|
Log-Analyse und Auswertung: einzelne URL Adresse nicht erreichbarWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
02.03.2015, 17:39 | #1 |
| einzelne URL Adresse nicht erreichbar Guten Tag, folgendes Problem und ich bin mir nicht sich ob ich mir "etwas" eingefangen habe. Seit 3 Tagen kann ich die seite www.elv.de nicht mehr erreichen (server timeout). Alle anderen Internet Seiten funktionieren. Auf anderen Rechner ist die Seite problemlos zu erreichen und auf Nachfrage bei ELV ist kein serverproblem bekannt. Ping auf die Seite funktioniert. Komischerweise sind auch die email Newsletter von ELV unvollständig, d.h. Grafiken werden nicht nachgeladen. Auch der Link hxxp://enews.elv-direkt.de/re?l=D0IvfbegxI6xr3xb3I1a führ zum timeout. Alle anderen emails sind normal. Auch erhalte ich beim Besuch von Google ab und zu die Meldung "Datenverkehr zu hoch" und muss dann einen capcha eingeben Alle anderen emails sind normal. Alles seltsam. Was habe ich bisher gemacht: antiMalware ausgeführt - keine Bedrohungen Avira Scan - keine Viren gefunden adwcleaner ausgeführt - einige Funde und alles bereinigt. LogFile weiter unten defogger ausgeführt FRST ausgeführt - FRST und additional logfile weiter unten GMER Ausführung friert mein system ein, Häckchen bei devices lässt das Programm länger scannen, friert jedoch dann auch das System ein. Den abgesicherten Modus habe ich bisher nicht ausführen können, mit F8 oder shift F8 komme ich nicht in den abgesicherten Modus um GMER auszuführen.AdwCleaner Logfile: Code:
ATTFilter # AdwCleaner v4.111 - Bericht erstellt 02/03/2015 um 15:45:31 # Aktualisiert 18/02/2015 von Xplode # Datenbank : 2015-03-02.1 [Server] # Betriebssystem : Windows 8.1 Pro with Media Center (x86) # Benutzername : Thomas - WOHNZI # Gestarted von : C:\Users\Thomas\Downloads\adwcleaner_4.111.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\SecTaskMan Datei Gelöscht : C:\Users\Thomas\Favorites\Startfenster.lnk Datei Gelöscht : C:\Users\Thomas\Favorites\Links\Startfenster.lnk Datei Gelöscht : C:\Users\Thomas\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Startfenster.lnk Datei Gelöscht : C:\Users\Thomas\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Startfenster.lnk Datei Gelöscht : C:\Users\Thomas\AppData\Roaming\Microsoft\Windows\Start Menu\Startfenster.lnk Datei Gelöscht : C:\Users\Thomas\Desktop\Startfenster.lnk Datei Gelöscht : C:\Users\Thomas\AppData\Roaming\Mozilla\Firefox\Profiles\w4h7yppd.default\foxydeal.sqlite ***** [ Geplante Tasks ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B89ED501-52A9-4258-A486-5DC7263CADBF} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B89ED501-52A9-4258-A486-5DC7263CADBF} Schlüssel Gelöscht : HKCU\Software\foxydeal Schlüssel Gelöscht : HKCU\Software\AppDataLow\foxydeal ***** [ Internetbrowser ] ***** -\\ Internet Explorer v11.0.9600.17416 Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] -\\ Mozilla Firefox v35.0.1 (x86 de) [w4h7yppd.default\prefs.js] - Zeile Gelöscht : user_pref("avira.safe_search.installed", "[\"safesearch\"]"); [w4h7yppd.default\prefs.js] - Zeile Gelöscht : user_pref("avira.safe_search.prev_newtab", "hxxps://safesearch.avira.com/#?source=newtab"); [w4h7yppd.default\prefs.js] - Zeile Gelöscht : user_pref("browser.newtab.url", "hxxps://safesearch.avira.com/#?source=newtab"); [w4h7yppd.default\prefs.js] - Zeile Gelöscht : user_pref("browser.search.selectedEngine", "Avira SafeSearch"); [w4h7yppd.default\prefs.js] - Zeile Gelöscht : user_pref("browser.uiCustomization.state", "{\"placements\":{\"PanelUI-contents\":[\"edit-controls\",\"zoom-controls\",\"new-window-button\",\"privatebrowsing-button\",\"save-page-button\",\"print-but[...] [w4h7yppd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.safesearch.MP_DISTINCT_ID", "\"147a71ff1fb2d-09a819b83a5c0c8-7f6f1435-0-147a71ff1fc2b0\""); [w4h7yppd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.safesearch.SAUTH_expires_at", "1425583977"); [w4h7yppd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.safesearch.SAUTH_rndsnr", "\"ad40f69a8cd949583f6de4c20e47b70e49011d7c\""); [w4h7yppd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.safesearch.SAUTH_userid", "4290682933"); [w4h7yppd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.safesearch.SAUTH_utoken", "\"bfb969975f0dc619a1701aad6416e948422b71c0\""); [w4h7yppd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.safesearch.install", "1407258194432"); [w4h7yppd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.xpiState", "{\"app-profile\":{\"2020Player_IKEA@2020Technologies.com\":{\"d\":\"C:\\\\Users\\\\Thomas\\\\AppData\\\\Roaming\\\\Mozilla\\\\Firefox\\\\Profiles\\\\w4h7yppd.default\[...] [w4h7yppd.default\prefs.js] - Zeile Gelöscht : user_pref("keyword.URL", "hxxp://www.sm.de/?q="); ************************* AdwCleaner[R0].txt - [2413 Bytes] - [06/04/2014 08:27:23] AdwCleaner[R1].txt - [3922 Bytes] - [02/03/2015 15:42:29] AdwCleaner[S0].txt - [2110 Bytes] - [06/04/2014 08:30:07] AdwCleaner[S1].txt - [3813 Bytes] - [02/03/2015 15:45:31] ########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [3872 Bytes] ########## FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 02-03-2015 Ran by Thomas (administrator) on WOHNZI on 02-03-2015 16:12:33 Running from C:\Users\Thomas\Downloads Loaded Profiles: Thomas & (Available profiles: Thomas) Platform: Microsoft Windows 8.1 Pro mit Media Center (X86) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Lenovo.) C:\Windows\System32\ibmpmsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe (AVM Berlin) C:\Program Files\avmwlanstick\WLanNetService.exe (AVM GmbH) C:\Program Files\FRITZ!Powerline\PowerlineService.exe (Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe () C:\ProgramData\DatacardService\HWDeviceService.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe () C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe (Sony Corporation) C:\Program Files\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (TeamViewer GmbH) C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (AVM Berlin) C:\Program Files\avmwlanstick\WLanGUI.exe (Sony Corporation) C:\Program Files\Sony\PlayMemories Home\PMBVolumeWatcher.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Mister Group) C:\Program Files\System Explorer\SystemExplorer.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe (Microsoft Corporation) C:\Windows\WindowsMobile\wmdc.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe (Microsoft Corporation) C:\Windows\System32\StikyNot.exe (Mister Group) C:\Program Files\System Explorer\service\SystemExplorerService.exe (Malwarebytes Corporation) C:\Program Files\ Malwarebytes Anti-Malware \mbam.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated) HKLM\...\Run: [AVMWlanClient] => C:\Program Files\avmwlanstick\wlangui.exe [1753088 2008-02-25] (AVM Berlin) HKLM\...\Run: [KeePass 2 PreLoad] => C:\Program Files\KeePass Password Safe 2\KeePass.exe [2109952 2014-10-07] (Dominik Reichl) HKLM\...\Run: [PMBVolumeWatcher] => C:\Program Files\Sony\PlayMemories Home\PMBVolumeWatcher.exe [739936 2012-11-27] (Sony Corporation) HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [702768 2014-12-18] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [SystemExplorerAutoStart] => C:\Program Files\System Explorer\SystemExplorer.exe [3391200 2015-02-17] (Mister Group) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2379504 2013-04-24] (Synaptics Incorporated) HKLM\...\Run: [Windows Mobile Device Center] => C:\WINDOWS\WindowsMobile\wmdc.exe [648072 2007-05-31] (Microsoft Corporation) HKLM\...\Run: [LexwareInfoService] => C:\Program Files\Common Files\Lexware\Update Manager\LxUpdateManager.exe [189808 2011-07-31] (Haufe-Lexware GmbH & Co. KG) HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [126712 2015-01-19] (Avira Operations GmbH & Co. KG) HKU\S-1-5-21-4260534663-4186047114-1034053783-1000\...\Run: [RESTART_STICKY_NOTES] => C:\Windows\System32\StikyNot.exe [407040 2014-10-29] (Microsoft Corporation) HKU\S-1-5-21-4260534663-4186047114-1034053783-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-4260534663-4186047114-1034053783-1000\...\MountPoints2: {1c78e8cd-6fbf-11e3-b007-00a0c6000000} - "D:\AutoRun.exe" HKU\S-1-5-21-4260534663-4186047114-1034053783-1000\...\MountPoints2: {1c78e92e-6fbf-11e3-b007-00a0c6000000} - "D:\AutoRun.exe" HKU\S-1-5-21-4260534663-4186047114-1034053783-1000\...\MountPoints2: {56f670c9-6c73-11e3-b005-00a0c6000000} - "D:\AutoRun.exe" HKU\S-1-5-21-4260534663-4186047114-1034053783-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [RESTART_STICKY_NOTES] => C:\Windows\System32\StikyNot.exe [407040 2014-10-29] (Microsoft Corporation) HKU\S-1-5-21-4260534663-4186047114-1034053783-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-4260534663-4186047114-1034053783-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {1c78e8cd-6fbf-11e3-b007-00a0c6000000} - "D:\AutoRun.exe" HKU\S-1-5-21-4260534663-4186047114-1034053783-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {1c78e92e-6fbf-11e3-b007-00a0c6000000} - "D:\AutoRun.exe" HKU\S-1-5-21-4260534663-4186047114-1034053783-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {56f670c9-6c73-11e3-b005-00a0c6000000} - "D:\AutoRun.exe" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Quicken 2014 Zahlungserinnerung.lnk ShortcutTarget: Quicken 2014 Zahlungserinnerung.lnk -> C:\Windows\Installer\{E60036CF-1E46-4DFE-832F-5476574B30FF}\BillMinder.8C5DA79E_7079_4AB3_81F7_712153351D0D.exe (Macrovision Corporation) Startup: C:\Users\Thomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (No File) Startup: C:\Users\Thomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EventGhost.lnk ShortcutTarget: EventGhost.lnk -> C:\Program Files\EventGhost\EventGhost.exe (EventGhost Project) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKU\S-1-5-21-4260534663-4186047114-1034053783-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKU\S-1-5-21-4260534663-4186047114-1034053783-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation) DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_21-windows-i586.cab DPF: {CAFEEFAC-0017-0000-0021-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_21-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_21-windows-i586.cab Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Thomas\AppData\Roaming\Mozilla\Firefox\Profiles\w4h7yppd.default FF NewTab: https://safesearch.avira.com/#?source=newtab FF SearchEngineOrder.1: SuchMaschine FF Homepage: hxxp://www.google.de/ FF Keyword.URL: hxxp://www.sm.de/?q= FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll () FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Users\Thomas\AppData\Roaming\Mozilla\Firefox\Profiles\w4h7yppd.default\searchplugins\avira-safesearch.xml FF SearchPlugin: C:\Users\Thomas\AppData\Roaming\Mozilla\Firefox\Profiles\w4h7yppd.default\searchplugins\search_engine.xml FF Extension: FoxyDeal - C:\Users\Thomas\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\{F58A62EB-38DC-43C4-A539-DC52E135208D} [2013-01-12] FF Extension: 20-20 3D Viewer - IKEA - C:\Users\Thomas\AppData\Roaming\Mozilla\Firefox\Profiles\w4h7yppd.default\Extensions\2020Player_IKEA@2020Technologies.com [2013-11-28] FF Extension: Avira Browser Safety - C:\Users\Thomas\AppData\Roaming\Mozilla\Firefox\Profiles\w4h7yppd.default\Extensions\abs@avira.com [2015-02-02] FF Extension: KeeFox - C:\Users\Thomas\AppData\Roaming\Mozilla\Firefox\Profiles\w4h7yppd.default\Extensions\keefox@chris.tomlinson [2015-01-26] FF Extension: Avira SafeSearch - C:\Users\Thomas\AppData\Roaming\Mozilla\Firefox\Profiles\w4h7yppd.default\Extensions\safesearch@avira.com [2015-02-26] FF Extension: Adblock Plus - C:\Users\Thomas\AppData\Roaming\Mozilla\Firefox\Profiles\w4h7yppd.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-02-05] FF Extension: No Name - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} [2014-11-14] Chrome: ======= CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx ========================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [431920 2014-12-18] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [431920 2014-12-18] (Avira Operations GmbH & Co. KG) R2 Avira.OE.ServiceHost; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [182520 2015-01-19] (Avira Operations GmbH & Co. KG) R2 AVM WLAN Connection Service; C:\Program Files\avmwlanstick\WlanNetService.exe [364544 2008-02-25] (AVM Berlin) [File not signed] R2 AVMPowerlineService; C:\Program Files\FRITZ!Powerline\PowerlineService.exe [126976 2013-10-11] (AVM GmbH) [File not signed] R2 BcmBtRSupport; C:\WINDOWS\system32\BtwRSupportService.exe [1680088 2013-10-28] (Broadcom Corporation.) S3 BthHFSrv; C:\WINDOWS\System32\BthHFSrv.dll [250880 2014-10-29] (Microsoft Corporation) R2 HWDeviceService.exe; C:\ProgramData\DatacardService\HWDeviceService.exe [271712 2011-03-14] () S2 Mobile Partner. RunOuc; C:\Program Files\Mobile Partner\UpdateDog\ouc.exe [246112 2013-12-28] () S2 Net Driver HPZ12; C:\WINDOWS\system32\HPZinw12.dll [45568 2012-02-08] (Hewlett-Packard) [File not signed] R2 PMBDeviceInfoProvider; C:\Program Files\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [479840 2012-11-27] (Sony Corporation) S2 Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.dll [55808 2012-02-08] (Hewlett-Packard) [File not signed] S3 ScDeviceEnum; C:\WINDOWS\System32\ScDeviceEnum.dll [103936 2014-10-29] (Microsoft Corporation) R3 SystemExplorerHelpService; C:\Program Files\System Explorer\service\SystemExplorerService.exe [567008 2014-12-20] (Mister Group) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [288128 2014-09-22] (Microsoft Corporation) S3 WEPHOSTSVC; C:\WINDOWS\system32\wephostsvc.dll [20992 2014-10-29] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [22192 2014-09-22] (Microsoft Corporation) S3 workfolderssvc; C:\WINDOWS\system32\workfolderssvc.dll [1269248 2014-10-29] (Microsoft Corporation) S3 x10nets; C:\Program Files\Common Files\X10\Common\X10nets.exe [20480 2001-11-12] (X10) [File not signed] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 ASAPIW2k; C:\WINDOWS\System32\drivers\ASAPIW2k.sys [11264 2004-03-10] (Pinnacle Systems GmbH) [File not signed] R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [98160 2014-10-16] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [136216 2014-10-16] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [37352 2013-11-27] (Avira Operations GmbH & Co. KG) R1 BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys [25600 2014-02-22] (Microsoft Corporation) R3 bcbtums; C:\WINDOWS\system32\drivers\bcbtums.sys [175320 2013-10-28] (Broadcom Corporation.) S3 btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [144600 2013-08-09] (Broadcom Corporation.) R3 e1kexpress; C:\WINDOWS\system32\DRIVERS\e1k6332.sys [407400 2013-01-28] (Intel Corporation) S3 GPIO; C:\WINDOWS\System32\drivers\iaiogpio.sys [22016 2013-07-23] (Intel Corporation) R3 MarvinBus; C:\WINDOWS\System32\drivers\MarvinBus.sys [171520 2007-01-04] (Pinnacle Systems GmbH) R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [114904 2015-03-02] (Malwarebytes Corporation) R3 NETwNs32; C:\WINDOWS\system32\DRIVERS\Netwsn00.sys [10372096 2013-06-18] (Intel Corporation) R2 npf; C:\WINDOWS\System32\drivers\npf.sys [35088 2011-02-11] (CACE Technologies, Inc.) R1 PCLEPCI; C:\WINDOWS\system32\drivers\pclepci.sys [14165 2004-07-16] (Pinnacle Systems GmbH) [File not signed] S4 RsFx0105; C:\WINDOWS\System32\DRIVERS\RsFx0105.sys [238696 2011-09-22] (Microsoft Corporation) R1 ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [28520 2013-04-16] (Avira GmbH) S3 TPPWRIF; C:\Program Files\Lenovo Battery Utility 2014\TPPWR32V.sys [19712 2014-03-05] (Lenovo Group Limited) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [84800 2014-09-22] (Microsoft Corporation) R0 Wof; C:\WINDOWS\system32\Drivers\Wof.sys [138584 2014-03-13] (Microsoft Corporation) S3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [190976 2014-10-29] (Microsoft Corporation) S3 ewusbnet; \SystemRoot\system32\DRIVERS\ewusbnet.sys [X] U3 idsvc; No ImagePath ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-03-02 16:12 - 2015-03-02 16:12 - 00016297 _____ () C:\Users\Thomas\Downloads\FRST.txt 2015-03-02 16:11 - 2015-03-02 16:12 - 00000000 ____D () C:\FRST 2015-03-02 16:10 - 2015-03-02 16:10 - 01132032 _____ (Farbar) C:\Users\Thomas\Downloads\FRST.exe 2015-03-02 16:09 - 2015-03-02 16:10 - 00000474 _____ () C:\Users\Thomas\Downloads\defogger_disable.log 2015-03-02 16:09 - 2015-03-02 16:09 - 00050477 _____ () C:\Users\Thomas\Downloads\Defogger.exe 2015-03-02 16:09 - 2015-03-02 16:09 - 00000000 _____ () C:\Users\Thomas\defogger_reenable 2015-03-02 15:41 - 2015-03-02 15:41 - 02126848 _____ () C:\Users\Thomas\Downloads\adwcleaner_4.111.exe 2015-02-28 19:05 - 2015-02-28 19:05 - 28674720 _____ () C:\Users\Thomas\Downloads\vlc-2.2.0-win32.exe 2015-02-26 20:40 - 2014-12-13 22:29 - 00513488 _____ () C:\WINDOWS\system32\locale.nls 2015-02-17 21:55 - 2015-02-17 21:55 - 00000000 ____D () C:\Program Files\Common Files\Java 2015-02-17 21:46 - 2015-02-17 21:46 - 01917352 _____ (Mister Group ) C:\Users\Thomas\Downloads\SystemExplorerSetup_632.exe 2015-02-16 21:19 - 2015-02-16 21:19 - 00000000 ___RD () C:\Users\Thomas\OneDrive 2015-02-16 21:19 - 2015-02-16 21:19 - 00000000 ____D () C:\Users\Thomas\Documents\OneNote-Notizbücher 2015-02-16 21:19 - 2015-02-16 21:19 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive 2015-02-16 21:06 - 2015-02-16 21:06 - 01066168 _____ (Microsoft Corporation) C:\Users\Thomas\Downloads\setuponenotefreeretail.x86.de-de_.exe 2015-02-13 22:57 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-02-11 19:38 - 2015-01-19 19:36 - 01192552 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2015-02-11 19:38 - 2015-01-13 23:04 - 01489072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2015-02-11 19:38 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-02-11 19:38 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-02-11 19:38 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll 2015-02-11 19:38 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-02-11 19:38 - 2015-01-12 02:55 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-02-11 19:38 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll 2015-02-11 19:38 - 2015-01-12 02:34 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2015-02-11 19:38 - 2015-01-12 02:30 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2015-02-11 19:38 - 2015-01-12 02:25 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2015-02-11 19:38 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2015-02-11 19:38 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2015-02-11 19:38 - 2015-01-12 02:23 - 00684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2015-02-11 19:38 - 2015-01-12 02:23 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2015-02-11 19:38 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-02-11 19:38 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-02-11 19:38 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-02-11 19:38 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2015-02-11 19:38 - 2015-01-10 07:38 - 00359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2015-02-11 19:38 - 2014-12-19 09:25 - 00602776 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2015-02-11 19:37 - 2015-01-15 23:37 - 00478776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2015-02-11 19:37 - 2015-01-15 23:37 - 00148288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2015-02-11 19:37 - 2015-01-10 09:28 - 05769024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-02-11 19:37 - 2015-01-10 09:28 - 01468408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2015-02-11 19:37 - 2015-01-10 08:38 - 03550720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2015-02-11 19:37 - 2014-12-09 04:45 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll 2015-02-11 19:37 - 2014-12-09 00:11 - 00391526 _____ () C:\WINDOWS\system32\ApnDatabase.xml ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-03-02 16:09 - 2013-10-18 20:20 - 00000000 ____D () C:\Users\Thomas 2015-03-02 16:00 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\system32\sru 2015-03-02 15:55 - 2014-11-19 20:24 - 00114904 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-03-02 15:52 - 2014-11-18 20:21 - 00000000 ____D () C:\Users\Thomas\AppData\Roaming\WiseUpdate 2015-03-02 15:46 - 2013-09-29 19:55 - 00031892 _____ () C:\WINDOWS\PFRO.log 2015-03-02 15:46 - 2013-08-22 08:23 - 00290798 _____ () C:\WINDOWS\setupact.log 2015-03-02 15:46 - 2013-08-22 08:23 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2015-03-02 15:46 - 2013-08-22 07:13 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI 2015-03-02 15:45 - 2014-04-06 08:27 - 00000000 ____D () C:\AdwCleaner 2015-03-02 15:45 - 2013-10-18 20:35 - 01342282 _____ () C:\WINDOWS\WindowsUpdate.log 2015-03-02 15:39 - 2013-05-13 19:01 - 00000000 ____D () C:\Program Files\VideoLAN 2015-03-02 15:39 - 2012-10-29 21:01 - 00000000 ____D () C:\Users\Thomas\AppData\Roaming\KeePass 2015-03-02 15:37 - 2013-10-18 20:41 - 00001454 _____ () C:\Users\Thomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-03-02 15:37 - 2012-10-25 19:07 - 00001121 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-03-02 15:37 - 2012-10-25 19:07 - 00001109 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2015-03-01 20:06 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\AppReadiness 2015-02-26 20:41 - 2012-07-26 07:43 - 00000000 ____D () C:\WINDOWS\CbsTemp 2015-02-17 21:56 - 2014-10-16 19:48 - 00000000 ____D () C:\Program Files\Java 2015-02-17 21:56 - 2014-02-01 19:38 - 00000000 ____D () C:\ProgramData\Oracle 2015-02-17 21:55 - 2014-10-16 19:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-02-17 21:54 - 2014-10-16 19:49 - 00272296 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe 2015-02-17 21:54 - 2014-10-16 19:48 - 00176552 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe 2015-02-17 21:54 - 2014-10-16 19:48 - 00176552 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe 2015-02-17 21:54 - 2014-10-16 19:48 - 00096680 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll 2015-02-17 21:47 - 2013-05-22 14:44 - 00001020 _____ () C:\Users\Public\Desktop\System Explorer.lnk 2015-02-17 21:47 - 2013-05-22 14:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Explorer 2015-02-17 21:47 - 2013-05-22 14:44 - 00000000 ____D () C:\Program Files\System Explorer 2015-02-17 21:41 - 2014-05-15 20:46 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER 2015-02-17 21:41 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\Microsoft.NET 2015-02-17 21:41 - 2013-08-22 09:17 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2015-02-17 21:40 - 2012-10-25 19:58 - 00000000 ____D () C:\Program Files\Microsoft Office 2015-02-16 20:47 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\rescache 2015-02-11 20:24 - 2014-08-05 18:00 - 00000000 ____D () C:\ProgramData\Package Cache 2015-02-11 20:24 - 2013-04-16 20:13 - 00000000 ____D () C:\Program Files\Avira 2015-02-11 20:24 - 2012-10-25 19:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2015-02-11 20:22 - 2013-08-22 08:22 - 00401512 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2015-02-11 20:20 - 2012-10-25 19:07 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2015-02-11 19:47 - 2013-08-10 20:39 - 00000000 ____D () C:\WINDOWS\system32\MRT 2015-02-11 19:43 - 2012-10-25 18:42 - 113756392 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-02-11 19:42 - 2012-10-25 19:58 - 00000000 ____D () C:\ProgramData\Microsoft Help 2015-02-06 19:34 - 2014-08-24 20:20 - 00000000 ____D () C:\Users\Thomas\AppData\Local\Adobe 2015-02-04 21:48 - 2014-11-14 18:42 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2015-02-03 20:31 - 2013-08-22 09:18 - 00714720 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2015-02-03 20:31 - 2013-08-22 09:18 - 00106976 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl ==================== Files in the root of some directories ======= 2013-12-30 09:21 - 2013-11-06 09:30 - 1456640 _____ () C:\Program Files\Common Files\Falk Navi-Manager.msi 2013-01-12 17:55 - 2013-01-12 19:21 - 0004608 _____ () C:\Users\Thomas\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2012-11-28 22:24 - 2013-08-16 11:12 - 0007603 _____ () C:\Users\Thomas\AppData\Local\Resmon.ResmonCfg 2013-01-10 17:56 - 2013-01-12 19:21 - 0000024 _____ () C:\ProgramData\__FileUploader.log Some content of TEMP: ==================== C:\Users\Thomas\AppData\Local\Temp\avgnt.exe C:\Users\Thomas\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe C:\Users\Thomas\AppData\Local\Temp\jre-7u65-windows-i586-iftw.exe C:\Users\Thomas\AppData\Local\Temp\jre-7u67-windows-i586-iftw.exe C:\Users\Thomas\AppData\Local\Temp\jre-7u71-windows-i586-iftw.exe C:\Users\Thomas\AppData\Local\Temp\jre-8u31-windows-au.exe C:\Users\Thomas\AppData\Local\Temp\MouseKeyboardCenterx86_1031.exe C:\Users\Thomas\AppData\Local\Temp\Quarantine.exe C:\Users\Thomas\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\wininit.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-03-02 15:03 ==================== End Of Log ============================ FRST Additions Logfile: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version: 02-03-2015 Ran by Thomas at 2015-03-02 16:14:01 Running from C:\Users\Thomas\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 32 Bit HP CIO Components Installer (Version: 13.1.1 - Hewlett-Packard) Hidden Adobe Flash Player 16 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) Advanced Archive Password Recovery (HKLM\...\{01011662-76A8-41E8-B1A8-4F8821570AC5}) (Version: 4.54.48.1338 - Elcomsoft Co. Ltd.) Ahnenblatt 2.80 beta 3 (HKLM\...\Ahnenblatt Beta_is1) (Version: 2.80.0.2 - Dirk Böttcher) Allway Sync version 12.3.1 (HKLM\...\Allway Sync_is1) (Version: - Botkind Inc) Avira (HKLM\...\{bd538030-07d4-4999-a525-7fafa2483f56}) (Version: 1.1.30.21727 - Avira Operations & Co. KG) Avira (Version: 1.1.30.21727 - Avira Operations & Co. KG) Hidden Avira Free Antivirus (HKLM\...\Avira AntiVir Desktop) (Version: 14.0.7.468 - Avira) AVM FRITZ!WLAN (HKLM\...\AVMWLANCLI) (Version: - AVM Berlin) ChargeEasy (HKLM\...\ChargeEasy) (Version: 1.13 - ELV Elektronik AG) ChargeEasy (Version: 1.13 - ELV Elektronik AG) Hidden D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden DDBAC (HKLM\...\{88A0F52F-A024-4268-977E-E75B1F9C67ED}) (Version: 5.3.28 - DataDesign) DVDStyler v2.4.3 (HKLM\...\DVDStyler_is1) (Version: - ) EnergyProfessional (HKLM\...\EnergyProfessional) (Version: 1.8 - ELV Elektronik AG) EnergyProfessional (Version: 1.8 - ELV Elektronik AG) Hidden EventGhost 0.4.1.r1600 (HKLM\...\EventGhost_is1) (Version: 0.4.1.r1600 - EventGhost Project) Extended Asian Language font pack for Adobe Reader XI (HKLM\...\{AC76BA86-7AD7-2530-0000-A00000000004}) (Version: 11.0.0 - Adobe Systems Incorporated) Falk Navi-Manager (HKLM\...\{3222B0CE-59C5-4CA0-B545-2B88F200756B}) (Version: 2.24.0 - United Navigation GmbH) Falk Navi-Manager (Version: 2.22.0 - United Navigation GmbH) Hidden Fotogalerie (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Free Screen Video Recorder version 2.5.31.1029 (HKLM\...\Free Screen Video Recorder_is1) (Version: 2.5.31.1029 - DVDVideoSoft Ltd.) FreeCAD 0.13 (HKLM\...\{2B2B5D2B-0F01-410B-843B-8F437FD75FBF}) (Version: 0.13.1828 - Juergen Riegel (FreeCAD@juergen-riegel.net)) FRITZ!Powerline (HKLM\...\{F88975C1-C182-4A51-BEDE-E333AB89F5D4}) (Version: 01.00.57 - AVM Berlin) FS20 IRP2 PC-Software (HKLM\...\FS20 IRP2 PC-Software) (Version: 1.07 - ELV Elektronik AG) FS20 IRP2 PC-Software (Version: 1.07 - ELV Elektronik AG) Hidden GDR 5520 für SQL Server 2008 (KB 2977321) (HKLM\...\KB2977321) (Version: 10.3.5520.0 - Microsoft Corporation) Gleisrechner 3.3 (HKLM\...\Gleisrechner_is1) (Version: - Rodrigo Supper) GPL Ghostscript (HKLM\...\GPL Ghostscript 9.06) (Version: 9.06 - Artifex Software Inc.) GPSBabel 1.4.4 (HKLM\...\{1B8FE958-A304-4902-BF7A-4E2F0F5B7017}_is1) (Version: - GPSBabel) GSview 5.0 (HKLM\...\GSview 5.0) (Version: 5.0 - Ghostgum Software Pty Ltd) homeputer CL 4.0 FHZ2000 (HKLM\...\homeputer CL FHZ2000_is1) (Version: - contronics GmbH) inSSIDer 3 (HKLM\...\{5BB0D82A-4EED-477B-858E-1D5B01560BF5}) (Version: 3.0.5.80 - MetaGeek, LLC) IrfanView (remove only) (HKLM\...\IrfanView) (Version: 4.36 - Irfan Skiljan) Java 8 Update 31 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation) KeePass Password Safe 2.28 (HKLM\...\KeePassPasswordSafe2_is1) (Version: 2.28 - Dominik Reichl) Lenovo Battery Utility 2014 1.2 (HKLM\...\{62D5A67D-E5CC-4D79-8998-DDFDB7750346}_is1) (Version: 1.2 - Lenovo Corp) Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.09.03 - ) Lexware Info Service (HKLM\...\{8AE7E507-BC49-4DF0-A236-26878691AB53}) (Version: 2.90.00.0009 - Haufe-Lexware GmbH & Co.KG) Lexware online banking (HKLM\...\{A64DF516-9CDC-4299-BD34-2B2C80CD453B}) (Version: 19.00.00.0059 - Haufe-Lexware GmbH & Co.KG) Malwarebytes Anti-Malware Version 2.0.4.1028 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation) Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Help Viewer 1.0 (HKLM\...\Microsoft Help Viewer 1.0) (Version: 1.0.30319 - Microsoft Corporation) Microsoft Help Viewer 1.0 Language Pack - DEU (HKLM\...\Microsoft Help Viewer 1.0 Language Pack - DEU) (Version: 1.0.30319 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Home and Student 2007 (HKLM\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server 2008 (HKLM\...\Microsoft SQL Server 10 Release) (Version: - Microsoft Corporation) Microsoft SQL Server 2008 Browser (HKLM\...\{4AF2248C-B3DF-46FB-9596-87F5DB193689}) (Version: 10.3.5500.0 - Microsoft Corporation) Microsoft SQL Server 2008 Native Client (HKLM\...\{539A0EAA-E1BB-4163-9C1E-6C8BF4A17FA2}) (Version: 10.3.5500.0 - Microsoft Corporation) Microsoft SQL Server 2008 Setup Support Files (HKLM\...\{5D60AB1A-2409-4829-83D4-0972856D885A}) (Version: 10.3.5520.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 DEU (HKLM\...\{0125D081-30D0-4A97-82A8-C28D444B6256}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server VSS Writer (HKLM\...\{D074DC76-F6C9-440E-A1D0-1DE958417FDB}) (Version: 10.3.5500.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 Express - DEU (HKLM\...\Microsoft Visual C++ 2010 Express - DEU) (Version: 10.0.30319 - Microsoft Corporation) Microsoft-Maus- und Tastatur-Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation) Mobile Partner (HKLM\...\Mobile Partner) (Version: 21.005.15.00.705 - Huawei Technologies Co.,Ltd) Movie Maker (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Mozilla Firefox 35.0.1 (x86 de) (HKLM\...\Mozilla Firefox 35.0.1 (x86 de)) (Version: 35.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) Mozilla Thunderbird 24.6.0 (x86 de) (HKLM\...\Mozilla Thunderbird 24.6.0 (x86 de)) (Version: 24.6.0 - Mozilla) NetSpeedMonitor 2.5.4.0 x86 (HKLM\...\{86501894-E722-4385-A792-B7C2F28FAE7B}) (Version: 2.5.4.0 - Florian Gilles) PC Wetterstation (HKLM\...\PC Wetterstation) (Version: - ) PDF Split And Merge Basic (HKLM\...\{C91B24F6-1629-11E2-B696-21676188709B}) (Version: 2.2.2 - Andrea Vacondio) Pinnacle Hollywood FX for Studio (HKLM\...\Hollywood FX for Studio) (Version: - ) Pinnacle Instant DVD Recorder (HKLM\...\{EF781A5C-58F5-4BFD-87F9-E4F14D382F25}) (Version: 2.00.088 - ) PlayMemories Home (HKLM\...\{1E5C7043-09C5-4974-A69F-A5271FD82BBC}) (Version: 7.0.00.11271 - Sony Corporation) proDAD Heroglyph 2.5 (HKLM\...\proDAD-Heroglyph-2.5) (Version: - ) proDAD Vitascene 1.0 (HKLM\...\proDAD-Vitascene-1.0) (Version: - ) Quicken DELUXE 2014 (HKLM\...\{E60036CF-1E46-4DFE-832F-5476574B30FF}) (Version: 21.37.00.0185 - Haufe-Lexware GmbH & Co.KG) Qw Update (Version: 1.00.0000 - Ihr Firmenname) Hidden Railroad-Professional 2.1 (HKLM\...\{FC5F2251-1F1E-4821-9913-91D04D98AB0E}) (Version: 2.1.0 - rosutec) Resource Hacker Version 3.6.0 (HKLM\...\ResourceHacker_is1) (Version: - ) Security Task Manager 1.8g (HKLM\...\Security Task Manager) (Version: 1.8g - Neuber Software) Service Pack 3 für SQL Server 2008 (KB2546951) (HKLM\...\KB2546951) (Version: 10.3.5500.0 - Microsoft Corporation) Servicepack Datumsaktualisierung (Version: 1.00.00.0005 - Haufe-Lexware) Hidden Skype™ 6.0 (HKLM\...\{EA17F4FC-FDBF-4CF8-A529-2D983132D053}) (Version: 6.0.120 - Skype Technologies S.A.) Sql Server Customer Experience Improvement Program (Version: 10.3.5500.0 - Microsoft Corporation) Hidden StarMoney (Version: 3.0.5.8 - StarFinanz) Hidden Studio 11 (HKLM\...\{110B1ADF-2EAE-4E8F-B501-D2A1E6D8ED9D}) (Version: 11.0 - Pinnacle Systems) Studio 11 (Version: 11.0.0.0 - Pinnacle Systems) Hidden Studio 11 Bonus DVD (HKLM\...\{45A1BF92-700A-4408-B95E-79F462E3D67D}) (Version: 11.0.0.0 - Pinnacle Systems) Studio 9 (HKLM\...\{9E491AB7-4589-48CA-9CBB-874CB2788391}) (Version: 9.4 - Pinnacle Systems) System Explorer 6.3.2 (HKLM\...\{40F485F7-6478-4896-B0D5-F94BE677EB78}_is1) (Version: - Mister Group) TeamViewer 7 (HKLM\...\TeamViewer 7) (Version: 7.0.15723 - TeamViewer) ThinkPad UltraNav Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.19.7 - ) Top Set 2.00 (HKLM\...\TFSETTOP_is1) (Version: 2.00 - Aldarin) Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) UT70D Interface Program_Ver 1.00 (HKLM\...\{DCF0505D-84DF-4313-BA7C-2856AF022100}) (Version: 1.00.0000 - DMM) VideoPad Videobearbeitungs-Software (HKLM\...\VideoPad) (Version: - NCH Software) Visio Technical (HKLM\...\Visio Technical) (Version: - ) Windows Driver Package - Broadcom (BTHUSB) Bluetooth (04/08/2010 6.3.5.430) (HKLM\...\2004BB9EB6CEA02846881BEF1F51C11F7A90C9D6) (Version: 04/08/2010 6.3.5.430 - Broadcom) Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (HKLM\...\BF20603967CFDCB2BBF91950E8A56DFBC5C833FE) (Version: 07/28/2009 6.2.0.9800 - Broadcom) Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) Windows Mobile Device Center Driver Update (HKLM\...\{E7044E25-3038-4A76-9064-344AC038043E}) (Version: 6.1.6965.0 - Microsoft Corporation) Windows Mobile-Gerätecenter (HKLM\...\{904CCF62-818D-4675-BC76-D37EB399F917}) (Version: 6.1.6965.0 - Microsoft Corporation) WinPcap 4.1.2 (HKLM\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies) WinRAR 5.00 (32-Bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH) Wise Registry Cleaner 8.31 (HKLM\...\Wise Registry Cleaner_is1) (Version: 8.31 - WiseCleaner.com, Inc.) Yahoo! Desktop Login (Version: 1.00.0001 - Pinnacle Systems) Hidden ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 21-12-2014 21:51:49 Windows Update 05-01-2015 21:25:53 Geplanter Prüfpunkt 15-01-2015 21:05:36 Windows Update 18-01-2015 21:31:24 Windows Update 29-01-2015 20:56:58 Windows Update 05-02-2015 20:35:19 Windows Update 11-02-2015 19:39:09 Windows Update 26-02-2015 20:40:32 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 07:13 - 2013-08-22 07:13 - 00000824 ____N C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {31F98103-33C8-42AE-B189-EF18CE958F39} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-02-11] (Microsoft Corporation) Task: {46DE37D8-8EFF-4C95-9B09-AC58106AFA3F} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2014-03-19] (Microsoft) Task: {928A14E4-9425-491D-A8E0-7F0796B2443F} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation) Task: {A0097BF6-5644-4149-93EC-521CF127F6F6} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation) Task: {C05EC95B-2687-48F4-BE99-9196C7F04392} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation) Task: {C07ECD97-EF53-4BE5-BAA9-7F6BB9756B02} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation) Task: {FDE55D63-C528-4FDD-B913-1FC441E8F9F2} - System32\Tasks\Microsoft\Windows\WCM\Provisioning\Purge.S-1-5-21-4260534663-4186047114-1034053783-1000 (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Loaded Modules (whitelisted) ============== 2011-03-14 16:27 - 2011-03-14 16:27 - 00271712 _____ () C:\ProgramData\DatacardService\HWDeviceService.exe 2013-12-28 13:58 - 2013-12-28 13:57 - 00246112 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe 2013-12-28 13:58 - 2013-12-28 13:57 - 00011362 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\mingwm10.dll 2013-12-28 13:58 - 2013-12-28 13:57 - 00043008 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\libgcc_s_dw2-1.dll 2013-12-28 13:58 - 2013-12-28 13:57 - 02415104 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtCore4.dll 2013-12-28 13:58 - 2013-12-28 13:57 - 01148416 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtNetwork4.dll 2013-12-28 13:58 - 2013-12-28 13:57 - 00384512 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QueryStrategy.dll 2013-12-28 13:58 - 2013-12-28 13:57 - 00398336 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtXml4.dll 2014-11-14 18:42 - 2015-02-04 21:48 - 03925104 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll 2012-11-26 22:54 - 2012-11-26 22:54 - 00094208 _____ () C:\Windows\System32\IccLibDll.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\Thomas\SkyDrive:ms-properties ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-4260534663-4186047114-1034053783-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Thomas\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\dualwallpaper.bmp HKU\S-1-5-21-4260534663-4186047114-1034053783-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Users\Thomas\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\dualwallpaper.bmp DNS Servers: 192.168.178.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\StartupFolder: => "Quicken 2010 Zahlungserinnerung.lnk" HKLM\...\StartupApproved\Run: => "KeePass 2 PreLoad" HKLM\...\StartupApproved\Run: => "LexwareInfoService" HKU\S-1-5-21-4260534663-4186047114-1034053783-1000\...\StartupApproved\StartupFolder: => "EventGhost.lnk" HKU\S-1-5-21-4260534663-4186047114-1034053783-1000\...\StartupApproved\Run: => "Copernic Desktop Search - Home" HKU\S-1-5-21-4260534663-4186047114-1034053783-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\StartupFolder: => "EventGhost.lnk" HKU\S-1-5-21-4260534663-4186047114-1034053783-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "Copernic Desktop Search - Home" ==================== Accounts: ============================= Administrator (S-1-5-21-4260534663-4186047114-1034053783-500 - Administrator - Disabled) Gast (S-1-5-21-4260534663-4186047114-1034053783-501 - Limited - Enabled) HomeGroupUser$ (S-1-5-21-4260534663-4186047114-1034053783-1006 - Limited - Enabled) Thomas (S-1-5-21-4260534663-4186047114-1034053783-1000 - Administrator - Enabled) => C:\Users\Thomas ==================== Faulty Device Manager Devices ============= Name: Qualcomm Gobi 2000 Description: Qualcomm Gobi 2000 Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (02/28/2015 10:14:00 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm LiveComm.exe, Version 17.5.9600.20689 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 123c Startzeit: 01d052cef4216ab4 Endzeit: 4294967295 Anwendungspfad: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x86__8wekyb3d8bbwe\LiveComm.exe Berichts-ID: 38bdbf9b-bec2-11e4-b304-cc52af4cb975 Vollständiger Name des fehlerhaften Pakets: microsoft.windowscommunicationsapps_17.5.9600.20689_x86__8wekyb3d8bbwe Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ppleae38af2e007f4358a809ac99a64a67c1 Error: (02/24/2015 09:40:54 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.3.9600.17415, Zeitstempel: 0x5450367b Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17630, Zeitstempel: 0x54b0d747 Ausnahmecode: 0xc0000374 Fehleroffset: 0x000d0c62 ID des fehlerhaften Prozesses: 0xfd4 Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0 Pfad der fehlerhaften Anwendung: Explorer.EXE1 Pfad des fehlerhaften Moduls: Explorer.EXE2 Berichtskennung: Explorer.EXE3 Vollständiger Name des fehlerhaften Pakets: Explorer.EXE4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Explorer.EXE5 Error: (02/17/2015 09:44:17 PM) (Source: Desktop Window Manager) (EventID: 9020) (User: ) Description: Der Desktopfenster-Manager hat einen schwerwiegenden Fehler (0x8898008d) festgestellt. Error: (02/11/2015 08:00:51 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm LiveComm.exe, Version 17.5.9600.20689 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1f18 Startzeit: 01d0462c547316af Endzeit: 4294967295 Anwendungspfad: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x86__8wekyb3d8bbwe\LiveComm.exe Berichts-ID: 48175254-b220-11e4-b301-cc52af4cb975 Vollständiger Name des fehlerhaften Pakets: microsoft.windowscommunicationsapps_17.5.9600.20689_x86__8wekyb3d8bbwe Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ppleae38af2e007f4358a809ac99a64a67c1 Error: (02/11/2015 07:57:35 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"1". Die abhängige Assemblierung "Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (02/11/2015 07:57:34 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"1". Die abhängige Assemblierung "Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (02/11/2015 07:54:52 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1". Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (02/11/2015 07:47:11 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: SQLAgent$SQLEXPRESSperf-SQLAgent$SQLEXPRESS-sqlagtctr10.1.2531.0.dll4 Error: (02/11/2015 07:47:10 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: MSSQL$SQLEXPRESSperf-MSSQL$SQLEXPRESS-sqlctr10.3.5500.0.dll4 Error: (02/02/2015 08:26:46 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm wwahost.exe, Version 6.3.9600.17415 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1830 Startzeit: 01d03e76fa4014c3 Endzeit: 4294967295 Anwendungspfad: C:\WINDOWS\system32\wwahost.exe Berichts-ID: 6676ea1c-ab11-11e4-b301-cc52af4cb975 Vollständiger Name des fehlerhaften Pakets: VodafoneGroupServices.VodafoneMobileBroadband_1.1.3.2267_neutral__cx08jceyq9bcp Anwendungs-ID, die relativ zum fehlerhaften Paket ist: vodafone.group.mbb System errors: ============= Error: (03/02/2015 03:52:49 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 5 Error: (03/02/2015 03:46:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Mobile Partner. OUC" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (03/02/2015 03:46:39 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Mobile Partner. OUC erreicht. Error: (03/02/2015 03:40:18 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 5 Error: (03/02/2015 03:36:15 PM) (Source: DCOM) (EventID: 10010) (User: Wohnzi) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (03/02/2015 03:03:38 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 5 Error: (03/02/2015 03:03:34 PM) (Source: DCOM) (EventID: 10010) (User: Wohnzi) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Error: (03/01/2015 08:16:40 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 4 Error: (02/28/2015 10:07:27 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 5 Error: (02/28/2015 07:07:04 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 4 Microsoft Office Sessions: ========================= CodeIntegrity Errors: =================================== Date: 2015-01-21 19:06:05.691 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements. Date: 2015-01-21 19:06:05.644 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements. Date: 2015-01-21 19:06:05.636 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements. Date: 2015-01-21 19:06:05.584 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements. Date: 2015-01-21 19:06:05.462 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements. Date: 2015-01-21 19:06:05.345 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements. Date: 2015-01-21 19:06:04.359 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements. Date: 2015-01-21 19:06:04.212 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements. Date: 2014-11-24 20:08:29.237 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements. Date: 2014-11-24 20:08:29.168 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5 CPU M 520 @ 2.40GHz Percentage of memory in use: 53% Total physical RAM: 2931.67 MB Available physical RAM: 1376.09 MB Total Pagefile: 3443.67 MB Available Pagefile: 1577.28 MB Total Virtual: 2047.88 MB Available Virtual: 1860.87 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:297.99 GB) (Free:227.13 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: B93ACF29) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=298 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
02.03.2015, 17:43 | #2 |
/// the machine /// TB-Ausbilder | einzelne URL Adresse nicht erreichbar hi,
__________________So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
Downloade dir bitte Farbar's MiniToolBox auf deinen Desktop und starte das Tool Setze einen Haken bei folgenden Einträgen
__________________ |
02.03.2015, 17:48 | #3 |
| einzelne URL Adresse nicht erreichbar Hier der Inhalt von Result.txt der MiniToolBox
__________________Code:
ATTFilter MiniToolBox by Farbar Version: 30-11-2014 Ran by Thomas (administrator) on 02-03-2015 at 17:45:06 Running from "C:\Users\Thomas\Downloads" Microsoft Windows 8.1 Pro mit Media Center (X86) Boot Mode: Normal *************************************************************************** ========================= Flush DNS: =================================== Windows-IP-Konfiguration Der DNS-Aufl�sungscache wurde geleert. ========================= IE Proxy Settings: ============================== Proxy is not enabled. No Proxy Server is set. "Reset IE Proxy Settings": IE Proxy Settings were reset. ========================= FF Proxy Settings: ============================== "Reset FF Proxy Settings": Firefox Proxy settings were reset. ========================= Hosts content: ================================= ========================= IP Configuration: ================================ Intel(R) Centrino(R) Advanced-N 6200 AGN = WiFi 2 (Connected) Intel(R) 82577LM Gigabit Network Connection = LAN-Verbindung (Media disconnected) Bluetooth-Gerät (PAN) = Bluetooth-Netzwerkverbindung (Media disconnected) # ---------------------------------- # IPv4-Konfiguration # ---------------------------------- pushd interface ipv4 reset set global defaultcurhoplimit=64 icmpredirects=enabled set interface interface="ethernet_4" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled set interface interface="LAN-Verbindung" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled set interface interface="WiFi 2" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled set interface interface="Bluetooth-Netzwerkverbindung" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled set interface interface="LAN-Verbindung* 1" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled popd # Ende der IPv4-Konfiguration Windows-IP-Konfiguration Hostname . . . . . . . . . . . . : Wohnzi Prim�res DNS-Suffix . . . . . . . : Knotentyp . . . . . . . . . . . . : Hybrid IP-Routing aktiviert . . . . . . : Nein WINS-Proxy aktiviert . . . . . . : Nein DNS-Suffixsuchliste . . . . . . . : fritz.box Ethernet-Adapter Bluetooth-Netzwerkverbindung: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Bluetooth-Ger�t (PAN) Physische Adresse . . . . . . . . : CC-52-AF-4C-B9-75 DHCP aktiviert. . . . . . . . . . : Ja Autokonfiguration aktiviert . . . : Ja Drahtlos-LAN-Adapter WiFi 2: Verbindungsspezifisches DNS-Suffix: fritz.box Beschreibung. . . . . . . . . . . : Intel(R) Centrino(R) Advanced-N 6200 AGN Physische Adresse . . . . . . . . : 18-3D-A2-0B-AB-28 DHCP aktiviert. . . . . . . . . . : Ja Autokonfiguration aktiviert . . . : Ja Verbindungslokale IPv6-Adresse . : fe80::e852:fafd:df26:7962%4(Bevorzugt) IPv4-Adresse . . . . . . . . . . : 192.168.178.29(Bevorzugt) Subnetzmaske . . . . . . . . . . : 255.255.255.0 Lease erhalten. . . . . . . . . . : Montag, 2. M�rz 2015 17:02:38 Lease l�uft ab. . . . . . . . . . : Donnerstag, 12. M�rz 2015 17:02:38 Standardgateway . . . . . . . . . : 192.168.178.1 DHCP-Server . . . . . . . . . . . : 192.168.178.1 DHCPv6-IAID . . . . . . . . . . . : 437796258 DHCPv6-Client-DUID. . . . . . . . : 00-01-00-01-18-3C-35-AD-F0-DE-F1-4A-02-68 DNS-Server . . . . . . . . . . . : 192.168.178.1 NetBIOS �ber TCP/IP . . . . . . . : Aktiviert Ethernet-Adapter LAN-Verbindung: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: fritz.box Beschreibung. . . . . . . . . . . : Intel(R) 82577LM Gigabit Network Connection Physische Adresse . . . . . . . . : F0-DE-F1-4A-02-68 DHCP aktiviert. . . . . . . . . . : Ja Autokonfiguration aktiviert . . . : Ja Tunneladapter isatap.fritz.box: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: fritz.box Beschreibung. . . . . . . . . . . : Microsoft-ISATAP-Adapter Physische Adresse . . . . . . . . : 00-00-00-00-00-00-00-E0 DHCP aktiviert. . . . . . . . . . : Nein Autokonfiguration aktiviert . . . : Ja Tunneladapter LAN-Verbindung* 13: Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Teredo Tunneling Pseudo-Interface Physische Adresse . . . . . . . . : 00-00-00-00-00-00-00-E0 DHCP aktiviert. . . . . . . . . . : Nein Autokonfiguration aktiviert . . . : Ja IPv6-Adresse. . . . . . . . . . . : 2001:0:9d38:6abd:103d:24ed:a333:d0ef(Bevorzugt) Verbindungslokale IPv6-Adresse . : fe80::103d:24ed:a333:d0ef%8(Bevorzugt) Standardgateway . . . . . . . . . : :: DHCPv6-IAID . . . . . . . . . . . : 167772160 DHCPv6-Client-DUID. . . . . . . . : 00-01-00-01-18-3C-35-AD-F0-DE-F1-4A-02-68 NetBIOS �ber TCP/IP . . . . . . . : Deaktiviert Server: fritz.box Address: 192.168.178.1 Name: google.com Addresses: 2a00:1450:4001:806::100e 173.194.112.194 173.194.112.195 173.194.112.196 173.194.112.197 173.194.112.198 173.194.112.199 173.194.112.200 173.194.112.201 173.194.112.206 173.194.112.192 173.194.112.193 Ping wird ausgef�hrt f�r google.com [173.194.112.194] mit 32 Bytes Daten: Antwort von 173.194.112.194: Bytes=32 Zeit=31ms TTL=56 Antwort von 173.194.112.194: Bytes=32 Zeit=30ms TTL=56 Ping-Statistik f�r 173.194.112.194: Pakete: Gesendet = 2, Empfangen = 2, Verloren = 0 (0% Verlust), Ca. Zeitangaben in Millisek.: Minimum = 30ms, Maximum = 31ms, Mittelwert = 30ms Server: fritz.box Address: 192.168.178.1 Name: yahoo.com Addresses: 206.190.36.45 98.138.253.109 98.139.183.24 Ping wird ausgef�hrt f�r yahoo.com [206.190.36.45] mit 32 Bytes Daten: Antwort von 206.190.36.45: Bytes=32 Zeit=191ms TTL=50 Antwort von 206.190.36.45: Bytes=32 Zeit=298ms TTL=50 Ping-Statistik f�r 206.190.36.45: Pakete: Gesendet = 2, Empfangen = 2, Verloren = 0 (0% Verlust), Ca. Zeitangaben in Millisek.: Minimum = 191ms, Maximum = 298ms, Mittelwert = 244ms Ping wird ausgef�hrt f�r 127.0.0.1 mit 32 Bytes Daten: Antwort von 127.0.0.1: Bytes=32 Zeit<1ms TTL=64 Antwort von 127.0.0.1: Bytes=32 Zeit<1ms TTL=64 Ping-Statistik f�r 127.0.0.1: Pakete: Gesendet = 2, Empfangen = 2, Verloren = 0 (0% Verlust), Ca. Zeitangaben in Millisek.: Minimum = 0ms, Maximum = 0ms, Mittelwert = 0ms =========================================================================== Schnittstellenliste 6...cc 52 af 4c b9 75 ......Bluetooth-Ger�t (PAN) 4...18 3d a2 0b ab 28 ......Intel(R) Centrino(R) Advanced-N 6200 AGN 3...f0 de f1 4a 02 68 ......Intel(R) 82577LM Gigabit Network Connection 1...........................Software Loopback Interface 1 7...00 00 00 00 00 00 00 e0 Microsoft-ISATAP-Adapter 8...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface =========================================================================== IPv4-Routentabelle =========================================================================== Aktive Routen: Netzwerkziel Netzwerkmaske Gateway Schnittstelle Metrik 0.0.0.0 0.0.0.0 192.168.178.1 192.168.178.29 25 127.0.0.0 255.0.0.0 Auf Verbindung 127.0.0.1 306 127.0.0.1 255.255.255.255 Auf Verbindung 127.0.0.1 306 127.255.255.255 255.255.255.255 Auf Verbindung 127.0.0.1 306 192.168.178.0 255.255.255.0 Auf Verbindung 192.168.178.29 281 192.168.178.29 255.255.255.255 Auf Verbindung 192.168.178.29 281 192.168.178.255 255.255.255.255 Auf Verbindung 192.168.178.29 281 224.0.0.0 240.0.0.0 Auf Verbindung 127.0.0.1 306 224.0.0.0 240.0.0.0 Auf Verbindung 192.168.178.29 281 255.255.255.255 255.255.255.255 Auf Verbindung 127.0.0.1 306 255.255.255.255 255.255.255.255 Auf Verbindung 192.168.178.29 281 =========================================================================== St�ndige Routen: Keine IPv6-Routentabelle =========================================================================== Aktive Routen: If Metrik Netzwerkziel Gateway 8 306 ::/0 Auf Verbindung 1 306 ::1/128 Auf Verbindung 8 306 2001::/32 Auf Verbindung 8 306 2001:0:9d38:6abd:103d:24ed:a333:d0ef/128 Auf Verbindung 4 281 fe80::/64 Auf Verbindung 8 306 fe80::/64 Auf Verbindung 8 306 fe80::103d:24ed:a333:d0ef/128 Auf Verbindung 4 281 fe80::e852:fafd:df26:7962/128 Auf Verbindung 1 306 ff00::/8 Auf Verbindung 4 281 ff00::/8 Auf Verbindung 8 306 ff00::/8 Auf Verbindung =========================================================================== St�ndige Routen: Keine ========================= Winsock entries ===================================== Catalog5 01 C:\WINDOWS\system32\napinsp.dll [55296] (Microsoft Corporation) Catalog5 02 C:\WINDOWS\system32\pnrpnsp.dll [70144] (Microsoft Corporation) Catalog5 03 C:\WINDOWS\system32\pnrpnsp.dll [70144] (Microsoft Corporation) Catalog5 04 C:\WINDOWS\system32\NLAapi.dll [65536] (Microsoft Corporation) Catalog5 05 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog5 06 C:\WINDOWS\system32\winrnr.dll [23040] (Microsoft Corporation) Catalog5 07 C:\WINDOWS\system32\wshbth.dll [50688] (Microsoft Corporation) Catalog9 01 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 02 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 03 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 04 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 05 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 06 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 07 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 08 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 09 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 10 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 11 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 12 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 13 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 14 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 15 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 16 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 17 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 18 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 19 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 20 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 21 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 22 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 23 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 24 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 25 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 26 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 27 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 28 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 29 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 30 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) Catalog9 31 C:\WINDOWS\system32\mswsock.dll [286208] (Microsoft Corporation) ========================= Event log errors: =============================== Application errors: ================== Error: (03/02/2015 05:08:44 PM) (Source: Application Hang) (User: ) Description: Programm wwahost.exe, Version 6.3.9600.17415 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: e8c Startzeit: 01d055027135129c Endzeit: 4294967295 Anwendungspfad: C:\WINDOWS\system32\wwahost.exe Berichts-ID: 64970e9a-c0f6-11e4-b308-cc52af4cb975 Vollständiger Name des fehlerhaften Pakets: VodafoneGroupServices.VodafoneMobileBroadband_1.1.3.2267_neutral__cx08jceyq9bcp Anwendungs-ID, die relativ zum fehlerhaften Paket ist: vodafone.group.mbb Error: (03/02/2015 04:53:36 PM) (Source: Desktop Window Manager) (User: ) Description: Der Desktopfenster-Manager hat einen schwerwiegenden Fehler (0x8898008d) festgestellt. Error: (03/02/2015 04:48:55 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: Gmer-19357.exe, Version: 2.1.19357.0, Zeitstempel: 0x52e7ea83 Name des fehlerhaften Moduls: Gmer-19357.exe, Version: 2.1.19357.0, Zeitstempel: 0x52e7ea83 Ausnahmecode: 0xc0000409 Fehleroffset: 0x0007eed4 ID des fehlerhaften Prozesses: 0x17a8 Startzeit der fehlerhaften Anwendung: 0xGmer-19357.exe0 Pfad der fehlerhaften Anwendung: Gmer-19357.exe1 Pfad des fehlerhaften Moduls: Gmer-19357.exe2 Berichtskennung: Gmer-19357.exe3 Vollständiger Name des fehlerhaften Pakets: Gmer-19357.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Gmer-19357.exe5 Error: (02/28/2015 10:14:00 AM) (Source: Application Hang) (User: ) Description: Programm LiveComm.exe, Version 17.5.9600.20689 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 123c Startzeit: 01d052cef4216ab4 Endzeit: 4294967295 Anwendungspfad: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x86__8wekyb3d8bbwe\LiveComm.exe Berichts-ID: 38bdbf9b-bec2-11e4-b304-cc52af4cb975 Vollständiger Name des fehlerhaften Pakets: microsoft.windowscommunicationsapps_17.5.9600.20689_x86__8wekyb3d8bbwe Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ppleae38af2e007f4358a809ac99a64a67c1 Error: (02/24/2015 09:40:54 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.3.9600.17415, Zeitstempel: 0x5450367b Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17630, Zeitstempel: 0x54b0d747 Ausnahmecode: 0xc0000374 Fehleroffset: 0x000d0c62 ID des fehlerhaften Prozesses: 0xfd4 Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0 Pfad der fehlerhaften Anwendung: Explorer.EXE1 Pfad des fehlerhaften Moduls: Explorer.EXE2 Berichtskennung: Explorer.EXE3 Vollständiger Name des fehlerhaften Pakets: Explorer.EXE4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Explorer.EXE5 Error: (02/17/2015 09:44:17 PM) (Source: Desktop Window Manager) (User: ) Description: Der Desktopfenster-Manager hat einen schwerwiegenden Fehler (0x8898008d) festgestellt. Error: (02/11/2015 08:00:51 PM) (Source: Application Hang) (User: ) Description: Programm LiveComm.exe, Version 17.5.9600.20689 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1f18 Startzeit: 01d0462c547316af Endzeit: 4294967295 Anwendungspfad: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x86__8wekyb3d8bbwe\LiveComm.exe Berichts-ID: 48175254-b220-11e4-b301-cc52af4cb975 Vollständiger Name des fehlerhaften Pakets: microsoft.windowscommunicationsapps_17.5.9600.20689_x86__8wekyb3d8bbwe Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ppleae38af2e007f4358a809ac99a64a67c1 Error: (02/11/2015 07:57:35 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"1". Die abhängige Assemblierung "Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (02/11/2015 07:57:34 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"1". Die abhängige Assemblierung "Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (02/11/2015 07:54:52 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1". Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". System errors: ============= Error: (03/02/2015 05:03:38 PM) (Source: DCOM) (User: Wohnzi) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}WohnziThomasS-1-5-21-4260534663-4186047114-1034053783-1000LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (03/02/2015 05:03:38 PM) (Source: DCOM) (User: Wohnzi) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}WohnziThomasS-1-5-21-4260534663-4186047114-1034053783-1000LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (03/02/2015 05:03:38 PM) (Source: DCOM) (User: Wohnzi) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}WohnziThomasS-1-5-21-4260534663-4186047114-1034053783-1000LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (03/02/2015 05:03:38 PM) (Source: DCOM) (User: Wohnzi) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}WohnziThomasS-1-5-21-4260534663-4186047114-1034053783-1000LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (03/02/2015 05:03:38 PM) (Source: DCOM) (User: Wohnzi) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}WohnziThomasS-1-5-21-4260534663-4186047114-1034053783-1000LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (03/02/2015 05:03:38 PM) (Source: DCOM) (User: Wohnzi) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}WohnziThomasS-1-5-21-4260534663-4186047114-1034053783-1000LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (03/02/2015 05:03:37 PM) (Source: DCOM) (User: Wohnzi) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}WohnziThomasS-1-5-21-4260534663-4186047114-1034053783-1000LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (03/02/2015 05:03:37 PM) (Source: DCOM) (User: Wohnzi) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}WohnziThomasS-1-5-21-4260534663-4186047114-1034053783-1000LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (03/02/2015 05:03:37 PM) (Source: DCOM) (User: Wohnzi) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}WohnziThomasS-1-5-21-4260534663-4186047114-1034053783-1000LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (03/02/2015 05:03:37 PM) (Source: DCOM) (User: Wohnzi) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}WohnziThomasS-1-5-21-4260534663-4186047114-1034053783-1000LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Microsoft Office Sessions: ========================= CodeIntegrity Errors: =================================== Date: 2015-01-21 19:06:05.691 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements. Date: 2015-01-21 19:06:05.644 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements. Date: 2015-01-21 19:06:05.636 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements. Date: 2015-01-21 19:06:05.584 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements. Date: 2015-01-21 19:06:05.462 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements. Date: 2015-01-21 19:06:05.345 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements. Date: 2015-01-21 19:06:04.359 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements. Date: 2015-01-21 19:06:04.212 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements. Date: 2014-11-24 20:08:29.237 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements. Date: 2014-11-24 20:08:29.168 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements. =========================== Installed Programs ============================ 32 Bit HP CIO Components Installer (Version: 13.1.1 - Hewlett-Packard) Hidden Adobe Flash Player 16 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) Advanced Archive Password Recovery (HKLM\...\{01011662-76A8-41E8-B1A8-4F8821570AC5}) (Version: 4.54.48.1338 - Elcomsoft Co. Ltd.) Ahnenblatt 2.80 beta 3 (HKLM\...\Ahnenblatt Beta_is1) (Version: 2.80.0.2 - Dirk Böttcher) Allway Sync version 12.3.1 (HKLM\...\Allway Sync_is1) (Version: - Botkind Inc) Avira (HKLM\...\{bd538030-07d4-4999-a525-7fafa2483f56}) (Version: 1.1.30.21727 - Avira Operations & Co. KG) Avira (Version: 1.1.30.21727 - Avira Operations & Co. KG) Hidden Avira Free Antivirus (HKLM\...\Avira AntiVir Desktop) (Version: 14.0.7.468 - Avira) AVM FRITZ!WLAN (HKLM\...\AVMWLANCLI) (Version: - AVM Berlin) ChargeEasy (HKLM\...\ChargeEasy) (Version: 1.13 - ELV Elektronik AG) ChargeEasy (Version: 1.13 - ELV Elektronik AG) Hidden D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden DDBAC (HKLM\...\{88A0F52F-A024-4268-977E-E75B1F9C67ED}) (Version: 5.3.28 - DataDesign) DVDStyler v2.4.3 (HKLM\...\DVDStyler_is1) (Version: - ) EnergyProfessional (HKLM\...\EnergyProfessional) (Version: 1.8 - ELV Elektronik AG) EnergyProfessional (Version: 1.8 - ELV Elektronik AG) Hidden EventGhost 0.4.1.r1600 (HKLM\...\EventGhost_is1) (Version: 0.4.1.r1600 - EventGhost Project) Extended Asian Language font pack for Adobe Reader XI (HKLM\...\{AC76BA86-7AD7-2530-0000-A00000000004}) (Version: 11.0.0 - Adobe Systems Incorporated) Falk Navi-Manager (HKLM\...\{3222B0CE-59C5-4CA0-B545-2B88F200756B}) (Version: 2.24.0 - United Navigation GmbH) Falk Navi-Manager (Version: 2.22.0 - United Navigation GmbH) Hidden Fotogalerie (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Free Screen Video Recorder version 2.5.31.1029 (HKLM\...\Free Screen Video Recorder_is1) (Version: 2.5.31.1029 - DVDVideoSoft Ltd.) FreeCAD 0.13 (HKLM\...\{2B2B5D2B-0F01-410B-843B-8F437FD75FBF}) (Version: 0.13.1828 - Juergen Riegel (FreeCAD@juergen-riegel.net)) FRITZ!Powerline (HKLM\...\{F88975C1-C182-4A51-BEDE-E333AB89F5D4}) (Version: 01.00.57 - AVM Berlin) FS20 IRP2 PC-Software (HKLM\...\FS20 IRP2 PC-Software) (Version: 1.07 - ELV Elektronik AG) FS20 IRP2 PC-Software (Version: 1.07 - ELV Elektronik AG) Hidden GDR 5520 für SQL Server 2008 (KB 2977321) (HKLM\...\KB2977321) (Version: 10.3.5520.0 - Microsoft Corporation) Gleisrechner 3.3 (HKLM\...\Gleisrechner_is1) (Version: - Rodrigo Supper) GPL Ghostscript (HKLM\...\GPL Ghostscript 9.06) (Version: 9.06 - Artifex Software Inc.) GPSBabel 1.4.4 (HKLM\...\{1B8FE958-A304-4902-BF7A-4E2F0F5B7017}_is1) (Version: - GPSBabel) GSview 5.0 (HKLM\...\GSview 5.0) (Version: 5.0 - Ghostgum Software Pty Ltd) homeputer CL 4.0 FHZ2000 (HKLM\...\homeputer CL FHZ2000_is1) (Version: - contronics GmbH) inSSIDer 3 (HKLM\...\{5BB0D82A-4EED-477B-858E-1D5B01560BF5}) (Version: 3.0.5.80 - MetaGeek, LLC) IrfanView (remove only) (HKLM\...\IrfanView) (Version: 4.36 - Irfan Skiljan) Java 8 Update 31 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation) Java Auto Updater (Version: 2.8.31.13 - Oracle Corporation) Hidden KeePass Password Safe 2.28 (HKLM\...\KeePassPasswordSafe2_is1) (Version: 2.28 - Dominik Reichl) Lenovo Battery Utility 2014 1.2 (HKLM\...\{62D5A67D-E5CC-4D79-8998-DDFDB7750346}_is1) (Version: 1.2 - Lenovo Corp) Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.09.03 - ) Lexware Info Service (HKLM\...\{8AE7E507-BC49-4DF0-A236-26878691AB53}) (Version: 2.90.00.0009 - Haufe-Lexware GmbH & Co.KG) Lexware online banking (HKLM\...\{A64DF516-9CDC-4299-BD34-2B2C80CD453B}) (Version: 19.00.00.0059 - Haufe-Lexware GmbH & Co.KG) Malwarebytes Anti-Malware Version 2.0.4.1028 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation) Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden Microsoft Help Viewer 1.0 (HKLM\...\Microsoft Help Viewer 1.0) (Version: 1.0.30319 - Microsoft Corporation) Microsoft Help Viewer 1.0 (Version: 1.0.30319 - Microsoft Corporation) Hidden Microsoft Help Viewer 1.0 Language Pack - DEU (HKLM\...\Microsoft Help Viewer 1.0 Language Pack - DEU) (Version: 1.0.30319 - Microsoft Corporation) Microsoft Help Viewer 1.0 Language Pack - DEU (Version: 1.0.30319 - Microsoft Corporation) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (Version: - Microsoft) Hidden Microsoft Office Excel MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Home and Student 2007 (HKLM\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Home and Student 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Office OneNote MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (Version: - Microsoft) Hidden Microsoft Office Shared MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server 2008 (HKLM\...\Microsoft SQL Server 10 Release) (Version: - Microsoft Corporation) Microsoft SQL Server 2008 (Version: - Microsoft Corporation) Hidden Microsoft SQL Server 2008 Browser (HKLM\...\{4AF2248C-B3DF-46FB-9596-87F5DB193689}) (Version: 10.3.5500.0 - Microsoft Corporation) Microsoft SQL Server 2008 Common Files (Version: 10.3.5500.0 - Microsoft Corporation) Hidden Microsoft SQL Server 2008 Database Engine Services (Version: 10.3.5500.0 - Microsoft Corporation) Hidden Microsoft SQL Server 2008 Database Engine Shared (Version: 10.3.5500.0 - Microsoft Corporation) Hidden Microsoft SQL Server 2008 Native Client (HKLM\...\{539A0EAA-E1BB-4163-9C1E-6C8BF4A17FA2}) (Version: 10.3.5500.0 - Microsoft Corporation) Microsoft SQL Server 2008 RsFx Driver (Version: 10.3.5500.0 - Microsoft Corporation) Hidden Microsoft SQL Server 2008 Setup Support Files (HKLM\...\{5D60AB1A-2409-4829-83D4-0972856D885A}) (Version: 10.3.5520.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 DEU (HKLM\...\{0125D081-30D0-4A97-82A8-C28D444B6256}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server VSS Writer (HKLM\...\{D074DC76-F6C9-440E-A1D0-1DE958417FDB}) (Version: 10.3.5500.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 Express - DEU (HKLM\...\Microsoft Visual C++ 2010 Express - DEU) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 Express - DEU (Version: 10.0.30319 - Microsoft Corporation) Hidden Microsoft Visual J# 2.0 Redistributable Package (Version: 2.0.50727 - Microsoft Corporation) Hidden Microsoft-Maus- und Tastatur-Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation) Microsoft-Maus- und Tastatur-Center (Version: 2.3.188.0 - Microsoft Corporation) Hidden Mobile Partner (HKLM\...\Mobile Partner) (Version: 21.005.15.00.705 - Huawei Technologies Co.,Ltd) Movie Maker (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Mozilla Firefox 35.0.1 (x86 de) (HKLM\...\Mozilla Firefox 35.0.1 (x86 de)) (Version: 35.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) Mozilla Thunderbird 24.6.0 (x86 de) (HKLM\...\Mozilla Thunderbird 24.6.0 (x86 de)) (Version: 24.6.0 - Mozilla) MSVCRT (Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (Version: 16.4.1108.0727 - Microsoft) Hidden NetSpeedMonitor 2.5.4.0 x86 (HKLM\...\{86501894-E722-4385-A792-B7C2F28FAE7B}) (Version: 2.5.4.0 - Florian Gilles) PC Wetterstation (HKLM\...\PC Wetterstation) (Version: - ) PDF Split And Merge Basic (HKLM\...\{C91B24F6-1629-11E2-B696-21676188709B}) (Version: 2.2.2 - Andrea Vacondio) Photo Gallery (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Pinnacle Hollywood FX for Studio (HKLM\...\Hollywood FX for Studio) (Version: - ) Pinnacle Instant DVD Recorder (HKLM\...\{EF781A5C-58F5-4BFD-87F9-E4F14D382F25}) (Version: 2.00.088 - ) PlayMemories Home (HKLM\...\{1E5C7043-09C5-4974-A69F-A5271FD82BBC}) (Version: 7.0.00.11271 - Sony Corporation) proDAD Heroglyph 2.5 (HKLM\...\proDAD-Heroglyph-2.5) (Version: - ) proDAD Vitascene 1.0 (HKLM\...\proDAD-Vitascene-1.0) (Version: - ) Quicken DELUXE 2014 (HKLM\...\{E60036CF-1E46-4DFE-832F-5476574B30FF}) (Version: 21.37.00.0185 - Haufe-Lexware GmbH & Co.KG) Qw Update (Version: 1.00.0000 - Ihr Firmenname) Hidden Railroad-Professional 2.1 (HKLM\...\{FC5F2251-1F1E-4821-9913-91D04D98AB0E}) (Version: 2.1.0 - rosutec) Resource Hacker Version 3.6.0 (HKLM\...\ResourceHacker_is1) (Version: - ) Security Task Manager 1.8g (HKLM\...\Security Task Manager) (Version: 1.8g - Neuber Software) Service Pack 3 für SQL Server 2008 (KB2546951) (HKLM\...\KB2546951) (Version: 10.3.5500.0 - Microsoft Corporation) Servicepack Datumsaktualisierung (Version: 1.00.00.0005 - Haufe-Lexware) Hidden Skype™ 6.0 (HKLM\...\{EA17F4FC-FDBF-4CF8-A529-2D983132D053}) (Version: 6.0.120 - Skype Technologies S.A.) Sql Server Customer Experience Improvement Program (Version: 10.3.5500.0 - Microsoft Corporation) Hidden StarMoney (Version: 3.0.5.8 - StarFinanz) Hidden Studio 11 (HKLM\...\{110B1ADF-2EAE-4E8F-B501-D2A1E6D8ED9D}) (Version: 11.0 - Pinnacle Systems) Studio 11 (Version: 11.0.0.0 - Pinnacle Systems) Hidden Studio 11 Bonus DVD (HKLM\...\{45A1BF92-700A-4408-B95E-79F462E3D67D}) (Version: 11.0.0.0 - Pinnacle Systems) Studio 9 (HKLM\...\{9E491AB7-4589-48CA-9CBB-874CB2788391}) (Version: 9.4 - Pinnacle Systems) System Explorer 6.3.2 (HKLM\...\{40F485F7-6478-4896-B0D5-F94BE677EB78}_is1) (Version: - Mister Group) TeamViewer 7 (HKLM\...\TeamViewer 7) (Version: 7.0.15723 - TeamViewer) ThinkPad UltraNav Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.19.7 - ) Top Set 2.00 (HKLM\...\TFSETTOP_is1) (Version: 2.00 - Aldarin) Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596787) 32-Bit Edition (HKLM\...\{90120000-006E-0407-0000-0000000FF1CE}_HOMESTUDENTR_{02206DCC-0CAF-46BB-8EDC-6C281AA21EFA}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596787) 32-Bit Edition (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{02206DCC-0CAF-46BB-8EDC-6C281AA21EFA}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version: - Microsoft) Update for Microsoft Office PowerPoint 2007 (KB2597972) 32-Bit Edition (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{7B9D2746-D03B-442B-A691-90B748E316B4}) (Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) UT70D Interface Program_Ver 1.00 (HKLM\...\{DCF0505D-84DF-4313-BA7C-2856AF022100}) (Version: 1.00.0000 - DMM) VideoPad Videobearbeitungs-Software (HKLM\...\VideoPad) (Version: - NCH Software) Visio Technical (HKLM\...\Visio Technical) (Version: - ) Windows Driver Package - Broadcom (BTHUSB) Bluetooth (04/08/2010 6.3.5.430) (HKLM\...\2004BB9EB6CEA02846881BEF1F51C11F7A90C9D6) (Version: 04/08/2010 6.3.5.430 - Broadcom) Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (HKLM\...\BF20603967CFDCB2BBF91950E8A56DFBC5C833FE) (Version: 07/28/2009 6.2.0.9800 - Broadcom) Windows Live Communications Platform (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) Windows Live Essentials (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Installer (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Photo Common (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live PIMT Platform (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live SOXE (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live UX Platform (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Mobile Device Center Driver Update (HKLM\...\{E7044E25-3038-4A76-9064-344AC038043E}) (Version: 6.1.6965.0 - Microsoft Corporation) Windows Mobile-Gerätecenter (HKLM\...\{904CCF62-818D-4675-BC76-D37EB399F917}) (Version: 6.1.6965.0 - Microsoft Corporation) WinPcap 4.1.2 (HKLM\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies) WinRAR 5.00 (32-Bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH) Wise Registry Cleaner 8.31 (HKLM\...\Wise Registry Cleaner_is1) (Version: 8.31 - WiseCleaner.com, Inc.) Yahoo! Desktop Login (Version: 1.00.0001 - Pinnacle Systems) Hidden ========================= Memory info: =================================== Percentage of memory in use: 36% Total physical RAM: 2931.67 MB Available physical RAM: 1864.09 MB Total Pagefile: 3443.67 MB Available Pagefile: 1900.34 MB Total Virtual: 2047.88 MB Available Virtual: 1934.74 MB ========================= Partitions: ===================================== 1 Drive c: () (Fixed) (Total:297.99 GB) (Free:232.36 GB) NTFS ========================= Users: ======================================== Benutzerkonten fr \\WOHNZI Administrator Gast Thomas Der Befehl wurde erfolgreich ausgefhrt. ========================= Minidump Files ================================== No minidump file found **** End of log **** |
03.03.2015, 07:12 | #4 |
/// the machine /// TB-Ausbilder | einzelne URL Adresse nicht erreichbar Du sagst auf anderen Rechnern geht die Seite. Andere Rechner in DEINEM Netzwerk, oder in einem anderen Netzwerk?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
03.03.2015, 09:50 | #5 |
| einzelne URL Adresse nicht erreichbar Hallo Schrauber, ich habe in meinem Netztwerk 2 Rechner (laptop und desktop) und auf beiden das Problem. Auf beiden Rechner habe ich in etwa auch die gleiche Software da ich beide alternativ nutze. Auf anderen Rechnern in einem ANDEREN Netzwerk gibt es das Problem offensichtlich nicht. Ich werde jetzt mal folgendes probieren: 1) Ich gehe mit meinem Laptop zu meinem Nachbar und probiere es dort (d.h anderes Netzwerk, gleicher Laptop). 2) Mein Nachbar loggt sich mit seinem Laptop in mein Netzwerk ein (d.h. gleiches Netzwerk, anderer Laptop) Kann ein bisschen dauern aber dann poste ich das Ergebnis. |
03.03.2015, 15:56 | #6 |
/// the machine /// TB-Ausbilder | einzelne URL Adresse nicht erreichbar Kannste machen, wird dann aber auch auf deinem Gerät gehen Setz mal Google DNS auf einem deiner Rechner, dann wird die Seite auch gehen.
__________________ --> einzelne URL Adresse nicht erreichbar |
Themen zu einzelne URL Adresse nicht erreichbar |
antivir, antivirus, askbar, browser, böttcher, desktop, dvdvideosoft ltd., email, excel, firefox, flash player, google, home, homepage, launch, livecomm.exe, logfile, mozilla, newtab, problem, programm, registry, scan, security, server, software, stick, svchost.exe, system, viren, windows, windowsapps |