Jump to content

chopin

Members
  • Posts

    5
  • Joined

  • Last visited

Reputation

0 Neutral

Profile Information

  • Location
    Hungary
  1. So, one week after posting my Malwarebytes problems here it is still only causing error messages. Well, what shall I say? Thanks a lot. Great forum. Super support.
  2. Thank you very much for your explanations and your patience and your kindness. You deserve greatest respect.
  3. Sir, but I have installed the latest build. I did everything you asked me to do because I thought it would help to solve the problem. If it doesn't, why did I have to do it? Please don't misunderstand this, I am only curious, because I am not an IT expert. I am also not a computer idiot, I consider myself an advanced user. My skills are about as good as my English (I am German). Also I must confess that it does not bother me too much that Malwarebytes does not work. It is not a problem for me, I should suppose that it is much more a problem for those who developed this program.
  4. Thank you, daledoc! I have not deinstalled and cleanly reinstalled Malwarebytes because I installed it only a month ago and it is the newest version 2.0.2.1012. Here is FRST.txt: Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 27-09-2014 Ran by SONY (administrator) on MONIQUE on 27-09-2014 16:54:33 Running from C:\Users\Snooker\Desktop Loaded Profiles: SONY & Snooker (Available profiles: SONY & Snooker & Administrator) Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: Englisch (USA) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Apple Computer, Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\VS7Debug\mdm.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Windows\System32\StikyNot.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\ehome\ehmsas.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [751184 2014-08-18] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.) HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.) HKLM\...\Run: [sunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation) Winlogon\Notify\SDWinLogon: SDWinLogon.dll [X] HKU\S-1-5-21-4061607063-2095909994-713107385-1000\...\Run: [soundMax] => C:\Program Files\SoundMAX\SMax4.exe [585728 2003-05-30] (Analog Devices, Inc.) HKU\S-1-5-21-4061607063-2095909994-713107385-1001\...\Run: [RESTART_STICKY_NOTES] => C:\Windows\System32\StikyNot.exe [354304 2009-07-14] (Microsoft Corporation) Startup: C:\Users\Snooker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\StikyNot.exe - Shortcut.lnk ShortcutTarget: StikyNot.exe - Shortcut.lnk -> C:\Windows\System32\StikyNot.exe (Microsoft Corporation) BootExecute: autocheck autochk * sdnclean.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.startfenster.de SearchScopes: HKLM - DefaultScope {FE01D157-A28F-42AB-B5A9-68391D620498} URL = http://www.sm.de/?q={searchTerms} SearchScopes: HKLM - {FE01D157-A28F-42AB-B5A9-68391D620498} URL = http://www.sm.de/?q={searchTerms} SearchScopes: HKCU - DefaultScope {FE01D157-A28F-42AB-B5A9-68391D620498} URL = http://www.sm.de/?q={searchTerms} SearchScopes: HKCU - {FE01D157-A28F-42AB-B5A9-68391D620498} URL = http://www.sm.de/?q={searchTerms} BHO: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL (Microsoft Corporation) Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation) Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [94208] (Apple Computer, Inc.) Tcpip\Parameters: [DhcpNameServer] 212.92.19.252 212.92.0.131 FireFox: ======== FF ProfilePath: C:\Users\SONY\AppData\Roaming\Mozilla\Firefox\Profiles\u5ez5vux.default FF DefaultSearchEngine: SuchMaschine FF SearchEngineOrder.1: SuchMaschine FF SelectedSearchEngine: SuchMaschine FF Homepage: https://www.google.de/?gws_rd=ssl FF Keyword.URL: hxxp://www.sm.de/?q= FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_15_0_0_152.dll () FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled No File FF Plugin: @videolan.org/vlc,version=2.1.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF SearchPlugin: C:\Users\SONY\AppData\Roaming\Mozilla\Firefox\Profiles\u5ez5vux.default\searchplugins\search_engine.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Avira Browser Safety - C:\Users\SONY\AppData\Roaming\Mozilla\Firefox\Profiles\u5ez5vux.default\Extensions\abs@avira.com [2014-09-15] FF Extension: Forecastfox - C:\Users\SONY\AppData\Roaming\Mozilla\Firefox\Profiles\u5ez5vux.default\Extensions\{0538E3E3-7E9B-4d49-8831-A227C80A7AD3} [2014-06-08] FF Extension: DownloadHelper - C:\Users\SONY\AppData\Roaming\Mozilla\Firefox\Profiles\u5ez5vux.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-09-15] FF Extension: NoScript - C:\Users\SONY\AppData\Roaming\Mozilla\Firefox\Profiles\u5ez5vux.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2014-06-08] FF Extension: Adblock Plus - C:\Users\SONY\AppData\Roaming\Mozilla\Firefox\Profiles\u5ez5vux.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-06-08] FF Extension: BetterPrivacy - C:\Users\SONY\AppData\Roaming\Mozilla\Firefox\Profiles\u5ez5vux.default\Extensions\{d40f5e7b-d2cf-4856-b441-cc613eeffbe3}.xpi [2014-06-08] Chrome: ======= ========================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [430160 2014-08-18] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [430160 2014-08-18] (Avira Operations GmbH & Co. KG) R2 Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [229376 2006-02-28] (Apple Computer, Inc.) [File not signed] S3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [654848 2014-06-29] (Macrovision Europe Ltd.) [File not signed] S4 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720 2014-05-12] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [860472 2014-05-12] (Malwarebytes Corporation) R2 MDM; C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe [270336 2001-02-23] (Microsoft Corporation) [File not signed] R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [97648 2014-07-27] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136216 2014-05-09] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2014-05-09] (Avira Operations GmbH & Co. KG) R2 mbamchameleon; C:\Windows\system32\drivers\mbamchameleon.sys [74456 2014-05-12] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2014-05-12] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2014-05-12] (Malwarebytes Corporation) R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2014-05-09] (Avira GmbH) R3 yukonw7; C:\Windows\System32\DRIVERS\yk62x86.sys [315392 2009-09-28] () S3 VGPU; System32\drivers\rdvgkmd.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-27 16:54 - 2014-09-27 16:57 - 00009775 _____ () C:\Users\Snooker\Desktop\FRST.txt 2014-09-27 16:54 - 2014-09-27 16:55 - 00000000 ____D () C:\FRST 2014-09-27 16:52 - 2014-09-27 16:52 - 01682416 _____ (Malwarebytes Corporation) C:\Users\Snooker\Downloads\mbam-check-2.1.1.1001.exe 2014-09-27 16:52 - 2014-09-27 16:52 - 01682416 _____ (Malwarebytes Corporation) C:\Users\Snooker\Desktop\mbam-check-2.1.1.1001.exe 2014-09-27 16:52 - 2014-09-27 16:51 - 01100288 _____ (Farbar) C:\Users\Snooker\Desktop\FRST.exe 2014-09-27 16:51 - 2014-09-27 16:51 - 01100288 _____ (Farbar) C:\Users\Snooker\Downloads\FRST.exe 2014-09-27 10:35 - 2014-09-27 10:58 - 00000000 ____D () C:\Users\SONY\AppData\Roaming\Jaangle 2014-09-27 10:08 - 2014-09-07 12:35 - 00006123 _____ () C:\Windows\system32\net.conf.old 2014-09-26 23:34 - 2014-09-15 09:06 - 00231568 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2014-09-26 23:32 - 2014-09-09 23:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-09-26 23:26 - 2014-09-26 23:26 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-09-26 23:25 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-09-22 19:11 - 2014-09-22 19:11 - 00000000 ____D () C:\Users\SONY\AppData\Local\Apps\2.0 2014-09-15 12:45 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-09-15 12:45 - 2014-08-18 23:57 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-09-15 12:45 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-09-15 12:45 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-09-15 12:45 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-09-15 12:45 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-09-15 12:45 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-09-15 12:45 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-09-15 12:45 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-09-15 12:44 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-09-15 12:44 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-09-15 12:44 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-09-15 12:44 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-09-15 12:44 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-09-15 12:44 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-09-15 12:44 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-09-15 12:44 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-09-15 12:44 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-09-15 12:44 - 2014-08-18 23:36 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-09-15 12:44 - 2014-08-18 23:30 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-09-15 12:44 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-09-15 12:44 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-09-15 12:44 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-09-15 12:44 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-09-15 12:44 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-09-15 12:44 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-09-15 12:44 - 2014-08-18 23:08 - 00673792 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-09-15 12:44 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-09-15 12:44 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-09-15 12:44 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-09-15 12:43 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-09-15 12:32 - 2014-07-07 03:40 - 01059840 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-09-15 12:32 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-09-15 12:31 - 2014-09-05 03:52 - 00445952 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-09-15 12:31 - 2014-09-05 03:47 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-09-15 12:31 - 2014-08-23 03:46 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-09-15 12:31 - 2014-08-23 02:42 - 02352640 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-09-15 12:31 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2014-09-15 12:31 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-09-15 11:07 - 2014-09-15 11:07 - 00000000 ____D () C:\Users\SONY\AppData\Roaming\Hard Disk Sentinel 2014-08-31 08:52 - 2014-08-31 08:53 - 00009216 ___SH () C:\Users\Snooker\Thumbs.db 2014-08-30 08:28 - 2014-08-30 08:28 - 00000000 ____D () C:\Users\Snooker\Documents\Adobe 2014-08-29 08:49 - 2014-08-29 08:49 - 00000000 ____D () C:\Users\Snooker\dwhelper 2014-08-28 13:39 - 2014-09-04 02:13 - 00000000 ____D () C:\Program Files\bluescreenview ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-27 16:49 - 2009-07-14 06:34 - 00027616 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-09-27 16:49 - 2009-07-14 06:34 - 00027616 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-09-27 16:45 - 2014-06-04 21:41 - 01506891 _____ () C:\Windows\WindowsUpdate.log 2014-09-27 16:41 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-09-27 16:41 - 2009-07-14 06:39 - 00036595 _____ () C:\Windows\setupact.log 2014-09-27 10:09 - 2014-06-08 15:16 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-09-27 09:27 - 2014-06-04 22:32 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-09-27 01:24 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\de-DE 2014-09-22 20:45 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-09-22 18:23 - 2014-06-29 23:15 - 00000000 ____D () C:\Users\SONY\AppData\Roaming\vlc 2014-09-22 17:27 - 2014-06-29 22:22 - 00000000 ___RD () C:\Users\Snooker\AppData\Roaming\Kiste 2014-09-22 17:14 - 2014-06-04 23:27 - 00000000 ____D () C:\Users\Snooker 2014-09-20 13:20 - 2010-11-20 23:01 - 01618320 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-09-15 13:09 - 2014-06-08 15:16 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2014-09-15 13:09 - 2014-06-08 15:16 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2014-09-15 12:50 - 2009-07-14 06:33 - 01631176 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-09-15 12:43 - 2014-06-08 15:29 - 00000000 ____D () C:\Windows\system32\MRT 2014-09-15 12:39 - 2014-06-08 15:29 - 98758480 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-09-15 12:38 - 2014-06-08 16:48 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-09-04 02:42 - 2014-08-27 12:45 - 00000000 ____D () C:\Windows\Minidump 2014-09-04 02:42 - 2014-08-27 00:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZDF 2014-09-04 02:42 - 2014-08-27 00:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\n-tv plus 2014-09-04 02:42 - 2014-08-22 21:42 - 00000000 ____D () C:\Users\Snooker\AppData\Roaming\vlc 2014-09-04 02:42 - 2014-08-21 19:49 - 00000000 ____D () C:\Users\Administrator 2014-09-04 02:42 - 2014-08-18 20:14 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware 2014-09-04 02:42 - 2014-07-23 13:38 - 00000000 ____D () C:\Users\Snooker\AppData\Roaming\IrfanView 2014-09-04 02:42 - 2014-06-30 14:10 - 00000000 ____D () C:\Users\SONY\AppData\Roaming\IrfanView 2014-09-04 02:42 - 2009-07-14 06:52 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-09-04 02:42 - 2009-07-14 04:37 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2014-09-04 02:42 - 2009-07-14 04:37 - 00000000 ___HD () C:\Windows\system32\GroupPolicy 2014-09-04 02:42 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\wfp 2014-09-04 02:42 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\security 2014-09-04 02:42 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\registration 2014-09-04 02:13 - 2010-11-21 02:46 - 00000000 ___RD () C:\Users\Public\Recorded TV 2014-09-04 02:10 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\LogFiles 2014-09-03 16:54 - 2014-06-04 21:47 - 00000000 ____D () C:\Users\SONY 2014-08-31 08:05 - 2014-08-20 13:01 - 00000000 ____D () C:\Users\SONY\AppData\Local\Adobe 2014-08-30 08:32 - 2014-06-30 17:14 - 00000000 ____D () C:\Users\Snooker\AppData\Roaming\Adobe Some content of TEMP: ==================== C:\Users\Snooker\AppData\Local\Temp\avgnt.exe C:\Users\SONY\AppData\Local\Temp\avgnt.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\explorer.exe => File is digitally signed C:\Windows\system32\winlogon.exe => File is digitally signed C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll => File is digitally signed C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-08-27 19:25 ==================== End Of Log ============================ Here is Addition.txt: Additional scan result of Farbar Recovery Scan Tool (x86) Version: 27-09-2014 Ran by SONY at 2014-09-27 16:57:59 Running from C:\Users\Snooker\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Anchor Service CS3 (Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Asset Services CS3 (Version: 3 - Adobe Systems Incorporated) Hidden Adobe Bridge CS3 (Version: 2 - Adobe Systems Incorporated) Hidden Adobe Bridge Start Meeting (Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Camera Raw 4.0 (Version: 4.0 - Adobe Systems Incorporated) Hidden Adobe CMaps (Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Color - Photoshop Specific (Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Color Common Settings (Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Color EU Recommended Settings (Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Color JA Extra Settings (Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Color NA Extra Settings (Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Default Language CS3 (Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Device Central CS3 (Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe ExtendScript Toolkit 2 (Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Flash Player 15 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 15.0.0.152 - Adobe Systems Incorporated) Adobe Fonts All (Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Help Viewer CS3 (Version: 1 - Adobe Systems Incorporated) Hidden Adobe Linguistics CS3 (Version: 3.0.0 - Adobe Systems Incorporated) Hidden Adobe PDF Library Files (Version: 8.0 - Adobe Systems Incorporated) Hidden Adobe Photoshop CS3 (HKLM\...\Adobe_5f143314a5d434c8511097393d17397) (Version: 10.0 - Adobe Systems Incorporated) Adobe Photoshop CS3 (Version: 10 - Adobe Systems Incorporated) Hidden Adobe Premiere Pro CS3 (HKLM\...\Adobe_32fdd767b4383606e8168e834af5d90) (Version: 3 - Adobe Systems Incorporated) Adobe Premiere Pro CS3 (Version: 3 - Adobe Systems Incorporated) Hidden Adobe Premiere Pro CS3 Functional Content (Version: 8 - Adobe Systems Incorporated) Hidden Adobe Setup (Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Stock Photos CS3 (Version: 1.5 - Adobe Systems Incorporated) Hidden Adobe Type Support (Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Update Manager CS3 (Version: 5.1.0 - Adobe Systems Incorporated) Hidden Adobe Version Cue CS3 Client (Version: 3 - Adobe Systems Incorporated) Hidden Adobe WinSoft Linguistics Plugin (Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe XMP DVA Panels CS3 (Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe XMP Panels CS3 (Version: 1.0 - Adobe Systems Incorporated) Hidden Apple Application Support (HKLM\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Avira Free Antivirus (HKLM\...\Avira AntiVir Desktop) (Version: 14.0.6.570 - Avira) BlueBloxx 1.0 (HKLM\...\01202051973_is1) (Version: 1.0 - ) CINEMA 4D 13.016 (HKLM\...\MAXONFB05E576) (Version: 13.016 - MAXON Computer GmbH) EVEREST Ultimate Edition v5.02 (HKLM\...\EVEREST Ultimate Edition_is1) (Version: 5.02 - Lavalys, Inc.) Google Earth (HKLM\...\{4286E640-B5FB-11DF-AC4B-005056C00008}) (Version: 5.2.1.1588 - Google) IrfanView (remove only) (HKLM\...\IrfanView) (Version: 4.37 - Irfan Skiljan) Jaangle music management (HKLM\...\Jaangle music management) (Version: - ) Java 7 Update 67 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle) Java Auto Updater (Version: 2.1.67.1 - Oracle, Inc.) Hidden Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Office XP Professional mit FrontPage (HKLM\...\{90280407-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.2701.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Mozilla Firefox 32.0.3 (x86 de) (HKLM\...\Mozilla Firefox 32.0.3 (x86 de)) (Version: 32.0.3 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) NET Render Client 13.016 (HKLM\...\MAXON8C66D661) (Version: 13.016 - MAXON Computer GmbH) n-tv plus (HKLM\...\{FC1B9FBC-5550-433F-AFEC-2EC930C14EBB}) (Version: 7.4.3.0 - n-tv Nachrichtenfernsehen GmbH) PDF Settings (Version: 1.0 - Adobe Systems Incorporated) Hidden PDF-Viewer (HKLM\...\{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1) (Version: 2.5.308.2 - Tracker Software Products Ltd) PopGameBox (HKLM\...\{B5FE5F5A-94DB-44DA-964E-FC2A06A0FB58}_is1) (Version: V1.0 - PopGameBox Soft, Inc.) QuickTime 7 (HKLM\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.) Spybot - Search & Destroy (HKLM\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) tvBuddy (HKLM\...\{7CFA2057-060E-40E1-B185-38197D2CA9A1}) (Version: 2.0.0 - MEKmedia GmbH) VLC media player 2.1.0 (HKLM\...\VLC media player) (Version: 2.1.0 - VideoLAN) ZDFmediathek Version 2.1.6 (HKLM\...\ZDFmediathek_is1) (Version: - ZDF) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 26-08-2014 22:04:30 n-tv plus wird installiert 28-08-2014 07:56:26 Windows Update 15-09-2014 10:32:29 Windows Update 26-09-2014 21:32:11 Windows Update 26-09-2014 21:39:18 Windows Update 26-09-2014 23:21:05 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {9196C95B-EA61-4449-8E65-18DF1203E46A} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks Task: {BD3C0D58-9346-4D12-9D3E-CA85DCF670B3} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {BF866A67-E354-4016-B109-39C12F4AD332} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-15] (Adobe Systems Incorporated) Task: {F29A472C-3F96-4158-83BC-8628BE175089} - System32\Tasks\{D07D5C3F-90B3-4C92-A581-E9529CC35C50} => C:\Users\Snooker\Pictures\Icon Library\Icolib5_shar.exe [2003-08-09] () (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= 2014-08-18 17:15 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2014-08-18 17:15 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl 2014-08-18 17:15 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2014-08-18 17:15 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files\Spybot - Search & Destroy 2\sqlite3.dll 2014-08-18 17:15 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2014-09-26 23:26 - 2014-09-26 23:26 - 03715184 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) MSCONFIG\Services: bthserv => 3 MSCONFIG\Services: TabletInputService => 3 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk => C:\Windows\pss\Microsoft Office.lnk.CommonStartup MSCONFIG\startupreg: Avira Systray => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe MSCONFIG\startupreg: SDTray => "C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe" ========================= Accounts: ========================== Administrator (S-1-5-21-4061607063-2095909994-713107385-500 - Administrator - Disabled) => C:\Users\Administrator Guest (S-1-5-21-4061607063-2095909994-713107385-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-4061607063-2095909994-713107385-1003 - Limited - Enabled) Snooker (S-1-5-21-4061607063-2095909994-713107385-1001 - Limited - Enabled) => C:\Users\Snooker SONY (S-1-5-21-4061607063-2095909994-713107385-1000 - Administrator - Enabled) => C:\Users\SONY ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (09/27/2014 04:42:14 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/27/2014 04:41:48 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: mbamservice.exe, Version: 3.0.2.0, Zeitstempel: 0x5318d363 Name des fehlerhaften Moduls: mbamservice.exe, Version: 3.0.2.0, Zeitstempel: 0x5318d363 Ausnahmecode: 0x40000015 Fehleroffset: 0x0007da8a ID des fehlerhaften Prozesses: 0x640 Startzeit der fehlerhaften Anwendung: 0xmbamservice.exe0 Pfad der fehlerhaften Anwendung: mbamservice.exe1 Pfad des fehlerhaften Moduls: mbamservice.exe2 Berichtskennung: mbamservice.exe3 Error: (09/27/2014 10:17:18 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: mbam.exe, Version: 1.0.0.532, Zeitstempel: 0x53518532 Name des fehlerhaften Moduls: MSVCR100.dll, Version: 10.0.40219.325, Zeitstempel: 0x4df2be1e Ausnahmecode: 0x40000015 Fehleroffset: 0x0008d6fd ID des fehlerhaften Prozesses: 0x868 Startzeit der fehlerhaften Anwendung: 0xmbam.exe0 Pfad der fehlerhaften Anwendung: mbam.exe1 Pfad des fehlerhaften Moduls: mbam.exe2 Berichtskennung: mbam.exe3 Error: (09/27/2014 10:13:55 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/27/2014 10:13:04 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: mbamservice.exe, Version: 3.0.2.0, Zeitstempel: 0x5318d363 Name des fehlerhaften Moduls: mbamservice.exe, Version: 3.0.2.0, Zeitstempel: 0x5318d363 Ausnahmecode: 0x40000015 Fehleroffset: 0x0007da8a ID des fehlerhaften Prozesses: 0x628 Startzeit der fehlerhaften Anwendung: 0xmbamservice.exe0 Pfad der fehlerhaften Anwendung: mbamservice.exe1 Pfad des fehlerhaften Moduls: mbamservice.exe2 Berichtskennung: mbamservice.exe3 Error: (09/27/2014 09:28:32 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/27/2014 09:27:41 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: mbamservice.exe, Version: 3.0.2.0, Zeitstempel: 0x5318d363 Name des fehlerhaften Moduls: mbamservice.exe, Version: 3.0.2.0, Zeitstempel: 0x5318d363 Ausnahmecode: 0x40000015 Fehleroffset: 0x0007da8a ID des fehlerhaften Prozesses: 0x624 Startzeit der fehlerhaften Anwendung: 0xmbamservice.exe0 Pfad der fehlerhaften Anwendung: mbamservice.exe1 Pfad des fehlerhaften Moduls: mbamservice.exe2 Berichtskennung: mbamservice.exe3 Error: (09/27/2014 00:36:07 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: mbam.exe, Version: 1.0.0.532, Zeitstempel: 0x53518532 Name des fehlerhaften Moduls: MSVCR100.dll, Version: 10.0.40219.325, Zeitstempel: 0x4df2be1e Ausnahmecode: 0x40000015 Fehleroffset: 0x0008d6fd ID des fehlerhaften Prozesses: 0xe50 Startzeit der fehlerhaften Anwendung: 0xmbam.exe0 Pfad der fehlerhaften Anwendung: mbam.exe1 Pfad des fehlerhaften Moduls: mbam.exe2 Berichtskennung: mbam.exe3 Error: (09/27/2014 00:13:27 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: mbam.exe, Version: 1.0.0.532, Zeitstempel: 0x53518532 Name des fehlerhaften Moduls: MSVCR100.dll, Version: 10.0.40219.325, Zeitstempel: 0x4df2be1e Ausnahmecode: 0x40000015 Fehleroffset: 0x0008d6fd ID des fehlerhaften Prozesses: 0xfac Startzeit der fehlerhaften Anwendung: 0xmbam.exe0 Pfad der fehlerhaften Anwendung: mbam.exe1 Pfad des fehlerhaften Moduls: mbam.exe2 Berichtskennung: mbam.exe3 Error: (09/26/2014 11:15:01 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (09/27/2014 04:42:25 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "MBAMService" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (09/27/2014 04:41:03 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT-AUTORITÄT) Description: Einige Funktionen zur Energieverwaltung im Leistungsstatus wurden im Prozessor aufgrund eines bekannten Firmwareproblems deaktiviert. Wenden Sie sich an den Computerhersteller, um aktualisierte Firmware zu erhalten. Error: (09/27/2014 10:14:32 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (09/27/2014 10:14:32 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht. Error: (09/27/2014 10:13:55 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "MBAMService" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (09/27/2014 10:13:39 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (09/27/2014 10:13:39 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht. Error: (09/27/2014 10:12:18 AM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT-AUTORITÄT) Description: Einige Funktionen zur Energieverwaltung im Leistungsstatus wurden im Prozessor aufgrund eines bekannten Firmwareproblems deaktiviert. Wenden Sie sich an den Computerhersteller, um aktualisierte Firmware zu erhalten. Error: (09/27/2014 09:28:33 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "MBAMService" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (09/27/2014 09:26:55 AM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT-AUTORITÄT) Description: Einige Funktionen zur Energieverwaltung im Leistungsstatus wurden im Prozessor aufgrund eines bekannten Firmwareproblems deaktiviert. Wenden Sie sich an den Computerhersteller, um aktualisierte Firmware zu erhalten. Microsoft Office Sessions: ========================= Error: (09/27/2014 04:42:14 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/27/2014 04:41:48 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: mbamservice.exe3.0.2.05318d363mbamservice.exe3.0.2.05318d363400000150007da8a64001cfda6129ae301eC:\Program Files\Malwarebytes Anti-Malware\mbamservice.exeC:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe68bb9800-4654-11e4-af97-000ea62df73d Error: (09/27/2014 10:17:18 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: mbam.exe1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd86801cfda2b72f62d7eC:\Program Files\Malwarebytes Anti-Malware\mbam.exeC:\Program Files\Malwarebytes Anti-Malware\MSVCR100.dllb1c0d388-461e-11e4-87d4-000ea62df73d Error: (09/27/2014 10:13:55 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/27/2014 10:13:04 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: mbamservice.exe3.0.2.05318d363mbamservice.exe3.0.2.05318d363400000150007da8a62801cfda2adb3beab7C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exeC:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe1aa3ebf5-461e-11e4-87d4-000ea62df73d Error: (09/27/2014 09:28:32 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/27/2014 09:27:41 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: mbamservice.exe3.0.2.05318d363mbamservice.exe3.0.2.05318d363400000150007da8a62401cfda2484448669C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exeC:\Program Files\Malwarebytes Anti-Malware\mbamservice.exec3413dd5-4617-11e4-9054-000ea62df73d Error: (09/27/2014 00:36:07 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: mbam.exe1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fde5001cfd9da424f9973C:\Program Files\Malwarebytes Anti-Malware\mbam.exeC:\Program Files\Malwarebytes Anti-Malware\MSVCR100.dll81393e0f-45cd-11e4-afda-000ea62df73d Error: (09/27/2014 00:13:27 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: mbam.exe1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fdfac01cfd9d716f1c7c4C:\Program Files\Malwarebytes Anti-Malware\mbam.exeC:\Program Files\Malwarebytes Anti-Malware\MSVCR100.dll56503f9a-45ca-11e4-afda-000ea62df73d Error: (09/26/2014 11:15:01 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Processor: Intel® Pentium® 4 CPU 3.00GHz Percentage of memory in use: 54% Total physical RAM: 1534.8 MB Available physical RAM: 691.28 MB Total Pagefile: 3069.61 MB Available Pagefile: 1771.26 MB Total Virtual: 2047.88 MB Available Virtual: 1896.96 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:114.4 GB) (Free:67.81 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 114.5 GB) (Disk ID: 9F0FD65C) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=114.4 GB) - (Type=07 NTFS) ==================== End Of Log ============================ I ran mbam-check-2.1.1.1001.exe as been told but the message came:
  5. Hello forum, I have a new computer with Windows 7 ultimate 32 bit. Right after installing Windows I downloaded Malwarebytes from the malwarebytes.org website and installed it. This was on August 18th. I have never been able to run the program. I did all the steps as told in the sticky thread "What to do: Runtime error - database stuck on 2014.03.04 - program 'stopped working' error", because that's the message I get everytime. But it did not help. The problem has not changed, I get the same message again and again: Is there a solution at all?
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.