![]() |
|
Log-Analyse und Auswertung: Windows 7 Starter startet nach Updates nicht mehr (Microsoft Office Updates)Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() |
|
![]() | #1 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows 7 Starter startet nach Updates nicht mehr (Microsoft Office Updates) Oh Mann ![]() Scan mit Farbar's Recovery Scan Tool (Recovery Mode - Windows Vista, 7, 8) Hinweise für Windows 8-Nutzer: Anleitung 1 (FRST-Variante) und Anleitung 2 (zweiter Teil)
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() | #2 |
| ![]() Windows 7 Starter startet nach Updates nicht mehr (Microsoft Office Updates) Bitteschön:
__________________FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 13-03-2014 01 Ran by SYSTEM on MININT-M4GG99J on 23-03-2014 12:32:22 Running from E:\ Windows 7 Starter (X86) OS Language: English(US) Internet Explorer Version 11 Boot Mode: Recovery The current controlset is ControlSet001 ATTENTION!:=====> If the system is bootable FRST could be run from normal or Safe mode to create a complete log. ==================== Registry (Whitelisted) ================== HKLM\...\Run: [GfxServiceInstall] - C:\windows\system32\GfxCUIServiceInstall.vbs [131 2011-12-12] () HKLM\...\Run: [HotkeyMon] - C:\Program Files\ASUS\HotkeyService\HotKeyMon.exe [101800 2011-08-08] (ASUSTeK Computer Inc.) HKLM\...\Run: [HotkeyService] - C:\Program Files\ASUS\HotkeyService\HotkeyService.exe [1263024 2011-08-08] (ASUSTeK Computer Inc.) HKLM\...\Run: [SuperHybridEngine] - C:\Program Files\ASUS\SHE\SuperHybridEngine.exe [425400 2011-08-01] (ASUSTeK Computer Inc.) HKLM\...\Run: [LiveUpdate] - C:\Program Files\Asus\LiveUpdate\LiveUpdate.exe [1095080 2011-11-10] (AsusTek Computer Inc.) HKLM\...\Run: [CapsHook] - C:\Program Files\ASUS\CapsHook\CapsHook.exe [445344 2010-11-15] (ASUS) HKLM\...\Run: [Eee Docking] - C:\Program Files\ASUS\Eee Docking\Eee Docking.exe [417456 2011-07-13] (ASUSTek Computer Inc.) HKLM\...\Run: [ASUSWebStorage] - C:\Program Files\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe [737104 2011-07-29] (ecareme) HKLM\...\Run: [VAWinAgent] - C:\ExpressGateUtil\VAWinAgent.exe [45448 2011-08-19] () HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [10828392 2011-09-01] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2262312 2011-05-05] (Synaptics Incorporated) HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-01] (Oracle Corporation) HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-14] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [GrooveMonitor] - C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKU\Default\...\RunOnce: [Reboot] - C:\Windows\Reboot.exe [92096 2010-12-12] (AsusTek Computer Inc.) HKU\Default\...\RunOnce: [AskScreensaver] - C:\Program Files\Asus\AsusScreensaver\AsusScreensaver.exe [797104 2011-01-26] (AsusTek Computer Inc.) HKU\Default User\...\RunOnce: [Reboot] - C:\Windows\Reboot.exe [92096 2010-12-12] (AsusTek Computer Inc.) HKU\Default User\...\RunOnce: [AskScreensaver] - C:\Program Files\Asus\AsusScreensaver\AsusScreensaver.exe [797104 2011-01-26] (AsusTek Computer Inc.) HKU\Judith\...\Run: [Google Update] - C:\Users\Judith\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2012-08-23] (Google Inc.) HKU\Judith\...\Run: [Speech Recognition] - C:\windows\Speech\Common\sapisvr.exe [51712 2009-07-13] (Microsoft Corporation) HKU\Judith\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [20922016 2014-02-10] (Skype Technologies S.A.) HKU\Judith\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 Startup: C:\Users\Judith\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> (No File) Startup: C:\Users\Judith\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.0.lnk ShortcutTarget: OpenOffice.org 3.0.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe () ========================== Services (Whitelisted) ================= S2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [440400 2014-02-14] (Avira Operations GmbH & Co. KG) S2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-14] (Avira Operations GmbH & Co. KG) S2 ASUS InstantOn; C:\Program Files\ASUS\InstantOn for EPC\InsOnSrv.exe [92800 2011-11-30] (ASUS) S2 AsusService; C:\windows\system32\AsusService.exe [224680 2011-08-08] () S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe [235696 2014-01-15] (McAfee, Inc.) S2 NAUpdate; C:\Program Files\Nero\Update\NASvc.exe [769432 2012-07-13] (Nero AG) S2 VideAceWindowsService; C:\ExpressGateUtil\VAWinService.exe [91464 2011-03-25] () ==================== Drivers (Whitelisted) ==================== S1 AsIO; C:\Windows\System32\drivers\AsIO.sys [11456 2010-06-27] () S1 AsUpIO; C:\Windows\System32\drivers\AsUpIO.sys [11832 2010-08-02] () S2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [90400 2014-02-14] (Avira Operations GmbH & Co. KG) S1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [135648 2014-02-14] (Avira Operations GmbH & Co. KG) S1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2014-02-14] (Avira Operations GmbH & Co. KG) S3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [13880 2009-07-20] ( ) S1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2014-02-14] (Avira GmbH) S3 ProcObsrv; \??\C:\Program Files\Glary Utilities 3\ProcObsrv.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-03-22 11:15 - 2014-03-22 11:15 - 00000000 ____D () C:\Windows\Sun 2014-03-22 08:33 - 2014-03-22 08:33 - 00000029 _____ () C:\Users\Judith\Desktop\Fixlist.txt 2014-03-22 07:13 - 2014-03-22 07:13 - 00001780 _____ () C:\Users\Judith\Desktop\GMER.txt 2014-03-22 06:42 - 2014-03-22 06:42 - 00033659 _____ () C:\Users\Judith\Desktop\FRST.txt 2014-03-22 06:42 - 2014-03-22 06:42 - 00025408 _____ () C:\Users\Judith\Desktop\Addition.txt 2014-03-22 06:39 - 2014-03-23 12:32 - 00000000 ____D () C:\FRST 2014-03-22 06:21 - 2014-03-22 06:21 - 00142424 _____ () C:\Windows\Minidump\032214-36083-01.dmp 2014-03-22 06:20 - 2014-03-22 06:20 - 189066333 _____ () C:\Windows\MEMORY.DMP 2014-03-20 11:38 - 2014-03-20 11:38 - 00000000 ____D () C:\Users\Judith\AppData\Roaming\Nero 2014-03-20 11:21 - 2014-03-20 11:21 - 00000000 _____ () C:\Windows\System32\shoDC4A.tmp 2014-03-20 10:27 - 2014-03-20 10:27 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-03-20 10:27 - 2014-03-20 10:27 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-03-20 10:03 - 2014-03-20 10:03 - 00278904 _____ () C:\Windows\msxml4-KB954430-enu.LOG 2014-03-20 10:01 - 2014-03-20 10:02 - 00286030 _____ () C:\Windows\msxml4-KB973688-enu.LOG 2014-03-20 10:01 - 2014-03-20 10:01 - 00000000 ____D () C:\Program Files\MSXML 4.0 2014-03-17 13:31 - 2014-03-17 13:31 - 00001861 _____ () C:\Users\Public\Desktop\ANNO 1503 spielen.lnk 2014-03-17 13:21 - 2014-03-17 13:29 - 00000000 ____D () C:\Program Files\ANNO 1503 2014-03-17 12:59 - 2009-02-26 18:42 - 00031640 _____ (Microsoft Corporation) C:\Windows\System32\msonpmon.dll 2014-03-17 12:55 - 2014-03-20 10:45 - 00000000 ____D () C:\Program Files\Microsoft Works 2014-03-17 12:55 - 2014-03-17 12:55 - 00000000 ____D () C:\Program Files\Microsoft Visual Studio 2014-03-17 12:45 - 2014-03-17 12:45 - 00000000 ____D () C:\Program Files\Microsoft Visual Studio 8 2014-03-17 12:44 - 2014-03-17 12:55 - 00000000 ____D () C:\Windows\SHELLNEW 2014-03-17 12:34 - 2014-03-17 12:34 - 00002055 _____ () C:\Users\Public\Desktop\Nero Kwik Media.lnk 2014-03-17 12:33 - 2014-03-17 12:33 - 00002823 _____ () C:\Users\Public\Desktop\Nero Express 12.lnk 2014-03-17 12:29 - 2014-03-17 12:33 - 00000000 ____D () C:\Program Files\Common Files\Nero 2014-03-17 12:28 - 2014-03-17 12:35 - 00000000 ____D () C:\Program Files\Nero 2014-03-17 12:27 - 2014-03-17 12:36 - 00000000 ____D () C:\ProgramData\Nero 2014-03-17 12:14 - 2010-05-26 02:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_43.dll 2014-03-17 12:14 - 2010-05-26 02:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\System32\d3dx11_43.dll 2014-03-17 12:13 - 2010-05-26 02:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_43.dll 2014-03-17 12:13 - 2010-05-26 02:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\System32\d3dcsx_43.dll 2014-03-14 09:42 - 2014-03-14 09:42 - 00000000 ____D () C:\Users\Judith\AppData\Local\Skype 2014-03-14 09:40 - 2014-03-14 09:40 - 00002687 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-03-14 09:40 - 2014-03-14 09:40 - 00000000 ___RD () C:\Program Files\Skype 2014-03-14 09:40 - 2014-03-14 09:40 - 00000000 ____D () C:\Program Files\Common Files\Skype 2014-03-14 09:25 - 2014-03-20 11:21 - 00086200 _____ () C:\Windows\PFRO.log 2014-03-13 07:29 - 2014-02-28 20:30 - 17074688 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2014-03-13 07:29 - 2014-02-28 20:11 - 02724864 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2014-03-13 07:29 - 2014-02-28 20:10 - 00004096 _____ (Microsoft Corporation) C:\Windows\System32\ieetwcollectorres.dll 2014-03-13 07:29 - 2014-02-28 19:52 - 00061952 _____ (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2014-03-13 07:29 - 2014-02-28 19:51 - 00051200 _____ (Microsoft Corporation) C:\Windows\System32\ieetwproxystub.dll 2014-03-13 07:29 - 2014-02-28 19:47 - 02168320 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2014-03-13 07:29 - 2014-02-28 19:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2014-03-13 07:29 - 2014-02-28 19:43 - 00032768 _____ (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2014-03-13 07:29 - 2014-02-28 19:40 - 00440832 _____ (Microsoft Corporation) C:\Windows\System32\ieui.dll 2014-03-13 07:29 - 2014-02-28 19:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe 2014-03-13 07:29 - 2014-02-28 19:38 - 00108032 _____ (Microsoft Corporation) C:\Windows\System32\ieetwcollector.exe 2014-03-13 07:29 - 2014-02-28 19:37 - 00553472 _____ (Microsoft Corporation) C:\Windows\System32\jscript9diag.dll 2014-03-13 07:29 - 2014-02-28 19:31 - 00646144 _____ (Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe 2014-03-13 07:29 - 2014-02-28 19:25 - 00208896 _____ (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2014-03-13 07:29 - 2014-02-28 19:16 - 00164864 _____ (Microsoft Corporation) C:\Windows\System32\msrating.dll 2014-03-13 07:29 - 2014-02-28 19:14 - 04244480 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2014-03-13 07:29 - 2014-02-28 19:03 - 00524288 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2014-03-13 07:29 - 2014-02-28 19:00 - 01964032 _____ (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl 2014-03-13 07:29 - 2014-02-28 18:57 - 11266048 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2014-03-13 07:29 - 2014-02-28 18:32 - 01820160 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll 2014-03-13 07:29 - 2014-02-28 18:27 - 01156096 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2014-03-13 07:29 - 2014-02-28 18:25 - 00703488 _____ (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll 2014-03-13 07:28 - 2014-02-06 17:07 - 02349056 _____ (Microsoft Corporation) C:\Windows\System32\win32k.sys 2014-03-13 07:28 - 2014-02-03 18:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll 2014-03-13 07:28 - 2014-02-03 18:04 - 00509440 _____ (Microsoft Corporation) C:\Windows\System32\qedit.dll 2014-03-13 07:28 - 2014-01-28 18:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\System32\wer.dll 2014-03-13 07:28 - 2014-01-27 18:07 - 00185344 _____ (Microsoft Corporation) C:\Windows\System32\wwansvc.dll 2014-03-05 11:49 - 2014-03-20 11:22 - 00000672 _____ () C:\Windows\setupact.log 2014-03-05 11:49 - 2014-03-05 11:49 - 00000000 _____ () C:\Windows\setuperr.log 2014-03-04 14:35 - 2014-03-04 14:35 - 00002012 _____ () C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2014-03-03 13:30 - 2014-03-03 13:30 - 00524401 _____ () C:\Users\Judith\Downloads\magicactions_6.7.0.zip 2014-03-03 13:25 - 2014-03-03 13:25 - 00000000 ____D () C:\Users\Judith\AppData\Local\Macromedia 2014-03-03 13:22 - 2014-03-04 14:35 - 00000000 ____D () C:\Program Files\McAfee Security Scan 2014-03-03 13:22 - 2014-03-03 13:22 - 00000000 ____D () C:\ProgramData\McAfee Security Scan 2014-03-03 13:22 - 2014-03-03 13:22 - 00000000 ____D () C:\ProgramData\McAfee 2014-02-28 14:04 - 2014-02-28 14:04 - 00000000 ____D () C:\Users\Judith\AppData\Local\{18E3C246-D84A-45AA-9500-01E3E99D563D} 2014-02-28 05:26 - 2014-02-28 05:26 - 00011177 _____ () C:\Users\Judith\Documents\Konzept.odt 2014-02-27 07:15 - 2014-02-27 07:15 - 00020269 _____ () C:\Users\Judith\Documents\Zeitungsartikel.odt 2014-02-25 12:19 - 2014-02-25 12:33 - 00000000 ____D () C:\Users\Judith\AppData\Roaming\TIPP10 2014-02-25 12:15 - 2014-02-25 12:15 - 00000937 _____ () C:\Users\Judith\Desktop\TIPP10.lnk 2014-02-25 12:15 - 2014-02-25 12:15 - 00000000 ____D () C:\Program Files\Tipp10 2014-02-25 11:20 - 2014-03-03 13:32 - 00001105 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-02-25 11:20 - 2014-02-25 11:20 - 00000000 ____D () C:\Users\Judith\AppData\Local\Mozilla 2014-02-25 11:20 - 2014-02-25 11:20 - 00000000 ____D () C:\ProgramData\Mozilla 2014-02-25 11:19 - 2014-03-14 09:25 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-02-25 11:19 - 2014-03-14 09:25 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-02-24 16:17 - 2014-02-24 16:17 - 00030261 _____ () C:\Users\Judith\Documents\RPG SW.odt ==================== One Month Modified Files and Folders ======= 2014-03-23 12:32 - 2014-03-22 06:39 - 00000000 ____D () C:\FRST 2014-03-23 03:24 - 2009-07-27 02:11 - 01652924 _____ () C:\Windows\System32\PerfStringBackup.INI 2014-03-23 03:17 - 2009-07-13 20:33 - 00420736 _____ () C:\Windows\System32\FNTCACHE.DAT 2014-03-22 15:17 - 2014-02-19 08:51 - 00000000 ____D () C:\ProgramData\Avira 2014-03-22 15:17 - 2014-02-19 08:51 - 00000000 ____D () C:\Program Files\Avira 2014-03-22 15:17 - 2012-09-16 12:41 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-03-22 15:17 - 2012-08-23 09:04 - 00000000 ____D () C:\Users\Judith\AppData\Roaming\Skype 2014-03-22 15:17 - 2011-12-30 11:14 - 00000000 ___HD () C:\ExpressGateUtil 2014-03-22 15:17 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\wfp 2014-03-22 15:17 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\NDF 2014-03-22 15:17 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\registration 2014-03-22 15:17 - 2009-07-13 18:37 - 00000000 ____D () C:\Program Files\Common Files\System 2014-03-22 11:15 - 2014-03-22 11:15 - 00000000 ____D () C:\Windows\Sun 2014-03-22 08:44 - 2014-01-30 11:57 - 00000000 ____D () C:\Users\Judith\AppData\Roaming\Telegram Win (Unofficial) 2014-03-22 08:33 - 2014-03-22 08:33 - 00000029 _____ () C:\Users\Judith\Desktop\Fixlist.txt 2014-03-22 07:13 - 2014-03-22 07:13 - 00001780 _____ () C:\Users\Judith\Desktop\GMER.txt 2014-03-22 06:42 - 2014-03-22 06:42 - 00033659 _____ () C:\Users\Judith\Desktop\FRST.txt 2014-03-22 06:42 - 2014-03-22 06:42 - 00025408 _____ () C:\Users\Judith\Desktop\Addition.txt 2014-03-22 06:21 - 2014-03-22 06:21 - 00142424 _____ () C:\Windows\Minidump\032214-36083-01.dmp 2014-03-22 06:21 - 2013-09-09 15:43 - 00000000 ____D () C:\Windows\Minidump 2014-03-22 06:21 - 2012-08-23 08:06 - 00000000 ____D () C:\users\Judith 2014-03-22 06:20 - 2014-03-22 06:20 - 189066333 _____ () C:\Windows\MEMORY.DMP 2014-03-21 23:26 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\LogFiles 2014-03-20 11:38 - 2014-03-20 11:38 - 00000000 ____D () C:\Users\Judith\AppData\Roaming\Nero 2014-03-20 11:31 - 2012-08-23 23:55 - 01288578 _____ () C:\Windows\WindowsUpdate.log 2014-03-20 11:27 - 2009-07-13 20:34 - 00009696 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-03-20 11:27 - 2009-07-13 20:34 - 00009696 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-03-20 11:26 - 2013-08-17 13:33 - 00000000 ___RD () C:\Users\Judith\Dropbox 2014-03-20 11:26 - 2013-08-17 13:26 - 00000000 ____D () C:\Users\Judith\AppData\Roaming\Dropbox 2014-03-20 11:25 - 2012-08-23 08:06 - 00113456 _____ () C:\Users\Judith\AppData\Local\GDIPFONTCACHEV1.DAT 2014-03-20 11:22 - 2014-03-05 11:49 - 00000672 _____ () C:\Windows\setupact.log 2014-03-20 11:21 - 2014-03-20 11:21 - 00000000 _____ () C:\Windows\System32\shoDC4A.tmp 2014-03-20 11:21 - 2014-03-14 09:25 - 00086200 _____ () C:\Windows\PFRO.log 2014-03-20 10:45 - 2014-03-17 12:55 - 00000000 ____D () C:\Program Files\Microsoft Works 2014-03-20 10:45 - 2009-07-13 18:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-03-20 10:27 - 2014-03-20 10:27 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-03-20 10:27 - 2014-03-20 10:27 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-03-20 10:25 - 2009-07-13 18:04 - 00000478 _____ () C:\Windows\win.ini 2014-03-20 10:22 - 2013-08-08 01:44 - 00000000 ____D () C:\Windows\System32\MRT 2014-03-20 10:04 - 2012-09-01 06:27 - 87350280 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe 2014-03-20 10:03 - 2014-03-20 10:03 - 00278904 _____ () C:\Windows\msxml4-KB954430-enu.LOG 2014-03-20 10:02 - 2014-03-20 10:01 - 00286030 _____ () C:\Windows\msxml4-KB973688-enu.LOG 2014-03-20 10:01 - 2014-03-20 10:01 - 00000000 ____D () C:\Program Files\MSXML 4.0 2014-03-19 06:36 - 2014-02-09 06:44 - 00000000 ____D () C:\Users\Judith\AppData\Roaming\Mozilla 2014-03-17 13:31 - 2014-03-17 13:31 - 00001861 _____ () C:\Users\Public\Desktop\ANNO 1503 spielen.lnk 2014-03-17 13:29 - 2014-03-17 13:21 - 00000000 ____D () C:\Program Files\ANNO 1503 2014-03-17 13:21 - 2011-12-30 10:38 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-03-17 12:55 - 2014-03-17 12:55 - 00000000 ____D () C:\Program Files\Microsoft Visual Studio 2014-03-17 12:55 - 2014-03-17 12:44 - 00000000 ____D () C:\Windows\SHELLNEW 2014-03-17 12:55 - 2011-12-30 11:06 - 00000000 ____D () C:\Program Files\Microsoft Office 2014-03-17 12:55 - 2009-07-13 20:52 - 00000000 ____D () C:\Program Files\MSBuild 2014-03-17 12:54 - 2011-12-30 10:49 - 00000000 ____D () C:\Program Files\Microsoft.NET 2014-03-17 12:45 - 2014-03-17 12:45 - 00000000 ____D () C:\Program Files\Microsoft Visual Studio 8 2014-03-17 12:36 - 2014-03-17 12:27 - 00000000 ____D () C:\ProgramData\Nero 2014-03-17 12:36 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\Cursors 2014-03-17 12:35 - 2014-03-17 12:28 - 00000000 ____D () C:\Program Files\Nero 2014-03-17 12:34 - 2014-03-17 12:34 - 00002055 _____ () C:\Users\Public\Desktop\Nero Kwik Media.lnk 2014-03-17 12:33 - 2014-03-17 12:33 - 00002823 _____ () C:\Users\Public\Desktop\Nero Express 12.lnk 2014-03-17 12:33 - 2014-03-17 12:29 - 00000000 ____D () C:\Program Files\Common Files\Nero 2014-03-16 14:10 - 2012-08-24 07:07 - 00000000 ___RD () C:\Users\Judith\Desktop\Wüstenwind 2014-03-15 03:42 - 2012-08-23 11:14 - 00002362 _____ () C:\Users\Judith\Desktop\Google Chrome.lnk 2014-03-14 09:42 - 2014-03-14 09:42 - 00000000 ____D () C:\Users\Judith\AppData\Local\Skype 2014-03-14 09:41 - 2012-08-23 09:04 - 00000000 ____D () C:\ProgramData\Skype 2014-03-14 09:40 - 2014-03-14 09:40 - 00002687 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-03-14 09:40 - 2014-03-14 09:40 - 00000000 ___RD () C:\Program Files\Skype 2014-03-14 09:40 - 2014-03-14 09:40 - 00000000 ____D () C:\Program Files\Common Files\Skype 2014-03-14 09:25 - 2014-02-25 11:19 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-03-14 09:25 - 2014-02-25 11:19 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-03-14 09:25 - 2011-12-30 10:57 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-03-11 13:04 - 2012-08-28 02:21 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerApp.exe 2014-03-11 13:04 - 2011-12-30 10:55 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerCPLApp.cpl 2014-03-05 11:49 - 2014-03-05 11:49 - 00000000 _____ () C:\Windows\setuperr.log 2014-03-04 14:35 - 2014-03-04 14:35 - 00002012 _____ () C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2014-03-04 14:35 - 2014-03-03 13:22 - 00000000 ____D () C:\Program Files\McAfee Security Scan 2014-03-03 13:32 - 2014-02-25 11:20 - 00001105 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-03-03 13:30 - 2014-03-03 13:30 - 00524401 _____ () C:\Users\Judith\Downloads\magicactions_6.7.0.zip 2014-03-03 13:25 - 2014-03-03 13:25 - 00000000 ____D () C:\Users\Judith\AppData\Local\Macromedia 2014-03-03 13:22 - 2014-03-03 13:22 - 00000000 ____D () C:\ProgramData\McAfee Security Scan 2014-03-03 13:22 - 2014-03-03 13:22 - 00000000 ____D () C:\ProgramData\McAfee 2014-03-03 13:22 - 2012-08-23 08:06 - 00000000 ____D () C:\Users\Judith\AppData\Local\Adobe 2014-03-01 09:29 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-02-28 20:30 - 2014-03-13 07:29 - 17074688 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2014-02-28 20:11 - 2014-03-13 07:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2014-02-28 20:10 - 2014-03-13 07:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\System32\ieetwcollectorres.dll 2014-02-28 19:52 - 2014-03-13 07:29 - 00061952 _____ (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2014-02-28 19:51 - 2014-03-13 07:29 - 00051200 _____ (Microsoft Corporation) C:\Windows\System32\ieetwproxystub.dll 2014-02-28 19:47 - 2014-03-13 07:29 - 02168320 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2014-02-28 19:43 - 2014-03-13 07:29 - 00043008 _____ (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2014-02-28 19:43 - 2014-03-13 07:29 - 00032768 _____ (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2014-02-28 19:40 - 2014-03-13 07:29 - 00440832 _____ (Microsoft Corporation) C:\Windows\System32\ieui.dll 2014-02-28 19:38 - 2014-03-13 07:29 - 00112128 _____ (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe 2014-02-28 19:38 - 2014-03-13 07:29 - 00108032 _____ (Microsoft Corporation) C:\Windows\System32\ieetwcollector.exe 2014-02-28 19:37 - 2014-03-13 07:29 - 00553472 _____ (Microsoft Corporation) C:\Windows\System32\jscript9diag.dll 2014-02-28 19:31 - 2014-03-13 07:29 - 00646144 _____ (Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe 2014-02-28 19:25 - 2014-03-13 07:29 - 00208896 _____ (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2014-02-28 19:16 - 2014-03-13 07:29 - 00164864 _____ (Microsoft Corporation) C:\Windows\System32\msrating.dll 2014-02-28 19:14 - 2014-03-13 07:29 - 04244480 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2014-02-28 19:03 - 2014-03-13 07:29 - 00524288 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2014-02-28 19:00 - 2014-03-13 07:29 - 01964032 _____ (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl 2014-02-28 18:57 - 2014-03-13 07:29 - 11266048 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2014-02-28 18:32 - 2014-03-13 07:29 - 01820160 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll 2014-02-28 18:27 - 2014-03-13 07:29 - 01156096 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2014-02-28 18:25 - 2014-03-13 07:29 - 00703488 _____ (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll 2014-02-28 14:04 - 2014-02-28 14:04 - 00000000 ____D () C:\Users\Judith\AppData\Local\{18E3C246-D84A-45AA-9500-01E3E99D563D} 2014-02-28 05:26 - 2014-02-28 05:26 - 00011177 _____ () C:\Users\Judith\Documents\Konzept.odt 2014-02-27 07:15 - 2014-02-27 07:15 - 00020269 _____ () C:\Users\Judith\Documents\Zeitungsartikel.odt 2014-02-25 12:33 - 2014-02-25 12:19 - 00000000 ____D () C:\Users\Judith\AppData\Roaming\TIPP10 2014-02-25 12:15 - 2014-02-25 12:15 - 00000937 _____ () C:\Users\Judith\Desktop\TIPP10.lnk 2014-02-25 12:15 - 2014-02-25 12:15 - 00000000 ____D () C:\Program Files\Tipp10 2014-02-25 11:20 - 2014-02-25 11:20 - 00000000 ____D () C:\Users\Judith\AppData\Local\Mozilla 2014-02-25 11:20 - 2014-02-25 11:20 - 00000000 ____D () C:\ProgramData\Mozilla 2014-02-24 16:17 - 2014-02-24 16:17 - 00030261 _____ () C:\Users\Judith\Documents\RPG SW.odt Some content of TEMP: ==================== C:\Users\Judith\AppData\Local\Temp\avgnt.exe C:\Users\Judith\AppData\Local\Temp\CmdLineExt02.dll C:\Users\Judith\AppData\Local\Temp\SIntf16.dll C:\Users\Judith\AppData\Local\Temp\SIntf32.dll C:\Users\Judith\AppData\Local\Temp\SIntfNT.dll ==================== Known DLLs (Whitelisted) ============ ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit ==================== EXE ASSOCIATION ===================== HKLM\...\.exe: exefile => OK HKLM\...\exefile\DefaultIcon: %1 => OK HKLM\...\exefile\open\command: "%1" %* => OK ==================== Restore Points ========================= Restore point made on: 2014-03-20 11:31:40 Restore point made on: 2014-03-21 13:53:51 ==================== Memory info =========================== Percentage of memory in use: 36% Total physical RAM: 1011.94 MB Available physical RAM: 638.3 MB Total Pagefile: 1011.94 MB Available Pagefile: 630.87 MB Total Virtual: 2047.88 MB Available Virtual: 1955.25 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:100 GB) (Free:66.58 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: () (Fixed) (Total:183.07 GB) (Free:181.46 GB) NTFS Drive e: (KINGSTON) (Removable) (Total:0.93 GB) (Free:0.74 GB) FAT Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: A8D6F410) Partition: GPT Partition Type. ======================================================== Disk: 1 (Size: 954 MB) (Disk ID: 2F5164D1) Partition 1: (Not Active) - (Size=954 MB) - (Type=06) LastRegBack: 2014-03-20 16:29 ==================== End Of Log ============================ |
![]() |
Themen zu Windows 7 Starter startet nach Updates nicht mehr (Microsoft Office Updates) |
antivir, avira, bildschirm, browser, computer, converter, desktop, device driver, down, dvdvideosoft ltd., email, error, excel, flash player, google, helper, homepage, minidump, mp3, problem, programm, realtek, security, software, starten, svchost.exe, updates, windows |