![]() |
|
Plagegeister aller Art und deren Bekämpfung: Win 8.1 x64: Yontoo 2.052 kann nicht deinstalliert werdenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() | #1 |
| ![]() Win 8.1 x64: Yontoo 2.052 kann nicht deinstalliert werden Hallo, Habe heute bemerkt, dass ich Yontoo 2.052 am Pc habe. Dies lässt sich nicht deinstallieren ('Setup initialization error'). Jetzt habe ich mich durch ein paar Theras hier gelesen und erfahren, dass da theoretisch mehr dahinterstecken könnte (Malware, RootKits, etc.). Da ich aber weiß, dass das nicht sein MUSS, hab ich mal 'garnichts' gemacht - außer den Logfiles, die angefordert wurden: defogger hab ich ausgeführt - Fehlermeldung gabs keine. Re-enable hab ich nicht angerührt. GMER - hier kam folgende Fehlermeldung: C:\WINDOWS\system32\config\system: Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. (Ein Neustart half hier nichts.) Der Scan ließ sich aber trotzdem starten. Dann kam wieder obige Fehlermeldung, gefolgt von der Meldung C:\Users\marDin\ntuser.dat: Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. Danach kam die Meldung, dass der Scan erfolgreich beendet wurde. Code:
ATTFilter GMER 2.1.19163 - hxxp://www.gmer.net Rootkit scan 2013-10-22 13:47:47 Windows 6.2.9200 x64 \Device\Harddisk0\DR0 -> \Device\00000032 Samsung_SSD_840_Series rev.DXT06B0Q 232,89GB Running: gmer_2.1.19163.exe; Driver: C:\Users\marDin\AppData\Local\Temp\ugeoikoc.sys ---- User code sections - GMER 2.1 ---- .text C:\WINDOWS\system32\dwm.exe[440] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 506 00007ffe63e9169a 4 bytes JMP 00007ffe64691502 .text C:\WINDOWS\system32\dwm.exe[440] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 514 00007ffe63e916a2 4 bytes JMP 00007ffe6469150a .text C:\WINDOWS\system32\dwm.exe[440] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 118 00007ffe63e9181a 4 bytes JMP 00007ffe64691682 .text C:\WINDOWS\system32\dwm.exe[440] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 142 00007ffe63e91832 4 bytes JMP 00007ffe6469169a .text C:\WINDOWS\system32\nvvsvc.exe[576] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 506 00007ffe63e9169a 4 bytes JMP 00007ffe64691502 .text C:\WINDOWS\system32\nvvsvc.exe[576] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 514 00007ffe63e916a2 4 bytes JMP 00007ffe6469150a .text C:\WINDOWS\system32\nvvsvc.exe[576] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 118 00007ffe63e9181a 4 bytes JMP 00007ffe64691682 .text C:\WINDOWS\system32\nvvsvc.exe[576] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 142 00007ffe63e91832 4 bytes JMP 00007ffe6469169a .text C:\WINDOWS\Explorer.EXE[1948] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 506 00007ffe63e9169a 4 bytes JMP 00007ffe64691502 .text C:\WINDOWS\Explorer.EXE[1948] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 514 00007ffe63e916a2 4 bytes JMP 00007ffe6469150a .text C:\WINDOWS\Explorer.EXE[1948] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 118 00007ffe63e9181a 4 bytes JMP 00007ffe64691682 .text C:\WINDOWS\Explorer.EXE[1948] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 142 00007ffe63e91832 4 bytes JMP 00007ffe6469169a .text C:\Windows\System\HsMgr64.exe[5372] C:\WINDOWS\SYSTEM32\combase.dll!CoCreateInstance 00007ffe619322d0 7 bytes JMP 00007fff618e00d8 .text C:\Windows\System\HsMgr64.exe[5372] C:\WINDOWS\SYSTEM32\combase.dll!CoCreateInstanceEx 00007ffe61978130 7 bytes JMP 00007fff618e0110 .text C:\Windows\System\HsMgr64.exe[5372] C:\WINDOWS\SYSTEM32\DSOUND.dll!DirectSoundCreate8 00007ffe4d47ae88 7 bytes JMP 00007ffe618e0180 .text C:\Windows\System\HsMgr64.exe[5372] C:\WINDOWS\SYSTEM32\DSOUND.dll!DirectSoundCaptureCreate8 00007ffe4d481d10 7 bytes JMP 00007ffe618e05a8 .text C:\Windows\System\HsMgr64.exe[5372] C:\WINDOWS\SYSTEM32\DSOUND.dll!DirectSoundCaptureCreate 00007ffe4d48d2dc 7 bytes JMP 00007ffe618e0570 .text C:\Windows\System\HsMgr64.exe[5372] C:\WINDOWS\SYSTEM32\DSOUND.dll!DirectSoundCreate 00007ffe4d48d3ec 7 bytes JMP 00007ffe618e0148 .text C:\Windows\System\HsMgr64.exe[5372] C:\WINDOWS\SYSTEM32\DSOUND.dll!DirectSoundFullDuplexCreate 00007ffe4d48d4fc 5 bytes JMP 00007ffe618e05e0 .text C:\Program Files\Windows Media Player\wmpnetwk.exe[6392] C:\WINDOWS\SYSTEM32\WSOCK32.dll!setsockopt + 194 00007ffe59661f6a 4 bytes [66, 59, FE, 7F] .text C:\Program Files\Windows Media Player\wmpnetwk.exe[6392] C:\WINDOWS\SYSTEM32\WSOCK32.dll!setsockopt + 218 00007ffe59661f82 4 bytes [66, 59, FE, 7F] ---- Threads - GMER 2.1 ---- Thread C:\WINDOWS\system32\csrss.exe [684:708] fffff960009a54d0 Thread C:\WINDOWS\system32\csrss.exe [684:848] fffff960009a54d0 Thread C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1828:4104] 00007ffe598f4094 Thread C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1828:4112] 00007ffe598f4094 Thread C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1828:4120] 00007ffe4ee0c680 Thread C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [1836:4984] 00007ffe598f4094 Thread C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [1836:4988] 00007ffe4ef6838c Thread C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [1836:4992] 00007ffe598f4094 Thread C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [1836:4996] 00007ffe4ee0c680 Thread C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [1836:5000] 00007ffe598f4094 ---- Disk sectors - GMER 2.1 ---- Disk \Device\Harddisk0\DR0 unknown MBR code ---- EOF - GMER 2.1 ---- FRST - Logfiles: FRST.txt war extrem lang und zu groß (ich hätte die Maximalzeichen und die maximale Dateigröße überschritten), deshalb hab ich sie gezippt und angehängt. Sorry. und Addition.txt Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 22-10-2013 Ran by marDin at 2013-10-22 13:32:07 Running from C:\Users\marDin\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Kaspersky Internet Security (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Kaspersky Internet Security (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Internet Security (Enabled) {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD} ==================== Installed Programs ====================== µTorrent (x32 Version: 3.3.0.29342) Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.117) Alien Nations (x32) Antichamber (x32) Apple Application Support (x32 Version: 2.3.6) Apple Mobile Device Support (Version: 7.0.0.117) Apple Software Update (x32 Version: 2.1.3.127) ASUS USB-N13 WLAN Card Utilities & Driver (x32 Version: 1.0.0.5) ASUS Xonar DGX Audio (x32 Version: ) Audacity 2.0.3 (x32 Version: 2.0.3) Battlefield 3™ (x32 Version: 1.6.0.0) Battlelog Web Plugins (x32 Version: 2.1.7) Bonjour (Version: 3.0.0.10) Catan - Die erste Insel (x32) CCleaner (Version: 4.06) Chime (x32) Cities in Motion (x32) Corsair Headset Software (x32 Version: 2.0.7) D3DX10 (x32 Version: 15.4.2368.0902) Die Gilde Gold Update v. 2.06 (x32) Die Gilde Gold-Edition (x32 Version: 2.06) Die Sims™ 3 (x32 Version: 1.57.62) Die Sims™ 3 Late Night (x32 Version: 6.5.1) Die Sims™ 3 Luxus-Accessoires (x32 Version: 3.0.38) Don't Starve (x32) Dota 2 (x32) Dropbox (HKCU Version: 2.4.2) Dungeon Keeper 2 (x32) Dwarfs!? (x32) Element4l (x32) ESN Sonar (x32 Version: 0.70.4) Eufloria (x32) FEZ (x32) FileZilla Client 3.7.0.1 (x32 Version: 3.7.0.1) Firebird SQL Server - MAGIX Edition (x32 Version: 2.1.32.0) Fotogalerie (x32 Version: 16.4.3505.0912) Fractal: Make Blooms Not War (x32) Fraps (remove only) (x32) Free Studio version 2013 (x32 Version: 6.1.11.827) Free YouTube to MP3 Converter version 3.12.12.827 (x32 Version: 3.12.12.827) From Dust (x32) GeForce Experience NvStream Client Components (Version: 0.1.87) GIMP 2.8.4 (Version: 2.8.4) GPGNet (x32 Version: 1.0.0) Guild Wars 2 (x32) Half Minute Hero: Super Mega Neo Climax Ultimate Boy (x32) Harvest: Massive Encounter (x32) iCloud (Version: 3.0.2.163) Intel(R) Control Center (x32 Version: 1.2.1.1008) Intel(R) Management Engine Components (x32 Version: 8.1.0.1252) Intel(R) Rapid Storage Technology (x32 Version: 11.5.0.1207) Intel® Trusted Connect Service Client (Version: 1.24.388.1) IrfanView (remove only) (x32 Version: 4.35) iTunes (Version: 11.1.1.11) Java 7 Update 25 (64-bit) (Version: 7.0.250) Java 7 Update 25 (x32 Version: 7.0.250) Java Auto Updater (x32) JDownloader 0.9 (x32 Version: 0.9) Kaspersky Internet Security (x32 Version: 14.0.0.4651) LAME v3.99.3 (for Windows) (x32) League of Legends (x32 Version: 3.0.1) LibreOffice 4.0.1.2 (x32 Version: 4.0.1.2) Little Inferno (x32) Magicka (x32) MAGIX Content und Soundpools (x32 Version: 1.0.0.0) MAGIX Music Maker 2013 Premium (Demosongs) (Version: 1.0.0.0) MAGIX Music Maker 2013 Premium (Demosongs) (x32 Version: 1.0.0.0) MAGIX Music Maker 2013 Premium (Introductory videos) (Version: 1.0.0.0) MAGIX Music Maker 2013 Premium (Introductory videos) (x32 Version: 1.0.0.0) MAGIX Music Maker 2013 Premium (Synthesizer und Effekte) (Version: 1.0.0.0) MAGIX Music Maker 2013 Premium (Synthesizer und Effekte) (x32 Version: 1.0.0.0) MAGIX Music Maker 2013 Premium (Version: 19.0.1.36) MAGIX Music Maker 2013 Premium (Visuals) (Version: 1.0.0.0) MAGIX Music Maker 2013 Premium (Visuals) (x32 Version: 1.0.0.0) MAGIX Music Maker 2013 Premium (x32 Version: 19.0.1.36) MAGIX Music Maker 2013 Premium Soundpools (Version: 1.0.0.0) MAGIX Music Maker 2013 Soundpools (Version: 1.0.0.0) MAGIX Screenshare (Version: 4.3.6.1987) MAGIX Screenshare (x32 Version: 4.3.6.1987) MAGIX Speed burnR (MSI) (Version: 7.0.2.6) MAGIX Speed burnR (MSI) (x32 Version: 7.0.2.6) MAGIX Video Pro X5 (Version: 12.0.10.28) MAGIX Video Pro X5 (x32 Version: 12.0.10.28) MAGIX Vita Solo Instruments (Century Keys) for MAGIX Music Maker 2013 Premium (x32 Version: 1.1.0.0) MAGIX Vita Solo Instruments (Jazz Drums) for MAGIX Music Maker 2013 Premium (x32 Version: 1.1.0.0) MAGIX Vita Solo Instruments (Saxophonia) for MAGIX Music Maker 2013 Premium (x32 Version: 1.1.0.0) MAGIX Vita Solo Instruments (Space Pad) for MAGIX Music Maker 2013 Premium (x32 Version: 1.1.0.0) MAGIX Vita Solo Instruments (Upright Bass) for MAGIX Music Maker 2013 Premium (x32 Version: 1.1.0.0) MAGIX Vita Solo Instruments (Vibraphone) for MAGIX Music Maker 2013 Premium (x32 Version: 1.1.0.0) Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.5.88.0) Microsoft Games for Windows Marketplace (x32 Version: 3.5.50.0) Microsoft Office 2007 Service Pack 3 (SP3) (x32) Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003) Microsoft Office Home and Student 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Live Add-in 1.5 (x32 Version: 2.0.4024.1) Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000) Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014) Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32) Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Silverlight (Version: 5.1.20913.0) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (x32 Version: 11.0.51106.1) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (x32 Version: 11.0.51106.1) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106 (Version: 11.0.51106) Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106 (Version: 11.0.51106) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 (x32 Version: 11.0.51106) Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 (x32 Version: 11.0.51106) Microsoft XNA Framework Redistributable 3.1 (x32 Version: 3.1.10527.0) Microsoft XNA Framework Redistributable 4.0 Refresh (x32 Version: 4.0.30901.0) Microsoft-Maus- und Tastatur-Center (Version: 2.2.173.0) Movie Maker (x32 Version: 16.4.3505.0912) Mozilla Firefox 24.0 (x86 de) (x32 Version: 24.0) Mozilla Maintenance Service (x32 Version: 24.0) Mozilla Thunderbird 17.0.6 (x86 de) (x32 Version: 17.0.6) MSVCRT (x32 Version: 15.4.2862.0708) MSVCRT110 (x32 Version: 16.4.1108.0727) MSVCRT110_amd64 (Version: 16.4.1109.0912) MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0) MSXML 4.0 SP3 Parser (x32 Version: 4.30.2100.0) My Game Long Name Nexus Mod Manager (Version: 0.44.11) NightSky (x32) Nimbus (x32) NVIDIA 3D Vision Controller-Treiber 331.58 (Version: 331.58) NVIDIA 3D Vision Treiber 331.58 (Version: 331.58) NVIDIA GeForce Experience 1.6.1 (Version: 1.6.1) NVIDIA Grafiktreiber 331.58 (Version: 331.58) NVIDIA HD-Audiotreiber 1.3.26.4 (Version: 1.3.26.4) NVIDIA Install Application (Version: 2.1002.133.902) NVIDIA PhysX (x32 Version: 9.13.0725) NVIDIA PhysX-Systemsoftware 9.13.0725 (Version: 9.13.0725) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3158) NVIDIA Systemsteuerung 331.58 (Version: 331.58) NVIDIA Update 8.3.14 (Version: 8.3.14) NVIDIA Update Components (Version: 8.3.14) NVIDIA Virtual Audio 1.2.5 (Version: 1.2.5) Open Broadcaster Software (x32) OpenAL (x32) OpenTTD 1.3.2 (x32 Version: 1.3.2) Origin (x32 Version: 9.1.15.109) Overwolf (x32 Version: 0.44.256) Paint.NET v3.5.11 (Version: 3.61.0) Pando Media Booster (x32 Version: 2.6.0.7) Papers, Please (x32) Peggle Deluxe (x32) Perspective 1.0 (x32 Version: 1.0) Photo Gallery (x32 Version: 16.4.3505.0912) Plants vs. Zombies: Game of the Year (x32) Pokki (HKCU Version: 0.263.13.325) Pokki Download Helper (HKCU Version: 1.3.1.282) Prison Architect (x32) Puddle (x32) PunkBuster Services (x32 Version: 0.991) QuickTime (x32 Version: 7.74.80.86) Realtek Ethernet Controller Driver (x32 Version: 8.7.1025.2012) Recuva (Version: 1.45) Reus (x32) Rogue Legacy (x32) RPG Maker VX Ace (x32) Sanctum 2 (x32) SHIELD Streaming (Version: 1.05.28) SimCity 2000 Special Edition (x32 Version: 2.0.0.14) SpaceChem (x32) Spelunky (x32) SPORE™ (x32 Version: 1.00.0000) Steam (x32 Version: 1.0.0.0) Super Hexagon (x32) Supreme Commander - Forged Alliance (HKCU Version: 1.00.0000) Supreme Commander (HKCU Version: 1.00.0000) Supreme Commander: Forged Alliance (x32) Symphony (x32) Team Fortress 2 (x32) TeamSpeak 3 Client (Version: 3.0.13) TEdit 3 (x32 Version: 3.4.13282.2) Terrafirma (x32 Version: 1.9.8) Terraria (x32) Text-To-Speech-Runtime (x32 Version: 1.0.0.0) The Binding of Isaac (x32) The Elder Scrolls V: Skyrim (x32) The Mighty Quest For Epic Loot Version 1.213647 (x32 Version: 1.213647) The Wonderful End of the World (x32) Tower Wars (x32) Tunngle beta (x32) Ubisoft Game Launcher (x32 Version: 1.0.0.0) Unity Web Player (HKCU Version: ) Unlocker 1.9.2 (Version: 1.9.2) Update for 2007 Microsoft Office System (KB967642) (x32) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (x32) Update für Microsoft Office Excel 2007 Help (KB963678) (x32) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (x32) Update für Microsoft Office Word 2007 Help (KB963665) (x32) Vampires Dawn II: Ancient Blood (MP3) (x32 Version: Vampires Dawn 2 - Version 1.23 (MP3)) Vampires Dawn: Reign of Blood (x32 Version: Vampires Dawn: Reign of Blood 1.31) Vita 2 (Version: 1.0.0.0) Vita 2 Zusatzcontent (Version: 1.0.0.0) Vita Bass Machine (Version: 1.0.0.0) Vita Century Guitar (Version: 1.0.0.0) Vita Concert Guitar (Version: 1.0.0.0) Vita Drum Engine (Version: 1.0.0.0) Vita Electric Bass (Version: 1.0.0.0) Vita Lead Synth (Version: 1.0.0.0) Vita Rock Drums (Version: 1.0.0.0) Vita Soundtrack Percussion (Version: 1.0.0.0) Vita String Ensemble (Version: 1.0.0.0) Vita World Percussion (Version: 1.0.0.0) VLC media player 2.0.7 (Version: 2.0.7) Windows Live Communications Platform (x32 Version: 16.4.3505.0912) Windows Live Essentials (x32 Version: 16.4.3505.0912) Windows Live Installer (x32 Version: 16.4.3505.0912) Windows Live Photo Common (x32 Version: 16.4.3505.0912) Windows Live PIMT Platform (x32 Version: 16.4.3505.0912) Windows Live SOXE (x32 Version: 16.4.3505.0912) Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912) Windows Live UX Platform (x32 Version: 16.4.3505.0912) Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912) WinRAR 4.20 (64-Bit) (Version: 4.20.0) WinRAR 5.00 (32-bit) (x32 Version: 5.00.0) World of Goo (x32) XAMPP 1.8.1 (x32) XMedia Recode Version 3.1.4.8 (x32 Version: 3.1.4.8) YNAB 4 version 4.3.196 (x32 Version: 4.3.196) Yontoo 2.052 (Version: 2.052) ==================== Restore Points ========================= 17-10-2013 15:13:21 Installed Corsair Headset Software 17-10-2013 15:19:12 Wiederherstellungsvorgang 20-10-2013 09:16:23 Entfernt ASUS Xonar DGX Audio 21-10-2013 20:26:54 Removed League of Legends ==================== Hosts content: ========================== 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {01FDE12B-FB2D-4A1E-81E8-8EC804AAB4A7} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {03D6AD94-BDAB-4130-A1BC-021134ACACBE} - System32\Tasks\Baidu PC Faster Update => $szInstallingDir\Updater.exe Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate Task: {33D4C0CE-C4C6-4150-8F8D-D657DBE8BCF9} - System32\Tasks\Apple Diagnostics => C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe [2013-09-14] (Apple Inc.) Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) Task: {3FF70E24-4F98-43D3-BE72-4AB123FD7750} - System32\Tasks\Express FilesUpdate => C:\Program Files (x86)\ExpressFiles\EFUpdater.exe Task: {40B6B023-1B53-4CA7-83F2-0802FCF54991} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation) Task: {4192CFF8-D915-4FF8-81DD-D9BDF7B8E094} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2013-05-13] (Microsoft) Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance Task: {4BD5A38B-60BF-4C72-A86D-F8F9510CA4BF} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation) Task: {55F86DF4-7EF8-4A23-8075-D5952BF3AE70} - System32\Tasks\Microsoft\Windows\SetupSQMTask => C:\WINDOWS\SYSTEM32\OOBE\SETUPSQM.EXE [2013-08-22] (Microsoft Corporation) Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => C:\Windows\system32\AppxDeploymentClient.dll [2013-09-30] (Microsoft Corporation) Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work Task: {C1FFD89E-554F-44E1-BEA5-260AA9818B35} - System32\Tasks\FRAPS => C:\Fraps\fraps.exe [2013-02-26] (Beepa P/L) Task: {C67E9E8F-963C-4A12-BB1F-4372D7AF366A} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation) Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask Task: {D59C99F8-58C6-490C-9123-0E2ECCE0351A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-09-19] (Piriform Ltd) Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization Task: {E4ADCC2C-9175-47B8-9C12-34C8185E6B18} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-09] (Adobe Systems Incorporated) Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE Task: {EDE8CE21-4E12-407A-8E65-AC8F4693035B} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= 2013-08-22 15:37 - 2013-08-22 15:37 - 00031136 _____ () C:\Program Files (x86)\Overwolf\x64\OWExplorer-2006.dll 2013-06-06 03:02 - 2013-06-06 03:02 - 01741080 _____ () C:\Users\marDin\AppData\Local\Pokki\ocdeskband_0.dll 2010-07-15 06:44 - 2010-07-15 06:44 - 00020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll 2013-10-17 22:58 - 2013-10-17 22:58 - 00183808 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20279_x64__8wekyb3d8bbwe\ErrorReporting.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00031648 _____ () C:\Program Files (x86)\Overwolf\x64\OWExplorerLauncher.dll 2012-10-29 12:08 - 2013-10-02 09:57 - 00302056 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\directsound_win64.dll 2012-10-29 12:08 - 2013-10-02 09:57 - 00320488 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll 2012-10-29 12:08 - 2013-10-02 09:57 - 00186344 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\appscanner_plugin.dll 2012-10-29 12:08 - 2013-10-02 09:57 - 00565224 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\clientquery_plugin.dll 2013-09-10 08:28 - 2013-10-02 09:57 - 00700904 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll 2013-01-28 14:08 - 2013-01-28 14:08 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2013-01-28 14:08 - 2013-01-28 14:08 - 01242512 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2013-06-17 12:35 - 2013-06-17 12:35 - 00478400 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\dblite.dll 2013-05-08 14:52 - 2013-05-08 14:52 - 01270464 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\kpcengine.2.3.dll 2013-03-03 08:15 - 2009-12-09 22:20 - 00126976 _____ () C:\Program Files (x86)\ASUS\USB-N13 WLAN Card Utilities\EnumDevLib.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00078240 _____ () C:\Program Files (x86)\Overwolf\OWExplorer-2006.dll 2013-01-26 04:53 - 2013-01-26 04:53 - 00716288 _____ () C:\Users\marDin\AppData\Local\Pokki\Engine\libglesv2.dll 2013-01-26 04:53 - 2013-01-26 04:53 - 00130048 _____ () C:\Users\marDin\AppData\Local\Pokki\Engine\libegl.dll 2013-01-26 04:53 - 2013-01-26 04:53 - 00569856 _____ () C:\Users\marDin\AppData\Local\Pokki\Engine\ppGoogleNaClPluginChrome.dll 2013-01-26 00:07 - 2013-01-26 00:07 - 01400846 _____ () C:\Users\marDin\AppData\Local\Pokki\Engine\avcodec-54.dll 2013-01-26 00:07 - 2013-01-26 00:07 - 00151054 _____ () C:\Users\marDin\AppData\Local\Pokki\Engine\avutil-51.dll 2013-01-26 00:07 - 2013-01-26 00:07 - 00222734 _____ () C:\Users\marDin\AppData\Local\Pokki\Engine\avformat-54.dll 2013-09-17 17:04 - 2013-09-17 17:04 - 03279768 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2013-09-14 01:51 - 2013-09-14 01:51 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Internet Services\zlib1.dll 2013-09-14 01:50 - 2013-09-14 01:50 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Internet Services\libxml2.dll 2013-10-20 11:17 - 2012-06-06 09:56 - 00143360 ____N () C:\Program Files\ASUS Xonar DGX Audio\Customapp\VmixP8.dll 2013-03-12 18:10 - 2013-08-22 00:18 - 00687104 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2013-02-25 08:39 - 2013-10-09 04:19 - 01121704 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2013-02-19 12:48 - 2013-09-11 00:20 - 20625832 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll 2012-12-11 10:51 - 2013-06-15 01:49 - 01100800 _____ () C:\Program Files (x86)\Steam\bin\avcodec-53.dll 2012-12-11 10:51 - 2013-06-15 01:49 - 00124416 _____ () C:\Program Files (x86)\Steam\bin\avutil-51.dll 2012-12-11 10:51 - 2013-06-15 01:49 - 00192000 _____ () C:\Program Files (x86)\Steam\bin\avformat-53.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 21636024 _____ () C:\Program Files (x86)\Overwolf\OverWolf.Client.Core.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00065536 _____ () C:\Program Files (x86)\Overwolf\de\OverWolf.Client.Core.resources.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00091576 _____ () C:\Program Files (x86)\Overwolf\OverWolf.BL.Interfaces.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00010240 _____ () C:\Program Files (x86)\Overwolf\ODK.AddIns.V2.HostView.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00124320 _____ () C:\Program Files (x86)\Overwolf\OWService.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00940960 _____ () C:\Program Files (x86)\Overwolf\OWServer.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00037280 _____ () C:\Program Files (x86)\Overwolf\OWLog.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00669088 _____ () C:\Program Files (x86)\Overwolf\OWAgent.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00087552 _____ () C:\Program Files (x86)\Overwolf\BrowserWindow.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00027040 _____ () C:\Program Files (x86)\Overwolf\OWExplorerLauncher.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 01213633 _____ () C:\Program Files (x86)\Overwolf\Purplizer\libxml2-2.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00055808 _____ () C:\Program Files (x86)\Overwolf\Purplizer\zlib1.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00301681 _____ () C:\Program Files (x86)\Overwolf\Purplizer\plugins\libmsn.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00904525 _____ () C:\Program Files (x86)\Overwolf\Purplizer\libcairo-2.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00482872 _____ () C:\Program Files (x86)\Overwolf\Purplizer\libgio-2.0-0.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00095189 _____ () C:\Program Files (x86)\Overwolf\Purplizer\libpangocairo-1.0-0.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00219305 _____ () C:\Program Files (x86)\Overwolf\Purplizer\libpng14-14.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00279059 _____ () C:\Program Files (x86)\Overwolf\Purplizer\libfontconfig-1.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00535264 _____ () C:\Program Files (x86)\Overwolf\Purplizer\freetype6.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00143096 _____ () C:\Program Files (x86)\Overwolf\Purplizer\libexpat-1.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00016371 _____ () C:\Program Files (x86)\Overwolf\Purplizer\plugins\libxmpp.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00323844 _____ () C:\Program Files (x86)\Overwolf\Purplizer\libjabber.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00016330 _____ () C:\Program Files (x86)\Overwolf\Purplizer\plugins\libyahoo.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00190138 _____ () C:\Program Files (x86)\Overwolf\Purplizer\libymsg.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00018706 _____ () C:\Program Files (x86)\Overwolf\Purplizer\plugins\ssl-nss.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00006526 _____ () C:\Program Files (x86)\Overwolf\Purplizer\plugins\ssl.dll 2013-08-22 15:37 - 2013-08-22 15:37 - 00417501 _____ () C:\Program Files (x86)\Overwolf\Purplizer\sqlite3.dll 2013-03-13 22:48 - 2013-03-13 22:48 - 24978944 _____ () C:\Users\marDin\AppData\Roaming\Dropbox\bin\libcef.dll 2013-04-29 20:06 - 2013-10-22 13:10 - 00013600 _____ () C:\Users\marDin\AppData\Roaming\Yontoo\dat\Desktop.OS.Plugin.dll 2013-10-19 15:27 - 2013-10-19 15:27 - 00016384 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\PSIClient\a9dd3b12fecb739b31c31ede665bd0c2\PSIClient.ni.dll 2013-03-03 07:22 - 2012-06-25 11:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\marDin\SkyDrive:ms-properties AlternateDataStreams: C:\Users\marDin\Desktop\FINANZEN.XLS:com.dropbox.attributes AlternateDataStreams: C:\Users\marDin\Desktop\ProgrammPeterskirche.doc:com.dropbox.attributes ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SystemEventsBroker => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SystemEventsBroker => ""="Service" ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (10/22/2013 11:25:14 AM) (Source: Windows Search Service) (User: ) Description: Der Index kann nicht initialisiert werden. Details: Das angegebene Objekt wurde nicht gefunden. Geben Sie den Namen eines vorhandenen Objekts an. (HRESULT : 0x80040d06) (0x80040d06) Error: (10/22/2013 11:25:14 AM) (Source: Windows Search Service) (User: ) Description: Die Anwendung kann nicht initialisiert werden. Kontext: Windows Anwendung Details: Das angegebene Objekt wurde nicht gefunden. Geben Sie den Namen eines vorhandenen Objekts an. (HRESULT : 0x80040d06) (0x80040d06) Error: (10/22/2013 11:25:14 AM) (Source: Windows Search Service) (User: ) Description: Das Gatherer-Objekt kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Das angegebene Objekt wurde nicht gefunden. Geben Sie den Namen eines vorhandenen Objekts an. (HRESULT : 0x80040d06) (0x80040d06) Error: (10/22/2013 11:25:14 AM) (Source: Windows Search Service) (User: ) Description: Plug-In in <Search.TripoliIndexer> kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Das angegebene Objekt wurde nicht gefunden. Geben Sie den Namen eines vorhandenen Objekts an. (HRESULT : 0x80040d06) (0x80040d06) Error: (10/22/2013 11:25:14 AM) (Source: Windows Search Service) (User: ) Description: Der Plug-In-Manager <Search.TripoliIndexer> kann nicht initialisiert werden. Kontext: Windows Anwendung Details: (HRESULT : 0x8e5e0210) (0x8e5e0210) Error: (10/22/2013 11:25:14 AM) (Source: Windows Search Service) (User: ) Description: Windows Search wird aufgrund eines Problems bei der Indizierung The catalog is corrupt beendet. Details: Der Inhaltsindexkatalog ist fehlerhaft. 0xc0041801 (0xc0041801) Error: (10/22/2013 11:25:14 AM) (Source: Windows Search Service) (User: ) Description: Vom Suchdienst wurden beschädigte Datendateien im Index {id=4810 - enduser\mssearch2\search\ytrip\common\util\jetutil.cpp (167)} erkannt. Vom Dienst wird versucht, dieses Problem durch Neuerstellung des Indexes automatisch zu beheben. Details: 0x8e5e0210 (0x8e5e0210) Error: (10/22/2013 11:25:14 AM) (Source: ESENT) (User: ) Description: SearchIndexer (3920) Windows: Fehler -1811 (0xfffff8ed) beim Öffnen von Protokolldatei C:\ProgramData\Microsoft\Search\Data\Applications\Windows\edb004A6.log. Error: (10/21/2013 11:12:30 PM) (Source: BugSplat) (User: ) Description: lol_beta_riotgames_comLOL_Public84108387 Error: (10/21/2013 10:26:56 PM) (Source: Microsoft-Windows-CAPI2) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . System errors: ============= Error: (10/22/2013 01:13:14 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (10/22/2013 01:08:21 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (10/22/2013 01:05:58 PM) (Source: Service Control Manager) (User: ) Description: Dienst "Baidu PC Faster Service 3.7.0.0" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (10/22/2013 11:28:11 AM) (Source: DCOM) (User: NT-AUTORITÄT) Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (10/22/2013 11:25:41 AM) (Source: DCOM) (User: MARDINS_MACHINE) Description: 1053WSearchNicht verfügbar{B52D54BB-4818-4EB9-AA80-F9EACD371DF8} Error: (10/22/2013 11:25:41 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Search" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (10/22/2013 11:25:41 AM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Search erreicht. Error: (10/22/2013 11:25:40 AM) (Source: DCOM) (User: MARDINS_MACHINE) Description: 1053WSearchNicht verfügbar{B52D54BB-4818-4EB9-AA80-F9EACD371DF8} Error: (10/22/2013 11:25:40 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Search" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (10/22/2013 11:25:40 AM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Search erreicht. Microsoft Office Sessions: ========================= ==================== Memory info =========================== Percentage of memory in use: 38% Total physical RAM: 8141.94 MB Available physical RAM: 5016.16 MB Total Pagefile: 10957.94 MB Available Pagefile: 7462.92 MB Total Virtual: 131072 MB Available Virtual: 131071.79 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:232.37 GB) (Free:32.8 GB) NTFS Drive d: () (Fixed) (Total:298.09 GB) (Free:69.41 GB) NTFS Drive e: (Media-Data) (Fixed) (Total:298.09 GB) (Free:28.29 GB) NTFS Drive f: (New Volume) (Fixed) (Total:335.35 GB) (Free:168.66 GB) NTFS Drive g: (kis 2014) (CDROM) (Total:0.52 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 233 GB) (Disk ID: 00000000) Partition: GPT Partition Type ======================================================== Disk: 1 (Size: 298 GB) (Disk ID: 6D6F6B20) No partition Table on disk 1. ======================================================== Disk: 2 (MBR Code: Windows 7 or Vista) (Size: 335 GB) (Disk ID: 370CDAA5) Partition 1: (Not Active) - (Size=335 GB) - (Type=07 NTFS) ======================================================== Disk: 3 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: D27AC928) Partition 1: (Not Active) - (Size=298 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Wäre wirklich nett von euch, wenn ihr da mal einen Blick drauf werfen könntet. Das ganze RootKit-Blabla hat mich jetzt schon ein wenig verunsichert. Liebe Grüße, marDin EDIT: Kaspersky (gekaufte Version) läuft grad noch drüber, ich poste dann die Ergebnisse hier noch rein. Geändert von marDin (22.10.2013 um 13:15 Uhr) |
Themen zu Win 8.1 x64: Yontoo 2.052 kann nicht deinstalliert werden |
anfrage, baidu, converter, defender, deinstalliert, diagnostics, farbar, farbar recovery scan tool, fehlermeldung, firefox, flash player, helper, home, internet, kaspersky, malware, neustart, plug-in, prozess, pup.optional.downloadsponsor.a, pup.optional.installcore.a, pup.optional.opencandy, pup.optional.tarma.a, refresh, scan, security, server, software, soundtrack, super, system, win 8.1, windows, windowsapps, wsearch, yontoo |