![]() |
|
Plagegeister aller Art und deren Bekämpfung: Mozilla Firefox fuktioniert nicht mehr.Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() |
|
![]() | #1 |
| ![]() Mozilla Firefox fuktioniert nicht mehr. [CODE]Additional FRST Logfile: Code:
ATTFilter scan result of Farbar Recovery Scan Tool (x64) Version:28-06-2015 01 Ran by Jutta at 2015-07-02 22:59:03 Running from C:\Users\Jutta\Desktop Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1656143743-13120863-1912775482-500 - Administrator - Disabled) Gast (S-1-5-21-1656143743-13120863-1912775482-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1656143743-13120863-1912775482-1003 - Limited - Enabled) Jutta (S-1-5-21-1656143743-13120863-1912775482-1001 - Administrator - Enabled) => C:\Users\Jutta UpdatusUser (S-1-5-21-1656143743-13120863-1912775482-1000 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) „Windows Live Essentials“ (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden „Windows Live Mail“ (x32 Version: 15.4.3502.0922 - „Microsoft Corporation“) Hidden „Windows Live“ fotogalerija (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden 64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden 7-Zip 9.22 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0922-000001000000}) (Version: 9.22.00.0 - Igor Pavlov) 7-Zip Packages (HKU\S-1-5-21-1656143743-13120863-1912775482-1001\...\7-Zip Packages) (Version: - ) <==== ATTENTION Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.190 - Adobe Systems Incorporated) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.194 - Adobe Systems Incorporated) Adobe Reader XI (11.0.11) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.11 - Adobe Systems Incorporated) Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 9.0 - Atheros) Avast Internet Security (HKLM-x32\...\avast) (Version: 10.2.2218 - AVAST Software) BUFFALO NAS Navigator2 (HKLM-x32\...\UN060501) (Version: - ) CyberLink Media Suite (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 8.0.2227 - CyberLink Corp.) CyberLink Media+ Player10 (HKLM-x32\...\InstallShield_{34FBC7C4-CD31-4D93-A428-0E524EAC4586}) (Version: 10.0.1110.00 - CyberLink Corp.) CyberLink MediaShow (HKLM-x32\...\InstallShield_{80E158EA-7181-40FE-A701-301CE6BE64AB}) (Version: 5.0.1130a - CyberLink Corp.) CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.3802 - CyberLink Corp.) CyberLink PowerDirector (HKLM-x32\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 8.0.3306 - CyberLink Corp.) CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.1.5016 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DC Toolkit Pro 2 Tischler (HKLM-x32\...\DC Toolkit Pro 2 Tischler_is1) (Version: 2.0.0 - Franzis Verlag) DC Toolkit Pro 24 Tischler (HKLM-x32\...\DC Toolkit Pro 24 Tischler_is1) (Version: 24.0.3 - Franzis Verlag) DesignCAD 3D Max 23 (HKLM-x32\...\{01835371-C7CE-4307-A9F9-2DC37DA5293D}) (Version: 23.0.0 - IMSIDesign) DesignCAD 3D Max 24 (HKLM-x32\...\{A0E2B3C3-53BF-4E5F-AD91-6513C9E33990}) (Version: 24.1.0 - IMSIDesign) Dropbox (HKU\S-1-5-21-1656143743-13120863-1912775482-1001\...\Dropbox) (Version: 3.6.7 - Dropbox, Inc.) Easy File Share (HKLM-x32\...\{95BB7324-77D3-4BF3-8CF6-29F0857AC175}) (Version: 1.1.1699 - Samsung Electronics Co., Ltd.) Easy Migration (HKLM-x32\...\{AD86049C-3D9C-43E1-BE73-643F57D83D50}) (Version: 1.0 - Samsung Electronics Co., Ltd.) Easy note taker 3.0 (HKLM-x32\...\{4A19E752-56D4-4B22-BACC-256B491E8756}) (Version: 3.0.1.0 - I.R.I.S. S.A.) Easy Settings (HKLM-x32\...\{17283B95-21A8-4996-97DA-547A48DB266F}) (Version: 1.1 - Samsung Electronics CO., LTD.) Easy Support Center 1.0 (HKLM-x32\...\{F687E657-F636-44DF-8125-9FEEA2C362F5}) (Version: 1.1.36 - Samsung) E-POP (HKLM-x32\...\{F06DD8D9-9DC8-430C-835C-C9BF21E05CC1}) (Version: 1.0.1 - Samsung) File Management Utility (HKLM\...\File Management Utility) (Version: 3.0.2306 - KYOCERA Document Solutions Inc.) Firebird SQL Server - MAGIX Edition (HKLM-x32\...\{39AB2E37-1A55-4292-A5D3-971E9F70D0F8}) (Version: 2.1.32.0 - MAGIX AG) Fotogalerija Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Free YouTube Download version 3.2.55.301 (HKLM-x32\...\Free YouTube Download_is1) (Version: 3.2.55.301 - DVDVideoSoft Ltd.) Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galerie foto Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.130 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden HPDiagnosticAlert (x32 Version: 1.00.0001 - Microsoft) Hidden hppLaserJetService (x32 Version: 001.001.0.0 - Hewlett-Packard) Hidden hppQFolderCM1312 (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2932 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.1.5.1001 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Intel® PROSet/Wireless WiFi Software (HKLM\...\{DF7756DD-656A-45C3-BA71-74673E8259A9}) (Version: 15.00.0000.0642 - Intel Corporation) IRIScan™ Direct (HKLM-x32\...\IRIScanDirect_is1) (Version: 3.9.1.3 - IRIScanDirect) IRISNotes Executive 1.2 (HKLM-x32\...\MyScript Studio 1.2_is1) (Version: 1.2.2.756 - Vision Objects) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden KYOCERA Net Direct Print (HKLM-x32\...\InstallShield_{96151BD6-6DED-40E7-B850-4E1B483188CF}) (Version: 2.4.2426 - KYOCERA Document Solutions Inc.) KYOCERA Net Direct Print (x32 Version: 2.4.2426 - KYOCERA Document Solutions Inc.) Hidden KYOCERA Net Viewer (HKLM\...\KYOCERA Net Viewer) (Version: 5.3.7121.5 - KYOCERA Document Solutions Inc.) Kyocera Product Library (HKLM\...\Kyocera Product Library) (Version: 4.2.1909 - KYOCERA Document Solutions Inc.) Kyocera TWAIN Driver (HKLM-x32\...\InstallShield_{9EBE60B5-E6D5-4D30-A719-489CAB37782F}) (Version: 2.0.3404 - KYOCERA Document Solutions Inc.) Kyocera TWAIN Driver (x32 Version: 2.0.3404 - KYOCERA Document Solutions Inc.) Hidden MAGIX 3D Maker (embeded) (HKLM-x32\...\MAGIX 3D Maker D) (Version: 6.0.0.8 - MAGIX AG) MAGIX Foto & Grafik Designer 9 (HKLM-x32\...\MX.{73FE2F35-D23F-4AAD-8187-5BE58547DE9B}) (Version: 9.1.1.28178 - MAGIX AG) MAGIX Foto & Grafik Designer 9 (Version: 9.1.1.28178 - MAGIX AG) Hidden MAGIX Foto Premium 9 9.0.4.112 (D) (HKLM-x32\...\MAGIX Foto Premium 9 D) (Version: 9.0.4.112 - MAGIX AG) MAGIX Fotos auf DVD 2014 Deluxe (HKLM-x32\...\MX.{C2A5A580-75AF-4021-AA42-F3076434BF80}) (Version: 13.0.0.84 - MAGIX AG) MAGIX Fotos auf DVD 2014 Deluxe (Version: 13.0.0.84 - MAGIX AG) Hidden MAGIX Online Druck Service (HKLM-x32\...\MAGIX Online Druck Service D) (Version: 3.4.3.0 - MAGIX AG) MAGIX Screenshare (HKLM-x32\...\MAGIX Screenshare D) (Version: 4.3.6.1987 - MAGIX AG) MAGIX Speed burnR (HKLM-x32\...\MAGIX Speed burnR D) (Version: 6.0.1.4 - MAGIX AG) MAGIX Speed burnR (MSI) (HKLM-x32\...\MX.{7288E099-BD31-43AC-BBAA-0434B813642B}) (Version: 7.0.2.6 - MAGIX AG) MAGIX Speed burnR (MSI) (Version: 7.0.2.6 - MAGIX AG) Hidden MAGIX Video deluxe 2014 Plus (HKLM-x32\...\MX.{9E2FEB28-7407-4009-9DC4-203EF2EF6BB7}) (Version: 13.0.0.30 - MAGIX AG) MAGIX Video deluxe 2014 Plus (Version: 13.0.0.30 - MAGIX AG) Hidden MAGIX Video deluxe 2014 Plus (Video Plugins) (HKLM-x32\...\MX.{4DD59995-0598-43C0-BDF0-D7E38D75FA29}) (Version: 1.0.0.0 - MAGIX AG) MAGIX Video deluxe 2014 Plus (Video Plugins) (Version: 1.0.0.0 - MAGIX AG) Hidden MAGIX Video deluxe 2014 Plus Update (Version: 13.0.5.4 - MAGIX AG) Hidden MAGIX Xtreme Foto Designer 6 (HKLM-x32\...\MAGIX Xtreme Foto Designer 6 D) (Version: 6.0.29.0 - MAGIX AG) MAGIX Xtreme Grafik Designer 5 (HKLM-x32\...\{7B956E7E-7709-4B43-90C2-432FE5DB5134}) (Version: 5.1.2.9906 - MAGIX AG) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Metric Collection SDK 35 (x32 Version: 1.2.0006.00 - Lenovo Group Limited) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4727.1003 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1656143743-13120863-1912775482-1001\...\OneDriveSetup.exe) (Version: 17.3.4724.0224 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Firefox 38.0.5 (x86 de) (HKLM-x32\...\Mozilla Firefox 38.0.5 (x86 de)) (Version: 38.0.5 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 38.0.5 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) Multi file port monitor (mfilemon) 1.5.0 (HKLM\...\{A932243F-381F-434C-B18E-4F09D2F015F8}_is1) (Version: 1.5.0 - Monti Lorenzo) Multimedia POP (HKLM-x32\...\{331ECF61-69AF-4F57-AC35-AFED610231C3}) (Version: 1.0 - ) MyFreeCodec (HKU\S-1-5-21-1656143743-13120863-1912775482-1001\...\MyFreeCodec) (Version: - ) MyScript Studio de_DE pack 1.2 (HKLM-x32\...\MyScript Studio de_DE pack 1.2_is1) (Version: 1.2.0.200 - Vision Objects) Nero BurnExpress (HKLM-x32\...\{F0626041-A156-4F53-87F7-3A0C73D35D37}) (Version: 15.0.00100 - Nero AG) Nero Info (HKLM-x32\...\{B791E0AB-87A9-41A4-8D98-D13C2E37D928}) (Version: 15.1.0030 - Nero AG) NovaBACKUP Buffalo Suite (HKLM-x32\...\NovaBACKUP Buffalo Suite) (Version: 15.0.15 - NovaStor) NovaBACKUP Buffalo Suite (x32 Version: 15.0.15 - NovaStor) Hidden Nuance PDF Create! 5 (HKLM\...\{CFF1444A-30A3-4CEC-89F3-18D2F65590F4}) (Version: 5.20.6400 - Nuance Communications, Inc) NVIDIA Graphics Driver 268.83 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 268.83 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4727.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4727.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4727.1003 - Microsoft Corporation) Hidden OLYMPUS Digital Camera Updater (HKLM-x32\...\{D18925CE-5AF9-4394-8EF7-1081FFE7E98B}) (Version: 1.2.0 - OLYMPUS IMAGING CORP.) OLYMPUS Viewer 3 (HKLM-x32\...\{144CB8BE-46E5-43AE-ADBB-CCC7AB4E0649}) (Version: 1.4.2 - OLYMPUS IMAGING CORP.) Patiencen Gold (HKU\S-1-5-21-1656143743-13120863-1912775482-1001\...\Patiencen Gold) (Version: - ) PDF24 Creator 6.2.0 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org) Photo & Graphic Designer 9 Update (Version: 9.2.7.30835 - MAGIX AG) Hidden Photo & Graphic Designer 9 Update (Version: 9.2.7.30974 - MAGIX AG) Hidden Photo & Graphic Designer 9 Update (Version: 9.2.8.32681 - MAGIX Software GmbH) Hidden Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Pošta Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Prerequisite installer (x32 Version: 15.0.0005 - Nero AG) Hidden Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Readiris Pro 14 (HKLM-x32\...\{253FD6A5-CE77-4FBC-A937-202D15808D0C}) (Version: 14.00.5840 - I.R.I.S.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.44.421.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6413 - Realtek Semiconductor Corp.) RocketTab (HKLM-x32\...\RocketTab) (Version: 1.0 - RocketTab) <==== ATTENTION! S Agent (Version: 1.0.9 - Samsung Electronics CO., LTD.) Hidden Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.2.14014_6 - Samsung Electronics Co., Ltd.) Samsung Kies (x32 Version: 2.6.2.14014_6 - Samsung Electronics Co., Ltd.) Hidden Samsung Recovery Solution 5 (HKLM-x32\...\{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}) (Version: 5.0.1.5 - Samsung) SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.49.0 - SAMSUNG Electronics Co., Ltd.) Scansoft PDF Create (x32 Version: - ) Hidden Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.4.0.9058 - Microsoft Corporation) Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) Software Launcher (HKLM-x32\...\{B750B5C2-CC17-4967-905B-29F4EB986131}) (Version: 1.0.2 - Samsung) SW Update (HKLM-x32\...\{F5B5BA56-8FEB-494B-84E6-C8DA9C2BEE50}) (Version: 2.1.6 - Samsung Electronics CO., LTD.) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.3.7.0 - Synaptics Incorporated) TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.43879 - TeamViewer) Tinypic 3.18 (HKLM-x32\...\{E3723A04-A894-4036-A78E-282E18F43C0A}_is1) (Version: Tinypic 3.18 - E. Fiedler) Trust tablet driver (HKLM\...\RmTablet) (Version: 5.01 - ) User Guide (HKLM-x32\...\{BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}) (Version: 1.3 - ) VIS (HKLM-x32\...\VIS) (Version: - ) <==== ATTENTION VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN) WIDCOMM Bluetooth Software (HKLM\...\{436E0B79-2CFB-4E5F-9380-E17C1B25D0C5}) (Version: 6.3.0.4400 - Broadcom Corporation) Windows Live 程式集 (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3538.0513 - Microsoft Corporation) Windows-Treiberpaket - OLYMPUS IMAGING CORP. Camera Communication Driver Package (09/09/2009 1.0.0.0) (HKLM\...\2C1C2F29FADF39F533CEEE67B90F07A5306A4BDB) (Version: 09/09/2009 1.0.0.0 - OLYMPUS IMAGING CORP.) WinFunktion Mathematik plus 21 (HKLM-x32\...\{2C322D9F-8734-4937-8A94-67ED371046B6}) (Version: 21.00.0000 - bhv Publishing GmbH) Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Основные компоненты Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Почта Windows Live (x32 Version: 15.4.3502.0922 - Корпорация Майкрософт) Hidden Фотоальбом Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Фотогалерия на Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden بريد Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden معرض صور Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-1656143743-13120863-1912775482-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Jutta\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1656143743-13120863-1912775482-1001_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\Jutta\AppData\Local\Microsoft\OneDrive\17.3.4724.0224\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1656143743-13120863-1912775482-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Jutta\AppData\Local\Microsoft\OneDrive\17.3.4724.0224\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1656143743-13120863-1912775482-1001_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\Jutta\AppData\Local\Microsoft\OneDrive\17.3.4724.0224\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1656143743-13120863-1912775482-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Jutta\AppData\Local\Microsoft\OneDrive\17.3.4724.0224\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1656143743-13120863-1912775482-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Jutta\AppData\Local\Microsoft\OneDrive\17.3.4724.0224\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1656143743-13120863-1912775482-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Jutta\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1656143743-13120863-1912775482-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Jutta\AppData\Local\Microsoft\OneDrive\17.3.4724.0224\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1656143743-13120863-1912775482-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Jutta\AppData\Local\Microsoft\OneDrive\17.3.4724.0224\amd64\FileSyncApi64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1656143743-13120863-1912775482-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jutta\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1656143743-13120863-1912775482-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jutta\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1656143743-13120863-1912775482-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jutta\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1656143743-13120863-1912775482-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jutta\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1656143743-13120863-1912775482-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jutta\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1656143743-13120863-1912775482-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jutta\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1656143743-13120863-1912775482-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jutta\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1656143743-13120863-1912775482-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jutta\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) ==================== Restore Points ========================= 11-06-2015 21:32:58 Windows Update 11-06-2015 21:55:41 Windows Update 12-06-2015 20:47:24 Installiert Kyocera TWAIN Driver 12-06-2015 22:13:14 Konfiguriert Kyocera TWAIN Driver 14-06-2015 22:01:53 Installiert KYOCERA Net Direct Print 14-06-2015 22:28:00 Gerätetreiber-Paketinstallation: KYOCERA Document Solutions Inc. Drucker 14-06-2015 22:29:59 Konfiguriert Kyocera TWAIN Driver 16-06-2015 20:57:33 Windows Update 22-06-2015 11:42:14 Installed Nero BurnExpress. 23-06-2015 10:46:57 Windows Update 23-06-2015 11:14:13 E-POST MAILER 26-06-2015 21:51:47 Windows Update 28-06-2015 23:12:41 Wiederherstellungsvorgang 01-07-2015 22:10:03 Windows Update ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2014-02-17 13:54 - 00000848 ____A C:\windows\system32\Drivers\etc\hosts 192.168.0.51 NPI317256 ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {05244A31-DE68-4ACC-8779-778A20527C1F} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-05-19] (Microsoft Corporation) Task: {076ED729-5DF1-4F1C-AEE2-B3F794662570} - System32\Tasks\MovieColorEnhancer => C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe [2012-04-25] (Samsung Electronics Co., Ltd.) Task: {17440892-275A-4241-B788-F39DD5914D1C} - System32\Tasks\SaveSense => C:\Users\Jutta\AppData\Roaming\SAVESE~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: {257B6C17-5129-49A0-9FD7-F4CFDA1DB131} - System32\Tasks\{34BF5007-80A3-4C2F-BDA5-9B6462951BB6} => C:\Users\Jutta\AppData\Roaming\Telekom\MediencenterSync\Mediencenter.exe Task: {29967FDA-31C2-4DA1-92EA-5A83ADCDDC0F} - System32\Tasks\Microsoft\Windows\TabletPC\InputPersonalization => C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [2009-07-14] (Microsoft Corporation) Task: {2E6BE7F2-C949-49E6-A212-D8157A63971D} - System32\Tasks\EasyBatteryManager => C:\Program Files (x86)\Samsung\Easy Settings\EBM\EasyBatteryMgr4.exe [2011-11-18] (SAMSUNG Electronics co., LTD.) Task: {35046F0C-E5F7-4821-8B34-607E48CBABE8} - System32\Tasks\WLANStartup => C:\Program Files (x86)\Samsung\Easy Settings\WLANStartup.exe [2012-04-03] (Samsung Electronics) Task: {3CD4CB9E-40F4-441A-A932-A30752C034C0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-03-05] (Google Inc.) Task: {516AAD24-2ECD-44FE-A38A-5084AA08B5C5} - System32\Tasks\SAgent => C:\Program Files\Samsung\S Agent\CommonAgent.exe [2012-10-25] (Samsung Electronics CO., LTD.) Task: {53B80CE5-03C7-4FE8-A1E0-EA5A3BA9E79A} - System32\Tasks\EasySpeedUpManager => C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe [2012-01-31] (Samsung Electronics) Task: {5485E35B-8143-43C2-874F-8F9BE76BC439} - System32\Tasks\advSRS5 => C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe [2011-06-24] (SEC) Task: {5544DD1F-9E26-4D73-827A-C819BBFC6A09} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [2014-09-10] (Lenovo) Task: {5B19B84D-D836-4D85-9BA3-7E9C49AA8540} - System32\Tasks\{F96BAB99-3C74-473F-9AC5-A77D3F59BE07} => pcalua.exe -a E:\LernCDinstall.exe -d E:\ Task: {73B1D8B5-C05D-476C-9BC3-9C64899B5AD9} - System32\Tasks\RocketTab Update Task => C:\Program Files (x86)\Search Extensions\uninstall.exe [2015-06-27] () <==== ATTENTION Task: {74F6C05E-D4C0-4833-BB4F-BC91EC62F045} - System32\Tasks\SmartSetting => C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe [2012-05-02] (Samsung Electronics Co., Ltd.) Task: {7C0D7EC2-688B-4795-8B00-2F8556B1C514} - System32\Tasks\Microsoft Office 15 Sync Maintenance for Jutta-PC-Jutta Jutta-PC => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2015-05-28] (Microsoft Corporation) Task: {83F6E9F5-ED2F-4D3C-9F55-0D615CF54E4F} - System32\Tasks\EasyDisplayMgr => C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe [2012-05-30] (Samsung Electronics Co., Ltd.) Task: {8DCEE2C1-7DD5-4BB3-9BB1-7939B02FDD0D} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1656143743-13120863-1912775482-1001UA => C:\Users\Jutta\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-17] (Dropbox, Inc.) Task: {A05D8C55-6E0C-48F5-875D-9A6CA29EA676} - System32\Tasks\RocketTab => cmd.exe /C start "" "C:\Program Files (x86)\Search Extensions\Client.exe" /Preferred=true <==== ATTENTION Task: {A2846731-F241-4B12-B29C-FD85BE089A1E} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-05-19] (Microsoft Corporation) Task: {A539CC7F-B42F-4008-B615-F8F27D1934CC} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-24] (Adobe Systems Incorporated) Task: {AA90329D-1506-4D4D-9D0F-3C615BB5CC14} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-06-12] (Adobe Systems Incorporated) Task: {AB2B59BD-7B8A-4E91-BF8F-4E3F1F5EB1DB} - System32\Tasks\{38CA038C-A9C2-409C-B6FA-2C06754BCE93} => C:\Program Files (x86)\DCToolkit\DC Toolkit Pro 24 Tischler\DCT24.exe [2015-01-29] (Dolata-Werner-Softwarevertriebs GmbH) Task: {B7251F4A-23C3-43BB-BA80-1CCBDD61619D} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-06-18] (Avast Software s.r.o.) Task: {BBD090E8-527F-476B-B50B-47475A65CD20} - System32\Tasks\SamsungSupportCenter => C:\Program Files (x86)\Samsung\Easy Support Center\SSCKbdHk.exe [2011-07-30] (SAMSUNG Electronics) Task: {BD5C9644-C9B2-4CA6-B81F-A27CA51041FB} - System32\Tasks\avastBCLRestartS-1-5-21-1656143743-13120863-1912775482-1001 => Firefox.exe Task: {CEE30A39-23C0-44E3-8047-190FF1EA4291} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-03-05] (Google Inc.) Task: {DFBABA03-A4D5-4929-9B8B-6304767D003D} - System32\Tasks\SCCSpeedBoot => C:\Program Files (x86)\Samsung\Easy Settings\SCCSpeedBoot.exe [2012-03-27] (Samsung Electronics Co., Ltd.) Task: {E22A5DD4-EC7D-436C-9A22-C03199D687AC} - System32\Tasks\{0CDBD647-A6F9-4A68-BC85-4C4B2B8A54B9} => Firefox.exe hxxp://ui.skype.com/ui/0/6.20.73.104.456/de/go/help.faq.installer?LastError=1618 Task: {E51D54E8-5CA7-49D3-8E7A-EF2B51A3F7AA} - System32\Tasks\SaveSenseLiveUpdateTaskMachineUA => C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe [2014-02-16] (SaveSense) <==== ATTENTION Task: {E77F7C3F-B851-4608-A782-0493334076CD} - System32\Tasks\{155AE711-BA5A-4238-AF13-20A0568857C8} => C:\Program Files (x86)\DCToolkit\DC Toolkit Pro 24 Tischler\DCT24.exe [2015-01-29] (Dolata-Werner-Softwarevertriebs GmbH) Task: {E967D3CC-9E85-432E-9F44-A19F9E175A80} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1656143743-13120863-1912775482-1001Core => C:\Users\Jutta\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-17] (Dropbox, Inc.) Task: {EF2F682A-F8E5-4C5D-912E-E34A2CEAE449} - System32\Tasks\SaveSenseLiveUpdateTaskMachineCore => C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe [2014-02-16] (SaveSense) <==== ATTENTION Task: {F0144DD3-C9A7-44B4-A778-142B00DD40ED} - System32\Tasks\{0B67AFE8-2776-443B-9B59-3E378ABE670F} => C:\Users\Jutta\AppData\Roaming\Telekom\MediencenterSync\Mediencenter.exe Task: {F02744B9-B972-450E-B54F-4BC8DBB06B8A} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2012-02-16] (CyberLink) Task: {F2C326F7-9CAA-4F3F-8486-F1D249507648} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [2013-10-16] (Nero AG) Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1656143743-13120863-1912775482-1001Core.job => C:\Users\Jutta\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1656143743-13120863-1912775482-1001UA.job => C:\Users\Jutta\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\windows\Tasks\SaveSense.job => C:\Users\Jutta\AppData\Roaming\SAVESE~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: C:\windows\Tasks\SaveSenseLiveUpdateTaskMachineCore.job => C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe <==== ATTENTION Task: C:\windows\Tasks\SaveSenseLiveUpdateTaskMachineUA.job => C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe <==== ATTENTION ==================== Loaded Modules (Whitelisted) ============== 2014-02-10 23:38 - 2014-02-10 23:38 - 00896512 _____ () C:\Users\Jutta\AppData\Local\Temp\OCS\Downloads\3fb4024f7caf3a01809ef819569822ba\8a2438a7aa1e858526caff1f4deab159\AddonsHelper.exe 2014-06-16 21:25 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2010-03-31 20:46 - 2010-03-31 20:46 - 00173856 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll 2015-06-22 08:46 - 2015-06-27 09:33 - 01457664 _____ () C:\Program Files (x86)\Search Extensions\Client.exe 2011-07-21 07:51 - 2010-12-16 11:37 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2013-12-11 09:54 - 2012-02-11 00:55 - 00475136 _____ () C:\Program Files (x86)\Vision Objects\MyScript Studio\MyScript_GenericInkRetriever.exe 2013-12-09 14:19 - 2012-02-10 20:47 - 00165184 _____ () C:\Program Files (x86)\Vision Objects\MyScript Studio\PegRoute.exe 2012-03-08 08:45 - 2009-12-01 09:21 - 00244904 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe 2012-07-27 05:25 - 2012-02-13 08:02 - 00031624 _____ () C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe 2013-12-15 13:55 - 2012-10-19 12:01 - 00581120 _____ () C:\windows\system32\atwtusb.exe 2013-12-15 13:55 - 2012-09-10 14:54 - 03593728 _____ () C:\windows\system32\AtwtusbIcon.exe 2015-04-24 21:26 - 2015-04-24 21:26 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-04-24 21:26 - 2015-04-24 21:26 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-07-02 09:32 - 2015-07-02 09:32 - 02952704 _____ () C:\Program Files\AVAST Software\Avast\defs\15070200\algo.dll 2015-07-02 22:43 - 2015-07-02 22:43 - 02955264 _____ () C:\Program Files\AVAST Software\Avast\defs\15070202\algo.dll 2012-07-27 05:25 - 2011-02-16 18:03 - 00203776 _____ () C:\Program Files (x86)\Samsung\Easy Settings\WinCRT.dll 2013-12-11 09:54 - 2012-02-11 00:41 - 01466368 _____ () C:\Program Files (x86)\Vision Objects\MyScript Studio\QtCore4.dll 2013-12-11 09:54 - 2012-02-11 00:41 - 05521408 _____ () C:\Program Files (x86)\Vision Objects\MyScript Studio\QtGui4.dll 2013-12-11 09:54 - 2012-02-11 00:54 - 00172032 _____ () C:\Program Files (x86)\Vision Objects\MyScript Studio\InkRetrieverCore.dll 2013-12-11 09:54 - 2012-02-11 00:41 - 00217088 _____ () C:\Program Files (x86)\Vision Objects\MyScript Studio\QtXml4.dll 2013-12-11 09:54 - 2012-02-11 00:41 - 00131072 _____ () C:\Program Files (x86)\Vision Objects\MyScript Studio\imageformats\qjpeg1.dll 2013-12-11 09:54 - 2012-02-11 00:41 - 00016384 _____ () C:\Program Files (x86)\Vision Objects\MyScript Studio\imageformats\qsvg1.dll 2013-12-11 09:54 - 2012-02-11 00:41 - 00217088 _____ () C:\Program Files (x86)\Vision Objects\MyScript Studio\QtSvg4.dll 2013-12-11 09:54 - 2012-02-11 00:57 - 00086016 _____ () C:\Program Files (x86)\Vision Objects\MyScript Studio\PegasusInkRetriever.dll 2013-12-11 09:54 - 2012-02-11 00:58 - 00094208 _____ () C:\Program Files (x86)\Vision Objects\MyScript Studio\PentelInkRetriever.dll 2012-07-27 05:25 - 2006-08-12 05:48 - 00049152 _____ () C:\Program Files (x86)\Samsung\Easy Settings\HookDllPS2.dll 2015-04-24 21:26 - 2015-04-24 21:26 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2014-01-11 00:49 - 2014-01-11 00:49 - 00176784 _____ () \\?\C:\Program Files (x86)\NovaStor\NovaStor NovaBACKUP Buffalo Suite\nsEngineRes407.dll 2014-01-11 00:49 - 2014-01-11 00:49 - 06068368 _____ () \\?\C:\Program Files (x86)\NovaStor\NovaStor NovaBACKUP Buffalo Suite\nsAppRes407.dll 2015-07-02 22:40 - 2015-07-02 22:40 - 00043008 _____ () c:\users\jutta\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpj3m2ph.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00750080 _____ () C:\Users\Jutta\AppData\Roaming\Dropbox\bin\libGLESv2.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00047616 _____ () C:\Users\Jutta\AppData\Roaming\Dropbox\bin\libEGL.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00865280 _____ () C:\Users\Jutta\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00200704 _____ () C:\Users\Jutta\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll 2015-06-17 19:52 - 2015-03-19 09:15 - 00010240 _____ () C:\Users\Jutta\AppData\Roaming\Dropbox\bin\QtQuick.2\qtquick2plugin.dll 2015-06-17 19:52 - 2015-03-19 09:15 - 00726016 _____ () C:\Users\Jutta\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll 2015-06-17 19:52 - 2015-03-19 09:15 - 00010240 _____ () C:\Users\Jutta\AppData\Roaming\Dropbox\bin\QtQuick\Window.2\windowplugin.dll 2013-12-09 14:19 - 2012-02-10 20:47 - 00075000 _____ () C:\Program Files (x86)\Vision Objects\MyScript Studio\PegMouse.dll 2014-01-11 00:59 - 2014-01-11 00:59 - 00141096 _____ () C:\Program Files (x86)\NovaStor\NovaStor NovaBACKUP Buffalo Suite\CrashRpt1401.dll 2014-01-11 00:59 - 2014-01-11 00:59 - 00010024 _____ () C:\Program Files (x86)\NovaStor\NovaStor NovaBACKUP Buffalo Suite\throttle.dll 2012-03-08 07:50 - 2010-05-07 16:22 - 01636864 _____ () C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\Resdll.dll 2009-11-02 07:20 - 2009-11-02 07:20 - 00619816 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll 2009-11-02 07:23 - 2009-11-02 07:23 - 00013096 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll 2014-11-23 21:31 - 2014-11-23 21:31 - 00316576 _____ () C:\Program Files\Microsoft Office 15\root\office15\AppVIsvStream32.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\Temp:78F63A0E AlternateDataStreams: C:\ProgramData\Temp:8D09CB9B AlternateDataStreams: C:\ProgramData\Temp:DC9AE426 ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-1656143743-13120863-1912775482-1001\...\cleverreach.com -> hxxp://novastor.cleverreach.com IE trusted site: HKU\S-1-5-21-1656143743-13120863-1912775482-1001\...\google-analytics.com -> hxxp://google-analytics.com IE trusted site: HKU\S-1-5-21-1656143743-13120863-1912775482-1001\...\novastor.com -> hxxp://novastor.com IE trusted site: HKU\S-1-5-21-1656143743-13120863-1912775482-1001\...\novastor.com -> hxxps://novastor.com ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1656143743-13120863-1912775482-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Jutta\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.2.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\Services: MCSWASVR => 2 MSCONFIG\Services: TeamViewer8 => 2 MSCONFIG\startupreg: HP Color LaserJet CM1312 MFP Series Fax => C:\Program Files (x86)\HP\HP Color LaserJet CM1312 MFP Series\hppfaxprintersrv.exe "HP Color LaserJet CM1312 MFP Series Fax" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{2476DF16-3410-43BC-BD35-A52F3FF85B51}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{2E900FB8-A6C8-40A6-BF85-6085297002C2}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{8F431158-14AD-44FD-859B-5062844F444C}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{221D1A7A-6DE0-4350-BE28-5583A8E150FE}] => (Allow) LPort=2869 FirewallRules: [{91C767E5-825D-46A3-9A99-609696FCE724}] => (Allow) LPort=1900 FirewallRules: [{FB7AFFD1-2375-4717-8E0D-76D02FA90B0B}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe FirewallRules: [{CD875023-0CAB-458B-B8B4-87B368F58029}] => (Allow) C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10.exe FirewallRules: [{BA62C746-065B-4218-B0D7-6D614B868DF9}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDirector\PDR8.EXE FirewallRules: [TCP Query User{8CEA1DC3-C4D5-49A0-B36C-B26A5172FAD5}E:\easysetupassistant\wr841n\easysetupassistant.exe] => (Allow) E:\easysetupassistant\wr841n\easysetupassistant.exe FirewallRules: [UDP Query User{4B62F250-3166-4367-86FC-E1B36BFEA92B}E:\easysetupassistant\wr841n\easysetupassistant.exe] => (Allow) E:\easysetupassistant\wr841n\easysetupassistant.exe FirewallRules: [TCP Query User{D464F9AB-6C8D-4ED7-B30E-2D210E51AD82}C:\users\jutta\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\jutta\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{AB5F12EB-8D58-4298-BEE4-B07DBF77B6FD}C:\users\jutta\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\jutta\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{290CEE59-3618-4083-929C-5F5779ED860B}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe FirewallRules: [{A346EC05-46CA-47A7-84FC-BE335777ED05}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe FirewallRules: [{9C51450B-94F6-43AC-BF7E-F9DF730E6921}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe FirewallRules: [{9477EED5-252E-4F1C-A4E6-D12FA2486BE3}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe FirewallRules: [{F297004E-D5A7-4CD6-A265-AC8366DB9EB6}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{F723876E-8B29-4E53-9A99-DFEDF9B775B7}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{88CA3693-43E8-4DF8-8281-61F191D7E76E}] => (Allow) C:\Users\Jutta\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [TCP Query User{D7E0D7D2-9E42-4266-B0D1-F78328BB4E13}C:\program files (x86)\irisnotes\easy note taker.exe] => (Allow) C:\program files (x86)\irisnotes\easy note taker.exe FirewallRules: [UDP Query User{7A6A3F2A-9C0E-4E5F-BA6C-00A11B4DB631}C:\program files (x86)\irisnotes\easy note taker.exe] => (Allow) C:\program files (x86)\irisnotes\easy note taker.exe FirewallRules: [{2CC3FBA6-A648-4695-B5EB-AD1DBDD6BA1E}] => (Allow) C:\Users\Jutta\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{C91189A3-5E48-41A3-9698-C3667DC0A3AD}] => (Allow) C:\Users\Jutta\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{6294BC3C-685C-4D89-9E2C-3B77B95B4836}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe FirewallRules: [{CCEA7244-51C0-4A11-BFEF-35BE14418142}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe FirewallRules: [{C6C4955F-6B35-45D3-8D79-937378784576}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe FirewallRules: [{311640ED-E929-42D8-8BBF-E7F64A4B24DC}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe FirewallRules: [{596643B9-0CAE-48A5-8E23-397CB077B1CC}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe FirewallRules: [{06E5550F-B7E9-4A22-8C0A-3F5B493EDF2E}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe FirewallRules: [{2052A499-DA19-4233-AA13-8E689BDA973D}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe FirewallRules: [{C62F2C56-4655-4145-97F3-A87BE316F390}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe FirewallRules: [{C58120D8-F987-4E62-9535-313641DA4BDD}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe FirewallRules: [{D2C2E492-D963-48CF-AED0-A288909FF2C6}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe FirewallRules: [{BE047F95-0143-4B0B-A978-01B3D4C7DF53}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe FirewallRules: [{0724AAC5-6605-4360-BC8C-365F1512D140}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe FirewallRules: [{1A633C52-3108-4481-9823-DCC6E3371AF9}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe FirewallRules: [{FBCA9AD3-E980-4D1E-A42D-1A0FBB76D385}] => (Allow) C:\Program Files (x86)\HP\digital imaging\smart web printing\smartwebprintexe.exe FirewallRules: [{887F9678-F4F9-4064-9BBE-FA44D812E30C}] => (Allow) C:\Users\Jutta\AppData\Local\Temp\7zS5133\setup\hpznui40.exe FirewallRules: [{10FA94C7-3D8E-4FAF-8195-1A740A769F25}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe FirewallRules: [{734D3882-03FF-4079-B191-D76ACAE52F10}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe FirewallRules: [{8A1DE8F8-943E-44B2-A534-D6235FD20F8C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe FirewallRules: [{F1684F30-0C7D-4A46-B93E-BD4A8EF18AA7}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqnrs08.exe FirewallRules: [{D896E679-70C5-4804-AF17-96CB6AAD3446}] => (Allow) C:\Program Files (x86)\common files\hp\digital imaging\bin\hpqphotocrm.exe FirewallRules: [{308BEB6D-6B39-4FA8-8BE1-718BDB55E2D6}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqsudi.exe FirewallRules: [{23BAF0D8-D50A-406B-AD4E-47930BBD18CA}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqpsapp.exe FirewallRules: [{9F6B9E87-0EDE-4A38-AB4F-E294C610420E}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe FirewallRules: [{32DCAC15-11D6-4E7F-81E3-A3160610276E}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe FirewallRules: [{3CFDAB84-96F6-4E1C-9101-B01B08105A17}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqpse.exe FirewallRules: [TCP Query User{25C8D752-E315-44E8-A07D-192C8BB5FBBF}C:\program files (x86)\hp\digital imaging\bin\hppscan7.exe] => (Allow) C:\program files (x86)\hp\digital imaging\bin\hppscan7.exe FirewallRules: [UDP Query User{261DDB31-31DA-4A1A-A84E-EE7460021FFB}C:\program files (x86)\hp\digital imaging\bin\hppscan7.exe] => (Allow) C:\program files (x86)\hp\digital imaging\bin\hppscan7.exe FirewallRules: [{D8C18190-F2D3-4C35-AAC4-A5D30D01C5E3}] => (Block) C:\program files (x86)\hp\digital imaging\bin\hppscan7.exe FirewallRules: [{FE169614-5459-4CD1-9894-790B76CB6A57}] => (Block) C:\program files (x86)\hp\digital imaging\bin\hppscan7.exe FirewallRules: [{4E4BD59C-5066-4004-90C8-3FAA90E1212B}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{1A802121-1601-4AB9-AFE5-A225B55ACE92}] => (Allow) C:\Users\Jutta\AppData\Local\Temp\7zS7245\HPDiagnosticCoreUI.exe FirewallRules: [{1EE75372-DABC-43D8-A655-32EFC438AD4F}] => (Allow) C:\Users\Jutta\AppData\Local\Temp\7zS7245\HPDiagnosticCoreUI.exe FirewallRules: [{867FF3A7-E54C-470C-ADFB-2973E26D24B8}] => (Allow) C:\Users\Jutta\AppData\Local\Temp\7zS730E\HPDiagnosticCoreUI.exe FirewallRules: [{594B1F63-D88A-4E78-8A72-8249AF7B1286}] => (Allow) C:\Users\Jutta\AppData\Local\Temp\7zS730E\HPDiagnosticCoreUI.exe FirewallRules: [{014256DD-EEF3-40BE-9C1D-548A92B4AD1C}] => (Allow) C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe FirewallRules: [{239AF009-3FB5-4315-9881-55EF4F493DF9}] => (Allow) C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe FirewallRules: [{2819DDF0-E627-4B26-B8ED-DE3B0E0ADDA1}] => (Allow) C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe FirewallRules: [{4FFD3B6A-CAEC-487C-8D6E-A23E490BC3F4}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{E622BAFB-4336-4826-B51F-B007E6950314}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{B38A37D3-5E0D-49EA-8D2F-FA96F30B4FE0}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{8334AFA2-DC09-4D48-948B-18C3B1D24C0D}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{A0E0D3DD-D6EA-4D12-97E0-C114954E6C2F}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{06FEE7BC-F70F-4DBD-B346-8C0A2D61A001}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{FC0BD544-6A44-4ABD-B6C9-8CA1B8F38997}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{8D0E5E5C-E14C-474D-94A3-DC07EA4152D6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{26BECF83-8415-4A16-816B-74C7F45E5846}] => (Allow) LPort=3702 FirewallRules: [{EE81988A-4276-4271-9C73-2FE9E36D6043}] => (Allow) LPort=9244 FirewallRules: [{F7BA5BD8-D223-4839-9BFF-39E3C926140C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{7AE74F57-6C51-48D2-9DFC-ED6BB7560B5C}] => (Allow) C:\Program Files (x86)\PremierOpinion\pmropn.exe FirewallRules: [{DFB8B3D2-C468-4B85-B02F-F9ACA15E774D}] => (Allow) C:\Program Files (x86)\PremierOpinion\pmropn.exe FirewallRules: [{4CD98C42-4719-4A26-A8F4-809D51EB3908}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{F8AC5C38-9261-486D-AC2D-F826B4F5006C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{3BB0936A-3AFF-4132-944B-6D195904A1EE}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{96171C43-8496-483D-BBA3-D5FC86405E5B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{9301EFE5-A5C0-4B8F-8C6B-6E3FC58298C0}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{EC1742C0-1309-41CF-BE77-D5ABE7F836D1}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ==================== Faulty Device Manager Devices ============= Name: HP Color LaserJet CM1312nfi MFP Description: HP Color LaserJet CM1312nfi MFP Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: HP Color LaserJet CM1312nfi MFP Description: HP Color LaserJet CM1312nfi MFP Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: HP LaserJet 300 colorMFP M375nw Description: HP LaserJet 300 colorMFP M375nw Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (07/02/2015 10:40:25 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/02/2015 09:30:14 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 09:32:06 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 01:38:02 AM) (Source: System Restore) (EventID: 8210) (User: ) Description: Unbekannter Fehler bei der Systemwiederherstellung: (Windows Update). Zusätzliche Informationen: 0x80070005. Error: (06/29/2015 01:36:12 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 00:15:49 AM) (Source: System Restore) (EventID: 8210) (User: ) Description: Unbekannter Fehler bei der Systemwiederherstellung: (Windows Update). Zusätzliche Informationen: 0x80070005. Error: (06/29/2015 00:13:21 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/27/2015 10:01:45 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm Explorer.EXE, Version 6.1.7601.17567 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 994 Startzeit: 01d0b10ad43e8671 Endzeit: 0 Anwendungspfad: C:\windows\Explorer.EXE Berichts-ID: 4d8d1819-1d07-11e5-b5fd-e8039ae8e252 Error: (06/27/2015 08:57:06 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/27/2015 07:19:04 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm dw20.exe, Version 2.0.50727.5483 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1a9c Startzeit: 01d0b0afa25922f2 Endzeit: 78 Anwendungspfad: C:\Windows\Microsoft.NET\Framework\v2.0.50727\dw20.exe Berichts-ID: 4b904f14-1cf0-11e5-bd38-e8039ae8e252 System errors: ============= Error: (07/02/2015 10:45:40 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "NVIDIA Update Service Daemon" wurde nicht richtig gestartet. Error: (07/02/2015 10:39:45 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "KDService" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (07/02/2015 10:39:45 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst KDService erreicht. Error: (07/02/2015 10:39:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "FMUService" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (07/02/2015 10:39:00 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst FMUService erreicht. Error: (07/02/2015 09:28:09 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "KDService" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (07/02/2015 09:28:09 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst KDService erreicht. Error: (07/02/2015 09:26:30 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 01.07.2015 um 23:37:27 unerwartet heruntergefahren. Error: (07/01/2015 09:57:40 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {997E3BFB-F821-411C-8B96-D61D415EC8FA} Error: (06/30/2015 11:37:07 PM) (Source: Server) (EventID: 2505) (User: ) Description: Aufgrund eines doppelten Netzwerknamens konnte zu der Transportschicht \Device\NetBT_Tcpip_{32868629-EE6D-47FA-9A83-525821C583E4} vom Serverdienst nicht gebunden werden. Der Serverdienst konnte nicht gestartet werden. Microsoft Office: ========================= Error: (07/02/2015 10:40:25 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/02/2015 09:30:14 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 09:32:06 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 01:38:02 AM) (Source: System Restore) (EventID: 8210) (User: ) Description: Windows Update0x80070005 Error: (06/29/2015 01:36:12 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 00:15:49 AM) (Source: System Restore) (EventID: 8210) (User: ) Description: Windows Update0x80070005 Error: (06/29/2015 00:13:21 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/27/2015 10:01:45 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Explorer.EXE6.1.7601.1756799401d0b10ad43e86710C:\windows\Explorer.EXE4d8d1819-1d07-11e5-b5fd-e8039ae8e252 Error: (06/27/2015 08:57:06 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/27/2015 07:19:04 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: dw20.exe2.0.50727.54831a9c01d0b0afa25922f278C:\Windows\Microsoft.NET\Framework\v2.0.50727\dw20.exe4b904f14-1cf0-11e5-bd38-e8039ae8e252 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3-2310M CPU @ 2.10GHz Percentage of memory in use: 42% Total physical RAM: 4009.55 MB Available physical RAM: 2291.69 MB Total Pagefile: 8017.3 MB Available Pagefile: 5718.46 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:201 GB) (Free:1.79 GB) NTFS Drive d: () (Fixed) (Total:241.39 GB) (Free:203.13 GB) NTFS Drive f: () (Removable) (Total:7.5 GB) (Free:7.48 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 3882832C) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=201 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=241.4 GB) - (Type=OF Extended) Partition 4: (Not Active) - (Size=23.3 GB) - (Type=27) ======================================================== Disk: 1 (Size: 7.5 GB) (Disk ID: 00000000) Partition: GPT Partition Type. ==================== End of log ============================ Entschuldigung |
![]() | #2 |
/// TB-Ausbilder /// Anleitungs-Guru ![]() ![]() ![]() ![]() ![]() | ![]() Mozilla Firefox fuktioniert nicht mehr. Kein Problem!
__________________![]() Schritt 1 Bitte deinstalliere folgende Programme: 7-Zip Packages RocketTab VIS Versuche es bei Windows 7 ![]() Sollte das nicht gehen, lade Dir bitte Revo Uninstaller ![]()
Wenn Du ein Programm nicht deinstallieren kannst, mach mit dem nächsten weiter. Auch wenn am Ende noch Programme übrig geblieben sind, führe den nächsten Schritt aus: Schritt 2 Downloade Dir bitte ![]()
Schritt 3 ![]() ![]()
Schritt 4 ![]() ![]() Bitte starte FRST erneut, markiere auch die checkbox ![]() Bitte poste mir den Inhalt der beiden Logs die erstellt werden.
__________________ |
![]() |
Themen zu Mozilla Firefox fuktioniert nicht mehr. |
andere, ausgeschaltet, avast, deinstalliert, einstellungen, firefox, geholfen, inter, interne, internetseite, mozilla, mozilla firefox, möglichkeit, nicht mehr, seite, startseite, verbindung, verlauf, vertraut, werbung, win, win 7, zugangsdaten, zugreife, öffnen |