![]() |
|
Log-Analyse und Auswertung: Windows Vista-Beim Booten kein Signal an den MonitorWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
![]() ![]() | ![]() Windows Vista-Beim Booten kein Signal an den Monitor Hallo Trojaner Board, beim Hochfahren bekommt mein Monitor kein Signal, der Rechner scheint aber hochzufahren. Ein bis mehrere Male mit "reset" abermals hochfahren, dann funktioniert es meistens. Bekomme keine Fehlermeldungen, außer im Bios den Optionenbildschrim auf welche Art hochgefahren werden soll, wegen Zwangs-shut down mit reset Knopf. Außerdem, wenns mal läuft, friert mir der Bildschrim ein. Egal wo und wann. Kann beim Spielen sein, Internet, oder einfach nur beim Arbeiten am PC. USB Ports funktionieren auch nicht alle, oft muss ich mehrmals bereits bekannte Hardware anstecken, damit der Computer es registriert. Habe vor etwa 2 Monaten nvidia Treiber erneuert, bin mir aber nicht sicher, ob die Probleme damit losgingen... Hatte den Computer mal kurz vom ´Stromnetz und bekam beim Hochfahren prompt eine Meldung "cmos checksum error" und Datum und Uhrzeit war total verstellt...habs erst beim Internet surfen gemerkt...! Hier schon mal die logs laut Anleitung: Code:
ATTFilter defogger_disable by jpshortstuff (23.02.10.1) Log created at 17:18 on 16/12/2013 (Norbert) Checking for autostart values... HKCU\~\Run values retrieved. HKLM\~\Run values retrieved. Checking for services/drivers... -=E.O.F=- Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 16-12-2013 02 Ran by Norbert (administrator) on NORBERT-PC on 16-12-2013 17:21:01 Running from C:\Users\Norbert\Desktop Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: English(US) Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgrsx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgcsrvx.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\SLsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgwdsvc.exe (SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40ST7.EXE (SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe () C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe (Secunia) C:\Program Files\Secunia\PSI\sua.exe (TomTom) C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe (AVG Secure Search) C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.4.0\ToolbarUpdater.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgnsx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgemcx.exe (SEIKO EPSON CORPORATION) C:\Program Files\Epson Software\Event Manager\EEventManager.exe () C:\Program Files\Belkin\F5D8055\v2\BelkinDetectUI.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (RealNetworks, Inc.) C:\Program Files\Real\RealPlayer\Update\realsched.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgui.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (TomTom) C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Curse) C:\Users\Norbert\AppData\Local\Apps\2.0\HQJYWCPJ.4ZO\X3MCQ0JK.P1W\curs..tion_9e9e83ddf3ed3ead_0005.0001_181b5e0542e9eb6c\CurseClient.exe (Microsoft Corporation) C:\Windows\System32\wuauclt.exe (Microsoft Corporation) C:\Windows\System32\sdclt.exe (Opera Software) C:\Program Files\Opera\18.0.1284.68\opera.exe () C:\Program Files\Opera\18.0.1284.68\opera_crashreporter.exe (Opera Software) C:\Program Files\Opera\18.0.1284.68\opera.exe (Opera Software) C:\Program Files\Opera\18.0.1284.68\opera.exe (Opera Software) C:\Program Files\Opera\18.0.1284.68\opera.exe (Opera Software) C:\Program Files\Opera\18.0.1284.68\opera.exe (Opera Software) C:\Program Files\Opera\18.0.1284.68\opera.exe (Opera Software) C:\Program Files\Opera\18.0.1284.68\opera.exe (Opera Software) C:\Program Files\Opera\18.0.1284.68\opera.exe (Opera Software) C:\Program Files\Opera\18.0.1284.68\opera.exe (Opera Software) C:\Program Files\Opera\18.0.1284.68\opera.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [EEventManager] - C:\Program Files\Epson Software\Event Manager\EEventManager.exe [591696 2008-05-07] (SEIKO EPSON CORPORATION) HKLM\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe [41056 2013-05-08] (Adobe Systems Incorporated) HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [F5D8055v2] - C:\Program Files\Belkin\F5D8055\v2\BelkinDetectUI.exe [196608 2009-04-15] () HKLM\...\Run: [Nvtmru] - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-11-14] (NVIDIA Corporation) HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM\...\Run: [TkBellExe] - C:\Program Files\Real\RealPlayer\Update\realsched.exe [295512 2013-10-17] (RealNetworks, Inc.) HKLM\...\Run: [AVG_UI] - C:\Program Files\AVG\AVG2014\avgui.exe [4956176 2013-11-07] (AVG Technologies CZ, s.r.o.) HKCU\...\Run: [TomTomHOME.exe] - C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe [248208 2013-03-22] (TomTom) HKCU\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\wmpnscfg.exe [202240 2008-01-21] (Microsoft Corporation) HKU\Default\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter HKU\Default User\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter Startup: C:\Users\Norbert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://at.msn.com/?st=1 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x766D3BB98C72CA01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-at SearchScopes: HKLM - DefaultScope value is missing. BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.) Toolbar: HKCU - ZoneAlarm Toolbar - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll No File Tcpip\Parameters: [DhcpNameServer] 195.34.133.21 212.186.211.21 ========================== Services (Whitelisted) ================= R2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3478544 2013-11-11] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [348008 2013-09-24] (AVG Technologies CZ, s.r.o.) R2 EPSON_EB_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40ST7.EXE [143872 2007-12-17] (SEIKO EPSON CORPORATION) R2 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664 2007-01-11] (SEIKO EPSON CORPORATION) S3 getPlusHelper; C:\Program Files\NOS\bin\getPlus_Helper.dll [51168 2009-11-06] (NOS Microsystems Ltd.) R2 RealNetworks Downloader Resolver Service; C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-08-14] () S3 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [1228504 2013-07-03] (Secunia) R2 Secunia Update Agent; C:\Program Files\Secunia\PSI\sua.exe [660184 2013-07-03] (Secunia) R2 vToolbarUpdater15.4.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.4.0\ToolbarUpdater.exe [1616048 2013-07-31] (AVG Secure Search) S2 AntiVirSchedulerService; "C:\Program Files\Avira\AntiVir Desktop\sched.exe" [x] S2 AntiVirService; "C:\Program Files\Avira\AntiVir Desktop\avguard.exe" [x] ==================== Drivers (Whitelisted) ==================== R1 AsIO; C:\Windows\System32\drivers\AsIO.sys [12400 2009-12-01] () R1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [120600 2013-11-05] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [209176 2013-11-04] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [147768 2013-10-24] (AVG Technologies CZ, s.r.o.) R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [22840 2013-09-17] (AVG Technologies CZ, s.r.o.) R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [176952 2013-10-31] (AVG Technologies CZ, s.r.o.) R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [222520 2013-10-31] (AVG Technologies CZ, s.r.o.) R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [102712 2013-10-01] (AVG Technologies CZ, s.r.o.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [56816 2009-12-09] (Avira GmbH) R0 Avgrkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [27448 2013-09-10] (AVG Technologies CZ, s.r.o.) R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [193848 2013-08-01] (AVG Technologies CZ, s.r.o.) R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [37664 2013-07-31] (AVG Technologies) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [96104 2009-03-30] (Avira GmbH) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [7680 2009-12-01] () S3 netr28u; C:\Windows\System32\DRIVERS\netr28u.sys [718336 2010-10-18] (Ralink Technology Corp.) S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_x86.sys [16024 2013-07-03] (Secunia) R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2009-05-11] (Avira GmbH) U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-21] (Microsoft Corporation) S1 avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys [x] S3 catchme; \??\C:\Users\Norbert\AppData\Local\Temp\catchme.sys [x] S3 IpInIp; system32\DRIVERS\ipinip.sys [x] S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [x] S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [x] S3 USBMULCD; system32\drivers\CM106.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-12-16 17:21 - 2013-12-16 17:21 - 00010184 _____ C:\Users\Norbert\Desktop\FRST.txt 2013-12-16 17:20 - 2013-12-16 17:20 - 01060997 _____ (Farbar) C:\Users\Norbert\Desktop\FRST.exe 2013-12-16 17:20 - 2013-12-16 17:20 - 00000000 ____D C:\FRST 2013-12-16 17:16 - 2013-12-16 17:18 - 00000476 _____ C:\Users\Norbert\Desktop\defogger_disable.log 2013-12-16 17:16 - 2013-12-16 17:16 - 00000000 _____ C:\Users\Norbert\defogger_reenable 2013-12-16 17:11 - 2013-12-16 17:11 - 00050477 _____ C:\Users\Norbert\Desktop\Defogger.exe 2013-12-15 17:28 - 2013-12-15 17:28 - 00000000 ____D C:\Users\Norbert\AppData\Local\NVIDIA Corporation 2013-12-15 17:21 - 2013-12-15 17:21 - 199358496 _____ (NVIDIA Corporation) C:\Users\Norbert\Downloads\331.82-desktop-win8-win7-winvista-32bit-international-whql.exe 2013-12-14 12:01 - 2013-12-14 12:01 - 00000971 _____ C:\Users\Norbert\Desktop\Wow - Shortcut.lnk 2013-12-12 10:57 - 2013-11-15 00:13 - 12344320 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-12 10:57 - 2013-11-14 23:50 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-12 10:57 - 2013-11-14 23:50 - 01806848 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-12 10:57 - 2013-11-14 23:43 - 01105408 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-12 10:57 - 2013-11-14 23:42 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-12 10:57 - 2013-11-14 23:42 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-12 10:57 - 2013-11-14 23:41 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-12 10:57 - 2013-11-14 23:40 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-12 10:57 - 2013-11-14 23:38 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-12 10:57 - 2013-11-14 23:38 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-12 10:57 - 2013-11-14 23:38 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-12 10:57 - 2013-11-14 23:37 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-12 10:57 - 2013-11-14 23:36 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-12 10:57 - 2013-11-14 23:36 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-12 10:57 - 2013-11-14 23:35 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-12 10:57 - 2013-11-14 23:32 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-12 07:24 - 2013-10-30 01:35 - 02050560 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-12-12 07:24 - 2013-10-22 08:19 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2013-12-12 07:24 - 2013-10-11 03:08 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2013-12-12 07:24 - 2013-10-11 03:08 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2013-12-12 07:24 - 2013-10-11 03:08 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wshcon.dll 2013-12-12 07:24 - 2013-10-11 01:35 - 00155648 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2013-12-12 07:24 - 2013-10-11 01:35 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2013-12-11 18:44 - 2013-12-12 19:32 - 00000000 ____D C:\Users\Norbert\Desktop\WTF1 2013-12-11 18:44 - 2013-12-11 18:46 - 00000000 ____D C:\Users\Norbert\Desktop\Cache1 2013-12-11 18:20 - 2013-12-11 18:20 - 00000000 ____D C:\Users\Norbert\AppData\Roaming\NVIDIA 2013-12-11 11:48 - 2013-12-11 11:48 - 00000000 _____ C:\Windows\setupact.log 2013-12-11 10:07 - 2013-12-11 10:07 - 00000864 _____ C:\Users\Public\Desktop\AVG 2014.lnk 2013-12-11 10:07 - 2013-12-11 10:07 - 00000000 ____D C:\Users\Norbert\AppData\Roaming\TuneUp Software 2013-12-11 10:07 - 2013-12-11 10:07 - 00000000 ____D C:\Users\Norbert\AppData\Roaming\AVG2014 2013-12-11 10:06 - 2013-12-11 10:07 - 00000000 ____D C:\ProgramData\AVG2014 2013-12-11 10:06 - 2013-12-11 10:06 - 00000000 ___HD C:\$AVG 2013-12-11 10:05 - 2013-12-11 10:05 - 00000000 ____D C:\Program Files\AVG 2013-12-11 10:03 - 2013-12-16 15:34 - 00000000 ____D C:\ProgramData\MFAData 2013-12-11 10:03 - 2013-12-11 10:42 - 00000000 ____D C:\Users\Norbert\AppData\Local\Avg2014 2013-12-11 10:03 - 2013-12-11 10:03 - 00000000 ____D C:\Users\Norbert\AppData\Local\MFAData 2013-12-11 10:02 - 2013-12-11 10:02 - 04436944 _____ (AVG Technologies) C:\Users\Norbert\Downloads\avg_free_stb_all_2014_4259_cnet (1).exe 2013-12-11 09:42 - 2013-12-11 09:42 - 00212584 _____ C:\Windows\Minidump\Mini121113-01.dmp 2013-12-11 09:41 - 2013-12-11 09:41 - 06243424 _____ (Systweak Inc ) C:\Users\Norbert\Downloads\rcpsetup1_dcomnew_sec_728_dcomnew_sec_728.exe 2013-12-11 09:41 - 2013-12-11 09:41 - 04436944 _____ (AVG Technologies) C:\Users\Norbert\Downloads\avg_free_stb_all_2014_4259_cnet.exe 2013-12-02 20:59 - 2013-12-02 20:59 - 00000000 ____D C:\Users\Norbert\AppData\Roaming\AVAST Software 2013-12-02 20:49 - 2013-12-02 20:49 - 00000000 ____D C:\ProgramData\AVAST Software 2013-12-02 19:26 - 2013-12-02 19:26 - 00231576 _____ C:\Windows\Minidump\Mini120213-01.dmp 2013-11-29 13:30 - 2013-11-29 13:30 - 00002051 _____ C:\Users\Norbert\Downloads\einkaufskorb.csv 2013-11-26 14:54 - 2013-11-14 12:55 - 01049888 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco3233182.dll 2013-11-26 14:54 - 2013-11-14 12:55 - 00893728 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco3233182.dll 2013-11-26 14:53 - 2013-11-14 12:55 - 22951200 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv32.dll 2013-11-26 14:53 - 2013-11-14 12:55 - 17560352 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-11-26 14:53 - 2013-11-14 12:55 - 10446112 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-26 14:53 - 2013-11-14 12:55 - 09663656 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-11-26 14:53 - 2013-11-14 12:55 - 09619872 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-11-26 14:53 - 2013-11-14 12:55 - 02947872 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-11-26 14:53 - 2013-11-14 12:55 - 02747680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-11-17 12:25 - 2013-11-17 12:25 - 00000000 ____D C:\Program Files\AGEIA Technologies 2013-11-17 12:20 - 2013-11-14 12:55 - 15862272 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2um.dll 2013-11-17 12:20 - 2013-10-23 11:24 - 01049888 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco3233165.dll 2013-11-17 12:20 - 2013-10-23 11:24 - 00893728 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco3233165.dll ==================== One Month Modified Files and Folders ======= 2013-12-16 17:21 - 2013-12-16 17:21 - 00010184 _____ C:\Users\Norbert\Desktop\FRST.txt 2013-12-16 17:20 - 2013-12-16 17:20 - 01060997 _____ (Farbar) C:\Users\Norbert\Desktop\FRST.exe 2013-12-16 17:20 - 2013-12-16 17:20 - 00000000 ____D C:\FRST 2013-12-16 17:18 - 2013-12-16 17:16 - 00000476 _____ C:\Users\Norbert\Desktop\defogger_disable.log 2013-12-16 17:16 - 2013-12-16 17:16 - 00000000 _____ C:\Users\Norbert\defogger_reenable 2013-12-16 17:16 - 2009-12-01 12:59 - 00000000 ____D C:\Users\Norbert 2013-12-16 17:11 - 2013-12-16 17:11 - 00050477 _____ C:\Users\Norbert\Desktop\Defogger.exe 2013-12-16 16:28 - 2008-01-21 02:35 - 01892430 _____ C:\Windows\WindowsUpdate.log 2013-12-16 16:25 - 2010-01-06 12:58 - 00000000 ____D C:\Users\Norbert\AppData\Local\Deployment 2013-12-16 16:24 - 2006-11-02 14:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-12-16 16:24 - 2006-11-02 13:47 - 00003712 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 2013-12-16 16:24 - 2006-11-02 13:47 - 00003712 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 2013-12-16 15:41 - 2013-08-16 21:10 - 00000000 ____D C:\Program Files\Opera 2013-12-16 15:34 - 2013-12-11 10:03 - 00000000 ____D C:\ProgramData\MFAData 2013-12-15 19:18 - 2006-11-02 14:01 - 00032644 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2013-12-15 18:23 - 2012-10-22 16:12 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-12-15 17:28 - 2013-12-15 17:28 - 00000000 ____D C:\Users\Norbert\AppData\Local\NVIDIA Corporation 2013-12-15 17:28 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\Microsoft.NET 2013-12-15 17:27 - 2009-12-01 13:09 - 00000000 ____D C:\ProgramData\NVIDIA 2013-12-15 17:21 - 2013-12-15 17:21 - 199358496 _____ (NVIDIA Corporation) C:\Users\Norbert\Downloads\331.82-desktop-win8-win7-winvista-32bit-international-whql.exe 2013-12-15 15:32 - 2011-04-18 09:57 - 00000000 ____D C:\Users\Norbert\Norbert neu 2013-12-15 15:30 - 2006-11-02 11:33 - 00765776 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-14 12:01 - 2013-12-14 12:01 - 00000971 _____ C:\Users\Norbert\Desktop\Wow - Shortcut.lnk 2013-12-12 19:32 - 2013-12-11 18:44 - 00000000 ____D C:\Users\Norbert\Desktop\WTF1 2013-12-12 19:03 - 2006-11-02 13:47 - 00248664 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-12 10:59 - 2013-08-05 14:54 - 00000000 ____D C:\Windows\system32\MRT 2013-12-12 10:58 - 2006-11-02 11:24 - 88123800 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe 2013-12-12 08:10 - 2010-04-03 16:35 - 00000000 ____D C:\Users\Norbert\AppData\Roaming\TS3Client 2013-12-11 18:46 - 2013-12-11 18:44 - 00000000 ____D C:\Users\Norbert\Desktop\Cache1 2013-12-11 18:20 - 2013-12-11 18:20 - 00000000 ____D C:\Users\Norbert\AppData\Roaming\NVIDIA 2013-12-11 11:48 - 2013-12-11 11:48 - 00000000 _____ C:\Windows\setupact.log 2013-12-11 11:23 - 2012-06-26 08:13 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2013-12-11 11:23 - 2011-09-13 09:04 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2013-12-11 10:42 - 2013-12-11 10:03 - 00000000 ____D C:\Users\Norbert\AppData\Local\Avg2014 2013-12-11 10:17 - 2009-12-12 21:40 - 00000000 ____D C:\Windows\Minidump 2013-12-11 10:07 - 2013-12-11 10:07 - 00000864 _____ C:\Users\Public\Desktop\AVG 2014.lnk 2013-12-11 10:07 - 2013-12-11 10:07 - 00000000 ____D C:\Users\Norbert\AppData\Roaming\TuneUp Software 2013-12-11 10:07 - 2013-12-11 10:07 - 00000000 ____D C:\Users\Norbert\AppData\Roaming\AVG2014 2013-12-11 10:07 - 2013-12-11 10:06 - 00000000 ____D C:\ProgramData\AVG2014 2013-12-11 10:06 - 2013-12-11 10:06 - 00000000 ___HD C:\$AVG 2013-12-11 10:05 - 2013-12-11 10:05 - 00000000 ____D C:\Program Files\AVG 2013-12-11 10:03 - 2013-12-11 10:03 - 00000000 ____D C:\Users\Norbert\AppData\Local\MFAData 2013-12-11 10:02 - 2013-12-11 10:02 - 04436944 _____ (AVG Technologies) C:\Users\Norbert\Downloads\avg_free_stb_all_2014_4259_cnet (1).exe 2013-12-11 09:42 - 2013-12-11 09:42 - 00212584 _____ C:\Windows\Minidump\Mini121113-01.dmp 2013-12-11 09:41 - 2013-12-11 09:41 - 06243424 _____ (Systweak Inc ) C:\Users\Norbert\Downloads\rcpsetup1_dcomnew_sec_728_dcomnew_sec_728.exe 2013-12-11 09:41 - 2013-12-11 09:41 - 04436944 _____ (AVG Technologies) C:\Users\Norbert\Downloads\avg_free_stb_all_2014_4259_cnet.exe 2013-12-10 10:01 - 2010-09-15 01:56 - 00000000 ____D C:\found.000 2013-12-04 15:57 - 2011-11-27 01:33 - 00000000 ____D C:\Program Files\Google 2013-12-04 15:57 - 2010-09-28 13:31 - 00000000 ____D C:\Users\Norbert\AppData\Local\Google 2013-12-02 20:59 - 2013-12-02 20:59 - 00000000 ____D C:\Users\Norbert\AppData\Roaming\AVAST Software 2013-12-02 20:52 - 2010-09-14 17:10 - 00269216 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2013-12-02 20:49 - 2013-12-02 20:49 - 00000000 ____D C:\ProgramData\AVAST Software 2013-12-02 20:48 - 2006-11-02 11:23 - 00002577 _____ C:\Windows\system32\config.nt 2013-12-02 19:26 - 2013-12-02 19:26 - 00231576 _____ C:\Windows\Minidump\Mini120213-01.dmp 2013-11-29 13:30 - 2013-11-29 13:30 - 00002051 _____ C:\Users\Norbert\Downloads\einkaufskorb.csv 2013-11-17 12:25 - 2013-11-17 12:25 - 00000000 ____D C:\Program Files\AGEIA Technologies 2013-11-17 12:25 - 2009-12-01 13:35 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-11-17 10:07 - 2010-04-03 16:34 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-12-16 16:30 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version: 16-12-2013 02 Ran by Norbert at 2013-12-16 17:21:36 Running from C:\Users\Norbert\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: AVG AntiVirus Free Edition 2014 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG AntiVirus Free Edition 2014 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664} ==================== Installed Programs ====================== 7-Zip 9.16 beta Adobe Download Manager (Version: 1.6.2.49) Adobe Flash Player 11 ActiveX (Version: 11.9.900.170) Adobe Flash Player 11 Plugin (Version: 11.9.900.170) Adobe Reader 9.3.2 - Deutsch (Version: 9.3.2) Adobe Reader 9.5.5 - Deutsch (Version: 9.5.5) AVG 2014 (Version: 14.0.3658) AVG 2014 (Version: 14.0.4259) AVG 2014 (Version: 2014.0.4259) Belkin N+ Wireless USB Adapter (Version: 2.00.06) Compatibility Pack for the 2007 Office system (Version: 12.0.6612.1000) Cool & Quiet Curse Client (HKCU Version: 5.1.1.792) Epson Easy Photo Print 2 (Version: 2.0.0.0) Epson Event Manager (Version: 2.01.00) Epson Print CD (Version: 2.00.00) EPSON PX800FW Series Printer Uninstall EPSON Scan EPSON Stylus Photo PX700W_PX800FW_TX700W_TX800FW Handbuch Free Driver Scout (Version: 1.0.0.101) GSview 4.9 Java 7 Update 45 (Version: 7.0.450) Java Auto Updater (Version: 2.1.9.8) Microsoft .NET Framework 3.5 SP1 Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938) Microsoft Office XP Professional mit FrontPage (Version: 10.0.6626.0) Microsoft Silverlight (Version: 4.0.50826.0) Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161) NVIDIA 3D Vision Controller Driver 331.82 (Version: 331.82) NVIDIA Control Panel 331.82 (Version: 331.82) NVIDIA Display Control Panel (Version: 6.14.12.5896) NVIDIA GeForce Experience 1.7.1 (Version: 1.7.1) NVIDIA Graphics Driver 331.82 (Version: 331.82) NVIDIA Install Application (Version: 2.1002.140.952) NVIDIA LED Visualizer 1.0 (Version: 1.0) NVIDIA PhysX (Version: 9.13.0725) NVIDIA PhysX System Software 9.13.0725 (Version: 9.13.0725) NVIDIA Update 9.3.21 (Version: 9.3.21) NVIDIA Update Components (Version: 9.3.21) OGA Notifier 2.0.0048.0 (Version: 2.0.0048.0) Opera Stable 18.0.1284.68 (Version: 18.0.1284.68) PVSonyDll (Version: 1.00.0001) RealDownloader (Version: 1.3.3) RealNetworks - Microsoft Visual C++ 2008 Runtime (Version: 9.0) RealNetworks - Microsoft Visual C++ 2010 Runtime (Version: 10.0) RealPlayer (Version: 16.0.3) RealUpgrade 1.1 (Version: 1.1.0) SAMSUNG USB Driver for Mobile Phones (Version: 1.4.103.0) Secunia PSI (3.0.0.7011) (Version: 3.0.0.7011) System Requirements Lab TeamSpeak 3 Client (Version: 3.0.13.1) TomTom HOME (Version: 2.9.5) TomTom HOME Visual Studio Merge Modules (Version: 1.0.2) Visual Studio 2012 x86 Redistributables (Version: 14.0.0.1) World of Warcraft ==================== Restore Points ========================= 12-12-2013 07:09:06 Scheduled Checkpoint 12-12-2013 09:57:14 Windows Update 12-12-2013 19:50:52 Windows Update 13-12-2013 12:30:04 WinZip 17.5 wird entfernt 13-12-2013 12:35:00 Windows Update 13-12-2013 16:45:53 Windows Update 14-12-2013 12:52:44 Windows Update 15-12-2013 11:45:42 Windows Update 15-12-2013 14:26:11 Windows Update 15-12-2013 15:10:30 Windows Update 15-12-2013 16:24:27 Device Driver Package Install: NVIDIA Display adapters 15-12-2013 16:27:36 Device Driver Package Install: NVIDIA Universal Serial Bus controllers 15-12-2013 18:18:05 Windows Update ==================== Hosts content: ========================== 2006-11-02 11:23 - 2013-08-05 15:16 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {183C6459-5B6F-4DA9-AB42-A3777031C292} - System32\Tasks\Software Updater Ui => C:\Program Files\SoftwareUpdater\SoftwareUpdater.Ui.exe Task: {1C15172B-F8F4-4B44-9881-867CE240BFEC} - System32\Tasks\WPD\SqmUpload_S-1-5-21-1006003231-2697031979-1953750779-1000 => Rundll32.exe portabledeviceapi.dll,#1 Task: {1CC81347-6204-4B83-900C-01E02F50F067} - System32\Tasks\Microsoft\Windows\MobilePC\TMM Task: {1E110028-0926-4147-A05B-32683682C09A} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1006003231-2697031979-1953750779-1000 => C:\Program Files\Real\RealUpgrade\realupgrade.exe [2013-08-14] (RealNetworks, Inc.) Task: {2D720758-712B-455F-B3C7-A18B89417524} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-1006003231-2697031979-1953750779-1000 => C:\Program Files\Real\RealUpgrade\realupgrade.exe [2013-08-14] (RealNetworks, Inc.) Task: {2FDBDC47-7148-49DB-9D32-32E6A003C996} - System32\Tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 => Rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem Task: {320124A7-D70F-41DE-A9D1-D5E8E19D5D91} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI Task: {36A1B5E6-8F9A-41FF-9F57-11F62A8C53CA} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1006003231-2697031979-1953750779-1000 => C:\Program Files\Real\RealUpgrade\realupgrade.exe [2013-08-14] (RealNetworks, Inc.) Task: {3BCDF251-CA5C-4045-A1FC-8FCEF9FBDC93} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages Task: {44980BEE-7809-44A9-AC24-D6E578A3B7DF} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\System32\RacAgent.exe [2008-01-21] (Microsoft Corporation) Task: {5B3A1C4A-EC5A-447D-B7B2-7760BF65C5BC} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-11] (Adobe Systems Incorporated) Task: {70E9E92B-F31B-4F59-80AE-5BFE32A91F0F} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-1006003231-2697031979-1953750779-1000 => C:\Program Files\Real\RealUpgrade\realupgrade.exe [2013-08-14] (RealNetworks, Inc.) Task: {A1868F64-ED08-49A9-9F86-F62ED855AFFD} - System32\Tasks\Microsoft\Windows\SystemRestore\SR => Rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation Task: {A728AE6B-5AB8-4223-AD3E-E6341441A01C} - System32\Tasks\Microsoft\Windows\PLA\System\ConvertLogEntries => Rundll32.exe %windir%\system32\pla.dll,PlaConvertLogEntries Task: {B0973208-3DFF-4B32-8373-14BA22DE4807} - \CreateChoiceProcessTask No Task File Task: {B96FFB5F-431B-4E91-B122-ACE0252A4119} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup Task: {C6B5ACA0-0F6B-48E6-A21F-6E5BE253C9A5} - System32\Tasks\FreeDriverScout => C:\Program Files\Covus Freemium\Free Driver Scout\1Click.exe Task: {E5150B95-F9B4-4D5D-95A2-7EC1ACBA95F8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\System32\gatherWirelessInfo.vbs [2008-01-21] () Task: {F056B862-2DE2-46F4-B124-D1B754B74F21} - System32\Tasks\Software Updater => C:\Program Files\SoftwareUpdater\SoftwareUpdater.Bootstrapper.exe Task: {F8D6E476-24FE-4649-A4D7-985706B29128} - System32\Tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 => Rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\User_Feed_Synchronization-{A972CF4C-A94D-411E-B01B-AB8C488CC158}.job => C:\Windows\system32\msfeedssync.exe ==================== Loaded Modules (whitelisted) ============= 2013-08-16 22:17 - 2013-08-16 22:17 - 00035840 _____ () C:\Users\Norbert\AppData\Local\Apps\2.0\HQJYWCPJ.4ZO\X3MCQ0JK.P1W\curs..tion_9e9e83ddf3ed3ead_0005.0001_181b5e0542e9eb6c\Curse.Advertising.dll 2013-08-16 22:17 - 2013-08-16 22:17 - 00014848 _____ () C:\Users\Norbert\AppData\Local\Apps\2.0\HQJYWCPJ.4ZO\X3MCQ0JK.P1W\curs..tion_9e9e83ddf3ed3ead_0005.0001_181b5e0542e9eb6c\Curse.CurseClient.WowDb.dll 2013-08-16 22:17 - 2013-08-16 22:17 - 00099840 _____ () C:\Users\Norbert\AppData\Local\Apps\2.0\HQJYWCPJ.4ZO\X3MCQ0JK.P1W\curs..tion_9e9e83ddf3ed3ead_0005.0001_181b5e0542e9eb6c\Curse.CurseClient.CMOD2.dll 2013-12-16 15:41 - 2013-12-12 10:15 - 00879968 _____ () C:\Program Files\Opera\18.0.1284.68\ffmpegsumo.dll 2013-12-16 15:41 - 2013-12-12 10:15 - 00886624 _____ () C:\Program Files\Opera\18.0.1284.68\libglesv2.dll 2013-12-16 15:41 - 2013-12-12 10:15 - 00108896 _____ () C:\Program Files\Opera\18.0.1284.68\libegl.dll 2013-12-11 11:23 - 2013-12-11 11:23 - 16242056 _____ () C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_170.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vsmon => ""="Service" ==================== Faulty Device Manager Devices ============= Name: USB Human Interface Device Description: USB Human Interface Device Class Guid: {745a17a0-74d3-11d0-b6fe-00a0c90f57da} Manufacturer: (Standard system devices) Service: HidUsb Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (12/16/2013 05:14:06 PM) (Source: SideBySide) (User: ) Description: Activation context generation failed for "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1". Dependent Assembly Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (12/16/2013 05:14:06 PM) (Source: SideBySide) (User: ) Description: Activation context generation failed for "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1". Dependent Assembly Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (12/16/2013 05:13:35 PM) (Source: SideBySide) (User: ) Description: Activation context generation failed for "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1". Dependent Assembly Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (12/16/2013 05:13:35 PM) (Source: SideBySide) (User: ) Description: Activation context generation failed for "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1". Dependent Assembly Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (12/16/2013 04:25:56 PM) (Source: Perflib) (User: ) Description: WmiApRplC:\Windows\system32\wbem\wmiaprpl.dll4 Error: (12/16/2013 04:25:56 PM) (Source: Perflib) (User: ) Description: PolicyAgent Error: (12/16/2013 04:25:56 PM) (Source: Perflib) (User: ) Description: OpenIPSecPerformanceDataC:\Windows\System32\ipsecsvc.dllPolicyAgent4 Error: (12/16/2013 04:25:56 PM) (Source: Perflib) (User: ) Description: PNRPsvcC:\Windows\system32\pnrpperf.dll4 Error: (12/16/2013 04:25:56 PM) (Source: Perflib) (User: ) Description: MSDTCC:\Windows\system32\msdtcuiu.DLL4 Error: (12/16/2013 04:25:56 PM) (Source: Perflib) (User: ) Description: LsaC:\Windows\system32\Secur32.dll4 System errors: ============= Error: (12/16/2013 04:25:26 PM) (Source: Service Control Manager) (User: ) Description: avgio Error: (12/16/2013 04:25:26 PM) (Source: Service Control Manager) (User: ) Description: ScRegSetValueExWFailureActions%%5 Error: (12/16/2013 04:25:26 PM) (Source: Service Control Manager) (User: ) Description: Avira AntiVir Guard%%3 Error: (12/16/2013 04:25:26 PM) (Source: Service Control Manager) (User: ) Description: Avira AntiVir Planer%%3 Error: (12/16/2013 04:24:10 PM) (Source: Microsoft-Windows-TaskScheduler) (User: NT AUTHORITY) Description: 2147942402 Error: (12/16/2013 04:24:09 PM) (Source: EventLog) (User: ) Description: The previous system shutdown at 16:22:43 on 16.12.2013 was unexpected. Error: (12/16/2013 04:20:56 PM) (Source: Microsoft-Windows-TaskScheduler) (User: NT AUTHORITY) Description: 2147942402 Error: (12/16/2013 04:20:55 PM) (Source: EventLog) (User: ) Description: The previous system shutdown at 15:38:45 on 16.12.2013 was unexpected. Error: (12/16/2013 03:29:49 PM) (Source: Service Control Manager) (User: ) Description: avgio Error: (12/16/2013 03:29:49 PM) (Source: Service Control Manager) (User: ) Description: ScRegSetValueExWFailureActions%%5 Microsoft Office Sessions: ========================= Error: (12/16/2013 05:14:06 PM) (Source: SideBySide)(User: ) Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\Epson Software\Easy Photo Print\Microsoft.VC80.MFC\MFC80.DLL Error: (12/16/2013 05:14:06 PM) (Source: SideBySide)(User: ) Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\Epson Software\Easy Photo Print\Microsoft.VC80.MFC\MFC80.DLL Error: (12/16/2013 05:13:35 PM) (Source: SideBySide)(User: ) Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\Epson Software\Easy Photo Print\Microsoft.VC80.MFC\MFC80.DLL Error: (12/16/2013 05:13:35 PM) (Source: SideBySide)(User: ) Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\Epson Software\Easy Photo Print\Microsoft.VC80.MFC\MFC80.DLL Error: (12/16/2013 04:25:56 PM) (Source: Perflib)(User: ) Description: WmiApRplC:\Windows\system32\wbem\wmiaprpl.dll4 Error: (12/16/2013 04:25:56 PM) (Source: Perflib)(User: ) Description: PolicyAgent Error: (12/16/2013 04:25:56 PM) (Source: Perflib)(User: ) Description: OpenIPSecPerformanceDataC:\Windows\System32\ipsecsvc.dllPolicyAgent4 Error: (12/16/2013 04:25:56 PM) (Source: Perflib)(User: ) Description: PNRPsvcC:\Windows\system32\pnrpperf.dll4 Error: (12/16/2013 04:25:56 PM) (Source: Perflib)(User: ) Description: MSDTCC:\Windows\system32\msdtcuiu.DLL4 Error: (12/16/2013 04:25:56 PM) (Source: Perflib)(User: ) Description: LsaC:\Windows\system32\Secur32.dll4 CodeIntegrity Errors: =================================== Date: 2013-12-16 17:21:22.512 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\avgidshx.sys because the set of per-page image hashes could not be found on the system. Date: 2013-12-16 17:21:22.352 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\avgidshx.sys because the set of per-page image hashes could not be found on the system. Date: 2013-12-16 17:21:22.189 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\avgidshx.sys because the set of per-page image hashes could not be found on the system. Date: 2013-12-16 17:21:22.017 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\avgidshx.sys because the set of per-page image hashes could not be found on the system. Date: 2013-12-11 12:14:29.163 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\avgidshx.sys because the set of per-page image hashes could not be found on the system. Date: 2013-12-11 12:14:29.009 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\avgidshx.sys because the set of per-page image hashes could not be found on the system. Date: 2013-12-11 12:14:28.838 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\avgidshx.sys because the set of per-page image hashes could not be found on the system. Date: 2013-12-11 12:14:28.667 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\avgidshx.sys because the set of per-page image hashes could not be found on the system. Date: 2013-12-11 11:56:06.621 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\avgidshx.sys because the set of per-page image hashes could not be found on the system. Date: 2013-12-11 11:56:06.450 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\avgidshx.sys because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Percentage of memory in use: 46% Total physical RAM: 3069.63 MB Available physical RAM: 1642.16 MB Total Pagefile: 6354.2 MB Available Pagefile: 4714.98 MB Total Virtual: 2047.88 MB Available Virtual: 1904.84 MB ==================== Drives ================================ Drive c: (SYSTEM) (Fixed) (Total:100.01 GB) (Free:29.73 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (BACKUP) (Fixed) (Total:465.76 GB) (Free:266.02 GB) NTFS Drive j: (DATEN) (Fixed) (Total:365.75 GB) (Free:346.35 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 466 GB) (Disk ID: 1BB1E3DB) Partition 1: (Active) - (Size=100 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=366 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or Vista) (Size: 466 GB) (Disk ID: A69C290E) Partition 1: (Active) - (Size=466 GB) - (Type=07 NTFS) ==================== End Of Log ============================ "There is no disk in the drive. Please insert a disk into drive\Device\Harddisk\DR2." Das Textfenster hieß:gmer_2.1.19163.exe Ich hoffe Ihr könnt damit schon mal etwas angangen, ich kanns leider nicht. Habe im Moment AVG installiert und keine Bedrohungen gefunden, habe auch mit Avast alles scannen lassen und kein Virus gefunden. ![]() Bitte um Eure Hilfe. Lg, Plekdemon |
Themen zu Windows Vista-Beim Booten kein Signal an den Monitor |
antivir guard, antivirus, avg antivirus, avira, booten, computer, curse, device driver, down, error, failed, flash player, freemium, helper, home, internet, minidump, monitor, plug-in, registry, rundll, scan, secunia psi, secure search, security, services.exe, software, spielen, svchost.exe, system, teamspeak, trojaner, trojaner board, vtoolbarupdater, windows |