Angstschweiß | 13.01.2015 19:12 | Ich vergaß noch zu erwähnen, dass in meinen YouTube-Ergebnissen komischerweise plötzlich kyrillische und asiatische Treffer auftauchen und mir beim Skypen manchmal mitgeteilt wird, dass ich eine (un)sichere Verbindung eingehe...
Hier die Logs.
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 12-01-2015 02
Ran by TheCactusKing (administrator) on DEEPTHOUGHT on 13-01-2015 19:05:36
Running from C:\Users\TheCactusKing\Desktop
Loaded Profiles: TheCactusKing & UpdatusUser (Available profiles: TheCactusKing & UpdatusUser)
Platform: Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 9 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(Nero AG) C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
() C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(Microsoft Corporation) C:\Windows\ehome\ehsched.exe
(Microsoft Corporation) C:\Windows\ehome\ehrecvr.exe
(Microsoft Corporation) C:\Windows\System32\mobsync.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_16_0_0_235.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_16_0_0_235.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Farbar) C:\Users\TheCactusKing\Desktop\FRST(1).exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Skytel] => C:\Windows\Skytel.exe [1826816 2007-11-20] (Realtek Semiconductor Corp.)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [702768 2014-12-21] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [NBKeyScan] => C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [1836328 2007-09-20] (Nero AG)
HKLM\...\Run: [TkBellExe] => C:\Program Files\Real\RealPlayer\Update\realsched.exe [295512 2013-07-25] (RealNetworks, Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-11] (AVAST Software)
HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [126200 2014-11-20] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKU\S-1-5-21-2441206879-1096625189-3253557681-1000\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] => C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe [202024 2007-10-15] (Nero AG)
HKU\S-1-5-21-2441206879-1096625189-3253557681-1000\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [125952 2008-01-21] (Microsoft Corporation)
HKU\S-1-5-21-2441206879-1096625189-3253557681-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5489944 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-2441206879-1096625189-3253557681-1000\...\Run: [WMPNSCFG] => C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-21] (Microsoft Corporation)
HKU\S-1-5-21-2441206879-1096625189-3253557681-1049\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-2441206879-1096625189-3253557681-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=AV01
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-2441206879-1096625189-3253557681-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-2441206879-1096625189-3253557681-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=AV01
SearchScopes: HKLM -> DefaultScope {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKLM -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKLM -> {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?type=prc265&hspart=avast&hsimp=yhs-001&p={searchTerms}
SearchScopes: HKU\S-1-5-21-2441206879-1096625189-3253557681-1000 -> DefaultScope {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKU\S-1-5-21-2441206879-1096625189-3253557681-1000 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKU\S-1-5-21-2441206879-1096625189-3253557681-1000 -> {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?type=prc265&hspart=avast&hsimp=yhs-001&p={searchTerms}
BHO: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{8D0BB2C1-B0FB-4EAB-9C89-75529B53DFED}: [NameServer] 192.168.178.1
FireFox:
========
FF ProfilePath: C:\Users\TheCactusKing\AppData\Roaming\Mozilla\Firefox\Profiles\1lutacw3.default-1374750313292
FF DefaultSearchUrl: hxxp://www.bing.com/search
FF SearchEngineOrder.1: Microsoft (Bing)
FF Homepage: https://www.google.de/
FF Keyword.URL: hxxp://www.bing.com/search
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @real.com/nppl3260;version=16.0.2.32 -> C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlchromebrowserrecordext;version=1.3.2 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlhtml5videoshim;version=1.3.2 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlpepperflashvideoshim;version=1.3.2 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpplugin;version=16.0.2.32 -> C:\Program Files\Real\RealPlayer\Netscape6\nprpplugin.dll (RealPlayer)
FF Plugin: @realnetworks.com/npdlplugin;version=1 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.1.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2441206879-1096625189-3253557681-1000: @hola.org/vlc,version=1.6.207 -> C:\Users\TheCactusKing\AppData\Local\Hola\firefox\app\vlc ()
FF Plugin HKU\S-1-5-21-2441206879-1096625189-3253557681-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\TheCactusKing\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF SearchPlugin: C:\Users\TheCactusKing\AppData\Roaming\Mozilla\Firefox\Profiles\1lutacw3.default-1374750313292\searchplugins\bing-avast.xml
FF SearchPlugin: C:\Users\TheCactusKing\AppData\Roaming\Mozilla\Firefox\Profiles\1lutacw3.default-1374750313292\searchplugins\yahoo-avast.xml
FF Extension: DownloadHelper - C:\Users\TheCactusKing\AppData\Roaming\Mozilla\Firefox\Profiles\1lutacw3.default-1374750313292\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-09-15]
FF Extension: Video Downloader professional - C:\Users\TheCactusKing\AppData\Roaming\Mozilla\Firefox\Profiles\1lutacw3.default-1374750313292\Extensions\ffext_basicvideoext@startpage24.xpi [2014-08-02]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF HKLM\...\Firefox\Extensions: [{FCE04E1F-9378-4f39-96F6-5689A9159E45}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-07-25]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-09-11]
FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF HKU\S-1-5-21-2441206879-1096625189-3253557681-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: No Name - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
Chrome:
=======
CHR Profile: C:\Users\TheCactusKing\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\TheCactusKing\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-07-20]
CHR Extension: (Google Drive) - C:\Users\TheCactusKing\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-07-20]
CHR Extension: (YouTube) - C:\Users\TheCactusKing\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-07-20]
CHR Extension: (Google-Suche) - C:\Users\TheCactusKing\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-07-20]
CHR Extension: (avast! SafePrice) - C:\Users\TheCactusKing\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2014-08-13]
CHR Extension: (RealDownloader) - C:\Users\TheCactusKing\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji [2014-07-20]
CHR Extension: (Google Wallet) - C:\Users\TheCactusKing\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-07-20]
CHR Extension: (Google Mail) - C:\Users\TheCactusKing\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-07-20]
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswwebrepchrome-sp.crx [2014-08-04]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-12-21]
CHR HKLM\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-04-16]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [431920 2014-12-21] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [431920 2014-12-21] (Avira Operations GmbH & Co. KG)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-12-21] (AVAST Software)
S3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3192344 2014-12-21] (Avast Software)
R2 Avira.OE.ServiceHost; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [166192 2014-11-20] (Avira Operations GmbH & Co. KG)
R2 RealNetworks Downloader Resolver Service; C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-04-16] ()
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software)
S3 COMSysApp; %SystemRoot%\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24184 2014-12-21] ()
R1 aswKbd; C:\Windows\system32\Drivers\aswKbd.sys [21576 2013-08-30] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [70384 2014-12-21] (AVAST Software)
R1 AswRdr; C:\Windows\system32\drivers\aswRdr.sys [55240 2014-12-21] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2014-12-21] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [787800 2014-12-21] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [423784 2014-12-21] (AVAST Software)
R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [57928 2014-12-21] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [206248 2014-12-21] ()
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [98160 2014-10-16] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136216 2014-10-16] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2014-01-04] (Avira Operations GmbH & Co. KG)
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [114904 2015-01-13] (Malwarebytes Corporation)
S3 NTIOLib_1_0_4; C:\Program Files\MSI\Live Update 5\NTIOLib.sys [7680 2010-10-20] (MSI) [File not signed]
R3 Ph3xIB32; C:\Windows\System32\DRIVERS\Ph3xIB32.sys [1131136 2007-04-03] (Philips Semiconductors GmbH)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2013-03-20] (Avira GmbH)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [218192 2014-12-21] (Avast Software)
R3 XUIF; C:\Windows\System32\Drivers\x10ufx2.sys [27416 2006-11-30] (X10 Wireless Technology, Inc.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-21] (Microsoft Corporation)
S3 catchme; \??\C:\Users\THECAC~1\AppData\Local\Temp\catchme.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-13 19:05 - 2015-01-13 19:06 - 00018469 _____ () C:\Users\TheCactusKing\Desktop\FRST.txt
2015-01-13 19:04 - 2015-01-13 19:04 - 01115648 _____ (Farbar) C:\Users\TheCactusKing\Desktop\FRST(1).exe
2015-01-13 19:04 - 2015-01-13 19:04 - 00000000 ____D () C:\Program Files\Common Files\Java
2015-01-13 18:20 - 2015-01-13 18:20 - 00135216 _____ () C:\Windows\Minidump\Mini011315-01.dmp
2015-01-13 16:13 - 2015-01-13 16:13 - 00000345 _____ () C:\Users\TheCactusKing\Downloads\480P_600K_34743861.mp4
2015-01-12 15:39 - 2015-01-12 15:39 - 00000168 _____ () C:\Users\TheCactusKing\Downloads\1974350.flv
2015-01-11 20:05 - 2015-01-11 20:06 - 02655440 _____ () C:\Users\TheCactusKing\ts3_recording_15_01_11_20_5_43.wav
2015-01-11 19:52 - 2015-01-11 19:52 - 00033633 _____ () C:\Users\TheCactusKing\Documents\ts3_clientui-win32-1407159763-2015-01-11 19_52_26.481964.dmp
2015-01-11 18:36 - 2015-01-11 18:36 - 02761567 _____ () C:\Users\TheCactusKing\Downloads\1420986138757.webm
2015-01-11 18:34 - 2015-01-11 18:34 - 02677436 _____ () C:\Users\TheCactusKing\Downloads\sensi pearl.webm
2015-01-11 18:34 - 2015-01-11 18:34 - 02677436 _____ () C:\Users\TheCactusKing\Downloads\1420985521789.webm
2015-01-11 18:30 - 2015-01-11 18:30 - 02077466 _____ () C:\Users\TheCactusKing\Downloads\1420399242776.webm
2015-01-11 18:28 - 2015-01-11 18:28 - 03141787 _____ () C:\Users\TheCactusKing\Downloads\1419518348292.webm
2015-01-11 18:27 - 2015-01-11 18:27 - 02812800 _____ () C:\Users\TheCactusKing\Downloads\1419518210063.webm
2015-01-11 18:21 - 2015-01-11 18:21 - 03095461 _____ () C:\Users\TheCactusKing\Downloads\1420021712887.webm
2015-01-11 18:05 - 2015-01-11 18:05 - 02780064 _____ () C:\Users\TheCactusKing\Downloads\maria ryabushkina.webm
2015-01-11 18:04 - 2015-01-11 18:04 - 02780064 _____ () C:\Users\TheCactusKing\Downloads\1420392964162.webm
2015-01-11 18:04 - 2015-01-11 18:04 - 02523178 _____ () C:\Users\TheCactusKing\Downloads\1420385247357.webm
2015-01-11 18:04 - 2015-01-11 18:04 - 00598237 _____ () C:\Users\TheCactusKing\Downloads\1420393003868.webm
2015-01-11 18:02 - 2015-01-11 18:02 - 02984571 _____ () C:\Users\TheCactusKing\Downloads\1420352214066.webm
2015-01-11 18:02 - 2015-01-11 18:02 - 01744196 _____ () C:\Users\TheCactusKing\Downloads\emyliaargan.webm
2015-01-11 18:02 - 2015-01-11 18:02 - 01744196 _____ () C:\Users\TheCactusKing\Downloads\1420355509710.webm
2015-01-11 18:01 - 2015-01-11 18:01 - 02063931 _____ () C:\Users\TheCactusKing\Downloads\1420351618798yuffieyulan.webm
2015-01-11 18:01 - 2015-01-11 18:01 - 02063931 _____ () C:\Users\TheCactusKing\Downloads\1420351618798.webm
2015-01-11 17:57 - 2015-01-11 18:01 - 01042580 _____ () C:\Users\TheCactusKing\Downloads\1420346605196.webm
2015-01-11 17:56 - 2015-01-11 17:56 - 01445946 _____ () C:\Users\TheCactusKing\Downloads\1420250505090.webm
2015-01-11 17:56 - 2015-01-11 17:56 - 01250035 _____ () C:\Users\TheCactusKing\Downloads\1420250460554.webm
2015-01-11 17:55 - 2015-01-11 17:55 - 02111927 _____ () C:\Users\TheCactusKing\Downloads\1420250202693.webm
2015-01-11 17:52 - 2015-01-11 17:52 - 02593945 _____ () C:\Users\TheCactusKing\Downloads\1420907432198.webm
2015-01-11 17:50 - 2015-01-11 17:50 - 01214616 _____ () C:\Users\TheCactusKing\Downloads\1420992489585.webm
2015-01-11 17:48 - 2015-01-11 17:48 - 01573990 _____ () C:\Users\TheCactusKing\Downloads\1420592478467.webm
2015-01-11 17:47 - 2015-01-11 17:47 - 03023808 _____ () C:\Users\TheCactusKing\Downloads\1420250418953.webm
2015-01-11 17:46 - 2015-01-11 17:46 - 02111915 _____ () C:\Users\TheCactusKing\Downloads\1420084230741.webm
2015-01-11 17:45 - 2015-01-11 17:45 - 02896519 _____ () C:\Users\TheCactusKing\Downloads\1419709460380.webm
2015-01-11 17:45 - 2015-01-11 17:45 - 02893576 _____ () C:\Users\TheCactusKing\Downloads\1419709502485.webm
2015-01-11 17:42 - 2015-01-11 17:43 - 03108124 _____ () C:\Users\TheCactusKing\Downloads\1419612464731.webm
2015-01-11 17:42 - 2015-01-11 17:42 - 02436548 _____ () C:\Users\TheCactusKing\Downloads\1419483142940.webm
2015-01-11 17:42 - 2015-01-11 17:42 - 01656191 _____ () C:\Users\TheCactusKing\Downloads\1419483297607.webm
2015-01-11 17:41 - 2015-01-11 17:41 - 03127495 _____ () C:\Users\TheCactusKing\Downloads\1419482925246.webm
2015-01-11 17:41 - 2015-01-11 17:41 - 02954021 _____ () C:\Users\TheCactusKing\Downloads\1419429758906.webm
2015-01-11 17:38 - 2015-01-11 17:38 - 01315221 _____ () C:\Users\TheCactusKing\Downloads\1419427888000.webm
2015-01-11 17:35 - 2015-01-11 17:35 - 02988556 _____ () C:\Users\TheCactusKing\Downloads\1420951918192.webm
2015-01-08 23:37 - 2015-01-13 18:19 - 229534436 _____ () C:\Windows\MEMORY.DMP
2015-01-08 23:37 - 2015-01-08 23:37 - 00135216 _____ () C:\Windows\Minidump\Mini010815-01.dmp
2015-01-08 22:26 - 2015-01-08 22:26 - 03086132 _____ () C:\Users\TheCactusKing\Downloads\1420589830921.webm
2015-01-08 22:26 - 2015-01-08 22:26 - 03084263 _____ () C:\Users\TheCactusKing\Downloads\1420590029353.webm
2015-01-08 22:26 - 2015-01-08 22:26 - 03053786 _____ () C:\Users\TheCactusKing\Downloads\1420589901309.webm
2015-01-08 22:26 - 2015-01-08 22:26 - 03034944 _____ () C:\Users\TheCactusKing\Downloads\1420589932003.webm
2015-01-08 22:26 - 2015-01-08 22:26 - 03015061 _____ () C:\Users\TheCactusKing\Downloads\1420589965105.webm
2015-01-08 22:04 - 2015-01-08 22:04 - 03073661 _____ () C:\Users\TheCactusKing\Downloads\1420750115256.webm
2015-01-08 17:29 - 2015-01-08 17:30 - 03126216 _____ () C:\Users\TheCactusKing\Downloads\1420729823348.webm
2015-01-08 17:28 - 2015-01-08 17:28 - 03131955 _____ () C:\Users\TheCactusKing\Downloads\1420729338244.webm
2015-01-08 17:27 - 2015-01-08 17:27 - 03145211 _____ () C:\Users\TheCactusKing\Downloads\1420728025371.webm
2015-01-08 17:27 - 2015-01-08 17:27 - 03135867 _____ () C:\Users\TheCactusKing\Downloads\1420728246703.webm
2015-01-08 17:27 - 2015-01-08 17:27 - 03130408 _____ () C:\Users\TheCactusKing\Downloads\1420729071144.webm
2015-01-08 17:26 - 2015-01-08 17:26 - 03143279 _____ () C:\Users\TheCactusKing\Downloads\1420726490053.webm
2015-01-08 17:26 - 2015-01-08 17:26 - 03133443 _____ () C:\Users\TheCactusKing\Downloads\1420727860610.webm
2015-01-08 17:25 - 2015-01-08 17:26 - 03140110 _____ () C:\Users\TheCactusKing\Downloads\1420726455841.webm
2015-01-08 17:25 - 2015-01-08 17:25 - 03142921 _____ () C:\Users\TheCactusKing\Downloads\1420725590846.webm
2015-01-08 17:25 - 2015-01-08 17:25 - 03140708 _____ () C:\Users\TheCactusKing\Downloads\1420725918263.webm
2015-01-08 17:25 - 2015-01-08 17:25 - 03139910 _____ () C:\Users\TheCactusKing\Downloads\1420725949247.webm
2015-01-08 17:25 - 2015-01-08 17:25 - 03133768 _____ () C:\Users\TheCactusKing\Downloads\1420726424608.webm
2015-01-08 17:22 - 2015-01-08 17:24 - 03139147 _____ () C:\Users\TheCactusKing\Downloads\1420725459038.webm
2015-01-08 17:22 - 2015-01-08 17:22 - 03145270 _____ () C:\Users\TheCactusKing\Downloads\1420725338523.webm
2015-01-08 17:22 - 2015-01-08 17:22 - 03141316 _____ () C:\Users\TheCactusKing\Downloads\1420724984869.webm
2015-01-08 17:22 - 2015-01-08 17:22 - 03138479 _____ () C:\Users\TheCactusKing\Downloads\1420724948476.webm
2015-01-08 17:22 - 2015-01-08 17:22 - 03137189 _____ () C:\Users\TheCactusKing\Downloads\1420725386231.webm
2015-01-08 17:22 - 2015-01-08 17:22 - 03135746 _____ () C:\Users\TheCactusKing\Downloads\1420725426125.webm
2015-01-08 17:22 - 2015-01-08 17:22 - 03135041 _____ () C:\Users\TheCactusKing\Downloads\1420725297890.webm
2015-01-08 17:21 - 2015-01-08 17:21 - 03144517 _____ () C:\Users\TheCactusKing\Downloads\1420721673103.webm
2015-01-08 17:21 - 2015-01-08 17:21 - 03136152 _____ () C:\Users\TheCactusKing\Downloads\1420721884660.webm
2015-01-08 17:21 - 2015-01-08 17:21 - 03133381 _____ () C:\Users\TheCactusKing\Downloads\1420723474646.webm
2015-01-08 17:20 - 2015-01-08 17:20 - 02322950 _____ () C:\Users\TheCactusKing\Downloads\1420622761955.webm
2015-01-08 17:19 - 2015-01-08 17:19 - 02901594 _____ () C:\Users\TheCactusKing\Downloads\1420704570971.webm
2015-01-08 17:19 - 2015-01-08 17:19 - 01727781 _____ () C:\Users\TheCactusKing\Downloads\1420704707591.webm
2015-01-08 17:19 - 2015-01-08 17:19 - 01105552 _____ () C:\Users\TheCactusKing\Downloads\1420704653856.webm
2015-01-08 17:18 - 2015-01-08 17:18 - 03125867 _____ () C:\Users\TheCactusKing\Downloads\1420721304454.webm
2015-01-08 17:13 - 2015-01-08 17:13 - 01956985 _____ () C:\Users\TheCactusKing\Downloads\1420726034417.webm
2015-01-08 17:13 - 2015-01-08 17:13 - 01438056 _____ () C:\Users\TheCactusKing\Downloads\1420502180123.webm
2015-01-08 17:12 - 2015-01-08 17:12 - 02189316 _____ () C:\Users\TheCactusKing\Downloads\1420242248587.webm
2015-01-08 17:10 - 2015-01-08 17:10 - 01521235 _____ () C:\Users\TheCactusKing\Downloads\1420731368759.webm
2015-01-08 13:44 - 2015-01-08 13:44 - 02870651 _____ () C:\Users\TheCactusKing\Downloads\1420571148157.webm
2015-01-08 13:43 - 2015-01-08 13:43 - 02979436 _____ () C:\Users\TheCactusKing\Downloads\1420612286049.webm
2015-01-08 13:43 - 2015-01-08 13:43 - 02961171 _____ () C:\Users\TheCactusKing\Downloads\1420610927420.webm
2015-01-08 13:43 - 2015-01-08 13:43 - 02241237 _____ () C:\Users\TheCactusKing\Downloads\1420608771258.webm
2015-01-08 13:43 - 2015-01-08 13:43 - 01980694 _____ () C:\Users\TheCactusKing\Downloads\1420613628735.webm
2015-01-08 13:43 - 2015-01-08 13:43 - 01346731 _____ () C:\Users\TheCactusKing\Downloads\1420610554047.webm
2015-01-08 13:42 - 2015-01-08 13:42 - 01265140 _____ () C:\Users\TheCactusKing\Downloads\1420676144019.webm
2015-01-08 13:41 - 2015-01-08 13:41 - 03130656 _____ () C:\Users\TheCactusKing\Downloads\1420700629511.webm
2015-01-08 13:40 - 2015-01-08 13:40 - 03088452 _____ () C:\Users\TheCactusKing\Downloads\1420677992756.webm
2015-01-08 13:40 - 2015-01-08 13:40 - 02952902 _____ () C:\Users\TheCactusKing\Downloads\1420678099201.webm
2015-01-07 16:06 - 2015-01-07 16:10 - 00000000 ____D () C:\ProgramData\SecTaskMan
2015-01-07 16:06 - 2015-01-07 16:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security Task Manager
2015-01-07 16:06 - 2015-01-07 16:06 - 00000000 ____D () C:\Program Files\Security Task Manager
2015-01-07 16:00 - 2015-01-07 16:01 - 01174352 _____ () C:\Users\TheCactusKing\Downloads\Security Task Manager - CHIP-Installer(1).exe
2015-01-06 20:12 - 2015-01-06 20:12 - 01942467 _____ () C:\Users\TheCactusKing\Downloads\1420412408283.webm
2015-01-06 20:10 - 2015-01-06 20:10 - 03141153 _____ () C:\Users\TheCactusKing\Downloads\1420497908378.webm
2015-01-06 20:10 - 2015-01-06 20:10 - 03082857 _____ () C:\Users\TheCactusKing\Downloads\1420493364054.webm
2015-01-06 20:10 - 2015-01-06 20:10 - 03081556 _____ () C:\Users\TheCactusKing\Downloads\emma o hara.webm
2015-01-06 20:10 - 2015-01-06 20:10 - 03031223 _____ () C:\Users\TheCactusKing\Downloads\1420496558700.webm
2015-01-06 20:09 - 2015-01-06 20:09 - 03111254 _____ () C:\Users\TheCactusKing\Downloads\1420224387596.webm
2015-01-06 20:09 - 2015-01-06 20:09 - 03083813 _____ () C:\Users\TheCactusKing\Downloads\1420488936390.webm
2015-01-06 20:09 - 2015-01-06 20:09 - 03081876 _____ () C:\Users\TheCactusKing\Downloads\1420491940661.webm
2015-01-06 20:09 - 2015-01-06 20:09 - 02676510 _____ () C:\Users\TheCactusKing\Downloads\1420223936471.webm
2015-01-06 20:09 - 2015-01-06 20:09 - 02630017 _____ () C:\Users\TheCactusKing\Downloads\1420223535690.webm
2015-01-06 20:08 - 2015-01-06 20:08 - 02920612 _____ () C:\Users\TheCactusKing\Downloads\1420221725904.webm
2015-01-06 20:07 - 2015-01-06 20:08 - 01585693 _____ () C:\Users\TheCactusKing\Downloads\1420219527992.webm
2015-01-06 20:07 - 2015-01-06 20:07 - 02941771 _____ () C:\Users\TheCactusKing\Downloads\1419886254493.webm
2015-01-06 20:07 - 2015-01-06 20:07 - 02041397 _____ () C:\Users\TheCactusKing\Downloads\1419886171328.webm
2015-01-06 19:57 - 2015-01-06 19:57 - 03107378 _____ () C:\Users\TheCactusKing\Downloads\1420316681869.webm
2015-01-06 19:57 - 2015-01-06 19:57 - 02861941 _____ () C:\Users\TheCactusKing\Downloads\1420131477190.webm
2015-01-06 19:55 - 2015-01-06 19:55 - 03002715 _____ () C:\Users\TheCactusKing\Downloads\1419973411628.webm
2015-01-06 19:55 - 2015-01-06 19:55 - 02959792 _____ () C:\Users\TheCactusKing\Downloads\naveen ora.webm
2015-01-06 19:55 - 2015-01-06 19:55 - 02620999 _____ () C:\Users\TheCactusKing\Downloads\1419982219442.webm
2015-01-06 19:55 - 2015-01-06 19:55 - 01076487 _____ () C:\Users\TheCactusKing\Downloads\1420022911522.webm
2015-01-06 19:54 - 2015-01-06 19:54 - 03140016 _____ () C:\Users\TheCactusKing\Downloads\1420569143648.webm
2015-01-06 19:54 - 2015-01-06 19:54 - 03138673 _____ () C:\Users\TheCactusKing\Downloads\1420569057495.webm
2015-01-06 19:54 - 2015-01-06 19:54 - 03085835 _____ () C:\Users\TheCactusKing\Downloads\1420569032911.webm
2015-01-06 19:52 - 2015-01-06 19:52 - 03126513 _____ () C:\Users\TheCactusKing\Downloads\1420569322398.webm
2015-01-06 19:44 - 2015-01-06 19:44 - 01204128 _____ () C:\Users\TheCactusKing\Downloads\1420496068679.webm
2015-01-06 17:23 - 2015-01-06 17:23 - 00030273 _____ () C:\Users\TheCactusKing\Documents\dssda.odt
2015-01-06 15:51 - 2015-01-06 15:51 - 02489984 _____ () C:\Users\TheCactusKing\Downloads\1420431320650.webm
2015-01-06 15:42 - 2015-01-06 15:42 - 02808471 _____ () C:\Users\TheCactusKing\Downloads\1420132759319.webm
2015-01-06 15:42 - 2015-01-06 15:42 - 01573990 _____ () C:\Users\TheCactusKing\Downloads\1420438446457.webm
2015-01-06 15:41 - 2015-01-06 15:41 - 02885162 _____ () C:\Users\TheCactusKing\Downloads\1419898767627.webm
2015-01-06 15:40 - 2015-01-06 15:40 - 02483619 _____ () C:\Users\TheCactusKing\Downloads\1419866718366.webm
2015-01-06 15:10 - 2015-01-06 15:10 - 00322525 _____ () C:\Users\TheCactusKing\Downloads\Computer – Wikipedia.htm
2015-01-06 15:10 - 2015-01-06 15:10 - 00071995 _____ () C:\Users\TheCactusKing\Downloads\LMZ Geschichte des Computers.htm
2015-01-06 15:10 - 2015-01-06 15:10 - 00042968 _____ () C:\Users\TheCactusKing\Downloads\Computerwissen Online Geschichte des Computers.htm
2015-01-06 15:10 - 2015-01-06 15:10 - 00038811 _____ () C:\Users\TheCactusKing\Downloads\Planet Wissen - Geschichte des Computers.htm
2015-01-06 15:10 - 2015-01-06 15:10 - 00020639 _____ () C:\Users\TheCactusKing\Downloads\Computergeschichte Die ersten Computer.htm
2015-01-06 13:33 - 2014-08-21 21:09 - 00000568 _____ () C:\Users\TheCactusKing\Documents\server - Kopie.properties
2015-01-06 13:32 - 2015-01-06 13:36 - 00000593 _____ () C:\Users\TheCactusKing\Documents\server.properties
2015-01-06 00:07 - 2015-01-06 00:07 - 00011036 _____ () C:\Users\TheCactusKing\Documents\KingDoge96.dat
2015-01-06 00:02 - 2015-01-06 00:03 - 00000000 ____D () C:\Users\TheCactusKing\Downloads\MinecraftBookEditor_1.0.1
2015-01-06 00:01 - 2015-01-06 00:01 - 00024030 _____ () C:\Users\TheCactusKing\Downloads\MinecraftBookEditor_1.0.1.zip
2015-01-06 00:01 - 2015-01-06 00:01 - 00024030 _____ () C:\Users\TheCactusKing\Downloads\MinecraftBookEditor_1.0.1(2).zip
2015-01-06 00:01 - 2015-01-06 00:01 - 00024030 _____ () C:\Users\TheCactusKing\Downloads\MinecraftBookEditor_1.0.1(1).zip
2015-01-05 21:05 - 2015-01-05 21:05 - 00336931 _____ () C:\Users\TheCactusKing\Downloads\1420339407861.webm
2015-01-05 21:05 - 2015-01-05 21:05 - 00209297 _____ () C:\Users\TheCactusKing\Downloads\1420338955755.webm
2015-01-05 21:04 - 2015-01-05 21:04 - 01277997 _____ () C:\Users\TheCactusKing\Downloads\1420135450317.webm
2015-01-05 21:04 - 2015-01-05 21:04 - 00092876 _____ () C:\Users\TheCactusKing\Downloads\1420247099708.webm
2015-01-05 21:01 - 2015-01-05 21:01 - 01687716 _____ () C:\Users\TheCactusKing\Downloads\1420409861251.webm
2015-01-05 20:58 - 2015-01-05 20:58 - 03132392 _____ () C:\Users\TheCactusKing\Downloads\1420355563753.webm
2015-01-05 20:57 - 2015-01-05 20:58 - 03135521 _____ () C:\Users\TheCactusKing\Downloads\1420355444838.webm
2015-01-05 20:57 - 2015-01-05 20:57 - 03144904 _____ () C:\Users\TheCactusKing\Downloads\1420408884439.webm
2015-01-05 20:57 - 2015-01-05 20:57 - 03144746 _____ () C:\Users\TheCactusKing\Downloads\1420411857613.webm
2015-01-05 20:57 - 2015-01-05 20:57 - 03144512 _____ () C:\Users\TheCactusKing\Downloads\1420411711945.webm
2015-01-05 20:57 - 2015-01-05 20:57 - 03127579 _____ () C:\Users\TheCactusKing\Downloads\1420411751457.webm
2015-01-05 20:56 - 2015-01-05 20:57 - 03139053 _____ () C:\Users\TheCactusKing\Downloads\1420385394944.webm
2015-01-05 20:56 - 2015-01-05 20:56 - 03145381 _____ () C:\Users\TheCactusKing\Downloads\1420356228007.webm
2015-01-05 20:56 - 2015-01-05 20:56 - 03142226 _____ () C:\Users\TheCactusKing\Downloads\1420357629285.webm
2015-01-05 20:56 - 2015-01-05 20:56 - 03133537 _____ () C:\Users\TheCactusKing\Downloads\1420356351698.webm
2015-01-05 20:56 - 2015-01-05 20:56 - 03130019 _____ () C:\Users\TheCactusKing\Downloads\1420375717759.webm
2015-01-05 20:55 - 2015-01-05 20:55 - 03039145 _____ () C:\Users\TheCactusKing\Downloads\1420481128384.webm
2015-01-05 20:41 - 2015-01-05 20:41 - 02947082 _____ () C:\Users\TheCactusKing\Downloads\1419136851116.webm
2015-01-05 20:30 - 2015-01-06 15:24 - 00000600 _____ () C:\Users\TheCactusKing\AppData\Roaming\winscp.rnd
2015-01-05 20:10 - 2015-01-05 20:10 - 00000832 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinSCP.lnk
2015-01-05 20:10 - 2015-01-05 20:10 - 00000736 _____ () C:\Users\Public\Desktop\WinSCP.lnk
2015-01-05 20:10 - 2015-01-05 20:10 - 00000000 ____D () C:\Program Files\WinSCP
2015-01-05 20:09 - 2015-01-05 20:09 - 04665272 _____ (Martin Prikryl ) C:\Users\TheCactusKing\Downloads\winscp556setup.exe
2015-01-05 20:08 - 2015-01-06 15:08 - 00000600 _____ () C:\Users\TheCactusKing\AppData\Local\PUTTY.RND
2015-01-05 20:04 - 2015-01-05 20:04 - 00495616 _____ (Simon Tatham) C:\Users\TheCactusKing\Downloads\putty.exe
2015-01-05 13:56 - 2015-01-05 13:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-01-05 13:52 - 2015-01-05 13:52 - 05317104 _____ (Piriform Ltd) C:\Users\TheCactusKing\Downloads\ccsetup501.exe
2015-01-03 20:21 - 2015-01-03 20:21 - 01968892 _____ () C:\Users\TheCactusKing\Downloads\1420048072175.webm
2015-01-03 20:20 - 2015-01-03 20:20 - 02385181 _____ () C:\Users\TheCactusKing\Downloads\1419949869466.webm
2015-01-03 19:59 - 2015-01-03 19:59 - 02061670 _____ () C:\Users\TheCactusKing\Downloads\1420160658117.webm
2015-01-03 19:59 - 2015-01-03 19:59 - 01007428 _____ () C:\Users\TheCactusKing\Downloads\1420180697212.webm
2015-01-03 19:57 - 2015-01-03 19:57 - 02265298 _____ () C:\Users\TheCactusKing\Downloads\1420148589977.webm
2015-01-03 19:56 - 2015-01-03 19:56 - 03062638 _____ () C:\Users\TheCactusKing\Downloads\1420064267388.webm
2015-01-03 19:46 - 2015-01-03 19:46 - 03118596 _____ () C:\Users\TheCactusKing\Downloads\1419807555478.webm
2015-01-03 16:33 - 2015-01-03 16:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-01-03 16:33 - 2015-01-03 16:33 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-12-27 15:12 - 2015-01-13 19:04 - 00000000 ____D () C:\Users\TheCactusKing\AppData\Roaming\.minecraft
2014-12-27 14:49 - 2014-12-27 15:55 - 00000000 ____D () C:\Users\TheCactusKing\Documents\LAST DAYS 0.0.5
2014-12-27 13:39 - 2014-12-27 13:39 - 00891607 _____ () C:\Users\TheCactusKing\Downloads\OptiFine_1.7.10_HD_U_B4.jar
2014-12-27 13:38 - 2014-12-27 13:38 - 00865405 _____ () C:\Users\TheCactusKing\Downloads\OptiFine_1.7.10_HD_B4.jar
2014-12-26 22:25 - 2014-12-26 22:25 - 00000000 ____D () C:\Program Files\Pokémon Uranium Team
2014-12-26 21:54 - 2014-12-26 21:54 - 132245504 _____ () C:\Users\TheCactusKing\Downloads\Pokemon Uranium Beta 4.0.msi
2014-12-26 11:20 - 2014-12-27 05:02 - 00000000 ____D () C:\Users\TheCactusKing\Desktop\Yoooo
2014-12-25 15:18 - 2014-12-25 15:18 - 00000000 ____D () C:\Users\TheCactusKing\AppData\Local\Hola
2014-12-24 20:42 - 2014-12-24 20:42 - 01301945 _____ () C:\Users\TheCactusKing\Downloads\MrCrayfishFurnitureModv3.3.6(1.7.10).jar
2014-12-24 13:07 - 2014-12-24 13:09 - 18489772 _____ () C:\Users\TheCactusKing\Downloads\LAST DAYS 0.0.5.rar
2014-12-24 12:48 - 2014-12-24 12:48 - 03077905 _____ () C:\Users\TheCactusKing\Downloads\forge-1.7.10-10.13.2.1230-installer.jar
2014-12-24 12:44 - 2014-12-24 12:44 - 02936397 _____ () C:\Users\TheCactusKing\Downloads\forge-1.7.2-10.12.2.1147-installer.jar
2014-12-24 12:43 - 2014-12-24 12:44 - 08907076 _____ () C:\Users\TheCactusKing\Downloads\forge-1.7.10-10.13.2.1230-javadoc.zip
2014-12-24 12:02 - 2014-12-24 12:02 - 00387610 _____ () C:\Users\TheCactusKing\Downloads\mosesmod-1.3.4-mc1.6.4.jar
2014-12-24 11:29 - 2014-12-24 11:29 - 01217453 _____ () C:\Users\TheCactusKing\Downloads\FoodPlus-1.6.4-3.0rS.jar
2014-12-24 00:18 - 2014-12-24 00:18 - 00098668 _____ () C:\Users\TheCactusKing\Downloads\Ego Leonard - Wikipedia, the free encyclopedia.htm
2014-12-21 18:41 - 2014-12-21 18:42 - 03521312 _____ (DVDVideoSoft Ltd. ) C:\Users\TheCactusKing\Downloads\FreeVideoToMP3Converter.exe
2014-12-21 18:23 - 2014-12-28 14:17 - 00000000 ____D () C:\Users\TheCactusKing\Desktop\Neuer Ordner (4)
2014-12-21 18:23 - 2014-12-24 01:47 - 00000000 ____D () C:\Users\TheCactusKing\Desktop\Lara du Hänger
2014-12-21 18:20 - 2014-12-21 18:20 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d01d425bd0a45b.job
2014-12-21 16:19 - 2014-12-28 23:00 - 00000000 ____D () C:\Users\TheCactusKing\Desktop\Hyperketaminose
2014-12-21 16:07 - 2014-12-21 16:07 - 00001831 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2014-12-21 16:06 - 2014-12-21 16:06 - 00291352 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-12-21 16:06 - 2014-12-21 16:06 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-12-21 15:59 - 2014-12-21 15:59 - 00000962 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-12-21 14:10 - 2014-12-21 14:14 - 24743106 _____ () C:\Users\TheCactusKing\Downloads\vlc-2.1.5-win32.exe
2014-12-21 13:20 - 2014-10-10 02:01 - 00449536 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-12-21 13:20 - 2014-10-10 02:00 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-12-21 13:20 - 2014-10-10 00:22 - 00619520 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-12-21 13:19 - 2014-11-07 02:33 - 00974848 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-12-21 13:19 - 2014-11-04 01:19 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-12-21 13:18 - 2014-10-24 02:04 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-12-21 13:18 - 2014-10-24 02:03 - 00499200 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-12-21 13:18 - 2014-08-27 01:55 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-12-21 13:18 - 2014-08-27 01:55 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-12-21 13:17 - 2014-08-12 03:25 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-12-21 13:16 - 2014-10-03 02:18 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-12-21 13:16 - 2014-10-03 02:17 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-12-21 13:16 - 2014-10-03 02:17 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-12-21 13:16 - 2014-10-03 02:17 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-12-21 13:12 - 2014-10-18 02:08 - 00564224 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-12-21 13:10 - 2014-12-03 03:06 - 00278528 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-12-21 13:10 - 2014-10-13 00:34 - 02054656 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-12-21 13:10 - 2014-10-10 02:00 - 01259008 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-12-21 12:41 - 2014-11-24 21:44 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-12-21 12:41 - 2014-11-24 21:41 - 12369920 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-12-21 12:41 - 2014-11-24 21:40 - 01810944 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-12-21 12:41 - 2014-11-24 21:37 - 09740800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-12-21 12:41 - 2014-11-24 21:35 - 01139712 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-12-21 12:41 - 2014-11-24 21:35 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-12-21 12:41 - 2014-11-24 21:34 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-12-21 12:41 - 2014-11-24 21:34 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-12-21 12:41 - 2014-11-24 21:33 - 01802752 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-12-21 12:41 - 2014-11-24 21:33 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-12-21 12:41 - 2014-11-24 21:33 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-12-21 12:41 - 2014-11-24 21:33 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-12-21 12:41 - 2014-11-24 21:33 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-12-21 12:41 - 2014-11-24 21:33 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-12-21 12:41 - 2014-11-24 21:33 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-12-21 12:41 - 2014-11-24 21:32 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-12-21 12:41 - 2014-11-24 21:32 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-12-21 12:41 - 2014-11-24 21:32 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-12-21 12:41 - 2014-11-24 21:32 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-12-21 12:41 - 2014-11-24 21:32 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-12-21 12:41 - 2014-11-24 21:32 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-12-21 12:41 - 2014-11-24 21:32 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-12-21 12:27 - 2014-12-21 12:27 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-12-16 14:36 - 2014-12-20 11:21 - 00000000 ____D () C:\Users\TheCactusKing\Desktop\Endlich!
2014-12-14 19:30 - 2014-12-14 19:30 - 00000019 _____ () C:\Users\TheCactusKing\Documents\Welt.txt
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-13 19:05 - 2014-10-12 20:24 - 00000000 ____D () C:\FRST
2015-01-13 19:03 - 2014-06-02 19:05 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2015-01-13 19:02 - 2014-06-02 19:04 - 00000000 ____D () C:\Program Files\Java
2015-01-13 18:38 - 2014-06-30 19:25 - 00000000 ____D () C:\Users\TheCactusKing\AppData\Roaming\TS3Client
2015-01-13 18:25 - 2013-09-02 20:20 - 01452649 _____ () C:\Windows\WindowsUpdate.log
2015-01-13 18:24 - 2006-11-02 13:37 - 00000000 ___RD () C:\Users\Public\Recorded TV
2015-01-13 18:20 - 2013-03-18 23:35 - 00000000 ____D () C:\Windows\Minidump
2015-01-13 18:20 - 2006-11-02 13:47 - 00003712 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-13 18:20 - 2006-11-02 13:47 - 00003712 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-13 17:42 - 2014-09-25 16:48 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-01-13 16:18 - 2013-07-25 12:11 - 00000000 ____D () C:\Users\TheCactusKing\dwhelper
2015-01-13 16:17 - 2013-03-18 18:38 - 00000000 ____D () C:\Users\TheCactusKing\AppData\Roaming\vlc
2015-01-13 15:50 - 2014-04-01 16:24 - 00000000 ____D () C:\Users\TheCactusKing\AppData\Roaming\Skype
2015-01-12 23:50 - 2008-01-21 08:16 - 01598490 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-11 20:05 - 2013-03-04 17:02 - 00000000 ____D () C:\Users\TheCactusKing
2015-01-08 09:55 - 2014-05-31 11:03 - 00249488 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-01-07 17:27 - 2013-03-26 17:47 - 00000000 ____D () C:\Program Files\Steam
2015-01-05 16:20 - 2014-06-30 19:25 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client
2015-01-05 14:03 - 2013-03-04 16:51 - 00000000 ____D () C:\Windows\Panther
2015-01-05 13:56 - 2013-08-10 05:12 - 00000000 ____D () C:\Program Files\CCleaner
2015-01-03 17:35 - 2014-09-28 19:55 - 00058880 _____ () C:\Users\TheCactusKing\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-01-03 16:33 - 2014-04-01 16:24 - 00000000 ___RD () C:\Program Files\Skype
2015-01-03 16:33 - 2014-04-01 16:20 - 00000000 ____D () C:\ProgramData\Skype
2014-12-24 12:38 - 2014-03-27 19:05 - 00000000 ____D () C:\Users\TheCactusKing\Desktop\SuchMuch Productions
2014-12-23 12:24 - 2014-09-25 16:47 - 00000859 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-12-23 12:24 - 2014-09-25 16:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-12-23 12:24 - 2014-09-25 16:47 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2014-12-23 11:19 - 2013-03-26 17:47 - 00000000 ____D () C:\Program Files\Common Files\Steam
2014-12-21 18:45 - 2014-01-13 13:13 - 00002043 _____ () C:\Users\Public\Desktop\Free Video to MP3 Converter.lnk
2014-12-21 18:45 - 2014-01-12 18:35 - 00000994 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2014-12-21 18:45 - 2013-06-20 19:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2014-12-21 18:45 - 2013-06-20 19:08 - 00000000 ____D () C:\Program Files\DVDVideoSoft
2014-12-21 18:45 - 2013-06-20 19:08 - 00000000 ____D () C:\Program Files\Common Files\DVDVideoSoft
2014-12-21 18:44 - 2013-04-01 14:52 - 00000000 ____D () C:\Users\TheCactusKing\AppData\Roaming\DVDVideoSoft
2014-12-21 18:26 - 2013-06-08 12:52 - 00000000 ____D () C:\Program Files\Google
2014-12-21 18:20 - 2014-07-20 17:15 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cfa435e02a0e7d.job
2014-12-21 16:07 - 2013-09-11 12:27 - 00787800 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-12-21 16:06 - 2014-05-31 11:35 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-12-21 16:06 - 2013-09-11 12:27 - 00423784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-12-21 16:06 - 2013-09-11 12:27 - 00206248 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-12-21 16:06 - 2013-09-11 12:27 - 00070384 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-12-21 16:06 - 2013-09-11 12:27 - 00057928 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys
2014-12-21 16:06 - 2013-09-11 12:27 - 00055240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswrdr.sys
2014-12-21 16:06 - 2013-09-11 12:27 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-12-21 16:06 - 2013-09-11 12:27 - 00000350 ____H () C:\Windows\Tasks\avast! Emergency Update.job
2014-12-21 15:59 - 2014-10-16 11:41 - 00000000 ____D () C:\ProgramData\Package Cache
2014-12-21 15:59 - 2013-03-20 20:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-12-21 15:59 - 2013-03-20 20:13 - 00000000 ____D () C:\Program Files\Avira
2014-12-21 15:52 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-12-21 15:49 - 2006-11-02 13:47 - 00261296 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-12-21 15:48 - 2013-03-18 19:01 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-12-21 15:46 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\system32\de-DE
2014-12-21 14:17 - 2014-08-21 22:02 - 00000000 ____D () C:\Users\TheCactusKing\AppData\Local\Adobe
2014-12-21 14:17 - 2014-08-13 11:18 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-12-21 14:17 - 2013-10-19 19:05 - 00000819 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-12-21 14:17 - 2013-10-19 19:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-12-21 14:17 - 2013-09-25 17:14 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-12-21 14:17 - 2013-09-25 17:14 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-12-21 13:16 - 2013-08-07 10:49 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-20 14:33 - 2014-11-10 19:55 - 00000000 ____D () C:\Users\TheCactusKing\Desktop\Neuer Ordner (2)
2014-12-20 14:32 - 2014-07-10 22:15 - 00000000 ____D () C:\Users\TheCactusKing\Desktop\items
2014-12-20 14:28 - 2013-08-30 11:13 - 00000000 ____D () C:\Users\TheCactusKing\Desktop\Neuer Ordner (3)
2014-12-20 11:47 - 2014-10-12 20:20 - 03065015 _____ () C:\Users\TheCactusKing\Downloads\Humping the Mojave v003-43773-v003.zip
2014-12-16 18:32 - 2014-12-11 13:22 - 00000000 ____D () C:\Users\TheCactusKing\Desktop\Ressel
Files to move or delete:
====================
C:\Windows\Tasks\{75CA4219-10AB-481E-8084-7C72666421BC}.job
C:\Windows\Tasks\{8312EC9C-1473-4191-89E3-97DC483C1C34}.job
Some content of TEMP:
====================
C:\Users\TheCactusKing\AppData\Local\temp\avgnt.exe
C:\Users\TheCactusKing\AppData\Local\temp\Hola-Setup-Plugin-1.6.139.exe
C:\Users\TheCactusKing\AppData\Local\temp\Hola-Setup-Plugin-1.6.144.exe
C:\Users\TheCactusKing\AppData\Local\temp\Hola-Setup-Plugin-1.6.165.exe
C:\Users\TheCactusKing\AppData\Local\temp\Hola-Setup-Plugin-1.6.180.exe
C:\Users\TheCactusKing\AppData\Local\temp\Hola-Setup-Plugin-1.6.207.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-01-13 18:27
==================== End Of Log ============================ --- --- --- Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 12-01-2015 02
Ran by TheCactusKing at 2015-01-13 19:08:17
Running from C:\Users\TheCactusKing\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Flash Player 16 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 16.0.0.235 - Adobe Systems Incorporated)
Avast Free Antivirus (HKLM\...\Avast) (Version: 10.0.2208 - AVAST Software)
Avira (HKLM\...\{e7c7c227-b742-4878-9425-f09bbf9951db}) (Version: 1.1.27.25527 - Avira Operations & Co. KG)
Avira (Version: 1.1.27.25527 - Avira Operations & Co. KG) Hidden
Avira Free Antivirus (HKLM\...\Avira AntiVir Desktop) (Version: 14.0.7.468 - Avira)
CCleaner (HKLM\...\CCleaner) (Version: 5.01 - Piriform)
Fallout: New Vegas (HKLM\...\Steam App 22380) (Version: - Obsidian Entertainment)
Free Video to MP3 Converter version 5.0.54.1215 (HKLM\...\Free Video to MP3 Converter_is1) (Version: 5.0.54.1215 - DVDVideoSoft Ltd.)
Google Chrome (HKLM\...\Google Chrome) (Version: 39.0.2171.95 - Google Inc.)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Java 8 Update 25 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
Malwarebytes Anti-Malware Version 2.0.4.1028 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1 (1033)) (Version: - )
Microsoft .NET Framework 1.1 German Language Pack (HKLM\...\{E78BFA60-5393-4C38-82AB-E8019E464EB4}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 1.1 Security Update (KB2833941) (HKLM\...\M2833941) (Version: - )
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - deu) (Version: - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM\...\{2E660A2A-A55F-43CD-9F73-CAD7382EEB78}) (Version: 3.0.19.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Mozilla Firefox 34.0.5 (x86 de) (HKLM\...\Mozilla Firefox 34.0.5 (x86 de)) (Version: 34.0.5 - Mozilla)
RealNetworks - Microsoft Visual C++ 2008 Runtime (Version: 9.0 - RealNetworks, Inc) Hidden
RealNetworks - Microsoft Visual C++ 2010 Runtime (Version: 10.0 - RealNetworks, Inc) Hidden
Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Security Task Manager 1.8g (HKLM\...\Security Task Manager) (Version: 1.8g - Neuber Software)
Skype™ 7.0 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Unity Web Player (HKU\S-1-5-21-2441206879-1096625189-3253557681-1000\...\UnityWebPlayer) (Version: 4.5.1f3 - Unity Technologies ApS)
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
WinSCP 5.5.6 (HKLM\...\winscp3_is1) (Version: 5.5.6 - Martin Prikryl)
Yume Nikki 0.10 English (HKU\S-1-5-21-2441206879-1096625189-3253557681-1000\...\Yume Nikki 0.10 English) (Version: - )
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
CustomCLSID: HKU\S-1-5-21-2441206879-1096625189-3253557681-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\TheCactusKing\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx (Unity Technologies ApS)
CustomCLSID: HKU\S-1-5-21-2441206879-1096625189-3253557681-1049_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\UpdatusUser\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx No File
==================== Restore Points =========================
17-10-2014 19:22:04 Windows Update
21-10-2014 19:49:04 Windows Update
21-12-2014 12:34:25 Windows Update
21-12-2014 13:09:35 Windows Update
21-12-2014 16:01:50 avast! antivirus system restore point
23-12-2014 11:21:48 Windows Update
26-12-2014 11:27:05 Windows Update
26-12-2014 22:23:49 Installed Pokémon Uranium Beta 4.0
05-01-2015 03:11:33 Windows Update
09-01-2015 13:51:17 Windows Update
13-01-2015 14:22:41 Windows Update
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2006-11-02 11:23 - 2006-09-18 22:41 - 00000761 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
::1 localhost
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {0BFB2E26-6FD4-40C8-9832-37AAFBB9AF6A} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2441206879-1096625189-3253557681-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2013-04-16] (RealNetworks, Inc.)
Task: {12B086B3-C00F-472E-9D5F-7124E4173859} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2441206879-1096625189-3253557681-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2013-04-16] (RealNetworks, Inc.)
Task: {2FA58D4E-94C4-494E-A4D5-291FE0920374} - System32\Tasks\ReclaimerUpdateFiles_TheCactusKing => C:\Users\TheCactusKing\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe [2013-09-05] (RealNetworks, Inc.)
Task: {3E7446F4-B8FA-4E83-BE55-9B5A11EF5E84} - System32\Tasks\ReclaimerUpdateXML_TheCactusKing => C:\Users\TheCactusKing\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe [2013-09-05] (RealNetworks, Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cfa435e02a0e7d.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d01d425bd0a45b.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2441206879-1096625189-3253557681-1000.job => C:\Program Files\Real\RealUpgrade\realupgrade.exe
Task: C:\Windows\Tasks\ReclaimerUpdateFiles_TheCactusKing.job => C:\Users\TheCactusKing\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe
Task: C:\Windows\Tasks\ReclaimerUpdateXML_TheCactusKing.job => C:\Users\TheCactusKing\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe
Task: C:\Windows\Tasks\{75CA4219-10AB-481E-8084-7C72666421BC}.job => c:\program files\mozilla firefox\firefox.exe
Task: C:\Windows\Tasks\{8312EC9C-1473-4191-89E3-97DC483C1C34}.job => c:\program files\mozilla firefox\firefox.exe
==================== Loaded Modules (whitelisted) =============
2015-01-13 14:12 - 2015-01-13 14:12 - 02909696 _____ () C:\Program Files\AVAST Software\Avast\defs\15011300\algo.dll
2015-01-13 18:21 - 2015-01-13 18:21 - 02909696 _____ () C:\Program Files\AVAST Software\Avast\defs\15011302\algo.dll
2013-04-16 02:07 - 2013-04-16 02:07 - 00039056 _____ () C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
2013-10-23 08:46 - 2014-12-21 16:06 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2014-12-21 12:27 - 2014-12-21 12:27 - 03758192 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll
2014-12-21 14:17 - 2014-12-21 14:17 - 16843952 _____ () C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_235.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
AlternateDataStreams: C:\Users\TheCactusKing\Downloads\Oasis _ Don't Look Back In Anger (Official Video).mp4:TOC.WMV
AlternateDataStreams: C:\Users\TheCactusKing\Downloads\The Fray _ How to Save a Life.mp4:TOC.WMV
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
MSCONFIG\startupfolder: C:^Users^TheCactusKing^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.4.1.lnk => C:\Windows\pss\OpenOffice.org 3.4.1.lnk.Startup
MSCONFIG\startupreg: EADM => "C:\Program Files\Origin\Origin.exe" -AutoStart
MSCONFIG\startupreg: Live Update 5 => C:\Program Files\MSI\Live Update 5\BootStartLiveupdate.exe /reminder
MSCONFIG\startupreg: RtHDVCpl => RtHDVCpl.exe
MSCONFIG\startupreg: Skype => "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: Sony PC Companion => "C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe" /Background
MSCONFIG\startupreg: Steam => "C:\Program Files\Steam\Steam.exe" -silent
========================= Accounts: ==========================
Administrator (S-1-5-21-2441206879-1096625189-3253557681-500 - Administrator - Disabled)
ASPNET (S-1-5-21-2441206879-1096625189-3253557681-1002 - Limited - Enabled)
Gast (S-1-5-21-2441206879-1096625189-3253557681-501 - Limited - Enabled)
TheCactusKing (S-1-5-21-2441206879-1096625189-3253557681-1000 - Administrator - Enabled) => C:\Users\TheCactusKing
UpdatusUser (S-1-5-21-2441206879-1096625189-3253557681-1049 - Limited - Enabled) => C:\Users\UpdatusUser
==================== Faulty Device Manager Devices =============
Name: 802.11 n WLAN
Description: 802.11 n WLAN
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: SM-Bus-Controller
Description: SM-Bus-Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (01/13/2015 06:47:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Fehlerhafte Anwendung plugin-container.exe, Version 34.0.5.5443, Zeitstempel 0x5475dd5d, fehlerhaftes Modul mozalloc.dll, Version 34.0.5.5443, Zeitstempel 0x5475d664, Ausnahmecode 0x80000003, Fehleroffset 0x00001425,
Prozess-ID 0xdf0, Anwendungsstartzeit plugin-container.exe0.
Error: (01/13/2015 06:27:17 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Eintrag <C:\USERS\THECACTUSKING\APPDATA\ROAMING\TS3CLIENT\CACHE\REMOTE\TEMP\WWW.FUN-UND-WITZE.DE\INFUSIONS> in der Hash-Zuordnung kann nicht aktualisiert werden.
Kontext: Anwendung, SystemIndex Katalog
Details:
Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f)
Error: (01/13/2015 06:27:17 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Eintrag <C:\USERS\THECACTUSKING\APPDATA\ROAMING\TS3CLIENT\CACHE\REMOTE\TEMP\WWW.FUN-UND-WITZE.DE\INFUSIONS> in der Hash-Zuordnung kann nicht aktualisiert werden.
Kontext: Anwendung, SystemIndex Katalog
Details:
Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f)
Error: (01/13/2015 06:27:17 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Eintrag <C:\USERS\THECACTUSKING\APPDATA\ROAMING\TS3CLIENT\CACHE\REMOTE\TEMP\WWW.FUN-UND-WITZE.DE> in der Hash-Zuordnung kann nicht aktualisiert werden.
Kontext: Anwendung, SystemIndex Katalog
Details:
Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f)
Error: (01/13/2015 06:27:17 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Eintrag <C:\USERS\THECACTUSKING\APPDATA\ROAMING\TS3CLIENT\CACHE\REMOTE\TEMP\WWW.FUN-UND-WITZE.DE> in der Hash-Zuordnung kann nicht aktualisiert werden.
Kontext: Anwendung, SystemIndex Katalog
Details:
Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f)
Error: (01/13/2015 06:27:15 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Eintrag <C:\USERS\THECACTUSKING\APPDATA\ROAMING\TS3CLIENT\CACHE\REMOTE\TEMP\WWW.FUN-UND-WITZE.DE\INFUSIONS\TEAMSPEAK3\BANNER> in der Hash-Zuordnung kann nicht aktualisiert werden.
Kontext: Anwendung, SystemIndex Katalog
Details:
Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f)
Error: (01/13/2015 06:27:15 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Eintrag <C:\USERS\THECACTUSKING\APPDATA\ROAMING\TS3CLIENT\CACHE\REMOTE\TEMP\WWW.FUN-UND-WITZE.DE\INFUSIONS\TEAMSPEAK3\BANNER> in der Hash-Zuordnung kann nicht aktualisiert werden.
Kontext: Anwendung, SystemIndex Katalog
Details:
Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f)
Error: (01/13/2015 06:27:15 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Eintrag <C:\USERS\THECACTUSKING\APPDATA\ROAMING\TS3CLIENT\CACHE\REMOTE\TEMP\WWW.FUN-UND-WITZE.DE\INFUSIONS\TEAMSPEAK3> in der Hash-Zuordnung kann nicht aktualisiert werden.
Kontext: Anwendung, SystemIndex Katalog
Details:
Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f)
Error: (01/13/2015 06:27:15 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Eintrag <C:\USERS\THECACTUSKING\APPDATA\ROAMING\TS3CLIENT\CACHE\REMOTE\TEMP\WWW.FUN-UND-WITZE.DE\INFUSIONS\TEAMSPEAK3> in der Hash-Zuordnung kann nicht aktualisiert werden.
Kontext: Anwendung, SystemIndex Katalog
Details:
Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f)
Error: (01/13/2015 06:27:15 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Eintrag <C:\USERS\THECACTUSKING\APPDATA\ROAMING\TS3CLIENT\CACHE\REMOTE\TEMP\WWW.FUN-UND-WITZE.DE\INFUSIONS> in der Hash-Zuordnung kann nicht aktualisiert werden.
Kontext: Anwendung, SystemIndex Katalog
Details:
Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f)
System errors:
=============
Error: (01/13/2015 06:21:37 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}NT-AUTORITÄTLOKALER DIENSTS-1-5-19LocalHost (unter Verwendung von LRPC)
Error: (01/13/2015 06:21:35 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)
Error: (01/13/2015 06:20:13 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am 13.01.2015 um 18:18:25 unerwartet heruntergefahren.
Error: (01/13/2015 02:13:11 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)
Error: (01/13/2015 02:12:08 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}NT-AUTORITÄTLOKALER DIENSTS-1-5-19LocalHost (unter Verwendung von LRPC)
Error: (01/13/2015 06:23:58 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)
Error: (01/13/2015 06:23:35 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}NT-AUTORITÄTLOKALER DIENSTS-1-5-19LocalHost (unter Verwendung von LRPC)
Error: (01/12/2015 03:11:21 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)
Error: (01/12/2015 03:11:01 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}NT-AUTORITÄTLOKALER DIENSTS-1-5-19LocalHost (unter Verwendung von LRPC)
Error: (01/11/2015 04:55:14 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)
Microsoft Office Sessions:
=========================
Error: (01/13/2015 06:47:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe34.0.5.54435475dd5dmozalloc.dll34.0.5.54435475d6648000000300001425df001d02f5874dc7c10
Error: (01/13/2015 06:27:17 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Kontext: Anwendung, SystemIndex Katalog
Details:
Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f)
C:\USERS\THECACTUSKING\APPDATA\ROAMING\TS3CLIENT\CACHE\REMOTE\TEMP\WWW.FUN-UND-WITZE.DE\INFUSIONS
Error: (01/13/2015 06:27:17 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Kontext: Anwendung, SystemIndex Katalog
Details:
Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f)
C:\USERS\THECACTUSKING\APPDATA\ROAMING\TS3CLIENT\CACHE\REMOTE\TEMP\WWW.FUN-UND-WITZE.DE\INFUSIONS
Error: (01/13/2015 06:27:17 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Kontext: Anwendung, SystemIndex Katalog
Details:
Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f)
C:\USERS\THECACTUSKING\APPDATA\ROAMING\TS3CLIENT\CACHE\REMOTE\TEMP\WWW.FUN-UND-WITZE.DE
Error: (01/13/2015 06:27:17 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Kontext: Anwendung, SystemIndex Katalog
Details:
Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f)
C:\USERS\THECACTUSKING\APPDATA\ROAMING\TS3CLIENT\CACHE\REMOTE\TEMP\WWW.FUN-UND-WITZE.DE
Error: (01/13/2015 06:27:15 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Kontext: Anwendung, SystemIndex Katalog
Details:
Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f)
C:\USERS\THECACTUSKING\APPDATA\ROAMING\TS3CLIENT\CACHE\REMOTE\TEMP\WWW.FUN-UND-WITZE.DE\INFUSIONS\TEAMSPEAK3\BANNER
Error: (01/13/2015 06:27:15 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Kontext: Anwendung, SystemIndex Katalog
Details:
Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f)
C:\USERS\THECACTUSKING\APPDATA\ROAMING\TS3CLIENT\CACHE\REMOTE\TEMP\WWW.FUN-UND-WITZE.DE\INFUSIONS\TEAMSPEAK3\BANNER
Error: (01/13/2015 06:27:15 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Kontext: Anwendung, SystemIndex Katalog
Details:
Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f)
C:\USERS\THECACTUSKING\APPDATA\ROAMING\TS3CLIENT\CACHE\REMOTE\TEMP\WWW.FUN-UND-WITZE.DE\INFUSIONS\TEAMSPEAK3
Error: (01/13/2015 06:27:15 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Kontext: Anwendung, SystemIndex Katalog
Details:
Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f)
C:\USERS\THECACTUSKING\APPDATA\ROAMING\TS3CLIENT\CACHE\REMOTE\TEMP\WWW.FUN-UND-WITZE.DE\INFUSIONS\TEAMSPEAK3
Error: (01/13/2015 06:27:15 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Kontext: Anwendung, SystemIndex Katalog
Details:
Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f)
C:\USERS\THECACTUSKING\APPDATA\ROAMING\TS3CLIENT\CACHE\REMOTE\TEMP\WWW.FUN-UND-WITZE.DE\INFUSIONS
CodeIntegrity Errors:
===================================
Date: 2015-01-13 18:23:04.241
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2015-01-13 18:23:04.069
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2015-01-13 18:23:03.897
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2015-01-13 18:23:03.695
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2015-01-13 18:23:01.620
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2015-01-13 18:23:01.448
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2015-01-13 18:23:01.277
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2015-01-13 18:23:01.089
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2015-01-13 17:49:13.103
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2015-01-13 17:49:12.926
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Processor: Intel(R) Core(TM)2 Quad CPU Q6600 @ 2.40GHz
Percentage of memory in use: 44%
Total physical RAM: 3069.45 MB
Available physical RAM: 1710.69 MB
Total Pagefile: 6363.89 MB
Available Pagefile: 4380.89 MB
Total Virtual: 2047.88 MB
Available Virtual: 1929.95 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:444.18 GB) (Free:99.04 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (RECOVER) (Fixed) (Total:21.56 GB) (Free:13.44 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 465.8 GB) (Disk ID: AE48D98E)
Partition 1: (Not Active) - (Size=21.6 GB) - (Type=OF Extended)
Partition 2: (Active) - (Size=444.2 GB) - (Type=07 NTFS)
==================== End Of Log ============================ |