|
Log-Analyse und Auswertung: Laptop w7 seit paar tage Extrem Langsam..Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
09.01.2014, 20:35 | #31 |
| Laptop w7 seit paar tage Extrem Langsam.. es sind 4 updates,und die update ich grade.. mall sehen,ist noch im gange..melde mich gleich.. 2 probleme treten auf: code:8000ffff und code:9c48 |
09.01.2014, 20:40 | #32 |
/// Malwareteam | Laptop w7 seit paar tage Extrem Langsam.. ok dann machen wir die später.
__________________Wie verhält sich das Notebook jetzt? immernoch die massiven Probleme? erstelle bitte ein neues FRST Logfile und poste es hier. Damit ich den aktuellen Stand habe
__________________ |
09.01.2014, 21:12 | #33 |
| Laptop w7 seit paar tage Extrem Langsam.. Hallo Heıko
__________________Flotter ıst der notebook alle mal geworden... aber sobald ich die festplatte untersuche oder drauf klickke wird der total lahm bis der sich erholt dauert es..also kurzgefasst der alte ist der glaube ıch noch nicht.. und mein usb stick finde ich auf hdd nicht wieder,nur der gerausch aber vom stick nix zusehen,woran kann das liegen? FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 08-01-2014 01 Ran by sony (administrator) on SONY-VAIO on 09-01-2014 22:02:23 Running from C:\Users\sony\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: 041F Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe (ArcSoft, Inc.) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMService.exe (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe ==================== Registry (Whitelisted) ================== HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3568312 2014-01-09] (AVAST Software) MountPoints2: {5c65418d-e9f2-11e0-a374-60380e077edd} - G:\AutoRun.exe MountPoints2: {5c6541ae-e9f2-11e0-a374-60380e077edd} - G:\AutoRun.exe HKU\TANJA\...\Run: [msnmsgr] - "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Bing HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = MSN Türkiye: Outlook, Skype, Son Haberler, Spor, Oyun ve Video HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xF127B4A235BBCB01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = tr-TR HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKLM - {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKLM-x32 - {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKCU - {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKCU - {1F4164F7-AC3F-4854-8AF9-2B666C1F493D} URL = hxxp://rover.ebay.com/rover/1/710-42480-16445-5/4?satitle={searchTerms} SearchScopes: HKCU - {1F5A12A3-CB57-45A5-A577-ABD5DE40A85D} URL = hxxp://uk.search.yahoo.com/search?fr=chr-greentree_ie&fl=1&ei=utf-8&ilc=12&vl=lang_tr&type=994519&p={searchTerms} SearchScopes: HKCU - {351ACDF2-A02F-4542-9E42-D3F8E77599C1} URL = hxxp://services.zinio.com/search?s={selection}&rf=sonyslices SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://isearch.avg.com/search?cid={E858ED7C-1E1B-451A-9BEB-070F1049DF60}&mid=76b686d5b39a47d08e7ab17148e3972e-1dbd0ebdd77f5b295f3683d361b2664cb9119359&lang=tr&ds=gm011&pr=sa&d=2012-04-03 15:25:52&v=10.2.0.3&sap=dsp&q={searchTerms} SearchScopes: HKCU - {7C2AE4DF-3402-4FA9-B66E-9F8DDF983A87} URL = hxxp://www.google.co.uk/search?hl=en&q={searchTerms}&meta= SearchScopes: HKCU - {a10bbb30-95b8-4e58-86d8-ea909b78f651} URL = hxxp://startsear.ch/?aff=1&src=sp&cf=79e2cbf6-18e8-11e1-a868-60380e077edd&q={searchTerms} SearchScopes: HKCU - {E88E0043-C9D4-4e33-8555-FEE4F5B63060} URL = hxxp://go.mail.ru/search?q={searchTerms}&utf8in=1&fr=ietb SearchScopes: HKCU - {F9869AD3-953B-41BC-BFAA-8AB37C331ECF} URL = hxxp://www.mysearchresults.com/search?c=8004&t=11&q={searchTerms} BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: No Name - {9030D464-4C02-4ABF-8ECC-5164760863C6} - No File BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll No File BHO-x32: No Name - {326E768D-4182-46FD-9C16-1449A49795F4} - No File BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: No Name - {D5FEC983-01DB-414a-9456-AF95AC9ED7B5} - No File BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Toolbar: HKCU - No Name - {91397D20-1446-11D4-8AF4-0040CA1127B6} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Users\sony\AppData\Roaming\Mozilla\Firefox\Profiles\uca5f2uu.default FF Homepage: hxxp://www.google.com/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File FF Plugin-x32: @pages.tvunetworks.com/WebPlayer - C:\Program Files (x86)\TVUPlayer\npTVUAx.dll No File FF Plugin-x32: @real.com/nprjplug;version=15.0.6.14 - C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpchromebrowserrecordext;version=15.0.6.14 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprphtml5videoshim;version=15.0.6.14 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.0.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\sony\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\sony\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\fcmdSrchddr.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: WebSite Recommendation - C:\Users\sony\AppData\Roaming\Mozilla\Firefox\Profiles\uca5f2uu.default\Extensions\WebSiteRecommendation@weliketheweb.com FF Extension: DownloadHelper - C:\Users\sony\AppData\Roaming\Mozilla\Firefox\Profiles\uca5f2uu.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} FF Extension: Adblock Plus - C:\Users\sony\AppData\Roaming\Mozilla\Firefox\Profiles\uca5f2uu.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: Hotspot Shield Extension - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\afproxy@anchorfree.com FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF Chrome: ======= CHR HomePage: hxxp://www.mysearchresults.com/?c=3523&t=01 CHR Plugin: (Shockwave Flash) - C:\Users\sony\AppData\Local\Google\Chrome\User Data\PepperFlash\11.6.602.167\pepflashplayer.dll No File CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\sony\AppData\Local\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Users\sony\AppData\Local\Google\Chrome\Application\31.0.1650.63\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) ) - C:\Program Files (x86)\Mozilla Firefox\plugins\nppl3260.dll No File CHR Plugin: (RealJukebox NS Plugin) - C:\Program Files (x86)\Mozilla Firefox\plugins\nprjplug.dll (RealNetworks, Inc.) CHR Plugin: (RealPlayer Download Plugin) - C:\Program Files (x86)\Mozilla Firefox\plugins\nprpplugin.dll No File CHR Plugin: (McAfeeScanAndRepair) - C:\Users\sony\AppData\Local\Google\Chrome\Application\plugins\npMcAfeeSRPlgn.dll (McAfee, Inc.) CHR Plugin: (Octoshape Streaming Services) - C:\Users\sony\AppData\Roaming\Mozilla\plugins\npoctoshape.dll No File CHR Plugin: (DivX VOD Helper Plug-in) - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) CHR Plugin: (DivX Plus Web Player) - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll No File CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll No File CHR Plugin: (Java(TM) Platform SE 7 U9) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (VLC Web Plugin) - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) CHR Plugin: (Windows Live\u0099 Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll No File CHR Plugin: (RealNetworks(tm) Chrome Background Extension Plug-In (32-bit) ) - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.) CHR Plugin: (RealPlayer(tm) HTML5VideoShim Plug-In (32-bit) ) - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.) CHR Plugin: (Octoshape Streaming Services) - C:\Users\sony\AppData\Roaming\Octoshape\Octoshape Streaming Services\sua-1103234-0-npoctoshape.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_149.dll No File CHR Plugin: (Java Deployment Toolkit 7.0.90.5) - C:\Windows\SysWOW64\npDeployJava1.dll No File CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll No File CHR Extension: () - C:\Users\sony\AppData\Local\Google\Chrome\User Data\Default\Extensions\jopdpbolklklaiookikgmdinfbooiipj\4.0_0 CHR Extension: () - C:\Users\sony\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.440_0 CHR Extension: (Google Wallet) - C:\Users\sony\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0 CHR HKLM-x32\...\Chrome\Extension: [faklkmlkcleeoibffcbligohmkciloif] - C:\Program Files (x86)\PutLockerDownloader\PutLockerDownloader10.crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx ==================== Services (Whitelisted) ================= S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-09] (AVAST Software) R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [189984 2009-07-24] (Realtek Semiconductor) R2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960 2008-09-18] (ArcSoft, Inc.) S3 VcmXmlIfHelper; "C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe" [x] ==================== Drivers (Whitelisted) ==================== R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.) R2 aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [38984 2014-01-09] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [84328 2014-01-09] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2014-01-09] (AVAST Software) S0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-01-09] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1032416 2014-01-09] (AVAST Software) S1 aswSP; C:\Windows\system32\drivers\aswSP.sys [409832 2014-01-09] (AVAST Software) R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [65264 2014-01-09] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [205320 2014-01-09] () R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [44744 2013-11-13] (AnchorFree Inc.) S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited) R2 risdptsk; C:\Windows\system32\DRIVERS\risdsn64.sys [76288 2009-07-31] (REDC) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [503352 2013-03-28] () S3 StarOpen; No ImagePath R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-04-24] (Anchorfree Inc.) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 massfilter; system32\drivers\massfilter.sys [x] U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-09 22:02 - 2014-01-09 22:02 - 00016087 _____ C:\Users\sony\Desktop\FRST.txt 2014-01-09 21:32 - 2014-01-09 21:32 - 00001376 _____ C:\Windows\IE11_main.log 2014-01-09 21:16 - 2014-01-09 21:16 - 00003924 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2014-01-09 21:14 - 2014-01-09 21:14 - 00001966 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-01-09 21:14 - 2014-01-09 21:14 - 00000000 ____D C:\Users\sony\AppData\Roaming\AVAST Software 2014-01-09 21:12 - 2014-01-09 21:14 - 00409832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 01032416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00409832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.1389294855 2014-01-09 21:12 - 2014-01-09 21:12 - 00334648 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-01-09 21:12 - 2014-01-09 21:12 - 00205320 _____ C:\Windows\system32\Drivers\aswVmm.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00092544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00084328 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00065776 _____ C:\Windows\system32\Drivers\aswRvrt.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00065264 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-01-09 21:12 - 2014-01-09 21:12 - 00038984 _____ (AVAST Software) C:\Windows\system32\Drivers\aswFsBlk.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00000000 ____D C:\Program Files\AVAST Software 2014-01-09 21:11 - 2014-01-09 21:11 - 00000000 ____D C:\ProgramData\AVAST Software 2014-01-09 19:27 - 2014-01-09 21:00 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-01-09 19:27 - 2014-01-09 19:27 - 00117464 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-01-09 19:26 - 2014-01-09 21:00 - 00089304 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-01-09 16:05 - 2014-01-09 16:05 - 00377856 _____ C:\Users\sony\Desktop\gmer_2.1.19163.exe 2014-01-09 15:58 - 2014-01-09 15:58 - 00001868 _____ C:\Users\sony\Fixlist.txt 2014-01-09 09:15 - 2014-01-09 09:15 - 00000000 ____D C:\Users\sony\Desktop\FRST-OlderVersion 2014-01-09 00:07 - 2014-01-09 21:35 - 00098816 _____ C:\Windows\WindowsUpdate.log 2014-01-08 16:40 - 2014-01-08 16:40 - 00448512 _____ (OldTimer Tools) C:\Users\sony\Desktop\TFC.exe 2014-01-08 13:51 - 2014-01-09 16:03 - 00000000 ____D C:\Users\sony\Desktop\TrojanerBoard-dosyaları 2014-01-08 13:44 - 2014-01-09 09:15 - 00000000 ____D C:\FRST 2014-01-08 13:43 - 2014-01-09 09:15 - 01931770 _____ (Farbar) C:\Users\sony\Desktop\FRST64.exe 2014-01-08 11:55 - 2014-01-08 11:55 - 01233962 _____ C:\Users\sony\Desktop\adwcleaner(1).exe 2014-01-08 10:53 - 2014-01-08 10:54 - 00388608 _____ (Trend Micro Inc.) C:\Users\sony\Desktop\HijackThis.exe 2014-01-06 22:33 - 2014-01-06 22:49 - 00000000 ___SD C:\ComboFix 2014-01-06 22:31 - 2014-01-06 22:31 - 00000000 ____D C:\Qoobox 2014-01-06 22:31 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe 2014-01-06 22:31 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe 2014-01-06 22:31 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2014-01-06 22:31 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2014-01-06 22:31 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2014-01-06 22:31 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe 2014-01-06 22:31 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe 2014-01-06 22:31 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe 2014-01-06 22:27 - 2014-01-06 22:27 - 00000000 ____D C:\Windows\erdnt 2014-01-06 22:25 - 2014-01-06 22:26 - 05160001 ____R (Swearware) C:\Users\sony\Desktop\ComboFix.exe 2014-01-06 22:12 - 2014-01-06 22:12 - 00003226 _____ C:\Windows\System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-2786323165-1350516088-1116812794-1000 2014-01-06 22:11 - 2014-01-06 22:11 - 00003362 _____ C:\Windows\System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-2786323165-1350516088-1116812794-1000 2014-01-06 10:03 - 2014-01-06 10:03 - 00000000 ____D C:\ProgramData\TuneUp Software 2014-01-06 10:02 - 2014-01-06 10:02 - 00000000 ____D C:\Users\sony\AppData\Roaming\TuneUp Software-BackupByTuneUpPortable 2014-01-06 10:02 - 2014-01-06 10:02 - 00000000 ____D C:\ProgramData\TuneUp Software-BackupByTuneUpPortable 2014-01-01 19:00 - 2014-01-03 18:03 - 00000000 ____D C:\Users\TANJA\Desktop\Yeni klasör 2013-12-21 10:17 - 2013-12-30 00:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-12-15 19:33 - 2013-12-15 19:33 - 00000000 ____D C:\Users\TANJA\Desktop\can yeni 2013-12-15 19:11 - 2013-12-15 19:11 - 00000000 ____D C:\Users\sony\Desktop\can yeni 2013-12-12 03:03 - 2013-05-10 07:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2013-12-12 03:03 - 2013-05-10 07:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2013-12-12 03:03 - 2013-05-10 06:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2013-12-12 03:03 - 2013-05-10 06:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2013-12-12 03:01 - 2013-11-26 13:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-12 03:01 - 2013-11-26 12:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-12 03:01 - 2013-11-26 12:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-12-12 03:01 - 2013-11-26 12:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-12 03:01 - 2013-11-26 11:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-12 03:01 - 2013-11-26 11:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-12-12 03:01 - 2013-11-26 11:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-12 03:01 - 2013-11-26 11:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-12 03:01 - 2013-11-26 11:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-12 03:01 - 2013-11-26 11:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-12 03:01 - 2013-11-26 11:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-12 03:01 - 2013-11-26 11:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-12 03:01 - 2013-11-26 11:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-12-12 03:01 - 2013-11-26 11:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-12-12 03:01 - 2013-11-26 10:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-12 03:01 - 2013-11-26 10:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-12 03:01 - 2013-11-26 10:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-12 03:01 - 2013-11-26 10:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-12 03:01 - 2013-11-26 10:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-12 03:01 - 2013-11-26 10:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-12-12 03:01 - 2013-11-26 10:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-12 03:01 - 2013-11-26 10:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-12 03:01 - 2013-11-26 09:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-12 03:01 - 2013-11-26 09:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-12 03:01 - 2013-11-26 09:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-12 03:01 - 2013-11-26 09:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-12 03:01 - 2013-11-26 08:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-12 03:01 - 2013-11-26 08:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-12 03:01 - 2013-11-26 08:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-12 03:01 - 2013-11-26 08:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-12 03:01 - 2013-11-26 08:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-12 02:46 - 2013-12-12 02:46 - 00000000 ____D C:\Users\sony\Desktop\kanal listesi 2013-12-12 01:56 - 2013-12-12 02:19 - 00000000 ____D C:\Program Files (x86)\PPÖúÊÖ 2013-12-12 01:56 - 2013-12-12 02:14 - 00000000 ____D C:\Users\sony\AppData\Roaming\ihelper 2013-12-12 01:56 - 2013-12-12 01:56 - 00000000 ____D C:\Users\sony\Documents\ihelper 2013-12-12 01:15 - 2013-12-12 01:30 - 00000000 ____D C:\Users\sony\Documents\Tongbu 2013-12-11 17:13 - 2013-12-11 17:13 - 00000000 ____D C:\Users\TANJA\AppData\Roaming\ArcSoft 2013-12-11 17:13 - 2013-12-11 17:13 - 00000000 ____D C:\Users\TANJA\AppData\Local\ArcSoft 2013-12-11 14:35 - 2013-11-23 20:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-11 14:35 - 2013-11-23 19:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-11 14:35 - 2013-10-30 04:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2013-12-11 14:35 - 2013-10-30 04:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2013-12-11 14:35 - 2013-10-30 03:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-12-11 14:35 - 2013-10-19 04:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2013-12-11 14:35 - 2013-10-19 03:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2013-12-11 14:34 - 2013-11-12 04:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-12-11 14:34 - 2013-11-12 04:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-12-11 14:34 - 2013-10-12 04:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2013-12-11 14:34 - 2013-10-12 04:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2013-12-11 14:34 - 2013-10-12 04:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2013-12-11 14:34 - 2013-10-12 04:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2013-12-11 14:34 - 2013-10-12 03:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2013-12-11 14:34 - 2013-10-12 03:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2013-12-11 14:34 - 2013-10-12 03:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2013-12-11 14:34 - 2013-10-12 03:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2013-12-11 14:34 - 2013-10-04 04:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2013-12-11 14:34 - 2013-10-04 03:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2013-12-11 01:41 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2013-12-11 01:37 - 2013-12-11 01:37 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-11 01:37 - 2013-12-11 01:37 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-11 01:37 - 2013-12-11 01:37 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-11 01:37 - 2013-12-11 01:37 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-11 01:37 - 2013-12-11 01:37 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-11 01:37 - 2013-12-11 01:37 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-11 01:37 - 2013-12-11 01:37 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-10 00:16 - 2013-12-10 00:16 - 00000000 ____D C:\Users\sony\AppData\Local\DDMSettings ==================== One Month Modified Files and Folders ======= 2014-01-09 22:03 - 2014-01-09 22:02 - 00016087 _____ C:\Users\sony\Desktop\FRST.txt 2014-01-09 22:03 - 2011-10-24 23:17 - 00001026 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2786323165-1350516088-1116812794-1000UA.job 2014-01-09 21:50 - 2012-04-24 12:56 - 00001016 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-09 21:49 - 2010-01-29 16:23 - 00003956 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{4ABFD636-13DF-4984-982B-BF817D020D2F} 2014-01-09 21:35 - 2014-01-09 00:07 - 00098816 _____ C:\Windows\WindowsUpdate.log 2014-01-09 21:32 - 2014-01-09 21:32 - 00001376 _____ C:\Windows\IE11_main.log 2014-01-09 21:22 - 2013-09-27 20:16 - 00000814 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-09 21:16 - 2014-01-09 21:16 - 00003924 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2014-01-09 21:14 - 2014-01-09 21:14 - 00001966 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-01-09 21:14 - 2014-01-09 21:14 - 00000000 ____D C:\Users\sony\AppData\Roaming\AVAST Software 2014-01-09 21:14 - 2014-01-09 21:12 - 00409832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 01032416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00409832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.1389294855 2014-01-09 21:12 - 2014-01-09 21:12 - 00334648 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-01-09 21:12 - 2014-01-09 21:12 - 00205320 _____ C:\Windows\system32\Drivers\aswVmm.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00092544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00084328 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00065776 _____ C:\Windows\system32\Drivers\aswRvrt.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00065264 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-01-09 21:12 - 2014-01-09 21:12 - 00038984 _____ (AVAST Software) C:\Windows\system32\Drivers\aswFsBlk.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00000000 ____D C:\Program Files\AVAST Software 2014-01-09 21:11 - 2014-01-09 21:11 - 00000000 ____D C:\ProgramData\AVAST Software 2014-01-09 21:00 - 2014-01-09 19:27 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-01-09 21:00 - 2014-01-09 19:26 - 00089304 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-01-09 20:00 - 2012-04-24 12:56 - 00001012 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-09 19:27 - 2014-01-09 19:27 - 00117464 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-01-09 19:03 - 2011-10-24 23:17 - 00000974 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2786323165-1350516088-1116812794-1000Core.job 2014-01-09 18:56 - 2009-07-14 06:45 - 00009920 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-01-09 18:56 - 2009-07-14 06:45 - 00009920 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-01-09 18:47 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-09 16:05 - 2014-01-09 16:05 - 00377856 _____ C:\Users\sony\Desktop\gmer_2.1.19163.exe 2014-01-09 16:03 - 2014-01-08 13:51 - 00000000 ____D C:\Users\sony\Desktop\TrojanerBoard-dosyaları 2014-01-09 15:58 - 2014-01-09 15:58 - 00001868 _____ C:\Users\sony\Fixlist.txt 2014-01-09 15:58 - 2010-01-29 16:20 - 00000000 ____D C:\Users\sony 2014-01-09 09:15 - 2014-01-09 09:15 - 00000000 ____D C:\Users\sony\Desktop\FRST-OlderVersion 2014-01-09 09:15 - 2014-01-08 13:44 - 00000000 ____D C:\FRST 2014-01-09 09:15 - 2014-01-08 13:43 - 01931770 _____ (Farbar) C:\Users\sony\Desktop\FRST64.exe 2014-01-09 01:01 - 2010-01-31 10:21 - 00000000 ____D C:\Users\sony\AppData\Roaming\vlc 2014-01-08 23:18 - 2011-05-02 21:53 - 00000000 ____D C:\Program Files (x86)\SoyleOp2 2014-01-08 16:40 - 2014-01-08 16:40 - 00448512 _____ (OldTimer Tools) C:\Users\sony\Desktop\TFC.exe 2014-01-08 16:21 - 2013-02-24 13:10 - 00000000 ____D C:\Users\sony\AppData\Roaming\SimpleTV V03 2014-01-08 15:48 - 2010-04-05 15:36 - 00000000 ____D C:\Users\sony\Desktop\Kino 2014-01-08 14:58 - 2013-11-10 11:37 - 00000000 ____D C:\AdwCleaner 2014-01-08 14:54 - 2010-10-23 19:06 - 00000000 ____D C:\Users\sony\AppData\Roaming\uTorrent 2014-01-08 13:41 - 2010-06-09 15:58 - 00066995 _____ C:\Users\sony\Desktop\KiNoList..txt 2014-01-08 11:55 - 2014-01-08 11:55 - 01233962 _____ C:\Users\sony\Desktop\adwcleaner(1).exe 2014-01-08 10:54 - 2014-01-08 10:53 - 00388608 _____ (Trend Micro Inc.) C:\Users\sony\Desktop\HijackThis.exe 2014-01-08 09:11 - 2013-04-28 21:16 - 00000000 ____D C:\Users\TANJA\Desktop\hochzeit 2014-01-07 12:42 - 2013-11-29 13:13 - 00000000 ____D C:\Program Files\Unlocker 2014-01-06 23:51 - 2009-09-09 22:44 - 00000000 ____D C:\Program Files (x86)\Sony 2014-01-06 23:51 - 2009-08-19 02:55 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2014-01-06 23:44 - 2010-05-27 20:45 - 00000000 ____D C:\Users\sony\AppData\Roaming\Real 2014-01-06 22:49 - 2014-01-06 22:33 - 00000000 ___SD C:\ComboFix 2014-01-06 22:31 - 2014-01-06 22:31 - 00000000 ____D C:\Qoobox 2014-01-06 22:27 - 2014-01-06 22:27 - 00000000 ____D C:\Windows\erdnt 2014-01-06 22:26 - 2014-01-06 22:25 - 05160001 ____R (Swearware) C:\Users\sony\Desktop\ComboFix.exe 2014-01-06 22:20 - 2013-01-18 21:51 - 00000000 ____D C:\Users\TANJA 2014-01-06 22:12 - 2014-01-06 22:12 - 00003226 _____ C:\Windows\System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-2786323165-1350516088-1116812794-1000 2014-01-06 22:11 - 2014-01-06 22:11 - 00003362 _____ C:\Windows\System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-2786323165-1350516088-1116812794-1000 2014-01-06 22:08 - 2012-10-27 13:32 - 00000000 ____D C:\Users\sony\Desktop\TuneUpPortable 2014-01-06 22:08 - 2010-05-13 13:24 - 00000000 ____D C:\Users\sony\AppData\Roaming\TuneUp Software 2014-01-06 22:08 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\AppCompat 2014-01-06 22:07 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration 2014-01-06 22:06 - 2010-05-27 20:45 - 00000000 ____D C:\ProgramData\Real 2014-01-06 10:03 - 2014-01-06 10:03 - 00000000 ____D C:\ProgramData\TuneUp Software 2014-01-06 10:02 - 2014-01-06 10:02 - 00000000 ____D C:\Users\sony\AppData\Roaming\TuneUp Software-BackupByTuneUpPortable 2014-01-06 10:02 - 2014-01-06 10:02 - 00000000 ____D C:\ProgramData\TuneUp Software-BackupByTuneUpPortable 2014-01-03 18:03 - 2014-01-01 19:00 - 00000000 ____D C:\Users\TANJA\Desktop\Yeni klasör 2013-12-30 00:41 - 2013-12-21 10:17 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-12-24 15:57 - 2009-08-19 02:39 - 00654912 _____ C:\Windows\system32\perfh01F.dat 2013-12-24 15:57 - 2009-08-19 02:39 - 00139136 _____ C:\Windows\system32\perfc01F.dat 2013-12-24 15:57 - 2009-07-14 07:13 - 01564522 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-22 21:11 - 2013-09-14 10:44 - 00074118 _____ C:\KiNO-CHARTS.txt 2013-12-22 17:36 - 2013-08-19 22:18 - 00000000 ____D C:\Users\TANJA\Desktop\102MSDCF 2013-12-18 19:50 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2013-12-17 17:06 - 2013-10-31 22:57 - 00000000 ____D C:\Users\sony\Desktop\Konya-HalloWeen 2013-12-16 01:17 - 2013-08-14 22:47 - 00000000 ____D C:\Windows\system32\MRT 2013-12-16 01:15 - 2010-01-31 10:39 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-12-15 19:40 - 2013-08-28 17:43 - 00000000 ____D C:\Users\TANJA\Desktop\can fussball 2013-12-15 19:33 - 2013-12-15 19:33 - 00000000 ____D C:\Users\TANJA\Desktop\can yeni 2013-12-15 19:11 - 2013-12-15 19:11 - 00000000 ____D C:\Users\sony\Desktop\can yeni 2013-12-13 14:33 - 2013-10-15 08:31 - 00000000 ____D C:\Users\TANJA\Desktop\filiz 2013-12-13 11:52 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-12-12 19:06 - 2013-08-30 11:44 - 00000000 ____D C:\Users\TANJA\Desktop\konya 2013-12-12 08:26 - 2009-07-14 07:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-12-12 03:45 - 2012-04-24 12:56 - 00004012 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-12-12 03:45 - 2012-04-24 12:56 - 00003760 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-12-12 03:19 - 2009-07-14 06:45 - 00379384 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-12 03:17 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\tr-TR 2013-12-12 03:17 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\tr-TR 2013-12-12 02:46 - 2013-12-12 02:46 - 00000000 ____D C:\Users\sony\Desktop\kanal listesi 2013-12-12 02:19 - 2013-12-12 01:56 - 00000000 ____D C:\Program Files (x86)\PPÖúÊÖ 2013-12-12 02:14 - 2013-12-12 01:56 - 00000000 ____D C:\Users\sony\AppData\Roaming\ihelper 2013-12-12 01:56 - 2013-12-12 01:56 - 00000000 ____D C:\Users\sony\Documents\ihelper 2013-12-12 01:30 - 2013-12-12 01:15 - 00000000 ____D C:\Users\sony\Documents\Tongbu 2013-12-12 00:56 - 2013-02-23 02:43 - 00000000 ____D C:\Users\sony\AppData\Roaming\iFunbox_UserCache 2013-12-12 00:34 - 2013-02-23 02:31 - 00000000 ____D C:\Users\sony\AppData\Roaming\WindSolutions 2013-12-12 00:33 - 2012-06-29 13:24 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-12-12 00:28 - 2013-02-23 02:30 - 00000000 ____D C:\ProgramData\WindSolutions 2013-12-12 00:17 - 2013-10-15 17:48 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-12-11 17:13 - 2013-12-11 17:13 - 00000000 ____D C:\Users\TANJA\AppData\Roaming\ArcSoft 2013-12-11 17:13 - 2013-12-11 17:13 - 00000000 ____D C:\Users\TANJA\AppData\Local\ArcSoft 2013-12-11 13:37 - 2012-07-27 11:58 - 00000000 ____D C:\Users\sony\Desktop\ATMACA-1 2013-12-11 09:23 - 2013-09-27 20:16 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-12-11 09:23 - 2013-09-27 20:16 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-12-11 09:23 - 2013-09-27 20:16 - 00003752 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-12-11 08:28 - 2010-01-29 16:23 - 00001279 _____ C:\Users\sony\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-12-11 07:09 - 2013-01-18 21:52 - 00001401 _____ C:\Users\TANJA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-12-11 07:08 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-12-11 01:37 - 2013-12-11 01:37 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-11 01:37 - 2013-12-11 01:37 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-11 01:37 - 2013-12-11 01:37 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-11 01:37 - 2013-12-11 01:37 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-11 01:37 - 2013-12-11 01:37 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-11 01:37 - 2013-12-11 01:37 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-11 01:37 - 2013-12-11 01:37 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-10 00:16 - 2013-12-10 00:16 - 00000000 ____D C:\Users\sony\AppData\Local\DDMSettings 2013-12-10 00:09 - 2010-04-19 12:20 - 00000000 ____D C:\Program Files\DivX 2013-12-10 00:09 - 2010-04-19 12:17 - 00000000 ____D C:\ProgramData\DivX 2013-12-10 00:09 - 2010-04-19 12:17 - 00000000 ____D C:\Program Files (x86)\DivX Some content of TEMP: ==================== C:\Users\TANJA\AppData\Local\Temp\avgnt.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-09 10:35 ==================== End Of Log ============================ --- --- --- ne ne ganz der alte ist der noch nicht heiko,habe es bisserl gestestet der kaepft ganzschön wenn ich mehrere sachen aufeinmal starte.. |
09.01.2014, 21:35 | #34 |
/// Malwareteam | Laptop w7 seit paar tage Extrem Langsam.. gut dann machen wir mal so weiter Überprüfen der Festplatte mit chkdsk
Teile mir mit ob sich das Verhalten verbessert. Ich bin morgen wenig erreichbar, da ich erst in der Arbeit und dann in der Uni bin. Gute Nacht |
10.01.2014, 11:19 | #35 |
| Laptop w7 seit paar tage Extrem Langsam.. Hallo Heiko.. Ich bin langsam total am verzeweifeln,der notebook ist total lahm immer noch.. Habe alles bisher wie du es mir geschrieben hast ( riesen dank dafür ) aber leider ist der notebook total lahm,internett und der windows ist total lahm,selbst einfachste sache ( frst.text ins papierkorb zuschmeissen ) dauert minuten. Sorry zuspaet gelesen,naklar hast du auch private sachen zuerledigen,no problem werde hier auf deine naechsten anweisungen warten. Hoffentlich können wir das ding noch retten,den platt machen kommt für mich zuerst nicht in frage. Den die sachen auf eine interne festplatte (egal ob ich usbstick oder interne hdd rein stecke ins usb erkennt der notebook z.z. sowieso nicht,aber komisch der maus ist auch über mein usb) zukopiern mag ich nicht dran denken wie lange es dauern würde. Naja,sowiel zu aktuelle lage von mir.. MFG Yossi Aktuell: selbst der start dauert mitlerweile 10.min...( vorher war das nicht der fall ) |
10.01.2014, 11:46 | #36 |
/// Malwareteam | Laptop w7 seit paar tage Extrem Langsam.. Hallo hast du den chkdsk teil ausgeführt? Was hat der Check ergeben. In deinem letzten Post hast du mir mitgeteilt, dass das System wieder besser läuft. jetzt eher wieder schlechter. ich möchte einmal von uaßen auf das System schauen. machen wir so weiter du benötigst dazu zugang zu einem anderen Rechner um die vorbereitungen zu treffen. Scan mit Farbar's Recovery Scan Tool (Recovery Mode - Windows Vista, 7, 8) Hinweise für Windows 8-Nutzer: Anleitung 1 (FRST-Variante) und Anleitung 2 (zweiter Teil) Teste bitte ob du in der Recovery Umgebung auf deinen USB Stick zugreifen kannst. Das ist der Schritt mit notepad oben in der Anleitung. Wenn das nicht klappt gehen mir die Ideen aus
__________________ --> Laptop w7 seit paar tage Extrem Langsam.. |
10.01.2014, 14:09 | #37 |
/// Malwareteam | Laptop w7 seit paar tage Extrem Langsam.. entfernt Geändert von Aneri (10.01.2014 um 14:58 Uhr) |
10.01.2014, 22:03 | #38 |
| Laptop w7 seit paar tage Extrem Langsam.. hallo heıko.. ich schreıbe vom selben notebook aber von account maeıner frau bei laeuft es wesentlich besser und schneller.. Bevor ich was verkehrt mache..ich habe leider alles nicht so verstanden..kannst du es mir nochmall ausführlicher aerklaeren? (danke für deine gedult) habe ich es richtig verstanden das alles soll ich von ein anderen pc aus machen? wie gesagt ich habs leider nicht verstanden.. also von meine fraus accaunt kann ich auch was machen oder ist wesentlich schneller.. mfg yossi aktuell : FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-01-2014 Ran by TANJA (ATTENTION: The logged in user is not administrator) on SONY-VAIO on 10-01-2014 17:10:11 Running from C:\Users\TANJA\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: 041F Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registry (Whitelisted) ================== HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3568312 2014-01-09] (AVAST Software) HKCU\...\Run: [msnmsgr] - "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background ==================== Internet (Whitelisted) ==================== ProxyEnable: Internet Explorer proxy is enabled. ProxyServer: http=127.0.0.1:8555;https=127.0.0.1:8555 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank URLSearchHook: HKCU - (No Name) - {05478A66-EDB6-4A22-A870-A5987F80A7DA} - No File StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKLM - {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKLM-x32 - {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKCU - DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKCU - {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKCU - {56ABA4AD-F0FD-49D7-8CE7-9B5F8FF617B1} URL = hxxp://rover.ebay.com/rover/1/710-42480-16445-5/4?satitle={searchTerms} SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKCU - {7C31FC74-E798-412D-A579-A1B74A3347BE} URL = SearchScopes: HKCU - {C81B7E51-28C0-4A60-A7D7-3FC97AB2FF87} URL = hxxp://uk.search.yahoo.com/search?fr=chr-greentree_ie&fl=1&ei=utf-8&ilc=12&vl=lang_tr&type=994519&p={searchTerms} SearchScopes: HKCU - {D6BE4FE8-8257-496B-AA8F-4EBB2BD241CC} URL = hxxp://services.zinio.com/search?s={selection}&rf=sonyslices SearchScopes: HKCU - {F6E1E21A-6669-41DD-9806-5DFA138F7B57} URL = hxxp://www.google.co.uk/search?hl=en&q={searchTerms}&meta= BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: No Name - {9030D464-4C02-4ABF-8ECC-5164760863C6} - No File BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll No File BHO-x32: No Name - {326E768D-4182-46FD-9C16-1449A49795F4} - No File BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: No Name - {D5FEC983-01DB-414a-9456-AF95AC9ED7B5} - No File BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Users\TANJA\AppData\Roaming\Mozilla\Firefox\Profiles\se6my98x.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File FF Plugin-x32: @pages.tvunetworks.com/WebPlayer - C:\Program Files (x86)\TVUPlayer\npTVUAx.dll No File FF Plugin-x32: @real.com/nprjplug;version=15.0.6.14 - C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpchromebrowserrecordext;version=15.0.6.14 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprphtml5videoshim;version=15.0.6.14 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.0.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\fcmdSrchddr.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Hotspot Shield Extension - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\afproxy@anchorfree.com FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF ==================== Services (Whitelisted) ================= S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-09] (AVAST Software) R2 lmhosts; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) R2 NlaSvc; C:\Windows\System32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) R2 nsi; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [189984 2009-07-24] (Realtek Semiconductor) R2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960 2008-09-18] (ArcSoft, Inc.) S3 VcmXmlIfHelper; "C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe" [x] ==================== Drivers (Whitelisted) ==================== R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.) R2 aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [38984 2014-01-09] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [84328 2014-01-09] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2014-01-09] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-01-09] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1032416 2014-01-09] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [409832 2014-01-09] (AVAST Software) R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [65264 2014-01-09] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [205320 2014-01-09] () R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [44744 2013-11-13] (AnchorFree Inc.) S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited) R2 risdptsk; C:\Windows\system32\DRIVERS\risdsn64.sys [76288 2009-07-31] (REDC) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [503352 2013-03-28] () S3 StarOpen; No ImagePath R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-04-24] (Anchorfree Inc.) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 massfilter; system32\drivers\massfilter.sys [x] U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-10 17:10 - 2014-01-10 17:10 - 00010319 _____ C:\Users\TANJA\Desktop\FRST.txt 2014-01-10 17:09 - 2014-01-10 17:09 - 01932166 _____ (Farbar) C:\Users\TANJA\Desktop\FRST64.exe 2014-01-10 00:10 - 2014-01-10 16:41 - 00000896 _____ C:\Windows\setupact.log 2014-01-10 00:10 - 2014-01-10 00:10 - 00000326 _____ C:\Windows\PFRO.log 2014-01-10 00:10 - 2014-01-10 00:10 - 00000000 _____ C:\Windows\setuperr.log 2014-01-09 22:50 - 2014-01-09 22:50 - 00000000 ____D C:\Users\TANJA\AppData\Roaming\AVAST Software 2014-01-09 21:32 - 2014-01-09 21:32 - 00001376 _____ C:\Windows\IE11_main.log 2014-01-09 21:14 - 2014-01-09 21:14 - 00001966 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-01-09 21:14 - 2014-01-09 21:14 - 00000000 ____D C:\Users\sony\AppData\Roaming\AVAST Software 2014-01-09 21:12 - 2014-01-09 21:14 - 00409832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 01032416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00334648 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-01-09 21:12 - 2014-01-09 21:12 - 00205320 _____ C:\Windows\system32\Drivers\aswVmm.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00092544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00084328 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00065776 _____ C:\Windows\system32\Drivers\aswRvrt.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00065264 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-01-09 21:12 - 2014-01-09 21:12 - 00038984 _____ (AVAST Software) C:\Windows\system32\Drivers\aswFsBlk.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00000000 ____D C:\Program Files\AVAST Software 2014-01-09 21:11 - 2014-01-09 21:11 - 00000000 ____D C:\ProgramData\AVAST Software 2014-01-09 19:27 - 2014-01-09 21:00 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-01-09 19:27 - 2014-01-09 19:27 - 00117464 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-01-09 19:26 - 2014-01-09 21:00 - 00089304 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-01-09 15:58 - 2014-01-09 15:58 - 00001868 _____ C:\Users\sony\Fixlist.txt 2014-01-09 00:07 - 2014-01-10 11:33 - 00162500 _____ C:\Windows\WindowsUpdate.log 2014-01-08 13:44 - 2014-01-10 12:21 - 00000000 ____D C:\FRST 2014-01-06 22:33 - 2014-01-06 22:49 - 00000000 ___SD C:\ComboFix 2014-01-06 22:31 - 2014-01-06 22:31 - 00000000 ____D C:\Qoobox 2014-01-06 22:31 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe 2014-01-06 22:31 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe 2014-01-06 22:31 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2014-01-06 22:31 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2014-01-06 22:31 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2014-01-06 22:31 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe 2014-01-06 22:31 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe 2014-01-06 22:31 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe 2014-01-06 22:27 - 2014-01-06 22:27 - 00000000 ____D C:\Windows\erdnt 2014-01-06 10:03 - 2014-01-06 10:03 - 00000000 ____D C:\ProgramData\TuneUp Software 2014-01-06 10:02 - 2014-01-06 10:02 - 00000000 ____D C:\Users\sony\AppData\Roaming\TuneUp Software-BackupByTuneUpPortable 2014-01-06 10:02 - 2014-01-06 10:02 - 00000000 ____D C:\ProgramData\TuneUp Software-BackupByTuneUpPortable 2014-01-01 19:00 - 2014-01-03 18:03 - 00000000 ____D C:\Users\TANJA\Desktop\Yeni klasör 2013-12-21 10:17 - 2013-12-30 00:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-12-15 19:33 - 2013-12-15 19:33 - 00000000 ____D C:\Users\TANJA\Desktop\can yeni 2013-12-12 03:03 - 2013-05-10 07:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2013-12-12 03:03 - 2013-05-10 07:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2013-12-12 03:03 - 2013-05-10 06:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2013-12-12 03:03 - 2013-05-10 06:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2013-12-12 03:01 - 2013-11-26 13:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-12 03:01 - 2013-11-26 12:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-12 03:01 - 2013-11-26 12:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-12-12 03:01 - 2013-11-26 12:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-12 03:01 - 2013-11-26 11:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-12 03:01 - 2013-11-26 11:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-12-12 03:01 - 2013-11-26 11:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-12 03:01 - 2013-11-26 11:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-12 03:01 - 2013-11-26 11:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-12 03:01 - 2013-11-26 11:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-12 03:01 - 2013-11-26 11:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-12 03:01 - 2013-11-26 11:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-12 03:01 - 2013-11-26 11:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-12-12 03:01 - 2013-11-26 11:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-12-12 03:01 - 2013-11-26 10:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-12 03:01 - 2013-11-26 10:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-12 03:01 - 2013-11-26 10:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-12 03:01 - 2013-11-26 10:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-12 03:01 - 2013-11-26 10:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-12 03:01 - 2013-11-26 10:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-12-12 03:01 - 2013-11-26 10:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-12 03:01 - 2013-11-26 10:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-12 03:01 - 2013-11-26 09:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-12 03:01 - 2013-11-26 09:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-12 03:01 - 2013-11-26 09:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-12 03:01 - 2013-11-26 09:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-12 03:01 - 2013-11-26 08:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-12 03:01 - 2013-11-26 08:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-12 03:01 - 2013-11-26 08:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-12 03:01 - 2013-11-26 08:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-12 03:01 - 2013-11-26 08:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-12 01:56 - 2013-12-12 02:19 - 00000000 ____D C:\Program Files (x86)\PPÖúÊÖ 2013-12-12 01:56 - 2013-12-12 02:14 - 00000000 ____D C:\Users\sony\AppData\Roaming\ihelper 2013-12-11 17:13 - 2013-12-11 17:13 - 00000000 ____D C:\Users\TANJA\AppData\Roaming\ArcSoft 2013-12-11 17:13 - 2013-12-11 17:13 - 00000000 ____D C:\Users\TANJA\AppData\Local\ArcSoft 2013-12-11 14:35 - 2013-11-23 20:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-11 14:35 - 2013-11-23 19:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-11 14:35 - 2013-10-30 04:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2013-12-11 14:35 - 2013-10-30 04:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2013-12-11 14:35 - 2013-10-30 03:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-12-11 14:35 - 2013-10-19 04:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2013-12-11 14:35 - 2013-10-19 03:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2013-12-11 14:34 - 2013-11-12 04:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-12-11 14:34 - 2013-11-12 04:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-12-11 14:34 - 2013-10-12 04:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2013-12-11 14:34 - 2013-10-12 04:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2013-12-11 14:34 - 2013-10-12 04:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2013-12-11 14:34 - 2013-10-12 04:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2013-12-11 14:34 - 2013-10-12 03:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2013-12-11 14:34 - 2013-10-12 03:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2013-12-11 14:34 - 2013-10-12 03:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2013-12-11 14:34 - 2013-10-12 03:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2013-12-11 14:34 - 2013-10-04 04:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2013-12-11 14:34 - 2013-10-04 03:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2013-12-11 01:41 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2013-12-11 01:37 - 2013-12-11 01:37 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-11 01:37 - 2013-12-11 01:37 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-11 01:37 - 2013-12-11 01:37 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-11 01:37 - 2013-12-11 01:37 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-11 01:37 - 2013-12-11 01:37 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-11 01:37 - 2013-12-11 01:37 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-11 01:37 - 2013-12-11 01:37 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe ==================== One Month Modified Files and Folders ======= 2014-01-10 17:10 - 2014-01-10 17:10 - 00010319 _____ C:\Users\TANJA\Desktop\FRST.txt 2014-01-10 17:09 - 2014-01-10 17:09 - 01932166 _____ (Farbar) C:\Users\TANJA\Desktop\FRST64.exe 2014-01-10 17:03 - 2011-10-24 23:17 - 00001026 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2786323165-1350516088-1116812794-1000UA.job 2014-01-10 16:57 - 2012-04-24 12:56 - 00001012 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-10 16:54 - 2009-07-14 06:45 - 00009920 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-01-10 16:54 - 2009-07-14 06:45 - 00009920 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-01-10 16:50 - 2014-01-09 00:07 - 00162500 _____ C:\Windows\WindowsUpdate.log 2014-01-10 16:50 - 2012-04-24 12:56 - 00001016 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-10 16:42 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-10 16:41 - 2014-01-10 00:10 - 00000896 _____ C:\Windows\setupact.log 2014-01-10 12:29 - 2013-11-10 11:37 - 00000000 ____D C:\AdwCleaner 2014-01-10 12:22 - 2013-09-27 20:16 - 00000814 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-10 12:21 - 2014-01-08 13:44 - 00000000 ____D C:\FRST 2014-01-10 12:18 - 2010-01-29 16:20 - 00000000 ____D C:\Users\sony 2014-01-10 09:49 - 2010-04-19 12:17 - 00000000 ____D C:\ProgramData\DivX 2014-01-10 09:49 - 2010-04-19 12:17 - 00000000 ____D C:\Program Files (x86)\DivX 2014-01-10 00:10 - 2014-01-10 00:10 - 00000326 _____ C:\Windows\PFRO.log 2014-01-10 00:10 - 2014-01-10 00:10 - 00000000 _____ C:\Windows\setuperr.log 2014-01-09 22:50 - 2014-01-09 22:50 - 00000000 ____D C:\Users\TANJA\AppData\Roaming\AVAST Software 2014-01-09 21:32 - 2014-01-09 21:32 - 00001376 _____ C:\Windows\IE11_main.log 2014-01-09 21:14 - 2014-01-09 21:14 - 00001966 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-01-09 21:14 - 2014-01-09 21:14 - 00000000 ____D C:\Users\sony\AppData\Roaming\AVAST Software 2014-01-09 21:14 - 2014-01-09 21:12 - 00409832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 01032416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00334648 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-01-09 21:12 - 2014-01-09 21:12 - 00205320 _____ C:\Windows\system32\Drivers\aswVmm.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00092544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00084328 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00065776 _____ C:\Windows\system32\Drivers\aswRvrt.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00065264 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-01-09 21:12 - 2014-01-09 21:12 - 00038984 _____ (AVAST Software) C:\Windows\system32\Drivers\aswFsBlk.sys 2014-01-09 21:12 - 2014-01-09 21:12 - 00000000 ____D C:\Program Files\AVAST Software 2014-01-09 21:11 - 2014-01-09 21:11 - 00000000 ____D C:\ProgramData\AVAST Software 2014-01-09 21:00 - 2014-01-09 19:27 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-01-09 21:00 - 2014-01-09 19:26 - 00089304 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-01-09 19:27 - 2014-01-09 19:27 - 00117464 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-01-09 19:03 - 2011-10-24 23:17 - 00000974 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2786323165-1350516088-1116812794-1000Core.job 2014-01-09 15:58 - 2014-01-09 15:58 - 00001868 _____ C:\Users\sony\Fixlist.txt 2014-01-09 01:01 - 2010-01-31 10:21 - 00000000 ____D C:\Users\sony\AppData\Roaming\vlc 2014-01-08 23:18 - 2011-05-02 21:53 - 00000000 ____D C:\Program Files (x86)\SoyleOp2 2014-01-08 16:21 - 2013-02-24 13:10 - 00000000 ____D C:\Users\sony\AppData\Roaming\SimpleTV V03 2014-01-08 14:54 - 2010-10-23 19:06 - 00000000 ____D C:\Users\sony\AppData\Roaming\uTorrent 2014-01-08 09:11 - 2013-04-28 21:16 - 00000000 ____D C:\Users\TANJA\Desktop\hochzeit 2014-01-07 12:42 - 2013-11-29 13:13 - 00000000 ____D C:\Program Files\Unlocker 2014-01-06 23:51 - 2009-09-09 22:44 - 00000000 ____D C:\Program Files (x86)\Sony 2014-01-06 23:51 - 2009-08-19 02:55 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2014-01-06 23:44 - 2010-05-27 20:45 - 00000000 ____D C:\Users\sony\AppData\Roaming\Real 2014-01-06 22:49 - 2014-01-06 22:33 - 00000000 ___SD C:\ComboFix 2014-01-06 22:31 - 2014-01-06 22:31 - 00000000 ____D C:\Qoobox 2014-01-06 22:27 - 2014-01-06 22:27 - 00000000 ____D C:\Windows\erdnt 2014-01-06 22:20 - 2013-01-18 21:51 - 00000000 ____D C:\Users\TANJA 2014-01-06 22:08 - 2010-05-13 13:24 - 00000000 ____D C:\Users\sony\AppData\Roaming\TuneUp Software 2014-01-06 22:08 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\AppCompat 2014-01-06 22:07 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration 2014-01-06 22:06 - 2010-05-27 20:45 - 00000000 ____D C:\ProgramData\Real 2014-01-06 10:03 - 2014-01-06 10:03 - 00000000 ____D C:\ProgramData\TuneUp Software 2014-01-06 10:02 - 2014-01-06 10:02 - 00000000 ____D C:\Users\sony\AppData\Roaming\TuneUp Software-BackupByTuneUpPortable 2014-01-06 10:02 - 2014-01-06 10:02 - 00000000 ____D C:\ProgramData\TuneUp Software-BackupByTuneUpPortable 2014-01-03 18:03 - 2014-01-01 19:00 - 00000000 ____D C:\Users\TANJA\Desktop\Yeni klasör 2013-12-30 00:41 - 2013-12-21 10:17 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-12-24 15:57 - 2009-08-19 02:39 - 00654912 _____ C:\Windows\system32\perfh01F.dat 2013-12-24 15:57 - 2009-08-19 02:39 - 00139136 _____ C:\Windows\system32\perfc01F.dat 2013-12-24 15:57 - 2009-07-14 07:13 - 01564522 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-22 21:11 - 2013-09-14 10:44 - 00074118 _____ C:\KiNO-CHARTS.txt 2013-12-22 17:36 - 2013-08-19 22:18 - 00000000 ____D C:\Users\TANJA\Desktop\102MSDCF 2013-12-18 19:50 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2013-12-16 01:17 - 2013-08-14 22:47 - 00000000 ____D C:\Windows\system32\MRT 2013-12-16 01:15 - 2010-01-31 10:39 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-12-15 19:40 - 2013-08-28 17:43 - 00000000 ____D C:\Users\TANJA\Desktop\can fussball 2013-12-15 19:33 - 2013-12-15 19:33 - 00000000 ____D C:\Users\TANJA\Desktop\can yeni 2013-12-13 14:33 - 2013-10-15 08:31 - 00000000 ____D C:\Users\TANJA\Desktop\filiz 2013-12-13 11:52 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-12-12 19:06 - 2013-08-30 11:44 - 00000000 ____D C:\Users\TANJA\Desktop\konya 2013-12-12 03:19 - 2009-07-14 06:45 - 00379384 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-12 03:17 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\tr-TR 2013-12-12 03:17 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\tr-TR 2013-12-12 02:19 - 2013-12-12 01:56 - 00000000 ____D C:\Program Files (x86)\PPÖúÊÖ 2013-12-12 02:14 - 2013-12-12 01:56 - 00000000 ____D C:\Users\sony\AppData\Roaming\ihelper 2013-12-12 00:56 - 2013-02-23 02:43 - 00000000 ____D C:\Users\sony\AppData\Roaming\iFunbox_UserCache 2013-12-12 00:34 - 2013-02-23 02:31 - 00000000 ____D C:\Users\sony\AppData\Roaming\WindSolutions 2013-12-12 00:33 - 2012-06-29 13:24 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-12-12 00:28 - 2013-02-23 02:30 - 00000000 ____D C:\ProgramData\WindSolutions 2013-12-12 00:17 - 2013-10-15 17:48 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-12-11 17:13 - 2013-12-11 17:13 - 00000000 ____D C:\Users\TANJA\AppData\Roaming\ArcSoft 2013-12-11 17:13 - 2013-12-11 17:13 - 00000000 ____D C:\Users\TANJA\AppData\Local\ArcSoft 2013-12-11 09:23 - 2013-09-27 20:16 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-12-11 09:23 - 2013-09-27 20:16 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-12-11 07:09 - 2013-01-18 21:52 - 00001401 _____ C:\Users\TANJA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-12-11 07:08 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-12-11 01:37 - 2013-12-11 01:37 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-11 01:37 - 2013-12-11 01:37 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-11 01:37 - 2013-12-11 01:37 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-11 01:37 - 2013-12-11 01:37 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-11 01:37 - 2013-12-11 01:37 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-11 01:37 - 2013-12-11 01:37 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-11 01:37 - 2013-12-11 01:37 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-11 01:37 - 2013-12-11 01:37 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-11 01:37 - 2013-12-11 01:37 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe Some content of TEMP: ==================== C:\Users\TANJA\AppData\Local\Temp\avgnt.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit ==================== End Of Log ============================ --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- ich habe das gefühl die probleme habe ich als administator bei meiner account... es ist wie verhext jetz wie bei mir ist bei meiner fraus seite auch nach eine weile wirds richtig lahm.. also ich habe festgetellt,es faengt immer gut an aber nach ca. 5-7 min. wirds immer langsamer dan faengt alles an langsamer zuverden und vor allem alles was ich tue hingt hinterher pluss der kleine helle blaue rad dreht und dreht sich als ob der notebook sich rebotet ca.20 sek. dan kann ıch langsam weiter machen..das ist was zu meine beobachtungen sagen kann. es ist wie verhext gestern u vorgestern var alles viel besser nach dem du mir die ganzen fix sachen gegeben hast danach erholt sich der notebook habe ich das gefühl.. kannst du mir wieder was zu fixen vorbreieten... heiko das sind meine beobachtungen z.z kann es irgentwas mit der überhitzung sein? mitlerweile funktioniert meine maus auch nicht mehr..usb gibt fehler code 52..( und deutet nach eine virus wenn ich den driver updaten will..) ich glaube das wars oder? google finde ıch auch keine lösung,es geht mir nur noch darum das ich meine datein retten will vom notebook aber leider erkent es ''nix'' vom usb.. was soll ich jetz machen?... Hilfe.. gruss yossi keine der usb stellen funktionieren bei mir mehr... laut google ist wohl die ''recovry'' bei mir durch oder? |
10.01.2014, 22:21 | #39 |
/// Malwareteam | Laptop w7 seit paar tage Extrem Langsam.. das Verhalten ist sehr seltsam. Ich prüfe deine neuen Logfiles und melde mich dann. Bitte versuche einmal den Schritt mit chkdsk auszuführen. Dann wissen wir zumindest ob es an der Platte liegt. Es kann auch der Arbeitsspeicher sein .... wie gesagt ich lese deine Logfiles und melde mich. Geändert von Aneri (10.01.2014 um 22:54 Uhr) |
11.01.2014, 08:30 | #40 |
| Laptop w7 seit paar tage Extrem Langsam.. Hallo heiko... Ich habs genauso gemacht wie du es beschrieben hast..beım restart stand es auf ein schwarzes feld folgendes "turegopt program not found-skipping autochek" Dann passierte garnix...dan habe ıch es aus gemacht und neugestartet..dan kam eıne frage ob ıch wındows repariet haben will..genau wıe du mır es beschrieben hast "boot manager" habe ıch den auch getan..sehe nu,heyy der maus funktioniert wieder...(ein kleines erfolg ) Was soll ich machen? (Bevr ıch was falsch mache) Aktuell: notebook etwasdunkel,was ich leider nicht einstellen kann,will es heller machen aber es passiert nix..über usb laeuft z.z nur der maus,externe hdd erkent es leider nicht.(eigentlich wolte ich meine persönlichen sachen bilder,videos usw kopieren) Ok es ıst wieder hell,habe nur auf meine fraus seite geweschelt u wieder zurück schon ıst es wieder heller..auf meine fraus seite erkennt der den externen hdd auch nicht.. Aktuell: der notebook startet lahm und kommt langsam im gange..internett brauch auch einige zeit bis es etwas flotter wird.. |
11.01.2014, 12:22 | #41 |
/// Malwareteam | Laptop w7 seit paar tage Extrem Langsam.. Teilerfolge sind erfolge. Downloade dir bitte Windows Repair (All In One) von hier.
|
11.01.2014, 13:05 | #42 |
| Laptop w7 seit paar tage Extrem Langsam.. Hallo Heiko ich habe eine frage an dich.. Kannst du mir sagen ob ich ein virus ( immer noch ) im notebook habe? Und wenn ja kann es sich auf emin externe hdd über tragen wenn ich meine datein retten will? Oder kurz gefragt,ist es ratsam die dateien auf externe hdd zukopieren in meinen z.z sitiuation? |
11.01.2014, 13:58 | #43 |
/// Malwareteam | Laptop w7 seit paar tage Extrem Langsam.. wir haben deine Platte mit MBAM gescanned. Die Files sind soweit sauber. Da du einen Fullscan gemacht hast. |
12.01.2014, 15:21 | #44 |
/// Malwareteam | Laptop w7 seit paar tage Extrem Langsam.. hi Führe bitte folgenden Schritt aus: Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter reg: reg query "HKLM\HARDWARE\DEVICEMAP\Scsi\Scsi Port 0" reg: reg query "HKLM\SYSTEM\CurrentControlSet\Control\Class\{4D36E96A-E325-11CE-BFC1-08002BE10318}" /s Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
|
14.01.2014, 09:54 | #45 |
/// Malwareteam | Laptop w7 seit paar tage Extrem Langsam..ich hab schon länger keine Antwort mehr von dir erhalten. Brauchst du weiterhin noch Hilfe? Wenn ich in den nächsten 24 Stunden nichts von dir höre, gehe ich davon aus, dass sich das Thema erledigt hat und lösche es aus meinen Abos. Hinweis: Wir sind noch nicht fertig! Auch wenn die Symptome verschwunden sein sollten, kann dein System weiterhin infiziert sein und über Sicherheitslücken verfügen, welche eine erneute Infektion möglich machen. |
Themen zu Laptop w7 seit paar tage Extrem Langsam.. |
acrobat update, adobe, antivir, avg, avira, bho, desktop, explorer, flash player, google, helper, hijack, hijackthis, hotspot, internet, internet explorer, lap top langsam, mozilla, object, opera, performance, plug-in, problem, programme, realtek, software, system, trojaner, windos7, windows |