Mehrere Funde von Java-Viren durch Avira Addition: Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-02-2014 01
Ran by ***** at 2014-02-16 19:17:44
Running from C:\Users\*****\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
Acer Arcade Deluxe (x32 Version: 4.1.7405 - CyberLink Corp.)
Acer Arcade Deluxe (x32 Version: 4.1.7405 - CyberLink Corp.) Hidden
Acer Arcade Movie (x32 Version: 9.0.6205 - CyberLink Corp.) Hidden
Acer eRecovery Management (x32 Version: 4.05.3007 - Acer Incorporated)
Acer GameZone Console (x32 Version: 6.1.0.2 - Oberon Media, Inc.)
Acer Registration (x32 Version: 1.02.3006 - Acer Incorporated)
Acer ScreenSaver (x32 Version: 1.1.0812 - Acer Incorporated)
Acer Updater (x32 Version: 1.02.3001 - Acer Incorporated)
Acrobat.com (x32 Version: 1.6.65 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 3.4.0.2710 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 3.4.0.2710 - Adobe Systems Incorporated) Hidden
Adobe Download Assistant (x32 Version: 1.2.3 - Adobe Systems Incorporated)
Adobe Download Assistant (x32 Version: 1.2.3 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 12 ActiveX (x32 Version: 12.0.0.44 - Adobe Systems Incorporated)
Adobe Flash Player 12 Plugin (x32 Version: 12.0.0.44 - Adobe Systems Incorporated)
Adobe Photoshop Elements 11 (x32 Version: 11.0 - Adobe Systems Incorporated)
Adobe Photoshop Elements 11 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
Adobe Premiere Elements 11 (Version: 11.0 - Adobe Systems Incorporated)
Adobe Premiere Elements 11 (Version: 11.0 - Adobe Systems Incorporated) Hidden
Adobe Reader 9.5.5 MUI (x32 Version: 9.5.5 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.0 (x32 Version: 12.0.0.112 - Adobe Systems, Inc.)
Advertising Center (x32 Version: 0.0.0.2 - Nero AG) Hidden
AMD Accelerated Video Transcoding (Version: 12.5.100.21116 - Advanced Micro Devices, Inc.) Hidden
AMD APP SDK Runtime (Version: 10.0.1016.4 - Advanced Micro Devices Inc.) Hidden
AMD Catalyst Install Manager (Version: 8.0.915.0 - Advanced Micro Devices, Inc.)
AMD Drag and Drop Transcoding (Version: 2.00.0000 - ATI Technologies Inc.) Hidden
AMD Fuel (Version: 2012.1116.1515.27190 - Ihr Firmenname) Hidden
AMD Media Foundation Decoders (Version: 1.0.71116.1554 - Advanced Micro Devices, Inc.) Hidden
AMD Steady Video Plug-In (Version: 2.04.0000 - AMD) Hidden
AMD VISION Engine Control Center (x32 Version: 2012.1116.1515.27190 - Ihr Firmenname) Hidden
AM-DeadLink 4.6 (x32 Version: 4.6 - www.aignes.com)
Apple Application Support (x32 Version: 2.3 - Apple Inc.)
Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.)
Application Profiles (x32 Version: 2.0.4238.33951 - Advanced Micro Devices, Inc.)
Ask Toolbar (x32 Version: 1.15.18.0 - Ask.com) <==== ATTENTION
Assassin's Creed (x32 Version: 1.02 - Ubisoft)
Assassin's Creed II (x32 Version: 1.01 - Ubisoft)
ATI AVIVO64 Codecs (Version: 11.6.0.50706 - ATI Technologies Inc.) Hidden
ATI Catalyst Registration (x32 Version: 3.00.0000 - ATI Technologies Inc.) Hidden
Audials (x32 Version: 8.0.55300.0 - RapidSolution Software AG)
Audials TV (x32 Version: 1.3.10803.300 - RapidSolution Software AG)
Avidemux 2.5 (x32 Version: 2.5.3.0 - )
Avidemux 2.6 (32-bit) (x32 Version: 2.6.5.8897 - )
Avira Free Antivirus (x32 Version: 14.0.2.286 - Avira)
Avira SearchFree Toolbar plus Web Protection Updater (HKCU Version: 1.2.4.37268 - Ask.com) <==== ATTENTION
AviSynth 2.5 (x32 Version: - )
AVM FRITZ!fax für FRITZ!Box (x32 Version: - AVM Berlin)
AVM FRITZ!WLAN (x32 Version: - AVM Berlin)
Batman: Arkham Asylum (x32 Version: 1.0.0.0 - Eidos Interactive Limited)
Cake Mania (x32 Version: - Oberon Media)
Canon MP Navigator EX 2.0 (x32 Version: - )
Canon Utilities Solution Menu (x32 Version: - )
CanoScan LiDE 100 Scanner Driver (Version: - )
Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Graphics Previews Common (x32 Version: 2012.1116.1515.27190 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2010.0113.2208.39662 - ATI Technologies, Inc.) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2011.0728.1756.30366 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2013.0830.1944.33589 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2012.1116.1515.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Standard (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Traditional (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help Czech (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help Danish (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help Dutch (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help English (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help Finnish (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help French (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help German (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help Greek (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help Hungarian (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help Italian (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help Japanese (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help Korean (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help Norwegian (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help Polish (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help Portuguese (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help Russian (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help Spanish (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help Swedish (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help Thai (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
CCC Help Turkish (x32 Version: 2012.1116.1514.27190 - Advanced Micro Devices, Inc.) Hidden
ccc-utility64 (Version: 2012.1116.1515.27190 - Advanced Micro Devices, Inc.) Hidden
CCleaner (Version: 4.06 - Piriform)
CDex - Open Source Digital Audio CD Extractor (x32 Version: 1.70.4.2009 - Georgy Berdyshev)
Chicken Invaders 2 (x32 Version: - Oberon Media)
ColdCut (x32 Version: ColdCut - © Jan Brummelte)
Compatibility Pack für 2007 Office System (x32 Version: 12.0.6612.1000 - Microsoft Corporation)
Core Temp 1.0 RC5 (Version: 1.0 - Alcpu)
Crysis(R) SP Demo (x32 Version: 1.00.0000 - Electronic Arts)
CrystalDiskInfo 5.0.0 (x32 Version: 5.0.0 - Crystal Dew World)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dairy Dash (x32 Version: - Oberon Media)
DeskPins (remove only) (x32 Version: - )
Deus Ex: Human Revolution - Director's Cut (x32 Version: - Eidos Montreal)
DHTML Editing Component (x32 Version: 6.02.0001 - Microsoft Corporation)
DivX-Setup (x32 Version: 2.6.1.22 - DivX, LLC)
Dragon Age: Origins - Ultimate Edition (x32 Version: - BioWare)
Dream Day First Home (x32 Version: - Oberon Media)
Dropbox (HKCU Version: 2.0.22 - Dropbox, Inc.)
Dual-Core Optimizer (x32 Version: 1.1.4.0169 - AMD)
DVD-Cover Printmaster 1.4 (x32 Version: 1.4 - biu software)
DVDx 4.0 Open Edition (x32 Version: 4.0 (Open Edition) - labDV)
eBay Worldwide (x32 Version: 2.1.0901 - OEM)
Elements 11 Organizer (x32 Version: 11.0 - Ihr Firmenname) Hidden
Elevated Installer (x32 Version: 2.1.13 - Garmin Ltd or its subsidiaries) Hidden
eReg (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden
eSobi v2 (x32 Version: 2.0.4.000274 - esobi Inc.)
eSobi v2 (x32 Version: 2.0.4.000274 - esobi Inc.) Hidden
Evernote v. 5.1.1 (x32 Version: 5.1.1.2334 - Evernote Corp.)
Farm Frenzy 2 (x32 Version: - Oberon Media)
ffdshow [rev 2946] [2009-05-15] (x32 Version: 1.0 - )
Firestorm-Beta (remove only) (x32 Version: 4.5.1.38838 - The Phoenix Firestorm Project, Inc.)
Firestorm-Release (remove only) (x32 Version: 4.4.2.34167 - The Phoenix Firestorm Project, Inc.)
Foxit PDF Editor (x32 Version: 2.2.0.0205 - Foxit Software)
Foxit Reader 5.0 (x32 Version: 5.0.1.0527 - Foxit Corporation)
Free FLV Converter V 6.94.0 (x32 Version: 6.94.0.0 - Koyote Soft)
Free Video Dub version 2.0.21.827 (x32 Version: 2.0.21.827 - DVDVideoSoft Ltd.)
Free WebM Video Converter version 5.0.28.827 (x32 Version: 5.0.28.827 - DVDVideoSoft Ltd.)
Freizeitkarte_AUT (Ausgabe 13.11) (x32 Version: - )
Galapago (x32 Version: - Oberon Media)
Garmin BaseCamp (x32 Version: 4.2.4 - Garmin Ltd or its subsidiaries)
Garmin Express (x32 Version: 2.1.13 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express Tray (x32 Version: 2.1.13 - Garmin Ltd or its subsidiaries) Hidden
Garmin MapInstall (x32 Version: 4.0.4 - Garmin Ltd or its subsidiaries)
Garmin MapSource (x32 Version: 6.16.3 - Garmin Ltd or its subsidiaries)
Garmin POI Loader (x32 Version: 2.7.2 - Garmin Ltd or its subsidiaries)
Garmin Training Center (x32 Version: 3.5.3 - Garmin Ltd or its subsidiaries)
Garmin Update Service (x32 Version: 2.1.13 - Garmin Ltd or its subsidiaries) Hidden
Garmin USB Drivers (x32 Version: 2.3.1.0 - Garmin Ltd or its subsidiaries)
Garmin WebUpdater (x32 Version: 2.5.6 - Garmin Ltd or its subsidiaries)
GIMP 2.6.11 (x32 Version: 2.6.11 - The GIMP Team)
Google Earth (x32 Version: 7.1.2.2041 - Google)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Toolbar for Internet Explorer (x32 Version: 7.5.4805.320 - Google Inc.)
Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden
GPL Ghostscript (Version: 9.10 - Artifex Software Inc.)
Grand Theft Auto: Episodes from Liberty City (x32 Version: 1.0.0003.135 - Rockstar Games Inc.) Hidden
Grand Theft Auto: Episodes From Liberty City (x32 Version: 1.1.0.0 - Rockstar Games)
Granny In Paradise (x32 Version: - Oberon Media)
GSAK 8.3.0.1 (x32 Version: - CWE computer services)
GSview 4.9 (Version: - )
Harmony Browser Plug-in (x32 Version: 2.0 - Logitech)
Heroes of Hellas (x32 Version: - Oberon Media)
Hotkey Utility (x32 Version: 2.05.3003 - Acer Incorporated)
HTC BMP USB Driver (x32 Version: 1.0.5375 - HTC)
HTC Driver Installer (x32 Version: 2.0.7.018 - HTC Corporation)
HydraVision (x32 Version: 4.2.234.0 - Advanced Micro Devices, Inc.) Hidden
Identity Card (x32 Version: 1.00.3003 - Acer Incorporated)
ImagXpress (x32 Version: 7.0.74.0 - Nero AG) Hidden
Internet-TV für Windows Media Center (x32 Version: 4.2.2.0 - Microsoft Corporation)
IrfanView (remove only) (x32 Version: 4.27 - Irfan Skiljan)
Java 7 Update 51 (x32 Version: 7.0.510 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
JFritz 0.7.4.1 (x32 Version: - JFritz Team)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
KeePass Password Safe 2.20.1 (x32 Version: - Dominik Reichl)
L.A. Noire (x32 Version: - Team Bondi)
Last.fm 1.5.4.24567 (x32 Version: - Last.fm)
LastChaosGER (x32 Version: 1.00.000 - Barunsongames CO., LTD.)
Marvell Miniport Driver (x32 Version: 10.70.3.3 - Marvell)
MediaShow Espresso (x32 Version: 5.5.1403_23691 - CyberLink Corp.) Hidden
Microsoft .NET Framework 1.1 (x32 Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5 (Version: 4.5.50709 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Games for Windows - LIVE (x32 Version: 3.4.54.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden
Microsoft Office Access MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Groove MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Home and Student 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Language Pack 2007 - German/Deutsch (x32 Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (x32 Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office O MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint Viewer 2007 (German) (x32 Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Spanish) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden
Microsoft Office Publisher MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office SharePoint Designer 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden
Microsoft Office SharePoint Designer MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Suite Activation Assistant (x32 Version: 2.9 - Microsoft Corporation)
Microsoft Office Word MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office X MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Primary Interoperability Assemblies 2005 (x32 Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (x32 Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (x32 Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106 (Version: 11.0.51106 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106 (Version: 11.0.51106 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Works (x32 Version: 9.7.0621 - Microsoft Corporation)
Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
Mozilla Firefox 27.0.1 (x86 de) (x32 Version: 27.0.1 - Mozilla)
Mozilla Maintenance Service (x32 Version: 27.0.1 - Mozilla)
Mozilla Thunderbird 24.3.0 (x86 de) (x32 Version: 24.3.0 - Mozilla)
Mp3tag v2.49a (x32 Version: v2.49a - Florian Heidenreich)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP3 Parser (KB2721691) (x32 Version: 4.30.2114.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (x32 Version: 4.30.2100.0 - Microsoft Corporation)
MyPhoneExplorer (x32 Version: 1.8.4 - F.J. Wechselberger)
MyWinLocker (x32 Version: 3.1.206.0 - Egis Technology Inc.) Hidden
MyWinLocker Suite (x32 Version: 3.1.206.0 - Egis Technology Inc.)
MyWinLocker Suite (x32 Version: 3.1.206.0 - Egis Technology Inc.) Hidden
Need for Speed™ Most Wanted (x32 Version: - )
Nero 9 Essentials (x32 Version: - Nero AG)
Nero ControlCenter (x32 Version: 9.0.0.1 - Nero AG) Hidden
Nero DiscSpeed (x32 Version: 5.4.13.100 - Nero AG) Hidden
Nero DiscSpeed Help (x32 Version: 5.4.4.100 - Nero AG) Hidden
Nero DriveSpeed (x32 Version: 4.4.12.100 - Nero AG) Hidden
Nero DriveSpeed Help (x32 Version: 4.4.4.100 - Nero AG) Hidden
Nero Express Help (x32 Version: 9.6.2.101 - Nero AG) Hidden
Nero InfoTool (x32 Version: 6.4.12.100 - Nero AG) Hidden
Nero InfoTool Help (x32 Version: 6.4.4.100 - Nero AG) Hidden
Nero Installer (x32 Version: 4.4.9.0 - Nero AG) Hidden
Nero Online Upgrade (x32 Version: 1.3.0.0 - Nero AG) Hidden
Nero StartSmart (x32 Version: 9.4.37.100 - Nero AG) Hidden
Nero StartSmart Help (x32 Version: 9.4.27.100 - Nero AG) Hidden
Nero StartSmart OEM (x32 Version: 9.16.0.100 - Nero AG) Hidden
NeroExpress (x32 Version: 9.4.33.100 - Nero AG) Hidden
neroxml (x32 Version: 1.0.0 - Nero AG) Hidden
NVIDIA Drivers (Version: 1.7 - )
NVIDIA PhysX (x32 Version: 9.10.0513 - NVIDIA Corporation)
OpenFietsMap (BNLv31-03-2012) (x32 Version: - )
OSM generic routable (x32 Version: - )
Pando Media Booster (x32 Version: 2.3.5.9 - Pando Networks Inc.)
PixiePack Codec Pack (x32 Version: 1.1.400.0 - None)
PocketCloud Windows Companion (x32 Version: 2.5.13 - Wyse Technology)
PokerStars (x32 Version: - PokerStars)
Power Tab Editor 1.7 (x32 Version: 1.7.0 - Power Tab Software)
PRE11 STI 64Installer (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
PriceGong 2.6.11 (x32 Version: 2.6.11 - PriceGong) <==== ATTENTION
ProtectDisc Driver, Version 11 (x32 Version: 11.0.0.14 - ProtectDisc Software GmbH)
PSE11 STI Installer (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
QuickTime (x32 Version: 7.74.80.86 - Apple Inc.)
Ravensburger tiptoi (x32 Version: - )
Realtek High Definition Audio Driver (x32 Version: 6.0.1.5942 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver (x32 Version: 1.01.0094 - REALTEK Semiconductor Corp.)
Rockstar Games Social Club (x32 Version: 1.1.0.6 - Rockstar Games)
Scramby (x32 Version: 2.0.32.0 - Rapid Solution Software AG)
Scribus 1.4.3 (64bit) (Version: 1.4.3 - The Scribus Team)
SDFormatter (x32 Version: 4.0.0 - SD Association)
Shredder (Version: 2.0.5.0 - Egis Technology Inc.) Hidden
Shredder (x32 Version: 2.0.5.0 - Egis Technology Inc.) Hidden
simfy (x32 Version: 1.5.4 - simfy GmbH)
simfy (x32 Version: 1.5.4 - simfy GmbH) Hidden
SLiteChat for Windows (x32 Version: 1.6.3 - Made to Order Software Corporation)
Spin & Win (x32 Version: - Oberon Media)
Spotify (HKCU Version: 0.9.6.81.gd359a796 - Spotify AB)
Steam (x32 Version: 1.0.0.0 - Valve Corporation)
StreamTransport version: 1.0.2.2171 (x32 Version: - )
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TEFView 2.69 (x32 Version: - TablEdit)
TightVNC 2.0.4 (x32 Version: 2.0.4 - GlavSoft LLC.)
TmNationsForever (x32 Version: - Nadeo)
True Image 2013 (x32 Version: 16.0.6514 - Acronis) Hidden
Turbo Lister 2 (x32 Version: 2.00.0000 - eBay Inc.)
Ubisoft Game Launcher (x32 Version: 1.0.0.0 - UBISOFT)
Update for 2007 Microsoft Office System (KB967642) (x32 Version: - Microsoft)
Update for Microsoft .NET Framework 4.5 (KB2750147) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4.5 (KB2805221) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4.5 (KB2805226) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft Office 2007 Help for Common Features (KB963673) (x32 Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office Excel 2007 Help (KB963678) (x32 Version: - Microsoft)
Update for Microsoft Office OneNote 2007 Help (KB963670) (x32 Version: - Microsoft)
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office Powerpoint 2007 Help (KB963669) (x32 Version: - Microsoft)
Update for Microsoft Office Script Editor Help (KB963671) (x32 Version: - Microsoft)
Update for Microsoft Office Word 2007 Help (KB963665) (x32 Version: - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (x32 Version: - Microsoft)
Update für Microsoft Office Outlook 2007 Help (KB963677) (x32 Version: - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (x32 Version: - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (x32 Version: - Microsoft)
USB/DVD-Downloadtool für Windows 7 (x32 Version: 1.0.30 - Microsoft Corporation)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
VirtualDJ Home FREE (x32 Version: 7.4 - Atomix Productions)
VLC media player 2.0.6 (x32 Version: 2.0.6 - VideoLAN)
VobSub v2.23 (Remove Only) (x32 Version: - )
VS2005 Redist (x32 Version: 1.0.0 - Rapid Solution Software AG)
Wartung Samsung CLP-320 Series (x32 Version: - Samsung Electronics Co., Ltd.)
WD Link (x32 Version: 1.00.03 - Western Digital)
Welcome Center (x32 Version: 1.00.3013 - Acer Incorporated)
Windows 7 USB/DVD Download Tool (x32 Version: 1.0.30 - Microsoft Corporation)
Windows Driver Package - Garmin (grmnusb) GARMIN Devices (04/19/2012 2.3.1.0) (Version: 04/19/2012 2.3.1.0 - Garmin)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Language Selector (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Sync (x32 Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Media Center Add-in for Silverlight (x32 Version: 4.7.3.0 - Microsoft Corporation)
Windows Media Player Firefox Plugin (x32 Version: 1.0.0.8 - Microsoft Corp)
WinPcap 4.1.1 (x32 Version: 4.1.0.1753 - CACE Technologies)
WinRAR (Version: - )
WinSCP 5.1.7 (x32 Version: 5.1.7 - Martin Prikryl)
WinZip 14.5 (x32 Version: 14.5.9095 - WinZip Computing, S.L. )
WISO Mein Geld 2013 Professional (x32 Version: - Buhl Data Service GmbH)
WISO Mein Geld 2013 Professional (x32 Version: 15.0.0.1 - Buhl Data Service GmbH) Hidden
WISO Steuer-Sparbuch 2011 (x32 Version: 18.00.6928 - Buhl Data Service GmbH)
WISO Steuer-Sparbuch 2012 (x32 Version: 19.00.7303 - Buhl Data Service GmbH)
WISO Steuer-Sparbuch 2013 (x32 Version: 20.00.8137 - Buhl Data Service GmbH)
X2 - Die Bedrohung (Collectors Edition V1.4) (x32 Version: 1.04.0000 - EGOSOFT)
XviD MPEG4 Video Codec (remove only) (x32 Version: - )
Yahoo! Messenger (x32 Version: - Yahoo! Inc.)
Yahoo! Software Update (x32 Version: - )
==================== Restore Points =========================
14-02-2014 14:58:47 Windows Update
==================== Hosts content: ==========================
2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {099465B1-BF7E-4AC0-A0BF-8C356392D87A} - System32\Tasks\{7A27171C-D9A8-43E6-AD9E-EF76876716E5} => Firefox.exe hxxp://ui.skype.com/ui/0/4.1.0.179.367/de/abandoninstall?source=lightinstaller&page=tsMain&installinfo=google-toolbar:notoffered;notincluded,google-chrome:notoffered;notincluded
Task: {1838257C-0469-43AF-ABAB-26BB8A506F45} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-09-13] (Google Inc.)
Task: {1C2DDB8C-0ED4-4293-B7F3-7C111F0416CA} - System32\Tasks\AdobeAAMUpdater-1.0-Acer-***** => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-09-20] (Adobe Systems Incorporated)
Task: {21DD6739-AD18-483D-BA20-35C47494415E} - System32\Tasks\Scheduled Update for Ask Toolbar => C:\Program Files (x86)\Ask.com\UpdateTask.exe [2013-02-08] () <==== ATTENTION
Task: {3C172A83-8871-4A4F-A6E6-F9E81ACEB007} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-04] (Adobe Systems Incorporated)
Task: {44947397-3CCF-4335-BB2E-D0D063686694} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-09-19] (Piriform Ltd)
Task: {5FC9EAF3-44B1-4101-BEF3-93A46CCC1B15} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-09-13] (Google Inc.)
Task: {65808728-58B1-4E6B-B967-00A47FC2E669} - System32\Tasks\Launch HTC Sync Loader => C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe
Task: {A2A067B0-9478-4112-88B9-F270EFBD0916} - System32\Tasks\Core Temp Autostart ***** => C:\Program Files\Core Temp\Core Temp.exe [2013-03-01] ()
Task: {B43769F7-190A-4554-9CFD-360EC90DD630} - System32\Tasks\{31F033E1-E598-4078-AED4-6FF9A3260333} => F:\Eigene Dateien\ld2\Life and Death 2\LD2.EXE
Task: {D1ABE08F-A767-476D-9549-B9ADD9D8FE5D} - System32\Tasks\{46BEC76F-C197-4FDE-9453-3E617C52F21F} => F:\Eigene Dateien\ld2\Life and Death 2\LD2.EXE
Task: {ECDE8648-B81B-4F59-A4B0-4FD891086D94} - System32\Tasks\{E4B77BDB-03B3-40BD-8DD6-979FB34EEFFB} => F:\Eigene Dateien\ld2\Life and Death 2\LD2.EXE
Task: {F558D6B0-FDBE-4330-A943-0AB4F92D548F} - System32\Tasks\{DD9F05BD-6394-40A7-81E7-DEC2B69A05E7} => F:\Eigene Dateien\ld2\Life and Death 2\LD2.EXE
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2013-03-27 21:39 - 2013-03-27 21:39 - 00021824 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\x64\ti_managers_proxy_stub.dll
2013-06-06 15:19 - 2013-03-01 16:45 - 00856016 _____ () C:\Program Files\Core Temp\Core Temp.exe
2011-10-07 10:39 - 2011-10-07 10:39 - 01304856 _____ () C:\Program Files\Logitech\SetPointP\Macros\MacroCore.dll
2010-10-07 19:05 - 2011-07-06 13:34 - 00688128 _____ () C:\Windows\Samsung\PanelMgr\SSMMgr.exe
2010-10-07 19:05 - 2009-09-30 21:51 - 00306688 _____ () C:\Windows\Samsung\PanelMgr\caller64.exe
2012-11-16 15:27 - 2012-11-16 15:27 - 00103424 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2012-11-16 15:09 - 2012-11-16 15:09 - 00369152 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2013-02-27 19:04 - 2013-02-27 19:06 - 00397704 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll
2010-05-11 13:48 - 2010-02-03 09:37 - 00244904 ____N () C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe
2007-07-24 13:27 - 2007-07-24 13:27 - 00266240 _____ () C:\Program Files (x86)\RS audials\Scramby\ecp.dll
2013-03-27 23:37 - 2013-03-27 23:37 - 13627872 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\ti_managers.dll
2013-01-10 12:43 - 2013-01-10 12:43 - 00014360 _____ () C:\Program Files (x86)\Common Files\Acronis\TibMounter\icudt38.dll
2013-12-20 12:14 - 2013-12-20 12:14 - 00433664 _____ () C:\Program Files (x86)\Evernote\Evernote\libxml2.dll
2013-12-20 12:14 - 2013-12-20 12:14 - 00315392 _____ () C:\Program Files (x86)\Evernote\Evernote\libtidy.dll
2013-03-27 21:09 - 2013-03-27 21:09 - 00420160 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\ulxmlrpcpp.dll
2014-02-15 17:06 - 2014-02-15 17:06 - 03578992 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2014-02-04 22:02 - 2014-02-04 22:02 - 16287624 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll
2013-03-27 21:36 - 2013-03-27 21:36 - 00021312 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\ti_managers_proxy_stub.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\ProgramData\Temp:93EB7685
AlternateDataStreams: C:\ProgramData\Temp:AB689DEA
==================== Safe Mode (whitelisted) ===================
==================== Disabled items from MSCONFIG ==============
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^WISO Mein Steuer-Sparbuch heute.lnk => C:\Windows\pss\WISO Mein Steuer-Sparbuch heute.lnk.CommonStartup
MSCONFIG\startupreg: Acronis Scheduler2 Service => "C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe"
MSCONFIG\startupreg: AcronisTibMounterMonitor => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
MSCONFIG\startupreg: ApnUpdater => "C:\Program Files (x86)\Ask.com\Updater\Updater.exe"
MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: ArcadeMovieService => "C:\Program Files (x86)\Acer Arcade Deluxe\Arcade Movie\ArcadeMovieService.exe"
MSCONFIG\startupreg: ATICustomerCare => "C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe"
MSCONFIG\startupreg: CanonSolutionMenu => C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe /logon
MSCONFIG\startupreg: DivXUpdate => "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
MSCONFIG\startupreg: EgisTecPMMUpdate => "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
MSCONFIG\startupreg: EgisUpdate => "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d
MSCONFIG\startupreg: GarminExpressTrayApp => "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
MSCONFIG\startupreg: gStart => C:\Program Files (x86)\Garmin\gStart.exe
MSCONFIG\startupreg: Hotkey Utility => C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
MSCONFIG\startupreg: KeePass 2 PreLoad => "C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe" --preload
MSCONFIG\startupreg: mwlDaemon => C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe
MSCONFIG\startupreg: NortonOnlineBackupReminder => "C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe" UNATTENDED
MSCONFIG\startupreg: PocketCloud Location => "C:\Program Files (x86)\Wyse\PocketCloud Windows Companion\WyseBrowser.exe"
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: Spotify => "C:\Users\*****\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\*****\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\Steam.exe" -silent
MSCONFIG\startupreg: SuiteTray => "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"
MSCONFIG\startupreg: TrueImageMonitor.exe => "C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe"
MSCONFIG\startupreg: tvncontrol => "C:\Program Files (x86)\TightVNC\tvnserver.exe" -controlservice -slave
==================== Faulty Device Manager Devices =============
Name: ATI Radeon HD 3200 Graphics
Description: ATI Radeon HD 3200 Graphics
Class Guid: {4d36e968-e325-11ce-bfc1-08002be10318}
Manufacturer: Advanced Micro Devices, Inc.
Service: amdkmdap
Problem: : Windows has stopped this device because it has reported problems. (Code 43)
Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation.
Name: Microsoft PS/2-Maus
Description: Microsoft PS/2-Maus
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: Standardtastatur (PS/2)
Description: Standardtastatur (PS/2)
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standardtastaturen)
Service: i8042prt
Problem: : This device is disabled because the firmware of the device did not give it the required resources. (Code 29)
Resolution: Enable the device in the BIOS of the device.
==================== Event log errors: =========================
Application errors:
==================
Error: (02/13/2014 01:20:59 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: SLVoice.exe, Version: 4.5.9.17865, Zeitstempel: 0x505b00f4
Name des fehlerhaften Moduls: vivoxsdk.dll, Version: 4.5.9.17865, Zeitstempel: 0x505afdf1
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0021a8ed
ID des fehlerhaften Prozesses: 0x1288
Startzeit der fehlerhaften Anwendung: 0xSLVoice.exe0
Pfad der fehlerhaften Anwendung: SLVoice.exe1
Pfad des fehlerhaften Moduls: SLVoice.exe2
Berichtskennung: SLVoice.exe3
Error: (01/16/2014 08:13:24 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: qotr.exe, Version: 0.0.0.0, Zeitstempel: 0x4b7aa48d
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00000001
ID des fehlerhaften Prozesses: 0x1dec
Startzeit der fehlerhaften Anwendung: 0xqotr.exe0
Pfad der fehlerhaften Anwendung: qotr.exe1
Pfad des fehlerhaften Moduls: qotr.exe2
Berichtskennung: qotr.exe3
Error: (01/06/2014 11:43:48 PM) (Source: Application Hang) (User: )
Description: Programm MG.exe, Version 15.3.0.34 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 374
Startzeit: 01cf0aff79f8aa2b
Endzeit: 185
Anwendungspfad: C:\Program Files (x86)\Buhl\WISO Mein Geld 2013\MG.exe
Berichts-ID: f72b37ca-7723-11e3-be5d-bbb498a23d63
Error: (12/29/2013 00:37:22 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: SLVoice.exe, Version: 4.5.9.17865, Zeitstempel: 0x505b00f4
Name des fehlerhaften Moduls: vivoxsdk.dll, Version: 4.5.9.17865, Zeitstempel: 0x505afdf1
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0014dd7f
ID des fehlerhaften Prozesses: 0xe1c
Startzeit der fehlerhaften Anwendung: 0xSLVoice.exe0
Pfad der fehlerhaften Anwendung: SLVoice.exe1
Pfad des fehlerhaften Moduls: SLVoice.exe2
Berichtskennung: SLVoice.exe3
Error: (12/19/2013 11:28:40 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: SLVoice.exe, Version: 4.5.9.17865, Zeitstempel: 0x505b00f4
Name des fehlerhaften Moduls: vivoxsdk.dll, Version: 4.5.9.17865, Zeitstempel: 0x505afdf1
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0021a8ed
ID des fehlerhaften Prozesses: 0x1a20
Startzeit der fehlerhaften Anwendung: 0xSLVoice.exe0
Pfad der fehlerhaften Anwendung: SLVoice.exe1
Pfad des fehlerhaften Moduls: SLVoice.exe2
Berichtskennung: SLVoice.exe3
Error: (12/18/2013 00:07:06 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: SLVoice.exe, Version: 4.5.9.17865, Zeitstempel: 0x505b00f4
Name des fehlerhaften Moduls: vivoxsdk.dll, Version: 4.5.9.17865, Zeitstempel: 0x505afdf1
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0021a8ed
ID des fehlerhaften Prozesses: 0xcec
Startzeit der fehlerhaften Anwendung: 0xSLVoice.exe0
Pfad der fehlerhaften Anwendung: SLVoice.exe1
Pfad des fehlerhaften Moduls: SLVoice.exe2
Berichtskennung: SLVoice.exe3
Error: (12/12/2013 00:25:03 PM) (Source: Application Hang) (User: )
Description: Programm gsak.exe, Version 8.3.0.1 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 14fc
Startzeit: 01cef72c14df162b
Endzeit: 920
Anwendungspfad: C:\Program Files (x86)\gsak\gsak.exe
Berichts-ID:
Error: (11/12/2013 10:27:19 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: SLVoice.exe, Version: 4.5.9.17865, Zeitstempel: 0x505b00f4
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521ea8e7
Ausnahmecode: 0xc0000264
Fehleroffset: 0x000a2525
ID des fehlerhaften Prozesses: 0x18e8
Startzeit der fehlerhaften Anwendung: 0xSLVoice.exe0
Pfad der fehlerhaften Anwendung: SLVoice.exe1
Pfad des fehlerhaften Moduls: SLVoice.exe2
Berichtskennung: SLVoice.exe3
Error: (11/10/2013 00:17:18 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: avnotify.exe, Version: 13.6.20.2100, Zeitstempel: 0x51e6b921
Name des fehlerhaften Moduls: avnotify.exe, Version: 13.6.20.2100, Zeitstempel: 0x51e6b921
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00001487
ID des fehlerhaften Prozesses: 0x1270
Startzeit der fehlerhaften Anwendung: 0xavnotify.exe0
Pfad der fehlerhaften Anwendung: avnotify.exe1
Pfad des fehlerhaften Moduls: avnotify.exe2
Berichtskennung: avnotify.exe3
Error: (10/24/2013 06:51:14 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: avnotify.exe, Version: 13.6.20.2100, Zeitstempel: 0x51e6b921
Name des fehlerhaften Moduls: avnotify.exe, Version: 13.6.20.2100, Zeitstempel: 0x51e6b921
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00001487
ID des fehlerhaften Prozesses: 0x1008
Startzeit der fehlerhaften Anwendung: 0xavnotify.exe0
Pfad der fehlerhaften Anwendung: avnotify.exe1
Pfad des fehlerhaften Moduls: avnotify.exe2
Berichtskennung: avnotify.exe3
System errors:
=============
Error: (02/16/2014 07:12:25 PM) (Source: DCOM) (User: Acer)
Description: AnwendungsspezifischLokalAktivierung{D3DCB472-7261-43CE-924B-0704BD730D5F}{D3DCB472-7261-43CE-924B-0704BD730D5F}Acer*****S-1-5-21-2579558852-1580303718-405439571-1000LocalHost (unter Verwendung von LRPC)
Error: (02/16/2014 07:12:25 PM) (Source: DCOM) (User: Acer)
Description: AnwendungsspezifischLokalAktivierung{145B4335-FE2A-4927-A040-7C35AD3180EF}{145B4335-FE2A-4927-A040-7C35AD3180EF}Acer*****S-1-5-21-2579558852-1580303718-405439571-1000LocalHost (unter Verwendung von LRPC)
Error: (02/16/2014 07:11:06 PM) (Source: DCOM) (User: Acer)
Description: AnwendungsspezifischLokalAktivierung{D3DCB472-7261-43CE-924B-0704BD730D5F}{D3DCB472-7261-43CE-924B-0704BD730D5F}Acer*****S-1-5-21-2579558852-1580303718-405439571-1000LocalHost (unter Verwendung von LRPC)
Error: (02/16/2014 07:11:06 PM) (Source: DCOM) (User: Acer)
Description: AnwendungsspezifischLokalAktivierung{145B4335-FE2A-4927-A040-7C35AD3180EF}{145B4335-FE2A-4927-A040-7C35AD3180EF}Acer*****S-1-5-21-2579558852-1580303718-405439571-1000LocalHost (unter Verwendung von LRPC)
Error: (02/16/2014 02:08:20 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Windows Update" wurde nicht richtig gestartet.
Error: (02/16/2014 02:05:51 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Acronis Sync Agent Service" wurde nicht richtig gestartet.
Error: (02/16/2014 02:01:10 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Heimnetzgruppen-Listener" wurde mit folgendem dienstspezifischem Fehler beendet: %%-2147023143.
Error: (02/16/2014 02:00:43 PM) (Source: Service Control Manager) (User: )
Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen:
prodrv06
prohlp02
prosync1
sfhlp01
Error: (02/16/2014 01:59:19 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Gemeinsame Nutzung der Internetverbindung" ist von folgendem Dienst abhängig: BFE. Dieser Dienst ist eventuell nicht installiert.
Error: (02/16/2014 01:59:19 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "IPsec-Richtlinien-Agent" ist von folgendem Dienst abhängig: BFE. Dieser Dienst ist eventuell nicht installiert.
Microsoft Office Sessions:
=========================
Error: (11/24/2011 11:58:04 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6425.1000, Microsoft Office Version: 12.0.6425.1000. This session lasted 15123 seconds with 600 seconds of active time. This session ended with a crash.
CodeIntegrity Errors:
===================================
Date: 2012-06-10 17:24:03.630
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Users\FRANKJ~1\AppData\Local\Temp\PCD5CX3.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-06-10 17:24:03.620
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Users\FRANKJ~1\AppData\Local\Temp\PCD5CX3.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-06-10 17:23:43.271
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Users\FRANKJ~1\AppData\Local\Temp\PCD5CX2.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-06-10 17:23:43.262
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Users\FRANKJ~1\AppData\Local\Temp\PCD5CX2.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
==================== Memory info ===========================
Percentage of memory in use: 57%
Total physical RAM: 3838.28 MB
Available physical RAM: 1631.43 MB
Total Pagefile: 7674.74 MB
Available Pagefile: 4814.2 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB
==================== Drives ================================
Drive c: (Acer) (Fixed) (Total:456.95 GB) (Free:238.13 GB) NTFS
Drive d: (DATA) (Fixed) (Total:457.46 GB) (Free:333.26 GB) NTFS
Drive f: (CROSSFIRE) (Removable) (Total:1.86 GB) (Free:1.1 GB) FAT
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 932 GB) (Disk ID: B3AB08D8)
Partition 1: (Not Active) - (Size=17 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=457 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=457 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (Size: 2 GB) (Disk ID: 00000000)
Partition 1: (Not Active) - (Size=2 GB) - (Type=06)
==================== End Of Log ============================ GMER: Code:
GMER 2.1.19357 - hxxp://www.gmer.net
Rootkit scan 2014-02-16 20:06:01
Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\0000009d Hitachi_ rev.MS2O 931,51GB
Running: id19sw94.exe; Driver: C:\Users\FRANKJ~1\AppData\Local\Temp\ugldrpob.sys
---- Kernel code sections - GMER 2.1 ----
INITKDBG C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 528 fffff800037a3000 45 bytes [00, 00, 06, 02, 49, 6F, 20, ...]
INITKDBG C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 575 fffff800037a302f 16 bytes [00, 40, 52, F2, 09, 80, FA, ...]
---- Threads - GMER 2.1 ----
Thread C:\Windows\System32\svchost.exe [672:1416] 000007fef9f959a0
Thread C:\Windows\System32\svchost.exe [672:3316] 000007fefc641a70
Thread C:\Windows\System32\svchost.exe [672:4688] 000007fef51188f8
Thread C:\Windows\System32\svchost.exe [672:5060] 000007fef4e744e0
Thread C:\Windows\System32\svchost.exe [672:1832] 000007fee76b20c0
Thread C:\Windows\System32\svchost.exe [672:2564] 000007fee76b26a8
Thread C:\Windows\System32\svchost.exe [672:4100] 000007fee76814a0
Thread C:\Windows\System32\svchost.exe [672:4812] 000007fee76b29dc
Thread C:\Windows\System32\svchost.exe [672:4980] 000007fee76b29dc
Thread C:\Windows\System32\svchost.exe [672:5284] 000007fee847a2b0
Thread C:\Windows\System32\svchost.exe [672:3780] 000007fef27f42c8
Thread C:\Windows\System32\svchost.exe [672:5040] 000007fef81c5fd0
Thread C:\Windows\System32\svchost.exe [672:2464] 000007fef81c63ec
Thread C:\Windows\system32\svchost.exe [1172:1368] 000007fefaa38274
Thread C:\Windows\system32\svchost.exe [1172:1760] 000007fefaa38274
Thread C:\Windows\System32\spoolsv.exe [1548:1900] 000007fef8d910c8
Thread C:\Windows\System32\spoolsv.exe [1548:1908] 000007fef83d6144
Thread C:\Windows\System32\spoolsv.exe [1548:1912] 000007fef81c5fd0
Thread C:\Windows\System32\spoolsv.exe [1548:1924] 000007fef81b3438
Thread C:\Windows\System32\spoolsv.exe [1548:1936] 000007fef81c63ec
Thread C:\Windows\System32\spoolsv.exe [1548:1952] 000007fef90f5e5c
Thread C:\Windows\System32\spoolsv.exe [1548:1956] 000007fef95a5074
Thread C:\Windows\System32\spoolsv.exe [1548:2016] 000007fef8d68760
Thread C:\Windows\system32\svchost.exe [2972:3056] 000007fef81c5fd0
Thread C:\Windows\system32\svchost.exe [2972:3060] 000007fef81b3438
Thread C:\Windows\system32\svchost.exe [2972:3064] 000007fef81c63ec
Thread C:\Windows\system32\svchost.exe [2972:3088] 00000001800045e0
Thread C:\Program Files (x86)\Wyse\PocketCloud Windows Companion\PocketCloudService.exe [2888:4172] 000007feee0c1ebc
Thread C:\Windows\SysWOW64\ntdll.dll [3596:3600] 0000000000976971
Thread C:\Windows\SysWOW64\ntdll.dll [3596:4204] 000000006b22b89c
Thread C:\Windows\SysWOW64\ntdll.dll [3596:4208] 000000006b22baf3
Thread C:\Windows\SysWOW64\ntdll.dll [3596:4212] 000000006b22b3c2
Thread C:\Windows\SysWOW64\ntdll.dll [3596:4216] 000000006bd0786a
---- Registry - GMER 2.1 ----
Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanServer\Linkage@Bind ????????v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32777|Desc=@FirewallAPI.dll,-32780|EmbedCtxt=@FirewallAPI.dll,-32752|??????v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Public|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32781|Desc=@FirewallAPI.dll,-32784|EmbedCtxt=@FirewallAPI.dll,-32752|??????????????????????????????????!????????????????????????e?????? ???????o?????up-??????????????????????????????????????v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\services.exe|Name=@FirewallAPI.dll,-29503|Desc=@FirewallAPI.dll,-29506|EmbedCtxt=@FirewallAPI.dll,-29502|??????v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29515|Desc=@FirewallAPI.dll,-29518|EmbedCtxt=@FirewallAPI.dll,-29502|????????????????????????????)?????
Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanServer\Linkage@Route ????ta??????????????v2.10|Action=Allow|Active=TRUE|Dir=In|App=C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe|Name=Windows Live Messenger|EmbedCtxt=@C:\Program Files (x86)\Windows Live\Messenger\msgsres.dll,-4200|Edge=TRUE|???v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=Windows Live Messenger (UPnP-In)|EmbedCtxt=@C:\Program Files (x86)\Windows Live\Messenger\msgsres.dll,-4200|????? (?????????????????????????? b???????????????????????????????????N??????i????Dx?A???????????8??93??hxxp://amd.com???D??????6-21-2006????????????7??????D-??v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=svchost.exe|Svc=ssdpsrv|Name=Windows Live Messenger (SSDP-In)|EmbedCtxt=@C:\Program Files (x86)\Windows Live\Messenger\msgsres.dll,-4200|?<?<??v2.10|Action=Allow|Active=TRUE|Dir=In|App=C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe|Name=Windows Live Sync|?>?>??Saves installation files used for updat
Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanServer\Linkage@Export ????A9???????????????????????????????????????????????@??{3A0FB22C-CDB8-47CE-9B0D-5E460063DBCA}??52????*??????2????d"{1??TCPIP6TUNNEL?Tcpip6??B????`??????}???{??\Device\{3A0FB22C-CDB8-47CE-9B0D-5E460063DBCA}??24??? ??????????????????????????????<??????ist???????????t???e???????#*?????? ????????????????????????????????????????????s\De??Microsoft-6zu4-Adapter #10?31-???????????5??????????? ???????????????????p?0?????????????????????????????-??63??*6to4mp?62??? ?????????????????????0????????????????????? ???????????????????y?0?????????????????????????????????????5??53???????????9??}???? ?????????????????????0????????????&???????????????????????? ?????????????????????0????????????????????????????? ???????????????????{?0????????~????????????????????????????1??}?????~??????B??Tc??nettun.inf:Microsoft.NTamd64:6to4mp.ndi:6.1.7600.16385:*6to4mp?{47???????????-???e??tunnel?CA4??? .??????v?????etB??Microsoft-6zu4-Adapter?576??????????????????????????????????????????96??? ?????????????????????0???????????????????????????
Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Linkage@Bind ??????????`??????u??????????????????????????Microsoft????????`???:??sT????N????????????D????tunnel??????AMD-Prozessor???????????usbprint?????????????????????????h???n??s%???????????????????????????????????????????????????????????????????????m??????????????????????? ????????????????????????????$???????????????s8&0??? ??????????????????????????????????????????????????????? ?????????????????????0??L????????? ?????????????????????????yste??? ?????????????????????0????????????&???????????????????????? ?????????????????????0????????????????????? ?????????????????????0????????????&???????????????????????*6to4mp?"T??? ?????????????????????0????????????????????? ???????????????????p?0????????????????????cpu.inf:AMD.NTAMD64:AmdPPM_Inst:6.1.7600.16385:acpi\authenticamd_-_amd64?C???????????z??????Microsoft???Microsoft???????????? ?????????????????????0????????????????????????????t???? ???????????????????r?0?????????????????????????????d???????????s???{??DD??????????????????? ?????????????????????0???????????????????????
Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Linkage@Route ?????p??????t????? ?????????s????????????"??pi???????????7??87???????????????k?????????????n????? p?????????????s????????????????????????i??_{??????????????????????????r?????:??????%?gic??UPnP????? ??????????????????????????????????????????USB\VID_0D5C&PID_A002&REV_0100?USB\VID_0D5C&PID_A002????USB\Class_FE&SubClass_01&Prot_00?USB\Class_FE&SubClass_01?USB\Class_FE??c|???>??????????????????\\?\Root#*6TO4MP#0005#{cac88484-7515-4c03-82e6-71a87abac361}?C??? ???????1?????????????,??N?????$???<???????????????????????????????61??? ?????????????????????,????????????'????????????????????}??????????Root\*6TO4MP\0005????????????8??????63??\\?\Root#*6TO4MP#0005#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{0CFE2987-24F1-4E7B-B3AF-90DB4D786480}?}"??? ???????:?????????????:????????????&???????????????????? ??? ???????6?????D5E???????????????1?????eTc???????????~????????????N??????d??????????{15263AC0-517F-4C69-823C-B6A3B19AF03C}???y???????????????e???????????&???????s??? ???????????????????????????????????????????????|???B?????
Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Linkage@Export ????????? ???????n????????????????"????????????????????1????@usbprint.inf,%usbprint_unknownprinter.devicedesc%;Kein Drucker angeschlossen????????h???T??sp???????????C??t=??????????????????{36fc9e60-c465-11cf-8056-444553540000}?A1F??{36fc9e60-c465-11cf-8056-444553540000}\0016?CA???n?n?n?n?????n??????@usbprint.inf,%msft%;Microsoft?er_??????????????????????????????????r_???????????????S???????????u??????? D???????????????????????????????????????????????N???????????D?????6.1.7601.18199??v???????????????????e???????????????? ????????????????????????????????????????????s??????????n??????????????????? ???????????????????????????????????????f??? ?????????????????????0??L????????? ???????????????????????????????? ?????????????????????0????????????&????????????????????r??? ?????????????????????0????????????????????????????? ?????????????????????0????????????????????UnknownPrinter?-28???????????i??????????????????????????????? ?????????????????????0????????????&???????????????????????? ?????????????????????0???????????
Reg HKLM\SYSTEM\ControlSet002\services\LanmanServer\Linkage@Bind ???i?i??{00000000-0000-0000-FFFF-FFFFFFFFFFFF}??????{4d36e97d-e325-11ce-bfc1-08002be10318}?vr.???j?j?i??{4d36e97d-e325-11ce-bfc1-08002be10318}\0004??????????i??????s???X6va011?t????????????????????????????i???????(???????????D???E??????????????????vwifimp?4????????e??{4d36e97d-e325-11ce-bfc1-08002be10318}?????????????????4?????????? ???????????????????F??i?????g????@compositebus.inf,%msft%;Microsoft??????LegacyDriver????????????????????????amdsata?os???????h???n???e??????????????????????????? ???????i?????h?????g????(???????????????????s?????mssmbios?????????i???????e??usbccgp?23???i?i????? ???????i?????i???????3????????????????????????????????ll??? ???????i???????????i?3?????????????????????y?????????????????????????i????? ???????i?????????????????????????????????????i????????? ???????i?????i???????0??L????????? ??????????????i???i???i????????? ???????i?????i???????0????????????&???????????????????????? ???????i?????i???????0????????????????????? ???????i???????????h?0?????????????????????????i???4?????????
Reg HKLM\SYSTEM\ControlSet002\services\LanmanServer\Linkage@Route ???ieF???????k?????i?i???????????????????????????s???|???????????s??%SystemRoot%\system32\srvsvc.dll???????i?i????t??|???d??s-??\Device\{314728F5-549C-4DFA-A1A0-9E07E86DC70C}?\Device\{01F3186D-E3FB-4C2C-ABB0-0F160CDC540D}?\Device\{A0884570-293A-4E1C-A2A6-6582078FA648}?\Device\{16CE3B2D-616B-4576-9438-2343344BE433}?\Device\{A90D3907-FA84-4231-A1FD-615DB857BF54}??_{??network?????system32\DRIVERS\monitor.sys??????T??i???????????????????i??????p?????<??i????????h???????P??o?????????e?????????????:???????u?u?u?v??????N??i????????h??????????i???i????????????8??i????????h?????????????????t????t?t?t??@%SystemRoot%\system32\drivers\mountmgr.sys,-101??????????????????????????P??s?????????n????Network???????b??i?????????n??????<??s????????h?????????????????????????????lirsgt?t?????????i???:???:???????????0??0????????????l???????????????????????u???????????.????\??i?????????n????????????????t?????&??|?????????e????@%systemroot%\system32\drivers\luafv.sys,-101?????8??i????????h??????????i??????????????e??????????????????
Reg HKLM\SYSTEM\ControlSet002\services\LanmanServer\Linkage@Export ???r?|????l???????????????X??s?????????e?????????????????????????????????????????r??????s????????????B???????????*?gAT????P??r?????????e???????r?????r???r??????????????? ???????n?????r?????r????????$????????x????@%systemroot%\system32\fxsresm.dll,-118???????????????????????????B??r????????h?????%systemroot%\system32\fxssvc.exe????????????????t?????????????????????P??r?????????n????@%systemroot%\system32\fxsresm.dll,-122??????????r???+????????@??r???????????e??TapiSrv?RpcSs?PlugPlay?Spooler??????? 8??r??????????????NT AUTHORITY\NetworkService???????,??r???+???????+???????????????????????????r??????????????????SeAssignPrimaryTokenPrivilege?SeAuditPrivilege?SeChangeNotifyPrivilege?SeCreateGlobalPrivilege?SeImpersonatePrivilege?SeIncreaseQuotaPrivilege???????r?r?r?r?r?r?r?r?r?r?r??????????????????????????? ???????r???????????r?????????????????????????????????p?????????????(??????P??????????????????? ???????????????????????????? ???????n???????????i??????????N??????c????7777ce461333566e77fc971de484cabaed493164.Ho
Reg HKLM\SYSTEM\ControlSet002\services\LanmanWorkstation\Linkage@Bind ???i?i???????????????????????????s???|???????????s??%SystemRoot%\system32\srvsvc.dll???????i?i????t??|???d??s-??\Device\{314728F5-549C-4DFA-A1A0-9E07E86DC70C}?\Device\{01F3186D-E3FB-4C2C-ABB0-0F160CDC540D}?\Device\{A0884570-293A-4E1C-A2A6-6582078FA648}?\Device\{16CE3B2D-616B-4576-9438-2343344BE433}?\Device\{A90D3907-FA84-4231-A1FD-615DB857BF54}??_{??network?????system32\DRIVERS\monitor.sys??????T??i???????????????????i??????p?????<??i????????h???????P??o?????????e?????????????:???????u?u?u?v??????N??i????????h??????????i???i????????????8??i????????h?????????????????t????t?t?t??@%SystemRoot%\system32\drivers\mountmgr.sys,-101??????????????????????????P??s?????????n????Network???????b??i?????????n??????<??s????????h?????????????????????????????lirsgt?t?????????i???:???:???????????0??0????????????l???????????????????????u???????????.????\??i?????????n????????????????t?????&??|?????????e????@%systemroot%\system32\drivers\luafv.sys,-101?????8??i????????h??????????i??????????????e?????????????????????\??s?????????
Reg HKLM\SYSTEM\ControlSet002\services\LanmanWorkstation\Linkage@Route ???i?i????t??|???d??s-??\Device\{314728F5-549C-4DFA-A1A0-9E07E86DC70C}?\Device\{01F3186D-E3FB-4C2C-ABB0-0F160CDC540D}?\Device\{A0884570-293A-4E1C-A2A6-6582078FA648}?\Device\{16CE3B2D-616B-4576-9438-2343344BE433}?\Device\{A90D3907-FA84-4231-A1FD-615DB857BF54}??_{??network?????system32\DRIVERS\monitor.sys??????T??i???????????????????i??????p?????<??i????????h???????P??o?????????e?????????????:???????u?u?u?v??????N??i????????h??????????i???i????????????8??i????????h?????????????????t????t?t?t??@%SystemRoot%\system32\drivers\mountmgr.sys,-101??????????????????????????P??s?????????n????Network???????b??i?????????n??????<??s????????h?????????????????????????????lirsgt?t?????????i???:???:???????????0??0????????????l???????????????????????u???????????.????\??i?????????n????????????????t?????&??|?????????e????@%systemroot%\system32\drivers\luafv.sys,-101?????8??i????????h??????????i??????????????e?????????????????????\??s?????????n???????????????g??????P??o?????????e??????P??u?????????e????Network??????????|?????????
Reg HKLM\SYSTEM\ControlSet002\services\LanmanWorkstation\Linkage@Export ???j?????????????????????j?j????????0C??HIDClass????Volume???????????????E??????5C???????k??Microsoft???????????mfehidk??????????d???j??volsnap??????j???????j???0???????????????????h???????e???k?k? ???????i???????e???z?{?z???????????????????W?j?k?k?????k???????????j???????????????j???0??s0?????? ??????????s?????????????I?????s#5???????j??????s???HidUsb?????????????????????s?????k?k? ??STORAGE\Volume??????WPD??????????????????????????????????j???????????????????s??t????k?k?????????Z???0??s}???????j????????????N????????????D???????????????????????????}?????????????????j???3??????compositebus.inf:Microsoft.NTamd64:CompositeBus_Device:6.1.7601.17514:root\compositebus?ot???????????????????????j???????3???????????t??l_???????j???5??28???????!???j?j?j???????????3??ad???????j??????????6.1.7601.17514???????j?j?j????????????????????2??j??????????Composite Bus Enumerator?o???j?j?j???????????3????????"??j??????????compositebus.inf?????j?j?j????(??j??????????CompositeBus_Device?eB??.NT??????k?k? ???j???????????????????j?
---- Disk sectors - GMER 2.1 ----
Disk \Device\Harddisk0\DR0 unknown MBR code
---- EOF - GMER 2.1 ----
So, ich hoffe ich habe an alles gedacht und bin gespannt ob das ganze lösbar ist oder in einer Neuinstallation des Systems mündet!
Für die entstandene Mühe jetzt schon mal vielen Dank! |