![]() |
|
Log-Analyse und Auswertung: Windows 7 64 Bit Adware ProblemWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
| ![]() Windows 7 64 Bit Adware Problem Hallo liebes Trojaner Board Seit geraumer Zeit habe ich Probleme mit adware, seit wann weiß ich nicht genau. Das komische dabei ist, dass im Browser (ich nutze Chrome) nichts zu merken ist, sprich keine geänderten seiten, Addons, Toolbars oder sonstiges und auch im windows control panel ist keine ungewollte Software zu sehen. Bemerkt habe ich die Adware lediglich durch das Antivirensystem welches eine Virenmeldung ausspukte. Ich benutze standartmäßig Norton Internet Security, habe daraufhin auch mehrere komplette Virenscans durchgeführt und alles gelöscht was gefunden wurde. Habe mir zusätzlich noch Adw Cleaner, Malwarebytes Anti Malware und Hitman Pro geholt. nach mehreren scans und löschen der infizierten dateien, wurde es mir zu umständlich und ich habe windows neu aufgezogen weshalb ich leider die logfiles nichtmehr habe. Adw Cleaner spukt aber immernoch einen Virenfund aus. Die logdatei von Frst hat leider nichtmehr reingepasst weshalb sie im Anhang zu finden ist. Hier die aktuelle Logdatei von AdwCleaner vom 22.09.14 Code:
ATTFilter # AdwCleaner v3.310 - Bericht erstellt am 22/09/2014 um 10:25:18 # Aktualisiert 12/09/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Max - MAX-PC # Gestartet von : C:\Users\Max\Desktop\adwcleaner_3.310.exe # Option : Suchen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Tasks ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Browser ] ***** -\\ Internet Explorer v0.0.0.0 -\\ Google Chrome v37.0.2062.120 [ Datei : C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\preferences ] Gefunden [Search Provider] : hxxp://search.hotspotshield.com/g/results.php?c=s&q={searchTerms} Gefunden [Search Provider] : hxxp://www.basicscan.com/?prt=BscscnPB&keywords={searchTerms} Gefunden [Search Provider] : hxxp://search.babylon.com/?q={searchTerms}&affID=109727&tt=201112_1849_4712_4&babsrc=SP_ss&mntrId=e449257400000000000000ff047bffc2 Gefunden [Search Provider] : hxxp://websearch.ask.com/redirect?client=ie&tb=HIP&o=102875&src=kw&q={searchTerms}&locale=&apn_ptnrs=^6F&apn_dtid=^YYYYYY^YY^DE&apn_uid=31754b66-4167-496c-8b18-6df0d10a4d37&apn_sauid=529D8628-85A5-48D6-B5E9-A2DF819AB51F Gefunden [Search Provider] : hxxp://istart.webssearches.com/web/?type=ds&ts=1406898956&from=mind&uid=ST2000DM001-1CH164_Z1E5R164XXXXZ1E5R164&q={searchTerms} Gefunden [Search Provider] : hxxp://www.sweet-page.com/web/?type=ds&ts=1410804862&from=cor&uid=ST2000DM001-1CH164_Z1E5R164XXXXZ1E5R164&q={searchTerms} Gefunden [Search Provider] : hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3314958&octid=EB_ORIGINAL_CTID&ISID=M8E4379EF-C0ED-4E4A-9D32-FD5C8746E55A&SearchSource=58&CUI=&UM=5&UP=SP637DCC74-8440-44AE-8F4B-A73F80DE01AB&q={searchTerms}&SSPV= Gefunden [Search Provider] : hxxp://istart.webssearches.com/web/?type=ds&ts=1406898956&from=mind&uid=ST2000DM001-1CH164_Z1E5R164XXXXZ1E5R164&q={searchTerms} ************************* AdwCleaner[R0].txt - [2010 octets] - [16/09/2014 11:17:24] AdwCleaner[R1].txt - [926 octets] - [16/09/2014 11:21:18] AdwCleaner[R2].txt - [1655 octets] - [16/09/2014 23:32:13] AdwCleaner[R3].txt - [1172 octets] - [16/09/2014 23:36:40] AdwCleaner[R4].txt - [1895 octets] - [18/09/2014 12:26:01] AdwCleaner[R5].txt - [2719 octets] - [21/09/2014 14:37:52] AdwCleaner[R6].txt - [2340 octets] - [22/09/2014 10:25:18] AdwCleaner[S0].txt - [1985 octets] - [16/09/2014 11:18:21] AdwCleaner[S1].txt - [986 octets] - [16/09/2014 11:21:58] AdwCleaner[S2].txt - [3022 octets] - [16/09/2014 23:33:14] AdwCleaner[S3].txt - [1234 octets] - [16/09/2014 23:40:11] AdwCleaner[S4].txt - [3262 octets] - [18/09/2014 12:44:58] ########## EOF - C:\AdwCleaner\AdwCleaner[R6].txt - [2699 octets] ########## Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 16.09.2014 Scan Time: 01:39:32 Logfile: Administrator: Yes Version: 2.00.2.1012 Malware Database: v2014.09.15.12 Rootkit Database: v2014.09.15.01 License: Trial Malware Protection: Enabled Malicious Website Protection: Enabled Self-protection: Disabled OS: Windows 7 CPU: x64 File System: NTFS User: Max Scan Type: Custom Scan Result: Completed Objects Scanned: 896205 Time Elapsed: 9 hr, 31 min, 28 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Enabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registry Keys: 5 PUP.Optional.SmarterPower.A, HKU\S-1-5-21-2112140230-408024640-1626794680-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{BD7C9B62-A7D9-4405-BE51-7FD633F08791}, Quarantined, [17db4ca1b9c2cc6ac993354f867cd030], PUP.Optional.Sanbreel.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{5eeb83d0-96ea-4249-942c-beead6847053}Gw64, Quarantined, [8a68529bd3a8f343204e99701ee57a86], PUP.Optional.WPM.A, HKLM\SOFTWARE\WOW6432NODE\supWindowsMangerProtect, Quarantined, [ee04f2fb85f6a492dfbadf8a0ff5f10f], PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB, Quarantined, [a34f658877048da907549f6435cef30d], PUP.Optional.WebSearches.A, HKU\S-1-5-21-2112140230-408024640-1626794680-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SupHpUISoft, Quarantined, [7f73a647483394a2a3767b8a34cfd12f], Registry Values: 1 PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB|ptid, cor, Quarantined, [a34f658877048da907549f6435cef30d] Registry Data: 2 PUP.Optional.SweetPage.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://www.sweet-page.com/web/?type=ds&ts=1410804862&from=cor&uid=ST2000DM001-1CH164_Z1E5R164XXXXZ1E5R164&q={searchTerms}, Good: (www.google.com), Bad: (hxxp://www.sweet-page.com/web/?type=ds&ts=1410804862&from=cor&uid=ST2000DM001-1CH164_Z1E5R164XXXXZ1E5R164&q={searchTerms}),Replaced,[92600de0a7d4e3539f0cd1234aba44bc] PUP.Optional.SweetPage.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://www.sweet-page.com/web/?type=ds&ts=1410804862&from=cor&uid=ST2000DM001-1CH164_Z1E5R164XXXXZ1E5R164&q={searchTerms}, Good: (www.google.com), Bad: (hxxp://www.sweet-page.com/web/?type=ds&ts=1410804862&from=cor&uid=ST2000DM001-1CH164_Z1E5R164XXXXZ1E5R164&q={searchTerms}),Replaced,[c230bf2e46354fe79f0c6490a55ff808] Folders: 3 PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect, Delete-on-Reboot, [2fc3d31a611a063067b31bcf966c55ab], PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\log, Quarantined, [2fc3d31a611a063067b31bcf966c55ab], PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update, Quarantined, [2fc3d31a611a063067b31bcf966c55ab], Files: 8 PUP.Optional.Sanbreel.A, C:\Windows\System32\drivers\{5eeb83d0-96ea-4249-942c-beead6847053}Gw64.sys, Delete-on-Reboot, [8e06e779a3b943a1a9830e8c89172fab], PUP.Optional.BPlug, C:\Users\Max\AppData\Local\Temp\is1201216051\1F0FEF6D_stp\SmarterPowerSetup0809.exe, Quarantined, [e30ffaf39be043f3cb62f6c454adea16], PUP.Optional.SearchHijacker.A, C:\Users\Max\AppData\Local\Temp\is1201216051\3E05E2EC_stp\cor_sweet-page.exe, Quarantined, [30c237b6631889ad85f23e70d9285ca4], PUP.Optional.Superfish.A, C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage, Quarantined, [b141995492e90432c976a378e122eb15], PUP.Optional.Superfish.A, C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal, Quarantined, [609244a98af162d43a0524f70bf84eb2], PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\log\ProtectWindowsManager_2014-09-15[20-15-24-744].log, Quarantined, [2fc3d31a611a063067b31bcf966c55ab], PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update\conf, Quarantined, [2fc3d31a611a063067b31bcf966c55ab], PUP.Optional.WebsSearches.A, C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Preferences, Good: (), Bad: ( "startup_urls": [ "hxxp://www.google.com/", "hxxp://istart.webssearches.com/?type=hp&ts=1406898956&from=mind&uid=ST2000DM001-1CH164_Z1E5R164XXXXZ1E5R164", "hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StMgYZDDjaKrr7zBhYkN-XfnUWVx9vjj_8b6CQYeNrm7M0ksimjCGSiGEIL1-W54BUyTQ3996DtrnTmKk1PRwzHfuMWwkRBjJl_qytEi0DauI86Ilx1_4GVKctwOB2f88AD7Jl6J20uTz9LqGWu3zwcDcJBhk8L0TtTJc9zahk7Ew7xjsk6iGjgGthJNSjcgoxB9jjByO2dA,,", "hxxp://www.sweet-page.com/?type=hp&ts=1410804862&from=cor&uid=ST2000DM001-1CH164_Z1E5R164XXXXZ1E5R164" ],), Replaced,[46ac30bd36458da95d91270aad5841bf] Physical Sectors: 0 (No malicious items detected) (end) Hier die Addition Logdatei von FRST Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-09-2014 01 Ran by Max at 2014-09-22 09:55:49 Running from C:\Users\Max\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Norton Internet Security (Enabled - Up to date) {D87FA2C0-F526-77B1-D6EC-0EDF3936CEDB} AS: Norton Internet Security (Enabled - Up to date) {631E4324-D31C-783F-EC5C-35AD42B18466} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Norton Internet Security (Enabled) {E04423E5-BF49-76E9-FDB3-A7EAC7E589A0} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.11 Beta1 - Michael Tippach) FL Studio 11 (HKLM-x32\...\FL Studio 11) (Version: - Image-Line) FlowStone FL 3.0 (HKLM-x32\...\FlowStone) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 37.0.2062.120 - Google Inc.) Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.9.225 - SurfRight B.V.) IL Download Manager (HKLM-x32\...\IL Download Manager) (Version: - Image-Line) IL Shared Libraries (HKLM-x32\...\IL Shared Libraries) (Version: - Image-Line) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.0.0.1323 - Intel Corporation) Intel(R) Network Connections 18.0.1.0 (HKLM\...\PROSetDX) (Version: 18.0.1.0 - Intel) Intel(R) Network Connections 18.0.1.0 (Version: 18.0.1.0 - Intel) Hidden Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3907 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.0.0.1083 - Intel Corporation) Intel(R) Rapid Storage Technology (Version: 12.0.0.1083 - Intel Corporation) Hidden Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.0.0.100 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.27.798.1 - Intel Corporation) Hidden Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle) Java Auto Updater (x32 Version: 2.1.67.1 - Oracle, Inc.) Hidden JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH) Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Native Instruments Abbey Road 60s Drummer (HKLM-x32\...\Native Instruments Abbey Road 60s Drummer) (Version: - Native Instruments) Native Instruments Abbey Road 60s Drummer (Version: 1.1.0.003 - Native Instruments) Hidden Native Instruments Abbey Road 70s Drummer (HKLM-x32\...\Native Instruments Abbey Road 70s Drummer) (Version: - Native Instruments) Native Instruments Abbey Road 70s Drummer (Version: 1.1.0.003 - Native Instruments) Hidden Native Instruments Abbey Road 80s Drummer (HKLM-x32\...\Native Instruments Abbey Road 80s Drummer) (Version: - Native Instruments) Native Instruments Abbey Road 80s Drummer (Version: 1.1.0.001 - Native Instruments) Hidden Native Instruments Abbey Road Modern Drummer (HKLM-x32\...\Native Instruments Abbey Road Modern Drummer) (Version: - Native Instruments) Native Instruments Abbey Road Modern Drummer (Version: 1.1.0.001 - Native Instruments) Hidden Native Instruments Abbey Road Vintage Drummer (HKLM-x32\...\Native Instruments Abbey Road Vintage Drummer) (Version: - Native Instruments) Native Instruments Abbey Road Vintage Drummer (Version: 1.0.0.002 - Native Instruments) Hidden Native Instruments Absynth 5 (HKLM-x32\...\Native Instruments Absynth 5) (Version: 5.2.0.1277 - Native Instruments) Native Instruments Absynth 5 (Version: 5.2.0.1277 - Native Instruments) Hidden Native Instruments Action Strings (HKLM-x32\...\Native Instruments Action Strings) (Version: - Native Instruments) Native Instruments Action Strings (Version: 1.0.0.002 - Native Instruments) Hidden Native Instruments Alicias Keys (HKLM-x32\...\Native Instruments Alicias Keys) (Version: - Native Instruments) Native Instruments Alicias Keys (Version: 1.3.0.005 - Native Instruments) Hidden Native Instruments Balinese Gamelan (HKLM-x32\...\Native Instruments Balinese Gamelan) (Version: - Native Instruments) Native Instruments Balinese Gamelan (Version: 1.1.0.006 - Native Instruments) Hidden Native Instruments Battery 4 (HKLM-x32\...\Native Instruments Battery 4) (Version: 4.0.2.2254 - Native Instruments) Native Instruments Battery 4 (Version: 4.0.2.2254 - Native Instruments) Hidden Native Instruments Battery 4 Factory Library (HKLM-x32\...\Native Instruments Battery 4 Factory Library) (Version: 1.0.0.002 - Native Instruments) Native Instruments Battery 4 Factory Library (Version: 1.0.0.002 - Native Instruments) Hidden Native Instruments Berlin Concert Grand (HKLM-x32\...\Native Instruments Berlin Concert Grand) (Version: - Native Instruments) Native Instruments Berlin Concert Grand (Version: 1.3.0.005 - Native Instruments) Hidden Native Instruments Controller Editor (HKLM-x32\...\Native Instruments Controller Editor) (Version: - Native Instruments) Native Instruments Controller Editor (Version: 1.3.5.667 - Native Instruments) Hidden Native Instruments Damage (HKLM-x32\...\Native Instruments Damage) (Version: - Native Instruments) Native Instruments Damage (Version: 1.0.0.003 - Native Instruments) Hidden Native Instruments Driver (HKLM-x32\...\Native Instruments Driver) (Version: 1.0.1.288 - Native Instruments) Native Instruments Driver (Version: 1.0.1.288 - Native Instruments) Hidden Native Instruments Enhanced EQ (HKLM-x32\...\Native Instruments Enhanced EQ) (Version: - Native Instruments) Native Instruments Enhanced EQ (Version: 1.0.0.171 - Native Instruments) Hidden Native Instruments Evolve Mutations (HKLM-x32\...\Native Instruments Evolve Mutations) (Version: - Native Instruments) Native Instruments Evolve Mutations (Version: 1.1.0.004 - Native Instruments) Hidden Native Instruments Evolve Mutations 2 (HKLM-x32\...\Native Instruments Evolve Mutations 2) (Version: - Native Instruments) Native Instruments Evolve Mutations 2 (Version: 1.1.0.006 - Native Instruments) Hidden Native Instruments Evolve R2 (HKLM-x32\...\Native Instruments Evolve R2) (Version: - Native Instruments) Native Instruments Evolve R2 (Version: 1.5.0.006 - Native Instruments) Hidden Native Instruments FM8 (HKLM-x32\...\Native Instruments FM8) (Version: - Native Instruments) Native Instruments FM8 (Version: 1.2.1.1119 - Native Instruments) Hidden Native Instruments George Duke Soul Treasures (HKLM-x32\...\Native Instruments George Duke Soul Treasures) (Version: - Native Instruments) Native Instruments George Duke Soul Treasures (Version: 1.2.0.004 - Native Instruments) Hidden Native Instruments Guitar Rig 5 (HKLM-x32\...\Native Instruments Guitar Rig 5) (Version: - Native Instruments) Native Instruments Guitar Rig 5 (Version: 5.1.1.2673 - Native Instruments) Hidden Native Instruments Guitar Rig Pro Library for Maschine (HKLM-x32\...\Native Instruments Guitar Rig Pro Library for Maschine) (Version: - Native Instruments) Native Instruments Guitar Rig Pro Library for Maschine (Version: 1.0.0.001 - Native Instruments) Hidden Native Instruments Komplete 9 Ultimate (HKLM-x32\...\Native Instruments Komplete 9 Ultimate) (Version: - Native Instruments) Native Instruments Komplete 9 Ultimate (Version: 9.0.0.002 - Native Instruments) Hidden Native Instruments Kontakt 5 (HKLM-x32\...\Native Instruments Kontakt 5) (Version: 5.2.1.6382 - Native Instruments) Native Instruments Kontakt 5 (Version: 5.2.1.6382 - Native Instruments) Hidden Native Instruments Kontakt Factory Library (HKLM-x32\...\Native Instruments Kontakt Factory Library) (Version: - Native Instruments) Native Instruments Kontakt Factory Library (Version: 1.0.0.004 - Native Instruments) Hidden Native Instruments Maschine Drum Selection (HKLM-x32\...\Native Instruments Maschine Drum Selection) (Version: - Native Instruments) Native Instruments Maschine Drum Selection (Version: 1.1.0.005 - Native Instruments) Hidden Native Instruments Massive (HKLM-x32\...\Native Instruments Massive) (Version: - Native Instruments) Native Instruments Massive (Version: 1.3.1.129 - Native Instruments) Hidden Native Instruments Monark (HKLM-x32\...\Native Instruments Monark) (Version: - Native Instruments) Native Instruments Monark (Version: 1.0.0.001 - Native Instruments) Hidden Native Instruments New York Concert Grand (HKLM-x32\...\Native Instruments New York Concert Grand) (Version: - Native Instruments) Native Instruments New York Concert Grand (Version: 1.3.0.005 - Native Instruments) Hidden Native Instruments Passive EQ (HKLM-x32\...\Native Instruments Passive EQ) (Version: - Native Instruments) Native Instruments Passive EQ (Version: 1.0.0.171 - Native Instruments) Hidden Native Instruments Rammfire (HKLM-x32\...\Native Instruments Rammfire) (Version: - Native Instruments) Native Instruments Rammfire (Version: 1.1.0.003 - Native Instruments) Hidden Native Instruments Rammfire for Maschine (HKLM-x32\...\Native Instruments Rammfire for Maschine) (Version: - Native Instruments) Native Instruments Rammfire for Maschine (Version: 1.0.0.005 - Native Instruments) Hidden Native Instruments Razor (HKLM-x32\...\Native Instruments Razor) (Version: - Native Instruments) Native Instruments Razor (Version: 1.3.0.003 - Native Instruments) Hidden Native Instruments Reaktor 5 (HKLM-x32\...\Native Instruments Reaktor 5) (Version: - Native Instruments) Native Instruments Reaktor 5 (Version: 5.8.0.550 - Native Instruments) Hidden Native Instruments Reaktor Prism (HKLM-x32\...\Native Instruments Reaktor Prism) (Version: - Native Instruments) Native Instruments Reaktor Prism (Version: 1.3.0.003 - Native Instruments) Hidden Native Instruments Reaktor Spark R2 (HKLM-x32\...\Native Instruments Reaktor Spark R2) (Version: - Native Instruments) Native Instruments Reaktor Spark R2 (Version: 1.2.0.003 - Native Instruments) Hidden Native Instruments Reflektor (HKLM-x32\...\Native Instruments Reflektor) (Version: - Native Instruments) Native Instruments Reflektor (Version: 1.2.0.005 - Native Instruments) Hidden Native Instruments Reflektor for Maschine (HKLM-x32\...\Native Instruments Reflektor for Maschine) (Version: - Native Instruments) Native Instruments Reflektor for Maschine (Version: 1.0.0.004 - Native Instruments) Hidden Native Instruments Retro Machines Mk2 (HKLM-x32\...\Native Instruments Retro Machines Mk2) (Version: - Native Instruments) Native Instruments Retro Machines Mk2 (Version: 1.0.0.007 - Native Instruments) Hidden Native Instruments Rig Kontrol 3 (HKLM-x32\...\Native Instruments Rig Kontrol 3) (Version: - Native Instruments) Native Instruments Rig Kontrol 3 (Version: 3.0.0.625 - Native Instruments) Hidden Native Instruments Scarbee Funk Guitarist (HKLM-x32\...\Native Instruments Scarbee Funk Guitarist) (Version: - Native Instruments) Native Instruments Scarbee Funk Guitarist (Version: 1.1.0.007 - Native Instruments) Hidden Native Instruments Scarbee Jay-Bass (HKLM-x32\...\Native Instruments Scarbee Jay-Bass) (Version: - Native Instruments) Native Instruments Scarbee Jay-Bass (Version: 1.1.0.005 - Native Instruments) Hidden Native Instruments Scarbee MM-Bass (HKLM-x32\...\Native Instruments Scarbee MM-Bass) (Version: - Native Instruments) Native Instruments Scarbee MM-Bass (Version: 1.2.0.006 - Native Instruments) Hidden Native Instruments Scarbee MM-Bass Amped (HKLM-x32\...\Native Instruments Scarbee MM-Bass Amped) (Version: - Native Instruments) Native Instruments Scarbee MM-Bass Amped (Version: 1.1.0.003 - Native Instruments) Hidden Native Instruments Scarbee Pre-Bass (HKLM-x32\...\Native Instruments Scarbee Pre-Bass) (Version: - Native Instruments) Native Instruments Scarbee Pre-Bass (Version: 1.1.0.004 - Native Instruments) Hidden Native Instruments Scarbee Pre-Bass Amped (HKLM-x32\...\Native Instruments Scarbee Pre-Bass Amped) (Version: - Native Instruments) Native Instruments Scarbee Pre-Bass Amped (Version: 1.1.0.003 - Native Instruments) Hidden Native Instruments Scarbee Rickenbacker Bass (HKLM-x32\...\Native Instruments Scarbee Rickenbacker Bass) (Version: - Native Instruments) Native Instruments Scarbee Rickenbacker Bass (Version: 1.1.0.001 - Native Instruments) Hidden Native Instruments Scarbee Vintage Keys (HKLM-x32\...\Native Instruments Scarbee Vintage Keys) (Version: - Native Instruments) Native Instruments Scarbee Vintage Keys (Version: 1.1.0.004 - Native Instruments) Hidden Native Instruments Service Center (HKLM-x32\...\Native Instruments Service Center) (Version: 2.4.0.1093 - Native Instruments) Native Instruments Service Center (Version: 2.4.0.1093 - Native Instruments) Hidden Native Instruments Session Horns (HKLM-x32\...\Native Instruments Session Horns) (Version: - Native Instruments) Native Instruments Session Horns (Version: 1.0.0.003 - Native Instruments) Hidden Native Instruments Session Strings Pro (HKLM-x32\...\Native Instruments Session Strings Pro) (Version: - Native Instruments) Native Instruments Session Strings Pro (Version: 1.2.0.004 - Native Instruments) Hidden Native Instruments Skanner XT (HKLM-x32\...\Native Instruments Skanner XT) (Version: - Native Instruments) Native Instruments Skanner XT (Version: 1.1.0.003 - Native Instruments) Hidden Native Instruments Solid Bus Comp FX (HKLM-x32\...\Native Instruments Solid Bus Comp FX) (Version: 1.0.0.276 - Native Instruments) Native Instruments Solid Bus Comp FX (Version: 1.0.0.276 - Native Instruments) Hidden Native Instruments Solid Dynamics FX (HKLM-x32\...\Native Instruments Solid Dynamics FX) (Version: 1.0.0.276 - Native Instruments) Native Instruments Solid Dynamics FX (Version: 1.0.0.276 - Native Instruments) Hidden Native Instruments Solid EQ FX (HKLM-x32\...\Native Instruments Solid EQ FX) (Version: 1.0.0.276 - Native Instruments) Native Instruments Solid EQ FX (Version: 1.0.0.276 - Native Instruments) Hidden Native Instruments Studio Drummer (HKLM-x32\...\Native Instruments Studio Drummer) (Version: - Native Instruments) Native Instruments Studio Drummer (Version: 1.2.0.008 - Native Instruments) Hidden Native Instruments The Finger R2 (HKLM-x32\...\Native Instruments The Finger R2) (Version: - Native Instruments) Native Instruments The Finger R2 (Version: 1.2.0.003 - Native Instruments) Hidden Native Instruments The Giant (HKLM-x32\...\Native Instruments The Giant) (Version: - Native Instruments) Native Instruments The Giant (Version: 1.0.0.004 - Native Instruments) Hidden Native Instruments The Mouth (HKLM-x32\...\Native Instruments The Mouth) (Version: - Native Instruments) Native Instruments The Mouth (Version: 1.2.0.003 - Native Instruments) Hidden Native Instruments Traktors 12 (HKLM-x32\...\Native Instruments Traktors 12) (Version: - Native Instruments) Native Instruments Traktors 12 (Version: 1.1.0.002 - Native Instruments) Hidden Native Instruments Traktors 12 for Maschine (HKLM-x32\...\Native Instruments Traktors 12 for Maschine) (Version: - Native Instruments) Native Instruments Traktors 12 for Maschine (Version: 1.0.0.005 - Native Instruments) Hidden Native Instruments Transient Master FX (HKLM-x32\...\Native Instruments Transient Master FX) (Version: - Native Instruments) Native Instruments Transient Master FX (Version: 1.0.0.235 - Native Instruments) Hidden Native Instruments Upright Piano (HKLM-x32\...\Native Instruments Upright Piano) (Version: - Native Instruments) Native Instruments Upright Piano (Version: 1.3.0.005 - Native Instruments) Hidden Native Instruments Vari Comp (HKLM-x32\...\Native Instruments Vari Comp) (Version: - Native Instruments) Native Instruments Vari Comp (Version: 1.0.0.171 - Native Instruments) Hidden Native Instruments VC 160 FX (HKLM-x32\...\Native Instruments VC 160 FX) (Version: - Native Instruments) Native Instruments VC 160 FX (Version: 1.0.0.246 - Native Instruments) Hidden Native Instruments VC 2A FX (HKLM-x32\...\Native Instruments VC 2A FX) (Version: - Native Instruments) Native Instruments VC 2A FX (Version: 1.0.0.246 - Native Instruments) Hidden Native Instruments VC 76 FX (HKLM-x32\...\Native Instruments VC 76 FX) (Version: - Native Instruments) Native Instruments VC 76 FX (Version: 1.0.0.246 - Native Instruments) Hidden Native Instruments Vienna Concert Grand (HKLM-x32\...\Native Instruments Vienna Concert Grand) (Version: - Native Instruments) Native Instruments Vienna Concert Grand (Version: 1.3.0.005 - Native Instruments) Hidden Native Instruments Vintage Organs (HKLM-x32\...\Native Instruments Vintage Organs) (Version: - Native Instruments) Native Instruments Vintage Organs (Version: 1.1.0.007 - Native Instruments) Hidden Native Instruments West Africa (HKLM-x32\...\Native Instruments West Africa) (Version: - Native Instruments) Native Instruments West Africa (Version: 1.1.0.004 - Native Instruments) Hidden Norton Internet Security (HKLM-x32\...\NIS) (Version: 21.5.0.19 - Symantec Corporation) NVIDIA 3D Vision Controller-Treiber 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 340.52 - NVIDIA Corporation) NVIDIA Grafiktreiber 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 340.52 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.157.1165 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.12.6514 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 340.52 (Version: 340.52 - NVIDIA Corporation) Hidden NVIDIA Update 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden NVIDIA Update Core (Version: 15.3.33 - NVIDIA Corporation) Hidden NVIDIA Virtual Audio 1.2.23 (Version: 1.2.23 - NVIDIA Corporation) Hidden TDR VOS SlickEQ version 1.0.2 (HKLM\...\TDR VOS SlickEQ_is1) (Version: 1.0.2 - Tokyo Dawn Labs) VC_CRT_x64 (Version: 1.02.0000 - Intel Corporation) Hidden VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.4.7.0 - Elaborate Bytes) WinRAR 5.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-2112140230-408024640-1626794680-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation) ==================== Restore Points ========================= 16-09-2014 19:33:33 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 16-09-2014 20:34:18 Windows Modules Installer 16-09-2014 21:02:23 Windows Update 18-09-2014 11:10:07 Prüfpunkt von HitmanPro 18-09-2014 11:11:00 Prüfpunkt von HitmanPro 19-09-2014 12:54:40 Gerätetreiber-Paketinstallation: Native Instruments Audio-, Video- und Gamecontroller 19-09-2014 12:55:11 Gerätetreiber-Paketinstallation: Native Instruments USB-Controller ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {22AE0404-2183-4139-95A1-9600F022CE8C} - System32\Tasks\Norton Internet Security\Norton Error Processor => C:\Program Files (x86)\Norton Internet Security\Engine\21.5.0.19\SymErr.exe [2014-01-30] (Symantec Corporation) Task: {93CD7BAB-67D6-448A-8299-F1915088374E} - System32\Tasks\Norton Internet Security\Norton Error Analyzer => C:\Program Files (x86)\Norton Internet Security\Engine\21.5.0.19\SymErr.exe [2014-01-30] (Symantec Corporation) Task: {C3A13128-AEAB-43DB-A515-4DB81509922E} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton Internet Security\Engine\21.5.0.19\WSCStub.exe [2014-07-31] (Symantec Corporation) Task: {C3B22B72-6EB7-412E-A8F1-8B93E32465D8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-15] (Google Inc.) Task: {F5C76512-A1A5-44A9-8C22-E142B76E8039} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-15] (Google Inc.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-09-15 19:16 - 2014-07-02 20:55 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-08-14 00:24 - 2014-08-14 00:24 - 00453448 _____ () C:\Windows\system32\igfxTray.exe 2014-09-16 23:09 - 2013-03-12 13:19 - 01199576 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2014-09-15 20:02 - 2014-09-04 05:01 - 01098056 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\libglesv2.dll 2014-09-15 20:02 - 2014-09-04 05:01 - 00174408 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\libegl.dll 2014-09-15 20:02 - 2014-09-04 05:01 - 08577864 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\pdf.dll 2014-09-15 20:02 - 2014-09-04 05:01 - 00331592 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\ppGoogleNaClPluginChrome.dll 2014-09-15 20:02 - 2014-09-04 05:01 - 01660232 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\ffmpegsumo.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Windows\system32\msln.exe:7c49bfec7a95c779f75e8740263cb6ec ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ==================== Faulty Device Manager Devices ============= Name: Microsoft-Teredo-Tunneling-Adapter Description: Microsoft-Teredo-Tunneling-Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (09/21/2014 11:39:41 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: ) Description: Fehler beim Erwerb der Endbenutzerlizenz. hr=0xC004C008 SKU-ID=586bc076-c93d-429a-afe5-a69fbc644e88 Error: (09/21/2014 11:39:41 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: ) Description: Lizenzerwerb-Fehlerdetails. hr=0xC004C008 Error: (09/21/2014 07:39:41 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: ) Description: Fehler beim Erwerb der Endbenutzerlizenz. hr=0xC004C008 SKU-ID=586bc076-c93d-429a-afe5-a69fbc644e88 Error: (09/21/2014 07:39:41 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: ) Description: Lizenzerwerb-Fehlerdetails. hr=0xC004C008 Error: (09/21/2014 03:24:52 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: ) Description: Fehler beim Erwerb der Endbenutzerlizenz. hr=0xC004C008 SKU-ID=586bc076-c93d-429a-afe5-a69fbc644e88 Error: (09/21/2014 03:24:52 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: ) Description: Lizenzerwerb-Fehlerdetails. hr=0xC004C008 Error: (09/21/2014 02:59:28 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm FL.exe, Version 1.1.3.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 630 Startzeit: 01cfd59afe29517d Endzeit: 38 Anwendungspfad: B:\FL Studio 11\FL.exe Berichts-ID: 18e8a63f-418f-11e4-997c-0009dd50946f Error: (09/20/2014 02:34:27 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: ) Description: Fehler beim Erwerb der Endbenutzerlizenz. hr=0xC004C008 SKU-ID=586bc076-c93d-429a-afe5-a69fbc644e88 Error: (09/20/2014 02:34:27 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: ) Description: Lizenzerwerb-Fehlerdetails. hr=0xC004C008 Error: (09/20/2014 10:31:02 AM) (Source: Software Protection Platform Service) (EventID: 1014) (User: ) Description: Fehler beim Erwerb der Endbenutzerlizenz. hr=0xC004C008 SKU-ID=586bc076-c93d-429a-afe5-a69fbc644e88 System errors: ============= Error: (09/22/2014 09:23:30 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Symantec Eraser Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (09/21/2014 02:35:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Symantec Eraser Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (09/20/2014 00:46:16 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Symantec Eraser Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (09/20/2014 00:44:21 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error: (09/20/2014 00:44:21 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error: (09/20/2014 00:44:21 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error: (09/20/2014 00:44:21 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error: (09/20/2014 00:44:21 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error: (09/20/2014 00:44:21 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error: (09/20/2014 00:44:21 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1084WSearch{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} Microsoft Office Sessions: ========================= Error: (09/21/2014 11:39:41 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: ) Description: hr=0xC004C008586bc076-c93d-429a-afe5-a69fbc644e88 Error: (09/21/2014 11:39:41 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: ) Description: hr=0xC004C00800010001(0x00000000, 23:39:40:778 - hxxp://go.microsoft.com/fwlink/?LinkID=88341) 00020001(0x00000000, 23:39:40:779) 00030001(0x00000000, 23:39:40:779 - hxxp://go.microsoft.com) 00030002(0x00000000, 23:39:40:779 - 1) 00020005(0x00000000, 23:39:40:779 - 0) 0002000C(0x00000000, 23:39:40:956 - 302) 0002000E(0x00000000, 23:39:40:956 - https://activation.sls.microsoft.com/sllicensing/SLLicense.asmx) 00020001(0x00000000, 23:39:40:956) 00030001(0x00000000, 23:39:40:956 - https://activation.sls.microsoft.com) 00030002(0x00000000, 23:39:40:956 - 1) 00020005(0x00000000, 23:39:40:956 - 0) 0002000C(0x00000000, 23:39:41:412 - 500) 00010002(0x8004FC01, 23:39:41:412 - <?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:soap="hxxp://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="hxxp://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="hxxp://www.w3.org/2001/XMLSchema"><soap:Body><soap:Fault><faultcode>soap:Server</faultcode><faultstring>SoapException</faultstring><detail><HRESULT>0xC004C008</HRESULT><Messages><Message>113 (Activation) - [PA Maximum unlock exceeded. ---> Maximum unlock exceeded]</Message></Messages></detail></soap:Fault></soap:Body></soap:Envelope>) 00010003(0x8004FC01, 23:39:41:412) Error: (09/21/2014 07:39:41 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: ) Description: hr=0xC004C008586bc076-c93d-429a-afe5-a69fbc644e88 Error: (09/21/2014 07:39:41 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: ) Description: hr=0xC004C00800010001(0x00000000, 19:39:40:976 - hxxp://go.microsoft.com/fwlink/?LinkID=88341) 00020001(0x00000000, 19:39:40:976) 00030001(0x00000000, 19:39:40:977 - hxxp://go.microsoft.com) 00030002(0x00000000, 19:39:40:977 - 1) 00020005(0x00000000, 19:39:40:977 - 0) 0002000C(0x00000000, 19:39:41:158 - 302) 0002000E(0x00000000, 19:39:41:158 - https://activation.sls.microsoft.com/sllicensing/SLLicense.asmx) 00020001(0x00000000, 19:39:41:158) 00030001(0x00000000, 19:39:41:158 - https://activation.sls.microsoft.com) 00030002(0x00000000, 19:39:41:158 - 1) 00020005(0x00000000, 19:39:41:158 - 0) 0002000C(0x00000000, 19:39:41:641 - 500) 00010002(0x8004FC01, 19:39:41:642 - <?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:soap="hxxp://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="hxxp://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="hxxp://www.w3.org/2001/XMLSchema"><soap:Body><soap:Fault><faultcode>soap:Server</faultcode><faultstring>SoapException</faultstring><detail><HRESULT>0xC004C008</HRESULT><Messages><Message>113 (Activation) - [PA Maximum unlock exceeded. ---> Maximum unlock exceeded]</Message></Messages></detail></soap:Fault></soap:Body></soap:Envelope>) 00010003(0x8004FC01, 19:39:41:642) Error: (09/21/2014 03:24:52 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: ) Description: hr=0xC004C008586bc076-c93d-429a-afe5-a69fbc644e88 Error: (09/21/2014 03:24:52 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: ) Description: hr=0xC004C00800010001(0x00000000, 15:24:46:685 - hxxp://go.microsoft.com/fwlink/?LinkID=88341) 00020001(0x00000000, 15:24:46:685) 00030001(0x00000000, 15:24:46:685 - hxxp://go.microsoft.com) 00030002(0x00000000, 15:24:46:685 - 1) 00020005(0x00000000, 15:24:46:685 - 0) 0002000C(0x00000000, 15:24:46:879 - 302) 0002000E(0x00000000, 15:24:46:879 - https://activation.sls.microsoft.com/sllicensing/SLLicense.asmx) 00020001(0x00000000, 15:24:46:879) 00030001(0x00000000, 15:24:46:879 - https://activation.sls.microsoft.com) 00030002(0x00000000, 15:24:46:879 - 1) 00020005(0x00000000, 15:24:46:879 - 0) 0002000C(0x00000000, 15:24:52:100 - 500) 00010002(0x8004FC01, 15:24:52:101 - <?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:soap="hxxp://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="hxxp://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="hxxp://www.w3.org/2001/XMLSchema"><soap:Body><soap:Fault><faultcode>soap:Server</faultcode><faultstring>SoapException</faultstring><detail><HRESULT>0xC004C008</HRESULT><Messages><Message>113 (Activation) - [PA Maximum unlock exceeded. ---> Maximum unlock exceeded]</Message></Messages></detail></soap:Fault></soap:Body></soap:Envelope>) 00010003(0x8004FC01, 15:24:52:101) Error: (09/21/2014 02:59:28 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: FL.exe1.1.3.063001cfd59afe29517d38B:\FL Studio 11\FL.exe18e8a63f-418f-11e4-997c-0009dd50946f Error: (09/20/2014 02:34:27 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: ) Description: hr=0xC004C008586bc076-c93d-429a-afe5-a69fbc644e88 Error: (09/20/2014 02:34:27 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: ) Description: hr=0xC004C00800010001(0x00000000, 14:34:27:075 - hxxp://go.microsoft.com/fwlink/?LinkID=88341) 00020001(0x00000000, 14:34:27:076) 00030001(0x00000000, 14:34:27:076 - hxxp://go.microsoft.com) 00030002(0x00000000, 14:34:27:076 - 1) 00020005(0x00000000, 14:34:27:076 - 0) 0002000C(0x00000000, 14:34:27:249 - 302) 0002000E(0x00000000, 14:34:27:249 - https://activation.sls.microsoft.com/sllicensing/SLLicense.asmx) 00020001(0x00000000, 14:34:27:249) 00030001(0x00000000, 14:34:27:249 - https://activation.sls.microsoft.com) 00030002(0x00000000, 14:34:27:249 - 1) 00020005(0x00000000, 14:34:27:249 - 0) 0002000C(0x00000000, 14:34:27:738 - 500) 00010002(0x8004FC01, 14:34:27:738 - <?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:soap="hxxp://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="hxxp://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="hxxp://www.w3.org/2001/XMLSchema"><soap:Body><soap:Fault><faultcode>soap:Server</faultcode><faultstring>SoapException</faultstring><detail><HRESULT>0xC004C008</HRESULT><Messages><Message>113 (Activation) - [PA Maximum unlock exceeded. ---> Maximum unlock exceeded]</Message></Messages></detail></soap:Fault></soap:Body></soap:Envelope>) 00010003(0x8004FC01, 14:34:27:738) Error: (09/20/2014 10:31:02 AM) (Source: Software Protection Platform Service) (EventID: 1014) (User: ) Description: hr=0xC004C008586bc076-c93d-429a-afe5-a69fbc644e88 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-4670 CPU @ 3.40GHz Percentage of memory in use: 27% Total physical RAM: 8075.25 MB Available physical RAM: 5833.44 MB Total Pagefile: 16148.67 MB Available Pagefile: 13599.63 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive b: (Volume) (Fixed) (Total:1862.92 GB) (Free:46.78 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive c: () (Fixed) (Total:228.02 GB) (Free:65.42 GB) NTFS Drive d: () (Fixed) (Total:227.97 GB) (Free:226.93 GB) NTFS Drive e: (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive h: (FP 150) (Fixed) (Total:148.73 GB) (Free:100.57 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: E7605471) Partition 1: (Not Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Active) - (Size=1862.9 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: A57C6C24) Partition 1: (Not Active) - (Size=9.8 GB) - (Type=27) Partition 2: (Active) - (Size=228 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=228 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 149.1 GB) (Disk ID: 1860580E) Partition: GPT Partition Type. Partition 2: (Not Active) - (Size=148.7 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Code:
ATTFilter GMER 2.1.19357 - hxxp://www.gmer.net Rootkit scan 2014-09-22 10:06:40 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk1\DR1 -> \Device\0000006e ATA_____ rev.A52A 465,76GB Running: Gmer-19357.exe; Driver: C:\Users\Max\AppData\Local\Temp\uwldypow.sys ---- Registry - GMER 2.1 ---- Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\0009dd50946f Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\0009dd50946f (not active ControlSet) ---- EOF - GMER 2.1 ---- Schonmal ![]() Mfg PizzaKing |