|
Plagegeister aller Art und deren Bekämpfung: HTTP Fehlercode 104Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
20.08.2013, 08:24 | #1 |
| HTTP Fehlercode 104 Seit gestern kann ich mich mit einem anderen Computer nicht mehr zu einer Webseite verbinden. Die Verbindung zum WLAN-Router steht, die Firewall ist nicht schuld dran, die Proxy-Einstellungen sind okay. Ich kann weder bei Chrome, noch beim Internet Explorer eine Seite laden. Bei Firefox kann ich keine neuen Seiten laden aber bereits geöffnete Seiten wieder aktualisieren. Wäre sehr dankbar, wenn mir jemand helfen kann! |
20.08.2013, 09:22 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | HTTP Fehlercode 104 Hallo,
__________________es gibt keinen HTTP-Statuscode 104. Welchen bitte meinst du?
__________________ |
20.08.2013, 11:50 | #3 |
| HTTP Fehlercode 104 Ich glaube es war CONNECTION_FAILED, bin mir aber nicht mehr ganz sicher. Hab jetzt wieder Internetverbindung durch einen Neustart, bin mir aber nicht sicher, ob ich nicht doch Malware oben habe, da es von ganz alleine passierte.
__________________ |
20.08.2013, 11:51 | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ | HTTP Fehlercode 104 Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden? Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520 Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten! Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht! Zudem bitte auch ein Log mit Farbars Tool machen: Scan mit Farbar's Recovery Scan Tool (FRST) Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ Logfiles bitte immer in CODE-Tags posten |
20.08.2013, 13:08 | #5 |
| HTTP Fehlercode 104FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 20-08-2013 03 Ran by ***** (administrator) on 20-08-2013 13:25:58 Running from C:\Users\*****\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (HP) C:\Program Files (x86)\HP SimplePass 2012\TrueSuiteService.exe (AMD) C:\Windows\system32\atiesrxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (Hewlett-Packard Company) C:\Windows\system32\Hpservice.exe (AMD) C:\Windows\system32\atieclxx.exe (Validity Sensors, Inc.) C:\Windows\system32\vcsFPService.exe (Microsoft Corporation) C:\Windows\system32\WLANExt.exe (Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Symantec Corporation) C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe (Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe (Native Instruments GmbH) C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe (PACE Anti-Piracy, Inc.) C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (PacketVideo) C:\Program Files (x86)\TwonkyMedia\twonkymediaserverwatchdog.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe () C:\Program Files (x86)\TwonkyMedia\TwonkyMediaServer.exe (Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe (Symantec Corporation) C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe (HP) C:\Program Files (x86)\HP SimplePass 2012\TouchControl.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Spotify Ltd) C:\Users\*****\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Microsoft Corporation) C:\Windows\System32\StikyNot.exe (PacketVideo) C:\Program Files (x86)\TwonkyMedia\twonkymediaserverconfig.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (CANON INC.) C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE (Desura Pty Ltd) C:\Program Files (x86)\Desura\desura.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (HP) C:\Program Files (x86)\HP SimplePass 2012\BioMonitor.exe (Desura Pty Ltd) C:\Program Files (x86)\Common Files\Desura\desura_service.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1128448 2011-03-11] (IDT, Inc.) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated) HKLM\...\Run: [IntelWireless] - C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1933584 2011-02-04] (Intel(R) Corporation) HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [10355200 2011-01-24] (Intel Corporation) HKCU\...\Run: [Desura] - C:\Program Files (x86)\Desura\desura.exe [2529096 2013-05-30] (Desura Pty Ltd) HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [19875432 2013-06-21] (Skype Technologies S.A.) HKCU\...\Run: [Steam] - C:\Program Files (x86)\Steam\steam.exe [1807272 2013-07-27] (Valve Corporation) HKCU\...\Run: [Spotify Web Helper] - C:\Users\*****\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1104384 2013-07-07] (Spotify Ltd) HKCU\...\Run: [RESTART_STICKY_NOTES] - C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation) HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2011-01-13] (Intel Corporation) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-03-15] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation) HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [586296 2010-11-09] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [HPOSD] - C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [318520 2011-01-27] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [IJNetworkScanUtility] - C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE [128352 2010-01-18] (CANON INC.) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-08-16] (Apple Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TwonkyMedia Tray Control.lnk ShortcutTarget: TwonkyMedia Tray Control.lnk -> C:\Program Files (x86)\TwonkyMedia\twonkymediaserverconfig.exe (PacketVideo) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://at.msn.com/?ocid=iehp StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: TrueSuite Website Log On - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2012\x64\IEBHO.dll (HP) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\IPS\IPSBHO.DLL (Symantec Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: SelectionLinks - {7825CFB6-490A-436B-9F26-4A7B5CFC01A9} - C:\Program Files (x86)\OApps\SelectionLinks.dll No File BHO-x32: TrueSuite Website Log On - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2012\IEBHO.dll (HP) BHO-x32: Norton Identity Protection - {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} - C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\coIEPlg.dll (Symantec Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM-x32 - Norton Identity Safe Toolbar - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\coIEPlg.dll (Symantec Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\af0dqc2b.default FF user.js: detected! => C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\af0dqc2b.default\user.js FF NewTab: user_pref("browser.newtab.url", ""); FF SelectedSearchEngine: Startpage HTTPS - Deutsch FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_202.dll () FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\af0dqc2b.default\searchplugins\duckduckgo-1.xml FF SearchPlugin: C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\af0dqc2b.default\searchplugins\duckduckgo.xml FF SearchPlugin: C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\af0dqc2b.default\searchplugins\startpage-https---deutsch.xml FF Extension: firefox - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\af0dqc2b.default\Extensions\firefox@ghostery.com.xpi FF Extension: No Name - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\af0dqc2b.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi FF Extension: No Name - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\af0dqc2b.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM-x32\...\Firefox\Extensions: [{F04D2D30-776C-4d02-8627-8E4385ECA58D}] C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2013.3.3.19\coFFPlgn\ FF Extension: Norton Identity Safe Toolbar - C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2013.3.3.19\coFFPlgn\ FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\IPSFFPlgn\ FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\IPSFFPlgn\ Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR RestoreOnStartup: "hxxp://blekko.com/ws/?source=5f97ddbe&tbp=homepage&u=103d4e7a000000000000ac7289791068", "hxxp://start.search.us.com/v/2/?guid={DA85700A-6B6A-491E-92FD-9F5944CE0117}&serpv=5" CHR DefaultSearchURL: (Startpage HTTPS - Deutsch) - https://startpage.com/do/search?query={searchTerms}&cat=web&pl=chrome&language=deutsch CHR DefaultSuggestURL: (Startpage HTTPS - Deutsch) - "suggest_url": "", CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll No File CHR Plugin: (VLC Web Plugin) - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () CHR Plugin: (npAPI Plugin) - C:\Users\*****\AppData\Local\TNT2\2.0.0.1534\npTNT2.dll No File CHR Plugin: (npAPI Ghost Plugin) - C:\Users\*****\AppData\Local\TNT2\2.0.0.1534\npTNT2ghost.dll No File CHR Extension: (YouTube Options) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdokagampppgbnjfdlkfpphniapiiifn\1.8.133_0 CHR Extension: (DuckDuckGo for Chrome) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpphkkgodbfncbcpgopijlfakfgmclao\42.5.8_0 CHR Extension: (Website Logon) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\debkinhcgejcbfgjiaalomcmkedjmiaa\1.0_0 CHR Extension: (PanicButton) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm\0.14.2.2_0 CHR Extension: (AdBlock) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.4_0 CHR Extension: (YouTube Options (Full Version)) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\ojmgeoecaejeajjegjmijbcifhkbmgjd\1.8.133_0 CHR HKLM-x32\...\Chrome\Extension: [ajdjdbbimplpmffaimajhilbnmciagkd] - C:\Program Files (x86)\OApps\chrome-sl.crx CHR HKLM-x32\...\Chrome\Extension: [debkinhcgejcbfgjiaalomcmkedjmiaa] - C:\Program Files (x86)\HP SimplePass 2012\tschrome.crx CHR HKLM-x32\...\Chrome\Extension: [nppllibpnmahfaklnpggkibhkapjkeob] - C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\Exts\Chrome.crx ==================== Services (Whitelisted) ================= R2 FPLService; C:\Program Files (x86)\HP SimplePass 2012\TrueSuiteService.exe [260424 2011-08-26] (HP) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-02-04] () R2 NAV; C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe [144368 2013-05-21] (Symantec Corporation) R2 NCO; C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe [144368 2013-05-21] (Symantec Corporation) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-07-14] () R2 TwonkyMedia; C:\Program Files (x86)\TwonkyMedia\twonkymediaserverwatchdog.exe [472664 2010-07-28] (PacketVideo) S2 BackupStack; C:\Program Files (x86)\MyPC Backup\BackupStack.exe [x] S2 HP Health Check Service; "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe" [x] R2 PaceLicenseDServices; "C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe" -u https://activation.paceap.com/InitiateActivation [x] ==================== Drivers (Whitelisted) ==================== R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\Definitions\BASHDefs\20130715.001\BHDrvx64.sys [1393240 2013-05-31] (Symantec Corporation) R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\Definitions\BASHDefs\20130715.001\BHDrvx64.sys [1393240 2013-05-31] (Symantec Corporation) R1 ccSet_NAV; C:\Windows\system32\drivers\NAVx64\1404000.028\ccSetx64.sys [169048 2013-04-16] (Symantec Corporation) R1 ccSet_NST; C:\Windows\system32\drivers\NSTx64\7DD04000.00A\ccSetx64.sys [169048 2013-04-16] (Symantec Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484952 2013-08-20] (Symantec Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484952 2013-08-20] (Symantec Corporation) U3 EraserUtilDrv11310; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11310.sys [139864 2013-08-20] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [138912 2013-06-29] (Symantec Corporation) R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\Definitions\IPSDefs\20130813.001\IDSvia64.sys [513184 2013-05-30] (Symantec Corporation) R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\Definitions\IPSDefs\20130813.001\IDSvia64.sys [513184 2013-05-30] (Symantec Corporation) S3 iLokDrvr; C:\Windows\System32\DRIVERS\iLokDrvr.sys [25808 2013-04-11] () R3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\Definitions\VirusDefs\20130819.023\ENG64.SYS [126040 2013-08-05] (Symantec Corporation) R3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\Definitions\VirusDefs\20130819.023\ENG64.SYS [126040 2013-08-05] (Symantec Corporation) R3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\Definitions\VirusDefs\20130819.023\EX64.SYS [2098776 2013-08-05] (Symantec Corporation) R3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\Definitions\VirusDefs\20130819.023\EX64.SYS [2098776 2013-08-05] (Symantec Corporation) R3 NIWinCDEmu; C:\Windows\System32\DRIVERS\NIWinCDEmu.sys [111696 2013-05-31] () R3 SRTSP; C:\Windows\System32\Drivers\NAVx64\1404000.028\SRTSP64.SYS [796760 2013-05-16] (Symantec Corporation) R1 SRTSPX; C:\Windows\system32\drivers\NAVx64\1404000.028\SRTSPX64.SYS [36952 2013-03-05] (Symantec Corporation) R0 SymDS; C:\Windows\System32\drivers\NAVx64\1404000.028\SYMDS64.SYS [493656 2013-05-21] (Symantec Corporation) R0 SymEFA; C:\Windows\System32\drivers\NAVx64\1404000.028\SYMEFA64.SYS [1139800 2013-05-23] (Symantec Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177312 2013-06-19] (Symantec Corporation) R1 SymIRON; C:\Windows\system32\drivers\NAVx64\1404000.028\Ironx64.SYS [224416 2013-03-05] (Symantec Corporation) R1 SymNetS; C:\Windows\System32\Drivers\NAVx64\1404000.028\SYMNETS.SYS [433752 2013-04-25] (Symantec Corporation) S3 YMIDUSBW; C:\Windows\System32\drivers\ymidusbx64.sys [51016 2011-11-01] (Yamaha Corporation) S3 clwvd; system32\DRIVERS\clwvd.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-20 13:25 - 2013-08-20 13:25 - 00000000 ____D C:\FRST 2013-08-19 20:47 - 2013-08-19 20:47 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_iLokDrvr_01007.Wdf 2013-08-19 20:41 - 2013-08-19 20:41 - 00000000 ____D C:\Users\*****\AppData\Roaming\Avid 2013-08-19 19:24 - 2013-08-19 19:50 - 00000000 ____D C:\Users\*****\AppData\Roaming\Ableton 2013-08-19 19:22 - 2013-08-19 19:56 - 00000000 ____D C:\ProgramData\Ableton 2013-08-19 19:04 - 2013-08-19 19:05 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-19 18:00 - 2013-08-19 18:01 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-08-19 18:00 - 2013-08-19 18:01 - 00000000 ____D C:\Program Files\iTunes 2013-08-19 18:00 - 2013-08-19 18:00 - 00000000 ____D C:\Program Files\iPod 2013-08-16 10:54 - 2013-08-16 11:02 - 109543206 _____ C:\Users\*****\Downloads\enrmp167_un_-_the_secret_rift.zip 2013-08-16 10:53 - 2013-08-16 11:01 - 110608368 _____ C:\Users\*****\Downloads\enrmp168_un_-_hol.zip 2013-08-16 10:52 - 2013-08-16 10:53 - 26665445 _____ C:\Users\*****\Downloads\enrmp194_bashed_nursling_-_eating_thorax.zip 2013-08-16 08:36 - 2013-08-16 08:42 - 81475627 _____ C:\Users\*****\Downloads\enrmp238_bashed_nursling_-_every_sunday_morning_kills_us.zip 2013-08-16 08:34 - 2013-08-16 08:42 - 126372901 _____ C:\Users\*****\Downloads\enrmp259_bashed_nursling_-_palace_of_toxicology.zip 2013-08-16 08:31 - 2013-08-16 08:33 - 30072191 _____ C:\Users\*****\Downloads\enrmp288_edgeist_-_landscapes.zip 2013-08-14 21:49 - 2013-08-14 23:48 - 228607849 _____ C:\Users\*****\Downloads\AGML_1_1_0_Installer.rar 2013-08-14 21:46 - 2013-08-15 01:37 - 212007729 _____ (Univers Sons ) C:\Users\*****\Downloads\uviworkstation-x64-2-1-5.exe 2013-08-14 20:32 - 2013-07-25 05:54 - 17830400 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-14 20:32 - 2013-07-25 05:37 - 02312704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-14 20:32 - 2013-07-25 05:35 - 10926080 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-14 20:32 - 2013-07-25 05:31 - 01346560 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-14 20:32 - 2013-07-25 05:30 - 01392128 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-14 20:32 - 2013-07-25 05:29 - 01494528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-08-14 20:32 - 2013-07-25 05:29 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-08-14 20:32 - 2013-07-25 05:29 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-14 20:32 - 2013-07-25 05:28 - 02147840 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-14 20:32 - 2013-07-25 05:28 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-14 20:32 - 2013-07-25 05:28 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-14 20:32 - 2013-07-25 05:28 - 00599040 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-08-14 20:32 - 2013-07-25 05:28 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-08-14 20:32 - 2013-07-25 05:27 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-14 20:32 - 2013-07-25 05:27 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-08-14 20:32 - 2013-07-25 05:26 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-08-14 20:32 - 2013-07-25 04:40 - 12334080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-14 20:32 - 2013-07-25 04:32 - 01800704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-14 20:32 - 2013-07-25 04:30 - 09738752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-14 20:32 - 2013-07-25 04:26 - 01129472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-14 20:32 - 2013-07-25 04:26 - 01104384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-14 20:32 - 2013-07-25 04:25 - 01427968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-08-14 20:32 - 2013-07-25 04:24 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-08-14 20:32 - 2013-07-25 04:24 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-14 20:32 - 2013-07-25 04:23 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-14 20:32 - 2013-07-25 04:23 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-14 20:32 - 2013-07-25 04:23 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-14 20:32 - 2013-07-25 04:23 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-08-14 20:32 - 2013-07-25 04:23 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-08-14 20:32 - 2013-07-25 04:22 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-14 20:32 - 2013-07-25 04:22 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-08-14 20:32 - 2013-07-25 04:22 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-08-14 20:21 - 2013-07-19 03:58 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-08-14 20:21 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-08-14 19:59 - 2013-07-09 08:03 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-08-14 19:59 - 2013-07-09 07:54 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-08-14 19:59 - 2013-07-09 07:53 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2013-08-14 19:59 - 2013-07-09 07:03 - 03968960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2013-08-14 19:59 - 2013-07-09 07:03 - 03913664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2013-08-14 19:59 - 2013-07-09 06:53 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2013-08-14 19:59 - 2013-07-09 06:52 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2013-08-14 19:59 - 2013-07-09 04:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2013-08-14 19:59 - 2013-07-09 04:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2013-08-14 19:59 - 2013-07-09 04:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2013-08-14 19:59 - 2013-07-09 04:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2013-08-14 19:43 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-08-14 19:43 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-08-14 19:36 - 2013-07-06 08:03 - 01910208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-08-14 19:23 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-08-14 19:23 - 2013-07-09 07:46 - 01472512 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-08-14 19:23 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-08-14 19:23 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2013-08-14 19:23 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2013-08-14 19:23 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-08-14 19:23 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-08-14 19:23 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-08-14 19:13 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2013-08-14 19:13 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2013-08-14 19:07 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2013-08-14 17:57 - 2013-08-14 17:57 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JXPlugins 2013-08-14 17:57 - 2013-08-14 17:57 - 00000000 ____D C:\Program Files (x86)\JXPlugins 2013-08-14 14:28 - 2013-08-14 14:28 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Radio VSTI FREE 2013-08-14 14:27 - 2013-08-14 14:27 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Om VSTI FREE 2013-08-14 14:26 - 2013-08-14 14:26 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mushroombpm VSTI FREE 2013-08-14 14:25 - 2013-08-14 14:25 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Marijuana VSTI FREE 2013-08-11 21:02 - 2013-08-11 21:02 - 00001007 _____ C:\Users\*****\Desktop\Free Alarm Clock.lnk 2013-08-11 21:02 - 2013-08-11 21:02 - 00000000 ____D C:\Program Files (x86)\FreeAlarmClock 2013-08-09 10:50 - 2013-08-09 10:50 - 00000000 ____D C:\ProgramData\Caphyon 2013-08-07 23:46 - 2013-08-07 23:48 - 00000000 ____D C:\ProgramData\WindSolutions 2013-08-07 23:46 - 2013-08-07 23:46 - 00000000 ____D C:\Users\*****\AppData\Roaming\WindSolutions 2013-08-04 18:15 - 2013-08-04 18:15 - 00001014 _____ C:\Users\Public\Desktop\Kontakt 5.lnk 2013-08-04 18:15 - 2013-08-04 18:15 - 00000000 __HDC C:\ProgramData\{ACEB5C90-39F7-4044-91EF-FBD59A59D240} 2013-08-04 13:23 - 2013-08-04 13:23 - 00000000 ____D C:\Program Files (x86)\Xylgo 2013-07-30 12:21 - 2013-07-30 12:21 - 00000000 __HDC C:\ProgramData\{B459B207-EA55-45E4-939F-D5DBD19BA3B1} 2013-07-30 12:21 - 2013-07-30 12:21 - 00000000 __HDC C:\ProgramData\{00E0164B-B182-4800-96DA-F8D39B3A7189} 2013-07-30 11:53 - 2013-07-30 11:53 - 00000000 __HDC C:\ProgramData\{3B9A3AE3-5BE1-4645-A31C-753724255564} 2013-07-30 11:53 - 2013-07-30 11:53 - 00000000 __HDC C:\ProgramData\{3A633AE9-5307-4E4D-ACED-C8739F84CB10} 2013-07-28 23:03 - 2013-07-30 13:39 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft 2013-07-28 23:03 - 2013-07-28 23:03 - 00001306 _____ C:\Users\Public\Desktop\Free YouTube Download.lnk 2013-07-27 20:51 - 2013-07-27 20:51 - 00001675 _____ C:\Users\*****\Desktop\Massive.lnk 2013-07-27 20:48 - 2013-07-27 20:48 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Native Instruments Massive 2013-07-27 20:47 - 2003-07-06 08:10 - 00017408 ____N C:\Windows\SysWOW64\minimp3.exe 2013-07-26 13:40 - 2013-07-26 13:39 - 00263592 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-07-26 13:40 - 2013-07-26 13:39 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-07-26 13:39 - 2013-07-26 13:39 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-07-26 13:39 - 2013-07-26 13:39 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-07-26 13:39 - 2013-07-26 13:39 - 00000000 ____D C:\Program Files (x86)\Java 2013-07-26 13:38 - 2013-07-26 13:38 - 00312232 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2013-07-26 13:38 - 2013-07-26 13:38 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2013-07-26 13:38 - 2013-07-26 13:38 - 00188840 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2013-07-26 13:38 - 2013-07-26 13:38 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2013-07-26 13:27 - 2013-07-26 13:28 - 01378902 _____ C:\Users\*****\Downloads\ME3_CinemaMod_v05.zip 2013-07-23 11:32 - 2013-07-23 11:32 - 00001947 _____ C:\Users\Public\Desktop\Medias in res! CD-ROM.lnk 2013-07-23 11:32 - 2013-07-23 11:32 - 00000000 ____D C:\Program Files (x86)\Veritas 2013-07-23 11:29 - 2013-07-23 11:29 - 00000000 __SHD C:\Users\*****\AppData\Roaming\.# ==================== One Month Modified Files and Folders ======= 2013-08-20 13:25 - 2013-08-20 13:25 - 01576196 _____ (Farbar) C:\Users\*****\Downloads\FRST64.exe 2013-08-20 13:25 - 2013-08-20 13:25 - 00000000 ____D C:\FRST 2013-08-20 13:25 - 2013-06-29 17:05 - 00000000 ____D C:\ProgramData\twonkymedia 2013-08-20 13:10 - 2013-05-30 12:22 - 00000000 ____D C:\Users\***** 2013-08-20 12:47 - 2009-07-14 06:51 - 00052167 _____ C:\Windows\setupact.log 2013-08-20 12:17 - 2013-05-30 11:46 - 01361740 _____ C:\Windows\WindowsUpdate.log 2013-08-20 09:36 - 2009-07-14 06:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-20 09:36 - 2009-07-14 06:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-20 09:34 - 2011-06-21 21:41 - 00696870 _____ C:\Windows\system32\perfh007.dat 2013-08-20 09:34 - 2011-06-21 21:41 - 00148134 _____ C:\Windows\system32\perfc007.dat 2013-08-20 09:34 - 2009-07-14 07:13 - 01612484 _____ C:\Windows\system32\PerfStringBackup.INI 2013-08-20 09:29 - 2013-05-31 11:57 - 00000000 ____D C:\Program Files (x86)\Steam 2013-08-20 09:28 - 2013-06-29 17:05 - 00000000 ____D C:\Program Files (x86)\TwonkyMedia 2013-08-20 09:28 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-08-20 09:27 - 2013-05-30 13:33 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-08-20 09:27 - 2009-07-14 06:45 - 00317256 _____ C:\Windows\system32\FNTCACHE.DAT 2013-08-20 09:26 - 2013-05-30 15:59 - 00000000 ____D C:\Users\*****\AppData\Roaming\Skype 2013-08-20 08:55 - 2013-07-18 12:12 - 00000000 ____D C:\Users\*****\AppData\Local\dxhr 2013-08-20 08:40 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2013-08-19 22:30 - 2013-05-30 13:41 - 00000000 ____D C:\Users\*****\.VirtualBox 2013-08-19 21:33 - 2013-05-30 12:24 - 00071624 _____ C:\Users\*****\AppData\Local\GDIPFONTCACHEV1.DAT 2013-08-19 21:22 - 2013-05-30 17:55 - 00000000 ____D C:\Users\*****\AppData\Roaming\vlc 2013-08-19 20:47 - 2013-08-19 20:47 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_iLokDrvr_01007.Wdf 2013-08-19 20:41 - 2013-08-19 20:41 - 00000000 ____D C:\Users\*****\AppData\Roaming\Avid 2013-08-19 20:35 - 2013-05-30 11:54 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-08-19 19:56 - 2013-08-19 19:22 - 00000000 ____D C:\ProgramData\Ableton 2013-08-19 19:50 - 2013-08-19 19:24 - 00000000 ____D C:\Users\*****\AppData\Roaming\Ableton 2013-08-19 19:34 - 2013-07-12 10:11 - 01249792 _____ (hxxp://www.ruby-lang.org/) C:\Users\*****\AppData\Roaming\msvcr90-ruby191.dll 2013-08-19 19:05 - 2013-08-19 19:04 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-19 18:01 - 2013-08-19 18:00 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-08-19 18:01 - 2013-08-19 18:00 - 00000000 ____D C:\Program Files\iTunes 2013-08-19 18:01 - 2013-05-30 15:40 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-08-19 18:00 - 2013-08-19 18:00 - 00000000 ____D C:\Program Files\iPod 2013-08-19 17:55 - 2013-05-30 15:16 - 00000000 ____D C:\Users\*****\AppData\Local\Last.fm 2013-08-17 17:33 - 2013-05-30 15:51 - 00000000 ____D C:\Users\*****\AppData\Local\CrashDumps 2013-08-16 11:02 - 2013-08-16 10:54 - 109543206 _____ C:\Users\*****\Downloads\enrmp167_un_-_the_secret_rift.zip 2013-08-16 11:01 - 2013-08-16 10:53 - 110608368 _____ C:\Users\*****\Downloads\enrmp168_un_-_hol.zip 2013-08-16 10:53 - 2013-08-16 10:52 - 26665445 _____ C:\Users\*****\Downloads\enrmp194_bashed_nursling_-_eating_thorax.zip 2013-08-16 08:42 - 2013-08-16 08:36 - 81475627 _____ C:\Users\*****\Downloads\enrmp238_bashed_nursling_-_every_sunday_morning_kills_us.zip 2013-08-16 08:42 - 2013-08-16 08:34 - 126372901 _____ C:\Users\*****\Downloads\enrmp259_bashed_nursling_-_palace_of_toxicology.zip 2013-08-16 08:33 - 2013-08-16 08:31 - 30072191 _____ C:\Users\*****\Downloads\enrmp288_edgeist_-_landscapes.zip 2013-08-15 19:54 - 2013-06-02 13:28 - 00000000 ____D C:\Users\*****\AppData\Roaming\Audacity 2013-08-15 18:24 - 2013-05-30 20:30 - 00000000 ____D C:\Users\*****\AppData\Roaming\Mp3tag 2013-08-15 03:55 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-08-15 03:17 - 2010-11-21 05:47 - 00057252 _____ C:\Windows\PFRO.log 2013-08-15 01:37 - 2013-08-14 21:46 - 212007729 _____ (Univers Sons ) C:\Users\*****\Downloads\uviworkstation-x64-2-1-5.exe 2013-08-14 23:48 - 2013-08-14 21:49 - 228607849 _____ C:\Users\*****\Downloads\AGML_1_1_0_Installer.rar 2013-08-14 20:33 - 2013-07-12 18:31 - 00000000 ____D C:\Windows\system32\MRT 2013-08-14 20:33 - 2013-05-30 12:53 - 78161360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-08-14 17:57 - 2013-08-14 17:57 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JXPlugins 2013-08-14 17:57 - 2013-08-14 17:57 - 00000000 ____D C:\Program Files (x86)\JXPlugins 2013-08-14 17:45 - 2013-07-20 11:53 - 00000000 ____D C:\Users\*****\AppData\Local\The Witcher 2013-08-14 14:28 - 2013-08-14 14:28 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Radio VSTI FREE 2013-08-14 14:27 - 2013-08-14 14:27 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Om VSTI FREE 2013-08-14 14:26 - 2013-08-14 14:26 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mushroombpm VSTI FREE 2013-08-14 14:25 - 2013-08-14 14:25 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Marijuana VSTI FREE 2013-08-12 18:49 - 2013-06-21 15:11 - 00000000 ____D C:\Users\*****\shared 2013-08-11 21:02 - 2013-08-11 21:02 - 00001007 _____ C:\Users\*****\Desktop\Free Alarm Clock.lnk 2013-08-11 21:02 - 2013-08-11 21:02 - 00000000 ____D C:\Program Files (x86)\FreeAlarmClock 2013-08-11 07:50 - 2013-05-30 14:46 - 00000000 ____D C:\Users\*****\Documents\Calibre Library 2013-08-11 07:39 - 2013-05-30 15:20 - 00000000 ____D C:\Users\*****\AppData\Roaming\uTorrent 2013-08-10 13:27 - 2013-06-24 19:20 - 00000000 ____D C:\Users\*****\Documents\Cubase Projects 2013-08-10 11:00 - 2013-05-30 16:32 - 00000000 ____D C:\Games 2013-08-09 21:20 - 2013-05-30 15:53 - 00000000 ____D C:\Users\*****\AppData\Local\Paint.NET 2013-08-09 11:12 - 2013-06-24 19:18 - 00000000 ____D C:\Program Files (x86)\Steinberg 2013-08-09 10:50 - 2013-08-09 10:50 - 00000000 ____D C:\ProgramData\Caphyon 2013-08-09 10:49 - 2013-06-21 16:11 - 00000000 ____D C:\Users\*****\AppData\Roaming\Flux 2013-08-09 10:26 - 2013-07-10 12:00 - 00000000 ____D C:\Users\*****\AppData\Roaming\PluginUpdate 2013-08-08 12:12 - 2013-05-30 16:01 - 00000000 ____D C:\Users\*****\AppData\Local\Spotify 2013-08-08 12:12 - 2013-05-30 16:00 - 00000000 ____D C:\Users\*****\AppData\Roaming\Spotify 2013-08-07 23:48 - 2013-08-07 23:46 - 00000000 ____D C:\ProgramData\WindSolutions 2013-08-07 23:46 - 2013-08-07 23:46 - 00000000 ____D C:\Users\*****\AppData\Roaming\WindSolutions 2013-08-07 13:09 - 2013-05-30 15:05 - 00000000 ____D C:\Users\*****\Documents\BioWare 2013-08-07 11:49 - 2013-05-30 15:59 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-08-07 11:49 - 2013-05-30 15:59 - 00000000 ____D C:\ProgramData\Skype 2013-08-06 13:22 - 2013-07-14 15:12 - 00282472 _____ C:\Windows\SysWOW64\PnkBstrB.xtr 2013-08-06 13:22 - 2013-07-14 15:09 - 00282472 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2013-08-04 19:18 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\LiveKernelReports 2013-08-04 18:15 - 2013-08-04 18:15 - 00001014 _____ C:\Users\Public\Desktop\Kontakt 5.lnk 2013-08-04 18:15 - 2013-08-04 18:15 - 00000000 __HDC C:\ProgramData\{ACEB5C90-39F7-4044-91EF-FBD59A59D240} 2013-08-04 18:13 - 2013-05-31 16:07 - 00000000 ____D C:\Program Files\Native Instruments 2013-08-04 13:23 - 2013-08-04 13:23 - 00000000 ____D C:\Program Files (x86)\Xylgo 2013-08-04 12:47 - 2013-05-30 13:50 - 00000000 ____D C:\Users\*****\Statistics 2013-08-03 14:40 - 2013-05-30 15:06 - 00000000 ____D C:\Users\*****\Documents\My Games 2013-08-03 10:12 - 2013-05-30 21:41 - 00000000 ___RD C:\Users\Public\Recorded TV 2013-08-03 10:12 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-07-31 18:31 - 2013-05-30 13:41 - 00000000 ____D C:\Users\*****\.freemind 2013-07-30 13:39 - 2013-07-28 23:03 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft 2013-07-30 13:38 - 2013-05-30 14:39 - 00000000 ____D C:\Users\*****\AppData\Roaming\DVDVideoSoft 2013-07-30 12:21 - 2013-07-30 12:21 - 00000000 __HDC C:\ProgramData\{B459B207-EA55-45E4-939F-D5DBD19BA3B1} 2013-07-30 12:21 - 2013-07-30 12:21 - 00000000 __HDC C:\ProgramData\{00E0164B-B182-4800-96DA-F8D39B3A7189} 2013-07-30 12:18 - 2013-05-31 16:07 - 00000000 ____D C:\Program Files\Common Files\Native Instruments 2013-07-30 11:53 - 2013-07-30 11:53 - 00000000 __HDC C:\ProgramData\{3B9A3AE3-5BE1-4645-A31C-753724255564} 2013-07-30 11:53 - 2013-07-30 11:53 - 00000000 __HDC C:\ProgramData\{3A633AE9-5307-4E4D-ACED-C8739F84CB10} 2013-07-30 11:53 - 2013-07-02 23:06 - 00001094 _____ C:\Users\Public\Desktop\Controller Editor.lnk 2013-07-30 11:52 - 2013-05-31 16:13 - 00000000 ____D C:\Users\Public\Documents\Guitar Rig 5 Player MFXP 2013-07-28 23:03 - 2013-07-28 23:03 - 00001306 _____ C:\Users\Public\Desktop\Free YouTube Download.lnk 2013-07-27 20:51 - 2013-07-27 20:51 - 00001675 _____ C:\Users\*****\Desktop\Massive.lnk 2013-07-27 20:49 - 2013-06-01 16:25 - 00000000 ____D C:\Users\*****\AppData\Local\Native Instruments 2013-07-27 20:49 - 2013-05-31 16:14 - 00000000 ____D C:\Users\*****\Documents\Native Instruments 2013-07-27 20:48 - 2013-07-27 20:48 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Native Instruments Massive 2013-07-27 20:48 - 2013-05-31 16:01 - 00000000 ____D C:\Program Files (x86)\Native Instruments 2013-07-27 18:48 - 2013-07-05 10:06 - 00000000 ____D C:\Program Files (x86)\MW3CU 2013-07-26 13:46 - 2013-05-30 14:57 - 00001114 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-07-26 13:46 - 2013-05-30 14:57 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-07-26 13:39 - 2013-07-26 13:40 - 00263592 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-07-26 13:39 - 2013-07-26 13:40 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-07-26 13:39 - 2013-07-26 13:39 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-07-26 13:39 - 2013-07-26 13:39 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-07-26 13:39 - 2013-07-26 13:39 - 00000000 ____D C:\Program Files (x86)\Java 2013-07-26 13:39 - 2013-05-31 20:29 - 00867240 _____ (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll 2013-07-26 13:39 - 2013-05-31 20:29 - 00789416 _____ (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll 2013-07-26 13:38 - 2013-07-26 13:38 - 00312232 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2013-07-26 13:38 - 2013-07-26 13:38 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2013-07-26 13:38 - 2013-07-26 13:38 - 00188840 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2013-07-26 13:38 - 2013-07-26 13:38 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2013-07-26 13:38 - 2013-05-30 13:40 - 01093032 _____ (Oracle Corporation) C:\Windows\system32\npDeployJava1.dll 2013-07-26 13:38 - 2013-05-30 13:40 - 00972712 _____ (Oracle Corporation) C:\Windows\system32\deployJava1.dll 2013-07-26 13:28 - 2013-07-26 13:27 - 01378902 _____ C:\Users\*****\Downloads\ME3_CinemaMod_v05.zip 2013-07-25 11:25 - 2013-08-14 19:43 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-07-25 10:57 - 2013-08-14 19:43 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-07-25 05:54 - 2013-08-14 20:32 - 17830400 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-07-25 05:37 - 2013-08-14 20:32 - 02312704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-07-25 05:35 - 2013-08-14 20:32 - 10926080 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-07-25 05:31 - 2013-08-14 20:32 - 01346560 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-07-25 05:30 - 2013-08-14 20:32 - 01392128 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-07-25 05:29 - 2013-08-14 20:32 - 01494528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-07-25 05:29 - 2013-08-14 20:32 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-07-25 05:29 - 2013-08-14 20:32 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-07-25 05:28 - 2013-08-14 20:32 - 02147840 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-07-25 05:28 - 2013-08-14 20:32 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-07-25 05:28 - 2013-08-14 20:32 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-07-25 05:28 - 2013-08-14 20:32 - 00599040 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-07-25 05:28 - 2013-08-14 20:32 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-07-25 05:27 - 2013-08-14 20:32 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-07-25 05:27 - 2013-08-14 20:32 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-07-25 05:26 - 2013-08-14 20:32 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-07-25 04:40 - 2013-08-14 20:32 - 12334080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-25 04:32 - 2013-08-14 20:32 - 01800704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-25 04:30 - 2013-08-14 20:32 - 09738752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-25 04:26 - 2013-08-14 20:32 - 01129472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-25 04:26 - 2013-08-14 20:32 - 01104384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-25 04:25 - 2013-08-14 20:32 - 01427968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-07-25 04:24 - 2013-08-14 20:32 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-07-25 04:24 - 2013-08-14 20:32 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-07-25 04:23 - 2013-08-14 20:32 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-25 04:23 - 2013-08-14 20:32 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-25 04:23 - 2013-08-14 20:32 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-25 04:23 - 2013-08-14 20:32 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-07-25 04:23 - 2013-08-14 20:32 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-07-25 04:22 - 2013-08-14 20:32 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-07-25 04:22 - 2013-08-14 20:32 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-07-25 04:22 - 2013-08-14 20:32 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-07-23 11:32 - 2013-07-23 11:32 - 00001947 _____ C:\Users\Public\Desktop\Medias in res! CD-ROM.lnk 2013-07-23 11:32 - 2013-07-23 11:32 - 00000000 ____D C:\Program Files (x86)\Veritas 2013-07-23 11:29 - 2013-07-23 11:29 - 00000000 __SHD C:\Users\*****\AppData\Roaming\.# 2013-07-23 09:54 - 2013-07-16 20:38 - 00000000 ____D C:\Users\Public\Documents\The Witcher 2013-07-21 17:46 - 2013-06-09 15:04 - 00000000 ____D C:\Program Files (x86)\IK Multimedia 2013-07-21 17:45 - 2013-06-09 15:07 - 00000016 _____ C:\Users\*****\AppData\Roaming\msregsvv.dll 2013-07-21 17:45 - 2013-06-09 15:07 - 00000016 _____ C:\ProgramData\autobk.inc 2013-07-21 16:46 - 2013-05-30 18:38 - 00000000 ____D C:\Music Library 2013-07-21 12:26 - 2013-06-02 17:24 - 00003326 _____ C:\Windows\System32\Tasks\{10899C27-91D0-463A-9B0D-FEA3DC1C4B3F} 2013-07-21 12:26 - 2013-05-30 14:57 - 00004122 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-07-21 12:26 - 2013-05-30 14:57 - 00003870 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-07-21 12:26 - 2013-05-30 14:20 - 00002780 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2013-07-21 12:26 - 2013-05-30 13:31 - 00003550 _____ C:\Windows\System32\Tasks\CreateChoiceProcessTask ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-13 13:15 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-08-2013 03 Ran by ***** at 2013-08-20 13:35:17 Running from C:\Users\*****\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= µTorrent (x32 Version: 3.3.0.29677) 7-Zip 9.20 (x64 edition) (Version: 9.20.00.0) ActiveCheck component for HP Active Support Library (x32 Version: 3.0.0.3) Adobe Flash Player 10 ActiveX (x32 Version: 10.2.152.32) Adobe Flash Player 11 Plugin (x32 Version: 11.7.700.202) Adobe Reader XI (11.0.03) - Deutsch (x32 Version: 11.0.03) And a Curse and Love and Betrayal (x32) Apple Application Support (x32 Version: 2.3.4) Apple Mobile Device Support (Version: 6.1.0.13) Apple Software Update (x32 Version: 2.1.3.127) Areca (x32) ASIO4ALL (x32 Version: 2.10) ATI Catalyst Install Manager (Version: 3.0.816.0) Audacity 2.0.3 (x32 Version: 2.0.3) AuthenTec TrueAPI (Version: 1.3.0.144) BitterSweetV3 (Version: 3.0.34.16737) Bonjour (Version: 3.0.0.10) Brain Workshop 4.8.4 (x32 Version: 4.8.4) BrainWave Generator (x32) calibre (x32 Version: 0.9.32) Call of Duty: Modern Warfare 3 - Multiplayer (x32) Canon IJ Network Scan Utility (x32) Canon IJ Network Tool (x32) Canon MP800R Catalyst Control Center - Branding (x32 Version: 1.00.0000) Catalyst Control Center (x32 Version: 2011.0315.958.16016) Catalyst Control Center Graphics Previews Common (x32 Version: 2011.0315.958.16016) Catalyst Control Center InstallProxy (x32 Version: 2011.0315.958.16016) Catalyst Control Center Localization All (x32 Version: 2011.0315.958.16016) Catalyst Control Center Profiles Mobile (x32 Version: 2011.0315.958.16016) CCC Help Chinese Standard (x32 Version: 2011.0315.0957.16016) CCC Help Chinese Traditional (x32 Version: 2011.0315.0957.16016) CCC Help Czech (x32 Version: 2011.0315.0957.16016) CCC Help Danish (x32 Version: 2011.0315.0957.16016) CCC Help Dutch (x32 Version: 2011.0315.0957.16016) CCC Help English (x32 Version: 2011.0315.0957.16016) CCC Help Finnish (x32 Version: 2011.0315.0957.16016) CCC Help French (x32 Version: 2011.0315.0957.16016) CCC Help German (x32 Version: 2011.0315.0957.16016) CCC Help Greek (x32 Version: 2011.0315.0957.16016) CCC Help Hungarian (x32 Version: 2011.0315.0957.16016) CCC Help Italian (x32 Version: 2011.0315.0957.16016) CCC Help Japanese (x32 Version: 2011.0315.0957.16016) CCC Help Korean (x32 Version: 2011.0315.0957.16016) CCC Help Norwegian (x32 Version: 2011.0315.0957.16016) CCC Help Polish (x32 Version: 2011.0315.0957.16016) CCC Help Portuguese (x32 Version: 2011.0315.0957.16016) CCC Help Russian (x32 Version: 2011.0315.0957.16016) CCC Help Spanish (x32 Version: 2011.0315.0957.16016) CCC Help Swedish (x32 Version: 2011.0315.0957.16016) CCC Help Thai (x32 Version: 2011.0315.0957.16016) CCC Help Turkish (x32 Version: 2011.0315.0957.16016) ccc-utility64 (Version: 2011.0315.958.16016) Cubase 5 (Version: 5.1.2) Custom Shop version 1.1.0 (x32 Version: 1.1.0) Defraggler (Version: 2.14) Desura (x32 Version: 100.53) Deus Ex: Human Revolution (x32) Difficulty Potions v1.0 (x32 Version: 1.0) eaner (Version: 4.02) Entrapped (x32 Version: 1.1.1) ESU for Microsoft Windows 7 (x32 Version: 1.0.0) Exact Audio Copy 1.0beta3 (x32 Version: 1.0beta3) Extended Asian Language font pack for Adobe Reader XI (x32 Version: 11.0.0) FL Studio 10 (x32) FlowStone FL 3.0 (x32) Flux_BitterSweetII (x32 Version: 2.4.8.14315) Flux_StereoTool (x32 Version: 2.4.8.14315) FM-Four VSTi (x32) Free Alarm Clock 2.7.0 (x32 Version: 2.7) Free Audio Converter version 5.0.27.725 (x32 Version: 5.0.27.725) Free YouTube Download version 3.2.9.725 (x32 Version: 3.2.9.725) FreeMind (x32 Version: 0.9.0) Full Combat Rebalance v1.6a (x32 Version: 1.6a) GeoGebra 4.2 (x32 Version: 4.2.47.0) GNU Solfege 3.22.0 (x32) Google Chrome (x32 Version: 28.0.1500.95) Google Update Helper (x32 Version: 1.3.21.153) HP 3D DriveGuard (Version: 4.1.5.1) HP On Screen Display (x32 Version: 1.1.2) HP Quick Launch (x32 Version: 2.3.6) HP SimplePass 2012 (x32 Version: 5.3.1.7) HP Software Framework (x32 Version: 4.0.110.1) HPAsset component for HP Active Support Library (x32 Version: 3.0.0.3) IDT Audio (x32 Version: 1.0.6329.0) IK Multimedia Authorization Manager version 1.0.9 (Version: 1.0.9) IL Shared Libraries (x32) Intel PROSet Wireless Intel(R) Display Audio Driver (x32 Version: 6.14.00.3074) Intel(R) Management Engine Components (x32 Version: 7.0.0.1144) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (Version: 1.0.2.0511) Intel(R) PROSet/Wireless WiFi-Software (Version: 14.0.3000) Intel(R) Rapid Storage Technology (x32 Version: 10.1.2.1004) Intel(R) Wireless Display Intel(R) Wireless Display (x32 Version: 2.0.30.0) iTunes (Version: 11.0.5.5) Java 7 Update 25 (64-bit) (Version: 7.0.250) Java 7 Update 25 (x32 Version: 7.0.250) Java Auto Updater (x32 Version: 2.1.9.5) Java SE Development Kit 7 Update 21 (64-bit) (Version: 1.7.0.210) JXSynth 1.2 (remove only) (x32) Last.fm Scrobbler 2.1.35 (x32) LastFM Motorokr Screensaver (x32) LibreOffice 4.0 Help Pack (German) (x32 Version: 4.0.4.2) LibreOffice 4.0.4.2 (x32 Version: 4.0.4.2) License Support (Version: 1.2.0.5555) License Support (x32 Version: 1.2.0.5555) Lightened Dream (x32 Version: 3.2.4) LinuxLive USB Creator (x32 Version: 2.8) Ludwig 3.0 (x32 Version: 3.0.9) Marijuana VSTI FREE (x32) Mass Effect™ 3 (x32 Version: 1.05.0.0) Medias in res! CD-ROM (x32) MeldaProduction MFreeEffectsBundle64 7 (x32) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4 Extended (Version: 4.0.30319) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft XNA Framework Redistributable 4.0 (x32 Version: 4.0.20823.0) MixMeister BPM Analyzer 1.0 (x32) Mozilla Firefox 23.0.1 (x86 de) (x32 Version: 23.0.1) Mozilla Maintenance Service (x32 Version: 23.0.1) Mp3tag v2.57 (x32 Version: v2.57) MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0) MSXML 4.0 SP3 Parser (x32 Version: 4.30.2100.0) Muon Tau Bassline VSTi (x32 Version: 2.0.0) MuseScore 1.3 (x32 Version: 1.3.0) Mushroombpm VSTI FREE (x32) MyPC Backup (Version: ) Native Instruments Controller Editor (Version: 1.5.4.1182) Native Instruments Controller Editor (x32 Version: 1.5.4.1182) Native Instruments Guitar Rig 5 (Version: 5.1.1.2673) Native Instruments Guitar Rig 5 (x32) Native Instruments Guitar Rig Factory Selection for Maschine (Version: 1.0.0.003) Native Instruments Guitar Rig Factory Selection for Maschine (x32) Native Instruments Komplete 8 Players (Version: 8.0.0.003) Native Instruments Komplete 8 Players (x32) Native Instruments Kontakt 5 (Version: 5.2.1.6382) Native Instruments Kontakt 5 (x32 Version: 5.2.1.6382) Native Instruments Kontakt Factory Selection (Version: 1.2.0.004) Native Instruments Kontakt Factory Selection (x32) Native Instruments Massive v1.0.1.008 VSTi DXi RTAS (x32) Native Instruments Reaktor 5 (Version: 5.8.0.550) Native Instruments Reaktor 5 (x32) Native Instruments Reaktor Factory Selection (Version: 1.1.0.002) Native Instruments Reaktor Factory Selection (x32) Native Instruments Service Center (Version: 2.3.2.926) Native Instruments Service Center (x32) Nero Suite (x32) Norton AntiVirus (x32 Version: 20.4.0.40) Norton Identity Safe (x32 Version: 2013.4.0.10) NVIDIA PhysX (x32 Version: 9.09.0814) Om VSTI FREE (x32) Oracle VM VirtualBox 4.2.16 (Version: 4.2.16) Origin (x32 Version: 9.1.15.109) PACE License Support Win64 (Version: 2.1.0.0279) PACE License Support Win64 (x32 Version: 2.1.0.0279) Paint.NET v3.5.10 (Version: 3.60.0) Pidgin (x32 Version: 2.10.7) POV-Ray for Windows v3.62 (Version: 3.62) PunkBuster Services (x32 Version: 0.993) PX Profile Update (x32 Version: 1.00.1.) Radio VSTI FREE (x32) Realtek Ethernet Controller Driver (x32 Version: 7.41.216.2011) Realtek PCIE Card Reader (x32 Version: 6.1.7600.74) Recovery Manager (x32 Version: 2.0.0) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.32.0) SelectionLinks (x32 Version: 1.0) Skype™ 6.6 (x32 Version: 6.6.106) Sonigen Modular version (x32) Spotify (HKCU Version: 0.9.1.57.ge7405149) Steam (x32 Version: 1.0.0.0) Synaptics TouchPad Driver (Version: 15.3.29.0) TeamSpeak 3 Client (Version: 3.0.10) The Crossroads (x32 Version: 1.2) The Witcher Grafikmods 1.0 (x32) TrueCrypt (x32 Version: 7.1a) TwonkyMedia (x32 Version: 6.0.1.0) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1) Validity Sensors DDK (Version: 4.1.139.0) Visual C++ 64-bit Redistributables (Version: 1.2.0.5555) Visual C++ 64-bit Redistributables (x32 Version: 1.2.0.5555) Visual C++ Redistributables (x32 Version: 1.2.0.5555) VLC media player 2.0.7 (x32 Version: 2.0.7) WIRIS Desktop (x32 Version: 2.3.4) WWAYM - NWBass V1.1 (x32) Yamaha USB-MIDI Driver (Version: 3.1.2.1) Yamaha USB-MIDI Driver (x32 Version: 3.1.2.1) ==================== Restore Points ========================= 16-08-2013 08:01:43 Geplanter Prüfpunkt 19-08-2013 17:20:38 Installed Ableton Live 8 19-08-2013 17:53:36 Removed Ableton Live 8 19-08-2013 17:55:45 Removed Ableton Live 8 19-08-2013 18:33:29 Installed Visual C++ Redistributables 19-08-2013 18:34:15 Installed Visual C++ 64-bit Redistributables 19-08-2013 18:34:43 Installed License Support 19-08-2013 18:37:21 Microsoft Visual C++ 2005 Redistributable (x64) wird installiert 19-08-2013 18:37:36 Microsoft Visual C++ 2005 Redistributable wird installiert 19-08-2013 18:38:38 Installed Avid Pro Tools Express. ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {12713E8A-C071-430E-97BF-612063C1D07F} - System32\Tasks\Norton Identity Safe\Norton Error Processor => C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\SymErr.exe [2013-05-30] (Symantec Corporation) Task: {26715E44-7F94-4F46-85A4-D6208661927D} - System32\Tasks\Norton Identity Safe\Norton Error Analyzer => C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\SymErr.exe [2013-05-30] (Symantec Corporation) Task: {2B198791-B1B2-45DA-AC0C-CB568F653EA2} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe [2010-02-23] (Microsoft Corporation) Task: {2D4A8ED0-7EE9-486D-83B4-82F0F7063984} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2010-11-21] (Microsoft Corporation) Task: {3878F0FD-B7D2-4BDB-8A18-AA36A48DFFA4} - System32\Tasks\Norton AntiVirus\Norton Error Processor => C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\SymErr.exe [2013-06-04] (Symantec Corporation) Task: {58B558F1-4B72-4C47-BCA2-4A96E6773CD2} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\WSCStub.exe [2013-06-04] (Symantec Corporation) Task: {618C29CC-6963-44F3-810D-A0097775C5F3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-30] (Google Inc.) Task: {9DE76D8E-9A55-4E5B-9191-B96B2CB6CDDA} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-05-24] (Piriform Ltd) Task: {BDFB4C84-A0C2-46D1-AA10-2EEBF470EC38} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe No File Task: {C383815B-2C86-47BC-A54C-A101484628EC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-30] (Google Inc.) Task: {C7C5DC18-2252-4D43-AC5D-23678B0CC0A0} - System32\Tasks\Norton AntiVirus\Norton Error Analyzer => C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\SymErr.exe [2013-06-04] (Symantec Corporation) Task: {F7444E99-A656-4AC7-9471-B90B08FD6654} - System32\Tasks\Hewlett-Packard\HP Support Assistant\First Boot => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF_Utils.exe No File Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (08/20/2013 09:28:16 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/20/2013 09:26:28 AM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (08/20/2013 09:26:28 AM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (08/20/2013 09:26:28 AM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (08/20/2013 09:26:28 AM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (08/20/2013 09:26:28 AM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (08/20/2013 09:26:28 AM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (08/20/2013 09:26:28 AM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (08/20/2013 09:26:28 AM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (08/20/2013 09:26:28 AM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC System errors: ============= Error: (08/20/2013 09:30:15 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "HP Health Check Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (08/20/2013 09:28:05 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Computer Backup (MyPC Backup)" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (08/16/2013 10:06:18 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "HP Health Check Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (08/16/2013 10:04:04 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Computer Backup (MyPC Backup)" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (08/16/2013 10:03:44 AM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 16.08.2013 um 10:02:20 unerwartet heruntergefahren. Error: (08/15/2013 07:41:06 PM) (Source: Disk) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden. Error: (08/15/2013 04:34:03 AM) (Source: volsnap) (User: ) Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte. Error: (08/15/2013 03:20:29 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "HP Health Check Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (08/15/2013 03:18:21 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Computer Backup (MyPC Backup)" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (08/14/2013 08:20:24 PM) (Source: Disk) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR7 gefunden. Microsoft Office Sessions: ========================= Error: (08/20/2013 09:28:16 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/20/2013 09:26:28 AM) (Source: ATIeRecord)(User: ) Description: Error: (08/20/2013 09:26:28 AM) (Source: ATIeRecord)(User: ) Description: Error: (08/20/2013 09:26:28 AM) (Source: ATIeRecord)(User: ) Description: Error: (08/20/2013 09:26:28 AM) (Source: ATIeRecord)(User: ) Description: Error: (08/20/2013 09:26:28 AM) (Source: ATIeRecord)(User: ) Description: Error: (08/20/2013 09:26:28 AM) (Source: ATIeRecord)(User: ) Description: Error: (08/20/2013 09:26:28 AM) (Source: ATIeRecord)(User: ) Description: Error: (08/20/2013 09:26:28 AM) (Source: ATIeRecord)(User: ) Description: Error: (08/20/2013 09:26:28 AM) (Source: ATIeRecord)(User: ) Description: ==================== Memory info =========================== Percentage of memory in use: 44% Total physical RAM: 8139.86 MB Available physical RAM: 4508.31 MB Total Pagefile: 16277.9 MB Available Pagefile: 12133.03 MB Total Virtual: 8192 MB Available Virtual: 8191.8 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:682.98 GB) (Free:346.09 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (RECOVERY) (Fixed) (Total:15.36 GB) (Free:1.62 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 699 GB) (Disk ID: 21053EDB) Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=683 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=15 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=103 MB) - (Type=0C) ==================== End Of Log ============================ |
20.08.2013, 13:30 | #6 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | HTTP Fehlercode 104 Was ist mit diesem Teil meines Postings: Zitat:
__________________ --> HTTP Fehlercode 104 |
20.08.2013, 13:51 | #7 |
| HTTP Fehlercode 104 Hatte einen Virenscan mit Norton vorher gemacht, erkannte aber nichts. Logfile dazu habe ich leider keine bzw. weiß nicht wo diese zu finden wäre. |
20.08.2013, 13:57 | #8 |
/// Winkelfunktion /// TB-Süch-Tiger™ | HTTP Fehlercode 104 Adware/Junkware/Toolbars entfernen 1. Schritt: adwCleaner Downloade Dir bitte AdwCleaner auf deinen Desktop.
2. Schritt: JRT - Junkware Removal Tool Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
3. Schritt: Frisches Log mit FRST Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ Logfiles bitte immer in CODE-Tags posten |
20.08.2013, 14:45 | #9 |
| HTTP Fehlercode 104 Der AdwCleaner Log ist mir verloren gegangen, weil mir die Browserseite abgestürzt ist. Das JRT Log ist gar nicht erstellt worden, wie auch die Addtional.txt von FRST. FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 20-08-2013 03 Ran by ***** (administrator) on 20-08-2013 15:29:38 Running from C:\Users\*****\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (HP) C:\Program Files (x86)\HP SimplePass 2012\TrueSuiteService.exe (AMD) C:\Windows\system32\atiesrxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (Hewlett-Packard Company) C:\Windows\system32\Hpservice.exe (AMD) C:\Windows\system32\atieclxx.exe (Validity Sensors, Inc.) C:\Windows\system32\vcsFPService.exe (Microsoft Corporation) C:\Windows\system32\WLANExt.exe (Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Symantec Corporation) C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe (Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe (Native Instruments GmbH) C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe (PACE Anti-Piracy, Inc.) C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (PacketVideo) C:\Program Files (x86)\TwonkyMedia\twonkymediaserverwatchdog.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe () C:\Program Files (x86)\TwonkyMedia\TwonkyMediaServer.exe (Symantec Corporation) C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe (Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe (HP) C:\Program Files (x86)\HP SimplePass 2012\TouchControl.exe (HP) C:\Program Files (x86)\HP SimplePass 2012\BioMonitor.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Spotify Ltd) C:\Users\*****\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Microsoft Corporation) C:\Windows\System32\StikyNot.exe (PacketVideo) C:\Program Files (x86)\TwonkyMedia\twonkymediaserverconfig.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (CANON INC.) C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Desura Pty Ltd) C:\Program Files (x86)\Desura\desura.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Desura Pty Ltd) C:\Program Files (x86)\Common Files\Desura\desura_service.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Farbar) C:\Users\*****\Downloads\FRST64 (1).exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1128448 2011-03-11] (IDT, Inc.) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated) HKLM\...\Run: [IntelWireless] - C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1933584 2011-02-04] (Intel(R) Corporation) HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [10355200 2011-01-24] (Intel Corporation) HKCU\...\Run: [Desura] - C:\Program Files (x86)\Desura\desura.exe [2529096 2013-05-30] (Desura Pty Ltd) HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [19875432 2013-06-21] (Skype Technologies S.A.) HKCU\...\Run: [Steam] - C:\Program Files (x86)\Steam\steam.exe [1807272 2013-07-27] (Valve Corporation) HKCU\...\Run: [Spotify Web Helper] - C:\Users\*****\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1104384 2013-07-07] (Spotify Ltd) HKCU\...\Run: [RESTART_STICKY_NOTES] - C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation) HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2011-01-13] (Intel Corporation) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-03-15] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation) HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [586296 2010-11-09] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [HPOSD] - C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [318520 2011-01-27] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [IJNetworkScanUtility] - C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE [128352 2010-01-18] (CANON INC.) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-08-16] (Apple Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TwonkyMedia Tray Control.lnk ShortcutTarget: TwonkyMedia Tray Control.lnk -> C:\Program Files (x86)\TwonkyMedia\twonkymediaserverconfig.exe (PacketVideo) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://at.msn.com/?ocid=iehp StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: TrueSuite Website Log On - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2012\x64\IEBHO.dll (HP) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\IPS\IPSBHO.DLL (Symantec Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: SelectionLinks - {7825CFB6-490A-436B-9F26-4A7B5CFC01A9} - C:\Program Files (x86)\OApps\SelectionLinks.dll No File BHO-x32: TrueSuite Website Log On - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2012\IEBHO.dll (HP) BHO-x32: Norton Identity Protection - {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} - C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\coIEPlg.dll (Symantec Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM-x32 - Norton Identity Safe Toolbar - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\coIEPlg.dll (Symantec Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\af0dqc2b.default FF NewTab: user_pref("browser.newtab.url", ""); FF SelectedSearchEngine: Startpage HTTPS - Deutsch FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_202.dll () FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\af0dqc2b.default\searchplugins\duckduckgo-1.xml FF SearchPlugin: C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\af0dqc2b.default\searchplugins\duckduckgo.xml FF SearchPlugin: C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\af0dqc2b.default\searchplugins\startpage-https---deutsch.xml FF Extension: firefox - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\af0dqc2b.default\Extensions\firefox@ghostery.com.xpi FF Extension: No Name - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\af0dqc2b.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi FF Extension: No Name - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\af0dqc2b.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM-x32\...\Firefox\Extensions: [{F04D2D30-776C-4d02-8627-8E4385ECA58D}] C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2013.3.3.19\coFFPlgn\ FF Extension: Norton Identity Safe Toolbar - C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2013.3.3.19\coFFPlgn\ FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\IPSFFPlgn\ FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\IPSFFPlgn\ Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR RestoreOnStartup: "hxxp://blekko.com/ws/?source=5f97ddbe&tbp=homepage&u=103d4e7a000000000000ac7289791068", "hxxp://start.search.us.com/v/2/?guid={DA85700A-6B6A-491E-92FD-9F5944CE0117}&serpv=5" CHR DefaultSearchURL: (Startpage HTTPS - Deutsch) - https://startpage.com/do/search?query={searchTerms}&cat=web&pl=chrome&language=deutsch CHR DefaultSuggestURL: (Startpage HTTPS - Deutsch) - "suggest_url": "", CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\pdf.dll () CHR Plugin: (Simple Pass 2012) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\debkinhcgejcbfgjiaalomcmkedjmiaa\1.0_0\npwebsitelogon.dll (HP) CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) CHR Plugin: (Java(TM) Platform SE 7 U25) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll () CHR Plugin: (Java Deployment Toolkit 7.0.250.17) - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) CHR Extension: (YouTube Options) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdokagampppgbnjfdlkfpphniapiiifn\1.8.133_0 CHR Extension: (DuckDuckGo for Chrome) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpphkkgodbfncbcpgopijlfakfgmclao\42.5.8_0 CHR Extension: (Website Logon) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\debkinhcgejcbfgjiaalomcmkedjmiaa\1.0_0 CHR Extension: (PanicButton) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm\0.14.2.2_0 CHR Extension: (AdBlock) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.4_0 CHR HKLM-x32\...\Chrome\Extension: [ajdjdbbimplpmffaimajhilbnmciagkd] - C:\Program Files (x86)\OApps\chrome-sl.crx CHR HKLM-x32\...\Chrome\Extension: [debkinhcgejcbfgjiaalomcmkedjmiaa] - C:\Program Files (x86)\HP SimplePass 2012\tschrome.crx CHR HKLM-x32\...\Chrome\Extension: [nppllibpnmahfaklnpggkibhkapjkeob] - C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\Exts\Chrome.crx ==================== Services (Whitelisted) ================= R2 FPLService; C:\Program Files (x86)\HP SimplePass 2012\TrueSuiteService.exe [260424 2011-08-26] (HP) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-02-04] () R2 NAV; C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe [144368 2013-05-21] (Symantec Corporation) R2 NCO; C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe [144368 2013-05-21] (Symantec Corporation) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-07-14] () R2 TwonkyMedia; C:\Program Files (x86)\TwonkyMedia\twonkymediaserverwatchdog.exe [472664 2010-07-28] (PacketVideo) S2 BackupStack; C:\Program Files (x86)\MyPC Backup\BackupStack.exe [x] S2 HP Health Check Service; "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe" [x] R2 PaceLicenseDServices; "C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe" -u https://activation.paceap.com/InitiateActivation [x] ==================== Drivers (Whitelisted) ==================== R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\Definitions\BASHDefs\20130715.001\BHDrvx64.sys [1393240 2013-05-31] (Symantec Corporation) R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\Definitions\BASHDefs\20130715.001\BHDrvx64.sys [1393240 2013-05-31] (Symantec Corporation) R1 ccSet_NAV; C:\Windows\system32\drivers\NAVx64\1404000.028\ccSetx64.sys [169048 2013-04-16] (Symantec Corporation) R1 ccSet_NST; C:\Windows\system32\drivers\NSTx64\7DD04000.00A\ccSetx64.sys [169048 2013-04-16] (Symantec Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484952 2013-08-20] (Symantec Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484952 2013-08-20] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [139864 2013-08-20] (Symantec Corporation) R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\Definitions\IPSDefs\20130813.001\IDSvia64.sys [513184 2013-05-30] (Symantec Corporation) R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\Definitions\IPSDefs\20130813.001\IDSvia64.sys [513184 2013-05-30] (Symantec Corporation) S3 iLokDrvr; C:\Windows\System32\DRIVERS\iLokDrvr.sys [25808 2013-04-11] () R3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\Definitions\VirusDefs\20130820.002\ENG64.SYS [126040 2013-08-05] (Symantec Corporation) R3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\Definitions\VirusDefs\20130820.002\ENG64.SYS [126040 2013-08-05] (Symantec Corporation) R3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\Definitions\VirusDefs\20130820.002\EX64.SYS [2098776 2013-08-05] (Symantec Corporation) R3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.1.0.24\Definitions\VirusDefs\20130820.002\EX64.SYS [2098776 2013-08-05] (Symantec Corporation) R3 NIWinCDEmu; C:\Windows\System32\DRIVERS\NIWinCDEmu.sys [111696 2013-05-31] () R3 SRTSP; C:\Windows\System32\Drivers\NAVx64\1404000.028\SRTSP64.SYS [796760 2013-05-16] (Symantec Corporation) R1 SRTSPX; C:\Windows\system32\drivers\NAVx64\1404000.028\SRTSPX64.SYS [36952 2013-03-05] (Symantec Corporation) R0 SymDS; C:\Windows\System32\drivers\NAVx64\1404000.028\SYMDS64.SYS [493656 2013-05-21] (Symantec Corporation) R0 SymEFA; C:\Windows\System32\drivers\NAVx64\1404000.028\SYMEFA64.SYS [1139800 2013-05-23] (Symantec Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177312 2013-06-19] (Symantec Corporation) R1 SymIRON; C:\Windows\system32\drivers\NAVx64\1404000.028\Ironx64.SYS [224416 2013-03-05] (Symantec Corporation) R1 SymNetS; C:\Windows\System32\Drivers\NAVx64\1404000.028\SYMNETS.SYS [433752 2013-04-25] (Symantec Corporation) S3 YMIDUSBW; C:\Windows\System32\drivers\ymidusbx64.sys [51016 2011-11-01] (Yamaha Corporation) S3 clwvd; system32\DRIVERS\clwvd.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-20 15:25 - 2013-08-20 15:25 - 00001317 _____ C:\Users\*****\Desktop\adwclean.txt 2013-08-20 15:18 - 2013-08-20 15:19 - 00001317 _____ C:\AdwCleaner[S2].txt 2013-08-20 15:17 - 2013-08-20 15:17 - 00666633 _____ C:\Users\*****\Downloads\adwcleaner.exe 2013-08-20 14:02 - 2013-08-20 14:38 - 896216436 _____ C:\Users\*****\Downloads\Ignite_1.2.1_Win.zip 2013-08-20 13:25 - 2013-08-20 13:25 - 01576196 _____ (Farbar) C:\Users\*****\Downloads\FRST64.exe 2013-08-20 13:25 - 2013-08-20 13:25 - 00000000 ____D C:\FRST 2013-08-19 20:47 - 2013-08-19 20:47 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_iLokDrvr_01007.Wdf 2013-08-19 20:41 - 2013-08-19 20:41 - 00000000 ____D C:\Users\*****\AppData\Roaming\Avid 2013-08-19 19:24 - 2013-08-19 19:50 - 00000000 ____D C:\Users\*****\AppData\Roaming\Ableton 2013-08-19 19:22 - 2013-08-19 19:56 - 00000000 ____D C:\ProgramData\Ableton 2013-08-19 19:04 - 2013-08-19 19:05 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-19 18:00 - 2013-08-19 18:01 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-08-19 18:00 - 2013-08-19 18:01 - 00000000 ____D C:\Program Files\iTunes 2013-08-19 18:00 - 2013-08-19 18:00 - 00000000 ____D C:\Program Files\iPod 2013-08-16 10:54 - 2013-08-16 11:02 - 109543206 _____ C:\Users\*****\Downloads\enrmp167_un_-_the_secret_rift.zip 2013-08-16 10:53 - 2013-08-16 11:01 - 110608368 _____ C:\Users\*****\Downloads\enrmp168_un_-_hol.zip 2013-08-16 10:52 - 2013-08-16 10:53 - 26665445 _____ C:\Users\*****\Downloads\enrmp194_bashed_nursling_-_eating_thorax.zip 2013-08-16 08:36 - 2013-08-16 08:42 - 81475627 _____ C:\Users\*****\Downloads\enrmp238_bashed_nursling_-_every_sunday_morning_kills_us.zip 2013-08-16 08:34 - 2013-08-16 08:42 - 126372901 _____ C:\Users\*****\Downloads\enrmp259_bashed_nursling_-_palace_of_toxicology.zip 2013-08-16 08:31 - 2013-08-16 08:33 - 30072191 _____ C:\Users\*****\Downloads\enrmp288_edgeist_-_landscapes.zip 2013-08-14 21:49 - 2013-08-14 23:48 - 228607849 _____ C:\Users\*****\Downloads\AGML_1_1_0_Installer.rar 2013-08-14 21:46 - 2013-08-15 01:37 - 212007729 _____ (Univers Sons ) C:\Users\*****\Downloads\uviworkstation-x64-2-1-5.exe 2013-08-14 20:32 - 2013-07-25 05:54 - 17830400 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-14 20:32 - 2013-07-25 05:37 - 02312704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-14 20:32 - 2013-07-25 05:35 - 10926080 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-14 20:32 - 2013-07-25 05:31 - 01346560 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-14 20:32 - 2013-07-25 05:30 - 01392128 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-14 20:32 - 2013-07-25 05:29 - 01494528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-08-14 20:32 - 2013-07-25 05:29 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-08-14 20:32 - 2013-07-25 05:29 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-14 20:32 - 2013-07-25 05:28 - 02147840 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-14 20:32 - 2013-07-25 05:28 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-14 20:32 - 2013-07-25 05:28 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-14 20:32 - 2013-07-25 05:28 - 00599040 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-08-14 20:32 - 2013-07-25 05:28 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-08-14 20:32 - 2013-07-25 05:27 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-14 20:32 - 2013-07-25 05:27 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-08-14 20:32 - 2013-07-25 05:26 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-08-14 20:32 - 2013-07-25 04:40 - 12334080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-14 20:32 - 2013-07-25 04:32 - 01800704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-14 20:32 - 2013-07-25 04:30 - 09738752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-14 20:32 - 2013-07-25 04:26 - 01129472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-14 20:32 - 2013-07-25 04:26 - 01104384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-14 20:32 - 2013-07-25 04:25 - 01427968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-08-14 20:32 - 2013-07-25 04:24 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-08-14 20:32 - 2013-07-25 04:24 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-14 20:32 - 2013-07-25 04:23 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-14 20:32 - 2013-07-25 04:23 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-14 20:32 - 2013-07-25 04:23 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-14 20:32 - 2013-07-25 04:23 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-08-14 20:32 - 2013-07-25 04:23 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-08-14 20:32 - 2013-07-25 04:22 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-14 20:32 - 2013-07-25 04:22 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-08-14 20:32 - 2013-07-25 04:22 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-08-14 20:21 - 2013-07-19 03:58 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-08-14 20:21 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-08-14 19:59 - 2013-07-09 08:03 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-08-14 19:59 - 2013-07-09 07:54 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-08-14 19:59 - 2013-07-09 07:53 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2013-08-14 19:59 - 2013-07-09 07:03 - 03968960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2013-08-14 19:59 - 2013-07-09 07:03 - 03913664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2013-08-14 19:59 - 2013-07-09 06:53 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2013-08-14 19:59 - 2013-07-09 06:52 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2013-08-14 19:59 - 2013-07-09 04:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2013-08-14 19:59 - 2013-07-09 04:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2013-08-14 19:59 - 2013-07-09 04:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2013-08-14 19:59 - 2013-07-09 04:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2013-08-14 19:43 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-08-14 19:43 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-08-14 19:36 - 2013-07-06 08:03 - 01910208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-08-14 19:23 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-08-14 19:23 - 2013-07-09 07:46 - 01472512 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-08-14 19:23 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-08-14 19:23 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2013-08-14 19:23 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2013-08-14 19:23 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-08-14 19:23 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-08-14 19:23 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-08-14 19:13 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2013-08-14 19:13 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2013-08-14 19:07 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2013-08-14 17:57 - 2013-08-14 17:57 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JXPlugins 2013-08-14 17:57 - 2013-08-14 17:57 - 00000000 ____D C:\Program Files (x86)\JXPlugins 2013-08-14 14:28 - 2013-08-14 14:28 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Radio VSTI FREE 2013-08-14 14:27 - 2013-08-14 14:27 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Om VSTI FREE 2013-08-14 14:26 - 2013-08-14 14:26 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mushroombpm VSTI FREE 2013-08-14 14:25 - 2013-08-14 14:25 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Marijuana VSTI FREE 2013-08-11 21:02 - 2013-08-11 21:02 - 00001007 _____ C:\Users\*****\Desktop\Free Alarm Clock.lnk 2013-08-11 21:02 - 2013-08-11 21:02 - 00000000 ____D C:\Program Files (x86)\FreeAlarmClock 2013-08-09 10:50 - 2013-08-09 10:50 - 00000000 ____D C:\ProgramData\Caphyon 2013-08-07 23:46 - 2013-08-07 23:48 - 00000000 ____D C:\ProgramData\WindSolutions 2013-08-07 23:46 - 2013-08-07 23:46 - 00000000 ____D C:\Users\*****\AppData\Roaming\WindSolutions 2013-08-04 18:15 - 2013-08-04 18:15 - 00001014 _____ C:\Users\Public\Desktop\Kontakt 5.lnk 2013-08-04 18:15 - 2013-08-04 18:15 - 00000000 __HDC C:\ProgramData\{ACEB5C90-39F7-4044-91EF-FBD59A59D240} 2013-08-04 13:23 - 2013-08-04 13:23 - 00000000 ____D C:\Program Files (x86)\Xylgo 2013-07-30 12:21 - 2013-07-30 12:21 - 00000000 __HDC C:\ProgramData\{B459B207-EA55-45E4-939F-D5DBD19BA3B1} 2013-07-30 12:21 - 2013-07-30 12:21 - 00000000 __HDC C:\ProgramData\{00E0164B-B182-4800-96DA-F8D39B3A7189} 2013-07-30 11:53 - 2013-07-30 11:53 - 00000000 __HDC C:\ProgramData\{3B9A3AE3-5BE1-4645-A31C-753724255564} 2013-07-30 11:53 - 2013-07-30 11:53 - 00000000 __HDC C:\ProgramData\{3A633AE9-5307-4E4D-ACED-C8739F84CB10} 2013-07-28 23:03 - 2013-07-30 13:39 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft 2013-07-28 23:03 - 2013-07-28 23:03 - 00001306 _____ C:\Users\Public\Desktop\Free YouTube Download.lnk 2013-07-27 20:51 - 2013-07-27 20:51 - 00001675 _____ C:\Users\*****\Desktop\Massive.lnk 2013-07-27 20:48 - 2013-07-27 20:48 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Native Instruments Massive 2013-07-27 20:47 - 2003-07-06 08:10 - 00017408 ____N C:\Windows\SysWOW64\minimp3.exe 2013-07-26 13:40 - 2013-07-26 13:39 - 00263592 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-07-26 13:40 - 2013-07-26 13:39 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-07-26 13:39 - 2013-07-26 13:39 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-07-26 13:39 - 2013-07-26 13:39 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-07-26 13:39 - 2013-07-26 13:39 - 00000000 ____D C:\Program Files (x86)\Java 2013-07-26 13:38 - 2013-07-26 13:38 - 00312232 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2013-07-26 13:38 - 2013-07-26 13:38 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2013-07-26 13:38 - 2013-07-26 13:38 - 00188840 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2013-07-26 13:38 - 2013-07-26 13:38 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2013-07-26 13:27 - 2013-07-26 13:28 - 01378902 _____ C:\Users\*****\Downloads\ME3_CinemaMod_v05.zip 2013-07-23 11:32 - 2013-07-23 11:32 - 00001947 _____ C:\Users\Public\Desktop\Medias in res! CD-ROM.lnk 2013-07-23 11:32 - 2013-07-23 11:32 - 00000000 ____D C:\Program Files (x86)\Veritas 2013-07-23 11:29 - 2013-07-23 11:29 - 00000000 __SHD C:\Users\*****\AppData\Roaming\.# ==================== One Month Modified Files and Folders ======= 2013-08-20 15:29 - 2013-06-29 17:05 - 00000000 ____D C:\ProgramData\twonkymedia 2013-08-20 15:27 - 2009-07-14 06:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-20 15:27 - 2009-07-14 06:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-20 15:25 - 2013-08-20 15:25 - 00001317 _____ C:\Users\*****\Desktop\adwclean.txt 2013-08-20 15:23 - 2013-05-30 11:46 - 01368853 _____ C:\Windows\WindowsUpdate.log 2013-08-20 15:21 - 2013-05-31 11:57 - 00000000 ____D C:\Program Files (x86)\Steam 2013-08-20 15:20 - 2013-06-29 17:05 - 00000000 ____D C:\Program Files (x86)\TwonkyMedia 2013-08-20 15:20 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-08-20 15:20 - 2009-07-14 06:51 - 00052279 _____ C:\Windows\setupact.log 2013-08-20 15:19 - 2013-08-20 15:18 - 00001317 _____ C:\AdwCleaner[S2].txt 2013-08-20 15:17 - 2013-08-20 15:17 - 00666633 _____ C:\Users\*****\Downloads\adwcleaner.exe 2013-08-20 14:38 - 2013-08-20 14:02 - 896216436 _____ C:\Users\*****\Downloads\Ignite_1.2.1_Win.zip 2013-08-20 13:25 - 2013-08-20 13:25 - 01576196 _____ (Farbar) C:\Users\*****\Downloads\FRST64.exe 2013-08-20 13:25 - 2013-08-20 13:25 - 00000000 ____D C:\FRST 2013-08-20 13:10 - 2013-05-30 12:22 - 00000000 ____D C:\Users\***** 2013-08-20 09:34 - 2011-06-21 21:41 - 00696870 _____ C:\Windows\system32\perfh007.dat 2013-08-20 09:34 - 2011-06-21 21:41 - 00148134 _____ C:\Windows\system32\perfc007.dat 2013-08-20 09:34 - 2009-07-14 07:13 - 01612484 _____ C:\Windows\system32\PerfStringBackup.INI 2013-08-20 09:27 - 2013-05-30 13:33 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-08-20 09:27 - 2009-07-14 06:45 - 00317256 _____ C:\Windows\system32\FNTCACHE.DAT 2013-08-20 09:26 - 2013-05-30 15:59 - 00000000 ____D C:\Users\*****\AppData\Roaming\Skype 2013-08-20 08:55 - 2013-07-18 12:12 - 00000000 ____D C:\Users\*****\AppData\Local\dxhr 2013-08-20 08:40 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2013-08-19 22:30 - 2013-05-30 13:41 - 00000000 ____D C:\Users\*****\.VirtualBox 2013-08-19 21:33 - 2013-05-30 12:24 - 00071624 _____ C:\Users\*****\AppData\Local\GDIPFONTCACHEV1.DAT 2013-08-19 21:22 - 2013-05-30 17:55 - 00000000 ____D C:\Users\*****\AppData\Roaming\vlc 2013-08-19 20:47 - 2013-08-19 20:47 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_iLokDrvr_01007.Wdf 2013-08-19 20:41 - 2013-08-19 20:41 - 00000000 ____D C:\Users\*****\AppData\Roaming\Avid 2013-08-19 20:35 - 2013-05-30 11:54 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-08-19 19:56 - 2013-08-19 19:22 - 00000000 ____D C:\ProgramData\Ableton 2013-08-19 19:50 - 2013-08-19 19:24 - 00000000 ____D C:\Users\*****\AppData\Roaming\Ableton 2013-08-19 19:34 - 2013-07-12 10:11 - 01249792 _____ (hxxp://www.ruby-lang.org/) C:\Users\*****\AppData\Roaming\msvcr90-ruby191.dll 2013-08-19 19:05 - 2013-08-19 19:04 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-19 18:01 - 2013-08-19 18:00 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-08-19 18:01 - 2013-08-19 18:00 - 00000000 ____D C:\Program Files\iTunes 2013-08-19 18:01 - 2013-05-30 15:40 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-08-19 18:00 - 2013-08-19 18:00 - 00000000 ____D C:\Program Files\iPod 2013-08-19 17:55 - 2013-05-30 15:16 - 00000000 ____D C:\Users\*****\AppData\Local\Last.fm 2013-08-17 17:33 - 2013-05-30 15:51 - 00000000 ____D C:\Users\*****\AppData\Local\CrashDumps 2013-08-16 11:02 - 2013-08-16 10:54 - 109543206 _____ C:\Users\*****\Downloads\enrmp167_un_-_the_secret_rift.zip 2013-08-16 11:01 - 2013-08-16 10:53 - 110608368 _____ C:\Users\*****\Downloads\enrmp168_un_-_hol.zip 2013-08-16 10:53 - 2013-08-16 10:52 - 26665445 _____ C:\Users\*****\Downloads\enrmp194_bashed_nursling_-_eating_thorax.zip 2013-08-16 08:42 - 2013-08-16 08:36 - 81475627 _____ C:\Users\*****\Downloads\enrmp238_bashed_nursling_-_every_sunday_morning_kills_us.zip 2013-08-16 08:42 - 2013-08-16 08:34 - 126372901 _____ C:\Users\*****\Downloads\enrmp259_bashed_nursling_-_palace_of_toxicology.zip 2013-08-16 08:33 - 2013-08-16 08:31 - 30072191 _____ C:\Users\*****\Downloads\enrmp288_edgeist_-_landscapes.zip 2013-08-15 19:54 - 2013-06-02 13:28 - 00000000 ____D C:\Users\*****\AppData\Roaming\Audacity 2013-08-15 18:24 - 2013-05-30 20:30 - 00000000 ____D C:\Users\*****\AppData\Roaming\Mp3tag 2013-08-15 03:55 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-08-15 03:17 - 2010-11-21 05:47 - 00057252 _____ C:\Windows\PFRO.log 2013-08-15 01:37 - 2013-08-14 21:46 - 212007729 _____ (Univers Sons ) C:\Users\*****\Downloads\uviworkstation-x64-2-1-5.exe 2013-08-14 23:48 - 2013-08-14 21:49 - 228607849 _____ C:\Users\*****\Downloads\AGML_1_1_0_Installer.rar 2013-08-14 20:35 - 2013-07-12 18:31 - 00000000 ____D C:\Windows\system32\MRT 2013-08-14 20:33 - 2013-05-30 12:53 - 78161360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-08-14 17:57 - 2013-08-14 17:57 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JXPlugins 2013-08-14 17:57 - 2013-08-14 17:57 - 00000000 ____D C:\Program Files (x86)\JXPlugins 2013-08-14 17:45 - 2013-07-20 11:53 - 00000000 ____D C:\Users\*****\AppData\Local\The Witcher 2013-08-14 14:28 - 2013-08-14 14:28 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Radio VSTI FREE 2013-08-14 14:27 - 2013-08-14 14:27 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Om VSTI FREE 2013-08-14 14:26 - 2013-08-14 14:26 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mushroombpm VSTI FREE 2013-08-14 14:25 - 2013-08-14 14:25 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Marijuana VSTI FREE 2013-08-12 18:49 - 2013-06-21 15:11 - 00000000 ____D C:\Users\*****\shared 2013-08-11 21:02 - 2013-08-11 21:02 - 00001007 _____ C:\Users\*****\Desktop\Free Alarm Clock.lnk 2013-08-11 21:02 - 2013-08-11 21:02 - 00000000 ____D C:\Program Files (x86)\FreeAlarmClock 2013-08-11 07:50 - 2013-05-30 14:46 - 00000000 ____D C:\Users\*****\Documents\Calibre Library 2013-08-11 07:39 - 2013-05-30 15:20 - 00000000 ____D C:\Users\*****\AppData\Roaming\uTorrent 2013-08-10 13:27 - 2013-06-24 19:20 - 00000000 ____D C:\Users\*****\Documents\Cubase Projects 2013-08-10 11:00 - 2013-05-30 16:32 - 00000000 ____D C:\Games 2013-08-09 21:20 - 2013-05-30 15:53 - 00000000 ____D C:\Users\*****\AppData\Local\Paint.NET 2013-08-09 11:12 - 2013-06-24 19:18 - 00000000 ____D C:\Program Files (x86)\Steinberg 2013-08-09 10:50 - 2013-08-09 10:50 - 00000000 ____D C:\ProgramData\Caphyon 2013-08-09 10:49 - 2013-06-21 16:11 - 00000000 ____D C:\Users\*****\AppData\Roaming\Flux 2013-08-09 10:26 - 2013-07-10 12:00 - 00000000 ____D C:\Users\*****\AppData\Roaming\PluginUpdate 2013-08-08 12:12 - 2013-05-30 16:01 - 00000000 ____D C:\Users\*****\AppData\Local\Spotify 2013-08-08 12:12 - 2013-05-30 16:00 - 00000000 ____D C:\Users\*****\AppData\Roaming\Spotify 2013-08-07 23:48 - 2013-08-07 23:46 - 00000000 ____D C:\ProgramData\WindSolutions 2013-08-07 23:46 - 2013-08-07 23:46 - 00000000 ____D C:\Users\*****\AppData\Roaming\WindSolutions 2013-08-07 13:09 - 2013-05-30 15:05 - 00000000 ____D C:\Users\*****\Documents\BioWare 2013-08-07 11:49 - 2013-05-30 15:59 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-08-07 11:49 - 2013-05-30 15:59 - 00000000 ____D C:\ProgramData\Skype 2013-08-06 13:22 - 2013-07-14 15:12 - 00282472 _____ C:\Windows\SysWOW64\PnkBstrB.xtr 2013-08-06 13:22 - 2013-07-14 15:09 - 00282472 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2013-08-04 19:18 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\LiveKernelReports 2013-08-04 18:15 - 2013-08-04 18:15 - 00001014 _____ C:\Users\Public\Desktop\Kontakt 5.lnk 2013-08-04 18:15 - 2013-08-04 18:15 - 00000000 __HDC C:\ProgramData\{ACEB5C90-39F7-4044-91EF-FBD59A59D240} 2013-08-04 18:13 - 2013-05-31 16:07 - 00000000 ____D C:\Program Files\Native Instruments 2013-08-04 13:23 - 2013-08-04 13:23 - 00000000 ____D C:\Program Files (x86)\Xylgo 2013-08-04 12:47 - 2013-05-30 13:50 - 00000000 ____D C:\Users\*****\Statistics 2013-08-03 14:40 - 2013-05-30 15:06 - 00000000 ____D C:\Users\*****\Documents\My Games 2013-08-03 10:12 - 2013-05-30 21:41 - 00000000 ___RD C:\Users\Public\Recorded TV 2013-08-03 10:12 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-07-31 18:31 - 2013-05-30 13:41 - 00000000 ____D C:\Users\*****\.freemind 2013-07-30 13:39 - 2013-07-28 23:03 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft 2013-07-30 13:38 - 2013-05-30 14:39 - 00000000 ____D C:\Users\*****\AppData\Roaming\DVDVideoSoft 2013-07-30 12:21 - 2013-07-30 12:21 - 00000000 __HDC C:\ProgramData\{B459B207-EA55-45E4-939F-D5DBD19BA3B1} 2013-07-30 12:21 - 2013-07-30 12:21 - 00000000 __HDC C:\ProgramData\{00E0164B-B182-4800-96DA-F8D39B3A7189} 2013-07-30 12:18 - 2013-05-31 16:07 - 00000000 ____D C:\Program Files\Common Files\Native Instruments 2013-07-30 11:53 - 2013-07-30 11:53 - 00000000 __HDC C:\ProgramData\{3B9A3AE3-5BE1-4645-A31C-753724255564} 2013-07-30 11:53 - 2013-07-30 11:53 - 00000000 __HDC C:\ProgramData\{3A633AE9-5307-4E4D-ACED-C8739F84CB10} 2013-07-30 11:53 - 2013-07-02 23:06 - 00001094 _____ C:\Users\Public\Desktop\Controller Editor.lnk 2013-07-30 11:52 - 2013-05-31 16:13 - 00000000 ____D C:\Users\Public\Documents\Guitar Rig 5 Player MFXP 2013-07-28 23:03 - 2013-07-28 23:03 - 00001306 _____ C:\Users\Public\Desktop\Free YouTube Download.lnk 2013-07-27 20:51 - 2013-07-27 20:51 - 00001675 _____ C:\Users\*****\Desktop\Massive.lnk 2013-07-27 20:49 - 2013-06-01 16:25 - 00000000 ____D C:\Users\*****\AppData\Local\Native Instruments 2013-07-27 20:49 - 2013-05-31 16:14 - 00000000 ____D C:\Users\*****\Documents\Native Instruments 2013-07-27 20:48 - 2013-07-27 20:48 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Native Instruments Massive 2013-07-27 20:48 - 2013-05-31 16:01 - 00000000 ____D C:\Program Files (x86)\Native Instruments 2013-07-27 18:48 - 2013-07-05 10:06 - 00000000 ____D C:\Program Files (x86)\MW3CU 2013-07-26 13:46 - 2013-05-30 14:57 - 00001114 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-07-26 13:46 - 2013-05-30 14:57 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-07-26 13:39 - 2013-07-26 13:40 - 00263592 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-07-26 13:39 - 2013-07-26 13:40 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-07-26 13:39 - 2013-07-26 13:39 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-07-26 13:39 - 2013-07-26 13:39 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-07-26 13:39 - 2013-07-26 13:39 - 00000000 ____D C:\Program Files (x86)\Java 2013-07-26 13:39 - 2013-05-31 20:29 - 00867240 _____ (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll 2013-07-26 13:39 - 2013-05-31 20:29 - 00789416 _____ (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll 2013-07-26 13:38 - 2013-07-26 13:38 - 00312232 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2013-07-26 13:38 - 2013-07-26 13:38 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2013-07-26 13:38 - 2013-07-26 13:38 - 00188840 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2013-07-26 13:38 - 2013-07-26 13:38 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2013-07-26 13:38 - 2013-05-30 13:40 - 01093032 _____ (Oracle Corporation) C:\Windows\system32\npDeployJava1.dll 2013-07-26 13:38 - 2013-05-30 13:40 - 00972712 _____ (Oracle Corporation) C:\Windows\system32\deployJava1.dll 2013-07-26 13:28 - 2013-07-26 13:27 - 01378902 _____ C:\Users\*****\Downloads\ME3_CinemaMod_v05.zip 2013-07-25 11:25 - 2013-08-14 19:43 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-07-25 10:57 - 2013-08-14 19:43 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-07-25 05:54 - 2013-08-14 20:32 - 17830400 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-07-25 05:37 - 2013-08-14 20:32 - 02312704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-07-25 05:35 - 2013-08-14 20:32 - 10926080 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-07-25 05:31 - 2013-08-14 20:32 - 01346560 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-07-25 05:30 - 2013-08-14 20:32 - 01392128 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-07-25 05:29 - 2013-08-14 20:32 - 01494528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-07-25 05:29 - 2013-08-14 20:32 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-07-25 05:29 - 2013-08-14 20:32 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-07-25 05:28 - 2013-08-14 20:32 - 02147840 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-07-25 05:28 - 2013-08-14 20:32 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-07-25 05:28 - 2013-08-14 20:32 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-07-25 05:28 - 2013-08-14 20:32 - 00599040 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-07-25 05:28 - 2013-08-14 20:32 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-07-25 05:27 - 2013-08-14 20:32 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-07-25 05:27 - 2013-08-14 20:32 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-07-25 05:26 - 2013-08-14 20:32 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-07-25 04:40 - 2013-08-14 20:32 - 12334080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-25 04:32 - 2013-08-14 20:32 - 01800704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-25 04:30 - 2013-08-14 20:32 - 09738752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-25 04:26 - 2013-08-14 20:32 - 01129472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-25 04:26 - 2013-08-14 20:32 - 01104384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-25 04:25 - 2013-08-14 20:32 - 01427968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-07-25 04:24 - 2013-08-14 20:32 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-07-25 04:24 - 2013-08-14 20:32 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-07-25 04:23 - 2013-08-14 20:32 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-25 04:23 - 2013-08-14 20:32 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-25 04:23 - 2013-08-14 20:32 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-25 04:23 - 2013-08-14 20:32 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-07-25 04:23 - 2013-08-14 20:32 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-07-25 04:22 - 2013-08-14 20:32 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-07-25 04:22 - 2013-08-14 20:32 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-07-25 04:22 - 2013-08-14 20:32 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-07-23 11:32 - 2013-07-23 11:32 - 00001947 _____ C:\Users\Public\Desktop\Medias in res! CD-ROM.lnk 2013-07-23 11:32 - 2013-07-23 11:32 - 00000000 ____D C:\Program Files (x86)\Veritas 2013-07-23 11:29 - 2013-07-23 11:29 - 00000000 __SHD C:\Users\*****\AppData\Roaming\.# 2013-07-23 09:54 - 2013-07-16 20:38 - 00000000 ____D C:\Users\Public\Documents\The Witcher 2013-07-21 17:46 - 2013-06-09 15:04 - 00000000 ____D C:\Program Files (x86)\IK Multimedia 2013-07-21 17:45 - 2013-06-09 15:07 - 00000016 _____ C:\Users\*****\AppData\Roaming\msregsvv.dll 2013-07-21 17:45 - 2013-06-09 15:07 - 00000016 _____ C:\ProgramData\autobk.inc 2013-07-21 16:46 - 2013-05-30 18:38 - 00000000 ____D C:\Music Library 2013-07-21 12:26 - 2013-06-02 17:24 - 00003326 _____ C:\Windows\System32\Tasks\{10899C27-91D0-463A-9B0D-FEA3DC1C4B3F} 2013-07-21 12:26 - 2013-05-30 14:57 - 00004122 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-07-21 12:26 - 2013-05-30 14:57 - 00003870 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-07-21 12:26 - 2013-05-30 14:20 - 00002780 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2013-07-21 12:26 - 2013-05-30 13:31 - 00003550 _____ C:\Windows\System32\Tasks\CreateChoiceProcessTask ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-13 13:15 ==================== End Of Log ============================ --- --- --- |
20.08.2013, 14:50 | #10 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | HTTP Fehlercode 104Zitat:
Wo du das Log von adwCleaner finest wurde in der Anleitung erwähnt, nämlich direkt auf C Nix Browser! Und das Log von JRT liegt auf dem Desktop. Es sei denn du hast JRT aus einem anderen Verzeichnis ausgeführt.
__________________ Logfiles bitte immer in CODE-Tags posten |
20.08.2013, 15:44 | #11 |
| HTTP Fehlercode 104Code:
ATTFilter # AdwCleaner v2.306 - Datei am 20/08/2013 um 15:18:22 erstellt # Aktualisiert am 19/07/2013 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzer : ***** - *****-HP # Bootmodus : Normal # Ausgeführt unter : C:\Users\*****\Downloads\adwcleaner.exe # Option [Löschen] **** [Dienste] **** ***** [Dateien / Ordner] ***** Ordner Gelöscht : C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\af0dqc2b.default\jetpack ***** [Registrierungsdatenbank] ***** ***** [Internet Browser] ***** -\\ Internet Explorer v9.0.8112.16502 [OK] Die Registrierungsdatenbank ist sauber. -\\ Mozilla Firefox v23.0.1 (de) Datei : C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\af0dqc2b.default\prefs.js C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\af0dqc2b.default\user.js ... Gelöscht ! [OK] Die Datei ist sauber. -\\ Google Chrome v28.0.1500.95 Datei : C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Preferences Gelöscht [l.3025] : urls_to_restore_on_startup = [ "hxxp://blekko.com/ws/?source=5f97ddbe&tbp=homepage&u=103d4e7a[...] ************************* AdwCleaner[S2].txt - [1188 octets] - [20/08/2013 15:18:23] ########## EOF - C:\AdwCleaner[S2].txt - [1248 octets] ########## |
20.08.2013, 15:54 | #12 |
/// Winkelfunktion /// TB-Süch-Tiger™ | HTTP Fehlercode 104 JRT neu runterladen noch nochmal ausführen
__________________ Logfiles bitte immer in CODE-Tags posten |
20.08.2013, 16:05 | #13 |
| HTTP Fehlercode 104 Ich versteh es nicht, es kommt einfach kein Log raus... |
20.08.2013, 16:11 | #14 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | HTTP Fehlercode 104Zitat:
__________________ Logfiles bitte immer in CODE-Tags posten |
20.08.2013, 16:23 | #15 |
| HTTP Fehlercode 104 Ja, habe ich, hat sich aber nirgendwo etwas erstellt. |
Themen zu HTTP Fehlercode 104 |
andere, anderen, bereits, chrome, compu, computer, dankbar, explorer, fehlercode, fehlercode 1, fehlercode 10, firefox, firewall, gen, gestern, geöffnete, inter, interne, internet, internet explorer, neue, neuen, nicht mehr, schuld, seiten, verbindung, webseite |