Rechner reagiert seit einiger Zeit sehr langsam |
||
---|---|---|
#0
| ||
25.09.2009, 15:31
Moderator
Beiträge: 5694 |
||
|
||
25.09.2009, 15:40
Member
Themenstarter Beiträge: 16 |
||
|
||
25.09.2009, 15:54
Member
Themenstarter Beiträge: 16 |
#18
Hallo
Start --> Systemsteuerung --> Leistung und Wartung --> System --> Reiter: Erweitert --> Bei Starten und Wiederherstellen auf Einstellung Finde ich hier nicht.er macht eben 57 Updates...Gleich nach dem Start mfG Roland |
|
|
||
25.09.2009, 15:58
Member
Themenstarter Beiträge: 16 |
#19
Hz
Ich bin jetyt im 64 bit und habs glaube ich gefunden. [boot loader] timeout=30 default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS [operating systems] multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Windows XP Professional x64 Edition" /noexecute=optin /fastdetect /usepmtimer multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /NOEXECUTE=OPTIN /FASTDETECT /USEPMTIMER /TUTAG=QLHRHS /KERNEL=TUKERNEL.EXE multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional (TuneUp Backup)" /NOEXECUTE=OPTIN /FASTDETECT /USEPMTIMER /TUTAG=QLHRHS-BAK Ist das richtig |
|
|
||
25.09.2009, 16:03
Moderator
Beiträge: 5694 |
#20
Kannst Du denn so Update machen? Würde Dir aber empfehlen das 32Bit Windows zu entfernen.
Werde das Thema verschieben. Dort kennen sich die User besser damit aus. Gruss Swiss |
|
|
||
25.09.2009, 16:10
Member
Themenstarter Beiträge: 16 |
#21
Hi
Updaten hat alles problemlos geklappt unter 64 bit Brauche die 32 er aber für meine Programme die unter 64 bit nicht laufen mfG Roland |
|
|
||
25.09.2009, 16:14
Moderator
Beiträge: 5694 |
#22
Na dann lass es mal drauf Und Geschwindigkeit vermutlich immer noch schlecht? Oder hat es was gebracht?
Mit Secunia auch noch geupdatet? Gruss Swiss |
|
|
||
25.09.2009, 16:17
Member
Themenstarter Beiträge: 16 |
#23
hallo
Also Mit dem Secunia habe ich alles geupdatet unter 32 bit.problemlos. 64 bit hat auch alle windowsupdates gemacht. Also irgendwelche Schädlinge die das System verlangsamen sind es wohl dann nicht? mfG Roland |
|
|
||
25.09.2009, 16:22
Moderator
Beiträge: 5694 |
#24
ALso MBAM hat nicht gefunden auch das HJT Log ist normal. Was meint GMER?
Du kannst hier noch Onlinescan machen und schauen was gefunden wird: http://virus-protect.org/onlinescan.html Gruss Swis |
|
|
||
25.09.2009, 18:06
Member
Themenstarter Beiträge: 16 |
#25
hi
Hier das Log von GMER GMER 1.0.15.15087 - http://www.gmer.net Rootkit scan 2009-09-25 17:55:26 Windows 5.1.2600 Service Pack 2 Running: po3iiubl.exe; Driver: C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\kxtdipow.sys ---- System - GMER 1.0.15 ---- SSDT Vax347b.sys (Plug and Play BIOS Extension/ ) ZwClose [0xF747CC58] SSDT B8C36656 ZwCreateKey SSDT Vax347b.sys (Plug and Play BIOS Extension/ ) ZwCreatePagingFile [0xF7470C70] SSDT B8C3664C ZwCreateThread SSDT B8C3665B ZwDeleteKey SSDT B8C36665 ZwDeleteValueKey SSDT Vax347b.sys (Plug and Play BIOS Extension/ ) ZwEnumerateKey [0xF74714FE] SSDT Vax347b.sys (Plug and Play BIOS Extension/ ) ZwEnumerateValueKey [0xF747CD50] SSDT B8C3666A ZwLoadKey SSDT d346bus.sys (PnP BIOS Extension/ ) ZwOpenFile [0xF7497A60] SSDT Vax347b.sys (Plug and Play BIOS Extension/ ) ZwOpenKey [0xF747CBD4] SSDT B8C36638 ZwOpenProcess SSDT B8C3663D ZwOpenThread SSDT Vax347b.sys (Plug and Play BIOS Extension/ ) ZwQueryKey [0xF747151E] SSDT Vax347b.sys (Plug and Play BIOS Extension/ ) ZwQueryValueKey [0xF747CCA6] SSDT B8C36674 ZwReplaceKey SSDT B8C3666F ZwRestoreKey SSDT Vax347b.sys (Plug and Play BIOS Extension/ ) ZwSetSystemPowerState [0xF747C4F0] SSDT B8C36660 ZwSetValueKey SSDT B8C36647 ZwTerminateProcess INT 0x63 ? 8A9C5BF8 INT 0x63 ? 8A9C5BF8 INT 0x63 ? 8A89AF00 INT 0x63 ? 8A89AF00 INT 0x63 ? 8A9C5BF8 INT 0xB4 ? 8A89AF00 INT 0xB4 ? 8A89AF00 INT 0xB4 ? 8A89AF00 ---- Kernel code sections - GMER 1.0.15 ---- ? spyl.sys Das System kann die angegebene Datei nicht finden. ! .text USBPORT.SYS!DllUnload B9E9062C 5 Bytes JMP 8A89A4E0 ---- User code sections - GMER 1.0.15 ---- .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] kernel32.dll!LoadResource 7C809FC5 7 Bytes JMP 28001E20 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] kernel32.dll!FindResourceExW 7C80AC98 7 Bytes JMP 28001C60 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] kernel32.dll!FindResourceW 7C80BBDE 7 Bytes JMP 28001BE0 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] kernel32.dll!SizeofResource 7C80BC79 7 Bytes JMP 28001EE0 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] kernel32.dll!FindResourceA 7C80BE99 7 Bytes JMP 28001CF0 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] kernel32.dll!LockResource 7C80CCA7 5 Bytes JMP 28001F50 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] kernel32.dll!CreateEventA 7C8308C9 5 Bytes JMP 28001840 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] kernel32.dll!FindResourceExA 7C835FC0 7 Bytes JMP 28001D80 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] ADVAPI32.dll!CryptDeriveKey 77DBA1A5 7 Bytes JMP 28001000 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] ADVAPI32.dll!CryptDecrypt 77DBA2D1 7 Bytes JMP 28001060 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] USER32.dll!GetWindowLongW 7E3688A6 7 Bytes JMP 28006B00 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] USER32.dll!PeekMessageW 7E36929B 5 Bytes JMP 280046C0 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] USER32.dll!CreateWindowExW 7E36FC25 5 Bytes JMP 28003CF0 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] USER32.dll!SetWindowRgn 7E36FFB2 7 Bytes JMP 28005FE0 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] USER32.dll!LoadIconW 7E370894 5 Bytes JMP 28006960 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] USER32.dll!LoadImageW 7E372CFE 5 Bytes JMP 28006770 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] USER32.dll!CreateDialogParamW 7E377D4F 5 Bytes JMP 28006120 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] USER32.dll!SetWindowPlacement 7E37D84C 5 Bytes JMP 28005EA0 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] USER32.dll!MessageBoxIndirectW 7E3B62AB 5 Bytes JMP 28006310 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] USER32.dll!TrackPopupMenuEx 7E3BCD28 5 Bytes JMP 28004FA0 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] WS2_32.dll!send 71A1428A 5 Bytes JMP 2800B770 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] WS2_32.dll!WSARecv 71A14318 5 Bytes JMP 2800B550 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] WS2_32.dll!recv 71A1615A 5 Bytes JMP 2800B3B0 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] WS2_32.dll!WSASend 71A16233 5 Bytes JMP 2800B950 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] WS2_32.dll!closesocket 71A19639 5 Bytes JMP 2800BB90 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] SHELL32.dll!Shell_NotifyIconW 7E6D1BEA 5 Bytes JMP 28003440 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] ole32.dll!CoInitializeEx 774CEF6B 5 Bytes JMP 28002260 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] ole32.dll!CoCreateInstance 774CFAC3 5 Bytes JMP 28002600 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] ole32.dll!CoRegisterClassObject 774E8720 5 Bytes JMP 28002360 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] WININET.dll!InternetReadFile 408C654B 5 Bytes JMP 2800A3B0 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] WININET.dll!InternetCloseHandle 408C9088 5 Bytes JMP 2800A560 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] WININET.dll!HttpOpenRequestA 408CD508 5 Bytes JMP 2800A220 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) .text C:\Programme\Windows Live\Messenger\msnmsgr.exe[616] WININET.dll!HttpSendRequestA 408DEE81 5 Bytes JMP 2800A490 C:\Programme\Messenger Plus! Live\MsgPlusLive.dll (Messenger Plus! Live Add-On/Patchou) ---- Devices - GMER 1.0.15 ---- Device \FileSystem\Ntfs \Ntfs 8A9C31F8 Device \Driver\NetBT \Device\NetBT_Tcpip_{52522DAE-4300-475D-AAAA-8B5595F2E94B} 89C431F8 Device \Driver\usbohci \Device\USBPDO-0 8A745500 Device \Driver\dmio \Device\DmControl\DmIoDaemon 8A9511F8 Device \Driver\dmio \Device\DmControl\DmConfig 8A9511F8 Device \Driver\dmio \Device\DmControl\DmPnP 8A9511F8 Device \Driver\dmio \Device\DmControl\DmInfo 8A9511F8 Device \Driver\usbehci \Device\USBPDO-1 8A7511F8 Device \Driver\usbohci \Device\USBPDO-2 8A745500 Device \Driver\usbehci \Device\USBPDO-3 8A7511F8 Device \Driver\Ftdisk \Device\HarddiskVolume1 8A9C61F8 Device \Driver\Cdrom \Device\CdRom0 89F02BA8 Device \Driver\Ftdisk \Device\HarddiskVolume2 8A9C61F8 Device \FileSystem\Rdbss \Device\FsWrap 899E2D38 Device \Driver\Cdrom \Device\CdRom1 89F02BA8 Device \Driver\Ftdisk \Device\HarddiskVolume3 8A9C61F8 Device \Driver\atapi \Device\Ide\IdeDeviceP3T0L0-11 89F04308 Device \Driver\atapi \Device\Ide\IdePort0 89F04308 Device \Driver\atapi \Device\Ide\IdePort1 89F04308 Device \Driver\atapi \Device\Ide\IdePort2 89F04308 Device \Driver\atapi \Device\Ide\IdePort3 89F04308 Device \Driver\atapi \Device\Ide\IdeDeviceP2T1L0-5 89F04308 Device \Driver\atapi \Device\Ide\IdeDeviceP3T1L0-19 89F04308 Device \Driver\Cdrom \Device\CdRom2 89F02BA8 Device \Driver\Ftdisk \Device\HarddiskVolume4 8A9C61F8 Device \Driver\Cdrom \Device\CdRom3 89F02BA8 Device \Driver\Ftdisk \Device\HarddiskVolume5 8A9C61F8 Device \Driver\mcdbus \Device\00000076 89F5A918 Device \Driver\NetBT \Device\NetBt_Wins_Export 89C431F8 Device \Driver\NetBT \Device\NetbiosSmb 89C431F8 Device \FileSystem\Srv \Device\LanmanServer 89FF3680 Device \Driver\mcdbus \Device\mcdbus 89F5A918 Device \Driver\usbohci \Device\USBFDO-0 8A745500 Device \Driver\usbehci \Device\USBFDO-1 8A7511F8 Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver 899DF1F8 Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver 8A02CC08 Device \Driver\usbohci \Device\USBFDO-2 8A745500 Device \FileSystem\MRxSmb \Device\LanmanRedirector 899DF1F8 Device \FileSystem\MRxSmb \Device\LanmanRedirector 8A02CC08 Device \Driver\usbehci \Device\USBFDO-3 8A7511F8 Device \FileSystem\Npfs \Device\NamedPipe 8A72D270 Device \Driver\Ftdisk \Device\FtControl 8A9C61F8 Device \FileSystem\Msfs \Device\Mailslot 8A7266F8 Device \Driver\d346prt \Device\Scsi\d346prt1 8947F850 Device \Driver\Vax347s \Device\Scsi\Vax347s1 89F03D68 Device \Driver\d346prt \Device\Scsi\d346prt1Port6Path0Target0Lun0 8947F850 Device \Driver\Vax347s \Device\Scsi\Vax347s1Port4Path0Target0Lun0 89F03D68 Device \FileSystem\Fs_Rec \FileSystem\UdfsCdRomRecognizer 89F2A298 Device \FileSystem\Fs_Rec \FileSystem\FatCdRomRecognizer 89F2A298 Device \FileSystem\Fs_Rec \FileSystem\CdfsRecognizer 89F2A298 Device \FileSystem\Fs_Rec \FileSystem\FatDiskRecognizer 89F2A298 Device \FileSystem\Fs_Rec \FileSystem\UdfsDiskRecognizer 89F2A298 Device \FileSystem\Cdfs \Cdfs 8A089380 Device \FileSystem\Cdfs \Cdfs 8A8773F8 ---- Modules - GMER 1.0.15 ---- Module _________ BA703000-BA71B000 (98304 bytes) ---- Registry - GMER 1.0.15 ---- Reg HKLM\SYSTEM\CurrentControlSet\Services\d346prt\Cfg\0Jf40 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s1 771343423 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s2 285507792 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@h0 1 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 0 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0xBD 0x2F 0xE0 0x5E ... Reg HKLM\SYSTEM\CurrentControlSet\Services\Vax347s\Config\jdgg40 Reg HKLM\SYSTEM\CurrentControlSet\Services\Vax347s\Config\jdgg40@ujdew 0x20 0x02 0x00 0x00 ... Reg HKLM\SYSTEM\CurrentControlSet\Services\Vax347s\Config\jdgg40@ljej40 0x26 0x62 0xA6 0x5F ... Reg HKLM\SYSTEM\CurrentControlSet\Services\Vax347s\Config\jdgg40@ljej41 0xFF 0x62 0xA6 0x5F ... Reg HKLM\SYSTEM\CurrentControlSet\Services\Vax347s\Config\jdgg40@ljej42 0xFF 0x62 0xA6 0x5F ... Reg HKLM\SYSTEM\CurrentControlSet\Services\Vax347s\Config\jdgg40@ljej43 0xFF 0x62 0xA6 0x5F ... Reg HKLM\SYSTEM\CurrentControlSet\Services\Vax347s\Config\jdgg40@ljej44 0xFF 0x62 0xA6 0x5F ... Reg HKLM\SYSTEM\CurrentControlSet\Services\Vax347s\Config\jdgg41 Reg HKLM\SYSTEM\CurrentControlSet\Services\Vax347s\Config\jdgg41@ujdew 0x20 0x02 0x00 0x00 ... Reg HKLM\SYSTEM\CurrentControlSet\Services\Vax347s\Config\jdgg41@ljej40 0x7B 0xC0 0xCD 0xFF ... Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4 (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 0 Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0xBD 0x2F 0xE0 0x5E ... Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{56CA5D3B-3002-4E7B-90FE-071D8FDF3814}@DisplayName DAEMON Tools Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E9F81423-211E-46B6-9AE0-38568BC5CF6F}@DisplayName Alcohol 120% Reg HKLM\SOFTWARE\Classes\Installer\Products\32418F9EE1126B64A90E8365B85CFCF6@ProductName Alcohol 120% Reg HKLM\SOFTWARE\Classes\Installer\Products\B3D5AC652003B7E409EF70D1F8FD8341@ProductName DAEMON Tools ---- EOF - GMER 1.0.15 ---- mfG Roland |
|
|
||
25.09.2009, 18:14
Moderator
Beiträge: 5694 |
||
|
||
25.09.2009, 18:18
Member
Themenstarter Beiträge: 16 |
||
|
||
26.09.2009, 10:46
Moderator
Beiträge: 5694 |
#28
Und immernoch Problem? Ist die Geschwindigkeit beim Seitenaufbau langsam oder allgemein das System?
Gruss Swiss |
|
|
||
Reiter: Erweitert --> Bei Starten und Wiederherstellen auf Einstellung --> bearbeiten (es öffnet sich das Notepad) --> Inhalt kopieren und hier einfügen.
Gruss Swiss