: 2012.1219.1520.27485) ccc-utility64 (Version: 2012.1219.1521.27485) CCleaner (Version: 4.00) ChessBase Reader (x32 Version: 2) Command & Conquer 3 (x32 Version: 1.00.0000) Command & Conquer Generals (x32 Version: 0.50.0000) Command & Conquer™ 3: Kanes Rache (x32 Version: 1.00.0000) Command & Conquer™ Alarmstufe Rot 3 (x32 Version: 1.0.1.0) Counter-Strike: Source (x32) C-Pen Core (x32 Version: 1.3.00) D3DX10 (x32 Version: 15.4.2368.0902) Deep Fritz 12 (x32 Version: 12.0.0) Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (x32) diclovit's mod pack 1.4.98b (x32 Version: 1.4.98b) Die Sims™ 3 (x32 Version: 1.47.6) Die Sims™ 3 70er, 80er & 90er Accessoires (x32 Version: 17.0.77) Die Sims™ 3 Design-Garten-Accessoires (x32 Version: 7.0.55) Die Sims™ 3 Diesel Accessoires (x32 Version: 14.0.48) Die Sims™ 3 Gib Gas-Accessoires (x32 Version: 5.0.44) Die Sims™ 3 Jahreszeiten (x32 Version: 16.0.136) Die Sims™ 3 Late Night (x32 Version: 6.0.81) Die Sims™ 3 Luxus-Accessoires (x32 Version: 3.0.38) Die Sims™ 3 Reiseabenteuer (x32 Version: 2.0.86) Die Sims™ 3 Traumkarrieren (x32 Version: 4.0.87) Die*Sims™*3 Erstelle einen Sim (x32 Version: 1.0.25) DiRT 3 (x32 Version: 1.0.0001.130) DivX-Setup (x32 Version: 2.6.1.24) Dokan Library 0.6.0 (x32) dows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (Version: 07/28/2009 6.2.0.9800) Dual-Core Optimizer (x32 Version: 1.1.4.0169) Duden Korrektor (x32 Version: 7.00.0000) Duden Korrektor Patch 022010 (x32 Version: 7.00.0000) Duke Nukem Forever (x32) EASEUS Partition Master 9.1.0 Home Edition (x32) Einstellungen für VAIO-Inhaltsüberwachung (x32 Version: 2.6.0.11050) EVEREST Ultimate Edition v5.50 (x32 Version: 5.50) Exif Tag Remover 2.0 (x32) Forged Alliance Forever (x32 Version: 240.8.31) Free PDF to Word Doc Converter v1.1 (x32 Version: 1.1) Free YouTube Download version 3.2.2.430 (x32 Version: 3.2.2.430) FreeCommander 2009.02b (x32 Version: 2009.02) Fritz 13 (x32 Version: 13.0.0.0) Fritz Beginner (x32 Version: 12.0.0) Fritz11 WM Edition (x32 Version: 1.0) Futuremark SystemInfo (x32 Version: 4.6.0) G DATA Logox 4 Speechengine (x32) G DATA WebSpeech 4 (x32) gamelauncher-ps2-psg (HKCU) GameRanger (HKCU) GEOgraf System Runtime Components (x32 Version: 3.0.0) Google Chrome (x32 Version: 28.0.1500.95) Google Drive (x32 Version: 1.10.4769.632) Google Earth (x32 Version: 6.0.1.2032) Google Earth (x32 Version: 7.0.3.8542) Google Update Helper (x32 Version: 1.3.21.153) GPGNet (x32 Version: 1.0.0) GRID (x32 Version: 1.30.0000) Hex-Editor MX (x32 Version: 6.0) Homeworld2 (x32) HyperCam 3 (x32 Version: 3.0.912.18) ICQ7.5 (x32 Version: 7.5) Intel(R) Control Center (x32 Version: 1.2.1.1007) Intel(R) Management Engine Components (x32 Version: 6.0.0.1179) Intel(R) Rapid Storage Technology (x32 Version: 10.1.0.1008) Intel(R) Turbo Boost Technology Driver (x32 Version: 01.00.01.1002) Iomega Encryption (Version: 1.00.0003) IrfanView (remove only) (x32 Version: 4.35) Java 7 Update 25 (x32 Version: 7.0.250) Java Auto Updater (x32 Version: 2.1.9.5) JDownloader (x32) Junk Mail filter update (x32 Version: 15.4.3502.0922) KEBau (x32) Left 4 Dead (x32) Left 4 Dead 2 (x32) Lock On: Air Combat Simulation (x32 Version: 1.00.000) LogMeIn Hamachi (x32 Version: 2.1.0.124) Logox 4 Professional (x32) Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4 Extended (Version: 4.0.30319) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.5.88.0) Microsoft Games for Windows Marketplace (x32 Version: 3.5.50.0) Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Groove MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office InfoPath MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Live Add-in 1.5 (x32 Version: 2.0.4024.1) Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000) Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Professional Plus 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.7015.1000) Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office XP Professional mit FrontPage (x32 Version: 10.0.6626.0) Microsoft Picture It! Foto Premium 9 (x32 Version: 9.0.0.0000) Microsoft Silverlight (Version: 5.1.20513.0) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft SQL Server Compact 3.5 SP1 English (x32 Version: 3.5.5692.0) Microsoft SQL Server Compact 3.5 SP1 x64 English (Version: 3.5.5692.0) Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (Version: 8.0.50727.4053) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.50727.42) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (Version: 8.0.51011) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000) Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (Version: 9.0.30729.5570) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (x32 Version: 9.0.30729.5570) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft Visual J# 2.0 Redistributable Package (x32 Version: 2.0.50727) Microsoft Visual J# 2.0 Redistributable Package (x32) Microsoft Works (x32 Version: 07.03.0512) Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0) Microsoft_VC80_ATL_x86 (x32 Version: 8.0.50727.4053) Microsoft_VC80_ATL_x86_x64 (Version: 8.0.50727.4053) Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053) Microsoft_VC80_CRT_x86_x64 (Version: 8.0.50727.4053) Microsoft_VC80_MFC_x86 (x32 Version: 8.0.50727.4053) Microsoft_VC80_MFC_x86_x64 (Version: 8.0.50727.4053) Microsoft_VC80_MFCLOC_x86 (x32 Version: 8.0.50727.4053) Microsoft_VC80_MFCLOC_x86_x64 (Version: 80.50727.4053) Microsoft_VC90_ATL_x86 (x32 Version: 1.00.0000) Microsoft_VC90_ATL_x86_x64 (Version: 1.00.0000) Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000) Microsoft_VC90_CRT_x86_x64 (Version: 1.00.0000) Microsoft_VC90_MFC_x86 (x32 Version: 1.00.0000) Microsoft_VC90_MFC_x86_x64 (Version: 1.00.0000) Microsoft_VC90_MFCLOC_x86 (x32 Version: 1.00.0000) Microsoft_VC90_MFCLOC_x86_x64 (Version: 1.00.0000) Microsoft-Maus- und Tastatur-Center (Version: 1.1.500.0) Moorhuhn 3 DL (x32) Moorhuhn-Sushi (x32) Mozilla Firefox 22.0 (x86 de) (x32 Version: 22.0) Mozilla Maintenance Service (x32 Version: 22.0) MSVCRT (x32 Version: 15.4.2862.0708) MSVCRT_amd64 (x32 Version: 15.4.2862.0708) MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0) MSXML 4.0 SP3 Parser (KB2721691) (x32 Version: 4.30.2114.0) MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0) Mumble 1.2.4 (x32 Version: 1.2.4) Need for Speed™ Most Wanted (x32) Nero 8 (x32 Version: 8.0.293) Office-Bibliothek (x32 Version: 5.00.3) OpenAL (x32) OpenRA (x32) Pamela Pro 4.8 (x32 Version: 4.8) Paragon Backup & Recovery™ 2013 Free (x32 Version: 90.00.0003) PDF Settings CS5 (x32 Version: 10.0) PDFCreator (x32 Version: 0.9.5) PMB (x32 Version: 5.0.00.10260) PMB VAIO Edition Plug-in (Version: 1.5.10.05300) PMB VAIO Edition Plug-in (x32 Version: 1.5.10.06150) Proxifier version 3.21 (x32 Version: 3.21) R.U.S.E (x32) Razer Lachesis (x32 Version: 1.10.0000) Realtek HDMI Audio Driver for ATI (x32 Version: 6.0.1.5992) Realtek High Definition Audio Driver (x32 Version: 6.0.1.5992) Recuva (Version: 1.42) Roxio Central Audio (x32 Version: 3.8.0) Roxio Central Copy (x32 Version: 3.8.0) Roxio Central Core (x32 Version: 3.8.0) Roxio Central Data (x32 Version: 3.8.0) Roxio Central Tools (x32 Version: 3.8.0) Roxio Easy Media Creator 10 LJ (x32 Version: 10.3) Roxio Easy Media Creator Home (x32 Version: 10.3.183) Secure Eraser v4.0 (x32) Security Task Manager 1.8d (x32 Version: 1.8d) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32) Setting Utility Series (x32 Version: 5.1.0.11200) Setup_msm_VCMS_x64 (Version: 2.6.0.06040) Setup_msm_VOFS_x64 (Version: 2.3.0.09270) Setup_VEP_x64_Contain_SSDB (Version: 3.9.0.09270) Setup-Start von Microsoft Works 2004 (x32) Silent Hill 2 - Directors Cut (x32) SILENT HILL 3 (x32 Version: 1.00.0000) SILENT HILL 4 (x32 Version: 1.00.000) SimilarImages (x32 Version: 2010.09) Simple Adblock (x32 Version: 1.1.5) Skype Click to Call (x32 Version: 5.9.9216) Skype™ 6.3 (x32 Version: 6.3.105) SOHLib Merge Module (x32 Version: 2.2.0.11240) Sony Home Network Library (x32 Version: 2.0.1.10160) Sony Home Network Library (x32 Version: 2.2.0.11240) SpeechRedist (x32 Version: 1.0.0) Spybot - Search & Destroy (x32 Version: 1.6.2) SpywareBlaster 4.4 (x32 Version: 4.4.0) Star Wars Battlefront II (x32 Version: 1.0) Star Wars Empire at War (x32 Version: 1.0) Star Wars Empire at War Forces of Corruption (x32 Version: 1.0) Steam (x32 Version: 1.0.0.0) SupCom Replay Manager (x32 Version: 1.0.1) Supreme Commander - Forged Alliance (x32 Version: 1.00.0000) Supreme Commander (x32) Sven Bømwøllen DL (x32) TeamSpeak 3 Client (Version: 3.0.10.1) TeamViewer 8 (x32 Version: 8.0.19617) tools-freebsd (x32 Version: 8.8.1.528992) tools-linux (x32 Version: 8.8.1.528992) tools-netware (x32 Version: 8.8.1.528992) tools-solaris (x32 Version: 8.8.1.528992) tools-windows (x32 Version: 8.8.1.528992) tools-winPre2k (x32 Version: 8.8.1.528992) Tor 0.2.3.25 (x32) Trillian (x32) TrueCrypt (x32 Version: 7.1a) Unreal Tournament 2004 (x32) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1) Update for Microsoft Office 2010 (KB2494150) (x32) Update for Microsoft Office 2010 (KB2553092) (x32) Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (x32) VAIO - PMB VAIO Edition Guide (x32 Version: 1.5.00.03020) VAIO - PMB VAIO Edition Plug-in (x32 Version: 1.6.10.11160) VAIO Content Metadata Intelligent Analyzing Manager (Version: 3.9.0.11260) VAIO Content Metadata Intelligent Analyzing Manager (x32 Version: 3.6.0.09250) VAIO Content Metadata Intelligent Network Service Manager (Version: 3.9.0.11180) VAIO Content Metadata Manager Settings (Version: 3.9.0.11180) VAIO Content Metadata XML Interface Library (Version: 3.9.0.11180) VAIO Control Center (x32 Version: 4.1.1.07160) VAIO Data Restore Tool (x32 Version: 1.2.0.09150) VAIO DVD Menu Data (x32 Version: 2.4.00.05300) VAIO Energie Verwaltung (x32 Version: 5.0.0.11300) VAIO Entertainment Platform (x32 Version: 3.9.0.11160) VAIO Event Service (x32 Version: 5.1.0.12010) VAIO Gate Default (x32 Version: 1.0.0.10290) VAIO Hardware Diagnostics (x32 Version: 3.9.1) VAIO Marketing Tools (x32) VAIO Media plus (x32 Version: 2.0.1.10160) VAIO Media plus Opening Movie (x32 Version: 1.2.0.09100) VAIO Movie Story Template Data (x32 Version: 2.0.00.09240) VAIO Movie Story Template Data (x32 Version: 2.5.00.05300) VAIO Original Funktion Einstellungen (x32 Version: 2.3.0.11240) VAIO Personalization Manager (Version: 3.0.0.11160) VAIO Premium Partners (x32 Version: 1.0) VAIO Quick Web Access (x32 Version: 1.3.1.7) VAIO screensaver (x32 Version: 1.0.0.0) VAIO Smart Network (x32 Version: 3.3.1.08110) VAIO Update (x32 Version: 5.5.3.10280) VAIO Update Merge Module x64 (Version: 5.6.10270) VAIO Wallpaper Contents (x32 Version: 2.0.0.06010) VAIO-Support für Übertragungen (x32 Version: 1.1.2.06030) VC 9.0 Runtime (x32 Version: 1.0.0) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0) VeryPDF PDF2Word v3.0 (x32) Vidalia 0.2.21 (x32) Visual C++ 2008 x86 Runtime - (v9.0.30729) (x32 Version: 9.0.30729) Visual C++ 2008 x86 Runtime - v9.0.30729.01 (x32 Version: 9.0.30729.01) VLC media player 1.1.11 (x32 Version: 1.1.11) VmciSockets (Version: 9.1.54.1) VMware Workstation (x32 Version: 8.0.1.27038) War Thunder Launcher 1.0.1.185 (x32) WebM Media Foundation Components (x32 Version: 1.0.0.0) WIDCOMM Bluetooth Software (Version: 6.2.1.500) Windows 7 Codec Pack 3.1.0 (x32) Windows Driver Package - Broadcom Bluetooth (09/09/2009 6.2.0.9405) (Version: 09/09/2009 6.2.0.9405) Windows Live Communications Platform (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3555.0308) Windows Live Family Safety (Version: 15.4.3555.0308) Windows Live Fotogalerie (x32 Version: 15.4.3502.0922) Windows Live ID Sign-in Assistant (Version: 7.250.4232.0) Windows Live Installer (x32 Version: 15.4.3502.0922) Windows Live Language Selector (Version: 15.4.3555.0308) Windows Live Mail (x32 Version: 15.4.3502.0922) Windows Live MIME IFilter (Version: 15.4.3502.0922) Windows Live Movie Maker (x32 Version: 15.4.3502.0922) Windows Live Photo Common (x32 Version: 15.4.3502.0922) Windows Live Photo Gallery (x32 Version: 15.4.3502.0922) Windows Live PIMT Platform (x32 Version: 15.4.3508.1109) Windows Live SOXE (x32 Version: 15.4.3502.0922) Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922) Windows Live Sync (x32 Version: 14.0.8117.416) Windows Live UX Platform (x32 Version: 15.4.3502.0922) Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109) Windows Live Writer (x32 Version: 15.4.3502.0922) Windows Live Writer Resources (x32 Version: 15.4.3502.0922) Windows-Treiberpaket - C Technologies AB (CPen) Input Pen (02/22/2010 3.0.0.2) (Version: 02/22/2010 3.0.0.2) WinHTTrack Website Copier 3.46-1 (x64) (Version: 3.46.1) WinRAR 4.20 (64-Bit) (Version: 4.20.0) World of Tanks (x32) Xfire (remove only) (x32) Zero-K (HKCU Version: 2.79.0.3) ZoneAlarm Firewall (x32 Version: 10.1.065.000) ZoneAlarm Free (x32 Version: 10.1.056.000) ZoneAlarm Security (x32 Version: 10.1.065.000) ZoneAlarm Toolbar ==================== Restore Points ========================= ==================== Hosts content: ========================== 2011-10-14 16:53 - 2011-10-14 16:53 - 00000030 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 secure.tune-up.com ==================== Scheduled Tasks (whitelisted) ============= Task: {1761F793-2C77-4B99-BCAB-6E3DB12510A6} - System32\Tasks\AdobeAAMUpdater-1.0-CHESSPOWER-VAIO-Gerd => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-09-20] (Adobe Systems Incorporated) Task: {1CB965A7-56F6-4D9F-9BBC-81A0286CBCCD} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe [2010-02-23] (Microsoft Corporation) Task: {1FDE7322-0840-4B7E-A984-3A5BE8D851B6} - System32\Tasks\{3BBE6C36-2FC9-442E-A228-1A523AAFC0B5} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-02-28] (Skype Technologies S.A.) Task: {23AAF060-4EE2-411D-8BF2-EEB2ED6F7E00} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-03-25] (Piriform Ltd) Task: {29D8DEA4-343A-421C-A873-8086311D2B75} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Device Center\ipoint.exe [2012-06-26] (Microsoft Corporation) Task: {2F4D9D94-BC85-4B9C-AD88-7D21038D7010} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe No File Task: {33FF6FC1-C45D-4A9E-9057-7AFD8907EF54} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-08-20] (Google Inc.) Task: {36C63201-60D7-4874-AF50-07511CC96B0E} - System32\Tasks\Adobe Reader and Acrobat Manager => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04] (Adobe Systems Incorporated) Task: {3D3CC477-BBA2-4FD4-9C2A-B40FFAD1643E} - System32\Tasks\Java Update Scheduler => C:\Program Files\Java\jre6\bin\jusched.exe No File Task: {52DBEE79-C029-48C9-B655-DDB4BC46C804} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => c:\program files\windows defender\MpCmdRun.exe [2009-07-14] (Microsoft Corporation) Task: {6C0FDA06-CAAF-4638-AE88-6358F67179C5} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-30] (Adobe Systems Incorporated) Task: {6D4425B7-7C4D-415A-B709-2DFFA72DCDC3} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Device Center\itype.exe [2012-06-26] (Microsoft Corporation) Task: {6D65CDE5-DB2C-4FB1-8E8A-4F36D1077450} - System32\Tasks\Microsoft_Hardware_Launch_devicecenter_exe => c:\Program Files\Microsoft Device Center\devicecenter.exe [2012-06-26] (Microsoft) Task: {6EDFFFAE-A39E-4418-8018-FCB523416FE0} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task Task: {70DD546A-B31E-4000-9B61-9457BF474DA1} - System32\Tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor => C:\Windows\system32\sdclt.exe [2010-11-20] (Microsoft Corporation) Task: {74A64151-FF2F-476F-940B-9FD200F8D32E} - System32\Tasks\Works Update Find => C:\Program Files (x86)\Common Files\Microsoft Shared\Works Shared\WkUFind.exe [2003-06-17] (Microsoft® Corporation) Task: {8B174296-48F8-44F8-B713-224D3F3F2069} - System32\Tasks\Microsoft\Windows Defender\MpIdleTask => c:\program files\windows defender\MpCmdRun.exe [2009-07-14] (Microsoft Corporation) Task: {8D908B63-EBCA-44F1-BA04-21A526F1CFB5} - System32\Tasks\SONY\SUS-BCF\Level4Daily => C:\Program Files (x86)\Sony\Setting Utility Series\WBCBatteryCare.exe [2009-11-20] (Sony Corporation) Task: {9448034D-7B51-4B6D-8BAF-6F6F22C58511} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04] (Adobe Systems Incorporated) Task: {9CC049BB-72AD-4B10-B149-54CDF14B7B24} - System32\Tasks\{F8052007-03D6-428C-AC6D-07B275FC3CB6} => c:\program files (x86)\internet explorer\iexplore.exe [2013-06-12] (Microsoft Corporation) Task: {A2E597F5-E279-4180-8314-C7F028CC1874} - System32\Tasks\Ad-Aware Update (Weekly) => C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe No File Task: {A330A8A1-9B76-4C4B-9D9F-BE882873A4DE} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe No File Task: {BF5E09FF-CA81-4DF7-B25F-45454E81A0BE} - System32\Tasks\User_Feed_Synchronization-{1B4365F3-4384-4C77-ABB8-3D535363438B} => C:\Windows\system32\msfeedssync.exe [2013-02-27] (Microsoft Corporation) Task: {CC3D860B-C003-4A2E-927D-D8F06443134F} - System32\Tasks\SONY\VAIO Power Management\VPM Logon Start => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2010-06-19] (Sony Corporation) Task: {D23EEB03-2E55-43CF-82B9-115D1FFD6227} - System32\Tasks\SONY\VAIO Power Management\VPM Session Change => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2010-06-19] (Sony Corporation) Task: {D64E1424-34FB-4CEE-B039-E2476C37AE3B} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => C:\Windows\system32\rundll32.exe [2009-07-14] (Microsoft Corporation) Task: {E63BC770-C400-42C1-BD65-4E31EAFA481D} - System32\Tasks\SONY\VAIO Power Management\VPM Unlock => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2010-06-19] (Sony Corporation) Task: {E68E84FE-5420-44AF-85EA-D35D7FC70295} - System32\Tasks\User_Feed_Synchronization-{0E626F3C-8A24-4FFB-84FD-07195C3D7244} => C:\Windows\system32\msfeedssync.exe [2013-02-27] (Microsoft Corporation) Task: {F16ED198-D3DF-4042-AD57-0E63CDEACFE8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-08-20] (Google Inc.) Task: {F48C7D8F-92D8-423E-9796-D9E6CC2957C6} - System32\Tasks\Google Updater and Installer => C:\Users\Gerd\AppData\Local\Google\Update\GoogleUpdate.exe No File Task: {F50B0FBA-FB2C-4902-A93E-4FD38B4844A0} - System32\Tasks\SONY\SUS-BCF\Level4Month => C:\Program Files (x86)\Sony\Setting Utility Series\WBCBatteryCare.exe [2009-11-20] (Sony Corporation) Task: {FC4276EB-F727-4369-AB85-FCD8110C6AEF} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update 5 => C:\Program Files\Sony\VAIO Update 5\VAIOUpdt.exe [2011-11-07] (Sony Corporation) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\AutoKMS.job => C:\Windows\AutoKMS\AutoKMS.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Faulty Device Manager Devices ============= Name: SBRE Description: SBRE Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: SBRE Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (07/31/2013 06:29:50 PM) (Source: ESENT) (User: ) Description: taskhost (1688) WebCacheLocal: Fehler -1811 beim Öffnen von Protokolldatei C:\Users\Gerd\AppData\Local\Microsoft\Windows\WebCache\V0100070.log. Error: (07/31/2013 05:28:36 PM) (Source: ESENT) (User: ) Description: taskhost (3640) WebCacheLocal: Fehler -1032 (0xfffffbf8) beim Öffnen von Protokolldatei C:\Users\Gerd\AppData\Local\Microsoft\Windows\WebCache\V01.log. Error: (07/31/2013 05:28:36 PM) (Source: ESENT) (User: ) Description: taskhost (3640) WebCacheLocal: Versuch, Datei "C:\Users\Gerd\AppData\Local\Microsoft\Windows\WebCache\V01.log" für den Lesezugriff zu öffnen, ist mit Systemfehler 32 (0x00000020): "Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Öffnen von Dateien. Error: (07/31/2013 05:28:26 PM) (Source: ESENT) (User: ) Description: taskhost (3640) WebCacheLocal: Fehler -1032 (0xfffffbf8) beim Öffnen von Protokolldatei C:\Users\Gerd\AppData\Local\Microsoft\Windows\WebCache\V01.log. Error: (07/31/2013 05:28:26 PM) (Source: ESENT) (User: ) Description: taskhost (3640) WebCacheLocal: Versuch, Datei "C:\Users\Gerd\AppData\Local\Microsoft\Windows\WebCache\V01.log" für den Lesezugriff zu öffnen, ist mit Systemfehler 32 (0x00000020): "Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Öffnen von Dateien. Error: (07/31/2013 03:02:28 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: vsmon.exe, Version: 10.1.65.0, Zeitstempel: 0x4ebb4c7b Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x5f300005 ID des fehlerhaften Prozesses: 0x5fc Startzeit der fehlerhaften Anwendung: 0xvsmon.exe0 Pfad der fehlerhaften Anwendung: vsmon.exe1 Pfad des fehlerhaften Moduls: vsmon.exe2 Berichtskennung: vsmon.exe3 Error: (07/20/2013 06:58:16 AM) (Source: ESENT) (User: ) Description: taskhost (2972) Versuch, Datei "C:\Users\Gerd\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat" für den Lesezugriff zu öffnen, ist mit Systemfehler 32 (0x00000020): "Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Öffnen von Dateien. Error: (07/14/2013 10:03:53 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "assemblyIdentity1". Fehler in Manifest- oder Richtliniendatei "assemblyIdentity2" in Zeile assemblyIdentity3. Der Wert "*" des "language"-Attributs im assemblyIdentity-Element ist ungültig. Error: (07/14/2013 09:59:40 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1". Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (07/14/2013 09:58:25 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. System errors: ============= Error: (08/01/2013 04:22:01 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (08/01/2013 04:22:01 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (08/01/2013 04:22:00 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (08/01/2013 04:21:54 PM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: Lbd SBRE Error: (08/01/2013 04:21:38 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Roxio Upnp Server 10 erreicht. Error: (07/31/2013 07:45:45 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (07/31/2013 07:45:45 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (07/31/2013 07:45:44 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (07/31/2013 07:45:40 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (07/31/2013 07:45:38 PM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: Lbd SBRE Microsoft Office Sessions: ========================= Error: (07/31/2013 06:29:50 PM) (Source: ESENT)(User: ) Description: taskhost1688WebCacheLocal: C:\Users\Gerd\AppData\Local\Microsoft\Windows\WebCache\V0100070.log-1811 Error: (07/31/2013 05:28:36 PM) (Source: ESENT)(User: ) Description: taskhost3640WebCacheLocal: C:\Users\Gerd\AppData\Local\Microsoft\Windows\WebCache\V01.log-1032 (0xfffffbf8) Error: (07/31/2013 05:28:36 PM) (Source: ESENT)(User: ) Description: taskhost3640WebCacheLocal: C:\Users\Gerd\AppData\Local\Microsoft\Windows\WebCache\V01.log-1032 (0xfffffbf8)32 (0x00000020)Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. Error: (07/31/2013 05:28:26 PM) (Source: ESENT)(User: ) Description: taskhost3640WebCacheLocal: C:\Users\Gerd\AppData\Local\Microsoft\Windows\WebCache\V01.log-1032 (0xfffffbf8) Error: (07/31/2013 05:28:26 PM) (Source: ESENT)(User: ) Description: taskhost3640WebCacheLocal: C:\Users\Gerd\AppData\Local\Microsoft\Windows\WebCache\V01.log-1032 (0xfffffbf8)32 (0x00000020)Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. Error: (07/31/2013 03:02:28 PM) (Source: Application Error)(User: ) Description: vsmon.exe10.1.65.04ebb4c7bunknown0.0.0.000000000c00000055f3000055fc01ce8db4c3a051d7C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exeunknown736500a9-f9e1-11e2-b695-d88d963e47d7 Error: (07/20/2013 06:58:16 AM) (Source: ESENT)(User: ) Description: taskhost2972C:\Users\Gerd\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat-1032 (0xfffffbf8)32 (0x00000020)Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. Error: (07/14/2013 10:03:53 PM) (Source: SideBySide)(User: ) Description: assemblyIdentitylanguage*c:\program files (x86)\freecommander\DelZip179.dllc:\program files (x86)\freecommander\DelZip179.dll8 Error: (07/14/2013 09:59:40 PM) (Source: SideBySide)(User: ) Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files (x86)\C Technologies\C-Pen Core\UsbDriver\DPInst_ia64.exe Error: (07/14/2013 09:58:25 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Program Files (x86)\Nero\Nero8\Nero PhotoSnap\PhotoSnapViewer.exe CodeIntegrity Errors: =================================== Date: 2013-07-31 16:21:55.686 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 16:11:06.966 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 15:37:17.978 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 15:25:35.328 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 15:08:42.146 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 08:30:20.095 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 07:40:29.078 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 07:27:12.675 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-30 22:57:42.509 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-30 22:35:18.148 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 43% Total physical RAM: 3950.1 MB Available physical RAM: 2224.36 MB Total Pagefile: 9873.28 MB Available Pagefile: 8109.38 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive a: (BackUp-Daten) (Fixed) (Total:11.03 GB) (Free:0.95 GB) NTFS (Disk=0 Partition=1) ==>[System with boot components (obtained from reading drive)] Drive c: () (Fixed) (Total:687.5 GB) (Free:281.99 GB) NTFS (Disk=0 Partition=3) ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 699 GB) (Disk ID: DF981B7C) Partition 1: (Active) - (Size=11 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=688 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
02.08.2013, 10:30 | #4 |
/// Helfer-Team | Lösung: Google Chrome- Systemabsturz (Freezing) Du hast Combofix ausgefuehrt. Bitte das Log posten! Deinstalliere Zonealarm. Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter HKLM\...\InprocServer32: [Default-cscui] <==== ATTENTION! SearchScopes: HKCU - {B4D1E127-FE08-43F0-A8D2-7323A321C978} URL = http://www.resultscan.com/?prt=RstscnAMON&keywords={searchTerms} CHR Extension: (Click&Clean App) - C:\Users\Gerd\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp\8.0_0 Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
|
02.08.2013, 16:46 | #5 |
| Wie Google Chrome- Systemabsturz (Freezing) Ich bitte um etwas Geduld. Momentan ist es einfach zu warm bei mir. |
04.08.2013, 08:45 | #6 |
/// Helfer-Team | Wo Google Chrome- Systemabsturz (Freezing) Lösung! Alles klar.
__________________ --> Google Chrome- Systemabsturz (Freezing) |
05.08.2013, 13:27 | #7 |
| Google Chrome- Systemabsturz (Freezing) Hallo t’john Combofix.txt: Code:
ATTFilter ComboFix 13-08-05.01 - Gerd 05.08.2013 14:33:04.2.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.3950.2268 [GMT 2:00] ausgeführt von:: c:\users\Gerd\Desktop\ComboFix.exe * Neuer Wiederherstellungspunkt wurde erstellt . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\programdata\edc42ec024af58b7d051c7b0d41fee63_c c:\windows\SuperHidden.vbs c:\windows\SysWow64\tmp649C.tmp c:\windows\SysWow64\tmpC6C7.tmp c:\windows\SysWow64\tmpDA47.tmp c:\windows\wininit.ini . . ((((((((((((((((((((((( Dateien erstellt von 2013-07-05 bis 2013-08-05 )))))))))))))))))))))))))))))) . . 2013-08-05 12:45 . 2013-08-05 12:45 -------- d-----w- c:\users\Public\AppData\Local\temp 2013-08-05 12:45 . 2013-08-05 12:45 -------- d-----w- c:\users\Default\AppData\Local\temp 2013-08-05 12:45 . 2013-08-05 12:45 -------- d-----w- c:\users\AppData\AppData\Local\temp 2013-08-01 14:26 . 2013-08-01 14:26 -------- d-----w- C:\FRST 2013-07-30 19:48 . 2013-07-30 19:48 -------- d-----w- c:\users\Gerd\AppData\Local\Macromedia 2013-07-30 19:44 . 2013-07-30 19:44 74136 ----a-w- c:\program files (x86)\Mozilla Firefox\breakpadinjector.dll 2013-07-30 19:44 . 2013-07-30 19:44 263576 ----a-w- c:\program files (x86)\Mozilla Firefox\browser\components\browsercomps.dll 2013-07-30 19:44 . 2013-07-30 19:44 770384 ----a-w- c:\program files (x86)\Mozilla Firefox\msvcr100.dll 2013-07-30 19:44 . 2013-07-30 19:44 421200 ----a-w- c:\program files (x86)\Mozilla Firefox\msvcp100.dll 2013-07-30 19:44 . 2013-07-30 19:44 92056 ----a-w- c:\program files (x86)\Mozilla Firefox\webapprt-stub.exe 2013-07-30 19:44 . 2013-07-30 19:44 26520 ----a-w- c:\program files (x86)\Mozilla Firefox\plugin-hang-ui.exe 2013-07-30 19:44 . 2013-07-30 19:44 170232 ----a-w- c:\program files (x86)\Mozilla Firefox\webapp-uninstaller.exe 2013-07-30 19:17 . 2013-07-30 19:17 -------- d-----w- c:\program files\Sandboxie 2013-07-20 06:33 . 2013-07-20 06:36 -------- d-----w- c:\windows\system32\MRT 2013-07-10 17:39 . 2013-06-04 06:00 624128 ----a-w- c:\windows\system32\qedit.dll 2013-07-10 17:39 . 2013-06-04 04:53 509440 ----a-w- c:\windows\SysWow64\qedit.dll 2013-07-10 17:39 . 2013-05-27 05:50 1011712 ----a-w- c:\program files\Windows Defender\MpSvc.dll 2013-07-10 17:39 . 2013-05-27 05:50 571904 ----a-w- c:\program files\Windows Defender\MpClient.dll 2013-07-10 17:39 . 2013-05-27 05:50 314880 ----a-w- c:\program files\Windows Defender\MpCommu.dll 2013-07-10 17:39 . 2013-05-27 04:57 4608 ----a-w- c:\program files (x86)\Windows Defender\MsMpLics.dll 2013-07-10 17:39 . 2013-05-27 04:57 54784 ----a-w- c:\program files (x86)\Windows Defender\MpOAV.dll 2013-07-10 17:39 . 2013-05-27 04:57 392704 ----a-w- c:\program files (x86)\Windows Defender\MpClient.dll 2013-07-10 17:39 . 2013-05-27 03:15 9216 ----a-w- c:\program files (x86)\Windows Defender\MpAsDesc.dll 2013-07-10 17:39 . 2013-05-06 06:03 1887744 ----a-w- c:\windows\system32\WMVDECOD.DLL 2013-07-10 17:39 . 2013-05-06 04:56 1620480 ----a-w- c:\windows\SysWow64\WMVDECOD.DLL 2013-07-10 17:38 . 2013-06-05 03:34 3153920 ----a-w- c:\windows\system32\win32k.sys 2013-07-10 17:38 . 2013-04-10 05:48 1732608 ----a-w- c:\program files\Windows Journal\NBDoc.DLL 2013-07-10 17:38 . 2013-04-10 05:46 1402880 ----a-w- c:\program files\Windows Journal\JNWDRV.dll 2013-07-10 17:38 . 2013-04-10 05:46 1393152 ----a-w- c:\program files\Windows Journal\JNTFiltr.dll 2013-07-10 17:38 . 2013-04-10 05:46 1367040 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\journal.dll 2013-07-10 17:38 . 2013-04-10 05:03 936448 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\ink\journal.dll 2013-07-10 17:38 . 2013-04-09 23:34 1247744 ----a-w- c:\windows\SysWow64\DWrite.dll 2013-07-10 17:38 . 2013-04-02 22:51 1643520 ----a-w- c:\windows\system32\DWrite.dll . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-07-30 20:05 . 2012-04-02 15:20 692104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2013-07-30 20:05 . 2011-05-21 08:54 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-06-24 23:26 . 2013-06-24 23:26 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2013-06-24 23:26 . 2013-02-04 10:48 867240 ----a-w- c:\windows\SysWow64\npDeployJava1.dll 2013-06-24 23:26 . 2010-08-20 14:55 789416 ----a-w- c:\windows\SysWow64\deployJava1.dll 2013-06-23 22:57 . 2010-08-28 18:25 78277128 ----a-w- c:\windows\system32\MRT.exe 2013-06-16 13:34 . 2012-11-14 09:56 75064 ----a-w- c:\windows\SysWow64\PnkBstrA.exe 2013-06-11 20:13 . 2013-06-11 20:13 43520 ----a-w- c:\windows\SysWow64\CmdLineExt03.dll 2013-05-18 05:37 . 2013-05-18 05:37 76232 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7FD9E3A6-1C20-45F7-AA55-77DBF494EAC7}\offreg.dll 2013-05-14 08:44 . 2011-08-07 18:04 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll 2013-05-13 06:37 . 2013-05-17 09:34 9460464 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7FD9E3A6-1C20-45F7-AA55-77DBF494EAC7}\mpengine.dll 2013-05-13 05:51 . 2013-06-12 09:20 184320 ----a-w- c:\windows\system32\cryptsvc.dll 2013-05-13 05:51 . 2013-06-12 09:20 1464320 ----a-w- c:\windows\system32\crypt32.dll 2013-05-13 05:51 . 2013-06-12 09:20 139776 ----a-w- c:\windows\system32\cryptnet.dll 2013-05-13 05:50 . 2013-06-12 09:20 52224 ----a-w- c:\windows\system32\certenc.dll 2013-05-13 04:45 . 2013-06-12 09:20 140288 ----a-w- c:\windows\SysWow64\cryptsvc.dll 2013-05-13 04:45 . 2013-06-12 09:20 1160192 ----a-w- c:\windows\SysWow64\crypt32.dll 2013-05-13 04:45 . 2013-06-12 09:20 103936 ----a-w- c:\windows\SysWow64\cryptnet.dll 2013-05-13 03:43 . 2013-06-12 09:20 1192448 ----a-w- c:\windows\system32\certutil.exe 2013-05-13 03:08 . 2013-06-12 09:20 903168 ----a-w- c:\windows\SysWow64\certutil.exe 2013-05-13 03:08 . 2013-06-12 09:20 43008 ----a-w- c:\windows\SysWow64\certenc.dll 2013-05-10 05:49 . 2013-06-12 09:20 30720 ----a-w- c:\windows\system32\cryptdlg.dll 2013-05-10 03:20 . 2013-06-12 09:20 24576 ----a-w- c:\windows\SysWow64\cryptdlg.dll 2013-05-08 06:39 . 2013-06-12 09:20 1910632 ----a-w- c:\windows\system32\drivers\tcpip.sys . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AtomSync"="c:\program files (x86)\AtomSync\atomsync.exe" [2008-11-17 546232] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Lachesis"="c:\program files (x86)\Razer\Lachesis\razerhid.exe" [2009-11-10 248320] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 0 (0x0) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\VESWinlogon] 2009-12-01 20:03 98304 ------w- c:\windows\System32\VESWinlogon.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32] "mixer3"=wdmaud.drv . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk /p \??\X:\0autocheck autochk * . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "NBKeyScan"="c:\program files (x86)\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" "PMBVolumeWatcher"=c:\program files (x86)\Sony\PMB\PMBVolumeWatcher.exe "IAStorIcon"=c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe "Microsoft Works Update Detection"=c:\program files (x86)\Common Files\Microsoft Shared\Works Shared\WkUFind.exe "StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun "DivXUpdate"="c:\program files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW "LogMeIn Hamachi Ui"="c:\program files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start "AdobeCS5.5ServiceManager"="c:\program files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin "SwitchBoard"=c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe "(De)Coder Cleaner"=c:\program files (x86)\(De)Coder\Coder.exe /clean /silent "vmware-tray"="c:\program files (x86)\VMware\VMware Workstation\vmware-tray.exe" "Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" . R0 Lbd;Lbd;c:\windows\system32\DRIVERS\Lbd.sys;c:\windows\SYSNATIVE\DRIVERS\Lbd.sys [x] R1 SBRE;SBRE;c:\windows\system32\drivers\SBREdrv.sys;c:\windows\SYSNATIVE\drivers\SBREdrv.sys [x] R2 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe;c:\program files (x86)\Google\Update\GoogleUpdate.exe [x] R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [x] R2 Roxio Upnp Server 10;Roxio Upnp Server 10;c:\program files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe;c:\program files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe [x] R3 AVerAF35;AVerMedia A835 USB DVB-T;c:\windows\system32\Drivers\AVerAF35.sys;c:\windows\SYSNATIVE\Drivers\AVerAF35.sys [x] R3 Bcfilter;Jetico Personal Firewall Network Monitor;c:\windows\system32\DRIVERS\bcfilter.sys;c:\windows\SYSNATIVE\DRIVERS\bcfilter.sys [x] R3 BcfilterMP;BcfilterMP;c:\windows\system32\DRIVERS\bcfilter.sys;c:\windows\SYSNATIVE\DRIVERS\bcfilter.sys [x] R3 btusbflt;Bluetooth USB Filter;c:\windows\system32\drivers\btusbflt.sys;c:\windows\SYSNATIVE\drivers\btusbflt.sys [x] R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys;c:\windows\SYSNATIVE\DRIVERS\btwl2cap.sys [x] R3 CPen;C-Pen;c:\windows\system32\Drivers\CPen.sys;c:\windows\SYSNATIVE\Drivers\CPen.sys [x] R3 cpuz135;cpuz135;c:\windows\TEMP\cpuz135\cpuz135_x64.sys;c:\windows\TEMP\cpuz135\cpuz135_x64.sys [x] R3 dc3d;MS Hardware Device Detection Driver (USB);c:\windows\system32\DRIVERS\dc3d.sys;c:\windows\SYSNATIVE\DRIVERS\dc3d.sys [x] R3 epmntdrv;epmntdrv;c:\windows\system32\epmntdrv.sys;c:\windows\SYSNATIVE\epmntdrv.sys [x] R3 EuGdiDrv;EuGdiDrv;c:\windows\system32\EuGdiDrv.sys;c:\windows\SYSNATIVE\EuGdiDrv.sys [x] R3 Futuremark SystemInfo Service;Futuremark SystemInfo Service;c:\program files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe;c:\program files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe [x] R3 gupdatem;Google Update-Dienst (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe;c:\program files (x86)\Google\Update\GoogleUpdate.exe [x] R3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys;c:\windows\SYSNATIVE\DRIVERS\Impcd.sys [x] R3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x] R3 OXUDIDRV;OXUDIDRV;c:\windows\system32\Drivers\OXUDIDRV_X64.sys;c:\windows\SYSNATIVE\Drivers\OXUDIDRV_X64.sys [x] R3 Point64;Microsoft Mouse and Keyboard Center Filter Driver;c:\windows\system32\DRIVERS\point64.sys;c:\windows\SYSNATIVE\DRIVERS\point64.sys [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 Roxio UPnP Renderer 10;Roxio UPnP Renderer 10;c:\program files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe;c:\program files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe [x] R3 SBFWIMCL;Sunbelt Software Firewall NDIS IM Filter Service;c:\windows\system32\DRIVERS\sbfwim.sys;c:\windows\SYSNATIVE\DRIVERS\sbfwim.sys [x] R3 sbhips;sbhips;c:\windows\system32\drivers\sbhips.sys;c:\windows\SYSNATIVE\drivers\sbhips.sys [x] R3 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R3 SwitchBoard;SwitchBoard;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 TVICHW64;TVICHW64;c:\windows\system32\DRIVERS\TVICHW64.SYS;c:\windows\SYSNATIVE\DRIVERS\TVICHW64.SYS [x] R3 uCamMonitor;CamMonitor;c:\program files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe;c:\program files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [x] R3 VAIO Power Management;VAIO Power Management;c:\program files\Sony\VAIO Power Management\SPMService.exe;c:\program files\Sony\VAIO Power Management\SPMService.exe [x] R3 VaneFltr;Lachesis Mouse Driver;c:\windows\system32\drivers\Lachesis.sys;c:\windows\SYSNATIVE\drivers\Lachesis.sys [x] R3 VCFw;VAIO Content Folder Watcher;c:\program files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe;c:\program files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [x] R3 VcmIAlzMgr;VAIO Content Metadata Intelligent Analyzing Manager;c:\program files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe;c:\program files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [x] R3 VcmINSMgr;VAIO Content Metadata Intelligent Network Service Manager;c:\program files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe;c:\program files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe [x] R3 VcmXmlIfHelper;VAIO Content Metadata XML Interface;c:\program files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe;c:\program files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe [x] R3 VMUSBArbService;VMware USB Arbitration Service;c:\program files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe;c:\program files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [x] R3 VUAgent;VUAgent;c:\program files\Sony\VAIO Update Common\VUAgent.exe;c:\program files\Sony\VAIO Update Common\VUAgent.exe [x] R4 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [x] R4 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x] R4 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; [x] R4 SOHCImp;VAIO Media plus Content Importer;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe [x] R4 SOHDms;VAIO Media plus Digital Media Server;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [x] R4 SOHDs;VAIO Media plus Device Searcher;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [x] R4 SpfService;VAIO Entertainment Common Service;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [x] R4 TeamViewer8;TeamViewer 8;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [x] R4 VMwareHostd;VMware Workstation Server;c:\program files (x86)\VMware\VMware Workstation\vmware-hostd.exe;c:\program files (x86)\VMware\VMware Workstation\vmware-hostd.exe [x] S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys;c:\windows\SYSNATIVE\Drivers\PxHlpa64.sys [x] S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys;c:\windows\SYSNATIVE\Drivers\sptd.sys [x] S0 vmci;VMware VMCI Bus Driver;c:\windows\system32\DRIVERS\vmci.sys;c:\windows\SYSNATIVE\DRIVERS\vmci.sys [x] S1 bc_hash_f;BC_HASH_Filter; [x] S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x] S1 SbFw;SbFw;c:\windows\system32\drivers\SbFw.sys;c:\windows\SYSNATIVE\drivers\SbFw.sys [x] S1 SbTis;SbTis;c:\windows\system32\drivers\sbtis.sys;c:\windows\SYSNATIVE\drivers\sbtis.sys [x] S1 Uim_VIM;UIM Virtual Image Plugin;c:\windows\system32\Drivers\uim_vimx64.sys;c:\windows\SYSNATIVE\Drivers\uim_vimx64.sys [x] S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x] S2 bcfsrm;Jetico Personal Firewall filesystem filter;c:\windows\system32\drivers\bcfsrm.sys;c:\windows\SYSNATIVE\drivers\bcfsrm.sys [x] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] S2 Dokan;Dokan;c:\windows\system32\drivers\dokan.sys;c:\windows\SYSNATIVE\drivers\dokan.sys [x] S2 DokanMounter;DokanMounter;c:\program files (x86)\Dokan\DokanLibrary\mounter.exe;c:\program files (x86)\Dokan\DokanLibrary\mounter.exe [x] S2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [x] S2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;c:\program files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe;c:\program files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe [x] S2 regi;regi;c:\windows\system32\drivers\regi.sys;c:\windows\SYSNATIVE\drivers\regi.sys [x] S2 rimspci;rimspci;c:\windows\system32\drivers\rimssne64.sys;c:\windows\SYSNATIVE\drivers\rimssne64.sys [x] S2 risdsnpe;risdsnpe;c:\windows\system32\drivers\risdsne64.sys;c:\windows\SYSNATIVE\drivers\risdsne64.sys [x] S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x] S2 VSNService;VSNService;c:\program files\Sony\VAIO Smart Network\VSNService.exe;c:\program files\Sony\VAIO Smart Network\VSNService.exe [x] S2 vstor2-mntapi10-shared;Vstor2 MntApi 1.0 Driver (shared);SysWOW64\drivers\vstor2-mntapi10-shared.sys;SysWOW64\drivers\vstor2-mntapi10-shared.sys [x] S3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect;c:\windows\system32\DRIVERS\ArcSoftKsUFilter.sys;c:\windows\SYSNATIVE\DRIVERS\ArcSoftKsUFilter.sys [x] S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys;c:\windows\SYSNATIVE\DRIVERS\HECIx64.sys [x] S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x] S3 SBFWIMCLMP;Sunbelt Software Firewall NDIS IM Filter Miniport;c:\windows\system32\DRIVERS\SBFWIM.sys;c:\windows\SYSNATIVE\DRIVERS\SBFWIM.sys [x] S3 SFEP;Sony Firmware Extension Parser;c:\windows\system32\drivers\SFEP.sys;c:\windows\SYSNATIVE\drivers\SFEP.sys [x] S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys;c:\windows\SYSNATIVE\DRIVERS\yk62x64.sys [x] . . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{07e84f41-11d5-4615-aaf6-368df0762b41}] 2011-07-01 09:38 153232 ---h--w- c:\programdata\Duden\DKReg.exe . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2013-07-31 16:33 1173456 ----a-w- c:\program files (x86)\Google\Chrome\Application\28.0.1500.95\Installer\chrmstp.exe . Inhalt des "geplante Tasks" Ordners . 2013-08-05 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-02 20:05] . 2013-07-15 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-08-20 14:38] . 2013-07-15 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-08-20 14:38] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}] 2013-06-06 21:57 778192 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}] 2013-06-06 21:57 778192 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}] 2013-06-06 21:57 778192 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}] 2013-06-06 21:57 778192 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}] 2013-06-06 21:57 778192 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}] 2013-06-06 21:57 778192 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IntelliPoint"="c:\program files\Microsoft Device Center\ipoint.exe" [2012-06-26 2004584] "IntelliType Pro"="c:\program files\Microsoft Device Center\itype.exe" [2012-06-26 1464928] . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://de.wikipedia.org/wiki/Wikipedia:Hauptseite mLocal Page = c:\windows\SysWOW64\blank.htm IE: An OneNote s&enden - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105 IE: Bild an &Bluetooth-Gerät senden... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm IE: Free YouTube to MP3 Converter - c:\program files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm IE: Google Sidewiki... - c:\program files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html IE: Nach Microsoft &Excel exportieren - c:\progra~2\MICROS~1\Office10\EXCEL.EXE/3000 IE: Nach Microsoft E&xcel exportieren - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000 IE: Seite an &Bluetooth-Gerät senden... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm IE: {{7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - c:\program files (x86)\ICQ 7.5\ICQ7.5\ICQ.exe IE: {{1CE4DE72-7FCC-4eb8-8F66-AE6A56A0A54D} - {0854DA01-5BF8-4E9D-A0E9-3CD5500AFB8C} - c:\progra~2\COMMON~1\WEBSPE~1.0\LgxIEBar.dll LSP: %SystemRoot%\system32\PrxerDrv.dll LSP: %SystemRoot%\system32\vsocklib.dll Trusted Zone: clonewarsadventures.com Trusted Zone: freerealms.com Trusted Zone: matheboard.de\www Trusted Zone: soe.com Trusted Zone: sony.com Trusted Zone: youtube.com\www FF - ProfilePath - c:\users\Gerd\AppData\Roaming\Mozilla\Firefox\Profiles\uxc6fp4v.default\ FF - prefs.js: browser.startup.homepage - hxxp://www.tagesschau.de/ FF - prefs.js: keyword.URL - hxxp://www.google.com/search?ie=utf-8&mssrc=ms_kwd&mstb=adawaretb&q= FF - prefs.js: network.proxy.type - 0 . - - - - Entfernte verwaiste Registrierungseinträge - - - - . HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start HKLM-Run-Apoint - c:\program files (x86)\Apoint\Apoint.exe AddRemove-Moorhuhn-Sushi - c:\windows\system32\MOORHU~1.SCR AddRemove-Planetside 2 - c:\pc games\Planetside 2\Uninstaller.exe . . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*] @="?????????????????? v1" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID] @="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*] @="?????????????????? v2" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID] @="{9BE31822-FDAD-461B-AD51-BE1D1C159921}" . [HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}] @Denied: (A) (Everyone) "Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}" . [HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3] @Denied: (A) (Everyone) . [HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0] "Key"="ActionsPane3" "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd" . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Weitere laufende Prozesse ------------------------ . c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe c:\program files (x86)\SONY\VAIO Event Service\VESMgr.exe c:\windows\SysWOW64\DllHost.exe c:\program files (x86)\Razer\Lachesis\razerofa.exe c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe c:\program files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler.exe . ************************************************************************** . Zeit der Fertigstellung: 2013-08-05 14:53:57 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2013-08-05 12:53 . Vor Suchlauf: 12 Verzeichnis(se), 303.091.736.576 Bytes frei Nach Suchlauf: 15 Verzeichnis(se), 302.989.459.456 Bytes frei . - - End Of File - - 0680AD7C5FDF5AB42372EE9E7174EAD4 D41D8CD98F00B204E9800998ECF8427E Fixlog.txt Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 04-08-2013 Ran by Gerd at 2013-08-05 14:21:59 Run:1 Running from C:\Users\Gerd\Desktop Boot Mode: Normal ============================================== HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\HKLM\...\InprocServer32: [Default-cscui] <==== ATTENTION! {B4D1E127-FE08-43F0-A8D2-7323A321C978} => Key not found. HKCR\CLSID\HKLM\...\InprocServer32: [Default-cscui] <==== ATTENTION! {B4D1E127-FE08-43F0-A8D2-7323A321C978} => Key not found. C:\Users\Gerd\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp => Moved successfully. HKLM\Software\Classes\CLSID\{750fdf10-2a26-11d1-a3ea-080036587f03}\InprocServer32\\Default => Value was restored successfully. ==== End of Fixlog ==== Mit freundlichen Grüßen Chesspower Geändert von Chesspower88 (05.08.2013 um 14:00 Uhr) |
06.08.2013, 12:50 | #8 |
/// Helfer-Team | Google Chrome- Systemabsturz (Freezing) Gut! Downloade dir bitte Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers danach: ESET Online Scanner
danach: Downloade Dir bitte SecurityCheck und:
|
07.08.2013, 13:03 | #9 |
| Google Chrome- Systemabsturz (Freezing) Ich habe die Überprüfungen ausgeführt. Malwarebytes Anti-Malware (PRO): Code:
ATTFilter Malwarebytes Anti-Malware (PRO) 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2013.08.05.04 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 10.0.9200.16635 Gerd :: CHESSPOWER-VAIO [Administrator] Schutz: Deaktiviert 05.08.2013 15:29:39 mbam-log-2013-08-05 (15-29-39).txt Art des Suchlaufs: Vollständiger Suchlauf (A:\|C:\|) Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 733688 Laufzeit: 4 Stunde(n), 36 Minute(n), 48 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) Code:
ATTFilter Malwarebytes Anti-Rootkit BETA 1.06.0.1004 www.malwarebytes.org Database version: v2013.08.07.02 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 10.0.9200.16635 Gerd :: CHESSPOWER-VAIO [administrator] 07.08.2013 07:31:03 mbar-log-2013-08-07 (07-31-03).txt Scan type: Quick scan Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUM | P2P Scan options disabled: PUP Kernel memory modifications detected. Deep Anti-Rootkit Scan engaged. Objects scanned: 271001 Time elapsed: 24 minute(s), 42 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) Physical Sectors Detected: 0 (No malicious items detected) (end) Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=a38556c07c0c494a946d9be09e72ae8c # engine=14680 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-08-07 10:23:37 # local_time=2013-08-07 12:23:37 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=5893 16776573 100 94 18837 127500867 0 0 # compatibility_mode=9217 16777214 0 9 53594637 53594639 0 0 # scanned=519643 # found=0 # cleaned=0 # scan_time=15069 Code:
ATTFilter Results of screen317's Security Check version 0.99.71 Windows 7 Service Pack 1 x64 (UAC is disabled!) Internet Explorer 10 ``````````````Antivirus/Firewall Check:`````````````` WMI entry may not exist for antivirus; attempting automatic update. `````````Anti-malware/Other Utilities Check:````````` SpywareBlaster 4.4 Spybot - Search & Destroy Malwarebytes Anti-Malware Version 1.75.0.1300 Java 7 Update 25 Adobe Flash Player 11.8.800.94 Adobe Reader XI Mozilla Firefox (22.0) Google Chrome 28.0.1500.95 ````````Process Check: objlist.exe by Laurent```````` Malwarebytes' Anti-Malware mbamscheduler.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` Gruß Chesspower |
07.08.2013, 22:47 | #10 |
/// Helfer-Team | Google Chrome- Systemabsturz (Freezing) [gelöst] Sehr gut. Gibt es noch Probleme mit dem Rechner? |
08.08.2013, 10:48 | #11 |
| Google Chrome- Systemabsturz (Freezing) [gelöst] Ich habe das Script gerade getestet und diesmal kam es zu keinen Systemabsturz. Ich hoffe jetzt auch das dieses Problem nun behoben ist. Der Sound wird weiterhin in Script nicht ausgeführt jedoch damit kann ich leben. In den meisten fällen kann man das Ganze auch herunterladen als MP3. Danke soweit erst mal für die Hilfe. |
09.08.2013, 19:09 | #12 |
| Google Chrome- Systemabsturz (Freezing) [gelöst] Hallo nochmals, das Problem besteht weiterhin. Es kommt immer noch zu Freezing bei bestimmten Scripten. Gruß Chesspower Edit: Ich habe soeben Opera installiert und die Scripte getestet und dort kommt es zu keine Abstürze. Es muss irgendwie mit Chrome zusammenhängen. |
10.08.2013, 09:04 | #13 |
/// Helfer-Team | Google Chrome- Systemabsturz (Freezing) [gelöst] Du kannst versuchen Chrome ggf. mit Revo Uninstaller - Download - Filepony vollstaendig zu entfernen und neu zu installieren. |
11.08.2013, 04:21 | #14 |
| Google Chrome- Systemabsturz (Freezing) [gelöst] Ich werde es mal probieren demnächst. Derweil nutze ich dann Opera. Vielleicht wechsel ich auch ganz zu Opera. |
18.08.2013, 06:43 | #15 |
| Google Chrome- Systemabsturz (Freezing) [gelöst] Hallo nochmals Das Problem tritt nun bei Opera auch auf. Diesmal nicht beim Abspielen von dem Soundscript, sondern beim ganz normalen Anschauen eines Videoclips auf Tagesschau.de. Ich vermute mal es könnte an einen Bug handeln bei der neuen Version von Flashplayer. Jedoch was dagegen spricht, ist die Tatsache, dass ich auf meinem zwei anderen Rechnern nicht dieses Problem habe mit den Browsern. |
Themen zu Google Chrome- Systemabsturz (Freezing) |
andere, anderen, anwendungen, bereits, bestimmte, bestimmten, bluescree, bluescreen, chrome, forum, google, google chrome, hilfe, hoffe, kein bluescreen, löschung, momentan, probiert, problem, scripte, suche, systemabsturz, systems, troja, weiterhelfen, zuvor |