Klimmbimm | 15.11.2014 20:32 | Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-11-2014
Ran by **** at 2014-11-15 20:19:55
Running from C:\Users\****\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Avira Desktop (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.189 - Adobe Systems Incorporated)
Anzeige am Bildschirm (HKLM\...\OnScreenDisplay) (Version: 6.73.00 - )
AT&T Service Activation (HKLM-x32\...\{D81486A1-2371-4059-AC70-1AB894AC96E6}) (Version: 1.8.7.0 - AT&T)
Avira (HKLM-x32\...\{9480d4af-12b9-4e56-8034-4031ef6ab39d}) (Version: 1.1.25.25607 - Avira Operations GmbH & Co. KG)
Avira (x32 Version: 1.1.25.25607 - Avira Operations GmbH & Co. KG) Hidden
Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.7.342 - Avira)
Conexant 20561 SmartAudio HD (HKLM\...\CNXT_AUDIO_HDA) (Version: 4.92.12.0 - Conexant)
CrystalDiskMark 3.0.3b (HKLM\...\CrystalDiskMark_is1) (Version: 3.0.3b - Crystal Dew World)
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - )
Intel(R) Graphics Media Accelerator Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2555 - Intel Corporation)
Intel(R) Management Engine Interface (HKLM\...\HECI) (Version: - Intel Corporation)
Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 16.1 - Intel)
Intel® Active-Management-Technologie (HKLM\...\MESOL) (Version: - Intel Corporation)
Java 7 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.710 - Oracle)
KMSpico (HKLM\...\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1) (Version: - )
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.04.05 - )
Lenovo System Interface Driver (HKLM\...\LENOVO.SMIIF) (Version: 1.05 - )
Malwarebytes Anti-Malware Version 2.0.3.1025 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.3.1025 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Mobile Broadband Connect (HKLM-x32\...\{91B7B957-0F45-4BDC-85BA-08F80D49B9BC}) (Version: 3.5.0011 - Lenovo)
Mozilla Firefox 33.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 33.0.1 (x86 de)) (Version: 33.0.1 - Mozilla)
Mozilla Thunderbird 31.2.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 31.2.0 (x86 de)) (Version: 31.2.0 - Mozilla)
MyDefrag v4.3.1 (HKLM\...\MyDefrag v4.3.1_is1) (Version: 4.0.0.0 - J.C. Kessels)
Outils de vérification linguistique 2013 de Microsoft Office*- Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
RICOH R5U8xx Media Driver ver.3.64.02 (HKLM-x32\...\{59F6A514-9813-47A3-948C-8A155460CC2A}) (Version: 3.64.02 - RICOH)
Spotify (HKU\S-1-5-21-1644064914-2564784388-2591449178-1000\...\Spotify) (Version: 0.9.14.13.gba5645ad - Spotify AB)
Spotify (HKU\S-1-5-21-1644064914-2564784388-2591449178-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Spotify) (Version: 0.9.14.13.gba5645ad - Spotify AB)
ThinkPad FullScreen Magnifier (HKLM\...\ThinkPad FullScreen Magnifier) (Version: 2.41 - )
ThinkPad UltraNav Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.19.14 - )
ThinkPad Wireless LAN Adapter Software (HKLM-x32\...\{9D3D2C60-A55F-4fed-B2B9-17394396DF01}) (Version: 1.00.0029.8 - REALTEK Semiconductor Corp.)
Verizon Wireless Mobile Broadband Self Activation (HKLM-x32\...\{C64A877E-DF8D-4017-AA82-000A77C6D809}) (Version: 3.1.4 - Smith Micro Software, Inc.)
WinRAR 5.10 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.10.0 - win.rar GmbH)
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
==================== Restore Points =========================
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:34 - 2014-11-09 18:02 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {30B5915C-F996-4632-816E-93B41C53317D} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {45B08741-CEA8-4ED0-B13E-65BFED4B671C} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [2014-10-10] (@ByELDI)
Task: {5CBD8F81-29BA-48EA-8309-016EC9AB8CB1} - System32\Tasks\MyDefrag v4.3.1 Daily => C:\Program Files\MyDefrag v4.3.1\Scripts\AutomaticDaily.MyD [2010-05-21] ()
Task: {6649F55C-9ED7-4D93-8F4B-141CFDCD07B4} - System32\Tasks\MyDefrag v4.3.1 Monthly => C:\Program Files\MyDefrag v4.3.1\Scripts\AutomaticMonthly.MyD [2010-05-21] ()
Task: {854C6E16-49D7-47BE-B408-7A188CFE3847} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {A99BD9A5-6AC5-4D60-B98B-A5834471DE85} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
==================== Loaded Modules (whitelisted) =============
2014-11-06 14:23 - 2014-11-06 14:23 - 00613944 _____ () C:\Users\****\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
2014-11-06 14:23 - 2014-11-06 14:23 - 36966968 _____ () C:\Users\****\AppData\Roaming\Spotify\Data\libcef.dll
2014-11-06 14:23 - 2014-11-06 14:23 - 00867896 _____ () C:\Users\****\AppData\Roaming\Spotify\Data\ffmpegsumo.dll
2014-11-06 13:27 - 2014-10-24 08:00 - 03649648 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2014-11-06 14:23 - 2014-11-06 14:23 - 00886840 _____ () C:\Users\****\AppData\Roaming\Spotify\Data\libglesv2.dll
2014-11-06 14:23 - 2014-11-06 14:23 - 00108600 _____ () C:\Users\****\AppData\Roaming\Spotify\Data\libegl.dll
2014-11-06 13:36 - 2014-10-12 22:00 - 03339376 _____ () C:\Program Files (x86)\Mozilla Thunderbird\mozjs.dll
2014-11-06 13:36 - 2014-10-12 22:00 - 00158832 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAP32V60.dll
2014-11-06 13:36 - 2014-10-12 22:00 - 00023152 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAPPR32V60.dll
2014-11-06 15:47 - 2014-11-06 15:47 - 16832176 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_189.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
========================= Accounts: ==========================
Administrator (S-1-5-21-1644064914-2564784388-2591449178-500 - Administrator - Disabled)
Gast (S-1-5-21-1644064914-2564784388-2591449178-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1644064914-2564784388-2591449178-1002 - Limited - Enabled)
**** (S-1-5-21-1644064914-2564784388-2591449178-1000 - Administrator - Enabled) => C:\Users\****
==================== Faulty Device Manager Devices =============
Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft-Teredo-Tunneling-Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Name: Ericsson F3507g Mobile Broadband Minicard Composite Device
Description: Ericsson F3507g Mobile Broadband Minicard Composite Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (11/14/2014 00:49:29 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: Fehler beim Erwerb der Endbenutzerlizenz. hr=0xC004C008
SKU-ID=9ab82e0c-ffc9-4107-baa1-c65a8bd3ccc3
Error: (11/14/2014 00:49:29 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: Lizenzerwerb-Fehlerdetails.
hr=0xC004C008
Error: (11/14/2014 00:47:56 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: Fehler beim Erwerb der Endbenutzerlizenz. hr=0xC004C008
SKU-ID=2e7d060d-4714-40f2-9896-1e4f15b612ad
Error: (11/14/2014 00:47:56 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: Lizenzerwerb-Fehlerdetails.
hr=0xC004C008
Error: (11/14/2014 08:47:00 AM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: Fehler beim Erwerb der Endbenutzerlizenz. hr=0xC004C008
SKU-ID=2e7d060d-4714-40f2-9896-1e4f15b612ad
Error: (11/14/2014 08:47:00 AM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: Lizenzerwerb-Fehlerdetails.
hr=0xC004C008
Error: (11/13/2014 00:21:09 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: Fehler beim Erwerb der Endbenutzerlizenz. hr=0xC004C008
SKU-ID=2e7d060d-4714-40f2-9896-1e4f15b612ad
Error: (11/13/2014 00:21:09 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: Lizenzerwerb-Fehlerdetails.
hr=0xC004C008
Error: (11/13/2014 07:56:00 AM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: Fehler beim Erwerb der Endbenutzerlizenz. hr=0xC004C008
SKU-ID=2e7d060d-4714-40f2-9896-1e4f15b612ad
Error: (11/13/2014 07:56:00 AM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: Lizenzerwerb-Fehlerdetails.
hr=0xC004C008
System errors:
=============
Error: (11/15/2014 08:14:00 PM) (Source: TPM) (EventID: 15) (User: )
Description: Beim Gerätetreiber für das Trusted Platform Module (TPM) ist ein nicht behebbarer Fehler in der TPM-Hardware aufgetreten, der die Verwendung der TPM-Dienste (z. B. Datenverschlüsselung) verhindert. Wenden Sie sich an den Computerhersteller, um weitere Hilfe zu erhalten.
Error: (11/15/2014 07:33:59 PM) (Source: TPM) (EventID: 15) (User: )
Description: Beim Gerätetreiber für das Trusted Platform Module (TPM) ist ein nicht behebbarer Fehler in der TPM-Hardware aufgetreten, der die Verwendung der TPM-Dienste (z. B. Datenverschlüsselung) verhindert. Wenden Sie sich an den Computerhersteller, um weitere Hilfe zu erhalten.
Error: (11/15/2014 06:53:58 PM) (Source: TPM) (EventID: 15) (User: )
Description: Beim Gerätetreiber für das Trusted Platform Module (TPM) ist ein nicht behebbarer Fehler in der TPM-Hardware aufgetreten, der die Verwendung der TPM-Dienste (z. B. Datenverschlüsselung) verhindert. Wenden Sie sich an den Computerhersteller, um weitere Hilfe zu erhalten.
Error: (11/15/2014 06:53:58 PM) (Source: TPM) (EventID: 2) (User: )
Description: Fehler des TPM-Selbsttestbefehls.
Error: (11/15/2014 05:12:08 PM) (Source: TPM) (EventID: 12) (User: )
Description: Beim Gerätetreiber für das Trusted Platform Module (TPM) ist ein Fehler in der TPM-Hardware aufgetreten, der dazu führen kann, dass einige Anwendungen, die TPM-Dienste verwenden, nicht ordnungsgemäß ausgeführt werden. Starten Sie den Computer neu, um die TPM-Hardware zurückzusetzen. Wenn Sie weitere Unterstützung benötigen, wenden Sie sich an den Computerhersteller, um weitere Informationen zu erhalten.
Error: (11/15/2014 05:07:15 PM) (Source: bowser) (EventID: 8003) (User: )
Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "CINDEL-PC",
der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{CFC2FBE1-8B33-4663-A064-69F3D159E321}-Transport zu sein scheint.
Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen.
Error: (11/15/2014 05:06:41 PM) (Source: TPM) (EventID: 15) (User: )
Description: Beim Gerätetreiber für das Trusted Platform Module (TPM) ist ein nicht behebbarer Fehler in der TPM-Hardware aufgetreten, der die Verwendung der TPM-Dienste (z. B. Datenverschlüsselung) verhindert. Wenden Sie sich an den Computerhersteller, um weitere Hilfe zu erhalten.
Error: (11/15/2014 05:06:41 PM) (Source: TPM) (EventID: 2) (User: )
Description: Fehler des TPM-Selbsttestbefehls.
Error: (11/15/2014 03:02:21 PM) (Source: TPM) (EventID: 12) (User: )
Description: Beim Gerätetreiber für das Trusted Platform Module (TPM) ist ein Fehler in der TPM-Hardware aufgetreten, der dazu führen kann, dass einige Anwendungen, die TPM-Dienste verwenden, nicht ordnungsgemäß ausgeführt werden. Starten Sie den Computer neu, um die TPM-Hardware zurückzusetzen. Wenn Sie weitere Unterstützung benötigen, wenden Sie sich an den Computerhersteller, um weitere Informationen zu erhalten.
Error: (11/15/2014 02:28:48 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden.
Microsoft Office Sessions:
=========================
Error: (11/14/2014 00:49:29 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: hr=0xC004C0089ab82e0c-ffc9-4107-baa1-c65a8bd3ccc3
Error: (11/14/2014 00:49:29 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: hr=0xC004C00800010001(0x00000000, 12:49:28:523 - hxxp://go.microsoft.com/fwlink/?LinkID=88341)
00020001(0x00000000, 12:49:28:524)
00030001(0x00000000, 12:49:28:525 - hxxp://go.microsoft.com)
00030002(0x00000000, 12:49:28:525 - 1)
00020005(0x00000000, 12:49:28:525 - 0)
0002000C(0x00000000, 12:49:28:713 - 302)
0002000E(0x00000000, 12:49:28:713 - https://activation.sls.microsoft.com/sllicensing/SLLicense.asmx)
00020001(0x00000000, 12:49:28:713)
00030001(0x00000000, 12:49:28:713 - https://activation.sls.microsoft.com)
00030002(0x00000000, 12:49:28:713 - 1)
00020005(0x00000000, 12:49:28:713 - 0)
0002000C(0x00000000, 12:49:29:406 - 500)
00010002(0x8004FC01, 12:49:29:407 - <?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:soap="hxxp://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="hxxp://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="hxxp://www.w3.org/2001/XMLSchema"><soap:Body><soap:Fault><faultcode>soap:Server</faultcode><faultstring>SoapException</faultstring><detail><HRESULT>0xC004C008</HRESULT><Messages><Message>113 (Activation) - [PA Maximum unlock exceeded. ---> Maximum unlock exceeded]</Message></Messages></detail></soap:Fault></soap:Body></soap:Envelope>)
00010003(0x8004FC01, 12:49:29:409)
Error: (11/14/2014 00:47:56 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: hr=0xC004C0082e7d060d-4714-40f2-9896-1e4f15b612ad
Error: (11/14/2014 00:47:56 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: hr=0xC004C00800010001(0x00000000, 12:47:55:355 - hxxp://go.microsoft.com/fwlink/?LinkID=88341)
00020001(0x00000000, 12:47:55:357)
00030001(0x00000000, 12:47:55:358 - hxxp://go.microsoft.com)
00030002(0x00000000, 12:47:55:358 - 1)
00020005(0x00000000, 12:47:55:358 - 0)
0002000C(0x00000000, 12:47:55:545 - 302)
0002000E(0x00000000, 12:47:55:545 - https://activation.sls.microsoft.com/sllicensing/SLLicense.asmx)
00020001(0x00000000, 12:47:55:546)
00030001(0x00000000, 12:47:55:546 - https://activation.sls.microsoft.com)
00030002(0x00000000, 12:47:55:546 - 1)
00020005(0x00000000, 12:47:55:546 - 0)
0002000C(0x00000000, 12:47:56:115 - 500)
00010002(0x8004FC01, 12:47:56:125 - <?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:soap="hxxp://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="hxxp://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="hxxp://www.w3.org/2001/XMLSchema"><soap:Body><soap:Fault><faultcode>soap:Server</faultcode><faultstring>SoapException</faultstring><detail><HRESULT>0xC004C008</HRESULT><Messages><Message>113 (Activation) - [PA Maximum unlock exceeded. ---> Maximum unlock exceeded]</Message></Messages></detail></soap:Fault></soap:Body></soap:Envelope>)
00010003(0x8004FC01, 12:47:56:126)
Error: (11/14/2014 08:47:00 AM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: hr=0xC004C0082e7d060d-4714-40f2-9896-1e4f15b612ad
Error: (11/14/2014 08:47:00 AM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: hr=0xC004C00800010001(0x00000000, 08:46:59:678 - hxxp://go.microsoft.com/fwlink/?LinkID=88341)
00020001(0x00000000, 08:46:59:679)
00030001(0x00000000, 08:46:59:679 - hxxp://go.microsoft.com)
00030002(0x00000000, 08:46:59:679 - 1)
00020005(0x00000000, 08:46:59:679 - 0)
0002000C(0x00000000, 08:46:59:866 - 302)
0002000E(0x00000000, 08:46:59:866 - https://activation.sls.microsoft.com/sllicensing/SLLicense.asmx)
00020001(0x00000000, 08:46:59:866)
00030001(0x00000000, 08:46:59:866 - https://activation.sls.microsoft.com)
00030002(0x00000000, 08:46:59:866 - 1)
00020005(0x00000000, 08:46:59:866 - 0)
0002000C(0x00000000, 08:47:00:450 - 500)
00010002(0x8004FC01, 08:47:00:457 - <?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:soap="hxxp://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="hxxp://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="hxxp://www.w3.org/2001/XMLSchema"><soap:Body><soap:Fault><faultcode>soap:Server</faultcode><faultstring>SoapException</faultstring><detail><HRESULT>0xC004C008</HRESULT><Messages><Message>113 (Activation) - [PA Maximum unlock exceeded. ---> Maximum unlock exceeded]</Message></Messages></detail></soap:Fault></soap:Body></soap:Envelope>)
00010003(0x8004FC01, 08:47:00:457)
Error: (11/13/2014 00:21:09 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: hr=0xC004C0082e7d060d-4714-40f2-9896-1e4f15b612ad
Error: (11/13/2014 00:21:09 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: hr=0xC004C00800010001(0x00000000, 12:21:08:895 - hxxp://go.microsoft.com/fwlink/?LinkID=88341)
00020001(0x00000000, 12:21:08:896)
00030001(0x00000000, 12:21:08:896 - hxxp://go.microsoft.com)
00030002(0x00000000, 12:21:08:896 - 1)
00020005(0x00000000, 12:21:08:896 - 0)
0002000C(0x00000000, 12:21:09:085 - 302)
0002000E(0x00000000, 12:21:09:085 - https://activation.sls.microsoft.com/sllicensing/SLLicense.asmx)
00020001(0x00000000, 12:21:09:085)
00030001(0x00000000, 12:21:09:085 - https://activation.sls.microsoft.com)
00030002(0x00000000, 12:21:09:085 - 1)
00020005(0x00000000, 12:21:09:085 - 0)
0002000C(0x00000000, 12:21:09:632 - 500)
00010002(0x8004FC01, 12:21:09:632 - <?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:soap="hxxp://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="hxxp://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="hxxp://www.w3.org/2001/XMLSchema"><soap:Body><soap:Fault><faultcode>soap:Server</faultcode><faultstring>SoapException</faultstring><detail><HRESULT>0xC004C008</HRESULT><Messages><Message>113 (Activation) - [PA Maximum unlock exceeded. ---> Maximum unlock exceeded]</Message></Messages></detail></soap:Fault></soap:Body></soap:Envelope>)
00010003(0x8004FC01, 12:21:09:632)
Error: (11/13/2014 07:56:00 AM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: hr=0xC004C0082e7d060d-4714-40f2-9896-1e4f15b612ad
Error: (11/13/2014 07:56:00 AM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: hr=0xC004C00800010001(0x00000000, 07:56:00:218 - hxxp://go.microsoft.com/fwlink/?LinkID=88341)
00020001(0x00000000, 07:56:00:219)
00030001(0x00000000, 07:56:00:219 - hxxp://go.microsoft.com)
00030002(0x00000000, 07:56:00:219 - 1)
00020005(0x00000000, 07:56:00:219 - 0)
0002000C(0x00000000, 07:56:00:407 - 302)
0002000E(0x00000000, 07:56:00:407 - https://activation.sls.microsoft.com/sllicensing/SLLicense.asmx)
00020001(0x00000000, 07:56:00:407)
00030001(0x00000000, 07:56:00:407 - https://activation.sls.microsoft.com)
00030002(0x00000000, 07:56:00:407 - 1)
00020005(0x00000000, 07:56:00:407 - 0)
0002000C(0x00000000, 07:56:00:970 - 500)
00010002(0x8004FC01, 07:56:00:970 - <?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:soap="hxxp://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="hxxp://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="hxxp://www.w3.org/2001/XMLSchema"><soap:Body><soap:Fault><faultcode>soap:Server</faultcode><faultstring>SoapException</faultstring><detail><HRESULT>0xC004C008</HRESULT><Messages><Message>113 (Activation) - [PA Maximum unlock exceeded. ---> Maximum unlock exceeded]</Message></Messages></detail></soap:Fault></soap:Body></soap:Envelope>)
00010003(0x8004FC01, 07:56:00:970)
CodeIntegrity Errors:
===================================
Date: 2014-11-09 18:02:08.539
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2014-11-09 18:02:08.477
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
==================== Memory info ===========================
Processor: Intel(R) Core(TM)2 Duo CPU P8400 @ 2.26GHz
Percentage of memory in use: 71%
Total physical RAM: 3989.03 MB
Available physical RAM: 1122.8 MB
Total Pagefile: 7976.23 MB
Available Pagefile: 4466.26 MB
Total Virtual: 8192 MB
Available Virtual: 8191.86 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:119.14 GB) (Free:82.31 GB) NTFS
Drive f: (BACKUP 1 TB) (Fixed) (Total:931.28 GB) (Free:861.36 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 119.2 GB) (Disk ID: 6C682F8D)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=119.1 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: 6D277ECA)
Partition 1: (Active) - (Size=931.5 GB) - (Type=0C)
==================== End Of Log ============================ |