Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Broadcast DVR Server - 100% CPU Auslastung - Windows 10

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

Antwort
Alt 01.04.2016, 08:38   #1
rabie
 
Broadcast DVR Server - 100% CPU Auslastung - Windows 10 - Standard

Broadcast DVR Server - 100% CPU Auslastung - Windows 10



Hallo Freunde,

ich habe irgendwie ein Problem mit dem Broadcast DVR Server (bcastdvr.exe).
Der Startet sich wohl beim Filmeschauen oder beim starten von Games und hüpft zeitweise auf 100%, dann hängt sich der PC auf.

Um erstmal auszuschließen, dass es kein Trojaner oder so ist dachte ich an eure Hilfe.
Wie man den kram deinstalliert weiß ich leider auch nicht

1. Logfile Farbar Recovery Scan Tool

Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
durchgeführt von rabie (2016-04-01 09:30:55)
Gestartet von C:\Users\rabie\Downloads
Start-Modus: Normal

================== Registry-Suche: "DVR" ===========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.DVR-MS]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.DVR-MS]
"Content Type"="video/x-ms-dvr"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.DVR-MS\OpenWithProgIds]
"WMP.DVR-MSFile"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\wmplayer.exe\SupportedTypes]
".dvr-ms"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1677ABA1-4346-442F-A74A-D8B9A713B964}]
""="Windows.Media.Capture.Internal.BroadcastDVRServer.ProxyStubFactory"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1677ABA1-4346-442F-A74A-D8B9A713B964}\InProcServer32]
""="C:\Windows\System32\bcastdvr.proxy.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7ECB3DBE-742D-4B43-BF3E-2587BE1BFF72}]
""="CDPComGameDvrHandler"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{817F98C4-C9D9-4B8F-B8D0-413C8E5DBBB7}]
""="BroadcastDVR Shell Component"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C7F208A4-C8CD-4689-983B-A2BABAE6A460}]
""="ICDPComGameDvrSystemHandler"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DD47DE3F-9874-4F7B-8B22-7CB2688461E7}]
""="IMSVidVRGraphSegment"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Media Type\Extensions\.dvr-ms]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MediaFoundation\MediaSources\Preferred]
".dvr-ms"="{65964407-A5D8-4060-85B0-1CCD63F768E2}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/x-ms-dvr]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/x-ms-dvr]
"Extension"=".dvr-ms"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.dvr-ms]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.DVR-MSFile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1677ABA1-4346-442F-A74A-D8B9A713B964}]
""="Windows.Media.Capture.Internal.BroadcastDVRServer.ProxyStubFactory"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1677ABA1-4346-442F-A74A-D8B9A713B964}\InProcServer32]
""="C:\Windows\SysWOW64\bcastdvr.proxy.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{817F98C4-C9D9-4B8F-B8D0-413C8E5DBBB7}]
""="BroadcastDVR Shell Component"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{C7F208A4-C8CD-4689-983B-A2BABAE6A460}]
""="ICDPComGameDvrSystemHandler"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{DD47DE3F-9874-4F7B-8B22-7CB2688461E7}]
""="IMSVidVRGraphSegment"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Media Type\Extensions\.dvr-ms]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\MediaFoundation\MediaSources\Preferred]
".dvr-ms"="{65964407-A5D8-4060-85B0-1CCD63F768E2}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DVR]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Player\Extensions\Descriptions]
"9"="Microsoft Recorded TV Show (*.dvr-ms;*.wtv)"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Player\Extensions\Types]
"9"="*.dvr-ms;*.wtv"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.dvr-ms]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.dvr-ms]
"Extension.Handler"="WMP.DVR-MSFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Video\DVR-MS]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Video\DVR-MS]
""="Microsoft Recorded TV Show (dvr-ms)"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Video\DVR-MS]
"Extensions"=".dvr-ms"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\current\device\ApplicationManagement]
"AllowGameDVR"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\ApplicationManagement\AllowGameDVR]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RADAR\HeapLeakDetection\DiagnosedApplications\bcastdvr.exe]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\KindMap]
".dvr-ms"="recordedtv"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\AllowedDragImageExts]
".dvr-ms"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\PropertySystem\PropertyHandlers\.dvr-ms]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\PropertySystem\SystemPropertyHandlers]
".dvr-ms"="{AEB16279-B750-48f1-8586-97956060175A}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\amd64_microsoft-media-cap..astdvr-capabilities_31bf3856ad364e35_none_849d5b0dae6944ec]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\amd64_microsoft-media-cap..ternal-broadcastdvr_31bf3856ad364e35_none_a04c371905a8d553]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\wow64_microsoft-media-cap..ternal-broadcastdvr_31bf3856ad364e35_none_aaa0e16b3a09974e]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SmartGlass\Handlers\{D0D5EA05-BBDC-11E4-BED4-B4B52FE053BD}]
"Description"="GameDvr Handler"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SystemProtectedUserData\S-1-5-21-1014227221-4103550804-3451383866-1003\AnyoneRead\LockScreen\Creative]
"CreativeJson"="{"cdm":{"creativeId":"1457188375`53000000000242508`0`bc968306ce674a089b1f6540b77158fb`82800","placementId":"LockScreen","impressionTok en":"_imp","assetFolderRootPath":"C:\\Users\\rabie\\AppData\\Local\\Packages\\Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy\\LocalState\\Asse ts","imagePairIndex":"001","feedbackEvents":{"onHover":"impr|53000000000242508","onPositiveFeedback":"pos|53000000000242508","onNegativeFeedback":"neg |53000000000242508","feedbackProvided":false}},"assets":{"image_fullscreen_001_landscape":{"t":"img","w":"1920","h":"1080","u":"674c82e9014f3d50a5c133 a0a4677f0874adae208b0708cd3bc46d2ae7cbeded","sha256":"grnBIT4QKKANUlADcbBxCEuWBBv9CV7K6vn7JuFl6Jw=","fileSize":"438406"},"image_fullscreen_001_portrai t":{"t":"img","w":"1080","h":"1920","u":"bc2c67be5ff7b185789d534234cf350dc2ea46befb071bc98429b488cdb00001","sha256":"dvrSIMGZEFrK/owjPVfU3ll9cmqP31QXH1DxxLxJOAE=","fileSize":"481012"},"tr_hint_hs1_1":{"t":"url","u":"https://g.msn.com/_2AD000J6/53000000000242508.1??&&PID=400002315&UIT=G&TargetID=104237972&AN=303186574&PG=PC000P0FR5.0000000G77&REQASID=7A32D2EC791045B893D02E3663E12E12&UNID=2095 67&ANID=&MUID=&ASID={ASID}&AUID=26DD77D24D20896CB46D43B741ECFB89&TIME={DATETIME}"},"tr_click_hs1_1":{"t":"url","u":"https://g.msn.com/_2AD000J6/53000000000242508.2??&&PID=400002315&UIT=G&TargetID=104237972&AN=303186574&PG=PC000P0FR5.0000000G77&REQASID=7A32D2EC791045B893D02E3663E12E12&UNID=2095 67&ANID=&MUID=&ASID={ASID}&AUID=26DD77D24D20896CB46D43B741ECFB89&TIME={DATETIME}"},"tr_hint_hs2_1":{"t":"url","u":"https://g.msn.com/_2AD000J6/53000000000242508.3??&&PID=400002315&UIT=G&TargetID=104237972&AN=303186574&PG=PC000P0FR5.0000000G77&REQASID=7A32D2EC791045B893D02E3663E12E12&UNID=2095 67&ANID=&MUID=&ASID={ASID}&AUID=26DD77D24D20896CB46D43B741ECFB89&TIME={DATETIME}"},"tr_click_hs2_1":{"t":"url","u":"https://g.msn.com/_2AD000J6/53000000000242508.4??&&PID=400002315&UIT=G&TargetID=104237972&AN=303186574&PG=PC000P0FR5.0000000G77&REQASID=7A32D2EC791045B893D02E3663E12E12&UNID=2095 67&ANID=&MUID=&ASID={ASID}&AUID=26DD77D24D20896CB46D43B741ECFB89&TIME={DATETIME}"},"tr_hint_hs3_1":{"t":"url","u":"https://g.msn.com/_2AD000J6/53000000000242508.5??&&PID=400002315&UIT=G&TargetID=104237972&AN=303186574&PG=PC000P0FR5.0000000G77&REQASID=7A32D2EC791045B893D02E3663E12E12&UNID=2095 67&ANID=&MUID=&ASID={ASID}&AUID=26DD77D24D20896CB46D43B741ECFB89&TIME={DATETIME}"},"tr_click_hs3_1":{"t":"url","u":"https://g.msn.com/_2AD000J6/53000000000242508.6??&&PID=400002315&UIT=G&TargetID=104237972&AN=303186574&PG=PC000P0FR5.0000000G77&REQASID=7A32D2EC791045B893D02E3663E12E12&UNID=2095 67&ANID=&MUID=&ASID={ASID}&AUID=26DD77D24D20896CB46D43B741ECFB89&TIME={DATETIME}"}},"parameters":{"_id":"53000000000242508","_pid":"400002315","_tid": "104237972","_cData":{"CID":"53000000000242508","PID":"400002315","UIT":"G","TargetID":"104237972","PG":"PC000P0FR5.0000000G77","ASID":"7A32D2EC791045 B893D02E3663E12E12","ANID":"","MUID":"","GSERV":"https://g.msn.com","Viewability":"true","DISABLEIAF":"1","IAFScreen":"","IAFCategories":"","GBING":"https://g.bing.com"},"_imp":"post:https://rpt.msn.com/Selector?RPTIMP=&PID=400002315&TID=104237972&CID=53000000000242508&BID=303186574&PG=PC000P0FR5.0000000G77&TPID=400002315&REQASID=7A32D2EC791045B893D02 E3663E12E12&ASID={ASID}&TIME={DATETIME}&CNIMP=5&CNNA=2&CNMC=25&wpx=1&hpx=1&pl=de-DE&arch=x64&cdmver=10.0.10240.16384&devfam=Windows.Desktop&devform=Unknown&ds=242444&fs=209834&isu=1&metered=false&nettype=ethernet&oemid=LENOVO&ossku =Core&smBiosDm=Akoya%20P5397%20H%2FB785&smBiosManufacturerName=MEDION&tl=4&UNID=209567&Cats=&MAP_TID=b477f939-76d7-4cbe-803b-9cdbe0700097&NCT=1&PN=da63df93-3dbc-42ae-a505-b34988683ac7&ASID=7a32d2ec791045b893d02e3663e12e12&ARC=1&locale=de-DE&COUNTRY=DE&HTD=-1&LANG=1031&DEVLANG=DE&CIP=217.249.83.228&ID=a5d098cfeab34506af5b030fed0c1523&AUID=26dd77d24d20896cb46d43b741ecfb89&HTTPS=1&prodid=00000000-0000-0000-0000-000000000000&dvtp=2&DEVOSVER=10.0.10240.16520&DEVOSMAJ=10&DEVOSMIN=0&DEVOSBLD=10240&LOD=0&RAFB=0&MARKETBASEDCOUNTRY=DE&cfmt=text%2Cimage&sft=jpeg%2Cpn g%2Cgif%2Cjpg&h=1&w=1&tp=1&fesver=1.3","anid":"","date":"2016-03-05","eid":{"t":"txt","tx":"53000000000242508"},"enableGLog":"true","expand_hotspots":0,"expireTime":"2035-12-30T08:00:00","feedback_enabled":1,"hide_titles":0,"iaf_dislike":{"t":"url","u":"https://g.msn.com/feedback/coin?Action=coin_dislike&ANID=&MUID=3fbf215a8a496564645ac84a8d496d39&REQASID=7A32D2EC791045B893D02E3663E12E12&ASID={ASID}&EID={EID}&AUID=26DD77D24D208 96CB46D43B741ECFB89&TIME={DATETIME}"},"iaf_impr":{"t":"url","u":"https://g.msn.com/IAFI/coin?Hover=1&ANID=&MUID=3fbf215a8a496564645ac84a8d496d39&REQASID=7A32D2EC791045B893D02E3663E12E12&ASID={ASID}&EID={EID}&AUID=26DD77D24D20896CB46D43B74 1ECFB89&TIME={DATETIME}"},"iaf_like":{"t":"url","u":"https://g.msn.com/feedback/coin?Action=coin_like&ANID=&MUID=3fbf215a8a496564645ac84a8d496d39&REQASID=7A32D2EC791045B893D02E3663E12E12&ASID={ASID}&EID={EID}&AUID=26DD77D24D20896C B46D43B741ECFB89&TIME={DATETIME}"},"mguid":"","requiresNetwork":0,"reuseCount":-1,"rotationPeriod":82800,"startTime":"2016-02-17T01:07:00","time":"02:35:37 PM"}}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Media Foundation\ByteStreamHandlers\.dvr-ms]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Media Foundation\ByteStreamHandlers\.dvr-ms]
"{65964407-A5D8-4060-85B0-1CCD63F768E2}"="dvr-ms Byte Stream Handler"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Portable Devices\FormatMap\.dvr-ms]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Media.Capture.Internal.AppCapture]
"Server"="Windows.Media.Capture.Internal.BroadcastDVRServer"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Media.Capture.Internal.AppCaptureInitializationSettings]
"Server"="Windows.Media.Capture.Internal.BroadcastDVRServer"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Media.Capture.Internal.AppCaptureShell]
"Server"="Windows.Media.Capture.Internal.BroadcastDVRServer"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Media.Capture.Internal.AppCaptureUserSettings]
"Server"="Windows.Media.Capture.Internal.BroadcastDVRServer"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\Server\Windows.Media.Capture.Internal.BroadcastDVRServer]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\Server\Windows.Media.Capture.Internal.BroadcastDVRServer]
"ExePath"="C:\Windows\System32\bcastdvr.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\CyberLink\MediaObj\PowerDVD12]
"ReDetectDvrms"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\CyberLink\MediaObj\vthum]
"ReDetectDvrms"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\DVR]
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\MediaPlayer\Player\Extensions\Descriptions]
"9"="Microsoft Recorded TV Show (*.dvr-ms;*.wtv)"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\MediaPlayer\Player\Extensions\Types]
"9"="*.dvr-ms;*.wtv"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Multimedia\WMPlayer\Extensions\.dvr-ms]
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Multimedia\WMPlayer\Extensions\.dvr-ms]
"Extension.Handler"="WMP.DVR-MSFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Multimedia\WMPlayer\Groups\Video\DVR-MS]
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Multimedia\WMPlayer\Groups\Video\DVR-MS]
""="Microsoft Recorded TV Show (dvr-ms)"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Multimedia\WMPlayer\Groups\Video\DVR-MS]
"Extensions"=".dvr-ms"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Office\12.0\Registration\{90120000-0030-0000-0000-0000000FF1CE}\AdvReg]
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Office\15.0\Registration\{90150000-0138-0409-0000-0000000FF1CE}\AdvReg]
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\KindMap]
".dvr-ms"="recordedtv"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\AllowedDragImageExts]
".dvr-ms"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\PropertySystem\PropertyHandlers\.dvr-ms]
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\PropertySystem\SystemPropertyHandlers]
".dvr-ms"="{AEB16279-B750-48f1-8586-97956060175A}"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows Media Foundation\ByteStreamHandlers\.dvr-ms]
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows Media Foundation\ByteStreamHandlers\.dvr-ms]
"{65964407-A5D8-4060-85B0-1CCD63F768E2}"="dvr-ms Byte Stream Handler"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows Portable Devices\FormatMap\.dvr-ms]
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Media.Capture.Internal.AppCapture]
"Server"="Windows.Media.Capture.Internal.BroadcastDVRServer"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Media.Capture.Internal.AppCaptureInitializationSettings]
"Server"="Windows.Media.Capture.Internal.BroadcastDVRServer"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Media.Capture.Internal.AppCaptureShell]
"Server"="Windows.Media.Capture.Internal.BroadcastDVRServer"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Media.Capture.Internal.AppCaptureUserSettings]
"Server"="Windows.Media.Capture.Internal.BroadcastDVRServer"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\WindowsRuntime\Server\Windows.Media.Capture.Internal.BroadcastDVRServer]
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\WindowsRuntime\Server\Windows.Media.Capture.Internal.BroadcastDVRServer]
"ExePath"="C:\Windows\SysWOW64\bcastdvr.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{1677ABA1-4346-442F-A74A-D8B9A713B964}]
""="Windows.Media.Capture.Internal.BroadcastDVRServer.ProxyStubFactory"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{1677ABA1-4346-442F-A74A-D8B9A713B964}\InProcServer32]
""="C:\Windows\SysWOW64\bcastdvr.proxy.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{817F98C4-C9D9-4B8F-B8D0-413C8E5DBBB7}]
""="BroadcastDVR Shell Component"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\Interface\{C7F208A4-C8CD-4689-983B-A2BABAE6A460}]
""="ICDPComGameDvrSystemHandler"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\Interface\{DD47DE3F-9874-4F7B-8B22-7CB2688461E7}]
""="IMSVidVRGraphSegment"
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\Media Type\Extensions\.dvr-ms]
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\MediaFoundation\MediaSources\Preferred]
".dvr-ms"="{65964407-A5D8-4060-85B0-1CCD63F768E2}"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\GameDVR]
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore]
"GameDVR_Enabled"="0"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\06a81365-eb3e-41cf-a824-b1b46277ba79]
"GameDVR_GameGUID"="1cb58c38-9519-4449-8b04-12ef9610d73d"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\116b2c0c-1165-4842-92a1-a4fb91a1a418]
"GameDVR_GameGUID"="2642baeb-a830-4329-b111-6be504a93e9a"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\15b82b62-9980-41ab-a130-8f0e5a5912c2]
"GameDVR_GameGUID"="78d591d5-d9e9-4c3b-a6a7-b3270d973266"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\1b4e9fca-aeec-4749-8fd5-4c2f9d9a1650]
"GameDVR_GameGUID"="7eb831fc-81c0-411b-bff0-176f7cda799d"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\1d2e93f5-58e8-4ab2-8536-9ca3f4373a04]
"GameDVR_GameGUID"="01be1745-3413-49a9-936c-83d94ad67f74"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\1f5cad36-f5e5-4d36-a0b3-08c24f5b4eda]
"GameDVR_GameGUID"="a3ed111f-16fa-4f2e-b879-9f58fd890f1c"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\2419eec9-0a63-4e2c-b62b-9a07fdec1490]
"GameDVR_GameGUID"="209668f4-9d8c-4dc0-9d80-95215c2c9a15"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\27cc89dc-7e0a-4e30-9344-68ea9ebb449f]
"GameDVR_GameGUID"="e3a7e202-fd1c-4df0-8c9c-eddd45e6bb8f"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\2ede8cb6-c8f6-4fc8-b1f2-9de86350d3bf]
"GameDVR_GameGUID"="bfb4b9a9-febb-4fb7-9f83-2e4fed403916"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\3795f00b-15be-4522-b509-40de71b0e659]
"GameDVR_GameGUID"="f6a414f7-f535-46a1-8241-0c7016f8ab66"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\41c70800-48a2-401d-938c-ceafe3ec9a9a]
"GameDVR_GameGUID"="7cf934d6-536b-413b-84bf-519f36dc9a65"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\48f50a60-b58a-4f42-95b7-e225784eec2e]
"GameDVR_GameGUID"="fc71edce-46e7-47b4-af94-74c1a8ca21bd"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\4e13f8b0-d327-46e7-a2ad-1ba3cf252eda]
"GameDVR_GameGUID"="e0009445-40b8-4b66-8bfd-4f9921fb5897"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\5237bbb7-d848-4121-99fd-3c95e201fde1]
"GameDVR_GameGUID"="ceb51a18-8ecf-4a05-96dd-53121ccf7d9c"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\5339460e-56f5-4375-a427-50dd6447c1a3]
"GameDVR_GameGUID"="66ca0311-c0ac-4b7e-9278-5b8b2171af09"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\59d7231b-9e92-4889-b53b-4513dde56639]
"GameDVR_GameGUID"="d0f4bcfd-6aa2-4e27-a121-f151e9407091"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\6dbf3af3-e271-4ad1-bb2a-fdbef7ece958]
"GameDVR_GameGUID"="12f22562-c2c1-4b8a-aaa2-2909ae8d7564"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\6dfa8491-787c-4e85-8ac0-df27c577cedc]
"GameDVR_GameGUID"="dc77d38c-ee5a-41d4-a542-1011954a6a87"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\751dde27-0b11-489a-b782-c0b5619f1387]
"GameDVR_GameGUID"="7f3425f5-b480-4e9c-822e-2702e30df5d0"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\79956df1-51bc-44b7-98b2-4d4a877ba805]
"GameDVR_GameGUID"="66e24a2b-b8e9-442a-8e9e-b9dcc2ed09f4"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\80af61f5-6f86-4271-9cc4-751387987aa2]
"GameDVR_GameGUID"="e506976b-bc1d-4853-99b4-a022df151969"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\8794b540-c6c4-40c5-9037-5e478266b6fd]
"GameDVR_GameGUID"="bcc308cd-1135-48dc-a7ed-90de46632619"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\8c430327-4a4c-4212-a3c1-e38c30388b03]
"GameDVR_GameGUID"="0dbef0c8-0e99-4215-a848-e66dcc1e552e"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\8f150a37-fde5-4eb9-9f1c-e388ccd34537]
"GameDVR_GameGUID"="2dbcce1d-c0b3-4612-8118-13e20f3dad7e"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\916bac8b-c7bb-4e1a-9049-b96b16761ceb]
"GameDVR_GameGUID"="985c7329-e12b-4a1d-9f6b-48fda1680a24"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\9d207354-cd19-497c-9817-17556db9e49c]
"GameDVR_GameGUID"="88c24bf8-d1db-48be-b6f7-684ab89c9194"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\a32950ae-0107-4fe2-93ad-6d4afb358ca3]
"GameDVR_GameGUID"="0e943a5f-4a49-4030-8ba2-1d51e7b60a08"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\a365f127-774a-43db-9b41-34c19d1955e9]
"GameDVR_GameGUID"="85f0007f-f5c8-43cb-9235-26c01c4c04dd"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\aab700e8-524f-436e-984a-46f96b9b9e5d]
"GameDVR_GameGUID"="c62dca52-dacf-4296-9be0-c4995e4d7177"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\aab9dc4f-b24c-4e50-ae2a-91cb781a2900]
"GameDVR_GameGUID"="a60e8e99-dae3-4799-845b-79b2ea0ade07"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\b9b20c2c-9f5c-4a48-b1bf-a3fbdb559946]
"GameDVR_GameGUID"="bab98d12-2089-480b-bd8b-0a5ba04a6e9a"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\bba9efd5-ebec-4b89-8439-3c866c45fb41]
"GameDVR_GameGUID"="beadb662-4a97-4790-bc99-33f001c314ec"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\be17fcb3-872c-4d8a-9a15-62ceb09bd76e]
"GameDVR_GameGUID"="1586cd37-ce43-4e53-bd9b-c76af2227d1f"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\c1bfb05f-15b6-4732-98d0-0ac3f6c5090c]
"GameDVR_GameGUID"="e02a0f9d-b7bc-44a3-a901-9ba6079e5fa0"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\c5f1aa51-38df-47b8-b5ad-84e149df8921]
"GameDVR_GameGUID"="654bfb26-b735-40da-b206-ccff74a55181"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\cb66f7fd-f05c-453e-9dc6-9687c8be4a21]
"GameDVR_GameGUID"="03b4d703-8a3a-4cd5-889f-76af531c9eef"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\d2f2ee2c-e3d4-4bb3-92d3-b32dd89c0d3e]
"GameDVR_GameGUID"="ea6022ba-77c3-43f1-a8de-593d49002232"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\d4afba64-3470-4677-99d2-17fe6d54df47]
"GameDVR_GameGUID"="e0e83f79-1409-4ad1-9bbe-7af01da3e740"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\e223ed7c-d62e-4ede-85b2-e66e457c9a60]
"GameDVR_GameGUID"="f4631d74-a489-4568-8f0c-95689e96e151"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\e36c1ef3-fde0-4d94-b5f7-258e71af1b29]
"GameDVR_GameGUID"="4c8196ff-9c54-4a1b-aa9e-c13425f58cba"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\e3adc5c5-7931-4740-b5eb-b760e6248126]
"GameDVR_GameGUID"="7f8b9bb1-6ee3-4a01-826e-49dd1de16e68"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\e4fcb929-5d28-4064-b5f6-0b1133afbc1c]
"GameDVR_GameGUID"="fb730a2d-7718-4ad6-805a-55892ed5fb31"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\e6b78c56-7bd6-49d6-b76a-be3dbec3e034]
"GameDVR_GameGUID"="a659d45b-c8a5-4387-9dea-7c1df35ac01c"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\e99a2a54-fa84-40b0-8b55-59ed694b47bf]
"GameDVR_GameGUID"="4a00d787-727e-4916-b464-716d0dc69c94"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\f04cc8d3-c8b7-4437-91c3-55f7501cead9]
"GameDVR_GameGUID"="4db21adc-3ede-4b12-b8e9-81d151c21156"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\f0af0ec5-72b9-4150-b3f8-ce83c99d63cf]
"GameDVR_GameGUID"="cca30160-0252-4648-81ad-377faba9ca19"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\f177cd18-ab61-4bfa-a7ad-90d42d481217]
"GameDVR_GameGUID"="c0898033-346c-4910-bbaa-302b00271b09"
[HKEY_USERS\S-1-5-21-1014227221-4103550804-3451383866-1003\System\GameConfigStore\Children\fe68c3d9-3d99-4d7c-842c-0d7591d57e33]
"GameDVR_GameGUID"="59469401-fc04-490a-af97-8ac840c9750c"

====== Ende von Suche ======


2. Logfile Hjackthis
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 09:34:26, on 01.04.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
C:\Program Files (x86)\CyberLink\PowerDVD12\PDVD12Serv.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Users\rabie\AppData\Local\Temp\DMR\Downloads\152e221a8bef8d2d13c58f995563a1a1\7b4e384f5b096b9656fee276ba88bb81\HijackThis_2.0.5.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo15.msn.com/?pc=LCTE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo15.msn.com/?pc=LCTE
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [PowerDVD12Agent] "C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe"
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [Avira SystrayStartTrigger] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\rabie\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Pushbullet] "C:\Program Files (x86)\Pushbullet\pushbullet.exe" -show false
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'Lokaler Dienst')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'Netzwerkdienst')
O8 - Extra context menu item: Nach Microsoft E&xel exportieren - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: eBay - Der weltweite Online-Marktplatz - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - hxxp://rover.ebay.com/rover/1/707-154514-44482-15/4 (file missing) (HKCU)
O9 - Extra 'Tools' menuitem: eBay - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - hxxp://rover.ebay.com/rover/1/707-154514-44482-15/4 (file missing) (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avira Email-Schutz (AntiVirMailService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe
O23 - Service: Avira Planer (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Echtzeit-Scanner (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira Webschutz (AntiVirWebService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
O23 - Service: Avira Service Host (Avira.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Security Assist - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
O23 - Service: Intel(R) Security Assist Helper (isaHelperSvc) - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9747 bytes

Alt 04.04.2016, 10:42   #2
Warlord711
/// TB-Ausbilder
 
Broadcast DVR Server - 100% CPU Auslastung - Windows 10 - Standard

Broadcast DVR Server - 100% CPU Auslastung - Windows 10



Hallo rabie



Mein Name ist Timo und ich werde Dir bei deinem Problem behilflich sein.
  • Bitte arbeite alle Schritte der Reihe nach ab.
  • Hier findest du die Anleitung für Hilfesuchende
  • Lese die Anleitungen sorgfältig. Sollte es Probleme geben, bitte stoppen und hier so gut es geht beschreiben.
  • Nur Scans durchführen zu denen Du von einem Helfer aufgefordert wirst.
  • Bitte kein Crossposting ( posten in mehreren Foren).
  • Installiere oder Deinstalliere während der Bereinigung keine Software ausser Du wurdest dazu aufgefordert.
  • Lese Dir die Anleitung zuerst vollständig durch. Sollte etwas unklar sein, frage bevor Du beginnst.
  • Poste die Logfiles direkt in deinen Thread. Nicht anhängen ausser ich fordere Dich dazu auf.

Hinweis:
Ich kann Dir niemals eine Garantie geben, dass ich auch alles finde. Eine Formatierung ist immer der sicherste Weg.

Wir arbeiten hier alle freiwillig und meist auch nur in unserer Freizeit. Daher kann es bei Antworten zu Verzögerungen kommen.
Solltest du innerhalb 48 Std keine Antwort von mir erhalten, dann schreib mit eine PM
Solltest Du Dich für eine Bereinigung entscheiden, arbeite solange mit, bis ich oder jemand vom Team sagt, dass Du clean bist.


Führe sämtliche Tools mit administrativen Rechten aus, Vista, Win7,Win8, Win10 User mit Rechtsklick "als Administrator starten".

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)

__________________

__________________

Antwort

Themen zu Broadcast DVR Server - 100% CPU Auslastung - Windows 10
100%, antivir, auslastung, avira, cid, cpu, ebay, flash player, helper, hijack, hijackthis, hängt, internet, internet explorer, logfile, mozilla, problem, scan, security, server, software, starten, system, trojaner, windows, windowsapps




Ähnliche Themen: Broadcast DVR Server - 100% CPU Auslastung - Windows 10


  1. Windows 7, hohe CPU Auslastung, Windows Sicherheitsupdate fehlgeschlagen, Bluescreen im abgesicherten Modus
    Plagegeister aller Art und deren Bekämpfung - 07.03.2014 (13)
  2. Windows XP: server.exe
    Plagegeister aller Art und deren Bekämpfung - 01.02.2014 (1)
  3. Hackerangriff: Windows Server Netzwerkauslastung 100%
    Plagegeister aller Art und deren Bekämpfung - 14.01.2014 (6)
  4. Windows 8: Server.bannersdontwork
    Plagegeister aller Art und deren Bekämpfung - 06.10.2013 (13)
  5. Microsoft zieht Sicherheitsspatch für Windows und Windows Server zurück
    Nachrichten - 13.04.2013 (1)
  6. Avira nicht kompatibel mit Windows 8 und Windows Server 2012
    Nachrichten - 05.11.2012 (0)
  7. Virenscanner Windows Server
    Alles rund um Windows - 06.05.2011 (23)
  8. Service Pack 1 zu Windows 7 und Windows Server 2008 R2 veröffentlicht
    Nachrichten - 25.02.2011 (0)
  9. Service Pack 1 für Windows 7 und Windows Server 2008 R2 ist fertig
    Nachrichten - 25.02.2011 (0)
  10. Windows 2003 Server W32/Downadupjob.gen!A infiziert C:/windows/tasks/AT1.job
    Log-Analyse und Auswertung - 08.04.2010 (3)
  11. Windows 7 und Windows Server 2008 R2 sind fertig
    Nachrichten - 22.07.2009 (0)
  12. Ftp server (Filezilla / Quick n´easy FTP server lite)
    Alles rund um Windows - 10.01.2009 (7)
  13. server für windows
    Alles rund um Windows - 14.10.2007 (1)
  14. Irda beim Windows Server....
    Alles rund um Windows - 23.05.2005 (0)
  15. Windows Terminal Server...
    Log-Analyse und Auswertung - 08.05.2005 (6)
  16. 802.1.x Radius Server, Wlan und Win 2000 server
    Alles rund um Windows - 19.10.2003 (5)
  17. windows server 2003
    Alles rund um Windows - 13.04.2003 (20)

Zum Thema Broadcast DVR Server - 100% CPU Auslastung - Windows 10 - Hallo Freunde, ich habe irgendwie ein Problem mit dem Broadcast DVR Server (bcastdvr.exe). Der Startet sich wohl beim Filmeschauen oder beim starten von Games und hüpft zeitweise auf 100%, dann - Broadcast DVR Server - 100% CPU Auslastung - Windows 10...
Archiv
Du betrachtest: Broadcast DVR Server - 100% CPU Auslastung - Windows 10 auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.