Plagegeister aller Art und deren Bekämpfung: weißer Bildschirm beim StartenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.
| ![]() weißer Bildschirm beim Starten Hallo, Seit einer Weile habe ich einen weißen Bildschirm wenn ich meinen Pc(Windows 7 64bit) starte.Wenn ich den Bildschirm mehrmals an und aus mache wird es wieder normal. Da ich mich nicht aus kenne wollte ich fragen ob es sich um ein Virus handelt. Mein Virenscanner findet nichts. Danke im Voraus |
weißer Bildschirm beim Starten hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: ![]() (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
| ![]() weißer Bildschirm beim Starten Hi,
__________________Danke für die schnelle Antwort. FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 27-10-2014 Ran by Ismail (administrator) on ISMAIL-PC on 27-10-2014 15:58:08 Running from C:\Users\Ismail\Desktop Loaded Profile: Ismail (Available profiles: Ismail) Platform: Windows 7 Home Premium (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 8 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AMD) C:\Windows\System32\atieclxx.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe (Microsoft Corporation) C:\Program Files\Microsoft LifeCam\MSCamS64.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Microsoft Corporation) C:\Windows\vVX1000.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\updateui.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe () C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe () C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\\deploy\LoLLauncher.exe () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\\deploy\LoLPatcher.exe () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\\deploy\LoLPatcher.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\setup\instup.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13636824 2013-07-26] (Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation) HKLM\...\Run: [VX1000] => C:\Windows\vVX1000.exe [762736 2010-05-20] (Microsoft Corporation) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation) HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [134616 2013-09-03] (Intel Corporation) HKLM-x32\...\Run: [LifeCam] => C:\Program Files (x86)\Microsoft LifeCam\LifeExp.exe [119152 2010-05-20] (Microsoft Corporation) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5223016 2014-10-27] (AVAST Software) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-09-15] (Advanced Micro Devices, Inc.) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xDBA27898DFF1CF01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-10-27] Chrome: ======= CHR HomePage: Default -> https://de.yahoo.com?fr=hp-avast&type=avastbcl CHR StartupUrls: Default -> "https://de.yahoo.com?fr=hp-avast&type=avastbcl" CHR Profile: C:\Users\Ismail\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\Ismail\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-10-27] CHR Extension: (Google Docs) - C:\Users\Ismail\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-10-27] CHR Extension: (Google Drive) - C:\Users\Ismail\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-10-27] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Ismail\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-10-27] CHR Extension: (YouTube) - C:\Users\Ismail\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-10-27] CHR Extension: (Adblock Plus) - C:\Users\Ismail\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-10-27] CHR Extension: (Google-Suche) - C:\Users\Ismail\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-10-27] CHR Extension: (Ratchet & Clank Future 2) - C:\Users\Ismail\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejhfomhehcinmhgnlhdpghklkjgppdmn [2014-10-27] CHR Extension: (Google Tabellen) - C:\Users\Ismail\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-10-27] CHR Extension: (Avast Online Security) - C:\Users\Ismail\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-10-27] CHR Extension: (Ghostery) - C:\Users\Ismail\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2014-10-27] CHR Extension: (Google Wallet) - C:\Users\Ismail\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-10-27] CHR Extension: (Google Mail) - C:\Users\Ismail\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-10-27] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-10-27] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-10-27] (AVAST Software) R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [104416 2014-10-27] (AVAST Software) R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2014-10-27] (Avast Software) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-09-03] (Intel Corporation) R2 ISCTAgent; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [209712 2014-08-25] () R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-03] (Intel Corporation) R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488 2013-06-18] (Realtek Semiconductor) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-10-27] () R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [28184 2014-10-27] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [82768 2014-10-27] (AVAST Software) R0 aswNdisFlt; C:\Windows\System32\DRIVERS\aswNdisFlt.sys [449936 2014-10-27] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-10-27] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-10-27] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1049920 2014-10-27] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-10-27] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-10-27] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-10-27] () R3 e1dexpress; C:\Windows\System32\DRIVERS\e1d62x64.sys [495376 2014-10-27] (Intel Corporation) R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2013-08-07] (Intel Corporation) R3 ikbevent; C:\Windows\System32\DRIVERS\ikbevent.sys [22216 2014-05-27] () R3 imsevent; C:\Windows\System32\DRIVERS\imsevent.sys [22728 2014-05-27] () R3 INETMON; C:\Windows\System32\Drivers\INETMON.sys [25800 2014-05-27] () R3 ISCT; C:\Windows\System32\DRIVERS\ISCTD.sys [44744 2014-05-27] () R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-09-03] (Intel Corporation) R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [270728 2014-10-27] (Avast Software) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-27 15:58 - 2014-10-27 15:58 - 00013044 _____ () C:\Users\Ismail\Desktop\FRST.txt 2014-10-27 15:57 - 2014-10-27 15:57 - 00021982 _____ () C:\Users\Ismail\Downloads\Addition.txt 2014-10-27 15:56 - 2014-10-27 15:57 - 00040381 _____ () C:\Users\Ismail\Downloads\FRST.txt 2014-10-27 15:55 - 2014-10-27 15:58 - 00000000 ____D () C:\FRST 2014-10-27 15:55 - 2014-10-27 15:55 - 02113024 _____ (Farbar) C:\Users\Ismail\Desktop\FRST64.exe 2014-10-27 15:44 - 2014-10-27 15:44 - 00001613 _____ () C:\Users\Public\Desktop\League of Legends.lnk 2014-10-27 15:44 - 2014-10-27 15:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends 2014-10-27 15:06 - 2014-10-27 15:06 - 00000000 ____D () C:\ProgramData\Riot Games 2014-10-27 15:06 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2014-10-27 15:06 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2014-10-27 15:05 - 2014-10-27 15:05 - 00000000 ____D () C:\Riot Games 2014-10-27 15:05 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2014-10-27 15:05 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2014-10-27 15:05 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2014-10-27 15:03 - 2014-10-27 15:03 - 00003442 _____ () C:\Windows\System32\Tasks\{04C915AC-D940-419F-B3B9-1B858A154391} 2014-10-27 15:02 - 2014-10-27 15:34 - 00000000 ____D () C:\Users\Ismail\AppData\Roaming\Riot Games 2014-10-27 15:02 - 2014-10-27 15:02 - 30668968 _____ (Riot Games) C:\Users\Ismail\Downloads\LeagueofLegends_EUW_Installer_9_15_2014.exe 2014-10-27 14:41 - 2014-10-27 15:17 - 00000000 ____D () C:\Users\Ismail\AppData\Roaming\Skype 2014-10-27 14:41 - 2014-10-27 14:41 - 00002517 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-10-27 14:41 - 2014-10-27 14:41 - 00000247 _____ () C:\Windows\system32\2014-10-27-13-41-15.053-aswFe.exe-1476.log 2014-10-27 14:41 - 2014-10-27 14:41 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-10-27 14:41 - 2014-10-27 14:41 - 00000000 ____D () C:\Users\Ismail\AppData\Local\Skype 2014-10-27 14:41 - 2014-10-27 14:41 - 00000000 ____D () C:\ProgramData\Skype 2014-10-27 14:41 - 2014-10-27 14:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-10-27 14:40 - 2014-10-27 14:40 - 01677920 _____ (Skype Technologies S.A.) C:\Users\Ismail\Downloads\SkypeSetup.exe 2014-10-27 14:38 - 2014-10-27 14:41 - 00000247 _____ () C:\Windows\system32\2014-10-27-13-38-07.063-aswFe.exe-4200.log 2014-10-27 14:36 - 2014-10-27 14:36 - 00000197 _____ () C:\Windows\system32\2014-10-27-13-36-33.059-AvastVBoxSVC.exe-3468.log 2014-10-27 14:08 - 2014-10-27 14:08 - 00000247 _____ () C:\Windows\system32\2014-10-27-13-08-09.051-aswFe.exe-3084.log 2014-10-27 14:08 - 2014-10-27 14:08 - 00000197 _____ () C:\Windows\system32\2014-10-27-13-08-04.062-AvastVBoxSVC.exe-2976.log 2014-10-27 14:05 - 2014-10-27 14:05 - 00000000 _____ () C:\Windows\ativpsrm.bin 2014-10-27 14:04 - 2014-10-27 14:04 - 00000000 _____ () C:\Users\Ismail\agent.log 2014-10-27 14:03 - 2014-10-27 14:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2014-10-27 14:03 - 2014-10-27 14:03 - 00000000 ____D () C:\ProgramData\AMD 2014-10-27 14:03 - 2014-10-27 14:03 - 00000000 ____D () C:\Program Files (x86)\AMD AVT 2014-10-27 14:02 - 2014-10-27 14:02 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies 2014-10-27 14:01 - 2014-10-27 14:01 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-10-27 14:01 - 2014-10-27 14:01 - 00000000 ____D () C:\Program Files\AMD 2014-10-27 13:59 - 2014-10-27 14:00 - 00000000 ____D () C:\ProgramData\Package Cache 2014-10-27 13:59 - 2014-10-27 14:00 - 00000000 ____D () C:\6b8f8f048237b14e1c4784ce 2014-10-27 13:59 - 2014-10-27 13:59 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-10-27 13:59 - 2014-10-27 13:59 - 00000000 ____D () C:\Program Files\ATI 2014-10-27 13:58 - 2014-10-27 13:58 - 00000000 ____D () C:\AMD 2014-10-27 13:57 - 2014-10-27 13:57 - 00000247 _____ () C:\Windows\system32\2014-10-27-12-57-47.057-aswFe.exe-4904.log 2014-10-27 13:57 - 2014-10-27 13:57 - 00000197 _____ () C:\Windows\system32\2014-10-27-12-57-45.000-AvastVBoxSVC.exe-2892.log 2014-10-27 13:56 - 2014-10-27 13:57 - 286430647 _____ () C:\Users\Ismail\Downloads\amd-catalyst-14-9-win7-win8.1-64bit-dd-ccc-whql_635476736775153188.zip 2014-10-27 13:56 - 2014-10-27 13:56 - 00000000 ____D () C:\Program Files (x86)\Sapphire TRIXX 2014-10-27 13:55 - 2014-10-27 13:55 - 03650806 _____ () C:\Users\Ismail\Downloads\TRIXX_installer_635456807114954507.zip 2014-10-27 13:49 - 2014-10-27 13:49 - 00002247 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-10-27 13:49 - 2014-10-27 13:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-10-27 13:48 - 2014-10-27 15:53 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-10-27 13:48 - 2014-10-27 14:35 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-10-27 13:48 - 2014-10-27 13:48 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-10-27 13:48 - 2014-10-27 13:48 - 00003854 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-10-27 13:48 - 2014-10-27 13:48 - 00000000 ____D () C:\Users\Ismail\AppData\Local\Deployment 2014-10-27 13:48 - 2014-10-27 13:48 - 00000000 ____D () C:\Users\Ismail\AppData\Local\Apps\2.0 2014-10-27 13:37 - 2014-10-27 13:38 - 00000000 ____D () C:\Windows\SysWOW64\vbox 2014-10-27 13:37 - 2014-10-27 13:38 - 00000000 ____D () C:\Windows\system32\vbox 2014-10-27 13:37 - 2014-10-27 13:37 - 00002010 _____ () C:\Users\Public\Desktop\Avast SafeZone.lnk 2014-10-27 13:37 - 2014-10-27 13:37 - 00001950 _____ () C:\Users\Public\Desktop\Avast Premier.lnk 2014-10-27 13:37 - 2014-10-27 13:37 - 00000000 ____D () C:\Users\Ismail\AppData\Roaming\AVAST Software 2014-10-27 13:37 - 2014-10-27 13:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2014-10-27 13:36 - 2014-10-27 13:37 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-10-27 13:36 - 2014-10-27 13:36 - 01049920 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-10-27 13:36 - 2014-10-27 13:36 - 00449936 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNdisFlt.sys 2014-10-27 13:36 - 2014-10-27 13:36 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2014-10-27 13:36 - 2014-10-27 13:36 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-10-27 13:36 - 2014-10-27 13:36 - 00267632 _____ () C:\Windows\system32\Drivers\aswVmm.sys 2014-10-27 13:36 - 2014-10-27 13:36 - 00116728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2014-10-27 13:36 - 2014-10-27 13:36 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-10-27 13:36 - 2014-10-27 13:36 - 00082768 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-10-27 13:36 - 2014-10-27 13:36 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys 2014-10-27 13:36 - 2014-10-27 13:36 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-10-27 13:36 - 2014-10-27 13:36 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys 2014-10-27 13:36 - 2014-10-27 13:36 - 00028184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys 2014-10-27 13:35 - 2014-10-27 13:35 - 00000000 ____D () C:\ProgramData\AVAST Software 2014-10-27 13:35 - 2014-10-27 13:35 - 00000000 ____D () C:\Program Files\AVAST Software 2014-10-27 13:34 - 2014-10-27 13:34 - 00002041 _____ () C:\Users\Public\Desktop\Microsoft LifeCam.lnk 2014-10-27 13:34 - 2014-10-27 13:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft LifeCam 2014-10-27 13:34 - 2014-10-27 13:34 - 00000000 ____D () C:\Program Files\Microsoft LifeCam 2014-10-27 13:34 - 2014-10-27 13:34 - 00000000 ____D () C:\Program Files (x86)\Microsoft LifeCam 2014-10-27 13:33 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2014-10-27 13:33 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2014-10-27 13:31 - 2014-10-27 13:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASRock Utility 2014-10-27 13:31 - 2014-10-27 13:31 - 00000000 ____D () C:\Program Files\ASRock Utility 2014-10-27 13:31 - 2011-11-07 10:13 - 00017192 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\AsrAppCharger.sys 2014-10-27 13:30 - 2013-08-05 10:50 - 00053248 _____ (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll 2014-10-27 13:27 - 2014-10-27 13:27 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_INETMON_01011.Wdf 2014-10-27 13:27 - 2014-05-27 11:21 - 00025800 _____ () C:\Windows\system32\Drivers\INETMON.sys 2014-10-27 13:26 - 2014-10-27 13:26 - 00003936 _____ () C:\Windows\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d 2014-10-27 13:26 - 2014-10-27 13:26 - 00003690 _____ () C:\Windows\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon 2014-10-27 13:26 - 2014-10-27 13:26 - 00000000 _____ () C:\Windows\SysWOW64\agent.log 2014-10-27 13:26 - 2013-09-03 16:52 - 00016344 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll 2014-10-27 13:25 - 2014-10-27 13:25 - 00000000 ____H () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Coinstaller_Critical.Wdf 2014-10-27 13:25 - 2014-10-27 13:25 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-10-27 13:25 - 2014-10-27 13:25 - 00000000 ____D () C:\Users\Ismail\AppData\Roaming\InstallShield 2014-10-27 13:25 - 2014-10-27 13:25 - 00000000 ____D () C:\ProgramData\InstallShield 2014-10-27 13:25 - 2014-10-12 16:04 - 02110590 _____ () C:\Users\Ismail\Desktop\RapidStart(v3.0.0.1056).zip 2014-10-27 13:25 - 2013-09-03 16:52 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll 2014-10-27 13:25 - 2013-09-03 16:52 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys 2014-10-27 13:25 - 2012-07-26 05:55 - 00785512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2014-10-27 13:25 - 2012-07-26 05:55 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2014-10-27 13:25 - 2012-07-26 03:36 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2014-10-27 13:25 - 2012-06-02 15:35 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2014-10-27 13:24 - 2014-10-12 16:50 - 138409173 _____ () C:\Users\Ismail\Desktop\VGA(v15. 2014-10-27 13:23 - 2014-10-27 13:27 - 00000000 ____D () C:\ProgramData\Intel 2014-10-27 13:23 - 2014-10-27 13:26 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2014-10-27 13:23 - 2014-10-27 13:23 - 01499556 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-10-27 13:23 - 2014-10-27 13:23 - 00057560 _____ () C:\Users\Ismail\AppData\Local\GDIPFONTCACHEV1.DAT 2014-10-27 13:23 - 2014-10-27 13:23 - 00000000 ____D () C:\Users\Ismail\Intel 2014-10-27 13:23 - 2014-10-27 13:23 - 00000000 ____D () C:\Users\Ismail\AppData\Roaming\Intel Corporation 2014-10-27 13:22 - 2014-10-27 13:22 - 00004660 _____ () C:\Windows\DPINST.LOG 2014-10-27 13:21 - 2014-10-27 13:25 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-10-27 13:21 - 2014-10-27 13:21 - 00000000 ___HD () C:\Program Files (x86)\Temp 2014-10-27 13:21 - 2014-10-27 13:21 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-10-27 13:21 - 2014-10-27 13:21 - 00000000 ____D () C:\Windows\system32\SRSLabs 2014-10-27 13:21 - 2014-10-27 13:21 - 00000000 ____D () C:\Program Files\Realtek 2014-10-27 13:21 - 2014-10-27 13:21 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-10-27 13:21 - 2013-07-30 19:16 - 03564376 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-10-27 13:21 - 2013-07-30 16:14 - 02585304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-10-27 13:21 - 2013-07-30 12:47 - 00620273 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-10-27 13:21 - 2013-07-29 17:41 - 00147672 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-10-27 13:21 - 2013-07-26 13:05 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-10-27 13:21 - 2013-07-22 14:37 - 01004248 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-10-27 13:21 - 2013-07-19 14:55 - 02080472 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-10-27 13:21 - 2013-07-18 13:48 - 02795224 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-10-27 13:21 - 2013-07-17 15:17 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-10-27 13:21 - 2013-06-05 20:42 - 00208072 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-10-27 13:21 - 2013-04-24 16:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-10-27 13:21 - 2013-02-20 18:55 - 01284680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-10-27 13:21 - 2012-06-20 16:26 - 00110592 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-10-27 13:21 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-10-27 13:21 - 2012-01-30 11:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-10-27 13:21 - 2012-01-10 10:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-10-27 13:21 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-10-27 13:21 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-10-27 13:21 - 2011-03-17 12:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-10-27 13:21 - 2011-03-07 17:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-10-27 13:21 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-10-27 13:21 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-10-27 13:21 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-10-27 13:21 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-10-27 13:21 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-10-27 13:21 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-10-27 13:21 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-10-27 13:20 - 2014-10-27 13:30 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-10-27 13:20 - 2014-10-27 13:20 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf 2014-10-27 13:20 - 2014-10-27 13:20 - 00000000 ____D () C:\Users\Ismail\AppData\Roaming\WinRAR 2014-10-27 13:20 - 2014-10-27 13:20 - 00000000 ____D () C:\Intel 2014-10-27 13:20 - 2013-04-26 09:24 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll 2014-10-27 13:20 - 2013-04-26 09:24 - 00786416 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3xhc.sys 2014-10-27 13:20 - 2013-04-26 09:24 - 00368112 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3hub.sys 2014-10-27 13:20 - 2013-04-26 09:24 - 00041984 _____ (Intel Corporation) C:\Windows\system32\Drivers\USB3Ver.dll 2014-10-27 13:20 - 2013-04-26 09:24 - 00020464 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3hcs.sys 2014-10-27 13:19 - 2014-10-27 13:19 - 00000000 ____D () C:\Users\Ismail\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-10-27 13:19 - 2014-10-27 13:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-10-27 13:19 - 2014-10-27 13:19 - 00000000 ____D () C:\Program Files\WinRAR 2014-10-27 13:09 - 2014-10-27 14:05 - 00001430 _____ () C:\Windows\PFRO.log 2014-10-27 12:37 - 2014-10-27 13:49 - 00000000 ____D () C:\Program Files (x86)\Google 2014-10-27 12:37 - 2014-10-27 12:38 - 00000000 ____D () C:\Users\Ismail\AppData\Local\Google 2014-10-27 12:34 - 2012-06-02 23:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-10-27 12:34 - 2012-06-02 23:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-10-27 12:34 - 2012-06-02 23:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-10-27 12:34 - 2012-06-02 23:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-10-27 12:34 - 2012-06-02 23:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-10-27 12:34 - 2012-06-02 23:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-10-27 12:34 - 2012-06-02 23:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-10-27 12:34 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-10-27 12:34 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-10-27 12:33 - 2014-10-27 13:26 - 00000000 ____D () C:\Program Files\Intel 2014-10-27 12:33 - 2014-10-27 12:32 - 00552760 _____ (Intel Corporation) C:\Windows\system32\PROUnstl.exe 2014-10-27 12:33 - 2014-10-27 12:32 - 00001904 ____N () C:\Windows\system32\SetupBD.din 2014-10-27 12:32 - 2014-10-27 12:32 - 00316736 _____ (Intel Corporation) C:\Windows\system32\PRONtObj.dll 2014-10-27 12:32 - 2014-10-27 12:32 - 00163400 _____ (Intel Corporation) C:\Windows\system32\Drivers\iANSW60e.sys 2014-10-27 12:32 - 2014-10-27 12:32 - 00000000 ____D () C:\Users\Ismail\Desktop\Lan(v18.5_PV) 2014-10-27 12:31 - 2014-10-12 16:27 - 80122430 _____ () C:\Users\Ismail\Desktop\Lan(v18.5_PV).zip 2014-10-27 12:28 - 2014-10-27 12:28 - 00001439 _____ () C:\Users\Ismail\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-10-27 12:28 - 2014-10-27 12:28 - 00001405 _____ () C:\Users\Ismail\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2014-10-27 12:27 - 2014-10-27 14:04 - 00000000 ____D () C:\Users\Ismail 2014-10-27 12:27 - 2014-10-27 13:38 - 00000000 ____D () C:\Users\Ismail\AppData\Local\VirtualStore 2014-10-27 12:27 - 2014-10-27 12:27 - 00000020 ___SH () C:\Users\Ismail\ntuser.ini 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Ismail\Vorlagen 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Ismail\Startmenü 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Ismail\Netzwerkumgebung 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Ismail\Lokale Einstellungen 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Ismail\Eigene Dateien 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Ismail\Druckumgebung 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Ismail\Documents\Eigene Musik 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Ismail\Documents\Eigene Bilder 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Ismail\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Ismail\AppData\Local\Verlauf 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Ismail\AppData\Local\Anwendungsdaten 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Ismail\Anwendungsdaten 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Programme 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-10-27 12:27 - 2014-10-27 12:27 - 00000000 __SHD () C:\Recovery 2014-10-27 12:27 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Ismail\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-10-27 12:27 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Ismail\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-10-27 12:24 - 2014-10-27 12:24 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk 2014-10-27 12:24 - 2014-10-27 12:24 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk 2014-10-27 12:24 - 2014-10-27 12:24 - 00001313 _____ () C:\Windows\TSSysprep.log 2014-10-27 12:23 - 2014-10-27 15:37 - 00192026 _____ () C:\Windows\WindowsUpdate.log 2014-10-27 12:23 - 2014-10-27 12:23 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2014-10-27 12:19 - 2014-10-27 12:27 - 00000000 ____D () C:\Windows\Panther ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-27 15:47 - 2009-07-14 05:51 - 00024107 _____ () C:\Windows\setupact.log 2014-10-27 14:38 - 2009-07-14 18:58 - 00644666 _____ () C:\Windows\system32\perfh007.dat 2014-10-27 14:38 - 2009-07-14 18:58 - 00126724 _____ () C:\Windows\system32\perfc007.dat 2014-10-27 14:38 - 2009-07-14 06:13 - 01475424 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-10-27 14:34 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-10-27 14:08 - 2009-07-14 05:45 - 00009584 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-10-27 14:08 - 2009-07-14 05:45 - 00009584 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-10-27 13:26 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-10-27 12:35 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Public\Libraries 2014-10-27 12:32 - 2013-05-30 08:54 - 00495376 _____ (Intel Corporation) C:\Windows\system32\Drivers\e1d62x64.sys 2014-10-27 12:32 - 2013-05-11 03:48 - 00073480 _____ (Intel Corporation) C:\Windows\system32\e1dmsg.dll 2014-10-27 12:32 - 2013-03-02 04:42 - 00101152 _____ (Intel Corporation) C:\Windows\system32\NicInstD.dll 2014-10-27 12:32 - 2012-01-06 14:03 - 00003114 _____ () C:\Windows\system32\e1d62x64.din 2014-10-27 12:32 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\restore 2014-10-27 12:32 - 2009-05-26 10:05 - 00036472 _____ (Intel Corporation) C:\Windows\system32\NicCo36.dll 2014-10-27 12:27 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default 2014-10-27 12:27 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-10-27 12:27 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Windows NT 2014-10-27 12:25 - 2009-07-14 05:45 - 00274464 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-10-27 12:24 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-10-27 12:24 - 2009-07-14 05:46 - 00001774 _____ () C:\Windows\DtcInstall.log 2014-10-27 12:24 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2014-10-27 12:24 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sysprep 2014-10-27 12:19 - 2009-07-14 06:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG 2014-10-27 12:19 - 2009-07-14 06:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-10-27 12:20 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-10-2014 Ran by Ismail at 2014-10-27 15:58:23 Running from C:\Users\Ismail\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) AMD Accelerated Video Transcoding (Version: - Advanced Micro Devices, Inc.) Hidden AMD Catalyst Control Center (x32 Version: 2014.0915.1813.30937 - Ihr Firmenname) Hidden AMD Catalyst Install Manager (HKLM\...\{C2956908-53A3-88FC-B795-B16508296FC4}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) AMD Drag and Drop Transcoding (Version: 2.00.0000 - Advanced Micro Devices, Inc.) Hidden AMD Wireless Display v3.0 (Version: - Advanced Micro Devices, Inc.) Hidden ASRock App Charger v1.0.6 (HKLM\...\ASRock App Charger_is1) (Version: 1.0.6 - ASRock Inc.) Avast Premier (HKLM-x32\...\Avast) (Version: 10.0.2206 - AVAST Software) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 38.0.2125.104 - Google Inc.) Google Update Helper (x32 Version: - Google Inc.) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: - Intel Corporation) Intel(R) Manageability Engine Firmware Recovery Agent (HKLM-x32\...\{0EC7F9CC-4741-45AE-9F55-6E9343F726F5}) (Version: - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: - Intel Corporation) Intel(R) Network Connections (HKLM\...\PROSetDX) (Version: - Intel) Intel(R) Network Connections (Version: - Intel) Hidden Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: - Intel Corporation) Intel(R) Rapid Storage Technology (Version: - Intel Corporation) Hidden Intel(R) Smart Connect Technology (HKLM\...\{94A137EA-92EF-441C-A7E2-6757CC08EA82}) (Version: - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.28.487.1 - Intel Corporation) Hidden League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Microsoft LifeCam (HKLM\...\{6965A8D2-465D-4F98-9FAA-0E9E2348F329}) (Version: - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - Realtek Semiconductor Corp.) Sapphire TRIXX (HKLM-x32\...\Sapphire TRIXX) (Version: - ) Skype™ 6.21 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.21.104 - Skype Technologies S.A.) VC_CRT_x64 (Version: 1.02.0000 - Intel Corporation) Hidden WinRAR 5.11 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 27-10-2014 11:32:56 Installed Intel(R) Network Connections. 27-10-2014 11:36:16 Windows Update 27-10-2014 12:23:27 IIF_MSI 27-10-2014 12:33:48 DirectX wurde installiert 27-10-2014 12:33:58 DirectX wurde installiert 27-10-2014 12:35:28 avast! antivirus system restore point 27-10-2014 12:36:55 Gerätetreiber-Paketinstallation: Avast Netzwerkdienst 27-10-2014 12:59:21 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 27-10-2014 13:00:34 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 27-10-2014 14:03:16 Microsoft Visual C++ 2005 Redistributable (x64) wird installiert 27-10-2014 14:04:13 Microsoft Visual C++ 2005 Redistributable wird installiert 27-10-2014 14:05:07 Installed League of Legends 27-10-2014 14:05:48 DirectX wurde installiert 27-10-2014 14:41:07 Installed League of Legends 27-10-2014 14:44:02 Installed League of Legends 27-10-2014 14:44:30 DirectX wurde installiert ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {19C4762A-5502-4BD2-BBD7-09E63E551A84} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {5665B962-C155-49CD-A0F8-8611CE7A2FEE} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-10-27] (AVAST Software) Task: {6DB9BE5F-C0D8-47B8-AFDA-127E97F4B11A} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {D19C9110-0B0F-4A42-B8A7-5C071F11D5B7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-27] (Google Inc.) Task: {E46FCB6F-5CB5-47CA-AD95-69F81D882476} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-27] (Google Inc.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-08-25 16:01 - 2014-08-25 16:01 - 00209712 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe 2014-08-25 16:01 - 2014-08-25 16:01 - 00057648 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll 2014-08-25 16:01 - 2014-08-25 16:01 - 00037168 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTNetMon.dll 2014-08-25 16:01 - 2014-08-25 16:01 - 00057648 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTEncryptionCheck.dll 2014-10-27 13:36 - 2014-10-27 13:36 - 00388208 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxDDU.dll 2014-10-27 13:36 - 2014-10-27 13:36 - 05846160 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxRT.dll 2013-05-09 17:58 - 2013-05-09 17:58 - 00119808 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\updateui.exe 2014-01-21 16:54 - 2014-10-27 15:45 - 01294336 _____ () C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe 2014-10-27 15:45 - 2014-10-27 15:45 - 02448376 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\\deploy\LoLLauncher.exe 2014-10-27 15:45 - 2014-10-27 15:45 - 04143096 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\\deploy\LoLPatcher.exe 2014-10-27 13:36 - 2014-10-27 13:36 - 02898432 _____ () C:\Program Files\AVAST Software\Avast\defs\14102700\algo.dll 2014-10-27 13:36 - 2014-10-27 13:36 - 04491192 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\x86\VBoxRT-x86.dll 2014-10-27 13:25 - 2013-09-03 16:52 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2014-10-27 13:36 - 2014-10-27 13:36 - 38561576 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2014-10-27 13:49 - 2014-10-10 03:03 - 01042760 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.104\libglesv2.dll 2014-10-27 13:49 - 2014-10-10 03:03 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.104\libegl.dll 2014-10-27 13:49 - 2014-10-10 03:04 - 08910664 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.104\pdf.dll 2014-10-27 13:49 - 2014-10-10 03:03 - 01681224 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.104\ffmpegsumo.dll 2014-10-27 13:49 - 2014-10-10 03:04 - 14902600 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.104\PepperFlash\pepflashplayer.dll 2010-12-17 12:56 - 2010-12-17 12:56 - 02603520 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtCore4.dll 2010-12-17 12:56 - 2010-12-17 12:56 - 00382464 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtXml4.dll 2010-01-12 16:55 - 2010-01-12 16:55 - 00400384 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\sqlite3.dll 2010-01-12 16:55 - 2010-01-12 16:55 - 00322048 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\log4cplus.dll 2013-03-07 12:53 - 2013-03-07 12:53 - 00015872 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\featureController.dll 2010-12-17 12:56 - 2010-12-17 12:56 - 01006592 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtNetwork4.dll 2010-12-16 12:16 - 2010-12-16 12:16 - 00195584 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\libgsoap.dll 2010-01-17 23:34 - 2010-01-17 23:34 - 00062464 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\zlib1.dll 2013-03-07 12:55 - 2013-03-07 12:55 - 00472576 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\DeviceProfile.dll 2013-03-07 12:58 - 2013-03-07 12:58 - 00499488 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\plugin\PServerPlugin.dll 2013-03-07 12:54 - 2013-03-07 12:54 - 00013824 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\eventsSender.dll 2010-12-17 12:56 - 2010-12-17 12:56 - 14978048 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtWebKit4.dll 2010-12-17 12:56 - 2010-12-17 12:56 - 00317952 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\phonon4.dll 2010-12-17 12:56 - 2010-12-17 12:56 - 09224704 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtGui4.dll 2014-10-27 15:45 - 2014-10-27 15:45 - 01629176 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\\deploy\RiotLauncher.dll 2014-10-27 15:45 - 2014-10-27 15:45 - 42975744 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\\deploy\libcef.dll 2014-10-27 15:45 - 2014-10-27 15:45 - 01559552 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\\deploy\icui18n.dll 2014-10-27 15:45 - 2014-10-27 15:45 - 01241088 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\\deploy\icuuc.dll 2014-10-27 15:45 - 2014-10-27 15:45 - 04945408 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\\deploy\v8.dll 2014-10-27 15:45 - 2014-10-27 15:45 - 01708032 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\\deploy\RiotRadsIO.dll 2014-10-27 15:45 - 2014-10-27 15:45 - 01025536 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\\deploy\ffmpegsumo.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-1627641778-743311260-1061081359-500 - Administrator - Disabled) Gast (S-1-5-21-1627641778-743311260-1061081359-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1627641778-743311260-1061081359-1002 - Limited - Enabled) Ismail (S-1-5-21-1627641778-743311260-1061081359-1000 - Administrator - Enabled) => C:\Users\Ismail ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (10/27/2014 03:37:15 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll (1032)SUS20ClientDataStore: Die Kopfzeile der Protokolldatei C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log konnte nicht gelesen werden. Fehler -546. Error: (10/27/2014 03:37:15 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll (1032)SUS20ClientDataStore: Die Kopfzeile der Protokolldatei C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log konnte nicht gelesen werden. Fehler -546. Error: (10/27/2014 03:37:15 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll (1032)SUS20ClientDataStore: Die Kopfzeile der Protokolldatei C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log konnte nicht gelesen werden. Fehler -546. Error: (10/27/2014 03:37:15 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll (1032)SUS20ClientDataStore: Die Kopfzeile der Protokolldatei C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log konnte nicht gelesen werden. Fehler -546. Error: (10/27/2014 03:07:15 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll (1032)SUS20ClientDataStore: Die Kopfzeile der Protokolldatei C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log konnte nicht gelesen werden. Fehler -546. Error: (10/27/2014 03:07:15 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll (1032)SUS20ClientDataStore: Die Kopfzeile der Protokolldatei C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log konnte nicht gelesen werden. Fehler -546. Error: (10/27/2014 03:07:15 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll (1032)SUS20ClientDataStore: Die Kopfzeile der Protokolldatei C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log konnte nicht gelesen werden. Fehler -546. Error: (10/27/2014 03:07:15 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll (1032)SUS20ClientDataStore: Die Kopfzeile der Protokolldatei C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log konnte nicht gelesen werden. Fehler -546. Error: (10/27/2014 02:37:16 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll (1032)SUS20ClientDataStore: Die Kopfzeile der Protokolldatei C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log konnte nicht gelesen werden. Fehler -546. Error: (10/27/2014 02:37:16 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll (1032)SUS20ClientDataStore: Die Kopfzeile der Protokolldatei C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log konnte nicht gelesen werden. Fehler -546. System errors: ============= Error: (10/27/2014 02:08:07 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Windows Update" wurde mit folgendem Fehler beendet: %%-2147467243 Error: (10/27/2014 01:44:30 PM) (Source: bowser) (EventID: 8003) (User: ) Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "O2", der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{8CE15502-7BB6-451F-A000-B593E1EE8396}-Transport zu sein scheint. Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen. Error: (10/27/2014 01:28:21 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Windows Search" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (10/27/2014 01:28:21 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Search erreicht. Error: (10/27/2014 01:28:21 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1053WSearch{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} Error: (10/27/2014 01:28:11 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (10/27/2014 01:28:11 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "Windows Search" wurde mit folgendem dienstspezifischem Fehler beendet: %%-1073473535. Error: (10/27/2014 01:24:47 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Rapid Storage Technology" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (10/27/2014 01:23:48 PM) (Source: Disk) (EventID: 11) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden. Error: (10/27/2014 01:23:47 PM) (Source: Disk) (EventID: 11) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden. Microsoft Office Sessions: ========================= Error: (10/27/2014 03:37:15 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll1032SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546 Error: (10/27/2014 03:37:15 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll1032SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546 Error: (10/27/2014 03:37:15 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll1032SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546 Error: (10/27/2014 03:37:15 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll1032SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546 Error: (10/27/2014 03:07:15 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll1032SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546 Error: (10/27/2014 03:07:15 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll1032SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546 Error: (10/27/2014 03:07:15 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll1032SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546 Error: (10/27/2014 03:07:15 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll1032SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546 Error: (10/27/2014 02:37:16 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll1032SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546 Error: (10/27/2014 02:37:16 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll1032SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-4590 CPU @ 3.30GHz Percentage of memory in use: 42% Total physical RAM: 8111.07 MB Available physical RAM: 4657.64 MB Total Pagefile: 16220.28 MB Available Pagefile: 12035.25 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:931.41 GB) (Free:889.98 GB) NTFS Drive d: () (Removable) (Total:3.75 GB) (Free:0.15 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: B8B29990) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 3.8 GB) (Disk ID: 4B67FAC1) Partition 1: (Active) - (Size=3.8 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=32 KB) - (Type=21) ==================== End Of Log ============================ |
weißer Bildschirm beim Starten Malware ist da keine. Wurde die Hardware schon kontrolliert?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
