Ich zwar nicht grad ein PC-checker, aber ich habs hingekriegt, war gar nicht so schwer :-)
Hier die FRST.Datei:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 14-11-2013
Ran by Melanie (administrator) on MELANIE-PC on 15-11-2013 20:00:07
Running from C:\Users\Melanie\Downloads
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: German Standard
Internet Explorer Version 7
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\system32\SLsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(APN LLC.) C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(APN) C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
(Microsoft Corporation) C:\Windows\system32\conime.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
(Adobe Systems, Inc.) C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Windows Defender] - C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-19] (Microsoft Corporation)
HKLM\...\Run: [NeroFilterCheck] - C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-09] (Nero AG)
HKLM\...\Run: [TkBellExe] - C:\Program Files\Common Files\Real\Update_OB\realsched.exe [185896 2007-12-31] (RealNetworks, Inc.)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [681032 2013-10-01] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [ApnTBMon] - C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1673680 2013-10-23] (APN)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Runonce: [Del1135187] - cmd.exe /Q /D /c del "C:\Users\Melanie\AppData\Local\Temp\0.del"
HKLM\...\Runonce: [Del7768968] - cmd.exe /Q /D /c del "C:\Users\Melanie\AppData\Local\Temp\0.del"
HKCU\...\Run: [ehTray.exe] - C:\Windows\ehome\ehtray.exe [125952 2008-01-19] (Microsoft Corporation)
HKCU\...\Policies\system: [LogonHoursAction] 2
HKCU\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
MountPoints2: G - G:\pushinst.exe
MountPoints2: {0ecc3766-b962-11dc-a6d5-00040ece97f0} - F:\Setup.exe
MountPoints2: {3b6b3c4d-c9d9-11db-989b-00138fe8ad2b} - H:\pushinst.exe
MountPoints2: {b9d14a44-d111-11de-9e82-00138fe8ad2b} - G:\pushinst.exe
MountPoints2: {f8ce50d5-0f2f-11de-9a9a-00138fe8ad2b} - G:\wd_windows_tools\WDSetup.exe
HKU\Default\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\Default User\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.aartemis.com/web/?type=ds&ts=1384534717&from=cor&uid=WDCXWD2500JS-00MHB0_WD-WCANK787568975689&q={searchTerms}
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.google.com/ie
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.aartemis.com/web/?type=ds&ts=1384534717&from=cor&uid=WDCXWD2500JS-00MHB0_WD-WCANK787568975689&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.aartemis.com/web/?type=ds&ts=1384534717&from=cor&uid=WDCXWD2500JS-00MHB0_WD-WCANK787568975689&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.aartemis.com/web/?type=ds&ts=1384534717&from=cor&uid=WDCXWD2500JS-00MHB0_WD-WCANK787568975689&q={searchTerms}
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://aartemis.com/?type=sc&ts=1384534717&from=cor&uid=WDCXWD2500JS-00MHB0_WD-WCANK787568975689
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.aartemis.com/web/?type=ds&ts=1384534717&from=cor&uid=WDCXWD2500JS-00MHB0_WD-WCANK787568975689&q={searchTerms}
SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.aartemis.com/web/?type=ds&ts=1384534717&from=cor&uid=WDCXWD2500JS-00MHB0_WD-WCANK787568975689&q={searchTerms}
BHO: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
Toolbar: HKCU - No Name - {855F3B16-6D32-4FE6-8A56-BBB695989046} - No File
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog9 01 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 02 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 03 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 04 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 05 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 06 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 07 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 08 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 20 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Melanie\AppData\Roaming\Mozilla\Firefox\Profiles\sx9de0m9.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin: @microsoft.com/WPF,version=3.5 - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @real.com/nppl3260;version=6.0.11.3088 - C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprjplug;version=1.0.2.3146 - C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.11.3006 - C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin: @tools.bdupdater.com/BonanzaDealsLive Update;version=3 - C:\Program Files\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll (BonanzaDeals)
FF Plugin: @tools.bdupdater.com/BonanzaDealsLive Update;version=9 - C:\Program Files\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll (BonanzaDeals)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: toolbar_AVIRA-V7 - C:\Users\Melanie\AppData\Roaming\Mozilla\Firefox\Profiles\sx9de0m9.default\Extensions\toolbar_AVIRA-V7@apn.ask.com.xpi
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
========================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [440392 2013-10-01] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [440392 2013-10-01] (Avira Operations GmbH & Co. KG)
R2 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [1164360 2013-10-01] (Avira Operations GmbH & Co. KG)
R2 APNMCP; C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2013-10-23] (APN LLC.)
S2 bonanzadealslive; C:\Program Files\BonanzaDealsLive\Update\BonanzaDealsLive.exe [148976 2013-11-15] (BonanzaDeals)
S3 bonanzadealslivem; C:\Program Files\BonanzaDealsLive\Update\BonanzaDealsLive.exe [148976 2013-11-15] (BonanzaDeals)
S3 NBService; C:\Program Files\Nero 7\Nero BackItUp\NBService.exe [779824 2007-03-14] (Nero AG)
==================== Drivers (Whitelisted) ====================
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [281504 2013-05-03] ()
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [89376 2013-10-01] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [137208 2013-10-01] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-10-01] (Avira Operations GmbH & Co. KG)
S3 FWLANUSB; C:\Windows\System32\DRIVERS\fwlanusb.sys [264704 2006-07-31] (AVM GmbH)
R3 irsir; C:\Windows\System32\DRIVERS\irsir.sys [20992 2008-01-19] (Microsoft Corporation)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [25888 2013-05-03] ()
S3 LVUSBSta; C:\Windows\System32\drivers\lvusbsta.sys [22016 2005-01-31] (Logitech Inc.)
S3 PID_0928; C:\Windows\System32\DRIVERS\LV561AV.SYS [211712 2005-01-31] (Logitech Inc.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [715248 2008-01-02] ()
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2013-08-15] (Avira GmbH)
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [x]
S3 IpInIp; system32\DRIVERS\ipinip.sys [x]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [x]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [x]
U3 agdiifow; \??\C:\Users\Melanie\AppData\Local\Temp\agdiifow.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-11-15 20:00 - 2013-11-15 20:00 - 00012091 ____C C:\Users\Melanie\Downloads\FRST.txt
2013-11-15 19:59 - 2013-11-15 19:59 - 01090529 ____C (Farbar) C:\Users\Melanie\Downloads\FRST.exe
2013-11-15 19:59 - 2013-11-15 19:59 - 00000000 ___DC C:\FRST
2013-11-15 19:50 - 2013-11-15 19:55 - 00000000 ___DC C:\Program Files\MyPC Backup
2013-11-15 19:49 - 2013-11-15 19:54 - 00000916 ____C C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job
2013-11-15 19:48 - 2013-11-15 19:53 - 00000912 ____C C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job
2013-11-15 19:47 - 2013-11-15 19:47 - 00665064 ____C C:\Users\Melanie\Downloads\ZipExtractorSetup(1).exe
2013-11-15 19:42 - 2013-11-15 19:42 - 00010794 ____C C:\Users\Melanie\Desktop\Gmer.log
2013-11-15 18:20 - 2013-11-15 18:20 - 00377856 ____C C:\Users\Melanie\Downloads\xk1ye031.exe
2013-11-15 18:05 - 2013-11-15 18:05 - 00000941 ____C C:\Users\Melanie\Desktop\Neues Textdokument.txt
2013-11-15 17:58 - 2013-11-15 19:57 - 00000000 ___DC C:\Program Files\BonanzaDeals
2013-11-15 17:58 - 2013-11-15 19:56 - 00000000 ___DC C:\Users\Melanie\AppData\Roaming\Systweak
2013-11-15 17:58 - 2013-11-15 19:49 - 00000300 ____C C:\Windows\Tasks\DigitalSite.job
2013-11-15 17:58 - 2013-11-15 19:48 - 00000000 ___DC C:\Program Files\BonanzaDealsLive
2013-11-15 17:58 - 2013-11-15 18:19 - 00000000 ___DC C:\ProgramData\eSafe
2013-11-15 17:58 - 2013-11-15 17:58 - 00000000 ___DC C:\Users\Melanie\AppData\Roaming\DigitalSite
2013-11-15 17:58 - 2013-11-15 17:58 - 00000000 ___DC C:\Users\Melanie\AppData\Local\BonanzaDealsLive
2013-11-15 17:58 - 2013-11-15 17:58 - 00000000 ___DC C:\ProgramData\BonanzaDealsLive
2013-11-15 17:58 - 2013-09-17 11:25 - 00018776 ____C (Systweak Inc., (www.systweak.com)) C:\Windows\system32\roboot.exe
2013-11-15 17:45 - 2013-11-15 17:45 - 00000000 ___DC C:\Windows\LastGood
2013-11-15 17:45 - 2011-08-11 06:46 - 00542312 ____C (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\RTL8192su.sys
2013-11-14 18:20 - 2013-11-14 18:20 - 00000000 ___DC C:\Program Files\Mozilla Firefox
2013-11-14 17:36 - 2013-10-12 13:13 - 00834048 ____C (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-11-14 17:36 - 2013-10-12 13:12 - 06119424 ____C (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-11-14 17:36 - 2013-10-12 13:12 - 03627008 ____C (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-11-14 17:36 - 2013-10-12 13:12 - 01177600 ____C (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-11-14 17:36 - 2013-10-12 13:12 - 00671232 ____C (Microsoft Corporation) C:\Windows\system32\mstime.dll
2013-11-14 17:36 - 2013-10-12 13:12 - 00498688 ____C (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-11-14 17:36 - 2013-10-12 13:12 - 00480256 ____C (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-11-14 17:36 - 2013-10-12 13:12 - 00380928 ____C (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2013-11-14 17:36 - 2013-10-12 13:12 - 00271872 ____C (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-11-14 17:36 - 2013-10-12 13:12 - 00193024 ____C (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2013-11-14 17:36 - 2013-10-12 13:12 - 00180736 ____C (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-11-14 17:36 - 2013-10-12 13:12 - 00106496 ____C (Microsoft Corporation) C:\Windows\system32\url.dll
2013-11-14 17:36 - 2013-10-12 13:12 - 00027648 ____C (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-11-14 17:36 - 2013-10-12 13:12 - 00019456 ____C (Microsoft Corporation) C:\Windows\system32\corpol.dll
2013-11-14 17:36 - 2013-10-12 11:52 - 00389632 ____C (Microsoft Corporation) C:\Windows\system32\html.iec
2013-11-14 17:36 - 2013-10-12 11:41 - 01383424 ____C (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-11-14 17:36 - 2013-10-03 13:45 - 00297984 ____C (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2013-11-14 17:35 - 2013-10-11 03:08 - 00444928 ____C (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2013-11-14 17:35 - 2013-10-11 03:07 - 00596480 ____C (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2013-11-14 17:35 - 2013-10-11 01:39 - 00218228 ____C C:\Windows\system32\WFP.TMF
2013-11-14 17:35 - 2013-10-03 13:45 - 00993792 ____C (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-11-13 19:25 - 2013-11-13 19:25 - 00022410 ____C C:\Users\Melanie\Desktop\AVSCAN-20131113-165853-5151E3F4.LOG
2013-10-23 16:05 - 2013-10-23 16:05 - 00000000 ___DC C:\ProgramData\Oracle
2013-10-23 16:05 - 2013-10-23 16:05 - 00000000 ___DC C:\Program Files\Common Files\Java
2013-10-23 16:05 - 2013-10-08 06:46 - 00264616 ____C (Oracle Corporation) C:\Windows\system32\javaws.exe
2013-10-23 16:04 - 2013-10-23 16:04 - 00004874 ____C C:\Windows\system32\jupdate-1.7.0_45-b18.log
2013-10-23 16:04 - 2013-10-08 06:50 - 00094632 ____C (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2013-10-23 16:04 - 2013-10-08 06:46 - 00175016 ____C (Oracle Corporation) C:\Windows\system32\javaw.exe
2013-10-23 16:04 - 2013-10-08 06:46 - 00174504 ____C (Oracle Corporation) C:\Windows\system32\java.exe
==================== One Month Modified Files and Folders =======
2013-11-15 20:00 - 2013-11-15 20:00 - 00012091 ____C C:\Users\Melanie\Downloads\FRST.txt
2013-11-15 19:59 - 2013-11-15 19:59 - 01090529 ____C (Farbar) C:\Users\Melanie\Downloads\FRST.exe
2013-11-15 19:59 - 2013-11-15 19:59 - 00000000 ___DC C:\FRST
2013-11-15 19:57 - 2013-11-15 17:58 - 00000000 ___DC C:\Program Files\BonanzaDeals
2013-11-15 19:56 - 2013-11-15 17:58 - 00000000 ___DC C:\Users\Melanie\AppData\Roaming\Systweak
2013-11-15 19:55 - 2013-11-15 19:50 - 00000000 ___DC C:\Program Files\MyPC Backup
2013-11-15 19:54 - 2013-11-15 19:49 - 00000916 ____C C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job
2013-11-15 19:53 - 2013-11-15 19:48 - 00000912 ____C C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job
2013-11-15 19:50 - 2006-11-02 13:47 - 00003792 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2013-11-15 19:50 - 2006-11-02 13:47 - 00003792 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2013-11-15 19:49 - 2013-11-15 17:58 - 00000300 ____C C:\Windows\Tasks\DigitalSite.job
2013-11-15 19:48 - 2013-11-15 17:58 - 00000000 ___DC C:\Program Files\BonanzaDealsLive
2013-11-15 19:47 - 2013-11-15 19:47 - 00665064 ____C C:\Users\Melanie\Downloads\ZipExtractorSetup(1).exe
2013-11-15 19:43 - 2006-11-02 13:52 - 01937681 ____C C:\Windows\WindowsUpdate.log
2013-11-15 19:42 - 2013-11-15 19:42 - 00010794 ____C C:\Users\Melanie\Desktop\Gmer.log
2013-11-15 18:20 - 2013-11-15 18:20 - 00377856 ____C C:\Users\Melanie\Downloads\xk1ye031.exe
2013-11-15 18:19 - 2013-11-15 17:58 - 00000000 ___DC C:\ProgramData\eSafe
2013-11-15 18:16 - 2011-06-26 11:59 - 00000852 ____C C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-11-15 18:16 - 2007-08-16 02:15 - 00000955 ____C C:\Users\Melanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-11-15 18:05 - 2013-11-15 18:05 - 00000941 ____C C:\Users\Melanie\Desktop\Neues Textdokument.txt
2013-11-15 17:58 - 2013-11-15 17:58 - 00000000 ___DC C:\Users\Melanie\AppData\Roaming\DigitalSite
2013-11-15 17:58 - 2013-11-15 17:58 - 00000000 ___DC C:\Users\Melanie\AppData\Local\BonanzaDealsLive
2013-11-15 17:58 - 2013-11-15 17:58 - 00000000 ___DC C:\ProgramData\BonanzaDealsLive
2013-11-15 17:58 - 2008-04-30 19:37 - 00000000 ___DC C:\Users\Melanie\AppData\Local\Google
2013-11-15 17:58 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\rescache
2013-11-15 17:47 - 2006-11-02 11:33 - 01445352 ____C C:\Windows\system32\PerfStringBackup.INI
2013-11-15 17:45 - 2013-11-15 17:45 - 00000000 ___DC C:\Windows\LastGood
2013-11-15 17:45 - 2007-03-04 00:02 - 00000000 ___DC C:\Users\Melanie
2013-11-15 17:40 - 2006-11-02 14:01 - 00000006 ___HC C:\Windows\Tasks\SA.DAT
2013-11-14 19:32 - 2006-11-02 14:01 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-11-14 19:18 - 2012-07-16 21:10 - 00000000 ___DC C:\Program Files\Mozilla Maintenance Service
2013-11-14 19:17 - 2006-11-02 12:18 - 00000000 ___DC C:\Windows\system32\de-DE
2013-11-14 19:03 - 2007-03-27 15:45 - 00000000 ___DC C:\ProgramData\Microsoft Help
2013-11-14 19:02 - 2013-08-15 21:38 - 00000000 ___DC C:\Windows\system32\MRT
2013-11-14 19:01 - 2006-11-02 11:24 - 80340640 ____C (Microsoft Corporation) C:\Windows\system32\mrt.exe
2013-11-14 18:50 - 2007-06-15 19:49 - 00002591 ____C C:\Users\Melanie\Desktop\Microsoft Office Word 2007.lnk
2013-11-14 18:20 - 2013-11-14 18:20 - 00000000 ___DC C:\Program Files\Mozilla Firefox
2013-11-13 19:25 - 2013-11-13 19:25 - 00022410 ____C C:\Users\Melanie\Desktop\AVSCAN-20131113-165853-5151E3F4.LOG
2013-10-23 16:05 - 2013-10-23 16:05 - 00000000 ___DC C:\ProgramData\Oracle
2013-10-23 16:05 - 2013-10-23 16:05 - 00000000 ___DC C:\Program Files\Common Files\Java
2013-10-23 16:04 - 2013-10-23 16:04 - 00004874 ____C C:\Windows\system32\jupdate-1.7.0_45-b18.log
2013-10-23 16:04 - 2007-03-09 20:22 - 00000000 ___DC C:\Program Files\Java
2013-10-16 16:30 - 2012-07-09 19:36 - 00000000 ___DC C:\Program Files\Steam
Some content of TEMP:
====================
C:\Users\Melanie\AppData\Local\Temp\718631~1.exe
C:\Users\Melanie\AppData\Local\Temp\AdobeUpdater12345.exe
C:\Users\Melanie\AppData\Local\Temp\AskSLib.dll
C:\Users\Melanie\AppData\Local\Temp\avgnt.exe
C:\Users\Melanie\AppData\Local\Temp\A~NSISu_.exe
C:\Users\Melanie\AppData\Local\Temp\BackupSetup.exe
C:\Users\Melanie\AppData\Local\Temp\CmdLineExt.dll
C:\Users\Melanie\AppData\Local\Temp\drm_dialogs.dll
C:\Users\Melanie\AppData\Local\Temp\EBUF453.exe
C:\Users\Melanie\AppData\Local\Temp\EBUFAEA.DLL
C:\Users\Melanie\AppData\Local\Temp\FlashPlayerUpdate.exe
C:\Users\Melanie\AppData\Local\Temp\FlashPlayerUpdate01.exe
C:\Users\Melanie\AppData\Local\Temp\FlashPlayerUpdate02.exe
C:\Users\Melanie\AppData\Local\Temp\FlashPlayerUpdate03.exe
C:\Users\Melanie\AppData\Local\Temp\ICQInstall.exe
C:\Users\Melanie\AppData\Local\Temp\ICQRT.dll
C:\Users\Melanie\AppData\Local\Temp\ICQTIK.dll
C:\Users\Melanie\AppData\Local\Temp\install_flashplayer11x32_mssd_aaa_aih.exe
C:\Users\Melanie\AppData\Local\Temp\install_reader10_de_mssd_aaa_aih.exe
C:\Users\Melanie\AppData\Local\Temp\install_reader10_de_mssd_aaa_aih_1.exe
C:\Users\Melanie\AppData\Local\Temp\install_reader10_de_mssd_aaa_aih_2.exe
C:\Users\Melanie\AppData\Local\Temp\jre-6u19-windows-i586-iftw-rv.exe
C:\Users\Melanie\AppData\Local\Temp\jre-6u20-windows-i586-iftw-rv.exe
C:\Users\Melanie\AppData\Local\Temp\jre-6u21-windows-i586-iftw-rv.exe
C:\Users\Melanie\AppData\Local\Temp\jre-6u22-windows-i586-iftw-rv.exe
C:\Users\Melanie\AppData\Local\Temp\jre-6u23-windows-i586-iftw-rv.exe
C:\Users\Melanie\AppData\Local\Temp\jre-6u24-windows-i586-iftw-rv.exe
C:\Users\Melanie\AppData\Local\Temp\jre-6u26-windows-i586-iftw-rv.exe
C:\Users\Melanie\AppData\Local\Temp\jre-6u29-windows-i586-iftw-rv.exe
C:\Users\Melanie\AppData\Local\Temp\jre-7u11-windows-i586-iftw.exe
C:\Users\Melanie\AppData\Local\Temp\jre-7u15-windows-i586-iftw.exe
C:\Users\Melanie\AppData\Local\Temp\jre-7u17-windows-i586-iftw.exe
C:\Users\Melanie\AppData\Local\Temp\jre-7u21-windows-i586-iftw.exe
C:\Users\Melanie\AppData\Local\Temp\jre-7u25-windows-i586-iftw.exe
C:\Users\Melanie\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe
C:\Users\Melanie\AppData\Local\Temp\jre-7u5-windows-i586-iftw.exe
C:\Users\Melanie\AppData\Local\Temp\jre-7u7-windows-i586-iftw.exe
C:\Users\Melanie\AppData\Local\Temp\jre-7u9-windows-i586-iftw.exe
C:\Users\Melanie\AppData\Local\Temp\ose00000.exe
C:\Users\Melanie\AppData\Local\Temp\pacificpokersetup.exe
C:\Users\Melanie\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Melanie\AppData\Local\Temp\SPTDinst-x64.exe
C:\Users\Melanie\AppData\Local\Temp\swt-awt-win32-3346.dll
C:\Users\Melanie\AppData\Local\Temp\swt-gdip-win32-3346.dll
C:\Users\Melanie\AppData\Local\Temp\swt-win32-3346.dll
C:\Users\Melanie\AppData\Local\Temp\_unps.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-11-15 17:51
==================== End Of Log ============================ --- --- ---
und hier die Addition: Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 14-11-2013
Ran by Melanie at 2013-11-15 20:01:21
Running from C:\Users\Melanie\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
Update for Microsoft Office 2007 (KB2508958)
Adobe AIR (Version: 3.7.0.1530)
Adobe Flash Player 11 Plugin (Version: 11.7.700.224)
Adobe Reader X (10.1.8) - Deutsch (Version: 10.1.8)
ANNO 1503 GOLD (Version: 1.05.00)
Audio Tagging Tools (Version: 3.0.0 final)
Avira Free Antivirus (Version: 14.0.0.383)
Avira SearchFree Toolbar (Version: 12.6.0.1900)
Compatibility Pack für 2007 Office System (Version: 12.0.6612.1000)
DirectX for Managed Code Update (Summer 2004) (Version: 9.02.2904)
Easy CD-DA Extractor 11 (Version: 11.5.2)
Enclave
Flixster (Version: 0.1.15)
Free Studio version 4.9
Google Update Helper (Version: 1.3.23.0)
Java 7 Update 45 (Version: 7.0.450)
Java Auto Updater (Version: 2.1.9.8)
Logitech QuickCam-Software (Version: 8.47.0000)
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
Microsoft .NET Framework 3.5 Language Pack SP1 - deu (Version: 3.5.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Access 2007 (Version: 12.0.6612.1000)
Microsoft Office Access MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office Excel 2007 (Version: 12.0.6612.1000)
Microsoft Office Excel MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office File Validation Add-In (Version: 14.0.5130.5003)
Microsoft Office Live Add-in 1.5 (Version: 2.0.4024.1)
Microsoft Office PowerPoint 2007 (Version: 12.0.6612.1000)
Microsoft Office PowerPoint MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (Italian) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proofing (German) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Shared MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office Word 2007 (Version: 12.0.6612.1000)
Microsoft Office Word MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Silverlight (Version: 5.1.20913.0)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Mozilla Firefox 25.0 (x86 de) (Version: 25.0)
Mozilla Maintenance Service (Version: 25.0)
MSXML 4.0 SP2 (KB925672) (Version: 4.20.9839.0)
MSXML 4.0 SP2 (KB927978) (Version: 4.20.9841.0)
MSXML 4.0 SP2 (KB936181) (Version: 4.20.9848.0)
MSXML 4.0 SP2 (KB941833) (Version: 4.20.9849.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
Nero 7 (Version: 7.02.6445)
neroxml (Version: 1.0.0)
NVIDIA Display Control Panel (Version: 6.14.12.5896)
NVIDIA Grafiktreiber 307.83 (Version: 307.83)
NVIDIA Install Application (Version: 2.1002.109.706)
NVIDIA Systemsteuerung 307.83 (Version: 307.83)
NVIDIA Update 1.10.8 (Version: 1.10.8)
NVIDIA Update Components (Version: 1.10.8)
Portal
PVSonyDll (Version: 1.00.0001)
QuickTime (Version: 7.1)
RealPlayer
Sins of a Solar Empire Trinity
Sins of a Solar Empire: Rebellion
Skype™ 5.10 (Version: 5.10.116)
Stardock Central
Steam (Version: 1.0.0.0)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (Version: 3)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition
Update für Microsoft Office Excel 2007 Help (KB963678)
Update für Microsoft Office Powerpoint 2007 Help (KB963669)
Update für Microsoft Office Word 2007 Help (KB963665)
VideoLAN VLC media player 0.8.6h (Version: 0.8.6h)
WinZip (Version: 8.1 (4331g))
==================== Restore Points =========================
14-11-2013 17:13:23 Geplanter Prüfpunkt
14-11-2013 18:00:17 Windows Update
15-11-2013 16:45:35 Gerätetreiber-Paketinstallation: Realtek Semiconductor Corp. Netzwerkadapter
15-11-2013 16:52:21 Removed TomTom HOME Visual Studio Merge Modules
==================== Hosts content: ==========================
2006-11-02 11:23 - 2006-09-18 22:41 - 00000761 ___AC C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
::1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: {10D2E30C-A67A-4D3D-8486-7551D377BBDD} - System32\Tasks\BonanzaDealsLiveUpdateTaskMachineUA => C:\Program Files\BonanzaDealsLive\Update\BonanzaDealsLive.exe [2013-11-15] (BonanzaDeals)
Task: {1CC81347-6204-4B83-900C-01E02F50F067} - System32\Tasks\Microsoft\Windows\MobilePC\TMM
Task: {3BCDF251-CA5C-4045-A1FC-8FCEF9FBDC93} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages
Task: {44980BEE-7809-44A9-AC24-D6E578A3B7DF} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\System32\RacAgent.exe [2008-01-19] (Microsoft Corporation)
Task: {8699ECEE-F25F-4537-8476-B1E3A096A0EE} - System32\Tasks\DigitalSite => C:\Users\Melanie\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE
Task: {BE5D03A3-9ADA-46D3-9758-179FADB26D25} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI
Task: {BE786F57-5C14-4336-8F45-15D98C279E26} - System32\Tasks\BonanzaDealsLiveUpdateTaskMachineCore => C:\Program Files\BonanzaDealsLive\Update\BonanzaDealsLive.exe [2013-11-15] (BonanzaDeals)
Task: {E5150B95-F9B4-4D5D-95A2-7EC1ACBA95F8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\System32\gatherWirelessInfo.vbs [2008-01-05] ()
Task: C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job => C:\Program Files\BonanzaDealsLive\Update\BonanzaDealsLive.exe
Task: C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job => C:\Program Files\BonanzaDealsLive\Update\BonanzaDealsLive.exe
Task: C:\Windows\Tasks\DigitalSite.job => C:\Users\Melanie\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE
==================== Loaded Modules (whitelisted) =============
2008-03-09 18:32 - 2008-01-23 18:55 - 00055784 ____C () C:\Program Files\Easy CD-DA Extractor\ezcddax11.dll
2013-11-14 18:20 - 2013-11-14 18:20 - 03368048 ____C () C:\Program Files\Mozilla Firefox\mozjs.dll
2013-06-16 13:50 - 2013-06-16 13:50 - 16033160 ____C () C:\Windows\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\ProgramData\TEMP:1493A0EF
==================== Safe Mode (whitelisted) ===================
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (11/15/2013 07:52:28 PM) (Source: Application Error) (User: )
Description: Fehlerhafte Anwendung FlashPlayerPlugin_11_7_700_224.exe, Version 11.7.700.224, Zeitstempel 0x51a67447, fehlerhaftes Modul ShimEng.dll_unloaded, Version 0.0.0.0, Zeitstempel 0x4549bdb7, Ausnahmecode 0xc0000005, Fehleroffset 0x6ac74618,
Prozess-ID 0x6d4, Anwendungsstartzeit FlashPlayerPlugin_11_7_700_224.exe0.
Error: (11/15/2013 06:28:08 PM) (Source: Perflib) (User: )
Description: EmdCacheC:\Windows\system32\emdmgmt.dll4
Error: (11/13/2013 04:49:41 PM) (Source: Application Error) (User: )
Description: Fehlerhafte Anwendung explorer.exe, Version 6.0.6002.18005, Zeitstempel 0x49e01da5, fehlerhaftes Modul ntdll.dll, Version 6.0.6002.18881, Zeitstempel 0x51da3e27, Ausnahmecode 0xc0000005, Fehleroffset 0x00066609,
Prozess-ID 0xcdc, Anwendungsstartzeit explorer.exe0.
Error: (11/13/2013 04:48:05 PM) (Source: Application Error) (User: )
Description: Fehlerhafte Anwendung explorer.exe, Version 6.0.6002.18005, Zeitstempel 0x49e01da5, fehlerhaftes Modul ntdll.dll, Version 6.0.6002.18881, Zeitstempel 0x51da3e27, Ausnahmecode 0xc0000005, Fehleroffset 0x00066609,
Prozess-ID 0xb6c, Anwendungsstartzeit explorer.exe0.
Error: (11/13/2013 04:38:54 PM) (Source: Application Error) (User: )
Description: Fehlerhafte Anwendung Explorer.EXE, Version 6.0.6002.18005, Zeitstempel 0x49e01da5, fehlerhaftes Modul ntdll.dll, Version 6.0.6002.18881, Zeitstempel 0x51da3e27, Ausnahmecode 0xc0000005, Fehleroffset 0x00066609,
Prozess-ID 0x7e8, Anwendungsstartzeit Explorer.EXE0.
Error: (10/21/2013 09:43:08 PM) (Source: Application Error) (User: )
Description: Fehlerhafte Anwendung firefox.exe, Version 24.0.0.5001, Zeitstempel 0x522fd29f, fehlerhaftes Modul xul.dll, Version 24.0.0.5001, Zeitstempel 0x522fd1a4, Ausnahmecode 0xc0000005, Fehleroffset 0x001b72a8,
Prozess-ID 0xb40, Anwendungsstartzeit firefox.exe0.
Error: (10/21/2013 06:23:10 PM) (Source: Application Error) (User: )
Description: Fehlerhafte Anwendung Explorer.EXE, Version 6.0.6002.18005, Zeitstempel 0x49e01da5, fehlerhaftes Modul ntdll.dll, Version 6.0.6002.18881, Zeitstempel 0x51da3e27, Ausnahmecode 0xc0000005, Fehleroffset 0x00066609,
Prozess-ID 0x778, Anwendungsstartzeit Explorer.EXE0.
Error: (10/09/2013 05:13:13 PM) (Source: System Restore) (User: )
Description: Fehler beim Erstellen des Wiederherstellungspunkts auf dem Volume (Prozess = C:\Program Files\Steam\steamapps\common\Enclave\directx\DXSETUP.exe Files\Steam\steamapps\common\Enclave\directx\DXSETUP.exe" /silent; Beschreibung = äx%v; Hr = 0x80070057).
Error: (10/09/2013 05:12:07 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Abfragen nach der Schnittstelle "IVssWriterCallback" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005.
Die Ursache hierfür ist oft eine falsche Sicherheitseinstellung im Schreib- oder Anfrageprozess.
Vorgang:
Generatordaten werden gesammelt
Kontext:
Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220}
Generatorname: System Writer
Generatorinstanz-ID: {48e85087-7d9d-4efd-9284-e9037c111372}
Error: (10/05/2013 11:59:12 AM) (Source: Application Error) (User: )
Description: Fehlerhafte Anwendung Explorer.EXE, Version 6.0.6002.18005, Zeitstempel 0x49e01da5, fehlerhaftes Modul ntdll.dll, Version 6.0.6002.18881, Zeitstempel 0x51da3e27, Ausnahmecode 0xc0000005, Fehleroffset 0x00066609,
Prozess-ID 0x7d0, Anwendungsstartzeit Explorer.EXE0.
System errors:
=============
Error: (11/15/2013 07:56:40 PM) (Source: DCOM) (User: )
Description: C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\1150\INTEL3~1\IDriver.exe -Embedding740{D5641912-E47A-429C-879E-CFE13EAC7A13}
Error: (11/15/2013 05:42:40 PM) (Source: Service Control Manager) (User: )
Description: NVIDIA Update Service Daemon%%1069
Error: (11/15/2013 05:42:40 PM) (Source: Service Control Manager) (User: )
Description: nvUpdatusService.\UpdatusUser%%1330
Error: (11/15/2013 05:41:31 PM) (Source: Service Control Manager) (User: )
Description: i8042prt
Error: (11/15/2013 05:39:41 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (User: NT-AUTORITÄT)
Description:
Error: (11/14/2013 07:31:11 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (User: NT-AUTORITÄT)
Description:
Error: (11/14/2013 07:22:49 PM) (Source: Service Control Manager) (User: )
Description: NVIDIA Update Service Daemon%%1069
Error: (11/14/2013 07:22:49 PM) (Source: Service Control Manager) (User: )
Description: nvUpdatusService.\UpdatusUser%%1330
Error: (11/14/2013 07:22:19 PM) (Source: bowser) (User: )
Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "EASYBOX",
der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{3A1D2AD5-C806-4B90-A075-A5401CE794-Transport zu sein scheint.
Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen.
Error: (11/14/2013 07:20:46 PM) (Source: Service Control Manager) (User: )
Description: i8042prt
Microsoft Office Sessions:
=========================
==================== Memory info ===========================
Percentage of memory in use: 43%
Total physical RAM: 3070.58 MB
Available physical RAM: 1736.21 MB
Total Pagefile: 6361.56 MB
Available Pagefile: 4901.2 MB
Total Virtual: 2047.88 MB
Available Virtual: 1898.5 MB
==================== Drives ================================
Drive c: (SYSTEM) (Fixed) (Total:97.66 GB) (Free:32.59 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (DATEN) (Fixed) (Total:135.23 GB) (Free:92.62 GB) NTFS
Drive e: (Drivers) (CDROM) (Total:0.13 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 233 GB) (Disk ID: B5B47250)
Partition 1: (Active) - (Size=98 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=135 GB) - (Type=07 NTFS)
==================== End Of Log ============================ |