![]() |
|
Log-Analyse und Auswertung: Remote-Schadsoftware kontrolliert gesamtes Heimnetzwerk: Manipulation des Windows-Remote-SystemsWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
| ![]() Remote-Schadsoftware kontrolliert gesamtes Heimnetzwerk: Manipulation des Windows-Remote-Systems Hallo zusammen! Mein erster Post und dann leider gleich so ein Ding! 1. Kurzes Einschätzung zur Situation von mir: Die Remote-Schadsoftware auf meinen Rechnern und Router (Surface mit Win 8.1 und Desktop-PC mit Win 7) und die Kriminellen dahinter, beschäftigen mich jetzt schon seid drei Wochen. - freundlich ausgedrückt. Höchstwahrscheinlich steuern Sie Ihre Aktivitäten aus einen WLAN-Netz in der Nähe (Stadt: Berlin), da sie den besten WLAN-Empfang zu mir haben, um meine Hardware als Server zu missbrauchen. Ich schätze weiterhin, dass es sich, dem Vorgehen nach zu urteilen, um organisierte Krilinalität handelt und die (Gruppe) systematisch vorgeht und das Schadprogramm leider sehr professionell arbeitet ![]() Die MAC-Adresse und sowie mehrere IPs habe ich gespeichert, auch wenn sie wharscheinlich über Proxy-Server/VPN Zugriff auf mein Netzwerk erhalten. Aktuell: Aktuell haben die Angreifer wahrscheinlich keinen Zugriff oder wollen diesen nicht, da ich fast alles mit einer Firewall (ESET) blockiere und ihre MAC-Adresse mit dem Router blocke. Zugriff auf den Router haben Sie seid heute morgen auch nicht mehr gehabt. Bin nur noch über LAN am Router, WLAN komplett deaktiviert. 2.Beginn Dokumentation: Logs und Screens: Anmerkungen zu den Logs von heute: Zur Zeit habe ich alle Ports gesperret (außer HTTP,HTTPS), mit Router und zusätzlich der ESET-Smart S. Firewall, zumindest hoffe ich das! Kein WLAN, nur ein Rechner via LAN im Heimnetzwerk. Anmerkungen zu den Logs anderen Datums: Da war ich tweilweise on, teilweise off. Ich beginne mit "HWiNFO" auf den nächsten Seiten dann die Weiteren: a)HWiNFO Code:
ATTFilter HWiNFO64 Version 5.02-2575 DANIEL-PC ----------------------------------------------------------------- [Current Computer] Computer Name: DANIEL-PC [Operating System] Operating System: Microsoft Windows 7 Home Premium (x64) Build 7601 Service Pack: Service Pack 1 UEFI Boot: Not Present Current User Name: Daniel Central Processor(s) ------------------------------------------------------ [CPU Unit Count] Number Of Processor Packages (Physical): 1 Number Of Processors Cores: 2 Number Of Logical Processors: 2 Intel Core 2 Duo E4400 ---------------------------------------------------- [General Information] Processor Name: Intel Core 2 Duo E4400 Original Processor Frequency: 2000.0 MHz Original Processor Frequency [MHz]: 2000 CPU ID: 000006F2 CPU Brand Name: Intel(R) Core(TM)2 CPU 4400 @ 2.00GHz CPU Vendor: GenuineIntel CPU Stepping: L2 CPU Code Name: Conroe-2M CPU S-Spec: SLA3F CPU Thermal Design Power (TDP): 65 W CPU Max. Case Temperature (Tcase_max): 61.4 °C CPU Type: Production Unit CPU Platform: LGA775 (FC-LGA6) Microcode Update Revision: 5A Number of CPU Cores: 2 Number of Logical CPUs: 2 [Operating Points] CPU LFM (Minimum): 1200.0 MHz = 6 x 200.0 MHz @ 1.1875 V CPU HFM (Maximum): 2000.0 MHz = 10 x 200.0 MHz @ 1.3250 V [Locked] CPU Current: 2008.9 MHz = 10 x 200.9 MHz @ 1.3250 V CPU Bus Type: FSB (QDR) [Cache and TLB] L1 Cache: Instruction: 2 x 32 KBytes, Data: 2 x 32 KBytes L2 Cache: Integrated: 2 MBytes Instruction TLB: 4 KB Pages, 4-way set associative, 128 entries Data TLB: 4 MB Pages, 4-way set associative, 32 entries [Standard Feature Flags] FPU on Chip Present Enhanced Virtual-86 Mode Present I/O Breakpoints Present Page Size Extensions Present Time Stamp Counter Present Pentium-style Model Specific Registers Present Physical Address Extension Present Machine Check Exception Present CMPXCHG8B Instruction Present APIC On Chip / PGE (AMD) Present Fast System Call Present Memory Type Range Registers Present Page Global Feature Present Machine Check Architecture Present CMOV Instruction Present Page Attribute Table Present 36-bit Page Size Extensions Present Processor Number Not Present CLFLUSH Instruction Present Debug Trace and EMON Store Present Internal ACPI Support Present MMX Technology Present Fast FP Save/Restore (IA MMX-2) Present Streaming SIMD Extensions Present Streaming SIMD Extensions 2 Present Self-Snoop Present Multi-Threading Capable Present Automatic Clock Control Present IA-64 Processor Not Present Signal Break on FERR Present Streaming SIMD Extensions 3 Present Carryless Multiplication (PCLMULQDQ)/GFMUL Not Present 64-Bit Debug Store Present MONITOR/MWAIT Support Present CPL Qualified Debug Store Present Virtual Machine Extensions Not Present Safer Mode Extensions (Intel TXT) Not Present Thermal Monitor 2 Present Supplemental Streaming SIMD Extensions 3 Present Enhanced SpeedStep Technology Present L1 Context ID Not Present IA32 Debug Interface Support Not Present Fused Multiply Add Not Present CMPXCHG16B Support Present Send Task Priority Messages Disabling Present Performance/Debug Capability MSR Present Processor Context ID Not Present Direct Cache Access Not Present Streaming SIMD Extensions 4.1 Not Present Streaming SIMD Extensions 4.2 Not Present Extended xAPIC Not Present MOVBE Instruction Not Present POPCNT Instruction Not Present TSC-deadline Timer Not Present AES Cryptography Support Not Present XSAVE/XRSTOR/XSETBV/XGETBV Instructions Not Present XGETBV/XSETBV OS Enabled Not Present AVX Support Not Present Float16 Instructions Not Present Random Number Read Instruction Not Present [Extended Feature Flags] 64-bit Extensions Present RDTSCP and TSC_AUX Support Not Present 1 GB large page support Not Present No Execute Not Present SYSCALL/SYSRET Support Present Read/Write FS/GS Base Instructions Not Present TSC_THREAD_OFFSET Not Present Software Guard Extensions (SGX) Support Not Present Bit Manipulation Instructions Set 1 Not Present Hardware Lock Elision Not Present AVX2 Instructions Not Present Supervisor Mode Execution Protection Not Present Bit Manipulation Instructions Set 2 Not Present Enhanced Performance String Instruction Not Present INVPCID Instruction Not Present Restricted Transactional Memory Not Present Platform Quality of Service Monitoring (PQM) Not Present Platform Quality of Service Enforcement (PQE) Not Present Deprecated FPU CS and FPU DS Not Present Memory Protection Extensions Not Present Advanced Vector Extensions 512 (AVX-512) Not Present AVX-512 Doubleword and Quadword Instructions Not Present RDSEED Instruction Not Present Multi-precision Add Carry Instructions Not Present Supervisor Mode Access Prevention (SMAP) Not Present AVX-512 52-bit Integer FMA Instructions Not Present CLFLUSHOPT Instructions Not Present Intel Processor Trace Not Present AVX-512 Prefetch Instructions Not Present AVX-512 Exponential and Reciprocal Instructions Not Present AVX-512 Conflict Detection Instructions Not Present Secure Hash Algorithm (SHA) Extensions Not Present AVX-512 Byte and Word Instructions Not Present AVX-512 Vector Length Extensions Not Present PREFETCHWT1 Instruction Not Present AVX-512 Vector Bit Manipulation Instructions Not Present [Enhanced Features] Thermal Monitor 1: Supported, Disabled Thermal Monitor 2: Supported, Disabled Enhanced Intel SpeedStep (GV3): Supported, Enabled Bi-directional PROCHOT#: N/A Extended Auto-HALT State C1E: N/A Extended Stop Grant State C2E: N/A Enhanced Halt State C3E: N/A Enhanced Halt State C4E: N/A Enhanced Halt State Hard C4E: N/A Hardware Prefetcher: Supported, Enabled DCU Prefetcher: Supported, Enabled IP Prefetcher: Supported, Enabled Adjacent Cache Line Prefetch: Supported, Enabled MLC Streamer Prefetcher Not Supported MLC Spatial Prefetcher Not Supported DCU Streamer Prefetcher Not Supported DCU IP Prefetcher Not Supported Intel Dynamic Acceleration (IDA) Technology: Not Supported Intel Dynamic FSB Switching: Not Supported Enhanced Multi Threaded Thermal Management: N/A Intel Turbo Boost Technology: Not Supported Programmable Ratio Limits: Not Supported Programmable TDC/TDP Limits: Not Supported [Memory Ranges] Maximum Physical Address Size: 36-bit (64 GBytes) Maximum Virtual Address Size: 48-bit (256 TBytes) [MTRRs] Range 0-100000000 (0MB-4096MB) Type: Write Back (WB) Range 100000000-120000000 (4096MB-4608MB) Type: Write Back (WB) Range CFE00000-D0000000 (3326MB-3328MB) Type: Uncacheable (UC) Range D0000000-E0000000 (3328MB-3584MB) Type: Uncacheable (UC) Range E0000000-100000000 (3584MB-4096MB) Type: Uncacheable (UC) Motherboard --------------------------------------------------------------- [Computer] Computer Brand Name: Unknown on Noname [Motherboard] Motherboard Model: ASRock G41M-VGS3. Motherboard Chipset: Intel G41 (Eaglelake) + ICH7 Motherboard Slots: 1xPCI, 2xPCI Express x1 PCI Express Version Supported: v1.1 USB Version Supported: v2.0 [(G)MCH Features] Secondary PCI Express Port x16: Not Supported Dual Independent Display: Supported Primary PCI Express Port x16: Supported 2 DIMMS per Channel: Not Supported Manageability Engine (ME): Not Supported iAMT: Not Supported Intel Virtualization Technology for I/O Devices (VT-d): Not Supported Internal Graphics: Supported Primary PCI Express Port: Supported DDR2 Frequency Support: 400 MHz (DDR2-800) DDR3 Frequency Support: 533 MHz (DDR3-1066) FSB Frequency Support: 333 MHz (1333 QDR) [ICH7 Features] Intel Active Management Technology (iAMT): Supported Intel Quick Resume Technology (Energy Lake): Not Supported SATA AHCI: Not Supported SATA RAID0/1/10: Not Supported SATA RAID5: Not Supported 6 PCI Express x1 Ports: Not Supported [BIOS] BIOS Manufacturer: American Megatrends BIOS Date: 10/21/11 BIOS Version: P1.00 UEFI BIOS: Not Capable Super-IO/LPC Chip: Winbond/Nuvoton W83627DHG-P(T) ACPI Devices -------------------------------------------------------------- ACPI-Schalter ------------------------------------------------------------- Device Name: ACPI-Schalter Intel-Prozessor ----------------------------------------------------------- Device Name: Intel-Prozessor Intel-Prozessor ----------------------------------------------------------- Device Name: Intel-Prozessor Intel(R) 82802 Firmwarehub ------------------------------------------------ Device Name: Intel(R) 82802 Firmwarehub [Assigned Resources] Memory Location: FFB00000 - FFBFFFFF [Alternative 1] Memory Location: FFB00000 - FFBFFFFF Memory Location: FFF00000 - FFFFFFFF Programmierbarer Interruptcontroller -------------------------------------- Device Name: Programmierbarer Interruptcontroller [Assigned Resources] I/O Port: 0020 - 0021 IRQ: 65792 [Alternative 1] I/O Port: 0020 - 0021 I/O Port: 00A0 - 00A1 Systemzeitgeber ----------------------------------------------------------- Device Name: Systemzeitgeber [Assigned Resources] I/O Port: 0040 - 0043 [Alternative 1] I/O Port: 0040 - 0043 IRQ: 0 Hochpräzisionsereigniszeitgeber ------------------------------------------- Device Name: Hochpräzisionsereigniszeitgeber [Assigned Resources] Memory Location: FED00000 - FED003FF [Alternative 1] Memory Location: FED00000 - FED003FF DMA-Controller ------------------------------------------------------------ Device Name: DMA-Controller [Assigned Resources] I/O Port: 0089 - 008B DMA: 4 [Alternative 1] I/O Port: 0000 - 000F I/O Port: 0081 - 0083 I/O Port: 0087 I/O Port: 0089 - 008B I/O Port: 008F I/O Port: 00C0 - 00DF DMA: 4 ECP-Druckeranschluss ------------------------------------------------------ Device Name: ECP-Druckeranschluss [Assigned Resources] I/O Port: 0378 - 037F [Alternative 1] I/O Port: 0378 - 037F I/O Port: 0778 - 077F IRQ: 7 DMA: 3 [Alternative 2] I/O Port: 0378 - 037F I/O Port: 0778 - 077F IRQ: 3 IRQ: 4 IRQ: 5 IRQ: 6 IRQ: 7 IRQ: 10 IRQ: 11 IRQ: 12 DMA: 0 DMA: 1 DMA: 2 DMA: 3 [Alternative 3] I/O Port: 0278 - 027F I/O Port: 0678 - 067F IRQ: 3 IRQ: 4 IRQ: 5 IRQ: 6 IRQ: 7 IRQ: 10 IRQ: 11 IRQ: 12 DMA: 0 DMA: 1 DMA: 2 DMA: 3 [Alternative 4] I/O Port: 03BC - 03BF I/O Port: 07BC - 07BF IRQ: 3 IRQ: 4 IRQ: 5 IRQ: 6 IRQ: 7 IRQ: 10 IRQ: 11 IRQ: 12 DMA: 0 DMA: 1 DMA: 2 DMA: 3 Kommunikationsanschluss --------------------------------------------------- Device Name: Kommunikationsanschluss [Assigned Resources] I/O Port: 03F8 - 03FF [Alternative 1] I/O Port: 03F8 - 03FF IRQ: 4 [Alternative 2] I/O Port: 03F8 - 03FF IRQ: 3 IRQ: 4 IRQ: 5 IRQ: 6 IRQ: 7 IRQ: 10 IRQ: 11 IRQ: 12 [Alternative 3] I/O Port: 02F8 - 02FF IRQ: 3 IRQ: 4 IRQ: 5 IRQ: 6 IRQ: 7 IRQ: 10 IRQ: 11 IRQ: 12 [Alternative 4] I/O Port: 03E8 - 03EF IRQ: 3 IRQ: 4 IRQ: 5 IRQ: 6 IRQ: 7 IRQ: 10 IRQ: 11 IRQ: 12 [Alternative 5] I/O Port: 02E8 - 02EF IRQ: 3 IRQ: 4 IRQ: 5 IRQ: 6 IRQ: 7 IRQ: 10 IRQ: 11 IRQ: 12 Systemlautsprecher -------------------------------------------------------- Device Name: Systemlautsprecher [Assigned Resources] I/O Port: 0061 [Alternative 1] I/O Port: 0061 PCI-Bus ------------------------------------------------------------------- Device Name: PCI-Bus [Assigned Resources] I/O Port: 0000 - FFFFFFFF Memory Location: 000A0000 - 000BFFFF Memory Location: CFE00000 - CFDFFFFF [Alternative 1] I/O Port: 0000 - 0CF7 I/O Port: 0D00 - FFFF Memory Location: 000A0000 - 000BFFFF Memory Location: 000D0000 - 000DFFFF Memory Location: CFE00000 - EFFFFFFF Memory Location: F4000000 - FFFFFFFF System CMOS/Echtzeituhr --------------------------------------------------- Device Name: System CMOS/Echtzeituhr [Assigned Resources] I/O Port: 0070 - 0071 [Alternative 1] I/O Port: 0070 - 0071 IRQ: 8 Systemplatine ------------------------------------------------------------- Device Name: Systemplatine [Assigned Resources] Memory Location: 00000000 - 0009FFFF [Alternative 1] Memory Location: 00000000 - 0009FFFF Memory Location: 000C0000 - 000CFFFF Memory Location: 000E0000 - 000FFFFF Memory Location: 00100000 - CFDFFFFF Systemplatine ------------------------------------------------------------- Device Name: Systemplatine [Assigned Resources] Memory Location: FED14000 - FED19FFF [Alternative 1] Memory Location: FED14000 - FED19FFF Memory Location: FED90000 - FED93FFF Hauptplatinenressourcen --------------------------------------------------- Device Name: Hauptplatinenressourcen [Assigned Resources] I/O Port: 0060 I/O Port: 0000 - FEBFFFFF [Alternative 1] I/O Port: 0060 I/O Port: 0064 Memory Location: FEC00000 - FEC00FFF Memory Location: FEE00000 - FEE00FFF Hauptplatinenressourcen --------------------------------------------------- Device Name: Hauptplatinenressourcen [Assigned Resources] I/O Port: 0010 - 001F I/O Port: 0065 - 006F I/O Port: 0088 I/O Port: 00E0 - 00EF Memory Location: 00000000 - 0000008F IRQ: 1114369 [Alternative 1] I/O Port: 0010 - 001F I/O Port: 0022 - 003F I/O Port: 0044 - 005F I/O Port: 0062 - 0063 I/O Port: 0065 - 006F I/O Port: 0072 - 007F I/O Port: 0080 I/O Port: 0084 - 0086 I/O Port: 0088 I/O Port: 008C - 008E I/O Port: 0090 - 009F I/O Port: 00A2 - 00BF I/O Port: 00E0 - 00EF I/O Port: 04D0 - 04D1 I/O Port: 0800 - 087F I/O Port: 0480 - 04BF I/O Port: 0900 - 090F Memory Location: FED1C000 - FED1FFFF Memory Location: FED20000 - FED8FFFF Hauptplatinenressourcen --------------------------------------------------- Device Name: Hauptplatinenressourcen [Assigned Resources] Memory Location: F0000000 - F3FFFFFF [Alternative 1] Memory Location: F0000000 - F3FFFFFF Hauptplatinenressourcen --------------------------------------------------- Device Name: Hauptplatinenressourcen [Assigned Resources] I/O Port: 0280 - 028F [Alternative 1] I/O Port: 0280 - 028F I/O Port: 0290 - 029F Hauptplatinenressourcen --------------------------------------------------- Device Name: Hauptplatinenressourcen [Assigned Resources] Memory Location: FFC00000 - FFEFFFFF [Alternative 1] Memory Location: FFC00000 - FFEFFFFF Numerischer Coprozessor --------------------------------------------------- Device Name: Numerischer Coprozessor [Assigned Resources] I/O Port: 00F0 - 00FF [Alternative 1] I/O Port: 00F0 - 00FF IRQ: 13 ACPI-Einschaltknopf ------------------------------------------------------- Device Name: ACPI-Einschaltknopf SMBIOS DMI ---------------------------------------------------------------- BIOS ---------------------------------------------------------------------- BIOS Vendor: American Megatrends Inc. BIOS Version: P1.00 BIOS Release Date: 10/21/2011 BIOS Start Segment: F000 BIOS Size: 1024 KBytes System BIOS Version: 8.15 ISA Support: Not Present MCA Support: Not Present EISA Support: Not Present PCI Support: Present PC Card (PCMCIA) Support: Not Present Plug-and-Play Support: Not Present APM Support: Not Present Flash BIOS: Present BIOS Shadow: Present VL-VESA Support: Not Present ESCD Support: Not Present Boot from CD: Present Selectable Boot: Present BIOS ROM Socketed: Present Boot from PC Card: Not Present EDD Support: Present NEC PC-98 Support: Not Present ACPI Support: Present USB Legacy Support: Present AGP Support: Not Present I2O Boot Support: Not Present LS-120 Boot Support: Present ATAPI ZIP Drive Boot Support: Present IEE1394 Boot Support: Not Present Smart Battery Support: Not Present BIOS Boot Specification Support: Present Function key-initiated Network Service Boot Support: Present Targeted Content Distribution Support: Present UEFI Specification Support: Not Present System -------------------------------------------------------------------- System Manufacturer: To Be Filled By O.E.M. Product Name: To Be Filled By O.E.M. Product Version: To Be Filled By O.E.M. Product Serial Number: To Be Filled By O.E.M. SKU Number: To Be Filled By O.E.M. Family: To Be Filled By O.E.M. Mainboard ----------------------------------------------------------------- Mainboard Manufacturer: ASRock Mainboard Name: G41M-VGS3. Mainboard Version: Mainboard Serial Number: Asset Tag: Location in chassis: System Enclosure ---------------------------------------------------------- Manufacturer: To Be Filled By O.E.M. Case Type: Desktop Version: To Be Filled By O.E.M. Serial Number: To Be Filled By O.E.M. Asset Tag Number: To Be Filled By O.E.M. Processor ----------------------------------------------------------------- Processor Manufacturer: Intel Processor Version: Intel(R) Core(TM)2 CPU 4400 @ 2.00GHz External Clock: 200 MHz Maximum Clock Supported: 2000 MHz Current Clock: 2000 MHz CPU Socket: Populated CPU Status: Enabled Processor Type: Central Processor Processor Voltage: 1.3 V Processor Upgrade: Unknown (1) Socket Designation: CPUSocket L1-Cache ------------------------------------------------------------------ Socket Designation: L1-Cache Cache State: Enabled Cache Type: Internal, Data Cache Scheme: Write-Back Supported SRAM Type: Current SRAM Type: Cache Speed: Unknown Error Correction Type: Maximum Cache Size: 64 KBytes Installed Cache Size: 64 KBytes Cache Associativity: 8-way Set-Associative L2-Cache ------------------------------------------------------------------ Socket Designation: L2-Cache Cache State: Enabled Cache Type: Internal, Unified Cache Scheme: Write-Back Supported SRAM Type: Current SRAM Type: Cache Speed: Unknown Error Correction Type: Maximum Cache Size: 2048 KBytes Installed Cache Size: 2048 KBytes Cache Associativity: 8-way Set-Associative L3-Cache ------------------------------------------------------------------ Socket Designation: L3-Cache Cache State: Disabled Cache Type: Internal Cache Scheme: Unknown Supported SRAM Type: Current SRAM Type: Cache Speed: Unknown Error Correction Type: Unknown Maximum Cache Size: 0 KBytes Installed Cache Size: 0 KBytes Cache Associativity: Unknown System Boot Information --------------------------------------------------- Boot Status: No error occured Memory Devices ------------------------------------------------------------ Memory Controller --------------------------------------------------------- Error Detecting Method: 64-bit ECC Error Correction: None Supported Interleave: 1-Way Current Interleave: 1-Way Max. Memory Module Size: 4096 MBytes Supported Memory Speed: Supported Memory Type: DIMM, SDRAM Supported Memory Voltage: 3.3 V Associated Memory Slots: 2 DIMM0 --------------------------------------------------------------------- Socket Designation: DIMM0 Memory Type: DIMM, SDRAM Memory Speed: Unknown Installed size: Not installed Enabled size: Not installed DIMM1 --------------------------------------------------------------------- Socket Designation: DIMM1 Memory Type: DIMM, SDRAM Memory Speed: Unknown Installed size: 4096 MBytes Enabled size: 4096 MBytes Physical Memory Array ----------------------------------------------------- Array Location: System board Array Use: System memory Error Detecting Method: None Memory Capacity: 4194304 KBytes Memory Devices: 2 Memory Array Mapped Address ----------------------------------------------- Starting Address: 00000000 Ending Address: 003FFFFF Partition Width: 4 Memory Device ------------------------------------------------------------- Total Width: Unknown Data Width: 64 bits Device Size: 0 MBytes Device Form Factor: DIMM Device Locator: DIMM0 Bank Locator: BANK0 Device Type: Unknown Device Type Detail: Manufacturer: Manufacturer00 Serial Number: SerNum00 Part Number: ModulePartNumber00 Asset Tag: AssetTagNum0 Memory Device ------------------------------------------------------------- Total Width: 64 bits Data Width: 64 bits Device Size: 4096 MBytes Device Form Factor: DIMM Device Locator: DIMM1 Bank Locator: BANK1 Device Type: SDRAM Device Type Detail: Synchronous Manufacturer: Manufacturer01 Serial Number: SerNum01 Part Number: ModulePartNumber01 Asset Tag: AssetTagNum1 Memory Device Mapped Address ---------------------------------------------- Starting Address: 00000000 Ending Address: 003FFFFF Partition Row Position: 1 Interleave Position: Non-interleaved Interleave Data Depth: 1 System Slots -------------------------------------------------------------- PCI1 ---------------------------------------------------------------------- Slot Designation: PCI1 Slot Type: PCI Slot Usage: Empty Slot Data Bus Width: 32-bit Slot Length: Short PCIE1 --------------------------------------------------------------------- Slot Designation: PCIE1 Slot Type: PCI Express Slot Usage: Empty Slot Data Bus Width: 1x / x1 Slot Length: Short Memory -------------------------------------------------------------------- [General information] Total Memory Size: 4 GBytes Total Memory Size [MB]: 4096 [Current Performance Settings] Maximum Supported Memory Clock: 533.3 MHz Current Memory Clock: 401.8 MHz (2 : 1 ratio) Current Timing (tCAS-tRCD-tRP-tRAS): 6.0-6-6-15 Memory Runs At: Single-Channel Command Rate: 2T Read to Read Delay (tRD_RD) Same Rank: 4T Read to Read Delay (tRD_RD) Different Rank: 9T Write to Write Delay (tWR_WR) Same Rank: 4T Write to Write Delay (tWR_WR) Different Rank: 7T Read to Write Delay (tRD_WR) Different Rank: 8T Write to Read Delay (tWR_RD) Same Rank (tWTR): 13T Write to Read Delay (tWR_RD) Different Rank: 8T Read to Precharge Delay (tRTP): 4T Write to Precharge Delay (tWTP): 26T Write Recovery Time (tWR): 15T RAS# to RAS# Delay (tRRD): 3T Refresh Cycle Time (tRFC): 64T Four Activate Window (tFAW): 16T Row: 2 - 4096 MB PC3-10600 DDR3 SDRAM Nanya Technology M2F4GH64CB8HB6N-CG - [General Module Information] Module Number: 2 Module Size: 4096 MBytes Memory Type: DDR3 SDRAM Module Type: Unbuffered DIMM (UDIMM) Memory Speed: 666.7 MHz (DDR3-1333 / PC3-10600) Module Manufacturer: Nanya Technology Module Part Number: M2F4GH64CB8HB6N-CG Module Revision: 0 Module Serial Number: 1027296428 Module Manufacturing Date: Year: 2013, Week: 48 Module Manufacturing Location: 13 SDRAM Manufacturer: Nanya Technology Error Check/Correction: None [Module characteristics] Row Address Bits: 15 Column Address Bits: 10 Number Of Banks: 8 Module Density: 2048 Mb Number Of Ranks: 2 Device Width: 8 bits Bus Width: 64 bits Module Nominal Voltage (VDD): 1.5 V [Module timing] Minimum SDRAM Cycle Time (tCKmin): 1.500 ns CAS# Latencies Supported: 5, 6, 7, 8, 9 Minimum CAS# Latency Time (tAAmin): 13.125 ns Minimum RAS# to CAS# Delay (tRCDmin): 13.125 ns Minimum Row Precharge Time (tRPmin): 13.125 ns Minimum Active to Precharge Time (tRASmin): 36.000 ns Supported Module Timing at 666.7 MHz: 9-9-9-24 Supported Module Timing at 600.0 MHz: 8-8-8-22 Supported Module Timing at 533.3 MHz: 7-7-7-20 Supported Module Timing at 466.7 MHz: 7-7-7-17 Supported Module Timing at 400.0 MHz: 6-6-6-15 Supported Module Timing at 333.3 MHz: 5-5-5-12 Minimum Write Recovery Time (tWRmin): 15.000 ns Minimum Row Active to Row Active Delay (tRRDmin): 6.000 ns Minimum Active to Active/Refresh Time (tRCmin): 49.125 ns Minimum Refresh Recovery Time Delay (tRFCmin): 160.000 ns Minimum Internal Write to Read Command Delay (tWTRmin): 7.500 ns Minimum Internal Read to Precharge Command Delay (tRTPmin): 7.500 ns Minimum Four Activate Window Delay Time (tFAWmin): 30.000 ns [Features] Partial Array Self Refresh (PASR): Not Supported On-die Thermal Sensor (ODTS) Readout: Not Supported Auto Self Refresh (ASR): Supported Extended Temperature 1X Refresh Rate: Not Supported Extended Temperature Range: Supported Module Temperature Sensor: Not Supported Pseudo Target Row Refresh (pTRR): Not Supported Module Nominal Height: 29 - 30 mm Module Maximum Thickness (Front): 1 - 2 mm Module Maximum Thickness (Back): 1 - 2 mm Bus ----------------------------------------------------------------------- PCI Bus #0 ---------------------------------------------------------------- Intel G41 Chipset - Memory Controller Hub [A3] ---------------------------- [General Information] Device Name: Intel G41 Chipset - Memory Controller Hub [A3] Original Device Name: Intel G41 Chipset - Memory Controller Hub [A3] Device Class: Host-to-PCI Bridge Revision ID: 3 Bus Number: 0 Device Number: 0 Function Number: 0 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_2E30&SUBSYS_2E301849&REV_03 [System Resources] Interrupt Line: N/A Interrupt Pin: N/A [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Capable [Driver Information] Driver Manufacturer: Intel Driver Description: Intel(R) 4 Series Chipset Processor to I/O Controller - 2E30 Driver Provider: Microsoft Driver Version: 6.1.7601.17514 Driver Date: 21-Jun-2006 DeviceInstanceId PCI\VEN_8086&DEV_2E30&SUBSYS_2E301849&REV_03\3&11583659&0&00 Intel G41 Chipset - Integrated Graphics 0 [A3] ---------------------------- [General Information] Device Name: Intel G41 Chipset - Integrated Graphics 0 [A3] Original Device Name: Intel G41 Chipset - Integrated Graphics 0 [A3] Device Class: VGA Compatible Adapter Revision ID: 3 Bus Number: 0 Device Number: 2 Function Number: 0 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_2E32&SUBSYS_2E321849&REV_03 [System Resources] Interrupt Line: N/A Interrupt Pin: INTA# Memory Base Address 0 FE400000 Memory Base Address 2 E0000000 I/O Base Address 4 DC00 [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Capable [Driver Information] Driver Manufacturer: Intel Corporation Driver Description: Intel(R) G41 Express Chipset Driver Provider: Intel Corporation Driver Version: 8.15.10.1892 Driver Date: 02-Sep-2009 DeviceInstanceId PCI\VEN_8086&DEV_2E32&SUBSYS_2E321849&REV_03\3&11583659&0&10 Intel 82801GB ICH7 - High Definition Audio [A1] --------------------------- [General Information] Device Name: Intel 82801GB ICH7 - High Definition Audio [A1] Original Device Name: Intel 82801GB ICH7 - High Definition Audio [A1] Device Class: Mixed mode device Revision ID: 1 Bus Number: 0 Device Number: 27 Function Number: 0 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_27D8&SUBSYS_03971849&REV_01 [PCI Express] Version: 1.1 Current Link Width: Not negotiated Device/Port Type: Root Complex Integrated Endpoint Slot Implemented: No Active State Power Management (ASPM) Support: None Active State Power Management (ASPM) Status: Disabled [System Resources] Interrupt Line: IRQ16 Interrupt Pin: INTA# Memory Base Address 0 FEAF8000 [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Not Capable [Driver Information] Driver Manufacturer: Microsoft Driver Description: High Definition Audio-Controller Driver Provider: Microsoft Driver Version: 6.1.7601.17514 Driver Date: 19-Nov-2010 DeviceInstanceId PCI\VEN_8086&DEV_27D8&SUBSYS_03971849&REV_01\3&11583659&0&D8 Intel 82801GB ICH7 - PCI Express Root Port 1 [A1] ------------------------- [General Information] Device Name: Intel 82801GB ICH7 - PCI Express Root Port 1 [A1] Original Device Name: Intel 82801GB ICH7 - PCI Express Root Port 1 [A1] Device Class: PCI-to-PCI Bridge Revision ID: 1 Bus Number: 0 Device Number: 28 Function Number: 0 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_27D0&SUBSYS_00000000&REV_01 [PCI Express] Version: 1.1 Maximum Link Width: 1x Current Link Width: Not negotiated Maximum Link Speed: 2.5 Gb/s Current Link Speed: 2.5 Gb/s Device/Port Type: Root Port of PCI Express Root Complex Slot Implemented: Yes Hot-Plug: Capable Hot-Plug Surprise: Capable Active State Power Management (ASPM) Support: L0s and L1 Active State Power Management (ASPM) Status: Disabled [System Resources] Interrupt Line: IRQ16 Interrupt Pin: INTA# [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Not Capable [Driver Information] Driver Manufacturer: Intel Driver Description: Intel(R) N10/ICH7 Family PCI Express Root Port - 27D0 Driver Provider: Intel Driver Version: 9.1.1.1016 Driver Date: 05-Aug-2009 DeviceInstanceId PCI\VEN_8086&DEV_27D0&SUBSYS_27D01849&REV_01\3&11583659&0&E0 PCI Express x1 Bus #2 ----------------------------------------------------- Intel 82801GB ICH7 - PCI Express Root Port 2 [A1] ------------------------- [General Information] Device Name: Intel 82801GB ICH7 - PCI Express Root Port 2 [A1] Original Device Name: Intel 82801GB ICH7 - PCI Express Root Port 2 [A1] Device Class: PCI-to-PCI Bridge Revision ID: 1 Bus Number: 0 Device Number: 28 Function Number: 1 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_27D2&SUBSYS_00000000&REV_01 [PCI Express] Version: 1.1 Maximum Link Width: 1x Current Link Width: 1x Maximum Link Speed: 2.5 Gb/s Current Link Speed: 2.5 Gb/s Device/Port Type: Root Port of PCI Express Root Complex Slot Implemented: Yes Hot-Plug: Capable Hot-Plug Surprise: Capable Active State Power Management (ASPM) Support: L0s and L1 Active State Power Management (ASPM) Status: Disabled [System Resources] Interrupt Line: IRQ17 Interrupt Pin: INTB# [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Not Capable [Driver Information] Driver Manufacturer: Intel Driver Description: Intel(R) N10/ICH7 Family PCI Express Root Port - 27D2 Driver Provider: Intel Driver Version: 9.1.1.1016 Driver Date: 05-Aug-2009 DeviceInstanceId PCI\VEN_8086&DEV_27D2&SUBSYS_27D21849&REV_01\3&11583659&0&E1 PCI Express x1 Bus #1 ----------------------------------------------------- Qualcomm/Atheros AR8151 PCI-E Gigabit Ethernet Controller (L1c) ----------- [General Information] Device Name: Qualcomm/Atheros AR8151 PCI-E Gigabit Ethernet Controller (L1c) Original Device Name: Qualcomm/Atheros AR8151 PCI-E Gigabit Ethernet Controller (L1c) Device Class: Ethernet Adapter Revision ID: C0 Bus Number: 1 Device Number: 0 Function Number: 0 PCI Latency Timer: 0 Hardware ID: PCI\VEN_1969&DEV_1083&SUBSYS_10831849&REV_C0 [PCI Express] Version: 1.1 Maximum Link Width: 1x Current Link Width: 1x Maximum Link Speed: 2.5 Gb/s Current Link Speed: 2.5 Gb/s Device/Port Type: PCI Express Endpoint Slot Implemented: No Active State Power Management (ASPM) Support: L0s and L1 Active State Power Management (ASPM) Status: Disabled [System Resources] Interrupt Line: IRQ17 Interrupt Pin: INTA# Memory Base Address 0 FEBC0000 I/O Base Address 2 EC00 [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Not Capable [Driver Information] Driver Manufacturer: Atheros Driver Description: Atheros AR8151 PCI-E Gigabit Ethernet Controller (NDIS 6.20) Driver Provider: Atheros Driver Version: 1.0.0.35 Driver Date: 24-Aug-2010 DeviceInstanceId PCI\VEN_1969&DEV_1083&SUBSYS_10831849&REV_C0\4&1BA3C945&0&00E1 Intel 82801GB ICH7 - USB Universal Host Controller [A1] ------------------- [General Information] Device Name: Intel 82801GB ICH7 - USB Universal Host Controller [A1] Original Device Name: Intel 82801GB ICH7 - USB Universal Host Controller [A1] Device Class: Universal Serial Bus (USB) Revision ID: 1 Bus Number: 0 Device Number: 29 Function Number: 0 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_27C8&SUBSYS_27C81849&REV_01 [System Resources] Interrupt Line: IRQ23 Interrupt Pin: INTA# I/O Base Address 4 D400 [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Capable USB Version Supported: 1.0 [Driver Information] Driver Manufacturer: Intel Driver Description: Intel(R) N10/ICH7 Family USB Universal Host Controller - 27C8 Driver Provider: Intel Driver Version: 9.1.1.1016 Driver Date: 05-Aug-2009 DeviceInstanceId PCI\VEN_8086&DEV_27C8&SUBSYS_27C81849&REV_01\3&11583659&0&E8 USB Root Hub -------------------------------------------------------------- [Port1] : No Device Connected --------------------------------------------- [Port2] : No Device Connected --------------------------------------------- Intel 82801GB ICH7 - USB Universal Host Controller [A1] ------------------- [General Information] Device Name: Intel 82801GB ICH7 - USB Universal Host Controller [A1] Original Device Name: Intel 82801GB ICH7 - USB Universal Host Controller [A1] Device Class: Universal Serial Bus (USB) Revision ID: 1 Bus Number: 0 Device Number: 29 Function Number: 1 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_27C9&SUBSYS_27C91849&REV_01 [System Resources] Interrupt Line: IRQ19 Interrupt Pin: INTB# I/O Base Address 4 D480 [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Capable USB Version Supported: 1.0 [Driver Information] Driver Manufacturer: Intel Driver Description: Intel(R) N10/ICH7 Family USB Universal Host Controller - 27C9 Driver Provider: Intel Driver Version: 9.1.1.1016 Driver Date: 05-Aug-2009 DeviceInstanceId PCI\VEN_8086&DEV_27C9&SUBSYS_27C91849&REV_01\3&11583659&0&E9 USB Root Hub -------------------------------------------------------------- [Port1] : No Device Connected --------------------------------------------- [Port2] : No Device Connected --------------------------------------------- Intel 82801GB ICH7 - USB Universal Host Controller [A1] ------------------- [General Information] Device Name: Intel 82801GB ICH7 - USB Universal Host Controller [A1] Original Device Name: Intel 82801GB ICH7 - USB Universal Host Controller [A1] Device Class: Universal Serial Bus (USB) Revision ID: 1 Bus Number: 0 Device Number: 29 Function Number: 2 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_27CA&SUBSYS_27CA1849&REV_01 [System Resources] Interrupt Line: IRQ18 Interrupt Pin: INTC# I/O Base Address 4 D800 [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Capable USB Version Supported: 1.0 [Driver Information] Driver Manufacturer: Intel Driver Description: Intel(R) N10/ICH7 Family USB Universal Host Controller - 27CA Driver Provider: Intel Driver Version: 9.1.1.1016 Driver Date: 05-Aug-2009 DeviceInstanceId PCI\VEN_8086&DEV_27CA&SUBSYS_27CA1849&REV_01\3&11583659&0&EA USB Root Hub -------------------------------------------------------------- [Port1] : USB-Verbundgerät ------------------------------------------------ [Device Information] Device Manufacturer: Microsoft Product Name: Microsoft® 2.4GHz Transceiver v7.0 Serial Number: N/A USB Version Supported: 2.00 USB Device Speed: USB 1.1 Full-speed Driver Description: USB-Verbundgerät Hardware ID: USB\VID_045E&PID_0745 [Driver Information] Driver Manufacturer: (Standard-USB-Hostcontroller) Driver Description: USB-Verbundgerät Driver Provider: Microsoft Driver Version: 6.1.7601.17514 Driver Date: 21-Jun-2006 DeviceInstanceId USB\VID_045E&PID_0745\5&8A0E485&0&1 [Port2] : No Device Connected --------------------------------------------- Intel 82801GB ICH7 - USB Universal Host Controller [A1] ------------------- [General Information] Device Name: Intel 82801GB ICH7 - USB Universal Host Controller [A1] Original Device Name: Intel 82801GB ICH7 - USB Universal Host Controller [A1] Device Class: Universal Serial Bus (USB) Revision ID: 1 Bus Number: 0 Device Number: 29 Function Number: 3 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_27CB&SUBSYS_27CB1849&REV_01 [System Resources] Interrupt Line: IRQ16 Interrupt Pin: INTD# I/O Base Address 4 D880 [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Capable USB Version Supported: 1.0 [Driver Information] Driver Manufacturer: Intel Driver Description: Intel(R) N10/ICH7 Family USB Universal Host Controller - 27CB Driver Provider: Intel Driver Version: 9.1.1.1016 Driver Date: 05-Aug-2009 DeviceInstanceId PCI\VEN_8086&DEV_27CB&SUBSYS_27CB1849&REV_01\3&11583659&0&EB USB Root Hub -------------------------------------------------------------- [Port1] : No Device Connected --------------------------------------------- [Port2] : No Device Connected --------------------------------------------- Intel 82801GB ICH7 - Enhanced USB2 Controller [A1] ------------------------ [General Information] Device Name: Intel 82801GB ICH7 - Enhanced USB2 Controller [A1] Original Device Name: Intel 82801GB ICH7 - Enhanced USB2 Controller [A1] Device Class: Universal Serial Bus (USB) Revision ID: 1 Bus Number: 0 Device Number: 29 Function Number: 7 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_27CC&SUBSYS_27CC1849&REV_01 [System Resources] Interrupt Line: IRQ23 Interrupt Pin: INTA# Memory Base Address 0 FEAF7C00 [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Capable USB Version Supported: 2.0 [Driver Information] Driver Manufacturer: Intel Driver Description: Intel(R) N10/ICH7 Family USB2 Enhanced Host Controller - 27CC Driver Provider: Intel Driver Version: 9.1.1.1016 Driver Date: 05-Aug-2009 DeviceInstanceId PCI\VEN_8086&DEV_27CC&SUBSYS_27CC1849&REV_01\3&11583659&0&EF USB Root Hub -------------------------------------------------------------- [Port1] : No Device Connected --------------------------------------------- [Port2] : No Device Connected --------------------------------------------- [Port3] : Unknown Device Connected ---------------------------------------- [Device Information] Device Manufacturer: Realtek Product Name: Belkin Wireless Adapter Serial Number: 00e04c000001 USB Version Supported: 2.00 USB Device Speed: USB 2.0 High-speed Driver Description: Hardware ID: USB\VID_050D&PID_2103 [Port4] : USB-Verbundgerät ------------------------------------------------ [Device Information] Device Manufacturer: Creative Technology Ltd. Product Name: Live! Cam Sync HD VF0770 Serial Number: 2013121102527 USB Version Supported: 2.00 USB Device Speed: USB 2.0 High-speed Driver Description: USB-Verbundgerät Hardware ID: USB\VID_041E&PID_4095 [Driver Information] Driver Manufacturer: (Standard-USB-Hostcontroller) Driver Description: USB-Verbundgerät Driver Provider: Microsoft Driver Version: 6.1.7601.17514 Driver Date: 21-Jun-2006 DeviceInstanceId USB\VID_041E&PID_4095\2013121102527 [Port5] : No Device Connected --------------------------------------------- [Port6] : No Device Connected --------------------------------------------- [Port7] : No Device Connected --------------------------------------------- [Port8] : No Device Connected --------------------------------------------- Intel 82801GB ICH7 Direct Media Interface Bridge [A1] --------------------- [General Information] Device Name: Intel 82801GB ICH7 Direct Media Interface Bridge [A1] Original Device Name: Intel 82801GB ICH7 Direct Media Interface Bridge [A1] Device Class: PCI-to-PCI Bridge Revision ID: E1 Bus Number: 0 Device Number: 30 Function Number: 0 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_244E&SUBSYS_00000000&REV_E1 [System Resources] Interrupt Line: N/A Interrupt Pin: N/A [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Not Capable [Driver Information] Driver Manufacturer: Intel Driver Description: Intel(R) 82801 PCI-Brücke - 244E Driver Provider: Microsoft Driver Version: 6.1.7601.17514 Driver Date: 21-Jun-2006 DeviceInstanceId PCI\VEN_8086&DEV_244E&SUBSYS_244E1849&REV_E1\3&11583659&0&F0 [Hub Interface 1 Command Control [ICH4/5]] Hub ID [ICH4]: 0 HP Unsupported [ICH5]: Enabled Hub Interface Timeslice: 0 Hub Interface Width: 8 bits Hub Interface Rate Valid: No Hub Interface Rate: Maximum Data Bursts Per Packet: [Secondary PCI Device Hiding [ICH6]] Device 7 Hide: Visible Device 6 Hide: Visible Device 5 Hide: Visible Device 4 Hide: Visible Device 3 Hide: Visible Device 2 Hide: Visible Device 1 Hide: Visible Device 0 Hide: Visible [PCI Decode Policy [ICH6]] Subtractive Decode Policy: Disabled [Secondary PCI Device Hiding [ICH4/5]] Device 8 Hide: Visible Device 7 Hide: Visible Device 6 Hide: Visible Device 5 Hide: Visible Device 4 Hide: Visible Device 3 Hide: Visible Device 2 Hide: Visible Device 1 Hide: Visible Device 0 Hide: Visible [Delayed Transaction Control [ICH6]] Discard Delayed Transactions: Disabled Block Delayed Transactions: Disabled Maximum Delayed Transactions: 2 Active, 5 pending Auto Flush After Disconnect: Disabled Never Prefetch: Disabled Memory Read Multiple Prefetch: Enabled Memory Read Line Prefetch: Enabled Memory Read Prefetch: Enabled [ICH/Policy Configuration [ICH2-ICH5]] Prefetch Flush [ICH5]: Disabled High Priority PCI: Disabled 15-16MB Hole: Disabled Discard Timer Mode [ICH2]: 128 PCICLKs (4 us) 32-Clock Retry [ICH2]/12-Clock Retry [ICH3/4/5]: Disabled [Policy Configuration [ICH5]] Async Reads: 0 PCI Prefetch: 0 [Multi-Transaction Timer] Multi-Transaction Timer Count Value: 0 PCICLKs [Error Command] SERR# On Target Abort Receive: Disabled SERR# On Delayed Transaction Timeout: Disabled PCI Bus #3 ---------------------------------------------------------------- Intel 82801GB ICH7(R) - LPC Bridge [A1] ----------------------------------- [General Information] Device Name: Intel 82801GB ICH7(R) - LPC Bridge [A1] Original Device Name: Intel 82801GB ICH7(R) - LPC Bridge [A1] Device Class: PCI-to-ISA Bridge Revision ID: 1 Bus Number: 0 Device Number: 31 Function Number: 0 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_27B8&SUBSYS_27B81849&REV_01 [System Resources] Interrupt Line: N/A Interrupt Pin: N/A [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Not Capable [Driver Information] Driver Manufacturer: Intel Driver Description: Intel(R) ICH7 Family LPC Interface Controller - 27B8 Driver Provider: Intel Driver Version: 9.1.1.1016 Driver Date: 05-Aug-2009 DeviceInstanceId PCI\VEN_8086&DEV_27B8&SUBSYS_27B81849&REV_01\3&11583659&0&F8 Intel 82801GB ICH7 - ATA-100 IDE Controller [A1] -------------------------- [General Information] Device Name: Intel 82801GB ICH7 - ATA-100 IDE Controller [A1] Original Device Name: Intel 82801GB ICH7 - ATA-100 IDE Controller [A1] Device Class: IDE Controller Revision ID: 1 Bus Number: 0 Device Number: 31 Function Number: 1 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_27DF&SUBSYS_27DF1849&REV_01 [System Resources] Interrupt Line: N/A Interrupt Pin: INTA# I/O Base Address 0 0 I/O Base Address 1 0 I/O Base Address 2 0 I/O Base Address 3 0 I/O Base Address 4 FFA0 [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Capable [Driver Information] Driver Manufacturer: Intel Driver Description: Intel(R) ICH7 Family Ultra ATA Storage Controllers - 27DF Driver Provider: Intel Driver Version: 9.1.1.1016 Driver Date: 05-Aug-2009 DeviceInstanceId PCI\VEN_8086&DEV_27DF&SUBSYS_27DF1849&REV_01\3&11583659&0&F9 Intel 82801GB ICH7 - SATA Controller [A1] --------------------------------- [General Information] Device Name: Intel 82801GB ICH7 - SATA Controller [A1] Original Device Name: Intel 82801GB ICH7 - SATA Controller [A1] Device Class: IDE Controller Revision ID: 1 Bus Number: 0 Device Number: 31 Function Number: 2 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_27C0&SUBSYS_27C01849&REV_01 [System Resources] Interrupt Line: IRQ19 Interrupt Pin: INTB# I/O Base Address 0 D080 I/O Base Address 1 D000 I/O Base Address 2 CC00 I/O Base Address 3 C880 I/O Base Address 4 C800 [Features] Bus Mastering: Enabled Running At 66 MHz: Capable Fast Back-to-Back Transactions: Capable [Driver Information] Driver Manufacturer: Intel Driver Description: Intel(R) N10/ICH7 Family Serial ATA Storage Controller - 27C0 Driver Provider: Intel Driver Version: 9.1.1.1016 Driver Date: 05-Aug-2009 DeviceInstanceId PCI\VEN_8086&DEV_27C0&SUBSYS_27C01849&REV_01\3&11583659&0&FA Intel 82801GB ICH7 - SMBus Controller [A1] -------------------------------- [General Information] Device Name: Intel 82801GB ICH7 - SMBus Controller [A1] Original Device Name: Intel 82801GB ICH7 - SMBus Controller [A1] Device Class: SMBus (System Management Bus) Revision ID: 1 Bus Number: 0 Device Number: 31 Function Number: 3 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_27DA&SUBSYS_27DA1849&REV_01 [System Resources] Interrupt Line: IRQ5 Interrupt Pin: INTB# I/O Base Address 4 400 [Features] Bus Mastering: Disabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Capable [Driver Information] Driver Manufacturer: Intel Driver Description: Intel(R) N10/ICH7 Family SMBus Controller - 27DA Driver Provider: Intel Driver Version: 9.1.1.1016 Driver Date: 05-Aug-2009 DeviceInstanceId PCI\VEN_8086&DEV_27DA&SUBSYS_27DA1849&REV_01\3&11583659&0&FB Video Adapter ------------------------------------------------------------- Intel GMA 4500(M)(HD) ----------------------------------------------------- [Video chipset] Video Chipset: Intel GMA 4500(M)(HD) Video Chipset Codename: Video Memory: 1833516 KBytes [Video Card] Video Card: Intel G41 Chipset - Integrated Graphics 0 [A3] [ASRock] Video Bus: PCI Video RAMDAC: Internal Video BIOS Version: 1666 PC 14.34 07/07/2008 02:09:41 [Performance] Hardware ID: PCI\VEN_8086&DEV_2E32&SUBSYS_2E321849&REV_03 PCI Location (Bus:Dev:Fnc): 0:02:0 [Driver Information] Driver Manufacturer: Intel Corporation Driver Description: Intel(R) G41 Express Chipset Driver Provider: Intel Corporation Driver Version: 8.15.10.1892 Driver Date: 02-Sep-2009 DeviceInstanceId PCI\VEN_8086&DEV_2E32&SUBSYS_2E321849&REV_03\3&11583659&0&10 Monitor ------------------------------------------------------------------- PHILIPS [Unknown Model: PHLC0C5] ------------------------------------------ [General information] Monitor Name: PHILIPS [Unknown Model: PHLC0C5] Monitor Name (Manuf): PHL 246V5 Serial Number: AU11323007322 Date Of Manufacture: Week: 23, Year: 2013 Monitor Hardware ID: Monitor\PHLC0C5 Max. Vertical Size: 30 cm Max. Horizontal Size: 53 cm Horizontal Frequency: 30 - 83 kHz Vertical Frequency: 56 - 76 Hz Maximum Pixel Clock: 170 MHz [Advanced parameters] Input Signal: Analog: 0.700 V / 0.000 V (0.700 V p-p) Display Type: RGB color Gamma Factor: 2.20 [DPMS Modes] Standby: Not Supported Suspend: Not Supported Active Off: Supported Standard Colour Space: Not Supported Preferred Timing Mode: Supported Default GTF Supported: Not Supported [DPMS Input Signal] Serration VSync: Not Supported Sync On Green: Supported Composite Sync: Supported Separate Syncs: Supported Blank-to-black Setup: Not Supported [Supported Video Modes] 1920 x 1080 60 Hz 1280 x 1024 60 Hz 1440 x 900 75 Hz 1440 x 900 60 Hz 1680 x 1050 60 Hz 1280 x 720 60 Hz 1920 x 1080 531 x 299 mm, Pixel Clock 148.50 MHz Drives -------------------------------------------------------------------- Floppy Drives ------------------------------------------------------------- (S)ATA/ATAPI Drives ------------------------------------------------------- ST9250410AS --------------------------------------------------------------- [General Information] Drive Controller: Serial ATA 3Gb/s Drive Model: Seagate ST9250410AS Drive Revision: 0006HPM1 Drive Serial Number: 5VG7HAYQ World Wide Name: 5000C5002A5B92B9 Drive Capacity: 238,475 MBytes (250 GB) Drive Capacity [MB]: 238475 Media Rotation Rate: 7200 RPM Nominal Form Factor: 2.5" [Drive Geometry] Number of Cylinders: 16383 Number of Heads: 16 Sectors Per Track: 63 Number Of ECC Bytes: 4 Number of Sectors: 16514064 Total 32-bit LBA Sectors: 268435455 Total 48-bit LBA Sectors: 488397168 Cache Buffer Size: 16384 KBytes [Transfer Modes] Sectors Per Interrupt: Total: 16, Active: 16 Max. PIO Transfer Mode: 4 Multiword DMA Mode: Total: 2, Active: - Singleword DMA Mode: Total: -, Active: - Ultra-DMA Mode: Total: 5 (ATA-100), Active: 5 (ATA-100) Max. Multiword DMA Transfer Rate: 16.7 MBytes/s Max. PIO with IORDY Transfer Rate: 16.7 MBytes/s Max. PIO w/o IORDY Transfer Rate: 16.7 MBytes/s Transfer Width: 16-bit Native Command Queuing: Supported, Max. Depth: 32 TRIM Command: Not Supported [Device flags] Fixed Drive: Present Removable Drive: Not Present Magnetic Storage: Present LBA Mode: Supported DMA Mode: Supported IORDY: Supported IORDY Disableable: Supported [Features] Write Cache: Present, Active S.M.A.R.T. Feature: Present, Active Security Feature: Present, Inactive Removable Media Feature: Not Present, Disabled Power Management: Present, Active Advanced Power Management: Present, Active Packet Interface: Not Present, Disabled Look-Ahead Buffer: Present, Active Host Protected Area: Not Present, Disabled Power-Up In Standby: Not Suppported, Inactive Automatic Acoustic Management: Not Suppported, Inactive 48-bit LBA: Supported, Active Host-Initiated Link Power Management: Not Supported Device-Initiated Link Power Management: Supported, Disabled In-Order Data Delivery: Not Supported Hardware Feature Control: Not Supported Software Settings Preservation: Supported, Enabled NCQ Autosense: Not Supported Link Power State Device Sleep: Not Supported Hybrid Information Feature: Not Supported All Write Cache Non-Volatile: Not Supported Extended Number of User Addressable Sectors: Not Supported Device Encrypts All User Data: Not Supported CFast Specification: Not Supported NCQ Priority Information: Not Supported Host Automatic Partial to Slumber Transitions: Not Supported Device Automatic Partial to Slumber Transitions: Not Supported NCQ Streaming: Not Supported NCQ Queue Management Command: Not Supported DEVSLP to Reduced Power State: Not Supported Extended Power Conditions Feature: Not Supported Sense Data Reporting Feature: Not Supported Free-Fall Control Feature: Not Supported [Self-Monitoring, Analysis and Reporting Technology (S.M.A.R.T.)] [01] Raw Read Error Rate: 117/6, Worst: 99 (Data = 165595042) [03] Spin Up Time: 100/Always OK, Worst: 98 [04] Start/Stop Count: 95/Always OK, Worst: 95 (Data = 5813) [05] Reallocated Sector Count: 100/36, Worst: 100 [07] Seek Error Rate: 80/30, Worst: 60 (Data = 229057249) [09] Power-On Hours/Cycle Count: 98/Always OK, Worst: 94 (Data = 1833 hours / 76.4 days) [0A] Spin Retry Count: 100/97, Worst: 100 [0C] Power Cycle Count: 95/20, Worst: 37 (Data = 5788) [B7] SATA Interface Downshift / Runtime Bad Block: 100/Always OK, Worst: 253 [B8] End to End Error Detection Count: 100/97, Worst: 100 [BB] Reported Uncorrectable Errors: 100/Always OK, Worst: 100 [BC] Command Timeout Count: 100/Always OK, Worst: 99 (Data = 17) [BD] High Fly Writes 100/Always OK, Worst: 100 [BE] Airflow Temperature / Exceed Count: 69/45, Worst: 55 (Data = 31.0 °C) [BF] G-Sense Error Rate: 100/Always OK, Worst: 100 (Data = 44) [C0] Power-Off Retract Count: 100/Always OK, Worst: 100 (Data = 56) [C1] Load/Unload Cycle Count: 22/Always OK, Worst: 22 (Data = 157869) [C2] Temperature 31/Always OK, Worst: 45 (Data = 31.0 °C) [C3] Hardware ECC Recovered: 46/Always OK, Worst: 36 (Data = 165595042) [C4] Reallocation Event Count: 100/36, Worst: 100 [C5] Current Pending Sector Count: 100/Always OK, Worst: 100 [C6] Off-Line Uncorrectable Sector Count: 100/Always OK, Worst: 100 [C7] UltraDMA/SATA CRC Error Rate: 200/Always OK, Worst: 200 [FE] Free Fall Protection: 100/Always OK, Worst: 100 ATAPI iHAS124 W --------------------------------------------------------- [General information] Drive Model: ATAPI iHAS124 W Drive Revision: HL03 Serial Number: 3743524602 Device Type: DVD+R DL [Device capabilities] Drive can read: CD-R, CD-RW, DVD-R, DVD-RW, DVD+R, DVD+RW, DVD-RAM, DVD+R DL Drive can write: CD-R, CD-RW, DVD-R, DVD-RW, DVD+R, DVD+RW, DVD-RAM, DVD+R DL Audio --------------------------------------------------------------------- Intel 82801GB ICH7 - High Definition Audio [A1] --------------------------- Audio Adapter: Intel 82801GB ICH7 - High Definition Audio [A1] Audio Controller Hardware ID: PCI\VEN_8086&DEV_27D8&SUBSYS_03971849&REV_01 High Definition Audio Codec: VIA VT1705 Audio Codec Hardware ID: HDAUDIO\FUNC_01&VEN_1106&DEV_4397&SUBSYS_00000000 [Driver Information] Driver Manufacturer: VIA Technologies, Inc. Driver Description: VIA High Definition Audio Driver Provider: VIA Technologies, Inc. Driver Version: 6.0.1.9400 Driver Date: 17-Feb-2011 DeviceInstanceId HDAUDIO\FUNC_01&VEN_1106&DEV_4397&SUBSYS_18490397&REV_1000\4&70A2EED&0&0001 Network ------------------------------------------------------------------- Qualcomm/Atheros AR8151 PCI-E Gigabit Ethernet Controller (L1c) ----------- [General information] Network Card: Qualcomm/Atheros AR8151 PCI-E Gigabit Ethernet Controller (L1c) Vendor Description: Atheros L1C PCI-E Ethernet Controller MAC Address: BC-5F-F4-11-47-7F [Capabilities] Maximum Link Speed: 100 Mbps Transmit Buffer Size: 389632 Bytes Receive Buffer Size: 779264 Bytes Hardware ID: PCI\VEN_1969&DEV_1083&SUBSYS_10831849&REV_C0 [Driver Information] Driver Manufacturer: Atheros Driver Description: Atheros AR8151 PCI-E Gigabit Ethernet Controller (NDIS 6.20) Driver Provider: Atheros Driver Version: 1.0.0.35 Driver Date: 24-Aug-2010 DeviceInstanceId PCI\VEN_1969&DEV_1083&SUBSYS_10831849&REV_C0\4&1BA3C945&0&00E1 Ports --------------------------------------------------------------------- Serial Ports -------------------------------------------------------------- Parallel Ports ------------------------------------------------------------ USB ----------------------------------------------------------------------- Intel(R) N10/ICH7 Family USB Universal Host Controller - 27C8 ------------- Root Hub ------------------------------------------------------------------ [Port1] : No Device Connected --------------------------------------------- [Port2] : No Device Connected --------------------------------------------- Intel(R) N10/ICH7 Family USB Universal Host Controller - 27C9 ------------- Root Hub ------------------------------------------------------------------ [Port1] : No Device Connected --------------------------------------------- [Port2] : No Device Connected --------------------------------------------- Intel(R) N10/ICH7 Family USB Universal Host Controller - 27CA ------------- Root Hub ------------------------------------------------------------------ [Port1] : USB-Verbundgerät ------------------------------------------------ [Device Information] Device Manufacturer: Microsoft Product Name: Microsoft® 2.4GHz Transceiver v7.0 Serial Number: N/A USB Version Supported: 2.00 USB Device Speed: USB 1.1 Full-speed Driver Description: USB-Verbundgerät Hardware ID: USB\VID_045E&PID_0745 [Driver Information] Driver Manufacturer: (Standard-USB-Hostcontroller) Driver Description: USB-Verbundgerät Driver Provider: Microsoft Driver Version: 6.1.7601.17514 Driver Date: 21-Jun-2006 DeviceInstanceId USB\VID_045E&PID_0745\5&8A0E485&0&1 [Port2] : No Device Connected --------------------------------------------- Intel(R) N10/ICH7 Family USB Universal Host Controller - 27CB ------------- Root Hub ------------------------------------------------------------------ [Port1] : No Device Connected --------------------------------------------- [Port2] : No Device Connected --------------------------------------------- Intel(R) N10/ICH7 Family USB2 Enhanced Host Controller - 27CC ------------- Root Hub ------------------------------------------------------------------ [Port1] : No Device Connected --------------------------------------------- [Port2] : No Device Connected --------------------------------------------- [Port3] : Unknown Device Connected ---------------------------------------- [Device Information] Device Manufacturer: Realtek Product Name: Belkin Wireless Adapter Serial Number: 00e04c000001 USB Version Supported: 2.00 USB Device Speed: USB 2.0 High-speed Driver Description: Hardware ID: USB\VID_050D&PID_2103 [Port4] : USB-Verbundgerät ------------------------------------------------ [Device Information] Device Manufacturer: Creative Technology Ltd. Product Name: Live! Cam Sync HD VF0770 Serial Number: 2013121102527 USB Version Supported: 2.00 USB Device Speed: USB 2.0 High-speed Driver Description: USB-Verbundgerät Hardware ID: USB\VID_041E&PID_4095 [Driver Information] Driver Manufacturer: (Standard-USB-Hostcontroller) Driver Description: USB-Verbundgerät Driver Provider: Microsoft Driver Version: 6.1.7601.17514 Driver Date: 21-Jun-2006 DeviceInstanceId USB\VID_041E&PID_4095\2013121102527 [Port5] : No Device Connected --------------------------------------------- [Port6] : No Device Connected --------------------------------------------- [Port7] : No Device Connected --------------------------------------------- [Port8] : No Device Connected --------------------------------------------- b) MTB Code:
ATTFilter SIEHE UNTEN Code:
ATTFilter SIEHE UNTEN d) OTL_Log_Extras Code:
ATTFilter SIEHE UNTEN Code:
ATTFilter SIEHE UNTEN Code:
ATTFilter SIEHE UNTEN Code:
ATTFilter SIEHE UNTEN Router: FitzBox7362 SL,FRITZ!OS 06.30 wurde schon mehr als 10 mal in den vergangenen Wochen von mir auf Werkeinstellungen zurück gesetzt, S aktuelle Firmware ist vorhanden, die höchsten empfohlenen Sicherheitseinstellungen auch: - MAC-Filter aktiv (nur drei zugelassende Systeme: Smartphone, Desktop-PC, Surface) - IPv6-Unterstützung aus - LISP: aus -Automatische Einrichtung durch den Dienstanbieter zulassen: an -Automatische Updates zulassen: an - URL des Auto Configuration Servers über DHCP beachten: aus -DNS-Server: die vom Internetanbieter empfohlenen: automatisch - Dynamic DNS: aus - WSP-Schnellverbindung aus - USB-Stick-Optionen aus - Gastzugang aus/ keine Benutzer eingerichtet - Portfreigaben: bei keinem Gerät - NAS-Speicher/ Medienserver deaktiviert/ USB-Fernstick-Optionen aus --> so hatten Sie zuletzt Software auf meinen Router geladen - UPnP aus Heimnetz: - FRITZ!Box als Zeitserver im Heimnetz: an -Zugriff für Anwendungen zulassen: aus Statusinformationen über UPnP übertragen: aus -IPv4-Routing-Tabelle:aus WLAN: aus Phus-Service: aus 4. Verdächtige Datein: Datein mit ungewöhnlicher und hoher Aktivität (nach sofort nach Systemstart und danach): svchost.exe, services.exe, csrss.exe, explorer.exe, sehr viele Windows eigene Remotedienste aktiv! -->aber alle: zumeist in Windows/System32 Keine gängige Viren-oder Malewarescanner erkennt die Schadsoftware: Kaspersky, Avira, Malwarebytes, ESET, Hitman, Spybot Search and Destroy, Norton, Farbar, aktuelle Anti-Rootkits und viele mehr, auch gängige Online-Scanner nicht!!! Aktivitätsschema des Schadprogramms: Aktuelle Eindrücke (Windows 7 Home Premium, neu installiert nach format:C): svchost.exe direkt nach Neuinstallation: ![]() ![]() CMM wird blockiert: ![]() Keine Möglichkeit Adminrechte zu erhalten ![]() Admin-Konto des Angreifers ![]() Folgendes Aktivitätsschema (betroffende auf meinen Systemen Windows 7 und 8.1, Desktop PC und Surface 3 Pro): a) Nach Neuinstallation des OS: Übernahme von des Systems mithilfe von meist zwei Administratorkonten, mal nennt sich einer "Alexander" oder wie in den Logs zu sehen "almhmubd", die dann manuell von Externen mein System. --> Immer wenn eine Internetverbindung herstestellt wird sehr gezielt gesteuert (Person), offline die installierte Überwachungssoftware, die meine Rechte weiterhin einschränkte und alles protokolliert und versucht Verbindungen zum Clienten herzustrellen. Immer werden weitere Zugänge via Hi-Wi,WLAN oder Bluetooth auf meinen Rechneren installiert, z.B. eineD-Link Router oder sie nutzen die IP-Telefonie, wenn Sie Zugang zum Router bekommen haben. b) Übernahme/ Verschlüsselung von meinen persönlichen Datein und Systemrelevanten Programmen/Ordnern. c) Übernahme, Kontrolle und Beschränkung der von mir installierten Security Suiten, z.B. Kaspersky I. S. 2016. Z.B. waren wichtige Optionen von Kaspersky Internet Security Total 2016 bzw. der Firewall deaktiviert (trotz Passwort-Einrichtung). So waren Einstellungen zurückgesetzt oder die Firewall konnte einzelne Dateien nicht mehr überwachen oder Ports einschränken. d) Im Offline-Betrieb überwacht die Schadsoftware/ Windows, das meine Beschränkungen bestehen bleiben,ich keinen Zugriff auf Windows Sicherheitseinstellungen, keine Adminrechte. -->Programminstallation und beschränkter Systemzugriff bestehen für mich im Offline-Modus!! e) Die "neuen" Administratoren laden Datein auf den FritzBox speicher, oder auf meine Rechner, um Sie dann im Internet zu sharen. f) Die Schadsoftware ist auch noch da, wenn Festplatte formatiere und Windows neu installiere, nach Systemwiederherstellung oder Auffrischung oder Sonstiges (Windows 8.1), obwohl noch keine Internetverbindung bestand! Meine sämtlichen externen Festplatten und USB- Sticks wurden infiziert und verschlüsselt. Wenn ich es einmal nach Format C/ Router-Resett und Windows-Neuinstallation schnell schaffe die "Überadminrechte" (Win 8.1) zu bekommen. Und Schutzsysteme aufbaue, dann fahren Sie den Rechner einfach runter, löschen meinen Konto und sperren mich aus oder zerstören Boot-Datein und Neuinstallation ist fällig. Das Ganze geht dann wieder von vorne los. Bin für jede Hilfe dankbar, mir gehen die Ideen und Geduld aus! PS: Wenn es zielführend ist, kann ich noch weitere Logs der Firewall "ESET_Security_8_Firewall" oder des Programms "ProzessHacker" zu Diensten,Prozessen oder Sonstigem posten! Geändert von Xerdox (06.09.2015 um 18:58 Uhr) Grund: Edit Log |
Themen zu Remote-Schadsoftware kontrolliert gesamtes Heimnetzwerk: Manipulation des Windows-Remote-Systems |
alternative, avira, blockiert, computer, cpu, error, festplatte, firewall, freundlich, gastzugang, home, infiziert, kaspersky, löschen, microsoft, netzwerk, neu, opera, pixel, programme, router, security, server, services.exe, updates, usb, windows |