![]() |
|
Log-Analyse und Auswertung: Datei advrcntr5.dll wird auf dem system vermisstWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
![]() ![]() | ![]() Datei advrcntr5.dll wird auf dem system vermisst Ich habe einen Windows 7-Rechner, den ich vor gut zwei Wochen völlig neu aufgesetzt habe, weil ich den Eindruck hatte, dass sich im Laufe der Zeit eine ganze Menge unnötiger Ballast angesammelt hatte. Nach und nach installierte ich meine benötigten Anwendungen und musste dann aber in den letzten Tagen feststellen, dass der Rechner immer langsamer und schwerfälliger wurde, mehr als vor der Neuinstallation. Besondere Schwerpunkte waren Firefox und Thunderbird. Bevor ich über geeignete Maßnahmen nachdenken konnte, passierte folgendes: Ich hatte Nero 2015 (gerade neu gekauft) installiert - es lief problemlos. Dann installierte ich den HTC Sync Manager für mein Smartphone, den ich auch bei der alten Installation schon ohne Probleme installiert hatte. Während der Installation erschien die Meldung: "This program requires the file advrcntr5.dll, which was not found on this system." Nach der Installation probierte ich den HTC-Start - die Meldung tauchte erneut auf und nach dem Erscheinen des Startbildes wurde der Start abgebrochen. Da auf dem Startbildschirm gestanden hatte "Powered by NERO" hatte ich dieses Programm in Verdacht und deinstallierte es sowie HTC einschließlich aller Spuren in der Registry. Das Problem mit dem HTC-Programm erschien aber auch bei einer erneuten Installation. Der HTC-Support erklärte sich nicht zuständig für diesen Fehler; es sei ein Problem des PCs. Heute nun wollte ich meinen Dreamweaver CS4 starten und erhielt die Meldung, es gäbe Probleme mit der Lizensierung und ich müsse neu starten, bevor ich das Programm aufrufen könnte. Das klappte aber trotz mehrerer Neustarts nicht. Nun werde ich langsam stutzig und bitte um Hilfe. Besten Dank im Voraus - FRST Logfiles kommt wegen zu großer Länge extra. masin Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-12-2014 Ran by HDS at 2014-12-19 14:15:30 Running from C:\Users\HDS\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: G DATA INTERNET SECURITY (Enabled - Up to date) {545C8713-0744-B079-87F8-349A6D5C8CF0} AS: G DATA INTERNET SECURITY (Enabled - Up to date) {EF3D66F7-217E-BFF7-BD48-0FE816DBC64D} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: G DATA Personal Firewall (Enabled) {6C670636-4D2B-B121-ACA7-9DAF938FCB8B} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) AAVUpdateManager (HKLM-x32\...\{AFA42FE1-A5C3-485F-9180-BFCF5BF1F1C3}) (Version: 18.00.0000 - Wolters Kluwer Deutschland GmbH) Acoustica 4.1 (HKLM-x32\...\Acoustica_is1) (Version: 4.1 - Acon Digital Media GmbH) Acronis Drive Monitor (HKLM-x32\...\{706AE61D-40A4-4F50-8359-FE8F6F7FA461}) (Version: 1.0.566 - Acronis) Acronis True Image 2014 (HKLM-x32\...\{3ECDD663-5AF8-489B-9E3C-561F33A271BD}Visible) (Version: 17.0.6673 - Acronis) Acronis True Image 2014 (x32 Version: 17.0.6673 - Acronis) Hidden Acronis*Disk*Director*12 (HKLM-x32\...\{AE372858-B1BD-49EF-8308-648322846008}) (Version: 12.0.3223 - Acronis) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.1.0.5790 - Adobe Systems Inc.) Adobe CSI CS4 x64 (Version: 1 - Adobe Systems Incorporated) Hidden Adobe Dreamweaver CS4 (HKLM-x32\...\Adobe_acce07fd2c8fe7f9e3f26243e626578) (Version: 10.0 - Adobe Systems Incorporated) Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.239 - Adobe Systems Incorporated) Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.235 - Adobe Systems Incorporated) Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.1 - Adobe Systems Incorporated) Adobe Photoshop CS2 (HKLM-x32\...\Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0407-1E257A25E34D}) (Version: 9.0 - Adobe Systems, Inc.) Adobe Photoshop Elements 6.0 (HKLM-x32\...\Adobe Photoshop Elements 6) (Version: 6.0 - Adobe Systems, Inc.) Adobe Reader X (10.1.13) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.13 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.4.154 - Adobe Systems, Inc.) AllShare Framework DMS (HKLM\...\{83232C27-8C3F-44A5-9EB2-BB7161228ADD}) (Version: 1.3.23 - Samsung) ATI AVIVO64 Codecs (Version: 11.6.0.50517 - ATI Technologies Inc.) Hidden ATI AVIVO64 Codecs (Version: 11.6.0.51110 - ATI Technologies Inc.) Hidden ATI Catalyst Install Manager (HKLM\...\{727B5F1A-C702-E5AA-11BB-7A74A775F19D}) (Version: 3.0.800.0 - ATI Technologies, Inc.) Broadcom NetXtreme-I Netlink Driver and Management Installer (HKLM\...\{D6E46FC2-B513-4B7D-8C8C-352F4735C541}) (Version: 12.54.02 - Broadcom Corporation) Brother MFL-Pro Suite MFC-J470DW (HKLM-x32\...\{7B4C83B6-17C1-4BFD-B86D-4D7AD4498CBB}) (Version: 1.0.4.0 - Brother Industries, Ltd.) CANON iMAGE GATEWAY Task for ZoomBrowser EX (HKLM-x32\...\CANON iMAGE GATEWAY Task) (Version: 1.5.0.3 - Canon Inc.) Canon Internet Library for ZoomBrowser EX (HKLM-x32\...\Canon Internet Library for ZoomBrowser EX) (Version: 1.6.1.6 - Canon Inc.) Canon RAW Image Task for ZoomBrowser EX (HKLM-x32\...\RAW Image Task) (Version: 3.3.0.5 - Canon Inc.) Canon Utilities CameraWindow (HKLM-x32\...\CameraWindowLauncher) (Version: 7.1.0.2 - Canon Inc.) Canon Utilities CameraWindow DC_DV 6 for ZoomBrowser EX (HKLM-x32\...\CameraWindowDVC6) (Version: 6.4.2.16 - Canon Inc.) Canon Utilities Digital Photo Professional 3.4 (HKLM-x32\...\DPP) (Version: 3.4.0.0 - Canon Inc.) Canon Utilities EOS Utility (HKLM-x32\...\EOS Utility) (Version: 2.4.0.1 - Canon Inc.) Canon Utilities MyCamera (HKLM-x32\...\MyCamera) (Version: 6.4.0.5 - Canon Inc.) Canon Utilities PhotoStitch (HKLM-x32\...\PhotoStitch) (Version: 3.1.21.45 - Canon Inc.) Canon Utilities Picture Style Editor (HKLM-x32\...\Picture Style Editor) (Version: 1.3.0.0 - Canon Inc.) Canon Utilities RemoteCapture Task for ZoomBrowser EX (HKLM-x32\...\RemoteCaptureTask) (Version: 1.7.1.9 - Canon Inc.) Canon Utilities WFT-E1/E2/E3 Utility (HKLM-x32\...\WFTK) (Version: 3.2.1.1 - Canon Inc.) Canon Utilities ZoomBrowser EX (HKLM-x32\...\ZoomBrowser EX) (Version: 6.1.1.21 - Canon Inc.) Canon ZoomBrowser EX Memory Card Utility (HKLM-x32\...\ZoomBrowser EX Memory Card Utility) (Version: 1.1.0.8 - Canon Inc.) capella 7 (HKLM-x32\...\{4623BAA6-0B23-4D47-ABD0-73F2DA4FAF56}) (Version: 7.1.25 - capella software AG) ccc-core-static (x32 Version: 2010.0517.1742.29870 - Ihr Firmenname) Hidden ccc-core-static (x32 Version: 2010.1110.1532.27809 - Ihr Firmenname) Hidden Connect (x32 Version: 1.0.0.1 - Adobe Systems Incorporated) Hidden Core FTP LE (HKLM-x32\...\CoreFTP) (Version: - ) DDBAC (HKLM-x32\...\{480228E5-B989-4193-8CE9-C22F07CBA8FD}) (Version: 5.3.29.0 - DataDesign) Dell System Detect (HKU\S-1-5-21-2581603612-3749273080-2150179490-1000\...\73f463568823ebbe) (Version: 5.12.0.3 - Dell) dradio-Recorder Version 3.02.6 (HKLM-x32\...\dradio-Recorder_is1) (Version: - ) eReg (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden ffDiaporama 2.0 (20131123) (HKLM\...\{113BC587-C2A9-457F-9022-9DB31ABBDD90}_is1) (Version: 2.0 (20131123) - The ffDiaporama Team) Free DVD Video Converter version 1.5 (HKLM-x32\...\Free DVD Video Converter_is1) (Version: - DVDVideoSoft Limited.) Free Studio version 6.4.0.1122 (HKLM-x32\...\Free Studio_is1) (Version: 6.4.0.1122 - DVDVideoSoft Ltd.) Free Video to Flash Converter version 4.6 (HKLM-x32\...\Free Video to Flash Converter_is1) (Version: - DVDVideoSoft Limited.) Free Video to MP3 Converter version 4.2.20.421 (HKLM-x32\...\Free Video to MP3 Converter_is1) (Version: - DVDVideoSoft Limited.) Free YouTube Download version 3.2.49.1122 (HKLM-x32\...\Free YouTube Download_is1) (Version: 3.2.49.1122 - DVDVideoSoft Ltd.) FRITZ!Powerline (HKLM-x32\...\{F9C9378B-78D5-4CC0-8683-B7915DFEA9C5}) (Version: 01.00.65 - AVM Berlin) G DATA INTERNET SECURITY (HKLM-x32\...\{85203592-3610-4FB9-AA11-15B2255B5A12}) (Version: 25.0.2.3 - G DATA Software AG) Garmin BaseCamp (HKLM-x32\...\{BC8E822D-0C54-4426-B7D3-876CFC47EFEC}) (Version: 4.4.4 - Garmin Ltd or its subsidiaries) Garmin USB Drivers (HKLM-x32\...\{3D5D6CFC-3097-425A-8D8F-7EAF5D57641D}) (Version: 2.3.1.0 - Garmin Ltd or its subsidiaries) Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden GoogleClean (HKLM-x32\...\{4281435C-AD1D-4C8A-B9C0-3961C08EF142}_is1) (Version: 121 - Abelssoft) HTC Sync Manager (HKLM-x32\...\{231D0C79-98A6-4693-A366-36DE7D7346EC}) (Version: 3.1.33.0 - HTC) IPTInstaller (HKLM-x32\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.8 - HTC) IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan) KeePass Password Safe 2.28 (HKLM-x32\...\KeePassPasswordSafe2_is1) (Version: 2.28 - Dominik Reichl) kuler (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Lexware Info Service (HKLM-x32\...\{85BF9FDB-BD5B-407C-9CAE-3542E5164783}) (Version: 4.00.00.0075 - Haufe-Lexware GmbH & Co.KG) Lexware online banking (HKLM-x32\...\{A64DF516-9CDC-4299-BD34-2B2C80CD453B}) (Version: 19.00.00.0059 - Haufe-Lexware GmbH & Co.KG) LightScribe System Software (HKLM-x32\...\{E0E55FC1-C53D-4F8D-B14B-B59C312747C8}) (Version: 1.18.22.2 - LightScribe) Logitech SetPoint 6.65 (HKLM\...\sp6) (Version: 6.65.62 - Logitech) Lotus Notes 6.5.1 de (HKLM-x32\...\{C626B47C-8312-4D8C-89E1-16FE42EF34E6}) (Version: 6.501.421 - IBM) Lupas Rename 2000 v5.0 Release (HKLM-x32\...\Lupas Rename 2000_is1) (Version: - Ivan Anton Albarracin) Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office Home and Student 2010 (HKLM\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Mozilla Firefox 34.0.5 (x86 de) (HKLM-x32\...\Mozilla Firefox 34.0.5 (x86 de)) (Version: 34.0.5 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.2.0 - Mozilla) Mozilla Thunderbird 31.3.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 31.3.0 (x86 de)) (Version: 31.3.0 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) My Dell (HKLM\...\PC-Doctor for Windows) (Version: 3.5.6426.22 - PC-Doctor, Inc.) MyDriveConnect 3.3.0.1812 (HKLM-x32\...\MyDriveConnect) (Version: 3.3.0.1812 - TomTom) MyHeritage Family Tree Builder (HKLM-x32\...\Family Tree Builder) (Version: 7.0.0.7138 - MyHeritage.com) PC Wizard 2013.2.12 (HKLM-x32\...\PC Wizard 2013_is1) (Version: - CPUID) PDF Architect 2 (HKLM-x32\...\PDF Architect 2) (Version: 2.0.51.17865 - pdfforge GmbH) PDF Architect 2 Create Module (x32 Version: 2.1.6.19758 - pdfforge GmbH) Hidden PDF Architect 2 Edit Module (x32 Version: 2.1.6.19758 - pdfforge GmbH) Hidden PDF Architect 2 View Module (x32 Version: 2.1.6.19758 - pdfforge GmbH) Hidden PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.0.0 - pdfforge) Photoshop Camera Raw (x32 Version: 5.0 - Adobe Systems Incorporated) Hidden Pixum Fotobuch (HKLM-x32\...\Pixum Fotobuch) (Version: 5.1.7 - CEWE Stiftung u Co. KGaA) Quicken 2014 (HKLM-x32\...\{E60036CF-1E46-4DFE-832F-5476574B30FF}) (Version: 21.37.00.0185 - Haufe-Lexware GmbH & Co.KG) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5919 - Realtek Semiconductor Corp.) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{17528CE4-C333-48FB-A9E4-D841E795CDCE}) (Version: 3.0.23.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 3.0.23.0 - Renesas Electronics Corporation) Hidden Rossmann Fotowelt Software 4.13 (HKLM-x32\...\Rossmann Fotowelt Software) (Version: 4.13 - ORWO Net) Samsung Link 2.0.0.1412161531 (HKLM\...\8474-7877-9059-0204) (Version: 2.0.0.1412161531 - Copyright 2013 SAMSUNG) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-003D-0000-1000-0000000FF1CE}_Office14.SingleImage_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden SiSoftware Sandra Lite 2014.SP3c (HKLM\...\{C3113E55-7BCB-4de3-8EBF-60E6CE6B2496}_is1) (Version: 20.47.2014.10 - SiSoftware) Skype™ 6.22 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.22.107 - Skype Technologies S.A.) Suite Shared Configuration CS4 (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden SuperCar (HKLM-x32\...\SuperCar) (Version: - ) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden TAXMAN 2014 spezial (HKLM-x32\...\{23CCE76F-7421-4090-8081-BD519F2F93F4}) (Version: 20.04.00.0003 - Haufe-Lexware GmbH & Co.KG) TAXMAN spezial 2015 (HKLM-x32\...\{5613CAD3-71ED-4207-95A0-1BA0BF465E38}) (Version: 20.23.108 - Haufe-Lexware GmbH & Co.KG) TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.36897 - TeamViewer) TuneUp Utilities 2014 (de-DE) (x32 Version: 14.0.1000.340 - TuneUp Software) Hidden TuneUp Utilities 2014 (HKLM-x32\...\TuneUp Utilities) (Version: 14.0.1000.340 - TuneUp Software) TuneUp Utilities 2014 (x32 Version: 14.0.1000.340 - TuneUp Software) Hidden TuneUp Utilities Language Pack (de-DE) (x32 Version: 13.0.4000.179 - TuneUp Software) Hidden Uninstall 1.0.0.1 (HKLM-x32\...\Uninstall_is1) (Version: - ) Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) Windows Driver Package - Garmin (grmnusb) GARMIN Devices (04/19/2012 2.3.1.0) (HKLM\...\98157A226B40B173301B0F53C8E98C47805D5152) (Version: 04/19/2012 2.3.1.0 - Garmin) WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies) XnView 2.25 (HKLM-x32\...\XnView_is1) (Version: 2.25 - Gougelet Pierre-e) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 16-12-2014 10:04:32 TuneUp Utilities 2014 (de-DE) wird entfernt 16-12-2014 10:18:23 Installiert Samsung AllShare 16-12-2014 10:26:38 Entfernt Samsung AllShare 16-12-2014 10:42:35 TuneUp Utilities 2014 wird installiert 16-12-2014 11:03:16 Installiert Samsung AllShare 16-12-2014 11:47:54 Entfernt Samsung AllShare 16-12-2014 17:56:36 FRITZ!Powerline wird installiert 17-12-2014 13:42:40 Removed HTC Driver Installer. 17-12-2014 13:46:45 Removed IPTInstaller 18-12-2014 09:49:02 Windows Update 18-12-2014 10:50:12 Removed HTC Driver Installer. 18-12-2014 12:40:39 Removed Nero 2015. 18-12-2014 14:04:21 Removed HTC Driver Installer. 18-12-2014 18:30:01 Removed HTC Driver Installer. ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {04DF4EF4-FC24-47ED-A5C1-4C8735F77B5D} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\My Dell\sessionchecker.exe [2014-01-10] (PC-Doctor, Inc.) Task: {2524F938-DF08-4C71-8297-6F4F432DA020} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\My Dell\uaclauncher.exe [2014-01-10] (PC-Doctor, Inc.) Task: {2930EBC8-ACAD-4922-B0B5-F775E32CB9EF} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-11] (Adobe Systems Incorporated) Task: {3A2FA22B-7AB0-4D24-B9A5-0C1266ECDDA7} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\TuneUp Utilities 2014\OneClick.exe [2014-07-16] (TuneUp Software) Task: {834CD1BC-7E01-4C5D-B731-3BF5A8BD18D4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-02] (Google Inc.) Task: {8C1268D3-53A3-4AEE-8397-7D1B55A11E2C} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe Task: {B34BF43A-0CB5-44CC-B45E-D23F86EEB99A} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: {BC3C64CE-0905-4BF4-A847-6D17166EDAC4} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-11-20] (Adobe Systems Incorporated) Task: {DA6DC05A-39D0-48F4-847B-5859B8A1FB53} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-02] (Google Inc.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2008-10-24 16:35 - 2008-10-24 16:35 - 00128296 _____ () C:\Program Files (x86)\Lexware\AAVUpdateManager\aavus.exe 2014-12-01 17:40 - 2005-04-22 05:36 - 00143360 _____ () C:\Windows\system32\BrSNMP64.dll 2013-10-01 10:32 - 2013-10-01 10:32 - 02818216 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll 2014-07-16 10:24 - 2014-07-16 10:24 - 00699704 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\avgrepliba.dll 2014-05-20 02:38 - 2014-05-20 02:38 - 00340088 ____N () C:\Program Files (x86)\Common Files\G Data\AVKProxy\PktIcpt2x64.dll 2014-12-16 12:08 - 2014-12-16 15:31 - 00025088 _____ () C:\Program Files\Samsung\Samsung Link\JniSys.dll 2014-12-16 12:08 - 2014-12-16 15:31 - 00049664 _____ () C:\Program Files\Samsung\Samsung Link\JniIO.dll 2013-12-21 11:25 - 2013-12-21 11:25 - 00036864 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\64bit\JNIInterface.dll 2013-12-21 11:26 - 2013-12-21 11:26 - 00144384 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\64bit\ASFAPI.dll 2013-12-21 11:27 - 2013-12-21 11:27 - 00018944 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\64bit\MediaDB_Manager.dll 2013-10-22 09:52 - 2013-10-22 09:52 - 00030720 _____ () C:\Windows\system32\MediaDB64.dll 2013-10-22 09:52 - 2013-10-22 09:52 - 00908800 _____ () C:\Windows\system32\ContentDirectoryPresenter64.dll 2013-12-21 11:27 - 2013-12-21 11:27 - 00521728 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\64bit\DMS_Manager.dll 2013-07-23 19:19 - 2013-07-23 19:19 - 00049152 _____ () C:\Windows\system32\boost_date_time-vc90-mt-1_47.dll 2013-07-23 19:19 - 2013-07-23 19:19 - 00016896 _____ () C:\Windows\system32\boost_system-vc90-mt-1_47.dll 2013-07-23 19:19 - 2013-07-23 19:19 - 00058880 _____ () C:\Windows\system32\boost_thread-vc90-mt-1_47.dll 2013-07-23 19:19 - 2013-07-23 19:19 - 00299520 _____ () C:\Windows\system32\boost_serialization-vc90-mt-1_47.dll 2014-12-02 10:58 - 2012-10-13 16:05 - 00042496 _____ () C:\Program Files (x86)\dradio-Recorder\phonostarTimer.exe 2014-12-01 18:00 - 2014-11-26 17:40 - 03758192 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2014-12-02 19:32 - 2014-12-02 19:33 - 03339376 _____ () C:\Program Files (x86)\Mozilla Thunderbird\mozjs.dll 2014-12-02 19:32 - 2014-12-02 19:33 - 00158832 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAP32V60.dll 2014-12-02 19:32 - 2014-12-02 19:33 - 00023152 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAPPR32V60.dll 2013-12-11 16:46 - 2013-12-11 16:46 - 01114624 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\DMSManager.dll 2013-10-22 09:48 - 2013-10-22 09:48 - 00707072 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\ContentDirectoryPresenter.dll 2013-10-24 16:53 - 2013-10-24 16:53 - 00107008 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\DCMCDP.dll 2013-12-11 16:46 - 2013-12-11 16:46 - 00102400 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\FolderCDP.dll 2013-12-11 16:46 - 2013-12-11 16:46 - 00077312 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\MetadataFramework.dll 2013-02-14 19:42 - 2013-02-14 19:42 - 00520234 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\sqlite3.dll 2013-02-14 19:42 - 2013-02-14 19:42 - 00450560 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\MoodExtractor.dll 2013-02-14 19:42 - 2013-02-14 19:42 - 05717504 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\DCMImgExtractor.dll 2013-10-25 19:48 - 2013-10-25 19:48 - 00028672 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AutoChaptering.dll 2013-02-14 19:42 - 2013-02-14 19:42 - 00147456 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\libexpat.dll 2013-10-25 19:48 - 2013-10-25 19:48 - 00012288 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\VideoThumb.dll 2013-02-14 19:42 - 2013-02-14 19:42 - 04671488 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\avcodec-52.dll 2013-02-14 19:42 - 2013-02-14 19:42 - 00070656 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\avutil-50.dll 2013-02-14 19:42 - 2013-02-14 19:42 - 00686080 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\avformat-52.dll 2013-02-14 19:42 - 2013-02-14 19:42 - 00152064 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\swscale-0.dll 2013-10-25 19:49 - 2013-10-25 19:49 - 00028160 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AudioExtractor.dll 2013-10-25 19:48 - 2013-10-25 19:48 - 00064000 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\ID3Driver.dll 2013-02-14 19:42 - 2013-02-14 19:42 - 00366592 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\tag.dll 2013-10-25 19:48 - 2013-10-25 19:48 - 00289792 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\libThumbnail.dll 2013-10-25 19:48 - 2013-10-25 19:48 - 00023040 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\RichInfoDriver.dll 2013-12-11 16:45 - 2013-12-11 16:45 - 00017920 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\VideoExtractor.dll 2013-10-25 19:53 - 2013-10-25 19:53 - 00117248 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\ThumbnailMaker.dll 2013-10-25 19:53 - 2013-10-25 19:53 - 01033728 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\ImageMagickWrapper.dll 2013-12-11 16:45 - 2013-12-11 16:45 - 00134144 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\VideoMetadataDriver.dll 2013-10-25 19:48 - 2013-10-25 19:48 - 00290816 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\libKeyFrame.dll 2013-10-25 19:48 - 2013-10-25 19:48 - 00024064 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\SECMetaDriver.dll 2013-10-25 19:53 - 2013-10-25 19:53 - 00012288 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\ImageExtractor.dll 2013-10-25 19:48 - 2013-10-25 19:48 - 00024064 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\photoDriver.dll 2013-02-14 19:42 - 2013-02-14 19:42 - 00399826 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\libexif-12.dll.dll 2013-10-25 19:48 - 2013-10-25 19:48 - 00013824 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\TextExtractor.dll 2013-10-24 16:53 - 2013-10-24 16:53 - 00032768 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\Autobackup.dll 2013-04-19 16:38 - 2013-04-19 16:38 - 00055808 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\RosettaAllShare.dll 2013-07-23 19:18 - 2013-07-23 19:18 - 00227840 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\boost_serialization-vc90-mt-1_47.dll 2013-07-23 19:18 - 2013-07-23 19:18 - 00038912 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\boost_date_time-vc90-mt-1_47.dll 2013-07-23 19:18 - 2013-07-23 19:18 - 00012800 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\boost_system-vc90-mt-1_47.dll 2013-07-23 19:18 - 2013-07-23 19:18 - 00046592 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\boost_thread-vc90-mt-1_47.dll 2013-02-14 19:42 - 2013-02-14 19:42 - 00044032 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\us.dll 2013-10-01 11:00 - 2013-10-01 11:00 - 00022336 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\ti_managers_proxy_stub.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\LMIRescue_c12ff1df-c0df-401f-aa68-5cd924b55534 => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\LMIRescue_e56cfad4-040a-40ee-b9c3-1dfe15534b59 => ""="Service" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) MSCONFIG\Services: AcrSch2Svc => 2 MSCONFIG\Services: AERTFilters => 2 MSCONFIG\Services: afcdpsrv => 2 MSCONFIG\Services: NAUpdate => 2 MSCONFIG\Services: Samsung Link Service => 2 MSCONFIG\Services: syncagentsrv => 2 MSCONFIG\startupfolder: C:^Users^HDS^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Gamma.lnk => C:\Windows\pss\Adobe Gamma.lnk.Startup MSCONFIG\startupreg: Acronis Scheduler2 Service => "C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe" MSCONFIG\startupreg: AcronisTibMounterMonitor => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe MSCONFIG\startupreg: adm_tray.exe => C:\Program Files (x86)\Acronis\DriveMonitor\adm_tray.exe MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Adobe Photo Downloader => "C:\Program Files (x86)\Adobe\Photoshop Elements 6.0\apdproxy.exe" MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" MSCONFIG\startupreg: AdobeCS4ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin MSCONFIG\startupreg: BrHelp => C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe /AUTORUN MSCONFIG\startupreg: BrStsMon00 => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN MSCONFIG\startupreg: ControlCenter4 => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe /autorun MSCONFIG\startupreg: DellSystemDetect => C:\Users\HDS\AppData\Local\Apps\2.0\Z0DMNANM.KYL\C5O8QLQK.9YL\dell..tion_e30b47f5d4a30e9e_0005.000c_1df9a4898fae00de\DellSystemDetect.exe MSCONFIG\startupreg: dradio-RecorderTimer => C:\Program Files (x86)\dradio-Recorder\phonostarTimer.exe MSCONFIG\startupreg: EvtMgr6 => C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming MSCONFIG\startupreg: MyDriveConnect.exe => "C:\Program Files (x86)\MyDrive Connect\MyDriveConnect.exe" MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s MSCONFIG\startupreg: Samsung Link => "C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe" MSCONFIG\startupreg: StartCCC => "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun ========================= Accounts: ========================== Administrator (S-1-5-21-2581603612-3749273080-2150179490-500 - Administrator - Disabled) => C:\Users\Administrator Gast (S-1-5-21-2581603612-3749273080-2150179490-501 - Limited - Disabled) Hans-Dieter (S-1-5-21-2581603612-3749273080-2150179490-1002 - Limited - Enabled) => C:\Users\Hans-Dieter HDS (S-1-5-21-2581603612-3749273080-2150179490-1000 - Administrator - Enabled) => C:\Users\HDS ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (12/19/2014 02:15:23 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: AllShareFrameworkDMS.exe, Version: 1.3.0.23, Zeitstempel: 0x52b52bb2 Name des fehlerhaften Moduls: libThumbnail.dll, Version: 2010.12.14.1, Zeitstempel: 0x526a4c91 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00008bc3 ID des fehlerhaften Prozesses: 0x4f74 Startzeit der fehlerhaften Anwendung: 0xAllShareFrameworkDMS.exe0 Pfad der fehlerhaften Anwendung: AllShareFrameworkDMS.exe1 Pfad des fehlerhaften Moduls: AllShareFrameworkDMS.exe2 Berichtskennung: AllShareFrameworkDMS.exe3 Error: (12/19/2014 02:13:41 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: AllShareFrameworkDMS.exe, Version: 1.3.0.23, Zeitstempel: 0x52b52bb2 Name des fehlerhaften Moduls: DMSManager.dll, Version: 0.0.0.0, Zeitstempel: 0x52a81842 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000940c ID des fehlerhaften Prozesses: 0x4d08 Startzeit der fehlerhaften Anwendung: 0xAllShareFrameworkDMS.exe0 Pfad der fehlerhaften Anwendung: AllShareFrameworkDMS.exe1 Pfad des fehlerhaften Moduls: AllShareFrameworkDMS.exe2 Berichtskennung: AllShareFrameworkDMS.exe3 Error: (12/19/2014 02:13:39 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: AllShareFrameworkDMS.exe, Version: 1.3.0.23, Zeitstempel: 0x52b52bb2 Name des fehlerhaften Moduls: libThumbnail.dll, Version: 2010.12.14.1, Zeitstempel: 0x526a4c91 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00008bc3 ID des fehlerhaften Prozesses: 0x20dc Startzeit der fehlerhaften Anwendung: 0xAllShareFrameworkDMS.exe0 Pfad der fehlerhaften Anwendung: AllShareFrameworkDMS.exe1 Pfad des fehlerhaften Moduls: AllShareFrameworkDMS.exe2 Berichtskennung: AllShareFrameworkDMS.exe3 Error: (12/19/2014 02:11:57 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: AllShareFrameworkDMS.exe, Version: 1.3.0.23, Zeitstempel: 0x52b52bb2 Name des fehlerhaften Moduls: libThumbnail.dll, Version: 2010.12.14.1, Zeitstempel: 0x526a4c91 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00008bc3 ID des fehlerhaften Prozesses: 0x3ef8 Startzeit der fehlerhaften Anwendung: 0xAllShareFrameworkDMS.exe0 Pfad der fehlerhaften Anwendung: AllShareFrameworkDMS.exe1 Pfad des fehlerhaften Moduls: AllShareFrameworkDMS.exe2 Berichtskennung: AllShareFrameworkDMS.exe3 Error: (12/19/2014 02:10:17 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: AllShareFrameworkDMS.exe, Version: 1.3.0.23, Zeitstempel: 0x52b52bb2 Name des fehlerhaften Moduls: DMSManager.dll, Version: 0.0.0.0, Zeitstempel: 0x52a81842 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000940c ID des fehlerhaften Prozesses: 0x6270 Startzeit der fehlerhaften Anwendung: 0xAllShareFrameworkDMS.exe0 Pfad der fehlerhaften Anwendung: AllShareFrameworkDMS.exe1 Pfad des fehlerhaften Moduls: AllShareFrameworkDMS.exe2 Berichtskennung: AllShareFrameworkDMS.exe3 Error: (12/19/2014 02:10:16 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: AllShareFrameworkDMS.exe, Version: 1.3.0.23, Zeitstempel: 0x52b52bb2 Name des fehlerhaften Moduls: libThumbnail.dll, Version: 2010.12.14.1, Zeitstempel: 0x526a4c91 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00008bc3 ID des fehlerhaften Prozesses: 0x4430 Startzeit der fehlerhaften Anwendung: 0xAllShareFrameworkDMS.exe0 Pfad der fehlerhaften Anwendung: AllShareFrameworkDMS.exe1 Pfad des fehlerhaften Moduls: AllShareFrameworkDMS.exe2 Berichtskennung: AllShareFrameworkDMS.exe3 Error: (12/19/2014 02:08:29 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: AllShareFrameworkDMS.exe, Version: 1.3.0.23, Zeitstempel: 0x52b52bb2 Name des fehlerhaften Moduls: libThumbnail.dll, Version: 2010.12.14.1, Zeitstempel: 0x526a4c91 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00008bc3 ID des fehlerhaften Prozesses: 0x79c Startzeit der fehlerhaften Anwendung: 0xAllShareFrameworkDMS.exe0 Pfad der fehlerhaften Anwendung: AllShareFrameworkDMS.exe1 Pfad des fehlerhaften Moduls: AllShareFrameworkDMS.exe2 Berichtskennung: AllShareFrameworkDMS.exe3 Error: (12/19/2014 08:37:38 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Error: (12/19/2014 08:13:37 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: AllShareFrameworkDMS.exe, Version: 1.3.0.23, Zeitstempel: 0x52b52bb2 Name des fehlerhaften Moduls: libThumbnail.dll, Version: 2010.12.14.1, Zeitstempel: 0x526a4c91 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00008bc3 ID des fehlerhaften Prozesses: 0x6778 Startzeit der fehlerhaften Anwendung: 0xAllShareFrameworkDMS.exe0 Pfad der fehlerhaften Anwendung: AllShareFrameworkDMS.exe1 Pfad des fehlerhaften Moduls: AllShareFrameworkDMS.exe2 Berichtskennung: AllShareFrameworkDMS.exe3 Error: (12/19/2014 08:12:25 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: AllShareFrameworkDMS.exe, Version: 1.3.0.23, Zeitstempel: 0x52b52bb2 Name des fehlerhaften Moduls: libThumbnail.dll, Version: 2010.12.14.1, Zeitstempel: 0x526a4c91 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00008bc3 ID des fehlerhaften Prozesses: 0x35cc Startzeit der fehlerhaften Anwendung: 0xAllShareFrameworkDMS.exe0 Pfad der fehlerhaften Anwendung: AllShareFrameworkDMS.exe1 Pfad des fehlerhaften Moduls: AllShareFrameworkDMS.exe2 Berichtskennung: AllShareFrameworkDMS.exe3 System errors: ============= Error: (12/19/2014 02:10:22 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Samsung Link Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (12/19/2014 01:49:41 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {60A90A2F-858D-42AF-8929-82BE9D99E8A1} Error: (12/19/2014 08:06:59 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {BCB3CC02-761B-4C74-8B04-891A31034D19} Error: (12/18/2014 06:35:41 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {BCB3CC02-761B-4C74-8B04-891A31034D19} Error: (12/18/2014 06:20:54 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "LogMeIn Rescue (e56cfad4-040a-40ee-b9c3-1dfe15534b59)" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (12/18/2014 06:20:37 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "LogMeIn Rescue (c12ff1df-c0df-401f-aa68-5cd924b55534)" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (12/18/2014 06:18:18 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "Windows Search" wurde nicht richtig gestartet. Error: (12/18/2014 11:51:29 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Samsung Link Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (12/18/2014 11:19:47 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {60A90A2F-858D-42AF-8929-82BE9D99E8A1} Error: (12/18/2014 09:29:20 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Samsung Link Service" wurde unerwartet beendet. Dies ist bereits 2 Mal passiert. Microsoft Office Sessions: ========================= Error: (12/19/2014 02:15:23 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: AllShareFrameworkDMS.exe1.3.0.2352b52bb2libThumbnail.dll2010.12.14.1526a4c91c000000500008bc34f7401d01b8d9d2a45e4C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exeC:\Program Files\Samsung\AllShare Framework DMS\1.3.23\libThumbnail.dll168b6a2f-8781-11e4-b4fd-404e57434401 Error: (12/19/2014 02:13:41 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: AllShareFrameworkDMS.exe1.3.0.2352b52bb2DMSManager.dll0.0.0.052a81842c00000050000940c4d0801d01b8d9bf73461C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exeC:\Program Files\Samsung\AllShare Framework DMS\1.3.23\DMSManager.dlld9da7ee7-8780-11e4-b4fd-404e57434401 Error: (12/19/2014 02:13:39 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: AllShareFrameworkDMS.exe1.3.0.2352b52bb2libThumbnail.dll2010.12.14.1526a4c91c000000500008bc320dc01d01b8d5f2048a1C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exeC:\Program Files\Samsung\AllShare Framework DMS\1.3.23\libThumbnail.dlld87c949f-8780-11e4-b4fd-404e57434401 Error: (12/19/2014 02:11:57 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: AllShareFrameworkDMS.exe1.3.0.2352b52bb2libThumbnail.dll2010.12.14.1526a4c91c000000500008bc33ef801d01b8d23689ed6C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exeC:\Program Files\Samsung\AllShare Framework DMS\1.3.23\libThumbnail.dll9ba0e61e-8780-11e4-b4fd-404e57434401 Error: (12/19/2014 02:10:17 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: AllShareFrameworkDMS.exe1.3.0.2352b52bb2DMSManager.dll0.0.0.052a81842c00000050000940c627001d01b8d2237464dC:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exeC:\Program Files\Samsung\AllShare Framework DMS\1.3.23\DMSManager.dll5ffbaef0-8780-11e4-b4fd-404e57434401 Error: (12/19/2014 02:10:16 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: AllShareFrameworkDMS.exe1.3.0.2352b52bb2libThumbnail.dll2010.12.14.1526a4c91c000000500008bc3443001d01b8ce4197d19C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exeC:\Program Files\Samsung\AllShare Framework DMS\1.3.23\libThumbnail.dll5f37e6e2-8780-11e4-b4fd-404e57434401 Error: (12/19/2014 02:08:29 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: AllShareFrameworkDMS.exe1.3.0.2352b52bb2libThumbnail.dll2010.12.14.1526a4c91c000000500008bc379c01d01b8a6ea1d3bfC:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exeC:\Program Files\Samsung\AllShare Framework DMS\1.3.23\libThumbnail.dll1f99928c-8780-11e4-b4fd-404e57434401 Error: (12/19/2014 08:37:38 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestc:\program files (x86)\dradio-recorder\phonostar.exe Error: (12/19/2014 08:13:37 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: AllShareFrameworkDMS.exe1.3.0.2352b52bb2libThumbnail.dll2010.12.14.1526a4c91c000000500008bc3677801d01b5b2510fcdbC:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exeC:\Program Files\Samsung\AllShare Framework DMS\1.3.23\libThumbnail.dll8cb68b50-874e-11e4-8958-404e57434401 Error: (12/19/2014 08:12:25 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: AllShareFrameworkDMS.exe1.3.0.2352b52bb2libThumbnail.dll2010.12.14.1526a4c91c000000500008bc335cc01d01b5af77c635cC:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exeC:\Program Files\Samsung\AllShare Framework DMS\1.3.23\libThumbnail.dll61c135de-874e-11e4-8958-404e57434401 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5 CPU 760 @ 2.80GHz Percentage of memory in use: 52% Total physical RAM: 4055.12 MB Available physical RAM: 1914.14 MB Total Pagefile: 8108.41 MB Available Pagefile: 5225.56 MB Total Virtual: 8192 MB Available Virtual: 8191.79 MB ==================== Drives ================================ Drive c: (System) (Fixed) (Total:1862.92 GB) (Free:1780.64 GB) NTFS Drive d: (Dasi) (Fixed) (Total:316.71 GB) (Free:78.05 GB) NTFS Drive e: (Eigene Dateien) (Fixed) (Total:597.83 GB) (Free:242.67 GB) NTFS Drive i: (Bilder) (Fixed) (Total:771.4 GB) (Free:191.2 GB) NTFS Drive j: (Speicher) (Fixed) (Total:1862.98 GB) (Free:609.1 GB) NTFS Drive o: (Kopie C alt) (Fixed) (Total:176.92 GB) (Free:100.52 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 1863 GB) (Disk ID: 722B620C) Partition 1: (Not Active) - (Size=150 MB) - (Type=DE) Partition 2: (Not Active) - (Size=176.9 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=1685.9 GB) - (Type=OF Extended) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 6E7A038E) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=1862.9 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows XP) (Size: 1863 GB) (Disk ID: A28F27C7) Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Code:
ATTFilter GMER 2.1.19357 - hxxp://www.gmer.net Rootkit scan 2014-12-19 14:31:45 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk1\DR1 -> \Device\Ide\IdeDeviceP0T0L0-0 ST2000DM001-1CH164 rev.CC29 1863,02GB Running: 8rpzzg3w.exe; Driver: C:\Users\HDS\AppData\Local\Temp\axlyipow.sys ---- Kernel code sections - GMER 2.1 ---- INITKDBG C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 528 fffff80002fb0000 45 bytes [00, 00, 5B, 00, 47, 44, 57, ...] INITKDBG C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 574 fffff80002fb002e 17 bytes [61, 00, 72, 00, 64, 00, 64, ...] ---- User code sections - GMER 2.1 ---- .text C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe[3892] C:\Windows\syswow64\PSAPI.DLL!GetModuleFileNameExW + 17 0000000074e91401 2 bytes JMP 000000010579a47a .text C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe[3892] C:\Windows\syswow64\PSAPI.DLL!EnumProcessModules + 17 0000000074e91419 2 bytes JMP 000000010579a492 .text C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe[3892] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 17 0000000074e91431 2 bytes JMP 000000010579a4aa .text C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe[3892] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 42 0000000074e9144a 2 bytes JMP 0000000074f5fcc3 .text ... * 9 .text C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe[3892] C:\Windows\syswow64\PSAPI.DLL!EnumDeviceDrivers + 17 0000000074e914dd 2 bytes JMP 000000010579a556 .text C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe[3892] C:\Windows\syswow64\PSAPI.DLL!GetDeviceDriverBaseNameA + 17 0000000074e914f5 2 bytes JMP 000000010579a56e .text C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe[3892] C:\Windows\syswow64\PSAPI.DLL!QueryWorkingSetEx + 17 0000000074e9150d 2 bytes JMP 000000010579a586 .text C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe[3892] C:\Windows\syswow64\PSAPI.DLL!GetDeviceDriverBaseNameW + 17 0000000074e91525 2 bytes JMP 000000010579a59e .text C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe[3892] C:\Windows\syswow64\PSAPI.DLL!GetModuleBaseNameW + 17 0000000074e9153d 2 bytes JMP 000000010579a5b6 .text C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe[3892] C:\Windows\syswow64\PSAPI.DLL!EnumProcesses + 17 0000000074e91555 2 bytes JMP 000000010579a5ce .text C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe[3892] C:\Windows\syswow64\PSAPI.DLL!GetProcessMemoryInfo + 17 0000000074e9156d 2 bytes JMP 000000010579a5e6 .text C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe[3892] C:\Windows\syswow64\PSAPI.DLL!GetPerformanceInfo + 17 0000000074e91585 2 bytes JMP 000000010579a5fe .text C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe[3892] C:\Windows\syswow64\PSAPI.DLL!QueryWorkingSet + 17 0000000074e9159d 2 bytes JMP 000000010579a616 .text C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe[3892] C:\Windows\syswow64\PSAPI.DLL!GetModuleBaseNameA + 17 0000000074e915b5 2 bytes JMP 000000010579a62e .text C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe[3892] C:\Windows\syswow64\PSAPI.DLL!GetModuleFileNameExA + 17 0000000074e915cd 2 bytes JMP 000000015b37ce46 .text C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe[3892] C:\Windows\syswow64\PSAPI.DLL!GetProcessImageFileNameW + 20 0000000074e916b2 2 bytes JMP 000000010579a72b .text C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe[3892] C:\Windows\syswow64\PSAPI.DLL!GetProcessImageFileNameW + 31 0000000074e916bd 2 bytes JMP 000000010579a736 ---- EOF - GMER 2.1 ---- Geändert von masin (19.12.2014 um 15:45 Uhr) |
Themen zu Datei advrcntr5.dll wird auf dem system vermisst |
.dll, anwendungen, bildschirm, datei, dreamweaver, dvdvideosoft ltd., fehler, file, firefox, folge, gekauft, gen, langsamer, lizensierung, logfiles, meldung, nero, neu, not, probleme, programm, starten, system, this, trotz, verdacht, windows |