|
Plagegeister aller Art und deren Bekämpfung: Wie reinige ich meinen PC von VirenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
08.05.2014, 22:54 | #1 |
| Wie reinige ich meinen PC von Viren Ich habe denn verdacht das ich Viren auf meinem PC habe. Könnte mir da einer behilflich sein. |
09.05.2014, 06:49 | #2 |
/// the machine /// TB-Ausbilder | Wie reinige ich meinen PC von Viren hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
09.05.2014, 15:32 | #3 |
| Wie reinige ich meinen PC von Viren FRST Additions Logfile:
__________________Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-05-2014 01 Ran by admin at 2014-05-09 12:20:36 Running from C:\Users\admin\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== Adobe Flash Player 13 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 13.0.0.206 - Adobe Systems Incorporated) AMD Catalyst Install Manager (HKLM\...\{A303978A-1639-E0A5-AD41-D4CE69E5214B}) (Version: 8.0.911.0 - Advanced Micro Devices, Inc.) AMD Fuel (Version: 2013.0409.2219.38230 - Ihr Firmenname) Hidden AMD Media Foundation Decoders (Version: 1.0.80409.2207 - Advanced Micro Devices, Inc.) Hidden AMD USB 3.0 Device Detector (Version: 2.1.29.0 - Advanced Micro Devices, Inc.) Hidden AMD VISION Engine Control Center (x32 Version: 2013.0409.2219.38230 - Ihr Firmenname) Hidden Arma 2 (HKLM-x32\...\Steam App 33910) (Version: - Bohemia Interactive) Arma 2: Operation Arrowhead (HKLM-x32\...\Steam App 33930) (Version: - Bohemia Interactive) BattlEye for OA Uninstall (HKLM-x32\...\BattlEye for OA) (Version: - ) BattlEye Uninstall (HKLM-x32\...\BattlEye for A2) (Version: - ) Call of Duty: Modern Warfare 2 - Multiplayer (HKLM-x32\...\Steam App 10190) (Version: - Infinity Ward) Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2013.0409.2219.38230 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2013.0409.2219.38230 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Profiles Mobile (x32 Version: 2013.0409.2219.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2013.0409.2218.38230 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2013.0409.2219.38230 - Advanced Micro Devices, Inc.) Hidden Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) DayZ Commander (HKLM-x32\...\{B3653588-3AC0-4A1D-950F-D96531E84374}) (Version: 0.92.91 - Dotjosh Studios) Dead Space (HKLM-x32\...\{025A585C-0C66-413D-80D2-4C05CB699771}) (Version: 1.0.0.222 - Electronic Arts) Dead Space™ 3 (HKLM-x32\...\{D4329609-4102-4F8C-B83F-7FE024EEA314}) (Version: 1.0.0.0 - Electronic Arts, Inc.) Drakonia Configurator (HKLM-x32\...\{2EAD3327-2F92-455F-A675-E5CC4980B67A}}_is1) (Version: - ) Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 34.0.1847.131 - Google Inc.) Google Update Helper (x32 Version: 1.3.23.9 - Google Inc.) Hidden Grand Theft Auto: Episodes from Liberty City (x32 Version: 1.0.0003.135 - Rockstar Games Inc.) Hidden League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Loadout (HKLM-x32\...\Steam App 208090) (Version: - Edge of Reality) LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.188 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.188 - LogMeIn, Inc.) Hidden Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Games for Windows - LIVE (HKLM-x32\...\{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}) (Version: 3.1.186.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.6122.5000 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (Version: 14.0.6122.5000 - Microsoft Corporation) Hidden Microsoft Office Starter 2010 - Deutsch (HKLM-x32\...\{90140011-0066-0407-0000-0000000FF1CE}) (Version: 14.0.6129.5001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) MSVCRT Redists (Version: 1.0 - Sony Creative Software Inc.) Hidden Origin (HKLM-x32\...\Origin) (Version: 9.4.7.2799 - Electronic Arts, Inc.) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) Razer Synapse 2.0 (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.17.23 - Razer Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.67.1226.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6767 - Realtek Semiconductor Corp.) Skype Click to Call (HKLM-x32\...\{BB285C9F-C821-4770-8970-56C4AB52C87E}) (Version: 7.2.15747.10003 - Microsoft Corporation) Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.28223 - TeamViewer) Terraria (HKLM-x32\...\Steam App 105600) (Version: - Re-Logic) WinRAR 5.10 beta 3 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.10.3 - win.rar GmbH) ==================== Restore Points ========================= ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {13D359B8-ED9F-40DF-9E0E-1052C7548443} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-04-25] (Google Inc.) Task: {4CE303E1-F528-410B-941E-479AF46B001A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-04-29] (Adobe Systems Incorporated) Task: {64D3A21D-FC38-4508-A462-0109B0CC07C3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-04-25] (Google Inc.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-04-09 22:31 - 2013-04-09 22:31 - 00210944 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll 2012-09-23 13:53 - 2012-09-23 13:53 - 00748544 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll 2012-09-23 13:53 - 2012-09-23 13:53 - 03645952 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll 2014-05-02 01:28 - 2014-05-02 01:28 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-04-26 16:06 - 2014-04-26 16:06 - 00706560 _____ () C:\Program Files\002\yewimmxqbs64.exe 2014-04-27 16:15 - 2013-10-29 13:43 - 00248832 _____ () C:\Program Files (x86)\Drakonia Configurator\hid.exe 2014-04-27 16:15 - 2012-12-11 11:14 - 00240640 _____ () C:\Program Files (x86)\Drakonia Configurator\trayicon.exe 2014-04-25 12:05 - 2014-04-22 00:55 - 00340480 _____ () C:\Program Files (x86)\Steam\libavresample-1.dll 2014-04-25 12:05 - 2014-04-22 00:55 - 00471552 _____ () C:\Program Files (x86)\Steam\libavutil-53.dll 2014-04-25 12:05 - 2014-04-01 00:09 - 00754688 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2014-04-25 12:05 - 2014-04-24 00:01 - 01092288 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2014-04-25 12:05 - 2014-03-03 21:15 - 20626624 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll 2014-04-25 12:05 - 2013-06-15 01:49 - 01100800 _____ () C:\Program Files (x86)\Steam\bin\avcodec-53.dll 2014-04-25 12:05 - 2013-06-15 01:49 - 00124416 _____ () C:\Program Files (x86)\Steam\bin\avutil-51.dll 2014-04-25 12:05 - 2013-06-15 01:49 - 00192000 _____ () C:\Program Files (x86)\Steam\bin\avformat-53.dll 2014-04-30 16:39 - 2014-04-30 16:39 - 00962560 _____ () C:\Program Files (x86)\Origin\platforms\qwindows.dll 2014-04-30 16:39 - 2014-04-30 16:39 - 00024064 _____ () C:\Program Files (x86)\Origin\imageformats\qgif.dll 2014-04-30 16:39 - 2014-04-30 16:39 - 00025088 _____ () C:\Program Files (x86)\Origin\imageformats\qico.dll 2014-04-30 16:39 - 2014-04-30 16:39 - 00217088 _____ () C:\Program Files (x86)\Origin\imageformats\qjpeg.dll 2014-04-30 16:39 - 2014-04-30 16:39 - 00261632 _____ () C:\Program Files (x86)\Origin\imageformats\qmng.dll 2014-04-30 16:39 - 2014-04-30 16:39 - 00019968 _____ () C:\Program Files (x86)\Origin\imageformats\qtga.dll 2014-04-30 16:39 - 2014-04-30 16:39 - 00302592 _____ () C:\Program Files (x86)\Origin\imageformats\qtiff.dll 2014-04-30 16:39 - 2014-04-30 16:39 - 00018944 _____ () C:\Program Files (x86)\Origin\imageformats\qwbmp.dll 2014-04-27 16:15 - 2013-01-15 17:06 - 00061952 _____ () C:\Program Files (x86)\Drakonia Configurator\HidDevice.dll 2014-04-27 16:15 - 2011-11-22 14:18 - 00249856 _____ () C:\Program Files (x86)\Drakonia Configurator\language.dll 2014-04-25 12:28 - 2014-04-24 02:33 - 00065352 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\chrome_elf.dll 2014-04-25 12:28 - 2014-04-24 02:33 - 00674632 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\libglesv2.dll 2014-04-25 12:28 - 2014-04-24 02:33 - 00093000 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\libegl.dll 2014-04-25 12:28 - 2014-04-24 02:33 - 04081480 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\pdf.dll 2014-04-25 12:28 - 2014-04-24 02:33 - 00390472 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\ppGoogleNaClPluginChrome.dll 2014-04-25 12:28 - 2014-04-24 02:33 - 01647432 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\ffmpegsumo.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\ProgramData:NT2 AlternateDataStreams: C:\Users\All Users:NT2 AlternateDataStreams: C:\Users\admin\Anwendungsdaten:NT AlternateDataStreams: C:\Users\admin\Anwendungsdaten:NT2 AlternateDataStreams: C:\Users\admin\AppData\Roaming:NT AlternateDataStreams: C:\Users\admin\AppData\Roaming:NT2 AlternateDataStreams: C:\ProgramData\Anwendungsdaten:NT2 AlternateDataStreams: C:\ProgramData\Application Data:NT2 AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT2 ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== EXE Association (whitelisted) ============= ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= Name: Teredo Tunneling Pseudo-Interface Description: Microsoft-Teredo-Tunneling-Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (05/09/2014 00:18:41 PM) (Source: System Restore) (User: ) (EventID: 8193) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Windows\system32\svchost.exe -k netsvcs; Beschreibung = Windows Update; Fehler = 0x80070422). Error: (05/09/2014 00:13:15 PM) (Source: Application Error) (User: ) (EventID: 1000) Description: Name der fehlerhaften Anwendung: atieclxx.exe, Version: 6.14.11.1143, Zeitstempel: 0x5164c28b Name des fehlerhaften Moduls: atieclxx.exe, Version: 6.14.11.1143, Zeitstempel: 0x5164c28b Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000002ea19 ID des fehlerhaften Prozesses: 0x4c8 Startzeit der fehlerhaften Anwendung: 0xatieclxx.exe0 Pfad der fehlerhaften Anwendung: atieclxx.exe1 Pfad des fehlerhaften Moduls: atieclxx.exe2 Berichtskennung: atieclxx.exe3 Error: (05/09/2014 00:04:22 AM) (Source: System Restore) (User: ) (EventID: 8193) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\directx_installer\DXSETUP.exe Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\directx_installer\DXSETUP.exe" /silent; Beschreibung = DirectX wurde installiert; Fehler = 0x80070422). Error: (05/08/2014 11:23:39 PM) (Source: System Restore) (User: ) (EventID: 8193) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Users\admin\AppData\Local\Temp\{BD7B4A98-3D7C-4205-ADEE-38CD86207566}\setup.exe -runfromtemp -l0x0007 -removeonly -media_path:"C:\Program Files (x86)\InstallShield Installation Information\{61B8B2F9-D8DA-4B24-89A9-DB09F38A4899}\" -tempdisk1folder:"C:\Users\admin\AppData\Local\Temp\{BD7B4A98-3D7C-4205-ADEE-38CD86207566}\"; Beschreibung = Entfernt Grand Theft Auto: Episodes From Liberty City; Fehler = 0x80070422). Error: (05/08/2014 11:10:44 PM) (Source: System Restore) (User: ) (EventID: 8193) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Windows\system32\msiexec.exe /V; Beschreibung = Removed Windows Live ID Sign-in Assistant; Fehler = 0x80070422). Error: (05/08/2014 11:10:42 PM) (Source: System Restore) (User: ) (EventID: 8193) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Windows\system32\msiexec.exe /V; Beschreibung = Removed Windows Live ID Sign-in Assistant; Fehler = 0x80070422). Error: (05/07/2014 08:53:39 PM) (Source: System Restore) (User: ) (EventID: 8193) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\directx_installer\DXSETUP.exe Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\directx_installer\DXSETUP.exe" /silent; Beschreibung = DirectX wurde installiert; Fehler = 0x80070422). Error: (05/07/2014 01:49:35 PM) (Source: System Restore) (User: ) (EventID: 8193) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Windows\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation; Beschreibung = Geplanter Prüfpunkt; Fehler = 0x80070422). Error: (05/07/2014 02:27:20 AM) (Source: System Restore) (User: ) (EventID: 8193) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Windows\servicing\TrustedInstaller.exe; Beschreibung = Windows Modules Installer; Fehler = 0x80070422). Error: (05/07/2014 02:27:19 AM) (Source: System Restore) (User: ) (EventID: 8193) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Windows\system32\svchost.exe -k netsvcs; Beschreibung = Windows Update; Fehler = 0x80070422). System errors: ============= Error: (05/08/2014 05:06:46 PM) (Source: bowser) (User: ) (EventID: 8003) Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "PHILIPPS-PC", der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{DDB974CF-C8AC-42B9-9AFD-67D65124A35A}-Transport zu sein scheint. Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen. Error: (05/07/2014 01:19:01 PM) (Source: bowser) (User: ) (EventID: 8003) Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "PHILIPPS-PC", der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{DDB974CF-C8AC-42B9-9AFD-67D65124A35A}-Transport zu sein scheint. Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen. Error: (04/29/2014 09:43:18 PM) (Source: Service Control Manager) (User: ) (EventID: 7000) Description: Der Dienst "LogMeIn Hamachi Tunneling Engine" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (04/29/2014 09:43:18 PM) (Source: Service Control Manager) (User: ) (EventID: 7009) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst LogMeIn Hamachi Tunneling Engine erreicht. Error: (04/29/2014 09:42:25 PM) (Source: EventLog) (User: ) (EventID: 6008) Description: Das System wurde zuvor am 29.04.2014 um 21:40:42 unerwartet heruntergefahren. Error: (04/29/2014 01:54:14 PM) (Source: Service Control Manager) (User: ) (EventID: 7023) Description: Der Dienst "Windows Defender" wurde mit folgendem Fehler beendet: %%32 Error: (04/29/2014 01:53:44 PM) (Source: Service Control Manager) (User: ) (EventID: 7023) Description: Der Dienst "Windows-Dienst für Schriftartencache" wurde mit folgendem Fehler beendet: %%32 Error: (04/27/2014 11:57:49 PM) (Source: Service Control Manager) (User: ) (EventID: 7031) Description: Der Dienst "Update Surftastic" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 5000 Millisekunden durchgeführt: Neustart des Diensts. Error: (04/27/2014 11:53:21 PM) (Source: Service Control Manager) (User: ) (EventID: 7034) Description: Dienst "Search Protect by Conduit Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (04/27/2014 11:07:34 PM) (Source: Microsoft-Windows-Time-Service) (User: NT-AUTORITÄT) (EventID: 4) Description: Der Zeitanbieter "VMICTimeProvider" wurde aufgrund des folgenden Fehlers nicht gestartet: Dies Datei wurde zum Ändern einer nicht aufgelösten Transaktion geöffnet und kann nur durch einen Transaktionsleser zum Ausführen geöffnet werden. (0x80071AB6) Microsoft Office Sessions: ========================= Error: (05/09/2014 00:18:41 PM) (Source: System Restore) (User: ) (EventID: 8193) Description: C:\Windows\system32\svchost.exe -k netsvcsWindows Update0x80070422 Error: (05/09/2014 00:13:15 PM) (Source: Application Error) (User: ) (EventID: 1000) Description: atieclxx.exe6.14.11.11435164c28batieclxx.exe6.14.11.11435164c28bc0000005000000000002ea194c801cf6b6f46fc01d5C:\Windows\system32\atieclxx.exeC:\Windows\system32\atieclxx.exe88342ca5-d762-11e3-adc4-e03f49ea7864 Error: (05/09/2014 00:04:22 AM) (Source: System Restore) (User: ) (EventID: 8193) Description: C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\directx_installer\DXSETUP.exe Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\directx_installer\DXSETUP.exe" /silentDirectX wurde installiert0x80070422 Error: (05/08/2014 11:23:39 PM) (Source: System Restore) (User: ) (EventID: 8193) Description: C:\Users\admin\AppData\Local\Temp\{BD7B4A98-3D7C-4205-ADEE-38CD86207566}\setup.exe -runfromtemp -l0x0007 -removeonly -media_path:"C:\Program Files (x86)\InstallShield Installation Information\{61B8B2F9-D8DA-4B24-89A9-DB09F38A4899}\" -tempdisk1folder:"C:\Users\admin\AppData\Local\Temp\{BD7B4A98-3D7C-4205-ADEE-38CD86207566}\"Entfernt Grand Theft Auto: Episodes From Liberty City0x80070422 Error: (05/08/2014 11:10:44 PM) (Source: System Restore) (User: ) (EventID: 8193) Description: C:\Windows\system32\msiexec.exe /VRemoved Windows Live ID Sign-in Assistant0x80070422 Error: (05/08/2014 11:10:42 PM) (Source: System Restore) (User: ) (EventID: 8193) Description: C:\Windows\system32\msiexec.exe /VRemoved Windows Live ID Sign-in Assistant0x80070422 Error: (05/07/2014 08:53:39 PM) (Source: System Restore) (User: ) (EventID: 8193) Description: C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\directx_installer\DXSETUP.exe Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\directx_installer\DXSETUP.exe" /silentDirectX wurde installiert0x80070422 Error: (05/07/2014 01:49:35 PM) (Source: System Restore) (User: ) (EventID: 8193) Description: C:\Windows\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreationGeplanter Prüfpunkt0x80070422 Error: (05/07/2014 02:27:20 AM) (Source: System Restore) (User: ) (EventID: 8193) Description: C:\Windows\servicing\TrustedInstaller.exeWindows Modules Installer0x80070422 Error: (05/07/2014 02:27:19 AM) (Source: System Restore) (User: ) (EventID: 8193) Description: C:\Windows\system32\svchost.exe -k netsvcsWindows Update0x80070422 ==================== Memory info =========================== Percentage of memory in use: 29% Total physical RAM: 7364.8 MB Available physical RAM: 5165.96 MB Total Pagefile: 14727.79 MB Available Pagefile: 12211.65 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:931.32 GB) (Free:808.27 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 8BD8187D) Partition 1: (Active) - (Size=197 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931 GB) - (Type=07 NTFS) ==================== End Of Log ============================ die andere kann ich nicht senden weil dann die zeichenanzahl zu groß ist was soll ich tun? |
10.05.2014, 11:14 | #4 |
/// the machine /// TB-Ausbilder | Wie reinige ich meinen PC von Viren Log in Stücke teilen und mehrere Antworten benutzen.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Wie reinige ich meinen PC von Viren |
verdacht, viren |