![]() |
|
Log-Analyse und Auswertung: AVG 2014 lässt sich nach (2) Virenfunden nicht mehr startenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
![]() ![]() | ![]() AVG 2014 lässt sich nach (2) Virenfunden nicht mehr starten Hallo Trojaner-Board Team, ich hoffe ich bekomme den Ablauf der Ereignisse in die richtige Reihenfolge. AVG hat beim Virenscannen des Computers 2 Viren gefunden, die vom Virenscanner danach per Knopfklick (erfolgreich) beseitigt wurden. Ausserdem erhielt ich die Meldung, dass eine file names "mfc110u" fehlt. Habe nach dieser file gegoogelt und auch einen link zum download dafür gefunden. Das Teil heisst Dll-Files Fixer. Die download Datei heisst "dffsetup-mfc110u". Habe dieses Programm dann rennen lassen und die file wurde laut Programm "erfolgreich wiederhergestellt", oder sowas, weiss leider den genauen Wortlaut nicht mehr. Leider kann ich die AVG logs nicht posten, da sich eben die software nicht starten lässt. Mein Versuch die AVG Version zu entfernen, und neu zu installieren scheitert, weil sie sich im "Programme hinzufügen/entfernen" nicht entfernen lässt. Meldung "AVG Crash Dumper has stopped working". Ausserdem hatt ich einen blue-screen beim runterfahren, mit der Meldung, dass Windows das System abschaltet, um weiteren Schaden am System zu verhindern, oder so ähnlich. Habe mir letzte Woche eine Skiller gaming Tastatur von Sharkoon neu ans System gehängt, weil meine alte Microsoft Tastatur den Geist aufgab. (einige Buchstaben wollten nicht mehr funktionieren, mal ja, mal nein...). Sonst ist nichts neu. Gmer lässt sich nicht ausführen: Gmer-19357.exe-No Disk (im Fensterrahmen) There is no disk in the drive. Please insert a disk drive\Device\Harddisk1\DR1. Die free-Version von Malware-bytes Anti Malware, welche ich regelmässig laufen lasse, hat keine Funde angezeigt. Defogger-log: Code:
ATTFilter defogger_disable by jpshortstuff (23.02.10.1) Log created at 11:25 on 17/06/2014 (Norbert) Checking for autostart values... HKCU\~\Run values retrieved. HKLM\~\Run values retrieved. Checking for services/drivers... -=E.O.F=- Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:16-06-2014 Ran by Norbert (administrator) on NORBERT-PC on 17-06-2014 11:27:48 Running from C:\Users\Norbert\Desktop Platform: Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: English(US) Internet Explorer Version 9 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgrsx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgcsrvx.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\SLsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40ST7.EXE (SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe () C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe (Secunia) C:\Program Files\Secunia\PSI\sua.exe (TomTom) C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe (AVG Secure Search) C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\ToolbarUpdater.exe () C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\loggingserver.exe (SEIKO EPSON CORPORATION) C:\Program Files\Epson Software\Event Manager\EEventManager.exe () C:\Program Files\Belkin\F5D8055\v2\BelkinDetectUI.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (RealNetworks, Inc.) C:\Program Files\Real\RealPlayer\Update\realsched.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe () C:\Program Files\AVG Secure Search\vprot.exe (Microsoft Corporation) C:\Program Files\Microsoft IntelliType Pro\itype.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (Game Inc.) C:\Program Files\SHARKOON Skiller\GameMon.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe (TomTom) C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe (Microsoft Corporation) C:\Program Files\Microsoft IntelliType Pro\dpupdchk.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe (Opera Software) C:\Program Files\Opera\22.0.1471.50\opera.exe () C:\Program Files\Opera\22.0.1471.50\opera_crashreporter.exe (Opera Software) C:\Program Files\Opera\22.0.1471.50\opera.exe (Opera Software) C:\Program Files\Opera\22.0.1471.50\opera.exe (Opera Software) C:\Program Files\Opera\22.0.1471.50\opera.exe (Microsoft Corporation) C:\Windows\System32\wuauclt.exe (Malwarebytes Corporation) C:\Program Files\ Malwarebytes Anti-Malware \mbam.exe (Microsoft Corporation) C:\Windows\System32\sdclt.exe (Opera Software) C:\Program Files\Opera\22.0.1471.50\opera.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [EEventManager] => C:\Program Files\Epson Software\Event Manager\EEventManager.exe [591696 2008-05-07] (SEIKO EPSON CORPORATION) HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [41056 2013-05-08] (Adobe Systems Incorporated) HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM\...\Run: [F5D8055v2] => C:\Program Files\Belkin\F5D8055\v2\BelkinDetectUI.exe [196608 2009-04-15] () HKLM\...\Run: [Nvtmru] => C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-14] (NVIDIA Corporation) HKLM\...\Run: [TkBellExe] => c:\program files\real\realplayer\Update\realsched.exe [295512 2013-10-17] (RealNetworks, Inc.) HKLM\...\Run: [AVG_UI] => C:\Program Files\AVG\AVG2014\avgui.exe [5181456 2014-05-13] (AVG Technologies CZ, s.r.o.) HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-10] (NVIDIA Corporation) HKLM\...\Run: [vProt] => C:\Program Files\AVG Secure Search\vprot.exe [2557976 2014-04-29] () HKLM\...\Run: [itype] => C:\Program Files\Microsoft IntelliType Pro\itype.exe [1313640 2011-08-10] (Microsoft Corporation) HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [224128 2014-03-18] (Oracle Corporation) HKLM\...\Run: [GamingKeyboard] => C:\Program Files\SHARKOON Skiller\GameMon.exe [1805824 2013-10-16] (Game Inc.) HKU\S-1-5-21-1006003231-2697031979-1953750779-1000\...\Run: [WMPNSCFG] => C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-21] (Microsoft Corporation) HKU\S-1-5-21-1006003231-2697031979-1953750779-1000\...\Run: [AVG-Secure-Search-Update_1213b] => C:\Users\Norbert\AppData\Roaming\AVG 1213b Campaign\AVG-Secure-Search-Update-1213b.exe /PROMPT /mid=b84bd206e02247f5b5d9199ceddd2408-81d3a19c008f02a9c5a7646a090fae9a1306aa88 /CMPID=1213b HKU\S-1-5-21-1006003231-2697031979-1953750779-1000\...\Run: [TomTomHOME.exe] => C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe [248208 2013-08-27] (TomTom) HKU\S-1-5-21-1006003231-2697031979-1953750779-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [WMPNSCFG] => C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-21] (Microsoft Corporation) HKU\S-1-5-21-1006003231-2697031979-1953750779-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [AVG-Secure-Search-Update_1213b] => C:\Users\Norbert\AppData\Roaming\AVG 1213b Campaign\AVG-Secure-Search-Update-1213b.exe /PROMPT /mid=b84bd206e02247f5b5d9199ceddd2408-81d3a19c008f02a9c5a7646a090fae9a1306aa88 /CMPID=1213b HKU\S-1-5-21-1006003231-2697031979-1953750779-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [TomTomHOME.exe] => C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe [248208 2013-08-27] (TomTom) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation) Startup: C:\Users\Norbert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://at.msn.com/?st=1 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x766D3BB98C72CA01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-at SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxp://isearch.avg.com/search?cid={F765AAF5-886B-466E-956B-787B8A03C6D7}&mid=b84bd206e02247f5b5d9199ceddd2408-81d3a19c008f02a9c5a7646a090fae9a1306aa88&lang=en&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2014-02-12 21:53:01&v=17.3.1.91&pid=avg&sg=&sap=dsp&q={searchTerms} BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre8\bin\ssv.dll (Oracle Corporation) BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.) BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\18.1.0.443\AVG Secure Search_toolbar.dll (AVG Secure Search) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre8\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.) Toolbar: HKLM - AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\18.1.0.443\AVG Secure Search_toolbar.dll (AVG Secure Search) Toolbar: HKCU - ZoneAlarm Toolbar - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll No File Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\18.1.0\ViProtocol.dll (AVG Secure Search) Tcpip\Parameters: [DhcpNameServer] 195.34.133.21 212.186.211.21 FireFox: ======== FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_14_0_0_125.dll () FF Plugin: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin - C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\18.1.0\\npsitesafety.dll No File FF Plugin: @java.com/DTPlugin,version=11.5.2 - C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.5.2 - C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\4.0.50826.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @real.com/nppl3260;version=16.0.3.51 - c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprndlchromebrowserrecordext;version=1.3.3 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprndlhtml5videoshim;version=1.3.3 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprndlpepperflashvideoshim;version=1.3.3 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprpplugin;version=16.0.3.51 - c:\program files\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer) FF Plugin: @realnetworks.com/npdlplugin;version=1 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF HKLM\...\Firefox\Extensions: [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}] - C:\Program Files\CheckPoint\ZAForceField\TrustChecker FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [] FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-10-17] FF HKLM\...\Firefox\Extensions: [{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ [] ========================== Services (Whitelisted) ================= S2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3644432 2014-05-13] (AVG Technologies CZ, s.r.o.) S2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [292424 2014-05-13] (AVG Technologies CZ, s.r.o.) R2 EPSON_EB_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40ST7.EXE [143872 2007-12-17] (SEIKO EPSON CORPORATION) R2 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664 2007-01-11] (SEIKO EPSON CORPORATION) R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation) R2 RealNetworks Downloader Resolver Service; C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-08-14] () S3 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [1229528 2013-12-06] (Secunia) R2 Secunia Update Agent; C:\Program Files\Secunia\PSI\sua.exe [662232 2013-12-06] (Secunia) R2 vToolbarUpdater18.1.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\ToolbarUpdater.exe [1801240 2014-04-29] (AVG Secure Search) S2 AntiVirSchedulerService; "C:\Program Files\Avira\AntiVir Desktop\sched.exe" [X] S2 AntiVirService; "C:\Program Files\Avira\AntiVir Desktop\avguard.exe" [X] S2 vToolbarUpdater15.4.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.4.0\ToolbarUpdater.exe [X] ==================== Drivers (Whitelisted) ==================== R1 AsIO; C:\Windows\System32\drivers\AsIO.sys [12400 2009-12-01] () R1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [122136 2014-05-13] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [198936 2014-05-13] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [149784 2014-05-13] (AVG Technologies CZ, s.r.o.) R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [21272 2014-05-13] (AVG Technologies CZ, s.r.o.) R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [192280 2014-05-13] (AVG Technologies CZ, s.r.o.) R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [237848 2014-05-13] (AVG Technologies CZ, s.r.o.) R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [107288 2014-05-13] (AVG Technologies CZ, s.r.o.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [56816 2009-12-09] (Avira GmbH) R0 Avgrkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [27416 2014-05-13] (AVG Technologies CZ, s.r.o.) R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [210200 2014-05-13] (AVG Technologies CZ, s.r.o.) R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [42272 2014-04-29] (AVG Technologies) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [96104 2009-03-30] (Avira GmbH) S3 GKBFltr; C:\Windows\System32\Drivers\GameKB.sys [25088 2013-10-15] ( ) R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [110296 2014-06-17] (Malwarebytes Corporation) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [7680 2009-12-01] () S3 netr28u; C:\Windows\System32\DRIVERS\netr28u.sys [718336 2010-10-18] (Ralink Technology Corp.) S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_x86.sys [16024 2013-12-06] (Secunia) R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2009-05-11] (Avira GmbH) U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-21] (Microsoft Corporation) S1 avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys [X] S3 catchme; \??\C:\Users\Norbert\AppData\Local\Temp\catchme.sys [X] S3 IpInIp; system32\DRIVERS\ipinip.sys [X] S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X] S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X] S3 USBMULCD; system32\drivers\CM106.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-17 11:27 - 2014-06-17 11:28 - 00016017 _____ () C:\Users\Norbert\Desktop\FRST.txt 2014-06-17 11:27 - 2014-06-17 11:27 - 00000000 ____D () C:\FRST 2014-06-17 11:26 - 2014-06-17 11:26 - 01072640 _____ (Farbar) C:\Users\Norbert\Desktop\FRST.exe 2014-06-17 11:25 - 2014-06-17 11:26 - 00000476 _____ () C:\Users\Norbert\Desktop\defogger_disable.log 2014-06-17 11:25 - 2014-06-17 11:25 - 00000000 _____ () C:\Users\Norbert\defogger_reenable 2014-06-17 11:24 - 2014-06-17 11:24 - 00050477 _____ () C:\Users\Norbert\Desktop\Defogger.exe 2014-06-17 11:17 - 2014-06-17 11:18 - 152430976 _____ (AVG Technologies) C:\Users\Norbert\Downloads\avg_free_x86_all_2014_4592a7484.exe 2014-06-17 11:17 - 2014-06-17 11:17 - 152430976 _____ (AVG Technologies) C:\Users\Norbert\Downloads\avg_free_x86_all_2014_4592a7484 (1).exe 2014-06-16 15:30 - 2014-06-17 11:11 - 00000284 _____ () C:\Windows\Tasks\DLL-Files.Com Fixer_Updates.job 2014-06-16 15:30 - 2014-06-17 11:11 - 00000276 _____ () C:\Windows\Tasks\DLL-Files FixerASKUSER.job 2014-06-16 15:30 - 2014-06-17 11:11 - 00000268 _____ () C:\Windows\Tasks\DLL-Files.Com Fixer_MONTHLY.job 2014-06-16 15:30 - 2014-06-16 15:30 - 04456520 _____ (Microsoft Corporation) C:\Windows\system32\mfc110u.dll 2014-06-16 15:30 - 2014-06-16 15:30 - 00000000 ____D () C:\Users\Norbert\AppData\Roaming\dll-files.com 2014-06-16 15:30 - 2014-06-16 15:30 - 00000000 ____D () C:\ProgramData\TEMP 2014-06-16 15:30 - 2014-06-16 15:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dll-Files Fixer 2014-06-16 15:30 - 2014-06-16 15:30 - 00000000 ____D () C:\Program Files\Dll-Files.com Fixer 2014-06-16 15:30 - 2014-02-13 17:56 - 00017344 _____ (Dll-Files.com) C:\Windows\system32\roboot.exe 2014-06-16 15:29 - 2014-06-16 15:29 - 05359680 _____ (Dll-Files.com ) C:\Users\Norbert\Downloads\dffsetup-mfc110u.exe 2014-06-16 15:28 - 2014-06-16 15:28 - 02363953 _____ () C:\Users\Norbert\Downloads\mfc110u.zip 2014-06-12 21:08 - 2014-06-12 21:08 - 00000000 ____D () C:\Users\Norbert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Curse 2014-06-12 14:05 - 2014-05-28 18:48 - 12356608 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-06-12 14:05 - 2014-05-28 18:39 - 01810432 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-06-12 14:05 - 2014-05-28 18:38 - 09711104 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-06-12 14:05 - 2014-05-28 18:33 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-06-12 14:05 - 2014-05-28 18:32 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-06-12 14:05 - 2014-05-28 18:32 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-06-12 14:05 - 2014-05-28 18:31 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-06-12 14:05 - 2014-05-28 18:31 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-06-12 14:05 - 2014-05-28 18:30 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-06-12 14:05 - 2014-05-28 18:30 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-06-12 14:05 - 2014-05-28 18:30 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-06-12 14:05 - 2014-05-28 18:30 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-06-12 14:05 - 2014-05-28 18:30 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-06-12 14:05 - 2014-05-28 18:30 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-06-12 14:05 - 2014-05-28 18:30 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-06-12 14:05 - 2014-05-28 18:29 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-06-12 14:05 - 2014-05-28 18:29 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-06-12 14:05 - 2014-05-28 18:29 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-06-12 14:05 - 2014-05-28 18:29 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-06-12 14:05 - 2014-05-28 18:29 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-06-12 14:05 - 2014-05-28 18:28 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-06-12 14:05 - 2014-04-26 18:01 - 00502784 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2014-06-12 14:05 - 2014-04-05 04:42 - 00905664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-06-12 14:05 - 2014-03-10 03:22 - 01401344 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-06-12 14:05 - 2014-03-10 03:22 - 01248768 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-06-08 17:51 - 2014-06-08 17:51 - 00000000 ___SD () C:\Users\Norbert\Documents\Eigene Webs 2014-06-08 17:40 - 2014-06-08 17:41 - 00007606 _____ () C:\Windows\DPINST.LOG 2014-06-08 17:40 - 2014-06-08 17:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SHARKOON Skiller 2014-06-08 17:40 - 2014-06-08 17:40 - 00000000 ____D () C:\Program Files\SHARKOON Skiller 2014-06-08 17:40 - 2013-10-15 16:00 - 00025088 _____ ( ) C:\Windows\system32\Drivers\GameKB.sys 2014-06-08 11:47 - 2014-06-08 11:47 - 00000000 ____D () C:\Program Files\AGEIA Technologies 2014-06-08 11:47 - 2014-05-14 04:20 - 03774821 _____ () C:\Windows\system32\nvcoproc.bin 2014-06-08 11:44 - 2014-05-20 04:39 - 24024408 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv32.dll 2014-06-08 11:44 - 2014-05-20 04:39 - 17559384 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-06-08 11:44 - 2014-05-20 04:39 - 16003912 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2um.dll 2014-06-08 11:44 - 2014-05-20 04:39 - 10533152 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-06-08 11:44 - 2014-05-20 04:39 - 09735256 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-06-08 11:44 - 2014-05-20 04:39 - 09697640 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-06-08 11:44 - 2014-05-20 04:39 - 02953672 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-06-08 11:44 - 2014-05-20 04:39 - 02413344 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-06-08 11:44 - 2014-05-20 04:39 - 01056200 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco3233788.dll 2014-06-08 11:44 - 2014-05-20 04:39 - 00908744 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco3233788.dll 2014-06-08 09:13 - 2014-06-08 09:13 - 00000000 ____D () C:\Program Files\Common Files\Java 2014-06-08 09:12 - 2014-06-08 09:11 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-06-08 09:11 - 2014-06-08 09:11 - 00176040 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-06-08 09:11 - 2014-06-08 09:11 - 00176040 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-06-08 09:11 - 2014-06-08 09:11 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll 2014-06-08 09:11 - 2014-06-08 09:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-05-20 16:31 - 2014-05-11 00:08 - 00000426 _____ () C:\AVScanner.ini 2014-05-20 16:21 - 2014-06-17 11:21 - 00110296 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-05-20 16:20 - 2014-05-31 08:58 - 00000905 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-20 16:20 - 2014-05-31 08:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-20 16:20 - 2014-05-31 08:58 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-20 16:20 - 2014-05-12 07:26 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-05-20 16:20 - 2014-05-12 07:25 - 00074456 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-05-20 15:32 - 2014-05-20 15:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft-Tastatur 2014-05-20 15:30 - 2014-05-20 15:30 - 00000000 ____D () C:\Windows\PCHEALTH 2014-05-20 15:30 - 2014-05-20 15:30 - 00000000 ____D () C:\Program Files\Microsoft IntelliType Pro ==================== One Month Modified Files and Folders ======= 2014-06-17 11:28 - 2014-06-17 11:27 - 00016017 _____ () C:\Users\Norbert\Desktop\FRST.txt 2014-06-17 11:28 - 2013-12-21 19:07 - 00000000 ____D () C:\Users\Norbert\AppData\Local\temp 2014-06-17 11:27 - 2014-06-17 11:27 - 00000000 ____D () C:\FRST 2014-06-17 11:26 - 2014-06-17 11:26 - 01072640 _____ (Farbar) C:\Users\Norbert\Desktop\FRST.exe 2014-06-17 11:26 - 2014-06-17 11:25 - 00000476 _____ () C:\Users\Norbert\Desktop\defogger_disable.log 2014-06-17 11:25 - 2014-06-17 11:25 - 00000000 _____ () C:\Users\Norbert\defogger_reenable 2014-06-17 11:25 - 2009-12-01 13:59 - 00000000 ____D () C:\Users\Norbert 2014-06-17 11:24 - 2014-06-17 11:24 - 00050477 _____ () C:\Users\Norbert\Desktop\Defogger.exe 2014-06-17 11:23 - 2012-10-22 17:12 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-06-17 11:21 - 2014-05-20 16:21 - 00110296 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-06-17 11:20 - 2013-12-11 11:03 - 00000000 ____D () C:\ProgramData\MFAData 2014-06-17 11:19 - 2008-01-21 03:35 - 02079636 _____ () C:\Windows\WindowsUpdate.log 2014-06-17 11:18 - 2014-06-17 11:17 - 152430976 _____ (AVG Technologies) C:\Users\Norbert\Downloads\avg_free_x86_all_2014_4592a7484.exe 2014-06-17 11:17 - 2014-06-17 11:17 - 152430976 _____ (AVG Technologies) C:\Users\Norbert\Downloads\avg_free_x86_all_2014_4592a7484 (1).exe 2014-06-17 11:15 - 2010-01-06 13:58 - 00000000 ____D () C:\Users\Norbert\AppData\Local\Deployment 2014-06-17 11:11 - 2014-06-16 15:30 - 00000284 _____ () C:\Windows\Tasks\DLL-Files.Com Fixer_Updates.job 2014-06-17 11:11 - 2014-06-16 15:30 - 00000276 _____ () C:\Windows\Tasks\DLL-Files FixerASKUSER.job 2014-06-17 11:11 - 2014-06-16 15:30 - 00000268 _____ () C:\Windows\Tasks\DLL-Files.Com Fixer_MONTHLY.job 2014-06-17 11:11 - 2006-11-02 15:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-06-17 11:11 - 2006-11-02 14:47 - 00003712 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 2014-06-17 11:11 - 2006-11-02 14:47 - 00003712 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 2014-06-16 15:34 - 2006-11-02 15:01 - 00032622 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-06-16 15:30 - 2014-06-16 15:30 - 04456520 _____ (Microsoft Corporation) C:\Windows\system32\mfc110u.dll 2014-06-16 15:30 - 2014-06-16 15:30 - 00000000 ____D () C:\Users\Norbert\AppData\Roaming\dll-files.com 2014-06-16 15:30 - 2014-06-16 15:30 - 00000000 ____D () C:\ProgramData\TEMP 2014-06-16 15:30 - 2014-06-16 15:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dll-Files Fixer 2014-06-16 15:30 - 2014-06-16 15:30 - 00000000 ____D () C:\Program Files\Dll-Files.com Fixer 2014-06-16 15:29 - 2014-06-16 15:29 - 05359680 _____ (Dll-Files.com ) C:\Users\Norbert\Downloads\dffsetup-mfc110u.exe 2014-06-16 15:28 - 2014-06-16 15:28 - 02363953 _____ () C:\Users\Norbert\Downloads\mfc110u.zip 2014-06-15 18:48 - 2012-06-26 09:13 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2014-06-15 18:48 - 2011-09-13 10:04 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2014-06-15 18:01 - 2006-11-02 12:33 - 00765776 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-06-15 18:00 - 2010-09-29 13:16 - 00025600 _____ () C:\Users\Norbert\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-06-12 21:08 - 2014-06-12 21:08 - 00000000 ____D () C:\Users\Norbert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Curse 2014-06-12 21:08 - 2013-08-16 23:18 - 00000318 _____ () C:\Users\Norbert\Desktop\Curse Client.appref-ms 2014-06-12 14:18 - 2013-08-05 15:54 - 00000000 ____D () C:\Windows\system32\MRT 2014-06-12 14:16 - 2006-11-02 12:24 - 92708840 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe 2014-06-08 17:51 - 2014-06-08 17:51 - 00000000 ___SD () C:\Users\Norbert\Documents\Eigene Webs 2014-06-08 17:43 - 2009-12-01 13:59 - 00055128 _____ () C:\Users\Norbert\AppData\Local\GDIPFONTCACHEV1.DAT 2014-06-08 17:43 - 2006-11-02 14:47 - 00251408 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-06-08 17:41 - 2014-06-08 17:40 - 00007606 _____ () C:\Windows\DPINST.LOG 2014-06-08 17:40 - 2014-06-08 17:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SHARKOON Skiller 2014-06-08 17:40 - 2014-06-08 17:40 - 00000000 ____D () C:\Program Files\SHARKOON Skiller 2014-06-08 17:40 - 2009-12-01 14:21 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-06-08 11:47 - 2014-06-08 11:47 - 00000000 ____D () C:\Program Files\AGEIA Technologies 2014-06-08 11:47 - 2009-12-01 14:35 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-06-08 11:47 - 2009-12-01 14:09 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-06-08 09:13 - 2014-06-08 09:13 - 00000000 ____D () C:\Program Files\Common Files\Java 2014-06-08 09:11 - 2014-06-08 09:12 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-06-08 09:11 - 2014-06-08 09:11 - 00176040 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-06-08 09:11 - 2014-06-08 09:11 - 00176040 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-06-08 09:11 - 2014-06-08 09:11 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll 2014-06-08 09:11 - 2014-06-08 09:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-06-08 09:11 - 2013-08-10 07:37 - 00000000 ____D () C:\Program Files\Java 2014-06-03 17:56 - 2013-08-16 22:10 - 00000000 ____D () C:\Program Files\Opera 2014-05-31 08:58 - 2014-05-20 16:20 - 00000905 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-31 08:58 - 2014-05-20 16:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-31 08:58 - 2014-05-20 16:20 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-28 18:48 - 2014-06-12 14:05 - 12356608 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-28 18:39 - 2014-06-12 14:05 - 01810432 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-05-28 18:38 - 2014-06-12 14:05 - 09711104 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-05-28 18:33 - 2014-06-12 14:05 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-05-28 18:32 - 2014-06-12 14:05 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-05-28 18:32 - 2014-06-12 14:05 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-05-28 18:31 - 2014-06-12 14:05 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-05-28 18:31 - 2014-06-12 14:05 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-05-28 18:30 - 2014-06-12 14:05 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-05-28 18:30 - 2014-06-12 14:05 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-05-28 18:30 - 2014-06-12 14:05 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-05-28 18:30 - 2014-06-12 14:05 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-05-28 18:30 - 2014-06-12 14:05 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-05-28 18:30 - 2014-06-12 14:05 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-05-28 18:30 - 2014-06-12 14:05 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-05-28 18:29 - 2014-06-12 14:05 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-28 18:29 - 2014-06-12 14:05 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-05-28 18:29 - 2014-06-12 14:05 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-28 18:29 - 2014-06-12 14:05 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-05-28 18:29 - 2014-06-12 14:05 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-05-28 18:28 - 2014-06-12 14:05 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-05-25 11:25 - 2013-12-11 12:48 - 00001590 _____ () C:\Windows\setupact.log 2014-05-20 20:34 - 2013-12-16 20:21 - 00004376 _____ () C:\Windows\PFRO.log 2014-05-20 16:31 - 2014-03-05 20:34 - 00000000 ____D () C:\Users\Norbert\AppData\Local\Unity 2014-05-20 16:20 - 2013-12-17 19:08 - 00000000 ____D () C:\Program Files\Malwarebytes' Anti-Malware 2014-05-20 16:20 - 2013-08-06 19:20 - 00000000 ____D () C:\Users\Norbert\AppData\Roaming\Malwarebytes 2014-05-20 16:20 - 2013-08-06 19:19 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-20 15:32 - 2014-05-20 15:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft-Tastatur 2014-05-20 15:30 - 2014-05-20 15:30 - 00000000 ____D () C:\Windows\PCHEALTH 2014-05-20 15:30 - 2014-05-20 15:30 - 00000000 ____D () C:\Program Files\Microsoft IntelliType Pro 2014-05-20 15:30 - 2006-11-02 13:18 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-05-20 15:13 - 2013-12-21 19:25 - 00002425 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk 2014-05-20 11:51 - 2014-04-01 20:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2014-05-20 04:39 - 2014-06-08 11:44 - 24024408 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv32.dll 2014-05-20 04:39 - 2014-06-08 11:44 - 17559384 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-05-20 04:39 - 2014-06-08 11:44 - 16003912 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2um.dll 2014-05-20 04:39 - 2014-06-08 11:44 - 10533152 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-05-20 04:39 - 2014-06-08 11:44 - 09735256 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-05-20 04:39 - 2014-06-08 11:44 - 09697640 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-05-20 04:39 - 2014-06-08 11:44 - 02953672 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-05-20 04:39 - 2014-06-08 11:44 - 02413344 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-05-20 04:39 - 2014-06-08 11:44 - 01056200 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco3233788.dll 2014-05-20 04:39 - 2014-06-08 11:44 - 00908744 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco3233788.dll 2014-05-20 04:39 - 2012-10-10 22:14 - 14434704 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dum.dll 2014-05-20 04:39 - 2012-10-10 22:14 - 02730208 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi.dll 2014-05-20 04:39 - 2009-12-01 14:06 - 00020729 _____ () C:\Windows\system32\nvinfo.pb 2014-05-20 02:04 - 2010-07-09 16:37 - 04379592 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-05-20 02:04 - 2010-07-09 16:37 - 03055560 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc.dll 2014-05-20 02:04 - 2010-07-09 16:37 - 00668104 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-05-20 02:04 - 2010-07-09 16:37 - 00376096 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-05-20 02:04 - 2009-09-27 18:47 - 00061784 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll Some content of TEMP: ==================== C:\Users\Norbert\AppData\Local\temp\jre-7u51-windows-i586-iftw.exe C:\Users\Norbert\AppData\Local\temp\jre-7u55-windows-i586-iftw.exe C:\Users\Norbert\AppData\Local\temp\oi_{CB4E8797-A5B0-4126-8EB6-72ED80BEDAE1}.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => File is digitally signed C:\Windows\system32\winlogon.exe => File is digitally signed C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll => File is digitally signed C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-06-17 11:21 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version:16-06-2014 Ran by Norbert at 2014-06-17 11:28:18 Running from C:\Users\Norbert\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: AVG AntiVirus Free Edition 2014 (Disabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG AntiVirus Free Edition 2014 (Disabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664} ==================== Installed Programs ====================== Adobe Flash Player 13 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 13.0.0.214 - Adobe Systems Incorporated) Adobe Flash Player 14 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 14.0.0.125 - Adobe Systems Incorporated) Adobe Reader 9.3.2 - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-A93000000001}) (Version: 9.3.2 - Adobe Systems Incorporated) Adobe Reader X (10.1.10) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AA1000000001}) (Version: 10.1.10 - Adobe Systems Incorporated) AVG 2014 (HKLM\...\AVG) (Version: 2014.0.4592 - AVG Technologies) AVG 2014 (Version: 14.0.3964 - AVG Technologies) Hidden AVG 2014 (Version: 14.0.4592 - AVG Technologies) Hidden AVG Security Toolbar (HKLM\...\AVG Secure Search) (Version: 18.1.0.443 - AVG Technologies) Belkin N+ Wireless USB Adapter (HKLM\...\{5032D684-B2EB-46CC-9416-C9C955A53A85}) (Version: 2.00.06 - Belkin International, Inc.) Compatibility Pack for the 2007 Office system (HKLM\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Cool & Quiet (HKLM\...\{1ADE1AA0-7F82-4BB1-B1BD-727DE438057B}) (Version: - ) Curse Client (HKCU\...\101a9f93b8f0bb6f) (Version: 5.1.1.810 - Curse) Dll-Files Fixer (HKLM\...\Dll-Files Fixer_is1) (Version: 3.1.81 - Dll-Files.com) Epson Easy Photo Print 2 (HKLM\...\{DEDB47A3-C988-4A43-A645-E2CEA571E680}) (Version: 2.0.0.0 - SEIKO EPSON CORPORATION) Epson Event Manager (HKLM\...\{48F22622-1CC2-4A83-9C1E-644DD96F832D}) (Version: 2.01.00 - SEIKO EPSON Corporation) Epson Print CD (HKLM\...\{D16A31F9-276D-4968-A753-FFEAC56995D0}) (Version: 2.00.00 - SEIKO EPSON CORPORATION) EPSON PX800FW Series Printer Uninstall (HKLM\...\EPSON PX800FW Series) (Version: - SEIKO EPSON Corporation) EPSON Scan (HKLM\...\EPSON Scanner) (Version: - ) EPSON Stylus Photo PX700W_PX800FW_TX700W_TX800FW Handbuch (HKLM\...\EPSON Stylus Photo PX700W_PX800FW_TX700W_TX800FW Benutzerhandbuch) (Version: - ) Free Driver Scout (Version: 1.0.0.101 - Covus Freemium) Hidden GSview 4.9 (HKLM\...\GSview 4.9) (Version: - ) Java 7 Update 51 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.510 - Oracle) Java 8 Update 5 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218005FF}) (Version: 8.0.50 - Oracle Corporation) Java Auto Updater (Version: 2.8.05.13 - Oracle, Inc.) Hidden Left 4 Dead 2 (HKLM\...\Steam App 550) (Version: - Valve) Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation) Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation) Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden Microsoft IntelliType Pro 8.2 (HKLM\...\Microsoft IntelliType Pro 8.2) (Version: 8.20.469.0 - Microsoft Corporation) Microsoft IntelliType Pro 8.2 (Version: 8.20.469.0 - Microsoft Corporation) Hidden Microsoft Office XP Professional mit FrontPage (HKLM\...\{90280407-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.0.50826.0 - Microsoft Corporation) Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) NVIDIA 3D Vision Controller Driver 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 337.88 - NVIDIA Corporation) NVIDIA Control Panel 337.88 (Version: 337.88 - NVIDIA Corporation) Hidden NVIDIA Display Control Panel (HKLM\...\NVIDIA Display Control Panel) (Version: 6.14.12.5896 - NVIDIA Corporation) NVIDIA GeForce Experience 1.8.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.8.1 - NVIDIA Corporation) NVIDIA Graphics Driver 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 337.88 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.154.1168 - NVIDIA Corporation) Hidden NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA PhysX (Version: 9.13.1220 - NVIDIA Corporation) Hidden NVIDIA PhysX System Software 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA Update 10.11.15 (Version: 10.11.15 - NVIDIA Corporation) Hidden NVIDIA Update Core (Version: 10.11.15 - NVIDIA Corporation) Hidden OGA Notifier 2.0.0048.0 (Version: 2.0.0048.0 - Microsoft Corporation) Hidden Opera Stable 22.0.1471.50 (HKLM\...\Opera 22.0.1471.50) (Version: 22.0.1471.50 - Opera Software ASA) PVSonyDll (Version: 1.00.0001 - NVIDIA Corporation) Hidden RealDownloader (Version: 1.3.3 - RealNetworks, Inc.) Hidden RealNetworks - Microsoft Visual C++ 2008 Runtime (Version: 9.0 - RealNetworks, Inc) Hidden RealNetworks - Microsoft Visual C++ 2010 Runtime (Version: 10.0 - RealNetworks, Inc) Hidden RealPlayer (HKLM\...\RealPlayer 16.0) (Version: 16.0.3 - RealNetworks) RealUpgrade 1.1 (Version: 1.1.0 - RealNetworks, Inc.) Hidden SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.4.103.0 - SAMSUNG Electronics Co., Ltd.) Secunia PSI (3.0.0.9016) (HKLM\...\Secunia PSI) (Version: 3.0.0.9016 - Secunia) SHARKOON Skiller (HKLM\...\{91C25547-9534-41A5-823A-1E54BA16EA3F}) (Version: 1.00.0000 - ) Steam (HKLM\...\Steam) (Version: - Valve Corporation) System Requirements Lab (HKLM\...\SystemRequirementsLab) (Version: - ) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.13.1 - TeamSpeak Systems GmbH) TomTom HOME (HKLM\...\{99072AB4-D795-44D5-9D65-E3C9F8322C97}) (Version: 2.9.7 - Ihr Firmenname) TomTom HOME Visual Studio Merge Modules (HKLM\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.) World of Warcraft (HKLM\...\World of Warcraft) (Version: - Blizzard Entertainment) ==================== Restore Points ========================= 08-06-2014 15:39:56 Installiert SHARKOON Skiller 08-06-2014 15:40:15 Device Driver Package Install: Sharkoon Human Interface Devices 08-06-2014 15:52:43 Windows Update 09-06-2014 16:49:13 Windows Update 09-06-2014 19:41:04 Windows Update 10-06-2014 17:38:51 Windows Update 11-06-2014 20:05:33 Windows Update 12-06-2014 12:16:07 Windows Update 12-06-2014 14:54:24 Windows Update 12-06-2014 20:12:37 Windows Update 13-06-2014 21:05:42 Scheduled Checkpoint 13-06-2014 21:19:48 Windows Update 14-06-2014 08:43:53 Windows Update 15-06-2014 11:12:01 Windows Update 15-06-2014 19:34:41 Windows Update 16-06-2014 08:24:39 Windows Update 16-06-2014 12:52:02 Removed Visual Studio 2012 x86 Redistributables 16-06-2014 13:08:54 Windows Update 17-06-2014 09:15:12 Windows Update ==================== Hosts content: ========================== 2006-11-02 12:23 - 2013-08-05 16:16 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {123C06E4-5F11-44A2-82A4-5ADFB64E1576} - System32\Tasks\RDReminder => C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe [2014-02-13] (Dll-FIles.Com) Task: {1A3E2874-2839-4C41-A528-DE6015653950} - System32\Tasks\DLL-Files.Com Fixer_MONTHLY => C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe [2014-02-13] (Dll-FIles.Com) Task: {1CC81347-6204-4B83-900C-01E02F50F067} - System32\Tasks\Microsoft\Windows\MobilePC\TMM Task: {1E110028-0926-4147-A05B-32683682C09A} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1006003231-2697031979-1953750779-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2013-08-14] (RealNetworks, Inc.) Task: {1F6E12E0-1FA0-4276-82E0-336F5E4FCBD4} - System32\Tasks\DLL-Files.Com Fixer_Updates => C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe [2014-02-13] (Dll-FIles.Com) Task: {2AED682D-E1CE-4047-96BA-A7AB0FDC9AEB} - System32\Tasks\Microsoft\Windows\Tcpip\WSHReset => C:\Windows\system32\netsh.exe [2006-11-02] (Microsoft Corporation) Task: {2D720758-712B-455F-B3C7-A18B89417524} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-1006003231-2697031979-1953750779-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2013-08-14] (RealNetworks, Inc.) Task: {320124A7-D70F-41DE-A9D1-D5E8E19D5D91} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI Task: {36A1B5E6-8F9A-41FF-9F57-11F62A8C53CA} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1006003231-2697031979-1953750779-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2013-08-14] (RealNetworks, Inc.) Task: {3BCDF251-CA5C-4045-A1FC-8FCEF9FBDC93} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages Task: {44980BEE-7809-44A9-AC24-D6E578A3B7DF} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\system32\RacAgent.exe [2008-01-21] (Microsoft Corporation) Task: {492E425D-2EFA-4A31-A742-74247D9A3BE8} - System32\Tasks\Microsoft_Hardware_Launch_IType_exe => C:\Program Files\Microsoft IntelliType Pro\IType.exe [2011-08-10] (Microsoft Corporation) Task: {5B3A1C4A-EC5A-447D-B7B2-7760BF65C5BC} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-06-15] (Adobe Systems Incorporated) Task: {70E9E92B-F31B-4F59-80AE-5BFE32A91F0F} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-1006003231-2697031979-1953750779-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2013-08-14] (RealNetworks, Inc.) Task: {98F6817F-5CA8-4EB5-8FAA-C3214E06191C} - System32\Tasks\DLL-Files FixerASKUSER => C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe [2014-02-13] (Dll-FIles.Com) Task: {A728AE6B-5AB8-4223-AD3E-E6341441A01C} - System32\Tasks\Microsoft\Windows\PLA\System\ConvertLogEntries => Rundll32.exe %windir%\system32\pla.dll,PlaConvertLogEntries Task: {ADE711F3-10EE-45F4-8D9E-5F9E5FDBE3E7} - System32\Tasks\Opera scheduled Autoupdate 1376683835 => C:\Program Files\Opera\launcher.exe [2014-05-27] (Opera Software) Task: {B0973208-3DFF-4B32-8373-14BA22DE4807} - \CreateChoiceProcessTask No Task File <==== ATTENTION Task: {B96FFB5F-431B-4E91-B122-ACE0252A4119} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup Task: {E5150B95-F9B4-4D5D-95A2-7EC1ACBA95F8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\system32\gatherWirelessInfo.vbs [2008-01-21] () Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\DLL-Files FixerASKUSER.job => C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe Task: C:\Windows\Tasks\DLL-Files.Com Fixer_MONTHLY.job => C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe Task: C:\Windows\Tasks\DLL-Files.Com Fixer_Updates.job => C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe Task: C:\Windows\Tasks\User_Feed_Synchronization-{A972CF4C-A94D-411E-B01B-AB8C488CC158}.job => C:\Windows\system32\msfeedssync.exe ==================== Loaded Modules (whitelisted) ============= 2013-08-14 15:19 - 2013-08-14 15:19 - 00039056 _____ () C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe 2014-04-29 22:07 - 2014-04-29 22:06 - 00159768 _____ () C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\loggingserver.exe 2014-04-29 22:07 - 2014-04-29 22:06 - 00519704 _____ () C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\log4cplusU.dll 2010-10-18 12:16 - 2009-04-15 20:55 - 00196608 _____ () C:\Program Files\Belkin\F5D8055\v2\BelkinDetectUI.exe 2014-02-12 22:53 - 2014-04-29 22:06 - 02557976 _____ () C:\Program Files\AVG Secure Search\vprot.exe 2014-06-03 17:56 - 2014-06-03 17:32 - 01396344 _____ () C:\Program Files\Opera\22.0.1471.50\opera_crashreporter.exe 2014-06-03 17:56 - 2014-06-03 17:32 - 00957048 _____ () C:\Program Files\Opera\22.0.1471.50\ffmpegsumo.dll 2014-06-15 18:48 - 2014-06-15 18:48 - 17024688 _____ () C:\Windows\system32\Macromed\Flash\NPSWF32_14_0_0_125.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vsmon => ""="Service" ==================== EXE Association (whitelisted) ============= ==================== MSCONFIG/TASK MANAGER disabled items ========= ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (06/17/2014 11:25:12 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1". Dependent Assembly Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (06/17/2014 11:25:12 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1". Dependent Assembly Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (06/17/2014 11:20:12 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application fixcfg.exe, version 14.0.0.4592, time stamp 0x53720cd6, faulting module MSVCR110.dll, version 6.0.6002.18881, time stamp 0x51da3e27, exception code 0xc0000135, fault offset 0x00009f5d, process id 0x1088, application start time 0xfixcfg.exe0. Error: (06/17/2014 11:15:51 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application avgmfapx.exe, version 14.0.0.4592, time stamp 0x53720ebe, faulting module avgmfapx.exe, version 14.0.0.4592, time stamp 0x53720ebe, exception code 0x40000015, fault offset 0x003d83de, process id 0x10e8, application start time 0xavgmfapx.exe0. Error: (06/17/2014 11:15:41 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application avgdumpx.exe, version 14.0.0.4592, time stamp 0x53720cc1, faulting module MSVCR110.dll, version 6.0.6002.18881, time stamp 0x51da3e27, exception code 0xc0000135, fault offset 0x00009f5d, process id 0x11e8, application start time 0xavgdumpx.exe0. Error: (06/17/2014 11:15:06 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application avgui.exe, version 14.0.0.4592, time stamp 0x53720d72, faulting module MSVCR110.dll, version 6.0.6002.18881, time stamp 0x51da3e27, exception code 0xc0000135, fault offset 0x00009f5d, process id 0xdcc, application start time 0xavgui.exe0. Error: (06/17/2014 11:13:07 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/16/2014 03:33:14 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application avgwsc.exe, version 14.0.0.4592, time stamp 0x53720d94, faulting module MSVCR110.dll, version 6.0.6002.18881, time stamp 0x51da3e27, exception code 0xc0000135, fault offset 0x00009f5d, process id 0x11a4, application start time 0xavgwsc.exe0. Error: (06/16/2014 03:32:46 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application avgwsc.exe, version 14.0.0.4592, time stamp 0x53720d94, faulting module MSVCR110.dll, version 6.0.6002.18881, time stamp 0x51da3e27, exception code 0xc0000135, fault offset 0x00009f5d, process id 0x1648, application start time 0xavgwsc.exe0. Error: (06/16/2014 03:29:29 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application avgui.exe, version 14.0.0.4592, time stamp 0x53720d72, faulting module mfc110u.dll, version 6.0.6002.18881, time stamp 0x51da3e27, exception code 0xc0000135, fault offset 0x00009f5d, process id 0xe58, application start time 0xavgui.exe0. System errors: ============= Error: (06/17/2014 11:17:06 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: 0x80070643Security Update for Microsoft Silverlight (KB2932677){C6BF131F-BE90-438C-BA58-A732368D8A96}201 Error: (06/17/2014 11:13:07 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: avgio Error: (06/17/2014 11:13:07 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: vToolbarUpdater15.4.0%%2 Error: (06/17/2014 11:13:07 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: AVG WatchDog%%1053 Error: (06/17/2014 11:13:07 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: 30000AVG WatchDog Error: (06/17/2014 11:13:07 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: AVGIDSAgent%%1053 Error: (06/17/2014 11:13:07 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: 30000AVGIDSAgent Error: (06/17/2014 11:13:07 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Avira AntiVir Guard%%3 Error: (06/17/2014 11:13:07 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Avira AntiVir Planer%%3 Error: (06/17/2014 11:11:53 AM) (Source: Microsoft-Windows-TaskScheduler) (EventID: 412) (User: NT AUTHORITY) Description: 2147942402 Microsoft Office Sessions: ========================= Error: (06/17/2014 11:25:12 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\Epson Software\Easy Photo Print\Microsoft.VC80.MFC\MFC80.DLL Error: (06/17/2014 11:25:12 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\Epson Software\Easy Photo Print\Microsoft.VC80.MFC\MFC80.DLL Error: (06/17/2014 11:20:12 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: fixcfg.exe14.0.0.459253720cd6MSVCR110.dll6.0.6002.1888151da3e27c000013500009f5d108801cf8a0d570fcce7 Error: (06/17/2014 11:15:51 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: avgmfapx.exe14.0.0.459253720ebeavgmfapx.exe14.0.0.459253720ebe40000015003d83de10e801cf8a0cae954ea7 Error: (06/17/2014 11:15:41 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: avgdumpx.exe14.0.0.459253720cc1MSVCR110.dll6.0.6002.1888151da3e27c000013500009f5d11e801cf8a0cb5d62637 Error: (06/17/2014 11:15:06 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: avgui.exe14.0.0.459253720d72MSVCR110.dll6.0.6002.1888151da3e27c000013500009f5ddcc01cf8a0c322ba307 Error: (06/17/2014 11:13:07 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/16/2014 03:33:14 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: avgwsc.exe14.0.0.459253720d94MSVCR110.dll6.0.6002.1888151da3e27c000013500009f5d11a401cf8967846c8c27 Error: (06/16/2014 03:32:46 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: avgwsc.exe14.0.0.459253720d94MSVCR110.dll6.0.6002.1888151da3e27c000013500009f5d164801cf89676f8ec027 Error: (06/16/2014 03:29:29 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: avgui.exe14.0.0.459253720d72mfc110u.dll6.0.6002.1888151da3e27c000013500009f5de5801cf89665da01a47 CodeIntegrity Errors: =================================== Date: 2014-06-17 11:28:13.561 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. Date: 2014-06-17 11:28:13.393 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. Date: 2014-06-17 11:28:13.224 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. Date: 2014-06-17 11:28:13.055 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. Date: 2014-06-17 11:28:12.795 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system. Date: 2014-06-17 11:28:12.625 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system. Date: 2014-06-17 11:28:12.453 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system. Date: 2014-06-17 11:28:12.276 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system. Date: 2014-06-17 11:27:55.060 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\avgidshx.sys because the set of per-page image hashes could not be found on the system. Date: 2014-06-17 11:27:54.891 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\avgidshx.sys because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Percentage of memory in use: 51% Total physical RAM: 3325.63 MB Available physical RAM: 1627.46 MB Total Pagefile: 6848.2 MB Available Pagefile: 5066.86 MB Total Virtual: 2047.88 MB Available Virtual: 1909.72 MB ==================== Drives ================================ Drive c: (SYSTEM) (Fixed) (Total:100.01 GB) (Free:12.45 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (VERBATIM) (Fixed) (Total:465.65 GB) (Free:346.56 GB) FAT32 Drive j: (DATEN) (Fixed) (Total:365.75 GB) (Free:346.35 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 466 GB) (Disk ID: 1BB1E3DB) Partition 1: (Active) - (Size=100 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=366 GB) - (Type=07 NTFS) ======================================================== Disk: 5 (Size: 466 GB) (Disk ID: B57BA8BE) Partition 1: (Not Active) - (Size=466 GB) - (Type=0C) ==================== End Of Log ============================ |
Themen zu AVG 2014 lässt sich nach (2) Virenfunden nicht mehr starten |
antivir guard, antivirus, association, avg, avg antivirus, avg security toolbar, avira, cid, defender, device driver, entfernen, error, failed, flash player, freemium, helper, home, installation, programm, registry, rundll, scan, secure search, security, services.exe, software, starten, svchost.exe, system, tastatur, vtoolbarupdater, windows |