|
Plagegeister aller Art und deren Bekämpfung: bat=exe konnte nicht gefunden werden.Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
24.07.2014, 03:20 | #1 |
| bat=exe konnte nicht gefunden werden. Liebe Mitglieder, seit kurzem öffnen sich bei mir am Laptop wenn ich es einschalte ca 100 Fenster mit dem Namen Bat=Exe konnte nicht gefunden wernden. Kann mir jemand bitte kurz und knapp erklären wozu bat exe dient? woher es auf Einmal kommt ? und wie ich es beiseitigen kann? Ich benutze Windows 8 Bitte nicht wie ein Freak erklären denn ich bin nicht auf eurem Niveau Liebe Grüße |
24.07.2014, 08:06 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | bat=exe konnte nicht gefunden werden. Hallo und
__________________Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden? Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520 Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten! Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht! Zudem bitte auch ein Log mit Farbars Tool machen: Scan mit Farbar's Recovery Scan Tool (FRST) Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
24.07.2014, 19:40 | #3 |
| bat=exe konnte nicht gefunden werden. Danke für deine Mühe.
__________________Habe leider keine Logs die ich dir einfügen könnte. Ich bin leider nur 3 Tage die Woche Zuhause habe seit längerem keine Scanns mehr durchgeführt. Kann FRST 64-Bit zwar Runterladen kann es aber nicht öffnen... Funktioniert noch nichtmal wenn ichs versuche als Adminisrator zu öffnen. Hier ein screenshot. Das kommt wenn ich es versuche zu öffnen. Vielen Dank für die Mühe! hxxp://de.tinypic.com/view.php?pic=nwzz2t&s=8#.U9FTNvl_sWI |
24.07.2014, 19:47 | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ | bat=exe konnte nicht gefunden werden. 1. FRST soll auf dem Desktop und nicht woanders liegen also entsprechend verschieben 2. nachdem der Smartscreen kommt, mal auf "weitere Informationen" klicken, dann müsstest du die option haben, es trotz des Hinweises auszuführen
__________________ Logfiles bitte immer in CODE-Tags posten |
24.07.2014, 19:59 | #5 |
| bat=exe konnte nicht gefunden werden.Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-07-2014 01 Ran by hülya (administrator) on HÜLYA on 24-07-2014 20:50:06 Running from C:\Users\hülya\Desktop Platform: Windows 8 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (HP) C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe (AVM Berlin) C:\Program Files (x86)\avmwlanstick\WLanNetService.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Somoto LTD) C:\Program Files (x86)\Movies Toolbar\SafetyNut\SafetyNutManager.exe () C:\Windows\System32\valWBFPolicyService.exe (Somoto LTD) C:\Program Files (x86)\Movies Toolbar\SafetyNut\SafetyNutManager.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (AuthenTec Inc.) C:\Program Files (x86)\HP SimplePass\TouchControl.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avpui.exe () C:\Program Files (x86)\HP SimplePass\IEWebSiteLogon.exe (AuthenTec, Inc.) C:\Program Files\Common Files\AuthenTec\TrueService.exe (AuthenTec, Inc.) C:\Program Files\Common Files\AuthenTec\TrueService.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (Somoto LTD) C:\Program Files (x86)\Movies Toolbar\SafetyNut\safetynut.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (MyPCBackup.com) C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe (AVM Berlin) C:\Program Files (x86)\avmwlanstick\WLanGUI.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Windows\System32\consent.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1425408 2012-07-24] (IDT, Inc.) HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-25] (Synaptics Incorporated) HKLM-x32\...\Run: [CLVirtualDrive] => C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491320 2012-07-26] (CyberLink Corp.) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [580512 2012-07-31] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [HP CoolSense] => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [1343904 2012-11-05] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [AVMWlanClient] => C:\Program Files (x86)\avmwlanstick\wlangui.exe [2105344 2010-10-22] (AVM Berlin) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe HKLM-x32\...\Run: [fst_de_69] => [X] HKLM-x32\...\Run: [AnyProtect Scanner] => "C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe" HKLM-x32\...\Run: [AnyProtect Tray] => "C:\Program Files (x86)\AnyProtectEx\AnyProtectTrayIcon.exe" HKLM\...\RunOnce: [NCPluginUpdater] => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [21720 2014-07-08] (Hewlett-Packard) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\Run: [Facebook Update] => C:\Users\hülya\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-04-21] (Facebook Inc.) HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\Run: [Optimizer Pro] => C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe [135160 2014-01-28] (PC Utilities Software Limited) HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\Run: [FLV Player] => C:\Users\hülya\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe [202752 2012-10-26] () HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\Policies\Explorer: [DisallowRun] 1 HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\MountPoints2: {28b34250-eb9a-11e2-be88-246511c0e7fd} - "F:\LGAutoRun.exe" HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\MountPoints2: {5dfd6686-1c75-11e3-be90-246511c0e7fd} - "F:\LGAutoRun.exe" HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\MountPoints2: {e2c42221-4eec-11e3-beb1-84a6c84d5de5} - "H:\Startme.exe" HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\MountPoints2: {ef99e80f-98d0-11e2-be76-84a6c84d5de5} - "F:\pushinst.exe" IFEO\bitguard.exe: [Debugger] tasklist.exe IFEO\bprotect.exe: [Debugger] tasklist.exe IFEO\bpsvc.exe: [Debugger] tasklist.exe IFEO\browserdefender.exe: [Debugger] tasklist.exe IFEO\browserprotect.exe: [Debugger] tasklist.exe IFEO\browsersafeguard.exe: [Debugger] tasklist.exe IFEO\dprotectsvc.exe: [Debugger] tasklist.exe IFEO\jumpflip: [Debugger] tasklist.exe IFEO\protectedsearch.exe: [Debugger] tasklist.exe IFEO\searchinstaller.exe: [Debugger] tasklist.exe IFEO\searchprotection.exe: [Debugger] tasklist.exe IFEO\searchprotector.exe: [Debugger] tasklist.exe IFEO\searchsettings.exe: [Debugger] tasklist.exe IFEO\searchsettings64.exe: [Debugger] tasklist.exe IFEO\snapdo.exe: [Debugger] tasklist.exe IFEO\stinst32.exe: [Debugger] tasklist.exe IFEO\stinst64.exe: [Debugger] tasklist.exe IFEO\umbrella.exe: [Debugger] tasklist.exe IFEO\utiljumpflip.exe: [Debugger] tasklist.exe IFEO\volaro: [Debugger] tasklist.exe IFEO\vonteera: [Debugger] tasklist.exe IFEO\websteroids.exe: [Debugger] tasklist.exe IFEO\websteroidsservice.exe: [Debugger] tasklist.exe Startup: C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk ShortcutTarget: MyPC Backup.lnk -> C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (MyPCBackup.com) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.search.ask.com/?o=APN10640A&gct=hp&d=473-113&v=a13277-274&t=4 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uw_G-ZsY37hJsW_xeQeSXG80ggHtjPTecvbF7htjkQWadWf_X05_PnmHlFVcxUcvFe1KAbQSYBnTd-wpyhNDqr55lPOst8Jjz3JM70PraOvhKJ7u1RU6t-rLTmD9ncdNB-Cmb_dxeIn3k2f0bxzYdA9nE8kF74HcPW-tBUnwvN_TaTR85rpEf9k2E,&q={searchTerms} HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uw_G-ZsY37hJsW_xeQeSXG80ggHtjPTecvbF7htjkQWadWf_X05_PnmHlFVcxUcvFe1KAbQSYBnTd-wpyhNDqr55lPOst8Jjz3JM70PraOvhKJ7u1RU6t-rLTmD9ncdNB-Cmb_dxeIn3k2f0bxzYdA9nE8kF74HcPW-tBUnwvN_TaTR85rpEf9k2E,&q={searchTerms} HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://search.certified-toolbar.com?si=82443&tid=24086&ver=6.4&ts=1404052590260&tguid=82443-24086-1404052590260-EDA59AC89231C91913BF0CDE37C114DB&st=chrome&q= HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.awesomehp.com/?type=hp&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.awesomehp.com/web/?type=ds&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.awesomehp.com/?type=hp&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.awesomehp.com/web/?type=ds&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.certified-toolbar.com?si=82443&tid=24086&ver=6.4&ts=1404052590260&tguid=82443-24086-1404052590260-EDA59AC89231C91913BF0CDE37C114DB&st=chrome&q= StartMenuInternet: IEXPLORE.EXE - iexplore.exe SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX&q={searchTerms} SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS SearchScopes: HKLM - {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPNTDF SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX&q={searchTerms} SearchScopes: HKLM - {52db1893-8a90-4192-aede-08e00b8f8473} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms} SearchScopes: HKLM - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = SearchScopes: HKLM - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKLM - {E6DFA72B-E3A3-4EE5-89E2-D618E482A4D2} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uw_G-ZsY37hJsW_xeQeSXG80ggHtjPTecvbF7htjkQWadWf_X05_PnmHlFVcxUcvFe1KAbQSYBnTd-wpyhNDqr55lPOst8Jjz3JM70PraOvhKJ7u1RU6t-rLTmD9ncdNB-Cmb_dxeIn3k2f0bxzYdA9nE8kF74HcPW-tBUnwvN_TaTR85rpEf9k2E,&q={searchTerms} SearchScopes: HKLM-x32 - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uw_G-ZsY37hJsW_xeQeSXG80ggHtjPTecvbF7htjkQWadWf_X05_PnmHlFVcxUcvFe1KAbQSYBnTd-wpyhNDqr55lPOst8Jjz3JM70PraOvhKJ7u1RU6t-rLTmD9ncdNB-Cmb_dxeIn3k2f0bxzYdA9nE8kF74HcPW-tBUnwvN_TaTR85rpEf9k2E,&q={searchTerms} SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://search.chatzum.com/?orig=DS&affid=62&cztbid=398551599&q={searchTerms} SearchScopes: HKLM-x32 - {52db1893-8a90-4192-aede-08e00b8f8473} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms} SearchScopes: HKCU - DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://rocket-find.com/results.php?f=4&q={searchTerms}&a=rckt_cmi_14_27_ch&cd=2XzuyEtN2Y1L1Qzu0AtD0BtA0C0CyEzzyE0F0Czy0Bzy0CzytN0D0Tzu0SzytCyEtN1L2XzutBtFtBtCtFtCtCtFtDtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyD0EtD0AyDtB0A0EtGyByE0AtAtGzz0AyD0DtG0EzyyC0FtGtA0EtDtDtBtB0CyDtCyEtAyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyD0DyCtBtDtAyE0BtG0ByCtDtBtGtAyEzytCtGzyyByDtCtGtC0DtAtB0EtBtCtB0EyCyEyB2Q&cr=1027476504&ir= SearchScopes: HKCU - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://rocket-find.com/results.php?f=4&q={searchTerms}&a=rckt_cmi_14_27_ch&cd=2XzuyEtN2Y1L1Qzu0AtD0BtA0C0CyEzzyE0F0Czy0Bzy0CzytN0D0Tzu0SzytCyEtN1L2XzutBtFtBtCtFtCtCtFtDtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyD0EtD0AyDtB0A0EtGyByE0AtAtGzz0AyD0DtG0EzyyC0FtGtA0EtDtDtBtB0CyDtCyEtAyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyD0DyCtBtDtAyE0BtG0ByCtDtBtGtAyEzytCtGzyyByDtCtGtC0DtAtB0EtBtCtB0EyCyEyB2Q&cr=1027476504&ir= SearchScopes: HKCU - {52db1893-8a90-4192-aede-08e00b8f8473} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms} SearchScopes: HKCU - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uw_G-ZsY37hJsW_xeQeSXG80ggHtjPTecvbF7htjkQWadWf_X05_PnmHlFVcxUcvFe1KAbQSYBnTd-wpyhNDqr55lPOst8Jjz3JM70PraOvhKJ7u1RU6t-rLTmD9ncdNB-Cmb_dxeIn3k2f0bxzYdA9nE8kF74HcPW-tBUnwvN_TaTR85rpEf9k2E,&q={searchTerms} SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = BHO: TicTaaCooupon -> {0976F393-E747-DCFE-31D0-860DE1FCBA82} -> C:\ProgramData\TicTaaCooupon\JH.x64.dll () BHO: savinshoop -> {2ED8C2FC-2464-86BA-E541-740FB78AF4BD} -> C:\ProgramData\savinshoop\PRZ7D.x64.dll () BHO: SmartbarInternetExplorerBHOEngine -> {31ad400d-1b06-4e33-a59a-90c2c140cba0} -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) BHO: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: TuicTaCoupon -> {795AE1C1-9CD3-7A5D-8535-AA853C8F4DD1} -> C:\ProgramData\TuicTaCoupon\wlrUI58BRE.x64.dll () BHO: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: Freecorder extension -> {B15BBE59-42F5-4206-B3F0-BE98F5DC4B93} -> C:\Program Files\Freecorder extension\ScriptHost64.dll (Applian Technologies Inc.) BHO: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard) BHO-x32: TicTaaCooupon -> {0976F393-E747-DCFE-31D0-860DE1FCBA82} -> C:\ProgramData\TicTaaCooupon\JH.dll () BHO-x32: savinshoop -> {2ED8C2FC-2464-86BA-E541-740FB78AF4BD} -> C:\ProgramData\savinshoop\PRZ7D.dll () BHO-x32: SmartbarInternetExplorerBHOEngine -> {31ad400d-1b06-4e33-a59a-90c2c140cba0} -> C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) BHO-x32: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: SaveSense -> {71e129ff-6c2a-4984-818c-7e2c998b8d99} -> C:\Users\hülya\AppData\Local\SaveSense\SaveSenseIE.dll (SaveSense) BHO-x32: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: TuicTaCoupon -> {795AE1C1-9CD3-7A5D-8535-AA853C8F4DD1} -> C:\ProgramData\TuicTaCoupon\wlrUI58BRE.dll () BHO-x32: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Freecorder extension -> {B15BBE59-42F5-4206-B3F0-BE98F5DC4B93} -> C:\Program Files (x86)\Freecorder extension\ScriptHost.dll (Applian Technologies Inc.) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard) Toolbar: HKLM - Yahoo Community Smartbar (by Linkury) - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\system32\mscoree.dll (Microsoft Corporation) Toolbar: HKLM-x32 - Yahoo Community Smartbar (by Linkury) - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) DPF: HKLM-x32 {8FEFF364-6A5F-4966-A917-A3AC28411659} hxxp://download.easetuner.com/download/SOPCORE.CAB Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 192.168.2.1 FireFox: ======== FF Plugin-x32: @authentec.com/ffwloplugin - C:\Program Files (x86)\HP SimplePass\npffwloplugin.dll ( HP) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.updaterss.com/SaveSenseLive Update;version=3 - C:\Program Files (x86)\SaveSenseLive\Update\1.3.23.0\npGoogleUpdate3.dll (SaveSense) FF Plugin-x32: @tools.updaterss.com/SaveSenseLive Update;version=9 - C:\Program Files (x86)\SaveSenseLive\Update\1.3.23.0\npGoogleUpdate3.dll (SaveSense) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\hülya\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF HKLM-x32\...\Firefox\Extensions: - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\url_advisor@kaspersky.com FF Extension: 卡巴斯基網址顧問 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\url_advisor@kaspersky.com [2013-11-06] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\virtual_keyboard@kaspersky.com FF Extension: 虛擬鍵盤 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\virtual_keyboard@kaspersky.com [2013-11-06] FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\content_blocker@kaspersky.com FF Extension: 惡意網站攔截器 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\content_blocker@kaspersky.com [2013-11-06] FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\anti_banner@kaspersky.com FF Extension: Chặn quảng cáo - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\anti_banner@kaspersky.com [2013-11-06] FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\online_banking@kaspersky.com [2013-11-06] Chrome: ======= CHR HomePage: hxxp://www.search.ask.com/?o=APN10640A&gct=hp&d=473-113&v=a13277-274&t=4 CHR StartupUrls: "hxxp://www.search.ask.com/?o=APN10640A&gct=hp&d=473-113&v=a13277-274&t=4", "hxxp://google.de/" CHR NewTab: "chrome-extension://ibnjmihbbanannlbobkbmnmckjnmdnom/newtab.html" CHR DefaultSearchKeyword: ask.com CHR DefaultSearchProvider: Ask.com CHR DefaultSearchURL: hxxp://dts.search.ask.com/sr?src=crb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms} CHR DefaultNewTabURL: CHR Extension: (Movies Toolbar) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaimdcedbpbcjjbbnfcbbjcngmomic [2014-05-10] CHR Extension: (Google Docs) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-10] CHR Extension: (Google Drive) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-10] CHR Extension: (PriceGong) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok [2014-05-10] CHR Extension: (YouTube) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-10] CHR Extension: (Google-Suche) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-10] CHR Extension: (Modul zur Link-Untersuchung) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2014-05-10] CHR Extension: (Website Logon) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\fegekclkdhbnfdcmomlpegkkndgnmfmo [2014-05-10] CHR Extension: (Freecorder) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpicboiclhmnllnjdcfcffifpoaebgkm [2014-05-10] CHR Extension: (Rocket New Tab) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibnjmihbbanannlbobkbmnmckjnmdnom [2014-07-02] CHR Extension: (Amazon-Icon) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg [2014-07-13] CHR Extension: (Google Wallet) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-10] CHR Extension: (Google Mail) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-10] CHR Extension: (Anti-Banner) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2014-05-10] CHR Extension: (SAlesoChoeoccker) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkidpnnapnfgjhfhkpmjpbckkbaodldb [2014-07-02] CHR Extension: (Extutil) - C:\Users\HLYA~1\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B [2014-06-18] CHR Extension: (Managera) - C:\Users\HLYA~1\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42 [2014-06-18] CHR HKLM-x32\...\Chrome\Extension: [aaaaimdcedbpbcjjbbnfcbbjcngmomic] - C:\Users\hülya\AppData\Local\somotomoviestoolbar181\GC\toolbar.crx [2014-01-24] CHR HKLM-x32\...\Chrome\Extension: [bkomkajifikmkfnjgphkjcfeepbnojok] - C:\Program Files (x86)\PriceGong\2.6.11\pricegong.crx [2013-03-04] CHR HKLM-x32\...\Chrome\Extension: [blbkdnmdcafmfhinpmnlhhddbepgkeaa] - https://chrome.google.com/webstore/detail/blbkdnmdcafmfhinpmnlhhddbepgkeaa [2013-03-04] CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\urladvisor.crx [2013-10-17] CHR HKLM-x32\...\Chrome\Extension: [fegekclkdhbnfdcmomlpegkkndgnmfmo] - C:\Program Files (x86)\HP SimplePass\tschrome.crx [2012-07-12] CHR HKLM-x32\...\Chrome\Extension: [gpicboiclhmnllnjdcfcffifpoaebgkm] - C:\Program Files (x86)\Freecorder extension\Freecorder.crx [2014-02-25] CHR HKLM-x32\...\Chrome\Extension: [mkcedibhemacmilmkpndpkoidlnmgngg] - C:\Users\hülya\ChromeExtensions\mkcedibhemacmilmkpndpkoidlnmgngg\amazon.crx [2014-07-13] CHR HKLM-x32\...\Chrome\Extension: [pelmeidfhdlhlbjimpabfcbnnojbboma] - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx [2014-07-13] CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\ab.crx [2013-10-17] CHR HKLM-x32\...\Chrome\Extension: [pljcgbedjplidkdjahbaalanadmjfgop] - C:\ProgramData\AskPartnerNetwork\Toolbar\ORJ-V7C\CRX\ToolbarCR.crx [2014-06-25] CHR StartMenuInternet: Google Chrome - chrome.exe CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 70e6ca8c; c:\Program Files (x86)\Optimizer Pro\OptProCrashSvc.dll [186496 2014-03-02] () S4 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [165784 2014-06-24] (APN LLC.) R2 AVM WLAN Connection Service; C:\Program Files (x86)\avmwlanstick\WlanNetService.exe [376832 2010-10-22] (AVM Berlin) [File not signed] R2 avp; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe [214512 2013-10-17] (Kaspersky Lab ZAO) S2 BackupStack; C:\Program Files (x86)\MyPC Backup\BackupStack.exe [36392 2014-02-18] (Just Develop It) S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [331776 2012-07-26] (Microsoft Corporation) S4 desksvc; C:\Program Files (x86)\Desk 365\deskSvc.exe [425008 2014-03-02] (337 Technology Limited.) R2 FPLService; C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe [1641320 2012-08-10] (HP) R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2013-11-04] (Hewlett-Packard Company) [File not signed] R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-18] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation) S4 LPTSystemUpdater; C:\Program Files (x86)\LPT\srpts.exe [35096 2014-02-09] () S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [272176 2012-07-18] () R2 SafetyNutManager; C:\Program Files (x86)\Movies Toolbar\SafetyNut\SafetyNutManager.exe [3573456 2014-07-03] (Somoto LTD) S2 savesenselive; C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe [146920 2014-07-02] (SaveSense) S3 savesenselivem; C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe [146920 2014-07-02] (SaveSense) R3 TrueService; C:\Program Files\Common Files\AuthenTec\TrueService.exe [401256 2012-07-16] (AuthenTec, Inc.) R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [28160 2012-07-18] () [File not signed] S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16056 2014-03-29] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2699568 2012-07-18] (Intel® Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [14120 2010-10-04] (AVM Berlin) S3 BthA2DP; C:\Windows\system32\drivers\BthA2DP.sys [117632 2013-06-01] (Microsoft Corporation) S3 BthHFAud; C:\Windows\system32\DRIVERS\BthHfAud.sys [30720 2013-02-02] (Microsoft Corporation) S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink) R1 F06DEFF2-5B9C-490D-910F-35D3A9119622; C:\Program Files (x86)\Movies Toolbar\SafetyNut\x64\configmgrc2.cfg [42064 2014-07-03] (Somoto LTD) S3 fwlanusb4; C:\Windows\system32\DRIVERS\fwlanusb4.sys [1293824 2010-10-04] (AVM GmbH) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2013-11-07] (Kaspersky Lab ZAO) S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [29792 2013-12-19] (Kaspersky Lab) S4 klflt; C:\Windows\System32\DRIVERS\klflt.sys [115296 2014-03-24] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [625760 2014-03-24] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [30304 2013-10-17] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [29280 2014-02-18] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [29280 2013-10-17] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\system32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO) R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [65120 2014-03-24] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [178272 2013-12-19] (Kaspersky Lab ZAO) R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [3345376 2013-08-22] (Intel Corporation) S3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [266896 2012-06-14] (Realtek Semiconductor Corp.) S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [41272 2012-08-25] (Synaptics Incorporated) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-08-25] (Synaptics Incorporated) S3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [48096 2012-08-09] (Windows (R) Win 7 DDK provider) R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2012-08-31] (Hewlett-Packard Development Company, L.P.) R3 WUDFWpdComp; C:\Windows\system32\DRIVERS\WUDFRd.sys [198656 2012-07-26] (Microsoft Corporation) S3 XHCIPort; C:\Windows\System32\drivers\XHCIPort.sys [188384 2012-08-09] (Windows (R) Win 7 DDK provider) S3 cpuz135; \??\C:\Users\HLYA~1\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-07-24 20:50 - 2014-07-24 20:50 - 00036071 _____ () C:\Users\hülya\Desktop\FRST.txt 2014-07-24 20:49 - 2014-07-24 20:50 - 00000000 ____D () C:\FRST 2014-07-24 20:30 - 2014-07-24 20:30 - 02093568 _____ (Farbar) C:\Users\hülya\Desktop\FRST64.exe 2014-07-24 20:30 - 2014-07-24 20:30 - 02093568 _____ (Farbar) C:\Users\hülya\Desktop\FRST64 (1).exe 2014-07-24 16:57 - 2014-07-24 16:57 - 00000000 ____D () C:\Users\hülya\AppData\Local\{4706BF3E-9D06-476C-8975-11B6F64F1ED5} 2014-07-20 02:38 - 2014-07-20 02:38 - 00000000 ____D () C:\Users\hülya\AppData\Local\{A90487C2-BC22-4173-A0A9-24300613D4BB} 2014-07-17 23:52 - 2014-07-17 23:52 - 01385120 _____ () C:\Users\hülya\Downloads\Setup (6).exe 2014-07-15 04:36 - 2014-07-15 04:36 - 00000000 ____D () C:\Program Files (x86)\LuckyCouPoon 2014-07-13 13:00 - 2014-07-13 13:00 - 00000000 ____D () C:\Users\hülya\AppData\Local\{AFB4CE14-1EF5-4B90-8CAB-588D81E38B33} 2014-07-13 01:44 - 2014-07-13 01:44 - 00000000 ____D () C:\Users\hülya\ChromeExtensions 2014-07-13 01:43 - 2014-07-24 20:11 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535_ 2014-07-13 01:43 - 2014-07-24 20:11 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535 2014-07-13 01:43 - 2014-07-24 20:11 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51_ 2014-07-13 01:42 - 2014-07-24 20:11 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51 2014-07-13 01:42 - 2014-07-13 01:43 - 00000186 _____ () C:\Users\hülya\Desktop\Amazon.de.url 2014-07-13 01:42 - 2014-07-13 01:42 - 01063312 _____ () C:\Users\hülya\Downloads\Adblock-Plus-fr-Chrome-lnstall.exe 2014-07-13 01:42 - 2014-07-13 01:42 - 00000000 ____D () C:\Users\hülya\Downloads\Adblock-Plus-für-Chrome 2014-07-12 19:29 - 2014-07-12 19:30 - 00000000 ____D () C:\Users\hülya\AppData\Local\{FD644658-6736-4DC7-AEFD-0D251801A962} 2014-07-12 18:26 - 2014-07-09 03:28 - 00378337 _____ () C:\Users\hülya\Documents\Ergo%20Vorbeereiten.odt_0.odt 2014-07-12 13:41 - 2014-07-12 13:41 - 00323048 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-07-12 13:39 - 2014-07-12 13:39 - 00000000 ____D () C:\Users\hülya\AppData\Local\{AB6D36F8-A176-45FF-83CE-3AE16BC873F0} 2014-07-12 13:14 - 2014-07-15 04:35 - 00000376 _____ () C:\Windows\Tasks\APSnotifierPP3.job 2014-07-12 13:14 - 2014-07-15 04:35 - 00000376 _____ () C:\Windows\Tasks\APSnotifierPP2.job 2014-07-12 03:32 - 2014-06-26 22:53 - 00703968 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-07-12 03:32 - 2014-06-26 22:53 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-07-12 03:28 - 2014-07-24 20:11 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-07-10 02:49 - 2014-07-10 02:49 - 00000102 ____H () C:\Users\hülya\Downloads\.~lock.ups bewerbung.doc# 2014-07-10 02:38 - 2014-07-10 02:38 - 00000102 ____H () C:\Users\hülya\Desktop\.~lock.Feser Graf Gruppe Bewerbung.odt# 2014-07-09 10:52 - 2014-07-01 00:42 - 00702464 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-07-09 10:52 - 2014-07-01 00:42 - 00394240 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2014-07-09 10:52 - 2014-07-01 00:42 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2014-07-09 10:52 - 2014-06-28 05:35 - 00556544 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-07-09 02:08 - 2014-06-19 04:12 - 02239488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-09 02:08 - 2014-06-19 04:12 - 01366528 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-09 02:08 - 2014-06-19 04:12 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2014-07-09 02:08 - 2014-06-19 04:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2014-07-09 02:08 - 2014-06-19 04:12 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-07-09 02:08 - 2014-06-19 04:11 - 19277312 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-09 02:08 - 2014-06-19 04:11 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-07-09 02:08 - 2014-06-19 04:11 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 15369728 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 02650624 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-07-09 02:08 - 2014-06-19 04:09 - 01508864 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-09 02:08 - 2014-06-19 02:53 - 14368768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-09 02:08 - 2014-06-19 02:53 - 01766400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-09 02:08 - 2014-06-19 02:53 - 01141760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-09 02:08 - 2014-06-19 02:53 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-09 02:08 - 2014-06-19 02:53 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-07-09 02:08 - 2014-06-19 02:53 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-09 02:08 - 2014-06-19 02:53 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 13732352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 02863616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 01440768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-09 02:08 - 2014-06-19 02:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-07-09 02:08 - 2014-06-19 02:33 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-07-09 02:08 - 2014-06-19 02:30 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-07-09 02:08 - 2014-06-19 00:05 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2014-07-09 02:08 - 2014-06-18 01:27 - 01440256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-07-09 02:08 - 2014-06-18 01:24 - 01557504 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-07-09 02:08 - 2014-06-11 06:18 - 04038144 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-07-09 02:08 - 2014-06-03 00:33 - 00265216 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll 2014-07-09 02:08 - 2014-05-30 01:31 - 00452608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll 2014-07-09 02:08 - 2014-05-30 01:03 - 00588288 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll 2014-07-09 02:08 - 2014-05-30 01:02 - 01281536 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-07-09 02:08 - 2014-05-30 01:02 - 00439808 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll 2014-07-09 02:08 - 2014-05-03 08:34 - 06974808 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-07-09 02:08 - 2014-05-03 08:33 - 01824808 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-07-09 02:08 - 2014-05-03 06:51 - 01408976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2014-07-09 02:08 - 2014-05-02 00:37 - 01023488 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2014-07-09 02:08 - 2014-04-30 00:32 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe 2014-07-09 02:08 - 2014-04-30 00:32 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe 2014-07-09 02:08 - 2014-04-24 01:51 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2014-07-09 02:08 - 2014-04-24 01:51 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-07-09 02:08 - 2014-04-24 01:38 - 00693760 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2014-07-09 02:08 - 2014-04-24 01:38 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-07-09 02:08 - 2014-02-08 06:34 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys 2014-07-09 02:07 - 2014-06-06 16:06 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-07-09 02:07 - 2014-06-06 12:17 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-07-09 02:07 - 2014-05-30 00:24 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-07-07 12:47 - 2014-07-07 12:47 - 00000000 ____D () C:\Users\hülya\AppData\Local\{A85C6324-D7B6-49FD-82B2-D8EC8199F583} 2014-07-05 01:06 - 2014-07-19 00:07 - 00000095 _____ () C:\Users\hülya\AppData\Roaming\WB.CFG 2014-07-05 00:35 - 2014-07-24 20:50 - 00000000 ____D () C:\ProgramData\SafetyNut 2014-07-02 20:29 - 2014-07-15 23:15 - 00000000 ____D () C:\ProgramData\LuckyCouPoon 2014-07-02 20:07 - 2014-07-15 04:04 - 00003120 _____ () C:\Windows\System32\Tasks\Advanced System Protector_startup 2014-07-02 20:06 - 2014-07-24 20:18 - 00000938 _____ () C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineCore.job 2014-07-02 20:06 - 2014-07-24 20:11 - 00000942 _____ () C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineUA.job 2014-07-02 20:06 - 2014-07-24 20:11 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SaveSense 2014-07-02 20:06 - 2014-07-24 20:06 - 00000306 _____ () C:\Windows\Tasks\Rocket Updater.job 2014-07-02 20:06 - 2014-07-15 04:38 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\Systweak 2014-07-02 20:06 - 2014-07-15 04:06 - 00000306 _____ () C:\Windows\Tasks\SaveSense.job 2014-07-02 20:06 - 2014-07-02 20:06 - 00003914 _____ () C:\Windows\System32\Tasks\SaveSenseLiveUpdateTaskMachineUA 2014-07-02 20:06 - 2014-07-02 20:06 - 00003678 _____ () C:\Windows\System32\Tasks\SaveSenseLiveUpdateTaskMachineCore 2014-07-02 20:06 - 2014-07-02 20:06 - 00002644 _____ () C:\Windows\System32\Tasks\SaveSense 2014-07-02 20:06 - 2014-07-02 20:06 - 00002644 _____ () C:\Windows\System32\Tasks\Rocket Updater 2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\SaveSense 2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\RocketUpdater 2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Local\SaveSenseLive 2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Local\SaveSense 2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\ProgramData\SaveSenseLive 2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Program Files (x86)\SaveSenseLive 2014-07-02 20:06 - 2014-07-02 16:42 - 00608261 _____ (Click Me In Limited) C:\Users\hülya\AppData\Local\AnyProtectScannerSetup.exe 2014-07-02 20:06 - 2014-04-25 14:49 - 00020312 _____ (Systweak Inc., (www.systweak.com)) C:\Windows\system32\roboot64.exe 2014-07-02 20:01 - 2014-07-02 20:01 - 00000000 ____D () C:\Program Files (x86)\predm 2014-07-02 19:50 - 2014-07-02 19:50 - 01258080 _____ () C:\Users\hülya\Downloads\Setup (5).exe 2014-07-01 22:19 - 2014-07-01 22:19 - 00003204 _____ () C:\Windows\System32\Tasks\jgjnrnq 2014-07-01 22:19 - 2014-07-01 22:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\jgjnrnq.bat 2014-07-01 22:17 - 2014-07-01 22:17 - 00003206 _____ () C:\Windows\System32\Tasks\eqfcxnbw 2014-07-01 22:17 - 2014-07-01 22:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\eqfcxnbw.bat 2014-07-01 22:15 - 2014-07-01 22:15 - 00003204 _____ () C:\Windows\System32\Tasks\whpxpqi 2014-07-01 22:15 - 2014-07-01 22:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\whpxpqi.bat 2014-07-01 22:13 - 2014-07-01 22:13 - 00003200 _____ () C:\Windows\System32\Tasks\lcbpg 2014-07-01 22:13 - 2014-07-01 22:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpg.bat 2014-07-01 22:11 - 2014-07-01 22:11 - 00003206 _____ () C:\Windows\System32\Tasks\kheaxbbv 2014-07-01 22:11 - 2014-07-01 22:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\kheaxbbv.bat 2014-07-01 22:09 - 2014-07-01 22:09 - 00003206 _____ () C:\Windows\System32\Tasks\xgxiyqsd 2014-07-01 22:09 - 2014-07-01 22:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\xgxiyqsd.bat 2014-07-01 22:07 - 2014-07-01 22:07 - 00003204 _____ () C:\Windows\System32\Tasks\abpicxr 2014-07-01 22:07 - 2014-07-01 22:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\abpicxr.bat 2014-07-01 22:05 - 2014-07-01 22:05 - 00003204 _____ () C:\Windows\System32\Tasks\dynshwc 2014-07-01 22:05 - 2014-07-01 22:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\dynshwc.bat 2014-07-01 22:02 - 2014-07-01 22:02 - 00003206 _____ () C:\Windows\System32\Tasks\wgwfihhq 2014-07-01 22:02 - 2014-07-01 22:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\wgwfihhq.bat 2014-06-30 05:48 - 2014-06-30 05:48 - 00003206 _____ () C:\Windows\System32\Tasks\ulccqgwd 2014-06-30 05:48 - 2014-06-30 05:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\ulccqgwd.bat 2014-06-30 05:46 - 2014-06-30 05:46 - 00003204 _____ () C:\Windows\System32\Tasks\fvngogw 2014-06-30 05:46 - 2014-06-30 05:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\fvngogw.bat 2014-06-30 05:44 - 2014-06-30 05:44 - 00003200 _____ () C:\Windows\System32\Tasks\nfnnu 2014-06-30 05:44 - 2014-06-30 05:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\nfnnu.bat 2014-06-30 05:42 - 2014-06-30 05:42 - 00003200 _____ () C:\Windows\System32\Tasks\ebfol 2014-06-30 05:42 - 2014-06-30 05:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\ebfol.bat 2014-06-30 05:40 - 2014-06-30 05:40 - 00003204 _____ () C:\Windows\System32\Tasks\aiwkxfb 2014-06-30 05:40 - 2014-06-30 05:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\aiwkxfb.bat 2014-06-30 05:38 - 2014-06-30 05:38 - 00003206 _____ () C:\Windows\System32\Tasks\cwtodhbp 2014-06-30 05:38 - 2014-06-30 05:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\cwtodhbp.bat 2014-06-30 05:36 - 2014-06-30 05:36 - 00003202 _____ () C:\Windows\System32\Tasks\fgnngg 2014-06-30 05:36 - 2014-06-30 05:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\fgnngg.bat 2014-06-30 05:34 - 2014-06-30 05:34 - 00003200 _____ () C:\Windows\System32\Tasks\awkfl 2014-06-30 05:34 - 2014-06-30 05:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\awkfl.bat 2014-06-30 05:32 - 2014-06-30 05:32 - 00003202 _____ () C:\Windows\System32\Tasks\yldjcn 2014-06-30 05:32 - 2014-06-30 05:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\yldjcn.bat 2014-06-30 05:30 - 2014-06-30 05:30 - 00003206 _____ () C:\Windows\System32\Tasks\ekhnlrhf 2014-06-30 05:30 - 2014-06-30 05:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\ekhnlrhf.bat 2014-06-30 05:28 - 2014-06-30 05:28 - 00003206 _____ () C:\Windows\System32\Tasks\qmgcmikg 2014-06-30 05:28 - 2014-06-30 05:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\qmgcmikg.bat 2014-06-30 05:26 - 2014-06-30 05:26 - 00003204 _____ () C:\Windows\System32\Tasks\mcbxwcs 2014-06-30 05:26 - 2014-06-30 05:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\mcbxwcs.bat 2014-06-30 05:24 - 2014-06-30 05:24 - 00003206 _____ () C:\Windows\System32\Tasks\oopqhiaa 2014-06-30 05:24 - 2014-06-30 05:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\oopqhiaa.bat 2014-06-30 05:22 - 2014-06-30 05:22 - 00003204 _____ () C:\Windows\System32\Tasks\ijlmopq 2014-06-30 05:22 - 2014-06-30 05:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\ijlmopq.bat 2014-06-30 05:20 - 2014-06-30 05:20 - 00003206 _____ () C:\Windows\System32\Tasks\kfdavzwl 2014-06-30 05:20 - 2014-06-30 05:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\kfdavzwl.bat 2014-06-30 05:18 - 2014-06-30 05:18 - 00003200 _____ () C:\Windows\System32\Tasks\spuhd 2014-06-30 05:18 - 2014-06-30 05:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\spuhd.bat 2014-06-30 05:16 - 2014-06-30 05:16 - 00003202 _____ () C:\Windows\System32\Tasks\bxthdr 2014-06-30 05:16 - 2014-06-30 05:16 - 00000269 _____ () C:\Users\hülya\AppData\Local\bxthdr.bat 2014-06-30 05:14 - 2014-06-30 05:14 - 00003204 _____ () C:\Windows\System32\Tasks\fxacscu 2014-06-30 05:14 - 2014-06-30 05:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\fxacscu.bat 2014-06-30 05:12 - 2014-06-30 05:12 - 00003202 _____ () C:\Windows\System32\Tasks\beiuye 2014-06-30 05:12 - 2014-06-30 05:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\beiuye.bat 2014-06-30 05:10 - 2014-06-30 05:10 - 00003202 _____ () C:\Windows\System32\Tasks\lbgcbx 2014-06-30 05:10 - 2014-06-30 05:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\lbgcbx.bat 2014-06-30 05:08 - 2014-06-30 05:08 - 00003200 _____ () C:\Windows\System32\Tasks\erawe 2014-06-30 05:08 - 2014-06-30 05:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\erawe.bat 2014-06-30 05:06 - 2014-06-30 05:06 - 00003200 _____ () C:\Windows\System32\Tasks\caebg 2014-06-30 05:06 - 2014-06-30 05:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\caebg.bat 2014-06-30 05:04 - 2014-06-30 05:04 - 00003206 _____ () C:\Windows\System32\Tasks\hqqbbcll 2014-06-30 05:04 - 2014-06-30 05:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\hqqbbcll.bat 2014-06-30 05:01 - 2014-06-30 05:01 - 00003204 _____ () C:\Windows\System32\Tasks\ruxcmqt 2014-06-30 05:01 - 2014-06-30 05:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ruxcmqt.bat 2014-06-30 04:59 - 2014-06-30 04:59 - 00003206 _____ () C:\Windows\System32\Tasks\wxxabbdl 2014-06-30 04:59 - 2014-06-30 04:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\wxxabbdl.bat 2014-06-30 04:57 - 2014-06-30 04:57 - 00003204 _____ () C:\Windows\System32\Tasks\tbfedip 2014-06-30 04:57 - 2014-06-30 04:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbfedip.bat 2014-06-30 04:55 - 2014-06-30 04:55 - 00003200 _____ () C:\Windows\System32\Tasks\khtpt 2014-06-30 04:55 - 2014-06-30 04:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\khtpt.bat 2014-06-30 04:53 - 2014-06-30 04:53 - 00003204 _____ () C:\Windows\System32\Tasks\pakteow 2014-06-30 04:53 - 2014-06-30 04:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\pakteow.bat 2014-06-30 04:51 - 2014-06-30 04:51 - 00003200 _____ () C:\Windows\System32\Tasks\tsqpv 2014-06-30 04:51 - 2014-06-30 04:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\tsqpv.bat 2014-06-30 04:49 - 2014-06-30 04:49 - 00003202 _____ () C:\Windows\System32\Tasks\fsigct 2014-06-30 04:49 - 2014-06-30 04:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\fsigct.bat 2014-06-30 04:47 - 2014-06-30 04:47 - 00003202 _____ () C:\Windows\System32\Tasks\quwaeg 2014-06-30 04:47 - 2014-06-30 04:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\quwaeg.bat 2014-06-30 04:45 - 2014-06-30 04:45 - 00003200 _____ () C:\Windows\System32\Tasks\nveck 2014-06-30 04:45 - 2014-06-30 04:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\nveck.bat 2014-06-30 04:43 - 2014-06-30 04:43 - 00003202 _____ () C:\Windows\System32\Tasks\tqwtbw 2014-06-30 04:43 - 2014-06-30 04:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\tqwtbw.bat 2014-06-30 04:41 - 2014-06-30 04:41 - 00003200 _____ () C:\Windows\System32\Tasks\zlqcg 2014-06-30 04:41 - 2014-06-30 04:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\zlqcg.bat 2014-06-30 04:36 - 2014-06-30 04:36 - 00003204 _____ () C:\Windows\System32\Tasks\jehlnce 2014-06-30 04:36 - 2014-06-30 04:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\jehlnce.bat 2014-06-30 04:34 - 2014-06-30 04:34 - 00003204 _____ () C:\Windows\System32\Tasks\aguiubo 2014-06-30 04:34 - 2014-06-30 04:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\aguiubo.bat 2014-06-30 04:32 - 2014-06-30 04:32 - 00003200 _____ () C:\Windows\System32\Tasks\lqntf 2014-06-30 04:32 - 2014-06-30 04:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\lqntf.bat 2014-06-30 04:30 - 2014-06-30 04:30 - 00003200 _____ () C:\Windows\System32\Tasks\dulcs 2014-06-30 04:30 - 2014-06-30 04:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\dulcs.bat 2014-06-30 04:28 - 2014-06-30 04:28 - 00003200 _____ () C:\Windows\System32\Tasks\ljivt 2014-06-30 04:28 - 2014-06-30 04:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\ljivt.bat 2014-06-30 04:26 - 2014-06-30 04:26 - 00003206 _____ () C:\Windows\System32\Tasks\lrweaflq 2014-06-30 04:26 - 2014-06-30 04:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\lrweaflq.bat 2014-06-30 04:24 - 2014-06-30 04:24 - 00003200 _____ () C:\Windows\System32\Tasks\xdmoi 2014-06-30 04:24 - 2014-06-30 04:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\xdmoi.bat 2014-06-30 04:22 - 2014-06-30 04:22 - 00003200 _____ () C:\Windows\System32\Tasks\jdymi 2014-06-30 04:22 - 2014-06-30 04:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\jdymi.bat 2014-06-30 04:20 - 2014-06-30 04:20 - 00003202 _____ () C:\Windows\System32\Tasks\sxdjht 2014-06-30 04:20 - 2014-06-30 04:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\sxdjht.bat 2014-06-30 04:18 - 2014-06-30 04:18 - 00003204 _____ () C:\Windows\System32\Tasks\noohhij 2014-06-30 04:18 - 2014-06-30 04:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\noohhij.bat 2014-06-30 04:14 - 2014-06-30 04:14 - 00003204 _____ () C:\Windows\System32\Tasks\hcdeabo 2014-06-30 04:14 - 2014-06-30 04:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\hcdeabo.bat 2014-06-30 04:12 - 2014-06-30 04:12 - 00003202 _____ () C:\Windows\System32\Tasks\cfdfey 2014-06-30 04:12 - 2014-06-30 04:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\cfdfey.bat 2014-06-30 04:10 - 2014-06-30 04:10 - 00003204 _____ () C:\Windows\System32\Tasks\gwwoohh 2014-06-30 04:10 - 2014-06-30 04:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\gwwoohh.bat 2014-06-30 04:08 - 2014-06-30 04:08 - 00003206 _____ () C:\Windows\System32\Tasks\izuvpicd 2014-06-30 04:08 - 2014-06-30 04:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\izuvpicd.bat 2014-06-30 04:06 - 2014-06-30 04:06 - 00003206 _____ () C:\Windows\System32\Tasks\cfcfnrnj 2014-06-30 04:06 - 2014-06-30 04:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\cfcfnrnj.bat 2014-06-30 04:04 - 2014-06-30 04:04 - 00003200 _____ () C:\Windows\System32\Tasks\ekaix 2014-06-30 04:04 - 2014-06-30 04:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\ekaix.bat 2014-06-30 03:42 - 2014-06-30 03:42 - 00003202 _____ () C:\Windows\System32\Tasks\acxkgi 2014-06-30 03:42 - 2014-06-30 03:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\acxkgi.bat 2014-06-30 03:40 - 2014-06-30 03:40 - 00003206 _____ () C:\Windows\System32\Tasks\eulkcjbf 2014-06-30 03:40 - 2014-06-30 03:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\eulkcjbf.bat 2014-06-30 03:38 - 2014-06-30 03:38 - 00003202 _____ () C:\Windows\System32\Tasks\fwhaxi 2014-06-30 03:38 - 2014-06-30 03:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\fwhaxi.bat 2014-06-30 03:36 - 2014-06-30 03:36 - 00003200 _____ () C:\Windows\System32\Tasks\tyfrx 2014-06-30 03:36 - 2014-06-30 03:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\tyfrx.bat 2014-06-30 03:34 - 2014-06-30 03:34 - 00003202 _____ () C:\Windows\System32\Tasks\ovfemt 2014-06-30 03:34 - 2014-06-30 03:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\ovfemt.bat 2014-06-30 03:32 - 2014-06-30 03:32 - 00003202 _____ () C:\Windows\System32\Tasks\lcbpfk 2014-06-30 03:32 - 2014-06-30 03:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpfk.bat 2014-06-30 03:30 - 2014-06-30 03:30 - 00003204 _____ () C:\Windows\System32\Tasks\ubpckyn 2014-06-30 03:30 - 2014-06-30 03:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\ubpckyn.bat 2014-06-30 03:28 - 2014-06-30 03:28 - 00003202 _____ () C:\Windows\System32\Tasks\qcuecu 2014-06-30 03:28 - 2014-06-30 03:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\qcuecu.bat 2014-06-30 03:26 - 2014-06-30 03:26 - 00003204 _____ () C:\Windows\System32\Tasks\wfoefpa 2014-06-30 03:26 - 2014-06-30 03:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\wfoefpa.bat 2014-06-30 03:24 - 2014-06-30 03:24 - 00003206 _____ () C:\Windows\System32\Tasks\vggvgguf 2014-06-30 03:24 - 2014-06-30 03:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\vggvgguf.bat 2014-06-30 03:22 - 2014-06-30 03:22 - 00003202 _____ () C:\Windows\System32\Tasks\gufetd 2014-06-30 03:22 - 2014-06-30 03:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\gufetd.bat 2014-06-30 03:20 - 2014-06-30 03:20 - 00003202 _____ () C:\Windows\System32\Tasks\ljwusx 2014-06-30 03:20 - 2014-06-30 03:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\ljwusx.bat 2014-06-30 00:13 - 2014-06-30 00:13 - 00003200 _____ () C:\Windows\System32\Tasks\ztyse 2014-06-30 00:13 - 2014-06-30 00:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\ztyse.bat 2014-06-30 00:11 - 2014-06-30 00:11 - 00003200 _____ () C:\Windows\System32\Tasks\bdadk 2014-06-30 00:11 - 2014-06-30 00:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\bdadk.bat 2014-06-30 00:09 - 2014-06-30 00:09 - 00003204 _____ () C:\Windows\System32\Tasks\trwucgl 2014-06-30 00:09 - 2014-06-30 00:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\trwucgl.bat 2014-06-30 00:07 - 2014-06-30 00:07 - 00003206 _____ () C:\Windows\System32\Tasks\tbeerxvb 2014-06-30 00:07 - 2014-06-30 00:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbeerxvb.bat 2014-06-30 00:05 - 2014-06-30 00:05 - 00003200 _____ () C:\Windows\System32\Tasks\ccbfv 2014-06-30 00:05 - 2014-06-30 00:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\ccbfv.bat 2014-06-30 00:03 - 2014-06-30 00:03 - 00003202 _____ () C:\Windows\System32\Tasks\vveett 2014-06-30 00:03 - 2014-06-30 00:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\vveett.bat 2014-06-30 00:01 - 2014-06-30 00:01 - 00003206 _____ () C:\Windows\System32\Tasks\ligdqolj 2014-06-30 00:01 - 2014-06-30 00:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ligdqolj.bat 2014-06-29 23:59 - 2014-06-29 23:59 - 00003204 _____ () C:\Windows\System32\Tasks\vdksahw 2014-06-29 23:59 - 2014-06-29 23:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\vdksahw.bat 2014-06-29 23:57 - 2014-06-29 23:57 - 00003206 _____ () C:\Windows\System32\Tasks\vdsbqhwf 2014-06-29 23:57 - 2014-06-29 23:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\vdsbqhwf.bat 2014-06-29 23:55 - 2014-06-29 23:55 - 00003200 _____ () C:\Windows\System32\Tasks\reiba 2014-06-29 23:55 - 2014-06-29 23:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\reiba.bat 2014-06-29 23:53 - 2014-06-29 23:53 - 00003206 _____ () C:\Windows\System32\Tasks\kwtxbhko 2014-06-29 23:53 - 2014-06-29 23:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\kwtxbhko.bat 2014-06-29 23:51 - 2014-06-29 23:51 - 00003204 _____ () C:\Windows\System32\Tasks\koagcns 2014-06-29 23:51 - 2014-06-29 23:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\koagcns.bat 2014-06-29 23:49 - 2014-06-29 23:49 - 00003206 _____ () C:\Windows\System32\Tasks\vveeettb 2014-06-29 23:49 - 2014-06-29 23:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\vveeettb.bat 2014-06-29 23:47 - 2014-06-29 23:47 - 00003206 _____ () C:\Windows\System32\Tasks\rdpsgibx 2014-06-29 23:47 - 2014-06-29 23:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\rdpsgibx.bat 2014-06-29 23:45 - 2014-06-29 23:45 - 00003204 _____ () C:\Windows\System32\Tasks\quejuej 2014-06-29 23:45 - 2014-06-29 23:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\quejuej.bat 2014-06-29 23:43 - 2014-06-29 23:43 - 00003202 _____ () C:\Windows\System32\Tasks\icdytn 2014-06-29 23:43 - 2014-06-29 23:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\icdytn.bat 2014-06-29 23:41 - 2014-06-29 23:41 - 00003206 _____ () C:\Windows\System32\Tasks\ajcohkcp 2014-06-29 23:41 - 2014-06-29 23:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\ajcohkcp.bat 2014-06-29 23:39 - 2014-06-29 23:39 - 00003206 _____ () C:\Windows\System32\Tasks\gofohwhp 2014-06-29 23:39 - 2014-06-29 23:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\gofohwhp.bat 2014-06-29 23:37 - 2014-06-29 23:37 - 00003206 _____ () C:\Windows\System32\Tasks\dulctdar 2014-06-29 23:37 - 2014-06-29 23:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\dulctdar.bat 2014-06-29 23:35 - 2014-06-29 23:35 - 00003200 _____ () C:\Windows\System32\Tasks\qnifi 2014-06-29 23:35 - 2014-06-29 23:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\qnifi.bat 2014-06-29 21:33 - 2014-06-29 21:33 - 00003200 _____ () C:\Windows\System32\Tasks\daetq 2014-06-29 21:33 - 2014-06-29 21:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\daetq.bat 2014-06-29 21:31 - 2014-06-29 21:31 - 00003206 _____ () C:\Windows\System32\Tasks\akcohzmg 2014-06-29 21:31 - 2014-06-29 21:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\akcohzmg.bat 2014-06-29 21:29 - 2014-06-29 21:29 - 00003202 _____ () C:\Windows\System32\Tasks\nooffg 2014-06-29 21:29 - 2014-06-29 21:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\nooffg.bat 2014-06-29 21:27 - 2014-06-29 21:27 - 00003204 _____ () C:\Windows\System32\Tasks\lqgmrpu 2014-06-29 21:27 - 2014-06-29 21:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\lqgmrpu.bat 2014-06-29 21:25 - 2014-06-29 21:25 - 00003204 _____ () C:\Windows\System32\Tasks\cnaupdx 2014-06-29 21:25 - 2014-06-29 21:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\cnaupdx.bat 2014-06-29 21:23 - 2014-06-29 21:23 - 00003206 _____ () C:\Windows\System32\Tasks\rwimaepu 2014-06-29 21:23 - 2014-06-29 21:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\rwimaepu.bat 2014-06-29 21:21 - 2014-06-29 21:21 - 00003200 _____ () C:\Windows\System32\Tasks\iavic 2014-06-29 21:21 - 2014-06-29 21:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\iavic.bat 2014-06-29 21:19 - 2014-06-29 21:19 - 00003200 _____ () C:\Windows\System32\Tasks\hajdc 2014-06-29 21:19 - 2014-06-29 21:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\hajdc.bat 2014-06-29 21:17 - 2014-06-29 21:17 - 00003206 _____ () C:\Windows\System32\Tasks\jdauqmhd 2014-06-29 21:17 - 2014-06-29 21:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\jdauqmhd.bat 2014-06-29 21:15 - 2014-06-29 21:15 - 00003204 _____ () C:\Windows\System32\Tasks\vdksa 2014-06-29 21:15 - 2014-06-29 21:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\utjiwdc.bat 2014-06-29 21:13 - 2014-06-29 21:13 - 00003204 _____ () C:\Windows\System32\Tasks\hwooghw 2014-06-29 21:13 - 2014-06-29 21:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\hwooghw.bat 2014-06-29 21:11 - 2014-06-29 21:11 - 00003204 _____ () C:\Windows\System32\Tasks\ifauytq 2014-06-29 21:11 - 2014-06-29 21:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\ifauytq.bat 2014-06-29 21:09 - 2014-06-29 21:09 - 00003204 _____ () C:\Windows\System32\Tasks\erawlaq 2014-06-29 21:09 - 2014-06-29 21:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\erawlaq.bat 2014-06-29 21:07 - 2014-06-29 21:07 - 00003200 _____ () C:\Windows\System32\Tasks\lxdiu 2014-06-29 21:07 - 2014-06-29 21:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\lxdiu.bat 2014-06-29 21:05 - 2014-06-29 21:05 - 00003200 _____ () C:\Windows\System32\Tasks\pjddy 2014-06-29 21:05 - 2014-06-29 21:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\pjddy.bat 2014-06-29 21:03 - 2014-06-29 21:03 - 00003206 _____ () C:\Windows\System32\Tasks\fqcdnfrr 2014-06-29 21:03 - 2014-06-29 21:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\fqcdnfrr.bat 2014-06-29 21:01 - 2014-06-29 21:01 - 00003206 _____ () C:\Windows\System32\Tasks\ghpaijjd 2014-06-29 21:01 - 2014-06-29 21:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ghpaijjd.bat 2014-06-29 20:59 - 2014-06-29 20:59 - 00003206 _____ () C:\Windows\System32\Tasks\hbunicup 2014-06-29 20:59 - 2014-06-29 20:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\hbunicup.bat 2014-06-29 20:57 - 2014-06-29 20:57 - 00003204 _____ () C:\Windows\System32\Tasks\aaoibwj 2014-06-29 20:57 - 2014-06-29 20:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\aaoibwj.bat 2014-06-29 20:55 - 2014-06-29 20:55 - 00003204 _____ () C:\Windows\System32\Tasks\aaunbtn 2014-06-29 20:55 - 2014-06-29 20:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\aaunbtn.bat 2014-06-29 20:53 - 2014-06-29 20:53 - 00003206 _____ () C:\Windows\System32\Tasks\mffummlk 2014-06-29 20:53 - 2014-06-29 20:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\mffummlk.bat 2014-06-29 20:51 - 2014-06-29 20:51 - 00003200 _____ () C:\Windows\System32\Tasks\refju 2014-06-29 20:51 - 2014-06-29 20:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\refju.bat 2014-06-29 20:49 - 2014-06-29 20:49 - 00003204 _____ () C:\Windows\System32\Tasks\daechca 2014-06-29 20:49 - 2014-06-29 20:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\daechca.bat 2014-06-29 20:47 - 2014-06-29 20:47 - 00003206 _____ () C:\Windows\System32\Tasks\idxsnplf 2014-06-29 20:47 - 2014-06-29 20:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\idxsnplf.bat 2014-06-29 20:45 - 2014-06-29 20:45 - 00003204 _____ () C:\Windows\System32\Tasks\xrunfjc 2014-06-29 20:45 - 2014-06-29 20:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\xrunfjc.bat 2014-06-29 20:43 - 2014-06-29 20:43 - 00003200 _____ () C:\Windows\System32\Tasks\ubovd 2014-06-29 20:43 - 2014-06-29 20:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\ubovd.bat 2014-06-29 20:41 - 2014-06-29 20:41 - 00003202 _____ () C:\Windows\System32\Tasks\eblbzi 2014-06-29 20:41 - 2014-06-29 20:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\eblbzi.bat 2014-06-29 20:39 - 2014-06-29 20:39 - 00003202 _____ () C:\Windows\System32\Tasks\tbgmtf 2014-06-29 20:39 - 2014-06-29 20:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbgmtf.bat 2014-06-29 20:37 - 2014-06-29 20:37 - 00003206 _____ () C:\Windows\System32\Tasks\rvadoswa 2014-06-29 20:37 - 2014-06-29 20:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\rvadoswa.bat 2014-06-29 20:35 - 2014-06-29 20:35 - 00003206 _____ () C:\Windows\System32\Tasks\numsabiy 2014-06-29 20:35 - 2014-06-29 20:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\numsabiy.bat 2014-06-29 20:33 - 2014-06-29 20:33 - 00003204 _____ () C:\Windows\System32\Tasks\kotimqn 2014-06-29 20:33 - 2014-06-29 20:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\kotimqn.bat 2014-06-29 20:31 - 2014-06-29 20:31 - 00003200 _____ () C:\Windows\System32\Tasks\lkifm 2014-06-29 20:31 - 2014-06-29 20:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\lkifm.bat 2014-06-29 20:29 - 2014-06-29 20:29 - 00003200 _____ () C:\Windows\System32\Tasks\fjdoh 2014-06-29 20:29 - 2014-06-29 20:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\fjdoh.bat 2014-06-29 20:27 - 2014-06-29 20:27 - 00003202 _____ () C:\Windows\System32\Tasks\fkvoal 2014-06-29 20:27 - 2014-06-29 20:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\fkvoal.bat 2014-06-29 20:25 - 2014-06-29 20:25 - 00003206 _____ () C:\Windows\System32\Tasks\fdcaqonm 2014-06-29 20:25 - 2014-06-29 20:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\fdcaqonm.bat 2014-06-29 20:23 - 2014-06-29 20:23 - 00003202 _____ () C:\Windows\System32\Tasks\oqyaks 2014-06-29 20:23 - 2014-06-29 20:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\oqyaks.bat 2014-06-29 20:21 - 2014-06-29 20:21 - 00003204 _____ () C:\Windows\System32\Tasks\kotxmqu 2014-06-29 20:21 - 2014-06-29 20:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\kotxmqu.bat 2014-06-29 20:19 - 2014-06-29 20:19 - 00003204 _____ () C:\Windows\System32\Tasks\iddytni 2014-06-29 20:19 - 2014-06-29 20:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\iddytni.bat 2014-06-29 20:17 - 2014-06-29 20:17 - 00003206 _____ () C:\Windows\System32\Tasks\kfujeuqf 2014-06-29 20:17 - 2014-06-29 20:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\kfujeuqf.bat 2014-06-29 20:15 - 2014-06-29 20:15 - 00003202 _____ () C:\Windows\System32\Tasks\whqaqs 2014-06-29 20:15 - 2014-06-29 20:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\whqaqs.bat 2014-06-29 20:13 - 2014-06-29 20:13 - 00003200 _____ () C:\Windows\System32\Tasks\lcbpv 2014-06-29 20:13 - 2014-06-29 20:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpv.bat 2014-06-29 20:11 - 2014-06-29 20:11 - 00003206 _____ () C:\Windows\System32\Tasks\psuprudi 2014-06-29 20:11 - 2014-06-29 20:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\psuprudi.bat 2014-06-29 20:09 - 2014-06-29 20:09 - 00003206 _____ () C:\Windows\System32\Tasks\numttcsa 2014-06-29 20:09 - 2014-06-29 20:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\numttcsa.bat 2014-06-29 20:07 - 2014-06-29 20:07 - 00003202 _____ () C:\Windows\System32\Tasks\jfjnqm 2014-06-29 20:07 - 2014-06-29 20:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\jfjnqm.bat 2014-06-29 20:05 - 2014-06-29 20:05 - 00003204 _____ () C:\Windows\System32\Tasks\egqajsk 2014-06-29 20:05 - 2014-06-29 20:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\egqajsk.bat 2014-06-29 20:03 - 2014-06-29 20:03 - 00003202 _____ () C:\Windows\System32\Tasks\hztmgy 2014-06-29 20:03 - 2014-06-29 20:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\hztmgy.bat 2014-06-29 20:01 - 2014-06-29 20:01 - 00003200 _____ () C:\Windows\System32\Tasks\isnoa 2014-06-29 20:01 - 2014-06-29 20:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\isnoa.bat 2014-06-29 19:59 - 2014-06-29 19:59 - 00003206 _____ () C:\Windows\System32\Tasks\tbglafes 2014-06-29 19:59 - 2014-06-29 19:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbglafes.bat 2014-06-29 19:57 - 2014-06-29 19:57 - 00003206 _____ () C:\Windows\System32\Tasks\ukbhckaa 2014-06-29 19:57 - 2014-06-29 19:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\ukbhckaa.bat 2014-06-29 19:14 - 2014-06-29 19:14 - 00003206 _____ () C:\Windows\System32\Tasks\thlrdkxu 2014-06-29 19:14 - 2014-06-29 19:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\thlrdkxu.bat 2014-06-29 19:12 - 2014-06-29 19:12 - 00003202 _____ () C:\Windows\System32\Tasks\zuhtgb 2014-06-29 19:12 - 2014-06-29 19:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\zuhtgb.bat 2014-06-29 19:10 - 2014-06-29 19:10 - 00003202 _____ () C:\Windows\System32\Tasks\kbxmda 2014-06-29 19:10 - 2014-06-29 19:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\kbxmda.bat 2014-06-29 19:08 - 2014-06-29 19:08 - 00003200 _____ () C:\Windows\System32\Tasks\edeaa 2014-06-29 19:08 - 2014-06-29 19:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\edeaa.bat 2014-06-29 19:06 - 2014-06-29 19:06 - 00003206 _____ () C:\Windows\System32\Tasks\rvaeitxc 2014-06-29 19:06 - 2014-06-29 19:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\rvaeitxc.bat 2014-06-29 19:04 - 2014-06-29 19:04 - 00003202 _____ () C:\Windows\System32\Tasks\dafdid 2014-06-29 19:04 - 2014-06-29 19:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\dafdid.bat 2014-06-29 19:02 - 2014-06-29 19:02 - 00003200 _____ () C:\Windows\System32\Tasks\auaco 2014-06-29 19:02 - 2014-06-29 19:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\auaco.bat 2014-06-29 19:00 - 2014-06-29 19:00 - 00003206 _____ () C:\Windows\System32\Tasks\ydoalwbt 2014-06-29 19:00 - 2014-06-29 19:00 - 00000269 _____ () C:\Users\hülya\AppData\Local\ydoalwbt.bat 2014-06-29 18:58 - 2014-06-29 18:58 - 00003206 _____ () C:\Windows\System32\Tasks\efqidtef 2014-06-29 18:58 - 2014-06-29 18:58 - 00000269 _____ () C:\Users\hülya\AppData\Local\efqidtef.bat 2014-06-29 18:56 - 2014-06-29 18:56 - 00003206 _____ () C:\Windows\System32\Tasks\piqzluev 2014-06-29 18:56 - 2014-06-29 18:56 - 00000269 _____ () C:\Users\hülya\AppData\Local\piqzluev.bat 2014-06-29 18:54 - 2014-06-29 18:54 - 00003204 _____ () C:\Windows\System32\Tasks\aavaouj 2014-06-29 18:54 - 2014-06-29 18:54 - 00000269 _____ () C:\Users\hülya\AppData\Local\aavaouj.bat 2014-06-29 18:48 - 2014-06-29 18:48 - 00003204 _____ () C:\Windows\System32\Tasks\ahubocp 2014-06-29 18:48 - 2014-06-29 18:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\ahubocp.bat 2014-06-29 18:46 - 2014-06-29 18:46 - 00003206 _____ () C:\Windows\System32\Tasks\jfbdsujm 2014-06-29 18:46 - 2014-06-29 18:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\jfbdsujm.bat 2014-06-29 18:44 - 2014-06-29 18:44 - 00003202 _____ () C:\Windows\System32\Tasks\vmddsj 2014-06-29 18:44 - 2014-06-29 18:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\vmddsj.bat 2014-06-29 18:42 - 2014-06-29 18:42 - 00003200 _____ () C:\Windows\System32\Tasks\giqss 2014-06-29 18:42 - 2014-06-29 18:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\giqss.bat 2014-06-29 18:40 - 2014-06-29 18:40 - 00003206 _____ () C:\Windows\System32\Tasks\thbbobwc 2014-06-29 18:40 - 2014-06-29 18:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\thbbobwc.bat 2014-06-29 18:38 - 2014-06-29 18:38 - 00003206 _____ () C:\Windows\System32\Tasks\ruxjmqcg 2014-06-29 18:38 - 2014-06-29 18:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\ruxjmqcg.bat 2014-06-29 18:36 - 2014-06-29 18:36 - 00003204 _____ () C:\Windows\System32\Tasks\ahubvcq 2014-06-29 18:36 - 2014-06-29 18:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\ahubvcq.bat 2014-06-29 18:34 - 2014-06-29 18:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\gfiaa.bat 2014-06-29 18:33 - 2014-06-29 18:33 - 00003200 _____ () C:\Windows\System32\Tasks\gfiaa 2014-06-29 18:31 - 2014-06-29 18:31 - 00003206 _____ () C:\Windows\System32\Tasks\qlgqlgjm 2014-06-29 18:31 - 2014-06-29 18:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\qlgqlgjm.bat 2014-06-29 18:29 - 2014-06-29 18:29 - 00003202 _____ () C:\Windows\System32\Tasks\oqysbd 2014-06-29 18:29 - 2014-06-29 18:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\oqysbd.bat 2014-06-29 18:27 - 2014-06-29 18:27 - 00003202 _____ () C:\Windows\System32\Tasks\ykvbmx 2014-06-29 18:27 - 2014-06-29 18:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\ykvbmx.bat 2014-06-29 18:25 - 2014-06-29 18:25 - 00003206 _____ () C:\Windows\System32\Tasks\aocpcqer 2014-06-29 18:25 - 2014-06-29 18:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\aocpcqer.bat 2014-06-29 18:23 - 2014-06-29 18:23 - 00003200 _____ () C:\Windows\System32\Tasks\fepha 2014-06-29 18:23 - 2014-06-29 18:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\fepha.bat 2014-06-29 18:21 - 2014-06-29 18:21 - 00003204 _____ () C:\Windows\System32\Tasks\acceyau 2014-06-29 18:21 - 2014-06-29 18:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\acceyau.bat 2014-06-29 18:19 - 2014-06-29 18:19 - 00003202 _____ () C:\Windows\System32\Tasks\tymrgl 2014-06-29 18:19 - 2014-06-29 18:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\tymrgl.bat 2014-06-29 18:17 - 2014-06-29 18:17 - 00003202 _____ () C:\Windows\System32\Tasks\cxuqfu 2014-06-29 18:17 - 2014-06-29 18:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\cxuqfu.bat 2014-06-29 18:15 - 2014-06-29 18:15 - 00003200 _____ () C:\Windows\System32\Tasks\gxqja 2014-06-29 18:15 - 2014-06-29 18:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\gxqja.bat 2014-06-29 18:13 - 2014-06-29 18:13 - 00003202 _____ () C:\Windows\System32\Tasks\xiscnx 2014-06-29 18:13 - 2014-06-29 18:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\xiscnx.bat 2014-06-29 18:11 - 2014-06-29 18:11 - 00003204 _____ () C:\Windows\System32\Tasks\gffffee 2014-06-29 18:11 - 2014-06-29 18:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\gffffee.bat 2014-06-29 18:09 - 2014-06-29 18:09 - 00003200 _____ () C:\Windows\System32\Tasks\ccafn 2014-06-29 18:09 - 2014-06-29 18:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\ccafn.bat 2014-06-29 18:07 - 2014-06-29 18:07 - 00003200 _____ () C:\Windows\System32\Tasks\jvrui 2014-06-29 18:07 - 2014-06-29 18:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\jvrui.bat 2014-06-29 18:05 - 2014-06-29 18:05 - 00003204 _____ () C:\Windows\System32\Tasks\qdfrefk 2014-06-29 18:05 - 2014-06-29 18:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\qdfrefk.bat 2014-06-29 18:03 - 2014-06-29 18:03 - 00003204 _____ () C:\Windows\System32\Tasks\eewxpph 2014-06-29 18:03 - 2014-06-29 18:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\eewxpph.bat 2014-06-29 18:01 - 2014-06-29 18:01 - 00003200 _____ () C:\Windows\System32\Tasks\icwxl 2014-06-29 18:01 - 2014-06-29 18:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\icwxl.bat 2014-06-29 17:59 - 2014-06-29 17:59 - 00003200 _____ () C:\Windows\System32\Tasks\wnfne 2014-06-29 17:59 - 2014-06-29 17:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\wnfne.bat 2014-06-29 17:57 - 2014-06-29 17:57 - 00003202 _____ () C:\Windows\System32\Tasks\xizdef 2014-06-29 17:57 - 2014-06-29 17:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\xizdef.bat 2014-06-29 17:55 - 2014-06-29 17:55 - 00003206 _____ () C:\Windows\System32\Tasks\quxbfilv 2014-06-29 17:55 - 2014-06-29 17:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\quxbfilv.bat 2014-06-29 17:53 - 2014-06-29 17:53 - 00003202 _____ () C:\Windows\System32\Tasks\zfsdqf 2014-06-29 17:53 - 2014-06-29 17:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\zfsdqf.bat 2014-06-29 17:52 - 2014-07-15 04:35 - 00000320 _____ () C:\Users\hülya\AppData\Roaming\aps.uninstall.scan.results 2014-06-29 17:52 - 2014-07-02 20:08 - 00000378 _____ () C:\Windows\Tasks\APSnotifierPP1.job 2014-06-29 17:52 - 2014-06-29 17:52 - 00623696 _____ (Click Me In Limited) C:\Users\hülya\AppData\Local\nsu16A4.tmp 2014-06-29 17:51 - 2014-06-29 17:51 - 00003206 _____ () C:\Windows\System32\Tasks\kpmrotfu 2014-06-29 17:51 - 2014-06-29 17:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\kpmrotfu.bat 2014-06-29 17:49 - 2014-06-29 17:49 - 00003204 _____ () C:\Windows\System32\Tasks\khepmjn 2014-06-29 17:49 - 2014-06-29 17:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\khepmjn.bat 2014-06-29 17:47 - 2014-06-29 17:47 - 00003204 _____ () C:\Windows\System32\Tasks\beyuxlg 2014-06-29 17:47 - 2014-06-29 17:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\beyuxlg.bat 2014-06-29 17:45 - 2014-06-29 17:45 - 00003200 _____ () C:\Windows\System32\Tasks\eddzr 2014-06-29 17:45 - 2014-06-29 17:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\eddzr.bat 2014-06-29 17:43 - 2014-06-29 17:43 - 00003204 _____ () C:\Windows\System32\Tasks\cpdlguc 2014-06-29 17:43 - 2014-06-29 17:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\cpdlguc.bat 2014-06-29 17:41 - 2014-06-29 17:41 - 00003206 _____ () C:\Windows\System32\Tasks\gaiccbvd 2014-06-29 17:41 - 2014-06-29 17:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\gaiccbvd.bat 2014-06-29 17:39 - 2014-06-29 17:39 - 00003202 _____ () C:\Windows\System32\Tasks\iauhbv 2014-06-29 17:39 - 2014-06-29 17:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\iauhbv.bat 2014-06-29 17:37 - 2014-06-29 17:37 - 00003206 _____ () C:\Windows\System32\Tasks\eudbraxo 2014-06-29 17:37 - 2014-06-29 17:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\eudbraxo.bat 2014-06-29 17:35 - 2014-06-29 17:35 - 00003206 _____ () C:\Windows\System32\Tasks\pxrbjdlu 2014-06-29 17:35 - 2014-06-29 17:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\pxrbjdlu.bat 2014-06-29 17:33 - 2014-06-29 17:33 - 00003200 _____ () C:\Windows\System32\Tasks\ilvab 2014-06-29 17:33 - 2014-06-29 17:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\ilvab.bat 2014-06-29 17:31 - 2014-06-29 17:31 - 00003204 _____ () C:\Windows\System32\Tasks\vwgfvve 2014-06-29 17:31 - 2014-06-29 17:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\vwgfvve.bat 2014-06-29 17:28 - 2014-06-29 17:28 - 00003204 _____ () C:\Windows\System32\Tasks\reibflg 2014-06-29 17:28 - 2014-06-29 17:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\reibflg.bat 2014-06-29 17:26 - 2014-06-29 17:26 - 00003202 _____ () C:\Windows\System32\Tasks\kgjoch 2014-06-29 17:26 - 2014-06-29 17:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\kgjoch.bat 2014-06-29 17:24 - 2014-06-29 17:24 - 00003202 _____ () C:\Windows\System32\Tasks\dngoeo 2014-06-29 17:24 - 2014-06-29 17:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\dngoeo.bat 2014-06-29 17:22 - 2014-06-29 17:22 - 00003204 _____ () C:\Windows\System32\Tasks\gohgohh 2014-06-29 17:22 - 2014-06-29 17:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\gohgohh.bat 2014-06-29 17:20 - 2014-06-29 17:20 - 00003206 _____ () C:\Windows\System32\Tasks\lbffbzeu 2014-06-29 17:20 - 2014-06-29 17:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\lbffbzeu.bat 2014-06-29 17:18 - 2014-06-29 17:18 - 00003204 _____ () C:\Windows\System32\Tasks\dafwmja 2014-06-29 17:18 - 2014-06-29 17:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\dafwmja.bat 2014-06-29 17:16 - 2014-06-29 17:16 - 00003204 _____ () C:\Windows\System32\Tasks\sfzekgc 2014-06-29 17:16 - 2014-06-29 17:16 - 00000269 _____ () C:\Users\hülya\AppData\Local\sfzekgc.bat 2014-06-29 17:14 - 2014-06-29 17:14 - 00003204 _____ () C:\Windows\System32\Tasks\trxvdah 2014-06-29 17:14 - 2014-06-29 17:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\trxvdah.bat 2014-06-29 17:12 - 2014-06-29 17:12 - 00003200 _____ () C:\Windows\System32\Tasks\cokxm 2014-06-29 17:12 - 2014-06-29 17:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\cokxm.bat 2014-06-29 17:10 - 2014-06-29 17:10 - 00003204 _____ () C:\Windows\System32\Tasks\ajuhbdv 2014-06-29 17:10 - 2014-06-29 17:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\ajuhbdv.bat 2014-06-29 17:08 - 2014-06-29 17:08 - 00003202 _____ () C:\Windows\System32\Tasks\xaqscn 2014-06-29 17:08 - 2014-06-29 17:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\xaqscn.bat 2014-06-29 17:06 - 2014-06-29 17:06 - 00003206 _____ () C:\Windows\System32\Tasks\icreymhc 2014-06-29 17:06 - 2014-06-29 17:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\icreymhc.bat 2014-06-29 17:04 - 2014-06-29 17:04 - 00003202 _____ () C:\Windows\System32\Tasks\rxbycq 2014-06-29 17:04 - 2014-06-29 17:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\rxbycq.bat 2014-06-29 17:02 - 2014-06-29 17:02 - 00003204 _____ () C:\Windows\System32\Tasks\kifbcee 2014-06-29 17:02 - 2014-06-29 17:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\kifbcee.bat 2014-06-29 17:00 - 2014-06-29 17:00 - 00003200 _____ () C:\Windows\System32\Tasks\wgwgw 2014-06-29 17:00 - 2014-06-29 17:00 - 00000269 _____ () C:\Users\hülya\AppData\Local\wgwgw.bat 2014-06-29 16:58 - 2014-06-29 16:58 - 00003200 _____ () C:\Windows\System32\Tasks\nghxp 2014-06-29 16:58 - 2014-06-29 16:58 - 00000269 _____ () C:\Users\hülya\AppData\Local\nghxp.bat 2014-06-29 16:56 - 2014-06-29 16:56 - 00003200 _____ () C:\Windows\System32\Tasks\xdmos 2014-06-29 16:56 - 2014-06-29 16:56 - 00000269 _____ () C:\Users\hülya\AppData\Local\xdmos.bat 2014-06-29 16:54 - 2014-06-29 16:54 - 00003200 _____ () C:\Windows\System32\Tasks\vlmck 2014-06-29 16:54 - 2014-06-29 16:54 - 00000269 _____ () C:\Users\hülya\AppData\Local\vlmck.bat 2014-06-29 16:52 - 2014-06-29 16:52 - 00003202 _____ () C:\Windows\System32\Tasks\rdwbfa 2014-06-29 16:52 - 2014-06-29 16:52 - 00000269 _____ () C:\Users\hülya\AppData\Local\rdwbfa.bat 2014-06-29 16:50 - 2014-07-02 20:04 - 00001090 _____ () C:\Users\hülya\Desktop\Continue VuuPC Installation.lnk 2014-06-29 16:50 - 2014-06-29 16:50 - 00003204 _____ () C:\Windows\System32\Tasks\bocpdwd 2014-06-29 16:50 - 2014-06-29 16:50 - 00000269 _____ () C:\Users\hülya\AppData\Local\bocpdwd.bat 2014-06-29 16:48 - 2014-06-29 16:48 - 00003204 _____ () C:\Windows\System32\Tasks\prsudyb 2014-06-29 16:48 - 2014-06-29 16:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\prsudyb.bat 2014-06-29 16:46 - 2014-06-29 16:46 - 00003206 _____ () C:\Windows\System32\Tasks\hysdwpba 2014-06-29 16:46 - 2014-06-29 16:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\hysdwpba.bat 2014-06-29 16:44 - 2014-06-29 16:44 - 00003200 _____ () C:\Windows\System32\Tasks\aocpc 2014-06-29 16:44 - 2014-06-29 16:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\aocpc.bat 2014-06-29 16:42 - 2014-06-29 16:42 - 00003206 _____ () C:\Windows\System32\Tasks\bkdpjboa 2014-06-29 16:42 - 2014-06-29 16:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\bkdpjboa.bat 2014-06-29 16:40 - 2014-06-29 16:40 - 00003202 _____ () C:\Windows\System32\Tasks\gphqpz 2014-06-29 16:40 - 2014-06-29 16:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\gphqpz.bat 2014-06-29 16:38 - 2014-06-29 16:38 - 00003204 _____ () C:\Windows\System32\Tasks\rwbfruh 2014-06-29 16:38 - 2014-06-29 16:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\rwbfruh.bat 2014-06-29 16:37 - 2014-06-29 16:37 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\Uniblue 2014-06-29 16:36 - 2014-07-02 22:43 - 00000000 ____D () C:\Program Files (x86)\globalUpdate 2014-06-29 16:36 - 2014-07-02 20:09 - 00000000 ____D () C:\Users\hülya\AppData\Local\service_06291436 2014-06-29 16:36 - 2014-07-02 20:00 - 00000000 ____D () C:\Program Files (x86)\Fraven 1.1 2014-06-29 16:36 - 2014-06-29 16:36 - 00003202 _____ () C:\Windows\System32\Tasks\prtvey 2014-06-29 16:36 - 2014-06-29 16:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\prtvey.bat 2014-06-29 16:36 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\AppData\Local\globalUpdate 2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9ED2tmp 2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9E82tmp 2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9E62tmp 2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9E22tmp 2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9E02tmp 2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9DE2tmp 2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9DC2tmp 2014-06-29 16:35 - 2014-06-29 16:35 - 01258344 _____ () C:\Users\hülya\Downloads\Setup (3).exe 2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9EB2tmp 2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\55A4tmp 2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 _____ () C:\END 2014-06-27 01:13 - 2014-06-27 01:13 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\DivX 2014-06-27 01:13 - 2014-06-27 01:13 - 00000000 ____D () C:\Program Files\DivX 2014-06-27 01:12 - 2014-07-02 20:10 - 00000000 ____D () C:\Program Files (x86)\DivX 2014-06-27 01:11 - 2014-07-02 20:10 - 00000000 ____D () C:\ProgramData\DivX 2014-06-27 01:11 - 2014-06-27 01:11 - 00999232 _____ (DivX, LLC) C:\Users\hülya\Downloads\DivXInstaller.exe 2014-06-27 01:06 - 2014-06-27 01:06 - 00608808 _____ () C:\Users\hülya\Downloads\MediaPlayerClassicInstaller.exe 2014-06-25 23:18 - 2014-06-25 23:18 - 00000000 ____D () C:\Users\hülya\AppData\Local\AskPartnerNetwork |
24.07.2014, 20:01 | #6 |
| bat=exe konnte nicht gefunden werden.Code:
ATTFilter ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-07-24 20:50 - 2014-07-24 20:50 - 00036071 _____ () C:\Users\hülya\Desktop\FRST.txt 2014-07-24 20:50 - 2014-07-24 20:49 - 00000000 ____D () C:\FRST 2014-07-24 20:50 - 2014-07-05 00:35 - 00000000 ____D () C:\ProgramData\SafetyNut 2014-07-24 20:35 - 2014-05-10 23:30 - 00001120 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-07-24 20:33 - 2013-07-03 18:21 - 00000000 ____D () C:\ProgramData\Kaspersky Lab 2014-07-24 20:32 - 2013-07-03 18:41 - 01147210 _____ () C:\Windows\WindowsUpdate.log 2014-07-24 20:31 - 2013-04-07 03:33 - 00354304 ___SH () C:\Users\hülya\Desktop\Thumbs.db 2014-07-24 20:30 - 2014-07-24 20:30 - 02093568 _____ (Farbar) C:\Users\hülya\Desktop\FRST64.exe 2014-07-24 20:30 - 2014-07-24 20:30 - 02093568 _____ (Farbar) C:\Users\hülya\Desktop\FRST64 (1).exe 2014-07-24 20:18 - 2014-07-02 20:06 - 00000938 _____ () C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineCore.job 2014-07-24 20:18 - 2014-05-10 23:30 - 00001116 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-07-24 20:17 - 2012-07-26 09:22 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-07-24 20:13 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-07-24 20:13 - 2012-07-26 09:52 - 00000000 ____D () C:\Program Files\Windows Journal 2014-07-24 20:11 - 2014-07-13 01:43 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535_ 2014-07-24 20:11 - 2014-07-13 01:43 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535 2014-07-24 20:11 - 2014-07-13 01:43 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51_ 2014-07-24 20:11 - 2014-07-13 01:42 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51 2014-07-24 20:11 - 2014-07-12 03:28 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-07-24 20:11 - 2014-07-02 20:06 - 00000942 _____ () C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineUA.job 2014-07-24 20:11 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SaveSense 2014-07-24 20:11 - 2013-03-26 22:31 - 00000000 ____D () C:\Users\hülya\AppData\Local\Hewlett-Packard 2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\WinStore 2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\system32\sru 2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\system32\Macromed 2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\rescache 2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\registration 2014-07-24 20:11 - 2012-07-26 09:52 - 00000000 ____D () C:\Windows\ShellNew 2014-07-24 20:11 - 2012-07-26 07:38 - 00000000 ____D () C:\Windows\system32\Sysprep 2014-07-24 20:06 - 2014-07-02 20:06 - 00000306 _____ () C:\Windows\Tasks\Rocket Updater.job 2014-07-24 19:32 - 2012-08-25 05:20 - 00831158 _____ () C:\Windows\system32\perfh007.dat 2014-07-24 19:32 - 2012-08-25 05:20 - 00188760 _____ () C:\Windows\system32\perfc007.dat 2014-07-24 19:32 - 2012-07-26 09:28 - 01952918 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-07-24 16:57 - 2014-07-24 16:57 - 00000000 ____D () C:\Users\hülya\AppData\Local\{4706BF3E-9D06-476C-8975-11B6F64F1ED5} 2014-07-24 04:51 - 2014-04-13 00:12 - 00001067 _____ () C:\Users\hülya\Desktop\Neues Textdokument (2).txt 2014-07-24 03:44 - 2012-07-26 07:26 - 01048576 ___SH () C:\Windows\system32\config\BBI 2014-07-24 03:39 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\system32\NDF 2014-07-23 14:25 - 2014-03-18 20:19 - 00000000 ____D () C:\Users\hülya\Desktop\HANDY BURAK CAN 2014-07-23 04:24 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\AUInstallAgent 2014-07-20 22:19 - 2014-06-18 23:27 - 00378291 _____ () C:\Users\hülya\Desktop\Ergo Vorbeereiten.odt 2014-07-20 22:19 - 2014-05-11 22:00 - 00020575 _____ () C:\Users\hülya\Desktop\OpenDocument Text (neu) (3).odt 2014-07-20 02:38 - 2014-07-20 02:38 - 00000000 ____D () C:\Users\hülya\AppData\Local\{A90487C2-BC22-4173-A0A9-24300613D4BB} 2014-07-19 00:07 - 2014-07-05 01:06 - 00000095 _____ () C:\Users\hülya\AppData\Roaming\WB.CFG 2014-07-17 23:52 - 2014-07-17 23:52 - 01385120 _____ () C:\Users\hülya\Downloads\Setup (6).exe 2014-07-17 21:58 - 2014-01-30 23:43 - 00000344 _____ () C:\Windows\Tasks\HPCeeScheduleForhülya.job 2014-07-17 21:58 - 2013-03-26 22:27 - 00000000 ____D () C:\Users\hülya 2014-07-17 21:57 - 2013-03-29 15:49 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log 2014-07-17 21:57 - 2013-03-29 15:48 - 00000000 _____ () C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt 2014-07-15 23:15 - 2014-07-02 20:29 - 00000000 ____D () C:\ProgramData\LuckyCouPoon 2014-07-15 04:38 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\Systweak 2014-07-15 04:36 - 2014-07-15 04:36 - 00000000 ____D () C:\Program Files (x86)\LuckyCouPoon 2014-07-15 04:36 - 2014-03-22 13:57 - 00000000 ____D () C:\ProgramData\eb1cc2bcef9cee8c 2014-07-15 04:35 - 2014-07-12 13:14 - 00000376 _____ () C:\Windows\Tasks\APSnotifierPP3.job 2014-07-15 04:35 - 2014-07-12 13:14 - 00000376 _____ () C:\Windows\Tasks\APSnotifierPP2.job 2014-07-15 04:35 - 2014-06-29 17:52 - 00000320 _____ () C:\Users\hülya\AppData\Roaming\aps.uninstall.scan.results 2014-07-15 04:06 - 2014-07-02 20:06 - 00000306 _____ () C:\Windows\Tasks\SaveSense.job 2014-07-15 04:04 - 2014-07-02 20:07 - 00003120 _____ () C:\Windows\System32\Tasks\Advanced System Protector_startup 2014-07-14 15:41 - 2014-05-26 01:16 - 00002221 _____ () C:\Users\hülya\Desktop\Neues Textdokument (4).txt 2014-07-13 13:00 - 2014-07-13 13:00 - 00000000 ____D () C:\Users\hülya\AppData\Local\{AFB4CE14-1EF5-4B90-8CAB-588D81E38B33} 2014-07-13 01:44 - 2014-07-13 01:44 - 00000000 ____D () C:\Users\hülya\ChromeExtensions 2014-07-13 01:43 - 2014-07-13 01:42 - 00000186 _____ () C:\Users\hülya\Desktop\Amazon.de.url 2014-07-13 01:42 - 2014-07-13 01:42 - 01063312 _____ () C:\Users\hülya\Downloads\Adblock-Plus-fr-Chrome-lnstall.exe 2014-07-13 01:42 - 2014-07-13 01:42 - 00000000 ____D () C:\Users\hülya\Downloads\Adblock-Plus-für-Chrome 2014-07-12 19:30 - 2014-07-12 19:29 - 00000000 ____D () C:\Users\hülya\AppData\Local\{FD644658-6736-4DC7-AEFD-0D251801A962} 2014-07-12 13:41 - 2014-07-12 13:41 - 00323048 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-07-12 13:39 - 2014-07-12 13:39 - 00000000 ____D () C:\Users\hülya\AppData\Local\{AB6D36F8-A176-45FF-83CE-3AE16BC873F0} 2014-07-12 03:30 - 2013-07-03 18:13 - 00514254 _____ () C:\Windows\PFRO.log 2014-07-12 03:30 - 2013-04-30 15:00 - 00000000 ____D () C:\Program Files (x86)\ChatZum Toolbar 2014-07-11 21:49 - 2013-07-21 20:01 - 00033456 _____ () C:\Windows\setupact.log 2014-07-11 03:27 - 2013-07-24 07:05 - 00000000 ____D () C:\Windows\system32\MRT 2014-07-11 03:27 - 2012-07-26 09:59 - 00000000 ____D () C:\Windows\CbsTemp 2014-07-11 03:26 - 2013-03-29 16:03 - 96441528 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-07-11 03:26 - 2012-07-26 07:26 - 00262144 ___SH () C:\Windows\system32\config\ELAM 2014-07-10 02:49 - 2014-07-10 02:49 - 00000102 ____H () C:\Users\hülya\Downloads\.~lock.ups bewerbung.doc# 2014-07-10 02:38 - 2014-07-10 02:38 - 00000102 ____H () C:\Users\hülya\Desktop\.~lock.Feser Graf Gruppe Bewerbung.odt# 2014-07-09 03:28 - 2014-07-12 18:26 - 00378337 _____ () C:\Users\hülya\Documents\Ergo%20Vorbeereiten.odt_0.odt 2014-07-07 12:47 - 2014-07-07 12:47 - 00000000 ____D () C:\Users\hülya\AppData\Local\{A85C6324-D7B6-49FD-82B2-D8EC8199F583} 2014-07-04 17:59 - 2013-03-26 22:38 - 00003600 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3460895242-2686779407-2708491527-1002 2014-07-02 22:43 - 2014-06-29 16:36 - 00000000 ____D () C:\Program Files (x86)\globalUpdate 2014-07-02 20:10 - 2014-06-27 01:12 - 00000000 ____D () C:\Program Files (x86)\DivX 2014-07-02 20:10 - 2014-06-27 01:11 - 00000000 ____D () C:\ProgramData\DivX 2014-07-02 20:09 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\AppData\Local\service_06291436 2014-07-02 20:08 - 2014-06-29 17:52 - 00000378 _____ () C:\Windows\Tasks\APSnotifierPP1.job 2014-07-02 20:06 - 2014-07-02 20:06 - 00003914 _____ () C:\Windows\System32\Tasks\SaveSenseLiveUpdateTaskMachineUA 2014-07-02 20:06 - 2014-07-02 20:06 - 00003678 _____ () C:\Windows\System32\Tasks\SaveSenseLiveUpdateTaskMachineCore 2014-07-02 20:06 - 2014-07-02 20:06 - 00002644 _____ () C:\Windows\System32\Tasks\SaveSense 2014-07-02 20:06 - 2014-07-02 20:06 - 00002644 _____ () C:\Windows\System32\Tasks\Rocket Updater 2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\SaveSense 2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\RocketUpdater 2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Local\SaveSenseLive 2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Local\SaveSense 2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\ProgramData\SaveSenseLive 2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Program Files (x86)\SaveSenseLive 2014-07-02 20:06 - 2014-06-18 19:36 - 00002239 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-07-02 20:04 - 2014-06-29 16:50 - 00001090 _____ () C:\Users\hülya\Desktop\Continue VuuPC Installation.lnk 2014-07-02 20:01 - 2014-07-02 20:01 - 00000000 ____D () C:\Program Files (x86)\predm 2014-07-02 20:00 - 2014-06-29 16:36 - 00000000 ____D () C:\Program Files (x86)\Fraven 1.1 2014-07-02 19:59 - 2012-08-24 19:52 - 00000000 ____D () C:\ProgramData\CyberLink 2014-07-02 19:59 - 2012-08-24 19:51 - 00000000 ____D () C:\Program Files (x86)\CyberLink 2014-07-02 19:59 - 2012-08-24 19:49 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-07-02 19:50 - 2014-07-02 19:50 - 01258080 _____ () C:\Users\hülya\Downloads\Setup (5).exe 2014-07-02 16:42 - 2014-07-02 20:06 - 00608261 _____ (Click Me In Limited) C:\Users\hülya\AppData\Local\AnyProtectScannerSetup.exe 2014-07-01 22:24 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-07-01 22:24 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-07-01 22:24 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Windows Defender 2014-07-01 22:24 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-07-01 22:19 - 2014-07-01 22:19 - 00003204 _____ () C:\Windows\System32\Tasks\jgjnrnq 2014-07-01 22:19 - 2014-07-01 22:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\jgjnrnq.bat 2014-07-01 22:17 - 2014-07-01 22:17 - 00003206 _____ () C:\Windows\System32\Tasks\eqfcxnbw 2014-07-01 22:17 - 2014-07-01 22:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\eqfcxnbw.bat 2014-07-01 22:15 - 2014-07-01 22:15 - 00003204 _____ () C:\Windows\System32\Tasks\whpxpqi 2014-07-01 22:15 - 2014-07-01 22:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\whpxpqi.bat 2014-07-01 22:13 - 2014-07-01 22:13 - 00003200 _____ () C:\Windows\System32\Tasks\lcbpg 2014-07-01 22:13 - 2014-07-01 22:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpg.bat 2014-07-01 22:11 - 2014-07-01 22:11 - 00003206 _____ () C:\Windows\System32\Tasks\kheaxbbv 2014-07-01 22:11 - 2014-07-01 22:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\kheaxbbv.bat 2014-07-01 22:09 - 2014-07-01 22:09 - 00003206 _____ () C:\Windows\System32\Tasks\xgxiyqsd 2014-07-01 22:09 - 2014-07-01 22:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\xgxiyqsd.bat 2014-07-01 22:07 - 2014-07-01 22:07 - 00003204 _____ () C:\Windows\System32\Tasks\abpicxr 2014-07-01 22:07 - 2014-07-01 22:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\abpicxr.bat 2014-07-01 22:05 - 2014-07-01 22:05 - 00003204 _____ () C:\Windows\System32\Tasks\dynshwc 2014-07-01 22:05 - 2014-07-01 22:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\dynshwc.bat 2014-07-01 22:02 - 2014-07-01 22:02 - 00003206 _____ () C:\Windows\System32\Tasks\wgwfihhq 2014-07-01 22:02 - 2014-07-01 22:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\wgwfihhq.bat 2014-07-01 00:42 - 2014-07-09 10:52 - 00702464 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-07-01 00:42 - 2014-07-09 10:52 - 00394240 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2014-07-01 00:42 - 2014-07-09 10:52 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2014-06-30 05:48 - 2014-06-30 05:48 - 00003206 _____ () C:\Windows\System32\Tasks\ulccqgwd 2014-06-30 05:48 - 2014-06-30 05:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\ulccqgwd.bat 2014-06-30 05:46 - 2014-06-30 05:46 - 00003204 _____ () C:\Windows\System32\Tasks\fvngogw 2014-06-30 05:46 - 2014-06-30 05:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\fvngogw.bat 2014-06-30 05:44 - 2014-06-30 05:44 - 00003200 _____ () C:\Windows\System32\Tasks\nfnnu 2014-06-30 05:44 - 2014-06-30 05:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\nfnnu.bat 2014-06-30 05:42 - 2014-06-30 05:42 - 00003200 _____ () C:\Windows\System32\Tasks\ebfol 2014-06-30 05:42 - 2014-06-30 05:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\ebfol.bat 2014-06-30 05:40 - 2014-06-30 05:40 - 00003204 _____ () C:\Windows\System32\Tasks\aiwkxfb 2014-06-30 05:40 - 2014-06-30 05:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\aiwkxfb.bat 2014-06-30 05:38 - 2014-06-30 05:38 - 00003206 _____ () C:\Windows\System32\Tasks\cwtodhbp 2014-06-30 05:38 - 2014-06-30 05:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\cwtodhbp.bat 2014-06-30 05:36 - 2014-06-30 05:36 - 00003202 _____ () C:\Windows\System32\Tasks\fgnngg 2014-06-30 05:36 - 2014-06-30 05:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\fgnngg.bat 2014-06-30 05:34 - 2014-06-30 05:34 - 00003200 _____ () C:\Windows\System32\Tasks\awkfl 2014-06-30 05:34 - 2014-06-30 05:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\awkfl.bat 2014-06-30 05:32 - 2014-06-30 05:32 - 00003202 _____ () C:\Windows\System32\Tasks\yldjcn 2014-06-30 05:32 - 2014-06-30 05:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\yldjcn.bat 2014-06-30 05:30 - 2014-06-30 05:30 - 00003206 _____ () C:\Windows\System32\Tasks\ekhnlrhf 2014-06-30 05:30 - 2014-06-30 05:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\ekhnlrhf.bat 2014-06-30 05:28 - 2014-06-30 05:28 - 00003206 _____ () C:\Windows\System32\Tasks\qmgcmikg 2014-06-30 05:28 - 2014-06-30 05:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\qmgcmikg.bat 2014-06-30 05:26 - 2014-06-30 05:26 - 00003204 _____ () C:\Windows\System32\Tasks\mcbxwcs 2014-06-30 05:26 - 2014-06-30 05:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\mcbxwcs.bat 2014-06-30 05:24 - 2014-06-30 05:24 - 00003206 _____ () C:\Windows\System32\Tasks\oopqhiaa 2014-06-30 05:24 - 2014-06-30 05:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\oopqhiaa.bat 2014-06-30 05:22 - 2014-06-30 05:22 - 00003204 _____ () C:\Windows\System32\Tasks\ijlmopq 2014-06-30 05:22 - 2014-06-30 05:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\ijlmopq.bat 2014-06-30 05:20 - 2014-06-30 05:20 - 00003206 _____ () C:\Windows\System32\Tasks\kfdavzwl 2014-06-30 05:20 - 2014-06-30 05:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\kfdavzwl.bat 2014-06-30 05:18 - 2014-06-30 05:18 - 00003200 _____ () C:\Windows\System32\Tasks\spuhd 2014-06-30 05:18 - 2014-06-30 05:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\spuhd.bat 2014-06-30 05:16 - 2014-06-30 05:16 - 00003202 _____ () C:\Windows\System32\Tasks\bxthdr 2014-06-30 05:16 - 2014-06-30 05:16 - 00000269 _____ () C:\Users\hülya\AppData\Local\bxthdr.bat 2014-06-30 05:14 - 2014-06-30 05:14 - 00003204 _____ () C:\Windows\System32\Tasks\fxacscu 2014-06-30 05:14 - 2014-06-30 05:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\fxacscu.bat 2014-06-30 05:12 - 2014-06-30 05:12 - 00003202 _____ () C:\Windows\System32\Tasks\beiuye 2014-06-30 05:12 - 2014-06-30 05:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\beiuye.bat 2014-06-30 05:10 - 2014-06-30 05:10 - 00003202 _____ () C:\Windows\System32\Tasks\lbgcbx 2014-06-30 05:10 - 2014-06-30 05:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\lbgcbx.bat 2014-06-30 05:08 - 2014-06-30 05:08 - 00003200 _____ () C:\Windows\System32\Tasks\erawe 2014-06-30 05:08 - 2014-06-30 05:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\erawe.bat 2014-06-30 05:06 - 2014-06-30 05:06 - 00003200 _____ () C:\Windows\System32\Tasks\caebg 2014-06-30 05:06 - 2014-06-30 05:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\caebg.bat 2014-06-30 05:04 - 2014-06-30 05:04 - 00003206 _____ () C:\Windows\System32\Tasks\hqqbbcll 2014-06-30 05:04 - 2014-06-30 05:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\hqqbbcll.bat 2014-06-30 05:01 - 2014-06-30 05:01 - 00003204 _____ () C:\Windows\System32\Tasks\ruxcmqt 2014-06-30 05:01 - 2014-06-30 05:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ruxcmqt.bat 2014-06-30 04:59 - 2014-06-30 04:59 - 00003206 _____ () C:\Windows\System32\Tasks\wxxabbdl 2014-06-30 04:59 - 2014-06-30 04:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\wxxabbdl.bat 2014-06-30 04:57 - 2014-06-30 04:57 - 00003204 _____ () C:\Windows\System32\Tasks\tbfedip 2014-06-30 04:57 - 2014-06-30 04:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbfedip.bat 2014-06-30 04:55 - 2014-06-30 04:55 - 00003200 _____ () C:\Windows\System32\Tasks\khtpt 2014-06-30 04:55 - 2014-06-30 04:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\khtpt.bat 2014-06-30 04:53 - 2014-06-30 04:53 - 00003204 _____ () C:\Windows\System32\Tasks\pakteow 2014-06-30 04:53 - 2014-06-30 04:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\pakteow.bat 2014-06-30 04:51 - 2014-06-30 04:51 - 00003200 _____ () C:\Windows\System32\Tasks\tsqpv 2014-06-30 04:51 - 2014-06-30 04:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\tsqpv.bat 2014-06-30 04:49 - 2014-06-30 04:49 - 00003202 _____ () C:\Windows\System32\Tasks\fsigct 2014-06-30 04:49 - 2014-06-30 04:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\fsigct.bat 2014-06-30 04:47 - 2014-06-30 04:47 - 00003202 _____ () C:\Windows\System32\Tasks\quwaeg 2014-06-30 04:47 - 2014-06-30 04:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\quwaeg.bat 2014-06-30 04:45 - 2014-06-30 04:45 - 00003200 _____ () C:\Windows\System32\Tasks\nveck 2014-06-30 04:45 - 2014-06-30 04:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\nveck.bat 2014-06-30 04:43 - 2014-06-30 04:43 - 00003202 _____ () C:\Windows\System32\Tasks\tqwtbw 2014-06-30 04:43 - 2014-06-30 04:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\tqwtbw.bat 2014-06-30 04:41 - 2014-06-30 04:41 - 00003200 _____ () C:\Windows\System32\Tasks\zlqcg 2014-06-30 04:41 - 2014-06-30 04:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\zlqcg.bat 2014-06-30 04:36 - 2014-06-30 04:36 - 00003204 _____ () C:\Windows\System32\Tasks\jehlnce 2014-06-30 04:36 - 2014-06-30 04:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\jehlnce.bat 2014-06-30 04:34 - 2014-06-30 04:34 - 00003204 _____ () C:\Windows\System32\Tasks\aguiubo 2014-06-30 04:34 - 2014-06-30 04:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\aguiubo.bat 2014-06-30 04:32 - 2014-06-30 04:32 - 00003200 _____ () C:\Windows\System32\Tasks\lqntf 2014-06-30 04:32 - 2014-06-30 04:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\lqntf.bat 2014-06-30 04:30 - 2014-06-30 04:30 - 00003200 _____ () C:\Windows\System32\Tasks\dulcs 2014-06-30 04:30 - 2014-06-30 04:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\dulcs.bat 2014-06-30 04:28 - 2014-06-30 04:28 - 00003200 _____ () C:\Windows\System32\Tasks\ljivt 2014-06-30 04:28 - 2014-06-30 04:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\ljivt.bat 2014-06-30 04:26 - 2014-06-30 04:26 - 00003206 _____ () C:\Windows\System32\Tasks\lrweaflq 2014-06-30 04:26 - 2014-06-30 04:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\lrweaflq.bat 2014-06-30 04:24 - 2014-06-30 04:24 - 00003200 _____ () C:\Windows\System32\Tasks\xdmoi 2014-06-30 04:24 - 2014-06-30 04:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\xdmoi.bat 2014-06-30 04:22 - 2014-06-30 04:22 - 00003200 _____ () C:\Windows\System32\Tasks\jdymi 2014-06-30 04:22 - 2014-06-30 04:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\jdymi.bat 2014-06-30 04:20 - 2014-06-30 04:20 - 00003202 _____ () C:\Windows\System32\Tasks\sxdjht 2014-06-30 04:20 - 2014-06-30 04:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\sxdjht.bat 2014-06-30 04:18 - 2014-06-30 04:18 - 00003204 _____ () C:\Windows\System32\Tasks\noohhij 2014-06-30 04:18 - 2014-06-30 04:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\noohhij.bat 2014-06-30 04:14 - 2014-06-30 04:14 - 00003204 _____ () C:\Windows\System32\Tasks\hcdeabo 2014-06-30 04:14 - 2014-06-30 04:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\hcdeabo.bat 2014-06-30 04:12 - 2014-06-30 04:12 - 00003202 _____ () C:\Windows\System32\Tasks\cfdfey 2014-06-30 04:12 - 2014-06-30 04:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\cfdfey.bat 2014-06-30 04:10 - 2014-06-30 04:10 - 00003204 _____ () C:\Windows\System32\Tasks\gwwoohh 2014-06-30 04:10 - 2014-06-30 04:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\gwwoohh.bat 2014-06-30 04:08 - 2014-06-30 04:08 - 00003206 _____ () C:\Windows\System32\Tasks\izuvpicd 2014-06-30 04:08 - 2014-06-30 04:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\izuvpicd.bat 2014-06-30 04:06 - 2014-06-30 04:06 - 00003206 _____ () C:\Windows\System32\Tasks\cfcfnrnj 2014-06-30 04:06 - 2014-06-30 04:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\cfcfnrnj.bat 2014-06-30 04:04 - 2014-06-30 04:04 - 00003200 _____ () C:\Windows\System32\Tasks\ekaix 2014-06-30 04:04 - 2014-06-30 04:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\ekaix.bat 2014-06-30 03:42 - 2014-06-30 03:42 - 00003202 _____ () C:\Windows\System32\Tasks\acxkgi 2014-06-30 03:42 - 2014-06-30 03:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\acxkgi.bat 2014-06-30 03:40 - 2014-06-30 03:40 - 00003206 _____ () C:\Windows\System32\Tasks\eulkcjbf 2014-06-30 03:40 - 2014-06-30 03:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\eulkcjbf.bat 2014-06-30 03:38 - 2014-06-30 03:38 - 00003202 _____ () C:\Windows\System32\Tasks\fwhaxi 2014-06-30 03:38 - 2014-06-30 03:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\fwhaxi.bat 2014-06-30 03:36 - 2014-06-30 03:36 - 00003200 _____ () C:\Windows\System32\Tasks\tyfrx 2014-06-30 03:36 - 2014-06-30 03:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\tyfrx.bat 2014-06-30 03:34 - 2014-06-30 03:34 - 00003202 _____ () C:\Windows\System32\Tasks\ovfemt 2014-06-30 03:34 - 2014-06-30 03:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\ovfemt.bat 2014-06-30 03:32 - 2014-06-30 03:32 - 00003202 _____ () C:\Windows\System32\Tasks\lcbpfk 2014-06-30 03:32 - 2014-06-30 03:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpfk.bat 2014-06-30 03:30 - 2014-06-30 03:30 - 00003204 _____ () C:\Windows\System32\Tasks\ubpckyn 2014-06-30 03:30 - 2014-06-30 03:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\ubpckyn.bat 2014-06-30 03:28 - 2014-06-30 03:28 - 00003202 _____ () C:\Windows\System32\Tasks\qcuecu 2014-06-30 03:28 - 2014-06-30 03:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\qcuecu.bat 2014-06-30 03:26 - 2014-06-30 03:26 - 00003204 _____ () C:\Windows\System32\Tasks\wfoefpa 2014-06-30 03:26 - 2014-06-30 03:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\wfoefpa.bat 2014-06-30 03:24 - 2014-06-30 03:24 - 00003206 _____ () C:\Windows\System32\Tasks\vggvgguf 2014-06-30 03:24 - 2014-06-30 03:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\vggvgguf.bat 2014-06-30 03:22 - 2014-06-30 03:22 - 00003202 _____ () C:\Windows\System32\Tasks\gufetd 2014-06-30 03:22 - 2014-06-30 03:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\gufetd.bat 2014-06-30 03:20 - 2014-06-30 03:20 - 00003202 _____ () C:\Windows\System32\Tasks\ljwusx 2014-06-30 03:20 - 2014-06-30 03:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\ljwusx.bat 2014-06-30 00:13 - 2014-06-30 00:13 - 00003200 _____ () C:\Windows\System32\Tasks\ztyse 2014-06-30 00:13 - 2014-06-30 00:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\ztyse.bat 2014-06-30 00:11 - 2014-06-30 00:11 - 00003200 _____ () C:\Windows\System32\Tasks\bdadk 2014-06-30 00:11 - 2014-06-30 00:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\bdadk.bat 2014-06-30 00:09 - 2014-06-30 00:09 - 00003204 _____ () C:\Windows\System32\Tasks\trwucgl 2014-06-30 00:09 - 2014-06-30 00:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\trwucgl.bat 2014-06-30 00:07 - 2014-06-30 00:07 - 00003206 _____ () C:\Windows\System32\Tasks\tbeerxvb 2014-06-30 00:07 - 2014-06-30 00:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbeerxvb.bat 2014-06-30 00:05 - 2014-06-30 00:05 - 00003200 _____ () C:\Windows\System32\Tasks\ccbfv 2014-06-30 00:05 - 2014-06-30 00:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\ccbfv.bat 2014-06-30 00:03 - 2014-06-30 00:03 - 00003202 _____ () C:\Windows\System32\Tasks\vveett 2014-06-30 00:03 - 2014-06-30 00:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\vveett.bat 2014-06-30 00:01 - 2014-06-30 00:01 - 00003206 _____ () C:\Windows\System32\Tasks\ligdqolj 2014-06-30 00:01 - 2014-06-30 00:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ligdqolj.bat 2014-06-29 23:59 - 2014-06-29 23:59 - 00003204 _____ () C:\Windows\System32\Tasks\vdksahw 2014-06-29 23:59 - 2014-06-29 23:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\vdksahw.bat 2014-06-29 23:57 - 2014-06-29 23:57 - 00003206 _____ () C:\Windows\System32\Tasks\vdsbqhwf 2014-06-29 23:57 - 2014-06-29 23:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\vdsbqhwf.bat 2014-06-29 23:55 - 2014-06-29 23:55 - 00003200 _____ () C:\Windows\System32\Tasks\reiba 2014-06-29 23:55 - 2014-06-29 23:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\reiba.bat 2014-06-29 23:53 - 2014-06-29 23:53 - 00003206 _____ () C:\Windows\System32\Tasks\kwtxbhko 2014-06-29 23:53 - 2014-06-29 23:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\kwtxbhko.bat 2014-06-29 23:51 - 2014-06-29 23:51 - 00003204 _____ () C:\Windows\System32\Tasks\koagcns 2014-06-29 23:51 - 2014-06-29 23:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\koagcns.bat 2014-06-29 23:49 - 2014-06-29 23:49 - 00003206 _____ () C:\Windows\System32\Tasks\vveeettb 2014-06-29 23:49 - 2014-06-29 23:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\vveeettb.bat 2014-06-29 23:47 - 2014-06-29 23:47 - 00003206 _____ () C:\Windows\System32\Tasks\rdpsgibx 2014-06-29 23:47 - 2014-06-29 23:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\rdpsgibx.bat 2014-06-29 23:45 - 2014-06-29 23:45 - 00003204 _____ () C:\Windows\System32\Tasks\quejuej 2014-06-29 23:45 - 2014-06-29 23:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\quejuej.bat 2014-06-29 23:43 - 2014-06-29 23:43 - 00003202 _____ () C:\Windows\System32\Tasks\icdytn 2014-06-29 23:43 - 2014-06-29 23:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\icdytn.bat 2014-06-29 23:41 - 2014-06-29 23:41 - 00003206 _____ () C:\Windows\System32\Tasks\ajcohkcp 2014-06-29 23:41 - 2014-06-29 23:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\ajcohkcp.bat 2014-06-29 23:39 - 2014-06-29 23:39 - 00003206 _____ () C:\Windows\System32\Tasks\gofohwhp 2014-06-29 23:39 - 2014-06-29 23:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\gofohwhp.bat 2014-06-29 23:37 - 2014-06-29 23:37 - 00003206 _____ () C:\Windows\System32\Tasks\dulctdar 2014-06-29 23:37 - 2014-06-29 23:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\dulctdar.bat 2014-06-29 23:35 - 2014-06-29 23:35 - 00003200 _____ () C:\Windows\System32\Tasks\qnifi 2014-06-29 23:35 - 2014-06-29 23:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\qnifi.bat 2014-06-29 21:33 - 2014-06-29 21:33 - 00003200 _____ () C:\Windows\System32\Tasks\daetq 2014-06-29 21:33 - 2014-06-29 21:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\daetq.bat 2014-06-29 21:31 - 2014-06-29 21:31 - 00003206 _____ () C:\Windows\System32\Tasks\akcohzmg 2014-06-29 21:31 - 2014-06-29 21:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\akcohzmg.bat 2014-06-29 21:29 - 2014-06-29 21:29 - 00003202 _____ () C:\Windows\System32\Tasks\nooffg 2014-06-29 21:29 - 2014-06-29 21:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\nooffg.bat 2014-06-29 21:27 - 2014-06-29 21:27 - 00003204 _____ () C:\Windows\System32\Tasks\lqgmrpu 2014-06-29 21:27 - 2014-06-29 21:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\lqgmrpu.bat 2014-06-29 21:25 - 2014-06-29 21:25 - 00003204 _____ () C:\Windows\System32\Tasks\cnaupdx 2014-06-29 21:25 - 2014-06-29 21:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\cnaupdx.bat 2014-06-29 21:23 - 2014-06-29 21:23 - 00003206 _____ () C:\Windows\System32\Tasks\rwimaepu 2014-06-29 21:23 - 2014-06-29 21:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\rwimaepu.bat 2014-06-29 21:21 - 2014-06-29 21:21 - 00003200 _____ () C:\Windows\System32\Tasks\iavic 2014-06-29 21:21 - 2014-06-29 21:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\iavic.bat 2014-06-29 21:19 - 2014-06-29 21:19 - 00003200 _____ () C:\Windows\System32\Tasks\hajdc 2014-06-29 21:19 - 2014-06-29 21:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\hajdc.bat 2014-06-29 21:17 - 2014-06-29 21:17 - 00003206 _____ () C:\Windows\System32\Tasks\jdauqmhd 2014-06-29 21:17 - 2014-06-29 21:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\jdauqmhd.bat 2014-06-29 21:15 - 2014-06-29 21:15 - 00003204 _____ () C:\Windows\System32\Tasks\vdksa 2014-06-29 21:15 - 2014-06-29 21:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\utjiwdc.bat 2014-06-29 21:13 - 2014-06-29 21:13 - 00003204 _____ () C:\Windows\System32\Tasks\hwooghw 2014-06-29 21:13 - 2014-06-29 21:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\hwooghw.bat 2014-06-29 21:11 - 2014-06-29 21:11 - 00003204 _____ () C:\Windows\System32\Tasks\ifauytq 2014-06-29 21:11 - 2014-06-29 21:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\ifauytq.bat 2014-06-29 21:09 - 2014-06-29 21:09 - 00003204 _____ () C:\Windows\System32\Tasks\erawlaq 2014-06-29 21:09 - 2014-06-29 21:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\erawlaq.bat 2014-06-29 21:07 - 2014-06-29 21:07 - 00003200 _____ () C:\Windows\System32\Tasks\lxdiu 2014-06-29 21:07 - 2014-06-29 21:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\lxdiu.bat 2014-06-29 21:05 - 2014-06-29 21:05 - 00003200 _____ () C:\Windows\System32\Tasks\pjddy 2014-06-29 21:05 - 2014-06-29 21:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\pjddy.bat 2014-06-29 21:03 - 2014-06-29 21:03 - 00003206 _____ () C:\Windows\System32\Tasks\fqcdnfrr 2014-06-29 21:03 - 2014-06-29 21:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\fqcdnfrr.bat 2014-06-29 21:01 - 2014-06-29 21:01 - 00003206 _____ () C:\Windows\System32\Tasks\ghpaijjd 2014-06-29 21:01 - 2014-06-29 21:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ghpaijjd.bat 2014-06-29 20:59 - 2014-06-29 20:59 - 00003206 _____ () C:\Windows\System32\Tasks\hbunicup 2014-06-29 20:59 - 2014-06-29 20:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\hbunicup.bat 2014-06-29 20:57 - 2014-06-29 20:57 - 00003204 _____ () C:\Windows\System32\Tasks\aaoibwj 2014-06-29 20:57 - 2014-06-29 20:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\aaoibwj.bat 2014-06-29 20:55 - 2014-06-29 20:55 - 00003204 _____ () C:\Windows\System32\Tasks\aaunbtn 2014-06-29 20:55 - 2014-06-29 20:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\aaunbtn.bat 2014-06-29 20:53 - 2014-06-29 20:53 - 00003206 _____ () C:\Windows\System32\Tasks\mffummlk 2014-06-29 20:53 - 2014-06-29 20:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\mffummlk.bat 2014-06-29 20:51 - 2014-06-29 20:51 - 00003200 _____ () C:\Windows\System32\Tasks\refju 2014-06-29 20:51 - 2014-06-29 20:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\refju.bat 2014-06-29 20:49 - 2014-06-29 20:49 - 00003204 _____ () C:\Windows\System32\Tasks\daechca 2014-06-29 20:49 - 2014-06-29 20:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\daechca.bat 2014-06-29 20:47 - 2014-06-29 20:47 - 00003206 _____ () C:\Windows\System32\Tasks\idxsnplf 2014-06-29 20:47 - 2014-06-29 20:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\idxsnplf.bat 2014-06-29 20:45 - 2014-06-29 20:45 - 00003204 _____ () C:\Windows\System32\Tasks\xrunfjc 2014-06-29 20:45 - 2014-06-29 20:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\xrunfjc.bat 2014-06-29 20:43 - 2014-06-29 20:43 - 00003200 _____ () C:\Windows\System32\Tasks\ubovd 2014-06-29 20:43 - 2014-06-29 20:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\ubovd.bat 2014-06-29 20:41 - 2014-06-29 20:41 - 00003202 _____ () C:\Windows\System32\Tasks\eblbzi 2014-06-29 20:41 - 2014-06-29 20:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\eblbzi.bat 2014-06-29 20:39 - 2014-06-29 20:39 - 00003202 _____ () C:\Windows\System32\Tasks\tbgmtf 2014-06-29 20:39 - 2014-06-29 20:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbgmtf.bat 2014-06-29 20:37 - 2014-06-29 20:37 - 00003206 _____ () C:\Windows\System32\Tasks\rvadoswa 2014-06-29 20:37 - 2014-06-29 20:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\rvadoswa.bat 2014-06-29 20:35 - 2014-06-29 20:35 - 00003206 _____ () C:\Windows\System32\Tasks\numsabiy 2014-06-29 20:35 - 2014-06-29 20:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\numsabiy.bat 2014-06-29 20:33 - 2014-06-29 20:33 - 00003204 _____ () C:\Windows\System32\Tasks\kotimqn 2014-06-29 20:33 - 2014-06-29 20:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\kotimqn.bat 2014-06-29 20:31 - 2014-06-29 20:31 - 00003200 _____ () C:\Windows\System32\Tasks\lkifm 2014-06-29 20:31 - 2014-06-29 20:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\lkifm.bat 2014-06-29 20:29 - 2014-06-29 20:29 - 00003200 _____ () C:\Windows\System32\Tasks\fjdoh 2014-06-29 20:29 - 2014-06-29 20:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\fjdoh.bat 2014-06-29 20:27 - 2014-06-29 20:27 - 00003202 _____ () C:\Windows\System32\Tasks\fkvoal 2014-06-29 20:27 - 2014-06-29 20:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\fkvoal.bat 2014-06-29 20:25 - 2014-06-29 20:25 - 00003206 _____ () C:\Windows\System32\Tasks\fdcaqonm 2014-06-29 20:25 - 2014-06-29 20:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\fdcaqonm.bat 2014-06-29 20:23 - 2014-06-29 20:23 - 00003202 _____ () C:\Windows\System32\Tasks\oqyaks 2014-06-29 20:23 - 2014-06-29 20:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\oqyaks.bat 2014-06-29 20:21 - 2014-06-29 20:21 - 00003204 _____ () C:\Windows\System32\Tasks\kotxmqu 2014-06-29 20:21 - 2014-06-29 20:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\kotxmqu.bat 2014-06-29 20:19 - 2014-06-29 20:19 - 00003204 _____ () C:\Windows\System32\Tasks\iddytni 2014-06-29 20:19 - 2014-06-29 20:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\iddytni.bat 2014-06-29 20:17 - 2014-06-29 20:17 - 00003206 _____ () C:\Windows\System32\Tasks\kfujeuqf 2014-06-29 20:17 - 2014-06-29 20:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\kfujeuqf.bat 2014-06-29 20:15 - 2014-06-29 20:15 - 00003202 _____ () C:\Windows\System32\Tasks\whqaqs 2014-06-29 20:15 - 2014-06-29 20:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\whqaqs.bat 2014-06-29 20:13 - 2014-06-29 20:13 - 00003200 _____ () C:\Windows\System32\Tasks\lcbpv 2014-06-29 20:13 - 2014-06-29 20:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpv.bat 2014-06-29 20:11 - 2014-06-29 20:11 - 00003206 _____ () C:\Windows\System32\Tasks\psuprudi 2014-06-29 20:11 - 2014-06-29 20:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\psuprudi.bat 2014-06-29 20:09 - 2014-06-29 20:09 - 00003206 _____ () C:\Windows\System32\Tasks\numttcsa 2014-06-29 20:09 - 2014-06-29 20:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\numttcsa.bat 2014-06-29 20:07 - 2014-06-29 20:07 - 00003202 _____ () C:\Windows\System32\Tasks\jfjnqm 2014-06-29 20:07 - 2014-06-29 20:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\jfjnqm.bat 2014-06-29 20:05 - 2014-06-29 20:05 - 00003204 _____ () C:\Windows\System32\Tasks\egqajsk 2014-06-29 20:05 - 2014-06-29 20:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\egqajsk.bat 2014-06-29 20:03 - 2014-06-29 20:03 - 00003202 _____ () C:\Windows\System32\Tasks\hztmgy 2014-06-29 20:03 - 2014-06-29 20:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\hztmgy.bat 2014-06-29 20:01 - 2014-06-29 20:01 - 00003200 _____ () C:\Windows\System32\Tasks\isnoa 2014-06-29 20:01 - 2014-06-29 20:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\isnoa.bat 2014-06-29 19:59 - 2014-06-29 19:59 - 00003206 _____ () C:\Windows\System32\Tasks\tbglafes 2014-06-29 19:59 - 2014-06-29 19:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbglafes.bat 2014-06-29 19:57 - 2014-06-29 19:57 - 00003206 _____ () C:\Windows\System32\Tasks\ukbhckaa 2014-06-29 19:57 - 2014-06-29 19:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\ukbhckaa.bat 2014-06-29 19:14 - 2014-06-29 19:14 - 00003206 _____ () C:\Windows\System32\Tasks\thlrdkxu 2014-06-29 19:14 - 2014-06-29 19:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\thlrdkxu.bat 2014-06-29 19:12 - 2014-06-29 19:12 - 00003202 _____ () C:\Windows\System32\Tasks\zuhtgb 2014-06-29 19:12 - 2014-06-29 19:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\zuhtgb.bat 2014-06-29 19:10 - 2014-06-29 19:10 - 00003202 _____ () C:\Windows\System32\Tasks\kbxmda 2014-06-29 19:10 - 2014-06-29 19:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\kbxmda.bat 2014-06-29 19:08 - 2014-06-29 19:08 - 00003200 _____ () C:\Windows\System32\Tasks\edeaa 2014-06-29 19:08 - 2014-06-29 19:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\edeaa.bat 2014-06-29 19:06 - 2014-06-29 19:06 - 00003206 _____ () C:\Windows\System32\Tasks\rvaeitxc 2014-06-29 19:06 - 2014-06-29 19:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\rvaeitxc.bat 2014-06-29 19:04 - 2014-06-29 19:04 - 00003202 _____ () C:\Windows\System32\Tasks\dafdid 2014-06-29 19:04 - 2014-06-29 19:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\dafdid.bat 2014-06-29 19:02 - 2014-06-29 19:02 - 00003200 _____ () C:\Windows\System32\Tasks\auaco 2014-06-29 19:02 - 2014-06-29 19:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\auaco.bat 2014-06-29 19:00 - 2014-06-29 19:00 - 00003206 _____ () C:\Windows\System32\Tasks\ydoalwbt 2014-06-29 19:00 - 2014-06-29 19:00 - 00000269 _____ () C:\Users\hülya\AppData\Local\ydoalwbt.bat 2014-06-29 18:58 - 2014-06-29 18:58 - 00003206 _____ () C:\Windows\System32\Tasks\efqidtef 2014-06-29 18:58 - 2014-06-29 18:58 - 00000269 _____ () C:\Users\hülya\AppData\Local\efqidtef.bat 2014-06-29 18:56 - 2014-06-29 18:56 - 00003206 _____ () C:\Windows\System32\Tasks\piqzluev 2014-06-29 18:56 - 2014-06-29 18:56 - 00000269 _____ () C:\Users\hülya\AppData\Local\piqzluev.bat 2014-06-29 18:54 - 2014-06-29 18:54 - 00003204 _____ () C:\Windows\System32\Tasks\aavaouj 2014-06-29 18:54 - 2014-06-29 18:54 - 00000269 _____ () C:\Users\hülya\AppData\Local\aavaouj.bat 2014-06-29 18:48 - 2014-06-29 18:48 - 00003204 _____ () C:\Windows\System32\Tasks\ahubocp 2014-06-29 18:48 - 2014-06-29 18:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\ahubocp.bat 2014-06-29 18:46 - 2014-06-29 18:46 - 00003206 _____ () C:\Windows\System32\Tasks\jfbdsujm 2014-06-29 18:46 - 2014-06-29 18:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\jfbdsujm.bat 2014-06-29 18:44 - 2014-06-29 18:44 - 00003202 _____ () C:\Windows\System32\Tasks\vmddsj 2014-06-29 18:44 - 2014-06-29 18:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\vmddsj.bat 2014-06-29 18:42 - 2014-06-29 18:42 - 00003200 _____ () C:\Windows\System32\Tasks\giqss 2014-06-29 18:42 - 2014-06-29 18:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\giqss.bat 2014-06-29 18:40 - 2014-06-29 18:40 - 00003206 _____ () C:\Windows\System32\Tasks\thbbobwc 2014-06-29 18:40 - 2014-06-29 18:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\thbbobwc.bat 2014-06-29 18:38 - 2014-06-29 18:38 - 00003206 _____ () C:\Windows\System32\Tasks\ruxjmqcg 2014-06-29 18:38 - 2014-06-29 18:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\ruxjmqcg.bat 2014-06-29 18:36 - 2014-06-29 18:36 - 00003204 _____ () C:\Windows\System32\Tasks\ahubvcq 2014-06-29 18:36 - 2014-06-29 18:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\ahubvcq.bat 2014-06-29 18:34 - 2014-06-29 18:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\gfiaa.bat 2014-06-29 18:33 - 2014-06-29 18:33 - 00003200 _____ () C:\Windows\System32\Tasks\gfiaa 2014-06-29 18:31 - 2014-06-29 18:31 - 00003206 _____ () C:\Windows\System32\Tasks\qlgqlgjm 2014-06-29 18:31 - 2014-06-29 18:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\qlgqlgjm.bat 2014-06-29 18:29 - 2014-06-29 18:29 - 00003202 _____ () C:\Windows\System32\Tasks\oqysbd 2014-06-29 18:29 - 2014-06-29 18:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\oqysbd.bat 2014-06-29 18:27 - 2014-06-29 18:27 - 00003202 _____ () C:\Windows\System32\Tasks\ykvbmx 2014-06-29 18:27 - 2014-06-29 18:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\ykvbmx.bat 2014-06-29 18:25 - 2014-06-29 18:25 - 00003206 _____ () C:\Windows\System32\Tasks\aocpcqer 2014-06-29 18:25 - 2014-06-29 18:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\aocpcqer.bat 2014-06-29 18:23 - 2014-06-29 18:23 - 00003200 _____ () C:\Windows\System32\Tasks\fepha 2014-06-29 18:23 - 2014-06-29 18:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\fepha.bat 2014-06-29 18:21 - 2014-06-29 18:21 - 00003204 _____ () C:\Windows\System32\Tasks\acceyau 2014-06-29 18:21 - 2014-06-29 18:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\acceyau.bat 2014-06-29 18:19 - 2014-06-29 18:19 - 00003202 _____ () C:\Windows\System32\Tasks\tymrgl 2014-06-29 18:19 - 2014-06-29 18:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\tymrgl.bat 2014-06-29 18:17 - 2014-06-29 18:17 - 00003202 _____ () C:\Windows\System32\Tasks\cxuqfu 2014-06-29 18:17 - 2014-06-29 18:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\cxuqfu.bat 2014-06-29 18:15 - 2014-06-29 18:15 - 00003200 _____ () C:\Windows\System32\Tasks\gxqja 2014-06-29 18:15 - 2014-06-29 18:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\gxqja.bat 2014-06-29 18:13 - 2014-06-29 18:13 - 00003202 _____ () C:\Windows\System32\Tasks\xiscnx 2014-06-29 18:13 - 2014-06-29 18:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\xiscnx.bat 2014-06-29 18:11 - 2014-06-29 18:11 - 00003204 _____ () C:\Windows\System32\Tasks\gffffee 2014-06-29 18:11 - 2014-06-29 18:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\gffffee.bat 2014-06-29 18:09 - 2014-06-29 18:09 - 00003200 _____ () C:\Windows\System32\Tasks\ccafn 2014-06-29 18:09 - 2014-06-29 18:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\ccafn.bat 2014-06-29 18:07 - 2014-06-29 18:07 - 00003200 _____ () C:\Windows\System32\Tasks\jvrui 2014-06-29 18:07 - 2014-06-29 18:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\jvrui.bat 2014-06-29 18:05 - 2014-06-29 18:05 - 00003204 _____ () C:\Windows\System32\Tasks\qdfrefk 2014-06-29 18:05 - 2014-06-29 18:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\qdfrefk.bat 2014-06-29 18:03 - 2014-06-29 18:03 - 00003204 _____ () C:\Windows\System32\Tasks\eewxpph 2014-06-29 18:03 - 2014-06-29 18:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\eewxpph.bat 2014-06-29 18:01 - 2014-06-29 18:01 - 00003200 _____ () C:\Windows\System32\Tasks\icwxl 2014-06-29 18:01 - 2014-06-29 18:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\icwxl.bat 2014-06-29 17:59 - 2014-06-29 17:59 - 00003200 _____ () C:\Windows\System32\Tasks\wnfne 2014-06-29 17:59 - 2014-06-29 17:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\wnfne.bat 2014-06-29 17:57 - 2014-06-29 17:57 - 00003202 _____ () C:\Windows\System32\Tasks\xizdef 2014-06-29 17:57 - 2014-06-29 17:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\xizdef.bat 2014-06-29 17:55 - 2014-06-29 17:55 - 00003206 _____ () C:\Windows\System32\Tasks\quxbfilv 2014-06-29 17:55 - 2014-06-29 17:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\quxbfilv.bat 2014-06-29 17:53 - 2014-06-29 17:53 - 00003202 _____ () C:\Windows\System32\Tasks\zfsdqf 2014-06-29 17:53 - 2014-06-29 17:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\zfsdqf.bat 2014-06-29 17:52 - 2014-06-29 17:52 - 00623696 _____ (Click Me In Limited) C:\Users\hülya\AppData\Local\nsu16A4.tmp 2014-06-29 17:51 - 2014-06-29 17:51 - 00003206 _____ () C:\Windows\System32\Tasks\kpmrotfu 2014-06-29 17:51 - 2014-06-29 17:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\kpmrotfu.bat 2014-06-29 17:49 - 2014-06-29 17:49 - 00003204 _____ () C:\Windows\System32\Tasks\khepmjn 2014-06-29 17:49 - 2014-06-29 17:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\khepmjn.bat 2014-06-29 17:47 - 2014-06-29 17:47 - 00003204 _____ () C:\Windows\System32\Tasks\beyuxlg 2014-06-29 17:47 - 2014-06-29 17:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\beyuxlg.bat 2014-06-29 17:45 - 2014-06-29 17:45 - 00003200 _____ () C:\Windows\System32\Tasks\eddzr 2014-06-29 17:45 - 2014-06-29 17:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\eddzr.bat 2014-06-29 17:43 - 2014-06-29 17:43 - 00003204 _____ () C:\Windows\System32\Tasks\cpdlguc 2014-06-29 17:43 - 2014-06-29 17:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\cpdlguc.bat 2014-06-29 17:41 - 2014-06-29 17:41 - 00003206 _____ () C:\Windows\System32\Tasks\gaiccbvd 2014-06-29 17:41 - 2014-06-29 17:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\gaiccbvd.bat 2014-06-29 17:39 - 2014-06-29 17:39 - 00003202 _____ () C:\Windows\System32\Tasks\iauhbv 2014-06-29 17:39 - 2014-06-29 17:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\iauhbv.bat 2014-06-29 17:37 - 2014-06-29 17:37 - 00003206 _____ () C:\Windows\System32\Tasks\eudbraxo 2014-06-29 17:37 - 2014-06-29 17:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\eudbraxo.bat 2014-06-29 17:35 - 2014-06-29 17:35 - 00003206 _____ () C:\Windows\System32\Tasks\pxrbjdlu 2014-06-29 17:35 - 2014-06-29 17:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\pxrbjdlu.bat 2014-06-29 17:33 - 2014-06-29 17:33 - 00003200 _____ () C:\Windows\System32\Tasks\ilvab 2014-06-29 17:33 - 2014-06-29 17:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\ilvab.bat 2014-06-29 17:31 - 2014-06-29 17:31 - 00003204 _____ () C:\Windows\System32\Tasks\vwgfvve 2014-06-29 17:31 - 2014-06-29 17:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\vwgfvve.bat 2014-06-29 17:28 - 2014-06-29 17:28 - 00003204 _____ () C:\Windows\System32\Tasks\reibflg 2014-06-29 17:28 - 2014-06-29 17:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\reibflg.bat 2014-06-29 17:26 - 2014-06-29 17:26 - 00003202 _____ () C:\Windows\System32\Tasks\kgjoch 2014-06-29 17:26 - 2014-06-29 17:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\kgjoch.bat 2014-06-29 17:24 - 2014-06-29 17:24 - 00003202 _____ () C:\Windows\System32\Tasks\dngoeo 2014-06-29 17:24 - 2014-06-29 17:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\dngoeo.bat 2014-06-29 17:22 - 2014-06-29 17:22 - 00003204 _____ () C:\Windows\System32\Tasks\gohgohh 2014-06-29 17:22 - 2014-06-29 17:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\gohgohh.bat 2014-06-29 17:20 - 2014-06-29 17:20 - 00003206 _____ () C:\Windows\System32\Tasks\lbffbzeu 2014-06-29 17:20 - 2014-06-29 17:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\lbffbzeu.bat 2014-06-29 17:18 - 2014-06-29 17:18 - 00003204 _____ () C:\Windows\System32\Tasks\dafwmja 2014-06-29 17:18 - 2014-06-29 17:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\dafwmja.bat 2014-06-29 17:16 - 2014-06-29 17:16 - 00003204 _____ () C:\Windows\System32\Tasks\sfzekgc 2014-06-29 17:16 - 2014-06-29 17:16 - 00000269 _____ () C:\Users\hülya\AppData\Local\sfzekgc.bat 2014-06-29 17:14 - 2014-06-29 17:14 - 00003204 _____ () C:\Windows\System32\Tasks\trxvdah 2014-06-29 17:14 - 2014-06-29 17:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\trxvdah.bat 2014-06-29 17:12 - 2014-06-29 17:12 - 00003200 _____ () C:\Windows\System32\Tasks\cokxm 2014-06-29 17:12 - 2014-06-29 17:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\cokxm.bat 2014-06-29 17:10 - 2014-06-29 17:10 - 00003204 _____ () C:\Windows\System32\Tasks\ajuhbdv 2014-06-29 17:10 - 2014-06-29 17:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\ajuhbdv.bat 2014-06-29 17:08 - 2014-06-29 17:08 - 00003202 _____ () C:\Windows\System32\Tasks\xaqscn 2014-06-29 17:08 - 2014-06-29 17:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\xaqscn.bat 2014-06-29 17:06 - 2014-06-29 17:06 - 00003206 _____ () C:\Windows\System32\Tasks\icreymhc 2014-06-29 17:06 - 2014-06-29 17:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\icreymhc.bat 2014-06-29 17:04 - 2014-06-29 17:04 - 00003202 _____ () C:\Windows\System32\Tasks\rxbycq 2014-06-29 17:04 - 2014-06-29 17:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\rxbycq.bat 2014-06-29 17:02 - 2014-06-29 17:02 - 00003204 _____ () C:\Windows\System32\Tasks\kifbcee 2014-06-29 17:02 - 2014-06-29 17:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\kifbcee.bat 2014-06-29 17:00 - 2014-06-29 17:00 - 00003200 _____ () C:\Windows\System32\Tasks\wgwgw 2014-06-29 17:00 - 2014-06-29 17:00 - 00000269 _____ () C:\Users\hülya\AppData\Local\wgwgw.bat 2014-06-29 16:58 - 2014-06-29 16:58 - 00003200 _____ () C:\Windows\System32\Tasks\nghxp 2014-06-29 16:58 - 2014-06-29 16:58 - 00000269 _____ () C:\Users\hülya\AppData\Local\nghxp.bat 2014-06-29 16:56 - 2014-06-29 16:56 - 00003200 _____ () C:\Windows\System32\Tasks\xdmos 2014-06-29 16:56 - 2014-06-29 16:56 - 00000269 _____ () C:\Users\hülya\AppData\Local\xdmos.bat 2014-06-29 16:54 - 2014-06-29 16:54 - 00003200 _____ () C:\Windows\System32\Tasks\vlmck 2014-06-29 16:54 - 2014-06-29 16:54 - 00000269 _____ () C:\Users\hülya\AppData\Local\vlmck.bat 2014-06-29 16:52 - 2014-06-29 16:52 - 00003202 _____ () C:\Windows\System32\Tasks\rdwbfa 2014-06-29 16:52 - 2014-06-29 16:52 - 00000269 _____ () C:\Users\hülya\AppData\Local\rdwbfa.bat 2014-06-29 16:50 - 2014-06-29 16:50 - 00003204 _____ () C:\Windows\System32\Tasks\bocpdwd 2014-06-29 16:50 - 2014-06-29 16:50 - 00000269 _____ () C:\Users\hülya\AppData\Local\bocpdwd.bat 2014-06-29 16:48 - 2014-06-29 16:48 - 00003204 _____ () C:\Windows\System32\Tasks\prsudyb 2014-06-29 16:48 - 2014-06-29 16:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\prsudyb.bat 2014-06-29 16:46 - 2014-06-29 16:46 - 00003206 _____ () C:\Windows\System32\Tasks\hysdwpba 2014-06-29 16:46 - 2014-06-29 16:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\hysdwpba.bat 2014-06-29 16:44 - 2014-06-29 16:44 - 00003200 _____ () C:\Windows\System32\Tasks\aocpc 2014-06-29 16:44 - 2014-06-29 16:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\aocpc.bat 2014-06-29 16:42 - 2014-06-29 16:42 - 00003206 _____ () C:\Windows\System32\Tasks\bkdpjboa 2014-06-29 16:42 - 2014-06-29 16:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\bkdpjboa.bat 2014-06-29 16:40 - 2014-06-29 16:40 - 00003202 _____ () C:\Windows\System32\Tasks\gphqpz 2014-06-29 16:40 - 2014-06-29 16:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\gphqpz.bat 2014-06-29 16:39 - 2014-03-02 20:05 - 00003244 _____ () C:\Windows\System32\Tasks\SomotoUpdateCheckerAutoStart 2014-06-29 16:39 - 2013-03-26 22:30 - 00001442 _____ () C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-06-29 16:38 - 2014-06-29 16:38 - 00003204 _____ () C:\Windows\System32\Tasks\rwbfruh 2014-06-29 16:38 - 2014-06-29 16:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\rwbfruh.bat 2014-06-29 16:37 - 2014-06-29 16:37 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\Uniblue 2014-06-29 16:36 - 2014-06-29 16:36 - 00003202 _____ () C:\Windows\System32\Tasks\prtvey 2014-06-29 16:36 - 2014-06-29 16:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\prtvey.bat 2014-06-29 16:36 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\AppData\Local\globalUpdate 2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9ED2tmp 2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9E82tmp 2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9E62tmp 2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9E22tmp 2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9E02tmp 2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9DE2tmp 2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9DC2tmp 2014-06-29 16:35 - 2014-06-29 16:35 - 01258344 _____ () C:\Users\hülya\Downloads\Setup (3).exe 2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9EB2tmp 2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\55A4tmp 2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 _____ () C:\END 2014-06-29 14:04 - 2014-03-02 19:41 - 00000000 ____D () C:\Program Files (x86)\Desk 365 2014-06-28 05:35 - 2014-07-09 10:52 - 00556544 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-06-27 01:13 - 2014-06-27 01:13 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\DivX 2014-06-27 01:13 - 2014-06-27 01:13 - 00000000 ____D () C:\Program Files\DivX 2014-06-27 01:11 - 2014-06-27 01:11 - 00999232 _____ (DivX, LLC) C:\Users\hülya\Downloads\DivXInstaller.exe 2014-06-27 01:06 - 2014-06-27 01:06 - 00608808 _____ () C:\Users\hülya\Downloads\MediaPlayerClassicInstaller.exe 2014-06-26 22:53 - 2014-07-12 03:32 - 00703968 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-06-26 22:53 - 2014-07-12 03:32 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-06-25 23:18 - 2014-06-25 23:18 - 00000000 ____D () C:\Users\hülya\AppData\Local\AskPartnerNetwork Some content of TEMP: ==================== C:\Users\hülya\AppData\Local\Temp\2npfgo6u.dll C:\Users\hülya\AppData\Local\Temp\76k1mdx6.dll C:\Users\hülya\AppData\Local\Temp\amazonicon_v6.exe C:\Users\hülya\AppData\Local\Temp\amazoninstallernircmdc.exe C:\Users\hülya\AppData\Local\Temp\APNSetup.exe C:\Users\hülya\AppData\Local\Temp\autorun.dll C:\Users\hülya\AppData\Local\Temp\b2pyquuf.dll C:\Users\hülya\AppData\Local\Temp\BackupSetup.exe C:\Users\hülya\AppData\Local\Temp\BingBarSetup-Partner.exe C:\Users\hülya\AppData\Local\Temp\dpyqloea.dll C:\Users\hülya\AppData\Local\Temp\Extract.exe C:\Users\hülya\AppData\Local\Temp\fge_7jwp.dll C:\Users\hülya\AppData\Local\Temp\gsnbt7vk.dll C:\Users\hülya\AppData\Local\Temp\ikdqtg_l.dll C:\Users\hülya\AppData\Local\Temp\jgpexth7.dll C:\Users\hülya\AppData\Local\Temp\jqslmncy.dll C:\Users\hülya\AppData\Local\Temp\jzr0dvkz.dll C:\Users\hülya\AppData\Local\Temp\nsoA31A.exe C:\Users\hülya\AppData\Local\Temp\nst797D.exe C:\Users\hülya\AppData\Local\Temp\nszA30F.exe C:\Users\hülya\AppData\Local\Temp\nzlvmuji.dll C:\Users\hülya\AppData\Local\Temp\omi2ikyo.dll C:\Users\hülya\AppData\Local\Temp\oz9ptrby.dll C:\Users\hülya\AppData\Local\Temp\pcgr8uon.dll C:\Users\hülya\AppData\Local\Temp\pci2gxzz.dll C:\Users\hülya\AppData\Local\Temp\rad6A463.tmp_update.exe C:\Users\hülya\AppData\Local\Temp\rpcuoqk1.dll C:\Users\hülya\AppData\Local\Temp\r_txacvt.dll C:\Users\hülya\AppData\Local\Temp\sdanircmdc.exe C:\Users\hülya\AppData\Local\Temp\sdapskill.exe C:\Users\hülya\AppData\Local\Temp\sdaspwn.exe C:\Users\hülya\AppData\Local\Temp\sgeggdk-.dll C:\Users\hülya\AppData\Local\Temp\SkypeSetup.exe C:\Users\hülya\AppData\Local\Temp\SP60051.exe C:\Users\hülya\AppData\Local\Temp\SP60289.exe C:\Users\hülya\AppData\Local\Temp\sp64126.exe C:\Users\hülya\AppData\Local\Temp\Sqlite3.dll C:\Users\hülya\AppData\Local\Temp\UninstallHPSA.exe C:\Users\hülya\AppData\Local\Temp\UpdateCheckerSetup.exe C:\Users\hülya\AppData\Local\Temp\vcredist_x64.exe C:\Users\hülya\AppData\Local\Temp\xbqvd9bh.dll C:\Users\hülya\AppData\Local\Temp\yeqjtftp.dll C:\Users\hülya\AppData\Local\Temp\ytiwsziq.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-07-19 18:42 ==================== End Of Log ============================ |
24.07.2014, 20:10 | #7 |
| bat=exe konnte nicht gefunden werden.Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-07-2014 01 Ran by hülya at 2014-07-24 20:51:06 Running from C:\Users\hülya\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Kaspersky Internet Security (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Kaspersky Internet Security (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Internet Security (Enabled) {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 13.0.0.83 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 13.0.0.83 - Adobe Systems Incorporated) Hidden Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated) Ask Toolbar (HKLM-x32\...\{4F524A2D-5637-4300-76A7-A758B70C0F01}) (Version: 12.15.1.16 - APN, LLC) <==== ATTENTION AuthenTec TrueAPI 64-bit (Version: 1.6.0.86 - AuthenTec, Inc.) Hidden AVM FRITZ!WLAN (HKLM-x32\...\AVMWLANCLI) (Version: - AVM Berlin) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) BrowserSafeguard (HKCU\...\Browsersafeguard) (Version: - Browsersafeguard) <==== ATTENTION Bundled software uninstaller (HKLM-x32\...\bi_uninstaller) (Version: - ) <==== ATTENTION CCleaner (HKLM\...\CCleaner) (Version: 4.01 - Piriform) Connected Music powered by Universal Music Group version 1.0 (HKLM-x32\...\{46037DC7-F927-46DF-935F-D6F122BDD34B}_is1) (Version: 1.0 - Snowite) CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1.5407 - CyberLink Corp.) CyberLink LabelPrint (x32 Version: 2.5.1.5407 - CyberLink Corp.) Hidden CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.2.2114 - CyberLink Corp.) CyberLink Media Suite 10 (x32 Version: 10.0.2.2114 - CyberLink Corp.) Hidden CyberLink PhotoDirector (HKLM-x32\...\InstallShield_{4862344A-A39C-4897-ACD4-A1BED5163C5A}) (Version: 2.0.1.3119 - CyberLink Corp.) CyberLink PhotoDirector (x32 Version: 2.0.1.3119 - CyberLink Corp.) Hidden CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.1.1926 - CyberLink Corp.) CyberLink Power2Go 8 (x32 Version: 8.0.1.1926 - CyberLink Corp.) Hidden CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.1.1925 - CyberLink Corp.) CyberLink PowerDirector 10 (x32 Version: 10.0.1.1925 - CyberLink Corp.) Hidden CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.5.4.5527 - CyberLink Corp.) CyberLink YouCam (x32 Version: 3.5.4.5527 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Der Tempel des Lebens: Die Legende der Vier Elemente (HKLM-x32\...\Der Tempel des Lebens: Die Legende der Vier Elemente) (Version: 1.0.0.0 - INTENIUM GmbH) Desk 365 (HKLM-x32\...\Desk 365) (Version: 1.15.10 - 337 Technology Limited.) <==== ATTENTION Dreamscapes: Der Sandmann Sammleredition (HKLM-x32\...\Dreamscapes: Der Sandmann Sammleredition) (Version: 1.0.0.0 - INTENIUM GmbH) Energy Star (HKLM\...\{0FA995CC-C849-4755-B14B-5404CC75DC24}) (Version: 1.0.8 - Hewlett-Packard) Facebook Video Calling 2.0.0.447 (HKLM-x32\...\{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}) (Version: 2.0.447 - Skype Limited) FilesFrog Update Checker (HKLM-x32\...\FilesFrog Update Checker) (Version: - ) <==== ATTENTION FLV Player (HKCU\...\FLV Player) (Version: 1.0 - Somoto Ltd.) <==== ATTENTION Freecorder extension (HKLM-x32\...\Freecorder extension) (Version: 7.0.2.0 - Applian Technologies Inc.) Freecorder extension for Chrome (HKLM-x32\...\Freecorder extension for Chrome) (Version: 7.0.2.0 - Applian Technologies, Inc.) Geekbench 3 (HKLM-x32\...\Geekbench 3) (Version: - Primate Labs Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.) Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden HP 3D DriveGuard (HKLM\...\{AB5BCC55-18E2-46C7-9405-FF61CB888F05}) (Version: 4.2.9.1 - Hewlett-Packard Company) HP Connected Music (Meridian - installer) (HKLM-x32\...\StartHPConnectedMusic) (Version: v1.0 - Meridian Audio Ltd) HP CoolSense (HKLM-x32\...\{11AF9A96-6D83-4C3B-8DCB-16EA2A358E3F}) (Version: 2.10.51 - Hewlett-Packard Company) HP Customer Experience Enhancements (x32 Version: 6.0.1.7 - Hewlett-Packard) Hidden HP Documentation (HKLM-x32\...\{7DE5085A-3665-40BC-9595-A1A209699137}) (Version: 1.1.0.0 - Hewlett-Packard) HP Postscript Converter (Version: 3.1.3554 - Hewlett-Packard) Hidden HP Quick Launch (HKLM-x32\...\{609B11CC-8CED-4116-AD8A-A72168894D39}) (Version: 3.0.4 - Hewlett-Packard Company) HP Recovery Manager (x32 Version: 7.00 - Hewlett-Packard) Hidden HP Registration Service (HKLM\...\{E4D6CCF2-0AAF-4B9C-9DE5-893EDC9B4BAA}) (Version: 1.0.5976.4186 - Hewlett-Packard) HP SimplePass (HKLM-x32\...\{34C821CA-6B55-44A0-8A9B-2EF471D6019E}) (Version: 6.0.100.244 - Hewlett-Packard) HP Software Framework (HKLM-x32\...\{94BB4B4F-BD6D-4166-A580-F868C8384CA6}) (Version: 4.6.8.1 - Hewlett-Packard Company) HP Support Assistant (HKLM-x32\...\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}) (Version: 7.4.45.4 - Hewlett-Packard Company) HP Utility Center (HKLM-x32\...\{0C57987A-A03A-4B95-A309-D23F78F406CA}) (Version: 1.0.7 - Hewlett-Packard) HP Wireless Button Driver (HKLM-x32\...\{941DE69D-6CEE-4171-8F1F-3D7E352AA498}) (Version: 1.0.6.1 - Hewlett-Packard Company) IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6418.0 - IDT) Intel PROSet Wireless (Version: - ) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2817 - Intel Corporation) Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (HKLM\...\{89478C31-5CE8-461A-9084-9A0AF059F84F}) (Version: 15.5.0.0344 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{7854AA22-A2F0-4F29-A2E9-D0C5A2B685E7}) (Version: 2.5.0.0248 - Motorola Solutions, Inc) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.9.1002 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Intel(R) WiDi (HKLM\...\{EDBA2433-0910-4C72-8C5B-8FEDAE3EF18E}) (Version: 3.5.34.0 - Intel Corporation) Intel® PROSet/Wireless WiFi-Software (HKLM\...\{99FDAE3B-6905-45A6-8F73-595363AAD3D1}) (Version: 15.05.1000.1411 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.24.388.1 - Intel Corporation) Hidden Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.550 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{6F6873E3-5C92-4049-B511-231A138DD090}) (Version: 14.0.0.4651 - Kaspersky Lab) Kaspersky Internet Security (x32 Version: 14.0.0.4651 - Kaspersky Lab) Hidden LPT System Updater Service (x32 Version: 1.0.0.0 - LPT) Hidden <==== ATTENTION Microsoft App Update for microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe (x64) (Version: 1.0.0.0 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Office (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.6120.5004 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Movie Mode (HKLM-x32\...\MovieMode) (Version: 2.6.65 - GenTechnologies Apps, LLC) Movies Toolbar for Chrome (Dist. by Somoto Ltd.) (HKLM-x32\...\somotomoviestoolbar181CR) (Version: 1.8.1.0 - IAC Search and Media) <==== ATTENTION MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MyPC Backup (HKLM\...\MyPC Backup) (Version: - JDi Backup Ltd) <==== ATTENTION NVIDIA Grafiktreiber 306.97 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 306.97 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.85.551 - NVIDIA Corporation) Hidden NVIDIA Optimus 1.10.8 (Version: 1.10.8 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 306.97 (Version: 306.97 - NVIDIA Corporation) Hidden NVIDIA Update 1.10.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.10.8 - NVIDIA Corporation) NVIDIA Update Components (Version: 1.10.8 - NVIDIA Corporation) Hidden OpenOffice 4.0.1 (HKLM-x32\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation) Optimizer Pro v3.2 (HKLM-x32\...\Optimizer Pro_is1) (Version: - ) <==== ATTENTION PriceGong 2.6.11 (HKLM-x32\...\PriceGong) (Version: 2.6.11 - PriceGong) <==== ATTENTION Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.2.612.2012 - Realtek) Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.8400.29025 - Realtek Semiconductor Corp.) RTL GAME CENTER (HKLM-x32\...\DSGPlayer) (Version: 1.0.0.46 - INTENIUM GmbH) Saal Design Software (HKLM-x32\...\SaalDesignSoftware) (Version: 3.2.30 - Saal Digital Fotoservice GmbH) Saal Design Software (x32 Version: 3.2.30 - Saal Digital Fotoservice GmbH) Hidden Save Sense (remove only) (HKCU\...\Save Sense) (Version: 6.4.1.0 - SaveSense) <==== ATTENTION SaveSense (HKCU\...\SaveSense) (Version: - SaveSense) <==== ATTENTION savinshoop (HKLM-x32\...\{70BD2558-27DA-8B02-02D0-D8704ECD2EDF}) (Version: - soaVianshopp) Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.) SopCast 2.0.4 (HKLM-x32\...\SopCast) (Version: 2.0.4 - SopCast.com) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.10.12 - Synaptics Incorporated) TuicTaCoupon (HKLM-x32\...\{E370F69F-ED3F-925F-31FC-14D1329A713B}) (Version: - TiicTaCoupOn) <==== ATTENTION Validity WBF DDK (HKLM\...\{3820B6F2-2F6B-4237-9EE9-F0AC9A2185BC}) (Version: 4.4.227.0 - Validity Sensors, Inc.) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Language Selector (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Yahoo Community Smartbar (HKLM-x32\...\{74451556-4E0B-4082-B74C-583B7EDC3679}) (Version: 10.219.66.15259 - Linkury Inc.) <==== ATTENTION Yahoo Community Smartbar Engine (HKCU\...\{628834ec-ce19-4fcf-b25d-cd83e8a06da6}) (Version: 10.219.66.15259 - Linkury Inc.) <==== ATTENTION YTD Video Downloader 4.1 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 4.1 - GreenTree Applications SRL) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 09-07-2014 01:08:29 Windows Update 19-07-2014 23:53:22 Geplanter Prüfpunkt 23-07-2014 00:07:41 Wiederherstellungsvorgang ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2012-07-26 07:26 - 2012-07-26 07:26 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {003EF650-C9AE-4055-AD00-8929CDED34C8} - System32\Tasks\dafdid => C:\Users\hülya\AppData\Local\dafdid.bat [2014-06-29] () Task: {0048A787-968B-460A-B88F-3C94AA2E04F9} - System32\Tasks\icdytn => C:\Users\hülya\AppData\Local\icdytn.bat [2014-06-29] () Task: {011A7F85-F0F5-44FA-BF08-83D979C6774C} - System32\Tasks\iavic => C:\Users\hülya\AppData\Local\iavic.bat [2014-06-29] () Task: {02286E30-4471-40D2-B0F8-7805321F58C3} - System32\Tasks\kbxmda => C:\Users\hülya\AppData\Local\kbxmda.bat [2014-06-29] () Task: {0364B950-85C5-481D-A829-9A628ADAAC30} - System32\Tasks\kfujeuqf => C:\Users\hülya\AppData\Local\kfujeuqf.bat [2014-06-29] () Task: {03EAD8AB-37A3-48F5-B2EA-881F55414425} - System32\Tasks\vdksa => C:\Users\hülya\AppData\Local\utjiwdc.bat [2014-06-29] () Task: {0637404D-B93A-4D9B-B2EA-D2A001FD8F65} - System32\Tasks\tymrgl => C:\Users\hülya\AppData\Local\tymrgl.bat [2014-06-29] () Task: {06D66712-6AE9-44BF-B623-B919BF4FB857} - System32\Tasks\whpxpqi => C:\Users\hülya\AppData\Local\whpxpqi.bat [2014-07-01] () Task: {0769D298-B0CB-43F2-8F04-90E3719CA1C3} - System32\Tasks\ligdqolj => C:\Users\hülya\AppData\Local\ligdqolj.bat [2014-06-30] () Task: {077A8194-DB04-438F-AC1C-4F99D8069009} - System32\Tasks\psuprudi => C:\Users\hülya\AppData\Local\psuprudi.bat [2014-06-29] () Task: {09E80BA2-B44A-4C4C-8BCD-EB22D146CA0C} - System32\Tasks\acceyau => C:\Users\hülya\AppData\Local\acceyau.bat [2014-06-29] () Task: {09FBED9F-814A-4D63-8782-B2DE7B1924B9} - System32\Tasks\lxdiu => C:\Users\hülya\AppData\Local\lxdiu.bat [2014-06-29] () Task: {0AE3EE25-8FCD-494C-B36F-9206C937D076} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2014-07-11] (Microsoft Corporation) Task: {0BDC01C3-BD15-4DA2-9AB4-DA4D05899A00} - System32\Tasks\bkdpjboa => C:\Users\hülya\AppData\Local\bkdpjboa.bat [2014-06-29] () Task: {0D05368A-9BAE-4B28-996F-678D1560C042} - System32\Tasks\ljwusx => C:\Users\hülya\AppData\Local\ljwusx.bat [2014-06-30] () Task: {0EE38C35-6E13-4ECE-ACA5-7CBD7E3262D6} - System32\Tasks\eewxpph => C:\Users\hülya\AppData\Local\eewxpph.bat [2014-06-29] () Task: {10527A4B-BB8E-4180-93C1-5AF92EDD1D0E} - System32\Tasks\jfbdsujm => C:\Users\hülya\AppData\Local\jfbdsujm.bat [2014-06-29] () Task: {129D30FF-9F48-473D-B1A2-8E1EB5F7118A} - System32\Tasks\vdsbqhwf => C:\Users\hülya\AppData\Local\vdsbqhwf.bat [2014-06-29] () Task: {1429E26B-169C-4471-A478-B63F2510AA18} - System32\Tasks\ajcohkcp => C:\Users\hülya\AppData\Local\ajcohkcp.bat [2014-06-29] () Task: {1446D01F-A922-4D20-AF6F-A43E61DCC404} - System32\Tasks\dulcs => C:\Users\hülya\AppData\Local\dulcs.bat [2014-06-30] () Task: {14DBB9C6-89A7-4FE3-A3D6-D95561F7C903} - System32\Tasks\fxacscu => C:\Users\hülya\AppData\Local\fxacscu.bat [2014-06-30] () Task: {1562FD9D-97A7-4913-AFE4-34EB081C2924} - System32\Tasks\ydoalwbt => C:\Users\hülya\AppData\Local\ydoalwbt.bat [2014-06-29] () Task: {16BBD895-FC3F-40B1-BA0A-C04007D2351B} - System32\Tasks\aguiubo => C:\Users\hülya\AppData\Local\aguiubo.bat [2014-06-30] () Task: {177BED97-AD25-4CE4-BCDA-11854471EF5E} - System32\Tasks\khepmjn => C:\Users\hülya\AppData\Local\khepmjn.bat [2014-06-29] () Task: {18246448-D9EA-47AF-B53A-844D9909849A} - System32\Tasks\rdwbfa => C:\Users\hülya\AppData\Local\rdwbfa.bat [2014-06-29] () Task: {18FA95AA-1FC1-419F-A229-AA8EE22C0AB2} - System32\Tasks\hbunicup => C:\Users\hülya\AppData\Local\hbunicup.bat [2014-06-29] () Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {1AECBED2-B931-4E17-8AB3-21D3F36CABD1} - System32\Tasks\gwwoohh => C:\Users\hülya\AppData\Local\gwwoohh.bat [2014-06-30] () Task: {1B9B9E7B-12F6-4310-A691-F2097514050E} - System32\Tasks\Microsoft\Windows\Setup\Pre-staged GDR Notification => C:\Windows\system32\NotificationUI.exe [2014-04-19] (Microsoft Corporation) Task: {1C78928A-EDB1-451B-B0C6-BFE0CCC14FEA} - System32\Tasks\cwtodhbp => C:\Users\hülya\AppData\Local\cwtodhbp.bat [2014-06-30] () Task: {1C91E375-4FEC-4256-A1BD-2F5553663358} - System32\Tasks\caebg => C:\Users\hülya\AppData\Local\caebg.bat [2014-06-30] () Task: {1D000CF2-84AF-4DC6-903B-4D2A4AED1FAE} - System32\Tasks\zlqcg => C:\Users\hülya\AppData\Local\zlqcg.bat [2014-06-30] () Task: {1E38087E-CAE4-4EE2-BF2B-87DE4F8A594E} - System32\Tasks\fsigct => C:\Users\hülya\AppData\Local\fsigct.bat [2014-06-30] () Task: {1E3C30C6-05E9-41C1-B0B7-262BE06949D2} - System32\Tasks\erawe => C:\Users\hülya\AppData\Local\erawe.bat [2014-06-30] () Task: {22CFDDA0-A38F-48E8-A6B4-E89AE13EC961} - System32\Tasks\jgjnrnq => C:\Users\hülya\AppData\Local\jgjnrnq.bat [2014-07-01] () Task: {2328EFA0-CA79-47CD-A546-45C815D6034B} - System32\Tasks\eqfcxnbw => C:\Users\hülya\AppData\Local\eqfcxnbw.bat [2014-07-01] () Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {2672E002-1FBE-4832-99F3-E16C3A8BFC52} - System32\Tasks\hztmgy => C:\Users\hülya\AppData\Local\hztmgy.bat [2014-06-29] () Task: {2A3AB0A9-A867-47C6-936C-9FCF75ADD932} - System32\Tasks\hajdc => C:\Users\hülya\AppData\Local\hajdc.bat [2014-06-29] () Task: {2AA7416D-00A6-4CD1-8E6C-68CA4ADC9042} - System32\Tasks\tsqpv => C:\Users\hülya\AppData\Local\tsqpv.bat [2014-06-30] () Task: {2CB3E91A-8BE6-46FF-BC60-50627B5B30C8} - System32\Tasks\koagcns => C:\Users\hülya\AppData\Local\koagcns.bat [2014-06-29] () Task: {2D2C2E52-8E0D-4114-91F2-5451D48BC145} - System32\Tasks\hqqbbcll => C:\Users\hülya\AppData\Local\hqqbbcll.bat [2014-06-30] () Task: {2DA9BFDD-2E89-4B84-8FCB-F5BB2CC9842C} - System32\Tasks\oqysbd => C:\Users\hülya\AppData\Local\oqysbd.bat [2014-06-29] () Task: {2F458A81-AD44-4EC6-B900-5EAF9A9CB104} - System32\Tasks\zfsdqf => C:\Users\hülya\AppData\Local\zfsdqf.bat [2014-06-29] () Task: {300F2C94-645A-4FCC-92F9-2D4722B44581} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company) Task: {31246EB7-5578-40B6-88C4-C6796D047DA7} - System32\Tasks\oqyaks => C:\Users\hülya\AppData\Local\oqyaks.bat [2014-06-29] () Task: {323DDFC5-858C-4D95-B78C-5B133C7985E0} - System32\Tasks\kfdavzwl => C:\Users\hülya\AppData\Local\kfdavzwl.bat [2014-06-30] () Task: {3285401B-0DBA-4D35-ACCE-1216D8D46497} - System32\Tasks\whqaqs => C:\Users\hülya\AppData\Local\whqaqs.bat [2014-06-29] () Task: {332DAA72-08ED-4B22-8D29-4FF924AF622C} - System32\Tasks\pakteow => C:\Users\hülya\AppData\Local\pakteow.bat [2014-06-30] () Task: {33FA76A7-C5E8-4A9D-982E-76C6316FE805} - System32\Tasks\wgwfihhq => C:\Users\hülya\AppData\Local\wgwfihhq.bat [2014-07-01] () Task: {34103223-28D0-449F-85F7-FA778B3BCF0E} - System32\Tasks\kotimqn => C:\Users\hülya\AppData\Local\kotimqn.bat [2014-06-29] () Task: {344C6CC8-C3D1-45D2-88A6-BE8FC5379C40} - System32\Tasks\fdcaqonm => C:\Users\hülya\AppData\Local\fdcaqonm.bat [2014-06-29] () Task: {352A36F1-47E1-4BE6-9FCB-834C149C2CA2} - System32\Tasks\SomotoUpdateCheckerAutoStart => C:\Users\hülya\AppData\Local\FilesFrog Update Checker\update_checker.exe [2013-10-17] (Somoto) <==== ATTENTION Task: {354F2D8D-A03A-420F-8F05-35B54AE92F9B} - System32\Tasks\ahubvcq => C:\Users\hülya\AppData\Local\ahubvcq.bat [2014-06-29] () Task: {35B00116-6481-44D4-BE07-FA4F958837A0} - System32\Tasks\awkfl => C:\Users\hülya\AppData\Local\awkfl.bat [2014-06-30] () Task: {39FBE809-DCB2-49D4-907A-85D693F7F309} - System32\Tasks\isnoa => C:\Users\hülya\AppData\Local\isnoa.bat [2014-06-29] () Task: {3B09D934-1BEE-4DE3-9796-F1B3A3D301B0} - System32\Tasks\SaveSense => C:\Users\hülya\AppData\Roaming\SaveSense\UpdateProc\UpdateTask.exe [2013-04-12] () <==== ATTENTION Task: {3B95F581-4764-4404-974C-6A4D62C8EA7B} - System32\Tasks\pjddy => C:\Users\hülya\AppData\Local\pjddy.bat [2014-06-29] () Task: {3D3A4589-F8E7-4B7C-942E-795B004EABDD} - System32\Tasks\vveett => C:\Users\hülya\AppData\Local\vveett.bat [2014-06-30] () Task: {3DA985C0-FBEE-438C-BE0B-71EF3CD897AD} - System32\Tasks\lcbpv => C:\Users\hülya\AppData\Local\lcbpv.bat [2014-06-29] () Task: {40099843-EEB1-4EA0-BD57-9C98F0DD436F} - System32\Tasks\vwgfvve => C:\Users\hülya\AppData\Local\vwgfvve.bat [2014-06-29] () Task: {400EFF63-816F-4F99-BEA1-738978338F9C} - System32\Tasks\mffummlk => C:\Users\hülya\AppData\Local\mffummlk.bat [2014-06-29] () Task: {41BB76F5-03EE-4FE2-B56F-18AF23B1F308} - System32\Tasks\lrweaflq => C:\Users\hülya\AppData\Local\lrweaflq.bat [2014-06-30] () Task: {439D71DF-96C7-40CE-A86D-140FEF179C3A} - System32\Tasks\vggvgguf => C:\Users\hülya\AppData\Local\vggvgguf.bat [2014-06-30] () Task: {44452859-3C3B-4370-B2F5-22CF11C0F2EF} - System32\Tasks\jdauqmhd => C:\Users\hülya\AppData\Local\jdauqmhd.bat [2014-06-29] () Task: {45DA2CAC-06F3-4F1F-9C57-B3BCBC805DA2} - System32\Tasks\fjdoh => C:\Users\hülya\AppData\Local\fjdoh.bat [2014-06-29] () Task: {465C09A5-B819-4F1F-AD9E-D33E0C85505D} - System32\Tasks\quejuej => C:\Users\hülya\AppData\Local\quejuej.bat [2014-06-29] () Task: {46F60C73-0018-4120-8188-B8101EFE0507} - System32\Tasks\rxbycq => C:\Users\hülya\AppData\Local\rxbycq.bat [2014-06-29] () Task: {47746299-1C98-4034-8722-1A48C2E79341} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-08] (CyberLink) Task: {48AB0022-7309-4679-BB24-2F803D2DA4F1} - System32\Tasks\ccbfv => C:\Users\hülya\AppData\Local\ccbfv.bat [2014-06-30] () Task: {49C497BA-182F-41D2-8CAE-216FDA93A569} - System32\Tasks\akcohzmg => C:\Users\hülya\AppData\Local\akcohzmg.bat [2014-06-29] () Task: {49F5BFAE-12BF-4887-9A55-AB75E522480C} - System32\Tasks\bocpdwd => C:\Users\hülya\AppData\Local\bocpdwd.bat [2014-06-29] () Task: {4D173E46-EEFB-4CAA-B130-4A13C026A37F} - System32\Tasks\tyfrx => C:\Users\hülya\AppData\Local\tyfrx.bat [2014-06-30] () Task: {4D8CBC81-3508-48B2-A844-90F3AC651F38} - System32\Tasks\khtpt => C:\Users\hülya\AppData\Local\khtpt.bat [2014-06-30] () Task: {50267BFA-CB71-4A7F-BBF8-CF4A11D92EA8} - System32\Tasks\tbfedip => C:\Users\hülya\AppData\Local\tbfedip.bat [2014-06-30] () Task: {5051F7B3-ABB0-41CF-BC9B-4432CF75EF8D} - System32\Tasks\beyuxlg => C:\Users\hülya\AppData\Local\beyuxlg.bat [2014-06-29] () Task: {5211772F-5E86-4242-9DA7-566B28C6598D} - System32\Tasks\Rocket Updater => C:\Users\hülya\AppData\Roaming\RocketUpdater\UpdateProc\UpdateTask.exe [2013-04-12] () Task: {533EAB30-0B6E-41DE-BE5C-34F1968787B1} - System32\Tasks\iddytni => C:\Users\hülya\AppData\Local\iddytni.bat [2014-06-29] () Task: {54C6A6D9-0130-4BD1-96FA-093CCF36262E} - System32\Tasks\gufetd => C:\Users\hülya\AppData\Local\gufetd.bat [2014-06-30] () Task: {5593D5EA-198A-4368-8759-7021E190032B} - System32\Tasks\vmddsj => C:\Users\hülya\AppData\Local\vmddsj.bat [2014-06-29] () Task: {598CBF17-CAA1-4966-8AE4-389B8482EFA0} - System32\Tasks\cfdfey => C:\Users\hülya\AppData\Local\cfdfey.bat [2014-06-30] () Task: {5A26F67A-BC7C-43DF-98D0-3040C2C7FD6E} - System32\Tasks\acxkgi => C:\Users\hülya\AppData\Local\acxkgi.bat [2014-06-30] () Task: {5ADA0060-A33F-4DB3-861D-7D4D0DE3F291} - System32\Tasks\nghxp => C:\Users\hülya\AppData\Local\nghxp.bat [2014-06-29] () Task: {5B0D54A1-C7F8-4AE5-B4F5-06482CE330F9} - System32\Tasks\edeaa => C:\Users\hülya\AppData\Local\edeaa.bat [2014-06-29] () Task: {5B5045A8-54CA-4811-BBA8-98C4DD1359D5} - System32\Tasks\bxthdr => C:\Users\hülya\AppData\Local\bxthdr.bat [2014-06-30] () Task: {5B82A7BD-4815-4E3C-868B-916B3FD4C6DE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2014-03-21] (Hewlett-Packard) Task: {5B94D6D9-CE28-4611-8E2A-56D6342EB06C} - System32\Tasks\refju => C:\Users\hülya\AppData\Local\refju.bat [2014-06-29] () Task: {5CA89DF9-293E-45DE-9FC5-6370856853D6} - System32\Tasks\erawlaq => C:\Users\hülya\AppData\Local\erawlaq.bat [2014-06-29] () Task: {5EA5D5C7-DAF0-4EB2-96CA-E218ADC73286} - System32\Tasks\xaqscn => C:\Users\hülya\AppData\Local\xaqscn.bat [2014-06-29] () Task: {608D2455-F638-49E5-BFC8-216EB05FFD49} - System32\Tasks\fepha => C:\Users\hülya\AppData\Local\fepha.bat [2014-06-29] () Task: {60BBA233-9176-47DB-A765-449030913BC3} - System32\Tasks\vdksahw => C:\Users\hülya\AppData\Local\vdksahw.bat [2014-06-29] () Task: {620AE4F4-3D0C-4964-BE5B-BE9623917F44} - System32\Tasks\xizdef => C:\Users\hülya\AppData\Local\xizdef.bat [2014-06-29] () Task: {641B4E72-E5DF-478A-9EF4-A8C55FAC8DA8} - System32\Tasks\cokxm => C:\Users\hülya\AppData\Local\cokxm.bat [2014-06-29] () Task: {6461850E-562D-4D74-ABB8-52C278DF4932} - System32\Tasks\ebfol => C:\Users\hülya\AppData\Local\ebfol.bat [2014-06-30] () Task: {652F6D13-3A2C-456D-AA42-432E1C123848} - System32\Tasks\ljivt => C:\Users\hülya\AppData\Local\ljivt.bat [2014-06-30] () Task: {65D249B5-790E-4809-9A23-E0E031A76C6E} - System32\Tasks\iauhbv => C:\Users\hülya\AppData\Local\iauhbv.bat [2014-06-29] () Task: {67DD9472-CD9F-4B05-9A65-91B026C1E00F} - System32\Tasks\kwtxbhko => C:\Users\hülya\AppData\Local\kwtxbhko.bat [2014-06-29] () Task: {689D6BC5-814F-4873-AE60-376FA802D6C0} - System32\Tasks\prtvey => C:\Users\hülya\AppData\Local\prtvey.bat [2014-06-29] () Task: {68D478EC-2255-4ABD-907E-7DA1DDFD3BF6} - System32\Tasks\rdpsgibx => C:\Users\hülya\AppData\Local\rdpsgibx.bat [2014-06-29] () Task: {6A523003-2B95-4734-B337-00E53BB5F3DF} - System32\Tasks\Desk 365 RunAsStdUser => C:\Program Files (x86)\Desk 365\desk365.exe [2014-03-02] (337 Technology Limited.) <==== ATTENTION Task: {6B1CE9E7-DC6B-4CBD-9539-372749998F13} - System32\Tasks\fkvoal => C:\Users\hülya\AppData\Local\fkvoal.bat [2014-06-29] () Task: {6BEF5BBD-0389-44A0-A137-3BB25148AE3D} - System32\Tasks\auaco => C:\Users\hülya\AppData\Local\auaco.bat [2014-06-29] () Task: {6E66F62F-887B-4D08-8634-14C152C364F5} - System32\Tasks\lqgmrpu => C:\Users\hülya\AppData\Local\lqgmrpu.bat [2014-06-29] () Task: {6F60DFE7-72EA-43E6-8512-EA836BDB9A5C} - System32\Tasks\yldjcn => C:\Users\hülya\AppData\Local\yldjcn.bat [2014-06-30] () Task: {70FD000E-56DB-4600-8B32-16C44906BBE6} - System32\Tasks\kheaxbbv => C:\Users\hülya\AppData\Local\kheaxbbv.bat [2014-07-01] () Task: {71873A24-1BA2-4757-866B-E437FF2D9101} - System32\Tasks\aocpc => C:\Users\hülya\AppData\Local\aocpc.bat [2014-06-29] () Task: {71A4E787-2FD1-420A-8D77-752F6FAF1433} - System32\Tasks\lcbpfk => C:\Users\hülya\AppData\Local\lcbpfk.bat [2014-06-30] () Task: {71E79AB4-5716-4AD5-935B-7FA43345FF74} - System32\Tasks\thlrdkxu => C:\Users\hülya\AppData\Local\thlrdkxu.bat [2014-06-29] () Task: {720331C6-F046-47B8-9C1A-0995E2298293} - System32\Tasks\nfnnu => C:\Users\hülya\AppData\Local\nfnnu.bat [2014-06-30] () Task: {72E8992A-8EBB-458F-BD16-86E3D74296EF} - System32\Tasks\ruxjmqcg => C:\Users\hülya\AppData\Local\ruxjmqcg.bat [2014-06-29] () Task: {754469BD-4901-4721-AF23-DA6CABA4F5F2} - System32\Tasks\noohhij => C:\Users\hülya\AppData\Local\noohhij.bat [2014-06-30] () Task: {75E33068-8412-4DDA-BE8B-2C85664E47C1} - System32\Tasks\xrunfjc => C:\Users\hülya\AppData\Local\xrunfjc.bat [2014-06-29] () Task: {75E5ED00-EEB6-4281-99B9-C6DCC57FA701} - System32\Tasks\aocpcqer => C:\Users\hülya\AppData\Local\aocpcqer.bat [2014-06-29] () Task: {77719AA2-7EBA-4F18-9D4B-026FDDE7ACF1} - System32\Tasks\ruxcmqt => C:\Users\hülya\AppData\Local\ruxcmqt.bat [2014-06-30] () Task: {78649AB2-FFDD-445F-AFB2-2FE019C9AFAB} - System32\Tasks\fgnngg => C:\Users\hülya\AppData\Local\fgnngg.bat [2014-06-30] () Task: {78EE32A3-ADA0-444C-A4C9-775F688F4CA0} - System32\Tasks\wfoefpa => C:\Users\hülya\AppData\Local\wfoefpa.bat [2014-06-30] () Task: {79B98B05-AA76-4ABF-879D-EB9E5A9B23B0} - System32\Tasks\trxvdah => C:\Users\hülya\AppData\Local\trxvdah.bat [2014-06-29] () Task: {7ACE8D35-B669-4709-B111-DE0DA6EEA840} - System32\Tasks\zuhtgb => C:\Users\hülya\AppData\Local\zuhtgb.bat [2014-06-29] () Task: {7AD3995D-E230-4F42-884A-C437DA0A05A4} - System32\Tasks\thbbobwc => C:\Users\hülya\AppData\Local\thbbobwc.bat [2014-06-29] () Task: {7B0FF46C-493F-4460-B1FD-8E87D9B01048} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-10] (Google Inc.) Task: {7BFBBD90-86CD-4913-AD37-C108A8484A8D} - System32\Tasks\wxxabbdl => C:\Users\hülya\AppData\Local\wxxabbdl.bat [2014-06-30] () Task: {7C1CE95D-69B2-4AF3-945D-9DBE43255C89} - System32\Tasks\reiba => C:\Users\hülya\AppData\Local\reiba.bat [2014-06-29] () Task: {7D8A7BD2-6688-4E31-B4A2-C785F0EA0B94} - System32\Tasks\kifbcee => C:\Users\hülya\AppData\Local\kifbcee.bat [2014-06-29] () Task: {7E1BEBF9-737C-4F94-B86E-D6EF4033AEA5} - System32\Tasks\dngoeo => C:\Users\hülya\AppData\Local\dngoeo.bat [2014-06-29] () Task: {800ACEB1-5D47-43E7-8357-4007D13BC60E} - System32\Tasks\sfzekgc => C:\Users\hülya\AppData\Local\sfzekgc.bat [2014-06-29] () Task: {8058F0C1-FC30-45F0-8AD7-E4DA497F8404} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-10] (Google Inc.) Task: {8172037B-A046-4D16-89F4-5F951A66BB72} - System32\Tasks\aaunbtn => C:\Users\hülya\AppData\Local\aaunbtn.bat [2014-06-29] () Task: {824B71C5-D519-49E6-A71A-46EFB2B8BA9D} - System32\Tasks\ahubocp => C:\Users\hülya\AppData\Local\ahubocp.bat [2014-06-29] () Task: {838900BC-2D5D-4ADE-9B6F-ECD03BB60242} - System32\Tasks\ghpaijjd => C:\Users\hülya\AppData\Local\ghpaijjd.bat [2014-06-29] () Task: {861E4BC1-4DA2-443A-A0D2-1634B879BA99} - System32\Tasks\qmgcmikg => C:\Users\hülya\AppData\Local\qmgcmikg.bat [2014-06-30] () Task: {8946DDA9-4B3E-4547-8B6A-7C5BA99CB269} - System32\Tasks\ovfemt => C:\Users\hülya\AppData\Local\ovfemt.bat [2014-06-30] () Task: {8BCE2817-AF58-4C19-B43E-4DE057B0A6DE} - System32\Tasks\lkifm => C:\Users\hülya\AppData\Local\lkifm.bat [2014-06-29] () Task: {8E1497A2-7437-4852-81F9-D3B631490EDC} - System32\Tasks\ztyse => C:\Users\hülya\AppData\Local\ztyse.bat [2014-06-30] () Task: {8E6B65F0-B741-41A8-9C9B-1E3CEAB7DDB1} - System32\Tasks\tbglafes => C:\Users\hülya\AppData\Local\tbglafes.bat [2014-06-29] () Task: {8E79F07B-95CD-4645-942B-C3AE2D12E390} - System32\Tasks\piqzluev => C:\Users\hülya\AppData\Local\piqzluev.bat [2014-06-29] () Task: {8F169992-2BE0-4159-A0C6-7143D3E8D7D8} - System32\Tasks\fvngogw => C:\Users\hülya\AppData\Local\fvngogw.bat [2014-06-30] () Task: {8FC0A992-B71F-43F1-B90F-7FA86194027D} - System32\Tasks\aavaouj => C:\Users\hülya\AppData\Local\aavaouj.bat [2014-06-29] () Task: {926F1ACC-A8B5-41F5-A1F2-26A90172DF4B} - System32\Tasks\jehlnce => C:\Users\hülya\AppData\Local\jehlnce.bat [2014-06-30] () Task: {9349611F-B0E9-4DD6-B0C7-842A3486B928} - System32\Tasks\ajuhbdv => C:\Users\hülya\AppData\Local\ajuhbdv.bat [2014-06-29] () Task: {963968DC-D863-4CB2-BB6C-A7D127E8EDBE} - System32\Tasks\ccafn => C:\Users\hülya\AppData\Local\ccafn.bat [2014-06-29] () Task: {988EC6A3-A1C2-4904-964D-620FE01BF65E} - System32\Tasks\ifauytq => C:\Users\hülya\AppData\Local\ifauytq.bat [2014-06-29] () Task: {998331A9-9B82-42D4-9CA5-3130E6E17765} - System32\Tasks\ijlmopq => C:\Users\hülya\AppData\Local\ijlmopq.bat [2014-06-30] () Task: {99B953C5-8F47-4F20-AF56-398C4EDA0FF2} - System32\Tasks\rvaeitxc => C:\Users\hülya\AppData\Local\rvaeitxc.bat [2014-06-29] () Task: {9A50B2C4-399B-46E0-91D2-8EDCDF29B8AF} - System32\Tasks\numsabiy => C:\Users\hülya\AppData\Local\numsabiy.bat [2014-06-29] () Task: {9A5ED1F3-0FAA-47B5-8B83-C090F372D7DE} - System32\Tasks\oopqhiaa => C:\Users\hülya\AppData\Local\oopqhiaa.bat [2014-06-30] () Task: {9AB2D5C9-203A-4B74-9A05-7BCC813D73F2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company) Task: {9AB5F8F0-D027-42AE-B50D-1DB2F2038AD4} - System32\Tasks\ilvab => C:\Users\hülya\AppData\Local\ilvab.bat [2014-06-29] () Task: {9B656019-8717-4F50-B307-FFD0E9EDFC59} - System32\Tasks\efqidtef => C:\Users\hülya\AppData\Local\efqidtef.bat [2014-06-29] () Task: {9D9A9DCE-F3E0-4E2E-8AFD-37EB13AC3109} - System32\Tasks\cxuqfu => C:\Users\hülya\AppData\Local\cxuqfu.bat [2014-06-29] () Task: {9DAB3329-4B8F-4E3E-8440-A4ACB03FE547} - System32\Tasks\cnaupdx => C:\Users\hülya\AppData\Local\cnaupdx.bat [2014-06-29] () Task: {A28DBF92-7557-489A-B963-6E03825A71A1} - System32\Tasks\gffffee => C:\Users\hülya\AppData\Local\gffffee.bat [2014-06-29] () Task: {A2C2E07E-BB93-4129-AE38-461AECF0E24D} - System32\Tasks\ubovd => C:\Users\hülya\AppData\Local\ubovd.bat [2014-06-29] () Task: {A3280C68-2EEC-4998-B3CE-2E02F7F6C3E9} - System32\Tasks\xgxiyqsd => C:\Users\hülya\AppData\Local\xgxiyqsd.bat [2014-07-01] () Task: {A4869F99-353C-4606-89A1-C223F6A54402} - System32\Tasks\nveck => C:\Users\hülya\AppData\Local\nveck.bat [2014-06-30] () Task: {A53A4869-6F74-4B7D-87B2-22EB4AFDF8E8} - System32\Tasks\ykvbmx => C:\Users\hülya\AppData\Local\ykvbmx.bat [2014-06-29] () Task: {A5944D10-25F0-464F-A68B-02953F7B9158} - System32\Tasks\eudbraxo => C:\Users\hülya\AppData\Local\eudbraxo.bat [2014-06-29] () Task: {A5D91D02-D5A1-4C59-9F92-1699AE788D25} - System32\Tasks\vveeettb => C:\Users\hülya\AppData\Local\vveeettb.bat [2014-06-29] () Task: {A606AD13-2436-440B-943D-F1AAABEDB934} - System32\Tasks\eulkcjbf => C:\Users\hülya\AppData\Local\eulkcjbf.bat [2014-06-30] () Task: {A67C9463-685A-4967-A41E-B3148CD6A6BC} - System32\Tasks\daechca => C:\Users\hülya\AppData\Local\daechca.bat [2014-06-29] () Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {A78C741A-A1E2-4789-9CDE-09B601CA7046} - System32\Tasks\qlgqlgjm => C:\Users\hülya\AppData\Local\qlgqlgjm.bat [2014-06-29] () Task: {A7E36B8D-396C-4483-A569-463DC93C724D} - System32\Tasks\aiwkxfb => C:\Users\hülya\AppData\Local\aiwkxfb.bat [2014-06-30] () Task: {A8B6E5A5-879A-4E85-A312-8458AE982583} - System32\Tasks\icreymhc => C:\Users\hülya\AppData\Local\icreymhc.bat [2014-06-29] () Task: {A8EE6C19-F511-4C55-8A38-02D4F813557A} - System32\Tasks\qnifi => C:\Users\hülya\AppData\Local\qnifi.bat [2014-06-29] () Task: {ACD534AC-70D7-4FB2-8DAF-74E987E6B4BA} - System32\Tasks\tbeerxvb => C:\Users\hülya\AppData\Local\tbeerxvb.bat [2014-06-30] () Task: {AEB92FBA-FC77-4DC6-BEDC-DC2F184B6E53} - System32\Tasks\gphqpz => C:\Users\hülya\AppData\Local\gphqpz.bat [2014-06-29] () Task: {B12D852B-B7BD-4568-9A6E-5ED8C309E513} - System32\Tasks\lqntf => C:\Users\hülya\AppData\Local\lqntf.bat [2014-06-30] () Task: {B20AB0DD-F8D5-42A5-89B6-7CD6FEBE6FAF} - System32\Tasks\kgjoch => C:\Users\hülya\AppData\Local\kgjoch.bat [2014-06-29] () Task: {B3B787E3-05EA-4AD7-8B5A-89B8C7FA9964} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company) Task: {B5938A3A-F2F9-475E-93A7-1339BAFF886F} - System32\Tasks\sxdjht => C:\Users\hülya\AppData\Local\sxdjht.bat [2014-06-30] () Task: {B739F915-5653-4652-93A5-EF7D3D56624B} - System32\Tasks\vlmck => C:\Users\hülya\AppData\Local\vlmck.bat [2014-06-29] () Task: {B7991E7E-2E88-4323-8C28-3C79A94E8C58} - System32\Tasks\hwooghw => C:\Users\hülya\AppData\Local\hwooghw.bat [2014-06-29] () Task: {B906D8DE-FC0D-4F3D-80D7-287DD24F2397} - System32\Tasks\quwaeg => C:\Users\hülya\AppData\Local\quwaeg.bat [2014-06-30] () Task: {BB5B613D-6E5B-4A57-B329-99D4C1F0A432} - System32\Tasks\cfcfnrnj => C:\Users\hülya\AppData\Local\cfcfnrnj.bat [2014-06-30] () Task: {BC11C765-DABF-44B7-9176-DDEE82F271CA} - System32\Tasks\ubpckyn => C:\Users\hülya\AppData\Local\ubpckyn.bat [2014-06-30] () Task: {BC5F0EB1-874B-4EB5-A0ED-E07C6F5540F1} - System32\Tasks\hcdeabo => C:\Users\hülya\AppData\Local\hcdeabo.bat [2014-06-30] () Task: {BD9E1970-D1A5-4199-9F5D-E30E1B532365} - System32\Tasks\xiscnx => C:\Users\hülya\AppData\Local\xiscnx.bat [2014-06-29] () Task: {BE6402BD-4AFF-4B85-967C-5F46259D9EEF} - System32\Tasks\tbgmtf => C:\Users\hülya\AppData\Local\tbgmtf.bat [2014-06-29] () Task: {BE6D85C9-71F8-47D1-8A60-1181E70DD79E} - System32\Tasks\izuvpicd => C:\Users\hülya\AppData\Local\izuvpicd.bat [2014-06-30] () Task: {BF95E05D-4546-4260-98E9-CA6EBA502FAC} - System32\Tasks\trwucgl => C:\Users\hülya\AppData\Local\trwucgl.bat [2014-06-30] () Task: {C024E3F3-C6A4-443B-9B0A-672AC60F19D4} - System32\Tasks\abpicxr => C:\Users\hülya\AppData\Local\abpicxr.bat [2014-07-01] () Task: {C0A4DF78-8E7A-40D2-83B8-7893C0CDBE69} - System32\Tasks\aaoibwj => C:\Users\hülya\AppData\Local\aaoibwj.bat [2014-06-29] () Task: {C290259F-7C92-4D66-BEF8-9FE0009E8954} - System32\Tasks\dynshwc => C:\Users\hülya\AppData\Local\dynshwc.bat [2014-07-01] () Task: {C45574D8-9670-430E-9E13-43206805F7C4} - System32\Tasks\numttcsa => C:\Users\hülya\AppData\Local\numttcsa.bat [2014-06-29] () Task: {C47B8539-5F62-4D35-A61F-295F0B217258} - System32\Tasks\daetq => C:\Users\hülya\AppData\Local\daetq.bat [2014-06-29] () Task: {C5940CD4-FDE8-4B8E-9A71-53E8DC0FC454} - System32\Tasks\qdfrefk => C:\Users\hülya\AppData\Local\qdfrefk.bat [2014-06-29] () Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {C7B7DCEF-F9C4-4BF6-92AD-3CE332BF24D8} - System32\Tasks\nooffg => C:\Users\hülya\AppData\Local\nooffg.bat [2014-06-29] () Task: {C9650B7D-DCE4-41C1-AFDE-FD06AFE68E1D} - System32\Tasks\SaveSenseLiveUpdateTaskMachineCore => C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe [2014-07-02] (SaveSense) <==== ATTENTION Task: {C9A895FD-1526-442B-BC8A-D445E17CA424} - System32\Tasks\kotxmqu => C:\Users\hülya\AppData\Local\kotxmqu.bat [2014-06-29] () Task: {CAD26C48-B6FE-4D24-9EE4-926880691377} - System32\Tasks\gofohwhp => C:\Users\hülya\AppData\Local\gofohwhp.bat [2014-06-29] () Task: {CC1E4D63-C63F-46F1-B6F4-E0D140BF649A} - System32\Tasks\kpmrotfu => C:\Users\hülya\AppData\Local\kpmrotfu.bat [2014-06-29] () Task: {CC48EE6F-CB41-4875-A85C-F9F8D32A9664} - System32\Tasks\ekhnlrhf => C:\Users\hülya\AppData\Local\ekhnlrhf.bat [2014-06-30] () Task: {CC9B1D1D-E51E-4C15-B8F2-8EB093517118} - System32\Tasks\mcbxwcs => C:\Users\hülya\AppData\Local\mcbxwcs.bat [2014-06-30] () Task: {CCD90FFF-114C-41F6-B82B-FBE83AE7D42C} - System32\Tasks\tqwtbw => C:\Users\hülya\AppData\Local\tqwtbw.bat [2014-06-30] () Task: {CD147F20-1A58-47A8-8A1B-3B5AED5571F7} - System32\Tasks\spuhd => C:\Users\hülya\AppData\Local\spuhd.bat [2014-06-30] () Task: {D15CC7EE-C8A2-470B-B325-84F205286FDB} - System32\Tasks\icwxl => C:\Users\hülya\AppData\Local\icwxl.bat [2014-06-29] () Task: {D1697C7E-8329-4A59-993F-9F34DAA8F64D} - System32\Tasks\quxbfilv => C:\Users\hülya\AppData\Local\quxbfilv.bat [2014-06-29] () Task: {D17A1BB3-25FC-43AF-A624-0A7FBA0C1D35} - System32\Tasks\jfjnqm => C:\Users\hülya\AppData\Local\jfjnqm.bat [2014-06-29] () Task: {D514C033-7349-4C69-A100-528356B5623F} - System32\Tasks\egqajsk => C:\Users\hülya\AppData\Local\egqajsk.bat [2014-06-29] () Task: {D5D84B94-6D3D-42A7-B15C-8ED8AE7228B5} - System32\Tasks\rvadoswa => C:\Users\hülya\AppData\Local\rvadoswa.bat [2014-06-29] () Task: {D608B439-DE2B-475F-A401-58BD7BDEE5A0} - System32\Tasks\rwimaepu => C:\Users\hülya\AppData\Local\rwimaepu.bat [2014-06-29] () Task: {D72D2678-9F94-4FB6-BD97-107A06FBC06F} - System32\Tasks\gfiaa => C:\Users\hülya\AppData\Local\gfiaa.bat [2014-06-29] () Task: {D8F85268-9F81-46B5-B111-92CBF3E99AC2} - System32\Tasks\prsudyb => C:\Users\hülya\AppData\Local\prsudyb.bat [2014-06-29] () Task: {D95314ED-9258-4DE5-8683-30EDA7B1220D} - System32\Tasks\lcbpg => C:\Users\hülya\AppData\Local\lcbpg.bat [2014-07-01] () Task: {D98236A6-4C09-4685-921C-0216D3F81C70} - System32\Tasks\ekaix => C:\Users\hülya\AppData\Local\ekaix.bat [2014-06-30] () Task: {D9C24D3D-1E96-4149-976B-C8A8E5671F56} - System32\Tasks\giqss => C:\Users\hülya\AppData\Local\giqss.bat [2014-06-29] () Task: {DA6F7414-D29C-49E6-AD75-B4872865D07A} - System32\Tasks\Advanced System Protector_startup => C:\Program Files (x86)\Advanced System Protector\AdvancedSystemProtector.exe <==== ATTENTION Task: {DA989872-1AF9-4DB3-A7CF-4E6DDC179D24} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2012-07-27] (CyberLink) Task: {DAB84BA7-5B7B-473C-B15C-0F94AB0364BD} - System32\Tasks\dafwmja => C:\Users\hülya\AppData\Local\dafwmja.bat [2014-06-29] () Task: {DB5A7EA2-30C0-42F4-9D49-5288BB2D4964} - System32\Tasks\lbgcbx => C:\Users\hülya\AppData\Local\lbgcbx.bat [2014-06-30] () Task: {DFAE457B-126E-4477-8D22-6079C0E1E198} - System32\Tasks\gaiccbvd => C:\Users\hülya\AppData\Local\gaiccbvd.bat [2014-06-29] () Task: {E174B46C-B997-4207-B944-B2ECA9BEBA4E} - System32\Tasks\wnfne => C:\Users\hülya\AppData\Local\wnfne.bat [2014-06-29] () Task: {E2851220-AE28-4D68-BDD6-26CD4D8F8164} - System32\Tasks\fwhaxi => C:\Users\hülya\AppData\Local\fwhaxi.bat [2014-06-30] () Task: {E4477F93-AA4C-47FE-983A-13CD8F94D6EC} - System32\Tasks\hysdwpba => C:\Users\hülya\AppData\Local\hysdwpba.bat [2014-06-29] () Task: {E5819868-D1CD-4AAE-82C9-A76ABBE34F1D} - System32\Tasks\lbffbzeu => C:\Users\hülya\AppData\Local\lbffbzeu.bat [2014-06-29] () Task: {E84AA2A9-9FEA-4956-9A62-6018F2C14BF1} - System32\Tasks\jvrui => C:\Users\hülya\AppData\Local\jvrui.bat [2014-06-29] () Task: {E876E42D-D979-44EE-96B9-C390CAF41CA8} - System32\Tasks\jdymi => C:\Users\hülya\AppData\Local\jdymi.bat [2014-06-30] () Task: {EAF211DF-A62D-4E53-A997-01464CFAB412} - System32\Tasks\ulccqgwd => C:\Users\hülya\AppData\Local\ulccqgwd.bat [2014-06-30] () Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {ECB474BA-F4BD-461C-8E56-1F6EDFAC2F77} - System32\Tasks\ukbhckaa => C:\Users\hülya\AppData\Local\ukbhckaa.bat [2014-06-29] () Task: {EDB7FE91-125B-4011-AF13-55D430E81AB0} - System32\Tasks\gohgohh => C:\Users\hülya\AppData\Local\gohgohh.bat [2014-06-29] () Task: {EE28C521-6703-468E-A49C-2B80220A57E3} - System32\Tasks\xdmos => C:\Users\hülya\AppData\Local\xdmos.bat [2014-06-29] () Task: {F021A13B-3484-4959-81B4-AB215DA86CF6} - System32\Tasks\wgwgw => C:\Users\hülya\AppData\Local\wgwgw.bat [2014-06-29] () Task: {F0CE2F94-3C90-4951-8CC1-874C225E747B} - System32\Tasks\SaveSenseLiveUpdateTaskMachineUA => C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe [2014-07-02] (SaveSense) <==== ATTENTION Task: {F1480B1B-BF14-470F-AE3B-5E8BCBF8247B} - System32\Tasks\fqcdnfrr => C:\Users\hülya\AppData\Local\fqcdnfrr.bat [2014-06-29] () Task: {F464C78B-BD13-471C-AC49-A0B54E800656} - System32\Tasks\reibflg => C:\Users\hülya\AppData\Local\reibflg.bat [2014-06-29] () Task: {F4BE6778-4098-4722-B633-B180C30DE00F} - System32\Tasks\qcuecu => C:\Users\hülya\AppData\Local\qcuecu.bat [2014-06-30] () Task: {F63CCB61-2DE5-41B2-9C6B-E922B3F8D885} - System32\Tasks\xdmoi => C:\Users\hülya\AppData\Local\xdmoi.bat [2014-06-30] () Task: {F67F34D6-3919-4295-8F60-55F8AA4C2429} - System32\Tasks\bdadk => C:\Users\hülya\AppData\Local\bdadk.bat [2014-06-30] () Task: {F6D10048-3DA6-4B44-B787-1E155421C58C} - System32\Tasks\dulctdar => C:\Users\hülya\AppData\Local\dulctdar.bat [2014-06-29] () Task: {F7889F20-093C-4080-A42D-7EC64D5188D6} - System32\Tasks\eddzr => C:\Users\hülya\AppData\Local\eddzr.bat [2014-06-29] () Task: {F8F4A4C1-A5FB-4788-B6F6-FFF191DFB75A} - System32\Tasks\rwbfruh => C:\Users\hülya\AppData\Local\rwbfruh.bat [2014-06-29] () Task: {F980B98C-2411-437F-B696-D94A7908B4CB} - System32\Tasks\idxsnplf => C:\Users\hülya\AppData\Local\idxsnplf.bat [2014-06-29] () Task: {FB156CEB-3C7B-4431-8D98-25DBF09DF1B5} - System32\Tasks\pxrbjdlu => C:\Users\hülya\AppData\Local\pxrbjdlu.bat [2014-06-29] () Task: {FC095D12-63A0-4BEE-8D1B-09D73CE6BE26} - System32\Tasks\cpdlguc => C:\Users\hülya\AppData\Local\cpdlguc.bat [2014-06-29] () Task: {FE5899FA-8A60-445F-8303-B4D11A39D522} - System32\Tasks\gxqja => C:\Users\hülya\AppData\Local\gxqja.bat [2014-06-29] () Task: {FE9ADDA0-AC34-4EF3-84F0-D3A05F8C3927} - System32\Tasks\eblbzi => C:\Users\hülya\AppData\Local\eblbzi.bat [2014-06-29] () Task: {FF52B84E-E9B5-4257-B6C4-867F279D4C9F} - System32\Tasks\beiuye => C:\Users\hülya\AppData\Local\beiuye.bat [2014-06-30] () Task: C:\Windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: C:\Windows\Tasks\APSnotifierPP2.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: C:\Windows\Tasks\APSnotifierPP3.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3460895242-2686779407-2708491527-1002Core.job => C:\Users\hülya\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\HPCeeScheduleForhülya.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: C:\Windows\Tasks\Rocket Updater.job => C:\Users\HLYA~1\AppData\Roaming\ROCKET~1\UPDATE~1\UPDATE~1.EXE Task: C:\Windows\Tasks\SaveSense.job => C:\Users\HLYA~1\AppData\Roaming\SAVESE~1\UPDATE~1\UPDATE~1.EXE Task: C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineCore.job => C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe <==== ATTENTION Task: C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineUA.job => C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe <==== ATTENTION ==================== Loaded Modules (whitelisted) ============= 2014-05-18 14:26 - 2014-07-03 16:38 - 00665296 _____ () C:\Program Files (x86)\Movies Toolbar\SafetyNut\x64\safetycrt.dll 2012-07-18 07:55 - 2012-07-18 07:55 - 00028160 _____ () C:\Windows\system32\valWBFPolicyService.exe 2012-08-10 01:36 - 2012-08-10 01:36 - 04073320 _____ () C:\Program Files (x86)\HP SimplePass\IEWebSiteLogon.exe 2012-09-25 10:52 - 2012-07-28 02:31 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2014-02-18 15:38 - 2014-02-18 15:38 - 00012288 _____ () C:\Program Files (x86)\MyPC Backup\GetText.dll 2014-02-18 15:32 - 2014-02-18 15:32 - 01102336 _____ () C:\Program Files (x86)\MyPC Backup\x64\System.Data.SQLite.dll 2014-05-18 14:26 - 2014-07-03 16:38 - 00489680 _____ () C:\Program Files (x86)\Movies Toolbar\SafetyNut\safetycrt.dll 2014-03-02 19:42 - 2014-03-02 19:42 - 00186496 _____ () c:\Program Files (x86)\Optimizer Pro\OptProCrashSvc.dll 2014-03-02 19:42 - 2014-03-02 19:42 - 02961368 _____ () c:\Program Files (x86)\Optimizer Pro\OptProCrash.dll 2013-06-17 13:35 - 2013-06-17 13:35 - 00478400 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\dblite.dll 2013-05-08 15:52 - 2013-05-08 15:52 - 01270464 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\kpcengine.2.3.dll 2014-05-18 14:26 - 2014-07-03 16:38 - 00019664 _____ () C:\Program Files (x86)\Movies Toolbar\SafetyNut\safetyldr.dll 2012-08-10 01:36 - 2012-08-10 01:36 - 00018792 _____ () C:\Program Files (x86)\HP SimplePass\DownloadManager.dll 2012-09-25 11:16 - 2012-06-08 05:34 - 00627216 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll 2012-06-08 11:34 - 2012-06-08 11:34 - 00016400 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll 2014-02-21 14:12 - 2014-02-21 14:12 - 00017920 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\PSIClient\84687ccf62e0c74eca063ab0386f530f\PSIClient.ni.dll 2012-09-25 10:51 - 2012-06-25 20:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2014-06-18 19:36 - 2014-06-05 15:58 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\libglesv2.dll 2014-06-18 19:36 - 2014-06-05 15:58 - 00126280 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\libegl.dll 2014-06-18 19:36 - 2014-06-05 15:58 - 04217672 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll 2014-06-18 19:36 - 2014-06-05 15:58 - 00414536 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll 2014-06-18 19:36 - 2014-06-05 15:58 - 01732424 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ffmpegsumo.dll 2014-07-12 13:20 - 2014-07-08 08:18 - 14663856 _____ () C:\Users\hülya\AppData\Local\Google\Chrome\User Data\PepperFlash\14.0.0.145\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\ProgramData\Temp:223BB3A1 ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) HKCU\...\StartupApproved\Run: => "Facebook Update" HKCU\...\StartupApproved\Run: => "Skype" HKCU\...\StartupApproved\Run: => "Optimizer Pro" HKCU\...\StartupApproved\Run: => "FLV Player" ==================== Faulty Device Manager Devices ============= Name: USB-IF xHCI USB Host Controller Description: USB-IF xHCI USB Host Controller Class Guid: {8a2edc79-c759-46f2-88af-9d4efe3b5eee} Manufacturer: Intel Corporation Service: XHCIPort Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter Description: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974} Manufacturer: Intel Corporation Service: BTHUSB Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (07/24/2014 08:18:47 PM) (Source: System Restore) (EventID: 8210) (User: ) Description: Unbekannter Fehler bei der Systemwiederherstellung: (Windows Update). Zusätzliche Informationen: 0x80070005. Error: (07/24/2014 07:28:12 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: ZeroConfigService.exe, Version: 15.5.0.2, Zeitstempel: 0x50070789 Name des fehlerhaften Moduls: MurocApi.dll, Version: 15.5.0.1, Zeitstempel: 0x500706ce Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000026390 ID des fehlerhaften Prozesses: 0x9ec Startzeit der fehlerhaften Anwendung: 0xZeroConfigService.exe0 Pfad der fehlerhaften Anwendung: ZeroConfigService.exe1 Pfad des fehlerhaften Moduls: ZeroConfigService.exe2 Berichtskennung: ZeroConfigService.exe3 Vollständiger Name des fehlerhaften Pakets: ZeroConfigService.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ZeroConfigService.exe5 Error: (07/24/2014 05:14:57 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 79765 Error: (07/24/2014 05:14:57 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 79765 Error: (07/24/2014 05:14:57 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (07/24/2014 04:53:02 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1326438 Error: (07/24/2014 04:53:02 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1326438 Error: (07/24/2014 04:53:02 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (07/24/2014 04:30:56 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1235 Error: (07/24/2014 04:30:56 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1235 System errors: ============= Error: (07/24/2014 08:17:47 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Computer Backup (MyPC Backup)" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (07/24/2014 08:17:47 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Computer Backup (MyPC Backup) erreicht. Error: (07/24/2014 07:28:21 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) PROSet/Wireless Zero Configuration Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (07/24/2014 07:27:20 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 24.07.2014 um 19:26:12 unerwartet heruntergefahren. Error: (07/24/2014 05:55:21 PM) (Source: DCOM) (EventID: 10016) (User: HÜLYA) Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}hülyahülyaS-1-5-21-3460895242-2686779407-2708491527-1002LocalHost (unter Verwendung von LRPC)OTARISInteractiveServices.SpeedMonitor_1.0.5.3_x64__kxyeky6xjfeq8S-1-15-2-1912500620-2801568488-3958178919-2096927240-2617767298-3541220994-2409111165 Error: (07/24/2014 05:55:21 PM) (Source: DCOM) (EventID: 10016) (User: HÜLYA) Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}hülyahülyaS-1-5-21-3460895242-2686779407-2708491527-1002LocalHost (unter Verwendung von LRPC)OTARISInteractiveServices.SpeedMonitor_1.0.5.3_x64__kxyeky6xjfeq8S-1-15-2-1912500620-2801568488-3958178919-2096927240-2617767298-3541220994-2409111165 Error: (07/24/2014 04:53:14 PM) (Source: DCOM) (EventID: 10016) (User: HÜLYA) Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}hülyahülyaS-1-5-21-3460895242-2686779407-2708491527-1002LocalHost (unter Verwendung von LRPC)OTARISInteractiveServices.SpeedMonitor_1.0.5.3_x64__kxyeky6xjfeq8S-1-15-2-1912500620-2801568488-3958178919-2096927240-2617767298-3541220994-2409111165 Error: (07/24/2014 04:53:14 PM) (Source: DCOM) (EventID: 10016) (User: HÜLYA) Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}hülyahülyaS-1-5-21-3460895242-2686779407-2708491527-1002LocalHost (unter Verwendung von LRPC)OTARISInteractiveServices.SpeedMonitor_1.0.5.3_x64__kxyeky6xjfeq8S-1-15-2-1912500620-2801568488-3958178919-2096927240-2617767298-3541220994-2409111165 Error: (07/24/2014 04:28:05 PM) (Source: DCOM) (EventID: 10016) (User: HÜLYA) Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}hülyahülyaS-1-5-21-3460895242-2686779407-2708491527-1002LocalHost (unter Verwendung von LRPC)OTARISInteractiveServices.SpeedMonitor_1.0.5.3_x64__kxyeky6xjfeq8S-1-15-2-1912500620-2801568488-3958178919-2096927240-2617767298-3541220994-2409111165 Error: (07/24/2014 04:28:05 PM) (Source: DCOM) (EventID: 10016) (User: HÜLYA) Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}hülyahülyaS-1-5-21-3460895242-2686779407-2708491527-1002LocalHost (unter Verwendung von LRPC)OTARISInteractiveServices.SpeedMonitor_1.0.5.3_x64__kxyeky6xjfeq8S-1-15-2-1912500620-2801568488-3958178919-2096927240-2617767298-3541220994-2409111165 Microsoft Office Sessions: ========================= Error: (07/24/2014 08:18:47 PM) (Source: System Restore) (EventID: 8210) (User: ) Description: Windows Update0x80070005 Error: (07/24/2014 07:28:12 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: ZeroConfigService.exe15.5.0.250070789MurocApi.dll15.5.0.1500706cec000000500000000000263909ec01cfa76495677bd3C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exeC:\Program Files\Intel\WiFi\bin\MurocApi.dlle289f939-1357-11e4-8047-a0b3cc484fc9 Error: (07/24/2014 05:14:57 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 79765 Error: (07/24/2014 05:14:57 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 79765 Error: (07/24/2014 05:14:57 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (07/24/2014 04:53:02 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1326438 Error: (07/24/2014 04:53:02 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1326438 Error: (07/24/2014 04:53:02 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (07/24/2014 04:30:56 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1235 Error: (07/24/2014 04:30:56 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1235 ==================== Memory info =========================== Percentage of memory in use: 32% Total physical RAM: 8081.27 MB Available physical RAM: 5476.96 MB Total Pagefile: 9297.27 MB Available Pagefile: 6214.75 MB Total Virtual: 8192 MB Available Virtual: 8191.77 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:446.91 GB) (Free:369.49 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (RECOVERY) (Fixed) (Total:18.07 GB) (Free:2.27 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 466 GB) (Disk ID: A50E1C7D) Partition: GPT Partition Type. ==================== End Of Log ============================ Habe FRST Editor in 2 aufgeteilt und Addition in einem Stück. Danke bis dann |
24.07.2014, 20:49 | #8 |
/// Winkelfunktion /// TB-Süch-Tiger™ | bat=exe konnte nicht gefunden werden. Randvoll mit Junkware... Adware/Junkware/Toolbars entfernen 1. Schritt: adwCleaner Downloade Dir bitte AdwCleaner auf deinen Desktop.
2. Schritt: JRT - Junkware Removal Tool Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
3. Schritt: Frisches Log mit FRST Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ Logfiles bitte immer in CODE-Tags posten |
24.07.2014, 21:22 | #9 |
| bat=exe konnte nicht gefunden werden. Hallo und zurück bin ich wieder... bevor ich weiter mache teile ich dir schon mal den bericht mit Code:
ATTFilter # AdwCleaner v3.216 - Bericht erstellt am 24/07/2014 um 22:03:07 # Aktualisiert 17/07/2014 von Xplode # Betriebssystem : Windows 8 (64 bits) # Benutzername : hülya - HÜLYA # Gestartet von : C:\Users\hülya\Desktop\adwcleaner_3.216.exe # Option : Löschen ***** [ Dienste ] ***** Dienst Gelöscht : 70e6ca8c [#] Dienst Gelöscht : APNMCP [#] Dienst Gelöscht : BackupStack [#] Dienst Gelöscht : desksvc [#] Dienst Gelöscht : F06DEFF2-5B9C-490D-910F-35D3A9119622 [#] Dienst Gelöscht : LPTSystemUpdater [#] Dienst Gelöscht : SafetyNutManager [#] Dienst Gelöscht : savesenselive [#] Dienst Gelöscht : savesenselivem ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\apn Ordner Gelöscht : C:\ProgramData\AskPartnerNetwork Ordner Gelöscht : C:\ProgramData\IePluginService Ordner Gelöscht : C:\ProgramData\MovieMode [!] Ordner Gelöscht : C:\ProgramData\SafetyNut Ordner Gelöscht : C:\ProgramData\SaveSenseLive Ordner Gelöscht : C:\ProgramData\wincert Ordner Gelöscht : C:\ProgramData\WPM Ordner Gelöscht : C:\ProgramData\LuckyCouPoon Ordner Gelöscht : C:\ProgramData\TicTaaCooupon Ordner Gelöscht : C:\ProgramData\TuicTaCoupon Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365 Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\optimizer pro v3.2 Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PriceGong Ordner Gelöscht : C:\Program Files (x86)\AskPartnerNetwork Ordner Gelöscht : C:\Program Files (x86)\ChatZum Toolbar Ordner Gelöscht : C:\Program Files (x86)\Desk 365 Ordner Gelöscht : C:\Program Files (x86)\Freecorder extension Ordner Gelöscht : C:\Program Files (x86)\globalUpdate Ordner Gelöscht : C:\Program Files (x86)\GreenTree Applications Ordner Gelöscht : C:\Program Files (x86)\LPT [!] Ordner Gelöscht : C:\Program Files (x86)\Movies Toolbar Ordner Gelöscht : C:\Program Files (x86)\MyPC Backup Ordner Gelöscht : C:\Program Files (x86)\Optimizer Pro Ordner Gelöscht : C:\Program Files (x86)\predm Ordner Gelöscht : C:\Program Files (x86)\PriceGong Ordner Gelöscht : C:\Program Files (x86)\SaveSenseLive Ordner Gelöscht : C:\Program Files (x86)\SupTab Ordner Gelöscht : C:\Program Files (x86)\LuckyCouPoon Ordner Gelöscht : C:\Program Files (x86)\Common Files\337 Ordner Gelöscht : C:\Program Files\Freecorder extension Ordner Gelöscht : C:\Users\hülya\AppData\Local\AskPartnerNetwork Ordner Gelöscht : C:\Users\hülya\AppData\Local\Browsersafeguard Ordner Gelöscht : C:\Users\hülya\AppData\Local\FilesFrog Update Checker Ordner Gelöscht : C:\Users\hülya\AppData\Local\globalUpdate Ordner Gelöscht : C:\Users\hülya\AppData\Local\LPT Ordner Gelöscht : C:\Users\hülya\AppData\Local\SaveSense Ordner Gelöscht : C:\Users\hülya\AppData\Local\SaveSenseLive Ordner Gelöscht : C:\Users\hülya\AppData\Local\Smartbar Ordner Gelöscht : C:\Users\hülya\AppData\Local\webplayer Ordner Gelöscht : C:\Users\HLYA~1\AppData\Local\Temp\apn Ordner Gelöscht : C:\Users\HLYA~1\AppData\Local\Temp\Desk365 Ordner Gelöscht : C:\Users\HLYA~1\AppData\Local\Temp\Smartbar Ordner Gelöscht : C:\Users\hülya\AppData\LocalLow\DataMngr Ordner Gelöscht : C:\Users\hülya\AppData\LocalLow\Smartbar Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\Desk 365 Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\quickclick Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\RocketUpdater Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\SaveSense Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\SupTab Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\Systweak Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\Uniblue Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SaveSense Ordner Gelöscht : C:\Users\hülya\Documents\PC Speed Maximizer Ordner Gelöscht : C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaimdcedbpbcjjbbnfcbbjcngmomic Ordner Gelöscht : C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok Ordner Gelöscht : C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibnjmihbbanannlbobkbmnmckjnmdnom Ordner Gelöscht : C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg Ordner Gelöscht : C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkidpnnapnfgjhfhkpmjpbckkbaodldb Datei Gelöscht : C:\END Datei Gelöscht : C:\Users\Public\Desktop\eBay.lnk Datei Gelöscht : C:\Users\Public\Desktop\iLivid.lnk Datei Gelöscht : C:\Windows\System32\roboot64.exe Datei Gelöscht : C:\Users\hülya\AppData\Local\AnyProtectScannerSetup.exe Datei Gelöscht : C:\Users\hülya\AppData\Roaming\aps.uninstall.scan.results Datei Gelöscht : C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk Datei Gelöscht : C:\Users\hülya\Desktop\Continue VuuPC Installation.lnk Datei Gelöscht : C:\Users\hülya\Desktop\MyPC Backup.lnk Datei Gelöscht : C:\Users\hülya\Desktop\Optimizer Pro.lnk Datei Gelöscht : C:\Users\hülya\Desktop\Sync Folder.lnk Datei Gelöscht : C:\Windows\System32\Tasks\Advanced System Protector_startup Datei Gelöscht : C:\Windows\Tasks\APSnotifierPP1.job Datei Gelöscht : C:\Windows\Tasks\APSnotifierPP2.job Datei Gelöscht : C:\Windows\Tasks\APSnotifierPP3.job Datei Gelöscht : C:\Windows\System32\Tasks\Desk 365 RunAsStdUser Datei Gelöscht : C:\Windows\Tasks\Rocket Updater.job Datei Gelöscht : C:\Windows\System32\Tasks\Rocket Updater Datei Gelöscht : C:\Windows\Tasks\SaveSense.job Datei Gelöscht : C:\Windows\System32\Tasks\SaveSense Datei Gelöscht : C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineCore.job Datei Gelöscht : C:\Windows\System32\Tasks\SaveSenseLiveUpdateTaskMachineCore Datei Gelöscht : C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineUA.job Datei Gelöscht : C:\Windows\System32\Tasks\SaveSenseLiveUpdateTaskMachineUA Datei Gelöscht : C:\Windows\System32\Tasks\SomotoUpdateCheckerAutoStart ***** [ Verknüpfungen ] ***** Verknüpfung Desinfiziert : C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLV Player\Uninstall.lnk ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaimdcedbpbcjjbbnfcbbjcngmomic Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\blbkdnmdcafmfhinpmnlhhddbepgkeaa Schlüssel Gelöscht : HKCU\Software\Google\Chrome\Extensions\ibnjmihbbanannlbobkbmnmckjnmdnom Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\ibnjmihbbanannlbobkbmnmckjnmdnom Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\ibnjmihbbanannlbobkbmnmckjnmdnom Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\pljcgbedjplidkdjahbaalanadmjfgop Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [FLV Player] Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Optimizer Pro] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\AddonsFramework.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\ButtonSite.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\RegistryHelper.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\SaveSenseLive.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\ScriptHost.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.bandobjectattribute Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.bho Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.dockingpanel Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbar Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbarbandobject Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.smartbardisplaystate Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.smartbarmenuform Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\MoviesToolbarHelper.DNSGuard Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\MoviesToolbarHelper.DNSGuard.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLive.OneClickCtrl.9 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLive.OneClickProcessLauncherMachine Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLive.OneClickProcessLauncherMachine.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLive.Update3WebControl.3 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoCreateAsync Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoCreateAsync.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoreClass Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoreClass.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoreMachineClass Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoreMachineClass.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CredentialDialogMachine Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CredentialDialogMachine.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassMachine Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassMachine.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassMachineFallback Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassMachineFallback.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassSvc Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassSvc.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.ProcessLauncher Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.ProcessLauncher.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3COMClassService Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3COMClassService.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebMachine Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebMachine.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebMachineFallback Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebMachineFallback.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebSvc Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebSvc.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\speedupmypc Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\HomeTab_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\HomeTab_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\NewPlayer_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\NewPlayer_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasapi32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasmancs Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\speedupmypc_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\speedupmypc_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mypc backup Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [AnyProtect Scanner] Schlüssel Gelöscht : HKLM\SOFTWARE\MozillaPlugins\@tools.updaterss.com/SaveSenseLive Update;version=3 Schlüssel Gelöscht : HKLM\SOFTWARE\MozillaPlugins\@tools.updaterss.com/SaveSenseLive Update;version=9 Wert Gelöscht : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x64] Wert Gelöscht : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x86] Schlüssel Gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\DeskSvc Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TicuTeACoupon.TicuTeACoupon Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TicuTeACoupon.TicuTeACoupon.2.5 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TiicTaCoupOn.TiicTaCoupOn Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TiicTaCoupOn.TiicTaCoupOn.2.5 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\LuckyCoupeOn.LuckyCoupeOn Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\LuckyCoupeOn.LuckyCoupeOn.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{18B9B16E-716F-43DF-A6AD-512C7D2EB983} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{19975B78-1907-4DD6-A437-4C48120F46A4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{544C2426-48FD-4C40-AE3B-31257FF334D0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{562B9316-C08A-444A-9482-62080DD851AE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{562B9317-C08A-444A-9482-62080DD851AE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{A2D3FB7A-6873-45E8-AF96-57092D721828} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1917AB4C-E2E9-42AE-A51E-B5750F160BFB} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6C65F1F0-8088-414B-828C-813207ADE75A} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{71E129FF-6C2A-4984-818C-7E2C998B8D99} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{998745A3-2AE4-488D-8092-B98FB20A00C2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A18D16ED-27B2-4B83-B70C-15E73F099546} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A2D3FB7A-6873-45E8-AF96-57092D721828} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A4341726-E922-47BB-86A6-23F4F4F67342} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{B15BBE59-42F5-4206-B3F0-BE98F5DC4B93} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{C1424421-D274-491E-9D47-11C8D8CB5F9A} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{C9B4F046-2A8C-46BD-B1A1-CF0EAE5EA521} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{DCA1528D-A3C0-4A9F-AA6E-DCE643F91495} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{0976F393-E747-DCFE-31D0-860DE1FCBA82} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{795AE1C1-9CD3-7A5D-8535-AA853C8F4DD1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{DE7A58CA-07FA-C20B-34CC-E36C0395F40E} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{045F91B3-695F-423A-98C7-8DE3C47AA020} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1348BD1B-C32A-41A7-9BD4-5377AA1AB925} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{395AFE6E-8308-48DB-89BE-ED5F4AA3D3EC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{43969E3F-3E7C-4911-A8F1-79C6CA6AC731} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{43B390F0-6BA2-45CA-ABF2-5DB0CEE9B49D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{94CADA2E-1D3F-419F-8A3D-06C58EDF53C8} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9E52EB8B-8DD9-4605-AD36-D352BCD482F2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A1440EC3-F0FA-407A-B811-DE6668C06D29} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B887CA3B-D82B-4A01-AD29-E97444D01CE6} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B9A84AD0-5777-46FD-8B8F-1EBD06750FBC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{BBBE01ED-0F1E-44DB-88C1-5CC1AEE3B462} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C1995F88-1C7F-40D7-B0FA-6F107F6308B8} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C815E3DA-0823-49B0-9270-D1771D58B317} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E4A994B0-5550-4680-A4C6-B9470B888069} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EE95078D-518C-4FD2-8093-FD1D4E33D3CA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F9EB11AB-9384-4736-9B33-993940F88895} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{71E129FF-6C2A-4984-818C-7E2C998B8D99} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B15BBE59-42F5-4206-B3F0-BE98F5DC4B93} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0976F393-E747-DCFE-31D0-860DE1FCBA82} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{795AE1C1-9CD3-7A5D-8535-AA853C8F4DD1} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31AD400D-1B06-4E33-A59A-90C2C140CBA0} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{71E129FF-6C2A-4984-818C-7E2C998B8D99} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B15BBE59-42F5-4206-B3F0-BE98F5DC4B93} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0976F393-E747-DCFE-31D0-860DE1FCBA82} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{795AE1C1-9CD3-7A5D-8535-AA853C8F4DD1} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DE7A58CA-07FA-C20B-34CC-E36C0395F40E} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31AD400D-1B06-4E33-A59A-90C2C140CBA0} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{71E129FF-6C2A-4984-818C-7E2C998B8D99} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B15BBE59-42F5-4206-B3F0-BE98F5DC4B93} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0976F393-E747-DCFE-31D0-860DE1FCBA82} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{795AE1C1-9CD3-7A5D-8535-AA853C8F4DD1} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DE7A58CA-07FA-C20B-34CC-E36C0395F40E} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A18D16ED-27B2-4B83-B70C-15E73F099546} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{0976F393-E747-DCFE-31D0-860DE1FCBA82} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{795AE1C1-9CD3-7A5D-8535-AA853C8F4DD1} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DE7A58CA-07FA-C20B-34CC-E36C0395F40E} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A18D16ED-27B2-4B83-B70C-15E73F099546} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5} Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{1917AB4C-E2E9-42AE-A51E-B5750F160BFB} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{6C65F1F0-8088-414B-828C-813207ADE75A} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{A4341726-E922-47BB-86A6-23F4F4F67342} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{B15BBE59-42F5-4206-B3F0-BE98F5DC4B93} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{C9B4F046-2A8C-46BD-B1A1-CF0EAE5EA521} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{DCA1528D-A3C0-4A9F-AA6E-DCE643F91495} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{0976F393-E747-DCFE-31D0-860DE1FCBA82} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{795AE1C1-9CD3-7A5D-8535-AA853C8F4DD1} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{DE7A58CA-07FA-C20B-34CC-E36C0395F40E} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{045F91B3-695F-423A-98C7-8DE3C47AA020} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{1348BD1B-C32A-41A7-9BD4-5377AA1AB925} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{395AFE6E-8308-48DB-89BE-ED5F4AA3D3EC} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{43969E3F-3E7C-4911-A8F1-79C6CA6AC731} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{43B390F0-6BA2-45CA-ABF2-5DB0CEE9B49D} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{94CADA2E-1D3F-419F-8A3D-06C58EDF53C8} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{9E52EB8B-8DD9-4605-AD36-D352BCD482F2} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{A1440EC3-F0FA-407A-B811-DE6668C06D29} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{B887CA3B-D82B-4A01-AD29-E97444D01CE6} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{B9A84AD0-5777-46FD-8B8F-1EBD06750FBC} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{BBBE01ED-0F1E-44DB-88C1-5CC1AEE3B462} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C1995F88-1C7F-40D7-B0FA-6F107F6308B8} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C815E3DA-0823-49B0-9270-D1771D58B317} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{E4A994B0-5550-4680-A4C6-B9470B888069} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{EE95078D-518C-4FD2-8093-FD1D4E33D3CA} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{F9EB11AB-9384-4736-9B33-993940F88895} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B15BBE59-42F5-4206-B3F0-BE98F5DC4B93} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0976F393-E747-DCFE-31D0-860DE1FCBA82} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{795AE1C1-9CD3-7A5D-8535-AA853C8F4DD1} Wert Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671} Schlüssel Gelöscht : HKCU\Software\AnyProtect Schlüssel Gelöscht : HKCU\Software\APN PIP Schlüssel Gelöscht : HKCU\Software\APNDTX Schlüssel Gelöscht : HKCU\Software\AskPartnerNetwork Schlüssel Gelöscht : HKCU\Software\BI Schlüssel Gelöscht : HKCU\Software\ChatZum Toolbar Schlüssel Gelöscht : HKCU\Software\FreeSoftToday Schlüssel Gelöscht : HKCU\Software\genesis Schlüssel Gelöscht : HKCU\Software\GlobalUpdate Schlüssel Gelöscht : HKCU\Software\Iminent Schlüssel Gelöscht : HKCU\Software\InstallCore Schlüssel Gelöscht : HKCU\Software\Optimizer Pro Schlüssel Gelöscht : HKCU\Software\RocketUpdater Schlüssel Gelöscht : HKCU\Software\SafetyNut Schlüssel Gelöscht : HKCU\Software\SaveSense Schlüssel Gelöscht : HKCU\Software\SaveSenseLive Schlüssel Gelöscht : HKCU\Software\simplytech Schlüssel Gelöscht : HKCU\Software\SmartBar Schlüssel Gelöscht : HKCU\Software\smartbarbackup Schlüssel Gelöscht : HKCU\Software\smartbarlog Schlüssel Gelöscht : HKCU\Software\Softonic Schlüssel Gelöscht : HKCU\Software\Somoto Schlüssel Gelöscht : HKCU\Software\systweak Schlüssel Gelöscht : HKCU\Software\TutoTag Schlüssel Gelöscht : HKCU\Software\Webplayer Schlüssel Gelöscht : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\DynConIE Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\PriceGong Schlüssel Gelöscht : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F} Schlüssel Gelöscht : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0} Schlüssel Gelöscht : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C} Schlüssel Gelöscht : HKLM\Software\AskPartnerNetwork Schlüssel Gelöscht : HKLM\Software\awesomehpSoftware Schlüssel Gelöscht : HKLM\Software\ChatZum Toolbar Schlüssel Gelöscht : HKLM\Software\DataMngr Schlüssel Gelöscht : HKLM\Software\DealPlyLive Schlüssel Gelöscht : HKLM\Software\Desksvc Schlüssel Gelöscht : HKLM\Software\GlobalUpdate Schlüssel Gelöscht : HKLM\Software\hdcode Schlüssel Gelöscht : HKLM\Software\Iminent Schlüssel Gelöscht : HKLM\Software\PIP Schlüssel Gelöscht : HKLM\Software\SafetyNut Schlüssel Gelöscht : HKLM\Software\SaveSenseLive Schlüssel Gelöscht : HKLM\Software\SupTab Schlüssel Gelöscht : HKLM\Software\supWPM Schlüssel Gelöscht : HKLM\Software\systweak Schlüssel Gelöscht : HKLM\Software\Tutorials Schlüssel Gelöscht : HKLM\Software\Uniblue Schlüssel Gelöscht : HKLM\Software\V9 Schlüssel Gelöscht : HKLM\Software\Wpm Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\BrowserSafeGuard Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\FLV Player Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SaveSense Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{BC0BF363-63AB-4FF7-8EF1-AE0D7F711B24} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Desk 365 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FilesFrog Update Checker Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freecorder extension Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PriceGong Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SaveSenseLive.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe ***** [ Browser ] ***** -\\ Internet Explorer v10.0.9200.17028 Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Search Bar] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Bar] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [SearchAssistant] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [Search Bar] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [Search Page] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Default_Search_URL] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Search Bar] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Search Page] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [Default] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] -\\ Google Chrome v35.0.1916.153 [ Datei : C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\preferences ] Gelöscht [Startup_urls] : hxxp://www.search.ask.com/?o=APN10640A&gct=hp&d=473-113&v=a13277-274&t=4 Gelöscht [Homepage] : hxxp://www.search.ask.com/?o=APN10640A&gct=hp&d=473-113&v=a13277-274&t=4 Gelöscht [Extension] : aaaaimdcedbpbcjjbbnfcbbjcngmomic Gelöscht [Extension] : bkomkajifikmkfnjgphkjcfeepbnojok Gelöscht [Extension] : blbkdnmdcafmfhinpmnlhhddbepgkeaa Gelöscht [Extension] : booedmolknjekdopkepjjeckmjkdpfgl Gelöscht [Extension] : flpcjncodpafbgdpnkljologafpionhb Gelöscht [Extension] : ibnjmihbbanannlbobkbmnmckjnmdnom Gelöscht [Extension] : mkcedibhemacmilmkpndpkoidlnmgngg Gelöscht [Extension] : pkidpnnapnfgjhfhkpmjpbckkbaodldb Gelöscht [Extension] : pljcgbedjplidkdjahbaalanadmjfgop ************************* AdwCleaner[R0].txt - [50807 octets] - [24/07/2014 22:02:03] AdwCleaner[S0].txt - [44012 octets] - [24/07/2014 22:03:07] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [44073 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.4 (04.06.2014:1) OS: Windows 8 x64 Ran by hlya on 24.07.2014 at 22:10:56,42 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{52db1893-8a90-4192-aede-08e00b8f8473} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{52db1893-8a90-4192-aede-08e00b8f8473} ~~~ Files ~~~ Folders Successfully deleted: [Folder] "C:\ProgramData\ytd video downloader" Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ytd video downloader" Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{3F8F4B7A-6F55-481A-95C0-4F3FE1AA582D} Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{4706463C-4B0D-4CF7-B55D-5D1C69B45A72} Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{4706BF3E-9D06-476C-8975-11B6F64F1ED5} Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{6C3D5C3B-433A-4A6B-A437-82D530A84D7E} Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{6FD5EACC-03EA-4793-9EC5-08646C748321} Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{7002FB38-3C18-4A47-8C9B-7C6699A4200E} Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{7A71F82E-A808-46F1-96A9-F9605BA4A073} Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{7E6773F3-6CF2-49F2-8F75-D871AB5D22C0} Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{831AACF7-BD02-4A1C-93E6-621DD6E417F9} Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{88DA6DB2-3899-43FA-895D-016566C8247A} Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{A85C6324-D7B6-49FD-82B2-D8EC8199F583} Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{A90487C2-BC22-4173-A0A9-24300613D4BB} Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{AB6D36F8-A176-45FF-83CE-3AE16BC873F0} Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{AFB4CE14-1EF5-4B90-8CAB-588D81E38B33} Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{CC1B58D6-A5A6-4571-B1C2-070DCAE321EF} Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{E7050A8B-3945-45EC-97F0-61713141A02E} Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{EABEB0FA-EEF4-46E2-94A1-7FC04B66A7FE} Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{FD644658-6736-4DC7-AEFD-0D251801A962} ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 24.07.2014 at 22:18:23,09 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
24.07.2014, 21:27 | #10 |
| bat=exe konnte nicht gefunden werden. FRST EDITOR TEIL 1 Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-07-2014 01 Ran by hülya (administrator) on HÜLYA on 24-07-2014 22:22:55 Running from C:\Users\hülya\Desktop Platform: Windows 8 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (HP) C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (AVM Berlin) C:\Program Files (x86)\avmwlanstick\WLanNetService.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe () C:\Windows\System32\valWBFPolicyService.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (AuthenTec Inc.) C:\Program Files (x86)\HP SimplePass\TouchControl.exe () C:\Program Files (x86)\HP SimplePass\IEWebSiteLogon.exe (AuthenTec, Inc.) C:\Program Files\Common Files\AuthenTec\TrueService.exe (AuthenTec, Inc.) C:\Program Files\Common Files\AuthenTec\TrueService.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (AVM Berlin) C:\Program Files (x86)\avmwlanstick\WLanGUI.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avpui.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1425408 2012-07-24] (IDT, Inc.) HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-25] (Synaptics Incorporated) HKLM-x32\...\Run: [CLVirtualDrive] => C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491320 2012-07-26] (CyberLink Corp.) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [580512 2012-07-31] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [HP CoolSense] => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [1343904 2012-11-05] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [AVMWlanClient] => C:\Program Files (x86)\avmwlanstick\wlangui.exe [2105344 2010-10-22] (AVM Berlin) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe HKLM-x32\...\Run: [fst_de_69] => [X] HKLM-x32\...\Run: [AnyProtect Tray] => "C:\Program Files (x86)\AnyProtectEx\AnyProtectTrayIcon.exe" HKLM\...\RunOnce: [NCPluginUpdater] => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [21720 2014-07-23] (Hewlett-Packard) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\Run: [Facebook Update] => C:\Users\hülya\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-04-21] (Facebook Inc.) HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\Policies\Explorer: [DisallowRun] 1 HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\MountPoints2: {28b34250-eb9a-11e2-be88-246511c0e7fd} - "F:\LGAutoRun.exe" HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\MountPoints2: {5dfd6686-1c75-11e3-be90-246511c0e7fd} - "F:\LGAutoRun.exe" HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\MountPoints2: {e2c42221-4eec-11e3-beb1-84a6c84d5de5} - "H:\Startme.exe" HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\MountPoints2: {ef99e80f-98d0-11e2-be76-84a6c84d5de5} - "F:\pushinst.exe" ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) StartMenuInternet: IEXPLORE.EXE - iexplore.exe SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS SearchScopes: HKLM - {52db1893-8a90-4192-aede-08e00b8f8473} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms} SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKLM - {E6DFA72B-E3A3-4EE5-89E2-D618E482A4D2} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 - DefaultScope value is missing. SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = BHO: savinshoop -> {2ED8C2FC-2464-86BA-E541-740FB78AF4BD} -> C:\ProgramData\savinshoop\PRZ7D.x64.dll () BHO: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard) BHO-x32: savinshoop -> {2ED8C2FC-2464-86BA-E541-740FB78AF4BD} -> C:\ProgramData\savinshoop\PRZ7D.dll () BHO-x32: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard) DPF: HKLM-x32 {8FEFF364-6A5F-4966-A917-A3AC28411659} hxxp://download.easetuner.com/download/SOPCORE.CAB Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 192.168.2.1 FireFox: ======== FF Plugin-x32: @authentec.com/ffwloplugin - C:\Program Files (x86)\HP SimplePass\npffwloplugin.dll ( HP) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\hülya\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF HKLM-x32\...\Firefox\Extensions: - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\url_advisor@kaspersky.com FF Extension: 卡巴斯基網址顧問 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\url_advisor@kaspersky.com [2013-11-06] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\virtual_keyboard@kaspersky.com FF Extension: 虛擬鍵盤 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\virtual_keyboard@kaspersky.com [2013-11-06] FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\content_blocker@kaspersky.com FF Extension: 惡意網站攔截器 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\content_blocker@kaspersky.com [2013-11-06] FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\anti_banner@kaspersky.com FF Extension: Chặn quảng cáo - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\anti_banner@kaspersky.com [2013-11-06] FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\online_banking@kaspersky.com [2013-11-06] Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR StartupUrls: "hxxp://google.de/" CHR DefaultSearchKeyword: ask.com CHR DefaultSearchProvider: Ask.com CHR DefaultSearchURL: hxxp://dts.search.ask.com/sr?src=crb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms} CHR DefaultNewTabURL: CHR Extension: (Google Docs) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-10] CHR Extension: (Google Drive) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-10] CHR Extension: (YouTube) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-10] CHR Extension: (Google-Suche) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-10] CHR Extension: (Modul zur Link-Untersuchung) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2014-05-10] CHR Extension: (Website Logon) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\fegekclkdhbnfdcmomlpegkkndgnmfmo [2014-05-10] CHR Extension: (Google Wallet) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-10] CHR Extension: (Google Mail) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-10] CHR Extension: (Anti-Banner) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2014-05-10] CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\urladvisor.crx [2013-10-17] CHR HKLM-x32\...\Chrome\Extension: [fegekclkdhbnfdcmomlpegkkndgnmfmo] - C:\Program Files (x86)\HP SimplePass\tschrome.crx [2012-07-12] CHR HKLM-x32\...\Chrome\Extension: [gpicboiclhmnllnjdcfcffifpoaebgkm] - C:\Program Files (x86)\Freecorder extension\Freecorder.crx [2012-07-12] CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\ab.crx [2013-10-17] CHR StartMenuInternet: Google Chrome - chrome.exe CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AVM WLAN Connection Service; C:\Program Files (x86)\avmwlanstick\WlanNetService.exe [376832 2010-10-22] (AVM Berlin) [File not signed] R2 avp; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe [214512 2013-10-17] (Kaspersky Lab ZAO) S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [331776 2012-07-26] (Microsoft Corporation) R2 FPLService; C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe [1641320 2012-08-10] (HP) R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2013-11-04] (Hewlett-Packard Company) [File not signed] R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-18] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [272176 2012-07-18] () R3 TrueService; C:\Program Files\Common Files\AuthenTec\TrueService.exe [401256 2012-07-16] (AuthenTec, Inc.) R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [28160 2012-07-18] () [File not signed] S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16056 2014-03-29] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2699568 2012-07-18] (Intel® Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [14120 2010-10-04] (AVM Berlin) S3 BthA2DP; C:\Windows\system32\drivers\BthA2DP.sys [117632 2013-06-01] (Microsoft Corporation) S3 BthHFAud; C:\Windows\system32\DRIVERS\BthHfAud.sys [30720 2013-02-02] (Microsoft Corporation) S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink) S3 fwlanusb4; C:\Windows\system32\DRIVERS\fwlanusb4.sys [1293824 2010-10-04] (AVM GmbH) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2013-11-07] (Kaspersky Lab ZAO) S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [29792 2013-12-19] (Kaspersky Lab) S4 klflt; C:\Windows\System32\DRIVERS\klflt.sys [115296 2014-03-24] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [625760 2014-03-24] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [30304 2013-10-17] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [29280 2014-02-18] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [29280 2013-10-17] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\system32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO) R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [65120 2014-03-24] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [178272 2013-12-19] (Kaspersky Lab ZAO) R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [3345376 2013-08-22] (Intel Corporation) S3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [266896 2012-06-14] (Realtek Semiconductor Corp.) S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [41272 2012-08-25] (Synaptics Incorporated) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-08-25] (Synaptics Incorporated) S3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [48096 2012-08-09] (Windows (R) Win 7 DDK provider) R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2012-08-31] (Hewlett-Packard Development Company, L.P.) R3 WUDFWpdComp; C:\Windows\system32\DRIVERS\WUDFRd.sys [198656 2012-07-26] (Microsoft Corporation) S3 XHCIPort; C:\Windows\System32\drivers\XHCIPort.sys [188384 2012-08-09] (Windows (R) Win 7 DDK provider) S3 cpuz135; \??\C:\Users\HLYA~1\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-07-24 22:18 - 2014-07-24 22:18 - 00002993 _____ () C:\Users\hülya\Desktop\JRT.txt 2014-07-24 22:10 - 2014-07-24 22:10 - 01016261 _____ (Thisisu) C:\Users\hülya\Desktop\JRT.exe 2014-07-24 22:10 - 2014-07-24 22:10 - 00000000 ____D () C:\Windows\ERUNT 2014-07-24 22:02 - 2014-07-24 22:03 - 00000000 ____D () C:\AdwCleaner 2014-07-24 22:02 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll 2014-07-24 22:01 - 2014-07-24 22:01 - 01354223 _____ () C:\Users\hülya\Desktop\adwcleaner_3.216.exe 2014-07-24 20:51 - 2014-07-24 20:51 - 00062687 _____ () C:\Users\hülya\Desktop\Addition.txt 2014-07-24 20:50 - 2014-07-24 22:22 - 00022039 _____ () C:\Users\hülya\Desktop\FRST.txt 2014-07-24 20:49 - 2014-07-24 22:22 - 00000000 ____D () C:\FRST 2014-07-24 20:30 - 2014-07-24 20:30 - 02093568 _____ (Farbar) C:\Users\hülya\Desktop\FRST64.exe 2014-07-24 20:30 - 2014-07-24 20:30 - 02093568 _____ (Farbar) C:\Users\hülya\Desktop\FRST64 (1).exe 2014-07-17 23:52 - 2014-07-17 23:52 - 01385120 _____ () C:\Users\hülya\Downloads\Setup (6).exe 2014-07-13 01:44 - 2014-07-13 01:44 - 00000000 ____D () C:\Users\hülya\ChromeExtensions 2014-07-13 01:43 - 2014-07-24 20:11 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535_ 2014-07-13 01:43 - 2014-07-24 20:11 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535 2014-07-13 01:43 - 2014-07-24 20:11 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51_ 2014-07-13 01:42 - 2014-07-24 20:11 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51 2014-07-13 01:42 - 2014-07-13 01:43 - 00000186 _____ () C:\Users\hülya\Desktop\Amazon.de.url 2014-07-13 01:42 - 2014-07-13 01:42 - 01063312 _____ () C:\Users\hülya\Downloads\Adblock-Plus-fr-Chrome-lnstall.exe 2014-07-13 01:42 - 2014-07-13 01:42 - 00000000 ____D () C:\Users\hülya\Downloads\Adblock-Plus-für-Chrome 2014-07-12 18:26 - 2014-07-09 03:28 - 00378337 _____ () C:\Users\hülya\Documents\Ergo%20Vorbeereiten.odt_0.odt 2014-07-12 13:41 - 2014-07-12 13:41 - 00323048 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-07-12 03:32 - 2014-06-26 22:53 - 00703968 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-07-12 03:32 - 2014-06-26 22:53 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-07-12 03:28 - 2014-07-24 20:11 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-07-10 02:49 - 2014-07-10 02:49 - 00000102 ____H () C:\Users\hülya\Downloads\.~lock.ups bewerbung.doc# 2014-07-10 02:38 - 2014-07-10 02:38 - 00000102 ____H () C:\Users\hülya\Desktop\.~lock.Feser Graf Gruppe Bewerbung.odt# 2014-07-09 10:52 - 2014-07-01 00:42 - 00702464 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-07-09 10:52 - 2014-07-01 00:42 - 00394240 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2014-07-09 10:52 - 2014-07-01 00:42 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2014-07-09 10:52 - 2014-06-28 05:35 - 00556544 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-07-09 02:08 - 2014-06-19 04:12 - 02239488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-09 02:08 - 2014-06-19 04:12 - 01366528 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-09 02:08 - 2014-06-19 04:12 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2014-07-09 02:08 - 2014-06-19 04:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2014-07-09 02:08 - 2014-06-19 04:12 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-07-09 02:08 - 2014-06-19 04:11 - 19277312 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-09 02:08 - 2014-06-19 04:11 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-07-09 02:08 - 2014-06-19 04:11 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 15369728 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 02650624 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-07-09 02:08 - 2014-06-19 04:10 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-07-09 02:08 - 2014-06-19 04:09 - 01508864 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-09 02:08 - 2014-06-19 02:53 - 14368768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-09 02:08 - 2014-06-19 02:53 - 01766400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-09 02:08 - 2014-06-19 02:53 - 01141760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-09 02:08 - 2014-06-19 02:53 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-09 02:08 - 2014-06-19 02:53 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-07-09 02:08 - 2014-06-19 02:53 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-09 02:08 - 2014-06-19 02:53 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 13732352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 02863616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 01440768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-09 02:08 - 2014-06-19 02:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-07-09 02:08 - 2014-06-19 02:52 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-07-09 02:08 - 2014-06-19 02:33 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-07-09 02:08 - 2014-06-19 02:30 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-07-09 02:08 - 2014-06-19 00:05 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2014-07-09 02:08 - 2014-06-18 01:27 - 01440256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-07-09 02:08 - 2014-06-18 01:24 - 01557504 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-07-09 02:08 - 2014-06-11 06:18 - 04038144 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-07-09 02:08 - 2014-06-03 00:33 - 00265216 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll 2014-07-09 02:08 - 2014-05-30 01:31 - 00452608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll 2014-07-09 02:08 - 2014-05-30 01:03 - 00588288 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll 2014-07-09 02:08 - 2014-05-30 01:02 - 01281536 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-07-09 02:08 - 2014-05-30 01:02 - 00439808 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll 2014-07-09 02:08 - 2014-05-03 08:34 - 06974808 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-07-09 02:08 - 2014-05-03 08:33 - 01824808 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-07-09 02:08 - 2014-05-03 06:51 - 01408976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2014-07-09 02:08 - 2014-05-02 00:37 - 01023488 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2014-07-09 02:08 - 2014-04-30 00:32 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe 2014-07-09 02:08 - 2014-04-30 00:32 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe 2014-07-09 02:08 - 2014-04-24 01:51 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2014-07-09 02:08 - 2014-04-24 01:51 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-07-09 02:08 - 2014-04-24 01:38 - 00693760 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2014-07-09 02:08 - 2014-04-24 01:38 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-07-09 02:08 - 2014-02-08 06:34 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys 2014-07-09 02:07 - 2014-06-06 16:06 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-07-09 02:07 - 2014-06-06 12:17 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-07-09 02:07 - 2014-05-30 00:24 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-07-05 01:06 - 2014-07-19 00:07 - 00000095 _____ () C:\Users\hülya\AppData\Roaming\WB.CFG 2014-07-05 00:35 - 2014-07-24 22:04 - 00000000 ____D () C:\ProgramData\SafetyNut 2014-07-02 19:50 - 2014-07-02 19:50 - 01258080 _____ () C:\Users\hülya\Downloads\Setup (5).exe 2014-07-01 22:19 - 2014-07-01 22:19 - 00003204 _____ () C:\Windows\System32\Tasks\jgjnrnq 2014-07-01 22:19 - 2014-07-01 22:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\jgjnrnq.bat 2014-07-01 22:17 - 2014-07-01 22:17 - 00003206 _____ () C:\Windows\System32\Tasks\eqfcxnbw 2014-07-01 22:17 - 2014-07-01 22:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\eqfcxnbw.bat 2014-07-01 22:15 - 2014-07-01 22:15 - 00003204 _____ () C:\Windows\System32\Tasks\whpxpqi 2014-07-01 22:15 - 2014-07-01 22:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\whpxpqi.bat 2014-07-01 22:13 - 2014-07-01 22:13 - 00003200 _____ () C:\Windows\System32\Tasks\lcbpg 2014-07-01 22:13 - 2014-07-01 22:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpg.bat 2014-07-01 22:11 - 2014-07-01 22:11 - 00003206 _____ () C:\Windows\System32\Tasks\kheaxbbv 2014-07-01 22:11 - 2014-07-01 22:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\kheaxbbv.bat 2014-07-01 22:09 - 2014-07-01 22:09 - 00003206 _____ () C:\Windows\System32\Tasks\xgxiyqsd 2014-07-01 22:09 - 2014-07-01 22:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\xgxiyqsd.bat 2014-07-01 22:07 - 2014-07-01 22:07 - 00003204 _____ () C:\Windows\System32\Tasks\abpicxr 2014-07-01 22:07 - 2014-07-01 22:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\abpicxr.bat 2014-07-01 22:05 - 2014-07-01 22:05 - 00003204 _____ () C:\Windows\System32\Tasks\dynshwc 2014-07-01 22:05 - 2014-07-01 22:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\dynshwc.bat 2014-07-01 22:02 - 2014-07-01 22:02 - 00003206 _____ () C:\Windows\System32\Tasks\wgwfihhq 2014-07-01 22:02 - 2014-07-01 22:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\wgwfihhq.bat 2014-06-30 05:48 - 2014-06-30 05:48 - 00003206 _____ () C:\Windows\System32\Tasks\ulccqgwd 2014-06-30 05:48 - 2014-06-30 05:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\ulccqgwd.bat 2014-06-30 05:46 - 2014-06-30 05:46 - 00003204 _____ () C:\Windows\System32\Tasks\fvngogw 2014-06-30 05:46 - 2014-06-30 05:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\fvngogw.bat 2014-06-30 05:44 - 2014-06-30 05:44 - 00003200 _____ () C:\Windows\System32\Tasks\nfnnu 2014-06-30 05:44 - 2014-06-30 05:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\nfnnu.bat 2014-06-30 05:42 - 2014-06-30 05:42 - 00003200 _____ () C:\Windows\System32\Tasks\ebfol 2014-06-30 05:42 - 2014-06-30 05:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\ebfol.bat 2014-06-30 05:40 - 2014-06-30 05:40 - 00003204 _____ () C:\Windows\System32\Tasks\aiwkxfb 2014-06-30 05:40 - 2014-06-30 05:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\aiwkxfb.bat 2014-06-30 05:38 - 2014-06-30 05:38 - 00003206 _____ () C:\Windows\System32\Tasks\cwtodhbp 2014-06-30 05:38 - 2014-06-30 05:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\cwtodhbp.bat 2014-06-30 05:36 - 2014-06-30 05:36 - 00003202 _____ () C:\Windows\System32\Tasks\fgnngg 2014-06-30 05:36 - 2014-06-30 05:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\fgnngg.bat 2014-06-30 05:34 - 2014-06-30 05:34 - 00003200 _____ () C:\Windows\System32\Tasks\awkfl 2014-06-30 05:34 - 2014-06-30 05:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\awkfl.bat 2014-06-30 05:32 - 2014-06-30 05:32 - 00003202 _____ () C:\Windows\System32\Tasks\yldjcn 2014-06-30 05:32 - 2014-06-30 05:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\yldjcn.bat 2014-06-30 05:30 - 2014-06-30 05:30 - 00003206 _____ () C:\Windows\System32\Tasks\ekhnlrhf 2014-06-30 05:30 - 2014-06-30 05:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\ekhnlrhf.bat 2014-06-30 05:28 - 2014-06-30 05:28 - 00003206 _____ () C:\Windows\System32\Tasks\qmgcmikg 2014-06-30 05:28 - 2014-06-30 05:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\qmgcmikg.bat 2014-06-30 05:26 - 2014-06-30 05:26 - 00003204 _____ () C:\Windows\System32\Tasks\mcbxwcs 2014-06-30 05:26 - 2014-06-30 05:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\mcbxwcs.bat 2014-06-30 05:24 - 2014-06-30 05:24 - 00003206 _____ () C:\Windows\System32\Tasks\oopqhiaa 2014-06-30 05:24 - 2014-06-30 05:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\oopqhiaa.bat 2014-06-30 05:22 - 2014-06-30 05:22 - 00003204 _____ () C:\Windows\System32\Tasks\ijlmopq 2014-06-30 05:22 - 2014-06-30 05:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\ijlmopq.bat 2014-06-30 05:20 - 2014-06-30 05:20 - 00003206 _____ () C:\Windows\System32\Tasks\kfdavzwl 2014-06-30 05:20 - 2014-06-30 05:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\kfdavzwl.bat 2014-06-30 05:18 - 2014-06-30 05:18 - 00003200 _____ () C:\Windows\System32\Tasks\spuhd 2014-06-30 05:18 - 2014-06-30 05:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\spuhd.bat 2014-06-30 05:16 - 2014-06-30 05:16 - 00003202 _____ () C:\Windows\System32\Tasks\bxthdr 2014-06-30 05:16 - 2014-06-30 05:16 - 00000269 _____ () C:\Users\hülya\AppData\Local\bxthdr.bat 2014-06-30 05:14 - 2014-06-30 05:14 - 00003204 _____ () C:\Windows\System32\Tasks\fxacscu 2014-06-30 05:14 - 2014-06-30 05:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\fxacscu.bat 2014-06-30 05:12 - 2014-06-30 05:12 - 00003202 _____ () C:\Windows\System32\Tasks\beiuye 2014-06-30 05:12 - 2014-06-30 05:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\beiuye.bat 2014-06-30 05:10 - 2014-06-30 05:10 - 00003202 _____ () C:\Windows\System32\Tasks\lbgcbx 2014-06-30 05:10 - 2014-06-30 05:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\lbgcbx.bat 2014-06-30 05:08 - 2014-06-30 05:08 - 00003200 _____ () C:\Windows\System32\Tasks\erawe 2014-06-30 05:08 - 2014-06-30 05:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\erawe.bat 2014-06-30 05:06 - 2014-06-30 05:06 - 00003200 _____ () C:\Windows\System32\Tasks\caebg 2014-06-30 05:06 - 2014-06-30 05:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\caebg.bat 2014-06-30 05:04 - 2014-06-30 05:04 - 00003206 _____ () C:\Windows\System32\Tasks\hqqbbcll 2014-06-30 05:04 - 2014-06-30 05:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\hqqbbcll.bat 2014-06-30 05:01 - 2014-06-30 05:01 - 00003204 _____ () C:\Windows\System32\Tasks\ruxcmqt 2014-06-30 05:01 - 2014-06-30 05:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ruxcmqt.bat 2014-06-30 04:59 - 2014-06-30 04:59 - 00003206 _____ () C:\Windows\System32\Tasks\wxxabbdl 2014-06-30 04:59 - 2014-06-30 04:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\wxxabbdl.bat 2014-06-30 04:57 - 2014-06-30 04:57 - 00003204 _____ () C:\Windows\System32\Tasks\tbfedip 2014-06-30 04:57 - 2014-06-30 04:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbfedip.bat 2014-06-30 04:55 - 2014-06-30 04:55 - 00003200 _____ () C:\Windows\System32\Tasks\khtpt 2014-06-30 04:55 - 2014-06-30 04:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\khtpt.bat 2014-06-30 04:53 - 2014-06-30 04:53 - 00003204 _____ () C:\Windows\System32\Tasks\pakteow 2014-06-30 04:53 - 2014-06-30 04:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\pakteow.bat 2014-06-30 04:51 - 2014-06-30 04:51 - 00003200 _____ () C:\Windows\System32\Tasks\tsqpv 2014-06-30 04:51 - 2014-06-30 04:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\tsqpv.bat 2014-06-30 04:49 - 2014-06-30 04:49 - 00003202 _____ () C:\Windows\System32\Tasks\fsigct 2014-06-30 04:49 - 2014-06-30 04:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\fsigct.bat 2014-06-30 04:47 - 2014-06-30 04:47 - 00003202 _____ () C:\Windows\System32\Tasks\quwaeg 2014-06-30 04:47 - 2014-06-30 04:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\quwaeg.bat 2014-06-30 04:45 - 2014-06-30 04:45 - 00003200 _____ () C:\Windows\System32\Tasks\nveck 2014-06-30 04:45 - 2014-06-30 04:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\nveck.bat 2014-06-30 04:43 - 2014-06-30 04:43 - 00003202 _____ () C:\Windows\System32\Tasks\tqwtbw 2014-06-30 04:43 - 2014-06-30 04:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\tqwtbw.bat 2014-06-30 04:41 - 2014-06-30 04:41 - 00003200 _____ () C:\Windows\System32\Tasks\zlqcg 2014-06-30 04:41 - 2014-06-30 04:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\zlqcg.bat 2014-06-30 04:36 - 2014-06-30 04:36 - 00003204 _____ () C:\Windows\System32\Tasks\jehlnce 2014-06-30 04:36 - 2014-06-30 04:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\jehlnce.bat 2014-06-30 04:34 - 2014-06-30 04:34 - 00003204 _____ () C:\Windows\System32\Tasks\aguiubo 2014-06-30 04:34 - 2014-06-30 04:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\aguiubo.bat 2014-06-30 04:32 - 2014-06-30 04:32 - 00003200 _____ () C:\Windows\System32\Tasks\lqntf 2014-06-30 04:32 - 2014-06-30 04:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\lqntf.bat 2014-06-30 04:30 - 2014-06-30 04:30 - 00003200 _____ () C:\Windows\System32\Tasks\dulcs 2014-06-30 04:30 - 2014-06-30 04:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\dulcs.bat 2014-06-30 04:28 - 2014-06-30 04:28 - 00003200 _____ () C:\Windows\System32\Tasks\ljivt 2014-06-30 04:28 - 2014-06-30 04:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\ljivt.bat 2014-06-30 04:26 - 2014-06-30 04:26 - 00003206 _____ () C:\Windows\System32\Tasks\lrweaflq 2014-06-30 04:26 - 2014-06-30 04:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\lrweaflq.bat 2014-06-30 04:24 - 2014-06-30 04:24 - 00003200 _____ () C:\Windows\System32\Tasks\xdmoi 2014-06-30 04:24 - 2014-06-30 04:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\xdmoi.bat 2014-06-30 04:22 - 2014-06-30 04:22 - 00003200 _____ () C:\Windows\System32\Tasks\jdymi 2014-06-30 04:22 - 2014-06-30 04:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\jdymi.bat 2014-06-30 04:20 - 2014-06-30 04:20 - 00003202 _____ () C:\Windows\System32\Tasks\sxdjht 2014-06-30 04:20 - 2014-06-30 04:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\sxdjht.bat 2014-06-30 04:18 - 2014-06-30 04:18 - 00003204 _____ () C:\Windows\System32\Tasks\noohhij 2014-06-30 04:18 - 2014-06-30 04:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\noohhij.bat 2014-06-30 04:14 - 2014-06-30 04:14 - 00003204 _____ () C:\Windows\System32\Tasks\hcdeabo 2014-06-30 04:14 - 2014-06-30 04:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\hcdeabo.bat 2014-06-30 04:12 - 2014-06-30 04:12 - 00003202 _____ () C:\Windows\System32\Tasks\cfdfey 2014-06-30 04:12 - 2014-06-30 04:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\cfdfey.bat 2014-06-30 04:10 - 2014-06-30 04:10 - 00003204 _____ () C:\Windows\System32\Tasks\gwwoohh 2014-06-30 04:10 - 2014-06-30 04:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\gwwoohh.bat 2014-06-30 04:08 - 2014-06-30 04:08 - 00003206 _____ () C:\Windows\System32\Tasks\izuvpicd 2014-06-30 04:08 - 2014-06-30 04:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\izuvpicd.bat 2014-06-30 04:06 - 2014-06-30 04:06 - 00003206 _____ () C:\Windows\System32\Tasks\cfcfnrnj 2014-06-30 04:06 - 2014-06-30 04:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\cfcfnrnj.bat 2014-06-30 04:04 - 2014-06-30 04:04 - 00003200 _____ () C:\Windows\System32\Tasks\ekaix 2014-06-30 04:04 - 2014-06-30 04:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\ekaix.bat 2014-06-30 03:42 - 2014-06-30 03:42 - 00003202 _____ () C:\Windows\System32\Tasks\acxkgi 2014-06-30 03:42 - 2014-06-30 03:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\acxkgi.bat 2014-06-30 03:40 - 2014-06-30 03:40 - 00003206 _____ () C:\Windows\System32\Tasks\eulkcjbf 2014-06-30 03:40 - 2014-06-30 03:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\eulkcjbf.bat 2014-06-30 03:38 - 2014-06-30 03:38 - 00003202 _____ () C:\Windows\System32\Tasks\fwhaxi 2014-06-30 03:38 - 2014-06-30 03:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\fwhaxi.bat 2014-06-30 03:36 - 2014-06-30 03:36 - 00003200 _____ () C:\Windows\System32\Tasks\tyfrx 2014-06-30 03:36 - 2014-06-30 03:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\tyfrx.bat 2014-06-30 03:34 - 2014-06-30 03:34 - 00003202 _____ () C:\Windows\System32\Tasks\ovfemt 2014-06-30 03:34 - 2014-06-30 03:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\ovfemt.bat 2014-06-30 03:32 - 2014-06-30 03:32 - 00003202 _____ () C:\Windows\System32\Tasks\lcbpfk 2014-06-30 03:32 - 2014-06-30 03:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpfk.bat 2014-06-30 03:30 - 2014-06-30 03:30 - 00003204 _____ () C:\Windows\System32\Tasks\ubpckyn 2014-06-30 03:30 - 2014-06-30 03:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\ubpckyn.bat 2014-06-30 03:28 - 2014-06-30 03:28 - 00003202 _____ () C:\Windows\System32\Tasks\qcuecu 2014-06-30 03:28 - 2014-06-30 03:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\qcuecu.bat 2014-06-30 03:26 - 2014-06-30 03:26 - 00003204 _____ () C:\Windows\System32\Tasks\wfoefpa 2014-06-30 03:26 - 2014-06-30 03:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\wfoefpa.bat 2014-06-30 03:24 - 2014-06-30 03:24 - 00003206 _____ () C:\Windows\System32\Tasks\vggvgguf 2014-06-30 03:24 - 2014-06-30 03:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\vggvgguf.bat 2014-06-30 03:22 - 2014-06-30 03:22 - 00003202 _____ () C:\Windows\System32\Tasks\gufetd 2014-06-30 03:22 - 2014-06-30 03:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\gufetd.bat 2014-06-30 03:20 - 2014-06-30 03:20 - 00003202 _____ () C:\Windows\System32\Tasks\ljwusx 2014-06-30 03:20 - 2014-06-30 03:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\ljwusx.bat 2014-06-30 00:13 - 2014-06-30 00:13 - 00003200 _____ () C:\Windows\System32\Tasks\ztyse 2014-06-30 00:13 - 2014-06-30 00:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\ztyse.bat 2014-06-30 00:11 - 2014-06-30 00:11 - 00003200 _____ () C:\Windows\System32\Tasks\bdadk 2014-06-30 00:11 - 2014-06-30 00:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\bdadk.bat 2014-06-30 00:09 - 2014-06-30 00:09 - 00003204 _____ () C:\Windows\System32\Tasks\trwucgl 2014-06-30 00:09 - 2014-06-30 00:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\trwucgl.bat 2014-06-30 00:07 - 2014-06-30 00:07 - 00003206 _____ () C:\Windows\System32\Tasks\tbeerxvb 2014-06-30 00:07 - 2014-06-30 00:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbeerxvb.bat 2014-06-30 00:05 - 2014-06-30 00:05 - 00003200 _____ () C:\Windows\System32\Tasks\ccbfv 2014-06-30 00:05 - 2014-06-30 00:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\ccbfv.bat 2014-06-30 00:03 - 2014-06-30 00:03 - 00003202 _____ () C:\Windows\System32\Tasks\vveett 2014-06-30 00:03 - 2014-06-30 00:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\vveett.bat 2014-06-30 00:01 - 2014-06-30 00:01 - 00003206 _____ () C:\Windows\System32\Tasks\ligdqolj 2014-06-30 00:01 - 2014-06-30 00:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ligdqolj.bat 2014-06-29 23:59 - 2014-06-29 23:59 - 00003204 _____ () C:\Windows\System32\Tasks\vdksahw 2014-06-29 23:59 - 2014-06-29 23:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\vdksahw.bat 2014-06-29 23:57 - 2014-06-29 23:57 - 00003206 _____ () C:\Windows\System32\Tasks\vdsbqhwf 2014-06-29 23:57 - 2014-06-29 23:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\vdsbqhwf.bat 2014-06-29 23:55 - 2014-06-29 23:55 - 00003200 _____ () C:\Windows\System32\Tasks\reiba 2014-06-29 23:55 - 2014-06-29 23:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\reiba.bat 2014-06-29 23:53 - 2014-06-29 23:53 - 00003206 _____ () C:\Windows\System32\Tasks\kwtxbhko 2014-06-29 23:53 - 2014-06-29 23:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\kwtxbhko.bat 2014-06-29 23:51 - 2014-06-29 23:51 - 00003204 _____ () C:\Windows\System32\Tasks\koagcns 2014-06-29 23:51 - 2014-06-29 23:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\koagcns.bat 2014-06-29 23:49 - 2014-06-29 23:49 - 00003206 _____ () C:\Windows\System32\Tasks\vveeettb 2014-06-29 23:49 - 2014-06-29 23:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\vveeettb.bat 2014-06-29 23:47 - 2014-06-29 23:47 - 00003206 _____ () C:\Windows\System32\Tasks\rdpsgibx 2014-06-29 23:47 - 2014-06-29 23:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\rdpsgibx.bat 2014-06-29 23:45 - 2014-06-29 23:45 - 00003204 _____ () C:\Windows\System32\Tasks\quejuej 2014-06-29 23:45 - 2014-06-29 23:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\quejuej.bat 2014-06-29 23:43 - 2014-06-29 23:43 - 00003202 _____ () C:\Windows\System32\Tasks\icdytn 2014-06-29 23:43 - 2014-06-29 23:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\icdytn.bat 2014-06-29 23:41 - 2014-06-29 23:41 - 00003206 _____ () C:\Windows\System32\Tasks\ajcohkcp 2014-06-29 23:41 - 2014-06-29 23:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\ajcohkcp.bat 2014-06-29 23:39 - 2014-06-29 23:39 - 00003206 _____ () C:\Windows\System32\Tasks\gofohwhp 2014-06-29 23:39 - 2014-06-29 23:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\gofohwhp.bat 2014-06-29 23:37 - 2014-06-29 23:37 - 00003206 _____ () C:\Windows\System32\Tasks\dulctdar 2014-06-29 23:37 - 2014-06-29 23:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\dulctdar.bat 2014-06-29 23:35 - 2014-06-29 23:35 - 00003200 _____ () C:\Windows\System32\Tasks\qnifi 2014-06-29 23:35 - 2014-06-29 23:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\qnifi.bat 2014-06-29 21:33 - 2014-06-29 21:33 - 00003200 _____ () C:\Windows\System32\Tasks\daetq 2014-06-29 21:33 - 2014-06-29 21:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\daetq.bat 2014-06-29 21:31 - 2014-06-29 21:31 - 00003206 _____ () C:\Windows\System32\Tasks\akcohzmg 2014-06-29 21:31 - 2014-06-29 21:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\akcohzmg.bat 2014-06-29 21:29 - 2014-06-29 21:29 - 00003202 _____ () C:\Windows\System32\Tasks\nooffg 2014-06-29 21:29 - 2014-06-29 21:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\nooffg.bat 2014-06-29 21:27 - 2014-06-29 21:27 - 00003204 _____ () C:\Windows\System32\Tasks\lqgmrpu 2014-06-29 21:27 - 2014-06-29 21:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\lqgmrpu.bat 2014-06-29 21:25 - 2014-06-29 21:25 - 00003204 _____ () C:\Windows\System32\Tasks\cnaupdx 2014-06-29 21:25 - 2014-06-29 21:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\cnaupdx.bat 2014-06-29 21:23 - 2014-06-29 21:23 - 00003206 _____ () C:\Windows\System32\Tasks\rwimaepu 2014-06-29 21:23 - 2014-06-29 21:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\rwimaepu.bat 2014-06-29 21:21 - 2014-06-29 21:21 - 00003200 _____ () C:\Windows\System32\Tasks\iavic 2014-06-29 21:21 - 2014-06-29 21:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\iavic.bat 2014-06-29 21:19 - 2014-06-29 21:19 - 00003200 _____ () C:\Windows\System32\Tasks\hajdc 2014-06-29 21:19 - 2014-06-29 21:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\hajdc.bat 2014-06-29 21:17 - 2014-06-29 21:17 - 00003206 _____ () C:\Windows\System32\Tasks\jdauqmhd 2014-06-29 21:17 - 2014-06-29 21:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\jdauqmhd.bat 2014-06-29 21:15 - 2014-06-29 21:15 - 00003204 _____ () C:\Windows\System32\Tasks\vdksa 2014-06-29 21:15 - 2014-06-29 21:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\utjiwdc.bat 2014-06-29 21:13 - 2014-06-29 21:13 - 00003204 _____ () C:\Windows\System32\Tasks\hwooghw 2014-06-29 21:13 - 2014-06-29 21:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\hwooghw.bat 2014-06-29 21:11 - 2014-06-29 21:11 - 00003204 _____ () C:\Windows\System32\Tasks\ifauytq 2014-06-29 21:11 - 2014-06-29 21:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\ifauytq.bat 2014-06-29 21:09 - 2014-06-29 21:09 - 00003204 _____ () C:\Windows\System32\Tasks\erawlaq 2014-06-29 21:09 - 2014-06-29 21:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\erawlaq.bat 2014-06-29 21:07 - 2014-06-29 21:07 - 00003200 _____ () C:\Windows\System32\Tasks\lxdiu 2014-06-29 21:07 - 2014-06-29 21:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\lxdiu.bat 2014-06-29 21:05 - 2014-06-29 21:05 - 00003200 _____ () C:\Windows\System32\Tasks\pjddy 2014-06-29 21:05 - 2014-06-29 21:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\pjddy.bat 2014-06-29 21:03 - 2014-06-29 21:03 - 00003206 _____ () C:\Windows\System32\Tasks\fqcdnfrr 2014-06-29 21:03 - 2014-06-29 21:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\fqcdnfrr.bat 2014-06-29 21:01 - 2014-06-29 21:01 - 00003206 _____ () C:\Windows\System32\Tasks\ghpaijjd 2014-06-29 21:01 - 2014-06-29 21:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ghpaijjd.bat 2014-06-29 20:59 - 2014-06-29 20:59 - 00003206 _____ () C:\Windows\System32\Tasks\hbunicup 2014-06-29 20:59 - 2014-06-29 20:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\hbunicup.bat 2014-06-29 20:57 - 2014-06-29 20:57 - 00003204 _____ () C:\Windows\System32\Tasks\aaoibwj 2014-06-29 20:57 - 2014-06-29 20:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\aaoibwj.bat 2014-06-29 20:55 - 2014-06-29 20:55 - 00003204 _____ () C:\Windows\System32\Tasks\aaunbtn 2014-06-29 20:55 - 2014-06-29 20:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\aaunbtn.bat 2014-06-29 20:53 - 2014-06-29 20:53 - 00003206 _____ () C:\Windows\System32\Tasks\mffummlk 2014-06-29 20:53 - 2014-06-29 20:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\mffummlk.bat 2014-06-29 20:51 - 2014-06-29 20:51 - 00003200 _____ () C:\Windows\System32\Tasks\refju 2014-06-29 20:51 - 2014-06-29 20:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\refju.bat 2014-06-29 20:49 - 2014-06-29 20:49 - 00003204 _____ () C:\Windows\System32\Tasks\daechca 2014-06-29 20:49 - 2014-06-29 20:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\daechca.bat 2014-06-29 20:47 - 2014-06-29 20:47 - 00003206 _____ () C:\Windows\System32\Tasks\idxsnplf 2014-06-29 20:47 - 2014-06-29 20:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\idxsnplf.bat 2014-06-29 20:45 - 2014-06-29 20:45 - 00003204 _____ () C:\Windows\System32\Tasks\xrunfjc 2014-06-29 20:45 - 2014-06-29 20:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\xrunfjc.bat 2014-06-29 20:43 - 2014-06-29 20:43 - 00003200 _____ () C:\Windows\System32\Tasks\ubovd 2014-06-29 20:43 - 2014-06-29 20:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\ubovd.bat 2014-06-29 20:41 - 2014-06-29 20:41 - 00003202 _____ () C:\Windows\System32\Tasks\eblbzi 2014-06-29 20:41 - 2014-06-29 20:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\eblbzi.bat 2014-06-29 20:39 - 2014-06-29 20:39 - 00003202 _____ () C:\Windows\System32\Tasks\tbgmtf 2014-06-29 20:39 - 2014-06-29 20:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbgmtf.bat 2014-06-29 20:37 - 2014-06-29 20:37 - 00003206 _____ () C:\Windows\System32\Tasks\rvadoswa 2014-06-29 20:37 - 2014-06-29 20:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\rvadoswa.bat 2014-06-29 20:35 - 2014-06-29 20:35 - 00003206 _____ () C:\Windows\System32\Tasks\numsabiy 2014-06-29 20:35 - 2014-06-29 20:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\numsabiy.bat 2014-06-29 20:33 - 2014-06-29 20:33 - 00003204 _____ () C:\Windows\System32\Tasks\kotimqn 2014-06-29 20:33 - 2014-06-29 20:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\kotimqn.bat 2014-06-29 20:31 - 2014-06-29 20:31 - 00003200 _____ () C:\Windows\System32\Tasks\lkifm 2014-06-29 20:31 - 2014-06-29 20:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\lkifm.bat 2014-06-29 20:29 - 2014-06-29 20:29 - 00003200 _____ () C:\Windows\System32\Tasks\fjdoh 2014-06-29 20:29 - 2014-06-29 20:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\fjdoh.bat 2014-06-29 20:27 - 2014-06-29 20:27 - 00003202 _____ () C:\Windows\System32\Tasks\fkvoal 2014-06-29 20:27 - 2014-06-29 20:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\fkvoal.bat 2014-06-29 20:25 - 2014-06-29 20:25 - 00003206 _____ () C:\Windows\System32\Tasks\fdcaqonm 2014-06-29 20:25 - 2014-06-29 20:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\fdcaqonm.bat 2014-06-29 20:23 - 2014-06-29 20:23 - 00003202 _____ () C:\Windows\System32\Tasks\oqyaks 2014-06-29 20:23 - 2014-06-29 20:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\oqyaks.bat 2014-06-29 20:21 - 2014-06-29 20:21 - 00003204 _____ () C:\Windows\System32\Tasks\kotxmqu 2014-06-29 20:21 - 2014-06-29 20:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\kotxmqu.bat 2014-06-29 20:19 - 2014-06-29 20:19 - 00003204 _____ () C:\Windows\System32\Tasks\iddytni 2014-06-29 20:19 - 2014-06-29 20:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\iddytni.bat 2014-06-29 20:17 - 2014-06-29 20:17 - 00003206 _____ () C:\Windows\System32\Tasks\kfujeuqf 2014-06-29 20:17 - 2014-06-29 20:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\kfujeuqf.bat 2014-06-29 20:15 - 2014-06-29 20:15 - 00003202 _____ () C:\Windows\System32\Tasks\whqaqs 2014-06-29 20:15 - 2014-06-29 20:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\whqaqs.bat 2014-06-29 20:13 - 2014-06-29 20:13 - 00003200 _____ () C:\Windows\System32\Tasks\lcbpv 2014-06-29 20:13 - 2014-06-29 20:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpv.bat 2014-06-29 20:11 - 2014-06-29 20:11 - 00003206 _____ () C:\Windows\System32\Tasks\psuprudi 2014-06-29 20:11 - 2014-06-29 20:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\psuprudi.bat 2014-06-29 20:09 - 2014-06-29 20:09 - 00003206 _____ () C:\Windows\System32\Tasks\numttcsa 2014-06-29 20:09 - 2014-06-29 20:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\numttcsa.bat 2014-06-29 20:07 - 2014-06-29 20:07 - 00003202 _____ () C:\Windows\System32\Tasks\jfjnqm 2014-06-29 20:07 - 2014-06-29 20:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\jfjnqm.bat 2014-06-29 20:05 - 2014-06-29 20:05 - 00003204 _____ () C:\Windows\System32\Tasks\egqajsk 2014-06-29 20:05 - 2014-06-29 20:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\egqajsk.bat 2014-06-29 20:03 - 2014-06-29 20:03 - 00003202 _____ () C:\Windows\System32\Tasks\hztmgy 2014-06-29 20:03 - 2014-06-29 20:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\hztmgy.bat 2014-06-29 20:01 - 2014-06-29 20:01 - 00003200 _____ () C:\Windows\System32\Tasks\isnoa 2014-06-29 20:01 - 2014-06-29 20:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\isnoa.bat 2014-06-29 19:59 - 2014-06-29 19:59 - 00003206 _____ () C:\Windows\System32\Tasks\tbglafes 2014-06-29 19:59 - 2014-06-29 19:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbglafes.bat 2014-06-29 19:57 - 2014-06-29 19:57 - 00003206 _____ () C:\Windows\System32\Tasks\ukbhckaa 2014-06-29 19:57 - 2014-06-29 19:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\ukbhckaa.bat 2014-06-29 19:14 - 2014-06-29 19:14 - 00003206 _____ () C:\Windows\System32\Tasks\thlrdkxu 2014-06-29 19:14 - 2014-06-29 19:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\thlrdkxu.bat 2014-06-29 19:12 - 2014-06-29 19:12 - 00003202 _____ () C:\Windows\System32\Tasks\zuhtgb 2014-06-29 19:12 - 2014-06-29 19:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\zuhtgb.bat 2014-06-29 19:10 - 2014-06-29 19:10 - 00003202 _____ () C:\Windows\System32\Tasks\kbxmda 2014-06-29 19:10 - 2014-06-29 19:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\kbxmda.bat 2014-06-29 19:08 - 2014-06-29 19:08 - 00003200 _____ () C:\Windows\System32\Tasks\edeaa 2014-06-29 19:08 - 2014-06-29 19:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\edeaa.bat 2014-06-29 19:06 - 2014-06-29 19:06 - 00003206 _____ () C:\Windows\System32\Tasks\rvaeitxc 2014-06-29 19:06 - 2014-06-29 19:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\rvaeitxc.bat 2014-06-29 19:04 - 2014-06-29 19:04 - 00003202 _____ () C:\Windows\System32\Tasks\dafdid 2014-06-29 19:04 - 2014-06-29 19:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\dafdid.bat 2014-06-29 19:02 - 2014-06-29 19:02 - 00003200 _____ () C:\Windows\System32\Tasks\auaco 2014-06-29 19:02 - 2014-06-29 19:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\auaco.bat 2014-06-29 19:00 - 2014-06-29 19:00 - 00003206 _____ () C:\Windows\System32\Tasks\ydoalwbt 2014-06-29 19:00 - 2014-06-29 19:00 - 00000269 _____ () C:\Users\hülya\AppData\Local\ydoalwbt.bat 2014-06-29 18:58 - 2014-06-29 18:58 - 00003206 _____ () C:\Windows\System32\Tasks\efqidtef 2014-06-29 18:58 - 2014-06-29 18:58 - 00000269 _____ () C:\Users\hülya\AppData\Local\efqidtef.bat 2014-06-29 18:56 - 2014-06-29 18:56 - 00003206 _____ () C:\Windows\System32\Tasks\piqzluev 2014-06-29 18:56 - 2014-06-29 18:56 - 00000269 _____ () C:\Users\hülya\AppData\Local\piqzluev.bat 2014-06-29 18:54 - 2014-06-29 18:54 - 00003204 _____ () C:\Windows\System32\Tasks\aavaouj 2014-06-29 18:54 - 2014-06-29 18:54 - 00000269 _____ () C:\Users\hülya\AppData\Local\aavaouj.bat 2014-06-29 18:48 - 2014-06-29 18:48 - 00003204 _____ () C:\Windows\System32\Tasks\ahubocp 2014-06-29 18:48 - 2014-06-29 18:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\ahubocp.bat 2014-06-29 18:46 - 2014-06-29 18:46 - 00003206 _____ () C:\Windows\System32\Tasks\jfbdsujm 2014-06-29 18:46 - 2014-06-29 18:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\jfbdsujm.bat 2014-06-29 18:44 - 2014-06-29 18:44 - 00003202 _____ () C:\Windows\System32\Tasks\vmddsj 2014-06-29 18:44 - 2014-06-29 18:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\vmddsj.bat 2014-06-29 18:42 - 2014-06-29 18:42 - 00003200 _____ () C:\Windows\System32\Tasks\giqss 2014-06-29 18:42 - 2014-06-29 18:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\giqss.bat 2014-06-29 18:40 - 2014-06-29 18:40 - 00003206 _____ () C:\Windows\System32\Tasks\thbbobwc 2014-06-29 18:40 - 2014-06-29 18:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\thbbobwc.bat 2014-06-29 18:38 - 2014-06-29 18:38 - 00003206 _____ () C:\Windows\System32\Tasks\ruxjmqcg 2014-06-29 18:38 - 2014-06-29 18:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\ruxjmqcg.bat 2014-06-29 18:36 - 2014-06-29 18:36 - 00003204 _____ () C:\Windows\System32\Tasks\ahubvcq 2014-06-29 18:36 - 2014-06-29 18:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\ahubvcq.bat 2014-06-29 18:34 - 2014-06-29 18:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\gfiaa.bat 2014-06-29 18:33 - 2014-06-29 18:33 - 00003200 _____ () C:\Windows\System32\Tasks\gfiaa 2014-06-29 18:31 - 2014-06-29 18:31 - 00003206 _____ () C:\Windows\System32\Tasks\qlgqlgjm 2014-06-29 18:31 - 2014-06-29 18:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\qlgqlgjm.bat 2014-06-29 18:29 - 2014-06-29 18:29 - 00003202 _____ () C:\Windows\System32\Tasks\oqysbd 2014-06-29 18:29 - 2014-06-29 18:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\oqysbd.bat 2014-06-29 18:27 - 2014-06-29 18:27 - 00003202 _____ () C:\Windows\System32\Tasks\ykvbmx 2014-06-29 18:27 - 2014-06-29 18:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\ykvbmx.bat 2014-06-29 18:25 - 2014-06-29 18:25 - 00003206 _____ () C:\Windows\System32\Tasks\aocpcqer 2014-06-29 18:25 - 2014-06-29 18:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\aocpcqer.bat 2014-06-29 18:23 - 2014-06-29 18:23 - 00003200 _____ () C:\Windows\System32\Tasks\fepha 2014-06-29 18:23 - 2014-06-29 18:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\fepha.bat 2014-06-29 18:21 - 2014-06-29 18:21 - 00003204 _____ () C:\Windows\System32\Tasks\acceyau 2014-06-29 18:21 - 2014-06-29 18:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\acceyau.bat 2014-06-29 18:19 - 2014-06-29 18:19 - 00003202 _____ () C:\Windows\System32\Tasks\tymrgl 2014-06-29 18:19 - 2014-06-29 18:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\tymrgl.bat 2014-06-29 18:17 - 2014-06-29 18:17 - 00003202 _____ () C:\Windows\System32\Tasks\cxuqfu 2014-06-29 18:17 - 2014-06-29 18:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\cxuqfu.bat 2014-06-29 18:15 - 2014-06-29 18:15 - 00003200 _____ () C:\Windows\System32\Tasks\gxqja 2014-06-29 18:15 - 2014-06-29 18:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\gxqja.bat 2014-06-29 18:13 - 2014-06-29 18:13 - 00003202 _____ () C:\Windows\System32\Tasks\xiscnx 2014-06-29 18:13 - 2014-06-29 18:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\xiscnx.bat 2014-06-29 18:11 - 2014-06-29 18:11 - 00003204 _____ () C:\Windows\System32\Tasks\gffffee 2014-06-29 18:11 - 2014-06-29 18:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\gffffee.bat 2014-06-29 18:09 - 2014-06-29 18:09 - 00003200 _____ () C:\Windows\System32\Tasks\ccafn 2014-06-29 18:09 - 2014-06-29 18:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\ccafn.bat 2014-06-29 18:07 - 2014-06-29 18:07 - 00003200 _____ () C:\Windows\System32\Tasks\jvrui 2014-06-29 18:07 - 2014-06-29 18:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\jvrui.bat 2014-06-29 18:05 - 2014-06-29 18:05 - 00003204 _____ () C:\Windows\System32\Tasks\qdfrefk 2014-06-29 18:05 - 2014-06-29 18:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\qdfrefk.bat 2014-06-29 18:03 - 2014-06-29 18:03 - 00003204 _____ () C:\Windows\System32\Tasks\eewxpph 2014-06-29 18:03 - 2014-06-29 18:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\eewxpph.bat 2014-06-29 18:01 - 2014-06-29 18:01 - 00003200 _____ () C:\Windows\System32\Tasks\icwxl 2014-06-29 18:01 - 2014-06-29 18:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\icwxl.bat 2014-06-29 17:59 - 2014-06-29 17:59 - 00003200 _____ () C:\Windows\System32\Tasks\wnfne 2014-06-29 17:59 - 2014-06-29 17:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\wnfne.bat 2014-06-29 17:57 - 2014-06-29 17:57 - 00003202 _____ () C:\Windows\System32\Tasks\xizdef 2014-06-29 17:57 - 2014-06-29 17:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\xizdef.bat 2014-06-29 17:55 - 2014-06-29 17:55 - 00003206 _____ () C:\Windows\System32\Tasks\quxbfilv 2014-06-29 17:55 - 2014-06-29 17:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\quxbfilv.bat 2014-06-29 17:53 - 2014-06-29 17:53 - 00003202 _____ () C:\Windows\System32\Tasks\zfsdqf 2014-06-29 17:53 - 2014-06-29 17:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\zfsdqf.bat 2014-06-29 17:52 - 2014-06-29 17:52 - 00623696 _____ (Click Me In Limited) C:\Users\hülya\AppData\Local\nsu16A4.tmp 2014-06-29 17:51 - 2014-06-29 17:51 - 00003206 _____ () C:\Windows\System32\Tasks\kpmrotfu 2014-06-29 17:51 - 2014-06-29 17:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\kpmrotfu.bat 2014-06-29 17:49 - 2014-06-29 17:49 - 00003204 _____ () C:\Windows\System32\Tasks\khepmjn 2014-06-29 17:49 - 2014-06-29 17:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\khepmjn.bat 2014-06-29 17:47 - 2014-06-29 17:47 - 00003204 _____ () C:\Windows\System32\Tasks\beyuxlg 2014-06-29 17:47 - 2014-06-29 17:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\beyuxlg.bat 2014-06-29 17:45 - 2014-06-29 17:45 - 00003200 _____ () C:\Windows\System32\Tasks\eddzr 2014-06-29 17:45 - 2014-06-29 17:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\eddzr.bat 2014-06-29 17:43 - 2014-06-29 17:43 - 00003204 _____ () C:\Windows\System32\Tasks\cpdlguc 2014-06-29 17:43 - 2014-06-29 17:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\cpdlguc.bat 2014-06-29 17:41 - 2014-06-29 17:41 - 00003206 _____ () C:\Windows\System32\Tasks\gaiccbvd 2014-06-29 17:41 - 2014-06-29 17:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\gaiccbvd.bat 2014-06-29 17:39 - 2014-06-29 17:39 - 00003202 _____ () C:\Windows\System32\Tasks\iauhbv 2014-06-29 17:39 - 2014-06-29 17:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\iauhbv.bat 2014-06-29 17:37 - 2014-06-29 17:37 - 00003206 _____ () C:\Windows\System32\Tasks\eudbraxo 2014-06-29 17:37 - 2014-06-29 17:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\eudbraxo.bat 2014-06-29 17:35 - 2014-06-29 17:35 - 00003206 _____ () C:\Windows\System32\Tasks\pxrbjdlu 2014-06-29 17:35 - 2014-06-29 17:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\pxrbjdlu.bat 2014-06-29 17:33 - 2014-06-29 17:33 - 00003200 _____ () C:\Windows\System32\Tasks\ilvab 2014-06-29 17:33 - 2014-06-29 17:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\ilvab.bat 2014-06-29 17:31 - 2014-06-29 17:31 - 00003204 _____ () C:\Windows\System32\Tasks\vwgfvve 2014-06-29 17:31 - 2014-06-29 17:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\vwgfvve.bat 2014-06-29 17:28 - 2014-06-29 17:28 - 00003204 _____ () C:\Windows\System32\Tasks\reibflg 2014-06-29 17:28 - 2014-06-29 17:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\reibflg.bat 2014-06-29 17:26 - 2014-06-29 17:26 - 00003202 _____ () C:\Windows\System32\Tasks\kgjoch 2014-06-29 17:26 - 2014-06-29 17:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\kgjoch.bat 2014-06-29 17:24 - 2014-06-29 17:24 - 00003202 _____ () C:\Windows\System32\Tasks\dngoeo 2014-06-29 17:24 - 2014-06-29 17:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\dngoeo.bat 2014-06-29 17:22 - 2014-06-29 17:22 - 00003204 _____ () C:\Windows\System32\Tasks\gohgohh 2014-06-29 17:22 - 2014-06-29 17:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\gohgohh.bat 2014-06-29 17:20 - 2014-06-29 17:20 - 00003206 _____ () C:\Windows\System32\Tasks\lbffbzeu 2014-06-29 17:20 - 2014-06-29 17:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\lbffbzeu.bat 2014-06-29 17:18 - 2014-06-29 17:18 - 00003204 _____ () C:\Windows\System32\Tasks\dafwmja 2014-06-29 17:18 - 2014-06-29 17:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\dafwmja.bat 2014-06-29 17:16 - 2014-06-29 17:16 - 00003204 _____ () C:\Windows\System32\Tasks\sfzekgc 2014-06-29 17:16 - 2014-06-29 17:16 - 00000269 _____ () C:\Users\hülya\AppData\Local\sfzekgc.bat 2014-06-29 17:14 - 2014-06-29 17:14 - 00003204 _____ () C:\Windows\System32\Tasks\trxvdah 2014-06-29 17:14 - 2014-06-29 17:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\trxvdah.bat 2014-06-29 17:12 - 2014-06-29 17:12 - 00003200 _____ () C:\Windows\System32\Tasks\cokxm 2014-06-29 17:12 - 2014-06-29 17:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\cokxm.bat 2014-06-29 17:10 - 2014-06-29 17:10 - 00003204 _____ () C:\Windows\System32\Tasks\ajuhbdv 2014-06-29 17:10 - 2014-06-29 17:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\ajuhbdv.bat 2014-06-29 17:08 - 2014-06-29 17:08 - 00003202 _____ () C:\Windows\System32\Tasks\xaqscn 2014-06-29 17:08 - 2014-06-29 17:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\xaqscn.bat 2014-06-29 17:06 - 2014-06-29 17:06 - 00003206 _____ () C:\Windows\System32\Tasks\icreymhc 2014-06-29 17:06 - 2014-06-29 17:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\icreymhc.bat 2014-06-29 17:04 - 2014-06-29 17:04 - 00003202 _____ () C:\Windows\System32\Tasks\rxbycq 2014-06-29 17:04 - 2014-06-29 17:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\rxbycq.bat 2014-06-29 17:02 - 2014-06-29 17:02 - 00003204 _____ () C:\Windows\System32\Tasks\kifbcee 2014-06-29 17:02 - 2014-06-29 17:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\kifbcee.bat 2014-06-29 17:00 - 2014-06-29 17:00 - 00003200 _____ () C:\Windows\System32\Tasks\wgwgw 2014-06-29 17:00 - 2014-06-29 17:00 - 00000269 _____ () C:\Users\hülya\AppData\Local\wgwgw.bat 2014-06-29 16:58 - 2014-06-29 16:58 - 00003200 _____ () C:\Windows\System32\Tasks\nghxp 2014-06-29 16:58 - 2014-06-29 16:58 - 00000269 _____ () C:\Users\hülya\AppData\Local\nghxp.bat 2014-06-29 16:56 - 2014-06-29 16:56 - 00003200 _____ () C:\Windows\System32\Tasks\xdmos 2014-06-29 16:56 - 2014-06-29 16:56 - 00000269 _____ () C:\Users\hülya\AppData\Local\xdmos.bat 2014-06-29 16:54 - 2014-06-29 16:54 - 00003200 _____ () C:\Windows\System32\Tasks\vlmck 2014-06-29 16:54 - 2014-06-29 16:54 - 00000269 _____ () C:\Users\hülya\AppData\Local\vlmck.bat 2014-06-29 16:52 - 2014-06-29 16:52 - 00003202 _____ () C:\Windows\System32\Tasks\rdwbfa 2014-06-29 16:52 - 2014-06-29 16:52 - 00000269 _____ () C:\Users\hülya\AppData\Local\rdwbfa.bat 2014-06-29 16:50 - 2014-06-29 16:50 - 00003204 _____ () C:\Windows\System32\Tasks\bocpdwd 2014-06-29 16:50 - 2014-06-29 16:50 - 00000269 _____ () C:\Users\hülya\AppData\Local\bocpdwd.bat 2014-06-29 16:48 - 2014-06-29 16:48 - 00003204 _____ () C:\Windows\System32\Tasks\prsudyb 2014-06-29 16:48 - 2014-06-29 16:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\prsudyb.bat 2014-06-29 16:46 - 2014-06-29 16:46 - 00003206 _____ () C:\Windows\System32\Tasks\hysdwpba 2014-06-29 16:46 - 2014-06-29 16:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\hysdwpba.bat 2014-06-29 16:44 - 2014-06-29 16:44 - 00003200 _____ () C:\Windows\System32\Tasks\aocpc 2014-06-29 16:44 - 2014-06-29 16:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\aocpc.bat 2014-06-29 16:42 - 2014-06-29 16:42 - 00003206 _____ () C:\Windows\System32\Tasks\bkdpjboa 2014-06-29 16:42 - 2014-06-29 16:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\bkdpjboa.bat 2014-06-29 16:40 - 2014-06-29 16:40 - 00003202 _____ () C:\Windows\System32\Tasks\gphqpz 2014-06-29 16:40 - 2014-06-29 16:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\gphqpz.bat 2014-06-29 16:38 - 2014-06-29 16:38 - 00003204 _____ () C:\Windows\System32\Tasks\rwbfruh 2014-06-29 16:38 - 2014-06-29 16:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\rwbfruh.bat 2014-06-29 16:36 - 2014-07-02 20:09 - 00000000 ____D () C:\Users\hülya\AppData\Local\service_06291436 2014-06-29 16:36 - 2014-07-02 20:00 - 00000000 ____D () C:\Program Files (x86)\Fraven 1.1 2014-06-29 16:36 - 2014-06-29 16:36 - 00003202 _____ () C:\Windows\System32\Tasks\prtvey 2014-06-29 16:36 - 2014-06-29 16:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\prtvey.bat 2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9ED2tmp 2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9E82tmp 2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9E62tmp 2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9E22tmp 2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9E02tmp 2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9DE2tmp 2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9DC2tmp 2014-06-29 16:35 - 2014-06-29 16:35 - 01258344 _____ () C:\Users\hülya\Downloads\Setup (3).exe 2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9EB2tmp 2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\55A4tmp 2014-06-27 01:13 - 2014-06-27 01:13 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\DivX 2014-06-27 01:13 - 2014-06-27 01:13 - 00000000 ____D () C:\Program Files\DivX 2014-06-27 01:12 - 2014-07-02 20:10 - 00000000 ____D () C:\Program Files (x86)\DivX 2014-06-27 01:11 - 2014-07-02 20:10 - 00000000 ____D () C:\ProgramData\DivX 2014-06-27 01:11 - 2014-06-27 01:11 - 00999232 _____ (DivX, LLC) C:\Users\hülya\Downloads\DivXInstaller.exe 2014-06-27 01:06 - 2014-06-27 01:06 - 00608808 _____ () C:\Users\hülya\Downloads\MediaPlayerClassicInstaller.exe |
24.07.2014, 21:30 | #11 |
| bat=exe konnte nicht gefunden werden. FRST EDITOR TEIL 2 Code:
ATTFilter ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-07-24 22:23 - 2014-07-24 20:50 - 00022039 _____ () C:\Users\hülya\Desktop\FRST.txt 2014-07-24 22:22 - 2014-07-24 20:49 - 00000000 ____D () C:\FRST 2014-07-24 22:18 - 2014-07-24 22:18 - 00002993 _____ () C:\Users\hülya\Desktop\JRT.txt 2014-07-24 22:17 - 2013-03-26 22:38 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3460895242-2686779407-2708491527-1002 2014-07-24 22:10 - 2014-07-24 22:10 - 01016261 _____ (Thisisu) C:\Users\hülya\Desktop\JRT.exe 2014-07-24 22:10 - 2014-07-24 22:10 - 00000000 ____D () C:\Windows\ERUNT 2014-07-24 22:06 - 2013-07-03 18:21 - 00000000 ____D () C:\ProgramData\Kaspersky Lab 2014-07-24 22:05 - 2014-05-10 23:30 - 00001116 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-07-24 22:05 - 2012-07-26 09:22 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-07-24 22:04 - 2014-07-05 00:35 - 00000000 ____D () C:\ProgramData\SafetyNut 2014-07-24 22:04 - 2013-07-03 18:13 - 00514754 _____ () C:\Windows\PFRO.log 2014-07-24 22:03 - 2014-07-24 22:02 - 00000000 ____D () C:\AdwCleaner 2014-07-24 22:03 - 2014-03-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLV Player 2014-07-24 22:01 - 2014-07-24 22:01 - 01354223 _____ () C:\Users\hülya\Desktop\adwcleaner_3.216.exe 2014-07-24 22:00 - 2013-03-29 15:49 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log 2014-07-24 22:00 - 2013-03-29 15:48 - 00000000 _____ () C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt 2014-07-24 22:00 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\system32\sru 2014-07-24 21:35 - 2014-05-10 23:30 - 00001120 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-07-24 20:51 - 2014-07-24 20:51 - 00062687 _____ () C:\Users\hülya\Desktop\Addition.txt 2014-07-24 20:32 - 2013-07-03 18:41 - 01147210 _____ () C:\Windows\WindowsUpdate.log 2014-07-24 20:31 - 2013-04-07 03:33 - 00354304 ___SH () C:\Users\hülya\Desktop\Thumbs.db 2014-07-24 20:30 - 2014-07-24 20:30 - 02093568 _____ (Farbar) C:\Users\hülya\Desktop\FRST64.exe 2014-07-24 20:30 - 2014-07-24 20:30 - 02093568 _____ (Farbar) C:\Users\hülya\Desktop\FRST64 (1).exe 2014-07-24 20:13 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-07-24 20:13 - 2012-07-26 09:52 - 00000000 ____D () C:\Program Files\Windows Journal 2014-07-24 20:11 - 2014-07-13 01:43 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535_ 2014-07-24 20:11 - 2014-07-13 01:43 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535 2014-07-24 20:11 - 2014-07-13 01:43 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51_ 2014-07-24 20:11 - 2014-07-13 01:42 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51 2014-07-24 20:11 - 2014-07-12 03:28 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-07-24 20:11 - 2013-03-26 22:31 - 00000000 ____D () C:\Users\hülya\AppData\Local\Hewlett-Packard 2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\WinStore 2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\system32\Macromed 2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\rescache 2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\registration 2014-07-24 20:11 - 2012-07-26 09:52 - 00000000 ____D () C:\Windows\ShellNew 2014-07-24 20:11 - 2012-07-26 07:38 - 00000000 ____D () C:\Windows\system32\Sysprep 2014-07-24 19:32 - 2012-08-25 05:20 - 00831158 _____ () C:\Windows\system32\perfh007.dat 2014-07-24 19:32 - 2012-08-25 05:20 - 00188760 _____ () C:\Windows\system32\perfc007.dat 2014-07-24 19:32 - 2012-07-26 09:28 - 01952918 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-07-24 04:51 - 2014-04-13 00:12 - 00001067 _____ () C:\Users\hülya\Desktop\Neues Textdokument (2).txt 2014-07-24 03:44 - 2012-07-26 07:26 - 01048576 ___SH () C:\Windows\system32\config\BBI 2014-07-24 03:39 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\system32\NDF 2014-07-23 14:25 - 2014-03-18 20:19 - 00000000 ____D () C:\Users\hülya\Desktop\HANDY BURAK CAN 2014-07-23 04:24 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\AUInstallAgent 2014-07-20 22:19 - 2014-06-18 23:27 - 00378291 _____ () C:\Users\hülya\Desktop\Ergo Vorbeereiten.odt 2014-07-20 22:19 - 2014-05-11 22:00 - 00020575 _____ () C:\Users\hülya\Desktop\OpenDocument Text (neu) (3).odt 2014-07-19 00:07 - 2014-07-05 01:06 - 00000095 _____ () C:\Users\hülya\AppData\Roaming\WB.CFG 2014-07-17 23:52 - 2014-07-17 23:52 - 01385120 _____ () C:\Users\hülya\Downloads\Setup (6).exe 2014-07-17 21:58 - 2014-01-30 23:43 - 00000344 _____ () C:\Windows\Tasks\HPCeeScheduleForhülya.job 2014-07-17 21:58 - 2013-03-26 22:27 - 00000000 ____D () C:\Users\hülya 2014-07-15 04:36 - 2014-03-22 13:57 - 00000000 ____D () C:\ProgramData\eb1cc2bcef9cee8c 2014-07-14 15:41 - 2014-05-26 01:16 - 00002221 _____ () C:\Users\hülya\Desktop\Neues Textdokument (4).txt 2014-07-13 01:44 - 2014-07-13 01:44 - 00000000 ____D () C:\Users\hülya\ChromeExtensions 2014-07-13 01:43 - 2014-07-13 01:42 - 00000186 _____ () C:\Users\hülya\Desktop\Amazon.de.url 2014-07-13 01:42 - 2014-07-13 01:42 - 01063312 _____ () C:\Users\hülya\Downloads\Adblock-Plus-fr-Chrome-lnstall.exe 2014-07-13 01:42 - 2014-07-13 01:42 - 00000000 ____D () C:\Users\hülya\Downloads\Adblock-Plus-für-Chrome 2014-07-12 13:41 - 2014-07-12 13:41 - 00323048 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-07-11 21:49 - 2013-07-21 20:01 - 00033456 _____ () C:\Windows\setupact.log 2014-07-11 03:27 - 2013-07-24 07:05 - 00000000 ____D () C:\Windows\system32\MRT 2014-07-11 03:27 - 2012-07-26 09:59 - 00000000 ____D () C:\Windows\CbsTemp 2014-07-11 03:26 - 2013-03-29 16:03 - 96441528 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-07-11 03:26 - 2012-07-26 07:26 - 00262144 ___SH () C:\Windows\system32\config\ELAM 2014-07-10 02:49 - 2014-07-10 02:49 - 00000102 ____H () C:\Users\hülya\Downloads\.~lock.ups bewerbung.doc# 2014-07-10 02:38 - 2014-07-10 02:38 - 00000102 ____H () C:\Users\hülya\Desktop\.~lock.Feser Graf Gruppe Bewerbung.odt# 2014-07-09 03:28 - 2014-07-12 18:26 - 00378337 _____ () C:\Users\hülya\Documents\Ergo%20Vorbeereiten.odt_0.odt 2014-07-02 20:10 - 2014-06-27 01:12 - 00000000 ____D () C:\Program Files (x86)\DivX 2014-07-02 20:10 - 2014-06-27 01:11 - 00000000 ____D () C:\ProgramData\DivX 2014-07-02 20:09 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\AppData\Local\service_06291436 2014-07-02 20:06 - 2014-06-18 19:36 - 00002239 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-07-02 20:00 - 2014-06-29 16:36 - 00000000 ____D () C:\Program Files (x86)\Fraven 1.1 2014-07-02 19:59 - 2012-08-24 19:52 - 00000000 ____D () C:\ProgramData\CyberLink 2014-07-02 19:59 - 2012-08-24 19:51 - 00000000 ____D () C:\Program Files (x86)\CyberLink 2014-07-02 19:59 - 2012-08-24 19:49 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-07-02 19:50 - 2014-07-02 19:50 - 01258080 _____ () C:\Users\hülya\Downloads\Setup (5).exe 2014-07-01 22:24 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-07-01 22:24 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-07-01 22:24 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Windows Defender 2014-07-01 22:24 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-07-01 22:19 - 2014-07-01 22:19 - 00003204 _____ () C:\Windows\System32\Tasks\jgjnrnq 2014-07-01 22:19 - 2014-07-01 22:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\jgjnrnq.bat 2014-07-01 22:17 - 2014-07-01 22:17 - 00003206 _____ () C:\Windows\System32\Tasks\eqfcxnbw 2014-07-01 22:17 - 2014-07-01 22:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\eqfcxnbw.bat 2014-07-01 22:15 - 2014-07-01 22:15 - 00003204 _____ () C:\Windows\System32\Tasks\whpxpqi 2014-07-01 22:15 - 2014-07-01 22:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\whpxpqi.bat 2014-07-01 22:13 - 2014-07-01 22:13 - 00003200 _____ () C:\Windows\System32\Tasks\lcbpg 2014-07-01 22:13 - 2014-07-01 22:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpg.bat 2014-07-01 22:11 - 2014-07-01 22:11 - 00003206 _____ () C:\Windows\System32\Tasks\kheaxbbv 2014-07-01 22:11 - 2014-07-01 22:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\kheaxbbv.bat 2014-07-01 22:09 - 2014-07-01 22:09 - 00003206 _____ () C:\Windows\System32\Tasks\xgxiyqsd 2014-07-01 22:09 - 2014-07-01 22:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\xgxiyqsd.bat 2014-07-01 22:07 - 2014-07-01 22:07 - 00003204 _____ () C:\Windows\System32\Tasks\abpicxr 2014-07-01 22:07 - 2014-07-01 22:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\abpicxr.bat 2014-07-01 22:05 - 2014-07-01 22:05 - 00003204 _____ () C:\Windows\System32\Tasks\dynshwc 2014-07-01 22:05 - 2014-07-01 22:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\dynshwc.bat 2014-07-01 22:02 - 2014-07-01 22:02 - 00003206 _____ () C:\Windows\System32\Tasks\wgwfihhq 2014-07-01 22:02 - 2014-07-01 22:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\wgwfihhq.bat 2014-07-01 00:42 - 2014-07-09 10:52 - 00702464 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-07-01 00:42 - 2014-07-09 10:52 - 00394240 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2014-07-01 00:42 - 2014-07-09 10:52 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2014-06-30 05:48 - 2014-06-30 05:48 - 00003206 _____ () C:\Windows\System32\Tasks\ulccqgwd 2014-06-30 05:48 - 2014-06-30 05:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\ulccqgwd.bat 2014-06-30 05:46 - 2014-06-30 05:46 - 00003204 _____ () C:\Windows\System32\Tasks\fvngogw 2014-06-30 05:46 - 2014-06-30 05:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\fvngogw.bat 2014-06-30 05:44 - 2014-06-30 05:44 - 00003200 _____ () C:\Windows\System32\Tasks\nfnnu 2014-06-30 05:44 - 2014-06-30 05:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\nfnnu.bat 2014-06-30 05:42 - 2014-06-30 05:42 - 00003200 _____ () C:\Windows\System32\Tasks\ebfol 2014-06-30 05:42 - 2014-06-30 05:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\ebfol.bat 2014-06-30 05:40 - 2014-06-30 05:40 - 00003204 _____ () C:\Windows\System32\Tasks\aiwkxfb 2014-06-30 05:40 - 2014-06-30 05:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\aiwkxfb.bat 2014-06-30 05:38 - 2014-06-30 05:38 - 00003206 _____ () C:\Windows\System32\Tasks\cwtodhbp 2014-06-30 05:38 - 2014-06-30 05:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\cwtodhbp.bat 2014-06-30 05:36 - 2014-06-30 05:36 - 00003202 _____ () C:\Windows\System32\Tasks\fgnngg 2014-06-30 05:36 - 2014-06-30 05:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\fgnngg.bat 2014-06-30 05:34 - 2014-06-30 05:34 - 00003200 _____ () C:\Windows\System32\Tasks\awkfl 2014-06-30 05:34 - 2014-06-30 05:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\awkfl.bat 2014-06-30 05:32 - 2014-06-30 05:32 - 00003202 _____ () C:\Windows\System32\Tasks\yldjcn 2014-06-30 05:32 - 2014-06-30 05:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\yldjcn.bat 2014-06-30 05:30 - 2014-06-30 05:30 - 00003206 _____ () C:\Windows\System32\Tasks\ekhnlrhf 2014-06-30 05:30 - 2014-06-30 05:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\ekhnlrhf.bat 2014-06-30 05:28 - 2014-06-30 05:28 - 00003206 _____ () C:\Windows\System32\Tasks\qmgcmikg 2014-06-30 05:28 - 2014-06-30 05:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\qmgcmikg.bat 2014-06-30 05:26 - 2014-06-30 05:26 - 00003204 _____ () C:\Windows\System32\Tasks\mcbxwcs 2014-06-30 05:26 - 2014-06-30 05:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\mcbxwcs.bat 2014-06-30 05:24 - 2014-06-30 05:24 - 00003206 _____ () C:\Windows\System32\Tasks\oopqhiaa 2014-06-30 05:24 - 2014-06-30 05:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\oopqhiaa.bat 2014-06-30 05:22 - 2014-06-30 05:22 - 00003204 _____ () C:\Windows\System32\Tasks\ijlmopq 2014-06-30 05:22 - 2014-06-30 05:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\ijlmopq.bat 2014-06-30 05:20 - 2014-06-30 05:20 - 00003206 _____ () C:\Windows\System32\Tasks\kfdavzwl 2014-06-30 05:20 - 2014-06-30 05:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\kfdavzwl.bat 2014-06-30 05:18 - 2014-06-30 05:18 - 00003200 _____ () C:\Windows\System32\Tasks\spuhd 2014-06-30 05:18 - 2014-06-30 05:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\spuhd.bat 2014-06-30 05:16 - 2014-06-30 05:16 - 00003202 _____ () C:\Windows\System32\Tasks\bxthdr 2014-06-30 05:16 - 2014-06-30 05:16 - 00000269 _____ () C:\Users\hülya\AppData\Local\bxthdr.bat 2014-06-30 05:14 - 2014-06-30 05:14 - 00003204 _____ () C:\Windows\System32\Tasks\fxacscu 2014-06-30 05:14 - 2014-06-30 05:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\fxacscu.bat 2014-06-30 05:12 - 2014-06-30 05:12 - 00003202 _____ () C:\Windows\System32\Tasks\beiuye 2014-06-30 05:12 - 2014-06-30 05:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\beiuye.bat 2014-06-30 05:10 - 2014-06-30 05:10 - 00003202 _____ () C:\Windows\System32\Tasks\lbgcbx 2014-06-30 05:10 - 2014-06-30 05:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\lbgcbx.bat 2014-06-30 05:08 - 2014-06-30 05:08 - 00003200 _____ () C:\Windows\System32\Tasks\erawe 2014-06-30 05:08 - 2014-06-30 05:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\erawe.bat 2014-06-30 05:06 - 2014-06-30 05:06 - 00003200 _____ () C:\Windows\System32\Tasks\caebg 2014-06-30 05:06 - 2014-06-30 05:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\caebg.bat 2014-06-30 05:04 - 2014-06-30 05:04 - 00003206 _____ () C:\Windows\System32\Tasks\hqqbbcll 2014-06-30 05:04 - 2014-06-30 05:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\hqqbbcll.bat 2014-06-30 05:01 - 2014-06-30 05:01 - 00003204 _____ () C:\Windows\System32\Tasks\ruxcmqt 2014-06-30 05:01 - 2014-06-30 05:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ruxcmqt.bat 2014-06-30 04:59 - 2014-06-30 04:59 - 00003206 _____ () C:\Windows\System32\Tasks\wxxabbdl 2014-06-30 04:59 - 2014-06-30 04:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\wxxabbdl.bat 2014-06-30 04:57 - 2014-06-30 04:57 - 00003204 _____ () C:\Windows\System32\Tasks\tbfedip 2014-06-30 04:57 - 2014-06-30 04:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbfedip.bat 2014-06-30 04:55 - 2014-06-30 04:55 - 00003200 _____ () C:\Windows\System32\Tasks\khtpt 2014-06-30 04:55 - 2014-06-30 04:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\khtpt.bat 2014-06-30 04:53 - 2014-06-30 04:53 - 00003204 _____ () C:\Windows\System32\Tasks\pakteow 2014-06-30 04:53 - 2014-06-30 04:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\pakteow.bat 2014-06-30 04:51 - 2014-06-30 04:51 - 00003200 _____ () C:\Windows\System32\Tasks\tsqpv 2014-06-30 04:51 - 2014-06-30 04:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\tsqpv.bat 2014-06-30 04:49 - 2014-06-30 04:49 - 00003202 _____ () C:\Windows\System32\Tasks\fsigct 2014-06-30 04:49 - 2014-06-30 04:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\fsigct.bat 2014-06-30 04:47 - 2014-06-30 04:47 - 00003202 _____ () C:\Windows\System32\Tasks\quwaeg 2014-06-30 04:47 - 2014-06-30 04:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\quwaeg.bat 2014-06-30 04:45 - 2014-06-30 04:45 - 00003200 _____ () C:\Windows\System32\Tasks\nveck 2014-06-30 04:45 - 2014-06-30 04:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\nveck.bat 2014-06-30 04:43 - 2014-06-30 04:43 - 00003202 _____ () C:\Windows\System32\Tasks\tqwtbw 2014-06-30 04:43 - 2014-06-30 04:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\tqwtbw.bat 2014-06-30 04:41 - 2014-06-30 04:41 - 00003200 _____ () C:\Windows\System32\Tasks\zlqcg 2014-06-30 04:41 - 2014-06-30 04:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\zlqcg.bat 2014-06-30 04:36 - 2014-06-30 04:36 - 00003204 _____ () C:\Windows\System32\Tasks\jehlnce 2014-06-30 04:36 - 2014-06-30 04:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\jehlnce.bat 2014-06-30 04:34 - 2014-06-30 04:34 - 00003204 _____ () C:\Windows\System32\Tasks\aguiubo 2014-06-30 04:34 - 2014-06-30 04:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\aguiubo.bat 2014-06-30 04:32 - 2014-06-30 04:32 - 00003200 _____ () C:\Windows\System32\Tasks\lqntf 2014-06-30 04:32 - 2014-06-30 04:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\lqntf.bat 2014-06-30 04:30 - 2014-06-30 04:30 - 00003200 _____ () C:\Windows\System32\Tasks\dulcs 2014-06-30 04:30 - 2014-06-30 04:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\dulcs.bat 2014-06-30 04:28 - 2014-06-30 04:28 - 00003200 _____ () C:\Windows\System32\Tasks\ljivt 2014-06-30 04:28 - 2014-06-30 04:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\ljivt.bat 2014-06-30 04:26 - 2014-06-30 04:26 - 00003206 _____ () C:\Windows\System32\Tasks\lrweaflq 2014-06-30 04:26 - 2014-06-30 04:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\lrweaflq.bat 2014-06-30 04:24 - 2014-06-30 04:24 - 00003200 _____ () C:\Windows\System32\Tasks\xdmoi 2014-06-30 04:24 - 2014-06-30 04:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\xdmoi.bat 2014-06-30 04:22 - 2014-06-30 04:22 - 00003200 _____ () C:\Windows\System32\Tasks\jdymi 2014-06-30 04:22 - 2014-06-30 04:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\jdymi.bat 2014-06-30 04:20 - 2014-06-30 04:20 - 00003202 _____ () C:\Windows\System32\Tasks\sxdjht 2014-06-30 04:20 - 2014-06-30 04:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\sxdjht.bat 2014-06-30 04:18 - 2014-06-30 04:18 - 00003204 _____ () C:\Windows\System32\Tasks\noohhij 2014-06-30 04:18 - 2014-06-30 04:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\noohhij.bat 2014-06-30 04:14 - 2014-06-30 04:14 - 00003204 _____ () C:\Windows\System32\Tasks\hcdeabo 2014-06-30 04:14 - 2014-06-30 04:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\hcdeabo.bat 2014-06-30 04:12 - 2014-06-30 04:12 - 00003202 _____ () C:\Windows\System32\Tasks\cfdfey 2014-06-30 04:12 - 2014-06-30 04:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\cfdfey.bat 2014-06-30 04:10 - 2014-06-30 04:10 - 00003204 _____ () C:\Windows\System32\Tasks\gwwoohh 2014-06-30 04:10 - 2014-06-30 04:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\gwwoohh.bat 2014-06-30 04:08 - 2014-06-30 04:08 - 00003206 _____ () C:\Windows\System32\Tasks\izuvpicd 2014-06-30 04:08 - 2014-06-30 04:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\izuvpicd.bat 2014-06-30 04:06 - 2014-06-30 04:06 - 00003206 _____ () C:\Windows\System32\Tasks\cfcfnrnj 2014-06-30 04:06 - 2014-06-30 04:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\cfcfnrnj.bat 2014-06-30 04:04 - 2014-06-30 04:04 - 00003200 _____ () C:\Windows\System32\Tasks\ekaix 2014-06-30 04:04 - 2014-06-30 04:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\ekaix.bat 2014-06-30 03:42 - 2014-06-30 03:42 - 00003202 _____ () C:\Windows\System32\Tasks\acxkgi 2014-06-30 03:42 - 2014-06-30 03:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\acxkgi.bat 2014-06-30 03:40 - 2014-06-30 03:40 - 00003206 _____ () C:\Windows\System32\Tasks\eulkcjbf 2014-06-30 03:40 - 2014-06-30 03:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\eulkcjbf.bat 2014-06-30 03:38 - 2014-06-30 03:38 - 00003202 _____ () C:\Windows\System32\Tasks\fwhaxi 2014-06-30 03:38 - 2014-06-30 03:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\fwhaxi.bat 2014-06-30 03:36 - 2014-06-30 03:36 - 00003200 _____ () C:\Windows\System32\Tasks\tyfrx 2014-06-30 03:36 - 2014-06-30 03:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\tyfrx.bat 2014-06-30 03:34 - 2014-06-30 03:34 - 00003202 _____ () C:\Windows\System32\Tasks\ovfemt 2014-06-30 03:34 - 2014-06-30 03:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\ovfemt.bat 2014-06-30 03:32 - 2014-06-30 03:32 - 00003202 _____ () C:\Windows\System32\Tasks\lcbpfk 2014-06-30 03:32 - 2014-06-30 03:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpfk.bat 2014-06-30 03:30 - 2014-06-30 03:30 - 00003204 _____ () C:\Windows\System32\Tasks\ubpckyn 2014-06-30 03:30 - 2014-06-30 03:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\ubpckyn.bat 2014-06-30 03:28 - 2014-06-30 03:28 - 00003202 _____ () C:\Windows\System32\Tasks\qcuecu 2014-06-30 03:28 - 2014-06-30 03:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\qcuecu.bat 2014-06-30 03:26 - 2014-06-30 03:26 - 00003204 _____ () C:\Windows\System32\Tasks\wfoefpa 2014-06-30 03:26 - 2014-06-30 03:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\wfoefpa.bat 2014-06-30 03:24 - 2014-06-30 03:24 - 00003206 _____ () C:\Windows\System32\Tasks\vggvgguf 2014-06-30 03:24 - 2014-06-30 03:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\vggvgguf.bat 2014-06-30 03:22 - 2014-06-30 03:22 - 00003202 _____ () C:\Windows\System32\Tasks\gufetd 2014-06-30 03:22 - 2014-06-30 03:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\gufetd.bat 2014-06-30 03:20 - 2014-06-30 03:20 - 00003202 _____ () C:\Windows\System32\Tasks\ljwusx 2014-06-30 03:20 - 2014-06-30 03:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\ljwusx.bat 2014-06-30 00:13 - 2014-06-30 00:13 - 00003200 _____ () C:\Windows\System32\Tasks\ztyse 2014-06-30 00:13 - 2014-06-30 00:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\ztyse.bat 2014-06-30 00:11 - 2014-06-30 00:11 - 00003200 _____ () C:\Windows\System32\Tasks\bdadk 2014-06-30 00:11 - 2014-06-30 00:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\bdadk.bat 2014-06-30 00:09 - 2014-06-30 00:09 - 00003204 _____ () C:\Windows\System32\Tasks\trwucgl 2014-06-30 00:09 - 2014-06-30 00:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\trwucgl.bat 2014-06-30 00:07 - 2014-06-30 00:07 - 00003206 _____ () C:\Windows\System32\Tasks\tbeerxvb 2014-06-30 00:07 - 2014-06-30 00:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbeerxvb.bat 2014-06-30 00:05 - 2014-06-30 00:05 - 00003200 _____ () C:\Windows\System32\Tasks\ccbfv 2014-06-30 00:05 - 2014-06-30 00:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\ccbfv.bat 2014-06-30 00:03 - 2014-06-30 00:03 - 00003202 _____ () C:\Windows\System32\Tasks\vveett 2014-06-30 00:03 - 2014-06-30 00:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\vveett.bat 2014-06-30 00:01 - 2014-06-30 00:01 - 00003206 _____ () C:\Windows\System32\Tasks\ligdqolj 2014-06-30 00:01 - 2014-06-30 00:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ligdqolj.bat 2014-06-29 23:59 - 2014-06-29 23:59 - 00003204 _____ () C:\Windows\System32\Tasks\vdksahw 2014-06-29 23:59 - 2014-06-29 23:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\vdksahw.bat 2014-06-29 23:57 - 2014-06-29 23:57 - 00003206 _____ () C:\Windows\System32\Tasks\vdsbqhwf 2014-06-29 23:57 - 2014-06-29 23:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\vdsbqhwf.bat 2014-06-29 23:55 - 2014-06-29 23:55 - 00003200 _____ () C:\Windows\System32\Tasks\reiba 2014-06-29 23:55 - 2014-06-29 23:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\reiba.bat 2014-06-29 23:53 - 2014-06-29 23:53 - 00003206 _____ () C:\Windows\System32\Tasks\kwtxbhko 2014-06-29 23:53 - 2014-06-29 23:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\kwtxbhko.bat 2014-06-29 23:51 - 2014-06-29 23:51 - 00003204 _____ () C:\Windows\System32\Tasks\koagcns 2014-06-29 23:51 - 2014-06-29 23:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\koagcns.bat 2014-06-29 23:49 - 2014-06-29 23:49 - 00003206 _____ () C:\Windows\System32\Tasks\vveeettb 2014-06-29 23:49 - 2014-06-29 23:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\vveeettb.bat 2014-06-29 23:47 - 2014-06-29 23:47 - 00003206 _____ () C:\Windows\System32\Tasks\rdpsgibx 2014-06-29 23:47 - 2014-06-29 23:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\rdpsgibx.bat 2014-06-29 23:45 - 2014-06-29 23:45 - 00003204 _____ () C:\Windows\System32\Tasks\quejuej 2014-06-29 23:45 - 2014-06-29 23:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\quejuej.bat 2014-06-29 23:43 - 2014-06-29 23:43 - 00003202 _____ () C:\Windows\System32\Tasks\icdytn 2014-06-29 23:43 - 2014-06-29 23:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\icdytn.bat 2014-06-29 23:41 - 2014-06-29 23:41 - 00003206 _____ () C:\Windows\System32\Tasks\ajcohkcp 2014-06-29 23:41 - 2014-06-29 23:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\ajcohkcp.bat 2014-06-29 23:39 - 2014-06-29 23:39 - 00003206 _____ () C:\Windows\System32\Tasks\gofohwhp 2014-06-29 23:39 - 2014-06-29 23:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\gofohwhp.bat 2014-06-29 23:37 - 2014-06-29 23:37 - 00003206 _____ () C:\Windows\System32\Tasks\dulctdar 2014-06-29 23:37 - 2014-06-29 23:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\dulctdar.bat 2014-06-29 23:35 - 2014-06-29 23:35 - 00003200 _____ () C:\Windows\System32\Tasks\qnifi 2014-06-29 23:35 - 2014-06-29 23:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\qnifi.bat 2014-06-29 21:33 - 2014-06-29 21:33 - 00003200 _____ () C:\Windows\System32\Tasks\daetq 2014-06-29 21:33 - 2014-06-29 21:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\daetq.bat 2014-06-29 21:31 - 2014-06-29 21:31 - 00003206 _____ () C:\Windows\System32\Tasks\akcohzmg 2014-06-29 21:31 - 2014-06-29 21:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\akcohzmg.bat 2014-06-29 21:29 - 2014-06-29 21:29 - 00003202 _____ () C:\Windows\System32\Tasks\nooffg 2014-06-29 21:29 - 2014-06-29 21:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\nooffg.bat 2014-06-29 21:27 - 2014-06-29 21:27 - 00003204 _____ () C:\Windows\System32\Tasks\lqgmrpu 2014-06-29 21:27 - 2014-06-29 21:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\lqgmrpu.bat 2014-06-29 21:25 - 2014-06-29 21:25 - 00003204 _____ () C:\Windows\System32\Tasks\cnaupdx 2014-06-29 21:25 - 2014-06-29 21:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\cnaupdx.bat 2014-06-29 21:23 - 2014-06-29 21:23 - 00003206 _____ () C:\Windows\System32\Tasks\rwimaepu 2014-06-29 21:23 - 2014-06-29 21:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\rwimaepu.bat 2014-06-29 21:21 - 2014-06-29 21:21 - 00003200 _____ () C:\Windows\System32\Tasks\iavic 2014-06-29 21:21 - 2014-06-29 21:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\iavic.bat 2014-06-29 21:19 - 2014-06-29 21:19 - 00003200 _____ () C:\Windows\System32\Tasks\hajdc 2014-06-29 21:19 - 2014-06-29 21:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\hajdc.bat 2014-06-29 21:17 - 2014-06-29 21:17 - 00003206 _____ () C:\Windows\System32\Tasks\jdauqmhd 2014-06-29 21:17 - 2014-06-29 21:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\jdauqmhd.bat 2014-06-29 21:15 - 2014-06-29 21:15 - 00003204 _____ () C:\Windows\System32\Tasks\vdksa 2014-06-29 21:15 - 2014-06-29 21:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\utjiwdc.bat 2014-06-29 21:13 - 2014-06-29 21:13 - 00003204 _____ () C:\Windows\System32\Tasks\hwooghw 2014-06-29 21:13 - 2014-06-29 21:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\hwooghw.bat 2014-06-29 21:11 - 2014-06-29 21:11 - 00003204 _____ () C:\Windows\System32\Tasks\ifauytq 2014-06-29 21:11 - 2014-06-29 21:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\ifauytq.bat 2014-06-29 21:09 - 2014-06-29 21:09 - 00003204 _____ () C:\Windows\System32\Tasks\erawlaq 2014-06-29 21:09 - 2014-06-29 21:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\erawlaq.bat 2014-06-29 21:07 - 2014-06-29 21:07 - 00003200 _____ () C:\Windows\System32\Tasks\lxdiu 2014-06-29 21:07 - 2014-06-29 21:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\lxdiu.bat 2014-06-29 21:05 - 2014-06-29 21:05 - 00003200 _____ () C:\Windows\System32\Tasks\pjddy 2014-06-29 21:05 - 2014-06-29 21:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\pjddy.bat 2014-06-29 21:03 - 2014-06-29 21:03 - 00003206 _____ () C:\Windows\System32\Tasks\fqcdnfrr 2014-06-29 21:03 - 2014-06-29 21:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\fqcdnfrr.bat 2014-06-29 21:01 - 2014-06-29 21:01 - 00003206 _____ () C:\Windows\System32\Tasks\ghpaijjd 2014-06-29 21:01 - 2014-06-29 21:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ghpaijjd.bat 2014-06-29 20:59 - 2014-06-29 20:59 - 00003206 _____ () C:\Windows\System32\Tasks\hbunicup 2014-06-29 20:59 - 2014-06-29 20:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\hbunicup.bat 2014-06-29 20:57 - 2014-06-29 20:57 - 00003204 _____ () C:\Windows\System32\Tasks\aaoibwj 2014-06-29 20:57 - 2014-06-29 20:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\aaoibwj.bat 2014-06-29 20:55 - 2014-06-29 20:55 - 00003204 _____ () C:\Windows\System32\Tasks\aaunbtn 2014-06-29 20:55 - 2014-06-29 20:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\aaunbtn.bat 2014-06-29 20:53 - 2014-06-29 20:53 - 00003206 _____ () C:\Windows\System32\Tasks\mffummlk 2014-06-29 20:53 - 2014-06-29 20:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\mffummlk.bat 2014-06-29 20:51 - 2014-06-29 20:51 - 00003200 _____ () C:\Windows\System32\Tasks\refju 2014-06-29 20:51 - 2014-06-29 20:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\refju.bat 2014-06-29 20:49 - 2014-06-29 20:49 - 00003204 _____ () C:\Windows\System32\Tasks\daechca 2014-06-29 20:49 - 2014-06-29 20:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\daechca.bat 2014-06-29 20:47 - 2014-06-29 20:47 - 00003206 _____ () C:\Windows\System32\Tasks\idxsnplf 2014-06-29 20:47 - 2014-06-29 20:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\idxsnplf.bat 2014-06-29 20:45 - 2014-06-29 20:45 - 00003204 _____ () C:\Windows\System32\Tasks\xrunfjc 2014-06-29 20:45 - 2014-06-29 20:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\xrunfjc.bat 2014-06-29 20:43 - 2014-06-29 20:43 - 00003200 _____ () C:\Windows\System32\Tasks\ubovd 2014-06-29 20:43 - 2014-06-29 20:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\ubovd.bat 2014-06-29 20:41 - 2014-06-29 20:41 - 00003202 _____ () C:\Windows\System32\Tasks\eblbzi 2014-06-29 20:41 - 2014-06-29 20:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\eblbzi.bat 2014-06-29 20:39 - 2014-06-29 20:39 - 00003202 _____ () C:\Windows\System32\Tasks\tbgmtf 2014-06-29 20:39 - 2014-06-29 20:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbgmtf.bat 2014-06-29 20:37 - 2014-06-29 20:37 - 00003206 _____ () C:\Windows\System32\Tasks\rvadoswa 2014-06-29 20:37 - 2014-06-29 20:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\rvadoswa.bat 2014-06-29 20:35 - 2014-06-29 20:35 - 00003206 _____ () C:\Windows\System32\Tasks\numsabiy 2014-06-29 20:35 - 2014-06-29 20:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\numsabiy.bat 2014-06-29 20:33 - 2014-06-29 20:33 - 00003204 _____ () C:\Windows\System32\Tasks\kotimqn 2014-06-29 20:33 - 2014-06-29 20:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\kotimqn.bat 2014-06-29 20:31 - 2014-06-29 20:31 - 00003200 _____ () C:\Windows\System32\Tasks\lkifm 2014-06-29 20:31 - 2014-06-29 20:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\lkifm.bat 2014-06-29 20:29 - 2014-06-29 20:29 - 00003200 _____ () C:\Windows\System32\Tasks\fjdoh 2014-06-29 20:29 - 2014-06-29 20:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\fjdoh.bat 2014-06-29 20:27 - 2014-06-29 20:27 - 00003202 _____ () C:\Windows\System32\Tasks\fkvoal 2014-06-29 20:27 - 2014-06-29 20:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\fkvoal.bat 2014-06-29 20:25 - 2014-06-29 20:25 - 00003206 _____ () C:\Windows\System32\Tasks\fdcaqonm 2014-06-29 20:25 - 2014-06-29 20:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\fdcaqonm.bat 2014-06-29 20:23 - 2014-06-29 20:23 - 00003202 _____ () C:\Windows\System32\Tasks\oqyaks 2014-06-29 20:23 - 2014-06-29 20:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\oqyaks.bat 2014-06-29 20:21 - 2014-06-29 20:21 - 00003204 _____ () C:\Windows\System32\Tasks\kotxmqu 2014-06-29 20:21 - 2014-06-29 20:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\kotxmqu.bat 2014-06-29 20:19 - 2014-06-29 20:19 - 00003204 _____ () C:\Windows\System32\Tasks\iddytni 2014-06-29 20:19 - 2014-06-29 20:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\iddytni.bat 2014-06-29 20:17 - 2014-06-29 20:17 - 00003206 _____ () C:\Windows\System32\Tasks\kfujeuqf 2014-06-29 20:17 - 2014-06-29 20:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\kfujeuqf.bat 2014-06-29 20:15 - 2014-06-29 20:15 - 00003202 _____ () C:\Windows\System32\Tasks\whqaqs 2014-06-29 20:15 - 2014-06-29 20:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\whqaqs.bat 2014-06-29 20:13 - 2014-06-29 20:13 - 00003200 _____ () C:\Windows\System32\Tasks\lcbpv 2014-06-29 20:13 - 2014-06-29 20:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpv.bat 2014-06-29 20:11 - 2014-06-29 20:11 - 00003206 _____ () C:\Windows\System32\Tasks\psuprudi 2014-06-29 20:11 - 2014-06-29 20:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\psuprudi.bat 2014-06-29 20:09 - 2014-06-29 20:09 - 00003206 _____ () C:\Windows\System32\Tasks\numttcsa 2014-06-29 20:09 - 2014-06-29 20:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\numttcsa.bat 2014-06-29 20:07 - 2014-06-29 20:07 - 00003202 _____ () C:\Windows\System32\Tasks\jfjnqm 2014-06-29 20:07 - 2014-06-29 20:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\jfjnqm.bat 2014-06-29 20:05 - 2014-06-29 20:05 - 00003204 _____ () C:\Windows\System32\Tasks\egqajsk 2014-06-29 20:05 - 2014-06-29 20:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\egqajsk.bat 2014-06-29 20:03 - 2014-06-29 20:03 - 00003202 _____ () C:\Windows\System32\Tasks\hztmgy 2014-06-29 20:03 - 2014-06-29 20:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\hztmgy.bat 2014-06-29 20:01 - 2014-06-29 20:01 - 00003200 _____ () C:\Windows\System32\Tasks\isnoa 2014-06-29 20:01 - 2014-06-29 20:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\isnoa.bat 2014-06-29 19:59 - 2014-06-29 19:59 - 00003206 _____ () C:\Windows\System32\Tasks\tbglafes 2014-06-29 19:59 - 2014-06-29 19:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbglafes.bat 2014-06-29 19:57 - 2014-06-29 19:57 - 00003206 _____ () C:\Windows\System32\Tasks\ukbhckaa 2014-06-29 19:57 - 2014-06-29 19:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\ukbhckaa.bat 2014-06-29 19:14 - 2014-06-29 19:14 - 00003206 _____ () C:\Windows\System32\Tasks\thlrdkxu 2014-06-29 19:14 - 2014-06-29 19:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\thlrdkxu.bat 2014-06-29 19:12 - 2014-06-29 19:12 - 00003202 _____ () C:\Windows\System32\Tasks\zuhtgb 2014-06-29 19:12 - 2014-06-29 19:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\zuhtgb.bat 2014-06-29 19:10 - 2014-06-29 19:10 - 00003202 _____ () C:\Windows\System32\Tasks\kbxmda 2014-06-29 19:10 - 2014-06-29 19:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\kbxmda.bat 2014-06-29 19:08 - 2014-06-29 19:08 - 00003200 _____ () C:\Windows\System32\Tasks\edeaa 2014-06-29 19:08 - 2014-06-29 19:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\edeaa.bat 2014-06-29 19:06 - 2014-06-29 19:06 - 00003206 _____ () C:\Windows\System32\Tasks\rvaeitxc 2014-06-29 19:06 - 2014-06-29 19:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\rvaeitxc.bat 2014-06-29 19:04 - 2014-06-29 19:04 - 00003202 _____ () C:\Windows\System32\Tasks\dafdid 2014-06-29 19:04 - 2014-06-29 19:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\dafdid.bat 2014-06-29 19:02 - 2014-06-29 19:02 - 00003200 _____ () C:\Windows\System32\Tasks\auaco 2014-06-29 19:02 - 2014-06-29 19:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\auaco.bat 2014-06-29 19:00 - 2014-06-29 19:00 - 00003206 _____ () C:\Windows\System32\Tasks\ydoalwbt 2014-06-29 19:00 - 2014-06-29 19:00 - 00000269 _____ () C:\Users\hülya\AppData\Local\ydoalwbt.bat 2014-06-29 18:58 - 2014-06-29 18:58 - 00003206 _____ () C:\Windows\System32\Tasks\efqidtef 2014-06-29 18:58 - 2014-06-29 18:58 - 00000269 _____ () C:\Users\hülya\AppData\Local\efqidtef.bat 2014-06-29 18:56 - 2014-06-29 18:56 - 00003206 _____ () C:\Windows\System32\Tasks\piqzluev 2014-06-29 18:56 - 2014-06-29 18:56 - 00000269 _____ () C:\Users\hülya\AppData\Local\piqzluev.bat 2014-06-29 18:54 - 2014-06-29 18:54 - 00003204 _____ () C:\Windows\System32\Tasks\aavaouj 2014-06-29 18:54 - 2014-06-29 18:54 - 00000269 _____ () C:\Users\hülya\AppData\Local\aavaouj.bat 2014-06-29 18:48 - 2014-06-29 18:48 - 00003204 _____ () C:\Windows\System32\Tasks\ahubocp 2014-06-29 18:48 - 2014-06-29 18:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\ahubocp.bat 2014-06-29 18:46 - 2014-06-29 18:46 - 00003206 _____ () C:\Windows\System32\Tasks\jfbdsujm 2014-06-29 18:46 - 2014-06-29 18:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\jfbdsujm.bat 2014-06-29 18:44 - 2014-06-29 18:44 - 00003202 _____ () C:\Windows\System32\Tasks\vmddsj 2014-06-29 18:44 - 2014-06-29 18:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\vmddsj.bat 2014-06-29 18:42 - 2014-06-29 18:42 - 00003200 _____ () C:\Windows\System32\Tasks\giqss 2014-06-29 18:42 - 2014-06-29 18:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\giqss.bat 2014-06-29 18:40 - 2014-06-29 18:40 - 00003206 _____ () C:\Windows\System32\Tasks\thbbobwc 2014-06-29 18:40 - 2014-06-29 18:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\thbbobwc.bat 2014-06-29 18:38 - 2014-06-29 18:38 - 00003206 _____ () C:\Windows\System32\Tasks\ruxjmqcg 2014-06-29 18:38 - 2014-06-29 18:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\ruxjmqcg.bat 2014-06-29 18:36 - 2014-06-29 18:36 - 00003204 _____ () C:\Windows\System32\Tasks\ahubvcq 2014-06-29 18:36 - 2014-06-29 18:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\ahubvcq.bat 2014-06-29 18:34 - 2014-06-29 18:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\gfiaa.bat 2014-06-29 18:33 - 2014-06-29 18:33 - 00003200 _____ () C:\Windows\System32\Tasks\gfiaa 2014-06-29 18:31 - 2014-06-29 18:31 - 00003206 _____ () C:\Windows\System32\Tasks\qlgqlgjm 2014-06-29 18:31 - 2014-06-29 18:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\qlgqlgjm.bat 2014-06-29 18:29 - 2014-06-29 18:29 - 00003202 _____ () C:\Windows\System32\Tasks\oqysbd 2014-06-29 18:29 - 2014-06-29 18:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\oqysbd.bat 2014-06-29 18:27 - 2014-06-29 18:27 - 00003202 _____ () C:\Windows\System32\Tasks\ykvbmx 2014-06-29 18:27 - 2014-06-29 18:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\ykvbmx.bat 2014-06-29 18:25 - 2014-06-29 18:25 - 00003206 _____ () C:\Windows\System32\Tasks\aocpcqer 2014-06-29 18:25 - 2014-06-29 18:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\aocpcqer.bat 2014-06-29 18:23 - 2014-06-29 18:23 - 00003200 _____ () C:\Windows\System32\Tasks\fepha 2014-06-29 18:23 - 2014-06-29 18:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\fepha.bat 2014-06-29 18:21 - 2014-06-29 18:21 - 00003204 _____ () C:\Windows\System32\Tasks\acceyau 2014-06-29 18:21 - 2014-06-29 18:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\acceyau.bat 2014-06-29 18:19 - 2014-06-29 18:19 - 00003202 _____ () C:\Windows\System32\Tasks\tymrgl 2014-06-29 18:19 - 2014-06-29 18:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\tymrgl.bat 2014-06-29 18:17 - 2014-06-29 18:17 - 00003202 _____ () C:\Windows\System32\Tasks\cxuqfu 2014-06-29 18:17 - 2014-06-29 18:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\cxuqfu.bat 2014-06-29 18:15 - 2014-06-29 18:15 - 00003200 _____ () C:\Windows\System32\Tasks\gxqja 2014-06-29 18:15 - 2014-06-29 18:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\gxqja.bat 2014-06-29 18:13 - 2014-06-29 18:13 - 00003202 _____ () C:\Windows\System32\Tasks\xiscnx 2014-06-29 18:13 - 2014-06-29 18:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\xiscnx.bat 2014-06-29 18:11 - 2014-06-29 18:11 - 00003204 _____ () C:\Windows\System32\Tasks\gffffee 2014-06-29 18:11 - 2014-06-29 18:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\gffffee.bat 2014-06-29 18:09 - 2014-06-29 18:09 - 00003200 _____ () C:\Windows\System32\Tasks\ccafn 2014-06-29 18:09 - 2014-06-29 18:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\ccafn.bat 2014-06-29 18:07 - 2014-06-29 18:07 - 00003200 _____ () C:\Windows\System32\Tasks\jvrui 2014-06-29 18:07 - 2014-06-29 18:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\jvrui.bat 2014-06-29 18:05 - 2014-06-29 18:05 - 00003204 _____ () C:\Windows\System32\Tasks\qdfrefk 2014-06-29 18:05 - 2014-06-29 18:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\qdfrefk.bat 2014-06-29 18:03 - 2014-06-29 18:03 - 00003204 _____ () C:\Windows\System32\Tasks\eewxpph 2014-06-29 18:03 - 2014-06-29 18:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\eewxpph.bat 2014-06-29 18:01 - 2014-06-29 18:01 - 00003200 _____ () C:\Windows\System32\Tasks\icwxl 2014-06-29 18:01 - 2014-06-29 18:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\icwxl.bat 2014-06-29 17:59 - 2014-06-29 17:59 - 00003200 _____ () C:\Windows\System32\Tasks\wnfne 2014-06-29 17:59 - 2014-06-29 17:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\wnfne.bat 2014-06-29 17:57 - 2014-06-29 17:57 - 00003202 _____ () C:\Windows\System32\Tasks\xizdef 2014-06-29 17:57 - 2014-06-29 17:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\xizdef.bat 2014-06-29 17:55 - 2014-06-29 17:55 - 00003206 _____ () C:\Windows\System32\Tasks\quxbfilv 2014-06-29 17:55 - 2014-06-29 17:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\quxbfilv.bat 2014-06-29 17:53 - 2014-06-29 17:53 - 00003202 _____ () C:\Windows\System32\Tasks\zfsdqf 2014-06-29 17:53 - 2014-06-29 17:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\zfsdqf.bat 2014-06-29 17:52 - 2014-06-29 17:52 - 00623696 _____ (Click Me In Limited) C:\Users\hülya\AppData\Local\nsu16A4.tmp 2014-06-29 17:51 - 2014-06-29 17:51 - 00003206 _____ () C:\Windows\System32\Tasks\kpmrotfu 2014-06-29 17:51 - 2014-06-29 17:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\kpmrotfu.bat 2014-06-29 17:49 - 2014-06-29 17:49 - 00003204 _____ () C:\Windows\System32\Tasks\khepmjn 2014-06-29 17:49 - 2014-06-29 17:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\khepmjn.bat 2014-06-29 17:47 - 2014-06-29 17:47 - 00003204 _____ () C:\Windows\System32\Tasks\beyuxlg 2014-06-29 17:47 - 2014-06-29 17:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\beyuxlg.bat 2014-06-29 17:45 - 2014-06-29 17:45 - 00003200 _____ () C:\Windows\System32\Tasks\eddzr 2014-06-29 17:45 - 2014-06-29 17:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\eddzr.bat 2014-06-29 17:43 - 2014-06-29 17:43 - 00003204 _____ () C:\Windows\System32\Tasks\cpdlguc 2014-06-29 17:43 - 2014-06-29 17:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\cpdlguc.bat 2014-06-29 17:41 - 2014-06-29 17:41 - 00003206 _____ () C:\Windows\System32\Tasks\gaiccbvd 2014-06-29 17:41 - 2014-06-29 17:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\gaiccbvd.bat 2014-06-29 17:39 - 2014-06-29 17:39 - 00003202 _____ () C:\Windows\System32\Tasks\iauhbv 2014-06-29 17:39 - 2014-06-29 17:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\iauhbv.bat 2014-06-29 17:37 - 2014-06-29 17:37 - 00003206 _____ () C:\Windows\System32\Tasks\eudbraxo 2014-06-29 17:37 - 2014-06-29 17:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\eudbraxo.bat 2014-06-29 17:35 - 2014-06-29 17:35 - 00003206 _____ () C:\Windows\System32\Tasks\pxrbjdlu 2014-06-29 17:35 - 2014-06-29 17:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\pxrbjdlu.bat 2014-06-29 17:33 - 2014-06-29 17:33 - 00003200 _____ () C:\Windows\System32\Tasks\ilvab 2014-06-29 17:33 - 2014-06-29 17:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\ilvab.bat 2014-06-29 17:31 - 2014-06-29 17:31 - 00003204 _____ () C:\Windows\System32\Tasks\vwgfvve 2014-06-29 17:31 - 2014-06-29 17:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\vwgfvve.bat 2014-06-29 17:28 - 2014-06-29 17:28 - 00003204 _____ () C:\Windows\System32\Tasks\reibflg 2014-06-29 17:28 - 2014-06-29 17:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\reibflg.bat 2014-06-29 17:26 - 2014-06-29 17:26 - 00003202 _____ () C:\Windows\System32\Tasks\kgjoch 2014-06-29 17:26 - 2014-06-29 17:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\kgjoch.bat 2014-06-29 17:24 - 2014-06-29 17:24 - 00003202 _____ () C:\Windows\System32\Tasks\dngoeo 2014-06-29 17:24 - 2014-06-29 17:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\dngoeo.bat 2014-06-29 17:22 - 2014-06-29 17:22 - 00003204 _____ () C:\Windows\System32\Tasks\gohgohh 2014-06-29 17:22 - 2014-06-29 17:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\gohgohh.bat 2014-06-29 17:20 - 2014-06-29 17:20 - 00003206 _____ () C:\Windows\System32\Tasks\lbffbzeu 2014-06-29 17:20 - 2014-06-29 17:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\lbffbzeu.bat 2014-06-29 17:18 - 2014-06-29 17:18 - 00003204 _____ () C:\Windows\System32\Tasks\dafwmja 2014-06-29 17:18 - 2014-06-29 17:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\dafwmja.bat 2014-06-29 17:16 - 2014-06-29 17:16 - 00003204 _____ () C:\Windows\System32\Tasks\sfzekgc 2014-06-29 17:16 - 2014-06-29 17:16 - 00000269 _____ () C:\Users\hülya\AppData\Local\sfzekgc.bat 2014-06-29 17:14 - 2014-06-29 17:14 - 00003204 _____ () C:\Windows\System32\Tasks\trxvdah 2014-06-29 17:14 - 2014-06-29 17:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\trxvdah.bat 2014-06-29 17:12 - 2014-06-29 17:12 - 00003200 _____ () C:\Windows\System32\Tasks\cokxm 2014-06-29 17:12 - 2014-06-29 17:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\cokxm.bat 2014-06-29 17:10 - 2014-06-29 17:10 - 00003204 _____ () C:\Windows\System32\Tasks\ajuhbdv 2014-06-29 17:10 - 2014-06-29 17:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\ajuhbdv.bat 2014-06-29 17:08 - 2014-06-29 17:08 - 00003202 _____ () C:\Windows\System32\Tasks\xaqscn 2014-06-29 17:08 - 2014-06-29 17:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\xaqscn.bat 2014-06-29 17:06 - 2014-06-29 17:06 - 00003206 _____ () C:\Windows\System32\Tasks\icreymhc 2014-06-29 17:06 - 2014-06-29 17:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\icreymhc.bat 2014-06-29 17:04 - 2014-06-29 17:04 - 00003202 _____ () C:\Windows\System32\Tasks\rxbycq 2014-06-29 17:04 - 2014-06-29 17:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\rxbycq.bat 2014-06-29 17:02 - 2014-06-29 17:02 - 00003204 _____ () C:\Windows\System32\Tasks\kifbcee 2014-06-29 17:02 - 2014-06-29 17:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\kifbcee.bat 2014-06-29 17:00 - 2014-06-29 17:00 - 00003200 _____ () C:\Windows\System32\Tasks\wgwgw 2014-06-29 17:00 - 2014-06-29 17:00 - 00000269 _____ () C:\Users\hülya\AppData\Local\wgwgw.bat 2014-06-29 16:58 - 2014-06-29 16:58 - 00003200 _____ () C:\Windows\System32\Tasks\nghxp 2014-06-29 16:58 - 2014-06-29 16:58 - 00000269 _____ () C:\Users\hülya\AppData\Local\nghxp.bat 2014-06-29 16:56 - 2014-06-29 16:56 - 00003200 _____ () C:\Windows\System32\Tasks\xdmos 2014-06-29 16:56 - 2014-06-29 16:56 - 00000269 _____ () C:\Users\hülya\AppData\Local\xdmos.bat 2014-06-29 16:54 - 2014-06-29 16:54 - 00003200 _____ () C:\Windows\System32\Tasks\vlmck 2014-06-29 16:54 - 2014-06-29 16:54 - 00000269 _____ () C:\Users\hülya\AppData\Local\vlmck.bat 2014-06-29 16:52 - 2014-06-29 16:52 - 00003202 _____ () C:\Windows\System32\Tasks\rdwbfa 2014-06-29 16:52 - 2014-06-29 16:52 - 00000269 _____ () C:\Users\hülya\AppData\Local\rdwbfa.bat 2014-06-29 16:50 - 2014-06-29 16:50 - 00003204 _____ () C:\Windows\System32\Tasks\bocpdwd 2014-06-29 16:50 - 2014-06-29 16:50 - 00000269 _____ () C:\Users\hülya\AppData\Local\bocpdwd.bat 2014-06-29 16:48 - 2014-06-29 16:48 - 00003204 _____ () C:\Windows\System32\Tasks\prsudyb 2014-06-29 16:48 - 2014-06-29 16:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\prsudyb.bat 2014-06-29 16:46 - 2014-06-29 16:46 - 00003206 _____ () C:\Windows\System32\Tasks\hysdwpba 2014-06-29 16:46 - 2014-06-29 16:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\hysdwpba.bat 2014-06-29 16:44 - 2014-06-29 16:44 - 00003200 _____ () C:\Windows\System32\Tasks\aocpc 2014-06-29 16:44 - 2014-06-29 16:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\aocpc.bat 2014-06-29 16:42 - 2014-06-29 16:42 - 00003206 _____ () C:\Windows\System32\Tasks\bkdpjboa 2014-06-29 16:42 - 2014-06-29 16:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\bkdpjboa.bat 2014-06-29 16:40 - 2014-06-29 16:40 - 00003202 _____ () C:\Windows\System32\Tasks\gphqpz 2014-06-29 16:40 - 2014-06-29 16:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\gphqpz.bat 2014-06-29 16:39 - 2013-03-26 22:30 - 00001442 _____ () C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-06-29 16:38 - 2014-06-29 16:38 - 00003204 _____ () C:\Windows\System32\Tasks\rwbfruh 2014-06-29 16:38 - 2014-06-29 16:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\rwbfruh.bat 2014-06-29 16:36 - 2014-06-29 16:36 - 00003202 _____ () C:\Windows\System32\Tasks\prtvey 2014-06-29 16:36 - 2014-06-29 16:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\prtvey.bat 2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9ED2tmp 2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9E82tmp 2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9E62tmp 2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9E22tmp 2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9E02tmp 2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9DE2tmp 2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9DC2tmp 2014-06-29 16:35 - 2014-06-29 16:35 - 01258344 _____ () C:\Users\hülya\Downloads\Setup (3).exe 2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9EB2tmp 2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\55A4tmp 2014-06-28 05:35 - 2014-07-09 10:52 - 00556544 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-06-27 01:13 - 2014-06-27 01:13 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\DivX 2014-06-27 01:13 - 2014-06-27 01:13 - 00000000 ____D () C:\Program Files\DivX 2014-06-27 01:11 - 2014-06-27 01:11 - 00999232 _____ (DivX, LLC) C:\Users\hülya\Downloads\DivXInstaller.exe 2014-06-27 01:06 - 2014-06-27 01:06 - 00608808 _____ () C:\Users\hülya\Downloads\MediaPlayerClassicInstaller.exe 2014-06-26 22:53 - 2014-07-12 03:32 - 00703968 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-06-26 22:53 - 2014-07-12 03:32 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl Some content of TEMP: ==================== C:\Users\hülya\AppData\Local\Temp\2npfgo6u.dll C:\Users\hülya\AppData\Local\Temp\76k1mdx6.dll C:\Users\hülya\AppData\Local\Temp\amazonicon_v6.exe C:\Users\hülya\AppData\Local\Temp\amazoninstallernircmdc.exe C:\Users\hülya\AppData\Local\Temp\APNSetup.exe C:\Users\hülya\AppData\Local\Temp\autorun.dll C:\Users\hülya\AppData\Local\Temp\b2pyquuf.dll C:\Users\hülya\AppData\Local\Temp\BackupSetup.exe C:\Users\hülya\AppData\Local\Temp\BingBarSetup-Partner.exe C:\Users\hülya\AppData\Local\Temp\dpyqloea.dll C:\Users\hülya\AppData\Local\Temp\Extract.exe C:\Users\hülya\AppData\Local\Temp\fge_7jwp.dll C:\Users\hülya\AppData\Local\Temp\gsnbt7vk.dll C:\Users\hülya\AppData\Local\Temp\ikdqtg_l.dll C:\Users\hülya\AppData\Local\Temp\jgpexth7.dll C:\Users\hülya\AppData\Local\Temp\jqslmncy.dll C:\Users\hülya\AppData\Local\Temp\jzr0dvkz.dll C:\Users\hülya\AppData\Local\Temp\nsoA31A.exe C:\Users\hülya\AppData\Local\Temp\nst797D.exe C:\Users\hülya\AppData\Local\Temp\nszA30F.exe C:\Users\hülya\AppData\Local\Temp\nzlvmuji.dll C:\Users\hülya\AppData\Local\Temp\omi2ikyo.dll C:\Users\hülya\AppData\Local\Temp\oz9ptrby.dll C:\Users\hülya\AppData\Local\Temp\pcgr8uon.dll C:\Users\hülya\AppData\Local\Temp\pci2gxzz.dll C:\Users\hülya\AppData\Local\Temp\Quarantine.exe C:\Users\hülya\AppData\Local\Temp\rad6A463.tmp_update.exe C:\Users\hülya\AppData\Local\Temp\rpcuoqk1.dll C:\Users\hülya\AppData\Local\Temp\r_txacvt.dll C:\Users\hülya\AppData\Local\Temp\sdanircmdc.exe C:\Users\hülya\AppData\Local\Temp\sdapskill.exe C:\Users\hülya\AppData\Local\Temp\sdaspwn.exe C:\Users\hülya\AppData\Local\Temp\sgeggdk-.dll C:\Users\hülya\AppData\Local\Temp\SkypeSetup.exe C:\Users\hülya\AppData\Local\Temp\SP60051.exe C:\Users\hülya\AppData\Local\Temp\SP60289.exe C:\Users\hülya\AppData\Local\Temp\sp64126.exe C:\Users\hülya\AppData\Local\Temp\Sqlite3.dll C:\Users\hülya\AppData\Local\Temp\UninstallHPSA.exe C:\Users\hülya\AppData\Local\Temp\UpdateCheckerSetup.exe C:\Users\hülya\AppData\Local\Temp\vcredist_x64.exe C:\Users\hülya\AppData\Local\Temp\xbqvd9bh.dll C:\Users\hülya\AppData\Local\Temp\yeqjtftp.dll C:\Users\hülya\AppData\Local\Temp\ytiwsziq.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-07-19 18:42 ==================== End Of Log ============================ Vielen dank! |
25.07.2014, 09:58 | #12 |
/// Winkelfunktion /// TB-Süch-Tiger™ | bat=exe konnte nicht gefunden werden. Bitte auch ne neue Addition.txt erstellen, dazu FRST starten und einen Haken setzen bei Addition.txt, dann auf Scan klicken.
__________________ Logfiles bitte immer in CODE-Tags posten |
25.07.2014, 16:39 | #13 |
| bat=exe konnte nicht gefunden werden. Danke dir bist echt sehr geduldig mit solchen newbies wie mich :P hier addition Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-07-2014 01 Ran by hülya at 2014-07-25 17:37:41 Running from C:\Users\hülya\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Kaspersky Internet Security (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Kaspersky Internet Security (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Internet Security (Enabled) {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 13.0.0.83 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 13.0.0.83 - Adobe Systems Incorporated) Hidden Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated) Ask Toolbar (HKLM-x32\...\{4F524A2D-5637-4300-76A7-A758B70C0F01}) (Version: 12.15.1.16 - APN, LLC) <==== ATTENTION AuthenTec TrueAPI 64-bit (Version: 1.6.0.86 - AuthenTec, Inc.) Hidden AVM FRITZ!WLAN (HKLM-x32\...\AVMWLANCLI) (Version: - AVM Berlin) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) CCleaner (HKLM\...\CCleaner) (Version: 4.01 - Piriform) Connected Music powered by Universal Music Group version 1.0 (HKLM-x32\...\{46037DC7-F927-46DF-935F-D6F122BDD34B}_is1) (Version: 1.0 - Snowite) CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1.5407 - CyberLink Corp.) CyberLink LabelPrint (x32 Version: 2.5.1.5407 - CyberLink Corp.) Hidden CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.2.2114 - CyberLink Corp.) CyberLink Media Suite 10 (x32 Version: 10.0.2.2114 - CyberLink Corp.) Hidden CyberLink PhotoDirector (HKLM-x32\...\InstallShield_{4862344A-A39C-4897-ACD4-A1BED5163C5A}) (Version: 2.0.1.3119 - CyberLink Corp.) CyberLink PhotoDirector (x32 Version: 2.0.1.3119 - CyberLink Corp.) Hidden CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.1.1926 - CyberLink Corp.) CyberLink Power2Go 8 (x32 Version: 8.0.1.1926 - CyberLink Corp.) Hidden CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.1.1925 - CyberLink Corp.) CyberLink PowerDirector 10 (x32 Version: 10.0.1.1925 - CyberLink Corp.) Hidden CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.5.4.5527 - CyberLink Corp.) CyberLink YouCam (x32 Version: 3.5.4.5527 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Der Tempel des Lebens: Die Legende der Vier Elemente (HKLM-x32\...\Der Tempel des Lebens: Die Legende der Vier Elemente) (Version: 1.0.0.0 - INTENIUM GmbH) Dreamscapes: Der Sandmann Sammleredition (HKLM-x32\...\Dreamscapes: Der Sandmann Sammleredition) (Version: 1.0.0.0 - INTENIUM GmbH) Energy Star (HKLM\...\{0FA995CC-C849-4755-B14B-5404CC75DC24}) (Version: 1.0.8 - Hewlett-Packard) Facebook Video Calling 2.0.0.447 (HKLM-x32\...\{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}) (Version: 2.0.447 - Skype Limited) Freecorder extension for Chrome (HKLM-x32\...\Freecorder extension for Chrome) (Version: 7.0.2.0 - Applian Technologies, Inc.) Geekbench 3 (HKLM-x32\...\Geekbench 3) (Version: - Primate Labs Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.) Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden HP 3D DriveGuard (HKLM\...\{AB5BCC55-18E2-46C7-9405-FF61CB888F05}) (Version: 4.2.9.1 - Hewlett-Packard Company) HP Connected Music (Meridian - installer) (HKLM-x32\...\StartHPConnectedMusic) (Version: v1.0 - Meridian Audio Ltd) HP CoolSense (HKLM-x32\...\{11AF9A96-6D83-4C3B-8DCB-16EA2A358E3F}) (Version: 2.10.51 - Hewlett-Packard Company) HP Customer Experience Enhancements (x32 Version: 6.0.1.7 - Hewlett-Packard) Hidden HP Documentation (HKLM-x32\...\{7DE5085A-3665-40BC-9595-A1A209699137}) (Version: 1.1.0.0 - Hewlett-Packard) HP Postscript Converter (Version: 3.1.3554 - Hewlett-Packard) Hidden HP Quick Launch (HKLM-x32\...\{609B11CC-8CED-4116-AD8A-A72168894D39}) (Version: 3.0.4 - Hewlett-Packard Company) HP Recovery Manager (x32 Version: 7.00 - Hewlett-Packard) Hidden HP Registration Service (HKLM\...\{E4D6CCF2-0AAF-4B9C-9DE5-893EDC9B4BAA}) (Version: 1.0.5976.4186 - Hewlett-Packard) HP SimplePass (HKLM-x32\...\{34C821CA-6B55-44A0-8A9B-2EF471D6019E}) (Version: 6.0.100.244 - Hewlett-Packard) HP Software Framework (HKLM-x32\...\{94BB4B4F-BD6D-4166-A580-F868C8384CA6}) (Version: 4.6.8.1 - Hewlett-Packard Company) HP Support Assistant (HKLM-x32\...\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}) (Version: 7.4.45.4 - Hewlett-Packard Company) HP Utility Center (HKLM-x32\...\{0C57987A-A03A-4B95-A309-D23F78F406CA}) (Version: 1.0.7 - Hewlett-Packard) HP Wireless Button Driver (HKLM-x32\...\{941DE69D-6CEE-4171-8F1F-3D7E352AA498}) (Version: 1.0.6.1 - Hewlett-Packard Company) IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6418.0 - IDT) Intel PROSet Wireless (Version: - ) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2817 - Intel Corporation) Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (HKLM\...\{89478C31-5CE8-461A-9084-9A0AF059F84F}) (Version: 15.5.0.0344 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{7854AA22-A2F0-4F29-A2E9-D0C5A2B685E7}) (Version: 2.5.0.0248 - Motorola Solutions, Inc) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.9.1002 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Intel(R) WiDi (HKLM\...\{EDBA2433-0910-4C72-8C5B-8FEDAE3EF18E}) (Version: 3.5.34.0 - Intel Corporation) Intel® PROSet/Wireless WiFi-Software (HKLM\...\{99FDAE3B-6905-45A6-8F73-595363AAD3D1}) (Version: 15.05.1000.1411 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.24.388.1 - Intel Corporation) Hidden Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.550 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{6F6873E3-5C92-4049-B511-231A138DD090}) (Version: 14.0.0.4651 - Kaspersky Lab) Kaspersky Internet Security (x32 Version: 14.0.0.4651 - Kaspersky Lab) Hidden Microsoft App Update for microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe (x64) (Version: 1.0.0.0 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Office (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.6120.5004 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Movie Mode (HKLM-x32\...\MovieMode) (Version: 2.6.65 - GenTechnologies Apps, LLC) Movies Toolbar for Chrome (Dist. by Somoto Ltd.) (HKLM-x32\...\somotomoviestoolbar181CR) (Version: 1.8.1.0 - IAC Search and Media) <==== ATTENTION MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden NVIDIA Grafiktreiber 306.97 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 306.97 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.85.551 - NVIDIA Corporation) Hidden NVIDIA Optimus 1.10.8 (Version: 1.10.8 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 306.97 (Version: 306.97 - NVIDIA Corporation) Hidden NVIDIA Update 1.10.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.10.8 - NVIDIA Corporation) NVIDIA Update Components (Version: 1.10.8 - NVIDIA Corporation) Hidden OpenOffice 4.0.1 (HKLM-x32\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.2.612.2012 - Realtek) Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.8400.29025 - Realtek Semiconductor Corp.) RTL GAME CENTER (HKLM-x32\...\DSGPlayer) (Version: 1.0.0.46 - INTENIUM GmbH) Saal Design Software (HKLM-x32\...\SaalDesignSoftware) (Version: 3.2.30 - Saal Digital Fotoservice GmbH) Saal Design Software (x32 Version: 3.2.30 - Saal Digital Fotoservice GmbH) Hidden Save Sense (remove only) (HKCU\...\Save Sense) (Version: 6.4.1.0 - SaveSense) <==== ATTENTION savinshoop (HKLM-x32\...\{70BD2558-27DA-8B02-02D0-D8704ECD2EDF}) (Version: - soaVianshopp) Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.) SopCast 2.0.4 (HKLM-x32\...\SopCast) (Version: 2.0.4 - SopCast.com) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.10.12 - Synaptics Incorporated) TuicTaCoupon (HKLM-x32\...\{E370F69F-ED3F-925F-31FC-14D1329A713B}) (Version: - TiicTaCoupOn) <==== ATTENTION Validity WBF DDK (HKLM\...\{3820B6F2-2F6B-4237-9EE9-F0AC9A2185BC}) (Version: 4.4.227.0 - Validity Sensors, Inc.) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Language Selector (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Yahoo Community Smartbar (HKLM-x32\...\{74451556-4E0B-4082-B74C-583B7EDC3679}) (Version: 10.219.66.15259 - Linkury Inc.) <==== ATTENTION Yahoo Community Smartbar Engine (HKCU\...\{628834ec-ce19-4fcf-b25d-cd83e8a06da6}) (Version: 10.219.66.15259 - Linkury Inc.) <==== ATTENTION YTD Video Downloader 4.1 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 4.1 - GreenTree Applications SRL) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 09-07-2014 01:08:29 Windows Update 19-07-2014 23:53:22 Geplanter Prüfpunkt 23-07-2014 00:07:41 Wiederherstellungsvorgang ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2012-07-26 07:26 - 2012-07-26 07:26 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {003EF650-C9AE-4055-AD00-8929CDED34C8} - System32\Tasks\dafdid => C:\Users\hülya\AppData\Local\dafdid.bat [2014-06-29] () Task: {0048A787-968B-460A-B88F-3C94AA2E04F9} - System32\Tasks\icdytn => C:\Users\hülya\AppData\Local\icdytn.bat [2014-06-29] () Task: {011A7F85-F0F5-44FA-BF08-83D979C6774C} - System32\Tasks\iavic => C:\Users\hülya\AppData\Local\iavic.bat [2014-06-29] () Task: {02286E30-4471-40D2-B0F8-7805321F58C3} - System32\Tasks\kbxmda => C:\Users\hülya\AppData\Local\kbxmda.bat [2014-06-29] () Task: {0364B950-85C5-481D-A829-9A628ADAAC30} - System32\Tasks\kfujeuqf => C:\Users\hülya\AppData\Local\kfujeuqf.bat [2014-06-29] () Task: {03EAD8AB-37A3-48F5-B2EA-881F55414425} - System32\Tasks\vdksa => C:\Users\hülya\AppData\Local\utjiwdc.bat [2014-06-29] () Task: {0637404D-B93A-4D9B-B2EA-D2A001FD8F65} - System32\Tasks\tymrgl => C:\Users\hülya\AppData\Local\tymrgl.bat [2014-06-29] () Task: {06D66712-6AE9-44BF-B623-B919BF4FB857} - System32\Tasks\whpxpqi => C:\Users\hülya\AppData\Local\whpxpqi.bat [2014-07-01] () Task: {0769D298-B0CB-43F2-8F04-90E3719CA1C3} - System32\Tasks\ligdqolj => C:\Users\hülya\AppData\Local\ligdqolj.bat [2014-06-30] () Task: {077A8194-DB04-438F-AC1C-4F99D8069009} - System32\Tasks\psuprudi => C:\Users\hülya\AppData\Local\psuprudi.bat [2014-06-29] () Task: {09E80BA2-B44A-4C4C-8BCD-EB22D146CA0C} - System32\Tasks\acceyau => C:\Users\hülya\AppData\Local\acceyau.bat [2014-06-29] () Task: {09FBED9F-814A-4D63-8782-B2DE7B1924B9} - System32\Tasks\lxdiu => C:\Users\hülya\AppData\Local\lxdiu.bat [2014-06-29] () Task: {0BDC01C3-BD15-4DA2-9AB4-DA4D05899A00} - System32\Tasks\bkdpjboa => C:\Users\hülya\AppData\Local\bkdpjboa.bat [2014-06-29] () Task: {0D05368A-9BAE-4B28-996F-678D1560C042} - System32\Tasks\ljwusx => C:\Users\hülya\AppData\Local\ljwusx.bat [2014-06-30] () Task: {0EE38C35-6E13-4ECE-ACA5-7CBD7E3262D6} - System32\Tasks\eewxpph => C:\Users\hülya\AppData\Local\eewxpph.bat [2014-06-29] () Task: {10527A4B-BB8E-4180-93C1-5AF92EDD1D0E} - System32\Tasks\jfbdsujm => C:\Users\hülya\AppData\Local\jfbdsujm.bat [2014-06-29] () Task: {129D30FF-9F48-473D-B1A2-8E1EB5F7118A} - System32\Tasks\vdsbqhwf => C:\Users\hülya\AppData\Local\vdsbqhwf.bat [2014-06-29] () Task: {1429E26B-169C-4471-A478-B63F2510AA18} - System32\Tasks\ajcohkcp => C:\Users\hülya\AppData\Local\ajcohkcp.bat [2014-06-29] () Task: {1446D01F-A922-4D20-AF6F-A43E61DCC404} - System32\Tasks\dulcs => C:\Users\hülya\AppData\Local\dulcs.bat [2014-06-30] () Task: {14DBB9C6-89A7-4FE3-A3D6-D95561F7C903} - System32\Tasks\fxacscu => C:\Users\hülya\AppData\Local\fxacscu.bat [2014-06-30] () Task: {1562FD9D-97A7-4913-AFE4-34EB081C2924} - System32\Tasks\ydoalwbt => C:\Users\hülya\AppData\Local\ydoalwbt.bat [2014-06-29] () Task: {16BBD895-FC3F-40B1-BA0A-C04007D2351B} - System32\Tasks\aguiubo => C:\Users\hülya\AppData\Local\aguiubo.bat [2014-06-30] () Task: {177BED97-AD25-4CE4-BCDA-11854471EF5E} - System32\Tasks\khepmjn => C:\Users\hülya\AppData\Local\khepmjn.bat [2014-06-29] () Task: {18246448-D9EA-47AF-B53A-844D9909849A} - System32\Tasks\rdwbfa => C:\Users\hülya\AppData\Local\rdwbfa.bat [2014-06-29] () Task: {18FA95AA-1FC1-419F-A229-AA8EE22C0AB2} - System32\Tasks\hbunicup => C:\Users\hülya\AppData\Local\hbunicup.bat [2014-06-29] () Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {1AECBED2-B931-4E17-8AB3-21D3F36CABD1} - System32\Tasks\gwwoohh => C:\Users\hülya\AppData\Local\gwwoohh.bat [2014-06-30] () Task: {1B9B9E7B-12F6-4310-A691-F2097514050E} - System32\Tasks\Microsoft\Windows\Setup\Pre-staged GDR Notification => C:\Windows\system32\NotificationUI.exe [2014-04-19] (Microsoft Corporation) Task: {1C78928A-EDB1-451B-B0C6-BFE0CCC14FEA} - System32\Tasks\cwtodhbp => C:\Users\hülya\AppData\Local\cwtodhbp.bat [2014-06-30] () Task: {1C91E375-4FEC-4256-A1BD-2F5553663358} - System32\Tasks\caebg => C:\Users\hülya\AppData\Local\caebg.bat [2014-06-30] () Task: {1D000CF2-84AF-4DC6-903B-4D2A4AED1FAE} - System32\Tasks\zlqcg => C:\Users\hülya\AppData\Local\zlqcg.bat [2014-06-30] () Task: {1E38087E-CAE4-4EE2-BF2B-87DE4F8A594E} - System32\Tasks\fsigct => C:\Users\hülya\AppData\Local\fsigct.bat [2014-06-30] () Task: {1E3C30C6-05E9-41C1-B0B7-262BE06949D2} - System32\Tasks\erawe => C:\Users\hülya\AppData\Local\erawe.bat [2014-06-30] () Task: {22CFDDA0-A38F-48E8-A6B4-E89AE13EC961} - System32\Tasks\jgjnrnq => C:\Users\hülya\AppData\Local\jgjnrnq.bat [2014-07-01] () Task: {2328EFA0-CA79-47CD-A546-45C815D6034B} - System32\Tasks\eqfcxnbw => C:\Users\hülya\AppData\Local\eqfcxnbw.bat [2014-07-01] () Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {2672E002-1FBE-4832-99F3-E16C3A8BFC52} - System32\Tasks\hztmgy => C:\Users\hülya\AppData\Local\hztmgy.bat [2014-06-29] () Task: {2A3AB0A9-A867-47C6-936C-9FCF75ADD932} - System32\Tasks\hajdc => C:\Users\hülya\AppData\Local\hajdc.bat [2014-06-29] () Task: {2AA7416D-00A6-4CD1-8E6C-68CA4ADC9042} - System32\Tasks\tsqpv => C:\Users\hülya\AppData\Local\tsqpv.bat [2014-06-30] () Task: {2CB3E91A-8BE6-46FF-BC60-50627B5B30C8} - System32\Tasks\koagcns => C:\Users\hülya\AppData\Local\koagcns.bat [2014-06-29] () Task: {2D2C2E52-8E0D-4114-91F2-5451D48BC145} - System32\Tasks\hqqbbcll => C:\Users\hülya\AppData\Local\hqqbbcll.bat [2014-06-30] () Task: {2DA9BFDD-2E89-4B84-8FCB-F5BB2CC9842C} - System32\Tasks\oqysbd => C:\Users\hülya\AppData\Local\oqysbd.bat [2014-06-29] () Task: {2F458A81-AD44-4EC6-B900-5EAF9A9CB104} - System32\Tasks\zfsdqf => C:\Users\hülya\AppData\Local\zfsdqf.bat [2014-06-29] () Task: {300F2C94-645A-4FCC-92F9-2D4722B44581} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company) Task: {31246EB7-5578-40B6-88C4-C6796D047DA7} - System32\Tasks\oqyaks => C:\Users\hülya\AppData\Local\oqyaks.bat [2014-06-29] () Task: {323DDFC5-858C-4D95-B78C-5B133C7985E0} - System32\Tasks\kfdavzwl => C:\Users\hülya\AppData\Local\kfdavzwl.bat [2014-06-30] () Task: {3285401B-0DBA-4D35-ACCE-1216D8D46497} - System32\Tasks\whqaqs => C:\Users\hülya\AppData\Local\whqaqs.bat [2014-06-29] () Task: {332DAA72-08ED-4B22-8D29-4FF924AF622C} - System32\Tasks\pakteow => C:\Users\hülya\AppData\Local\pakteow.bat [2014-06-30] () Task: {33FA76A7-C5E8-4A9D-982E-76C6316FE805} - System32\Tasks\wgwfihhq => C:\Users\hülya\AppData\Local\wgwfihhq.bat [2014-07-01] () Task: {34103223-28D0-449F-85F7-FA778B3BCF0E} - System32\Tasks\kotimqn => C:\Users\hülya\AppData\Local\kotimqn.bat [2014-06-29] () Task: {344C6CC8-C3D1-45D2-88A6-BE8FC5379C40} - System32\Tasks\fdcaqonm => C:\Users\hülya\AppData\Local\fdcaqonm.bat [2014-06-29] () Task: {352A36F1-47E1-4BE6-9FCB-834C149C2CA2} - \SomotoUpdateCheckerAutoStart No Task File <==== ATTENTION Task: {354F2D8D-A03A-420F-8F05-35B54AE92F9B} - System32\Tasks\ahubvcq => C:\Users\hülya\AppData\Local\ahubvcq.bat [2014-06-29] () Task: {35B00116-6481-44D4-BE07-FA4F958837A0} - System32\Tasks\awkfl => C:\Users\hülya\AppData\Local\awkfl.bat [2014-06-30] () Task: {39FBE809-DCB2-49D4-907A-85D693F7F309} - System32\Tasks\isnoa => C:\Users\hülya\AppData\Local\isnoa.bat [2014-06-29] () Task: {3B09D934-1BEE-4DE3-9796-F1B3A3D301B0} - \SaveSense No Task File <==== ATTENTION Task: {3B95F581-4764-4404-974C-6A4D62C8EA7B} - System32\Tasks\pjddy => C:\Users\hülya\AppData\Local\pjddy.bat [2014-06-29] () Task: {3D3A4589-F8E7-4B7C-942E-795B004EABDD} - System32\Tasks\vveett => C:\Users\hülya\AppData\Local\vveett.bat [2014-06-30] () Task: {3DA985C0-FBEE-438C-BE0B-71EF3CD897AD} - System32\Tasks\lcbpv => C:\Users\hülya\AppData\Local\lcbpv.bat [2014-06-29] () Task: {40099843-EEB1-4EA0-BD57-9C98F0DD436F} - System32\Tasks\vwgfvve => C:\Users\hülya\AppData\Local\vwgfvve.bat [2014-06-29] () Task: {400EFF63-816F-4F99-BEA1-738978338F9C} - System32\Tasks\mffummlk => C:\Users\hülya\AppData\Local\mffummlk.bat [2014-06-29] () Task: {41BB76F5-03EE-4FE2-B56F-18AF23B1F308} - System32\Tasks\lrweaflq => C:\Users\hülya\AppData\Local\lrweaflq.bat [2014-06-30] () Task: {439D71DF-96C7-40CE-A86D-140FEF179C3A} - System32\Tasks\vggvgguf => C:\Users\hülya\AppData\Local\vggvgguf.bat [2014-06-30] () Task: {44452859-3C3B-4370-B2F5-22CF11C0F2EF} - System32\Tasks\jdauqmhd => C:\Users\hülya\AppData\Local\jdauqmhd.bat [2014-06-29] () Task: {45DA2CAC-06F3-4F1F-9C57-B3BCBC805DA2} - System32\Tasks\fjdoh => C:\Users\hülya\AppData\Local\fjdoh.bat [2014-06-29] () Task: {465C09A5-B819-4F1F-AD9E-D33E0C85505D} - System32\Tasks\quejuej => C:\Users\hülya\AppData\Local\quejuej.bat [2014-06-29] () Task: {46F60C73-0018-4120-8188-B8101EFE0507} - System32\Tasks\rxbycq => C:\Users\hülya\AppData\Local\rxbycq.bat [2014-06-29] () Task: {47746299-1C98-4034-8722-1A48C2E79341} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-08] (CyberLink) Task: {48AB0022-7309-4679-BB24-2F803D2DA4F1} - System32\Tasks\ccbfv => C:\Users\hülya\AppData\Local\ccbfv.bat [2014-06-30] () Task: {49C497BA-182F-41D2-8CAE-216FDA93A569} - System32\Tasks\akcohzmg => C:\Users\hülya\AppData\Local\akcohzmg.bat [2014-06-29] () Task: {49F5BFAE-12BF-4887-9A55-AB75E522480C} - System32\Tasks\bocpdwd => C:\Users\hülya\AppData\Local\bocpdwd.bat [2014-06-29] () Task: {4D173E46-EEFB-4CAA-B130-4A13C026A37F} - System32\Tasks\tyfrx => C:\Users\hülya\AppData\Local\tyfrx.bat [2014-06-30] () Task: {4D8CBC81-3508-48B2-A844-90F3AC651F38} - System32\Tasks\khtpt => C:\Users\hülya\AppData\Local\khtpt.bat [2014-06-30] () Task: {50267BFA-CB71-4A7F-BBF8-CF4A11D92EA8} - System32\Tasks\tbfedip => C:\Users\hülya\AppData\Local\tbfedip.bat [2014-06-30] () Task: {5051F7B3-ABB0-41CF-BC9B-4432CF75EF8D} - System32\Tasks\beyuxlg => C:\Users\hülya\AppData\Local\beyuxlg.bat [2014-06-29] () Task: {5211772F-5E86-4242-9DA7-566B28C6598D} - \Rocket Updater No Task File <==== ATTENTION Task: {533EAB30-0B6E-41DE-BE5C-34F1968787B1} - System32\Tasks\iddytni => C:\Users\hülya\AppData\Local\iddytni.bat [2014-06-29] () Task: {54C6A6D9-0130-4BD1-96FA-093CCF36262E} - System32\Tasks\gufetd => C:\Users\hülya\AppData\Local\gufetd.bat [2014-06-30] () Task: {5593D5EA-198A-4368-8759-7021E190032B} - System32\Tasks\vmddsj => C:\Users\hülya\AppData\Local\vmddsj.bat [2014-06-29] () Task: {598CBF17-CAA1-4966-8AE4-389B8482EFA0} - System32\Tasks\cfdfey => C:\Users\hülya\AppData\Local\cfdfey.bat [2014-06-30] () Task: {5A26F67A-BC7C-43DF-98D0-3040C2C7FD6E} - System32\Tasks\acxkgi => C:\Users\hülya\AppData\Local\acxkgi.bat [2014-06-30] () Task: {5ADA0060-A33F-4DB3-861D-7D4D0DE3F291} - System32\Tasks\nghxp => C:\Users\hülya\AppData\Local\nghxp.bat [2014-06-29] () Task: {5B0D54A1-C7F8-4AE5-B4F5-06482CE330F9} - System32\Tasks\edeaa => C:\Users\hülya\AppData\Local\edeaa.bat [2014-06-29] () Task: {5B5045A8-54CA-4811-BBA8-98C4DD1359D5} - System32\Tasks\bxthdr => C:\Users\hülya\AppData\Local\bxthdr.bat [2014-06-30] () Task: {5B82A7BD-4815-4E3C-868B-916B3FD4C6DE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2014-03-21] (Hewlett-Packard) Task: {5B94D6D9-CE28-4611-8E2A-56D6342EB06C} - System32\Tasks\refju => C:\Users\hülya\AppData\Local\refju.bat [2014-06-29] () Task: {5CA89DF9-293E-45DE-9FC5-6370856853D6} - System32\Tasks\erawlaq => C:\Users\hülya\AppData\Local\erawlaq.bat [2014-06-29] () Task: {5EA5D5C7-DAF0-4EB2-96CA-E218ADC73286} - System32\Tasks\xaqscn => C:\Users\hülya\AppData\Local\xaqscn.bat [2014-06-29] () Task: {608D2455-F638-49E5-BFC8-216EB05FFD49} - System32\Tasks\fepha => C:\Users\hülya\AppData\Local\fepha.bat [2014-06-29] () Task: {60BBA233-9176-47DB-A765-449030913BC3} - System32\Tasks\vdksahw => C:\Users\hülya\AppData\Local\vdksahw.bat [2014-06-29] () Task: {620AE4F4-3D0C-4964-BE5B-BE9623917F44} - System32\Tasks\xizdef => C:\Users\hülya\AppData\Local\xizdef.bat [2014-06-29] () Task: {641B4E72-E5DF-478A-9EF4-A8C55FAC8DA8} - System32\Tasks\cokxm => C:\Users\hülya\AppData\Local\cokxm.bat [2014-06-29] () Task: {6461850E-562D-4D74-ABB8-52C278DF4932} - System32\Tasks\ebfol => C:\Users\hülya\AppData\Local\ebfol.bat [2014-06-30] () Task: {652F6D13-3A2C-456D-AA42-432E1C123848} - System32\Tasks\ljivt => C:\Users\hülya\AppData\Local\ljivt.bat [2014-06-30] () Task: {65D249B5-790E-4809-9A23-E0E031A76C6E} - System32\Tasks\iauhbv => C:\Users\hülya\AppData\Local\iauhbv.bat [2014-06-29] () Task: {67DD9472-CD9F-4B05-9A65-91B026C1E00F} - System32\Tasks\kwtxbhko => C:\Users\hülya\AppData\Local\kwtxbhko.bat [2014-06-29] () Task: {689D6BC5-814F-4873-AE60-376FA802D6C0} - System32\Tasks\prtvey => C:\Users\hülya\AppData\Local\prtvey.bat [2014-06-29] () Task: {68D478EC-2255-4ABD-907E-7DA1DDFD3BF6} - System32\Tasks\rdpsgibx => C:\Users\hülya\AppData\Local\rdpsgibx.bat [2014-06-29] () Task: {6A523003-2B95-4734-B337-00E53BB5F3DF} - \Desk 365 RunAsStdUser No Task File <==== ATTENTION Task: {6B1CE9E7-DC6B-4CBD-9539-372749998F13} - System32\Tasks\fkvoal => C:\Users\hülya\AppData\Local\fkvoal.bat [2014-06-29] () Task: {6BEF5BBD-0389-44A0-A137-3BB25148AE3D} - System32\Tasks\auaco => C:\Users\hülya\AppData\Local\auaco.bat [2014-06-29] () Task: {6E66F62F-887B-4D08-8634-14C152C364F5} - System32\Tasks\lqgmrpu => C:\Users\hülya\AppData\Local\lqgmrpu.bat [2014-06-29] () Task: {6F60DFE7-72EA-43E6-8512-EA836BDB9A5C} - System32\Tasks\yldjcn => C:\Users\hülya\AppData\Local\yldjcn.bat [2014-06-30] () Task: {70FD000E-56DB-4600-8B32-16C44906BBE6} - System32\Tasks\kheaxbbv => C:\Users\hülya\AppData\Local\kheaxbbv.bat [2014-07-01] () Task: {71873A24-1BA2-4757-866B-E437FF2D9101} - System32\Tasks\aocpc => C:\Users\hülya\AppData\Local\aocpc.bat [2014-06-29] () Task: {71A4E787-2FD1-420A-8D77-752F6FAF1433} - System32\Tasks\lcbpfk => C:\Users\hülya\AppData\Local\lcbpfk.bat [2014-06-30] () Task: {71E79AB4-5716-4AD5-935B-7FA43345FF74} - System32\Tasks\thlrdkxu => C:\Users\hülya\AppData\Local\thlrdkxu.bat [2014-06-29] () Task: {720331C6-F046-47B8-9C1A-0995E2298293} - System32\Tasks\nfnnu => C:\Users\hülya\AppData\Local\nfnnu.bat [2014-06-30] () Task: {72E8992A-8EBB-458F-BD16-86E3D74296EF} - System32\Tasks\ruxjmqcg => C:\Users\hülya\AppData\Local\ruxjmqcg.bat [2014-06-29] () Task: {754469BD-4901-4721-AF23-DA6CABA4F5F2} - System32\Tasks\noohhij => C:\Users\hülya\AppData\Local\noohhij.bat [2014-06-30] () Task: {75E33068-8412-4DDA-BE8B-2C85664E47C1} - System32\Tasks\xrunfjc => C:\Users\hülya\AppData\Local\xrunfjc.bat [2014-06-29] () Task: {75E5ED00-EEB6-4281-99B9-C6DCC57FA701} - System32\Tasks\aocpcqer => C:\Users\hülya\AppData\Local\aocpcqer.bat [2014-06-29] () Task: {7653D511-83C9-4ADD-BD15-4E8752409E12} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2014-07-11] (Microsoft Corporation) Task: {77719AA2-7EBA-4F18-9D4B-026FDDE7ACF1} - System32\Tasks\ruxcmqt => C:\Users\hülya\AppData\Local\ruxcmqt.bat [2014-06-30] () Task: {78649AB2-FFDD-445F-AFB2-2FE019C9AFAB} - System32\Tasks\fgnngg => C:\Users\hülya\AppData\Local\fgnngg.bat [2014-06-30] () Task: {78EE32A3-ADA0-444C-A4C9-775F688F4CA0} - System32\Tasks\wfoefpa => C:\Users\hülya\AppData\Local\wfoefpa.bat [2014-06-30] () Task: {79B98B05-AA76-4ABF-879D-EB9E5A9B23B0} - System32\Tasks\trxvdah => C:\Users\hülya\AppData\Local\trxvdah.bat [2014-06-29] () Task: {7ACE8D35-B669-4709-B111-DE0DA6EEA840} - System32\Tasks\zuhtgb => C:\Users\hülya\AppData\Local\zuhtgb.bat [2014-06-29] () Task: {7AD3995D-E230-4F42-884A-C437DA0A05A4} - System32\Tasks\thbbobwc => C:\Users\hülya\AppData\Local\thbbobwc.bat [2014-06-29] () Task: {7B0FF46C-493F-4460-B1FD-8E87D9B01048} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-10] (Google Inc.) Task: {7BFBBD90-86CD-4913-AD37-C108A8484A8D} - System32\Tasks\wxxabbdl => C:\Users\hülya\AppData\Local\wxxabbdl.bat [2014-06-30] () Task: {7C1CE95D-69B2-4AF3-945D-9DBE43255C89} - System32\Tasks\reiba => C:\Users\hülya\AppData\Local\reiba.bat [2014-06-29] () Task: {7D8A7BD2-6688-4E31-B4A2-C785F0EA0B94} - System32\Tasks\kifbcee => C:\Users\hülya\AppData\Local\kifbcee.bat [2014-06-29] () Task: {7E1BEBF9-737C-4F94-B86E-D6EF4033AEA5} - System32\Tasks\dngoeo => C:\Users\hülya\AppData\Local\dngoeo.bat [2014-06-29] () Task: {800ACEB1-5D47-43E7-8357-4007D13BC60E} - System32\Tasks\sfzekgc => C:\Users\hülya\AppData\Local\sfzekgc.bat [2014-06-29] () Task: {8058F0C1-FC30-45F0-8AD7-E4DA497F8404} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-10] (Google Inc.) Task: {8172037B-A046-4D16-89F4-5F951A66BB72} - System32\Tasks\aaunbtn => C:\Users\hülya\AppData\Local\aaunbtn.bat [2014-06-29] () Task: {824B71C5-D519-49E6-A71A-46EFB2B8BA9D} - System32\Tasks\ahubocp => C:\Users\hülya\AppData\Local\ahubocp.bat [2014-06-29] () Task: {838900BC-2D5D-4ADE-9B6F-ECD03BB60242} - System32\Tasks\ghpaijjd => C:\Users\hülya\AppData\Local\ghpaijjd.bat [2014-06-29] () Task: {861E4BC1-4DA2-443A-A0D2-1634B879BA99} - System32\Tasks\qmgcmikg => C:\Users\hülya\AppData\Local\qmgcmikg.bat [2014-06-30] () Task: {8946DDA9-4B3E-4547-8B6A-7C5BA99CB269} - System32\Tasks\ovfemt => C:\Users\hülya\AppData\Local\ovfemt.bat [2014-06-30] () Task: {8BCE2817-AF58-4C19-B43E-4DE057B0A6DE} - System32\Tasks\lkifm => C:\Users\hülya\AppData\Local\lkifm.bat [2014-06-29] () Task: {8E1497A2-7437-4852-81F9-D3B631490EDC} - System32\Tasks\ztyse => C:\Users\hülya\AppData\Local\ztyse.bat [2014-06-30] () Task: {8E6B65F0-B741-41A8-9C9B-1E3CEAB7DDB1} - System32\Tasks\tbglafes => C:\Users\hülya\AppData\Local\tbglafes.bat [2014-06-29] () Task: {8E79F07B-95CD-4645-942B-C3AE2D12E390} - System32\Tasks\piqzluev => C:\Users\hülya\AppData\Local\piqzluev.bat [2014-06-29] () Task: {8F169992-2BE0-4159-A0C6-7143D3E8D7D8} - System32\Tasks\fvngogw => C:\Users\hülya\AppData\Local\fvngogw.bat [2014-06-30] () Task: {8FC0A992-B71F-43F1-B90F-7FA86194027D} - System32\Tasks\aavaouj => C:\Users\hülya\AppData\Local\aavaouj.bat [2014-06-29] () Task: {926F1ACC-A8B5-41F5-A1F2-26A90172DF4B} - System32\Tasks\jehlnce => C:\Users\hülya\AppData\Local\jehlnce.bat [2014-06-30] () Task: {9349611F-B0E9-4DD6-B0C7-842A3486B928} - System32\Tasks\ajuhbdv => C:\Users\hülya\AppData\Local\ajuhbdv.bat [2014-06-29] () Task: {963968DC-D863-4CB2-BB6C-A7D127E8EDBE} - System32\Tasks\ccafn => C:\Users\hülya\AppData\Local\ccafn.bat [2014-06-29] () Task: {988EC6A3-A1C2-4904-964D-620FE01BF65E} - System32\Tasks\ifauytq => C:\Users\hülya\AppData\Local\ifauytq.bat [2014-06-29] () Task: {998331A9-9B82-42D4-9CA5-3130E6E17765} - System32\Tasks\ijlmopq => C:\Users\hülya\AppData\Local\ijlmopq.bat [2014-06-30] () Task: {99B953C5-8F47-4F20-AF56-398C4EDA0FF2} - System32\Tasks\rvaeitxc => C:\Users\hülya\AppData\Local\rvaeitxc.bat [2014-06-29] () Task: {9A50B2C4-399B-46E0-91D2-8EDCDF29B8AF} - System32\Tasks\numsabiy => C:\Users\hülya\AppData\Local\numsabiy.bat [2014-06-29] () Task: {9A5ED1F3-0FAA-47B5-8B83-C090F372D7DE} - System32\Tasks\oopqhiaa => C:\Users\hülya\AppData\Local\oopqhiaa.bat [2014-06-30] () Task: {9AB2D5C9-203A-4B74-9A05-7BCC813D73F2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company) Task: {9AB5F8F0-D027-42AE-B50D-1DB2F2038AD4} - System32\Tasks\ilvab => C:\Users\hülya\AppData\Local\ilvab.bat [2014-06-29] () Task: {9B656019-8717-4F50-B307-FFD0E9EDFC59} - System32\Tasks\efqidtef => C:\Users\hülya\AppData\Local\efqidtef.bat [2014-06-29] () Task: {9D9A9DCE-F3E0-4E2E-8AFD-37EB13AC3109} - System32\Tasks\cxuqfu => C:\Users\hülya\AppData\Local\cxuqfu.bat [2014-06-29] () Task: {9DAB3329-4B8F-4E3E-8440-A4ACB03FE547} - System32\Tasks\cnaupdx => C:\Users\hülya\AppData\Local\cnaupdx.bat [2014-06-29] () Task: {A28DBF92-7557-489A-B963-6E03825A71A1} - System32\Tasks\gffffee => C:\Users\hülya\AppData\Local\gffffee.bat [2014-06-29] () Task: {A2C2E07E-BB93-4129-AE38-461AECF0E24D} - System32\Tasks\ubovd => C:\Users\hülya\AppData\Local\ubovd.bat [2014-06-29] () Task: {A3280C68-2EEC-4998-B3CE-2E02F7F6C3E9} - System32\Tasks\xgxiyqsd => C:\Users\hülya\AppData\Local\xgxiyqsd.bat [2014-07-01] () Task: {A4869F99-353C-4606-89A1-C223F6A54402} - System32\Tasks\nveck => C:\Users\hülya\AppData\Local\nveck.bat [2014-06-30] () Task: {A53A4869-6F74-4B7D-87B2-22EB4AFDF8E8} - System32\Tasks\ykvbmx => C:\Users\hülya\AppData\Local\ykvbmx.bat [2014-06-29] () Task: {A5944D10-25F0-464F-A68B-02953F7B9158} - System32\Tasks\eudbraxo => C:\Users\hülya\AppData\Local\eudbraxo.bat [2014-06-29] () Task: {A5D91D02-D5A1-4C59-9F92-1699AE788D25} - System32\Tasks\vveeettb => C:\Users\hülya\AppData\Local\vveeettb.bat [2014-06-29] () Task: {A606AD13-2436-440B-943D-F1AAABEDB934} - System32\Tasks\eulkcjbf => C:\Users\hülya\AppData\Local\eulkcjbf.bat [2014-06-30] () Task: {A67C9463-685A-4967-A41E-B3148CD6A6BC} - System32\Tasks\daechca => C:\Users\hülya\AppData\Local\daechca.bat [2014-06-29] () Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {A78C741A-A1E2-4789-9CDE-09B601CA7046} - System32\Tasks\qlgqlgjm => C:\Users\hülya\AppData\Local\qlgqlgjm.bat [2014-06-29] () Task: {A7E36B8D-396C-4483-A569-463DC93C724D} - System32\Tasks\aiwkxfb => C:\Users\hülya\AppData\Local\aiwkxfb.bat [2014-06-30] () Task: {A8B6E5A5-879A-4E85-A312-8458AE982583} - System32\Tasks\icreymhc => C:\Users\hülya\AppData\Local\icreymhc.bat [2014-06-29] () Task: {A8EE6C19-F511-4C55-8A38-02D4F813557A} - System32\Tasks\qnifi => C:\Users\hülya\AppData\Local\qnifi.bat [2014-06-29] () Task: {ACD534AC-70D7-4FB2-8DAF-74E987E6B4BA} - System32\Tasks\tbeerxvb => C:\Users\hülya\AppData\Local\tbeerxvb.bat [2014-06-30] () Task: {AEB92FBA-FC77-4DC6-BEDC-DC2F184B6E53} - System32\Tasks\gphqpz => C:\Users\hülya\AppData\Local\gphqpz.bat [2014-06-29] () Task: {B12D852B-B7BD-4568-9A6E-5ED8C309E513} - System32\Tasks\lqntf => C:\Users\hülya\AppData\Local\lqntf.bat [2014-06-30] () Task: {B20AB0DD-F8D5-42A5-89B6-7CD6FEBE6FAF} - System32\Tasks\kgjoch => C:\Users\hülya\AppData\Local\kgjoch.bat [2014-06-29] () Task: {B3B787E3-05EA-4AD7-8B5A-89B8C7FA9964} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company) Task: {B5938A3A-F2F9-475E-93A7-1339BAFF886F} - System32\Tasks\sxdjht => C:\Users\hülya\AppData\Local\sxdjht.bat [2014-06-30] () Task: {B739F915-5653-4652-93A5-EF7D3D56624B} - System32\Tasks\vlmck => C:\Users\hülya\AppData\Local\vlmck.bat [2014-06-29] () Task: {B7991E7E-2E88-4323-8C28-3C79A94E8C58} - System32\Tasks\hwooghw => C:\Users\hülya\AppData\Local\hwooghw.bat [2014-06-29] () Task: {B906D8DE-FC0D-4F3D-80D7-287DD24F2397} - System32\Tasks\quwaeg => C:\Users\hülya\AppData\Local\quwaeg.bat [2014-06-30] () Task: {BB5B613D-6E5B-4A57-B329-99D4C1F0A432} - System32\Tasks\cfcfnrnj => C:\Users\hülya\AppData\Local\cfcfnrnj.bat [2014-06-30] () Task: {BC11C765-DABF-44B7-9176-DDEE82F271CA} - System32\Tasks\ubpckyn => C:\Users\hülya\AppData\Local\ubpckyn.bat [2014-06-30] () Task: {BC5F0EB1-874B-4EB5-A0ED-E07C6F5540F1} - System32\Tasks\hcdeabo => C:\Users\hülya\AppData\Local\hcdeabo.bat [2014-06-30] () Task: {BD9E1970-D1A5-4199-9F5D-E30E1B532365} - System32\Tasks\xiscnx => C:\Users\hülya\AppData\Local\xiscnx.bat [2014-06-29] () Task: {BE6402BD-4AFF-4B85-967C-5F46259D9EEF} - System32\Tasks\tbgmtf => C:\Users\hülya\AppData\Local\tbgmtf.bat [2014-06-29] () Task: {BE6D85C9-71F8-47D1-8A60-1181E70DD79E} - System32\Tasks\izuvpicd => C:\Users\hülya\AppData\Local\izuvpicd.bat [2014-06-30] () Task: {BF95E05D-4546-4260-98E9-CA6EBA502FAC} - System32\Tasks\trwucgl => C:\Users\hülya\AppData\Local\trwucgl.bat [2014-06-30] () Task: {C024E3F3-C6A4-443B-9B0A-672AC60F19D4} - System32\Tasks\abpicxr => C:\Users\hülya\AppData\Local\abpicxr.bat [2014-07-01] () Task: {C0A4DF78-8E7A-40D2-83B8-7893C0CDBE69} - System32\Tasks\aaoibwj => C:\Users\hülya\AppData\Local\aaoibwj.bat [2014-06-29] () Task: {C290259F-7C92-4D66-BEF8-9FE0009E8954} - System32\Tasks\dynshwc => C:\Users\hülya\AppData\Local\dynshwc.bat [2014-07-01] () Task: {C45574D8-9670-430E-9E13-43206805F7C4} - System32\Tasks\numttcsa => C:\Users\hülya\AppData\Local\numttcsa.bat [2014-06-29] () Task: {C47B8539-5F62-4D35-A61F-295F0B217258} - System32\Tasks\daetq => C:\Users\hülya\AppData\Local\daetq.bat [2014-06-29] () Task: {C5940CD4-FDE8-4B8E-9A71-53E8DC0FC454} - System32\Tasks\qdfrefk => C:\Users\hülya\AppData\Local\qdfrefk.bat [2014-06-29] () Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {C7B7DCEF-F9C4-4BF6-92AD-3CE332BF24D8} - System32\Tasks\nooffg => C:\Users\hülya\AppData\Local\nooffg.bat [2014-06-29] () Task: {C9650B7D-DCE4-41C1-AFDE-FD06AFE68E1D} - \SaveSenseLiveUpdateTaskMachineCore No Task File <==== ATTENTION Task: {C9A895FD-1526-442B-BC8A-D445E17CA424} - System32\Tasks\kotxmqu => C:\Users\hülya\AppData\Local\kotxmqu.bat [2014-06-29] () Task: {CAD26C48-B6FE-4D24-9EE4-926880691377} - System32\Tasks\gofohwhp => C:\Users\hülya\AppData\Local\gofohwhp.bat [2014-06-29] () Task: {CC1E4D63-C63F-46F1-B6F4-E0D140BF649A} - System32\Tasks\kpmrotfu => C:\Users\hülya\AppData\Local\kpmrotfu.bat [2014-06-29] () Task: {CC48EE6F-CB41-4875-A85C-F9F8D32A9664} - System32\Tasks\ekhnlrhf => C:\Users\hülya\AppData\Local\ekhnlrhf.bat [2014-06-30] () Task: {CC9B1D1D-E51E-4C15-B8F2-8EB093517118} - System32\Tasks\mcbxwcs => C:\Users\hülya\AppData\Local\mcbxwcs.bat [2014-06-30] () Task: {CCD90FFF-114C-41F6-B82B-FBE83AE7D42C} - System32\Tasks\tqwtbw => C:\Users\hülya\AppData\Local\tqwtbw.bat [2014-06-30] () Task: {CD147F20-1A58-47A8-8A1B-3B5AED5571F7} - System32\Tasks\spuhd => C:\Users\hülya\AppData\Local\spuhd.bat [2014-06-30] () Task: {D15CC7EE-C8A2-470B-B325-84F205286FDB} - System32\Tasks\icwxl => C:\Users\hülya\AppData\Local\icwxl.bat [2014-06-29] () Task: {D1697C7E-8329-4A59-993F-9F34DAA8F64D} - System32\Tasks\quxbfilv => C:\Users\hülya\AppData\Local\quxbfilv.bat [2014-06-29] () Task: {D17A1BB3-25FC-43AF-A624-0A7FBA0C1D35} - System32\Tasks\jfjnqm => C:\Users\hülya\AppData\Local\jfjnqm.bat [2014-06-29] () Task: {D514C033-7349-4C69-A100-528356B5623F} - System32\Tasks\egqajsk => C:\Users\hülya\AppData\Local\egqajsk.bat [2014-06-29] () Task: {D5D84B94-6D3D-42A7-B15C-8ED8AE7228B5} - System32\Tasks\rvadoswa => C:\Users\hülya\AppData\Local\rvadoswa.bat [2014-06-29] () Task: {D608B439-DE2B-475F-A401-58BD7BDEE5A0} - System32\Tasks\rwimaepu => C:\Users\hülya\AppData\Local\rwimaepu.bat [2014-06-29] () Task: {D72D2678-9F94-4FB6-BD97-107A06FBC06F} - System32\Tasks\gfiaa => C:\Users\hülya\AppData\Local\gfiaa.bat [2014-06-29] () Task: {D8F85268-9F81-46B5-B111-92CBF3E99AC2} - System32\Tasks\prsudyb => C:\Users\hülya\AppData\Local\prsudyb.bat [2014-06-29] () Task: {D95314ED-9258-4DE5-8683-30EDA7B1220D} - System32\Tasks\lcbpg => C:\Users\hülya\AppData\Local\lcbpg.bat [2014-07-01] () Task: {D98236A6-4C09-4685-921C-0216D3F81C70} - System32\Tasks\ekaix => C:\Users\hülya\AppData\Local\ekaix.bat [2014-06-30] () Task: {D9C24D3D-1E96-4149-976B-C8A8E5671F56} - System32\Tasks\giqss => C:\Users\hülya\AppData\Local\giqss.bat [2014-06-29] () Task: {DA6F7414-D29C-49E6-AD75-B4872865D07A} - \Advanced System Protector_startup No Task File <==== ATTENTION Task: {DA989872-1AF9-4DB3-A7CF-4E6DDC179D24} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2012-07-27] (CyberLink) Task: {DAB84BA7-5B7B-473C-B15C-0F94AB0364BD} - System32\Tasks\dafwmja => C:\Users\hülya\AppData\Local\dafwmja.bat [2014-06-29] () Task: {DB5A7EA2-30C0-42F4-9D49-5288BB2D4964} - System32\Tasks\lbgcbx => C:\Users\hülya\AppData\Local\lbgcbx.bat [2014-06-30] () Task: {DFAE457B-126E-4477-8D22-6079C0E1E198} - System32\Tasks\gaiccbvd => C:\Users\hülya\AppData\Local\gaiccbvd.bat [2014-06-29] () Task: {E174B46C-B997-4207-B944-B2ECA9BEBA4E} - System32\Tasks\wnfne => C:\Users\hülya\AppData\Local\wnfne.bat [2014-06-29] () Task: {E2851220-AE28-4D68-BDD6-26CD4D8F8164} - System32\Tasks\fwhaxi => C:\Users\hülya\AppData\Local\fwhaxi.bat [2014-06-30] () Task: {E4477F93-AA4C-47FE-983A-13CD8F94D6EC} - System32\Tasks\hysdwpba => C:\Users\hülya\AppData\Local\hysdwpba.bat [2014-06-29] () Task: {E5819868-D1CD-4AAE-82C9-A76ABBE34F1D} - System32\Tasks\lbffbzeu => C:\Users\hülya\AppData\Local\lbffbzeu.bat [2014-06-29] () Task: {E84AA2A9-9FEA-4956-9A62-6018F2C14BF1} - System32\Tasks\jvrui => C:\Users\hülya\AppData\Local\jvrui.bat [2014-06-29] () Task: {E876E42D-D979-44EE-96B9-C390CAF41CA8} - System32\Tasks\jdymi => C:\Users\hülya\AppData\Local\jdymi.bat [2014-06-30] () Task: {EAF211DF-A62D-4E53-A997-01464CFAB412} - System32\Tasks\ulccqgwd => C:\Users\hülya\AppData\Local\ulccqgwd.bat [2014-06-30] () Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {ECB474BA-F4BD-461C-8E56-1F6EDFAC2F77} - System32\Tasks\ukbhckaa => C:\Users\hülya\AppData\Local\ukbhckaa.bat [2014-06-29] () Task: {EDB7FE91-125B-4011-AF13-55D430E81AB0} - System32\Tasks\gohgohh => C:\Users\hülya\AppData\Local\gohgohh.bat [2014-06-29] () Task: {EE28C521-6703-468E-A49C-2B80220A57E3} - System32\Tasks\xdmos => C:\Users\hülya\AppData\Local\xdmos.bat [2014-06-29] () Task: {F021A13B-3484-4959-81B4-AB215DA86CF6} - System32\Tasks\wgwgw => C:\Users\hülya\AppData\Local\wgwgw.bat [2014-06-29] () Task: {F0CE2F94-3C90-4951-8CC1-874C225E747B} - \SaveSenseLiveUpdateTaskMachineUA No Task File <==== ATTENTION Task: {F1480B1B-BF14-470F-AE3B-5E8BCBF8247B} - System32\Tasks\fqcdnfrr => C:\Users\hülya\AppData\Local\fqcdnfrr.bat [2014-06-29] () Task: {F464C78B-BD13-471C-AC49-A0B54E800656} - System32\Tasks\reibflg => C:\Users\hülya\AppData\Local\reibflg.bat [2014-06-29] () Task: {F4BE6778-4098-4722-B633-B180C30DE00F} - System32\Tasks\qcuecu => C:\Users\hülya\AppData\Local\qcuecu.bat [2014-06-30] () Task: {F63CCB61-2DE5-41B2-9C6B-E922B3F8D885} - System32\Tasks\xdmoi => C:\Users\hülya\AppData\Local\xdmoi.bat [2014-06-30] () Task: {F67F34D6-3919-4295-8F60-55F8AA4C2429} - System32\Tasks\bdadk => C:\Users\hülya\AppData\Local\bdadk.bat [2014-06-30] () Task: {F6D10048-3DA6-4B44-B787-1E155421C58C} - System32\Tasks\dulctdar => C:\Users\hülya\AppData\Local\dulctdar.bat [2014-06-29] () Task: {F7889F20-093C-4080-A42D-7EC64D5188D6} - System32\Tasks\eddzr => C:\Users\hülya\AppData\Local\eddzr.bat [2014-06-29] () Task: {F8F4A4C1-A5FB-4788-B6F6-FFF191DFB75A} - System32\Tasks\rwbfruh => C:\Users\hülya\AppData\Local\rwbfruh.bat [2014-06-29] () Task: {F980B98C-2411-437F-B696-D94A7908B4CB} - System32\Tasks\idxsnplf => C:\Users\hülya\AppData\Local\idxsnplf.bat [2014-06-29] () Task: {FB156CEB-3C7B-4431-8D98-25DBF09DF1B5} - System32\Tasks\pxrbjdlu => C:\Users\hülya\AppData\Local\pxrbjdlu.bat [2014-06-29] () Task: {FC095D12-63A0-4BEE-8D1B-09D73CE6BE26} - System32\Tasks\cpdlguc => C:\Users\hülya\AppData\Local\cpdlguc.bat [2014-06-29] () Task: {FE5899FA-8A60-445F-8303-B4D11A39D522} - System32\Tasks\gxqja => C:\Users\hülya\AppData\Local\gxqja.bat [2014-06-29] () Task: {FE9ADDA0-AC34-4EF3-84F0-D3A05F8C3927} - System32\Tasks\eblbzi => C:\Users\hülya\AppData\Local\eblbzi.bat [2014-06-29] () Task: {FF52B84E-E9B5-4257-B6C4-867F279D4C9F} - System32\Tasks\beiuye => C:\Users\hülya\AppData\Local\beiuye.bat [2014-06-30] () Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3460895242-2686779407-2708491527-1002Core.job => C:\Users\hülya\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\HPCeeScheduleForhülya.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Loaded Modules (whitelisted) ============= 2012-07-18 07:55 - 2012-07-18 07:55 - 00028160 _____ () C:\Windows\system32\valWBFPolicyService.exe 2012-09-25 10:52 - 2012-07-28 02:31 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2012-08-10 01:36 - 2012-08-10 01:36 - 04073320 _____ () C:\Program Files (x86)\HP SimplePass\IEWebSiteLogon.exe 2013-06-17 13:35 - 2013-06-17 13:35 - 00478400 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\dblite.dll 2013-05-08 15:52 - 2013-05-08 15:52 - 01270464 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\kpcengine.2.3.dll 2012-09-25 11:16 - 2012-06-08 05:34 - 00627216 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll 2012-06-08 11:34 - 2012-06-08 11:34 - 00016400 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll 2014-02-21 14:12 - 2014-02-21 14:12 - 00017920 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\PSIClient\84687ccf62e0c74eca063ab0386f530f\PSIClient.ni.dll 2012-09-25 10:51 - 2012-06-25 20:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2014-06-18 19:36 - 2014-06-05 15:58 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\libglesv2.dll 2014-06-18 19:36 - 2014-06-05 15:58 - 00126280 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\libegl.dll 2014-06-18 19:36 - 2014-06-05 15:58 - 04217672 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll 2014-06-18 19:36 - 2014-06-05 15:58 - 00414536 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll 2014-06-18 19:36 - 2014-06-05 15:58 - 01732424 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ffmpegsumo.dll 2014-07-12 13:20 - 2014-07-08 08:18 - 14663856 _____ () C:\Users\hülya\AppData\Local\Google\Chrome\User Data\PepperFlash\14.0.0.145\pepflashplayer.dll 2012-08-10 01:36 - 2012-08-10 01:36 - 00018792 _____ () C:\Program Files (x86)\HP SimplePass\DownloadManager.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\ProgramData\Temp:223BB3A1 ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) HKCU\...\StartupApproved\Run: => "Facebook Update" HKCU\...\StartupApproved\Run: => "Skype" HKCU\...\StartupApproved\Run: => "Optimizer Pro" HKCU\...\StartupApproved\Run: => "FLV Player" ==================== Faulty Device Manager Devices ============= Name: USB-IF xHCI USB Host Controller Description: USB-IF xHCI USB Host Controller Class Guid: {8a2edc79-c759-46f2-88af-9d4efe3b5eee} Manufacturer: Intel Corporation Service: XHCIPort Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter Description: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974} Manufacturer: Intel Corporation Service: BTHUSB Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (07/25/2014 05:14:02 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1437 Error: (07/25/2014 05:14:02 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1437 Error: (07/25/2014 05:14:02 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (07/24/2014 10:20:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: devmonsrv.exe, Version: 2.5.0.244, Zeitstempel: 0x50220e70 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000 ID des fehlerhaften Prozesses: 0x2e1c Startzeit der fehlerhaften Anwendung: 0xdevmonsrv.exe0 Pfad der fehlerhaften Anwendung: devmonsrv.exe1 Pfad des fehlerhaften Moduls: devmonsrv.exe2 Berichtskennung: devmonsrv.exe3 Vollständiger Name des fehlerhaften Pakets: devmonsrv.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: devmonsrv.exe5 System errors: ============= Error: (07/24/2014 10:20:05 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Bluetooth Device Monitor" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Microsoft Office Sessions: ========================= Error: (07/25/2014 05:14:02 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1437 Error: (07/25/2014 05:14:02 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1437 Error: (07/25/2014 05:14:02 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (07/24/2014 10:20:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: devmonsrv.exe2.5.0.24450220e70unknown0.0.0.000000000c0000005000000002e1c01cfa77ab4f106a3C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exeunknowne470c0ee-136f-11e4-8049-a0b3cc484fc9 ==================== Memory info =========================== Percentage of memory in use: 38% Total physical RAM: 8081.27 MB Available physical RAM: 4978.9 MB Total Pagefile: 9297.27 MB Available Pagefile: 5381.02 MB Total Virtual: 8192 MB Available Virtual: 8191.83 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:446.91 GB) (Free:368.81 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (RECOVERY) (Fixed) (Total:18.07 GB) (Free:2.27 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 466 GB) (Disk ID: A50E1C7D) Partition: GPT Partition Type. ==================== End Of Log ============================ |
25.07.2014, 21:52 | #14 |
/// Winkelfunktion /// TB-Süch-Tiger™ | bat=exe konnte nicht gefunden werden. Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter HKLM-x32\...\Run: [fst_de_69] => [X] HKLM-x32\...\Run: [AnyProtect Tray] => "C:\Program Files (x86)\AnyProtectEx\AnyProtectTrayIcon.exe" HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\Policies\Explorer: [DisallowRun] 1 SearchScopes: HKLM - {52db1893-8a90-4192-aede-08e00b8f8473} URL = http://dts.search.ask.com/sr?src=ieb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms} BHO: savinshoop -> {2ED8C2FC-2464-86BA-E541-740FB78AF4BD} -> C:\ProgramData\savinshoop\PRZ7D.x64.dll () BHO-x32: savinshoop -> {2ED8C2FC-2464-86BA-E541-740FB78AF4BD} -> C:\ProgramData\savinshoop\PRZ7D.dll () CHR DefaultSearchKeyword: ask.com CHR DefaultSearchProvider: Ask.com CHR DefaultSearchURL: http://dts.search.ask.com/sr?src=crb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms} CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION C:\Users\hülya\AppData\Local\*.bat C:\Program Files (x86)\AnyProtectEx C:\ProgramData\savinshoop C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535_ C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535 C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51_ C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51 C:\Users\hülya\Downloads\9ED2tmp C:\Users\hülya\Downloads\9E82tmp C:\Users\hülya\Downloads\9E62tmp C:\Users\hülya\Downloads\9E22tmp C:\Users\hülya\Downloads\9E02tmp C:\Users\hülya\Downloads\9DE2tmp C:\Users\hülya\Downloads\9DC2tmp C:\Users\hülya\Downloads\Setup (3).exe C:\Users\hülya\Downloads\9EB2tmp C:\Users\hülya\Downloads\55A4tmp C:\Windows\system32\Tasks\dafdid C:\Windows\system32\Tasks\icdytn C:\Windows\system32\Tasks\iavic C:\Windows\system32\Tasks\kbxmda C:\Windows\system32\Tasks\kfujeuqf C:\Windows\system32\Tasks\vdksa C:\Windows\system32\Tasks\tymrgl C:\Windows\system32\Tasks\whpxpqi C:\Windows\system32\Tasks\ligdqolj C:\Windows\system32\Tasks\psuprudi C:\Windows\system32\Tasks\acceyau C:\Windows\system32\Tasks\lxdiu C:\Windows\system32\Tasks\bkdpjboa C:\Windows\system32\Tasks\ljwusx C:\Windows\system32\Tasks\eewxpph C:\Windows\system32\Tasks\jfbdsujm C:\Windows\system32\Tasks\vdsbqhwf C:\Windows\system32\Tasks\ajcohkcp C:\Windows\system32\Tasks\dulcs C:\Windows\system32\Tasks\fxacscu C:\Windows\system32\Tasks\ydoalwbt C:\Windows\system32\Tasks\aguiubo C:\Windows\system32\Tasks\khepmjn C:\Windows\system32\Tasks\rdwbfa C:\Windows\system32\Tasks\hbunicup C:\Windows\system32\Tasks\gwwoohh C:\Windows\system32\Tasks\cwtodhbp C:\Windows\system32\Tasks\caebg C:\Windows\system32\Tasks\zlqcg C:\Windows\system32\Tasks\fsigct C:\Windows\system32\Tasks\erawe C:\Windows\system32\Tasks\jgjnrnq C:\Windows\system32\Tasks\eqfcxnbw C:\Windows\system32\Tasks\hztmgy C:\Windows\system32\Tasks\hajdc C:\Windows\system32\Tasks\tsqpv C:\Windows\system32\Tasks\koagcns C:\Windows\system32\Tasks\hqqbbcll C:\Windows\system32\Tasks\oqysbd C:\Windows\system32\Tasks\zfsdqf C:\Windows\system32\Tasks\oqyaks C:\Windows\system32\Tasks\kfdavzwl C:\Windows\system32\Tasks\whqaqs C:\Windows\system32\Tasks\pakteow C:\Windows\system32\Tasks\wgwfihhq C:\Windows\system32\Tasks\kotimqn C:\Windows\system32\Tasks\fdcaqonm C:\Windows\system32\Tasks\ahubvcq C:\Windows\system32\Tasks\awkfl C:\Windows\system32\Tasks\isnoa C:\Windows\system32\Tasks\pjddy C:\Windows\system32\Tasks\vveett C:\Windows\system32\Tasks\lcbpv C:\Windows\system32\Tasks\vwgfvve C:\Windows\system32\Tasks\mffummlk C:\Windows\system32\Tasks\lrweaflq C:\Windows\system32\Tasks\vggvgguf C:\Windows\system32\Tasks\jdauqmhd C:\Windows\system32\Tasks\fjdoh C:\Windows\system32\Tasks\quejuej C:\Windows\system32\Tasks\rxbycq C:\Windows\system32\Tasks\ccbfv C:\Windows\system32\Tasks\akcohzmg C:\Windows\system32\Tasks\bocpdwd C:\Windows\system32\Tasks\tyfrx C:\Windows\system32\Tasks\khtpt C:\Windows\system32\Tasks\tbfedip C:\Windows\system32\Tasks\beyuxlg C:\Windows\system32\Tasks\iddytni C:\Windows\system32\Tasks\gufetd C:\Windows\system32\Tasks\vmddsj C:\Windows\system32\Tasks\cfdfey C:\Windows\system32\Tasks\acxkgi C:\Windows\system32\Tasks\nghxp C:\Windows\system32\Tasks\edeaa C:\Windows\system32\Tasks\bxthdr C:\Windows\system32\Tasks\refju C:\Windows\system32\Tasks\erawlaq C:\Windows\system32\Tasks\xaqscn C:\Windows\system32\Tasks\fepha C:\Windows\system32\Tasks\vdksahw C:\Windows\system32\Tasks\xizdef C:\Windows\system32\Tasks\cokxm C:\Windows\system32\Tasks\ebfol C:\Windows\system32\Tasks\ljivt C:\Windows\system32\Tasks\iauhbv C:\Windows\system32\Tasks\kwtxbhko C:\Windows\system32\Tasks\prtvey C:\Windows\system32\Tasks\rdpsgibx C:\Windows\system32\Tasks\fkvoal C:\Windows\system32\Tasks\auaco C:\Windows\system32\Tasks\lqgmrpu C:\Windows\system32\Tasks\yldjcn C:\Windows\system32\Tasks\kheaxbbv C:\Windows\system32\Tasks\aocpc C:\Windows\system32\Tasks\lcbpfk C:\Windows\system32\Tasks\thlrdkxu C:\Windows\system32\Tasks\nfnnu C:\Windows\system32\Tasks\ruxjmqcg C:\Windows\system32\Tasks\noohhij C:\Windows\system32\Tasks\xrunfjc C:\Windows\system32\Tasks\aocpcqer C:\Windows\system32\Tasks\ruxcmqt C:\Windows\system32\Tasks\fgnngg C:\Windows\system32\Tasks\wfoefpa C:\Windows\system32\Tasks\trxvdah C:\Windows\system32\Tasks\zuhtgb C:\Windows\system32\Tasks\thbbobwc C:\Windows\system32\Tasks\wxxabbdl C:\Windows\system32\Tasks\reiba C:\Windows\system32\Tasks\kifbcee C:\Windows\system32\Tasks\dngoeo C:\Windows\system32\Tasks\sfzekgc C:\Windows\system32\Tasks\aaunbtn C:\Windows\system32\Tasks\ahubocp C:\Windows\system32\Tasks\ghpaijjd C:\Windows\system32\Tasks\qmgcmikg C:\Windows\system32\Tasks\ovfemt C:\Windows\system32\Tasks\lkifm C:\Windows\system32\Tasks\ztyse C:\Windows\system32\Tasks\tbglafes C:\Windows\system32\Tasks\piqzluev C:\Windows\system32\Tasks\fvngogw C:\Windows\system32\Tasks\aavaouj C:\Windows\system32\Tasks\jehlnce C:\Windows\system32\Tasks\ajuhbdv C:\Windows\system32\Tasks\ccafn C:\Windows\system32\Tasks\ifauytq C:\Windows\system32\Tasks\ijlmopq C:\Windows\system32\Tasks\rvaeitxc C:\Windows\system32\Tasks\numsabiy C:\Windows\system32\Tasks\oopqhiaa C:\Windows\system32\Tasks\ilvab C:\Windows\system32\Tasks\efqidtef C:\Windows\system32\Tasks\cxuqfu C:\Windows\system32\Tasks\cnaupdx C:\Windows\system32\Tasks\gffffee C:\Windows\system32\Tasks\ubovd C:\Windows\system32\Tasks\xgxiyqsd C:\Windows\system32\Tasks\nveck C:\Windows\system32\Tasks\ykvbmx C:\Windows\system32\Tasks\eudbraxo C:\Windows\system32\Tasks\vveeettb C:\Windows\system32\Tasks\eulkcjbf C:\Windows\system32\Tasks\daechca C:\Windows\system32\Tasks\qlgqlgjm C:\Windows\system32\Tasks\aiwkxfb C:\Windows\system32\Tasks\icreymhc C:\Windows\system32\Tasks\qnifi C:\Windows\system32\Tasks\tbeerxvb C:\Windows\system32\Tasks\gphqpz C:\Windows\system32\Tasks\lqntf C:\Windows\system32\Tasks\kgjoch C:\Windows\system32\Tasks\sxdjht C:\Windows\system32\Tasks\vlmck C:\Windows\system32\Tasks\hwooghw C:\Windows\system32\Tasks\quwaeg C:\Windows\system32\Tasks\cfcfnrnj C:\Windows\system32\Tasks\ubpckyn C:\Windows\system32\Tasks\hcdeabo C:\Windows\system32\Tasks\xiscnx C:\Windows\system32\Tasks\tbgmtf C:\Windows\system32\Tasks\izuvpicd C:\Windows\system32\Tasks\trwucgl C:\Windows\system32\Tasks\abpicxr C:\Windows\system32\Tasks\aaoibwj C:\Windows\system32\Tasks\dynshwc C:\Windows\system32\Tasks\numttcsa C:\Windows\system32\Tasks\daetq C:\Windows\system32\Tasks\qdfrefk C:\Windows\system32\Tasks\nooffg C:\Windows\system32\Tasks\kotxmqu C:\Windows\system32\Tasks\gofohwhp C:\Windows\system32\Tasks\kpmrotfu C:\Windows\system32\Tasks\ekhnlrhf C:\Windows\system32\Tasks\mcbxwcs C:\Windows\system32\Tasks\tqwtbw C:\Windows\system32\Tasks\spuhd C:\Windows\system32\Tasks\icwxl C:\Windows\system32\Tasks\quxbfilv C:\Windows\system32\Tasks\jfjnqm C:\Windows\system32\Tasks\egqajsk C:\Windows\system32\Tasks\rvadoswa C:\Windows\system32\Tasks\rwimaepu C:\Windows\system32\Tasks\gfiaa C:\Windows\system32\Tasks\prsudyb C:\Windows\system32\Tasks\lcbpg C:\Windows\system32\Tasks\ekaix C:\Windows\system32\Tasks\giqss C:\Windows\system32\Tasks\dafwmja C:\Windows\system32\Tasks\lbgcbx C:\Windows\system32\Tasks\gaiccbvd C:\Windows\system32\Tasks\wnfne C:\Windows\system32\Tasks\fwhaxi C:\Windows\system32\Tasks\hysdwpba C:\Windows\system32\Tasks\lbffbzeu C:\Windows\system32\Tasks\jvrui C:\Windows\system32\Tasks\jdymi C:\Windows\system32\Tasks\ulccqgwd C:\Windows\system32\Tasks\ukbhckaa C:\Windows\system32\Tasks\gohgohh C:\Windows\system32\Tasks\xdmos C:\Windows\system32\Tasks\wgwgw C:\Windows\system32\Tasks\fqcdnfrr C:\Windows\system32\Tasks\reibflg C:\Windows\system32\Tasks\qcuecu C:\Windows\system32\Tasks\xdmoi C:\Windows\system32\Tasks\bdadk C:\Windows\system32\Tasks\dulctdar C:\Windows\system32\Tasks\eddzr C:\Windows\system32\Tasks\rwbfruh C:\Windows\system32\Tasks\idxsnplf C:\Windows\system32\Tasks\pxrbjdlu C:\Windows\system32\Tasks\cpdlguc C:\Windows\system32\Tasks\gxqja C:\Windows\system32\Tasks\eblbzi C:\Windows\system32\Tasks\beiuye Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
__________________ Logfiles bitte immer in CODE-Tags posten |
25.07.2014, 22:52 | #15 |
| bat=exe konnte nicht gefunden werden.Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 24-07-2014 01 Ran by hülya at 2014-07-25 23:50:43 Run:1 Running from C:\Users\hülya\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** HKLM-x32\...\Run: [fst_de_69] => [X] HKLM-x32\...\Run: [AnyProtect Tray] => "C:\Program Files (x86)\AnyProtectEx\AnyProtectTrayIcon.exe" HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\Policies\Explorer: [DisallowRun] 1 SearchScopes: HKLM - {52db1893-8a90-4192-aede-08e00b8f8473} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms} BHO: savinshoop -> {2ED8C2FC-2464-86BA-E541-740FB78AF4BD} -> C:\ProgramData\savinshoop\PRZ7D.x64.dll () BHO-x32: savinshoop -> {2ED8C2FC-2464-86BA-E541-740FB78AF4BD} -> C:\ProgramData\savinshoop\PRZ7D.dll () CHR DefaultSearchKeyword: ask.com CHR DefaultSearchProvider: Ask.com CHR DefaultSearchURL: hxxp://dts.search.ask.com/sr?src=crb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms} CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION C:\Users\hülya\AppData\Local\*.bat C:\Program Files (x86)\AnyProtectEx C:\ProgramData\savinshoop C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535_ C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535 C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51_ C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51 C:\Users\hülya\Downloads\9ED2tmp C:\Users\hülya\Downloads\9E82tmp C:\Users\hülya\Downloads\9E62tmp C:\Users\hülya\Downloads\9E22tmp C:\Users\hülya\Downloads\9E02tmp C:\Users\hülya\Downloads\9DE2tmp C:\Users\hülya\Downloads\9DC2tmp C:\Users\hülya\Downloads\Setup (3).exe C:\Users\hülya\Downloads\9EB2tmp C:\Users\hülya\Downloads\55A4tmp C:\Windows\system32\Tasks\dafdid C:\Windows\system32\Tasks\icdytn C:\Windows\system32\Tasks\iavic C:\Windows\system32\Tasks\kbxmda C:\Windows\system32\Tasks\kfujeuqf C:\Windows\system32\Tasks\vdksa C:\Windows\system32\Tasks\tymrgl C:\Windows\system32\Tasks\whpxpqi C:\Windows\system32\Tasks\ligdqolj C:\Windows\system32\Tasks\psuprudi C:\Windows\system32\Tasks\acceyau C:\Windows\system32\Tasks\lxdiu C:\Windows\system32\Tasks\bkdpjboa C:\Windows\system32\Tasks\ljwusx C:\Windows\system32\Tasks\eewxpph C:\Windows\system32\Tasks\jfbdsujm C:\Windows\system32\Tasks\vdsbqhwf C:\Windows\system32\Tasks\ajcohkcp C:\Windows\system32\Tasks\dulcs C:\Windows\system32\Tasks\fxacscu C:\Windows\system32\Tasks\ydoalwbt C:\Windows\system32\Tasks\aguiubo C:\Windows\system32\Tasks\khepmjn C:\Windows\system32\Tasks\rdwbfa C:\Windows\system32\Tasks\hbunicup C:\Windows\system32\Tasks\gwwoohh C:\Windows\system32\Tasks\cwtodhbp C:\Windows\system32\Tasks\caebg C:\Windows\system32\Tasks\zlqcg C:\Windows\system32\Tasks\fsigct C:\Windows\system32\Tasks\erawe C:\Windows\system32\Tasks\jgjnrnq C:\Windows\system32\Tasks\eqfcxnbw C:\Windows\system32\Tasks\hztmgy C:\Windows\system32\Tasks\hajdc C:\Windows\system32\Tasks\tsqpv C:\Windows\system32\Tasks\koagcns C:\Windows\system32\Tasks\hqqbbcll C:\Windows\system32\Tasks\oqysbd C:\Windows\system32\Tasks\zfsdqf C:\Windows\system32\Tasks\oqyaks C:\Windows\system32\Tasks\kfdavzwl C:\Windows\system32\Tasks\whqaqs C:\Windows\system32\Tasks\pakteow C:\Windows\system32\Tasks\wgwfihhq C:\Windows\system32\Tasks\kotimqn C:\Windows\system32\Tasks\fdcaqonm C:\Windows\system32\Tasks\ahubvcq C:\Windows\system32\Tasks\awkfl C:\Windows\system32\Tasks\isnoa C:\Windows\system32\Tasks\pjddy C:\Windows\system32\Tasks\vveett C:\Windows\system32\Tasks\lcbpv C:\Windows\system32\Tasks\vwgfvve C:\Windows\system32\Tasks\mffummlk C:\Windows\system32\Tasks\lrweaflq C:\Windows\system32\Tasks\vggvgguf C:\Windows\system32\Tasks\jdauqmhd C:\Windows\system32\Tasks\fjdoh C:\Windows\system32\Tasks\quejuej C:\Windows\system32\Tasks\rxbycq C:\Windows\system32\Tasks\ccbfv C:\Windows\system32\Tasks\akcohzmg C:\Windows\system32\Tasks\bocpdwd C:\Windows\system32\Tasks\tyfrx C:\Windows\system32\Tasks\khtpt C:\Windows\system32\Tasks\tbfedip C:\Windows\system32\Tasks\beyuxlg C:\Windows\system32\Tasks\iddytni C:\Windows\system32\Tasks\gufetd C:\Windows\system32\Tasks\vmddsj C:\Windows\system32\Tasks\cfdfey C:\Windows\system32\Tasks\acxkgi C:\Windows\system32\Tasks\nghxp C:\Windows\system32\Tasks\edeaa C:\Windows\system32\Tasks\bxthdr C:\Windows\system32\Tasks\refju C:\Windows\system32\Tasks\erawlaq C:\Windows\system32\Tasks\xaqscn C:\Windows\system32\Tasks\fepha C:\Windows\system32\Tasks\vdksahw C:\Windows\system32\Tasks\xizdef C:\Windows\system32\Tasks\cokxm C:\Windows\system32\Tasks\ebfol C:\Windows\system32\Tasks\ljivt C:\Windows\system32\Tasks\iauhbv C:\Windows\system32\Tasks\kwtxbhko C:\Windows\system32\Tasks\prtvey C:\Windows\system32\Tasks\rdpsgibx C:\Windows\system32\Tasks\fkvoal C:\Windows\system32\Tasks\auaco C:\Windows\system32\Tasks\lqgmrpu C:\Windows\system32\Tasks\yldjcn C:\Windows\system32\Tasks\kheaxbbv C:\Windows\system32\Tasks\aocpc C:\Windows\system32\Tasks\lcbpfk C:\Windows\system32\Tasks\thlrdkxu C:\Windows\system32\Tasks\nfnnu C:\Windows\system32\Tasks\ruxjmqcg C:\Windows\system32\Tasks\noohhij C:\Windows\system32\Tasks\xrunfjc C:\Windows\system32\Tasks\aocpcqer C:\Windows\system32\Tasks\ruxcmqt C:\Windows\system32\Tasks\fgnngg C:\Windows\system32\Tasks\wfoefpa C:\Windows\system32\Tasks\trxvdah C:\Windows\system32\Tasks\zuhtgb C:\Windows\system32\Tasks\thbbobwc C:\Windows\system32\Tasks\wxxabbdl C:\Windows\system32\Tasks\reiba C:\Windows\system32\Tasks\kifbcee C:\Windows\system32\Tasks\dngoeo C:\Windows\system32\Tasks\sfzekgc C:\Windows\system32\Tasks\aaunbtn C:\Windows\system32\Tasks\ahubocp C:\Windows\system32\Tasks\ghpaijjd C:\Windows\system32\Tasks\qmgcmikg C:\Windows\system32\Tasks\ovfemt C:\Windows\system32\Tasks\lkifm C:\Windows\system32\Tasks\ztyse C:\Windows\system32\Tasks\tbglafes C:\Windows\system32\Tasks\piqzluev C:\Windows\system32\Tasks\fvngogw C:\Windows\system32\Tasks\aavaouj C:\Windows\system32\Tasks\jehlnce C:\Windows\system32\Tasks\ajuhbdv C:\Windows\system32\Tasks\ccafn C:\Windows\system32\Tasks\ifauytq C:\Windows\system32\Tasks\ijlmopq C:\Windows\system32\Tasks\rvaeitxc C:\Windows\system32\Tasks\numsabiy C:\Windows\system32\Tasks\oopqhiaa C:\Windows\system32\Tasks\ilvab C:\Windows\system32\Tasks\efqidtef C:\Windows\system32\Tasks\cxuqfu C:\Windows\system32\Tasks\cnaupdx C:\Windows\system32\Tasks\gffffee C:\Windows\system32\Tasks\ubovd C:\Windows\system32\Tasks\xgxiyqsd C:\Windows\system32\Tasks\nveck C:\Windows\system32\Tasks\ykvbmx C:\Windows\system32\Tasks\eudbraxo C:\Windows\system32\Tasks\vveeettb C:\Windows\system32\Tasks\eulkcjbf C:\Windows\system32\Tasks\daechca C:\Windows\system32\Tasks\qlgqlgjm C:\Windows\system32\Tasks\aiwkxfb C:\Windows\system32\Tasks\icreymhc C:\Windows\system32\Tasks\qnifi C:\Windows\system32\Tasks\tbeerxvb C:\Windows\system32\Tasks\gphqpz C:\Windows\system32\Tasks\lqntf C:\Windows\system32\Tasks\kgjoch C:\Windows\system32\Tasks\sxdjht C:\Windows\system32\Tasks\vlmck C:\Windows\system32\Tasks\hwooghw C:\Windows\system32\Tasks\quwaeg C:\Windows\system32\Tasks\cfcfnrnj C:\Windows\system32\Tasks\ubpckyn C:\Windows\system32\Tasks\hcdeabo C:\Windows\system32\Tasks\xiscnx C:\Windows\system32\Tasks\tbgmtf C:\Windows\system32\Tasks\izuvpicd C:\Windows\system32\Tasks\trwucgl C:\Windows\system32\Tasks\abpicxr C:\Windows\system32\Tasks\aaoibwj C:\Windows\system32\Tasks\dynshwc C:\Windows\system32\Tasks\numttcsa C:\Windows\system32\Tasks\daetq C:\Windows\system32\Tasks\qdfrefk C:\Windows\system32\Tasks\nooffg C:\Windows\system32\Tasks\kotxmqu C:\Windows\system32\Tasks\gofohwhp C:\Windows\system32\Tasks\kpmrotfu C:\Windows\system32\Tasks\ekhnlrhf C:\Windows\system32\Tasks\mcbxwcs C:\Windows\system32\Tasks\tqwtbw C:\Windows\system32\Tasks\spuhd C:\Windows\system32\Tasks\icwxl C:\Windows\system32\Tasks\quxbfilv C:\Windows\system32\Tasks\jfjnqm C:\Windows\system32\Tasks\egqajsk C:\Windows\system32\Tasks\rvadoswa C:\Windows\system32\Tasks\rwimaepu C:\Windows\system32\Tasks\gfiaa C:\Windows\system32\Tasks\prsudyb C:\Windows\system32\Tasks\lcbpg C:\Windows\system32\Tasks\ekaix C:\Windows\system32\Tasks\giqss C:\Windows\system32\Tasks\dafwmja C:\Windows\system32\Tasks\lbgcbx C:\Windows\system32\Tasks\gaiccbvd C:\Windows\system32\Tasks\wnfne C:\Windows\system32\Tasks\fwhaxi C:\Windows\system32\Tasks\hysdwpba C:\Windows\system32\Tasks\lbffbzeu C:\Windows\system32\Tasks\jvrui C:\Windows\system32\Tasks\jdymi C:\Windows\system32\Tasks\ulccqgwd C:\Windows\system32\Tasks\ukbhckaa C:\Windows\system32\Tasks\gohgohh C:\Windows\system32\Tasks\xdmos C:\Windows\system32\Tasks\wgwgw C:\Windows\system32\Tasks\fqcdnfrr C:\Windows\system32\Tasks\reibflg C:\Windows\system32\Tasks\qcuecu C:\Windows\system32\Tasks\xdmoi C:\Windows\system32\Tasks\bdadk C:\Windows\system32\Tasks\dulctdar C:\Windows\system32\Tasks\eddzr C:\Windows\system32\Tasks\rwbfruh C:\Windows\system32\Tasks\idxsnplf C:\Windows\system32\Tasks\pxrbjdlu C:\Windows\system32\Tasks\cpdlguc C:\Windows\system32\Tasks\gxqja C:\Windows\system32\Tasks\eblbzi C:\Windows\system32\Tasks\beiuye ***************** HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\fst_de_69 => value deleted successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\AnyProtect Tray => value deleted successfully. HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\DisallowRun => value deleted successfully. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{52db1893-8a90-4192-aede-08e00b8f8473}" => Key deleted successfully. "HKCR\CLSID\{52db1893-8a90-4192-aede-08e00b8f8473}" => Key not found. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2ED8C2FC-2464-86BA-E541-740FB78AF4BD}" => Key deleted successfully. "HKCR\CLSID\{2ED8C2FC-2464-86BA-E541-740FB78AF4BD}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2ED8C2FC-2464-86BA-E541-740FB78AF4BD}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{2ED8C2FC-2464-86BA-E541-740FB78AF4BD}" => Key deleted successfully. CHR DefaultSearchKeyword: ask.com ==> The Chrome "Settings" can be used to fix the entry. CHR DefaultSearchProvider: Ask.com ==> The Chrome "Settings" can be used to fix the entry. CHR DefaultSearchURL: hxxp://dts.search.ask.com/sr?src=crb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms} ==> The Chrome "Settings" can be used to fix the entry. "HKLM\SOFTWARE\Policies\Google" => Key deleted successfully. C:\Users\hülya\AppData\Local\*.bat => Moved successfully. "C:\Program Files (x86)\AnyProtectEx" => File/Directory not found. C:\ProgramData\savinshoop => Moved successfully. C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535_ => Moved successfully. C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535 => Moved successfully. C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51_ => Moved successfully. C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51 => Moved successfully. C:\Users\hülya\Downloads\9ED2tmp => Moved successfully. C:\Users\hülya\Downloads\9E82tmp => Moved successfully. C:\Users\hülya\Downloads\9E62tmp => Moved successfully. C:\Users\hülya\Downloads\9E22tmp => Moved successfully. C:\Users\hülya\Downloads\9E02tmp => Moved successfully. C:\Users\hülya\Downloads\9DE2tmp => Moved successfully. C:\Users\hülya\Downloads\9DC2tmp => Moved successfully. C:\Users\hülya\Downloads\Setup (3).exe => Moved successfully. C:\Users\hülya\Downloads\9EB2tmp => Moved successfully. C:\Users\hülya\Downloads\55A4tmp => Moved successfully. C:\Windows\system32\Tasks\dafdid => Moved successfully. C:\Windows\system32\Tasks\icdytn => Moved successfully. C:\Windows\system32\Tasks\iavic => Moved successfully. C:\Windows\system32\Tasks\kbxmda => Moved successfully. C:\Windows\system32\Tasks\kfujeuqf => Moved successfully. C:\Windows\system32\Tasks\vdksa => Moved successfully. C:\Windows\system32\Tasks\tymrgl => Moved successfully. C:\Windows\system32\Tasks\whpxpqi => Moved successfully. C:\Windows\system32\Tasks\ligdqolj => Moved successfully. C:\Windows\system32\Tasks\psuprudi => Moved successfully. C:\Windows\system32\Tasks\acceyau => Moved successfully. C:\Windows\system32\Tasks\lxdiu => Moved successfully. C:\Windows\system32\Tasks\bkdpjboa => Moved successfully. C:\Windows\system32\Tasks\ljwusx => Moved successfully. C:\Windows\system32\Tasks\eewxpph => Moved successfully. C:\Windows\system32\Tasks\jfbdsujm => Moved successfully. C:\Windows\system32\Tasks\vdsbqhwf => Moved successfully. C:\Windows\system32\Tasks\ajcohkcp => Moved successfully. C:\Windows\system32\Tasks\dulcs => Moved successfully. C:\Windows\system32\Tasks\fxacscu => Moved successfully. C:\Windows\system32\Tasks\ydoalwbt => Moved successfully. C:\Windows\system32\Tasks\aguiubo => Moved successfully. C:\Windows\system32\Tasks\khepmjn => Moved successfully. C:\Windows\system32\Tasks\rdwbfa => Moved successfully. C:\Windows\system32\Tasks\hbunicup => Moved successfully. C:\Windows\system32\Tasks\gwwoohh => Moved successfully. C:\Windows\system32\Tasks\cwtodhbp => Moved successfully. C:\Windows\system32\Tasks\caebg => Moved successfully. C:\Windows\system32\Tasks\zlqcg => Moved successfully. C:\Windows\system32\Tasks\fsigct => Moved successfully. C:\Windows\system32\Tasks\erawe => Moved successfully. C:\Windows\system32\Tasks\jgjnrnq => Moved successfully. C:\Windows\system32\Tasks\eqfcxnbw => Moved successfully. C:\Windows\system32\Tasks\hztmgy => Moved successfully. C:\Windows\system32\Tasks\hajdc => Moved successfully. C:\Windows\system32\Tasks\tsqpv => Moved successfully. C:\Windows\system32\Tasks\koagcns => Moved successfully. C:\Windows\system32\Tasks\hqqbbcll => Moved successfully. C:\Windows\system32\Tasks\oqysbd => Moved successfully. C:\Windows\system32\Tasks\zfsdqf => Moved successfully. C:\Windows\system32\Tasks\oqyaks => Moved successfully. C:\Windows\system32\Tasks\kfdavzwl => Moved successfully. C:\Windows\system32\Tasks\whqaqs => Moved successfully. C:\Windows\system32\Tasks\pakteow => Moved successfully. C:\Windows\system32\Tasks\wgwfihhq => Moved successfully. C:\Windows\system32\Tasks\kotimqn => Moved successfully. C:\Windows\system32\Tasks\fdcaqonm => Moved successfully. C:\Windows\system32\Tasks\ahubvcq => Moved successfully. C:\Windows\system32\Tasks\awkfl => Moved successfully. C:\Windows\system32\Tasks\isnoa => Moved successfully. C:\Windows\system32\Tasks\pjddy => Moved successfully. C:\Windows\system32\Tasks\vveett => Moved successfully. C:\Windows\system32\Tasks\lcbpv => Moved successfully. C:\Windows\system32\Tasks\vwgfvve => Moved successfully. C:\Windows\system32\Tasks\mffummlk => Moved successfully. C:\Windows\system32\Tasks\lrweaflq => Moved successfully. C:\Windows\system32\Tasks\vggvgguf => Moved successfully. C:\Windows\system32\Tasks\jdauqmhd => Moved successfully. C:\Windows\system32\Tasks\fjdoh => Moved successfully. C:\Windows\system32\Tasks\quejuej => Moved successfully. C:\Windows\system32\Tasks\rxbycq => Moved successfully. C:\Windows\system32\Tasks\ccbfv => Moved successfully. C:\Windows\system32\Tasks\akcohzmg => Moved successfully. C:\Windows\system32\Tasks\bocpdwd => Moved successfully. C:\Windows\system32\Tasks\tyfrx => Moved successfully. C:\Windows\system32\Tasks\khtpt => Moved successfully. C:\Windows\system32\Tasks\tbfedip => Moved successfully. C:\Windows\system32\Tasks\beyuxlg => Moved successfully. C:\Windows\system32\Tasks\iddytni => Moved successfully. C:\Windows\system32\Tasks\gufetd => Moved successfully. C:\Windows\system32\Tasks\vmddsj => Moved successfully. C:\Windows\system32\Tasks\cfdfey => Moved successfully. C:\Windows\system32\Tasks\acxkgi => Moved successfully. C:\Windows\system32\Tasks\nghxp => Moved successfully. C:\Windows\system32\Tasks\edeaa => Moved successfully. C:\Windows\system32\Tasks\bxthdr => Moved successfully. C:\Windows\system32\Tasks\refju => Moved successfully. C:\Windows\system32\Tasks\erawlaq => Moved successfully. C:\Windows\system32\Tasks\xaqscn => Moved successfully. C:\Windows\system32\Tasks\fepha => Moved successfully. C:\Windows\system32\Tasks\vdksahw => Moved successfully. C:\Windows\system32\Tasks\xizdef => Moved successfully. C:\Windows\system32\Tasks\cokxm => Moved successfully. C:\Windows\system32\Tasks\ebfol => Moved successfully. C:\Windows\system32\Tasks\ljivt => Moved successfully. C:\Windows\system32\Tasks\iauhbv => Moved successfully. C:\Windows\system32\Tasks\kwtxbhko => Moved successfully. C:\Windows\system32\Tasks\prtvey => Moved successfully. C:\Windows\system32\Tasks\rdpsgibx => Moved successfully. C:\Windows\system32\Tasks\fkvoal => Moved successfully. C:\Windows\system32\Tasks\auaco => Moved successfully. C:\Windows\system32\Tasks\lqgmrpu => Moved successfully. C:\Windows\system32\Tasks\yldjcn => Moved successfully. C:\Windows\system32\Tasks\kheaxbbv => Moved successfully. C:\Windows\system32\Tasks\aocpc => Moved successfully. C:\Windows\system32\Tasks\lcbpfk => Moved successfully. C:\Windows\system32\Tasks\thlrdkxu => Moved successfully. C:\Windows\system32\Tasks\nfnnu => Moved successfully. C:\Windows\system32\Tasks\ruxjmqcg => Moved successfully. C:\Windows\system32\Tasks\noohhij => Moved successfully. C:\Windows\system32\Tasks\xrunfjc => Moved successfully. C:\Windows\system32\Tasks\aocpcqer => Moved successfully. C:\Windows\system32\Tasks\ruxcmqt => Moved successfully. C:\Windows\system32\Tasks\fgnngg => Moved successfully. C:\Windows\system32\Tasks\wfoefpa => Moved successfully. C:\Windows\system32\Tasks\trxvdah => Moved successfully. C:\Windows\system32\Tasks\zuhtgb => Moved successfully. C:\Windows\system32\Tasks\thbbobwc => Moved successfully. C:\Windows\system32\Tasks\wxxabbdl => Moved successfully. C:\Windows\system32\Tasks\reiba => Moved successfully. C:\Windows\system32\Tasks\kifbcee => Moved successfully. C:\Windows\system32\Tasks\dngoeo => Moved successfully. C:\Windows\system32\Tasks\sfzekgc => Moved successfully. C:\Windows\system32\Tasks\aaunbtn => Moved successfully. C:\Windows\system32\Tasks\ahubocp => Moved successfully. C:\Windows\system32\Tasks\ghpaijjd => Moved successfully. C:\Windows\system32\Tasks\qmgcmikg => Moved successfully. C:\Windows\system32\Tasks\ovfemt => Moved successfully. C:\Windows\system32\Tasks\lkifm => Moved successfully. C:\Windows\system32\Tasks\ztyse => Moved successfully. C:\Windows\system32\Tasks\tbglafes => Moved successfully. C:\Windows\system32\Tasks\piqzluev => Moved successfully. C:\Windows\system32\Tasks\fvngogw => Moved successfully. C:\Windows\system32\Tasks\aavaouj => Moved successfully. C:\Windows\system32\Tasks\jehlnce => Moved successfully. C:\Windows\system32\Tasks\ajuhbdv => Moved successfully. C:\Windows\system32\Tasks\ccafn => Moved successfully. C:\Windows\system32\Tasks\ifauytq => Moved successfully. C:\Windows\system32\Tasks\ijlmopq => Moved successfully. C:\Windows\system32\Tasks\rvaeitxc => Moved successfully. C:\Windows\system32\Tasks\numsabiy => Moved successfully. C:\Windows\system32\Tasks\oopqhiaa => Moved successfully. C:\Windows\system32\Tasks\ilvab => Moved successfully. C:\Windows\system32\Tasks\efqidtef => Moved successfully. C:\Windows\system32\Tasks\cxuqfu => Moved successfully. C:\Windows\system32\Tasks\cnaupdx => Moved successfully. C:\Windows\system32\Tasks\gffffee => Moved successfully. C:\Windows\system32\Tasks\ubovd => Moved successfully. C:\Windows\system32\Tasks\xgxiyqsd => Moved successfully. C:\Windows\system32\Tasks\nveck => Moved successfully. C:\Windows\system32\Tasks\ykvbmx => Moved successfully. C:\Windows\system32\Tasks\eudbraxo => Moved successfully. C:\Windows\system32\Tasks\vveeettb => Moved successfully. C:\Windows\system32\Tasks\eulkcjbf => Moved successfully. C:\Windows\system32\Tasks\daechca => Moved successfully. C:\Windows\system32\Tasks\qlgqlgjm => Moved successfully. C:\Windows\system32\Tasks\aiwkxfb => Moved successfully. C:\Windows\system32\Tasks\icreymhc => Moved successfully. C:\Windows\system32\Tasks\qnifi => Moved successfully. C:\Windows\system32\Tasks\tbeerxvb => Moved successfully. C:\Windows\system32\Tasks\gphqpz => Moved successfully. C:\Windows\system32\Tasks\lqntf => Moved successfully. C:\Windows\system32\Tasks\kgjoch => Moved successfully. C:\Windows\system32\Tasks\sxdjht => Moved successfully. C:\Windows\system32\Tasks\vlmck => Moved successfully. C:\Windows\system32\Tasks\hwooghw => Moved successfully. C:\Windows\system32\Tasks\quwaeg => Moved successfully. C:\Windows\system32\Tasks\cfcfnrnj => Moved successfully. C:\Windows\system32\Tasks\ubpckyn => Moved successfully. C:\Windows\system32\Tasks\hcdeabo => Moved successfully. C:\Windows\system32\Tasks\xiscnx => Moved successfully. C:\Windows\system32\Tasks\tbgmtf => Moved successfully. C:\Windows\system32\Tasks\izuvpicd => Moved successfully. C:\Windows\system32\Tasks\trwucgl => Moved successfully. C:\Windows\system32\Tasks\abpicxr => Moved successfully. C:\Windows\system32\Tasks\aaoibwj => Moved successfully. C:\Windows\system32\Tasks\dynshwc => Moved successfully. C:\Windows\system32\Tasks\numttcsa => Moved successfully. C:\Windows\system32\Tasks\daetq => Moved successfully. C:\Windows\system32\Tasks\qdfrefk => Moved successfully. C:\Windows\system32\Tasks\nooffg => Moved successfully. C:\Windows\system32\Tasks\kotxmqu => Moved successfully. C:\Windows\system32\Tasks\gofohwhp => Moved successfully. C:\Windows\system32\Tasks\kpmrotfu => Moved successfully. C:\Windows\system32\Tasks\ekhnlrhf => Moved successfully. C:\Windows\system32\Tasks\mcbxwcs => Moved successfully. C:\Windows\system32\Tasks\tqwtbw => Moved successfully. C:\Windows\system32\Tasks\spuhd => Moved successfully. C:\Windows\system32\Tasks\icwxl => Moved successfully. C:\Windows\system32\Tasks\quxbfilv => Moved successfully. C:\Windows\system32\Tasks\jfjnqm => Moved successfully. C:\Windows\system32\Tasks\egqajsk => Moved successfully. C:\Windows\system32\Tasks\rvadoswa => Moved successfully. C:\Windows\system32\Tasks\rwimaepu => Moved successfully. C:\Windows\system32\Tasks\gfiaa => Moved successfully. C:\Windows\system32\Tasks\prsudyb => Moved successfully. C:\Windows\system32\Tasks\lcbpg => Moved successfully. C:\Windows\system32\Tasks\ekaix => Moved successfully. C:\Windows\system32\Tasks\giqss => Moved successfully. C:\Windows\system32\Tasks\dafwmja => Moved successfully. C:\Windows\system32\Tasks\lbgcbx => Moved successfully. C:\Windows\system32\Tasks\gaiccbvd => Moved successfully. C:\Windows\system32\Tasks\wnfne => Moved successfully. C:\Windows\system32\Tasks\fwhaxi => Moved successfully. C:\Windows\system32\Tasks\hysdwpba => Moved successfully. C:\Windows\system32\Tasks\lbffbzeu => Moved successfully. C:\Windows\system32\Tasks\jvrui => Moved successfully. C:\Windows\system32\Tasks\jdymi => Moved successfully. C:\Windows\system32\Tasks\ulccqgwd => Moved successfully. C:\Windows\system32\Tasks\ukbhckaa => Moved successfully. C:\Windows\system32\Tasks\gohgohh => Moved successfully. C:\Windows\system32\Tasks\xdmos => Moved successfully. C:\Windows\system32\Tasks\wgwgw => Moved successfully. C:\Windows\system32\Tasks\fqcdnfrr => Moved successfully. C:\Windows\system32\Tasks\reibflg => Moved successfully. C:\Windows\system32\Tasks\qcuecu => Moved successfully. C:\Windows\system32\Tasks\xdmoi => Moved successfully. C:\Windows\system32\Tasks\bdadk => Moved successfully. C:\Windows\system32\Tasks\dulctdar => Moved successfully. C:\Windows\system32\Tasks\eddzr => Moved successfully. C:\Windows\system32\Tasks\rwbfruh => Moved successfully. C:\Windows\system32\Tasks\idxsnplf => Moved successfully. C:\Windows\system32\Tasks\pxrbjdlu => Moved successfully. C:\Windows\system32\Tasks\cpdlguc => Moved successfully. C:\Windows\system32\Tasks\gxqja => Moved successfully. C:\Windows\system32\Tasks\eblbzi => Moved successfully. C:\Windows\system32\Tasks\beiuye => Moved successfully. ==== End of Fixlog ==== |
Themen zu bat=exe konnte nicht gefunden werden. |
auf einmal, bat, dient, erklären, eurem, exe, fenster, freak, gefunde, knapp, konnte, kurzem, laptop, liebe, mitglieder, namen, windows, windows 8, öffnen |