|
Alles rund um Windows: Windows 8: Desktop schwarz, Explorer nicht ausführbarWindows 7 Hilfe zu allen Windows-Betriebssystemen: Windows XP, Windows Vista, Windows 7, Windows 8(.1) und Windows 10 / Windows 11- als auch zu sämtlicher Windows-Software. Alles zu Windows 10 ist auch gerne willkommen. Bitte benenne etwaige Fehler oder Bluescreens unter Windows mit dem Wortlaut der Fehlermeldung und Fehlercode. Erste Schritte für Hilfe unter Windows. |
13.09.2013, 21:24 | #1 |
| Problem: Windows 8: Desktop schwarz, Explorer nicht ausführbar hi, ich habe das gleiche problem und weiss nicht weiter... würde mich über hilfe freuen... FRST.txt FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-09-2013 02 Ran by HP (administrator) on PC on 13-09-2013 22:09:18 Running from C:\Users\HP\Desktop Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\windows\system32\atiesrxx.exe (AMD) C:\windows\system32\atieclxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\windows\system32\dashost.exe (Intel(R) Corporation) c:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (Hewlett-Packard) c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [BeatsOSDApp] - C:\Program Files\IDT\WDM\beats64.exe [37888 2012-08-10] (Hewlett-Packard ) HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1702912 2013-03-29] (IDT, Inc.) HKCU\...\Run: [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe [1509232 2013-02-13] (Samsung) HKCU\...\Run: [KiesAirMessage] - C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup HKCU\...\Run: [] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844144 2013-02-13] (Samsung) MountPoints2: {6774cdc2-780e-11e2-be75-b4b52fb9ed19} - "G:\AutoRun.exe" HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642728 2012-07-05] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [CLMLServer_For_P2G8] - c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120 2012-06-08] (CyberLink) HKLM-x32\...\Run: [CLVirtualDrive] - c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491120 2012-07-02] (CyberLink Corp.) HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-08-30] (AVAST Software) HKLM-x32\...\Run: [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [310128 2013-02-13] (Samsung Electronics Co., Ltd.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPDSK13/4 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPDSK13/4 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPDSK13/4 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPDSK13/4 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPDSK13/4 SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPDTDFJS SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPDTDFJS SearchScopes: HKLM - {1C2BF22F-886B-48CF-A738-D800E0D157DC} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM - {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPDTDF SearchScopes: HKLM - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPDTDFJS SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPDTDFJS SearchScopes: HKLM-x32 - {1C2BF22F-886B-48CF-A738-D800E0D157DC} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 - {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPDTDF SearchScopes: HKLM-x32 - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPDTDFJS SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPDTDFJS SearchScopes: HKCU - {1C2BF22F-886B-48CF-A738-D800E0D157DC} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKCU - {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPDTDF SearchScopes: HKCU - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\bnfckq7q.default FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\windows\system32\Adobe\Director\np32dsw_1202122.dll No File FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: HP Detect - C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\bnfckq7q.default\Extensions\{ab91efd4-6975-4081-8552-1b3922ed79e2} FF Extension: No Name - C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\bnfckq7q.default\Extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}.xpi FF Extension: No Name - C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\bnfckq7q.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF ==================== Services (Whitelisted) ================= R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-08-30] (AVAST Software) R2 HPConnectedRemote; c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe [35232 2012-08-29] (Hewlett-Packard) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-18] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-08-30] (AVAST Software) R2 aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [80816 2013-08-30] (AVAST Software) R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-08-30] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-08-30] () R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-08-30] (AVAST Software) R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-08-30] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-08-30] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [204880 2013-08-30] () R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdW86.sys [98472 2012-07-03] (Advanced Micro Devices) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-13 22:09 - 2013-09-13 22:09 - 00000000 ____D C:\FRST 2013-09-13 22:06 - 2013-09-13 22:06 - 01949768 _____ (Farbar) C:\Users\HP\Desktop\FRST64.exe 2013-09-12 22:48 - 2013-09-12 22:48 - 00000000 ____D C:\Users\HP\AppData\Local\HP Quick Start 2013-09-12 22:45 - 2013-09-12 22:45 - 00001101 _____ C:\Users\Public\Desktop\HP Quick Start.lnk 2013-09-12 22:45 - 2013-09-12 22:45 - 00000000 ____D C:\Users\HP\AppData\Roaming\WinBatch 2013-09-12 22:44 - 2013-09-12 22:45 - 01945000 _____ (Hewlett-Packard Development Company, L.P. ) C:\Users\HP\Downloads\sp59485.exe 2013-09-12 22:42 - 2013-09-12 22:42 - 00000000 ____D C:\Program Files (x86)\HP 2013-09-06 04:02 - 2013-09-06 04:02 - 00002723 _____ C:\Users\HP\Desktop\Robin Schulz - Wenn Träume fliegen lernen.lnk 2013-08-29 23:41 - 2013-08-29 23:41 - 03068072 _____ C:\Users\HP\Downloads\Private_Sunset_Wallpaperpack_by_Denitorious.rar 2013-08-25 11:51 - 2013-08-25 11:51 - 00002713 _____ C:\Users\HP\AppData\Local\recently-used.xbel 2013-08-17 08:50 - 2013-08-17 08:50 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-14 18:57 - 2013-08-14 18:58 - 00000000 ____D C:\windows\system32\MRT 2013-08-14 18:52 - 2013-05-24 01:02 - 01314816 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll 2013-08-14 18:52 - 2013-05-24 00:25 - 00694272 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll 2013-08-14 18:51 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll 2013-08-14 18:51 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll 2013-08-14 18:51 - 2013-07-26 07:13 - 00915968 _____ (Microsoft Corporation) C:\windows\system32\uxtheme.dll 2013-08-14 18:51 - 2013-07-26 07:13 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\UXInit.dll 2013-08-14 18:51 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe 2013-08-14 18:51 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2013-08-14 18:51 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll 2013-08-14 18:51 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll 2013-08-14 18:51 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll 2013-08-14 18:51 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll 2013-08-14 18:51 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll 2013-08-14 18:51 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll 2013-08-14 18:51 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll 2013-08-14 18:51 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll 2013-08-14 18:51 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll 2013-08-14 18:51 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb 2013-08-14 18:51 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll 2013-08-14 18:51 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll 2013-08-14 18:51 - 2013-07-26 05:13 - 00044032 _____ (Microsoft Corporation) C:\windows\SysWOW64\UXInit.dll 2013-08-14 18:51 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll 2013-08-14 18:51 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll 2013-08-14 18:51 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll 2013-08-14 18:51 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll 2013-08-14 18:51 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll 2013-08-14 18:51 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll 2013-08-14 18:51 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll 2013-08-14 18:51 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll 2013-08-14 18:51 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll 2013-08-14 18:51 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll 2013-08-14 18:51 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb 2013-08-14 18:51 - 2013-07-26 02:54 - 00534528 _____ (Microsoft Corporation) C:\windows\SysWOW64\uxtheme.dll 2013-08-14 18:51 - 2013-07-09 08:07 - 02233168 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys 2013-08-14 18:51 - 2013-07-02 02:44 - 00036288 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WdBoot.sys 2013-08-14 18:51 - 2013-07-02 00:08 - 00247216 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WdFilter.sys 2013-08-14 18:50 - 2013-07-13 08:18 - 00337408 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll 2013-08-14 18:50 - 2013-07-13 08:16 - 01889280 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll 2013-08-14 18:50 - 2013-07-13 08:16 - 00068096 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll 2013-08-14 18:50 - 2013-07-13 08:15 - 00124416 _____ (Microsoft Corporation) C:\windows\system32\apprepapi.dll 2013-08-14 18:50 - 2013-07-13 08:15 - 00098304 _____ (Microsoft Corporation) C:\windows\system32\apprepsync.dll 2013-08-14 18:50 - 2013-07-13 06:24 - 00261120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wintrust.dll 2013-08-14 18:50 - 2013-07-13 06:23 - 01568256 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll 2013-08-14 18:50 - 2013-07-13 06:23 - 00087040 _____ (Microsoft Corporation) C:\windows\SysWOW64\apprepapi.dll 2013-08-14 18:50 - 2013-07-13 06:23 - 00074240 _____ (Microsoft Corporation) C:\windows\SysWOW64\apprepsync.dll ==================== One Month Modified Files and Folders ======= 2013-09-13 22:09 - 2013-09-13 22:09 - 00000000 ____D C:\FRST 2013-09-13 22:06 - 2013-09-13 22:06 - 01949768 _____ (Farbar) C:\Users\HP\Desktop\FRST64.exe 2013-09-13 22:02 - 2012-07-26 09:22 - 00000006 ____H C:\windows\Tasks\SA.DAT 2013-09-13 00:00 - 2012-07-26 10:12 - 00000000 ____D C:\windows\system32\sru 2013-09-12 22:48 - 2013-09-12 22:48 - 00000000 ____D C:\Users\HP\AppData\Local\HP Quick Start 2013-09-12 22:45 - 2013-09-12 22:45 - 00001101 _____ C:\Users\Public\Desktop\HP Quick Start.lnk 2013-09-12 22:45 - 2013-09-12 22:45 - 00000000 ____D C:\Users\HP\AppData\Roaming\WinBatch 2013-09-12 22:45 - 2013-09-12 22:44 - 01945000 _____ (Hewlett-Packard Development Company, L.P. ) C:\Users\HP\Downloads\sp59485.exe 2013-09-12 22:43 - 2013-02-23 16:03 - 00000052 _____ C:\windows\SysWOW64\DOErrors.log 2013-09-12 22:43 - 2013-02-23 16:03 - 00000000 _____ C:\windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt 2013-09-12 22:42 - 2013-09-12 22:42 - 00000000 ____D C:\Program Files (x86)\HP 2013-09-10 13:57 - 2013-02-07 10:40 - 00000000 ____D C:\Users\HP 2013-09-10 13:37 - 2013-02-23 16:24 - 00000326 _____ C:\windows\Tasks\HPCeeScheduleForHP.job 2013-09-10 13:34 - 2013-02-11 12:00 - 00000000 ____D C:\Program Files (x86)\StartIsBack 2013-09-10 13:27 - 2013-02-07 10:40 - 01423113 _____ C:\windows\WindowsUpdate.log 2013-09-10 13:26 - 2012-07-26 10:12 - 00000000 ____D C:\windows\AUInstallAgent 2013-09-08 19:28 - 2013-02-23 16:24 - 00003134 _____ C:\windows\System32\Tasks\HPCeeScheduleForHP 2013-09-08 10:00 - 2013-02-07 10:46 - 00003598 _____ C:\windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-616626208-1632563055-3721843721-1001 2013-09-08 09:03 - 2013-02-24 10:08 - 00000000 ____D C:\Program Files (x86)\phase5 2013-09-07 20:24 - 2012-10-06 10:22 - 00745562 _____ C:\windows\system32\perfh007.dat 2013-09-07 20:24 - 2012-10-06 10:22 - 00169488 _____ C:\windows\system32\perfc007.dat 2013-09-07 20:24 - 2012-07-26 09:28 - 01752656 _____ C:\windows\system32\PerfStringBackup.INI 2013-09-07 20:19 - 2013-02-23 15:28 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-09-07 20:19 - 2012-07-26 07:26 - 00524288 ___SH C:\windows\system32\config\BBI 2013-09-07 18:01 - 2013-02-24 16:59 - 00000000 ____D C:\Users\HP\AppData\Roaming\FileZilla 2013-09-07 16:05 - 2013-02-23 15:46 - 00003924 _____ C:\windows\System32\Tasks\avast! Emergency Update 2013-09-07 16:05 - 2013-02-23 15:46 - 00000000 _____ C:\windows\SysWOW64\config.nt 2013-09-06 04:02 - 2013-09-06 04:02 - 00002723 _____ C:\Users\HP\Desktop\Robin Schulz - Wenn Träume fliegen lernen.lnk 2013-08-30 09:48 - 2013-03-06 20:35 - 00204880 _____ C:\windows\system32\Drivers\aswVmm.sys 2013-08-30 09:48 - 2013-03-06 20:35 - 00065336 _____ C:\windows\system32\Drivers\aswRvrt.sys 2013-08-30 09:48 - 2013-03-06 20:35 - 00064288 _____ (AVAST Software) C:\windows\system32\Drivers\aswTdi.sys 2013-08-30 09:48 - 2013-02-23 15:47 - 01030952 _____ (AVAST Software) C:\windows\system32\Drivers\aswSnx.sys 2013-08-30 09:48 - 2013-02-23 15:47 - 00378944 _____ (AVAST Software) C:\windows\system32\Drivers\aswSP.sys 2013-08-30 09:48 - 2013-02-23 15:47 - 00072016 _____ (AVAST Software) C:\windows\system32\Drivers\aswRdr2.sys 2013-08-30 09:48 - 2013-02-23 15:47 - 00033400 _____ (AVAST Software) C:\windows\system32\Drivers\aswFsBlk.sys 2013-08-30 09:48 - 2013-02-23 15:46 - 00080816 _____ (AVAST Software) C:\windows\system32\Drivers\aswMonFlt.sys 2013-08-30 09:47 - 2013-02-23 15:46 - 00287840 _____ (AVAST Software) C:\windows\system32\aswBoot.exe 2013-08-30 09:47 - 2013-02-23 15:46 - 00041664 _____ (AVAST Software) C:\windows\avastSS.scr 2013-08-29 23:41 - 2013-08-29 23:41 - 03068072 _____ C:\Users\HP\Downloads\Private_Sunset_Wallpaperpack_by_Denitorious.rar 2013-08-25 12:15 - 2013-04-14 23:10 - 00000000 ____D C:\Users\HP\.gimp-2.8 2013-08-25 11:51 - 2013-08-25 11:51 - 00002713 _____ C:\Users\HP\AppData\Local\recently-used.xbel 2013-08-22 04:32 - 2013-03-24 18:56 - 00000102 _____ C:\Users\HP\Downloads\cPix.ini 2013-08-17 08:50 - 2013-08-17 08:50 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-14 19:37 - 2012-07-26 10:12 - 00000000 ____D C:\windows\rescache 2013-08-14 19:09 - 2012-07-26 10:12 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2013-08-14 19:09 - 2012-07-26 10:12 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2013-08-14 19:09 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files\Windows Defender 2013-08-14 19:09 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-08-14 18:58 - 2013-08-14 18:57 - 00000000 ____D C:\windows\system32\MRT 2013-08-14 18:57 - 2013-02-23 20:08 - 78161360 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe Some content of TEMP: ==================== C:\Users\HP\AppData\Local\Temp\Shockwave_Installer_FF.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-30 19:06 ==================== End Of Log ============================ Addition.txt Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-09-2013 02 Ran by HP at 2013-09-13 22:09:43 Running from C:\Users\HP\Desktop Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94) Adobe Shockwave Player 12.0 (x32 Version: 12.0.2.122) AMD APP SDK Runtime (Version: 10.0.938.2) AMD Catalyst Install Manager (Version: 8.0.881.0) avast! Free Antivirus (x32 Version: 8.0.1497.0) Bonjour (Version: 3.0.0.10) Catalyst Control Center - Branding (x32 Version: 1.00.0000) Catalyst Control Center (x32 Version: 2012.0704.2139.36919) Catalyst Control Center Graphics Previews Common (x32 Version: 2012.0704.2139.36919) Catalyst Control Center InstallProxy (x32 Version: 2012.0704.2139.36919) Catalyst Control Center Localization All (x32 Version: 2012.0704.2139.36919) Catalyst Control Center Profiles Desktop (x32 Version: 2012.0704.2139.36919) CCC Help Chinese Standard (x32 Version: 2012.0704.2138.36919) CCC Help Chinese Traditional (x32 Version: 2012.0704.2138.36919) CCC Help Czech (x32 Version: 2012.0704.2138.36919) CCC Help Danish (x32 Version: 2012.0704.2138.36919) CCC Help Dutch (x32 Version: 2012.0704.2138.36919) CCC Help English (x32 Version: 2012.0704.2138.36919) CCC Help Finnish (x32 Version: 2012.0704.2138.36919) CCC Help French (x32 Version: 2012.0704.2138.36919) CCC Help German (x32 Version: 2012.0704.2138.36919) CCC Help Greek (x32 Version: 2012.0704.2138.36919) CCC Help Hungarian (x32 Version: 2012.0704.2138.36919) CCC Help Italian (x32 Version: 2012.0704.2138.36919) CCC Help Japanese (x32 Version: 2012.0704.2138.36919) CCC Help Korean (x32 Version: 2012.0704.2138.36919) CCC Help Norwegian (x32 Version: 2012.0704.2138.36919) CCC Help Polish (x32 Version: 2012.0704.2138.36919) CCC Help Portuguese (x32 Version: 2012.0704.2138.36919) CCC Help Russian (x32 Version: 2012.0704.2138.36919) CCC Help Spanish (x32 Version: 2012.0704.2138.36919) CCC Help Swedish (x32 Version: 2012.0704.2138.36919) CCC Help Thai (x32 Version: 2012.0704.2138.36919) CCC Help Turkish (x32 Version: 2012.0704.2138.36919) ccc-utility64 (Version: 2012.0704.2139.36919) Connected Music powered by Universal Music Group version 1.0 (x32 Version: 1.0) CyberLink LabelPrint (x32 Version: 2.5.1.5510) CyberLink Media Suite 10 (x32 Version: 10.0.1.1916) CyberLink PhotoDirector (x32 Version: 2.0.1.3109) CyberLink Power2Go 8 (x32 Version: 8.0.1.1902) CyberLink PowerDirector 10 (x32 Version: 10.0.1.1925) CyberLink PowerDVD (x32 Version: 10.0.1.4319) D3DX10 (x32 Version: 15.4.2368.0902) FileZilla Client 3.6.0.2 (x32 Version: 3.6.0.2) GIMP 2.8.4 (Version: 2.8.4) Hewlett-Packard ACLM.NET v1.2.0.0 (x32 Version: 1.00.0000) HP Connected Music (Meridian - installer) (x32 Version: v1.0) HP Connected Remote (x32 Version: 1.0.1206) HP Customer Experience Enhancements (x32 Version: 6.0.1.7) HP Postscript Converter (Version: 3.1.3591) HP Product Detection (x32 Version: 11.15.0009) HP Quick Start (x32 Version: 1.0.4660.30220) HP Registration Service (Version: 1.0.5976.4186) HP Support Assistant (x32 Version: 7.0.33.6) HP Support Information (x32 Version: 12.00.0000) HydraVision (x32 Version: 4.2.236.0) IDT Audio (x32 Version: 1.0.6418.0) Intel(R) Management Engine Components (x32 Version: 8.1.0.1252) Intel® Trusted Connect Service Client (Version: 1.24.388.1) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Office (x32 Version: 14.0.6120.5004) Microsoft Silverlight (Version: 5.1.20513.0) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Mozilla Firefox 23.0.1 (x86 de) (x32 Version: 23.0.1) Mozilla Maintenance Service (x32 Version: 23.0.1) MSVCRT (x32 Version: 15.4.2862.0708) MyFreeCodec (HKCU) OpenOffice.org 3.4.1 (x32 Version: 3.41.9593) Phase 5 HTML-Editor (x32 Version: 5.6.2.3) Recovery Manager (x32 Version: 5.5.0.5530) Ruby 2.0.0-p0-x64 (HKCU Version: 2.0.0-p0) Samsung Kies (x32 Version: 2.5.2.13021_10) SAMSUNG USB Driver for Mobile Phones (Version: 1.5.18.0) StartIsBack (x32) swMSM (x32 Version: 12.0.0.1) Windows Live Communications Platform (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3555.0308) Windows Live Fotogalerie (x32 Version: 15.4.3502.0922) Windows Live Installer (x32 Version: 15.4.3502.0922) Windows Live Language Selector (Version: 15.4.3555.0308) Windows Live Movie Maker (x32 Version: 15.4.3502.0922) Windows Live Photo Common (x32 Version: 15.4.3502.0922) Windows Live Photo Gallery (x32 Version: 15.4.3502.0922) Windows Live PIMT Platform (x32 Version: 15.4.3508.1109) Windows Live SOXE (x32 Version: 15.4.3502.0922) Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922) Windows Live UX Platform (x32 Version: 15.4.3502.0922) Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109) Windows Live Writer (x32 Version: 15.4.3502.0922) Windows Live Writer Resources (x32 Version: 15.4.3502.0922) WinRAR 4.20 (64-Bit) (Version: 4.20.0) ==================== Restore Points ========================= 23-08-2013 04:54:03 Geplanter Prüfpunkt 30-08-2013 17:12:40 Geplanter Prüfpunkt 07-09-2013 06:15:14 Geplanter Prüfpunkt 12-09-2013 20:52:39 HPSF Applying updates ==================== Hosts content: ========================== 2012-07-26 07:26 - 2012-07-26 07:26 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {04098125-1DF4-415E-B793-7B5D4E5475E8} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUScheduledInstall Task: {10D85952-E3F6-47A1-96CF-5E1C2D874EA6} - System32\Tasks\Microsoft\Windows\SystemRestore\SR => C:\Windows\system32\srtasks.exe [2012-07-26] (Microsoft Corporation) Task: {13A2AC02-B682-48CC-9155-2E2673580117} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical Task: {17644F17-DC4C-4AC8-9444-7AAA52EB5CDC} - System32\Tasks\Microsoft\Windows\NetCfg\BindingWorkItemQueueHandler Task: {1AA2FF61-73D6-4BC0-B9C0-5D5BFC16BFAC} - System32\Tasks\HPCeeScheduleForHP => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard) Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => C:\Windows\System32\sysmain.dll [2013-05-04] (Microsoft Corporation) Task: {1DB7C2F1-876C-4F24-AD17-8428211113F9} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents Task: {214B24F4-FEB4-4C59-AF1F-70136065199C} - System32\Tasks\Microsoft\Windows\Shell\IndexerAutomaticMaintenance Task: {23700E5C-0E77-499D-908A-415D5C6252F4} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Group Policy Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => C:\Windows\System32\WSClient.dll [2012-09-20] (Microsoft Corporation) Task: {2702A3BB-5AC4-4726-82E7-90C4EC00C296} - System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-616626208-1632563055-3721843721-1001 Task: {2C6B9EA8-7F5A-4ABA-BF96-8D352D02A743} - System32\Tasks\Microsoft\Windows\Device Setup\Metadata Refresh Task: {2CFB12B2-287C-4A18-9695-B4CEA3817FF2} - System32\Tasks\Microsoft\Windows\Servicing\StartComponentCleanup Task: {2E030FA7-3D7C-4E1D-8CFE-56ADB26FD402} - System32\Tasks\Microsoft\Windows\PI\Sqm-Tasks Task: {3054485A-F517-4E95-9977-4DD827B1E9B3} - System32\Tasks\Microsoft\Windows\WS\Badge Update Task: {378401BA-A703-444A-A79C-3C47AD2DC5B6} - System32\Tasks\Microsoft\Windows\TaskScheduler\Maintenance Configurator Task: {3AE164E7-30CD-40BC-9422-3EC7A5618965} - System32\Tasks\Microsoft\Windows\WS\WSTask Task: {3C490ABD-D849-41AF-9AC4-87DD759B0996} - System32\Tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem Task: {3F11F8FF-EA85-4D81-8E42-B69A9633DC5E} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start => Sc.exe start wuauserv Task: {4073C1B3-6E16-4AA8-B7F3-C6A6D35D5071} - System32\Tasks\Microsoft\Windows\TPM\Tpm-Maintenance Task: {44B3F1B8-5943-4072-8D8C-A9484676AC44} - System32\Tasks\Microsoft\Windows\Live\Roaming\SynchronizeWithStorage Task: {483A8F5C-5D26-44B5-B49E-AF6741D1BBEB} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\Windows\System32\MbaeParserTask.exe [2013-06-01] (Microsoft Corporation) Task: {4B952129-9AE9-41A3-BE2B-8AD2E06F66B6} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon Task: {51838471-C9B7-463B-BC5A-D11EF120D6CE} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task Task: {5755E746-D7ED-4C20-A472-66C11834CDE4} - System32\Tasks\Microsoft\Windows\TaskScheduler\Manual Maintenance Task: {5C4EFB77-EFA6-45DF-A373-D795C0725BFF} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Reboot Required Task: {627441F3-8526-4B62-BF9A-1A3EA414E71A} - System32\Tasks\Microsoft\Windows\SpacePort\SpaceAgentTask => C:\Windows\system32\SpaceAgent.exe [2012-07-26] (Microsoft Corporation) Task: {6E9DE125-5583-4031-B572-FEE48F25CFFF} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyMonitor => C:\Windows\System32\wpcmon.exe [2012-09-20] (Microsoft Corporation) Task: {6FDDEA7C-6310-428D-AEB2-54FFC72811EF} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Task: {74096F94-B654-4DB0-96F5-3C3408B92FE3} - System32\Tasks\Microsoft\Windows\PI\Secure-Boot-Update Task: {7D9A9A1C-499C-40A6-8F8A-5BCC4CC9A87C} - System32\Tasks\Microsoft\Windows\TaskScheduler\Regular Maintenance Task: {845CB020-68B5-4C6B-9876-7BEC7B3E27AC} - System32\Tasks\Microsoft\Windows\TaskScheduler\Idle Maintenance Task: {87354DAA-66DF-4B41-9346-15958D96E1D2} - System32\Tasks\Microsoft\Windows\FileHistory\File History (maintenance mode) Task: {8BF9019B-D566-4A74-92F5-09AEA88718ED} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-08-15] (Hewlett-Packard Company) Task: {921A1D4E-32FB-46D7-B6C0-6F467884074D} - System32\Tasks\Microsoft\Windows\WS\Sync Licenses Task: {9479EF8E-11D4-41B3-9783-CC65070D592D} - System32\Tasks\Microsoft\Windows\Time Synchronization\ForceSynchronizeTime Task: {94DCF254-64FB-4C4E-8E12-5F4055C10C2A} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Task: {95600611-422B-4480-BEED-AFDEEBE5F2CF} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-08-15] (Hewlett-Packard Company) Task: {989A7C6D-BE82-4C3C-AF96-6116039E336B} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic Task: {98CD221B-D244-4225-9AB4-73E8167F39D8} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2012-08-07] (Hewlett-Packard Company) Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => C:\Windows\System32\WSClient.dll [2012-09-20] (Microsoft Corporation) Task: {A800277E-E202-4492-AD38-3312641CBC04} - System32\Tasks\Microsoft\Windows\Live\Roaming\MaintenanceTask Task: {AB62FA47-2C99-44B1-A5D0-D4161423BE43} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyRefresh Task: {AC6259DE-AC59-459E-849E-6ADFFD1ADE63} - System32\Tasks\Microsoft\Windows\Shell\CreateObjectTask Task: {AEB0B5BD-B9E5-458A-898A-E559BD9EB51B} - System32\Tasks\Microsoft\Windows\SettingSync\BackgroundUploadTask Task: {AF549BD8-337C-4BF7-8681-36A182E30507} - System32\Tasks\Microsoft\Windows\Chkdsk\ProactiveScan Task: {B1CA95C0-9215-410C-8979-F0C4D76B6051} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2012-07-13] (Hewlett-Packard) Task: {B588864E-2EFB-4D9D-AFEE-D21CD77ADD42} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUFirmwareInstall Task: {BC76AEF7-2CF0-4EB6-B65B-A8803E0B5E12} - System32\Tasks\Microsoft\Windows\AppID\SmartScreenSpecific Task: {C1ACCD1E-4385-4FB2-B5E4-7F2A57A626A2} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan Task: {C463FD1E-31C7-4C20-AB65-08E514CA152D} - System32\Tasks\Microsoft\Windows\IME\SQM data sender Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => C:\Windows\System32\Windows.Storage.ApplicationData.dll [2012-07-26] (Microsoft Corporation) Task: {CBBB9A8C-CB78-456D-BF02-2469CEB7E57F} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUSessionConnect Task: {CD1054FF-8005-4904-8B9C-436EAB1E2021} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork Task: {DBCF6E1B-CE0A-441E-B7A5-219C8BE50C65} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical Task: {DECE5921-598D-454B-9A04-B2DE95EFC1B3} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery Task: {E36037C7-BA31-4890-8588-4672C6AA9103} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-08-30] (AVAST Software) Task: {E4DFE66F-E089-4CC3-A70F-957223D565F4} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask Task: {E8DAA09B-DF2A-4951-9134-6FA9587793F9} - System32\Tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers => C:\Windows\System32\drvinst.exe [2012-09-20] (Microsoft Corporation) Task: {EAD237E7-D276-4257-9F16-51DF41548733} - System32\Tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime => Sc.exe start w32time task_started Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => C:\Windows\System32\Startupscan.dll [2012-07-26] (Microsoft Corporation) Task: {ED0C1F69-C3A2-41EA-B8C3-3F0D83A1F6C0} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\BthSQM Task: C:\windows\Tasks\HPCeeScheduleForHP.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Loaded Modules (whitelisted) ============= 2013-04-13 06:04 - 2013-03-02 04:45 - 00072192 _____ (Microsoft Corporation) C:\windows\system32\taskhostex.exe 2013-08-08 22:24 - 2013-06-01 13:34 - 02391280 _____ (Microsoft Corporation) C:\windows\Explorer.EXE 2013-05-20 05:42 - 2013-04-09 06:52 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\SearchFilterHost.exe 2013-09-13 22:06 - 2013-09-13 22:06 - 01949768 _____ (Farbar) C:\Users\HP\Desktop\FRST64.exe ==================== Alternate Data Streams (whitelisted) ========== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (09/13/2013 10:04:55 PM) (Source: Windows Search Service) (User: ) Description: Die Registrierungsinformationen der Leistungsindikatoren für WSearchIdxPi für die Instanz konnten wegen des folgenden Fehlers nicht abgerufen werden: Der Vorgang wurde erfolgreich beendet. 0x0. Error: (09/13/2013 10:04:55 PM) (Source: Windows Search Service) (User: ) Description: Die Leistungsüberwachung für den Gatherer-Dienst kann nicht initialisiert werden, da die Datenquellen nicht geladen sind oder das freigegebene Speicherobjekt nicht geöffnet werden konnte. Dies beeinträchtigt lediglich die Verfügbarkeit der Leistungsindikatoren. Starten Sie den Computer erneut. Kontext: Anwendung, SystemIndex Katalog Error: (09/13/2013 10:04:54 PM) (Source: Windows Search Service) (User: ) Description: Die Leistungsüberwachung kann für den Gatherer-Dienst nicht initialisiert werden, da die Datenquellen nicht geladen sind oder das freigegebene Speicherobjekt nicht geöffnet werden konnte. Dies beeinträchtigt lediglich die Verfügbarkeit der Leistungsindikatoren. Starten Sie den Computer erneut. Error: (09/12/2013 10:49:24 PM) (Source: Windows Search Service) (User: ) Description: Die Registrierungsinformationen der Leistungsindikatoren für WSearchIdxPi für die Instanz konnten wegen des folgenden Fehlers nicht abgerufen werden: Der Vorgang wurde erfolgreich beendet. 0x0. Error: (09/12/2013 10:49:22 PM) (Source: Windows Search Service) (User: ) Description: Die Leistungsüberwachung für den Gatherer-Dienst kann nicht initialisiert werden, da die Datenquellen nicht geladen sind oder das freigegebene Speicherobjekt nicht geöffnet werden konnte. Dies beeinträchtigt lediglich die Verfügbarkeit der Leistungsindikatoren. Starten Sie den Computer erneut. Kontext: Anwendung, SystemIndex Katalog Error: (09/12/2013 10:49:20 PM) (Source: Windows Search Service) (User: ) Description: Die Leistungsüberwachung kann für den Gatherer-Dienst nicht initialisiert werden, da die Datenquellen nicht geladen sind oder das freigegebene Speicherobjekt nicht geöffnet werden konnte. Dies beeinträchtigt lediglich die Verfügbarkeit der Leistungsindikatoren. Starten Sie den Computer erneut. Error: (09/12/2013 10:34:11 PM) (Source: Windows Search Service) (User: ) Description: Die Registrierungsinformationen der Leistungsindikatoren für WSearchIdxPi für die Instanz konnten wegen des folgenden Fehlers nicht abgerufen werden: Der Vorgang wurde erfolgreich beendet. 0x0. Error: (09/12/2013 10:34:11 PM) (Source: Windows Search Service) (User: ) Description: Die Leistungsüberwachung für den Gatherer-Dienst kann nicht initialisiert werden, da die Datenquellen nicht geladen sind oder das freigegebene Speicherobjekt nicht geöffnet werden konnte. Dies beeinträchtigt lediglich die Verfügbarkeit der Leistungsindikatoren. Starten Sie den Computer erneut. Kontext: Anwendung, SystemIndex Katalog Error: (09/12/2013 10:34:07 PM) (Source: Windows Search Service) (User: ) Description: Die Leistungsüberwachung kann für den Gatherer-Dienst nicht initialisiert werden, da die Datenquellen nicht geladen sind oder das freigegebene Speicherobjekt nicht geöffnet werden konnte. Dies beeinträchtigt lediglich die Verfügbarkeit der Leistungsindikatoren. Starten Sie den Computer erneut. Error: (09/10/2013 05:43:11 PM) (Source: Windows Search Service) (User: ) Description: Die Registrierungsinformationen der Leistungsindikatoren für WSearchIdxPi für die Instanz konnten wegen des folgenden Fehlers nicht abgerufen werden: Der Vorgang wurde erfolgreich beendet. 0x0. System errors: ============= Error: (09/13/2013 10:04:50 PM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Schwerwiegender Fehler beim Zugriff auf den privaten Schlüssel der Anmeldeinformationen Server für SSL. Der vom kryptografischen Modul zurückgegebene Fehlercode lautet 0x8009030d. Der interne Fehlerstatus ist 10001. Error: (09/13/2013 10:02:24 PM) (Source: Microsoft-Windows-Kernel-General) (User: NT-AUTORITÄT) Description: 0xc000014d0 Error: (09/13/2013 10:02:32 PM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 12.09.2013 um 23:26:35 unerwartet heruntergefahren. Error: (09/12/2013 11:00:16 PM) (Source: DCOM) (User: PC) Description: {682159D9-C321-47CA-B3F1-30E36B2EC8B9} Error: (09/12/2013 10:55:10 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "avast! Antivirus" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 5000 Millisekunden durchgeführt: Neustart des Diensts. Error: (09/12/2013 10:53:47 PM) (Source: DCOM) (User: PC) Description: {682159D9-C321-47CA-B3F1-30E36B2EC8B9} Error: (09/12/2013 10:53:17 PM) (Source: DCOM) (User: PC) Description: {682159D9-C321-47CA-B3F1-30E36B2EC8B9} Error: (09/12/2013 10:52:47 PM) (Source: DCOM) (User: PC) Description: {682159D9-C321-47CA-B3F1-30E36B2EC8B9} Error: (09/12/2013 10:52:17 PM) (Source: DCOM) (User: PC) Description: {682159D9-C321-47CA-B3F1-30E36B2EC8B9} Error: (09/12/2013 10:51:47 PM) (Source: DCOM) (User: PC) Description: {682159D9-C321-47CA-B3F1-30E36B2EC8B9} Microsoft Office Sessions: ========================= Error: (09/13/2013 10:04:55 PM) (Source: Windows Search Service)(User: ) Description: WSearchIdxPiDer Vorgang wurde erfolgreich beendet. 0x0 Error: (09/13/2013 10:04:55 PM) (Source: Windows Search Service)(User: ) Description: Kontext: Anwendung, SystemIndex Katalog Error: (09/13/2013 10:04:54 PM) (Source: Windows Search Service)(User: ) Description: Error: (09/12/2013 10:49:24 PM) (Source: Windows Search Service)(User: ) Description: WSearchIdxPiDer Vorgang wurde erfolgreich beendet. 0x0 Error: (09/12/2013 10:49:22 PM) (Source: Windows Search Service)(User: ) Description: Kontext: Anwendung, SystemIndex Katalog Error: (09/12/2013 10:49:20 PM) (Source: Windows Search Service)(User: ) Description: Error: (09/12/2013 10:34:11 PM) (Source: Windows Search Service)(User: ) Description: WSearchIdxPiDer Vorgang wurde erfolgreich beendet. 0x0 Error: (09/12/2013 10:34:11 PM) (Source: Windows Search Service)(User: ) Description: Kontext: Anwendung, SystemIndex Katalog Error: (09/12/2013 10:34:07 PM) (Source: Windows Search Service)(User: ) Description: Error: (09/10/2013 05:43:11 PM) (Source: Windows Search Service)(User: ) Description: WSearchIdxPiDer Vorgang wurde erfolgreich beendet. 0x0 ==================== Memory info =========================== Percentage of memory in use: 16% Total physical RAM: 6097.02 MB Available physical RAM: 5069.56 MB Total Pagefile: 7057.02 MB Available Pagefile: 6041.64 MB Total Virtual: 8192 MB Available Virtual: 8191.76 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:919.05 GB) (Free:864.17 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (Recovery Image) (Fixed) (Total:10.98 GB) (Free:1.34 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 932 GB) (Disk ID: 6D7D92FF) Partition: GPT Partition Type ==================== End Of Log ============================ |
14.09.2013, 13:32 | #2 |
/// Helfer-Team | Windows 8: Desktop schwarz, Explorer nicht ausführbar Anleitung / HilfeWindows Repair Tool (AIO)
__________________ |
Themen zu Windows 8: Desktop schwarz, Explorer nicht ausführbar |
beste grüße, branding, diagnostics, farbar, farbar recovery scan tool, srtasks.exe |