Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-02-2014
Ran by Kevin at 2014-02-04 11:53:38
Running from E:\Benutzer\Kevin\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
Adobe Flash Player 12 Plugin (x32 Version: 12.0.0.43 - Adobe Systems Incorporated)
AMD Accelerated Video Transcoding (Version: 13.30.100.40131 - Advanced Micro Devices, Inc.) Hidden
AMD Catalyst Control Center (x32 Version: 2014.0131.1535.27922 - Ihr Firmenname) Hidden
AMD Catalyst Install Manager (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Battlefield 4™ (x32 Version: 1.0.0.1 - Electronic Arts)
Battlelog Web Plugins (x32 Version: 2.3.2 - EA Digital Illusions CE AB)
Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Graphics Previews Common (x32 Version: 2014.0131.1535.27922 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2014.0131.1535.27922 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2014.0131.1535.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Standard (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Traditional (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help Czech (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help Danish (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help Dutch (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help English (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help Finnish (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help French (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help German (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help Greek (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help Hungarian (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help Italian (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help Japanese (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help Korean (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help Norwegian (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help Polish (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help Portuguese (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help Russian (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help Spanish (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help Swedish (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help Thai (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
CCC Help Turkish (x32 Version: 2014.0131.1534.27922 - Advanced Micro Devices, Inc.) Hidden
ccc-utility64 (Version: 2014.0131.1535.27922 - Advanced Micro Devices, Inc.) Hidden
Counter-Strike: Source (x32 Version: - Valve)
Definition Update for Microsoft Office 2010 (KB982726) 64-Bit Edition (Version: - Microsoft)
ESL Wire 1.17.3 (Version: - Turtle Entertainment GmbH)
ESN Sonar (x32 Version: 0.70.4 - ESN Social Software AB)
F1 2013 (x32 Version: 1.0 - Codemasters)
Google Chrome (x32 Version: 32.0.1700.102 - Google Inc.)
Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden
HydraVision (x32 Version: 4.2.252.0 - Advanced Micro Devices, Inc.) Hidden
JDownloader 2 (Version: 2.0 - AppWork GmbH)
League of Legends (x32 Version: 3.0.1 - Riot Games )
League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden
Microsoft Office Access MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Groove MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 32-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2010 (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (x32 Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (x32 Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (x32 Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (x32 Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden
Mozilla Firefox 26.0 (x86 de) (x32 Version: 26.0 - Mozilla)
Mozilla Maintenance Service (x32 Version: 26.0 - Mozilla)
MPC-HC 1.7.2 (64-bit) (Version: 1.7.2 - MPC-HC Team)
Origin (x32 Version: 9.3.11.2762 - Electronic Arts, Inc.)
Pando Media Booster (x32 Version: 2.6.0.7 - Pando Networks Inc.)
PunkBuster Services (x32 Version: 0.993 - Even Balance, Inc.)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden
Steam (x32 Version: - Valve Corporation)
TeamSpeak 3 Client (HKCU Version: 3.0.13 - TeamSpeak Systems GmbH)
Update for Microsoft Access 2010 (KB2553446) 64-Bit Edition (Version: - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2810071) 64-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2553092) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2589298) 64-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 64-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2589375) 64-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2597087) 64-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2760598) 64-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2794737) 64-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2825640) 64-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2826026) 64-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2850079) 64-Bit Edition (Version: - Microsoft)
Update for Microsoft OneNote 2010 (KB2810072) 64-Bit Edition (Version: - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2553145) 64-Bit Edition (Version: - Microsoft)
Update for Microsoft Visio Viewer 2010 (KB2810066) 64-Bit Edition (Version: - Microsoft)
WinRAR 5.01 (64-bit) (Version: 5.01.0 - win.rar GmbH)
==================== Restore Points =========================
==================== Hosts content: ==========================
2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)
Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)
Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task
Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task
Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
Task: {8CF3BFAA-6948-4E9C-B065-A5E6A2A7CF3B} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2014-01-06] (Microsoft Corporation)
Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work
Task: {AA693B90-5B5D-43B4-8EEC-ABA2E89811DD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-15] (Google Inc.)
Task: {C0B89AA9-32CA-4434-869B-67BAA671B23B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-15] (Google Inc.)
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask
Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
Task: {FCA195EE-54CF-44C7-A2E2-CFDEE8A1F5A5} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-01-16] (Adobe Systems Incorporated)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2014-01-15 18:17 - 2013-12-05 20:36 - 03559024 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
==================== Safe Mode (whitelisted) ===================
==================== Faulty Device Manager Devices =============
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: PCI-Kommunikationscontroller (einfach)
Description: PCI-Kommunikationscontroller (einfach)
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: SM-Bus-Controller
Description: SM-Bus-Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (02/04/2014 11:47:32 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: rpcs3-x64_0.0.0.4.exe, Version: 0.0.0.0, Zeitstempel: 0x521cc7de
Name des fehlerhaften Moduls: rpcs3-x64_0.0.0.4.exe, Version: 0.0.0.0, Zeitstempel: 0x521cc7de
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000180352
ID des fehlerhaften Prozesses: 0xdfc
Startzeit der fehlerhaften Anwendung: 0xrpcs3-x64_0.0.0.4.exe0
Pfad der fehlerhaften Anwendung: rpcs3-x64_0.0.0.4.exe1
Pfad des fehlerhaften Moduls: rpcs3-x64_0.0.0.4.exe2
Berichtskennung: rpcs3-x64_0.0.0.4.exe3
Vollständiger Name des fehlerhaften Pakets: rpcs3-x64_0.0.0.4.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: rpcs3-x64_0.0.0.4.exe5
Error: (02/04/2014 01:14:32 AM) (Source: Steam Client Service) (User: )
Description: Error: Failed to poke open firewall
Error: (02/02/2014 04:42:52 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Next Car Game Technology Sneak Peek.exe, Version: 0.0.0.0, Zeitstempel: 0x528f4f34
Name des fehlerhaften Moduls: Next Car Game Technology Sneak Peek.exe, Version: 0.0.0.0, Zeitstempel: 0x528f4f34
Ausnahmecode: 0xc000041d
Fehleroffset: 0x00204c2a
ID des fehlerhaften Prozesses: 0x1154
Startzeit der fehlerhaften Anwendung: 0xNext Car Game Technology Sneak Peek.exe0
Pfad der fehlerhaften Anwendung: Next Car Game Technology Sneak Peek.exe1
Pfad des fehlerhaften Moduls: Next Car Game Technology Sneak Peek.exe2
Berichtskennung: Next Car Game Technology Sneak Peek.exe3
Vollständiger Name des fehlerhaften Pakets: Next Car Game Technology Sneak Peek.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Next Car Game Technology Sneak Peek.exe5
Error: (02/02/2014 04:42:47 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Next Car Game Technology Sneak Peek.exe, Version: 0.0.0.0, Zeitstempel: 0x528f4f34
Name des fehlerhaften Moduls: Next Car Game Technology Sneak Peek.exe, Version: 0.0.0.0, Zeitstempel: 0x528f4f34
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00204c2a
ID des fehlerhaften Prozesses: 0x1154
Startzeit der fehlerhaften Anwendung: 0xNext Car Game Technology Sneak Peek.exe0
Pfad der fehlerhaften Anwendung: Next Car Game Technology Sneak Peek.exe1
Pfad des fehlerhaften Moduls: Next Car Game Technology Sneak Peek.exe2
Berichtskennung: Next Car Game Technology Sneak Peek.exe3
Vollständiger Name des fehlerhaften Pakets: Next Car Game Technology Sneak Peek.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Next Car Game Technology Sneak Peek.exe5
Error: (02/02/2014 03:25:41 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".
Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.
System Error:
Zugriff verweigert
.
Error: (02/01/2014 06:37:41 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: bf4.exe, Version: 1.1.0.0, Zeitstempel: 0x52e6656f
Name des fehlerhaften Moduls: bf4.exe, Version: 1.1.0.0, Zeitstempel: 0x52e6656f
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00000000004a1045
ID des fehlerhaften Prozesses: 0x84c
Startzeit der fehlerhaften Anwendung: 0xbf4.exe0
Pfad der fehlerhaften Anwendung: bf4.exe1
Pfad des fehlerhaften Moduls: bf4.exe2
Berichtskennung: bf4.exe3
Vollständiger Name des fehlerhaften Pakets: bf4.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: bf4.exe5
Error: (02/01/2014 05:57:33 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: bf4.exe, Version: 1.1.0.0, Zeitstempel: 0x52e6656f
Name des fehlerhaften Moduls: bf4.exe, Version: 1.1.0.0, Zeitstempel: 0x52e6656f
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00000000004a1045
ID des fehlerhaften Prozesses: 0x900
Startzeit der fehlerhaften Anwendung: 0xbf4.exe0
Pfad der fehlerhaften Anwendung: bf4.exe1
Pfad des fehlerhaften Moduls: bf4.exe2
Berichtskennung: bf4.exe3
Vollständiger Name des fehlerhaften Pakets: bf4.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: bf4.exe5
Error: (02/01/2014 05:54:36 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: bf4.exe, Version: 1.1.0.0, Zeitstempel: 0x52e6656f
Name des fehlerhaften Moduls: bf4.exe, Version: 1.1.0.0, Zeitstempel: 0x52e6656f
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00000000004a1045
ID des fehlerhaften Prozesses: 0x15e0
Startzeit der fehlerhaften Anwendung: 0xbf4.exe0
Pfad der fehlerhaften Anwendung: bf4.exe1
Pfad des fehlerhaften Moduls: bf4.exe2
Berichtskennung: bf4.exe3
Vollständiger Name des fehlerhaften Pakets: bf4.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: bf4.exe5
Error: (02/01/2014 05:40:35 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: bf4.exe, Version: 1.1.0.0, Zeitstempel: 0x52e6656f
Name des fehlerhaften Moduls: bf4.exe, Version: 1.1.0.0, Zeitstempel: 0x52e6656f
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00000000004a1045
ID des fehlerhaften Prozesses: 0xc94
Startzeit der fehlerhaften Anwendung: 0xbf4.exe0
Pfad der fehlerhaften Anwendung: bf4.exe1
Pfad des fehlerhaften Moduls: bf4.exe2
Berichtskennung: bf4.exe3
Vollständiger Name des fehlerhaften Pakets: bf4.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: bf4.exe5
Error: (02/01/2014 05:37:27 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: bf4.exe, Version: 1.1.0.0, Zeitstempel: 0x52e6656f
Name des fehlerhaften Moduls: bf4.exe, Version: 1.1.0.0, Zeitstempel: 0x52e6656f
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00000000004a1045
ID des fehlerhaften Prozesses: 0x1980
Startzeit der fehlerhaften Anwendung: 0xbf4.exe0
Pfad der fehlerhaften Anwendung: bf4.exe1
Pfad des fehlerhaften Moduls: bf4.exe2
Berichtskennung: bf4.exe3
Vollständiger Name des fehlerhaften Pakets: bf4.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: bf4.exe5
System errors:
=============
Error: (02/04/2014 03:57:48 AM) (Source: volsnap) (User: )
Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte.
Error: (02/04/2014 00:42:36 AM) (Source: Schannel) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 43. Der Windows-SChannel-Fehlerstatus lautet: 252.
Error: (02/03/2014 02:24:27 PM) (Source: Schannel) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 43. Der Windows-SChannel-Fehlerstatus lautet: 252.
Error: (02/02/2014 03:32:58 PM) (Source: Schannel) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 43. Der Windows-SChannel-Fehlerstatus lautet: 252.
Error: (02/02/2014 03:23:54 PM) (Source: cdrom) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden.
Error: (02/02/2014 03:23:51 PM) (Source: cdrom) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden.
Error: (02/02/2014 03:23:48 PM) (Source: cdrom) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden.
Error: (02/02/2014 03:23:44 PM) (Source: cdrom) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden.
Error: (02/02/2014 03:23:41 PM) (Source: cdrom) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden.
Error: (02/02/2014 03:23:38 PM) (Source: cdrom) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden.
Microsoft Office Sessions:
=========================
Error: (02/04/2014 11:47:32 AM) (Source: Application Error)(User: )
Description: rpcs3-x64_0.0.0.4.exe0.0.0.0521cc7derpcs3-x64_0.0.0.4.exe0.0.0.0521cc7dec00000050000000000180352dfc01cf219681c86b16C:\Users\Kevin\AppData\Local\Temp\Rar$EXa0.269\rpcs3-x64_0.0.0.4.exeC:\Users\Kevin\AppData\Local\Temp\Rar$EXa0.269\rpcs3-x64_0.0.0.4.exebf7d467a-8d89-11e3-827f-bc5ff4f1074d
Error: (02/04/2014 01:14:32 AM) (Source: Steam Client Service)(User: )
Description: Failed to poke open firewall
Error: (02/02/2014 04:42:52 PM) (Source: Application Error)(User: )
Description: Next Car Game Technology Sneak Peek.exe0.0.0.0528f4f34Next Car Game Technology Sneak Peek.exe0.0.0.0528f4f34c000041d00204c2a115401cf202b76df7749E:\Games\Next Car Game\Next Car Game Technology Sneak Peek.exeE:\Games\Next Car Game\Next Car Game Technology Sneak Peek.exeacddd466-8c20-11e3-827b-bc5ff4f1074d
Error: (02/02/2014 04:42:47 PM) (Source: Application Error)(User: )
Description: Next Car Game Technology Sneak Peek.exe0.0.0.0528f4f34Next Car Game Technology Sneak Peek.exe0.0.0.0528f4f34c000000500204c2a115401cf202b76df7749E:\Games\Next Car Game\Next Car Game Technology Sneak Peek.exeE:\Games\Next Car Game\Next Car Game Technology Sneak Peek.exea9cddeda-8c20-11e3-827b-bc5ff4f1074d
Error: (02/02/2014 03:25:41 PM) (Source: Microsoft-Windows-CAPI2)(User: )
Description:
Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.
System Error:
Zugriff verweigert
Error: (02/01/2014 06:37:41 PM) (Source: Application Error)(User: )
Description: bf4.exe1.1.0.052e6656fbf4.exe1.1.0.052e6656fc000000500000000004a104584c01cf1f6eec962f34E:\Program Files (x86)\Origin Games\Battlefield 4\bf4.exeE:\Program Files (x86)\Origin Games\Battlefield 4\bf4.exe8c2f8da9-8b67-11e3-8277-bc5ff4f1074d
Error: (02/01/2014 05:57:33 PM) (Source: Application Error)(User: )
Description: bf4.exe1.1.0.052e6656fbf4.exe1.1.0.052e6656fc000000500000000004a104590001cf1f6e552bacceE:\Program Files (x86)\Origin Games\Battlefield 4\bf4.exeE:\Program Files (x86)\Origin Games\Battlefield 4\bf4.exef136f2d1-8b61-11e3-8277-bc5ff4f1074d
Error: (02/01/2014 05:54:36 PM) (Source: Application Error)(User: )
Description: bf4.exe1.1.0.052e6656fbf4.exe1.1.0.052e6656fc000000500000000004a104515e001cf1f6cc6184617E:\Program Files (x86)\Origin Games\Battlefield 4\bf4.exeE:\Program Files (x86)\Origin Games\Battlefield 4\bf4.exe877f7cf8-8b61-11e3-8277-bc5ff4f1074d
Error: (02/01/2014 05:40:35 PM) (Source: Application Error)(User: )
Description: bf4.exe1.1.0.052e6656fbf4.exe1.1.0.052e6656fc000000500000000004a1045c9401cf1f6bf6eb4506E:\Program Files (x86)\Origin Games\Battlefield 4\bf4.exeE:\Program Files (x86)\Origin Games\Battlefield 4\bf4.exe92227f37-8b5f-11e3-8277-bc5ff4f1074d
Error: (02/01/2014 05:37:27 PM) (Source: Application Error)(User: )
Description: bf4.exe1.1.0.052e6656fbf4.exe1.1.0.052e6656fc000000500000000004a1045198001cf1f6bc25b32e1E:\Program Files (x86)\Origin Games\Battlefield 4\bf4.exeE:\Program Files (x86)\Origin Games\Battlefield 4\bf4.exe222d5680-8b5f-11e3-8277-bc5ff4f1074d
==================== Memory info ===========================
Percentage of memory in use: 20%
Total physical RAM: 8111.41 MB
Available physical RAM: 6417.4 MB
Total Pagefile: 9391.41 MB
Available Pagefile: 7410.73 MB
Total Virtual: 131072 MB
Available Virtual: 131071.78 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:111.27 GB) (Free:91.25 GB) NTFS
Drive e: (Volume) (Fixed) (Total:465.76 GB) (Free:325.53 GB) NTFS
Drive f: (TOSHIBA) (Removable) (Total:1.92 GB) (Free:0.19 GB) FAT
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 112 GB) (Disk ID: 00000000)
Partition: GPT Partition Type
========================================================
Disk: 1 (Size: 466 GB) (Disk ID: F46AD61A)
Partition: GPT Partition Type
========================================================
Disk: 2 (Size: 2 GB) (Disk ID: 00000000)
Partition 1: (Active) - (Size=2 GB) - (Type=06)
==================== End Of Log ============================ Code:
GMER 2.1.19357 - hxxp://www.gmer.net
Rootkit scan 2014-02-06 15:32:42
Windows 6.2.9200 x64 \Device\Harddisk0\DR0 -> \Device\00000025 Samsung_SSD_840_EVO_120GB rev.EXT0BB0Q 111,79GB
Running: Gmer-19357.exe; Driver: C:\Users\Kevin\AppData\Local\Temp\kglorpoc.sys
---- Kernel code sections - GMER 2.1 ----
.text C:\Windows\System32\win32k.sys!W32pServiceTable fffff9600020f700 15 bytes [00, EA, 0F, 02, 00, 7F, 6F, ...]
.text C:\Windows\System32\win32k.sys!W32pServiceTable + 16 fffff9600020f710 11 bytes [00, 1F, FC, FF, 80, 52, DE, ...]
---- User code sections - GMER 2.1 ----
.text C:\Windows\system32\svchost.exe[692] C:\Windows\system32\KERNEL32.DLL!GetBinaryTypeW + 165 00007ffdcfc3977d 1 byte [62]
.text C:\Windows\system32\winlogon.exe[732] C:\Windows\system32\KERNEL32.DLL!GetBinaryTypeW + 165 00007ffdcfc3977d 1 byte [62]
.text C:\Windows\System32\svchost.exe[980] C:\Windows\system32\KERNEL32.DLL!GetBinaryTypeW + 165 00007ffdcfc3977d 1 byte [62]
.text C:\Windows\system32\svchost.exe[1012] C:\Windows\system32\KERNEL32.DLL!GetBinaryTypeW + 165 00007ffdcfc3977d 1 byte [62]
.text C:\Windows\system32\svchost.exe[324] C:\Windows\system32\KERNEL32.DLL!GetBinaryTypeW + 165 00007ffdcfc3977d 1 byte [62]
.text C:\Windows\system32\taskhostex.exe[2908] C:\Windows\system32\KERNEL32.DLL!GetBinaryTypeW + 165 00007ffdcfc3977d 1 byte [62]
.text C:\Windows\Explorer.EXE[2932] C:\Windows\system32\KERNEL32.DLL!GetBinaryTypeW + 165 00007ffdcfc3977d 1 byte [62]
.text C:\Windows\system32\SearchIndexer.exe[3492] C:\Windows\system32\KERNEL32.DLL!GetBinaryTypeW + 165 00007ffdcfc3977d 1 byte [62]
.text C:\Windows\System32\skydrive.exe[3592] C:\Windows\system32\KERNEL32.DLL!GetBinaryTypeW + 165 00007ffdcfc3977d 1 byte [62]
.text C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe[3964] C:\Windows\system32\KERNEL32.dll!GetBinaryTypeW + 165 00007ffdcfc3977d 1 byte [62]
.text C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe[4052] C:\Windows\system32\KERNEL32.dll!GetBinaryTypeW + 165 00007ffdcfc3977d 1 byte [62]
.text C:\Windows\System32\SettingSyncHost.exe[1840] C:\Windows\system32\KERNEL32.DLL!GetBinaryTypeW + 165 00007ffdcfc3977d 1 byte [62]
---- Threads - GMER 2.1 ----
Thread C:\Windows\system32\csrss.exe [560:596] fffff960008094d0
---- EOF - GMER 2.1 ---- |