dumichauch | 22.10.2013 07:00 |
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 19-10-2013
Ran by Margret (administrator) on MARGRET-PC on 21-10-2013 20:47:51
Running from C:\Users\Margret\Downloads
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: German Standard
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(Microsoft Corporation) C:\Windows\system32\SLsvc.exe
() C:\Program Files\ATK Hotkey\ASLDRSrv.exe
(Adobe Systems Incorporated) C:\Programme\Adobe\Photoshop Album Starter Edition\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe
(Agere Systems) C:\Windows\system32\agrsmsvc.exe
(TOSHIBA CORPORATION) C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
(MAGIX AG) C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe
(ATK0100) C:\Program Files\ATK Hotkey\Hcontrol.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Realtek Semiconductor) C:\Windows\RtHDVCpl.exe
(TOSHIBA CORPORATION) C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
(Brother Industries, Ltd.) C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Sun Microsystems, Inc.) C:\Program Files\Common Files\Java\Java Update\jusched.exe
() C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Intel Corporation) C:\Windows\system32\igfxsrvc.exe
() C:\Program Files\ATK Hotkey\ATKOSD.exe
(Brother Industries, Ltd.) C:\Program Files\Brother\ControlCenter3\brccMCtl.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin
(Microsoft Corporation) C:\Windows\ehome\ehsched.exe
(TOSHIBA CORPORATION) C:\Program Files\TOSHIBA\ConfigFree\CFSwMgr.exe
(Microsoft Corporation) C:\Windows\ehome\ehRecvr.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
(Sun Microsystems, Inc.) C:\Program Files\Common Files\Java\Java Update\jucheck.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\system32\conime.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [894248 2007-06-22] (Synaptics, Inc.)
HKLM\...\Run: [RtHDVCpl] - C:\Windows\RtHDVCpl.exe [4669440 2007-07-06] (Realtek Semiconductor)
HKLM\...\Run: [Skytel] - C:\Windows\Skytel.exe [1826816 2007-06-15] (Realtek Semiconductor Corp.)
HKLM\...\Run: [NDSTray.exe] - NDSTray.exe
HKLM\...\Run: [BrMfcWnd] - C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe [622592 2006-11-24] (Brother Industries, Ltd.)
HKLM\...\Run: [ControlCenter3] - C:\Program Files\Brother\ControlCenter3\brctrcen.exe [65536 2006-07-19] (Brother Industries, Ltd.)
HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [TrayServer] - C:\Program Files\MAGIX\Filme_auf_DVD_DLV\TrayServer.exe [90112 2008-01-17] (MAGIX AG)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [248552 2010-05-14] (Sun Microsystems, Inc.)
HKLM\...\RunOnce: [Malwarebytes Anti-Malware] - C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent [532040 2013-04-04] (Malwarebytes Corporation)
HKCU\...\Run: [TOSCDSPD] - TOSCDSPD.EXE
HKCU\...\Run: [ehTray.exe] - C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
HKU\Default\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\Default\...\Run: [TOSCDSPD] - C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe [ 2007-06-27] ()
HKU\Default User\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\Default User\...\Run: [TOSCDSPD] - C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe [ 2007-06-27] ()
HKU\Stephan\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\Stephan\...\Run: [TOSCDSPD] - C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe [ 2007-06-27] ()
HKU\Stephan\...\Run: [ehTray.exe] - C:\Windows\ehome\ehTray.exe [ 2008-01-19] (Microsoft Corporation)
HKU\Stephan.Margret-PC\...\Run: [TOSCDSPD] - TOSCDSPD.EXE
HKU\Stephan.Margret-PC\...\Run: [ehTray.exe] - C:\Windows\ehome\ehTray.exe [ 2008-01-19] (Microsoft Corporation)
HKU\Stephan.Margret-PC\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [ 2013-04-19] (Skype Technologies S.A.)
HKU\whw\...\Run: [TOSCDSPD] - TOSCDSPD.EXE
HKU\whw\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [ 2008-01-19] (Microsoft Corporation)
HKU\whw\...\Run: [ehTray.exe] - C:\Windows\ehome\ehTray.exe [ 2008-01-19] (Microsoft Corporation)
HKU\whw\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [ 2013-04-19] (Skype Technologies S.A.)
Startup: C:\Users\Margret\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk
ShortcutTarget: OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (No File)
Startup: C:\Users\Margret\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk
ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
Startup: C:\Users\Stephan.Margret-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.0.lnk
ShortcutTarget: OpenOffice.org 3.0.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
Startup: C:\Users\Stephan.Margret-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk
ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT2481020
URLSearchHook: (No Name) - {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - No File
URLSearchHook: (No Name) - {5786d022-540e-4699-b350-b4be0ae94b79} - No File
SearchScopes: HKLM - DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2481020
SearchScopes: HKLM - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2481020
SearchScopes: HKCU - DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2481020
SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2481020
BHO: Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.252
FireFox:
========
FF ProfilePath: C:\Users\Margret\AppData\Roaming\Mozilla\Firefox\Profiles\c09o6s33.default
FF Homepage: hxxp://br.de
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin: @microsoft.com/WPF,version=3.5 - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.0 - C:\Programme\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Microsoft .NET Framework Assistant - C:\Users\Margret\AppData\Roaming\Mozilla\Firefox\Profiles\c09o6s33.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF Extension: No Name - C:\Users\Margret\AppData\Roaming\Mozilla\Firefox\Profiles\c09o6s33.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
========================== Services (Whitelisted) =================
R2 AdobeActiveFileMonitor8.0; C:\Programme\Adobe\Photoshop Album Starter Edition\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [169312 2009-09-06] (Adobe Systems Incorporated)
R2 ASLDRService; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [94208 2007-02-05] ()
R2 Fabs; C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe [1253376 2009-08-27] (MAGIX AG)
S3 FirebirdServerMAGIXInstance; C:\Program Files\Common Files\MAGIX Services\Database\bin\fbserver.exe [3276800 2008-08-07] (MAGIX®)
R2 MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
S3 UleadBurningHelper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2006-08-23] (Ulead Systems, Inc.)
S2 Automatisches LiveUpdate - Scheduler; "C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe" [x]
==================== Drivers (Whitelisted) ====================
R3 ASAPIW2k; C:\Windows\System32\drivers\ASAPIW2k.sys [11264 2005-05-26] (VOB Computersysteme GmbH)
R0 CLFS; C:\Windows\System32\CLFS.sys [245736 2009-04-11] (Microsoft Corporation)
S3 emAudio; C:\Windows\System32\drivers\emAudio.sys [23168 2009-01-19] (eMPIA Technology, Inc.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\mbamswissarmy.sys [40776 2013-10-21] (Malwarebytes Corporation)
R3 MTsensor; C:\Windows\System32\DRIVERS\ATKACPI.sys [7680 2006-12-14] (ATK0100)
S3 PinnacleMicroTV; C:\Windows\System32\DRIVERS\MicroTV.sys [122368 2006-04-06] (Pinnacle Systems GmbH)
S3 USB28xxBGA; C:\Windows\System32\DRIVERS\emBDA.sys [476288 2009-01-19] (eMPIA Technology, Inc.)
S3 USB28xxOEM; C:\Windows\System32\DRIVERS\emOEM.sys [38656 2009-01-19] (eMPIA Technology, Inc.)
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [x]
S3 IpInIp; system32\DRIVERS\ipinip.sys [x]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [x]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-10-21 20:47 - 2013-10-21 20:47 - 01087515 _____ (Farbar) C:\Users\Margret\Downloads\FRST.exe
2013-10-21 20:47 - 2013-10-21 20:47 - 00000000 ____D C:\FRST
2013-10-21 20:28 - 2013-10-21 20:29 - 00040776 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamswissarmy.sys
2013-10-21 20:28 - 2013-10-21 20:28 - 00000911 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-10-21 20:28 - 2013-10-21 20:28 - 00000000 ____D C:\Users\Margret\AppData\Roaming\Malwarebytes
2013-10-21 20:28 - 2013-10-21 20:28 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-21 20:28 - 2013-10-21 20:28 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-10-21 20:28 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-10-21 20:27 - 2013-10-21 20:27 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Margret\Downloads\mbam-setup-1.75.0.1300.exe
2013-10-21 20:27 - 2013-10-21 20:27 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Margret\Downloads\mbam-setup-1.75.0.1300(1).exe
2013-10-20 20:22 - 2013-10-20 20:22 - 00000752 _____ C:\Users\Public\Desktop\VLC media player.lnk
2013-10-20 20:18 - 2013-10-20 20:18 - 24278649 _____ C:\Users\Margret\Downloads\vlc-2.1.0-win32.exe
2013-10-20 20:15 - 2013-10-20 20:15 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-10-20 19:59 - 2013-10-20 20:00 - 00000000 ____D C:\Users\Margret\Desktop\OpenOffice 4.0.1 (de) Installation Files
2013-10-20 19:28 - 2013-09-22 12:29 - 12336128 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-20 19:28 - 2013-09-22 12:22 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-20 19:28 - 2013-09-22 12:22 - 01800704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-20 19:28 - 2013-09-22 12:14 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-10-20 19:28 - 2013-09-22 12:13 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-20 19:28 - 2013-09-22 12:13 - 01104896 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-20 19:28 - 2013-09-22 12:12 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-10-20 19:28 - 2013-09-22 12:09 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-20 19:28 - 2013-09-22 12:08 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-10-20 19:28 - 2013-09-22 12:07 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-20 19:28 - 2013-09-22 12:06 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-10-20 19:28 - 2013-09-22 12:05 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-20 19:28 - 2013-09-22 12:03 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-20 19:28 - 2013-09-22 12:03 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-20 19:28 - 2013-09-22 12:03 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-10-20 19:28 - 2013-09-22 11:59 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-10-20 19:00 - 2013-10-20 19:00 - 00000000 ____D C:\Users\whw\AppData\Roaming\Real
2013-10-18 18:14 - 2013-08-27 04:47 - 01029120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2013-10-18 18:14 - 2013-08-27 04:47 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2013-10-18 18:14 - 2013-08-27 04:47 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2013-10-18 18:14 - 2013-08-27 04:47 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2013-10-18 18:14 - 2013-08-27 03:52 - 01172480 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2013-10-18 18:14 - 2013-08-27 03:50 - 00486400 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2013-10-18 18:14 - 2013-08-27 03:32 - 00683008 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2013-10-18 18:14 - 2013-08-27 03:28 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2013-10-18 18:14 - 2013-08-27 03:28 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2013-10-18 18:14 - 2013-08-01 05:16 - 00638400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-10-18 18:14 - 2013-08-01 04:49 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2013-10-18 18:14 - 2013-07-20 12:44 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-18 18:14 - 2013-07-03 04:33 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys
2013-10-18 18:14 - 2013-07-03 04:10 - 00025472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2013-10-18 18:13 - 2013-08-29 09:36 - 02050048 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-18 18:13 - 2013-07-12 11:04 - 00134272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2013-10-18 18:13 - 2013-07-12 11:04 - 00073344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys
2013-10-18 18:13 - 2013-07-04 06:21 - 00532480 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-10-18 18:13 - 2013-06-29 04:07 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2013-10-18 18:13 - 2013-06-29 04:07 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2013-10-18 18:13 - 2013-06-29 04:07 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2013-10-18 18:13 - 2013-06-29 04:06 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2013-10-18 18:13 - 2013-06-27 01:01 - 00527064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-10-18 18:13 - 2013-06-04 06:16 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-10-18 18:13 - 2013-06-04 03:49 - 00293376 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-10-18 18:13 - 2011-05-05 15:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2013-10-18 18:13 - 2011-05-05 15:54 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2013-09-30 15:55 - 2013-10-20 19:34 - 00000000 ____D C:\Windows\system32\MRT
==================== One Month Modified Files and Folders =======
2013-10-21 20:47 - 2013-10-21 20:47 - 01087515 _____ (Farbar) C:\Users\Margret\Downloads\FRST.exe
2013-10-21 20:47 - 2013-10-21 20:47 - 00000000 ____D C:\FRST
2013-10-21 20:29 - 2013-10-21 20:28 - 00040776 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamswissarmy.sys
2013-10-21 20:28 - 2013-10-21 20:28 - 00000911 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-10-21 20:28 - 2013-10-21 20:28 - 00000000 ____D C:\Users\Margret\AppData\Roaming\Malwarebytes
2013-10-21 20:28 - 2013-10-21 20:28 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-21 20:28 - 2013-10-21 20:28 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-10-21 20:27 - 2013-10-21 20:27 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Margret\Downloads\mbam-setup-1.75.0.1300.exe
2013-10-21 20:27 - 2013-10-21 20:27 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Margret\Downloads\mbam-setup-1.75.0.1300(1).exe
2013-10-21 20:26 - 2007-12-26 14:48 - 01275737 _____ C:\Windows\WindowsUpdate.log
2013-10-21 20:24 - 2006-11-02 14:37 - 00000000 ___RD C:\Users\Public\Recorded TV
2013-10-21 20:23 - 2006-11-02 15:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-10-21 20:23 - 2006-11-02 14:47 - 00003568 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-21 20:23 - 2006-11-02 14:47 - 00003568 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-21 20:19 - 2006-11-02 15:01 - 00032530 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-10-20 21:20 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\Microsoft.NET
2013-10-20 21:17 - 2006-11-02 14:47 - 00315168 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-20 20:25 - 2013-05-14 18:49 - 00000000 ____D C:\Program Files\Real
2013-10-20 20:25 - 2013-05-14 18:48 - 00000000 ____D C:\Users\Margret\AppData\Roaming\Real
2013-10-20 20:25 - 2013-05-14 18:44 - 00000000 ____D C:\ProgramData\Real
2013-10-20 20:22 - 2013-10-20 20:22 - 00000752 _____ C:\Users\Public\Desktop\VLC media player.lnk
2013-10-20 20:22 - 2007-12-27 08:38 - 00000000 ____D C:\Users\Margret\AppData\Roaming\vlc
2013-10-20 20:18 - 2013-10-20 20:18 - 24278649 _____ C:\Users\Margret\Downloads\vlc-2.1.0-win32.exe
2013-10-20 20:17 - 2013-01-18 14:38 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-10-20 20:15 - 2013-10-20 20:15 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-10-20 20:14 - 2013-08-18 15:11 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-10-20 20:14 - 2011-06-10 18:55 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-10-20 20:14 - 2007-12-26 22:18 - 00000000 ____D C:\Users\Margret\AppData\Local\Adobe
2013-10-20 20:00 - 2013-10-20 19:59 - 00000000 ____D C:\Users\Margret\Desktop\OpenOffice 4.0.1 (de) Installation Files
2013-10-20 19:34 - 2013-09-30 15:55 - 00000000 ____D C:\Windows\system32\MRT
2013-10-20 19:31 - 2006-11-02 12:24 - 78106760 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2013-10-20 19:01 - 2008-12-26 14:38 - 00000000 ____D C:\Users\whw\AppData\Roaming\Skype
2013-10-20 19:00 - 2013-10-20 19:00 - 00000000 ____D C:\Users\whw\AppData\Roaming\Real
2013-10-20 19:00 - 2007-12-26 14:58 - 00000954 _____ C:\Users\whw\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-09-30 15:39 - 2007-12-26 22:06 - 00221184 _____ C:\Users\Margret\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-09-22 12:29 - 2013-10-20 19:28 - 12336128 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-09-22 12:22 - 2013-10-20 19:28 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-09-22 12:22 - 2013-10-20 19:28 - 01800704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-09-22 12:14 - 2013-10-20 19:28 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-09-22 12:13 - 2013-10-20 19:28 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-09-22 12:13 - 2013-10-20 19:28 - 01104896 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-09-22 12:12 - 2013-10-20 19:28 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-09-22 12:09 - 2013-10-20 19:28 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-09-22 12:08 - 2013-10-20 19:28 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-09-22 12:07 - 2013-10-20 19:28 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-09-22 12:06 - 2013-10-20 19:28 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-09-22 12:05 - 2013-10-20 19:28 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-09-22 12:03 - 2013-10-20 19:28 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-09-22 12:03 - 2013-10-20 19:28 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-09-22 12:03 - 2013-10-20 19:28 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-09-22 11:59 - 2013-10-20 19:28 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
Files to move or delete:
====================
C:\Users\Margret\Schlecker_Fotoservice.exe
Some content of TEMP:
====================
C:\Users\Margret\AppData\Local\Temp\Connection.dll
C:\Users\Margret\AppData\Local\Temp\Dbwork.dll
C:\Users\Margret\AppData\Local\Temp\Dialogs.dll
C:\Users\Margret\AppData\Local\Temp\ffunzip.exe
C:\Users\Margret\AppData\Local\Temp\FlashPlayerUpdate.exe
C:\Users\Margret\AppData\Local\Temp\FlashPlayerUpdate01.exe
C:\Users\Margret\AppData\Local\Temp\GLFF220.tmp.ConduitEngineSetup.exe
C:\Users\Margret\AppData\Local\Temp\IPC.dll
C:\Users\Margret\AppData\Local\Temp\Jobs.dll
C:\Users\Margret\AppData\Local\Temp\libeay32.dll
C:\Users\Margret\AppData\Local\Temp\mfc80.dll
C:\Users\Margret\AppData\Local\Temp\msvcp80.dll
C:\Users\Margret\AppData\Local\Temp\msvcr80.dll
C:\Users\Margret\AppData\Local\Temp\Myashampoo.exe
C:\Users\Margret\AppData\Local\Temp\ose00000.exe
C:\Users\Margret\AppData\Local\Temp\Permissions.dll
C:\Users\Margret\AppData\Local\Temp\QFA.EXE
C:\Users\Margret\AppData\Local\Temp\QfaInvoke.dll
C:\Users\Margret\AppData\Local\Temp\Report.dll
C:\Users\Margret\AppData\Local\Temp\SkinMagic.dll
C:\Users\Margret\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Margret\AppData\Local\Temp\Smarti.dll
C:\Users\Margret\AppData\Local\Temp\SmartiComm.dll
C:\Users\Margret\AppData\Local\Temp\SmartIcon.exe
C:\Users\Margret\AppData\Local\Temp\SmartSurfer.exe
C:\Users\Margret\AppData\Local\Temp\smurf.dll
C:\Users\Margret\AppData\Local\Temp\SmurfService.dll
C:\Users\Margret\AppData\Local\Temp\SmurfService.exe
C:\Users\Margret\AppData\Local\Temp\SmurfUpd.exe
C:\Users\Margret\AppData\Local\Temp\SmurfUpdEng.exe
C:\Users\Margret\AppData\Local\Temp\Sqlite.dll
C:\Users\Margret\AppData\Local\Temp\ssleay32.dll
C:\Users\Margret\AppData\Local\Temp\stubhelper.dll
C:\Users\Margret\AppData\Local\Temp\symlcsv1.exe
C:\Users\Margret\AppData\Local\Temp\tbAsha.dll
C:\Users\Margret\AppData\Local\Temp\tbMyAs.dll
C:\Users\Margret\AppData\Local\Temp\Threads.dll
C:\Users\Margret\AppData\Local\Temp\Uninstall.exe
C:\Users\Margret\AppData\Local\Temp\Utils.dll
C:\Users\Margret\AppData\Local\Temp\Vars.dll
C:\Users\Margret\AppData\Local\Temp\WEBDE_ServiceInstall.exe
C:\Users\Margret\AppData\Local\Temp\Wizzard.dll
C:\Users\Margret\AppData\Local\Temp\xmlparse.dll
C:\Users\Margret\AppData\Local\Temp\xmltok.dll
C:\Users\Margret\AppData\Local\Temp\_is7B57.exe
C:\Users\Stephan.Margret-PC\AppData\Local\Temp\SkypeSetup.exe
C:\Users\whw\AppData\Local\Temp\FlashPlayerUpdate.exe
C:\Users\whw\AppData\Local\Temp\SymLCSVC.EXE
C:\Users\whw\AppData\Local\Temp\unwise.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-10-21 20:29
==================== End Of Log ============================ --- --- --- Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 19-10-2013
Ran by Margret at 2013-10-21 20:48:50
Running from C:\Users\Margret\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
Accessibility (Version: 1.39.0.22)
Adobe Acrobat and Reader 8.1.2 Security Update 1 (KB403742) (Version: 8.1.2)
Adobe Digital Editions
Adobe Flash Player 11 Plugin (Version: 11.9.900.117)
Adobe Photoshop Elements 8.0 (Version: 8.0)
Adobe Reader 8.1.2 - Deutsch (Version: 8.1.2)
Adobe Reader 8.1.2 Security Update 1 (KB403742)
Atheros Driver Installation Program (Version: 7.1)
ATK Hotkey (Version: 1.00.0012)
Brother MFL-Pro Suite (Version: 1.00)
CD/DVD Drive Acoustic Silencer (Version: 2.01.03)
Click to Call with Skype (Version: 5.5.8013)
DVD MovieFactory for TOSHIBA (Version: 5.3)
eSupport UndeletePlus 3.0.2.406
Firebird SQL Server - MAGIX Edition (Version: 2.1.27.0)
Forte 3 - Free Edition (Version: 3)
GIMP 2.4.2
Intel(R) Graphics Media Accelerator Driver
Intel(R) Matrix Storage Manager
Java Auto Updater (Version: 2.0.2.4)
Java(TM) 6 Update 22 (Version: 6.0.220)
Java(TM) SE Runtime Environment 6 (Version: 1.6.0.0)
MAGIX Filme auf DVD Download-Version (Version: 9.0.1.2)
MAGIX Online Druck Service (Version: 3.4.3.0)
MAGIX Screenshare (Version: 4.3.6.1987)
MAGIX Speed 2 (MSI) (Version: 6.0.1.4)
Malwarebytes Anti-Malware Version 1.75.0.1300 (Version: 1.75.0.1300)
Microsoft .NET Framework 1.1 (Version: 1.1.4322)
Microsoft .NET Framework 1.1 Security Update (KB2833941)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
Microsoft .NET Framework 3.5 Language Pack SP1 - deu (Version: 3.5.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft XML Parser (Version: 8.0.7820.0)
Microsoft XML Parser (Version: 8.20.8730.4)
Mozilla Firefox 24.0 (x86 de) (Version: 24.0)
Mozilla Maintenance Service (Version: 24.0)
Mozilla Thunderbird 17.0.7 (x86 de) (Version: 17.0.7)
MSXML 4.0 SP2 (KB927978) (Version: 4.20.9841.0)
MSXML 4.0 SP2 (KB936181) (Version: 4.20.9848.0)
MSXML 4.0 SP2 (KB941833) (Version: 4.20.9849.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MSXML 4.0 SP2 Parser and SDK (Version: 4.20.9818.0)
Network Stumbler 0.4.0 (remove only)
OpenOffice.org 3.3 (Version: 3.3.9567)
Realtek 8139 and 8139C+ Ethernet Network Card Driver for Windows Vista (Version: 1.00.0000)
Realtek High Definition Audio Driver (Version: 6.0.1.5449)
RICOH R5C83x/84x Media Driver Vista x86 Ver.3.33.03 (Version: 3.33.03)
SCHLECKER Foto Digital Service
Skype™ 6.3 (Version: 6.3.107)
Synaptics Pointing Device Driver (Version: 10.0.3.0)
TOSHIBA Assist (Version: 2.00.03)
TOSHIBA Benutzerhandbücher (Version: 7.30)
TOSHIBA ConfigFree (Version: 7.00.32)
TOSHIBA Disc Creator (Version: 2.0.0.8)
TOSHIBA DVD PLAYER (Version: 1.10.07)
TOSHIBA Extended Tiles for Windows Mobility Center (Version: 1.01.00)
TOSHIBA SD Memory Utilities (Version: 1.8.1.1)
TOSHIBA Software Modem (Version: 2.1.77 (SM2177ALD04))
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (Version: 3)
VLC media player 2.1.0 (Version: 2.1.0)
Webocton - Scriptly 0.8.95.6 (Version: 0.8.95.6)
Windows Media Encoder 9-Reihe
Windows Media Encoder 9-Reihe (Version: 9.00.3374)
WinRAR 4.20 (32-Bit) (Version: 4.20.0)
Zylom Games Player Plugin
==================== Restore Points =========================
==================== Hosts content: ==========================
2006-11-02 12:23 - 2006-09-18 23:41 - 00000761 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
::1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: {1CC81347-6204-4B83-900C-01E02F50F067} - System32\Tasks\Microsoft\Windows\MobilePC\TMM
Task: {3BCDF251-CA5C-4045-A1FC-8FCEF9FBDC93} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages
Task: {3D13D6CD-DE57-4B71-8670-BFE1AA03EDF6} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-575955839-1752149912-2225113436-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe
Task: {3FA646CB-61D8-4ECD-A734-4D5233592A78} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI
Task: {44980BEE-7809-44A9-AC24-D6E578A3B7DF} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\system32\RacAgent.exe [2008-01-19] (Microsoft Corporation)
Task: {ACAAB84A-4A60-4F72-9828-DED640771A17} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-575955839-1752149912-2225113436-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe
Task: {E5150B95-F9B4-4D5D-95A2-7EC1ACBA95F8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\system32\gatherWirelessInfo.vbs [2008-01-05] ()
==================== Loaded Modules (whitelisted) =============
2011-01-17 16:19 - 2011-01-17 16:19 - 00985088 _____ () C:\Program Files\OpenOffice.org 3\program\libxml2.dll
2013-10-20 20:15 - 2013-10-20 20:15 - 03279768 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (10/21/2013 08:46:35 PM) (Source: Application Error) (User: )
Description: Fehlerhafte Anwendung mbam.exe, Version 1.75.0.1, Zeitstempel 0x511f8eb2, fehlerhaftes Modul MSVBVM60.DLL, Version 6.0.98.2, Zeitstempel 0x4791a724, Ausnahmecode 0xc0000005, Fehleroffset 0x0005d26c,
Prozess-ID 0x870, Anwendungsstartzeit mbam.exe0.
Error: (10/21/2013 08:29:22 PM) (Source: LoadPerf) (User: )
Description: <16
Error: (10/21/2013 02:21:06 PM) (Source: LoadPerf) (User: )
Description: <16
Error: (10/20/2013 09:17:18 PM) (Source: .NET Runtime Optimization Service) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to execute command from the offline queue: uninstall "System.Security, Version=2.0.0.0, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=msil" /NoDependencies . The error returned was Error: The specified assembly is not installed.
.
Error: (10/20/2013 08:23:25 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "rpshellextension.1.0,language="*",type="win32",version="1.0.0.0"1".
Die abhängige Assemblierung "rpshellextension.1.0,language="*",type="win32",version="1.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".
Error: (10/20/2013 07:40:09 PM) (Source: LoadPerf) (User: )
Description: MSDTC Bridge 4.0.0.0MSDTC Bridge 4.0.0.08
Error: (10/20/2013 07:40:09 PM) (Source: LoadPerf) (User: )
Description: Performance16
Error: (10/20/2013 07:40:09 PM) (Source: LoadPerf) (User: )
Description: Performance16
Error: (10/20/2013 07:40:09 PM) (Source: LoadPerf) (User: )
Description: SMSvcHost 4.0.0.0SMSvcHost 4.0.0.08
Error: (10/20/2013 07:40:09 PM) (Source: LoadPerf) (User: )
Description: Performance16
System errors:
=============
Error: (10/21/2013 08:24:58 PM) (Source: Service Control Manager) (User: )
Description: Ricoh xD-Picture Card Driver%%1058
Error: (10/21/2013 08:24:58 PM) (Source: Service Control Manager) (User: )
Description: rimsptsk%%1058
Error: (10/21/2013 08:24:58 PM) (Source: Service Control Manager) (User: )
Description: rimmptsk%%1058
Error: (10/21/2013 08:24:58 PM) (Source: Service Control Manager) (User: )
Description: Automatisches LiveUpdate - Scheduler%%3
Error: (10/21/2013 02:16:47 PM) (Source: Service Control Manager) (User: )
Description: Ricoh xD-Picture Card Driver%%1058
Error: (10/21/2013 02:16:47 PM) (Source: Service Control Manager) (User: )
Description: rimsptsk%%1058
Error: (10/21/2013 02:16:47 PM) (Source: Service Control Manager) (User: )
Description: rimmptsk%%1058
Error: (10/21/2013 02:16:47 PM) (Source: Service Control Manager) (User: )
Description: Automatisches LiveUpdate - Scheduler%%3
Error: (10/20/2013 09:18:22 PM) (Source: Service Control Manager) (User: )
Description: Ricoh xD-Picture Card Driver%%1058
Error: (10/20/2013 09:18:22 PM) (Source: Service Control Manager) (User: )
Description: rimsptsk%%1058
Microsoft Office Sessions:
=========================
Error: (10/21/2013 08:46:35 PM) (Source: Application Error)(User: )
Description: mbam.exe1.75.0.1511f8eb2MSVBVM60.DLL6.0.98.24791a724c00000050005d26c87001cece8b7180695d
Error: (10/21/2013 08:29:22 PM) (Source: LoadPerf)(User: )
Description: <16
Error: (10/21/2013 02:21:06 PM) (Source: LoadPerf)(User: )
Description: <16
Error: (10/20/2013 09:17:18 PM) (Source: .NET Runtime Optimization Service)(User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to execute command from the offline queue: uninstall "System.Security, Version=2.0.0.0, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=msil" /NoDependencies . The error returned was Error: The specified assembly is not installed.
.
Error: (10/20/2013 08:23:25 PM) (Source: SideBySide)(User: )
Description: rpshellextension.1.0,language="*",type="win32",version="1.0.0.0"C:\Windows\Installer\{3DC873BB-FFE3-46BF-9701-26B9AE371F9F}\recordingmanager.exe
Error: (10/20/2013 07:40:09 PM) (Source: LoadPerf)(User: )
Description: MSDTC Bridge 4.0.0.0MSDTC Bridge 4.0.0.08
Error: (10/20/2013 07:40:09 PM) (Source: LoadPerf)(User: )
Description: Performance16
Error: (10/20/2013 07:40:09 PM) (Source: LoadPerf)(User: )
Description: Performance16
Error: (10/20/2013 07:40:09 PM) (Source: LoadPerf)(User: )
Description: SMSvcHost 4.0.0.0SMSvcHost 4.0.0.08
Error: (10/20/2013 07:40:09 PM) (Source: LoadPerf)(User: )
Description: Performance16
CodeIntegrity Errors:
===================================
Date: 2013-02-23 18:22:48.432
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-02-23 18:22:47.953
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-02-23 18:22:47.445
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-02-23 18:22:46.798
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-02-23 18:22:46.205
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2011-05-31 20:20:37.775
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2011-05-31 20:20:37.311
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2011-05-31 20:20:36.788
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2011-05-31 20:20:36.409
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2010-06-11 19:23:48.931
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 58%
Total physical RAM: 2038.48 MB
Available physical RAM: 851.34 MB
Total Pagefile: 4318.23 MB
Available Pagefile: 2990.32 MB
Total Virtual: 2047.88 MB
Available Virtual: 1900.94 MB
==================== Drives ================================
Drive c: (Vista) (Fixed) (Total:74.52 GB) (Free:6.24 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive e: (Data) (Fixed) (Total:73.06 GB) (Free:41.87 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 149 GB) (Disk ID: D575E96F)
Partition 1: (Not Active) - (Size=1 GB) - (Type=27)
Partition 2: (Active) - (Size=75 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=73 GB) - (Type=07 NTFS)
==================== End Of Log ============================ bitteschön ...
Gr
Wolfgang |