|
Antiviren-, Firewall- und andere Schutzprogramme: Avira AntiVir Update funktioniert nicht, seltsame FehlermeldungWindows 7 Sämtliche Fragen zur Bedienung von Firewalls, Anti-Viren Programmen, Anti Malware und Anti Trojaner Software sind hier richtig. Dies ist ein Diskussionsforum für Sicherheitslösungen für Windows Rechner. Benötigst du Hilfe beim Trojaner entfernen oder weil du dir einen Virus eingefangen hast, erstelle ein Thema in den oberen Bereinigungsforen. |
11.03.2011, 18:20 | #1 |
| Avira AntiVir Update funktioniert nicht, seltsame Fehlermeldung Hallo. Ich hab gerade gemerkt, dass das Sicherheitscenter meckert, dass Avira nicht aktiv ist. Als ich Avira geöffnet habe, war der Guard an, und ich wollte Updaten. Aber da hat Avira diese Fehler ausgespuckt: hxxp://img14.myimg.de/aviraupdateerror05b52.png und hxxp://img14.myimg.de/aviraupdateerror13414c.png Mfg, Thomas Geändert von Thomas13 (11.03.2011 um 18:36 Uhr) Grund: Bild wurde nicht eingefügt.. |
11.03.2011, 19:07 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Avira AntiVir Update funktioniert nicht, seltsame Fehlermeldung Hallo und
__________________Bitte routinemäßig einen Vollscan mit Malwarebytes machen und Log posten. Denk daran, dass Malwarebytes vor jedem Scan manuell aktualisiert werden muss! Falls Logs aus älteren Scans mit Malwarebytes vorhanden sind, bitte auch davon alle posten! Danach OTL: Systemscan mit OTL Lade Dir bitte OTL von Oldtimer herunter und speichere es auf Deinem Desktop
__________________ |
12.03.2011, 18:40 | #3 |
| Avira AntiVir Update funktioniert nicht, seltsame Fehlermeldung Komischerweise geht es jetzt wieder nach dem Hochfahren... Aber zur Sicherheit poste ich die Logfiles.
__________________Malwarebytes Logfile: Code:
ATTFilter Malwarebytes' Anti-Malware 1.50.1.1100 www.malwarebytes.org Datenbank Version: 6032 Windows 6.1.7600 Internet Explorer 8.0.7600.16385 12.03.2011 16:17:59 mbam-log-2011-03-12 (16-17-59).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|) Durchsuchte Objekte: 448291 Laufzeit: 55 Minute(n), 15 Sekunde(n) Infizierte Speicherprozesse: 0 Infizierte Speichermodule: 0 Infizierte Registrierungsschlüssel: 0 Infizierte Registrierungswerte: 0 Infizierte Dateiobjekte der Registrierung: 0 Infizierte Verzeichnisse: 0 Infizierte Dateien: 0 Infizierte Speicherprozesse: (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: (Keine bösartigen Objekte gefunden) Infizierte Dateien: (Keine bösartigen Objekte gefunden) Code:
ATTFilter OTL logfile created on: 3/12/2011 6:34:42 PM - Run 1 OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\Thomas\Downloads 64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000409 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 3.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 38.00% Memory free 5.00 Gb Paging File | 4.00 Gb Available in Paging File | 64.00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 452.34 Gb Total Space | 316.76 Gb Free Space | 70.03% Space Free | Partition Type: NTFS Drive D: | 13.32 Gb Total Space | 1.64 Gb Free Space | 12.30% Space Free | Partition Type: NTFS Computer Name: THOMASPC | User Name: Thomas_2 | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - C:\Users\Thomas\Downloads\OTL.exe (OldTimer Tools) PRC - C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe (TeamViewer GmbH) PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation) PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation) PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira GmbH) PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira GmbH) PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH) PRC - C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin (OpenOffice.org) PRC - C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe (OpenOffice.org) PRC - C:\Windows\SysWOW64\ezSharedSvcHost.exe (EasyBits Software AS) PRC - C:\Windows\SysWOW64\ezSharedSvcHost.exe (EasyBits Software AS) PRC - C:\Program Files (x86)\eMule\emule.exe (hxxp://www.emule-project.net) PRC - C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe (Hewlett-Packard) PRC - C:\Windows\SysWOW64\PSIService.exe () ========== Modules (SafeList) ========== MOD - C:\Users\Thomas\Downloads\OTL.exe (OldTimer Tools) MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll (Microsoft Corporation) ========== Win32 Services (SafeList) ========== SRV:64bit: - (nSvcIp) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe () SRV:64bit: - (ForceWare Intelligent Application Manager (IAM)) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe () SRV:64bit: - (WinDefend) -- C:\Program Files\Windows Defender\mpsvc.dll (Microsoft Corporation) SRV - (TeamViewer6) -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe (TeamViewer GmbH) SRV - (Akamai) -- C:/Program Files (x86)/Common Files/Akamai/netsession_win_dbc0250.dll () SRV - (MBAMService) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation) SRV - (AntiVirService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira GmbH) SRV - (AntiVirSchedulerService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira GmbH) SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation) SRV - (ProtexisLicensing) -- C:\Windows\SysWOW64\PSIService.exe () ========== Driver Services (SafeList) ========== DRV:64bit: - (MBAMProtector) -- C:\Windows\SysNative\drivers\mbam.sys (Malwarebytes Corporation) DRV:64bit: - (avgntflt) -- C:\Windows\SysNative\drivers\avgntflt.sys (Avira GmbH) DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices) DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices) DRV:64bit: - (avipbb) -- C:\Windows\SysNative\drivers\avipbb.sys (Avira GmbH) DRV:64bit: - (NVNET) -- C:\Windows\SysNative\drivers\nvmf6264.sys (NVIDIA Corporation) DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.) DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation) DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company) DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology) DRV:64bit: - (Ntfs) -- C:\Windows\SysNative\wbem\ntfs.mof () DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation) DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation) DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation) DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.) DRV:64bit: - (netr28ux) -- C:\Windows\SysNative\drivers\netr28ux.sys (Ralink Technology Corp.) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPDSK/4 IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPDSK/4 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPDSK/4 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPDSK/4 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPDSK/4 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPDSK/4 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21 FF - prefs.js..keyword.URL: "hxxp://search.yahoo.com/search?fr=panda&type=PCAFSI1211&p=" FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2010/12/27 10:06:13 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/02/16 16:11:26 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Thunderbird 3.1.7\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2010/12/14 20:14:52 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Thunderbird 3.1.7\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins FF - HKLM\software\mozilla\SeaMonkey 2.0.12\extensions\\Components: C:\Program Files (x86)\SeaMonkey\components [2011/03/04 20:55:51 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\SeaMonkey 2.0.12\extensions\\Plugins: C:\Program Files (x86)\SeaMonkey\plugins [2011/03/04 20:55:44 | 000,000,000 | ---D | M] [2011/03/04 20:55:52 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Thomas_2\AppData\Roaming\mozilla\Extensions [2010/10/09 09:08:30 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Thomas_2\AppData\Roaming\mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6} [2011/03/04 20:55:52 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Thomas_2\AppData\Roaming\mozilla\Extensions\{92650c4d-4b8e-4d2a-b7eb-24ecf4f6b63a} [2011/03/11 22:40:46 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Thomas_2\AppData\Roaming\mozilla\Firefox\Profiles\3vgrjy2h.default\extensions [2011/03/04 20:55:52 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Thomas_2\AppData\Roaming\mozilla\SeaMonkey\Profiles\ut9g4y0y.default\extensions [2011/02/24 16:36:48 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions [2010/10/06 20:43:15 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} [2010/10/07 06:17:26 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} [2010/07/17 04:00:04 | 000,423,656 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll [2010/12/03 19:14:08 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml [2010/12/03 19:14:08 | 000,002,344 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml [2010/12/03 19:14:08 | 000,006,805 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml [2010/12/03 19:14:08 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml [2010/12/03 19:14:08 | 000,001,105 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml O1 HOSTS File: ([2010/05/13 17:53:40 | 000,001,204 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: 127.0.0.1 activate.adobe.com O1 - Hosts: 127.0.0.1 3dns-3.adobe.com O1 - Hosts: 127.0.0.1 adobe-dns-2.adobe.com O1 - Hosts: 127.0.0.1 adobe-dns-3.adobe.com O1 - Hosts: 127.0.0.1 ereg.wip3.adobe.com O1 - Hosts: 127.0.0.1 activate-sea.adobe.com O1 - Hosts: 127.0.0.1 wip3.adobe.com O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com O1 - Hosts: 127.0.0.1 activate-sjc0.adobe.com O1 - Hosts: 127.0.0.1 practivate.adobe.com O1 - Hosts: 127.0.0.1 ereg.adobe.com O1 - Hosts: 127.0.0.1 activate.wip3.adobe.com O1 - Hosts: 127.0.0.1 3dns-2.adobe.com O1 - Hosts: 127.0.0.1 adobe-dns.adobe.com O1 - Hosts: ::1 localhost O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated) O4:64bit: - HKLM..\Run: [hpsysdrv] c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe (Hewlett-Packard) O4 - HKLM..\Run: [] File not found O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH) O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: EnableShellExecuteHooks = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideFastUserSwitching = 0 O8:64bit: - Extra context menu item: Free YouTube Download - C:\Users\Thomas_2\AppData\Roaming\DVDVideoSoftIEHelpers\youtubedownload.htm () O8 - Extra context menu item: Free YouTube Download - C:\Users\Thomas_2\AppData\Roaming\DVDVideoSoftIEHelpers\youtubedownload.htm () O13 - gopher Prefix: missing O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found O18:64bit: - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O28 - HKLM ShellExecuteHooks: {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll (EasyBits Software Corp.) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010/11/14 18:05:56 | 000,000,000 | ---- | M] () - C:\Autoexec.bat -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35:64bit: - HKLM\..comfile [open] -- "%1" %* O35:64bit: - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %* O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* ========== Files/Folders - Created Within 30 Days ========== [2011/03/12 14:33:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GEONExT [2011/03/12 14:33:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\GEONExT [2011/03/11 19:00:35 | 000,238,968 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe [2011/03/11 18:59:44 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software [2011/03/11 18:48:12 | 000,000,000 | ---D | C] -- C:\ProgramData\MFAData [2011/03/11 18:08:49 | 000,000,000 | ---D | C] -- C:\Users\Thomas_2\AppData\Roaming\Avira [2011/03/11 16:23:53 | 000,000,000 | ---D | C] -- C:\Users\Thomas_2\AppData\Local\Real_Environment_Xtreme [2011/03/11 16:16:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Real Environment Xtreme [2011/03/11 16:16:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Real Environment Xtreme [2011/03/09 15:44:55 | 001,118,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sbe.dll [2011/03/09 15:44:55 | 000,961,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CPFilters.dll [2011/03/09 15:44:55 | 000,723,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EncDec.dll [2011/03/09 15:44:55 | 000,642,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CPFilters.dll [2011/03/09 15:44:55 | 000,534,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\EncDec.dll [2011/03/09 15:44:54 | 000,850,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sbe.dll [2011/03/09 15:44:54 | 000,259,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mpg2splt.ax [2011/03/09 15:44:54 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mpg2splt.ax [2011/03/09 15:43:57 | 001,540,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll [2011/03/09 15:43:57 | 001,074,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DWrite.dll [2011/03/09 15:43:56 | 000,902,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll [2011/03/09 15:43:56 | 000,739,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d2d1.dll [2011/03/09 15:40:35 | 003,138,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll [2011/03/09 15:40:35 | 002,690,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll [2011/03/09 15:40:35 | 001,097,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstsc.exe [2011/03/09 15:40:35 | 001,034,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstsc.exe [2011/03/07 19:16:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aerosoft [2011/03/04 20:55:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SeaMonkey [2011/03/04 20:55:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SeaMonkey [2011/02/27 15:17:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Movie Maker 2.6 [2011/02/25 20:40:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth [2011/02/24 16:36:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype [2011/02/23 15:04:07 | 000,662,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll [2011/02/23 15:04:07 | 000,475,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll [2011/02/23 15:04:07 | 000,442,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll [2011/02/23 15:04:07 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll [2011/02/18 21:20:00 | 000,000,000 | ---D | C] -- C:\Users\Thomas_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FlyTampa [2011/02/18 21:20:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlyTampa [2011/02/16 20:41:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps [2011/02/16 16:15:29 | 000,000,000 | ---D | C] -- C:\Users\Thomas_2\AppData\Roaming\Foxit Software [2011/02/16 16:14:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader [2011/02/16 16:14:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Foxit Software [2011/02/15 18:58:38 | 000,000,000 | ---D | C] -- C:\Users\Thomas_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PMDG Simulations [2011/02/15 18:39:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PMDG Simulations [2011/02/15 15:40:40 | 000,000,000 | ---D | C] -- C:\Users\Thomas_2\Desktop\Wilco Publishing - The Modern Airliner Collection - Airbus Series Volume 1 - Deluxe Edition [2011/02/14 18:10:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CaptainSim 757-200 PRO [2011/02/14 17:15:29 | 000,000,000 | ---D | C] -- C:\Users\Thomas_2\AppData\Local\CrashDumps [2011/02/13 02:19:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Captain Sim [2011/02/13 02:19:36 | 000,000,000 | ---D | C] -- C:\ProgramData\CaptainSim [2011/02/11 21:47:30 | 000,000,000 | ---D | C] -- C:\Users\Thomas_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DBS Studio [2011/02/11 21:47:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DBS Studio [2011/02/10 19:25:47 | 000,599,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeeds.dll [2011/02/10 19:25:46 | 000,703,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll [2011/02/10 19:25:45 | 000,482,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec [2011/02/10 19:25:45 | 000,386,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec [2011/02/10 19:25:45 | 000,256,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll [2011/02/10 19:25:45 | 000,185,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll [2011/02/10 19:25:45 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll [2011/02/10 19:25:45 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll [2011/02/10 19:25:45 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll [2011/02/10 19:25:45 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll [2011/02/10 19:25:45 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe [2011/02/10 19:25:45 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe ========== Files - Modified Within 30 Days ========== [2011/03/12 17:52:05 | 000,001,112 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2011/03/12 14:33:42 | 000,001,876 | ---- | M] () -- C:\Users\Thomas_2\Desktop\GEONExT.lnk [2011/03/12 12:07:07 | 000,015,568 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2011/03/12 12:07:07 | 000,015,568 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2011/03/12 12:04:47 | 001,498,506 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2011/03/12 12:04:47 | 000,653,928 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat [2011/03/12 12:04:47 | 000,615,810 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2011/03/12 12:04:47 | 000,129,800 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat [2011/03/12 12:04:47 | 000,106,190 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2011/03/12 11:59:03 | 000,001,108 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2011/03/12 11:58:17 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011/03/12 11:58:06 | 2214,043,648 | -HS- | M] () -- C:\hiberfil.sys [2011/03/11 19:00:35 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\config.nt [2011/03/11 18:39:09 | 000,002,516 | -HS- | M] () -- C:\Windows\SysWow64\KGyGaAvL.sys [2011/03/11 16:21:52 | 000,001,989 | ---- | M] () -- C:\Users\Public\Desktop\Real Environment Xtreme.lnk [2011/03/11 15:29:36 | 004,889,512 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT [2011/03/08 19:28:36 | 000,000,824 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk [2011/03/04 20:55:47 | 000,001,907 | ---- | M] () -- C:\Users\Public\Desktop\SeaMonkey.lnk [2011/03/04 19:22:39 | 000,001,168 | ---- | M] () -- C:\Users\Public\Desktop\TeamViewer 6.lnk [2011/02/25 20:40:22 | 000,002,290 | ---- | M] () -- C:\Users\Public\Desktop\Google Earth.lnk [2011/02/23 16:04:07 | 000,238,968 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe [2011/02/19 21:47:03 | 000,001,020 | ---- | M] () -- C:\Users\Public\Desktop\CamStudio.lnk [2011/02/19 07:37:10 | 001,540,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll [2011/02/19 07:36:49 | 000,902,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll [2011/02/19 06:32:48 | 001,074,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\DWrite.dll [2011/02/19 06:32:35 | 000,739,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\d2d1.dll [2011/02/16 16:14:38 | 000,001,236 | ---- | M] () -- C:\Users\Public\Desktop\Foxit Reader.lnk [2011/02/15 22:10:11 | 000,000,157 | ---- | M] () -- C:\Users\Thomas_2\.gtkrc-2.0 [2011/02/11 21:47:30 | 000,001,583 | ---- | M] () -- C:\Users\Thomas_2\Desktop\DBS WalkAndFollow User Guide.lnk [2011/02/11 21:47:30 | 000,001,578 | ---- | M] () -- C:\Users\Thomas_2\Desktop\DBS Activation Guide.lnk ========== Files Created - No Company Name ========== [2011/03/12 14:33:42 | 000,001,876 | ---- | C] () -- C:\Users\Thomas_2\Desktop\GEONExT.lnk [2011/03/11 16:21:52 | 000,001,989 | ---- | C] () -- C:\Users\Public\Desktop\Real Environment Xtreme.lnk [2011/03/04 20:55:47 | 000,001,907 | ---- | C] () -- C:\Users\Public\Desktop\SeaMonkey.lnk [2011/02/27 15:17:43 | 000,002,507 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Movie Maker 2.6.lnk [2011/02/25 20:40:22 | 000,002,290 | ---- | C] () -- C:\Users\Public\Desktop\Google Earth.lnk [2011/02/16 16:14:38 | 000,001,236 | ---- | C] () -- C:\Users\Public\Desktop\Foxit Reader.lnk [2011/02/15 22:10:11 | 000,000,157 | ---- | C] () -- C:\Users\Thomas_2\.gtkrc-2.0 [2011/02/12 20:14:55 | 000,001,180 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 6.lnk [2011/02/12 20:14:55 | 000,001,168 | ---- | C] () -- C:\Users\Public\Desktop\TeamViewer 6.lnk [2011/02/11 21:47:30 | 000,001,583 | ---- | C] () -- C:\Users\Thomas_2\Desktop\DBS WalkAndFollow User Guide.lnk [2011/02/11 21:47:30 | 000,001,578 | ---- | C] () -- C:\Users\Thomas_2\Desktop\DBS Activation Guide.lnk [2011/02/06 13:19:13 | 000,000,088 | RHS- | C] () -- C:\Windows\SysWow64\A8247170B7.sys [2011/02/06 13:13:39 | 000,002,516 | -HS- | C] () -- C:\Windows\SysWow64\KGyGaAvL.sys [2011/02/06 10:37:13 | 000,000,168 | RHS- | C] () -- C:\ProgramData\A8247170B7.sys [2011/02/06 10:37:12 | 000,005,018 | -HS- | C] () -- C:\ProgramData\KGyGaAvL.sys [2011/01/02 14:35:21 | 000,003,584 | ---- | C] () -- C:\Users\Thomas_2\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010/12/09 10:42:56 | 000,001,614 | ---- | C] () -- C:\Windows\convert-settings.ini [2010/11/01 14:34:02 | 001,499,556 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2010/10/07 03:46:29 | 000,000,056 | -H-- | C] () -- C:\Windows\SysWow64\ezsidmv.dat [2010/09/16 21:02:50 | 000,009,988 | ---- | C] () -- C:\Windows\SysWow64\ezdigsgn.dat [2009/07/14 06:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat [2009/07/14 03:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT [2009/07/14 03:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat [2009/07/14 01:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin [2009/07/14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll [2009/07/13 22:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll [2009/06/10 22:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat [2008/01/16 01:15:58 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\zlib.dll [2007/06/05 13:20:32 | 000,177,704 | ---- | C] () -- C:\Windows\SysWow64\PSIService.exe < End of report > Code:
ATTFilter OTL Extras logfile created on: 3/12/2011 6:34:42 PM - Run 1 OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\Thomas\Downloads 64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000409 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 3.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 38.00% Memory free 5.00 Gb Paging File | 4.00 Gb Available in Paging File | 64.00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 452.34 Gb Total Space | 316.76 Gb Free Space | 70.03% Space Free | Partition Type: NTFS Drive D: | 13.32 Gb Total Space | 1.64 Gb Free Space | 12.30% Space Free | Partition Type: NTFS Computer Name: THOMASPC | User Name: Thomas_2 | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .html[@ = ChromeHTML] -- Reg Error: Key error. File not found .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found ========== Shell Spawning ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* File not found cmdfile [open] -- "%1" %* File not found comfile [open] -- "%1" %* File not found exefile [open] -- "%1" %* File not found helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" File not found http [open] -- Reg Error: Key error. https [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* File not found regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" File not found scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l File not found scrfile [open] -- "%1" /S File not found txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- Reg Error: Key error. https [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 ========== Authorized Applications List ========== ========== HKEY_LOCAL_MACHINE Uninstall List ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64) "{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64 "{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64 "{46AE421C-BF1B-4B62-BE0E-62FE09C6D5B5}" = CorelDRAW Graphics Suite X5 - Windows Shell Extension 64 Bit "{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64 "{88FD4472-F950-4083-A6FA-A829AC785B04}" = Studie zur Verbesserung von HP Deskjet 2050 J510 series Produkten "{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64 "{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64 "{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64 "{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 "{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}" = PlayReady PC Runtime amd64 "{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64 "{D7716C7E-75F1-4C51-A2D5-C6A1E8311D53}" = HP Deskjet 2050 J510 series - Grundlegende Software für das Gerät "{D79A02E9-6713-4335-9668-AAC7474C0C0E}" = HP Vision Hardware Diagnostics "{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "CCleaner" = CCleaner "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "NVIDIA Display Control Panel" = NVIDIA Display Control Panel "NVIDIA Drivers" = NVIDIA Drivers [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "_{72DB27D3-FE05-4227-AF5A-11CD101ECF09}" = Corel Graphics - Windows Shell Extension "{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 "{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86 "{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements "{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86 "{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite Deluxe "{254C37AA-6B72-4300-84F6-98A82419187E}" = ActiveCheck component for HP Active Support Library "{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 21 "{299C0434-4F4E-341F-A916-4E07AEB35E79}" = Microsoft Visual Studio Tools for Applications 2.0 Runtime "{319E272A-B5DB-4939-99D0-1F1F0C55699E}" = HP Support Assistant "{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}" = Recovery Manager "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4CFCC6FD-AEA2-4208-99A6-45CBF9DFFD82}" = Real Environment Xtreme "{4EE9A620-46A0-4BCF-82AC-950D2BBED982}" = Belkin Wireless USB Adapter Setup "{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86 "{64E72FB1-2343-4977-B4A8-262CD53D0BD3}" = Corel Paint Shop Pro Photo X2 "{669D4A35-146B-4314-89F1-1AC3D7B88367}" = HPAsset component for HP Active Support Library "{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser und SDK "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{72D90DB3-A16A-4545-B555-868471101833}" = HP Setup "{72DB27D3-FE05-4227-AF5A-11CD101ECF09}" = Corel Graphics - Windows Shell Extension "{76DAEC83-AF7B-333C-8A53-83D7C7D39199}" = Microsoft Visual Studio Tools for Applications 2.0 Runtime Language Pack - DEU "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{7A3DF2E2-CF13-44FB-A93E-F71D5381DB3F}" = HP Deskjet 2050 J510 series Hilfe "{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}" = NVIDIA ForceWare Network Access Manager "{833D97B9-AC16-45C1-AD44-0A32198956F8}" = Gimp Themes v1.0 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8E87B944-4815-3C5E-947F-5035C9F64362}" = Microsoft Visual Studio Tools for Applications 2.0 Language Pack - DEU "{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86 "{9527A496-5DF9-412A-ADC7-168BA5379CA6}" = Microsoft Flight Simulator X "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}" = Microsoft Visual Studio Tools for Applications 2.0 - ENU "{B3DAF54F-DB25-4586-9EF1-96D24BB14088}" = Windows Movie Maker 2.6 "{B8AC1A89-FFD1-4F97-8051-E505A160F562}" = HP Odometer "{B9A03B7B-E0FF-4FB3-BA83-762E58A1B0AA}" = HP Support Information "{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint "{C768790F-04FB-11E0-9B2C-001AA037B01E}" = Google Earth "{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector "{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86 "{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86 "{DE042823-C359-4B87-B66B-308057E8B6AF}" = Camtasia Studio 7 "{DE77FE3F-A33D-499A-87AD-5FC406617B40}" = HP Update "{DFFC0648-BC4B-47D1-93D2-6CA6B9457641}" = OpenOffice.org 3.2 "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E633D396-5188-4E9D-8F6B-BFB8BF3467E8}" = Skype™ 5.1 "{E7CC4B85-DC2F-463F-8FEB-E7398E25C19A}" = Microsoft Flight Simulator X Service Pack 2 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "737 Pilot in Command (FSX)" = 737 Pilot in Command (FSX) "737-300 Pilot in Command" = 737-300 Pilot in Command "777 'The Modern Airliner Collection'" = 777 'The Modern Airliner Collection' "7-Zip" = 7-Zip 4.65 "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.5 "Akamai" = Akamai NetSession Interface "Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus "CamStudio" = CamStudio "DBS Walk And Follow" = DBS Walk And Follow "EasyBits Magic Desktop" = Magic Desktop "eMule" = eMule "FileZilla Client" = FileZilla Client 3.3.5.1 "Foxit Reader" = Foxit Reader "Free YouTube Download_is1" = Free YouTube Download 2.10 "Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.8 "GEONExT_is1" = GEONExT 1.73.1 "HijackThis" = HijackThis 2.0.2 "HyperCam 3" = HyperCam 3 "Icy Tower v1.4_is1" = Icy Tower v1.4 "InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite Deluxe "InstallShield_{9527A496-5DF9-412A-ADC7-168BA5379CA6}" = Microsoft Flight Simulator X "InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint "InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "Mozilla Firefox (3.6.13)" = Mozilla Firefox (3.6.13) "Mozilla Thunderbird (3.1.7)" = Mozilla Thunderbird (3.1.7) "SeaMonkey (2.0.12)" = SeaMonkey (2.0.12) "SP1_9527A496-5DF9-412A-ADC7-168BA5379CA6" = Microsoft Flight Simulator X Service Pack 1 "SuperEdi_is1" = WoLoSoft SuperEdi 3.7.1 "TeamViewer 6" = TeamViewer 6 "Uninstall_is1" = Uninstall 1.0.0.1 "uTorrent" = µTorrent "WinGimp-2.0_is1" = GIMP 2.6.11 ========== HKEY_CURRENT_USER Uninstall List ========== [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "A380v2 (FSX)" = A380v2 (FSX) "Airbus Series Vol.2 (FS X)" = Airbus Series Vol.2 (FS X) ========== Last 10 Event Log Errors ========== [ Application Events ] Error - 2/14/2011 12:16:12 PM | Computer Name = ThomasPC | Source = Application Error | ID = 1000 Description = Name der fehlerhaften Anwendung: 747400_LoadManager.exe, Version: 10.0.61355.17, Zeitstempel: 0x472b0d7f Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x4d9fe7b6 ID des fehlerhaften Prozesses: 0xb88 Startzeit der fehlerhaften Anwendung: 0x01cbcc627d876e40 Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\PMDG\747400_LoadManager.exe Pfad des fehlerhaften Moduls: unknown Berichtskennung: bcf65230-3855-11e0-bc14-f2804f26356b Error - 2/14/2011 12:16:29 PM | Computer Name = ThomasPC | Source = Application Error | ID = 1000 Description = Name der fehlerhaften Anwendung: 747400_LoadManager.exe, Version: 10.0.61355.17, Zeitstempel: 0x472b0d7f Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7600.16385, Zeitstempel: 0x4a5bdbdf Ausnahmecode: 0xc06d007f Fehleroffset: 0x0000b727 ID des fehlerhaften Prozesses: 0x118 Startzeit der fehlerhaften Anwendung: 0x01cbcc62887ce960 Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\PMDG\747400_LoadManager.exe Pfad des fehlerhaften Moduls: C:\Windows\syswow64\KERNELBASE.dll Berichtskennung: c6fadda0-3855-11e0-bc14-f2804f26356b Error - 2/14/2011 12:16:37 PM | Computer Name = ThomasPC | Source = Application Error | ID = 1000 Description = Name der fehlerhaften Anwendung: 747400_LoadManager.exe, Version: 10.0.61355.17, Zeitstempel: 0x472b0d7f Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7600.16385, Zeitstempel: 0x4a5bdbdf Ausnahmecode: 0xc06d007f Fehleroffset: 0x0000b727 ID des fehlerhaften Prozesses: 0x6f4 Startzeit der fehlerhaften Anwendung: 0x01cbcc628d61f6a0 Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\PMDG\747400_LoadManager.exe Pfad des fehlerhaften Moduls: C:\Windows\syswow64\KERNELBASE.dll Berichtskennung: cbdabac0-3855-11e0-bc14-f2804f26356b Error - 2/14/2011 12:20:57 PM | Computer Name = ThomasPC | Source = Application Error | ID = 1000 Description = Name der fehlerhaften Anwendung: fsx.exe, Version: 10.0.61472.0, Zeitstempel: 0x475e17d3 Name des fehlerhaften Moduls: PMDG_747400_Overhead.DLL, Version: 10.0.61355.17, Zeitstempel: 0x472b39c8 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0002d971 ID des fehlerhaften Prozesses: 0xb3c Startzeit der fehlerhaften Anwendung: 0x01cbcc62daa2e140 Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\fsx.exe Pfad des fehlerhaften Moduls: C:\Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\GAUGES\PMDG_747400_Overhead.DLL Berichtskennung: 66f155f0-3856-11e0-bc14-f2804f26356b Error - 2/15/2011 11:33:38 AM | Computer Name = ThomasPC | Source = Application Error | ID = 1000 Description = Name der fehlerhaften Anwendung: fsx.exe, Version: 10.0.61472.0, Zeitstempel: 0x475e17d3 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7600.16695, Zeitstempel: 0x4cc7ab86 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00033b30 ID des fehlerhaften Prozesses: 0x76c Startzeit der fehlerhaften Anwendung: 0x01cbcd220a1e38b0 Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\fsx.exe Pfad des fehlerhaften Moduls: C:\Windows\SysWOW64\ntdll.dll Berichtskennung: f5615570-3918-11e0-a6de-7071bc609175 Error - 2/15/2011 5:10:43 PM | Computer Name = ThomasPC | Source = Application Hang | ID = 1002 Description = Programm gimp-2.6.exe, Version 0.0.0.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 9c4 Startzeit: 01cbcd54bcd13020 Endzeit: 0 Anwendungspfad: C:\Program Files (x86)\GIMP-2.0\bin\gimp-2.6.exe Berichts-ID: 035576a1-3948-11e0-b8b5-d4a2382a7576 Error - 2/19/2011 4:45:53 PM | Computer Name = ThomasPC | Source = SideBySide | ID = 16842832 Description = Fehler beim Generieren des Aktivierungskontexts für "C:\Users\Thomas\Downloads\SoftonicDownloader_fuer_camstudio.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest. Error - 2/19/2011 7:02:16 PM | Computer Name = ThomasPC | Source = SideBySide | ID = 16842832 Description = Fehler beim Generieren des Aktivierungskontexts für "C:\Users\Thomas\Downloads\SoftonicDownloader_fuer_camstudio.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest. Error - 2/20/2011 9:13:48 AM | Computer Name = ThomasPC | Source = SideBySide | ID = 16842832 Description = Fehler beim Generieren des Aktivierungskontexts für "C:\Users\Thomas\Downloads\SoftonicDownloader_fuer_camstudio.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest. Error - 2/22/2011 3:41:32 PM | Computer Name = ThomasPC | Source = Application Hang | ID = 1002 Description = Programm fsx.exe, Version 10.0.61472.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: f78 Startzeit: 01cbd2c81ac57f10 Endzeit: 37 Anwendungspfad: C:\Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\fsx.exe Berichts-ID: bb27e011-3ebb-11e0-ad35-7071bc609175 [ Media Center Events ] Error - 1/28/2011 9:58:58 AM | Computer Name = ThomasPC | Source = MCUpdate | ID = 0 Description = 14:58:53 - Fehler beim Herstellen der Internetverbindung. 14:58:53 - Serververbindung konnte nicht hergestellt werden.. Error - 1/29/2011 9:25:23 AM | Computer Name = ThomasPC | Source = MCUpdate | ID = 0 Description = 14:25:23 - Fehler beim Herstellen der Internetverbindung. 14:25:23 - Serververbindung konnte nicht hergestellt werden.. Error - 1/29/2011 9:25:59 AM | Computer Name = ThomasPC | Source = MCUpdate | ID = 0 Description = 14:25:52 - Fehler beim Herstellen der Internetverbindung. 14:25:52 - Serververbindung konnte nicht hergestellt werden.. Error - 1/30/2011 9:24:49 AM | Computer Name = ThomasPC | Source = MCUpdate | ID = 0 Description = 14:24:48 - Fehler beim Herstellen der Internetverbindung. 14:24:48 - Serververbindung konnte nicht hergestellt werden.. Error - 1/30/2011 9:25:23 AM | Computer Name = ThomasPC | Source = MCUpdate | ID = 0 Description = 14:25:18 - Fehler beim Herstellen der Internetverbindung. 14:25:18 - Serververbindung konnte nicht hergestellt werden.. Error - 1/31/2011 9:20:13 AM | Computer Name = ThomasPC | Source = MCUpdate | ID = 0 Description = 14:20:13 - Fehler beim Herstellen der Internetverbindung. 14:20:13 - Serververbindung konnte nicht hergestellt werden.. Error - 1/31/2011 9:20:46 AM | Computer Name = ThomasPC | Source = MCUpdate | ID = 0 Description = 14:20:42 - Fehler beim Herstellen der Internetverbindung. 14:20:42 - Serververbindung konnte nicht hergestellt werden.. Error - 2/1/2011 9:48:29 AM | Computer Name = ThomasPC | Source = MCUpdate | ID = 0 Description = 14:48:29 - Fehler beim Herstellen der Internetverbindung. 14:48:29 - Serververbindung konnte nicht hergestellt werden.. Error - 2/1/2011 9:49:02 AM | Computer Name = ThomasPC | Source = MCUpdate | ID = 0 Description = 14:48:58 - Fehler beim Herstellen der Internetverbindung. 14:48:58 - Serververbindung konnte nicht hergestellt werden.. Error - 2/15/2011 10:32:35 AM | Computer Name = ThomasPC | Source = MCUpdate | ID = 0 Description = 15:32:35 - MCESpotlight konnte nicht abgerufen werden (Fehler: Timeout für Vorgang überschritten) [ System Events ] Error - 1/21/2011 8:44:06 AM | Computer Name = ThomasPC | Source = Service Control Manager | ID = 7001 Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error - 1/21/2011 8:44:06 AM | Computer Name = ThomasPC | Source = Service Control Manager | ID = 7001 Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error - 1/21/2011 8:44:06 AM | Computer Name = ThomasPC | Source = Service Control Manager | ID = 7001 Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error - 1/21/2011 8:44:06 AM | Computer Name = ThomasPC | Source = Service Control Manager | ID = 7001 Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error - 1/21/2011 8:44:06 AM | Computer Name = ThomasPC | Source = Service Control Manager | ID = 7001 Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error - 1/21/2011 8:45:02 AM | Computer Name = ThomasPC | Source = Service Control Manager | ID = 7000 Description = Der Dienst "FileZilla Server FTP server" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error - 2/4/2011 11:18:52 AM | Computer Name = ThomasPC | Source = Service Control Manager | ID = 7030 Description = Der Dienst "Akamai NetSession Interface" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren. Error - 2/6/2011 2:14:57 PM | Computer Name = ThomasPC | Source = Service Control Manager | ID = 7030 Description = Der Dienst "Akamai NetSession Interface" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren. Error - 2/15/2011 1:35:20 PM | Computer Name = ThomasPC | Source = DCOM | ID = 10010 Description = Error - 2/23/2011 9:58:54 AM | Computer Name = ThomasPC | Source = bowser | ID = 8003 Description = < End of report > |
13.03.2011, 13:54 | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Avira AntiVir Update funktioniert nicht, seltsame Fehlermeldung Gibt es noch weitere Logs von Malwarebytes? Wenn ja bitte alle davon posten. Du findest diese im Reiter Logdateien in Malwarebytes.
__________________ Logfiles bitte immer in CODE-Tags posten |
13.03.2011, 18:26 | #5 |
| Avira AntiVir Update funktioniert nicht, seltsame Fehlermeldung Sind keine weiteren Logs da.
__________________ Gruß, Thomas |
13.03.2011, 19:18 | #6 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Avira AntiVir Update funktioniert nicht, seltsame FehlermeldungZitat:
__________________ --> Avira AntiVir Update funktioniert nicht, seltsame Fehlermeldung |
15.03.2011, 16:00 | #7 |
| Avira AntiVir Update funktioniert nicht, seltsame Fehlermeldung Ich kenne diese Seiten nicht.. Könnte es von Malwarebytes blockiert worden sein?
__________________ Gruß, Thomas |
15.03.2011, 16:20 | #8 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Avira AntiVir Update funktioniert nicht, seltsame Fehlermeldung Hattest du mal die Adobe Creative Suite o.ä. installiert gehabt?
__________________ Logfiles bitte immer in CODE-Tags posten |
15.03.2011, 16:23 | #9 |
| Avira AntiVir Update funktioniert nicht, seltsame Fehlermeldung Ich hatte mal Photoshop als Testversion.
__________________ Gruß, Thomas |
15.03.2011, 16:47 | #10 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Avira AntiVir Update funktioniert nicht, seltsame Fehlermeldung Aus welcher Quelle hattest du diese Testversion?
__________________ Logfiles bitte immer in CODE-Tags posten |
15.03.2011, 16:56 | #11 |
| Avira AntiVir Update funktioniert nicht, seltsame Fehlermeldung Hab das von chip.de runtergeladen.
__________________ Gruß, Thomas |
15.03.2011, 20:44 | #12 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Avira AntiVir Update funktioniert nicht, seltsame Fehlermeldung Beende alle Programme, starte OTL und kopiere folgenden Text in die "Custom Scan/Fixes" Box (unten in OTL): (das ":OTL" muss mitkopiert werden!!!) Code:
ATTFilter :OTL O4 - HKLM..\Run: [] File not found :Commands [purity] [resethosts] [emptytemp] Das Logfile müsste geöffnet werden, wenn Du nach dem Fixen auf ok klickst, poste das bitte. Evtl. wird der Rechner neu gestartet.
__________________ Logfiles bitte immer in CODE-Tags posten |
15.03.2011, 21:40 | #13 |
| Avira AntiVir Update funktioniert nicht, seltsame Fehlermeldung @cosinus Erstmal danke für deine Hilfe. OTL hat den Computer neu gestartet, ohne ein Logfile zu öffnen. Es kam eine Infobox, wo stand ich solle den PC neu starten. Als ich auf OK geklickt hab, wurde der PC einfach neu gestartet. Ohne Logfile..
__________________ Gruß, Thomas |
16.03.2011, 09:18 | #14 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Avira AntiVir Update funktioniert nicht, seltsame Fehlermeldung Dann bitte jetzt CF ausführen: ComboFix Ein Leitfaden und Tutorium zur Nutzung von ComboFix
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat!
__________________ Logfiles bitte immer in CODE-Tags posten |
16.03.2011, 18:02 | #15 |
| Avira AntiVir Update funktioniert nicht, seltsame Fehlermeldung Combofix log.txt: Code:
ATTFilter ComboFix 11-03-15.03 - Thomas_2 16.03.2011 17:35:35.1.2 - x64 Microsoft Windows 7 Home Premium 6.1.7600.0.1252.49.1031.18.2815.1522 [GMT 1:00] ausgeführt von:: c:\users\Thomas\Desktop\cofi.exe AV: AntiVir Desktop *Disabled/Updated* {090F9C29-64CE-6C6F-379C-5901B49A85B7} FW: ZoneAlarm Firewall *Disabled* {D17DF357-CFF5-F001-D1C1-FCD21DFE3D5E} SP: AntiVir Desktop *Disabled/Updated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . C:\Install.exe . . ((((((((((((((((((((((( Dateien erstellt von 2011-02-16 bis 2011-03-16 )))))))))))))))))))))))))))))) . . 2011-03-16 16:50 . 2011-03-16 16:50 -------- d-----w- c:\users\Thomas_2\AppData\Local\temp 2011-03-16 16:50 . 2011-03-16 16:50 -------- d-----w- c:\users\Gast\AppData\Local\temp 2011-03-16 16:50 . 2011-03-16 16:50 -------- d-----w- c:\users\Default\AppData\Local\temp 2011-03-15 20:31 . 2011-03-15 20:31 -------- d-----w- C:\_OTL 2011-03-15 19:51 . 2011-03-15 19:51 -------- d-----w- c:\program files (x86)\Zone Labs 2011-03-15 19:34 . 2011-03-15 19:34 -------- d-----w- c:\users\Thomas_2\AppData\Local\Adobe 2011-03-15 19:25 . 2011-03-15 19:25 -------- d-----w- c:\users\Thomas\AppData\Local\Mozilla 2011-03-15 19:25 . 2011-03-15 19:25 -------- d-----w- c:\users\Thomas\AppData\Local\Adobe 2011-03-15 19:24 . 2011-03-15 19:24 -------- d-----w- c:\programdata\CheckPoint 2011-03-15 19:17 . 2011-03-15 19:17 -------- d-----w- c:\users\Thomas_2\AppData\Local\Mozilla 2011-03-15 14:51 . 2011-02-11 07:30 7947600 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{6DD30E80-2C9C-4F78-BF68-CBF6DFBD50FF}\mpengine.dll 2011-03-13 17:36 . 2010-05-15 15:30 458840 ----a-w- c:\windows\SysWow64\drivers\vsdatant.sys 2011-03-13 17:12 . 2011-02-18 16:28 46592 ----a-w- c:\windows\SysWow64\vsutil_loc0407.dll 2011-03-13 17:12 . 2010-04-09 11:06 374664 ----a-w- c:\windows\system32\drivers\netio.sys 2011-03-13 17:11 . 2011-02-18 16:28 69120 ----a-w- c:\windows\SysWow64\zlcomm.dll 2011-03-13 17:11 . 2011-02-18 16:28 104448 ----a-w- c:\windows\SysWow64\zlcommdb.dll 2011-03-13 17:11 . 2011-02-18 16:28 1238528 ----a-w- c:\windows\SysWow64\zpeng25.dll 2011-03-13 17:11 . 2011-03-15 14:34 -------- d-----w- c:\windows\SysWow64\ZoneLabs 2011-03-13 17:11 . 2011-02-18 16:28 112128 ------w- c:\windows\SysWow64\zzzzzzzzzzzzzzzzzzzz.dll 2011-03-13 17:11 . 2010-05-15 15:30 458840 ----a-w- c:\windows\system32\drivers\~GLH0023.TMP 2011-03-13 17:11 . 2010-05-15 15:30 458840 ----a-w- c:\windows\system32\drivers\vsdatant.sys 2011-03-13 17:10 . 2011-02-18 16:28 715264 ------w- c:\windows\SysWow64\zzz.dll 2011-03-12 13:33 . 2011-03-12 13:33 -------- d-----w- c:\program files (x86)\GEONExT 2011-03-11 18:00 . 2011-02-23 15:04 238968 ----a-w- c:\windows\system32\aswBoot.exe 2011-03-11 17:08 . 2011-03-11 17:08 -------- d-----w- c:\users\Thomas_2\AppData\Roaming\Avira 2011-03-11 15:23 . 2011-03-11 15:49 -------- d-----w- c:\users\Thomas_2\AppData\Local\Real_Environment_Xtreme 2011-03-11 15:16 . 2011-03-11 15:49 -------- d-----w- c:\program files (x86)\Real Environment Xtreme 2011-03-09 14:44 . 2010-12-23 06:07 1118720 ----a-w- c:\windows\system32\sbe.dll 2011-03-09 14:44 . 2010-12-23 06:07 961024 ----a-w- c:\windows\system32\CPFilters.dll 2011-03-09 14:44 . 2010-12-23 06:07 723968 ----a-w- c:\windows\system32\EncDec.dll 2011-03-09 14:44 . 2010-12-23 05:28 642048 ----a-w- c:\windows\SysWow64\CPFilters.dll 2011-03-09 14:44 . 2010-12-23 05:28 534528 ----a-w- c:\windows\SysWow64\EncDec.dll 2011-03-09 14:44 . 2010-12-23 06:02 259072 ----a-w- c:\windows\system32\mpg2splt.ax 2011-03-09 14:44 . 2010-12-23 05:28 850432 ----a-w- c:\windows\SysWow64\sbe.dll 2011-03-09 14:44 . 2010-12-23 05:24 199680 ----a-w- c:\windows\SysWow64\mpg2splt.ax 2011-03-09 14:43 . 2011-02-19 06:37 1135104 ----a-w- c:\windows\system32\FntCache.dll 2011-03-09 14:43 . 2011-02-19 06:37 1540608 ----a-w- c:\windows\system32\DWrite.dll 2011-03-09 14:43 . 2011-02-19 05:32 1074176 ----a-w- c:\windows\SysWow64\DWrite.dll 2011-03-09 14:43 . 2011-02-19 06:36 902656 ----a-w- c:\windows\system32\d2d1.dll 2011-03-09 14:43 . 2011-02-19 05:32 739840 ----a-w- c:\windows\SysWow64\d2d1.dll 2011-03-09 14:40 . 2010-12-18 06:12 3138048 ----a-w- c:\windows\system32\mstscax.dll 2011-03-09 14:40 . 2010-12-18 06:08 1097216 ----a-w- c:\windows\system32\mstsc.exe 2011-03-09 14:40 . 2010-12-18 05:30 2690560 ----a-w- c:\windows\SysWow64\mstscax.dll 2011-03-09 14:40 . 2010-12-18 05:26 1034240 ----a-w- c:\windows\SysWow64\mstsc.exe 2011-03-05 17:53 . 2011-03-05 21:31 150865 ----a-w- c:\program files (x86)\Microsoft Games\Microsoft Flight Simulator X\UnLvld767.exe 2011-03-04 19:55 . 2011-03-04 19:55 -------- d-----w- c:\program files (x86)\SeaMonkey 2011-02-27 14:17 . 2011-02-27 14:18 -------- d-----w- c:\program files (x86)\Movie Maker 2.6 2011-02-25 19:39 . 2011-02-25 19:40 -------- d-----w- c:\users\Thomas\AppData\Local\Google 2011-02-24 17:23 . 2008-11-10 01:00 425984 ----a-w- c:\program files (x86)\Microsoft Games\Microsoft Flight Simulator X\aerosoft\Mega Airport Paris CDG SC\LFPGTraffic.exe 2011-02-24 16:57 . 2009-08-18 14:26 566272 ----a-w- c:\program files (x86)\Microsoft Games\Microsoft Flight Simulator X\aerosoft\VFR Germany 4\ObjectConfigTool.exe 2011-02-24 15:36 . 2011-02-24 15:36 -------- d-----w- c:\program files (x86)\Common Files\Skype 2011-02-23 19:31 . 2010-09-14 06:45 367104 ----a-w- c:\windows\system32\wcncsvc.dll 2011-02-23 19:31 . 2010-09-14 06:07 276992 ----a-w- c:\windows\SysWow64\wcncsvc.dll 2011-02-23 14:04 . 2011-01-07 08:07 662528 ----a-w- c:\windows\system32\XpsPrint.dll 2011-02-23 14:04 . 2011-01-07 08:07 475648 ----a-w- c:\windows\system32\XpsGdiConverter.dll 2011-02-23 14:04 . 2011-01-07 07:31 442880 ----a-w- c:\windows\SysWow64\XpsPrint.dll 2011-02-23 14:04 . 2011-01-07 07:31 288256 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll 2011-02-20 17:23 . 2011-02-20 17:23 79869 ----a-w- c:\program files (x86)\Microsoft Games\Microsoft Flight Simulator X\Uninstal.exe 2011-02-16 21:53 . 2009-12-09 01:05 60400 ----a-w- c:\program files (x86)\Microsoft Games\Microsoft Flight Simulator X\VistaMare\bin\VMCX_SP2.dll 2011-02-16 21:53 . 2009-12-09 01:05 60400 ----a-w- c:\program files (x86)\Microsoft Games\Microsoft Flight Simulator X\VistaMare\bin\VMCX_AP.dll 2011-02-16 21:53 . 2009-12-09 01:05 56304 ----a-w- c:\program files (x86)\Microsoft Games\Microsoft Flight Simulator X\VistaMare\bin\ViMaIScnX_AP.dll 2011-02-16 21:53 . 2009-12-09 01:05 19952 ----a-w- c:\program files (x86)\Microsoft Games\Microsoft Flight Simulator X\VistaMare\bin\ViMaNET_AP.dll 2011-02-16 21:53 . 2009-12-09 01:05 13824 ----a-w- c:\program files (x86)\Microsoft Games\Microsoft Flight Simulator X\VistaMare\bin\hkeys.dll 2011-02-16 15:15 . 2011-02-16 15:15 -------- d-----w- c:\users\Thomas\AppData\Roaming\Foxit Software 2011-02-16 15:15 . 2011-02-16 15:15 -------- d-----w- c:\users\Thomas_2\AppData\Roaming\Foxit Software 2011-02-16 15:14 . 2011-02-16 15:14 -------- d-----w- c:\program files (x86)\Foxit Software 2011-02-15 18:57 . 2011-03-05 18:19 -------- d-----w- c:\users\Thomas\AppData\Local\World_of_AI 2011-02-15 17:58 . 2004-09-30 19:40 209611 ----a-w- c:\program files (x86)\Microsoft Games\Microsoft Flight Simulator X\Modules\FSUIPC.dll 2011-02-15 17:58 . 2004-07-15 04:07 186368 ----a-w- c:\program files (x86)\Microsoft Games\Microsoft Flight Simulator X\Modules\PMDGOptions.DLL 2011-02-15 17:39 . 2008-10-11 13:48 14104 ----a-w- c:\program files (x86)\Microsoft Games\Microsoft Flight Simulator X\WaveLib.dll 2011-02-15 17:39 . 2008-10-11 13:48 21272 ----a-w- c:\program files (x86)\Microsoft Games\Microsoft Flight Simulator X\PMDG_SimConnect_Ldr.dll 2011-02-15 17:39 . 2005-05-16 23:12 163840 ----a-w- c:\program files (x86)\Microsoft Games\Microsoft Flight Simulator X\TCAS2v7.dll 2011-02-14 17:40 . 2011-02-18 20:29 132293 ----a-w- c:\program files (x86)\Microsoft Games\Microsoft Flight Simulator X\Uninstal_Airbus2X_wilco.exe 2011-02-14 17:15 . 2011-02-14 17:09 695578 ----a-w- c:\program files (x86)\Microsoft Games\Microsoft Flight Simulator X\unins000.exe . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2011-02-15 15:34 . 2011-01-20 21:00 1220416 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll 2011-02-06 11:31 . 2011-02-06 09:37 5018 --sha-w- c:\programdata\KGyGaAvL.sys 2011-02-06 11:30 . 2011-02-06 09:37 168 --sh--r- c:\programdata\A8247170B7.sys 2011-02-02 16:11 . 2010-10-18 18:55 270720 ------w- c:\windows\system32\MpSigStub.exe 2011-02-02 13:43 . 2011-02-02 13:43 2300696 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll 2011-02-02 13:43 . 2011-01-20 21:00 42776 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll 2011-02-02 13:43 . 2011-02-02 13:43 1220416 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll 2011-01-26 06:53 . 2011-02-10 14:37 982912 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys 2011-01-26 06:53 . 2011-02-10 14:37 265088 ----a-w- c:\windows\system32\drivers\dxgmms1.sys 2011-01-26 06:31 . 2011-02-10 14:37 144384 ----a-w- c:\windows\system32\cdd.dll 2011-01-20 22:01 . 2011-01-20 22:01 2300696 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\markup.dll 2011-01-20 22:01 . 2011-01-20 22:01 42776 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM-2\StartResources.dll 2011-01-07 08:06 . 2011-02-10 14:37 46080 ----a-w- c:\windows\system32\atmlib.dll 2011-01-07 07:27 . 2011-02-10 14:37 34304 ----a-w- c:\windows\SysWow64\atmlib.dll 2011-01-07 05:49 . 2011-02-10 14:37 366080 ----a-w- c:\windows\system32\atmfd.dll 2011-01-07 05:33 . 2011-02-10 14:37 294400 ----a-w- c:\windows\SysWow64\atmfd.dll 2011-01-05 06:20 . 2011-02-10 14:37 612352 ----a-w- c:\windows\system32\vbscript.dll 2011-01-05 05:37 . 2011-02-10 14:37 428032 ----a-w- c:\windows\SysWow64\vbscript.dll 2011-01-05 04:00 . 2011-02-10 14:37 3127808 ----a-w- c:\windows\system32\win32k.sys 2010-12-21 06:16 . 2011-02-10 14:37 62976 ----a-w- c:\windows\system32\wscapi.dll 2010-12-21 06:16 . 2011-02-10 14:37 97280 ----a-w- c:\windows\system32\wscsvc.dll 2010-12-21 06:16 . 2011-02-10 14:37 214016 ----a-w- c:\windows\system32\winsrv.dll 2010-12-21 06:16 . 2011-02-10 14:37 442880 ----a-w- c:\windows\system32\winhttp.dll 2010-12-21 06:16 . 2011-02-10 14:37 1197056 ----a-w- c:\windows\system32\wininet.dll 2010-12-21 06:16 . 2011-02-10 14:37 258048 ----a-w- c:\windows\system32\WebClnt.dll 2010-12-21 06:15 . 2011-02-10 14:37 264192 ----a-w- c:\windows\system32\upnp.dll 2010-12-21 06:15 . 2011-02-10 14:37 15360 ----a-w- c:\windows\system32\slwga.dll 2010-12-21 06:13 . 2011-02-10 14:37 2003968 ----a-w- c:\windows\system32\msxml6.dll 2010-12-21 06:13 . 2011-02-10 14:37 1880576 ----a-w- c:\windows\system32\msxml3.dll 2010-12-21 06:10 . 2011-02-10 14:37 100864 ----a-w- c:\windows\system32\davclnt.dll 2010-12-21 05:38 . 2011-02-10 14:37 51200 ----a-w- c:\windows\SysWow64\wscapi.dll 2010-12-21 05:38 . 2011-02-10 14:37 981504 ----a-w- c:\windows\SysWow64\wininet.dll 2010-12-21 05:38 . 2011-02-10 14:37 350720 ----a-w- c:\windows\SysWow64\winhttp.dll 2010-12-21 05:38 . 2011-02-10 14:37 204800 ----a-w- c:\windows\SysWow64\WebClnt.dll 2010-12-21 05:38 . 2011-02-10 14:37 204288 ----a-w- c:\windows\SysWow64\upnp.dll 2010-12-21 05:38 . 2011-02-10 14:37 14336 ----a-w- c:\windows\SysWow64\slwga.dll 2010-12-21 05:36 . 2011-02-10 14:37 1389568 ----a-w- c:\windows\SysWow64\msxml6.dll 2010-12-21 05:36 . 2011-02-10 14:37 1236992 ----a-w- c:\windows\SysWow64\msxml3.dll 2010-12-21 05:34 . 2011-02-10 14:37 80384 ----a-w- c:\windows\SysWow64\davclnt.dll 2010-12-20 17:09 . 2010-10-10 22:50 38224 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys 2010-12-20 17:08 . 2010-10-10 22:50 24152 ----a-w- c:\windows\system32\drivers\mbam.sys 2010-12-18 06:11 . 2011-02-10 18:25 57856 ----a-w- c:\windows\system32\licmgr10.dll 2010-12-18 06:11 . 2011-02-10 14:37 714752 ----a-w- c:\windows\system32\kerberos.dll 2010-12-18 05:29 . 2011-02-10 18:25 44544 ----a-w- c:\windows\SysWow64\licmgr10.dll 2010-12-18 05:29 . 2011-02-10 14:37 541184 ----a-w- c:\windows\SysWow64\kerberos.dll 2010-12-18 04:55 . 2011-02-10 18:25 482816 ----a-w- c:\windows\system32\html.iec 2010-12-18 04:20 . 2011-02-10 18:25 386048 ----a-w- c:\windows\SysWow64\html.iec 2010-12-18 04:13 . 2011-02-10 18:25 1638912 ----a-w- c:\windows\system32\mshtml.tlb 2010-12-18 03:47 . 2011-02-10 18:25 1638912 ----a-w- c:\windows\SysWow64\mshtml.tlb . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1475072] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2010-08-02 281768] "Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2010-12-20 443728] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ OpenOffice.org 3.2.lnk - c:\program files (x86)\OpenOffice.org 3\program\quickstart.exe [2010-5-20 1195008] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) "HideFastUserSwitching"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer] "EnableShellExecuteHooks"= 1 (0x1) . [hkey_local_machine\software\Wow6432Node\microsoft\windows\currentversion\explorer\ShellExecuteHooks] . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32] "aux3"=wdmaud.drv . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-] "HP Software Update"=c:\program files (x86)\HP\HP Software Update\HPWuSchd2.exe "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" "Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" . R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS [x] R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL64.SYS [x] R2 Akamai;Akamai NetSession Interface;c:\windows\System32\svchost.exe [2009-07-14 27136] R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] R2 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-22 136176] R3 GWHid;VL807 Hidmini driver;c:\windows\system32\DRIVERS\GWHid.sys [x] R3 VL807;VL807 Filter;c:\windows\system32\DRIVERS\VL807.sys [x] S2 AntiVirSchedulerService;Avira AntiVir Planer;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [2010-08-02 135336] S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2010-12-20 363344] S2 TeamViewer6;TeamViewer 6;c:\program files (x86)\TeamViewer\Version6\TeamViewer_Service.exe [2011-03-01 2296696] S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x] S3 netr28ux;RT2870 USB Wireless LAN Card Driver for Vista;c:\windows\system32\DRIVERS\netr28ux.sys [x] . . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost] Akamai REG_MULTI_SZ Akamai . Inhalt des "geplante Tasks" Ordners . 2011-03-16 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-22 20:46] . 2011-03-16 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-22 20:46] . . --------- x86-64 ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "hpsysdrv"="c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe" [2008-11-20 62768] "AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-03-06 500208] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "LoadAppInit_DLLs"=0x0 . ------- Zusätzlicher Suchlauf ------- . uStart Page = hxxp://google.de uLocal Page = c:\windows\system32\blank.htm mLocal Page = c:\windows\SysWOW64\blank.htm IE: Free YouTube Download - c:\users\Thomas_2\AppData\Roaming\DVDVideoSoftIEHelpers\youtubedownload.htm FF - ProfilePath - c:\users\Thomas_2\AppData\Roaming\Mozilla\Firefox\Profiles\nr15cvif.default\ FF - prefs.js: browser.startup.homepage - hxxp://google.de FF - prefs.js: network.proxy.type - 0 FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} . - - - - Entfernte verwaiste Registrierungseinträge - - - - . AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe AddRemove-EasyBits Magic Desktop - c:\windows\system32\ezMDUninstall.exe AddRemove-{319E272A-B5DB-4939-99D0-1F1F0C55699E} - c:\program files (x86)\InstallShield Installation Information\{319E272A-B5DB-4939-99D0-1F1F0C55699E}\setup.exe . . . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Akamai] "ServiceDll"="C:/Program Files (x86)/Common Files/Akamai/netsession_win_dbc0250.dll" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Akamai] "ServiceDll"="C:/Program Files (x86)/Common Files/Akamai/netsession_win_dbc0250.dll" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10l_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10l_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10l.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10l.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10l.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10l.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] @Denied: (A 2) (Everyone) @="IFlashBroker4" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2011-03-16 17:58:39 ComboFix-quarantined-files.txt 2011-03-16 16:58 . Vor Suchlauf: 11 Verzeichnis(se), 351.209.852.928 Bytes frei Nach Suchlauf: 17 Verzeichnis(se), 351.688.441.856 Bytes frei . - - End Of File - - D1FF4CCA5741F6BFB1C1AA6B91572EC0
__________________ Gruß, Thomas |
Themen zu Avira AntiVir Update funktioniert nicht, seltsame Fehlermeldung |
aktiv, antivir, avira, avira antivir, fehler, fehlermeldung, fehlgeschlagen, funktionier, funktioniert, funktioniert nicht, gemerkt, guard, meckert, seltsame, sicherheitscenter, update |