Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: bat=exe konnte nicht gefunden werden.

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 24.07.2014, 04:20   #1
Romiero
 
bat=exe konnte nicht gefunden werden. - Standard

bat=exe konnte nicht gefunden werden.



Liebe Mitglieder,

seit kurzem öffnen sich bei mir am Laptop wenn ich es einschalte ca 100 Fenster mit dem Namen Bat=Exe konnte nicht gefunden wernden.

Kann mir jemand bitte kurz und knapp erklären wozu bat exe dient? woher es auf Einmal kommt ? und wie ich es beiseitigen kann?

Ich benutze Windows 8

Bitte nicht wie ein Freak erklären denn ich bin nicht auf eurem Niveau

Liebe Grüße

Alt 24.07.2014, 09:06   #2
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
bat=exe konnte nicht gefunden werden. - Standard

bat=exe konnte nicht gefunden werden.



Hallo und

Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden?

Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520

Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten!
Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht!




Zudem bitte auch ein Log mit Farbars Tool machen:

Scan mit Farbar's Recovery Scan Tool (FRST)

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)



Lesestoff:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit.
Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten.
Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.
__________________

__________________

Alt 24.07.2014, 20:40   #3
Romiero
 
bat=exe konnte nicht gefunden werden. - Standard

bat=exe konnte nicht gefunden werden.



Danke für deine Mühe.


Habe leider keine Logs die ich dir einfügen könnte. Ich bin leider nur 3 Tage die Woche Zuhause habe seit längerem keine Scanns mehr durchgeführt. Kann FRST 64-Bit zwar Runterladen kann es aber nicht öffnen... Funktioniert noch nichtmal wenn ichs versuche als Adminisrator zu öffnen.


Hier ein screenshot. Das kommt wenn ich es versuche zu öffnen.

Vielen Dank für die Mühe!



hxxp://de.tinypic.com/view.php?pic=nwzz2t&s=8#.U9FTNvl_sWI
__________________

Alt 24.07.2014, 20:47   #4
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
bat=exe konnte nicht gefunden werden. - Standard

bat=exe konnte nicht gefunden werden.



1. FRST soll auf dem Desktop und nicht woanders liegen also entsprechend verschieben
2. nachdem der Smartscreen kommt, mal auf "weitere Informationen" klicken, dann müsstest du die option haben, es trotz des Hinweises auszuführen
__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Alt 24.07.2014, 20:59   #5
Romiero
 
bat=exe konnte nicht gefunden werden. - Standard

bat=exe konnte nicht gefunden werden.



Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-07-2014 01
Ran by hülya (administrator) on HÜLYA on 24-07-2014 20:50:06
Running from C:\Users\hülya\Desktop
Platform: Windows 8 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 10
Boot Mode: Normal



==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(HP) C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(AVM Berlin) C:\Program Files (x86)\avmwlanstick\WLanNetService.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Somoto LTD) C:\Program Files (x86)\Movies Toolbar\SafetyNut\SafetyNutManager.exe
() C:\Windows\System32\valWBFPolicyService.exe
(Somoto LTD) C:\Program Files (x86)\Movies Toolbar\SafetyNut\SafetyNutManager.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(AuthenTec Inc.) C:\Program Files (x86)\HP SimplePass\TouchControl.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avpui.exe
() C:\Program Files (x86)\HP SimplePass\IEWebSiteLogon.exe
(AuthenTec, Inc.) C:\Program Files\Common Files\AuthenTec\TrueService.exe
(AuthenTec, Inc.) C:\Program Files\Common Files\AuthenTec\TrueService.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(Somoto LTD) C:\Program Files (x86)\Movies Toolbar\SafetyNut\safetynut.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(MyPCBackup.com) C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(AVM Berlin) C:\Program Files (x86)\avmwlanstick\WLanGUI.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\System32\consent.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1425408 2012-07-24] (IDT, Inc.)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp 
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-25] (Synaptics Incorporated)
HKLM-x32\...\Run: [CLVirtualDrive] => C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491320 2012-07-26] (CyberLink Corp.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [580512 2012-07-31] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [HP CoolSense] => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [1343904 2012-11-05] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [AVMWlanClient] => C:\Program Files (x86)\avmwlanstick\wlangui.exe [2105344 2010-10-22] (AVM Berlin)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
HKLM-x32\...\Run: [fst_de_69] => [X]
HKLM-x32\...\Run: [AnyProtect Scanner] => "C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe"
HKLM-x32\...\Run: [AnyProtect Tray] => "C:\Program Files (x86)\AnyProtectEx\AnyProtectTrayIcon.exe"
HKLM\...\RunOnce: [NCPluginUpdater] => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [21720 2014-07-08] (Hewlett-Packard)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\Run: [Facebook Update] => C:\Users\hülya\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-04-21] (Facebook Inc.)
HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\Run: [Optimizer Pro] => C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe [135160 2014-01-28] (PC Utilities Software Limited)
HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\Run: [FLV Player] => C:\Users\hülya\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe [202752 2012-10-26] ()
HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\Policies\Explorer: [DisallowRun] 1
HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\MountPoints2: {28b34250-eb9a-11e2-be88-246511c0e7fd} - "F:\LGAutoRun.exe" 
HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\MountPoints2: {5dfd6686-1c75-11e3-be90-246511c0e7fd} - "F:\LGAutoRun.exe" 
HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\MountPoints2: {e2c42221-4eec-11e3-beb1-84a6c84d5de5} - "H:\Startme.exe" 
HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\MountPoints2: {ef99e80f-98d0-11e2-be76-84a6c84d5de5} - "F:\pushinst.exe" 
IFEO\bitguard.exe: [Debugger] tasklist.exe
IFEO\bprotect.exe: [Debugger] tasklist.exe
IFEO\bpsvc.exe: [Debugger] tasklist.exe
IFEO\browserdefender.exe: [Debugger] tasklist.exe
IFEO\browserprotect.exe: [Debugger] tasklist.exe
IFEO\browsersafeguard.exe: [Debugger] tasklist.exe
IFEO\dprotectsvc.exe: [Debugger] tasklist.exe
IFEO\jumpflip: [Debugger] tasklist.exe
IFEO\protectedsearch.exe: [Debugger] tasklist.exe
IFEO\searchinstaller.exe: [Debugger] tasklist.exe
IFEO\searchprotection.exe: [Debugger] tasklist.exe
IFEO\searchprotector.exe: [Debugger] tasklist.exe
IFEO\searchsettings.exe: [Debugger] tasklist.exe
IFEO\searchsettings64.exe: [Debugger] tasklist.exe
IFEO\snapdo.exe: [Debugger] tasklist.exe
IFEO\stinst32.exe: [Debugger] tasklist.exe
IFEO\stinst64.exe: [Debugger] tasklist.exe
IFEO\umbrella.exe: [Debugger] tasklist.exe
IFEO\utiljumpflip.exe: [Debugger] tasklist.exe
IFEO\volaro: [Debugger] tasklist.exe
IFEO\vonteera: [Debugger] tasklist.exe
IFEO\websteroids.exe: [Debugger] tasklist.exe
IFEO\websteroidsservice.exe: [Debugger] tasklist.exe
Startup: C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk
ShortcutTarget: MyPC Backup.lnk -> C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (MyPCBackup.com)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.search.ask.com/?o=APN10640A&gct=hp&d=473-113&v=a13277-274&t=4
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uw_G-ZsY37hJsW_xeQeSXG80ggHtjPTecvbF7htjkQWadWf_X05_PnmHlFVcxUcvFe1KAbQSYBnTd-wpyhNDqr55lPOst8Jjz3JM70PraOvhKJ7u1RU6t-rLTmD9ncdNB-Cmb_dxeIn3k2f0bxzYdA9nE8kF74HcPW-tBUnwvN_TaTR85rpEf9k2E,&q={searchTerms}
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uw_G-ZsY37hJsW_xeQeSXG80ggHtjPTecvbF7htjkQWadWf_X05_PnmHlFVcxUcvFe1KAbQSYBnTd-wpyhNDqr55lPOst8Jjz3JM70PraOvhKJ7u1RU6t-rLTmD9ncdNB-Cmb_dxeIn3k2f0bxzYdA9nE8kF74HcPW-tBUnwvN_TaTR85rpEf9k2E,&q={searchTerms}
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://search.certified-toolbar.com?si=82443&tid=24086&ver=6.4&ts=1404052590260&tguid=82443-24086-1404052590260-EDA59AC89231C91913BF0CDE37C114DB&st=chrome&q=
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.awesomehp.com/?type=hp&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.awesomehp.com/web/?type=ds&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.awesomehp.com/?type=hp&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.awesomehp.com/web/?type=ds&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.certified-toolbar.com?si=82443&tid=24086&ver=6.4&ts=1404052590260&tguid=82443-24086-1404052590260-EDA59AC89231C91913BF0CDE37C114DB&st=chrome&q=
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX&q={searchTerms}
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS
SearchScopes: HKLM - {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPNTDF
SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1393782033&from=adks&uid=HitachiXHTS547550A9E384_J2100050KVWVWAKVWVWAX&q={searchTerms}
SearchScopes: HKLM - {52db1893-8a90-4192-aede-08e00b8f8473} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms}
SearchScopes: HKLM - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = 
SearchScopes: HKLM - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
SearchScopes: HKLM - {E6DFA72B-E3A3-4EE5-89E2-D618E482A4D2} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uw_G-ZsY37hJsW_xeQeSXG80ggHtjPTecvbF7htjkQWadWf_X05_PnmHlFVcxUcvFe1KAbQSYBnTd-wpyhNDqr55lPOst8Jjz3JM70PraOvhKJ7u1RU6t-rLTmD9ncdNB-Cmb_dxeIn3k2f0bxzYdA9nE8kF74HcPW-tBUnwvN_TaTR85rpEf9k2E,&q={searchTerms}
SearchScopes: HKLM-x32 - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uw_G-ZsY37hJsW_xeQeSXG80ggHtjPTecvbF7htjkQWadWf_X05_PnmHlFVcxUcvFe1KAbQSYBnTd-wpyhNDqr55lPOst8Jjz3JM70PraOvhKJ7u1RU6t-rLTmD9ncdNB-Cmb_dxeIn3k2f0bxzYdA9nE8kF74HcPW-tBUnwvN_TaTR85rpEf9k2E,&q={searchTerms}
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://search.chatzum.com/?orig=DS&affid=62&cztbid=398551599&q={searchTerms}
SearchScopes: HKLM-x32 - {52db1893-8a90-4192-aede-08e00b8f8473} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms}
SearchScopes: HKCU - DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://rocket-find.com/results.php?f=4&q={searchTerms}&a=rckt_cmi_14_27_ch&cd=2XzuyEtN2Y1L1Qzu0AtD0BtA0C0CyEzzyE0F0Czy0Bzy0CzytN0D0Tzu0SzytCyEtN1L2XzutBtFtBtCtFtCtCtFtDtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyD0EtD0AyDtB0A0EtGyByE0AtAtGzz0AyD0DtG0EzyyC0FtGtA0EtDtDtBtB0CyDtCyEtAyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyD0DyCtBtDtAyE0BtG0ByCtDtBtGtAyEzytCtGzyyByDtCtGtC0DtAtB0EtBtCtB0EyCyEyB2Q&cr=1027476504&ir=
SearchScopes: HKCU - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://rocket-find.com/results.php?f=4&q={searchTerms}&a=rckt_cmi_14_27_ch&cd=2XzuyEtN2Y1L1Qzu0AtD0BtA0C0CyEzzyE0F0Czy0Bzy0CzytN0D0Tzu0SzytCyEtN1L2XzutBtFtBtCtFtCtCtFtDtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyD0EtD0AyDtB0A0EtGyByE0AtAtGzz0AyD0DtG0EzyyC0FtGtA0EtDtDtBtB0CyDtCyEtAyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyD0DyCtBtDtAyE0BtG0ByCtDtBtGtAyEzytCtGzyyByDtCtGtC0DtAtB0EtBtCtB0EyCyEyB2Q&cr=1027476504&ir=
SearchScopes: HKCU - {52db1893-8a90-4192-aede-08e00b8f8473} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms}
SearchScopes: HKCU - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK2q0U14moCf-ET1EM4uw_G-ZsY37hJsW_xeQeSXG80ggHtjPTecvbF7htjkQWadWf_X05_PnmHlFVcxUcvFe1KAbQSYBnTd-wpyhNDqr55lPOst8Jjz3JM70PraOvhKJ7u1RU6t-rLTmD9ncdNB-Cmb_dxeIn3k2f0bxzYdA9nE8kF74HcPW-tBUnwvN_TaTR85rpEf9k2E,&q={searchTerms}
SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = 
BHO: TicTaaCooupon -> {0976F393-E747-DCFE-31D0-860DE1FCBA82} -> C:\ProgramData\TicTaaCooupon\JH.x64.dll ()
BHO: savinshoop -> {2ED8C2FC-2464-86BA-E541-740FB78AF4BD} -> C:\ProgramData\savinshoop\PRZ7D.x64.dll ()
BHO: SmartbarInternetExplorerBHOEngine -> {31ad400d-1b06-4e33-a59a-90c2c140cba0} -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
BHO: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: TuicTaCoupon -> {795AE1C1-9CD3-7A5D-8535-AA853C8F4DD1} -> C:\ProgramData\TuicTaCoupon\wlrUI58BRE.x64.dll ()
BHO: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO: Freecorder extension -> {B15BBE59-42F5-4206-B3F0-BE98F5DC4B93} -> C:\Program Files\Freecorder extension\ScriptHost64.dll (Applian Technologies Inc.)
BHO: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: TicTaaCooupon -> {0976F393-E747-DCFE-31D0-860DE1FCBA82} -> C:\ProgramData\TicTaaCooupon\JH.dll ()
BHO-x32: savinshoop -> {2ED8C2FC-2464-86BA-E541-740FB78AF4BD} -> C:\ProgramData\savinshoop\PRZ7D.dll ()
BHO-x32: SmartbarInternetExplorerBHOEngine -> {31ad400d-1b06-4e33-a59a-90c2c140cba0} -> C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation)
BHO-x32: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: SaveSense -> {71e129ff-6c2a-4984-818c-7e2c998b8d99} -> C:\Users\hülya\AppData\Local\SaveSense\SaveSenseIE.dll (SaveSense)
BHO-x32: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: TuicTaCoupon -> {795AE1C1-9CD3-7A5D-8535-AA853C8F4DD1} -> C:\ProgramData\TuicTaCoupon\wlrUI58BRE.dll ()
BHO-x32: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO-x32: Freecorder extension -> {B15BBE59-42F5-4206-B3F0-BE98F5DC4B93} -> C:\Program Files (x86)\Freecorder extension\ScriptHost.dll (Applian Technologies Inc.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM - Yahoo Community Smartbar (by Linkury) - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\system32\mscoree.dll (Microsoft Corporation)
Toolbar: HKLM-x32 - Yahoo Community Smartbar (by Linkury) - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation)
DPF: HKLM-x32 {8FEFF364-6A5F-4966-A917-A3AC28411659} hxxp://download.easetuner.com/download/SOPCORE.CAB
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 192.168.2.1

FireFox:
========
FF Plugin-x32: @authentec.com/ffwloplugin - C:\Program Files (x86)\HP SimplePass\npffwloplugin.dll ( HP)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.updaterss.com/SaveSenseLive Update;version=3 - C:\Program Files (x86)\SaveSenseLive\Update\1.3.23.0\npGoogleUpdate3.dll (SaveSense)
FF Plugin-x32: @tools.updaterss.com/SaveSenseLive Update;version=9 - C:\Program Files (x86)\SaveSenseLive\Update\1.3.23.0\npGoogleUpdate3.dll (SaveSense)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\hülya\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF HKLM-x32\...\Firefox\Extensions:  - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\url_advisor@kaspersky.com
FF Extension: 卡巴斯基網址顧問 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\url_advisor@kaspersky.com [2013-11-06]
FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\virtual_keyboard@kaspersky.com
FF Extension: 虛擬鍵盤 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\virtual_keyboard@kaspersky.com [2013-11-06]
FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\content_blocker@kaspersky.com
FF Extension: 惡意網站攔截器 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\content_blocker@kaspersky.com [2013-11-06]
FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\anti_banner@kaspersky.com
FF Extension: Chặn quảng cáo - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\anti_banner@kaspersky.com [2013-11-06]
FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\online_banking@kaspersky.com
FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\online_banking@kaspersky.com [2013-11-06]

Chrome: 
=======
CHR HomePage: hxxp://www.search.ask.com/?o=APN10640A&gct=hp&d=473-113&v=a13277-274&t=4
CHR StartupUrls: "hxxp://www.search.ask.com/?o=APN10640A&gct=hp&d=473-113&v=a13277-274&t=4", "hxxp://google.de/"
CHR NewTab: "chrome-extension://ibnjmihbbanannlbobkbmnmckjnmdnom/newtab.html"
CHR DefaultSearchKeyword: ask.com
CHR DefaultSearchProvider: Ask.com
CHR DefaultSearchURL: hxxp://dts.search.ask.com/sr?src=crb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms}
CHR DefaultNewTabURL: 
CHR Extension: (Movies Toolbar) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaimdcedbpbcjjbbnfcbbjcngmomic [2014-05-10]
CHR Extension: (Google Docs) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-10]
CHR Extension: (Google Drive) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-10]
CHR Extension: (PriceGong) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok [2014-05-10]
CHR Extension: (YouTube) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-10]
CHR Extension: (Google-Suche) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-10]
CHR Extension: (Modul zur Link-Untersuchung) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2014-05-10]
CHR Extension: (Website Logon) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\fegekclkdhbnfdcmomlpegkkndgnmfmo [2014-05-10]
CHR Extension: (Freecorder) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpicboiclhmnllnjdcfcffifpoaebgkm [2014-05-10]
CHR Extension: (Rocket New Tab) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibnjmihbbanannlbobkbmnmckjnmdnom [2014-07-02]
CHR Extension: (Amazon-Icon) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg [2014-07-13]
CHR Extension: (Google Wallet) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-10]
CHR Extension: (Google Mail) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-10]
CHR Extension: (Anti-Banner) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2014-05-10]
CHR Extension: (SAlesoChoeoccker) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkidpnnapnfgjhfhkpmjpbckkbaodldb [2014-07-02]
CHR Extension: (Extutil) - C:\Users\HLYA~1\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B [2014-06-18]
CHR Extension: (Managera) - C:\Users\HLYA~1\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42 [2014-06-18]
CHR HKLM-x32\...\Chrome\Extension: [aaaaimdcedbpbcjjbbnfcbbjcngmomic] - C:\Users\hülya\AppData\Local\somotomoviestoolbar181\GC\toolbar.crx [2014-01-24]
CHR HKLM-x32\...\Chrome\Extension: [bkomkajifikmkfnjgphkjcfeepbnojok] - C:\Program Files (x86)\PriceGong\2.6.11\pricegong.crx [2013-03-04]
CHR HKLM-x32\...\Chrome\Extension: [blbkdnmdcafmfhinpmnlhhddbepgkeaa] - https://chrome.google.com/webstore/detail/blbkdnmdcafmfhinpmnlhhddbepgkeaa [2013-03-04]
CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\urladvisor.crx [2013-10-17]
CHR HKLM-x32\...\Chrome\Extension: [fegekclkdhbnfdcmomlpegkkndgnmfmo] - C:\Program Files (x86)\HP SimplePass\tschrome.crx [2012-07-12]
CHR HKLM-x32\...\Chrome\Extension: [gpicboiclhmnllnjdcfcffifpoaebgkm] - C:\Program Files (x86)\Freecorder extension\Freecorder.crx [2014-02-25]
CHR HKLM-x32\...\Chrome\Extension: [mkcedibhemacmilmkpndpkoidlnmgngg] - C:\Users\hülya\ChromeExtensions\mkcedibhemacmilmkpndpkoidlnmgngg\amazon.crx [2014-07-13]
CHR HKLM-x32\...\Chrome\Extension: [pelmeidfhdlhlbjimpabfcbnnojbboma] - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx [2014-07-13]
CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\ab.crx [2013-10-17]
CHR HKLM-x32\...\Chrome\Extension: [pljcgbedjplidkdjahbaalanadmjfgop] - C:\ProgramData\AskPartnerNetwork\Toolbar\ORJ-V7C\CRX\ToolbarCR.crx [2014-06-25]
CHR StartMenuInternet: Google Chrome - chrome.exe
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 70e6ca8c; c:\Program Files (x86)\Optimizer Pro\OptProCrashSvc.dll [186496 2014-03-02] ()
S4 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [165784 2014-06-24] (APN LLC.)
R2 AVM WLAN Connection Service; C:\Program Files (x86)\avmwlanstick\WlanNetService.exe [376832 2010-10-22] (AVM Berlin) [File not signed]
R2 avp; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe [214512 2013-10-17] (Kaspersky Lab ZAO)
S2 BackupStack; C:\Program Files (x86)\MyPC Backup\BackupStack.exe [36392 2014-02-18] (Just Develop It)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [331776 2012-07-26] (Microsoft Corporation)
S4 desksvc; C:\Program Files (x86)\Desk 365\deskSvc.exe [425008 2014-03-02] (337 Technology Limited.)
R2 FPLService; C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe [1641320 2012-08-10] (HP)
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2013-11-04] (Hewlett-Packard Company) [File not signed]
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-18] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation)
S4 LPTSystemUpdater; C:\Program Files (x86)\LPT\srpts.exe [35096 2014-02-09] ()
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [272176 2012-07-18] ()
R2 SafetyNutManager; C:\Program Files (x86)\Movies Toolbar\SafetyNut\SafetyNutManager.exe [3573456 2014-07-03] (Somoto LTD)
S2 savesenselive; C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe [146920 2014-07-02] (SaveSense)
S3 savesenselivem; C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe [146920 2014-07-02] (SaveSense)
R3 TrueService; C:\Program Files\Common Files\AuthenTec\TrueService.exe [401256 2012-07-16] (AuthenTec, Inc.)
R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [28160 2012-07-18] () [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16056 2014-03-29] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2699568 2012-07-18] (Intel® Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [14120 2010-10-04] (AVM Berlin)
S3 BthA2DP; C:\Windows\system32\drivers\BthA2DP.sys [117632 2013-06-01] (Microsoft Corporation)
S3 BthHFAud; C:\Windows\system32\DRIVERS\BthHfAud.sys [30720 2013-02-02] (Microsoft Corporation)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
R1 F06DEFF2-5B9C-490D-910F-35D3A9119622; C:\Program Files (x86)\Movies Toolbar\SafetyNut\x64\configmgrc2.cfg [42064 2014-07-03] (Somoto LTD)
S3 fwlanusb4; C:\Windows\system32\DRIVERS\fwlanusb4.sys [1293824 2010-10-04] (AVM GmbH)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2013-11-07] (Kaspersky Lab ZAO)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [29792 2013-12-19] (Kaspersky Lab)
S4 klflt; C:\Windows\System32\DRIVERS\klflt.sys [115296 2014-03-24] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [625760 2014-03-24] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [30304 2013-10-17] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [29280 2014-02-18] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [29280 2013-10-17] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\system32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO)
R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [65120 2014-03-24] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [178272 2013-12-19] (Kaspersky Lab ZAO)
R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [3345376 2013-08-22] (Intel Corporation)
S3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [266896 2012-06-14] (Realtek Semiconductor Corp.)
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [41272 2012-08-25] (Synaptics Incorporated)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-08-25] (Synaptics Incorporated)
S3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [48096 2012-08-09] (Windows (R) Win 7 DDK provider)
R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2012-08-31] (Hewlett-Packard Development Company, L.P.)
R3 WUDFWpdComp; C:\Windows\system32\DRIVERS\WUDFRd.sys [198656 2012-07-26] (Microsoft Corporation)
S3 XHCIPort; C:\Windows\System32\drivers\XHCIPort.sys [188384 2012-08-09] (Windows (R) Win 7 DDK provider)
S3 cpuz135; \??\C:\Users\HLYA~1\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-07-24 20:50 - 2014-07-24 20:50 - 00036071 _____ () C:\Users\hülya\Desktop\FRST.txt
2014-07-24 20:49 - 2014-07-24 20:50 - 00000000 ____D () C:\FRST
2014-07-24 20:30 - 2014-07-24 20:30 - 02093568 _____ (Farbar) C:\Users\hülya\Desktop\FRST64.exe
2014-07-24 20:30 - 2014-07-24 20:30 - 02093568 _____ (Farbar) C:\Users\hülya\Desktop\FRST64 (1).exe
2014-07-24 16:57 - 2014-07-24 16:57 - 00000000 ____D () C:\Users\hülya\AppData\Local\{4706BF3E-9D06-476C-8975-11B6F64F1ED5}
2014-07-20 02:38 - 2014-07-20 02:38 - 00000000 ____D () C:\Users\hülya\AppData\Local\{A90487C2-BC22-4173-A0A9-24300613D4BB}
2014-07-17 23:52 - 2014-07-17 23:52 - 01385120 _____ () C:\Users\hülya\Downloads\Setup (6).exe
2014-07-15 04:36 - 2014-07-15 04:36 - 00000000 ____D () C:\Program Files (x86)\LuckyCouPoon
2014-07-13 13:00 - 2014-07-13 13:00 - 00000000 ____D () C:\Users\hülya\AppData\Local\{AFB4CE14-1EF5-4B90-8CAB-588D81E38B33}
2014-07-13 01:44 - 2014-07-13 01:44 - 00000000 ____D () C:\Users\hülya\ChromeExtensions
2014-07-13 01:43 - 2014-07-24 20:11 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535_
2014-07-13 01:43 - 2014-07-24 20:11 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535
2014-07-13 01:43 - 2014-07-24 20:11 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51_
2014-07-13 01:42 - 2014-07-24 20:11 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51
2014-07-13 01:42 - 2014-07-13 01:43 - 00000186 _____ () C:\Users\hülya\Desktop\Amazon.de.url
2014-07-13 01:42 - 2014-07-13 01:42 - 01063312 _____ () C:\Users\hülya\Downloads\Adblock-Plus-fr-Chrome-lnstall.exe
2014-07-13 01:42 - 2014-07-13 01:42 - 00000000 ____D () C:\Users\hülya\Downloads\Adblock-Plus-für-Chrome
2014-07-12 19:29 - 2014-07-12 19:30 - 00000000 ____D () C:\Users\hülya\AppData\Local\{FD644658-6736-4DC7-AEFD-0D251801A962}
2014-07-12 18:26 - 2014-07-09 03:28 - 00378337 _____ () C:\Users\hülya\Documents\Ergo%20Vorbeereiten.odt_0.odt
2014-07-12 13:41 - 2014-07-12 13:41 - 00323048 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-12 13:39 - 2014-07-12 13:39 - 00000000 ____D () C:\Users\hülya\AppData\Local\{AB6D36F8-A176-45FF-83CE-3AE16BC873F0}
2014-07-12 13:14 - 2014-07-15 04:35 - 00000376 _____ () C:\Windows\Tasks\APSnotifierPP3.job
2014-07-12 13:14 - 2014-07-15 04:35 - 00000376 _____ () C:\Windows\Tasks\APSnotifierPP2.job
2014-07-12 03:32 - 2014-06-26 22:53 - 00703968 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-07-12 03:32 - 2014-06-26 22:53 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-07-12 03:28 - 2014-07-24 20:11 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-07-10 02:49 - 2014-07-10 02:49 - 00000102 ____H () C:\Users\hülya\Downloads\.~lock.ups bewerbung.doc#
2014-07-10 02:38 - 2014-07-10 02:38 - 00000102 ____H () C:\Users\hülya\Desktop\.~lock.Feser Graf Gruppe Bewerbung.odt#
2014-07-09 10:52 - 2014-07-01 00:42 - 00702464 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-07-09 10:52 - 2014-07-01 00:42 - 00394240 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-07-09 10:52 - 2014-07-01 00:42 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-07-09 10:52 - 2014-06-28 05:35 - 00556544 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-07-09 02:08 - 2014-06-19 04:12 - 02239488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-07-09 02:08 - 2014-06-19 04:12 - 01366528 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-07-09 02:08 - 2014-06-19 04:12 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2014-07-09 02:08 - 2014-06-19 04:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
2014-07-09 02:08 - 2014-06-19 04:12 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-07-09 02:08 - 2014-06-19 04:11 - 19277312 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-07-09 02:08 - 2014-06-19 04:11 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-07-09 02:08 - 2014-06-19 04:11 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 15369728 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 02650624 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-07-09 02:08 - 2014-06-19 04:09 - 01508864 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-07-09 02:08 - 2014-06-19 02:53 - 14368768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-07-09 02:08 - 2014-06-19 02:53 - 01766400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-07-09 02:08 - 2014-06-19 02:53 - 01141760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-07-09 02:08 - 2014-06-19 02:53 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-07-09 02:08 - 2014-06-19 02:53 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-07-09 02:08 - 2014-06-19 02:53 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-07-09 02:08 - 2014-06-19 02:53 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 13732352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 02863616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 01440768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-07-09 02:08 - 2014-06-19 02:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-07-09 02:08 - 2014-06-19 02:33 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-07-09 02:08 - 2014-06-19 02:30 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-07-09 02:08 - 2014-06-19 00:05 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2014-07-09 02:08 - 2014-06-18 01:27 - 01440256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2014-07-09 02:08 - 2014-06-18 01:24 - 01557504 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-07-09 02:08 - 2014-06-11 06:18 - 04038144 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-07-09 02:08 - 2014-06-03 00:33 - 00265216 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2014-07-09 02:08 - 2014-05-30 01:31 - 00452608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2014-07-09 02:08 - 2014-05-30 01:03 - 00588288 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2014-07-09 02:08 - 2014-05-30 01:02 - 01281536 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-07-09 02:08 - 2014-05-30 01:02 - 00439808 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll
2014-07-09 02:08 - 2014-05-03 08:34 - 06974808 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-07-09 02:08 - 2014-05-03 08:33 - 01824808 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2014-07-09 02:08 - 2014-05-03 06:51 - 01408976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2014-07-09 02:08 - 2014-05-02 00:37 - 01023488 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2014-07-09 02:08 - 2014-04-30 00:32 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe
2014-07-09 02:08 - 2014-04-30 00:32 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe
2014-07-09 02:08 - 2014-04-24 01:51 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2014-07-09 02:08 - 2014-04-24 01:51 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-09 02:08 - 2014-04-24 01:38 - 00693760 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2014-07-09 02:08 - 2014-04-24 01:38 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-09 02:08 - 2014-02-08 06:34 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2014-07-09 02:07 - 2014-06-06 16:06 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-07-09 02:07 - 2014-06-06 12:17 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2014-07-09 02:07 - 2014-05-30 00:24 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-07-07 12:47 - 2014-07-07 12:47 - 00000000 ____D () C:\Users\hülya\AppData\Local\{A85C6324-D7B6-49FD-82B2-D8EC8199F583}
2014-07-05 01:06 - 2014-07-19 00:07 - 00000095 _____ () C:\Users\hülya\AppData\Roaming\WB.CFG
2014-07-05 00:35 - 2014-07-24 20:50 - 00000000 ____D () C:\ProgramData\SafetyNut
2014-07-02 20:29 - 2014-07-15 23:15 - 00000000 ____D () C:\ProgramData\LuckyCouPoon
2014-07-02 20:07 - 2014-07-15 04:04 - 00003120 _____ () C:\Windows\System32\Tasks\Advanced System Protector_startup
2014-07-02 20:06 - 2014-07-24 20:18 - 00000938 _____ () C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineCore.job
2014-07-02 20:06 - 2014-07-24 20:11 - 00000942 _____ () C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineUA.job
2014-07-02 20:06 - 2014-07-24 20:11 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SaveSense
2014-07-02 20:06 - 2014-07-24 20:06 - 00000306 _____ () C:\Windows\Tasks\Rocket Updater.job
2014-07-02 20:06 - 2014-07-15 04:38 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\Systweak
2014-07-02 20:06 - 2014-07-15 04:06 - 00000306 _____ () C:\Windows\Tasks\SaveSense.job
2014-07-02 20:06 - 2014-07-02 20:06 - 00003914 _____ () C:\Windows\System32\Tasks\SaveSenseLiveUpdateTaskMachineUA
2014-07-02 20:06 - 2014-07-02 20:06 - 00003678 _____ () C:\Windows\System32\Tasks\SaveSenseLiveUpdateTaskMachineCore
2014-07-02 20:06 - 2014-07-02 20:06 - 00002644 _____ () C:\Windows\System32\Tasks\SaveSense
2014-07-02 20:06 - 2014-07-02 20:06 - 00002644 _____ () C:\Windows\System32\Tasks\Rocket Updater
2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\SaveSense
2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\RocketUpdater
2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Local\SaveSenseLive
2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Local\SaveSense
2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\ProgramData\SaveSenseLive
2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Program Files (x86)\SaveSenseLive
2014-07-02 20:06 - 2014-07-02 16:42 - 00608261 _____ (Click Me In Limited) C:\Users\hülya\AppData\Local\AnyProtectScannerSetup.exe
2014-07-02 20:06 - 2014-04-25 14:49 - 00020312 _____ (Systweak Inc., (www.systweak.com)) C:\Windows\system32\roboot64.exe
2014-07-02 20:01 - 2014-07-02 20:01 - 00000000 ____D () C:\Program Files (x86)\predm
2014-07-02 19:50 - 2014-07-02 19:50 - 01258080 _____ () C:\Users\hülya\Downloads\Setup (5).exe
2014-07-01 22:19 - 2014-07-01 22:19 - 00003204 _____ () C:\Windows\System32\Tasks\jgjnrnq
2014-07-01 22:19 - 2014-07-01 22:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\jgjnrnq.bat
2014-07-01 22:17 - 2014-07-01 22:17 - 00003206 _____ () C:\Windows\System32\Tasks\eqfcxnbw
2014-07-01 22:17 - 2014-07-01 22:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\eqfcxnbw.bat
2014-07-01 22:15 - 2014-07-01 22:15 - 00003204 _____ () C:\Windows\System32\Tasks\whpxpqi
2014-07-01 22:15 - 2014-07-01 22:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\whpxpqi.bat
2014-07-01 22:13 - 2014-07-01 22:13 - 00003200 _____ () C:\Windows\System32\Tasks\lcbpg
2014-07-01 22:13 - 2014-07-01 22:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpg.bat
2014-07-01 22:11 - 2014-07-01 22:11 - 00003206 _____ () C:\Windows\System32\Tasks\kheaxbbv
2014-07-01 22:11 - 2014-07-01 22:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\kheaxbbv.bat
2014-07-01 22:09 - 2014-07-01 22:09 - 00003206 _____ () C:\Windows\System32\Tasks\xgxiyqsd
2014-07-01 22:09 - 2014-07-01 22:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\xgxiyqsd.bat
2014-07-01 22:07 - 2014-07-01 22:07 - 00003204 _____ () C:\Windows\System32\Tasks\abpicxr
2014-07-01 22:07 - 2014-07-01 22:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\abpicxr.bat
2014-07-01 22:05 - 2014-07-01 22:05 - 00003204 _____ () C:\Windows\System32\Tasks\dynshwc
2014-07-01 22:05 - 2014-07-01 22:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\dynshwc.bat
2014-07-01 22:02 - 2014-07-01 22:02 - 00003206 _____ () C:\Windows\System32\Tasks\wgwfihhq
2014-07-01 22:02 - 2014-07-01 22:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\wgwfihhq.bat
2014-06-30 05:48 - 2014-06-30 05:48 - 00003206 _____ () C:\Windows\System32\Tasks\ulccqgwd
2014-06-30 05:48 - 2014-06-30 05:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\ulccqgwd.bat
2014-06-30 05:46 - 2014-06-30 05:46 - 00003204 _____ () C:\Windows\System32\Tasks\fvngogw
2014-06-30 05:46 - 2014-06-30 05:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\fvngogw.bat
2014-06-30 05:44 - 2014-06-30 05:44 - 00003200 _____ () C:\Windows\System32\Tasks\nfnnu
2014-06-30 05:44 - 2014-06-30 05:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\nfnnu.bat
2014-06-30 05:42 - 2014-06-30 05:42 - 00003200 _____ () C:\Windows\System32\Tasks\ebfol
2014-06-30 05:42 - 2014-06-30 05:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\ebfol.bat
2014-06-30 05:40 - 2014-06-30 05:40 - 00003204 _____ () C:\Windows\System32\Tasks\aiwkxfb
2014-06-30 05:40 - 2014-06-30 05:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\aiwkxfb.bat
2014-06-30 05:38 - 2014-06-30 05:38 - 00003206 _____ () C:\Windows\System32\Tasks\cwtodhbp
2014-06-30 05:38 - 2014-06-30 05:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\cwtodhbp.bat
2014-06-30 05:36 - 2014-06-30 05:36 - 00003202 _____ () C:\Windows\System32\Tasks\fgnngg
2014-06-30 05:36 - 2014-06-30 05:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\fgnngg.bat
2014-06-30 05:34 - 2014-06-30 05:34 - 00003200 _____ () C:\Windows\System32\Tasks\awkfl
2014-06-30 05:34 - 2014-06-30 05:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\awkfl.bat
2014-06-30 05:32 - 2014-06-30 05:32 - 00003202 _____ () C:\Windows\System32\Tasks\yldjcn
2014-06-30 05:32 - 2014-06-30 05:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\yldjcn.bat
2014-06-30 05:30 - 2014-06-30 05:30 - 00003206 _____ () C:\Windows\System32\Tasks\ekhnlrhf
2014-06-30 05:30 - 2014-06-30 05:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\ekhnlrhf.bat
2014-06-30 05:28 - 2014-06-30 05:28 - 00003206 _____ () C:\Windows\System32\Tasks\qmgcmikg
2014-06-30 05:28 - 2014-06-30 05:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\qmgcmikg.bat
2014-06-30 05:26 - 2014-06-30 05:26 - 00003204 _____ () C:\Windows\System32\Tasks\mcbxwcs
2014-06-30 05:26 - 2014-06-30 05:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\mcbxwcs.bat
2014-06-30 05:24 - 2014-06-30 05:24 - 00003206 _____ () C:\Windows\System32\Tasks\oopqhiaa
2014-06-30 05:24 - 2014-06-30 05:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\oopqhiaa.bat
2014-06-30 05:22 - 2014-06-30 05:22 - 00003204 _____ () C:\Windows\System32\Tasks\ijlmopq
2014-06-30 05:22 - 2014-06-30 05:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\ijlmopq.bat
2014-06-30 05:20 - 2014-06-30 05:20 - 00003206 _____ () C:\Windows\System32\Tasks\kfdavzwl
2014-06-30 05:20 - 2014-06-30 05:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\kfdavzwl.bat
2014-06-30 05:18 - 2014-06-30 05:18 - 00003200 _____ () C:\Windows\System32\Tasks\spuhd
2014-06-30 05:18 - 2014-06-30 05:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\spuhd.bat
2014-06-30 05:16 - 2014-06-30 05:16 - 00003202 _____ () C:\Windows\System32\Tasks\bxthdr
2014-06-30 05:16 - 2014-06-30 05:16 - 00000269 _____ () C:\Users\hülya\AppData\Local\bxthdr.bat
2014-06-30 05:14 - 2014-06-30 05:14 - 00003204 _____ () C:\Windows\System32\Tasks\fxacscu
2014-06-30 05:14 - 2014-06-30 05:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\fxacscu.bat
2014-06-30 05:12 - 2014-06-30 05:12 - 00003202 _____ () C:\Windows\System32\Tasks\beiuye
2014-06-30 05:12 - 2014-06-30 05:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\beiuye.bat
2014-06-30 05:10 - 2014-06-30 05:10 - 00003202 _____ () C:\Windows\System32\Tasks\lbgcbx
2014-06-30 05:10 - 2014-06-30 05:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\lbgcbx.bat
2014-06-30 05:08 - 2014-06-30 05:08 - 00003200 _____ () C:\Windows\System32\Tasks\erawe
2014-06-30 05:08 - 2014-06-30 05:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\erawe.bat
2014-06-30 05:06 - 2014-06-30 05:06 - 00003200 _____ () C:\Windows\System32\Tasks\caebg
2014-06-30 05:06 - 2014-06-30 05:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\caebg.bat
2014-06-30 05:04 - 2014-06-30 05:04 - 00003206 _____ () C:\Windows\System32\Tasks\hqqbbcll
2014-06-30 05:04 - 2014-06-30 05:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\hqqbbcll.bat
2014-06-30 05:01 - 2014-06-30 05:01 - 00003204 _____ () C:\Windows\System32\Tasks\ruxcmqt
2014-06-30 05:01 - 2014-06-30 05:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ruxcmqt.bat
2014-06-30 04:59 - 2014-06-30 04:59 - 00003206 _____ () C:\Windows\System32\Tasks\wxxabbdl
2014-06-30 04:59 - 2014-06-30 04:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\wxxabbdl.bat
2014-06-30 04:57 - 2014-06-30 04:57 - 00003204 _____ () C:\Windows\System32\Tasks\tbfedip
2014-06-30 04:57 - 2014-06-30 04:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbfedip.bat
2014-06-30 04:55 - 2014-06-30 04:55 - 00003200 _____ () C:\Windows\System32\Tasks\khtpt
2014-06-30 04:55 - 2014-06-30 04:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\khtpt.bat
2014-06-30 04:53 - 2014-06-30 04:53 - 00003204 _____ () C:\Windows\System32\Tasks\pakteow
2014-06-30 04:53 - 2014-06-30 04:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\pakteow.bat
2014-06-30 04:51 - 2014-06-30 04:51 - 00003200 _____ () C:\Windows\System32\Tasks\tsqpv
2014-06-30 04:51 - 2014-06-30 04:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\tsqpv.bat
2014-06-30 04:49 - 2014-06-30 04:49 - 00003202 _____ () C:\Windows\System32\Tasks\fsigct
2014-06-30 04:49 - 2014-06-30 04:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\fsigct.bat
2014-06-30 04:47 - 2014-06-30 04:47 - 00003202 _____ () C:\Windows\System32\Tasks\quwaeg
2014-06-30 04:47 - 2014-06-30 04:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\quwaeg.bat
2014-06-30 04:45 - 2014-06-30 04:45 - 00003200 _____ () C:\Windows\System32\Tasks\nveck
2014-06-30 04:45 - 2014-06-30 04:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\nveck.bat
2014-06-30 04:43 - 2014-06-30 04:43 - 00003202 _____ () C:\Windows\System32\Tasks\tqwtbw
2014-06-30 04:43 - 2014-06-30 04:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\tqwtbw.bat
2014-06-30 04:41 - 2014-06-30 04:41 - 00003200 _____ () C:\Windows\System32\Tasks\zlqcg
2014-06-30 04:41 - 2014-06-30 04:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\zlqcg.bat
2014-06-30 04:36 - 2014-06-30 04:36 - 00003204 _____ () C:\Windows\System32\Tasks\jehlnce
2014-06-30 04:36 - 2014-06-30 04:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\jehlnce.bat
2014-06-30 04:34 - 2014-06-30 04:34 - 00003204 _____ () C:\Windows\System32\Tasks\aguiubo
2014-06-30 04:34 - 2014-06-30 04:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\aguiubo.bat
2014-06-30 04:32 - 2014-06-30 04:32 - 00003200 _____ () C:\Windows\System32\Tasks\lqntf
2014-06-30 04:32 - 2014-06-30 04:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\lqntf.bat
2014-06-30 04:30 - 2014-06-30 04:30 - 00003200 _____ () C:\Windows\System32\Tasks\dulcs
2014-06-30 04:30 - 2014-06-30 04:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\dulcs.bat
2014-06-30 04:28 - 2014-06-30 04:28 - 00003200 _____ () C:\Windows\System32\Tasks\ljivt
2014-06-30 04:28 - 2014-06-30 04:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\ljivt.bat
2014-06-30 04:26 - 2014-06-30 04:26 - 00003206 _____ () C:\Windows\System32\Tasks\lrweaflq
2014-06-30 04:26 - 2014-06-30 04:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\lrweaflq.bat
2014-06-30 04:24 - 2014-06-30 04:24 - 00003200 _____ () C:\Windows\System32\Tasks\xdmoi
2014-06-30 04:24 - 2014-06-30 04:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\xdmoi.bat
2014-06-30 04:22 - 2014-06-30 04:22 - 00003200 _____ () C:\Windows\System32\Tasks\jdymi
2014-06-30 04:22 - 2014-06-30 04:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\jdymi.bat
2014-06-30 04:20 - 2014-06-30 04:20 - 00003202 _____ () C:\Windows\System32\Tasks\sxdjht
2014-06-30 04:20 - 2014-06-30 04:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\sxdjht.bat
2014-06-30 04:18 - 2014-06-30 04:18 - 00003204 _____ () C:\Windows\System32\Tasks\noohhij
2014-06-30 04:18 - 2014-06-30 04:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\noohhij.bat
2014-06-30 04:14 - 2014-06-30 04:14 - 00003204 _____ () C:\Windows\System32\Tasks\hcdeabo
2014-06-30 04:14 - 2014-06-30 04:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\hcdeabo.bat
2014-06-30 04:12 - 2014-06-30 04:12 - 00003202 _____ () C:\Windows\System32\Tasks\cfdfey
2014-06-30 04:12 - 2014-06-30 04:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\cfdfey.bat
2014-06-30 04:10 - 2014-06-30 04:10 - 00003204 _____ () C:\Windows\System32\Tasks\gwwoohh
2014-06-30 04:10 - 2014-06-30 04:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\gwwoohh.bat
2014-06-30 04:08 - 2014-06-30 04:08 - 00003206 _____ () C:\Windows\System32\Tasks\izuvpicd
2014-06-30 04:08 - 2014-06-30 04:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\izuvpicd.bat
2014-06-30 04:06 - 2014-06-30 04:06 - 00003206 _____ () C:\Windows\System32\Tasks\cfcfnrnj
2014-06-30 04:06 - 2014-06-30 04:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\cfcfnrnj.bat
2014-06-30 04:04 - 2014-06-30 04:04 - 00003200 _____ () C:\Windows\System32\Tasks\ekaix
2014-06-30 04:04 - 2014-06-30 04:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\ekaix.bat
2014-06-30 03:42 - 2014-06-30 03:42 - 00003202 _____ () C:\Windows\System32\Tasks\acxkgi
2014-06-30 03:42 - 2014-06-30 03:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\acxkgi.bat
2014-06-30 03:40 - 2014-06-30 03:40 - 00003206 _____ () C:\Windows\System32\Tasks\eulkcjbf
2014-06-30 03:40 - 2014-06-30 03:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\eulkcjbf.bat
2014-06-30 03:38 - 2014-06-30 03:38 - 00003202 _____ () C:\Windows\System32\Tasks\fwhaxi
2014-06-30 03:38 - 2014-06-30 03:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\fwhaxi.bat
2014-06-30 03:36 - 2014-06-30 03:36 - 00003200 _____ () C:\Windows\System32\Tasks\tyfrx
2014-06-30 03:36 - 2014-06-30 03:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\tyfrx.bat
2014-06-30 03:34 - 2014-06-30 03:34 - 00003202 _____ () C:\Windows\System32\Tasks\ovfemt
2014-06-30 03:34 - 2014-06-30 03:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\ovfemt.bat
2014-06-30 03:32 - 2014-06-30 03:32 - 00003202 _____ () C:\Windows\System32\Tasks\lcbpfk
2014-06-30 03:32 - 2014-06-30 03:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpfk.bat
2014-06-30 03:30 - 2014-06-30 03:30 - 00003204 _____ () C:\Windows\System32\Tasks\ubpckyn
2014-06-30 03:30 - 2014-06-30 03:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\ubpckyn.bat
2014-06-30 03:28 - 2014-06-30 03:28 - 00003202 _____ () C:\Windows\System32\Tasks\qcuecu
2014-06-30 03:28 - 2014-06-30 03:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\qcuecu.bat
2014-06-30 03:26 - 2014-06-30 03:26 - 00003204 _____ () C:\Windows\System32\Tasks\wfoefpa
2014-06-30 03:26 - 2014-06-30 03:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\wfoefpa.bat
2014-06-30 03:24 - 2014-06-30 03:24 - 00003206 _____ () C:\Windows\System32\Tasks\vggvgguf
2014-06-30 03:24 - 2014-06-30 03:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\vggvgguf.bat
2014-06-30 03:22 - 2014-06-30 03:22 - 00003202 _____ () C:\Windows\System32\Tasks\gufetd
2014-06-30 03:22 - 2014-06-30 03:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\gufetd.bat
2014-06-30 03:20 - 2014-06-30 03:20 - 00003202 _____ () C:\Windows\System32\Tasks\ljwusx
2014-06-30 03:20 - 2014-06-30 03:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\ljwusx.bat
2014-06-30 00:13 - 2014-06-30 00:13 - 00003200 _____ () C:\Windows\System32\Tasks\ztyse
2014-06-30 00:13 - 2014-06-30 00:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\ztyse.bat
2014-06-30 00:11 - 2014-06-30 00:11 - 00003200 _____ () C:\Windows\System32\Tasks\bdadk
2014-06-30 00:11 - 2014-06-30 00:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\bdadk.bat
2014-06-30 00:09 - 2014-06-30 00:09 - 00003204 _____ () C:\Windows\System32\Tasks\trwucgl
2014-06-30 00:09 - 2014-06-30 00:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\trwucgl.bat
2014-06-30 00:07 - 2014-06-30 00:07 - 00003206 _____ () C:\Windows\System32\Tasks\tbeerxvb
2014-06-30 00:07 - 2014-06-30 00:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbeerxvb.bat
2014-06-30 00:05 - 2014-06-30 00:05 - 00003200 _____ () C:\Windows\System32\Tasks\ccbfv
2014-06-30 00:05 - 2014-06-30 00:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\ccbfv.bat
2014-06-30 00:03 - 2014-06-30 00:03 - 00003202 _____ () C:\Windows\System32\Tasks\vveett
2014-06-30 00:03 - 2014-06-30 00:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\vveett.bat
2014-06-30 00:01 - 2014-06-30 00:01 - 00003206 _____ () C:\Windows\System32\Tasks\ligdqolj
2014-06-30 00:01 - 2014-06-30 00:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ligdqolj.bat
2014-06-29 23:59 - 2014-06-29 23:59 - 00003204 _____ () C:\Windows\System32\Tasks\vdksahw
2014-06-29 23:59 - 2014-06-29 23:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\vdksahw.bat
2014-06-29 23:57 - 2014-06-29 23:57 - 00003206 _____ () C:\Windows\System32\Tasks\vdsbqhwf
2014-06-29 23:57 - 2014-06-29 23:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\vdsbqhwf.bat
2014-06-29 23:55 - 2014-06-29 23:55 - 00003200 _____ () C:\Windows\System32\Tasks\reiba
2014-06-29 23:55 - 2014-06-29 23:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\reiba.bat
2014-06-29 23:53 - 2014-06-29 23:53 - 00003206 _____ () C:\Windows\System32\Tasks\kwtxbhko
2014-06-29 23:53 - 2014-06-29 23:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\kwtxbhko.bat
2014-06-29 23:51 - 2014-06-29 23:51 - 00003204 _____ () C:\Windows\System32\Tasks\koagcns
2014-06-29 23:51 - 2014-06-29 23:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\koagcns.bat
2014-06-29 23:49 - 2014-06-29 23:49 - 00003206 _____ () C:\Windows\System32\Tasks\vveeettb
2014-06-29 23:49 - 2014-06-29 23:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\vveeettb.bat
2014-06-29 23:47 - 2014-06-29 23:47 - 00003206 _____ () C:\Windows\System32\Tasks\rdpsgibx
2014-06-29 23:47 - 2014-06-29 23:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\rdpsgibx.bat
2014-06-29 23:45 - 2014-06-29 23:45 - 00003204 _____ () C:\Windows\System32\Tasks\quejuej
2014-06-29 23:45 - 2014-06-29 23:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\quejuej.bat
2014-06-29 23:43 - 2014-06-29 23:43 - 00003202 _____ () C:\Windows\System32\Tasks\icdytn
2014-06-29 23:43 - 2014-06-29 23:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\icdytn.bat
2014-06-29 23:41 - 2014-06-29 23:41 - 00003206 _____ () C:\Windows\System32\Tasks\ajcohkcp
2014-06-29 23:41 - 2014-06-29 23:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\ajcohkcp.bat
2014-06-29 23:39 - 2014-06-29 23:39 - 00003206 _____ () C:\Windows\System32\Tasks\gofohwhp
2014-06-29 23:39 - 2014-06-29 23:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\gofohwhp.bat
2014-06-29 23:37 - 2014-06-29 23:37 - 00003206 _____ () C:\Windows\System32\Tasks\dulctdar
2014-06-29 23:37 - 2014-06-29 23:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\dulctdar.bat
2014-06-29 23:35 - 2014-06-29 23:35 - 00003200 _____ () C:\Windows\System32\Tasks\qnifi
2014-06-29 23:35 - 2014-06-29 23:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\qnifi.bat
2014-06-29 21:33 - 2014-06-29 21:33 - 00003200 _____ () C:\Windows\System32\Tasks\daetq
2014-06-29 21:33 - 2014-06-29 21:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\daetq.bat
2014-06-29 21:31 - 2014-06-29 21:31 - 00003206 _____ () C:\Windows\System32\Tasks\akcohzmg
2014-06-29 21:31 - 2014-06-29 21:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\akcohzmg.bat
2014-06-29 21:29 - 2014-06-29 21:29 - 00003202 _____ () C:\Windows\System32\Tasks\nooffg
2014-06-29 21:29 - 2014-06-29 21:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\nooffg.bat
2014-06-29 21:27 - 2014-06-29 21:27 - 00003204 _____ () C:\Windows\System32\Tasks\lqgmrpu
2014-06-29 21:27 - 2014-06-29 21:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\lqgmrpu.bat
2014-06-29 21:25 - 2014-06-29 21:25 - 00003204 _____ () C:\Windows\System32\Tasks\cnaupdx
2014-06-29 21:25 - 2014-06-29 21:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\cnaupdx.bat
2014-06-29 21:23 - 2014-06-29 21:23 - 00003206 _____ () C:\Windows\System32\Tasks\rwimaepu
2014-06-29 21:23 - 2014-06-29 21:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\rwimaepu.bat
2014-06-29 21:21 - 2014-06-29 21:21 - 00003200 _____ () C:\Windows\System32\Tasks\iavic
2014-06-29 21:21 - 2014-06-29 21:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\iavic.bat
2014-06-29 21:19 - 2014-06-29 21:19 - 00003200 _____ () C:\Windows\System32\Tasks\hajdc
2014-06-29 21:19 - 2014-06-29 21:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\hajdc.bat
2014-06-29 21:17 - 2014-06-29 21:17 - 00003206 _____ () C:\Windows\System32\Tasks\jdauqmhd
2014-06-29 21:17 - 2014-06-29 21:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\jdauqmhd.bat
2014-06-29 21:15 - 2014-06-29 21:15 - 00003204 _____ () C:\Windows\System32\Tasks\vdksa
2014-06-29 21:15 - 2014-06-29 21:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\utjiwdc.bat
2014-06-29 21:13 - 2014-06-29 21:13 - 00003204 _____ () C:\Windows\System32\Tasks\hwooghw
2014-06-29 21:13 - 2014-06-29 21:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\hwooghw.bat
2014-06-29 21:11 - 2014-06-29 21:11 - 00003204 _____ () C:\Windows\System32\Tasks\ifauytq
2014-06-29 21:11 - 2014-06-29 21:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\ifauytq.bat
2014-06-29 21:09 - 2014-06-29 21:09 - 00003204 _____ () C:\Windows\System32\Tasks\erawlaq
2014-06-29 21:09 - 2014-06-29 21:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\erawlaq.bat
2014-06-29 21:07 - 2014-06-29 21:07 - 00003200 _____ () C:\Windows\System32\Tasks\lxdiu
2014-06-29 21:07 - 2014-06-29 21:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\lxdiu.bat
2014-06-29 21:05 - 2014-06-29 21:05 - 00003200 _____ () C:\Windows\System32\Tasks\pjddy
2014-06-29 21:05 - 2014-06-29 21:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\pjddy.bat
2014-06-29 21:03 - 2014-06-29 21:03 - 00003206 _____ () C:\Windows\System32\Tasks\fqcdnfrr
2014-06-29 21:03 - 2014-06-29 21:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\fqcdnfrr.bat
2014-06-29 21:01 - 2014-06-29 21:01 - 00003206 _____ () C:\Windows\System32\Tasks\ghpaijjd
2014-06-29 21:01 - 2014-06-29 21:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ghpaijjd.bat
2014-06-29 20:59 - 2014-06-29 20:59 - 00003206 _____ () C:\Windows\System32\Tasks\hbunicup
2014-06-29 20:59 - 2014-06-29 20:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\hbunicup.bat
2014-06-29 20:57 - 2014-06-29 20:57 - 00003204 _____ () C:\Windows\System32\Tasks\aaoibwj
2014-06-29 20:57 - 2014-06-29 20:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\aaoibwj.bat
2014-06-29 20:55 - 2014-06-29 20:55 - 00003204 _____ () C:\Windows\System32\Tasks\aaunbtn
2014-06-29 20:55 - 2014-06-29 20:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\aaunbtn.bat
2014-06-29 20:53 - 2014-06-29 20:53 - 00003206 _____ () C:\Windows\System32\Tasks\mffummlk
2014-06-29 20:53 - 2014-06-29 20:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\mffummlk.bat
2014-06-29 20:51 - 2014-06-29 20:51 - 00003200 _____ () C:\Windows\System32\Tasks\refju
2014-06-29 20:51 - 2014-06-29 20:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\refju.bat
2014-06-29 20:49 - 2014-06-29 20:49 - 00003204 _____ () C:\Windows\System32\Tasks\daechca
2014-06-29 20:49 - 2014-06-29 20:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\daechca.bat
2014-06-29 20:47 - 2014-06-29 20:47 - 00003206 _____ () C:\Windows\System32\Tasks\idxsnplf
2014-06-29 20:47 - 2014-06-29 20:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\idxsnplf.bat
2014-06-29 20:45 - 2014-06-29 20:45 - 00003204 _____ () C:\Windows\System32\Tasks\xrunfjc
2014-06-29 20:45 - 2014-06-29 20:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\xrunfjc.bat
2014-06-29 20:43 - 2014-06-29 20:43 - 00003200 _____ () C:\Windows\System32\Tasks\ubovd
2014-06-29 20:43 - 2014-06-29 20:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\ubovd.bat
2014-06-29 20:41 - 2014-06-29 20:41 - 00003202 _____ () C:\Windows\System32\Tasks\eblbzi
2014-06-29 20:41 - 2014-06-29 20:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\eblbzi.bat
2014-06-29 20:39 - 2014-06-29 20:39 - 00003202 _____ () C:\Windows\System32\Tasks\tbgmtf
2014-06-29 20:39 - 2014-06-29 20:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbgmtf.bat
2014-06-29 20:37 - 2014-06-29 20:37 - 00003206 _____ () C:\Windows\System32\Tasks\rvadoswa
2014-06-29 20:37 - 2014-06-29 20:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\rvadoswa.bat
2014-06-29 20:35 - 2014-06-29 20:35 - 00003206 _____ () C:\Windows\System32\Tasks\numsabiy
2014-06-29 20:35 - 2014-06-29 20:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\numsabiy.bat
2014-06-29 20:33 - 2014-06-29 20:33 - 00003204 _____ () C:\Windows\System32\Tasks\kotimqn
2014-06-29 20:33 - 2014-06-29 20:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\kotimqn.bat
2014-06-29 20:31 - 2014-06-29 20:31 - 00003200 _____ () C:\Windows\System32\Tasks\lkifm
2014-06-29 20:31 - 2014-06-29 20:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\lkifm.bat
2014-06-29 20:29 - 2014-06-29 20:29 - 00003200 _____ () C:\Windows\System32\Tasks\fjdoh
2014-06-29 20:29 - 2014-06-29 20:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\fjdoh.bat
2014-06-29 20:27 - 2014-06-29 20:27 - 00003202 _____ () C:\Windows\System32\Tasks\fkvoal
2014-06-29 20:27 - 2014-06-29 20:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\fkvoal.bat
2014-06-29 20:25 - 2014-06-29 20:25 - 00003206 _____ () C:\Windows\System32\Tasks\fdcaqonm
2014-06-29 20:25 - 2014-06-29 20:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\fdcaqonm.bat
2014-06-29 20:23 - 2014-06-29 20:23 - 00003202 _____ () C:\Windows\System32\Tasks\oqyaks
2014-06-29 20:23 - 2014-06-29 20:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\oqyaks.bat
2014-06-29 20:21 - 2014-06-29 20:21 - 00003204 _____ () C:\Windows\System32\Tasks\kotxmqu
2014-06-29 20:21 - 2014-06-29 20:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\kotxmqu.bat
2014-06-29 20:19 - 2014-06-29 20:19 - 00003204 _____ () C:\Windows\System32\Tasks\iddytni
2014-06-29 20:19 - 2014-06-29 20:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\iddytni.bat
2014-06-29 20:17 - 2014-06-29 20:17 - 00003206 _____ () C:\Windows\System32\Tasks\kfujeuqf
2014-06-29 20:17 - 2014-06-29 20:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\kfujeuqf.bat
2014-06-29 20:15 - 2014-06-29 20:15 - 00003202 _____ () C:\Windows\System32\Tasks\whqaqs
2014-06-29 20:15 - 2014-06-29 20:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\whqaqs.bat
2014-06-29 20:13 - 2014-06-29 20:13 - 00003200 _____ () C:\Windows\System32\Tasks\lcbpv
2014-06-29 20:13 - 2014-06-29 20:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpv.bat
2014-06-29 20:11 - 2014-06-29 20:11 - 00003206 _____ () C:\Windows\System32\Tasks\psuprudi
2014-06-29 20:11 - 2014-06-29 20:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\psuprudi.bat
2014-06-29 20:09 - 2014-06-29 20:09 - 00003206 _____ () C:\Windows\System32\Tasks\numttcsa
2014-06-29 20:09 - 2014-06-29 20:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\numttcsa.bat
2014-06-29 20:07 - 2014-06-29 20:07 - 00003202 _____ () C:\Windows\System32\Tasks\jfjnqm
2014-06-29 20:07 - 2014-06-29 20:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\jfjnqm.bat
2014-06-29 20:05 - 2014-06-29 20:05 - 00003204 _____ () C:\Windows\System32\Tasks\egqajsk
2014-06-29 20:05 - 2014-06-29 20:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\egqajsk.bat
2014-06-29 20:03 - 2014-06-29 20:03 - 00003202 _____ () C:\Windows\System32\Tasks\hztmgy
2014-06-29 20:03 - 2014-06-29 20:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\hztmgy.bat
2014-06-29 20:01 - 2014-06-29 20:01 - 00003200 _____ () C:\Windows\System32\Tasks\isnoa
2014-06-29 20:01 - 2014-06-29 20:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\isnoa.bat
2014-06-29 19:59 - 2014-06-29 19:59 - 00003206 _____ () C:\Windows\System32\Tasks\tbglafes
2014-06-29 19:59 - 2014-06-29 19:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbglafes.bat
2014-06-29 19:57 - 2014-06-29 19:57 - 00003206 _____ () C:\Windows\System32\Tasks\ukbhckaa
2014-06-29 19:57 - 2014-06-29 19:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\ukbhckaa.bat
2014-06-29 19:14 - 2014-06-29 19:14 - 00003206 _____ () C:\Windows\System32\Tasks\thlrdkxu
2014-06-29 19:14 - 2014-06-29 19:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\thlrdkxu.bat
2014-06-29 19:12 - 2014-06-29 19:12 - 00003202 _____ () C:\Windows\System32\Tasks\zuhtgb
2014-06-29 19:12 - 2014-06-29 19:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\zuhtgb.bat
2014-06-29 19:10 - 2014-06-29 19:10 - 00003202 _____ () C:\Windows\System32\Tasks\kbxmda
2014-06-29 19:10 - 2014-06-29 19:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\kbxmda.bat
2014-06-29 19:08 - 2014-06-29 19:08 - 00003200 _____ () C:\Windows\System32\Tasks\edeaa
2014-06-29 19:08 - 2014-06-29 19:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\edeaa.bat
2014-06-29 19:06 - 2014-06-29 19:06 - 00003206 _____ () C:\Windows\System32\Tasks\rvaeitxc
2014-06-29 19:06 - 2014-06-29 19:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\rvaeitxc.bat
2014-06-29 19:04 - 2014-06-29 19:04 - 00003202 _____ () C:\Windows\System32\Tasks\dafdid
2014-06-29 19:04 - 2014-06-29 19:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\dafdid.bat
2014-06-29 19:02 - 2014-06-29 19:02 - 00003200 _____ () C:\Windows\System32\Tasks\auaco
2014-06-29 19:02 - 2014-06-29 19:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\auaco.bat
2014-06-29 19:00 - 2014-06-29 19:00 - 00003206 _____ () C:\Windows\System32\Tasks\ydoalwbt
2014-06-29 19:00 - 2014-06-29 19:00 - 00000269 _____ () C:\Users\hülya\AppData\Local\ydoalwbt.bat
2014-06-29 18:58 - 2014-06-29 18:58 - 00003206 _____ () C:\Windows\System32\Tasks\efqidtef
2014-06-29 18:58 - 2014-06-29 18:58 - 00000269 _____ () C:\Users\hülya\AppData\Local\efqidtef.bat
2014-06-29 18:56 - 2014-06-29 18:56 - 00003206 _____ () C:\Windows\System32\Tasks\piqzluev
2014-06-29 18:56 - 2014-06-29 18:56 - 00000269 _____ () C:\Users\hülya\AppData\Local\piqzluev.bat
2014-06-29 18:54 - 2014-06-29 18:54 - 00003204 _____ () C:\Windows\System32\Tasks\aavaouj
2014-06-29 18:54 - 2014-06-29 18:54 - 00000269 _____ () C:\Users\hülya\AppData\Local\aavaouj.bat
2014-06-29 18:48 - 2014-06-29 18:48 - 00003204 _____ () C:\Windows\System32\Tasks\ahubocp
2014-06-29 18:48 - 2014-06-29 18:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\ahubocp.bat
2014-06-29 18:46 - 2014-06-29 18:46 - 00003206 _____ () C:\Windows\System32\Tasks\jfbdsujm
2014-06-29 18:46 - 2014-06-29 18:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\jfbdsujm.bat
2014-06-29 18:44 - 2014-06-29 18:44 - 00003202 _____ () C:\Windows\System32\Tasks\vmddsj
2014-06-29 18:44 - 2014-06-29 18:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\vmddsj.bat
2014-06-29 18:42 - 2014-06-29 18:42 - 00003200 _____ () C:\Windows\System32\Tasks\giqss
2014-06-29 18:42 - 2014-06-29 18:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\giqss.bat
2014-06-29 18:40 - 2014-06-29 18:40 - 00003206 _____ () C:\Windows\System32\Tasks\thbbobwc
2014-06-29 18:40 - 2014-06-29 18:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\thbbobwc.bat
2014-06-29 18:38 - 2014-06-29 18:38 - 00003206 _____ () C:\Windows\System32\Tasks\ruxjmqcg
2014-06-29 18:38 - 2014-06-29 18:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\ruxjmqcg.bat
2014-06-29 18:36 - 2014-06-29 18:36 - 00003204 _____ () C:\Windows\System32\Tasks\ahubvcq
2014-06-29 18:36 - 2014-06-29 18:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\ahubvcq.bat
2014-06-29 18:34 - 2014-06-29 18:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\gfiaa.bat
2014-06-29 18:33 - 2014-06-29 18:33 - 00003200 _____ () C:\Windows\System32\Tasks\gfiaa
2014-06-29 18:31 - 2014-06-29 18:31 - 00003206 _____ () C:\Windows\System32\Tasks\qlgqlgjm
2014-06-29 18:31 - 2014-06-29 18:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\qlgqlgjm.bat
2014-06-29 18:29 - 2014-06-29 18:29 - 00003202 _____ () C:\Windows\System32\Tasks\oqysbd
2014-06-29 18:29 - 2014-06-29 18:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\oqysbd.bat
2014-06-29 18:27 - 2014-06-29 18:27 - 00003202 _____ () C:\Windows\System32\Tasks\ykvbmx
2014-06-29 18:27 - 2014-06-29 18:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\ykvbmx.bat
2014-06-29 18:25 - 2014-06-29 18:25 - 00003206 _____ () C:\Windows\System32\Tasks\aocpcqer
2014-06-29 18:25 - 2014-06-29 18:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\aocpcqer.bat
2014-06-29 18:23 - 2014-06-29 18:23 - 00003200 _____ () C:\Windows\System32\Tasks\fepha
2014-06-29 18:23 - 2014-06-29 18:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\fepha.bat
2014-06-29 18:21 - 2014-06-29 18:21 - 00003204 _____ () C:\Windows\System32\Tasks\acceyau
2014-06-29 18:21 - 2014-06-29 18:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\acceyau.bat
2014-06-29 18:19 - 2014-06-29 18:19 - 00003202 _____ () C:\Windows\System32\Tasks\tymrgl
2014-06-29 18:19 - 2014-06-29 18:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\tymrgl.bat
2014-06-29 18:17 - 2014-06-29 18:17 - 00003202 _____ () C:\Windows\System32\Tasks\cxuqfu
2014-06-29 18:17 - 2014-06-29 18:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\cxuqfu.bat
2014-06-29 18:15 - 2014-06-29 18:15 - 00003200 _____ () C:\Windows\System32\Tasks\gxqja
2014-06-29 18:15 - 2014-06-29 18:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\gxqja.bat
2014-06-29 18:13 - 2014-06-29 18:13 - 00003202 _____ () C:\Windows\System32\Tasks\xiscnx
2014-06-29 18:13 - 2014-06-29 18:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\xiscnx.bat
2014-06-29 18:11 - 2014-06-29 18:11 - 00003204 _____ () C:\Windows\System32\Tasks\gffffee
2014-06-29 18:11 - 2014-06-29 18:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\gffffee.bat
2014-06-29 18:09 - 2014-06-29 18:09 - 00003200 _____ () C:\Windows\System32\Tasks\ccafn
2014-06-29 18:09 - 2014-06-29 18:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\ccafn.bat
2014-06-29 18:07 - 2014-06-29 18:07 - 00003200 _____ () C:\Windows\System32\Tasks\jvrui
2014-06-29 18:07 - 2014-06-29 18:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\jvrui.bat
2014-06-29 18:05 - 2014-06-29 18:05 - 00003204 _____ () C:\Windows\System32\Tasks\qdfrefk
2014-06-29 18:05 - 2014-06-29 18:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\qdfrefk.bat
2014-06-29 18:03 - 2014-06-29 18:03 - 00003204 _____ () C:\Windows\System32\Tasks\eewxpph
2014-06-29 18:03 - 2014-06-29 18:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\eewxpph.bat
2014-06-29 18:01 - 2014-06-29 18:01 - 00003200 _____ () C:\Windows\System32\Tasks\icwxl
2014-06-29 18:01 - 2014-06-29 18:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\icwxl.bat
2014-06-29 17:59 - 2014-06-29 17:59 - 00003200 _____ () C:\Windows\System32\Tasks\wnfne
2014-06-29 17:59 - 2014-06-29 17:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\wnfne.bat
2014-06-29 17:57 - 2014-06-29 17:57 - 00003202 _____ () C:\Windows\System32\Tasks\xizdef
2014-06-29 17:57 - 2014-06-29 17:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\xizdef.bat
2014-06-29 17:55 - 2014-06-29 17:55 - 00003206 _____ () C:\Windows\System32\Tasks\quxbfilv
2014-06-29 17:55 - 2014-06-29 17:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\quxbfilv.bat
2014-06-29 17:53 - 2014-06-29 17:53 - 00003202 _____ () C:\Windows\System32\Tasks\zfsdqf
2014-06-29 17:53 - 2014-06-29 17:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\zfsdqf.bat
2014-06-29 17:52 - 2014-07-15 04:35 - 00000320 _____ () C:\Users\hülya\AppData\Roaming\aps.uninstall.scan.results
2014-06-29 17:52 - 2014-07-02 20:08 - 00000378 _____ () C:\Windows\Tasks\APSnotifierPP1.job
2014-06-29 17:52 - 2014-06-29 17:52 - 00623696 _____ (Click Me In Limited) C:\Users\hülya\AppData\Local\nsu16A4.tmp
2014-06-29 17:51 - 2014-06-29 17:51 - 00003206 _____ () C:\Windows\System32\Tasks\kpmrotfu
2014-06-29 17:51 - 2014-06-29 17:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\kpmrotfu.bat
2014-06-29 17:49 - 2014-06-29 17:49 - 00003204 _____ () C:\Windows\System32\Tasks\khepmjn
2014-06-29 17:49 - 2014-06-29 17:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\khepmjn.bat
2014-06-29 17:47 - 2014-06-29 17:47 - 00003204 _____ () C:\Windows\System32\Tasks\beyuxlg
2014-06-29 17:47 - 2014-06-29 17:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\beyuxlg.bat
2014-06-29 17:45 - 2014-06-29 17:45 - 00003200 _____ () C:\Windows\System32\Tasks\eddzr
2014-06-29 17:45 - 2014-06-29 17:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\eddzr.bat
2014-06-29 17:43 - 2014-06-29 17:43 - 00003204 _____ () C:\Windows\System32\Tasks\cpdlguc
2014-06-29 17:43 - 2014-06-29 17:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\cpdlguc.bat
2014-06-29 17:41 - 2014-06-29 17:41 - 00003206 _____ () C:\Windows\System32\Tasks\gaiccbvd
2014-06-29 17:41 - 2014-06-29 17:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\gaiccbvd.bat
2014-06-29 17:39 - 2014-06-29 17:39 - 00003202 _____ () C:\Windows\System32\Tasks\iauhbv
2014-06-29 17:39 - 2014-06-29 17:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\iauhbv.bat
2014-06-29 17:37 - 2014-06-29 17:37 - 00003206 _____ () C:\Windows\System32\Tasks\eudbraxo
2014-06-29 17:37 - 2014-06-29 17:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\eudbraxo.bat
2014-06-29 17:35 - 2014-06-29 17:35 - 00003206 _____ () C:\Windows\System32\Tasks\pxrbjdlu
2014-06-29 17:35 - 2014-06-29 17:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\pxrbjdlu.bat
2014-06-29 17:33 - 2014-06-29 17:33 - 00003200 _____ () C:\Windows\System32\Tasks\ilvab
2014-06-29 17:33 - 2014-06-29 17:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\ilvab.bat
2014-06-29 17:31 - 2014-06-29 17:31 - 00003204 _____ () C:\Windows\System32\Tasks\vwgfvve
2014-06-29 17:31 - 2014-06-29 17:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\vwgfvve.bat
2014-06-29 17:28 - 2014-06-29 17:28 - 00003204 _____ () C:\Windows\System32\Tasks\reibflg
2014-06-29 17:28 - 2014-06-29 17:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\reibflg.bat
2014-06-29 17:26 - 2014-06-29 17:26 - 00003202 _____ () C:\Windows\System32\Tasks\kgjoch
2014-06-29 17:26 - 2014-06-29 17:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\kgjoch.bat
2014-06-29 17:24 - 2014-06-29 17:24 - 00003202 _____ () C:\Windows\System32\Tasks\dngoeo
2014-06-29 17:24 - 2014-06-29 17:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\dngoeo.bat
2014-06-29 17:22 - 2014-06-29 17:22 - 00003204 _____ () C:\Windows\System32\Tasks\gohgohh
2014-06-29 17:22 - 2014-06-29 17:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\gohgohh.bat
2014-06-29 17:20 - 2014-06-29 17:20 - 00003206 _____ () C:\Windows\System32\Tasks\lbffbzeu
2014-06-29 17:20 - 2014-06-29 17:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\lbffbzeu.bat
2014-06-29 17:18 - 2014-06-29 17:18 - 00003204 _____ () C:\Windows\System32\Tasks\dafwmja
2014-06-29 17:18 - 2014-06-29 17:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\dafwmja.bat
2014-06-29 17:16 - 2014-06-29 17:16 - 00003204 _____ () C:\Windows\System32\Tasks\sfzekgc
2014-06-29 17:16 - 2014-06-29 17:16 - 00000269 _____ () C:\Users\hülya\AppData\Local\sfzekgc.bat
2014-06-29 17:14 - 2014-06-29 17:14 - 00003204 _____ () C:\Windows\System32\Tasks\trxvdah
2014-06-29 17:14 - 2014-06-29 17:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\trxvdah.bat
2014-06-29 17:12 - 2014-06-29 17:12 - 00003200 _____ () C:\Windows\System32\Tasks\cokxm
2014-06-29 17:12 - 2014-06-29 17:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\cokxm.bat
2014-06-29 17:10 - 2014-06-29 17:10 - 00003204 _____ () C:\Windows\System32\Tasks\ajuhbdv
2014-06-29 17:10 - 2014-06-29 17:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\ajuhbdv.bat
2014-06-29 17:08 - 2014-06-29 17:08 - 00003202 _____ () C:\Windows\System32\Tasks\xaqscn
2014-06-29 17:08 - 2014-06-29 17:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\xaqscn.bat
2014-06-29 17:06 - 2014-06-29 17:06 - 00003206 _____ () C:\Windows\System32\Tasks\icreymhc
2014-06-29 17:06 - 2014-06-29 17:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\icreymhc.bat
2014-06-29 17:04 - 2014-06-29 17:04 - 00003202 _____ () C:\Windows\System32\Tasks\rxbycq
2014-06-29 17:04 - 2014-06-29 17:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\rxbycq.bat
2014-06-29 17:02 - 2014-06-29 17:02 - 00003204 _____ () C:\Windows\System32\Tasks\kifbcee
2014-06-29 17:02 - 2014-06-29 17:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\kifbcee.bat
2014-06-29 17:00 - 2014-06-29 17:00 - 00003200 _____ () C:\Windows\System32\Tasks\wgwgw
2014-06-29 17:00 - 2014-06-29 17:00 - 00000269 _____ () C:\Users\hülya\AppData\Local\wgwgw.bat
2014-06-29 16:58 - 2014-06-29 16:58 - 00003200 _____ () C:\Windows\System32\Tasks\nghxp
2014-06-29 16:58 - 2014-06-29 16:58 - 00000269 _____ () C:\Users\hülya\AppData\Local\nghxp.bat
2014-06-29 16:56 - 2014-06-29 16:56 - 00003200 _____ () C:\Windows\System32\Tasks\xdmos
2014-06-29 16:56 - 2014-06-29 16:56 - 00000269 _____ () C:\Users\hülya\AppData\Local\xdmos.bat
2014-06-29 16:54 - 2014-06-29 16:54 - 00003200 _____ () C:\Windows\System32\Tasks\vlmck
2014-06-29 16:54 - 2014-06-29 16:54 - 00000269 _____ () C:\Users\hülya\AppData\Local\vlmck.bat
2014-06-29 16:52 - 2014-06-29 16:52 - 00003202 _____ () C:\Windows\System32\Tasks\rdwbfa
2014-06-29 16:52 - 2014-06-29 16:52 - 00000269 _____ () C:\Users\hülya\AppData\Local\rdwbfa.bat
2014-06-29 16:50 - 2014-07-02 20:04 - 00001090 _____ () C:\Users\hülya\Desktop\Continue VuuPC Installation.lnk
2014-06-29 16:50 - 2014-06-29 16:50 - 00003204 _____ () C:\Windows\System32\Tasks\bocpdwd
2014-06-29 16:50 - 2014-06-29 16:50 - 00000269 _____ () C:\Users\hülya\AppData\Local\bocpdwd.bat
2014-06-29 16:48 - 2014-06-29 16:48 - 00003204 _____ () C:\Windows\System32\Tasks\prsudyb
2014-06-29 16:48 - 2014-06-29 16:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\prsudyb.bat
2014-06-29 16:46 - 2014-06-29 16:46 - 00003206 _____ () C:\Windows\System32\Tasks\hysdwpba
2014-06-29 16:46 - 2014-06-29 16:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\hysdwpba.bat
2014-06-29 16:44 - 2014-06-29 16:44 - 00003200 _____ () C:\Windows\System32\Tasks\aocpc
2014-06-29 16:44 - 2014-06-29 16:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\aocpc.bat
2014-06-29 16:42 - 2014-06-29 16:42 - 00003206 _____ () C:\Windows\System32\Tasks\bkdpjboa
2014-06-29 16:42 - 2014-06-29 16:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\bkdpjboa.bat
2014-06-29 16:40 - 2014-06-29 16:40 - 00003202 _____ () C:\Windows\System32\Tasks\gphqpz
2014-06-29 16:40 - 2014-06-29 16:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\gphqpz.bat
2014-06-29 16:38 - 2014-06-29 16:38 - 00003204 _____ () C:\Windows\System32\Tasks\rwbfruh
2014-06-29 16:38 - 2014-06-29 16:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\rwbfruh.bat
2014-06-29 16:37 - 2014-06-29 16:37 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\Uniblue
2014-06-29 16:36 - 2014-07-02 22:43 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2014-06-29 16:36 - 2014-07-02 20:09 - 00000000 ____D () C:\Users\hülya\AppData\Local\service_06291436
2014-06-29 16:36 - 2014-07-02 20:00 - 00000000 ____D () C:\Program Files (x86)\Fraven 1.1
2014-06-29 16:36 - 2014-06-29 16:36 - 00003202 _____ () C:\Windows\System32\Tasks\prtvey
2014-06-29 16:36 - 2014-06-29 16:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\prtvey.bat
2014-06-29 16:36 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\AppData\Local\globalUpdate
2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9ED2tmp
2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9E82tmp
2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9E62tmp
2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9E22tmp
2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9E02tmp
2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9DE2tmp
2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9DC2tmp
2014-06-29 16:35 - 2014-06-29 16:35 - 01258344 _____ () C:\Users\hülya\Downloads\Setup (3).exe
2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9EB2tmp
2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\55A4tmp
2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 _____ () C:\END
2014-06-27 01:13 - 2014-06-27 01:13 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\DivX
2014-06-27 01:13 - 2014-06-27 01:13 - 00000000 ____D () C:\Program Files\DivX
2014-06-27 01:12 - 2014-07-02 20:10 - 00000000 ____D () C:\Program Files (x86)\DivX
2014-06-27 01:11 - 2014-07-02 20:10 - 00000000 ____D () C:\ProgramData\DivX
2014-06-27 01:11 - 2014-06-27 01:11 - 00999232 _____ (DivX, LLC) C:\Users\hülya\Downloads\DivXInstaller.exe
2014-06-27 01:06 - 2014-06-27 01:06 - 00608808 _____ () C:\Users\hülya\Downloads\MediaPlayerClassicInstaller.exe
2014-06-25 23:18 - 2014-06-25 23:18 - 00000000 ____D () C:\Users\hülya\AppData\Local\AskPartnerNetwork
         


Alt 24.07.2014, 21:01   #6
Romiero
 
bat=exe konnte nicht gefunden werden. - Standard

bat=exe konnte nicht gefunden werden.



Code:
ATTFilter
==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-07-24 20:50 - 2014-07-24 20:50 - 00036071 _____ () C:\Users\hülya\Desktop\FRST.txt
2014-07-24 20:50 - 2014-07-24 20:49 - 00000000 ____D () C:\FRST
2014-07-24 20:50 - 2014-07-05 00:35 - 00000000 ____D () C:\ProgramData\SafetyNut
2014-07-24 20:35 - 2014-05-10 23:30 - 00001120 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-24 20:33 - 2013-07-03 18:21 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-07-24 20:32 - 2013-07-03 18:41 - 01147210 _____ () C:\Windows\WindowsUpdate.log
2014-07-24 20:31 - 2013-04-07 03:33 - 00354304 ___SH () C:\Users\hülya\Desktop\Thumbs.db
2014-07-24 20:30 - 2014-07-24 20:30 - 02093568 _____ (Farbar) C:\Users\hülya\Desktop\FRST64.exe
2014-07-24 20:30 - 2014-07-24 20:30 - 02093568 _____ (Farbar) C:\Users\hülya\Desktop\FRST64 (1).exe
2014-07-24 20:18 - 2014-07-02 20:06 - 00000938 _____ () C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineCore.job
2014-07-24 20:18 - 2014-05-10 23:30 - 00001116 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-24 20:17 - 2012-07-26 09:22 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-24 20:13 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-07-24 20:13 - 2012-07-26 09:52 - 00000000 ____D () C:\Program Files\Windows Journal
2014-07-24 20:11 - 2014-07-13 01:43 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535_
2014-07-24 20:11 - 2014-07-13 01:43 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535
2014-07-24 20:11 - 2014-07-13 01:43 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51_
2014-07-24 20:11 - 2014-07-13 01:42 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51
2014-07-24 20:11 - 2014-07-12 03:28 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-07-24 20:11 - 2014-07-02 20:06 - 00000942 _____ () C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineUA.job
2014-07-24 20:11 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SaveSense
2014-07-24 20:11 - 2013-03-26 22:31 - 00000000 ____D () C:\Users\hülya\AppData\Local\Hewlett-Packard
2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\WinStore
2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\system32\sru
2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\system32\Macromed
2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\rescache
2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\registration
2014-07-24 20:11 - 2012-07-26 09:52 - 00000000 ____D () C:\Windows\ShellNew
2014-07-24 20:11 - 2012-07-26 07:38 - 00000000 ____D () C:\Windows\system32\Sysprep
2014-07-24 20:06 - 2014-07-02 20:06 - 00000306 _____ () C:\Windows\Tasks\Rocket Updater.job
2014-07-24 19:32 - 2012-08-25 05:20 - 00831158 _____ () C:\Windows\system32\perfh007.dat
2014-07-24 19:32 - 2012-08-25 05:20 - 00188760 _____ () C:\Windows\system32\perfc007.dat
2014-07-24 19:32 - 2012-07-26 09:28 - 01952918 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-07-24 16:57 - 2014-07-24 16:57 - 00000000 ____D () C:\Users\hülya\AppData\Local\{4706BF3E-9D06-476C-8975-11B6F64F1ED5}
2014-07-24 04:51 - 2014-04-13 00:12 - 00001067 _____ () C:\Users\hülya\Desktop\Neues Textdokument (2).txt
2014-07-24 03:44 - 2012-07-26 07:26 - 01048576 ___SH () C:\Windows\system32\config\BBI
2014-07-24 03:39 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\system32\NDF
2014-07-23 14:25 - 2014-03-18 20:19 - 00000000 ____D () C:\Users\hülya\Desktop\HANDY BURAK CAN
2014-07-23 04:24 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\AUInstallAgent
2014-07-20 22:19 - 2014-06-18 23:27 - 00378291 _____ () C:\Users\hülya\Desktop\Ergo Vorbeereiten.odt
2014-07-20 22:19 - 2014-05-11 22:00 - 00020575 _____ () C:\Users\hülya\Desktop\OpenDocument Text (neu) (3).odt
2014-07-20 02:38 - 2014-07-20 02:38 - 00000000 ____D () C:\Users\hülya\AppData\Local\{A90487C2-BC22-4173-A0A9-24300613D4BB}
2014-07-19 00:07 - 2014-07-05 01:06 - 00000095 _____ () C:\Users\hülya\AppData\Roaming\WB.CFG
2014-07-17 23:52 - 2014-07-17 23:52 - 01385120 _____ () C:\Users\hülya\Downloads\Setup (6).exe
2014-07-17 21:58 - 2014-01-30 23:43 - 00000344 _____ () C:\Windows\Tasks\HPCeeScheduleForhülya.job
2014-07-17 21:58 - 2013-03-26 22:27 - 00000000 ____D () C:\Users\hülya
2014-07-17 21:57 - 2013-03-29 15:49 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log
2014-07-17 21:57 - 2013-03-29 15:48 - 00000000 _____ () C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-07-15 23:15 - 2014-07-02 20:29 - 00000000 ____D () C:\ProgramData\LuckyCouPoon
2014-07-15 04:38 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\Systweak
2014-07-15 04:36 - 2014-07-15 04:36 - 00000000 ____D () C:\Program Files (x86)\LuckyCouPoon
2014-07-15 04:36 - 2014-03-22 13:57 - 00000000 ____D () C:\ProgramData\eb1cc2bcef9cee8c
2014-07-15 04:35 - 2014-07-12 13:14 - 00000376 _____ () C:\Windows\Tasks\APSnotifierPP3.job
2014-07-15 04:35 - 2014-07-12 13:14 - 00000376 _____ () C:\Windows\Tasks\APSnotifierPP2.job
2014-07-15 04:35 - 2014-06-29 17:52 - 00000320 _____ () C:\Users\hülya\AppData\Roaming\aps.uninstall.scan.results
2014-07-15 04:06 - 2014-07-02 20:06 - 00000306 _____ () C:\Windows\Tasks\SaveSense.job
2014-07-15 04:04 - 2014-07-02 20:07 - 00003120 _____ () C:\Windows\System32\Tasks\Advanced System Protector_startup
2014-07-14 15:41 - 2014-05-26 01:16 - 00002221 _____ () C:\Users\hülya\Desktop\Neues Textdokument (4).txt
2014-07-13 13:00 - 2014-07-13 13:00 - 00000000 ____D () C:\Users\hülya\AppData\Local\{AFB4CE14-1EF5-4B90-8CAB-588D81E38B33}
2014-07-13 01:44 - 2014-07-13 01:44 - 00000000 ____D () C:\Users\hülya\ChromeExtensions
2014-07-13 01:43 - 2014-07-13 01:42 - 00000186 _____ () C:\Users\hülya\Desktop\Amazon.de.url
2014-07-13 01:42 - 2014-07-13 01:42 - 01063312 _____ () C:\Users\hülya\Downloads\Adblock-Plus-fr-Chrome-lnstall.exe
2014-07-13 01:42 - 2014-07-13 01:42 - 00000000 ____D () C:\Users\hülya\Downloads\Adblock-Plus-für-Chrome
2014-07-12 19:30 - 2014-07-12 19:29 - 00000000 ____D () C:\Users\hülya\AppData\Local\{FD644658-6736-4DC7-AEFD-0D251801A962}
2014-07-12 13:41 - 2014-07-12 13:41 - 00323048 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-12 13:39 - 2014-07-12 13:39 - 00000000 ____D () C:\Users\hülya\AppData\Local\{AB6D36F8-A176-45FF-83CE-3AE16BC873F0}
2014-07-12 03:30 - 2013-07-03 18:13 - 00514254 _____ () C:\Windows\PFRO.log
2014-07-12 03:30 - 2013-04-30 15:00 - 00000000 ____D () C:\Program Files (x86)\ChatZum Toolbar
2014-07-11 21:49 - 2013-07-21 20:01 - 00033456 _____ () C:\Windows\setupact.log
2014-07-11 03:27 - 2013-07-24 07:05 - 00000000 ____D () C:\Windows\system32\MRT
2014-07-11 03:27 - 2012-07-26 09:59 - 00000000 ____D () C:\Windows\CbsTemp
2014-07-11 03:26 - 2013-03-29 16:03 - 96441528 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-07-11 03:26 - 2012-07-26 07:26 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2014-07-10 02:49 - 2014-07-10 02:49 - 00000102 ____H () C:\Users\hülya\Downloads\.~lock.ups bewerbung.doc#
2014-07-10 02:38 - 2014-07-10 02:38 - 00000102 ____H () C:\Users\hülya\Desktop\.~lock.Feser Graf Gruppe Bewerbung.odt#
2014-07-09 03:28 - 2014-07-12 18:26 - 00378337 _____ () C:\Users\hülya\Documents\Ergo%20Vorbeereiten.odt_0.odt
2014-07-07 12:47 - 2014-07-07 12:47 - 00000000 ____D () C:\Users\hülya\AppData\Local\{A85C6324-D7B6-49FD-82B2-D8EC8199F583}
2014-07-04 17:59 - 2013-03-26 22:38 - 00003600 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3460895242-2686779407-2708491527-1002
2014-07-02 22:43 - 2014-06-29 16:36 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2014-07-02 20:10 - 2014-06-27 01:12 - 00000000 ____D () C:\Program Files (x86)\DivX
2014-07-02 20:10 - 2014-06-27 01:11 - 00000000 ____D () C:\ProgramData\DivX
2014-07-02 20:09 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\AppData\Local\service_06291436
2014-07-02 20:08 - 2014-06-29 17:52 - 00000378 _____ () C:\Windows\Tasks\APSnotifierPP1.job
2014-07-02 20:06 - 2014-07-02 20:06 - 00003914 _____ () C:\Windows\System32\Tasks\SaveSenseLiveUpdateTaskMachineUA
2014-07-02 20:06 - 2014-07-02 20:06 - 00003678 _____ () C:\Windows\System32\Tasks\SaveSenseLiveUpdateTaskMachineCore
2014-07-02 20:06 - 2014-07-02 20:06 - 00002644 _____ () C:\Windows\System32\Tasks\SaveSense
2014-07-02 20:06 - 2014-07-02 20:06 - 00002644 _____ () C:\Windows\System32\Tasks\Rocket Updater
2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\SaveSense
2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\RocketUpdater
2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Local\SaveSenseLive
2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Local\SaveSense
2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\ProgramData\SaveSenseLive
2014-07-02 20:06 - 2014-07-02 20:06 - 00000000 ____D () C:\Program Files (x86)\SaveSenseLive
2014-07-02 20:06 - 2014-06-18 19:36 - 00002239 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-07-02 20:04 - 2014-06-29 16:50 - 00001090 _____ () C:\Users\hülya\Desktop\Continue VuuPC Installation.lnk
2014-07-02 20:01 - 2014-07-02 20:01 - 00000000 ____D () C:\Program Files (x86)\predm
2014-07-02 20:00 - 2014-06-29 16:36 - 00000000 ____D () C:\Program Files (x86)\Fraven 1.1
2014-07-02 19:59 - 2012-08-24 19:52 - 00000000 ____D () C:\ProgramData\CyberLink
2014-07-02 19:59 - 2012-08-24 19:51 - 00000000 ____D () C:\Program Files (x86)\CyberLink
2014-07-02 19:59 - 2012-08-24 19:49 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-07-02 19:50 - 2014-07-02 19:50 - 01258080 _____ () C:\Users\hülya\Downloads\Setup (5).exe
2014-07-02 16:42 - 2014-07-02 20:06 - 00608261 _____ (Click Me In Limited) C:\Users\hülya\AppData\Local\AnyProtectScannerSetup.exe
2014-07-01 22:24 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-07-01 22:24 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-07-01 22:24 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Windows Defender
2014-07-01 22:24 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-07-01 22:19 - 2014-07-01 22:19 - 00003204 _____ () C:\Windows\System32\Tasks\jgjnrnq
2014-07-01 22:19 - 2014-07-01 22:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\jgjnrnq.bat
2014-07-01 22:17 - 2014-07-01 22:17 - 00003206 _____ () C:\Windows\System32\Tasks\eqfcxnbw
2014-07-01 22:17 - 2014-07-01 22:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\eqfcxnbw.bat
2014-07-01 22:15 - 2014-07-01 22:15 - 00003204 _____ () C:\Windows\System32\Tasks\whpxpqi
2014-07-01 22:15 - 2014-07-01 22:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\whpxpqi.bat
2014-07-01 22:13 - 2014-07-01 22:13 - 00003200 _____ () C:\Windows\System32\Tasks\lcbpg
2014-07-01 22:13 - 2014-07-01 22:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpg.bat
2014-07-01 22:11 - 2014-07-01 22:11 - 00003206 _____ () C:\Windows\System32\Tasks\kheaxbbv
2014-07-01 22:11 - 2014-07-01 22:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\kheaxbbv.bat
2014-07-01 22:09 - 2014-07-01 22:09 - 00003206 _____ () C:\Windows\System32\Tasks\xgxiyqsd
2014-07-01 22:09 - 2014-07-01 22:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\xgxiyqsd.bat
2014-07-01 22:07 - 2014-07-01 22:07 - 00003204 _____ () C:\Windows\System32\Tasks\abpicxr
2014-07-01 22:07 - 2014-07-01 22:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\abpicxr.bat
2014-07-01 22:05 - 2014-07-01 22:05 - 00003204 _____ () C:\Windows\System32\Tasks\dynshwc
2014-07-01 22:05 - 2014-07-01 22:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\dynshwc.bat
2014-07-01 22:02 - 2014-07-01 22:02 - 00003206 _____ () C:\Windows\System32\Tasks\wgwfihhq
2014-07-01 22:02 - 2014-07-01 22:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\wgwfihhq.bat
2014-07-01 00:42 - 2014-07-09 10:52 - 00702464 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-07-01 00:42 - 2014-07-09 10:52 - 00394240 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-07-01 00:42 - 2014-07-09 10:52 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-06-30 05:48 - 2014-06-30 05:48 - 00003206 _____ () C:\Windows\System32\Tasks\ulccqgwd
2014-06-30 05:48 - 2014-06-30 05:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\ulccqgwd.bat
2014-06-30 05:46 - 2014-06-30 05:46 - 00003204 _____ () C:\Windows\System32\Tasks\fvngogw
2014-06-30 05:46 - 2014-06-30 05:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\fvngogw.bat
2014-06-30 05:44 - 2014-06-30 05:44 - 00003200 _____ () C:\Windows\System32\Tasks\nfnnu
2014-06-30 05:44 - 2014-06-30 05:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\nfnnu.bat
2014-06-30 05:42 - 2014-06-30 05:42 - 00003200 _____ () C:\Windows\System32\Tasks\ebfol
2014-06-30 05:42 - 2014-06-30 05:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\ebfol.bat
2014-06-30 05:40 - 2014-06-30 05:40 - 00003204 _____ () C:\Windows\System32\Tasks\aiwkxfb
2014-06-30 05:40 - 2014-06-30 05:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\aiwkxfb.bat
2014-06-30 05:38 - 2014-06-30 05:38 - 00003206 _____ () C:\Windows\System32\Tasks\cwtodhbp
2014-06-30 05:38 - 2014-06-30 05:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\cwtodhbp.bat
2014-06-30 05:36 - 2014-06-30 05:36 - 00003202 _____ () C:\Windows\System32\Tasks\fgnngg
2014-06-30 05:36 - 2014-06-30 05:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\fgnngg.bat
2014-06-30 05:34 - 2014-06-30 05:34 - 00003200 _____ () C:\Windows\System32\Tasks\awkfl
2014-06-30 05:34 - 2014-06-30 05:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\awkfl.bat
2014-06-30 05:32 - 2014-06-30 05:32 - 00003202 _____ () C:\Windows\System32\Tasks\yldjcn
2014-06-30 05:32 - 2014-06-30 05:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\yldjcn.bat
2014-06-30 05:30 - 2014-06-30 05:30 - 00003206 _____ () C:\Windows\System32\Tasks\ekhnlrhf
2014-06-30 05:30 - 2014-06-30 05:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\ekhnlrhf.bat
2014-06-30 05:28 - 2014-06-30 05:28 - 00003206 _____ () C:\Windows\System32\Tasks\qmgcmikg
2014-06-30 05:28 - 2014-06-30 05:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\qmgcmikg.bat
2014-06-30 05:26 - 2014-06-30 05:26 - 00003204 _____ () C:\Windows\System32\Tasks\mcbxwcs
2014-06-30 05:26 - 2014-06-30 05:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\mcbxwcs.bat
2014-06-30 05:24 - 2014-06-30 05:24 - 00003206 _____ () C:\Windows\System32\Tasks\oopqhiaa
2014-06-30 05:24 - 2014-06-30 05:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\oopqhiaa.bat
2014-06-30 05:22 - 2014-06-30 05:22 - 00003204 _____ () C:\Windows\System32\Tasks\ijlmopq
2014-06-30 05:22 - 2014-06-30 05:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\ijlmopq.bat
2014-06-30 05:20 - 2014-06-30 05:20 - 00003206 _____ () C:\Windows\System32\Tasks\kfdavzwl
2014-06-30 05:20 - 2014-06-30 05:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\kfdavzwl.bat
2014-06-30 05:18 - 2014-06-30 05:18 - 00003200 _____ () C:\Windows\System32\Tasks\spuhd
2014-06-30 05:18 - 2014-06-30 05:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\spuhd.bat
2014-06-30 05:16 - 2014-06-30 05:16 - 00003202 _____ () C:\Windows\System32\Tasks\bxthdr
2014-06-30 05:16 - 2014-06-30 05:16 - 00000269 _____ () C:\Users\hülya\AppData\Local\bxthdr.bat
2014-06-30 05:14 - 2014-06-30 05:14 - 00003204 _____ () C:\Windows\System32\Tasks\fxacscu
2014-06-30 05:14 - 2014-06-30 05:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\fxacscu.bat
2014-06-30 05:12 - 2014-06-30 05:12 - 00003202 _____ () C:\Windows\System32\Tasks\beiuye
2014-06-30 05:12 - 2014-06-30 05:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\beiuye.bat
2014-06-30 05:10 - 2014-06-30 05:10 - 00003202 _____ () C:\Windows\System32\Tasks\lbgcbx
2014-06-30 05:10 - 2014-06-30 05:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\lbgcbx.bat
2014-06-30 05:08 - 2014-06-30 05:08 - 00003200 _____ () C:\Windows\System32\Tasks\erawe
2014-06-30 05:08 - 2014-06-30 05:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\erawe.bat
2014-06-30 05:06 - 2014-06-30 05:06 - 00003200 _____ () C:\Windows\System32\Tasks\caebg
2014-06-30 05:06 - 2014-06-30 05:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\caebg.bat
2014-06-30 05:04 - 2014-06-30 05:04 - 00003206 _____ () C:\Windows\System32\Tasks\hqqbbcll
2014-06-30 05:04 - 2014-06-30 05:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\hqqbbcll.bat
2014-06-30 05:01 - 2014-06-30 05:01 - 00003204 _____ () C:\Windows\System32\Tasks\ruxcmqt
2014-06-30 05:01 - 2014-06-30 05:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ruxcmqt.bat
2014-06-30 04:59 - 2014-06-30 04:59 - 00003206 _____ () C:\Windows\System32\Tasks\wxxabbdl
2014-06-30 04:59 - 2014-06-30 04:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\wxxabbdl.bat
2014-06-30 04:57 - 2014-06-30 04:57 - 00003204 _____ () C:\Windows\System32\Tasks\tbfedip
2014-06-30 04:57 - 2014-06-30 04:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbfedip.bat
2014-06-30 04:55 - 2014-06-30 04:55 - 00003200 _____ () C:\Windows\System32\Tasks\khtpt
2014-06-30 04:55 - 2014-06-30 04:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\khtpt.bat
2014-06-30 04:53 - 2014-06-30 04:53 - 00003204 _____ () C:\Windows\System32\Tasks\pakteow
2014-06-30 04:53 - 2014-06-30 04:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\pakteow.bat
2014-06-30 04:51 - 2014-06-30 04:51 - 00003200 _____ () C:\Windows\System32\Tasks\tsqpv
2014-06-30 04:51 - 2014-06-30 04:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\tsqpv.bat
2014-06-30 04:49 - 2014-06-30 04:49 - 00003202 _____ () C:\Windows\System32\Tasks\fsigct
2014-06-30 04:49 - 2014-06-30 04:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\fsigct.bat
2014-06-30 04:47 - 2014-06-30 04:47 - 00003202 _____ () C:\Windows\System32\Tasks\quwaeg
2014-06-30 04:47 - 2014-06-30 04:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\quwaeg.bat
2014-06-30 04:45 - 2014-06-30 04:45 - 00003200 _____ () C:\Windows\System32\Tasks\nveck
2014-06-30 04:45 - 2014-06-30 04:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\nveck.bat
2014-06-30 04:43 - 2014-06-30 04:43 - 00003202 _____ () C:\Windows\System32\Tasks\tqwtbw
2014-06-30 04:43 - 2014-06-30 04:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\tqwtbw.bat
2014-06-30 04:41 - 2014-06-30 04:41 - 00003200 _____ () C:\Windows\System32\Tasks\zlqcg
2014-06-30 04:41 - 2014-06-30 04:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\zlqcg.bat
2014-06-30 04:36 - 2014-06-30 04:36 - 00003204 _____ () C:\Windows\System32\Tasks\jehlnce
2014-06-30 04:36 - 2014-06-30 04:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\jehlnce.bat
2014-06-30 04:34 - 2014-06-30 04:34 - 00003204 _____ () C:\Windows\System32\Tasks\aguiubo
2014-06-30 04:34 - 2014-06-30 04:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\aguiubo.bat
2014-06-30 04:32 - 2014-06-30 04:32 - 00003200 _____ () C:\Windows\System32\Tasks\lqntf
2014-06-30 04:32 - 2014-06-30 04:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\lqntf.bat
2014-06-30 04:30 - 2014-06-30 04:30 - 00003200 _____ () C:\Windows\System32\Tasks\dulcs
2014-06-30 04:30 - 2014-06-30 04:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\dulcs.bat
2014-06-30 04:28 - 2014-06-30 04:28 - 00003200 _____ () C:\Windows\System32\Tasks\ljivt
2014-06-30 04:28 - 2014-06-30 04:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\ljivt.bat
2014-06-30 04:26 - 2014-06-30 04:26 - 00003206 _____ () C:\Windows\System32\Tasks\lrweaflq
2014-06-30 04:26 - 2014-06-30 04:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\lrweaflq.bat
2014-06-30 04:24 - 2014-06-30 04:24 - 00003200 _____ () C:\Windows\System32\Tasks\xdmoi
2014-06-30 04:24 - 2014-06-30 04:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\xdmoi.bat
2014-06-30 04:22 - 2014-06-30 04:22 - 00003200 _____ () C:\Windows\System32\Tasks\jdymi
2014-06-30 04:22 - 2014-06-30 04:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\jdymi.bat
2014-06-30 04:20 - 2014-06-30 04:20 - 00003202 _____ () C:\Windows\System32\Tasks\sxdjht
2014-06-30 04:20 - 2014-06-30 04:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\sxdjht.bat
2014-06-30 04:18 - 2014-06-30 04:18 - 00003204 _____ () C:\Windows\System32\Tasks\noohhij
2014-06-30 04:18 - 2014-06-30 04:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\noohhij.bat
2014-06-30 04:14 - 2014-06-30 04:14 - 00003204 _____ () C:\Windows\System32\Tasks\hcdeabo
2014-06-30 04:14 - 2014-06-30 04:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\hcdeabo.bat
2014-06-30 04:12 - 2014-06-30 04:12 - 00003202 _____ () C:\Windows\System32\Tasks\cfdfey
2014-06-30 04:12 - 2014-06-30 04:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\cfdfey.bat
2014-06-30 04:10 - 2014-06-30 04:10 - 00003204 _____ () C:\Windows\System32\Tasks\gwwoohh
2014-06-30 04:10 - 2014-06-30 04:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\gwwoohh.bat
2014-06-30 04:08 - 2014-06-30 04:08 - 00003206 _____ () C:\Windows\System32\Tasks\izuvpicd
2014-06-30 04:08 - 2014-06-30 04:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\izuvpicd.bat
2014-06-30 04:06 - 2014-06-30 04:06 - 00003206 _____ () C:\Windows\System32\Tasks\cfcfnrnj
2014-06-30 04:06 - 2014-06-30 04:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\cfcfnrnj.bat
2014-06-30 04:04 - 2014-06-30 04:04 - 00003200 _____ () C:\Windows\System32\Tasks\ekaix
2014-06-30 04:04 - 2014-06-30 04:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\ekaix.bat
2014-06-30 03:42 - 2014-06-30 03:42 - 00003202 _____ () C:\Windows\System32\Tasks\acxkgi
2014-06-30 03:42 - 2014-06-30 03:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\acxkgi.bat
2014-06-30 03:40 - 2014-06-30 03:40 - 00003206 _____ () C:\Windows\System32\Tasks\eulkcjbf
2014-06-30 03:40 - 2014-06-30 03:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\eulkcjbf.bat
2014-06-30 03:38 - 2014-06-30 03:38 - 00003202 _____ () C:\Windows\System32\Tasks\fwhaxi
2014-06-30 03:38 - 2014-06-30 03:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\fwhaxi.bat
2014-06-30 03:36 - 2014-06-30 03:36 - 00003200 _____ () C:\Windows\System32\Tasks\tyfrx
2014-06-30 03:36 - 2014-06-30 03:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\tyfrx.bat
2014-06-30 03:34 - 2014-06-30 03:34 - 00003202 _____ () C:\Windows\System32\Tasks\ovfemt
2014-06-30 03:34 - 2014-06-30 03:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\ovfemt.bat
2014-06-30 03:32 - 2014-06-30 03:32 - 00003202 _____ () C:\Windows\System32\Tasks\lcbpfk
2014-06-30 03:32 - 2014-06-30 03:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpfk.bat
2014-06-30 03:30 - 2014-06-30 03:30 - 00003204 _____ () C:\Windows\System32\Tasks\ubpckyn
2014-06-30 03:30 - 2014-06-30 03:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\ubpckyn.bat
2014-06-30 03:28 - 2014-06-30 03:28 - 00003202 _____ () C:\Windows\System32\Tasks\qcuecu
2014-06-30 03:28 - 2014-06-30 03:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\qcuecu.bat
2014-06-30 03:26 - 2014-06-30 03:26 - 00003204 _____ () C:\Windows\System32\Tasks\wfoefpa
2014-06-30 03:26 - 2014-06-30 03:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\wfoefpa.bat
2014-06-30 03:24 - 2014-06-30 03:24 - 00003206 _____ () C:\Windows\System32\Tasks\vggvgguf
2014-06-30 03:24 - 2014-06-30 03:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\vggvgguf.bat
2014-06-30 03:22 - 2014-06-30 03:22 - 00003202 _____ () C:\Windows\System32\Tasks\gufetd
2014-06-30 03:22 - 2014-06-30 03:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\gufetd.bat
2014-06-30 03:20 - 2014-06-30 03:20 - 00003202 _____ () C:\Windows\System32\Tasks\ljwusx
2014-06-30 03:20 - 2014-06-30 03:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\ljwusx.bat
2014-06-30 00:13 - 2014-06-30 00:13 - 00003200 _____ () C:\Windows\System32\Tasks\ztyse
2014-06-30 00:13 - 2014-06-30 00:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\ztyse.bat
2014-06-30 00:11 - 2014-06-30 00:11 - 00003200 _____ () C:\Windows\System32\Tasks\bdadk
2014-06-30 00:11 - 2014-06-30 00:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\bdadk.bat
2014-06-30 00:09 - 2014-06-30 00:09 - 00003204 _____ () C:\Windows\System32\Tasks\trwucgl
2014-06-30 00:09 - 2014-06-30 00:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\trwucgl.bat
2014-06-30 00:07 - 2014-06-30 00:07 - 00003206 _____ () C:\Windows\System32\Tasks\tbeerxvb
2014-06-30 00:07 - 2014-06-30 00:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbeerxvb.bat
2014-06-30 00:05 - 2014-06-30 00:05 - 00003200 _____ () C:\Windows\System32\Tasks\ccbfv
2014-06-30 00:05 - 2014-06-30 00:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\ccbfv.bat
2014-06-30 00:03 - 2014-06-30 00:03 - 00003202 _____ () C:\Windows\System32\Tasks\vveett
2014-06-30 00:03 - 2014-06-30 00:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\vveett.bat
2014-06-30 00:01 - 2014-06-30 00:01 - 00003206 _____ () C:\Windows\System32\Tasks\ligdqolj
2014-06-30 00:01 - 2014-06-30 00:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ligdqolj.bat
2014-06-29 23:59 - 2014-06-29 23:59 - 00003204 _____ () C:\Windows\System32\Tasks\vdksahw
2014-06-29 23:59 - 2014-06-29 23:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\vdksahw.bat
2014-06-29 23:57 - 2014-06-29 23:57 - 00003206 _____ () C:\Windows\System32\Tasks\vdsbqhwf
2014-06-29 23:57 - 2014-06-29 23:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\vdsbqhwf.bat
2014-06-29 23:55 - 2014-06-29 23:55 - 00003200 _____ () C:\Windows\System32\Tasks\reiba
2014-06-29 23:55 - 2014-06-29 23:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\reiba.bat
2014-06-29 23:53 - 2014-06-29 23:53 - 00003206 _____ () C:\Windows\System32\Tasks\kwtxbhko
2014-06-29 23:53 - 2014-06-29 23:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\kwtxbhko.bat
2014-06-29 23:51 - 2014-06-29 23:51 - 00003204 _____ () C:\Windows\System32\Tasks\koagcns
2014-06-29 23:51 - 2014-06-29 23:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\koagcns.bat
2014-06-29 23:49 - 2014-06-29 23:49 - 00003206 _____ () C:\Windows\System32\Tasks\vveeettb
2014-06-29 23:49 - 2014-06-29 23:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\vveeettb.bat
2014-06-29 23:47 - 2014-06-29 23:47 - 00003206 _____ () C:\Windows\System32\Tasks\rdpsgibx
2014-06-29 23:47 - 2014-06-29 23:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\rdpsgibx.bat
2014-06-29 23:45 - 2014-06-29 23:45 - 00003204 _____ () C:\Windows\System32\Tasks\quejuej
2014-06-29 23:45 - 2014-06-29 23:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\quejuej.bat
2014-06-29 23:43 - 2014-06-29 23:43 - 00003202 _____ () C:\Windows\System32\Tasks\icdytn
2014-06-29 23:43 - 2014-06-29 23:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\icdytn.bat
2014-06-29 23:41 - 2014-06-29 23:41 - 00003206 _____ () C:\Windows\System32\Tasks\ajcohkcp
2014-06-29 23:41 - 2014-06-29 23:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\ajcohkcp.bat
2014-06-29 23:39 - 2014-06-29 23:39 - 00003206 _____ () C:\Windows\System32\Tasks\gofohwhp
2014-06-29 23:39 - 2014-06-29 23:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\gofohwhp.bat
2014-06-29 23:37 - 2014-06-29 23:37 - 00003206 _____ () C:\Windows\System32\Tasks\dulctdar
2014-06-29 23:37 - 2014-06-29 23:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\dulctdar.bat
2014-06-29 23:35 - 2014-06-29 23:35 - 00003200 _____ () C:\Windows\System32\Tasks\qnifi
2014-06-29 23:35 - 2014-06-29 23:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\qnifi.bat
2014-06-29 21:33 - 2014-06-29 21:33 - 00003200 _____ () C:\Windows\System32\Tasks\daetq
2014-06-29 21:33 - 2014-06-29 21:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\daetq.bat
2014-06-29 21:31 - 2014-06-29 21:31 - 00003206 _____ () C:\Windows\System32\Tasks\akcohzmg
2014-06-29 21:31 - 2014-06-29 21:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\akcohzmg.bat
2014-06-29 21:29 - 2014-06-29 21:29 - 00003202 _____ () C:\Windows\System32\Tasks\nooffg
2014-06-29 21:29 - 2014-06-29 21:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\nooffg.bat
2014-06-29 21:27 - 2014-06-29 21:27 - 00003204 _____ () C:\Windows\System32\Tasks\lqgmrpu
2014-06-29 21:27 - 2014-06-29 21:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\lqgmrpu.bat
2014-06-29 21:25 - 2014-06-29 21:25 - 00003204 _____ () C:\Windows\System32\Tasks\cnaupdx
2014-06-29 21:25 - 2014-06-29 21:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\cnaupdx.bat
2014-06-29 21:23 - 2014-06-29 21:23 - 00003206 _____ () C:\Windows\System32\Tasks\rwimaepu
2014-06-29 21:23 - 2014-06-29 21:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\rwimaepu.bat
2014-06-29 21:21 - 2014-06-29 21:21 - 00003200 _____ () C:\Windows\System32\Tasks\iavic
2014-06-29 21:21 - 2014-06-29 21:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\iavic.bat
2014-06-29 21:19 - 2014-06-29 21:19 - 00003200 _____ () C:\Windows\System32\Tasks\hajdc
2014-06-29 21:19 - 2014-06-29 21:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\hajdc.bat
2014-06-29 21:17 - 2014-06-29 21:17 - 00003206 _____ () C:\Windows\System32\Tasks\jdauqmhd
2014-06-29 21:17 - 2014-06-29 21:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\jdauqmhd.bat
2014-06-29 21:15 - 2014-06-29 21:15 - 00003204 _____ () C:\Windows\System32\Tasks\vdksa
2014-06-29 21:15 - 2014-06-29 21:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\utjiwdc.bat
2014-06-29 21:13 - 2014-06-29 21:13 - 00003204 _____ () C:\Windows\System32\Tasks\hwooghw
2014-06-29 21:13 - 2014-06-29 21:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\hwooghw.bat
2014-06-29 21:11 - 2014-06-29 21:11 - 00003204 _____ () C:\Windows\System32\Tasks\ifauytq
2014-06-29 21:11 - 2014-06-29 21:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\ifauytq.bat
2014-06-29 21:09 - 2014-06-29 21:09 - 00003204 _____ () C:\Windows\System32\Tasks\erawlaq
2014-06-29 21:09 - 2014-06-29 21:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\erawlaq.bat
2014-06-29 21:07 - 2014-06-29 21:07 - 00003200 _____ () C:\Windows\System32\Tasks\lxdiu
2014-06-29 21:07 - 2014-06-29 21:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\lxdiu.bat
2014-06-29 21:05 - 2014-06-29 21:05 - 00003200 _____ () C:\Windows\System32\Tasks\pjddy
2014-06-29 21:05 - 2014-06-29 21:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\pjddy.bat
2014-06-29 21:03 - 2014-06-29 21:03 - 00003206 _____ () C:\Windows\System32\Tasks\fqcdnfrr
2014-06-29 21:03 - 2014-06-29 21:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\fqcdnfrr.bat
2014-06-29 21:01 - 2014-06-29 21:01 - 00003206 _____ () C:\Windows\System32\Tasks\ghpaijjd
2014-06-29 21:01 - 2014-06-29 21:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ghpaijjd.bat
2014-06-29 20:59 - 2014-06-29 20:59 - 00003206 _____ () C:\Windows\System32\Tasks\hbunicup
2014-06-29 20:59 - 2014-06-29 20:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\hbunicup.bat
2014-06-29 20:57 - 2014-06-29 20:57 - 00003204 _____ () C:\Windows\System32\Tasks\aaoibwj
2014-06-29 20:57 - 2014-06-29 20:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\aaoibwj.bat
2014-06-29 20:55 - 2014-06-29 20:55 - 00003204 _____ () C:\Windows\System32\Tasks\aaunbtn
2014-06-29 20:55 - 2014-06-29 20:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\aaunbtn.bat
2014-06-29 20:53 - 2014-06-29 20:53 - 00003206 _____ () C:\Windows\System32\Tasks\mffummlk
2014-06-29 20:53 - 2014-06-29 20:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\mffummlk.bat
2014-06-29 20:51 - 2014-06-29 20:51 - 00003200 _____ () C:\Windows\System32\Tasks\refju
2014-06-29 20:51 - 2014-06-29 20:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\refju.bat
2014-06-29 20:49 - 2014-06-29 20:49 - 00003204 _____ () C:\Windows\System32\Tasks\daechca
2014-06-29 20:49 - 2014-06-29 20:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\daechca.bat
2014-06-29 20:47 - 2014-06-29 20:47 - 00003206 _____ () C:\Windows\System32\Tasks\idxsnplf
2014-06-29 20:47 - 2014-06-29 20:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\idxsnplf.bat
2014-06-29 20:45 - 2014-06-29 20:45 - 00003204 _____ () C:\Windows\System32\Tasks\xrunfjc
2014-06-29 20:45 - 2014-06-29 20:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\xrunfjc.bat
2014-06-29 20:43 - 2014-06-29 20:43 - 00003200 _____ () C:\Windows\System32\Tasks\ubovd
2014-06-29 20:43 - 2014-06-29 20:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\ubovd.bat
2014-06-29 20:41 - 2014-06-29 20:41 - 00003202 _____ () C:\Windows\System32\Tasks\eblbzi
2014-06-29 20:41 - 2014-06-29 20:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\eblbzi.bat
2014-06-29 20:39 - 2014-06-29 20:39 - 00003202 _____ () C:\Windows\System32\Tasks\tbgmtf
2014-06-29 20:39 - 2014-06-29 20:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbgmtf.bat
2014-06-29 20:37 - 2014-06-29 20:37 - 00003206 _____ () C:\Windows\System32\Tasks\rvadoswa
2014-06-29 20:37 - 2014-06-29 20:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\rvadoswa.bat
2014-06-29 20:35 - 2014-06-29 20:35 - 00003206 _____ () C:\Windows\System32\Tasks\numsabiy
2014-06-29 20:35 - 2014-06-29 20:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\numsabiy.bat
2014-06-29 20:33 - 2014-06-29 20:33 - 00003204 _____ () C:\Windows\System32\Tasks\kotimqn
2014-06-29 20:33 - 2014-06-29 20:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\kotimqn.bat
2014-06-29 20:31 - 2014-06-29 20:31 - 00003200 _____ () C:\Windows\System32\Tasks\lkifm
2014-06-29 20:31 - 2014-06-29 20:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\lkifm.bat
2014-06-29 20:29 - 2014-06-29 20:29 - 00003200 _____ () C:\Windows\System32\Tasks\fjdoh
2014-06-29 20:29 - 2014-06-29 20:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\fjdoh.bat
2014-06-29 20:27 - 2014-06-29 20:27 - 00003202 _____ () C:\Windows\System32\Tasks\fkvoal
2014-06-29 20:27 - 2014-06-29 20:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\fkvoal.bat
2014-06-29 20:25 - 2014-06-29 20:25 - 00003206 _____ () C:\Windows\System32\Tasks\fdcaqonm
2014-06-29 20:25 - 2014-06-29 20:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\fdcaqonm.bat
2014-06-29 20:23 - 2014-06-29 20:23 - 00003202 _____ () C:\Windows\System32\Tasks\oqyaks
2014-06-29 20:23 - 2014-06-29 20:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\oqyaks.bat
2014-06-29 20:21 - 2014-06-29 20:21 - 00003204 _____ () C:\Windows\System32\Tasks\kotxmqu
2014-06-29 20:21 - 2014-06-29 20:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\kotxmqu.bat
2014-06-29 20:19 - 2014-06-29 20:19 - 00003204 _____ () C:\Windows\System32\Tasks\iddytni
2014-06-29 20:19 - 2014-06-29 20:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\iddytni.bat
2014-06-29 20:17 - 2014-06-29 20:17 - 00003206 _____ () C:\Windows\System32\Tasks\kfujeuqf
2014-06-29 20:17 - 2014-06-29 20:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\kfujeuqf.bat
2014-06-29 20:15 - 2014-06-29 20:15 - 00003202 _____ () C:\Windows\System32\Tasks\whqaqs
2014-06-29 20:15 - 2014-06-29 20:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\whqaqs.bat
2014-06-29 20:13 - 2014-06-29 20:13 - 00003200 _____ () C:\Windows\System32\Tasks\lcbpv
2014-06-29 20:13 - 2014-06-29 20:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpv.bat
2014-06-29 20:11 - 2014-06-29 20:11 - 00003206 _____ () C:\Windows\System32\Tasks\psuprudi
2014-06-29 20:11 - 2014-06-29 20:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\psuprudi.bat
2014-06-29 20:09 - 2014-06-29 20:09 - 00003206 _____ () C:\Windows\System32\Tasks\numttcsa
2014-06-29 20:09 - 2014-06-29 20:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\numttcsa.bat
2014-06-29 20:07 - 2014-06-29 20:07 - 00003202 _____ () C:\Windows\System32\Tasks\jfjnqm
2014-06-29 20:07 - 2014-06-29 20:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\jfjnqm.bat
2014-06-29 20:05 - 2014-06-29 20:05 - 00003204 _____ () C:\Windows\System32\Tasks\egqajsk
2014-06-29 20:05 - 2014-06-29 20:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\egqajsk.bat
2014-06-29 20:03 - 2014-06-29 20:03 - 00003202 _____ () C:\Windows\System32\Tasks\hztmgy
2014-06-29 20:03 - 2014-06-29 20:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\hztmgy.bat
2014-06-29 20:01 - 2014-06-29 20:01 - 00003200 _____ () C:\Windows\System32\Tasks\isnoa
2014-06-29 20:01 - 2014-06-29 20:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\isnoa.bat
2014-06-29 19:59 - 2014-06-29 19:59 - 00003206 _____ () C:\Windows\System32\Tasks\tbglafes
2014-06-29 19:59 - 2014-06-29 19:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbglafes.bat
2014-06-29 19:57 - 2014-06-29 19:57 - 00003206 _____ () C:\Windows\System32\Tasks\ukbhckaa
2014-06-29 19:57 - 2014-06-29 19:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\ukbhckaa.bat
2014-06-29 19:14 - 2014-06-29 19:14 - 00003206 _____ () C:\Windows\System32\Tasks\thlrdkxu
2014-06-29 19:14 - 2014-06-29 19:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\thlrdkxu.bat
2014-06-29 19:12 - 2014-06-29 19:12 - 00003202 _____ () C:\Windows\System32\Tasks\zuhtgb
2014-06-29 19:12 - 2014-06-29 19:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\zuhtgb.bat
2014-06-29 19:10 - 2014-06-29 19:10 - 00003202 _____ () C:\Windows\System32\Tasks\kbxmda
2014-06-29 19:10 - 2014-06-29 19:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\kbxmda.bat
2014-06-29 19:08 - 2014-06-29 19:08 - 00003200 _____ () C:\Windows\System32\Tasks\edeaa
2014-06-29 19:08 - 2014-06-29 19:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\edeaa.bat
2014-06-29 19:06 - 2014-06-29 19:06 - 00003206 _____ () C:\Windows\System32\Tasks\rvaeitxc
2014-06-29 19:06 - 2014-06-29 19:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\rvaeitxc.bat
2014-06-29 19:04 - 2014-06-29 19:04 - 00003202 _____ () C:\Windows\System32\Tasks\dafdid
2014-06-29 19:04 - 2014-06-29 19:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\dafdid.bat
2014-06-29 19:02 - 2014-06-29 19:02 - 00003200 _____ () C:\Windows\System32\Tasks\auaco
2014-06-29 19:02 - 2014-06-29 19:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\auaco.bat
2014-06-29 19:00 - 2014-06-29 19:00 - 00003206 _____ () C:\Windows\System32\Tasks\ydoalwbt
2014-06-29 19:00 - 2014-06-29 19:00 - 00000269 _____ () C:\Users\hülya\AppData\Local\ydoalwbt.bat
2014-06-29 18:58 - 2014-06-29 18:58 - 00003206 _____ () C:\Windows\System32\Tasks\efqidtef
2014-06-29 18:58 - 2014-06-29 18:58 - 00000269 _____ () C:\Users\hülya\AppData\Local\efqidtef.bat
2014-06-29 18:56 - 2014-06-29 18:56 - 00003206 _____ () C:\Windows\System32\Tasks\piqzluev
2014-06-29 18:56 - 2014-06-29 18:56 - 00000269 _____ () C:\Users\hülya\AppData\Local\piqzluev.bat
2014-06-29 18:54 - 2014-06-29 18:54 - 00003204 _____ () C:\Windows\System32\Tasks\aavaouj
2014-06-29 18:54 - 2014-06-29 18:54 - 00000269 _____ () C:\Users\hülya\AppData\Local\aavaouj.bat
2014-06-29 18:48 - 2014-06-29 18:48 - 00003204 _____ () C:\Windows\System32\Tasks\ahubocp
2014-06-29 18:48 - 2014-06-29 18:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\ahubocp.bat
2014-06-29 18:46 - 2014-06-29 18:46 - 00003206 _____ () C:\Windows\System32\Tasks\jfbdsujm
2014-06-29 18:46 - 2014-06-29 18:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\jfbdsujm.bat
2014-06-29 18:44 - 2014-06-29 18:44 - 00003202 _____ () C:\Windows\System32\Tasks\vmddsj
2014-06-29 18:44 - 2014-06-29 18:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\vmddsj.bat
2014-06-29 18:42 - 2014-06-29 18:42 - 00003200 _____ () C:\Windows\System32\Tasks\giqss
2014-06-29 18:42 - 2014-06-29 18:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\giqss.bat
2014-06-29 18:40 - 2014-06-29 18:40 - 00003206 _____ () C:\Windows\System32\Tasks\thbbobwc
2014-06-29 18:40 - 2014-06-29 18:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\thbbobwc.bat
2014-06-29 18:38 - 2014-06-29 18:38 - 00003206 _____ () C:\Windows\System32\Tasks\ruxjmqcg
2014-06-29 18:38 - 2014-06-29 18:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\ruxjmqcg.bat
2014-06-29 18:36 - 2014-06-29 18:36 - 00003204 _____ () C:\Windows\System32\Tasks\ahubvcq
2014-06-29 18:36 - 2014-06-29 18:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\ahubvcq.bat
2014-06-29 18:34 - 2014-06-29 18:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\gfiaa.bat
2014-06-29 18:33 - 2014-06-29 18:33 - 00003200 _____ () C:\Windows\System32\Tasks\gfiaa
2014-06-29 18:31 - 2014-06-29 18:31 - 00003206 _____ () C:\Windows\System32\Tasks\qlgqlgjm
2014-06-29 18:31 - 2014-06-29 18:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\qlgqlgjm.bat
2014-06-29 18:29 - 2014-06-29 18:29 - 00003202 _____ () C:\Windows\System32\Tasks\oqysbd
2014-06-29 18:29 - 2014-06-29 18:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\oqysbd.bat
2014-06-29 18:27 - 2014-06-29 18:27 - 00003202 _____ () C:\Windows\System32\Tasks\ykvbmx
2014-06-29 18:27 - 2014-06-29 18:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\ykvbmx.bat
2014-06-29 18:25 - 2014-06-29 18:25 - 00003206 _____ () C:\Windows\System32\Tasks\aocpcqer
2014-06-29 18:25 - 2014-06-29 18:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\aocpcqer.bat
2014-06-29 18:23 - 2014-06-29 18:23 - 00003200 _____ () C:\Windows\System32\Tasks\fepha
2014-06-29 18:23 - 2014-06-29 18:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\fepha.bat
2014-06-29 18:21 - 2014-06-29 18:21 - 00003204 _____ () C:\Windows\System32\Tasks\acceyau
2014-06-29 18:21 - 2014-06-29 18:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\acceyau.bat
2014-06-29 18:19 - 2014-06-29 18:19 - 00003202 _____ () C:\Windows\System32\Tasks\tymrgl
2014-06-29 18:19 - 2014-06-29 18:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\tymrgl.bat
2014-06-29 18:17 - 2014-06-29 18:17 - 00003202 _____ () C:\Windows\System32\Tasks\cxuqfu
2014-06-29 18:17 - 2014-06-29 18:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\cxuqfu.bat
2014-06-29 18:15 - 2014-06-29 18:15 - 00003200 _____ () C:\Windows\System32\Tasks\gxqja
2014-06-29 18:15 - 2014-06-29 18:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\gxqja.bat
2014-06-29 18:13 - 2014-06-29 18:13 - 00003202 _____ () C:\Windows\System32\Tasks\xiscnx
2014-06-29 18:13 - 2014-06-29 18:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\xiscnx.bat
2014-06-29 18:11 - 2014-06-29 18:11 - 00003204 _____ () C:\Windows\System32\Tasks\gffffee
2014-06-29 18:11 - 2014-06-29 18:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\gffffee.bat
2014-06-29 18:09 - 2014-06-29 18:09 - 00003200 _____ () C:\Windows\System32\Tasks\ccafn
2014-06-29 18:09 - 2014-06-29 18:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\ccafn.bat
2014-06-29 18:07 - 2014-06-29 18:07 - 00003200 _____ () C:\Windows\System32\Tasks\jvrui
2014-06-29 18:07 - 2014-06-29 18:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\jvrui.bat
2014-06-29 18:05 - 2014-06-29 18:05 - 00003204 _____ () C:\Windows\System32\Tasks\qdfrefk
2014-06-29 18:05 - 2014-06-29 18:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\qdfrefk.bat
2014-06-29 18:03 - 2014-06-29 18:03 - 00003204 _____ () C:\Windows\System32\Tasks\eewxpph
2014-06-29 18:03 - 2014-06-29 18:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\eewxpph.bat
2014-06-29 18:01 - 2014-06-29 18:01 - 00003200 _____ () C:\Windows\System32\Tasks\icwxl
2014-06-29 18:01 - 2014-06-29 18:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\icwxl.bat
2014-06-29 17:59 - 2014-06-29 17:59 - 00003200 _____ () C:\Windows\System32\Tasks\wnfne
2014-06-29 17:59 - 2014-06-29 17:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\wnfne.bat
2014-06-29 17:57 - 2014-06-29 17:57 - 00003202 _____ () C:\Windows\System32\Tasks\xizdef
2014-06-29 17:57 - 2014-06-29 17:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\xizdef.bat
2014-06-29 17:55 - 2014-06-29 17:55 - 00003206 _____ () C:\Windows\System32\Tasks\quxbfilv
2014-06-29 17:55 - 2014-06-29 17:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\quxbfilv.bat
2014-06-29 17:53 - 2014-06-29 17:53 - 00003202 _____ () C:\Windows\System32\Tasks\zfsdqf
2014-06-29 17:53 - 2014-06-29 17:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\zfsdqf.bat
2014-06-29 17:52 - 2014-06-29 17:52 - 00623696 _____ (Click Me In Limited) C:\Users\hülya\AppData\Local\nsu16A4.tmp
2014-06-29 17:51 - 2014-06-29 17:51 - 00003206 _____ () C:\Windows\System32\Tasks\kpmrotfu
2014-06-29 17:51 - 2014-06-29 17:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\kpmrotfu.bat
2014-06-29 17:49 - 2014-06-29 17:49 - 00003204 _____ () C:\Windows\System32\Tasks\khepmjn
2014-06-29 17:49 - 2014-06-29 17:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\khepmjn.bat
2014-06-29 17:47 - 2014-06-29 17:47 - 00003204 _____ () C:\Windows\System32\Tasks\beyuxlg
2014-06-29 17:47 - 2014-06-29 17:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\beyuxlg.bat
2014-06-29 17:45 - 2014-06-29 17:45 - 00003200 _____ () C:\Windows\System32\Tasks\eddzr
2014-06-29 17:45 - 2014-06-29 17:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\eddzr.bat
2014-06-29 17:43 - 2014-06-29 17:43 - 00003204 _____ () C:\Windows\System32\Tasks\cpdlguc
2014-06-29 17:43 - 2014-06-29 17:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\cpdlguc.bat
2014-06-29 17:41 - 2014-06-29 17:41 - 00003206 _____ () C:\Windows\System32\Tasks\gaiccbvd
2014-06-29 17:41 - 2014-06-29 17:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\gaiccbvd.bat
2014-06-29 17:39 - 2014-06-29 17:39 - 00003202 _____ () C:\Windows\System32\Tasks\iauhbv
2014-06-29 17:39 - 2014-06-29 17:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\iauhbv.bat
2014-06-29 17:37 - 2014-06-29 17:37 - 00003206 _____ () C:\Windows\System32\Tasks\eudbraxo
2014-06-29 17:37 - 2014-06-29 17:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\eudbraxo.bat
2014-06-29 17:35 - 2014-06-29 17:35 - 00003206 _____ () C:\Windows\System32\Tasks\pxrbjdlu
2014-06-29 17:35 - 2014-06-29 17:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\pxrbjdlu.bat
2014-06-29 17:33 - 2014-06-29 17:33 - 00003200 _____ () C:\Windows\System32\Tasks\ilvab
2014-06-29 17:33 - 2014-06-29 17:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\ilvab.bat
2014-06-29 17:31 - 2014-06-29 17:31 - 00003204 _____ () C:\Windows\System32\Tasks\vwgfvve
2014-06-29 17:31 - 2014-06-29 17:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\vwgfvve.bat
2014-06-29 17:28 - 2014-06-29 17:28 - 00003204 _____ () C:\Windows\System32\Tasks\reibflg
2014-06-29 17:28 - 2014-06-29 17:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\reibflg.bat
2014-06-29 17:26 - 2014-06-29 17:26 - 00003202 _____ () C:\Windows\System32\Tasks\kgjoch
2014-06-29 17:26 - 2014-06-29 17:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\kgjoch.bat
2014-06-29 17:24 - 2014-06-29 17:24 - 00003202 _____ () C:\Windows\System32\Tasks\dngoeo
2014-06-29 17:24 - 2014-06-29 17:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\dngoeo.bat
2014-06-29 17:22 - 2014-06-29 17:22 - 00003204 _____ () C:\Windows\System32\Tasks\gohgohh
2014-06-29 17:22 - 2014-06-29 17:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\gohgohh.bat
2014-06-29 17:20 - 2014-06-29 17:20 - 00003206 _____ () C:\Windows\System32\Tasks\lbffbzeu
2014-06-29 17:20 - 2014-06-29 17:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\lbffbzeu.bat
2014-06-29 17:18 - 2014-06-29 17:18 - 00003204 _____ () C:\Windows\System32\Tasks\dafwmja
2014-06-29 17:18 - 2014-06-29 17:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\dafwmja.bat
2014-06-29 17:16 - 2014-06-29 17:16 - 00003204 _____ () C:\Windows\System32\Tasks\sfzekgc
2014-06-29 17:16 - 2014-06-29 17:16 - 00000269 _____ () C:\Users\hülya\AppData\Local\sfzekgc.bat
2014-06-29 17:14 - 2014-06-29 17:14 - 00003204 _____ () C:\Windows\System32\Tasks\trxvdah
2014-06-29 17:14 - 2014-06-29 17:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\trxvdah.bat
2014-06-29 17:12 - 2014-06-29 17:12 - 00003200 _____ () C:\Windows\System32\Tasks\cokxm
2014-06-29 17:12 - 2014-06-29 17:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\cokxm.bat
2014-06-29 17:10 - 2014-06-29 17:10 - 00003204 _____ () C:\Windows\System32\Tasks\ajuhbdv
2014-06-29 17:10 - 2014-06-29 17:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\ajuhbdv.bat
2014-06-29 17:08 - 2014-06-29 17:08 - 00003202 _____ () C:\Windows\System32\Tasks\xaqscn
2014-06-29 17:08 - 2014-06-29 17:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\xaqscn.bat
2014-06-29 17:06 - 2014-06-29 17:06 - 00003206 _____ () C:\Windows\System32\Tasks\icreymhc
2014-06-29 17:06 - 2014-06-29 17:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\icreymhc.bat
2014-06-29 17:04 - 2014-06-29 17:04 - 00003202 _____ () C:\Windows\System32\Tasks\rxbycq
2014-06-29 17:04 - 2014-06-29 17:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\rxbycq.bat
2014-06-29 17:02 - 2014-06-29 17:02 - 00003204 _____ () C:\Windows\System32\Tasks\kifbcee
2014-06-29 17:02 - 2014-06-29 17:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\kifbcee.bat
2014-06-29 17:00 - 2014-06-29 17:00 - 00003200 _____ () C:\Windows\System32\Tasks\wgwgw
2014-06-29 17:00 - 2014-06-29 17:00 - 00000269 _____ () C:\Users\hülya\AppData\Local\wgwgw.bat
2014-06-29 16:58 - 2014-06-29 16:58 - 00003200 _____ () C:\Windows\System32\Tasks\nghxp
2014-06-29 16:58 - 2014-06-29 16:58 - 00000269 _____ () C:\Users\hülya\AppData\Local\nghxp.bat
2014-06-29 16:56 - 2014-06-29 16:56 - 00003200 _____ () C:\Windows\System32\Tasks\xdmos
2014-06-29 16:56 - 2014-06-29 16:56 - 00000269 _____ () C:\Users\hülya\AppData\Local\xdmos.bat
2014-06-29 16:54 - 2014-06-29 16:54 - 00003200 _____ () C:\Windows\System32\Tasks\vlmck
2014-06-29 16:54 - 2014-06-29 16:54 - 00000269 _____ () C:\Users\hülya\AppData\Local\vlmck.bat
2014-06-29 16:52 - 2014-06-29 16:52 - 00003202 _____ () C:\Windows\System32\Tasks\rdwbfa
2014-06-29 16:52 - 2014-06-29 16:52 - 00000269 _____ () C:\Users\hülya\AppData\Local\rdwbfa.bat
2014-06-29 16:50 - 2014-06-29 16:50 - 00003204 _____ () C:\Windows\System32\Tasks\bocpdwd
2014-06-29 16:50 - 2014-06-29 16:50 - 00000269 _____ () C:\Users\hülya\AppData\Local\bocpdwd.bat
2014-06-29 16:48 - 2014-06-29 16:48 - 00003204 _____ () C:\Windows\System32\Tasks\prsudyb
2014-06-29 16:48 - 2014-06-29 16:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\prsudyb.bat
2014-06-29 16:46 - 2014-06-29 16:46 - 00003206 _____ () C:\Windows\System32\Tasks\hysdwpba
2014-06-29 16:46 - 2014-06-29 16:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\hysdwpba.bat
2014-06-29 16:44 - 2014-06-29 16:44 - 00003200 _____ () C:\Windows\System32\Tasks\aocpc
2014-06-29 16:44 - 2014-06-29 16:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\aocpc.bat
2014-06-29 16:42 - 2014-06-29 16:42 - 00003206 _____ () C:\Windows\System32\Tasks\bkdpjboa
2014-06-29 16:42 - 2014-06-29 16:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\bkdpjboa.bat
2014-06-29 16:40 - 2014-06-29 16:40 - 00003202 _____ () C:\Windows\System32\Tasks\gphqpz
2014-06-29 16:40 - 2014-06-29 16:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\gphqpz.bat
2014-06-29 16:39 - 2014-03-02 20:05 - 00003244 _____ () C:\Windows\System32\Tasks\SomotoUpdateCheckerAutoStart
2014-06-29 16:39 - 2013-03-26 22:30 - 00001442 _____ () C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-06-29 16:38 - 2014-06-29 16:38 - 00003204 _____ () C:\Windows\System32\Tasks\rwbfruh
2014-06-29 16:38 - 2014-06-29 16:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\rwbfruh.bat
2014-06-29 16:37 - 2014-06-29 16:37 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\Uniblue
2014-06-29 16:36 - 2014-06-29 16:36 - 00003202 _____ () C:\Windows\System32\Tasks\prtvey
2014-06-29 16:36 - 2014-06-29 16:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\prtvey.bat
2014-06-29 16:36 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\AppData\Local\globalUpdate
2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9ED2tmp
2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9E82tmp
2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9E62tmp
2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9E22tmp
2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9E02tmp
2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9DE2tmp
2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9DC2tmp
2014-06-29 16:35 - 2014-06-29 16:35 - 01258344 _____ () C:\Users\hülya\Downloads\Setup (3).exe
2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9EB2tmp
2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\55A4tmp
2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 _____ () C:\END
2014-06-29 14:04 - 2014-03-02 19:41 - 00000000 ____D () C:\Program Files (x86)\Desk 365
2014-06-28 05:35 - 2014-07-09 10:52 - 00556544 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-27 01:13 - 2014-06-27 01:13 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\DivX
2014-06-27 01:13 - 2014-06-27 01:13 - 00000000 ____D () C:\Program Files\DivX
2014-06-27 01:11 - 2014-06-27 01:11 - 00999232 _____ (DivX, LLC) C:\Users\hülya\Downloads\DivXInstaller.exe
2014-06-27 01:06 - 2014-06-27 01:06 - 00608808 _____ () C:\Users\hülya\Downloads\MediaPlayerClassicInstaller.exe
2014-06-26 22:53 - 2014-07-12 03:32 - 00703968 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-06-26 22:53 - 2014-07-12 03:32 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-06-25 23:18 - 2014-06-25 23:18 - 00000000 ____D () C:\Users\hülya\AppData\Local\AskPartnerNetwork

Some content of TEMP:
====================
C:\Users\hülya\AppData\Local\Temp\2npfgo6u.dll
C:\Users\hülya\AppData\Local\Temp\76k1mdx6.dll
C:\Users\hülya\AppData\Local\Temp\amazonicon_v6.exe
C:\Users\hülya\AppData\Local\Temp\amazoninstallernircmdc.exe
C:\Users\hülya\AppData\Local\Temp\APNSetup.exe
C:\Users\hülya\AppData\Local\Temp\autorun.dll
C:\Users\hülya\AppData\Local\Temp\b2pyquuf.dll
C:\Users\hülya\AppData\Local\Temp\BackupSetup.exe
C:\Users\hülya\AppData\Local\Temp\BingBarSetup-Partner.exe
C:\Users\hülya\AppData\Local\Temp\dpyqloea.dll
C:\Users\hülya\AppData\Local\Temp\Extract.exe
C:\Users\hülya\AppData\Local\Temp\fge_7jwp.dll
C:\Users\hülya\AppData\Local\Temp\gsnbt7vk.dll
C:\Users\hülya\AppData\Local\Temp\ikdqtg_l.dll
C:\Users\hülya\AppData\Local\Temp\jgpexth7.dll
C:\Users\hülya\AppData\Local\Temp\jqslmncy.dll
C:\Users\hülya\AppData\Local\Temp\jzr0dvkz.dll
C:\Users\hülya\AppData\Local\Temp\nsoA31A.exe
C:\Users\hülya\AppData\Local\Temp\nst797D.exe
C:\Users\hülya\AppData\Local\Temp\nszA30F.exe
C:\Users\hülya\AppData\Local\Temp\nzlvmuji.dll
C:\Users\hülya\AppData\Local\Temp\omi2ikyo.dll
C:\Users\hülya\AppData\Local\Temp\oz9ptrby.dll
C:\Users\hülya\AppData\Local\Temp\pcgr8uon.dll
C:\Users\hülya\AppData\Local\Temp\pci2gxzz.dll
C:\Users\hülya\AppData\Local\Temp\rad6A463.tmp_update.exe
C:\Users\hülya\AppData\Local\Temp\rpcuoqk1.dll
C:\Users\hülya\AppData\Local\Temp\r_txacvt.dll
C:\Users\hülya\AppData\Local\Temp\sdanircmdc.exe
C:\Users\hülya\AppData\Local\Temp\sdapskill.exe
C:\Users\hülya\AppData\Local\Temp\sdaspwn.exe
C:\Users\hülya\AppData\Local\Temp\sgeggdk-.dll
C:\Users\hülya\AppData\Local\Temp\SkypeSetup.exe
C:\Users\hülya\AppData\Local\Temp\SP60051.exe
C:\Users\hülya\AppData\Local\Temp\SP60289.exe
C:\Users\hülya\AppData\Local\Temp\sp64126.exe
C:\Users\hülya\AppData\Local\Temp\Sqlite3.dll
C:\Users\hülya\AppData\Local\Temp\UninstallHPSA.exe
C:\Users\hülya\AppData\Local\Temp\UpdateCheckerSetup.exe
C:\Users\hülya\AppData\Local\Temp\vcredist_x64.exe
C:\Users\hülya\AppData\Local\Temp\xbqvd9bh.dll
C:\Users\hülya\AppData\Local\Temp\yeqjtftp.dll
C:\Users\hülya\AppData\Local\Temp\ytiwsziq.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-07-19 18:42

==================== End Of Log ============================
         
Habe FRST in der hälfte aufgeteilt da alles nicht in einen Text gepasst hat... passt das so? wenn ja mache ich mit dem Addition Editor weiter

Alt 24.07.2014, 21:10   #7
Romiero
 
bat=exe konnte nicht gefunden werden. - Standard

bat=exe konnte nicht gefunden werden.



Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-07-2014 01
Ran by hülya at 2014-07-24 20:51:06
Running from C:\Users\hülya\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Kaspersky Internet Security (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Kaspersky Internet Security (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Kaspersky Internet Security (Enabled) {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 13.0.0.83 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 13.0.0.83 - Adobe Systems Incorporated) Hidden
Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated)
Ask Toolbar (HKLM-x32\...\{4F524A2D-5637-4300-76A7-A758B70C0F01}) (Version: 12.15.1.16 - APN, LLC) <==== ATTENTION
AuthenTec TrueAPI 64-bit (Version: 1.6.0.86 - AuthenTec, Inc.) Hidden
AVM FRITZ!WLAN (HKLM-x32\...\AVMWLANCLI) (Version:  - AVM Berlin)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
BrowserSafeguard (HKCU\...\Browsersafeguard) (Version:  - Browsersafeguard) <==== ATTENTION
Bundled software uninstaller (HKLM-x32\...\bi_uninstaller) (Version:  - ) <==== ATTENTION
CCleaner (HKLM\...\CCleaner) (Version: 4.01 - Piriform)
Connected Music powered by Universal Music Group version 1.0 (HKLM-x32\...\{46037DC7-F927-46DF-935F-D6F122BDD34B}_is1) (Version: 1.0 - Snowite)
CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1.5407 - CyberLink Corp.)
CyberLink LabelPrint (x32 Version: 2.5.1.5407 - CyberLink Corp.) Hidden
CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.2.2114 - CyberLink Corp.)
CyberLink Media Suite 10 (x32 Version: 10.0.2.2114 - CyberLink Corp.) Hidden
CyberLink PhotoDirector (HKLM-x32\...\InstallShield_{4862344A-A39C-4897-ACD4-A1BED5163C5A}) (Version: 2.0.1.3119 - CyberLink Corp.)
CyberLink PhotoDirector (x32 Version: 2.0.1.3119 - CyberLink Corp.) Hidden
CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.1.1926 - CyberLink Corp.)
CyberLink Power2Go 8 (x32 Version: 8.0.1.1926 - CyberLink Corp.) Hidden
CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.1.1925 - CyberLink Corp.)
CyberLink PowerDirector 10 (x32 Version: 10.0.1.1925 - CyberLink Corp.) Hidden
CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.5.4.5527 - CyberLink Corp.)
CyberLink YouCam (x32 Version: 3.5.4.5527 - CyberLink Corp.) Hidden
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Der Tempel des Lebens: Die Legende der Vier Elemente (HKLM-x32\...\Der Tempel des Lebens: Die Legende der Vier Elemente) (Version: 1.0.0.0 - INTENIUM GmbH)
Desk 365 (HKLM-x32\...\Desk 365) (Version: 1.15.10 - 337 Technology Limited.) <==== ATTENTION
Dreamscapes: Der Sandmann Sammleredition (HKLM-x32\...\Dreamscapes: Der Sandmann Sammleredition) (Version: 1.0.0.0 - INTENIUM GmbH)
Energy Star (HKLM\...\{0FA995CC-C849-4755-B14B-5404CC75DC24}) (Version: 1.0.8 - Hewlett-Packard)
Facebook Video Calling 2.0.0.447 (HKLM-x32\...\{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}) (Version: 2.0.447 - Skype Limited)
FilesFrog Update Checker (HKLM-x32\...\FilesFrog Update Checker) (Version:  - ) <==== ATTENTION
FLV Player (HKCU\...\FLV Player) (Version: 1.0 - Somoto Ltd.) <==== ATTENTION
Freecorder extension (HKLM-x32\...\Freecorder extension) (Version: 7.0.2.0 - Applian Technologies Inc.)
Freecorder extension for Chrome (HKLM-x32\...\Freecorder extension for Chrome) (Version: 7.0.2.0 - Applian Technologies, Inc.)
Geekbench 3 (HKLM-x32\...\Geekbench 3) (Version:  - Primate Labs Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.)
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP 3D DriveGuard (HKLM\...\{AB5BCC55-18E2-46C7-9405-FF61CB888F05}) (Version: 4.2.9.1 - Hewlett-Packard Company)
HP Connected Music (Meridian - installer) (HKLM-x32\...\StartHPConnectedMusic) (Version: v1.0 - Meridian Audio Ltd)
HP CoolSense (HKLM-x32\...\{11AF9A96-6D83-4C3B-8DCB-16EA2A358E3F}) (Version: 2.10.51 - Hewlett-Packard Company)
HP Customer Experience Enhancements (x32 Version: 6.0.1.7 - Hewlett-Packard) Hidden
HP Documentation (HKLM-x32\...\{7DE5085A-3665-40BC-9595-A1A209699137}) (Version: 1.1.0.0 - Hewlett-Packard)
HP Postscript Converter (Version: 3.1.3554 - Hewlett-Packard) Hidden
HP Quick Launch (HKLM-x32\...\{609B11CC-8CED-4116-AD8A-A72168894D39}) (Version: 3.0.4 - Hewlett-Packard Company)
HP Recovery Manager (x32 Version: 7.00 - Hewlett-Packard) Hidden
HP Registration Service (HKLM\...\{E4D6CCF2-0AAF-4B9C-9DE5-893EDC9B4BAA}) (Version: 1.0.5976.4186 - Hewlett-Packard)
HP SimplePass (HKLM-x32\...\{34C821CA-6B55-44A0-8A9B-2EF471D6019E}) (Version: 6.0.100.244 - Hewlett-Packard)
HP Software Framework (HKLM-x32\...\{94BB4B4F-BD6D-4166-A580-F868C8384CA6}) (Version: 4.6.8.1 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\...\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}) (Version: 7.4.45.4 - Hewlett-Packard Company)
HP Utility Center (HKLM-x32\...\{0C57987A-A03A-4B95-A309-D23F78F406CA}) (Version: 1.0.7 - Hewlett-Packard)
HP Wireless Button Driver (HKLM-x32\...\{941DE69D-6CEE-4171-8F1F-3D7E352AA498}) (Version: 1.0.6.1 - Hewlett-Packard Company)
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6418.0 - IDT)
Intel PROSet Wireless (Version:  - ) Hidden
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2817 - Intel Corporation)
Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (HKLM\...\{89478C31-5CE8-461A-9084-9A0AF059F84F}) (Version: 15.5.0.0344 - Intel Corporation)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{7854AA22-A2F0-4F29-A2E9-D0C5A2B685E7}) (Version: 2.5.0.0248 - Motorola Solutions, Inc)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.9.1002 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Intel(R) WiDi (HKLM\...\{EDBA2433-0910-4C72-8C5B-8FEDAE3EF18E}) (Version: 3.5.34.0 - Intel Corporation)
Intel® PROSet/Wireless WiFi-Software (HKLM\...\{99FDAE3B-6905-45A6-8F73-595363AAD3D1}) (Version: 15.05.1000.1411 - Intel Corporation)
Intel® Trusted Connect Service Client (Version: 1.24.388.1 - Intel Corporation) Hidden
Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.550 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{6F6873E3-5C92-4049-B511-231A138DD090}) (Version: 14.0.0.4651 - Kaspersky Lab)
Kaspersky Internet Security (x32 Version: 14.0.0.4651 - Kaspersky Lab) Hidden
LPT System Updater Service (x32 Version: 1.0.0.0 - LPT) Hidden <==== ATTENTION
Microsoft App Update for microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe (x64) (Version: 1.0.0.0 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.6120.5004 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Movie Mode (HKLM-x32\...\MovieMode) (Version: 2.6.65 - GenTechnologies Apps, LLC)
Movies Toolbar for Chrome (Dist. by Somoto Ltd.) (HKLM-x32\...\somotomoviestoolbar181CR) (Version: 1.8.1.0 - IAC Search and Media) <==== ATTENTION
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MyPC Backup  (HKLM\...\MyPC Backup) (Version:  - JDi Backup Ltd) <==== ATTENTION
NVIDIA Grafiktreiber 306.97 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 306.97 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.85.551 - NVIDIA Corporation) Hidden
NVIDIA Optimus 1.10.8 (Version: 1.10.8 - NVIDIA Corporation) Hidden
NVIDIA Systemsteuerung 306.97 (Version: 306.97 - NVIDIA Corporation) Hidden
NVIDIA Update 1.10.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.10.8 - NVIDIA Corporation)
NVIDIA Update Components (Version: 1.10.8 - NVIDIA Corporation) Hidden
OpenOffice 4.0.1 (HKLM-x32\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation)
Optimizer Pro v3.2 (HKLM-x32\...\Optimizer Pro_is1) (Version:  - ) <==== ATTENTION
PriceGong 2.6.11 (HKLM-x32\...\PriceGong) (Version: 2.6.11 - PriceGong) <==== ATTENTION
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.2.612.2012 - Realtek)
Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.8400.29025 - Realtek Semiconductor Corp.)
RTL GAME CENTER (HKLM-x32\...\DSGPlayer) (Version: 1.0.0.46 - INTENIUM GmbH)
Saal Design Software (HKLM-x32\...\SaalDesignSoftware) (Version: 3.2.30 - Saal Digital Fotoservice GmbH)
Saal Design Software (x32 Version: 3.2.30 - Saal Digital Fotoservice GmbH) Hidden
Save Sense (remove only) (HKCU\...\Save Sense) (Version: 6.4.1.0 - SaveSense) <==== ATTENTION
SaveSense (HKCU\...\SaveSense) (Version:  - SaveSense) <==== ATTENTION
savinshoop (HKLM-x32\...\{70BD2558-27DA-8B02-02D0-D8704ECD2EDF}) (Version:  - soaVianshopp)
Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.)
SopCast 2.0.4 (HKLM-x32\...\SopCast) (Version: 2.0.4 - SopCast.com)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.10.12 - Synaptics Incorporated)
TuicTaCoupon (HKLM-x32\...\{E370F69F-ED3F-925F-31FC-14D1329A713B}) (Version:  - TiicTaCoupOn) <==== ATTENTION
Validity WBF DDK (HKLM\...\{3820B6F2-2F6B-4237-9EE9-F0AC9A2185BC}) (Version: 4.4.227.0 - Validity Sensors, Inc.)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Language Selector (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Yahoo Community Smartbar (HKLM-x32\...\{74451556-4E0B-4082-B74C-583B7EDC3679}) (Version: 10.219.66.15259 - Linkury Inc.) <==== ATTENTION
Yahoo Community Smartbar Engine (HKCU\...\{628834ec-ce19-4fcf-b25d-cd83e8a06da6}) (Version: 10.219.66.15259 - Linkury Inc.) <==== ATTENTION
YTD Video Downloader 4.1 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 4.1 - GreenTree Applications SRL)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

09-07-2014 01:08:29 Windows Update
19-07-2014 23:53:22 Geplanter Prüfpunkt
23-07-2014 00:07:41 Wiederherstellungsvorgang

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2012-07-26 07:26 - 2012-07-26 07:26 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {003EF650-C9AE-4055-AD00-8929CDED34C8} - System32\Tasks\dafdid => C:\Users\hülya\AppData\Local\dafdid.bat [2014-06-29] ()
Task: {0048A787-968B-460A-B88F-3C94AA2E04F9} - System32\Tasks\icdytn => C:\Users\hülya\AppData\Local\icdytn.bat [2014-06-29] ()
Task: {011A7F85-F0F5-44FA-BF08-83D979C6774C} - System32\Tasks\iavic => C:\Users\hülya\AppData\Local\iavic.bat [2014-06-29] ()
Task: {02286E30-4471-40D2-B0F8-7805321F58C3} - System32\Tasks\kbxmda => C:\Users\hülya\AppData\Local\kbxmda.bat [2014-06-29] ()
Task: {0364B950-85C5-481D-A829-9A628ADAAC30} - System32\Tasks\kfujeuqf => C:\Users\hülya\AppData\Local\kfujeuqf.bat [2014-06-29] ()
Task: {03EAD8AB-37A3-48F5-B2EA-881F55414425} - System32\Tasks\vdksa => C:\Users\hülya\AppData\Local\utjiwdc.bat [2014-06-29] ()
Task: {0637404D-B93A-4D9B-B2EA-D2A001FD8F65} - System32\Tasks\tymrgl => C:\Users\hülya\AppData\Local\tymrgl.bat [2014-06-29] ()
Task: {06D66712-6AE9-44BF-B623-B919BF4FB857} - System32\Tasks\whpxpqi => C:\Users\hülya\AppData\Local\whpxpqi.bat [2014-07-01] ()
Task: {0769D298-B0CB-43F2-8F04-90E3719CA1C3} - System32\Tasks\ligdqolj => C:\Users\hülya\AppData\Local\ligdqolj.bat [2014-06-30] ()
Task: {077A8194-DB04-438F-AC1C-4F99D8069009} - System32\Tasks\psuprudi => C:\Users\hülya\AppData\Local\psuprudi.bat [2014-06-29] ()
Task: {09E80BA2-B44A-4C4C-8BCD-EB22D146CA0C} - System32\Tasks\acceyau => C:\Users\hülya\AppData\Local\acceyau.bat [2014-06-29] ()
Task: {09FBED9F-814A-4D63-8782-B2DE7B1924B9} - System32\Tasks\lxdiu => C:\Users\hülya\AppData\Local\lxdiu.bat [2014-06-29] ()
Task: {0AE3EE25-8FCD-494C-B36F-9206C937D076} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2014-07-11] (Microsoft Corporation)
Task: {0BDC01C3-BD15-4DA2-9AB4-DA4D05899A00} - System32\Tasks\bkdpjboa => C:\Users\hülya\AppData\Local\bkdpjboa.bat [2014-06-29] ()
Task: {0D05368A-9BAE-4B28-996F-678D1560C042} - System32\Tasks\ljwusx => C:\Users\hülya\AppData\Local\ljwusx.bat [2014-06-30] ()
Task: {0EE38C35-6E13-4ECE-ACA5-7CBD7E3262D6} - System32\Tasks\eewxpph => C:\Users\hülya\AppData\Local\eewxpph.bat [2014-06-29] ()
Task: {10527A4B-BB8E-4180-93C1-5AF92EDD1D0E} - System32\Tasks\jfbdsujm => C:\Users\hülya\AppData\Local\jfbdsujm.bat [2014-06-29] ()
Task: {129D30FF-9F48-473D-B1A2-8E1EB5F7118A} - System32\Tasks\vdsbqhwf => C:\Users\hülya\AppData\Local\vdsbqhwf.bat [2014-06-29] ()
Task: {1429E26B-169C-4471-A478-B63F2510AA18} - System32\Tasks\ajcohkcp => C:\Users\hülya\AppData\Local\ajcohkcp.bat [2014-06-29] ()
Task: {1446D01F-A922-4D20-AF6F-A43E61DCC404} - System32\Tasks\dulcs => C:\Users\hülya\AppData\Local\dulcs.bat [2014-06-30] ()
Task: {14DBB9C6-89A7-4FE3-A3D6-D95561F7C903} - System32\Tasks\fxacscu => C:\Users\hülya\AppData\Local\fxacscu.bat [2014-06-30] ()
Task: {1562FD9D-97A7-4913-AFE4-34EB081C2924} - System32\Tasks\ydoalwbt => C:\Users\hülya\AppData\Local\ydoalwbt.bat [2014-06-29] ()
Task: {16BBD895-FC3F-40B1-BA0A-C04007D2351B} - System32\Tasks\aguiubo => C:\Users\hülya\AppData\Local\aguiubo.bat [2014-06-30] ()
Task: {177BED97-AD25-4CE4-BCDA-11854471EF5E} - System32\Tasks\khepmjn => C:\Users\hülya\AppData\Local\khepmjn.bat [2014-06-29] ()
Task: {18246448-D9EA-47AF-B53A-844D9909849A} - System32\Tasks\rdwbfa => C:\Users\hülya\AppData\Local\rdwbfa.bat [2014-06-29] ()
Task: {18FA95AA-1FC1-419F-A229-AA8EE22C0AB2} - System32\Tasks\hbunicup => C:\Users\hülya\AppData\Local\hbunicup.bat [2014-06-29] ()
Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {1AECBED2-B931-4E17-8AB3-21D3F36CABD1} - System32\Tasks\gwwoohh => C:\Users\hülya\AppData\Local\gwwoohh.bat [2014-06-30] ()
Task: {1B9B9E7B-12F6-4310-A691-F2097514050E} - System32\Tasks\Microsoft\Windows\Setup\Pre-staged GDR Notification => C:\Windows\system32\NotificationUI.exe [2014-04-19] (Microsoft Corporation)
Task: {1C78928A-EDB1-451B-B0C6-BFE0CCC14FEA} - System32\Tasks\cwtodhbp => C:\Users\hülya\AppData\Local\cwtodhbp.bat [2014-06-30] ()
Task: {1C91E375-4FEC-4256-A1BD-2F5553663358} - System32\Tasks\caebg => C:\Users\hülya\AppData\Local\caebg.bat [2014-06-30] ()
Task: {1D000CF2-84AF-4DC6-903B-4D2A4AED1FAE} - System32\Tasks\zlqcg => C:\Users\hülya\AppData\Local\zlqcg.bat [2014-06-30] ()
Task: {1E38087E-CAE4-4EE2-BF2B-87DE4F8A594E} - System32\Tasks\fsigct => C:\Users\hülya\AppData\Local\fsigct.bat [2014-06-30] ()
Task: {1E3C30C6-05E9-41C1-B0B7-262BE06949D2} - System32\Tasks\erawe => C:\Users\hülya\AppData\Local\erawe.bat [2014-06-30] ()
Task: {22CFDDA0-A38F-48E8-A6B4-E89AE13EC961} - System32\Tasks\jgjnrnq => C:\Users\hülya\AppData\Local\jgjnrnq.bat [2014-07-01] ()
Task: {2328EFA0-CA79-47CD-A546-45C815D6034B} - System32\Tasks\eqfcxnbw => C:\Users\hülya\AppData\Local\eqfcxnbw.bat [2014-07-01] ()
Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {2672E002-1FBE-4832-99F3-E16C3A8BFC52} - System32\Tasks\hztmgy => C:\Users\hülya\AppData\Local\hztmgy.bat [2014-06-29] ()
Task: {2A3AB0A9-A867-47C6-936C-9FCF75ADD932} - System32\Tasks\hajdc => C:\Users\hülya\AppData\Local\hajdc.bat [2014-06-29] ()
Task: {2AA7416D-00A6-4CD1-8E6C-68CA4ADC9042} - System32\Tasks\tsqpv => C:\Users\hülya\AppData\Local\tsqpv.bat [2014-06-30] ()
Task: {2CB3E91A-8BE6-46FF-BC60-50627B5B30C8} - System32\Tasks\koagcns => C:\Users\hülya\AppData\Local\koagcns.bat [2014-06-29] ()
Task: {2D2C2E52-8E0D-4114-91F2-5451D48BC145} - System32\Tasks\hqqbbcll => C:\Users\hülya\AppData\Local\hqqbbcll.bat [2014-06-30] ()
Task: {2DA9BFDD-2E89-4B84-8FCB-F5BB2CC9842C} - System32\Tasks\oqysbd => C:\Users\hülya\AppData\Local\oqysbd.bat [2014-06-29] ()
Task: {2F458A81-AD44-4EC6-B900-5EAF9A9CB104} - System32\Tasks\zfsdqf => C:\Users\hülya\AppData\Local\zfsdqf.bat [2014-06-29] ()
Task: {300F2C94-645A-4FCC-92F9-2D4722B44581} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {31246EB7-5578-40B6-88C4-C6796D047DA7} - System32\Tasks\oqyaks => C:\Users\hülya\AppData\Local\oqyaks.bat [2014-06-29] ()
Task: {323DDFC5-858C-4D95-B78C-5B133C7985E0} - System32\Tasks\kfdavzwl => C:\Users\hülya\AppData\Local\kfdavzwl.bat [2014-06-30] ()
Task: {3285401B-0DBA-4D35-ACCE-1216D8D46497} - System32\Tasks\whqaqs => C:\Users\hülya\AppData\Local\whqaqs.bat [2014-06-29] ()
Task: {332DAA72-08ED-4B22-8D29-4FF924AF622C} - System32\Tasks\pakteow => C:\Users\hülya\AppData\Local\pakteow.bat [2014-06-30] ()
Task: {33FA76A7-C5E8-4A9D-982E-76C6316FE805} - System32\Tasks\wgwfihhq => C:\Users\hülya\AppData\Local\wgwfihhq.bat [2014-07-01] ()
Task: {34103223-28D0-449F-85F7-FA778B3BCF0E} - System32\Tasks\kotimqn => C:\Users\hülya\AppData\Local\kotimqn.bat [2014-06-29] ()
Task: {344C6CC8-C3D1-45D2-88A6-BE8FC5379C40} - System32\Tasks\fdcaqonm => C:\Users\hülya\AppData\Local\fdcaqonm.bat [2014-06-29] ()
Task: {352A36F1-47E1-4BE6-9FCB-834C149C2CA2} - System32\Tasks\SomotoUpdateCheckerAutoStart => C:\Users\hülya\AppData\Local\FilesFrog Update Checker\update_checker.exe [2013-10-17] (Somoto) <==== ATTENTION
Task: {354F2D8D-A03A-420F-8F05-35B54AE92F9B} - System32\Tasks\ahubvcq => C:\Users\hülya\AppData\Local\ahubvcq.bat [2014-06-29] ()
Task: {35B00116-6481-44D4-BE07-FA4F958837A0} - System32\Tasks\awkfl => C:\Users\hülya\AppData\Local\awkfl.bat [2014-06-30] ()
Task: {39FBE809-DCB2-49D4-907A-85D693F7F309} - System32\Tasks\isnoa => C:\Users\hülya\AppData\Local\isnoa.bat [2014-06-29] ()
Task: {3B09D934-1BEE-4DE3-9796-F1B3A3D301B0} - System32\Tasks\SaveSense => C:\Users\hülya\AppData\Roaming\SaveSense\UpdateProc\UpdateTask.exe [2013-04-12] () <==== ATTENTION
Task: {3B95F581-4764-4404-974C-6A4D62C8EA7B} - System32\Tasks\pjddy => C:\Users\hülya\AppData\Local\pjddy.bat [2014-06-29] ()
Task: {3D3A4589-F8E7-4B7C-942E-795B004EABDD} - System32\Tasks\vveett => C:\Users\hülya\AppData\Local\vveett.bat [2014-06-30] ()
Task: {3DA985C0-FBEE-438C-BE0B-71EF3CD897AD} - System32\Tasks\lcbpv => C:\Users\hülya\AppData\Local\lcbpv.bat [2014-06-29] ()
Task: {40099843-EEB1-4EA0-BD57-9C98F0DD436F} - System32\Tasks\vwgfvve => C:\Users\hülya\AppData\Local\vwgfvve.bat [2014-06-29] ()
Task: {400EFF63-816F-4F99-BEA1-738978338F9C} - System32\Tasks\mffummlk => C:\Users\hülya\AppData\Local\mffummlk.bat [2014-06-29] ()
Task: {41BB76F5-03EE-4FE2-B56F-18AF23B1F308} - System32\Tasks\lrweaflq => C:\Users\hülya\AppData\Local\lrweaflq.bat [2014-06-30] ()
Task: {439D71DF-96C7-40CE-A86D-140FEF179C3A} - System32\Tasks\vggvgguf => C:\Users\hülya\AppData\Local\vggvgguf.bat [2014-06-30] ()
Task: {44452859-3C3B-4370-B2F5-22CF11C0F2EF} - System32\Tasks\jdauqmhd => C:\Users\hülya\AppData\Local\jdauqmhd.bat [2014-06-29] ()
Task: {45DA2CAC-06F3-4F1F-9C57-B3BCBC805DA2} - System32\Tasks\fjdoh => C:\Users\hülya\AppData\Local\fjdoh.bat [2014-06-29] ()
Task: {465C09A5-B819-4F1F-AD9E-D33E0C85505D} - System32\Tasks\quejuej => C:\Users\hülya\AppData\Local\quejuej.bat [2014-06-29] ()
Task: {46F60C73-0018-4120-8188-B8101EFE0507} - System32\Tasks\rxbycq => C:\Users\hülya\AppData\Local\rxbycq.bat [2014-06-29] ()
Task: {47746299-1C98-4034-8722-1A48C2E79341} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-08] (CyberLink)
Task: {48AB0022-7309-4679-BB24-2F803D2DA4F1} - System32\Tasks\ccbfv => C:\Users\hülya\AppData\Local\ccbfv.bat [2014-06-30] ()
Task: {49C497BA-182F-41D2-8CAE-216FDA93A569} - System32\Tasks\akcohzmg => C:\Users\hülya\AppData\Local\akcohzmg.bat [2014-06-29] ()
Task: {49F5BFAE-12BF-4887-9A55-AB75E522480C} - System32\Tasks\bocpdwd => C:\Users\hülya\AppData\Local\bocpdwd.bat [2014-06-29] ()
Task: {4D173E46-EEFB-4CAA-B130-4A13C026A37F} - System32\Tasks\tyfrx => C:\Users\hülya\AppData\Local\tyfrx.bat [2014-06-30] ()
Task: {4D8CBC81-3508-48B2-A844-90F3AC651F38} - System32\Tasks\khtpt => C:\Users\hülya\AppData\Local\khtpt.bat [2014-06-30] ()
Task: {50267BFA-CB71-4A7F-BBF8-CF4A11D92EA8} - System32\Tasks\tbfedip => C:\Users\hülya\AppData\Local\tbfedip.bat [2014-06-30] ()
Task: {5051F7B3-ABB0-41CF-BC9B-4432CF75EF8D} - System32\Tasks\beyuxlg => C:\Users\hülya\AppData\Local\beyuxlg.bat [2014-06-29] ()
Task: {5211772F-5E86-4242-9DA7-566B28C6598D} - System32\Tasks\Rocket Updater => C:\Users\hülya\AppData\Roaming\RocketUpdater\UpdateProc\UpdateTask.exe [2013-04-12] ()
Task: {533EAB30-0B6E-41DE-BE5C-34F1968787B1} - System32\Tasks\iddytni => C:\Users\hülya\AppData\Local\iddytni.bat [2014-06-29] ()
Task: {54C6A6D9-0130-4BD1-96FA-093CCF36262E} - System32\Tasks\gufetd => C:\Users\hülya\AppData\Local\gufetd.bat [2014-06-30] ()
Task: {5593D5EA-198A-4368-8759-7021E190032B} - System32\Tasks\vmddsj => C:\Users\hülya\AppData\Local\vmddsj.bat [2014-06-29] ()
Task: {598CBF17-CAA1-4966-8AE4-389B8482EFA0} - System32\Tasks\cfdfey => C:\Users\hülya\AppData\Local\cfdfey.bat [2014-06-30] ()
Task: {5A26F67A-BC7C-43DF-98D0-3040C2C7FD6E} - System32\Tasks\acxkgi => C:\Users\hülya\AppData\Local\acxkgi.bat [2014-06-30] ()
Task: {5ADA0060-A33F-4DB3-861D-7D4D0DE3F291} - System32\Tasks\nghxp => C:\Users\hülya\AppData\Local\nghxp.bat [2014-06-29] ()
Task: {5B0D54A1-C7F8-4AE5-B4F5-06482CE330F9} - System32\Tasks\edeaa => C:\Users\hülya\AppData\Local\edeaa.bat [2014-06-29] ()
Task: {5B5045A8-54CA-4811-BBA8-98C4DD1359D5} - System32\Tasks\bxthdr => C:\Users\hülya\AppData\Local\bxthdr.bat [2014-06-30] ()
Task: {5B82A7BD-4815-4E3C-868B-916B3FD4C6DE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2014-03-21] (Hewlett-Packard)
Task: {5B94D6D9-CE28-4611-8E2A-56D6342EB06C} - System32\Tasks\refju => C:\Users\hülya\AppData\Local\refju.bat [2014-06-29] ()
Task: {5CA89DF9-293E-45DE-9FC5-6370856853D6} - System32\Tasks\erawlaq => C:\Users\hülya\AppData\Local\erawlaq.bat [2014-06-29] ()
Task: {5EA5D5C7-DAF0-4EB2-96CA-E218ADC73286} - System32\Tasks\xaqscn => C:\Users\hülya\AppData\Local\xaqscn.bat [2014-06-29] ()
Task: {608D2455-F638-49E5-BFC8-216EB05FFD49} - System32\Tasks\fepha => C:\Users\hülya\AppData\Local\fepha.bat [2014-06-29] ()
Task: {60BBA233-9176-47DB-A765-449030913BC3} - System32\Tasks\vdksahw => C:\Users\hülya\AppData\Local\vdksahw.bat [2014-06-29] ()
Task: {620AE4F4-3D0C-4964-BE5B-BE9623917F44} - System32\Tasks\xizdef => C:\Users\hülya\AppData\Local\xizdef.bat [2014-06-29] ()
Task: {641B4E72-E5DF-478A-9EF4-A8C55FAC8DA8} - System32\Tasks\cokxm => C:\Users\hülya\AppData\Local\cokxm.bat [2014-06-29] ()
Task: {6461850E-562D-4D74-ABB8-52C278DF4932} - System32\Tasks\ebfol => C:\Users\hülya\AppData\Local\ebfol.bat [2014-06-30] ()
Task: {652F6D13-3A2C-456D-AA42-432E1C123848} - System32\Tasks\ljivt => C:\Users\hülya\AppData\Local\ljivt.bat [2014-06-30] ()
Task: {65D249B5-790E-4809-9A23-E0E031A76C6E} - System32\Tasks\iauhbv => C:\Users\hülya\AppData\Local\iauhbv.bat [2014-06-29] ()
Task: {67DD9472-CD9F-4B05-9A65-91B026C1E00F} - System32\Tasks\kwtxbhko => C:\Users\hülya\AppData\Local\kwtxbhko.bat [2014-06-29] ()
Task: {689D6BC5-814F-4873-AE60-376FA802D6C0} - System32\Tasks\prtvey => C:\Users\hülya\AppData\Local\prtvey.bat [2014-06-29] ()
Task: {68D478EC-2255-4ABD-907E-7DA1DDFD3BF6} - System32\Tasks\rdpsgibx => C:\Users\hülya\AppData\Local\rdpsgibx.bat [2014-06-29] ()
Task: {6A523003-2B95-4734-B337-00E53BB5F3DF} - System32\Tasks\Desk 365 RunAsStdUser => C:\Program Files (x86)\Desk 365\desk365.exe [2014-03-02] (337 Technology Limited.) <==== ATTENTION
Task: {6B1CE9E7-DC6B-4CBD-9539-372749998F13} - System32\Tasks\fkvoal => C:\Users\hülya\AppData\Local\fkvoal.bat [2014-06-29] ()
Task: {6BEF5BBD-0389-44A0-A137-3BB25148AE3D} - System32\Tasks\auaco => C:\Users\hülya\AppData\Local\auaco.bat [2014-06-29] ()
Task: {6E66F62F-887B-4D08-8634-14C152C364F5} - System32\Tasks\lqgmrpu => C:\Users\hülya\AppData\Local\lqgmrpu.bat [2014-06-29] ()
Task: {6F60DFE7-72EA-43E6-8512-EA836BDB9A5C} - System32\Tasks\yldjcn => C:\Users\hülya\AppData\Local\yldjcn.bat [2014-06-30] ()
Task: {70FD000E-56DB-4600-8B32-16C44906BBE6} - System32\Tasks\kheaxbbv => C:\Users\hülya\AppData\Local\kheaxbbv.bat [2014-07-01] ()
Task: {71873A24-1BA2-4757-866B-E437FF2D9101} - System32\Tasks\aocpc => C:\Users\hülya\AppData\Local\aocpc.bat [2014-06-29] ()
Task: {71A4E787-2FD1-420A-8D77-752F6FAF1433} - System32\Tasks\lcbpfk => C:\Users\hülya\AppData\Local\lcbpfk.bat [2014-06-30] ()
Task: {71E79AB4-5716-4AD5-935B-7FA43345FF74} - System32\Tasks\thlrdkxu => C:\Users\hülya\AppData\Local\thlrdkxu.bat [2014-06-29] ()
Task: {720331C6-F046-47B8-9C1A-0995E2298293} - System32\Tasks\nfnnu => C:\Users\hülya\AppData\Local\nfnnu.bat [2014-06-30] ()
Task: {72E8992A-8EBB-458F-BD16-86E3D74296EF} - System32\Tasks\ruxjmqcg => C:\Users\hülya\AppData\Local\ruxjmqcg.bat [2014-06-29] ()
Task: {754469BD-4901-4721-AF23-DA6CABA4F5F2} - System32\Tasks\noohhij => C:\Users\hülya\AppData\Local\noohhij.bat [2014-06-30] ()
Task: {75E33068-8412-4DDA-BE8B-2C85664E47C1} - System32\Tasks\xrunfjc => C:\Users\hülya\AppData\Local\xrunfjc.bat [2014-06-29] ()
Task: {75E5ED00-EEB6-4281-99B9-C6DCC57FA701} - System32\Tasks\aocpcqer => C:\Users\hülya\AppData\Local\aocpcqer.bat [2014-06-29] ()
Task: {77719AA2-7EBA-4F18-9D4B-026FDDE7ACF1} - System32\Tasks\ruxcmqt => C:\Users\hülya\AppData\Local\ruxcmqt.bat [2014-06-30] ()
Task: {78649AB2-FFDD-445F-AFB2-2FE019C9AFAB} - System32\Tasks\fgnngg => C:\Users\hülya\AppData\Local\fgnngg.bat [2014-06-30] ()
Task: {78EE32A3-ADA0-444C-A4C9-775F688F4CA0} - System32\Tasks\wfoefpa => C:\Users\hülya\AppData\Local\wfoefpa.bat [2014-06-30] ()
Task: {79B98B05-AA76-4ABF-879D-EB9E5A9B23B0} - System32\Tasks\trxvdah => C:\Users\hülya\AppData\Local\trxvdah.bat [2014-06-29] ()
Task: {7ACE8D35-B669-4709-B111-DE0DA6EEA840} - System32\Tasks\zuhtgb => C:\Users\hülya\AppData\Local\zuhtgb.bat [2014-06-29] ()
Task: {7AD3995D-E230-4F42-884A-C437DA0A05A4} - System32\Tasks\thbbobwc => C:\Users\hülya\AppData\Local\thbbobwc.bat [2014-06-29] ()
Task: {7B0FF46C-493F-4460-B1FD-8E87D9B01048} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-10] (Google Inc.)
Task: {7BFBBD90-86CD-4913-AD37-C108A8484A8D} - System32\Tasks\wxxabbdl => C:\Users\hülya\AppData\Local\wxxabbdl.bat [2014-06-30] ()
Task: {7C1CE95D-69B2-4AF3-945D-9DBE43255C89} - System32\Tasks\reiba => C:\Users\hülya\AppData\Local\reiba.bat [2014-06-29] ()
Task: {7D8A7BD2-6688-4E31-B4A2-C785F0EA0B94} - System32\Tasks\kifbcee => C:\Users\hülya\AppData\Local\kifbcee.bat [2014-06-29] ()
Task: {7E1BEBF9-737C-4F94-B86E-D6EF4033AEA5} - System32\Tasks\dngoeo => C:\Users\hülya\AppData\Local\dngoeo.bat [2014-06-29] ()
Task: {800ACEB1-5D47-43E7-8357-4007D13BC60E} - System32\Tasks\sfzekgc => C:\Users\hülya\AppData\Local\sfzekgc.bat [2014-06-29] ()
Task: {8058F0C1-FC30-45F0-8AD7-E4DA497F8404} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-10] (Google Inc.)
Task: {8172037B-A046-4D16-89F4-5F951A66BB72} - System32\Tasks\aaunbtn => C:\Users\hülya\AppData\Local\aaunbtn.bat [2014-06-29] ()
Task: {824B71C5-D519-49E6-A71A-46EFB2B8BA9D} - System32\Tasks\ahubocp => C:\Users\hülya\AppData\Local\ahubocp.bat [2014-06-29] ()
Task: {838900BC-2D5D-4ADE-9B6F-ECD03BB60242} - System32\Tasks\ghpaijjd => C:\Users\hülya\AppData\Local\ghpaijjd.bat [2014-06-29] ()
Task: {861E4BC1-4DA2-443A-A0D2-1634B879BA99} - System32\Tasks\qmgcmikg => C:\Users\hülya\AppData\Local\qmgcmikg.bat [2014-06-30] ()
Task: {8946DDA9-4B3E-4547-8B6A-7C5BA99CB269} - System32\Tasks\ovfemt => C:\Users\hülya\AppData\Local\ovfemt.bat [2014-06-30] ()
Task: {8BCE2817-AF58-4C19-B43E-4DE057B0A6DE} - System32\Tasks\lkifm => C:\Users\hülya\AppData\Local\lkifm.bat [2014-06-29] ()
Task: {8E1497A2-7437-4852-81F9-D3B631490EDC} - System32\Tasks\ztyse => C:\Users\hülya\AppData\Local\ztyse.bat [2014-06-30] ()
Task: {8E6B65F0-B741-41A8-9C9B-1E3CEAB7DDB1} - System32\Tasks\tbglafes => C:\Users\hülya\AppData\Local\tbglafes.bat [2014-06-29] ()
Task: {8E79F07B-95CD-4645-942B-C3AE2D12E390} - System32\Tasks\piqzluev => C:\Users\hülya\AppData\Local\piqzluev.bat [2014-06-29] ()
Task: {8F169992-2BE0-4159-A0C6-7143D3E8D7D8} - System32\Tasks\fvngogw => C:\Users\hülya\AppData\Local\fvngogw.bat [2014-06-30] ()
Task: {8FC0A992-B71F-43F1-B90F-7FA86194027D} - System32\Tasks\aavaouj => C:\Users\hülya\AppData\Local\aavaouj.bat [2014-06-29] ()
Task: {926F1ACC-A8B5-41F5-A1F2-26A90172DF4B} - System32\Tasks\jehlnce => C:\Users\hülya\AppData\Local\jehlnce.bat [2014-06-30] ()
Task: {9349611F-B0E9-4DD6-B0C7-842A3486B928} - System32\Tasks\ajuhbdv => C:\Users\hülya\AppData\Local\ajuhbdv.bat [2014-06-29] ()
Task: {963968DC-D863-4CB2-BB6C-A7D127E8EDBE} - System32\Tasks\ccafn => C:\Users\hülya\AppData\Local\ccafn.bat [2014-06-29] ()
Task: {988EC6A3-A1C2-4904-964D-620FE01BF65E} - System32\Tasks\ifauytq => C:\Users\hülya\AppData\Local\ifauytq.bat [2014-06-29] ()
Task: {998331A9-9B82-42D4-9CA5-3130E6E17765} - System32\Tasks\ijlmopq => C:\Users\hülya\AppData\Local\ijlmopq.bat [2014-06-30] ()
Task: {99B953C5-8F47-4F20-AF56-398C4EDA0FF2} - System32\Tasks\rvaeitxc => C:\Users\hülya\AppData\Local\rvaeitxc.bat [2014-06-29] ()
Task: {9A50B2C4-399B-46E0-91D2-8EDCDF29B8AF} - System32\Tasks\numsabiy => C:\Users\hülya\AppData\Local\numsabiy.bat [2014-06-29] ()
Task: {9A5ED1F3-0FAA-47B5-8B83-C090F372D7DE} - System32\Tasks\oopqhiaa => C:\Users\hülya\AppData\Local\oopqhiaa.bat [2014-06-30] ()
Task: {9AB2D5C9-203A-4B74-9A05-7BCC813D73F2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {9AB5F8F0-D027-42AE-B50D-1DB2F2038AD4} - System32\Tasks\ilvab => C:\Users\hülya\AppData\Local\ilvab.bat [2014-06-29] ()
Task: {9B656019-8717-4F50-B307-FFD0E9EDFC59} - System32\Tasks\efqidtef => C:\Users\hülya\AppData\Local\efqidtef.bat [2014-06-29] ()
Task: {9D9A9DCE-F3E0-4E2E-8AFD-37EB13AC3109} - System32\Tasks\cxuqfu => C:\Users\hülya\AppData\Local\cxuqfu.bat [2014-06-29] ()
Task: {9DAB3329-4B8F-4E3E-8440-A4ACB03FE547} - System32\Tasks\cnaupdx => C:\Users\hülya\AppData\Local\cnaupdx.bat [2014-06-29] ()
Task: {A28DBF92-7557-489A-B963-6E03825A71A1} - System32\Tasks\gffffee => C:\Users\hülya\AppData\Local\gffffee.bat [2014-06-29] ()
Task: {A2C2E07E-BB93-4129-AE38-461AECF0E24D} - System32\Tasks\ubovd => C:\Users\hülya\AppData\Local\ubovd.bat [2014-06-29] ()
Task: {A3280C68-2EEC-4998-B3CE-2E02F7F6C3E9} - System32\Tasks\xgxiyqsd => C:\Users\hülya\AppData\Local\xgxiyqsd.bat [2014-07-01] ()
Task: {A4869F99-353C-4606-89A1-C223F6A54402} - System32\Tasks\nveck => C:\Users\hülya\AppData\Local\nveck.bat [2014-06-30] ()
Task: {A53A4869-6F74-4B7D-87B2-22EB4AFDF8E8} - System32\Tasks\ykvbmx => C:\Users\hülya\AppData\Local\ykvbmx.bat [2014-06-29] ()
Task: {A5944D10-25F0-464F-A68B-02953F7B9158} - System32\Tasks\eudbraxo => C:\Users\hülya\AppData\Local\eudbraxo.bat [2014-06-29] ()
Task: {A5D91D02-D5A1-4C59-9F92-1699AE788D25} - System32\Tasks\vveeettb => C:\Users\hülya\AppData\Local\vveeettb.bat [2014-06-29] ()
Task: {A606AD13-2436-440B-943D-F1AAABEDB934} - System32\Tasks\eulkcjbf => C:\Users\hülya\AppData\Local\eulkcjbf.bat [2014-06-30] ()
Task: {A67C9463-685A-4967-A41E-B3148CD6A6BC} - System32\Tasks\daechca => C:\Users\hülya\AppData\Local\daechca.bat [2014-06-29] ()
Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {A78C741A-A1E2-4789-9CDE-09B601CA7046} - System32\Tasks\qlgqlgjm => C:\Users\hülya\AppData\Local\qlgqlgjm.bat [2014-06-29] ()
Task: {A7E36B8D-396C-4483-A569-463DC93C724D} - System32\Tasks\aiwkxfb => C:\Users\hülya\AppData\Local\aiwkxfb.bat [2014-06-30] ()
Task: {A8B6E5A5-879A-4E85-A312-8458AE982583} - System32\Tasks\icreymhc => C:\Users\hülya\AppData\Local\icreymhc.bat [2014-06-29] ()
Task: {A8EE6C19-F511-4C55-8A38-02D4F813557A} - System32\Tasks\qnifi => C:\Users\hülya\AppData\Local\qnifi.bat [2014-06-29] ()
Task: {ACD534AC-70D7-4FB2-8DAF-74E987E6B4BA} - System32\Tasks\tbeerxvb => C:\Users\hülya\AppData\Local\tbeerxvb.bat [2014-06-30] ()
Task: {AEB92FBA-FC77-4DC6-BEDC-DC2F184B6E53} - System32\Tasks\gphqpz => C:\Users\hülya\AppData\Local\gphqpz.bat [2014-06-29] ()
Task: {B12D852B-B7BD-4568-9A6E-5ED8C309E513} - System32\Tasks\lqntf => C:\Users\hülya\AppData\Local\lqntf.bat [2014-06-30] ()
Task: {B20AB0DD-F8D5-42A5-89B6-7CD6FEBE6FAF} - System32\Tasks\kgjoch => C:\Users\hülya\AppData\Local\kgjoch.bat [2014-06-29] ()
Task: {B3B787E3-05EA-4AD7-8B5A-89B8C7FA9964} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company)
Task: {B5938A3A-F2F9-475E-93A7-1339BAFF886F} - System32\Tasks\sxdjht => C:\Users\hülya\AppData\Local\sxdjht.bat [2014-06-30] ()
Task: {B739F915-5653-4652-93A5-EF7D3D56624B} - System32\Tasks\vlmck => C:\Users\hülya\AppData\Local\vlmck.bat [2014-06-29] ()
Task: {B7991E7E-2E88-4323-8C28-3C79A94E8C58} - System32\Tasks\hwooghw => C:\Users\hülya\AppData\Local\hwooghw.bat [2014-06-29] ()
Task: {B906D8DE-FC0D-4F3D-80D7-287DD24F2397} - System32\Tasks\quwaeg => C:\Users\hülya\AppData\Local\quwaeg.bat [2014-06-30] ()
Task: {BB5B613D-6E5B-4A57-B329-99D4C1F0A432} - System32\Tasks\cfcfnrnj => C:\Users\hülya\AppData\Local\cfcfnrnj.bat [2014-06-30] ()
Task: {BC11C765-DABF-44B7-9176-DDEE82F271CA} - System32\Tasks\ubpckyn => C:\Users\hülya\AppData\Local\ubpckyn.bat [2014-06-30] ()
Task: {BC5F0EB1-874B-4EB5-A0ED-E07C6F5540F1} - System32\Tasks\hcdeabo => C:\Users\hülya\AppData\Local\hcdeabo.bat [2014-06-30] ()
Task: {BD9E1970-D1A5-4199-9F5D-E30E1B532365} - System32\Tasks\xiscnx => C:\Users\hülya\AppData\Local\xiscnx.bat [2014-06-29] ()
Task: {BE6402BD-4AFF-4B85-967C-5F46259D9EEF} - System32\Tasks\tbgmtf => C:\Users\hülya\AppData\Local\tbgmtf.bat [2014-06-29] ()
Task: {BE6D85C9-71F8-47D1-8A60-1181E70DD79E} - System32\Tasks\izuvpicd => C:\Users\hülya\AppData\Local\izuvpicd.bat [2014-06-30] ()
Task: {BF95E05D-4546-4260-98E9-CA6EBA502FAC} - System32\Tasks\trwucgl => C:\Users\hülya\AppData\Local\trwucgl.bat [2014-06-30] ()
Task: {C024E3F3-C6A4-443B-9B0A-672AC60F19D4} - System32\Tasks\abpicxr => C:\Users\hülya\AppData\Local\abpicxr.bat [2014-07-01] ()
Task: {C0A4DF78-8E7A-40D2-83B8-7893C0CDBE69} - System32\Tasks\aaoibwj => C:\Users\hülya\AppData\Local\aaoibwj.bat [2014-06-29] ()
Task: {C290259F-7C92-4D66-BEF8-9FE0009E8954} - System32\Tasks\dynshwc => C:\Users\hülya\AppData\Local\dynshwc.bat [2014-07-01] ()
Task: {C45574D8-9670-430E-9E13-43206805F7C4} - System32\Tasks\numttcsa => C:\Users\hülya\AppData\Local\numttcsa.bat [2014-06-29] ()
Task: {C47B8539-5F62-4D35-A61F-295F0B217258} - System32\Tasks\daetq => C:\Users\hülya\AppData\Local\daetq.bat [2014-06-29] ()
Task: {C5940CD4-FDE8-4B8E-9A71-53E8DC0FC454} - System32\Tasks\qdfrefk => C:\Users\hülya\AppData\Local\qdfrefk.bat [2014-06-29] ()
Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {C7B7DCEF-F9C4-4BF6-92AD-3CE332BF24D8} - System32\Tasks\nooffg => C:\Users\hülya\AppData\Local\nooffg.bat [2014-06-29] ()
Task: {C9650B7D-DCE4-41C1-AFDE-FD06AFE68E1D} - System32\Tasks\SaveSenseLiveUpdateTaskMachineCore => C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe [2014-07-02] (SaveSense) <==== ATTENTION
Task: {C9A895FD-1526-442B-BC8A-D445E17CA424} - System32\Tasks\kotxmqu => C:\Users\hülya\AppData\Local\kotxmqu.bat [2014-06-29] ()
Task: {CAD26C48-B6FE-4D24-9EE4-926880691377} - System32\Tasks\gofohwhp => C:\Users\hülya\AppData\Local\gofohwhp.bat [2014-06-29] ()
Task: {CC1E4D63-C63F-46F1-B6F4-E0D140BF649A} - System32\Tasks\kpmrotfu => C:\Users\hülya\AppData\Local\kpmrotfu.bat [2014-06-29] ()
Task: {CC48EE6F-CB41-4875-A85C-F9F8D32A9664} - System32\Tasks\ekhnlrhf => C:\Users\hülya\AppData\Local\ekhnlrhf.bat [2014-06-30] ()
Task: {CC9B1D1D-E51E-4C15-B8F2-8EB093517118} - System32\Tasks\mcbxwcs => C:\Users\hülya\AppData\Local\mcbxwcs.bat [2014-06-30] ()
Task: {CCD90FFF-114C-41F6-B82B-FBE83AE7D42C} - System32\Tasks\tqwtbw => C:\Users\hülya\AppData\Local\tqwtbw.bat [2014-06-30] ()
Task: {CD147F20-1A58-47A8-8A1B-3B5AED5571F7} - System32\Tasks\spuhd => C:\Users\hülya\AppData\Local\spuhd.bat [2014-06-30] ()
Task: {D15CC7EE-C8A2-470B-B325-84F205286FDB} - System32\Tasks\icwxl => C:\Users\hülya\AppData\Local\icwxl.bat [2014-06-29] ()
Task: {D1697C7E-8329-4A59-993F-9F34DAA8F64D} - System32\Tasks\quxbfilv => C:\Users\hülya\AppData\Local\quxbfilv.bat [2014-06-29] ()
Task: {D17A1BB3-25FC-43AF-A624-0A7FBA0C1D35} - System32\Tasks\jfjnqm => C:\Users\hülya\AppData\Local\jfjnqm.bat [2014-06-29] ()
Task: {D514C033-7349-4C69-A100-528356B5623F} - System32\Tasks\egqajsk => C:\Users\hülya\AppData\Local\egqajsk.bat [2014-06-29] ()
Task: {D5D84B94-6D3D-42A7-B15C-8ED8AE7228B5} - System32\Tasks\rvadoswa => C:\Users\hülya\AppData\Local\rvadoswa.bat [2014-06-29] ()
Task: {D608B439-DE2B-475F-A401-58BD7BDEE5A0} - System32\Tasks\rwimaepu => C:\Users\hülya\AppData\Local\rwimaepu.bat [2014-06-29] ()
Task: {D72D2678-9F94-4FB6-BD97-107A06FBC06F} - System32\Tasks\gfiaa => C:\Users\hülya\AppData\Local\gfiaa.bat [2014-06-29] ()
Task: {D8F85268-9F81-46B5-B111-92CBF3E99AC2} - System32\Tasks\prsudyb => C:\Users\hülya\AppData\Local\prsudyb.bat [2014-06-29] ()
Task: {D95314ED-9258-4DE5-8683-30EDA7B1220D} - System32\Tasks\lcbpg => C:\Users\hülya\AppData\Local\lcbpg.bat [2014-07-01] ()
Task: {D98236A6-4C09-4685-921C-0216D3F81C70} - System32\Tasks\ekaix => C:\Users\hülya\AppData\Local\ekaix.bat [2014-06-30] ()
Task: {D9C24D3D-1E96-4149-976B-C8A8E5671F56} - System32\Tasks\giqss => C:\Users\hülya\AppData\Local\giqss.bat [2014-06-29] ()
Task: {DA6F7414-D29C-49E6-AD75-B4872865D07A} - System32\Tasks\Advanced System Protector_startup => C:\Program Files (x86)\Advanced System Protector\AdvancedSystemProtector.exe <==== ATTENTION
Task: {DA989872-1AF9-4DB3-A7CF-4E6DDC179D24} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2012-07-27] (CyberLink)
Task: {DAB84BA7-5B7B-473C-B15C-0F94AB0364BD} - System32\Tasks\dafwmja => C:\Users\hülya\AppData\Local\dafwmja.bat [2014-06-29] ()
Task: {DB5A7EA2-30C0-42F4-9D49-5288BB2D4964} - System32\Tasks\lbgcbx => C:\Users\hülya\AppData\Local\lbgcbx.bat [2014-06-30] ()
Task: {DFAE457B-126E-4477-8D22-6079C0E1E198} - System32\Tasks\gaiccbvd => C:\Users\hülya\AppData\Local\gaiccbvd.bat [2014-06-29] ()
Task: {E174B46C-B997-4207-B944-B2ECA9BEBA4E} - System32\Tasks\wnfne => C:\Users\hülya\AppData\Local\wnfne.bat [2014-06-29] ()
Task: {E2851220-AE28-4D68-BDD6-26CD4D8F8164} - System32\Tasks\fwhaxi => C:\Users\hülya\AppData\Local\fwhaxi.bat [2014-06-30] ()
Task: {E4477F93-AA4C-47FE-983A-13CD8F94D6EC} - System32\Tasks\hysdwpba => C:\Users\hülya\AppData\Local\hysdwpba.bat [2014-06-29] ()
Task: {E5819868-D1CD-4AAE-82C9-A76ABBE34F1D} - System32\Tasks\lbffbzeu => C:\Users\hülya\AppData\Local\lbffbzeu.bat [2014-06-29] ()
Task: {E84AA2A9-9FEA-4956-9A62-6018F2C14BF1} - System32\Tasks\jvrui => C:\Users\hülya\AppData\Local\jvrui.bat [2014-06-29] ()
Task: {E876E42D-D979-44EE-96B9-C390CAF41CA8} - System32\Tasks\jdymi => C:\Users\hülya\AppData\Local\jdymi.bat [2014-06-30] ()
Task: {EAF211DF-A62D-4E53-A997-01464CFAB412} - System32\Tasks\ulccqgwd => C:\Users\hülya\AppData\Local\ulccqgwd.bat [2014-06-30] ()
Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {ECB474BA-F4BD-461C-8E56-1F6EDFAC2F77} - System32\Tasks\ukbhckaa => C:\Users\hülya\AppData\Local\ukbhckaa.bat [2014-06-29] ()
Task: {EDB7FE91-125B-4011-AF13-55D430E81AB0} - System32\Tasks\gohgohh => C:\Users\hülya\AppData\Local\gohgohh.bat [2014-06-29] ()
Task: {EE28C521-6703-468E-A49C-2B80220A57E3} - System32\Tasks\xdmos => C:\Users\hülya\AppData\Local\xdmos.bat [2014-06-29] ()
Task: {F021A13B-3484-4959-81B4-AB215DA86CF6} - System32\Tasks\wgwgw => C:\Users\hülya\AppData\Local\wgwgw.bat [2014-06-29] ()
Task: {F0CE2F94-3C90-4951-8CC1-874C225E747B} - System32\Tasks\SaveSenseLiveUpdateTaskMachineUA => C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe [2014-07-02] (SaveSense) <==== ATTENTION
Task: {F1480B1B-BF14-470F-AE3B-5E8BCBF8247B} - System32\Tasks\fqcdnfrr => C:\Users\hülya\AppData\Local\fqcdnfrr.bat [2014-06-29] ()
Task: {F464C78B-BD13-471C-AC49-A0B54E800656} - System32\Tasks\reibflg => C:\Users\hülya\AppData\Local\reibflg.bat [2014-06-29] ()
Task: {F4BE6778-4098-4722-B633-B180C30DE00F} - System32\Tasks\qcuecu => C:\Users\hülya\AppData\Local\qcuecu.bat [2014-06-30] ()
Task: {F63CCB61-2DE5-41B2-9C6B-E922B3F8D885} - System32\Tasks\xdmoi => C:\Users\hülya\AppData\Local\xdmoi.bat [2014-06-30] ()
Task: {F67F34D6-3919-4295-8F60-55F8AA4C2429} - System32\Tasks\bdadk => C:\Users\hülya\AppData\Local\bdadk.bat [2014-06-30] ()
Task: {F6D10048-3DA6-4B44-B787-1E155421C58C} - System32\Tasks\dulctdar => C:\Users\hülya\AppData\Local\dulctdar.bat [2014-06-29] ()
Task: {F7889F20-093C-4080-A42D-7EC64D5188D6} - System32\Tasks\eddzr => C:\Users\hülya\AppData\Local\eddzr.bat [2014-06-29] ()
Task: {F8F4A4C1-A5FB-4788-B6F6-FFF191DFB75A} - System32\Tasks\rwbfruh => C:\Users\hülya\AppData\Local\rwbfruh.bat [2014-06-29] ()
Task: {F980B98C-2411-437F-B696-D94A7908B4CB} - System32\Tasks\idxsnplf => C:\Users\hülya\AppData\Local\idxsnplf.bat [2014-06-29] ()
Task: {FB156CEB-3C7B-4431-8D98-25DBF09DF1B5} - System32\Tasks\pxrbjdlu => C:\Users\hülya\AppData\Local\pxrbjdlu.bat [2014-06-29] ()
Task: {FC095D12-63A0-4BEE-8D1B-09D73CE6BE26} - System32\Tasks\cpdlguc => C:\Users\hülya\AppData\Local\cpdlguc.bat [2014-06-29] ()
Task: {FE5899FA-8A60-445F-8303-B4D11A39D522} - System32\Tasks\gxqja => C:\Users\hülya\AppData\Local\gxqja.bat [2014-06-29] ()
Task: {FE9ADDA0-AC34-4EF3-84F0-D3A05F8C3927} - System32\Tasks\eblbzi => C:\Users\hülya\AppData\Local\eblbzi.bat [2014-06-29] ()
Task: {FF52B84E-E9B5-4257-B6C4-867F279D4C9F} - System32\Tasks\beiuye => C:\Users\hülya\AppData\Local\beiuye.bat [2014-06-30] ()
Task: C:\Windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\APSnotifierPP2.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\APSnotifierPP3.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3460895242-2686779407-2708491527-1002Core.job => C:\Users\hülya\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForhülya.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\Windows\Tasks\Rocket Updater.job => C:\Users\HLYA~1\AppData\Roaming\ROCKET~1\UPDATE~1\UPDATE~1.EXE
Task: C:\Windows\Tasks\SaveSense.job => C:\Users\HLYA~1\AppData\Roaming\SAVESE~1\UPDATE~1\UPDATE~1.EXE
Task: C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineCore.job => C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe <==== ATTENTION
Task: C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineUA.job => C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe <==== ATTENTION

==================== Loaded Modules (whitelisted) =============

2014-05-18 14:26 - 2014-07-03 16:38 - 00665296 _____ () C:\Program Files (x86)\Movies Toolbar\SafetyNut\x64\safetycrt.dll
2012-07-18 07:55 - 2012-07-18 07:55 - 00028160 _____ () C:\Windows\system32\valWBFPolicyService.exe
2012-08-10 01:36 - 2012-08-10 01:36 - 04073320 _____ () C:\Program Files (x86)\HP SimplePass\IEWebSiteLogon.exe
2012-09-25 10:52 - 2012-07-28 02:31 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2014-02-18 15:38 - 2014-02-18 15:38 - 00012288 _____ () C:\Program Files (x86)\MyPC Backup\GetText.dll
2014-02-18 15:32 - 2014-02-18 15:32 - 01102336 _____ () C:\Program Files (x86)\MyPC Backup\x64\System.Data.SQLite.dll
2014-05-18 14:26 - 2014-07-03 16:38 - 00489680 _____ () C:\Program Files (x86)\Movies Toolbar\SafetyNut\safetycrt.dll
2014-03-02 19:42 - 2014-03-02 19:42 - 00186496 _____ () c:\Program Files (x86)\Optimizer Pro\OptProCrashSvc.dll
2014-03-02 19:42 - 2014-03-02 19:42 - 02961368 _____ () c:\Program Files (x86)\Optimizer Pro\OptProCrash.dll
2013-06-17 13:35 - 2013-06-17 13:35 - 00478400 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\dblite.dll
2013-05-08 15:52 - 2013-05-08 15:52 - 01270464 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\kpcengine.2.3.dll
2014-05-18 14:26 - 2014-07-03 16:38 - 00019664 _____ () C:\Program Files (x86)\Movies Toolbar\SafetyNut\safetyldr.dll
2012-08-10 01:36 - 2012-08-10 01:36 - 00018792 _____ () C:\Program Files (x86)\HP SimplePass\DownloadManager.dll
2012-09-25 11:16 - 2012-06-08 05:34 - 00627216 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll
2012-06-08 11:34 - 2012-06-08 11:34 - 00016400 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll
2014-02-21 14:12 - 2014-02-21 14:12 - 00017920 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\PSIClient\84687ccf62e0c74eca063ab0386f530f\PSIClient.ni.dll
2012-09-25 10:51 - 2012-06-25 20:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2014-06-18 19:36 - 2014-06-05 15:58 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\libglesv2.dll
2014-06-18 19:36 - 2014-06-05 15:58 - 00126280 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\libegl.dll
2014-06-18 19:36 - 2014-06-05 15:58 - 04217672 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll
2014-06-18 19:36 - 2014-06-05 15:58 - 00414536 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll
2014-06-18 19:36 - 2014-06-05 15:58 - 01732424 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ffmpegsumo.dll
2014-07-12 13:20 - 2014-07-08 08:18 - 14663856 _____ () C:\Users\hülya\AppData\Local\Google\Chrome\User Data\PepperFlash\14.0.0.145\pepflashplayer.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\Temp:223BB3A1

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

HKCU\...\StartupApproved\Run: => "Facebook Update"
HKCU\...\StartupApproved\Run: => "Skype"
HKCU\...\StartupApproved\Run: => "Optimizer Pro"
HKCU\...\StartupApproved\Run: => "FLV Player"

==================== Faulty Device Manager Devices =============

Name: USB-IF xHCI USB Host Controller
Description: USB-IF xHCI USB Host Controller
Class Guid: {8a2edc79-c759-46f2-88af-9d4efe3b5eee}
Manufacturer: Intel Corporation
Service: XHCIPort
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver

Name: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter
Description: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter
Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974}
Manufacturer: Intel Corporation
Service: BTHUSB
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (07/24/2014 08:18:47 PM) (Source: System Restore) (EventID: 8210) (User: )
Description: Unbekannter Fehler bei der Systemwiederherstellung: (Windows Update). Zusätzliche Informationen: 0x80070005.

Error: (07/24/2014 07:28:12 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: ZeroConfigService.exe, Version: 15.5.0.2, Zeitstempel: 0x50070789
Name des fehlerhaften Moduls: MurocApi.dll, Version: 15.5.0.1, Zeitstempel: 0x500706ce
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000026390
ID des fehlerhaften Prozesses: 0x9ec
Startzeit der fehlerhaften Anwendung: 0xZeroConfigService.exe0
Pfad der fehlerhaften Anwendung: ZeroConfigService.exe1
Pfad des fehlerhaften Moduls: ZeroConfigService.exe2
Berichtskennung: ZeroConfigService.exe3
Vollständiger Name des fehlerhaften Pakets: ZeroConfigService.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ZeroConfigService.exe5

Error: (07/24/2014 05:14:57 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 79765

Error: (07/24/2014 05:14:57 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 79765

Error: (07/24/2014 05:14:57 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (07/24/2014 04:53:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1326438

Error: (07/24/2014 04:53:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1326438

Error: (07/24/2014 04:53:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (07/24/2014 04:30:56 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1235

Error: (07/24/2014 04:30:56 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1235


System errors:
=============
Error: (07/24/2014 08:17:47 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Computer Backup (MyPC Backup)" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (07/24/2014 08:17:47 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Computer Backup (MyPC Backup) erreicht.

Error: (07/24/2014 07:28:21 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Intel(R) PROSet/Wireless Zero Configuration Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (07/24/2014 07:27:20 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎24.‎07.‎2014 um 19:26:12 unerwartet heruntergefahren.

Error: (07/24/2014 05:55:21 PM) (Source: DCOM) (EventID: 10016) (User: HÜLYA)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}hülyahülyaS-1-5-21-3460895242-2686779407-2708491527-1002LocalHost (unter Verwendung von LRPC)OTARISInteractiveServices.SpeedMonitor_1.0.5.3_x64__kxyeky6xjfeq8S-1-15-2-1912500620-2801568488-3958178919-2096927240-2617767298-3541220994-2409111165

Error: (07/24/2014 05:55:21 PM) (Source: DCOM) (EventID: 10016) (User: HÜLYA)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}hülyahülyaS-1-5-21-3460895242-2686779407-2708491527-1002LocalHost (unter Verwendung von LRPC)OTARISInteractiveServices.SpeedMonitor_1.0.5.3_x64__kxyeky6xjfeq8S-1-15-2-1912500620-2801568488-3958178919-2096927240-2617767298-3541220994-2409111165

Error: (07/24/2014 04:53:14 PM) (Source: DCOM) (EventID: 10016) (User: HÜLYA)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}hülyahülyaS-1-5-21-3460895242-2686779407-2708491527-1002LocalHost (unter Verwendung von LRPC)OTARISInteractiveServices.SpeedMonitor_1.0.5.3_x64__kxyeky6xjfeq8S-1-15-2-1912500620-2801568488-3958178919-2096927240-2617767298-3541220994-2409111165

Error: (07/24/2014 04:53:14 PM) (Source: DCOM) (EventID: 10016) (User: HÜLYA)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}hülyahülyaS-1-5-21-3460895242-2686779407-2708491527-1002LocalHost (unter Verwendung von LRPC)OTARISInteractiveServices.SpeedMonitor_1.0.5.3_x64__kxyeky6xjfeq8S-1-15-2-1912500620-2801568488-3958178919-2096927240-2617767298-3541220994-2409111165

Error: (07/24/2014 04:28:05 PM) (Source: DCOM) (EventID: 10016) (User: HÜLYA)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}hülyahülyaS-1-5-21-3460895242-2686779407-2708491527-1002LocalHost (unter Verwendung von LRPC)OTARISInteractiveServices.SpeedMonitor_1.0.5.3_x64__kxyeky6xjfeq8S-1-15-2-1912500620-2801568488-3958178919-2096927240-2617767298-3541220994-2409111165

Error: (07/24/2014 04:28:05 PM) (Source: DCOM) (EventID: 10016) (User: HÜLYA)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}hülyahülyaS-1-5-21-3460895242-2686779407-2708491527-1002LocalHost (unter Verwendung von LRPC)OTARISInteractiveServices.SpeedMonitor_1.0.5.3_x64__kxyeky6xjfeq8S-1-15-2-1912500620-2801568488-3958178919-2096927240-2617767298-3541220994-2409111165


Microsoft Office Sessions:
=========================
Error: (07/24/2014 08:18:47 PM) (Source: System Restore) (EventID: 8210) (User: )
Description: Windows Update0x80070005

Error: (07/24/2014 07:28:12 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: ZeroConfigService.exe15.5.0.250070789MurocApi.dll15.5.0.1500706cec000000500000000000263909ec01cfa76495677bd3C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exeC:\Program Files\Intel\WiFi\bin\MurocApi.dlle289f939-1357-11e4-8047-a0b3cc484fc9

Error: (07/24/2014 05:14:57 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 79765

Error: (07/24/2014 05:14:57 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 79765

Error: (07/24/2014 05:14:57 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (07/24/2014 04:53:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1326438

Error: (07/24/2014 04:53:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1326438

Error: (07/24/2014 04:53:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (07/24/2014 04:30:56 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1235

Error: (07/24/2014 04:30:56 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1235


==================== Memory info =========================== 

Percentage of memory in use: 32%
Total physical RAM: 8081.27 MB
Available physical RAM: 5476.96 MB
Total Pagefile: 9297.27 MB
Available Pagefile: 6214.75 MB
Total Virtual: 8192 MB
Available Virtual: 8191.77 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:446.91 GB) (Free:369.49 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (RECOVERY) (Fixed) (Total:18.07 GB) (Free:2.27 GB) NTFS ==>[System with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 466 GB) (Disk ID: A50E1C7D)

Partition: GPT Partition Type.

==================== End Of Log ============================
         
Meister Kurze Info an dich:


Habe FRST Editor in 2 aufgeteilt und Addition in einem Stück.


Danke bis dann

Alt 24.07.2014, 21:49   #8
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
bat=exe konnte nicht gefunden werden. - Standard

bat=exe konnte nicht gefunden werden.



Randvoll mit Junkware...

Adware/Junkware/Toolbars entfernen


1. Schritt: adwCleaner

Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).




2. Schritt: JRT - Junkware Removal Tool

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.




3. Schritt: Frisches Log mit FRST

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)

__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Alt 24.07.2014, 22:22   #9
Romiero
 
bat=exe konnte nicht gefunden werden. - Standard

bat=exe konnte nicht gefunden werden.



Hallo und zurück bin ich wieder... bevor ich weiter mache teile ich dir schon mal den bericht mit










Code:
ATTFilter
# AdwCleaner v3.216 - Bericht erstellt am 24/07/2014 um 22:03:07
# Aktualisiert 17/07/2014 von Xplode
# Betriebssystem : Windows 8  (64 bits)
# Benutzername : hülya - HÜLYA
# Gestartet von : C:\Users\hülya\Desktop\adwcleaner_3.216.exe


# Option : Löschen

***** [ Dienste ] *****

Dienst Gelöscht : 70e6ca8c
[#] Dienst Gelöscht : APNMCP
[#] Dienst Gelöscht : BackupStack
[#] Dienst Gelöscht : desksvc
[#] Dienst Gelöscht : F06DEFF2-5B9C-490D-910F-35D3A9119622
[#] Dienst Gelöscht : LPTSystemUpdater
[#] Dienst Gelöscht : SafetyNutManager
[#] Dienst Gelöscht : savesenselive
[#] Dienst Gelöscht : savesenselivem

***** [ Dateien / Ordner ] *****

Ordner Gelöscht : C:\ProgramData\apn
Ordner Gelöscht : C:\ProgramData\AskPartnerNetwork
Ordner Gelöscht : C:\ProgramData\IePluginService
Ordner Gelöscht : C:\ProgramData\MovieMode
[!] Ordner Gelöscht : C:\ProgramData\SafetyNut
Ordner Gelöscht : C:\ProgramData\SaveSenseLive
Ordner Gelöscht : C:\ProgramData\wincert
Ordner Gelöscht : C:\ProgramData\WPM
Ordner Gelöscht : C:\ProgramData\LuckyCouPoon
Ordner Gelöscht : C:\ProgramData\TicTaaCooupon
Ordner Gelöscht : C:\ProgramData\TuicTaCoupon
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\optimizer pro v3.2
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PriceGong
Ordner Gelöscht : C:\Program Files (x86)\AskPartnerNetwork
Ordner Gelöscht : C:\Program Files (x86)\ChatZum Toolbar
Ordner Gelöscht : C:\Program Files (x86)\Desk 365
Ordner Gelöscht : C:\Program Files (x86)\Freecorder extension
Ordner Gelöscht : C:\Program Files (x86)\globalUpdate
Ordner Gelöscht : C:\Program Files (x86)\GreenTree Applications
Ordner Gelöscht : C:\Program Files (x86)\LPT
[!] Ordner Gelöscht : C:\Program Files (x86)\Movies Toolbar
Ordner Gelöscht : C:\Program Files (x86)\MyPC Backup
Ordner Gelöscht : C:\Program Files (x86)\Optimizer Pro
Ordner Gelöscht : C:\Program Files (x86)\predm
Ordner Gelöscht : C:\Program Files (x86)\PriceGong
Ordner Gelöscht : C:\Program Files (x86)\SaveSenseLive
Ordner Gelöscht : C:\Program Files (x86)\SupTab
Ordner Gelöscht : C:\Program Files (x86)\LuckyCouPoon
Ordner Gelöscht : C:\Program Files (x86)\Common Files\337
Ordner Gelöscht : C:\Program Files\Freecorder extension
Ordner Gelöscht : C:\Users\hülya\AppData\Local\AskPartnerNetwork
Ordner Gelöscht : C:\Users\hülya\AppData\Local\Browsersafeguard
Ordner Gelöscht : C:\Users\hülya\AppData\Local\FilesFrog Update Checker
Ordner Gelöscht : C:\Users\hülya\AppData\Local\globalUpdate
Ordner Gelöscht : C:\Users\hülya\AppData\Local\LPT
Ordner Gelöscht : C:\Users\hülya\AppData\Local\SaveSense
Ordner Gelöscht : C:\Users\hülya\AppData\Local\SaveSenseLive
Ordner Gelöscht : C:\Users\hülya\AppData\Local\Smartbar
Ordner Gelöscht : C:\Users\hülya\AppData\Local\webplayer
Ordner Gelöscht : C:\Users\HLYA~1\AppData\Local\Temp\apn
Ordner Gelöscht : C:\Users\HLYA~1\AppData\Local\Temp\Desk365
Ordner Gelöscht : C:\Users\HLYA~1\AppData\Local\Temp\Smartbar
Ordner Gelöscht : C:\Users\hülya\AppData\LocalLow\DataMngr
Ordner Gelöscht : C:\Users\hülya\AppData\LocalLow\Smartbar
Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\Desk 365
Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\quickclick
Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\RocketUpdater
Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\SaveSense
Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\SupTab
Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\Systweak
Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\Uniblue
Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker
Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup
Ordner Gelöscht : C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SaveSense
Ordner Gelöscht : C:\Users\hülya\Documents\PC Speed Maximizer
Ordner Gelöscht : C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaimdcedbpbcjjbbnfcbbjcngmomic
Ordner Gelöscht : C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok
Ordner Gelöscht : C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibnjmihbbanannlbobkbmnmckjnmdnom
Ordner Gelöscht : C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg
Ordner Gelöscht : C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkidpnnapnfgjhfhkpmjpbckkbaodldb
Datei Gelöscht : C:\END
Datei Gelöscht : C:\Users\Public\Desktop\eBay.lnk
Datei Gelöscht : C:\Users\Public\Desktop\iLivid.lnk
Datei Gelöscht : C:\Windows\System32\roboot64.exe
Datei Gelöscht : C:\Users\hülya\AppData\Local\AnyProtectScannerSetup.exe
Datei Gelöscht : C:\Users\hülya\AppData\Roaming\aps.uninstall.scan.results
Datei Gelöscht : C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk
Datei Gelöscht : C:\Users\hülya\Desktop\Continue VuuPC Installation.lnk
Datei Gelöscht : C:\Users\hülya\Desktop\MyPC Backup.lnk
Datei Gelöscht : C:\Users\hülya\Desktop\Optimizer Pro.lnk
Datei Gelöscht : C:\Users\hülya\Desktop\Sync Folder.lnk
Datei Gelöscht : C:\Windows\System32\Tasks\Advanced System Protector_startup
Datei Gelöscht : C:\Windows\Tasks\APSnotifierPP1.job
Datei Gelöscht : C:\Windows\Tasks\APSnotifierPP2.job
Datei Gelöscht : C:\Windows\Tasks\APSnotifierPP3.job
Datei Gelöscht : C:\Windows\System32\Tasks\Desk 365 RunAsStdUser
Datei Gelöscht : C:\Windows\Tasks\Rocket Updater.job
Datei Gelöscht : C:\Windows\System32\Tasks\Rocket Updater
Datei Gelöscht : C:\Windows\Tasks\SaveSense.job
Datei Gelöscht : C:\Windows\System32\Tasks\SaveSense
Datei Gelöscht : C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineCore.job
Datei Gelöscht : C:\Windows\System32\Tasks\SaveSenseLiveUpdateTaskMachineCore
Datei Gelöscht : C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineUA.job
Datei Gelöscht : C:\Windows\System32\Tasks\SaveSenseLiveUpdateTaskMachineUA
Datei Gelöscht : C:\Windows\System32\Tasks\SomotoUpdateCheckerAutoStart

***** [ Verknüpfungen ] *****

Verknüpfung Desinfiziert : C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLV Player\Uninstall.lnk

***** [ Registrierungsdatenbank ] *****

Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaimdcedbpbcjjbbnfcbbjcngmomic
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\blbkdnmdcafmfhinpmnlhhddbepgkeaa
Schlüssel Gelöscht : HKCU\Software\Google\Chrome\Extensions\ibnjmihbbanannlbobkbmnmckjnmdnom
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\ibnjmihbbanannlbobkbmnmckjnmdnom
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\ibnjmihbbanannlbobkbmnmckjnmdnom
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\pljcgbedjplidkdjahbaalanadmjfgop
Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [FLV Player]
Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Optimizer Pro]
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\AddonsFramework.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\ButtonSite.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\RegistryHelper.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\SaveSenseLive.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\ScriptHost.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.bandobjectattribute
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.bho
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.dockingpanel
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbar
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbarbandobject
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.smartbardisplaystate
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.smartbarmenuform
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\MoviesToolbarHelper.DNSGuard
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\MoviesToolbarHelper.DNSGuard.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLive.OneClickCtrl.9
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLive.OneClickProcessLauncherMachine
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLive.OneClickProcessLauncherMachine.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLive.Update3WebControl.3
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoCreateAsync
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoCreateAsync.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoreClass
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoreClass.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoreMachineClass
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoreMachineClass.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CredentialDialogMachine
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CredentialDialogMachine.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassMachine
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassMachine.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassMachineFallback
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassMachineFallback.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassSvc
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassSvc.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.ProcessLauncher
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.ProcessLauncher.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3COMClassService
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3COMClassService.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebMachine
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebMachine.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebMachineFallback
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebMachineFallback.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebSvc
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebSvc.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\speedupmypc
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\HomeTab_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\HomeTab_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\NewPlayer_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\NewPlayer_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\speedupmypc_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\speedupmypc_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mypc backup
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [AnyProtect Scanner]
Schlüssel Gelöscht : HKLM\SOFTWARE\MozillaPlugins\@tools.updaterss.com/SaveSenseLive Update;version=3
Schlüssel Gelöscht : HKLM\SOFTWARE\MozillaPlugins\@tools.updaterss.com/SaveSenseLive Update;version=9
Wert Gelöscht : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x64]
Wert Gelöscht : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x86]
Schlüssel Gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\DeskSvc
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TicuTeACoupon.TicuTeACoupon
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TicuTeACoupon.TicuTeACoupon.2.5
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TiicTaCoupOn.TiicTaCoupOn
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TiicTaCoupOn.TiicTaCoupOn.2.5
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\LuckyCoupeOn.LuckyCoupeOn
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\LuckyCoupeOn.LuckyCoupeOn.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{18B9B16E-716F-43DF-A6AD-512C7D2EB983}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{19975B78-1907-4DD6-A437-4C48120F46A4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{544C2426-48FD-4C40-AE3B-31257FF334D0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{562B9316-C08A-444A-9482-62080DD851AE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{562B9317-C08A-444A-9482-62080DD851AE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{A2D3FB7A-6873-45E8-AF96-57092D721828}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1917AB4C-E2E9-42AE-A51E-B5750F160BFB}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6C65F1F0-8088-414B-828C-813207ADE75A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{71E129FF-6C2A-4984-818C-7E2C998B8D99}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{998745A3-2AE4-488D-8092-B98FB20A00C2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A18D16ED-27B2-4B83-B70C-15E73F099546}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A2D3FB7A-6873-45E8-AF96-57092D721828}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A4341726-E922-47BB-86A6-23F4F4F67342}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{B15BBE59-42F5-4206-B3F0-BE98F5DC4B93}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{C1424421-D274-491E-9D47-11C8D8CB5F9A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{C9B4F046-2A8C-46BD-B1A1-CF0EAE5EA521}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{DCA1528D-A3C0-4A9F-AA6E-DCE643F91495}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{0976F393-E747-DCFE-31D0-860DE1FCBA82}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{795AE1C1-9CD3-7A5D-8535-AA853C8F4DD1}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{DE7A58CA-07FA-C20B-34CC-E36C0395F40E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{045F91B3-695F-423A-98C7-8DE3C47AA020}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1348BD1B-C32A-41A7-9BD4-5377AA1AB925}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{395AFE6E-8308-48DB-89BE-ED5F4AA3D3EC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{43969E3F-3E7C-4911-A8F1-79C6CA6AC731}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{43B390F0-6BA2-45CA-ABF2-5DB0CEE9B49D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{94CADA2E-1D3F-419F-8A3D-06C58EDF53C8}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9E52EB8B-8DD9-4605-AD36-D352BCD482F2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A1440EC3-F0FA-407A-B811-DE6668C06D29}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B887CA3B-D82B-4A01-AD29-E97444D01CE6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B9A84AD0-5777-46FD-8B8F-1EBD06750FBC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{BBBE01ED-0F1E-44DB-88C1-5CC1AEE3B462}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C1995F88-1C7F-40D7-B0FA-6F107F6308B8}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C815E3DA-0823-49B0-9270-D1771D58B317}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E4A994B0-5550-4680-A4C6-B9470B888069}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EE95078D-518C-4FD2-8093-FD1D4E33D3CA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F9EB11AB-9384-4736-9B33-993940F88895}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{71E129FF-6C2A-4984-818C-7E2C998B8D99}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B15BBE59-42F5-4206-B3F0-BE98F5DC4B93}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0976F393-E747-DCFE-31D0-860DE1FCBA82}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{795AE1C1-9CD3-7A5D-8535-AA853C8F4DD1}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{71E129FF-6C2A-4984-818C-7E2C998B8D99}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B15BBE59-42F5-4206-B3F0-BE98F5DC4B93}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0976F393-E747-DCFE-31D0-860DE1FCBA82}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{795AE1C1-9CD3-7A5D-8535-AA853C8F4DD1}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DE7A58CA-07FA-C20B-34CC-E36C0395F40E}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{71E129FF-6C2A-4984-818C-7E2C998B8D99}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B15BBE59-42F5-4206-B3F0-BE98F5DC4B93}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0976F393-E747-DCFE-31D0-860DE1FCBA82}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{795AE1C1-9CD3-7A5D-8535-AA853C8F4DD1}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DE7A58CA-07FA-C20B-34CC-E36C0395F40E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A18D16ED-27B2-4B83-B70C-15E73F099546}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{0976F393-E747-DCFE-31D0-860DE1FCBA82}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{795AE1C1-9CD3-7A5D-8535-AA853C8F4DD1}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DE7A58CA-07FA-C20B-34CC-E36C0395F40E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A18D16ED-27B2-4B83-B70C-15E73F099546}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{1917AB4C-E2E9-42AE-A51E-B5750F160BFB}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{6C65F1F0-8088-414B-828C-813207ADE75A}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{A4341726-E922-47BB-86A6-23F4F4F67342}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{B15BBE59-42F5-4206-B3F0-BE98F5DC4B93}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{C9B4F046-2A8C-46BD-B1A1-CF0EAE5EA521}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{DCA1528D-A3C0-4A9F-AA6E-DCE643F91495}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{0976F393-E747-DCFE-31D0-860DE1FCBA82}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{795AE1C1-9CD3-7A5D-8535-AA853C8F4DD1}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{DE7A58CA-07FA-C20B-34CC-E36C0395F40E}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{045F91B3-695F-423A-98C7-8DE3C47AA020}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{1348BD1B-C32A-41A7-9BD4-5377AA1AB925}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{395AFE6E-8308-48DB-89BE-ED5F4AA3D3EC}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{43969E3F-3E7C-4911-A8F1-79C6CA6AC731}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{43B390F0-6BA2-45CA-ABF2-5DB0CEE9B49D}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{94CADA2E-1D3F-419F-8A3D-06C58EDF53C8}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{9E52EB8B-8DD9-4605-AD36-D352BCD482F2}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{A1440EC3-F0FA-407A-B811-DE6668C06D29}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{B887CA3B-D82B-4A01-AD29-E97444D01CE6}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{B9A84AD0-5777-46FD-8B8F-1EBD06750FBC}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{BBBE01ED-0F1E-44DB-88C1-5CC1AEE3B462}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C1995F88-1C7F-40D7-B0FA-6F107F6308B8}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C815E3DA-0823-49B0-9270-D1771D58B317}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{E4A994B0-5550-4680-A4C6-B9470B888069}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{EE95078D-518C-4FD2-8093-FD1D4E33D3CA}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{F9EB11AB-9384-4736-9B33-993940F88895}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B15BBE59-42F5-4206-B3F0-BE98F5DC4B93}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0976F393-E747-DCFE-31D0-860DE1FCBA82}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{795AE1C1-9CD3-7A5D-8535-AA853C8F4DD1}
Wert Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Schlüssel Gelöscht : HKCU\Software\AnyProtect
Schlüssel Gelöscht : HKCU\Software\APN PIP
Schlüssel Gelöscht : HKCU\Software\APNDTX
Schlüssel Gelöscht : HKCU\Software\AskPartnerNetwork
Schlüssel Gelöscht : HKCU\Software\BI
Schlüssel Gelöscht : HKCU\Software\ChatZum Toolbar
Schlüssel Gelöscht : HKCU\Software\FreeSoftToday
Schlüssel Gelöscht : HKCU\Software\genesis
Schlüssel Gelöscht : HKCU\Software\GlobalUpdate
Schlüssel Gelöscht : HKCU\Software\Iminent
Schlüssel Gelöscht : HKCU\Software\InstallCore
Schlüssel Gelöscht : HKCU\Software\Optimizer Pro
Schlüssel Gelöscht : HKCU\Software\RocketUpdater
Schlüssel Gelöscht : HKCU\Software\SafetyNut
Schlüssel Gelöscht : HKCU\Software\SaveSense
Schlüssel Gelöscht : HKCU\Software\SaveSenseLive
Schlüssel Gelöscht : HKCU\Software\simplytech
Schlüssel Gelöscht : HKCU\Software\SmartBar
Schlüssel Gelöscht : HKCU\Software\smartbarbackup
Schlüssel Gelöscht : HKCU\Software\smartbarlog
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKCU\Software\Somoto
Schlüssel Gelöscht : HKCU\Software\systweak
Schlüssel Gelöscht : HKCU\Software\TutoTag
Schlüssel Gelöscht : HKCU\Software\Webplayer
Schlüssel Gelöscht : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\DynConIE
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\PriceGong
Schlüssel Gelöscht : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gelöscht : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Schlüssel Gelöscht : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Schlüssel Gelöscht : HKLM\Software\AskPartnerNetwork
Schlüssel Gelöscht : HKLM\Software\awesomehpSoftware
Schlüssel Gelöscht : HKLM\Software\ChatZum Toolbar
Schlüssel Gelöscht : HKLM\Software\DataMngr
Schlüssel Gelöscht : HKLM\Software\DealPlyLive
Schlüssel Gelöscht : HKLM\Software\Desksvc
Schlüssel Gelöscht : HKLM\Software\GlobalUpdate
Schlüssel Gelöscht : HKLM\Software\hdcode
Schlüssel Gelöscht : HKLM\Software\Iminent
Schlüssel Gelöscht : HKLM\Software\PIP
Schlüssel Gelöscht : HKLM\Software\SafetyNut
Schlüssel Gelöscht : HKLM\Software\SaveSenseLive
Schlüssel Gelöscht : HKLM\Software\SupTab
Schlüssel Gelöscht : HKLM\Software\supWPM
Schlüssel Gelöscht : HKLM\Software\systweak
Schlüssel Gelöscht : HKLM\Software\Tutorials
Schlüssel Gelöscht : HKLM\Software\Uniblue
Schlüssel Gelöscht : HKLM\Software\V9
Schlüssel Gelöscht : HKLM\Software\Wpm
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\BrowserSafeGuard
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\FLV Player
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SaveSense
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{BC0BF363-63AB-4FF7-8EF1-AE0D7F711B24}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Desk 365
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FilesFrog Update Checker
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freecorder extension
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PriceGong
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SaveSenseLive.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe

***** [ Browser ] *****

-\\ Internet Explorer v10.0.9200.17028

Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Search Bar]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Bar]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [SearchAssistant]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [Search Bar]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [Search Page]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Default_Search_URL]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Search Bar]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Search Page]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\SearchUrl []
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [Default]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl []
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]

-\\ Google Chrome v35.0.1916.153

[ Datei : C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Gelöscht [Startup_urls] : hxxp://www.search.ask.com/?o=APN10640A&gct=hp&d=473-113&v=a13277-274&t=4
Gelöscht [Homepage] : hxxp://www.search.ask.com/?o=APN10640A&gct=hp&d=473-113&v=a13277-274&t=4
Gelöscht [Extension] : aaaaimdcedbpbcjjbbnfcbbjcngmomic
Gelöscht [Extension] : bkomkajifikmkfnjgphkjcfeepbnojok
Gelöscht [Extension] : blbkdnmdcafmfhinpmnlhhddbepgkeaa
Gelöscht [Extension] : booedmolknjekdopkepjjeckmjkdpfgl
Gelöscht [Extension] : flpcjncodpafbgdpnkljologafpionhb
Gelöscht [Extension] : ibnjmihbbanannlbobkbmnmckjnmdnom
Gelöscht [Extension] : mkcedibhemacmilmkpndpkoidlnmgngg
Gelöscht [Extension] : pkidpnnapnfgjhfhkpmjpbckkbaodldb
Gelöscht [Extension] : pljcgbedjplidkdjahbaalanadmjfgop

*************************

AdwCleaner[R0].txt - [50807 octets] - [24/07/2014 22:02:03]
AdwCleaner[S0].txt - [44012 octets] - [24/07/2014 22:03:07]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [44073 octets] ##########
         
So JTR ist auch fertig nun mache ich FRST nocheinmal )












Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 8 x64
Ran by hlya on 24.07.2014 at 22:10:56,42
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{52db1893-8a90-4192-aede-08e00b8f8473}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{52db1893-8a90-4192-aede-08e00b8f8473}



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\ytd video downloader"
Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ytd video downloader"
Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{3F8F4B7A-6F55-481A-95C0-4F3FE1AA582D}
Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{4706463C-4B0D-4CF7-B55D-5D1C69B45A72}
Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{4706BF3E-9D06-476C-8975-11B6F64F1ED5}
Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{6C3D5C3B-433A-4A6B-A437-82D530A84D7E}
Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{6FD5EACC-03EA-4793-9EC5-08646C748321}
Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{7002FB38-3C18-4A47-8C9B-7C6699A4200E}
Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{7A71F82E-A808-46F1-96A9-F9605BA4A073}
Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{7E6773F3-6CF2-49F2-8F75-D871AB5D22C0}
Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{831AACF7-BD02-4A1C-93E6-621DD6E417F9}
Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{88DA6DB2-3899-43FA-895D-016566C8247A}
Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{A85C6324-D7B6-49FD-82B2-D8EC8199F583}
Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{A90487C2-BC22-4173-A0A9-24300613D4BB}
Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{AB6D36F8-A176-45FF-83CE-3AE16BC873F0}
Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{AFB4CE14-1EF5-4B90-8CAB-588D81E38B33}
Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{CC1B58D6-A5A6-4571-B1C2-070DCAE321EF}
Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{E7050A8B-3945-45EC-97F0-61713141A02E}
Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{EABEB0FA-EEF4-46E2-94A1-7FC04B66A7FE}
Successfully deleted: [Empty Folder] C:\Users\hlya\appdata\local\{FD644658-6736-4DC7-AEFD-0D251801A962}



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 24.07.2014 at 22:18:23,09
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         

Alt 24.07.2014, 22:27   #10
Romiero
 
bat=exe konnte nicht gefunden werden. - Standard

bat=exe konnte nicht gefunden werden.



FRST EDITOR TEIL 1


Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-07-2014 01
Ran by hülya (administrator) on HÜLYA on 24-07-2014 22:22:55
Running from C:\Users\hülya\Desktop
Platform: Windows 8 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 10
Boot Mode: Normal



==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(HP) C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AVM Berlin) C:\Program Files (x86)\avmwlanstick\WLanNetService.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
() C:\Windows\System32\valWBFPolicyService.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(AuthenTec Inc.) C:\Program Files (x86)\HP SimplePass\TouchControl.exe
() C:\Program Files (x86)\HP SimplePass\IEWebSiteLogon.exe
(AuthenTec, Inc.) C:\Program Files\Common Files\AuthenTec\TrueService.exe
(AuthenTec, Inc.) C:\Program Files\Common Files\AuthenTec\TrueService.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe
(AVM Berlin) C:\Program Files (x86)\avmwlanstick\WLanGUI.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avpui.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1425408 2012-07-24] (IDT, Inc.)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp 
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-25] (Synaptics Incorporated)
HKLM-x32\...\Run: [CLVirtualDrive] => C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491320 2012-07-26] (CyberLink Corp.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [580512 2012-07-31] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [HP CoolSense] => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [1343904 2012-11-05] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [AVMWlanClient] => C:\Program Files (x86)\avmwlanstick\wlangui.exe [2105344 2010-10-22] (AVM Berlin)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
HKLM-x32\...\Run: [fst_de_69] => [X]
HKLM-x32\...\Run: [AnyProtect Tray] => "C:\Program Files (x86)\AnyProtectEx\AnyProtectTrayIcon.exe"
HKLM\...\RunOnce: [NCPluginUpdater] => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [21720 2014-07-23] (Hewlett-Packard)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\Run: [Facebook Update] => C:\Users\hülya\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-04-21] (Facebook Inc.)
HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\Policies\Explorer: [DisallowRun] 1
HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\MountPoints2: {28b34250-eb9a-11e2-be88-246511c0e7fd} - "F:\LGAutoRun.exe" 
HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\MountPoints2: {5dfd6686-1c75-11e3-be90-246511c0e7fd} - "F:\LGAutoRun.exe" 
HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\MountPoints2: {e2c42221-4eec-11e3-beb1-84a6c84d5de5} - "H:\Startme.exe" 
HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\MountPoints2: {ef99e80f-98d0-11e2-be76-84a6c84d5de5} - "F:\pushinst.exe" 

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = 
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS
SearchScopes: HKLM - {52db1893-8a90-4192-aede-08e00b8f8473} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms}
SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
SearchScopes: HKLM - {E6DFA72B-E3A3-4EE5-89E2-D618E482A4D2} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = 
BHO: savinshoop -> {2ED8C2FC-2464-86BA-E541-740FB78AF4BD} -> C:\ProgramData\savinshoop\PRZ7D.x64.dll ()
BHO: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: savinshoop -> {2ED8C2FC-2464-86BA-E541-740FB78AF4BD} -> C:\ProgramData\savinshoop\PRZ7D.dll ()
BHO-x32: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
DPF: HKLM-x32 {8FEFF364-6A5F-4966-A917-A3AC28411659} hxxp://download.easetuner.com/download/SOPCORE.CAB
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 192.168.2.1

FireFox:
========
FF Plugin-x32: @authentec.com/ffwloplugin - C:\Program Files (x86)\HP SimplePass\npffwloplugin.dll ( HP)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\hülya\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF HKLM-x32\...\Firefox\Extensions:  - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\url_advisor@kaspersky.com
FF Extension: 卡巴斯基網址顧問 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\url_advisor@kaspersky.com [2013-11-06]
FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\virtual_keyboard@kaspersky.com
FF Extension: 虛擬鍵盤 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\virtual_keyboard@kaspersky.com [2013-11-06]
FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\content_blocker@kaspersky.com
FF Extension: 惡意網站攔截器 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\content_blocker@kaspersky.com [2013-11-06]
FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\anti_banner@kaspersky.com
FF Extension: Chặn quảng cáo - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\anti_banner@kaspersky.com [2013-11-06]
FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\online_banking@kaspersky.com
FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\online_banking@kaspersky.com [2013-11-06]

Chrome: 
=======
CHR HomePage: hxxp://www.google.com/
CHR StartupUrls: "hxxp://google.de/"
CHR DefaultSearchKeyword: ask.com
CHR DefaultSearchProvider: Ask.com
CHR DefaultSearchURL: hxxp://dts.search.ask.com/sr?src=crb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms}
CHR DefaultNewTabURL: 
CHR Extension: (Google Docs) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-10]
CHR Extension: (Google Drive) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-10]
CHR Extension: (YouTube) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-10]
CHR Extension: (Google-Suche) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-10]
CHR Extension: (Modul zur Link-Untersuchung) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2014-05-10]
CHR Extension: (Website Logon) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\fegekclkdhbnfdcmomlpegkkndgnmfmo [2014-05-10]
CHR Extension: (Google Wallet) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-10]
CHR Extension: (Google Mail) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-10]
CHR Extension: (Anti-Banner) - C:\Users\hülya\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2014-05-10]
CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\urladvisor.crx [2013-10-17]
CHR HKLM-x32\...\Chrome\Extension: [fegekclkdhbnfdcmomlpegkkndgnmfmo] - C:\Program Files (x86)\HP SimplePass\tschrome.crx [2012-07-12]
CHR HKLM-x32\...\Chrome\Extension: [gpicboiclhmnllnjdcfcffifpoaebgkm] - C:\Program Files (x86)\Freecorder extension\Freecorder.crx [2012-07-12]
CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\ab.crx [2013-10-17]
CHR StartMenuInternet: Google Chrome - chrome.exe
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AVM WLAN Connection Service; C:\Program Files (x86)\avmwlanstick\WlanNetService.exe [376832 2010-10-22] (AVM Berlin) [File not signed]
R2 avp; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe [214512 2013-10-17] (Kaspersky Lab ZAO)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [331776 2012-07-26] (Microsoft Corporation)
R2 FPLService; C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe [1641320 2012-08-10] (HP)
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2013-11-04] (Hewlett-Packard Company) [File not signed]
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-18] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [272176 2012-07-18] ()
R3 TrueService; C:\Program Files\Common Files\AuthenTec\TrueService.exe [401256 2012-07-16] (AuthenTec, Inc.)
R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [28160 2012-07-18] () [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16056 2014-03-29] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2699568 2012-07-18] (Intel® Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [14120 2010-10-04] (AVM Berlin)
S3 BthA2DP; C:\Windows\system32\drivers\BthA2DP.sys [117632 2013-06-01] (Microsoft Corporation)
S3 BthHFAud; C:\Windows\system32\DRIVERS\BthHfAud.sys [30720 2013-02-02] (Microsoft Corporation)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
S3 fwlanusb4; C:\Windows\system32\DRIVERS\fwlanusb4.sys [1293824 2010-10-04] (AVM GmbH)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2013-11-07] (Kaspersky Lab ZAO)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [29792 2013-12-19] (Kaspersky Lab)
S4 klflt; C:\Windows\System32\DRIVERS\klflt.sys [115296 2014-03-24] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [625760 2014-03-24] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [30304 2013-10-17] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [29280 2014-02-18] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [29280 2013-10-17] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\system32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO)
R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [65120 2014-03-24] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [178272 2013-12-19] (Kaspersky Lab ZAO)
R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [3345376 2013-08-22] (Intel Corporation)
S3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [266896 2012-06-14] (Realtek Semiconductor Corp.)
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [41272 2012-08-25] (Synaptics Incorporated)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-08-25] (Synaptics Incorporated)
S3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [48096 2012-08-09] (Windows (R) Win 7 DDK provider)
R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2012-08-31] (Hewlett-Packard Development Company, L.P.)
R3 WUDFWpdComp; C:\Windows\system32\DRIVERS\WUDFRd.sys [198656 2012-07-26] (Microsoft Corporation)
S3 XHCIPort; C:\Windows\System32\drivers\XHCIPort.sys [188384 2012-08-09] (Windows (R) Win 7 DDK provider)
S3 cpuz135; \??\C:\Users\HLYA~1\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-07-24 22:18 - 2014-07-24 22:18 - 00002993 _____ () C:\Users\hülya\Desktop\JRT.txt
2014-07-24 22:10 - 2014-07-24 22:10 - 01016261 _____ (Thisisu) C:\Users\hülya\Desktop\JRT.exe
2014-07-24 22:10 - 2014-07-24 22:10 - 00000000 ____D () C:\Windows\ERUNT
2014-07-24 22:02 - 2014-07-24 22:03 - 00000000 ____D () C:\AdwCleaner
2014-07-24 22:02 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-07-24 22:01 - 2014-07-24 22:01 - 01354223 _____ () C:\Users\hülya\Desktop\adwcleaner_3.216.exe
2014-07-24 20:51 - 2014-07-24 20:51 - 00062687 _____ () C:\Users\hülya\Desktop\Addition.txt
2014-07-24 20:50 - 2014-07-24 22:22 - 00022039 _____ () C:\Users\hülya\Desktop\FRST.txt
2014-07-24 20:49 - 2014-07-24 22:22 - 00000000 ____D () C:\FRST
2014-07-24 20:30 - 2014-07-24 20:30 - 02093568 _____ (Farbar) C:\Users\hülya\Desktop\FRST64.exe
2014-07-24 20:30 - 2014-07-24 20:30 - 02093568 _____ (Farbar) C:\Users\hülya\Desktop\FRST64 (1).exe
2014-07-17 23:52 - 2014-07-17 23:52 - 01385120 _____ () C:\Users\hülya\Downloads\Setup (6).exe
2014-07-13 01:44 - 2014-07-13 01:44 - 00000000 ____D () C:\Users\hülya\ChromeExtensions
2014-07-13 01:43 - 2014-07-24 20:11 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535_
2014-07-13 01:43 - 2014-07-24 20:11 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535
2014-07-13 01:43 - 2014-07-24 20:11 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51_
2014-07-13 01:42 - 2014-07-24 20:11 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51
2014-07-13 01:42 - 2014-07-13 01:43 - 00000186 _____ () C:\Users\hülya\Desktop\Amazon.de.url
2014-07-13 01:42 - 2014-07-13 01:42 - 01063312 _____ () C:\Users\hülya\Downloads\Adblock-Plus-fr-Chrome-lnstall.exe
2014-07-13 01:42 - 2014-07-13 01:42 - 00000000 ____D () C:\Users\hülya\Downloads\Adblock-Plus-für-Chrome
2014-07-12 18:26 - 2014-07-09 03:28 - 00378337 _____ () C:\Users\hülya\Documents\Ergo%20Vorbeereiten.odt_0.odt
2014-07-12 13:41 - 2014-07-12 13:41 - 00323048 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-12 03:32 - 2014-06-26 22:53 - 00703968 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-07-12 03:32 - 2014-06-26 22:53 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-07-12 03:28 - 2014-07-24 20:11 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-07-10 02:49 - 2014-07-10 02:49 - 00000102 ____H () C:\Users\hülya\Downloads\.~lock.ups bewerbung.doc#
2014-07-10 02:38 - 2014-07-10 02:38 - 00000102 ____H () C:\Users\hülya\Desktop\.~lock.Feser Graf Gruppe Bewerbung.odt#
2014-07-09 10:52 - 2014-07-01 00:42 - 00702464 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-07-09 10:52 - 2014-07-01 00:42 - 00394240 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-07-09 10:52 - 2014-07-01 00:42 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-07-09 10:52 - 2014-06-28 05:35 - 00556544 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-07-09 02:08 - 2014-06-19 04:12 - 02239488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-07-09 02:08 - 2014-06-19 04:12 - 01366528 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-07-09 02:08 - 2014-06-19 04:12 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2014-07-09 02:08 - 2014-06-19 04:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
2014-07-09 02:08 - 2014-06-19 04:12 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-07-09 02:08 - 2014-06-19 04:11 - 19277312 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-07-09 02:08 - 2014-06-19 04:11 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-07-09 02:08 - 2014-06-19 04:11 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 15369728 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 02650624 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-07-09 02:08 - 2014-06-19 04:10 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-07-09 02:08 - 2014-06-19 04:09 - 01508864 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-07-09 02:08 - 2014-06-19 02:53 - 14368768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-07-09 02:08 - 2014-06-19 02:53 - 01766400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-07-09 02:08 - 2014-06-19 02:53 - 01141760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-07-09 02:08 - 2014-06-19 02:53 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-07-09 02:08 - 2014-06-19 02:53 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-07-09 02:08 - 2014-06-19 02:53 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-07-09 02:08 - 2014-06-19 02:53 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 13732352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 02863616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 01440768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-07-09 02:08 - 2014-06-19 02:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-07-09 02:08 - 2014-06-19 02:52 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-07-09 02:08 - 2014-06-19 02:33 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-07-09 02:08 - 2014-06-19 02:30 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-07-09 02:08 - 2014-06-19 00:05 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2014-07-09 02:08 - 2014-06-18 01:27 - 01440256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2014-07-09 02:08 - 2014-06-18 01:24 - 01557504 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-07-09 02:08 - 2014-06-11 06:18 - 04038144 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-07-09 02:08 - 2014-06-03 00:33 - 00265216 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2014-07-09 02:08 - 2014-05-30 01:31 - 00452608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2014-07-09 02:08 - 2014-05-30 01:03 - 00588288 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2014-07-09 02:08 - 2014-05-30 01:02 - 01281536 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-07-09 02:08 - 2014-05-30 01:02 - 00439808 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll
2014-07-09 02:08 - 2014-05-03 08:34 - 06974808 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-07-09 02:08 - 2014-05-03 08:33 - 01824808 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2014-07-09 02:08 - 2014-05-03 06:51 - 01408976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2014-07-09 02:08 - 2014-05-02 00:37 - 01023488 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2014-07-09 02:08 - 2014-04-30 00:32 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe
2014-07-09 02:08 - 2014-04-30 00:32 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe
2014-07-09 02:08 - 2014-04-24 01:51 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2014-07-09 02:08 - 2014-04-24 01:51 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-09 02:08 - 2014-04-24 01:38 - 00693760 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2014-07-09 02:08 - 2014-04-24 01:38 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-09 02:08 - 2014-02-08 06:34 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2014-07-09 02:07 - 2014-06-06 16:06 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-07-09 02:07 - 2014-06-06 12:17 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2014-07-09 02:07 - 2014-05-30 00:24 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-07-05 01:06 - 2014-07-19 00:07 - 00000095 _____ () C:\Users\hülya\AppData\Roaming\WB.CFG
2014-07-05 00:35 - 2014-07-24 22:04 - 00000000 ____D () C:\ProgramData\SafetyNut
2014-07-02 19:50 - 2014-07-02 19:50 - 01258080 _____ () C:\Users\hülya\Downloads\Setup (5).exe
2014-07-01 22:19 - 2014-07-01 22:19 - 00003204 _____ () C:\Windows\System32\Tasks\jgjnrnq
2014-07-01 22:19 - 2014-07-01 22:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\jgjnrnq.bat
2014-07-01 22:17 - 2014-07-01 22:17 - 00003206 _____ () C:\Windows\System32\Tasks\eqfcxnbw
2014-07-01 22:17 - 2014-07-01 22:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\eqfcxnbw.bat
2014-07-01 22:15 - 2014-07-01 22:15 - 00003204 _____ () C:\Windows\System32\Tasks\whpxpqi
2014-07-01 22:15 - 2014-07-01 22:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\whpxpqi.bat
2014-07-01 22:13 - 2014-07-01 22:13 - 00003200 _____ () C:\Windows\System32\Tasks\lcbpg
2014-07-01 22:13 - 2014-07-01 22:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpg.bat
2014-07-01 22:11 - 2014-07-01 22:11 - 00003206 _____ () C:\Windows\System32\Tasks\kheaxbbv
2014-07-01 22:11 - 2014-07-01 22:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\kheaxbbv.bat
2014-07-01 22:09 - 2014-07-01 22:09 - 00003206 _____ () C:\Windows\System32\Tasks\xgxiyqsd
2014-07-01 22:09 - 2014-07-01 22:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\xgxiyqsd.bat
2014-07-01 22:07 - 2014-07-01 22:07 - 00003204 _____ () C:\Windows\System32\Tasks\abpicxr
2014-07-01 22:07 - 2014-07-01 22:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\abpicxr.bat
2014-07-01 22:05 - 2014-07-01 22:05 - 00003204 _____ () C:\Windows\System32\Tasks\dynshwc
2014-07-01 22:05 - 2014-07-01 22:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\dynshwc.bat
2014-07-01 22:02 - 2014-07-01 22:02 - 00003206 _____ () C:\Windows\System32\Tasks\wgwfihhq
2014-07-01 22:02 - 2014-07-01 22:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\wgwfihhq.bat
2014-06-30 05:48 - 2014-06-30 05:48 - 00003206 _____ () C:\Windows\System32\Tasks\ulccqgwd
2014-06-30 05:48 - 2014-06-30 05:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\ulccqgwd.bat
2014-06-30 05:46 - 2014-06-30 05:46 - 00003204 _____ () C:\Windows\System32\Tasks\fvngogw
2014-06-30 05:46 - 2014-06-30 05:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\fvngogw.bat
2014-06-30 05:44 - 2014-06-30 05:44 - 00003200 _____ () C:\Windows\System32\Tasks\nfnnu
2014-06-30 05:44 - 2014-06-30 05:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\nfnnu.bat
2014-06-30 05:42 - 2014-06-30 05:42 - 00003200 _____ () C:\Windows\System32\Tasks\ebfol
2014-06-30 05:42 - 2014-06-30 05:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\ebfol.bat
2014-06-30 05:40 - 2014-06-30 05:40 - 00003204 _____ () C:\Windows\System32\Tasks\aiwkxfb
2014-06-30 05:40 - 2014-06-30 05:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\aiwkxfb.bat
2014-06-30 05:38 - 2014-06-30 05:38 - 00003206 _____ () C:\Windows\System32\Tasks\cwtodhbp
2014-06-30 05:38 - 2014-06-30 05:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\cwtodhbp.bat
2014-06-30 05:36 - 2014-06-30 05:36 - 00003202 _____ () C:\Windows\System32\Tasks\fgnngg
2014-06-30 05:36 - 2014-06-30 05:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\fgnngg.bat
2014-06-30 05:34 - 2014-06-30 05:34 - 00003200 _____ () C:\Windows\System32\Tasks\awkfl
2014-06-30 05:34 - 2014-06-30 05:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\awkfl.bat
2014-06-30 05:32 - 2014-06-30 05:32 - 00003202 _____ () C:\Windows\System32\Tasks\yldjcn
2014-06-30 05:32 - 2014-06-30 05:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\yldjcn.bat
2014-06-30 05:30 - 2014-06-30 05:30 - 00003206 _____ () C:\Windows\System32\Tasks\ekhnlrhf
2014-06-30 05:30 - 2014-06-30 05:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\ekhnlrhf.bat
2014-06-30 05:28 - 2014-06-30 05:28 - 00003206 _____ () C:\Windows\System32\Tasks\qmgcmikg
2014-06-30 05:28 - 2014-06-30 05:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\qmgcmikg.bat
2014-06-30 05:26 - 2014-06-30 05:26 - 00003204 _____ () C:\Windows\System32\Tasks\mcbxwcs
2014-06-30 05:26 - 2014-06-30 05:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\mcbxwcs.bat
2014-06-30 05:24 - 2014-06-30 05:24 - 00003206 _____ () C:\Windows\System32\Tasks\oopqhiaa
2014-06-30 05:24 - 2014-06-30 05:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\oopqhiaa.bat
2014-06-30 05:22 - 2014-06-30 05:22 - 00003204 _____ () C:\Windows\System32\Tasks\ijlmopq
2014-06-30 05:22 - 2014-06-30 05:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\ijlmopq.bat
2014-06-30 05:20 - 2014-06-30 05:20 - 00003206 _____ () C:\Windows\System32\Tasks\kfdavzwl
2014-06-30 05:20 - 2014-06-30 05:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\kfdavzwl.bat
2014-06-30 05:18 - 2014-06-30 05:18 - 00003200 _____ () C:\Windows\System32\Tasks\spuhd
2014-06-30 05:18 - 2014-06-30 05:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\spuhd.bat
2014-06-30 05:16 - 2014-06-30 05:16 - 00003202 _____ () C:\Windows\System32\Tasks\bxthdr
2014-06-30 05:16 - 2014-06-30 05:16 - 00000269 _____ () C:\Users\hülya\AppData\Local\bxthdr.bat
2014-06-30 05:14 - 2014-06-30 05:14 - 00003204 _____ () C:\Windows\System32\Tasks\fxacscu
2014-06-30 05:14 - 2014-06-30 05:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\fxacscu.bat
2014-06-30 05:12 - 2014-06-30 05:12 - 00003202 _____ () C:\Windows\System32\Tasks\beiuye
2014-06-30 05:12 - 2014-06-30 05:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\beiuye.bat
2014-06-30 05:10 - 2014-06-30 05:10 - 00003202 _____ () C:\Windows\System32\Tasks\lbgcbx
2014-06-30 05:10 - 2014-06-30 05:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\lbgcbx.bat
2014-06-30 05:08 - 2014-06-30 05:08 - 00003200 _____ () C:\Windows\System32\Tasks\erawe
2014-06-30 05:08 - 2014-06-30 05:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\erawe.bat
2014-06-30 05:06 - 2014-06-30 05:06 - 00003200 _____ () C:\Windows\System32\Tasks\caebg
2014-06-30 05:06 - 2014-06-30 05:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\caebg.bat
2014-06-30 05:04 - 2014-06-30 05:04 - 00003206 _____ () C:\Windows\System32\Tasks\hqqbbcll
2014-06-30 05:04 - 2014-06-30 05:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\hqqbbcll.bat
2014-06-30 05:01 - 2014-06-30 05:01 - 00003204 _____ () C:\Windows\System32\Tasks\ruxcmqt
2014-06-30 05:01 - 2014-06-30 05:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ruxcmqt.bat
2014-06-30 04:59 - 2014-06-30 04:59 - 00003206 _____ () C:\Windows\System32\Tasks\wxxabbdl
2014-06-30 04:59 - 2014-06-30 04:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\wxxabbdl.bat
2014-06-30 04:57 - 2014-06-30 04:57 - 00003204 _____ () C:\Windows\System32\Tasks\tbfedip
2014-06-30 04:57 - 2014-06-30 04:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbfedip.bat
2014-06-30 04:55 - 2014-06-30 04:55 - 00003200 _____ () C:\Windows\System32\Tasks\khtpt
2014-06-30 04:55 - 2014-06-30 04:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\khtpt.bat
2014-06-30 04:53 - 2014-06-30 04:53 - 00003204 _____ () C:\Windows\System32\Tasks\pakteow
2014-06-30 04:53 - 2014-06-30 04:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\pakteow.bat
2014-06-30 04:51 - 2014-06-30 04:51 - 00003200 _____ () C:\Windows\System32\Tasks\tsqpv
2014-06-30 04:51 - 2014-06-30 04:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\tsqpv.bat
2014-06-30 04:49 - 2014-06-30 04:49 - 00003202 _____ () C:\Windows\System32\Tasks\fsigct
2014-06-30 04:49 - 2014-06-30 04:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\fsigct.bat
2014-06-30 04:47 - 2014-06-30 04:47 - 00003202 _____ () C:\Windows\System32\Tasks\quwaeg
2014-06-30 04:47 - 2014-06-30 04:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\quwaeg.bat
2014-06-30 04:45 - 2014-06-30 04:45 - 00003200 _____ () C:\Windows\System32\Tasks\nveck
2014-06-30 04:45 - 2014-06-30 04:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\nveck.bat
2014-06-30 04:43 - 2014-06-30 04:43 - 00003202 _____ () C:\Windows\System32\Tasks\tqwtbw
2014-06-30 04:43 - 2014-06-30 04:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\tqwtbw.bat
2014-06-30 04:41 - 2014-06-30 04:41 - 00003200 _____ () C:\Windows\System32\Tasks\zlqcg
2014-06-30 04:41 - 2014-06-30 04:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\zlqcg.bat
2014-06-30 04:36 - 2014-06-30 04:36 - 00003204 _____ () C:\Windows\System32\Tasks\jehlnce
2014-06-30 04:36 - 2014-06-30 04:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\jehlnce.bat
2014-06-30 04:34 - 2014-06-30 04:34 - 00003204 _____ () C:\Windows\System32\Tasks\aguiubo
2014-06-30 04:34 - 2014-06-30 04:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\aguiubo.bat
2014-06-30 04:32 - 2014-06-30 04:32 - 00003200 _____ () C:\Windows\System32\Tasks\lqntf
2014-06-30 04:32 - 2014-06-30 04:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\lqntf.bat
2014-06-30 04:30 - 2014-06-30 04:30 - 00003200 _____ () C:\Windows\System32\Tasks\dulcs
2014-06-30 04:30 - 2014-06-30 04:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\dulcs.bat
2014-06-30 04:28 - 2014-06-30 04:28 - 00003200 _____ () C:\Windows\System32\Tasks\ljivt
2014-06-30 04:28 - 2014-06-30 04:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\ljivt.bat
2014-06-30 04:26 - 2014-06-30 04:26 - 00003206 _____ () C:\Windows\System32\Tasks\lrweaflq
2014-06-30 04:26 - 2014-06-30 04:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\lrweaflq.bat
2014-06-30 04:24 - 2014-06-30 04:24 - 00003200 _____ () C:\Windows\System32\Tasks\xdmoi
2014-06-30 04:24 - 2014-06-30 04:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\xdmoi.bat
2014-06-30 04:22 - 2014-06-30 04:22 - 00003200 _____ () C:\Windows\System32\Tasks\jdymi
2014-06-30 04:22 - 2014-06-30 04:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\jdymi.bat
2014-06-30 04:20 - 2014-06-30 04:20 - 00003202 _____ () C:\Windows\System32\Tasks\sxdjht
2014-06-30 04:20 - 2014-06-30 04:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\sxdjht.bat
2014-06-30 04:18 - 2014-06-30 04:18 - 00003204 _____ () C:\Windows\System32\Tasks\noohhij
2014-06-30 04:18 - 2014-06-30 04:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\noohhij.bat
2014-06-30 04:14 - 2014-06-30 04:14 - 00003204 _____ () C:\Windows\System32\Tasks\hcdeabo
2014-06-30 04:14 - 2014-06-30 04:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\hcdeabo.bat
2014-06-30 04:12 - 2014-06-30 04:12 - 00003202 _____ () C:\Windows\System32\Tasks\cfdfey
2014-06-30 04:12 - 2014-06-30 04:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\cfdfey.bat
2014-06-30 04:10 - 2014-06-30 04:10 - 00003204 _____ () C:\Windows\System32\Tasks\gwwoohh
2014-06-30 04:10 - 2014-06-30 04:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\gwwoohh.bat
2014-06-30 04:08 - 2014-06-30 04:08 - 00003206 _____ () C:\Windows\System32\Tasks\izuvpicd
2014-06-30 04:08 - 2014-06-30 04:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\izuvpicd.bat
2014-06-30 04:06 - 2014-06-30 04:06 - 00003206 _____ () C:\Windows\System32\Tasks\cfcfnrnj
2014-06-30 04:06 - 2014-06-30 04:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\cfcfnrnj.bat
2014-06-30 04:04 - 2014-06-30 04:04 - 00003200 _____ () C:\Windows\System32\Tasks\ekaix
2014-06-30 04:04 - 2014-06-30 04:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\ekaix.bat
2014-06-30 03:42 - 2014-06-30 03:42 - 00003202 _____ () C:\Windows\System32\Tasks\acxkgi
2014-06-30 03:42 - 2014-06-30 03:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\acxkgi.bat
2014-06-30 03:40 - 2014-06-30 03:40 - 00003206 _____ () C:\Windows\System32\Tasks\eulkcjbf
2014-06-30 03:40 - 2014-06-30 03:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\eulkcjbf.bat
2014-06-30 03:38 - 2014-06-30 03:38 - 00003202 _____ () C:\Windows\System32\Tasks\fwhaxi
2014-06-30 03:38 - 2014-06-30 03:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\fwhaxi.bat
2014-06-30 03:36 - 2014-06-30 03:36 - 00003200 _____ () C:\Windows\System32\Tasks\tyfrx
2014-06-30 03:36 - 2014-06-30 03:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\tyfrx.bat
2014-06-30 03:34 - 2014-06-30 03:34 - 00003202 _____ () C:\Windows\System32\Tasks\ovfemt
2014-06-30 03:34 - 2014-06-30 03:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\ovfemt.bat
2014-06-30 03:32 - 2014-06-30 03:32 - 00003202 _____ () C:\Windows\System32\Tasks\lcbpfk
2014-06-30 03:32 - 2014-06-30 03:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpfk.bat
2014-06-30 03:30 - 2014-06-30 03:30 - 00003204 _____ () C:\Windows\System32\Tasks\ubpckyn
2014-06-30 03:30 - 2014-06-30 03:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\ubpckyn.bat
2014-06-30 03:28 - 2014-06-30 03:28 - 00003202 _____ () C:\Windows\System32\Tasks\qcuecu
2014-06-30 03:28 - 2014-06-30 03:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\qcuecu.bat
2014-06-30 03:26 - 2014-06-30 03:26 - 00003204 _____ () C:\Windows\System32\Tasks\wfoefpa
2014-06-30 03:26 - 2014-06-30 03:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\wfoefpa.bat
2014-06-30 03:24 - 2014-06-30 03:24 - 00003206 _____ () C:\Windows\System32\Tasks\vggvgguf
2014-06-30 03:24 - 2014-06-30 03:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\vggvgguf.bat
2014-06-30 03:22 - 2014-06-30 03:22 - 00003202 _____ () C:\Windows\System32\Tasks\gufetd
2014-06-30 03:22 - 2014-06-30 03:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\gufetd.bat
2014-06-30 03:20 - 2014-06-30 03:20 - 00003202 _____ () C:\Windows\System32\Tasks\ljwusx
2014-06-30 03:20 - 2014-06-30 03:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\ljwusx.bat
2014-06-30 00:13 - 2014-06-30 00:13 - 00003200 _____ () C:\Windows\System32\Tasks\ztyse
2014-06-30 00:13 - 2014-06-30 00:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\ztyse.bat
2014-06-30 00:11 - 2014-06-30 00:11 - 00003200 _____ () C:\Windows\System32\Tasks\bdadk
2014-06-30 00:11 - 2014-06-30 00:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\bdadk.bat
2014-06-30 00:09 - 2014-06-30 00:09 - 00003204 _____ () C:\Windows\System32\Tasks\trwucgl
2014-06-30 00:09 - 2014-06-30 00:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\trwucgl.bat
2014-06-30 00:07 - 2014-06-30 00:07 - 00003206 _____ () C:\Windows\System32\Tasks\tbeerxvb
2014-06-30 00:07 - 2014-06-30 00:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbeerxvb.bat
2014-06-30 00:05 - 2014-06-30 00:05 - 00003200 _____ () C:\Windows\System32\Tasks\ccbfv
2014-06-30 00:05 - 2014-06-30 00:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\ccbfv.bat
2014-06-30 00:03 - 2014-06-30 00:03 - 00003202 _____ () C:\Windows\System32\Tasks\vveett
2014-06-30 00:03 - 2014-06-30 00:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\vveett.bat
2014-06-30 00:01 - 2014-06-30 00:01 - 00003206 _____ () C:\Windows\System32\Tasks\ligdqolj
2014-06-30 00:01 - 2014-06-30 00:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ligdqolj.bat
2014-06-29 23:59 - 2014-06-29 23:59 - 00003204 _____ () C:\Windows\System32\Tasks\vdksahw
2014-06-29 23:59 - 2014-06-29 23:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\vdksahw.bat
2014-06-29 23:57 - 2014-06-29 23:57 - 00003206 _____ () C:\Windows\System32\Tasks\vdsbqhwf
2014-06-29 23:57 - 2014-06-29 23:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\vdsbqhwf.bat
2014-06-29 23:55 - 2014-06-29 23:55 - 00003200 _____ () C:\Windows\System32\Tasks\reiba
2014-06-29 23:55 - 2014-06-29 23:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\reiba.bat
2014-06-29 23:53 - 2014-06-29 23:53 - 00003206 _____ () C:\Windows\System32\Tasks\kwtxbhko
2014-06-29 23:53 - 2014-06-29 23:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\kwtxbhko.bat
2014-06-29 23:51 - 2014-06-29 23:51 - 00003204 _____ () C:\Windows\System32\Tasks\koagcns
2014-06-29 23:51 - 2014-06-29 23:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\koagcns.bat
2014-06-29 23:49 - 2014-06-29 23:49 - 00003206 _____ () C:\Windows\System32\Tasks\vveeettb
2014-06-29 23:49 - 2014-06-29 23:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\vveeettb.bat
2014-06-29 23:47 - 2014-06-29 23:47 - 00003206 _____ () C:\Windows\System32\Tasks\rdpsgibx
2014-06-29 23:47 - 2014-06-29 23:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\rdpsgibx.bat
2014-06-29 23:45 - 2014-06-29 23:45 - 00003204 _____ () C:\Windows\System32\Tasks\quejuej
2014-06-29 23:45 - 2014-06-29 23:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\quejuej.bat
2014-06-29 23:43 - 2014-06-29 23:43 - 00003202 _____ () C:\Windows\System32\Tasks\icdytn
2014-06-29 23:43 - 2014-06-29 23:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\icdytn.bat
2014-06-29 23:41 - 2014-06-29 23:41 - 00003206 _____ () C:\Windows\System32\Tasks\ajcohkcp
2014-06-29 23:41 - 2014-06-29 23:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\ajcohkcp.bat
2014-06-29 23:39 - 2014-06-29 23:39 - 00003206 _____ () C:\Windows\System32\Tasks\gofohwhp
2014-06-29 23:39 - 2014-06-29 23:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\gofohwhp.bat
2014-06-29 23:37 - 2014-06-29 23:37 - 00003206 _____ () C:\Windows\System32\Tasks\dulctdar
2014-06-29 23:37 - 2014-06-29 23:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\dulctdar.bat
2014-06-29 23:35 - 2014-06-29 23:35 - 00003200 _____ () C:\Windows\System32\Tasks\qnifi
2014-06-29 23:35 - 2014-06-29 23:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\qnifi.bat
2014-06-29 21:33 - 2014-06-29 21:33 - 00003200 _____ () C:\Windows\System32\Tasks\daetq
2014-06-29 21:33 - 2014-06-29 21:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\daetq.bat
2014-06-29 21:31 - 2014-06-29 21:31 - 00003206 _____ () C:\Windows\System32\Tasks\akcohzmg
2014-06-29 21:31 - 2014-06-29 21:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\akcohzmg.bat
2014-06-29 21:29 - 2014-06-29 21:29 - 00003202 _____ () C:\Windows\System32\Tasks\nooffg
2014-06-29 21:29 - 2014-06-29 21:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\nooffg.bat
2014-06-29 21:27 - 2014-06-29 21:27 - 00003204 _____ () C:\Windows\System32\Tasks\lqgmrpu
2014-06-29 21:27 - 2014-06-29 21:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\lqgmrpu.bat
2014-06-29 21:25 - 2014-06-29 21:25 - 00003204 _____ () C:\Windows\System32\Tasks\cnaupdx
2014-06-29 21:25 - 2014-06-29 21:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\cnaupdx.bat
2014-06-29 21:23 - 2014-06-29 21:23 - 00003206 _____ () C:\Windows\System32\Tasks\rwimaepu
2014-06-29 21:23 - 2014-06-29 21:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\rwimaepu.bat
2014-06-29 21:21 - 2014-06-29 21:21 - 00003200 _____ () C:\Windows\System32\Tasks\iavic
2014-06-29 21:21 - 2014-06-29 21:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\iavic.bat
2014-06-29 21:19 - 2014-06-29 21:19 - 00003200 _____ () C:\Windows\System32\Tasks\hajdc
2014-06-29 21:19 - 2014-06-29 21:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\hajdc.bat
2014-06-29 21:17 - 2014-06-29 21:17 - 00003206 _____ () C:\Windows\System32\Tasks\jdauqmhd
2014-06-29 21:17 - 2014-06-29 21:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\jdauqmhd.bat
2014-06-29 21:15 - 2014-06-29 21:15 - 00003204 _____ () C:\Windows\System32\Tasks\vdksa
2014-06-29 21:15 - 2014-06-29 21:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\utjiwdc.bat
2014-06-29 21:13 - 2014-06-29 21:13 - 00003204 _____ () C:\Windows\System32\Tasks\hwooghw
2014-06-29 21:13 - 2014-06-29 21:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\hwooghw.bat
2014-06-29 21:11 - 2014-06-29 21:11 - 00003204 _____ () C:\Windows\System32\Tasks\ifauytq
2014-06-29 21:11 - 2014-06-29 21:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\ifauytq.bat
2014-06-29 21:09 - 2014-06-29 21:09 - 00003204 _____ () C:\Windows\System32\Tasks\erawlaq
2014-06-29 21:09 - 2014-06-29 21:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\erawlaq.bat
2014-06-29 21:07 - 2014-06-29 21:07 - 00003200 _____ () C:\Windows\System32\Tasks\lxdiu
2014-06-29 21:07 - 2014-06-29 21:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\lxdiu.bat
2014-06-29 21:05 - 2014-06-29 21:05 - 00003200 _____ () C:\Windows\System32\Tasks\pjddy
2014-06-29 21:05 - 2014-06-29 21:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\pjddy.bat
2014-06-29 21:03 - 2014-06-29 21:03 - 00003206 _____ () C:\Windows\System32\Tasks\fqcdnfrr
2014-06-29 21:03 - 2014-06-29 21:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\fqcdnfrr.bat
2014-06-29 21:01 - 2014-06-29 21:01 - 00003206 _____ () C:\Windows\System32\Tasks\ghpaijjd
2014-06-29 21:01 - 2014-06-29 21:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ghpaijjd.bat
2014-06-29 20:59 - 2014-06-29 20:59 - 00003206 _____ () C:\Windows\System32\Tasks\hbunicup
2014-06-29 20:59 - 2014-06-29 20:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\hbunicup.bat
2014-06-29 20:57 - 2014-06-29 20:57 - 00003204 _____ () C:\Windows\System32\Tasks\aaoibwj
2014-06-29 20:57 - 2014-06-29 20:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\aaoibwj.bat
2014-06-29 20:55 - 2014-06-29 20:55 - 00003204 _____ () C:\Windows\System32\Tasks\aaunbtn
2014-06-29 20:55 - 2014-06-29 20:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\aaunbtn.bat
2014-06-29 20:53 - 2014-06-29 20:53 - 00003206 _____ () C:\Windows\System32\Tasks\mffummlk
2014-06-29 20:53 - 2014-06-29 20:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\mffummlk.bat
2014-06-29 20:51 - 2014-06-29 20:51 - 00003200 _____ () C:\Windows\System32\Tasks\refju
2014-06-29 20:51 - 2014-06-29 20:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\refju.bat
2014-06-29 20:49 - 2014-06-29 20:49 - 00003204 _____ () C:\Windows\System32\Tasks\daechca
2014-06-29 20:49 - 2014-06-29 20:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\daechca.bat
2014-06-29 20:47 - 2014-06-29 20:47 - 00003206 _____ () C:\Windows\System32\Tasks\idxsnplf
2014-06-29 20:47 - 2014-06-29 20:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\idxsnplf.bat
2014-06-29 20:45 - 2014-06-29 20:45 - 00003204 _____ () C:\Windows\System32\Tasks\xrunfjc
2014-06-29 20:45 - 2014-06-29 20:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\xrunfjc.bat
2014-06-29 20:43 - 2014-06-29 20:43 - 00003200 _____ () C:\Windows\System32\Tasks\ubovd
2014-06-29 20:43 - 2014-06-29 20:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\ubovd.bat
2014-06-29 20:41 - 2014-06-29 20:41 - 00003202 _____ () C:\Windows\System32\Tasks\eblbzi
2014-06-29 20:41 - 2014-06-29 20:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\eblbzi.bat
2014-06-29 20:39 - 2014-06-29 20:39 - 00003202 _____ () C:\Windows\System32\Tasks\tbgmtf
2014-06-29 20:39 - 2014-06-29 20:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbgmtf.bat
2014-06-29 20:37 - 2014-06-29 20:37 - 00003206 _____ () C:\Windows\System32\Tasks\rvadoswa
2014-06-29 20:37 - 2014-06-29 20:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\rvadoswa.bat
2014-06-29 20:35 - 2014-06-29 20:35 - 00003206 _____ () C:\Windows\System32\Tasks\numsabiy
2014-06-29 20:35 - 2014-06-29 20:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\numsabiy.bat
2014-06-29 20:33 - 2014-06-29 20:33 - 00003204 _____ () C:\Windows\System32\Tasks\kotimqn
2014-06-29 20:33 - 2014-06-29 20:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\kotimqn.bat
2014-06-29 20:31 - 2014-06-29 20:31 - 00003200 _____ () C:\Windows\System32\Tasks\lkifm
2014-06-29 20:31 - 2014-06-29 20:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\lkifm.bat
2014-06-29 20:29 - 2014-06-29 20:29 - 00003200 _____ () C:\Windows\System32\Tasks\fjdoh
2014-06-29 20:29 - 2014-06-29 20:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\fjdoh.bat
2014-06-29 20:27 - 2014-06-29 20:27 - 00003202 _____ () C:\Windows\System32\Tasks\fkvoal
2014-06-29 20:27 - 2014-06-29 20:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\fkvoal.bat
2014-06-29 20:25 - 2014-06-29 20:25 - 00003206 _____ () C:\Windows\System32\Tasks\fdcaqonm
2014-06-29 20:25 - 2014-06-29 20:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\fdcaqonm.bat
2014-06-29 20:23 - 2014-06-29 20:23 - 00003202 _____ () C:\Windows\System32\Tasks\oqyaks
2014-06-29 20:23 - 2014-06-29 20:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\oqyaks.bat
2014-06-29 20:21 - 2014-06-29 20:21 - 00003204 _____ () C:\Windows\System32\Tasks\kotxmqu
2014-06-29 20:21 - 2014-06-29 20:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\kotxmqu.bat
2014-06-29 20:19 - 2014-06-29 20:19 - 00003204 _____ () C:\Windows\System32\Tasks\iddytni
2014-06-29 20:19 - 2014-06-29 20:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\iddytni.bat
2014-06-29 20:17 - 2014-06-29 20:17 - 00003206 _____ () C:\Windows\System32\Tasks\kfujeuqf
2014-06-29 20:17 - 2014-06-29 20:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\kfujeuqf.bat
2014-06-29 20:15 - 2014-06-29 20:15 - 00003202 _____ () C:\Windows\System32\Tasks\whqaqs
2014-06-29 20:15 - 2014-06-29 20:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\whqaqs.bat
2014-06-29 20:13 - 2014-06-29 20:13 - 00003200 _____ () C:\Windows\System32\Tasks\lcbpv
2014-06-29 20:13 - 2014-06-29 20:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpv.bat
2014-06-29 20:11 - 2014-06-29 20:11 - 00003206 _____ () C:\Windows\System32\Tasks\psuprudi
2014-06-29 20:11 - 2014-06-29 20:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\psuprudi.bat
2014-06-29 20:09 - 2014-06-29 20:09 - 00003206 _____ () C:\Windows\System32\Tasks\numttcsa
2014-06-29 20:09 - 2014-06-29 20:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\numttcsa.bat
2014-06-29 20:07 - 2014-06-29 20:07 - 00003202 _____ () C:\Windows\System32\Tasks\jfjnqm
2014-06-29 20:07 - 2014-06-29 20:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\jfjnqm.bat
2014-06-29 20:05 - 2014-06-29 20:05 - 00003204 _____ () C:\Windows\System32\Tasks\egqajsk
2014-06-29 20:05 - 2014-06-29 20:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\egqajsk.bat
2014-06-29 20:03 - 2014-06-29 20:03 - 00003202 _____ () C:\Windows\System32\Tasks\hztmgy
2014-06-29 20:03 - 2014-06-29 20:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\hztmgy.bat
2014-06-29 20:01 - 2014-06-29 20:01 - 00003200 _____ () C:\Windows\System32\Tasks\isnoa
2014-06-29 20:01 - 2014-06-29 20:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\isnoa.bat
2014-06-29 19:59 - 2014-06-29 19:59 - 00003206 _____ () C:\Windows\System32\Tasks\tbglafes
2014-06-29 19:59 - 2014-06-29 19:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbglafes.bat
2014-06-29 19:57 - 2014-06-29 19:57 - 00003206 _____ () C:\Windows\System32\Tasks\ukbhckaa
2014-06-29 19:57 - 2014-06-29 19:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\ukbhckaa.bat
2014-06-29 19:14 - 2014-06-29 19:14 - 00003206 _____ () C:\Windows\System32\Tasks\thlrdkxu
2014-06-29 19:14 - 2014-06-29 19:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\thlrdkxu.bat
2014-06-29 19:12 - 2014-06-29 19:12 - 00003202 _____ () C:\Windows\System32\Tasks\zuhtgb
2014-06-29 19:12 - 2014-06-29 19:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\zuhtgb.bat
2014-06-29 19:10 - 2014-06-29 19:10 - 00003202 _____ () C:\Windows\System32\Tasks\kbxmda
2014-06-29 19:10 - 2014-06-29 19:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\kbxmda.bat
2014-06-29 19:08 - 2014-06-29 19:08 - 00003200 _____ () C:\Windows\System32\Tasks\edeaa
2014-06-29 19:08 - 2014-06-29 19:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\edeaa.bat
2014-06-29 19:06 - 2014-06-29 19:06 - 00003206 _____ () C:\Windows\System32\Tasks\rvaeitxc
2014-06-29 19:06 - 2014-06-29 19:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\rvaeitxc.bat
2014-06-29 19:04 - 2014-06-29 19:04 - 00003202 _____ () C:\Windows\System32\Tasks\dafdid
2014-06-29 19:04 - 2014-06-29 19:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\dafdid.bat
2014-06-29 19:02 - 2014-06-29 19:02 - 00003200 _____ () C:\Windows\System32\Tasks\auaco
2014-06-29 19:02 - 2014-06-29 19:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\auaco.bat
2014-06-29 19:00 - 2014-06-29 19:00 - 00003206 _____ () C:\Windows\System32\Tasks\ydoalwbt
2014-06-29 19:00 - 2014-06-29 19:00 - 00000269 _____ () C:\Users\hülya\AppData\Local\ydoalwbt.bat
2014-06-29 18:58 - 2014-06-29 18:58 - 00003206 _____ () C:\Windows\System32\Tasks\efqidtef
2014-06-29 18:58 - 2014-06-29 18:58 - 00000269 _____ () C:\Users\hülya\AppData\Local\efqidtef.bat
2014-06-29 18:56 - 2014-06-29 18:56 - 00003206 _____ () C:\Windows\System32\Tasks\piqzluev
2014-06-29 18:56 - 2014-06-29 18:56 - 00000269 _____ () C:\Users\hülya\AppData\Local\piqzluev.bat
2014-06-29 18:54 - 2014-06-29 18:54 - 00003204 _____ () C:\Windows\System32\Tasks\aavaouj
2014-06-29 18:54 - 2014-06-29 18:54 - 00000269 _____ () C:\Users\hülya\AppData\Local\aavaouj.bat
2014-06-29 18:48 - 2014-06-29 18:48 - 00003204 _____ () C:\Windows\System32\Tasks\ahubocp
2014-06-29 18:48 - 2014-06-29 18:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\ahubocp.bat
2014-06-29 18:46 - 2014-06-29 18:46 - 00003206 _____ () C:\Windows\System32\Tasks\jfbdsujm
2014-06-29 18:46 - 2014-06-29 18:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\jfbdsujm.bat
2014-06-29 18:44 - 2014-06-29 18:44 - 00003202 _____ () C:\Windows\System32\Tasks\vmddsj
2014-06-29 18:44 - 2014-06-29 18:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\vmddsj.bat
2014-06-29 18:42 - 2014-06-29 18:42 - 00003200 _____ () C:\Windows\System32\Tasks\giqss
2014-06-29 18:42 - 2014-06-29 18:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\giqss.bat
2014-06-29 18:40 - 2014-06-29 18:40 - 00003206 _____ () C:\Windows\System32\Tasks\thbbobwc
2014-06-29 18:40 - 2014-06-29 18:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\thbbobwc.bat
2014-06-29 18:38 - 2014-06-29 18:38 - 00003206 _____ () C:\Windows\System32\Tasks\ruxjmqcg
2014-06-29 18:38 - 2014-06-29 18:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\ruxjmqcg.bat
2014-06-29 18:36 - 2014-06-29 18:36 - 00003204 _____ () C:\Windows\System32\Tasks\ahubvcq
2014-06-29 18:36 - 2014-06-29 18:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\ahubvcq.bat
2014-06-29 18:34 - 2014-06-29 18:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\gfiaa.bat
2014-06-29 18:33 - 2014-06-29 18:33 - 00003200 _____ () C:\Windows\System32\Tasks\gfiaa
2014-06-29 18:31 - 2014-06-29 18:31 - 00003206 _____ () C:\Windows\System32\Tasks\qlgqlgjm
2014-06-29 18:31 - 2014-06-29 18:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\qlgqlgjm.bat
2014-06-29 18:29 - 2014-06-29 18:29 - 00003202 _____ () C:\Windows\System32\Tasks\oqysbd
2014-06-29 18:29 - 2014-06-29 18:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\oqysbd.bat
2014-06-29 18:27 - 2014-06-29 18:27 - 00003202 _____ () C:\Windows\System32\Tasks\ykvbmx
2014-06-29 18:27 - 2014-06-29 18:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\ykvbmx.bat
2014-06-29 18:25 - 2014-06-29 18:25 - 00003206 _____ () C:\Windows\System32\Tasks\aocpcqer
2014-06-29 18:25 - 2014-06-29 18:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\aocpcqer.bat
2014-06-29 18:23 - 2014-06-29 18:23 - 00003200 _____ () C:\Windows\System32\Tasks\fepha
2014-06-29 18:23 - 2014-06-29 18:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\fepha.bat
2014-06-29 18:21 - 2014-06-29 18:21 - 00003204 _____ () C:\Windows\System32\Tasks\acceyau
2014-06-29 18:21 - 2014-06-29 18:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\acceyau.bat
2014-06-29 18:19 - 2014-06-29 18:19 - 00003202 _____ () C:\Windows\System32\Tasks\tymrgl
2014-06-29 18:19 - 2014-06-29 18:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\tymrgl.bat
2014-06-29 18:17 - 2014-06-29 18:17 - 00003202 _____ () C:\Windows\System32\Tasks\cxuqfu
2014-06-29 18:17 - 2014-06-29 18:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\cxuqfu.bat
2014-06-29 18:15 - 2014-06-29 18:15 - 00003200 _____ () C:\Windows\System32\Tasks\gxqja
2014-06-29 18:15 - 2014-06-29 18:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\gxqja.bat
2014-06-29 18:13 - 2014-06-29 18:13 - 00003202 _____ () C:\Windows\System32\Tasks\xiscnx
2014-06-29 18:13 - 2014-06-29 18:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\xiscnx.bat
2014-06-29 18:11 - 2014-06-29 18:11 - 00003204 _____ () C:\Windows\System32\Tasks\gffffee
2014-06-29 18:11 - 2014-06-29 18:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\gffffee.bat
2014-06-29 18:09 - 2014-06-29 18:09 - 00003200 _____ () C:\Windows\System32\Tasks\ccafn
2014-06-29 18:09 - 2014-06-29 18:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\ccafn.bat
2014-06-29 18:07 - 2014-06-29 18:07 - 00003200 _____ () C:\Windows\System32\Tasks\jvrui
2014-06-29 18:07 - 2014-06-29 18:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\jvrui.bat
2014-06-29 18:05 - 2014-06-29 18:05 - 00003204 _____ () C:\Windows\System32\Tasks\qdfrefk
2014-06-29 18:05 - 2014-06-29 18:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\qdfrefk.bat
2014-06-29 18:03 - 2014-06-29 18:03 - 00003204 _____ () C:\Windows\System32\Tasks\eewxpph
2014-06-29 18:03 - 2014-06-29 18:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\eewxpph.bat
2014-06-29 18:01 - 2014-06-29 18:01 - 00003200 _____ () C:\Windows\System32\Tasks\icwxl
2014-06-29 18:01 - 2014-06-29 18:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\icwxl.bat
2014-06-29 17:59 - 2014-06-29 17:59 - 00003200 _____ () C:\Windows\System32\Tasks\wnfne
2014-06-29 17:59 - 2014-06-29 17:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\wnfne.bat
2014-06-29 17:57 - 2014-06-29 17:57 - 00003202 _____ () C:\Windows\System32\Tasks\xizdef
2014-06-29 17:57 - 2014-06-29 17:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\xizdef.bat
2014-06-29 17:55 - 2014-06-29 17:55 - 00003206 _____ () C:\Windows\System32\Tasks\quxbfilv
2014-06-29 17:55 - 2014-06-29 17:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\quxbfilv.bat
2014-06-29 17:53 - 2014-06-29 17:53 - 00003202 _____ () C:\Windows\System32\Tasks\zfsdqf
2014-06-29 17:53 - 2014-06-29 17:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\zfsdqf.bat
2014-06-29 17:52 - 2014-06-29 17:52 - 00623696 _____ (Click Me In Limited) C:\Users\hülya\AppData\Local\nsu16A4.tmp
2014-06-29 17:51 - 2014-06-29 17:51 - 00003206 _____ () C:\Windows\System32\Tasks\kpmrotfu
2014-06-29 17:51 - 2014-06-29 17:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\kpmrotfu.bat
2014-06-29 17:49 - 2014-06-29 17:49 - 00003204 _____ () C:\Windows\System32\Tasks\khepmjn
2014-06-29 17:49 - 2014-06-29 17:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\khepmjn.bat
2014-06-29 17:47 - 2014-06-29 17:47 - 00003204 _____ () C:\Windows\System32\Tasks\beyuxlg
2014-06-29 17:47 - 2014-06-29 17:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\beyuxlg.bat
2014-06-29 17:45 - 2014-06-29 17:45 - 00003200 _____ () C:\Windows\System32\Tasks\eddzr
2014-06-29 17:45 - 2014-06-29 17:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\eddzr.bat
2014-06-29 17:43 - 2014-06-29 17:43 - 00003204 _____ () C:\Windows\System32\Tasks\cpdlguc
2014-06-29 17:43 - 2014-06-29 17:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\cpdlguc.bat
2014-06-29 17:41 - 2014-06-29 17:41 - 00003206 _____ () C:\Windows\System32\Tasks\gaiccbvd
2014-06-29 17:41 - 2014-06-29 17:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\gaiccbvd.bat
2014-06-29 17:39 - 2014-06-29 17:39 - 00003202 _____ () C:\Windows\System32\Tasks\iauhbv
2014-06-29 17:39 - 2014-06-29 17:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\iauhbv.bat
2014-06-29 17:37 - 2014-06-29 17:37 - 00003206 _____ () C:\Windows\System32\Tasks\eudbraxo
2014-06-29 17:37 - 2014-06-29 17:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\eudbraxo.bat
2014-06-29 17:35 - 2014-06-29 17:35 - 00003206 _____ () C:\Windows\System32\Tasks\pxrbjdlu
2014-06-29 17:35 - 2014-06-29 17:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\pxrbjdlu.bat
2014-06-29 17:33 - 2014-06-29 17:33 - 00003200 _____ () C:\Windows\System32\Tasks\ilvab
2014-06-29 17:33 - 2014-06-29 17:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\ilvab.bat
2014-06-29 17:31 - 2014-06-29 17:31 - 00003204 _____ () C:\Windows\System32\Tasks\vwgfvve
2014-06-29 17:31 - 2014-06-29 17:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\vwgfvve.bat
2014-06-29 17:28 - 2014-06-29 17:28 - 00003204 _____ () C:\Windows\System32\Tasks\reibflg
2014-06-29 17:28 - 2014-06-29 17:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\reibflg.bat
2014-06-29 17:26 - 2014-06-29 17:26 - 00003202 _____ () C:\Windows\System32\Tasks\kgjoch
2014-06-29 17:26 - 2014-06-29 17:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\kgjoch.bat
2014-06-29 17:24 - 2014-06-29 17:24 - 00003202 _____ () C:\Windows\System32\Tasks\dngoeo
2014-06-29 17:24 - 2014-06-29 17:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\dngoeo.bat
2014-06-29 17:22 - 2014-06-29 17:22 - 00003204 _____ () C:\Windows\System32\Tasks\gohgohh
2014-06-29 17:22 - 2014-06-29 17:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\gohgohh.bat
2014-06-29 17:20 - 2014-06-29 17:20 - 00003206 _____ () C:\Windows\System32\Tasks\lbffbzeu
2014-06-29 17:20 - 2014-06-29 17:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\lbffbzeu.bat
2014-06-29 17:18 - 2014-06-29 17:18 - 00003204 _____ () C:\Windows\System32\Tasks\dafwmja
2014-06-29 17:18 - 2014-06-29 17:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\dafwmja.bat
2014-06-29 17:16 - 2014-06-29 17:16 - 00003204 _____ () C:\Windows\System32\Tasks\sfzekgc
2014-06-29 17:16 - 2014-06-29 17:16 - 00000269 _____ () C:\Users\hülya\AppData\Local\sfzekgc.bat
2014-06-29 17:14 - 2014-06-29 17:14 - 00003204 _____ () C:\Windows\System32\Tasks\trxvdah
2014-06-29 17:14 - 2014-06-29 17:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\trxvdah.bat
2014-06-29 17:12 - 2014-06-29 17:12 - 00003200 _____ () C:\Windows\System32\Tasks\cokxm
2014-06-29 17:12 - 2014-06-29 17:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\cokxm.bat
2014-06-29 17:10 - 2014-06-29 17:10 - 00003204 _____ () C:\Windows\System32\Tasks\ajuhbdv
2014-06-29 17:10 - 2014-06-29 17:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\ajuhbdv.bat
2014-06-29 17:08 - 2014-06-29 17:08 - 00003202 _____ () C:\Windows\System32\Tasks\xaqscn
2014-06-29 17:08 - 2014-06-29 17:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\xaqscn.bat
2014-06-29 17:06 - 2014-06-29 17:06 - 00003206 _____ () C:\Windows\System32\Tasks\icreymhc
2014-06-29 17:06 - 2014-06-29 17:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\icreymhc.bat
2014-06-29 17:04 - 2014-06-29 17:04 - 00003202 _____ () C:\Windows\System32\Tasks\rxbycq
2014-06-29 17:04 - 2014-06-29 17:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\rxbycq.bat
2014-06-29 17:02 - 2014-06-29 17:02 - 00003204 _____ () C:\Windows\System32\Tasks\kifbcee
2014-06-29 17:02 - 2014-06-29 17:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\kifbcee.bat
2014-06-29 17:00 - 2014-06-29 17:00 - 00003200 _____ () C:\Windows\System32\Tasks\wgwgw
2014-06-29 17:00 - 2014-06-29 17:00 - 00000269 _____ () C:\Users\hülya\AppData\Local\wgwgw.bat
2014-06-29 16:58 - 2014-06-29 16:58 - 00003200 _____ () C:\Windows\System32\Tasks\nghxp
2014-06-29 16:58 - 2014-06-29 16:58 - 00000269 _____ () C:\Users\hülya\AppData\Local\nghxp.bat
2014-06-29 16:56 - 2014-06-29 16:56 - 00003200 _____ () C:\Windows\System32\Tasks\xdmos
2014-06-29 16:56 - 2014-06-29 16:56 - 00000269 _____ () C:\Users\hülya\AppData\Local\xdmos.bat
2014-06-29 16:54 - 2014-06-29 16:54 - 00003200 _____ () C:\Windows\System32\Tasks\vlmck
2014-06-29 16:54 - 2014-06-29 16:54 - 00000269 _____ () C:\Users\hülya\AppData\Local\vlmck.bat
2014-06-29 16:52 - 2014-06-29 16:52 - 00003202 _____ () C:\Windows\System32\Tasks\rdwbfa
2014-06-29 16:52 - 2014-06-29 16:52 - 00000269 _____ () C:\Users\hülya\AppData\Local\rdwbfa.bat
2014-06-29 16:50 - 2014-06-29 16:50 - 00003204 _____ () C:\Windows\System32\Tasks\bocpdwd
2014-06-29 16:50 - 2014-06-29 16:50 - 00000269 _____ () C:\Users\hülya\AppData\Local\bocpdwd.bat
2014-06-29 16:48 - 2014-06-29 16:48 - 00003204 _____ () C:\Windows\System32\Tasks\prsudyb
2014-06-29 16:48 - 2014-06-29 16:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\prsudyb.bat
2014-06-29 16:46 - 2014-06-29 16:46 - 00003206 _____ () C:\Windows\System32\Tasks\hysdwpba
2014-06-29 16:46 - 2014-06-29 16:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\hysdwpba.bat
2014-06-29 16:44 - 2014-06-29 16:44 - 00003200 _____ () C:\Windows\System32\Tasks\aocpc
2014-06-29 16:44 - 2014-06-29 16:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\aocpc.bat
2014-06-29 16:42 - 2014-06-29 16:42 - 00003206 _____ () C:\Windows\System32\Tasks\bkdpjboa
2014-06-29 16:42 - 2014-06-29 16:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\bkdpjboa.bat
2014-06-29 16:40 - 2014-06-29 16:40 - 00003202 _____ () C:\Windows\System32\Tasks\gphqpz
2014-06-29 16:40 - 2014-06-29 16:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\gphqpz.bat
2014-06-29 16:38 - 2014-06-29 16:38 - 00003204 _____ () C:\Windows\System32\Tasks\rwbfruh
2014-06-29 16:38 - 2014-06-29 16:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\rwbfruh.bat
2014-06-29 16:36 - 2014-07-02 20:09 - 00000000 ____D () C:\Users\hülya\AppData\Local\service_06291436
2014-06-29 16:36 - 2014-07-02 20:00 - 00000000 ____D () C:\Program Files (x86)\Fraven 1.1
2014-06-29 16:36 - 2014-06-29 16:36 - 00003202 _____ () C:\Windows\System32\Tasks\prtvey
2014-06-29 16:36 - 2014-06-29 16:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\prtvey.bat
2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9ED2tmp
2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9E82tmp
2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9E62tmp
2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9E22tmp
2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9E02tmp
2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9DE2tmp
2014-06-29 16:35 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\Downloads\9DC2tmp
2014-06-29 16:35 - 2014-06-29 16:35 - 01258344 _____ () C:\Users\hülya\Downloads\Setup (3).exe
2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9EB2tmp
2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\55A4tmp
2014-06-27 01:13 - 2014-06-27 01:13 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\DivX
2014-06-27 01:13 - 2014-06-27 01:13 - 00000000 ____D () C:\Program Files\DivX
2014-06-27 01:12 - 2014-07-02 20:10 - 00000000 ____D () C:\Program Files (x86)\DivX
2014-06-27 01:11 - 2014-07-02 20:10 - 00000000 ____D () C:\ProgramData\DivX
2014-06-27 01:11 - 2014-06-27 01:11 - 00999232 _____ (DivX, LLC) C:\Users\hülya\Downloads\DivXInstaller.exe
2014-06-27 01:06 - 2014-06-27 01:06 - 00608808 _____ () C:\Users\hülya\Downloads\MediaPlayerClassicInstaller.exe
         

Alt 24.07.2014, 22:30   #11
Romiero
 
bat=exe konnte nicht gefunden werden. - Standard

bat=exe konnte nicht gefunden werden.



FRST EDITOR TEIL 2



Code:
ATTFilter
==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-07-24 22:23 - 2014-07-24 20:50 - 00022039 _____ () C:\Users\hülya\Desktop\FRST.txt
2014-07-24 22:22 - 2014-07-24 20:49 - 00000000 ____D () C:\FRST
2014-07-24 22:18 - 2014-07-24 22:18 - 00002993 _____ () C:\Users\hülya\Desktop\JRT.txt
2014-07-24 22:17 - 2013-03-26 22:38 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3460895242-2686779407-2708491527-1002
2014-07-24 22:10 - 2014-07-24 22:10 - 01016261 _____ (Thisisu) C:\Users\hülya\Desktop\JRT.exe
2014-07-24 22:10 - 2014-07-24 22:10 - 00000000 ____D () C:\Windows\ERUNT
2014-07-24 22:06 - 2013-07-03 18:21 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-07-24 22:05 - 2014-05-10 23:30 - 00001116 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-24 22:05 - 2012-07-26 09:22 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-24 22:04 - 2014-07-05 00:35 - 00000000 ____D () C:\ProgramData\SafetyNut
2014-07-24 22:04 - 2013-07-03 18:13 - 00514754 _____ () C:\Windows\PFRO.log
2014-07-24 22:03 - 2014-07-24 22:02 - 00000000 ____D () C:\AdwCleaner
2014-07-24 22:03 - 2014-03-02 20:06 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLV Player
2014-07-24 22:01 - 2014-07-24 22:01 - 01354223 _____ () C:\Users\hülya\Desktop\adwcleaner_3.216.exe
2014-07-24 22:00 - 2013-03-29 15:49 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log
2014-07-24 22:00 - 2013-03-29 15:48 - 00000000 _____ () C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-07-24 22:00 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\system32\sru
2014-07-24 21:35 - 2014-05-10 23:30 - 00001120 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-24 20:51 - 2014-07-24 20:51 - 00062687 _____ () C:\Users\hülya\Desktop\Addition.txt
2014-07-24 20:32 - 2013-07-03 18:41 - 01147210 _____ () C:\Windows\WindowsUpdate.log
2014-07-24 20:31 - 2013-04-07 03:33 - 00354304 ___SH () C:\Users\hülya\Desktop\Thumbs.db
2014-07-24 20:30 - 2014-07-24 20:30 - 02093568 _____ (Farbar) C:\Users\hülya\Desktop\FRST64.exe
2014-07-24 20:30 - 2014-07-24 20:30 - 02093568 _____ (Farbar) C:\Users\hülya\Desktop\FRST64 (1).exe
2014-07-24 20:13 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-07-24 20:13 - 2012-07-26 09:52 - 00000000 ____D () C:\Program Files\Windows Journal
2014-07-24 20:11 - 2014-07-13 01:43 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535_
2014-07-24 20:11 - 2014-07-13 01:43 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535
2014-07-24 20:11 - 2014-07-13 01:43 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51_
2014-07-24 20:11 - 2014-07-13 01:42 - 00000000 ____D () C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51
2014-07-24 20:11 - 2014-07-12 03:28 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-07-24 20:11 - 2013-03-26 22:31 - 00000000 ____D () C:\Users\hülya\AppData\Local\Hewlett-Packard
2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\WinStore
2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\system32\Macromed
2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\rescache
2014-07-24 20:11 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\registration
2014-07-24 20:11 - 2012-07-26 09:52 - 00000000 ____D () C:\Windows\ShellNew
2014-07-24 20:11 - 2012-07-26 07:38 - 00000000 ____D () C:\Windows\system32\Sysprep
2014-07-24 19:32 - 2012-08-25 05:20 - 00831158 _____ () C:\Windows\system32\perfh007.dat
2014-07-24 19:32 - 2012-08-25 05:20 - 00188760 _____ () C:\Windows\system32\perfc007.dat
2014-07-24 19:32 - 2012-07-26 09:28 - 01952918 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-07-24 04:51 - 2014-04-13 00:12 - 00001067 _____ () C:\Users\hülya\Desktop\Neues Textdokument (2).txt
2014-07-24 03:44 - 2012-07-26 07:26 - 01048576 ___SH () C:\Windows\system32\config\BBI
2014-07-24 03:39 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\system32\NDF
2014-07-23 14:25 - 2014-03-18 20:19 - 00000000 ____D () C:\Users\hülya\Desktop\HANDY BURAK CAN
2014-07-23 04:24 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\AUInstallAgent
2014-07-20 22:19 - 2014-06-18 23:27 - 00378291 _____ () C:\Users\hülya\Desktop\Ergo Vorbeereiten.odt
2014-07-20 22:19 - 2014-05-11 22:00 - 00020575 _____ () C:\Users\hülya\Desktop\OpenDocument Text (neu) (3).odt
2014-07-19 00:07 - 2014-07-05 01:06 - 00000095 _____ () C:\Users\hülya\AppData\Roaming\WB.CFG
2014-07-17 23:52 - 2014-07-17 23:52 - 01385120 _____ () C:\Users\hülya\Downloads\Setup (6).exe
2014-07-17 21:58 - 2014-01-30 23:43 - 00000344 _____ () C:\Windows\Tasks\HPCeeScheduleForhülya.job
2014-07-17 21:58 - 2013-03-26 22:27 - 00000000 ____D () C:\Users\hülya
2014-07-15 04:36 - 2014-03-22 13:57 - 00000000 ____D () C:\ProgramData\eb1cc2bcef9cee8c
2014-07-14 15:41 - 2014-05-26 01:16 - 00002221 _____ () C:\Users\hülya\Desktop\Neues Textdokument (4).txt
2014-07-13 01:44 - 2014-07-13 01:44 - 00000000 ____D () C:\Users\hülya\ChromeExtensions
2014-07-13 01:43 - 2014-07-13 01:42 - 00000186 _____ () C:\Users\hülya\Desktop\Amazon.de.url
2014-07-13 01:42 - 2014-07-13 01:42 - 01063312 _____ () C:\Users\hülya\Downloads\Adblock-Plus-fr-Chrome-lnstall.exe
2014-07-13 01:42 - 2014-07-13 01:42 - 00000000 ____D () C:\Users\hülya\Downloads\Adblock-Plus-für-Chrome
2014-07-12 13:41 - 2014-07-12 13:41 - 00323048 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-11 21:49 - 2013-07-21 20:01 - 00033456 _____ () C:\Windows\setupact.log
2014-07-11 03:27 - 2013-07-24 07:05 - 00000000 ____D () C:\Windows\system32\MRT
2014-07-11 03:27 - 2012-07-26 09:59 - 00000000 ____D () C:\Windows\CbsTemp
2014-07-11 03:26 - 2013-03-29 16:03 - 96441528 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-07-11 03:26 - 2012-07-26 07:26 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2014-07-10 02:49 - 2014-07-10 02:49 - 00000102 ____H () C:\Users\hülya\Downloads\.~lock.ups bewerbung.doc#
2014-07-10 02:38 - 2014-07-10 02:38 - 00000102 ____H () C:\Users\hülya\Desktop\.~lock.Feser Graf Gruppe Bewerbung.odt#
2014-07-09 03:28 - 2014-07-12 18:26 - 00378337 _____ () C:\Users\hülya\Documents\Ergo%20Vorbeereiten.odt_0.odt
2014-07-02 20:10 - 2014-06-27 01:12 - 00000000 ____D () C:\Program Files (x86)\DivX
2014-07-02 20:10 - 2014-06-27 01:11 - 00000000 ____D () C:\ProgramData\DivX
2014-07-02 20:09 - 2014-06-29 16:36 - 00000000 ____D () C:\Users\hülya\AppData\Local\service_06291436
2014-07-02 20:06 - 2014-06-18 19:36 - 00002239 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-07-02 20:00 - 2014-06-29 16:36 - 00000000 ____D () C:\Program Files (x86)\Fraven 1.1
2014-07-02 19:59 - 2012-08-24 19:52 - 00000000 ____D () C:\ProgramData\CyberLink
2014-07-02 19:59 - 2012-08-24 19:51 - 00000000 ____D () C:\Program Files (x86)\CyberLink
2014-07-02 19:59 - 2012-08-24 19:49 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-07-02 19:50 - 2014-07-02 19:50 - 01258080 _____ () C:\Users\hülya\Downloads\Setup (5).exe
2014-07-01 22:24 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-07-01 22:24 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-07-01 22:24 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Windows Defender
2014-07-01 22:24 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-07-01 22:19 - 2014-07-01 22:19 - 00003204 _____ () C:\Windows\System32\Tasks\jgjnrnq
2014-07-01 22:19 - 2014-07-01 22:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\jgjnrnq.bat
2014-07-01 22:17 - 2014-07-01 22:17 - 00003206 _____ () C:\Windows\System32\Tasks\eqfcxnbw
2014-07-01 22:17 - 2014-07-01 22:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\eqfcxnbw.bat
2014-07-01 22:15 - 2014-07-01 22:15 - 00003204 _____ () C:\Windows\System32\Tasks\whpxpqi
2014-07-01 22:15 - 2014-07-01 22:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\whpxpqi.bat
2014-07-01 22:13 - 2014-07-01 22:13 - 00003200 _____ () C:\Windows\System32\Tasks\lcbpg
2014-07-01 22:13 - 2014-07-01 22:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpg.bat
2014-07-01 22:11 - 2014-07-01 22:11 - 00003206 _____ () C:\Windows\System32\Tasks\kheaxbbv
2014-07-01 22:11 - 2014-07-01 22:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\kheaxbbv.bat
2014-07-01 22:09 - 2014-07-01 22:09 - 00003206 _____ () C:\Windows\System32\Tasks\xgxiyqsd
2014-07-01 22:09 - 2014-07-01 22:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\xgxiyqsd.bat
2014-07-01 22:07 - 2014-07-01 22:07 - 00003204 _____ () C:\Windows\System32\Tasks\abpicxr
2014-07-01 22:07 - 2014-07-01 22:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\abpicxr.bat
2014-07-01 22:05 - 2014-07-01 22:05 - 00003204 _____ () C:\Windows\System32\Tasks\dynshwc
2014-07-01 22:05 - 2014-07-01 22:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\dynshwc.bat
2014-07-01 22:02 - 2014-07-01 22:02 - 00003206 _____ () C:\Windows\System32\Tasks\wgwfihhq
2014-07-01 22:02 - 2014-07-01 22:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\wgwfihhq.bat
2014-07-01 00:42 - 2014-07-09 10:52 - 00702464 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-07-01 00:42 - 2014-07-09 10:52 - 00394240 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-07-01 00:42 - 2014-07-09 10:52 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-06-30 05:48 - 2014-06-30 05:48 - 00003206 _____ () C:\Windows\System32\Tasks\ulccqgwd
2014-06-30 05:48 - 2014-06-30 05:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\ulccqgwd.bat
2014-06-30 05:46 - 2014-06-30 05:46 - 00003204 _____ () C:\Windows\System32\Tasks\fvngogw
2014-06-30 05:46 - 2014-06-30 05:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\fvngogw.bat
2014-06-30 05:44 - 2014-06-30 05:44 - 00003200 _____ () C:\Windows\System32\Tasks\nfnnu
2014-06-30 05:44 - 2014-06-30 05:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\nfnnu.bat
2014-06-30 05:42 - 2014-06-30 05:42 - 00003200 _____ () C:\Windows\System32\Tasks\ebfol
2014-06-30 05:42 - 2014-06-30 05:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\ebfol.bat
2014-06-30 05:40 - 2014-06-30 05:40 - 00003204 _____ () C:\Windows\System32\Tasks\aiwkxfb
2014-06-30 05:40 - 2014-06-30 05:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\aiwkxfb.bat
2014-06-30 05:38 - 2014-06-30 05:38 - 00003206 _____ () C:\Windows\System32\Tasks\cwtodhbp
2014-06-30 05:38 - 2014-06-30 05:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\cwtodhbp.bat
2014-06-30 05:36 - 2014-06-30 05:36 - 00003202 _____ () C:\Windows\System32\Tasks\fgnngg
2014-06-30 05:36 - 2014-06-30 05:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\fgnngg.bat
2014-06-30 05:34 - 2014-06-30 05:34 - 00003200 _____ () C:\Windows\System32\Tasks\awkfl
2014-06-30 05:34 - 2014-06-30 05:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\awkfl.bat
2014-06-30 05:32 - 2014-06-30 05:32 - 00003202 _____ () C:\Windows\System32\Tasks\yldjcn
2014-06-30 05:32 - 2014-06-30 05:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\yldjcn.bat
2014-06-30 05:30 - 2014-06-30 05:30 - 00003206 _____ () C:\Windows\System32\Tasks\ekhnlrhf
2014-06-30 05:30 - 2014-06-30 05:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\ekhnlrhf.bat
2014-06-30 05:28 - 2014-06-30 05:28 - 00003206 _____ () C:\Windows\System32\Tasks\qmgcmikg
2014-06-30 05:28 - 2014-06-30 05:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\qmgcmikg.bat
2014-06-30 05:26 - 2014-06-30 05:26 - 00003204 _____ () C:\Windows\System32\Tasks\mcbxwcs
2014-06-30 05:26 - 2014-06-30 05:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\mcbxwcs.bat
2014-06-30 05:24 - 2014-06-30 05:24 - 00003206 _____ () C:\Windows\System32\Tasks\oopqhiaa
2014-06-30 05:24 - 2014-06-30 05:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\oopqhiaa.bat
2014-06-30 05:22 - 2014-06-30 05:22 - 00003204 _____ () C:\Windows\System32\Tasks\ijlmopq
2014-06-30 05:22 - 2014-06-30 05:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\ijlmopq.bat
2014-06-30 05:20 - 2014-06-30 05:20 - 00003206 _____ () C:\Windows\System32\Tasks\kfdavzwl
2014-06-30 05:20 - 2014-06-30 05:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\kfdavzwl.bat
2014-06-30 05:18 - 2014-06-30 05:18 - 00003200 _____ () C:\Windows\System32\Tasks\spuhd
2014-06-30 05:18 - 2014-06-30 05:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\spuhd.bat
2014-06-30 05:16 - 2014-06-30 05:16 - 00003202 _____ () C:\Windows\System32\Tasks\bxthdr
2014-06-30 05:16 - 2014-06-30 05:16 - 00000269 _____ () C:\Users\hülya\AppData\Local\bxthdr.bat
2014-06-30 05:14 - 2014-06-30 05:14 - 00003204 _____ () C:\Windows\System32\Tasks\fxacscu
2014-06-30 05:14 - 2014-06-30 05:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\fxacscu.bat
2014-06-30 05:12 - 2014-06-30 05:12 - 00003202 _____ () C:\Windows\System32\Tasks\beiuye
2014-06-30 05:12 - 2014-06-30 05:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\beiuye.bat
2014-06-30 05:10 - 2014-06-30 05:10 - 00003202 _____ () C:\Windows\System32\Tasks\lbgcbx
2014-06-30 05:10 - 2014-06-30 05:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\lbgcbx.bat
2014-06-30 05:08 - 2014-06-30 05:08 - 00003200 _____ () C:\Windows\System32\Tasks\erawe
2014-06-30 05:08 - 2014-06-30 05:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\erawe.bat
2014-06-30 05:06 - 2014-06-30 05:06 - 00003200 _____ () C:\Windows\System32\Tasks\caebg
2014-06-30 05:06 - 2014-06-30 05:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\caebg.bat
2014-06-30 05:04 - 2014-06-30 05:04 - 00003206 _____ () C:\Windows\System32\Tasks\hqqbbcll
2014-06-30 05:04 - 2014-06-30 05:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\hqqbbcll.bat
2014-06-30 05:01 - 2014-06-30 05:01 - 00003204 _____ () C:\Windows\System32\Tasks\ruxcmqt
2014-06-30 05:01 - 2014-06-30 05:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ruxcmqt.bat
2014-06-30 04:59 - 2014-06-30 04:59 - 00003206 _____ () C:\Windows\System32\Tasks\wxxabbdl
2014-06-30 04:59 - 2014-06-30 04:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\wxxabbdl.bat
2014-06-30 04:57 - 2014-06-30 04:57 - 00003204 _____ () C:\Windows\System32\Tasks\tbfedip
2014-06-30 04:57 - 2014-06-30 04:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbfedip.bat
2014-06-30 04:55 - 2014-06-30 04:55 - 00003200 _____ () C:\Windows\System32\Tasks\khtpt
2014-06-30 04:55 - 2014-06-30 04:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\khtpt.bat
2014-06-30 04:53 - 2014-06-30 04:53 - 00003204 _____ () C:\Windows\System32\Tasks\pakteow
2014-06-30 04:53 - 2014-06-30 04:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\pakteow.bat
2014-06-30 04:51 - 2014-06-30 04:51 - 00003200 _____ () C:\Windows\System32\Tasks\tsqpv
2014-06-30 04:51 - 2014-06-30 04:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\tsqpv.bat
2014-06-30 04:49 - 2014-06-30 04:49 - 00003202 _____ () C:\Windows\System32\Tasks\fsigct
2014-06-30 04:49 - 2014-06-30 04:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\fsigct.bat
2014-06-30 04:47 - 2014-06-30 04:47 - 00003202 _____ () C:\Windows\System32\Tasks\quwaeg
2014-06-30 04:47 - 2014-06-30 04:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\quwaeg.bat
2014-06-30 04:45 - 2014-06-30 04:45 - 00003200 _____ () C:\Windows\System32\Tasks\nveck
2014-06-30 04:45 - 2014-06-30 04:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\nveck.bat
2014-06-30 04:43 - 2014-06-30 04:43 - 00003202 _____ () C:\Windows\System32\Tasks\tqwtbw
2014-06-30 04:43 - 2014-06-30 04:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\tqwtbw.bat
2014-06-30 04:41 - 2014-06-30 04:41 - 00003200 _____ () C:\Windows\System32\Tasks\zlqcg
2014-06-30 04:41 - 2014-06-30 04:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\zlqcg.bat
2014-06-30 04:36 - 2014-06-30 04:36 - 00003204 _____ () C:\Windows\System32\Tasks\jehlnce
2014-06-30 04:36 - 2014-06-30 04:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\jehlnce.bat
2014-06-30 04:34 - 2014-06-30 04:34 - 00003204 _____ () C:\Windows\System32\Tasks\aguiubo
2014-06-30 04:34 - 2014-06-30 04:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\aguiubo.bat
2014-06-30 04:32 - 2014-06-30 04:32 - 00003200 _____ () C:\Windows\System32\Tasks\lqntf
2014-06-30 04:32 - 2014-06-30 04:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\lqntf.bat
2014-06-30 04:30 - 2014-06-30 04:30 - 00003200 _____ () C:\Windows\System32\Tasks\dulcs
2014-06-30 04:30 - 2014-06-30 04:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\dulcs.bat
2014-06-30 04:28 - 2014-06-30 04:28 - 00003200 _____ () C:\Windows\System32\Tasks\ljivt
2014-06-30 04:28 - 2014-06-30 04:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\ljivt.bat
2014-06-30 04:26 - 2014-06-30 04:26 - 00003206 _____ () C:\Windows\System32\Tasks\lrweaflq
2014-06-30 04:26 - 2014-06-30 04:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\lrweaflq.bat
2014-06-30 04:24 - 2014-06-30 04:24 - 00003200 _____ () C:\Windows\System32\Tasks\xdmoi
2014-06-30 04:24 - 2014-06-30 04:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\xdmoi.bat
2014-06-30 04:22 - 2014-06-30 04:22 - 00003200 _____ () C:\Windows\System32\Tasks\jdymi
2014-06-30 04:22 - 2014-06-30 04:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\jdymi.bat
2014-06-30 04:20 - 2014-06-30 04:20 - 00003202 _____ () C:\Windows\System32\Tasks\sxdjht
2014-06-30 04:20 - 2014-06-30 04:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\sxdjht.bat
2014-06-30 04:18 - 2014-06-30 04:18 - 00003204 _____ () C:\Windows\System32\Tasks\noohhij
2014-06-30 04:18 - 2014-06-30 04:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\noohhij.bat
2014-06-30 04:14 - 2014-06-30 04:14 - 00003204 _____ () C:\Windows\System32\Tasks\hcdeabo
2014-06-30 04:14 - 2014-06-30 04:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\hcdeabo.bat
2014-06-30 04:12 - 2014-06-30 04:12 - 00003202 _____ () C:\Windows\System32\Tasks\cfdfey
2014-06-30 04:12 - 2014-06-30 04:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\cfdfey.bat
2014-06-30 04:10 - 2014-06-30 04:10 - 00003204 _____ () C:\Windows\System32\Tasks\gwwoohh
2014-06-30 04:10 - 2014-06-30 04:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\gwwoohh.bat
2014-06-30 04:08 - 2014-06-30 04:08 - 00003206 _____ () C:\Windows\System32\Tasks\izuvpicd
2014-06-30 04:08 - 2014-06-30 04:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\izuvpicd.bat
2014-06-30 04:06 - 2014-06-30 04:06 - 00003206 _____ () C:\Windows\System32\Tasks\cfcfnrnj
2014-06-30 04:06 - 2014-06-30 04:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\cfcfnrnj.bat
2014-06-30 04:04 - 2014-06-30 04:04 - 00003200 _____ () C:\Windows\System32\Tasks\ekaix
2014-06-30 04:04 - 2014-06-30 04:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\ekaix.bat
2014-06-30 03:42 - 2014-06-30 03:42 - 00003202 _____ () C:\Windows\System32\Tasks\acxkgi
2014-06-30 03:42 - 2014-06-30 03:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\acxkgi.bat
2014-06-30 03:40 - 2014-06-30 03:40 - 00003206 _____ () C:\Windows\System32\Tasks\eulkcjbf
2014-06-30 03:40 - 2014-06-30 03:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\eulkcjbf.bat
2014-06-30 03:38 - 2014-06-30 03:38 - 00003202 _____ () C:\Windows\System32\Tasks\fwhaxi
2014-06-30 03:38 - 2014-06-30 03:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\fwhaxi.bat
2014-06-30 03:36 - 2014-06-30 03:36 - 00003200 _____ () C:\Windows\System32\Tasks\tyfrx
2014-06-30 03:36 - 2014-06-30 03:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\tyfrx.bat
2014-06-30 03:34 - 2014-06-30 03:34 - 00003202 _____ () C:\Windows\System32\Tasks\ovfemt
2014-06-30 03:34 - 2014-06-30 03:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\ovfemt.bat
2014-06-30 03:32 - 2014-06-30 03:32 - 00003202 _____ () C:\Windows\System32\Tasks\lcbpfk
2014-06-30 03:32 - 2014-06-30 03:32 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpfk.bat
2014-06-30 03:30 - 2014-06-30 03:30 - 00003204 _____ () C:\Windows\System32\Tasks\ubpckyn
2014-06-30 03:30 - 2014-06-30 03:30 - 00000269 _____ () C:\Users\hülya\AppData\Local\ubpckyn.bat
2014-06-30 03:28 - 2014-06-30 03:28 - 00003202 _____ () C:\Windows\System32\Tasks\qcuecu
2014-06-30 03:28 - 2014-06-30 03:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\qcuecu.bat
2014-06-30 03:26 - 2014-06-30 03:26 - 00003204 _____ () C:\Windows\System32\Tasks\wfoefpa
2014-06-30 03:26 - 2014-06-30 03:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\wfoefpa.bat
2014-06-30 03:24 - 2014-06-30 03:24 - 00003206 _____ () C:\Windows\System32\Tasks\vggvgguf
2014-06-30 03:24 - 2014-06-30 03:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\vggvgguf.bat
2014-06-30 03:22 - 2014-06-30 03:22 - 00003202 _____ () C:\Windows\System32\Tasks\gufetd
2014-06-30 03:22 - 2014-06-30 03:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\gufetd.bat
2014-06-30 03:20 - 2014-06-30 03:20 - 00003202 _____ () C:\Windows\System32\Tasks\ljwusx
2014-06-30 03:20 - 2014-06-30 03:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\ljwusx.bat
2014-06-30 00:13 - 2014-06-30 00:13 - 00003200 _____ () C:\Windows\System32\Tasks\ztyse
2014-06-30 00:13 - 2014-06-30 00:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\ztyse.bat
2014-06-30 00:11 - 2014-06-30 00:11 - 00003200 _____ () C:\Windows\System32\Tasks\bdadk
2014-06-30 00:11 - 2014-06-30 00:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\bdadk.bat
2014-06-30 00:09 - 2014-06-30 00:09 - 00003204 _____ () C:\Windows\System32\Tasks\trwucgl
2014-06-30 00:09 - 2014-06-30 00:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\trwucgl.bat
2014-06-30 00:07 - 2014-06-30 00:07 - 00003206 _____ () C:\Windows\System32\Tasks\tbeerxvb
2014-06-30 00:07 - 2014-06-30 00:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbeerxvb.bat
2014-06-30 00:05 - 2014-06-30 00:05 - 00003200 _____ () C:\Windows\System32\Tasks\ccbfv
2014-06-30 00:05 - 2014-06-30 00:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\ccbfv.bat
2014-06-30 00:03 - 2014-06-30 00:03 - 00003202 _____ () C:\Windows\System32\Tasks\vveett
2014-06-30 00:03 - 2014-06-30 00:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\vveett.bat
2014-06-30 00:01 - 2014-06-30 00:01 - 00003206 _____ () C:\Windows\System32\Tasks\ligdqolj
2014-06-30 00:01 - 2014-06-30 00:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ligdqolj.bat
2014-06-29 23:59 - 2014-06-29 23:59 - 00003204 _____ () C:\Windows\System32\Tasks\vdksahw
2014-06-29 23:59 - 2014-06-29 23:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\vdksahw.bat
2014-06-29 23:57 - 2014-06-29 23:57 - 00003206 _____ () C:\Windows\System32\Tasks\vdsbqhwf
2014-06-29 23:57 - 2014-06-29 23:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\vdsbqhwf.bat
2014-06-29 23:55 - 2014-06-29 23:55 - 00003200 _____ () C:\Windows\System32\Tasks\reiba
2014-06-29 23:55 - 2014-06-29 23:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\reiba.bat
2014-06-29 23:53 - 2014-06-29 23:53 - 00003206 _____ () C:\Windows\System32\Tasks\kwtxbhko
2014-06-29 23:53 - 2014-06-29 23:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\kwtxbhko.bat
2014-06-29 23:51 - 2014-06-29 23:51 - 00003204 _____ () C:\Windows\System32\Tasks\koagcns
2014-06-29 23:51 - 2014-06-29 23:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\koagcns.bat
2014-06-29 23:49 - 2014-06-29 23:49 - 00003206 _____ () C:\Windows\System32\Tasks\vveeettb
2014-06-29 23:49 - 2014-06-29 23:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\vveeettb.bat
2014-06-29 23:47 - 2014-06-29 23:47 - 00003206 _____ () C:\Windows\System32\Tasks\rdpsgibx
2014-06-29 23:47 - 2014-06-29 23:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\rdpsgibx.bat
2014-06-29 23:45 - 2014-06-29 23:45 - 00003204 _____ () C:\Windows\System32\Tasks\quejuej
2014-06-29 23:45 - 2014-06-29 23:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\quejuej.bat
2014-06-29 23:43 - 2014-06-29 23:43 - 00003202 _____ () C:\Windows\System32\Tasks\icdytn
2014-06-29 23:43 - 2014-06-29 23:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\icdytn.bat
2014-06-29 23:41 - 2014-06-29 23:41 - 00003206 _____ () C:\Windows\System32\Tasks\ajcohkcp
2014-06-29 23:41 - 2014-06-29 23:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\ajcohkcp.bat
2014-06-29 23:39 - 2014-06-29 23:39 - 00003206 _____ () C:\Windows\System32\Tasks\gofohwhp
2014-06-29 23:39 - 2014-06-29 23:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\gofohwhp.bat
2014-06-29 23:37 - 2014-06-29 23:37 - 00003206 _____ () C:\Windows\System32\Tasks\dulctdar
2014-06-29 23:37 - 2014-06-29 23:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\dulctdar.bat
2014-06-29 23:35 - 2014-06-29 23:35 - 00003200 _____ () C:\Windows\System32\Tasks\qnifi
2014-06-29 23:35 - 2014-06-29 23:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\qnifi.bat
2014-06-29 21:33 - 2014-06-29 21:33 - 00003200 _____ () C:\Windows\System32\Tasks\daetq
2014-06-29 21:33 - 2014-06-29 21:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\daetq.bat
2014-06-29 21:31 - 2014-06-29 21:31 - 00003206 _____ () C:\Windows\System32\Tasks\akcohzmg
2014-06-29 21:31 - 2014-06-29 21:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\akcohzmg.bat
2014-06-29 21:29 - 2014-06-29 21:29 - 00003202 _____ () C:\Windows\System32\Tasks\nooffg
2014-06-29 21:29 - 2014-06-29 21:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\nooffg.bat
2014-06-29 21:27 - 2014-06-29 21:27 - 00003204 _____ () C:\Windows\System32\Tasks\lqgmrpu
2014-06-29 21:27 - 2014-06-29 21:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\lqgmrpu.bat
2014-06-29 21:25 - 2014-06-29 21:25 - 00003204 _____ () C:\Windows\System32\Tasks\cnaupdx
2014-06-29 21:25 - 2014-06-29 21:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\cnaupdx.bat
2014-06-29 21:23 - 2014-06-29 21:23 - 00003206 _____ () C:\Windows\System32\Tasks\rwimaepu
2014-06-29 21:23 - 2014-06-29 21:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\rwimaepu.bat
2014-06-29 21:21 - 2014-06-29 21:21 - 00003200 _____ () C:\Windows\System32\Tasks\iavic
2014-06-29 21:21 - 2014-06-29 21:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\iavic.bat
2014-06-29 21:19 - 2014-06-29 21:19 - 00003200 _____ () C:\Windows\System32\Tasks\hajdc
2014-06-29 21:19 - 2014-06-29 21:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\hajdc.bat
2014-06-29 21:17 - 2014-06-29 21:17 - 00003206 _____ () C:\Windows\System32\Tasks\jdauqmhd
2014-06-29 21:17 - 2014-06-29 21:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\jdauqmhd.bat
2014-06-29 21:15 - 2014-06-29 21:15 - 00003204 _____ () C:\Windows\System32\Tasks\vdksa
2014-06-29 21:15 - 2014-06-29 21:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\utjiwdc.bat
2014-06-29 21:13 - 2014-06-29 21:13 - 00003204 _____ () C:\Windows\System32\Tasks\hwooghw
2014-06-29 21:13 - 2014-06-29 21:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\hwooghw.bat
2014-06-29 21:11 - 2014-06-29 21:11 - 00003204 _____ () C:\Windows\System32\Tasks\ifauytq
2014-06-29 21:11 - 2014-06-29 21:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\ifauytq.bat
2014-06-29 21:09 - 2014-06-29 21:09 - 00003204 _____ () C:\Windows\System32\Tasks\erawlaq
2014-06-29 21:09 - 2014-06-29 21:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\erawlaq.bat
2014-06-29 21:07 - 2014-06-29 21:07 - 00003200 _____ () C:\Windows\System32\Tasks\lxdiu
2014-06-29 21:07 - 2014-06-29 21:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\lxdiu.bat
2014-06-29 21:05 - 2014-06-29 21:05 - 00003200 _____ () C:\Windows\System32\Tasks\pjddy
2014-06-29 21:05 - 2014-06-29 21:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\pjddy.bat
2014-06-29 21:03 - 2014-06-29 21:03 - 00003206 _____ () C:\Windows\System32\Tasks\fqcdnfrr
2014-06-29 21:03 - 2014-06-29 21:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\fqcdnfrr.bat
2014-06-29 21:01 - 2014-06-29 21:01 - 00003206 _____ () C:\Windows\System32\Tasks\ghpaijjd
2014-06-29 21:01 - 2014-06-29 21:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\ghpaijjd.bat
2014-06-29 20:59 - 2014-06-29 20:59 - 00003206 _____ () C:\Windows\System32\Tasks\hbunicup
2014-06-29 20:59 - 2014-06-29 20:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\hbunicup.bat
2014-06-29 20:57 - 2014-06-29 20:57 - 00003204 _____ () C:\Windows\System32\Tasks\aaoibwj
2014-06-29 20:57 - 2014-06-29 20:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\aaoibwj.bat
2014-06-29 20:55 - 2014-06-29 20:55 - 00003204 _____ () C:\Windows\System32\Tasks\aaunbtn
2014-06-29 20:55 - 2014-06-29 20:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\aaunbtn.bat
2014-06-29 20:53 - 2014-06-29 20:53 - 00003206 _____ () C:\Windows\System32\Tasks\mffummlk
2014-06-29 20:53 - 2014-06-29 20:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\mffummlk.bat
2014-06-29 20:51 - 2014-06-29 20:51 - 00003200 _____ () C:\Windows\System32\Tasks\refju
2014-06-29 20:51 - 2014-06-29 20:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\refju.bat
2014-06-29 20:49 - 2014-06-29 20:49 - 00003204 _____ () C:\Windows\System32\Tasks\daechca
2014-06-29 20:49 - 2014-06-29 20:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\daechca.bat
2014-06-29 20:47 - 2014-06-29 20:47 - 00003206 _____ () C:\Windows\System32\Tasks\idxsnplf
2014-06-29 20:47 - 2014-06-29 20:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\idxsnplf.bat
2014-06-29 20:45 - 2014-06-29 20:45 - 00003204 _____ () C:\Windows\System32\Tasks\xrunfjc
2014-06-29 20:45 - 2014-06-29 20:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\xrunfjc.bat
2014-06-29 20:43 - 2014-06-29 20:43 - 00003200 _____ () C:\Windows\System32\Tasks\ubovd
2014-06-29 20:43 - 2014-06-29 20:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\ubovd.bat
2014-06-29 20:41 - 2014-06-29 20:41 - 00003202 _____ () C:\Windows\System32\Tasks\eblbzi
2014-06-29 20:41 - 2014-06-29 20:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\eblbzi.bat
2014-06-29 20:39 - 2014-06-29 20:39 - 00003202 _____ () C:\Windows\System32\Tasks\tbgmtf
2014-06-29 20:39 - 2014-06-29 20:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbgmtf.bat
2014-06-29 20:37 - 2014-06-29 20:37 - 00003206 _____ () C:\Windows\System32\Tasks\rvadoswa
2014-06-29 20:37 - 2014-06-29 20:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\rvadoswa.bat
2014-06-29 20:35 - 2014-06-29 20:35 - 00003206 _____ () C:\Windows\System32\Tasks\numsabiy
2014-06-29 20:35 - 2014-06-29 20:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\numsabiy.bat
2014-06-29 20:33 - 2014-06-29 20:33 - 00003204 _____ () C:\Windows\System32\Tasks\kotimqn
2014-06-29 20:33 - 2014-06-29 20:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\kotimqn.bat
2014-06-29 20:31 - 2014-06-29 20:31 - 00003200 _____ () C:\Windows\System32\Tasks\lkifm
2014-06-29 20:31 - 2014-06-29 20:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\lkifm.bat
2014-06-29 20:29 - 2014-06-29 20:29 - 00003200 _____ () C:\Windows\System32\Tasks\fjdoh
2014-06-29 20:29 - 2014-06-29 20:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\fjdoh.bat
2014-06-29 20:27 - 2014-06-29 20:27 - 00003202 _____ () C:\Windows\System32\Tasks\fkvoal
2014-06-29 20:27 - 2014-06-29 20:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\fkvoal.bat
2014-06-29 20:25 - 2014-06-29 20:25 - 00003206 _____ () C:\Windows\System32\Tasks\fdcaqonm
2014-06-29 20:25 - 2014-06-29 20:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\fdcaqonm.bat
2014-06-29 20:23 - 2014-06-29 20:23 - 00003202 _____ () C:\Windows\System32\Tasks\oqyaks
2014-06-29 20:23 - 2014-06-29 20:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\oqyaks.bat
2014-06-29 20:21 - 2014-06-29 20:21 - 00003204 _____ () C:\Windows\System32\Tasks\kotxmqu
2014-06-29 20:21 - 2014-06-29 20:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\kotxmqu.bat
2014-06-29 20:19 - 2014-06-29 20:19 - 00003204 _____ () C:\Windows\System32\Tasks\iddytni
2014-06-29 20:19 - 2014-06-29 20:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\iddytni.bat
2014-06-29 20:17 - 2014-06-29 20:17 - 00003206 _____ () C:\Windows\System32\Tasks\kfujeuqf
2014-06-29 20:17 - 2014-06-29 20:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\kfujeuqf.bat
2014-06-29 20:15 - 2014-06-29 20:15 - 00003202 _____ () C:\Windows\System32\Tasks\whqaqs
2014-06-29 20:15 - 2014-06-29 20:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\whqaqs.bat
2014-06-29 20:13 - 2014-06-29 20:13 - 00003200 _____ () C:\Windows\System32\Tasks\lcbpv
2014-06-29 20:13 - 2014-06-29 20:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\lcbpv.bat
2014-06-29 20:11 - 2014-06-29 20:11 - 00003206 _____ () C:\Windows\System32\Tasks\psuprudi
2014-06-29 20:11 - 2014-06-29 20:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\psuprudi.bat
2014-06-29 20:09 - 2014-06-29 20:09 - 00003206 _____ () C:\Windows\System32\Tasks\numttcsa
2014-06-29 20:09 - 2014-06-29 20:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\numttcsa.bat
2014-06-29 20:07 - 2014-06-29 20:07 - 00003202 _____ () C:\Windows\System32\Tasks\jfjnqm
2014-06-29 20:07 - 2014-06-29 20:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\jfjnqm.bat
2014-06-29 20:05 - 2014-06-29 20:05 - 00003204 _____ () C:\Windows\System32\Tasks\egqajsk
2014-06-29 20:05 - 2014-06-29 20:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\egqajsk.bat
2014-06-29 20:03 - 2014-06-29 20:03 - 00003202 _____ () C:\Windows\System32\Tasks\hztmgy
2014-06-29 20:03 - 2014-06-29 20:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\hztmgy.bat
2014-06-29 20:01 - 2014-06-29 20:01 - 00003200 _____ () C:\Windows\System32\Tasks\isnoa
2014-06-29 20:01 - 2014-06-29 20:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\isnoa.bat
2014-06-29 19:59 - 2014-06-29 19:59 - 00003206 _____ () C:\Windows\System32\Tasks\tbglafes
2014-06-29 19:59 - 2014-06-29 19:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\tbglafes.bat
2014-06-29 19:57 - 2014-06-29 19:57 - 00003206 _____ () C:\Windows\System32\Tasks\ukbhckaa
2014-06-29 19:57 - 2014-06-29 19:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\ukbhckaa.bat
2014-06-29 19:14 - 2014-06-29 19:14 - 00003206 _____ () C:\Windows\System32\Tasks\thlrdkxu
2014-06-29 19:14 - 2014-06-29 19:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\thlrdkxu.bat
2014-06-29 19:12 - 2014-06-29 19:12 - 00003202 _____ () C:\Windows\System32\Tasks\zuhtgb
2014-06-29 19:12 - 2014-06-29 19:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\zuhtgb.bat
2014-06-29 19:10 - 2014-06-29 19:10 - 00003202 _____ () C:\Windows\System32\Tasks\kbxmda
2014-06-29 19:10 - 2014-06-29 19:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\kbxmda.bat
2014-06-29 19:08 - 2014-06-29 19:08 - 00003200 _____ () C:\Windows\System32\Tasks\edeaa
2014-06-29 19:08 - 2014-06-29 19:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\edeaa.bat
2014-06-29 19:06 - 2014-06-29 19:06 - 00003206 _____ () C:\Windows\System32\Tasks\rvaeitxc
2014-06-29 19:06 - 2014-06-29 19:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\rvaeitxc.bat
2014-06-29 19:04 - 2014-06-29 19:04 - 00003202 _____ () C:\Windows\System32\Tasks\dafdid
2014-06-29 19:04 - 2014-06-29 19:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\dafdid.bat
2014-06-29 19:02 - 2014-06-29 19:02 - 00003200 _____ () C:\Windows\System32\Tasks\auaco
2014-06-29 19:02 - 2014-06-29 19:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\auaco.bat
2014-06-29 19:00 - 2014-06-29 19:00 - 00003206 _____ () C:\Windows\System32\Tasks\ydoalwbt
2014-06-29 19:00 - 2014-06-29 19:00 - 00000269 _____ () C:\Users\hülya\AppData\Local\ydoalwbt.bat
2014-06-29 18:58 - 2014-06-29 18:58 - 00003206 _____ () C:\Windows\System32\Tasks\efqidtef
2014-06-29 18:58 - 2014-06-29 18:58 - 00000269 _____ () C:\Users\hülya\AppData\Local\efqidtef.bat
2014-06-29 18:56 - 2014-06-29 18:56 - 00003206 _____ () C:\Windows\System32\Tasks\piqzluev
2014-06-29 18:56 - 2014-06-29 18:56 - 00000269 _____ () C:\Users\hülya\AppData\Local\piqzluev.bat
2014-06-29 18:54 - 2014-06-29 18:54 - 00003204 _____ () C:\Windows\System32\Tasks\aavaouj
2014-06-29 18:54 - 2014-06-29 18:54 - 00000269 _____ () C:\Users\hülya\AppData\Local\aavaouj.bat
2014-06-29 18:48 - 2014-06-29 18:48 - 00003204 _____ () C:\Windows\System32\Tasks\ahubocp
2014-06-29 18:48 - 2014-06-29 18:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\ahubocp.bat
2014-06-29 18:46 - 2014-06-29 18:46 - 00003206 _____ () C:\Windows\System32\Tasks\jfbdsujm
2014-06-29 18:46 - 2014-06-29 18:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\jfbdsujm.bat
2014-06-29 18:44 - 2014-06-29 18:44 - 00003202 _____ () C:\Windows\System32\Tasks\vmddsj
2014-06-29 18:44 - 2014-06-29 18:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\vmddsj.bat
2014-06-29 18:42 - 2014-06-29 18:42 - 00003200 _____ () C:\Windows\System32\Tasks\giqss
2014-06-29 18:42 - 2014-06-29 18:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\giqss.bat
2014-06-29 18:40 - 2014-06-29 18:40 - 00003206 _____ () C:\Windows\System32\Tasks\thbbobwc
2014-06-29 18:40 - 2014-06-29 18:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\thbbobwc.bat
2014-06-29 18:38 - 2014-06-29 18:38 - 00003206 _____ () C:\Windows\System32\Tasks\ruxjmqcg
2014-06-29 18:38 - 2014-06-29 18:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\ruxjmqcg.bat
2014-06-29 18:36 - 2014-06-29 18:36 - 00003204 _____ () C:\Windows\System32\Tasks\ahubvcq
2014-06-29 18:36 - 2014-06-29 18:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\ahubvcq.bat
2014-06-29 18:34 - 2014-06-29 18:34 - 00000269 _____ () C:\Users\hülya\AppData\Local\gfiaa.bat
2014-06-29 18:33 - 2014-06-29 18:33 - 00003200 _____ () C:\Windows\System32\Tasks\gfiaa
2014-06-29 18:31 - 2014-06-29 18:31 - 00003206 _____ () C:\Windows\System32\Tasks\qlgqlgjm
2014-06-29 18:31 - 2014-06-29 18:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\qlgqlgjm.bat
2014-06-29 18:29 - 2014-06-29 18:29 - 00003202 _____ () C:\Windows\System32\Tasks\oqysbd
2014-06-29 18:29 - 2014-06-29 18:29 - 00000269 _____ () C:\Users\hülya\AppData\Local\oqysbd.bat
2014-06-29 18:27 - 2014-06-29 18:27 - 00003202 _____ () C:\Windows\System32\Tasks\ykvbmx
2014-06-29 18:27 - 2014-06-29 18:27 - 00000269 _____ () C:\Users\hülya\AppData\Local\ykvbmx.bat
2014-06-29 18:25 - 2014-06-29 18:25 - 00003206 _____ () C:\Windows\System32\Tasks\aocpcqer
2014-06-29 18:25 - 2014-06-29 18:25 - 00000269 _____ () C:\Users\hülya\AppData\Local\aocpcqer.bat
2014-06-29 18:23 - 2014-06-29 18:23 - 00003200 _____ () C:\Windows\System32\Tasks\fepha
2014-06-29 18:23 - 2014-06-29 18:23 - 00000269 _____ () C:\Users\hülya\AppData\Local\fepha.bat
2014-06-29 18:21 - 2014-06-29 18:21 - 00003204 _____ () C:\Windows\System32\Tasks\acceyau
2014-06-29 18:21 - 2014-06-29 18:21 - 00000269 _____ () C:\Users\hülya\AppData\Local\acceyau.bat
2014-06-29 18:19 - 2014-06-29 18:19 - 00003202 _____ () C:\Windows\System32\Tasks\tymrgl
2014-06-29 18:19 - 2014-06-29 18:19 - 00000269 _____ () C:\Users\hülya\AppData\Local\tymrgl.bat
2014-06-29 18:17 - 2014-06-29 18:17 - 00003202 _____ () C:\Windows\System32\Tasks\cxuqfu
2014-06-29 18:17 - 2014-06-29 18:17 - 00000269 _____ () C:\Users\hülya\AppData\Local\cxuqfu.bat
2014-06-29 18:15 - 2014-06-29 18:15 - 00003200 _____ () C:\Windows\System32\Tasks\gxqja
2014-06-29 18:15 - 2014-06-29 18:15 - 00000269 _____ () C:\Users\hülya\AppData\Local\gxqja.bat
2014-06-29 18:13 - 2014-06-29 18:13 - 00003202 _____ () C:\Windows\System32\Tasks\xiscnx
2014-06-29 18:13 - 2014-06-29 18:13 - 00000269 _____ () C:\Users\hülya\AppData\Local\xiscnx.bat
2014-06-29 18:11 - 2014-06-29 18:11 - 00003204 _____ () C:\Windows\System32\Tasks\gffffee
2014-06-29 18:11 - 2014-06-29 18:11 - 00000269 _____ () C:\Users\hülya\AppData\Local\gffffee.bat
2014-06-29 18:09 - 2014-06-29 18:09 - 00003200 _____ () C:\Windows\System32\Tasks\ccafn
2014-06-29 18:09 - 2014-06-29 18:09 - 00000269 _____ () C:\Users\hülya\AppData\Local\ccafn.bat
2014-06-29 18:07 - 2014-06-29 18:07 - 00003200 _____ () C:\Windows\System32\Tasks\jvrui
2014-06-29 18:07 - 2014-06-29 18:07 - 00000269 _____ () C:\Users\hülya\AppData\Local\jvrui.bat
2014-06-29 18:05 - 2014-06-29 18:05 - 00003204 _____ () C:\Windows\System32\Tasks\qdfrefk
2014-06-29 18:05 - 2014-06-29 18:05 - 00000269 _____ () C:\Users\hülya\AppData\Local\qdfrefk.bat
2014-06-29 18:03 - 2014-06-29 18:03 - 00003204 _____ () C:\Windows\System32\Tasks\eewxpph
2014-06-29 18:03 - 2014-06-29 18:03 - 00000269 _____ () C:\Users\hülya\AppData\Local\eewxpph.bat
2014-06-29 18:01 - 2014-06-29 18:01 - 00003200 _____ () C:\Windows\System32\Tasks\icwxl
2014-06-29 18:01 - 2014-06-29 18:01 - 00000269 _____ () C:\Users\hülya\AppData\Local\icwxl.bat
2014-06-29 17:59 - 2014-06-29 17:59 - 00003200 _____ () C:\Windows\System32\Tasks\wnfne
2014-06-29 17:59 - 2014-06-29 17:59 - 00000269 _____ () C:\Users\hülya\AppData\Local\wnfne.bat
2014-06-29 17:57 - 2014-06-29 17:57 - 00003202 _____ () C:\Windows\System32\Tasks\xizdef
2014-06-29 17:57 - 2014-06-29 17:57 - 00000269 _____ () C:\Users\hülya\AppData\Local\xizdef.bat
2014-06-29 17:55 - 2014-06-29 17:55 - 00003206 _____ () C:\Windows\System32\Tasks\quxbfilv
2014-06-29 17:55 - 2014-06-29 17:55 - 00000269 _____ () C:\Users\hülya\AppData\Local\quxbfilv.bat
2014-06-29 17:53 - 2014-06-29 17:53 - 00003202 _____ () C:\Windows\System32\Tasks\zfsdqf
2014-06-29 17:53 - 2014-06-29 17:53 - 00000269 _____ () C:\Users\hülya\AppData\Local\zfsdqf.bat
2014-06-29 17:52 - 2014-06-29 17:52 - 00623696 _____ (Click Me In Limited) C:\Users\hülya\AppData\Local\nsu16A4.tmp
2014-06-29 17:51 - 2014-06-29 17:51 - 00003206 _____ () C:\Windows\System32\Tasks\kpmrotfu
2014-06-29 17:51 - 2014-06-29 17:51 - 00000269 _____ () C:\Users\hülya\AppData\Local\kpmrotfu.bat
2014-06-29 17:49 - 2014-06-29 17:49 - 00003204 _____ () C:\Windows\System32\Tasks\khepmjn
2014-06-29 17:49 - 2014-06-29 17:49 - 00000269 _____ () C:\Users\hülya\AppData\Local\khepmjn.bat
2014-06-29 17:47 - 2014-06-29 17:47 - 00003204 _____ () C:\Windows\System32\Tasks\beyuxlg
2014-06-29 17:47 - 2014-06-29 17:47 - 00000269 _____ () C:\Users\hülya\AppData\Local\beyuxlg.bat
2014-06-29 17:45 - 2014-06-29 17:45 - 00003200 _____ () C:\Windows\System32\Tasks\eddzr
2014-06-29 17:45 - 2014-06-29 17:45 - 00000269 _____ () C:\Users\hülya\AppData\Local\eddzr.bat
2014-06-29 17:43 - 2014-06-29 17:43 - 00003204 _____ () C:\Windows\System32\Tasks\cpdlguc
2014-06-29 17:43 - 2014-06-29 17:43 - 00000269 _____ () C:\Users\hülya\AppData\Local\cpdlguc.bat
2014-06-29 17:41 - 2014-06-29 17:41 - 00003206 _____ () C:\Windows\System32\Tasks\gaiccbvd
2014-06-29 17:41 - 2014-06-29 17:41 - 00000269 _____ () C:\Users\hülya\AppData\Local\gaiccbvd.bat
2014-06-29 17:39 - 2014-06-29 17:39 - 00003202 _____ () C:\Windows\System32\Tasks\iauhbv
2014-06-29 17:39 - 2014-06-29 17:39 - 00000269 _____ () C:\Users\hülya\AppData\Local\iauhbv.bat
2014-06-29 17:37 - 2014-06-29 17:37 - 00003206 _____ () C:\Windows\System32\Tasks\eudbraxo
2014-06-29 17:37 - 2014-06-29 17:37 - 00000269 _____ () C:\Users\hülya\AppData\Local\eudbraxo.bat
2014-06-29 17:35 - 2014-06-29 17:35 - 00003206 _____ () C:\Windows\System32\Tasks\pxrbjdlu
2014-06-29 17:35 - 2014-06-29 17:35 - 00000269 _____ () C:\Users\hülya\AppData\Local\pxrbjdlu.bat
2014-06-29 17:33 - 2014-06-29 17:33 - 00003200 _____ () C:\Windows\System32\Tasks\ilvab
2014-06-29 17:33 - 2014-06-29 17:33 - 00000269 _____ () C:\Users\hülya\AppData\Local\ilvab.bat
2014-06-29 17:31 - 2014-06-29 17:31 - 00003204 _____ () C:\Windows\System32\Tasks\vwgfvve
2014-06-29 17:31 - 2014-06-29 17:31 - 00000269 _____ () C:\Users\hülya\AppData\Local\vwgfvve.bat
2014-06-29 17:28 - 2014-06-29 17:28 - 00003204 _____ () C:\Windows\System32\Tasks\reibflg
2014-06-29 17:28 - 2014-06-29 17:28 - 00000269 _____ () C:\Users\hülya\AppData\Local\reibflg.bat
2014-06-29 17:26 - 2014-06-29 17:26 - 00003202 _____ () C:\Windows\System32\Tasks\kgjoch
2014-06-29 17:26 - 2014-06-29 17:26 - 00000269 _____ () C:\Users\hülya\AppData\Local\kgjoch.bat
2014-06-29 17:24 - 2014-06-29 17:24 - 00003202 _____ () C:\Windows\System32\Tasks\dngoeo
2014-06-29 17:24 - 2014-06-29 17:24 - 00000269 _____ () C:\Users\hülya\AppData\Local\dngoeo.bat
2014-06-29 17:22 - 2014-06-29 17:22 - 00003204 _____ () C:\Windows\System32\Tasks\gohgohh
2014-06-29 17:22 - 2014-06-29 17:22 - 00000269 _____ () C:\Users\hülya\AppData\Local\gohgohh.bat
2014-06-29 17:20 - 2014-06-29 17:20 - 00003206 _____ () C:\Windows\System32\Tasks\lbffbzeu
2014-06-29 17:20 - 2014-06-29 17:20 - 00000269 _____ () C:\Users\hülya\AppData\Local\lbffbzeu.bat
2014-06-29 17:18 - 2014-06-29 17:18 - 00003204 _____ () C:\Windows\System32\Tasks\dafwmja
2014-06-29 17:18 - 2014-06-29 17:18 - 00000269 _____ () C:\Users\hülya\AppData\Local\dafwmja.bat
2014-06-29 17:16 - 2014-06-29 17:16 - 00003204 _____ () C:\Windows\System32\Tasks\sfzekgc
2014-06-29 17:16 - 2014-06-29 17:16 - 00000269 _____ () C:\Users\hülya\AppData\Local\sfzekgc.bat
2014-06-29 17:14 - 2014-06-29 17:14 - 00003204 _____ () C:\Windows\System32\Tasks\trxvdah
2014-06-29 17:14 - 2014-06-29 17:14 - 00000269 _____ () C:\Users\hülya\AppData\Local\trxvdah.bat
2014-06-29 17:12 - 2014-06-29 17:12 - 00003200 _____ () C:\Windows\System32\Tasks\cokxm
2014-06-29 17:12 - 2014-06-29 17:12 - 00000269 _____ () C:\Users\hülya\AppData\Local\cokxm.bat
2014-06-29 17:10 - 2014-06-29 17:10 - 00003204 _____ () C:\Windows\System32\Tasks\ajuhbdv
2014-06-29 17:10 - 2014-06-29 17:10 - 00000269 _____ () C:\Users\hülya\AppData\Local\ajuhbdv.bat
2014-06-29 17:08 - 2014-06-29 17:08 - 00003202 _____ () C:\Windows\System32\Tasks\xaqscn
2014-06-29 17:08 - 2014-06-29 17:08 - 00000269 _____ () C:\Users\hülya\AppData\Local\xaqscn.bat
2014-06-29 17:06 - 2014-06-29 17:06 - 00003206 _____ () C:\Windows\System32\Tasks\icreymhc
2014-06-29 17:06 - 2014-06-29 17:06 - 00000269 _____ () C:\Users\hülya\AppData\Local\icreymhc.bat
2014-06-29 17:04 - 2014-06-29 17:04 - 00003202 _____ () C:\Windows\System32\Tasks\rxbycq
2014-06-29 17:04 - 2014-06-29 17:04 - 00000269 _____ () C:\Users\hülya\AppData\Local\rxbycq.bat
2014-06-29 17:02 - 2014-06-29 17:02 - 00003204 _____ () C:\Windows\System32\Tasks\kifbcee
2014-06-29 17:02 - 2014-06-29 17:02 - 00000269 _____ () C:\Users\hülya\AppData\Local\kifbcee.bat
2014-06-29 17:00 - 2014-06-29 17:00 - 00003200 _____ () C:\Windows\System32\Tasks\wgwgw
2014-06-29 17:00 - 2014-06-29 17:00 - 00000269 _____ () C:\Users\hülya\AppData\Local\wgwgw.bat
2014-06-29 16:58 - 2014-06-29 16:58 - 00003200 _____ () C:\Windows\System32\Tasks\nghxp
2014-06-29 16:58 - 2014-06-29 16:58 - 00000269 _____ () C:\Users\hülya\AppData\Local\nghxp.bat
2014-06-29 16:56 - 2014-06-29 16:56 - 00003200 _____ () C:\Windows\System32\Tasks\xdmos
2014-06-29 16:56 - 2014-06-29 16:56 - 00000269 _____ () C:\Users\hülya\AppData\Local\xdmos.bat
2014-06-29 16:54 - 2014-06-29 16:54 - 00003200 _____ () C:\Windows\System32\Tasks\vlmck
2014-06-29 16:54 - 2014-06-29 16:54 - 00000269 _____ () C:\Users\hülya\AppData\Local\vlmck.bat
2014-06-29 16:52 - 2014-06-29 16:52 - 00003202 _____ () C:\Windows\System32\Tasks\rdwbfa
2014-06-29 16:52 - 2014-06-29 16:52 - 00000269 _____ () C:\Users\hülya\AppData\Local\rdwbfa.bat
2014-06-29 16:50 - 2014-06-29 16:50 - 00003204 _____ () C:\Windows\System32\Tasks\bocpdwd
2014-06-29 16:50 - 2014-06-29 16:50 - 00000269 _____ () C:\Users\hülya\AppData\Local\bocpdwd.bat
2014-06-29 16:48 - 2014-06-29 16:48 - 00003204 _____ () C:\Windows\System32\Tasks\prsudyb
2014-06-29 16:48 - 2014-06-29 16:48 - 00000269 _____ () C:\Users\hülya\AppData\Local\prsudyb.bat
2014-06-29 16:46 - 2014-06-29 16:46 - 00003206 _____ () C:\Windows\System32\Tasks\hysdwpba
2014-06-29 16:46 - 2014-06-29 16:46 - 00000269 _____ () C:\Users\hülya\AppData\Local\hysdwpba.bat
2014-06-29 16:44 - 2014-06-29 16:44 - 00003200 _____ () C:\Windows\System32\Tasks\aocpc
2014-06-29 16:44 - 2014-06-29 16:44 - 00000269 _____ () C:\Users\hülya\AppData\Local\aocpc.bat
2014-06-29 16:42 - 2014-06-29 16:42 - 00003206 _____ () C:\Windows\System32\Tasks\bkdpjboa
2014-06-29 16:42 - 2014-06-29 16:42 - 00000269 _____ () C:\Users\hülya\AppData\Local\bkdpjboa.bat
2014-06-29 16:40 - 2014-06-29 16:40 - 00003202 _____ () C:\Windows\System32\Tasks\gphqpz
2014-06-29 16:40 - 2014-06-29 16:40 - 00000269 _____ () C:\Users\hülya\AppData\Local\gphqpz.bat
2014-06-29 16:39 - 2013-03-26 22:30 - 00001442 _____ () C:\Users\hülya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-06-29 16:38 - 2014-06-29 16:38 - 00003204 _____ () C:\Windows\System32\Tasks\rwbfruh
2014-06-29 16:38 - 2014-06-29 16:38 - 00000269 _____ () C:\Users\hülya\AppData\Local\rwbfruh.bat
2014-06-29 16:36 - 2014-06-29 16:36 - 00003202 _____ () C:\Windows\System32\Tasks\prtvey
2014-06-29 16:36 - 2014-06-29 16:36 - 00000269 _____ () C:\Users\hülya\AppData\Local\prtvey.bat
2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9ED2tmp
2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9E82tmp
2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9E62tmp
2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9E22tmp
2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9E02tmp
2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9DE2tmp
2014-06-29 16:36 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9DC2tmp
2014-06-29 16:35 - 2014-06-29 16:35 - 01258344 _____ () C:\Users\hülya\Downloads\Setup (3).exe
2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\9EB2tmp
2014-06-29 16:35 - 2014-06-29 16:35 - 00000000 ____D () C:\Users\hülya\Downloads\55A4tmp
2014-06-28 05:35 - 2014-07-09 10:52 - 00556544 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-27 01:13 - 2014-06-27 01:13 - 00000000 ____D () C:\Users\hülya\AppData\Roaming\DivX
2014-06-27 01:13 - 2014-06-27 01:13 - 00000000 ____D () C:\Program Files\DivX
2014-06-27 01:11 - 2014-06-27 01:11 - 00999232 _____ (DivX, LLC) C:\Users\hülya\Downloads\DivXInstaller.exe
2014-06-27 01:06 - 2014-06-27 01:06 - 00608808 _____ () C:\Users\hülya\Downloads\MediaPlayerClassicInstaller.exe
2014-06-26 22:53 - 2014-07-12 03:32 - 00703968 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-06-26 22:53 - 2014-07-12 03:32 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

Some content of TEMP:
====================
C:\Users\hülya\AppData\Local\Temp\2npfgo6u.dll
C:\Users\hülya\AppData\Local\Temp\76k1mdx6.dll
C:\Users\hülya\AppData\Local\Temp\amazonicon_v6.exe
C:\Users\hülya\AppData\Local\Temp\amazoninstallernircmdc.exe
C:\Users\hülya\AppData\Local\Temp\APNSetup.exe
C:\Users\hülya\AppData\Local\Temp\autorun.dll
C:\Users\hülya\AppData\Local\Temp\b2pyquuf.dll
C:\Users\hülya\AppData\Local\Temp\BackupSetup.exe
C:\Users\hülya\AppData\Local\Temp\BingBarSetup-Partner.exe
C:\Users\hülya\AppData\Local\Temp\dpyqloea.dll
C:\Users\hülya\AppData\Local\Temp\Extract.exe
C:\Users\hülya\AppData\Local\Temp\fge_7jwp.dll
C:\Users\hülya\AppData\Local\Temp\gsnbt7vk.dll
C:\Users\hülya\AppData\Local\Temp\ikdqtg_l.dll
C:\Users\hülya\AppData\Local\Temp\jgpexth7.dll
C:\Users\hülya\AppData\Local\Temp\jqslmncy.dll
C:\Users\hülya\AppData\Local\Temp\jzr0dvkz.dll
C:\Users\hülya\AppData\Local\Temp\nsoA31A.exe
C:\Users\hülya\AppData\Local\Temp\nst797D.exe
C:\Users\hülya\AppData\Local\Temp\nszA30F.exe
C:\Users\hülya\AppData\Local\Temp\nzlvmuji.dll
C:\Users\hülya\AppData\Local\Temp\omi2ikyo.dll
C:\Users\hülya\AppData\Local\Temp\oz9ptrby.dll
C:\Users\hülya\AppData\Local\Temp\pcgr8uon.dll
C:\Users\hülya\AppData\Local\Temp\pci2gxzz.dll
C:\Users\hülya\AppData\Local\Temp\Quarantine.exe
C:\Users\hülya\AppData\Local\Temp\rad6A463.tmp_update.exe
C:\Users\hülya\AppData\Local\Temp\rpcuoqk1.dll
C:\Users\hülya\AppData\Local\Temp\r_txacvt.dll
C:\Users\hülya\AppData\Local\Temp\sdanircmdc.exe
C:\Users\hülya\AppData\Local\Temp\sdapskill.exe
C:\Users\hülya\AppData\Local\Temp\sdaspwn.exe
C:\Users\hülya\AppData\Local\Temp\sgeggdk-.dll
C:\Users\hülya\AppData\Local\Temp\SkypeSetup.exe
C:\Users\hülya\AppData\Local\Temp\SP60051.exe
C:\Users\hülya\AppData\Local\Temp\SP60289.exe
C:\Users\hülya\AppData\Local\Temp\sp64126.exe
C:\Users\hülya\AppData\Local\Temp\Sqlite3.dll
C:\Users\hülya\AppData\Local\Temp\UninstallHPSA.exe
C:\Users\hülya\AppData\Local\Temp\UpdateCheckerSetup.exe
C:\Users\hülya\AppData\Local\Temp\vcredist_x64.exe
C:\Users\hülya\AppData\Local\Temp\xbqvd9bh.dll
C:\Users\hülya\AppData\Local\Temp\yeqjtftp.dll
C:\Users\hülya\AppData\Local\Temp\ytiwsziq.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-07-19 18:42

==================== End Of Log ============================
         
beim zweiten ausführen von FRST ist allerdings keine zweite Addition textdokument erschienen ist das wichtig? brauchst du das auch?


Vielen dank!

Alt 25.07.2014, 10:58   #12
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
bat=exe konnte nicht gefunden werden. - Standard

bat=exe konnte nicht gefunden werden.



Bitte auch ne neue Addition.txt erstellen, dazu FRST starten und einen Haken setzen bei Addition.txt, dann auf Scan klicken.

__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Alt 25.07.2014, 17:39   #13
Romiero
 
bat=exe konnte nicht gefunden werden. - Standard

bat=exe konnte nicht gefunden werden.



Danke dir bist echt sehr geduldig mit solchen newbies wie mich :P



hier addition



Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-07-2014 01
Ran by hülya at 2014-07-25 17:37:41
Running from C:\Users\hülya\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Kaspersky Internet Security (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Kaspersky Internet Security (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Kaspersky Internet Security (Enabled) {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 13.0.0.83 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 13.0.0.83 - Adobe Systems Incorporated) Hidden
Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated)
Ask Toolbar (HKLM-x32\...\{4F524A2D-5637-4300-76A7-A758B70C0F01}) (Version: 12.15.1.16 - APN, LLC) <==== ATTENTION
AuthenTec TrueAPI 64-bit (Version: 1.6.0.86 - AuthenTec, Inc.) Hidden
AVM FRITZ!WLAN (HKLM-x32\...\AVMWLANCLI) (Version:  - AVM Berlin)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 4.01 - Piriform)
Connected Music powered by Universal Music Group version 1.0 (HKLM-x32\...\{46037DC7-F927-46DF-935F-D6F122BDD34B}_is1) (Version: 1.0 - Snowite)
CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1.5407 - CyberLink Corp.)
CyberLink LabelPrint (x32 Version: 2.5.1.5407 - CyberLink Corp.) Hidden
CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.2.2114 - CyberLink Corp.)
CyberLink Media Suite 10 (x32 Version: 10.0.2.2114 - CyberLink Corp.) Hidden
CyberLink PhotoDirector (HKLM-x32\...\InstallShield_{4862344A-A39C-4897-ACD4-A1BED5163C5A}) (Version: 2.0.1.3119 - CyberLink Corp.)
CyberLink PhotoDirector (x32 Version: 2.0.1.3119 - CyberLink Corp.) Hidden
CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.1.1926 - CyberLink Corp.)
CyberLink Power2Go 8 (x32 Version: 8.0.1.1926 - CyberLink Corp.) Hidden
CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.1.1925 - CyberLink Corp.)
CyberLink PowerDirector 10 (x32 Version: 10.0.1.1925 - CyberLink Corp.) Hidden
CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.5.4.5527 - CyberLink Corp.)
CyberLink YouCam (x32 Version: 3.5.4.5527 - CyberLink Corp.) Hidden
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Der Tempel des Lebens: Die Legende der Vier Elemente (HKLM-x32\...\Der Tempel des Lebens: Die Legende der Vier Elemente) (Version: 1.0.0.0 - INTENIUM GmbH)
Dreamscapes: Der Sandmann Sammleredition (HKLM-x32\...\Dreamscapes: Der Sandmann Sammleredition) (Version: 1.0.0.0 - INTENIUM GmbH)
Energy Star (HKLM\...\{0FA995CC-C849-4755-B14B-5404CC75DC24}) (Version: 1.0.8 - Hewlett-Packard)
Facebook Video Calling 2.0.0.447 (HKLM-x32\...\{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}) (Version: 2.0.447 - Skype Limited)
Freecorder extension for Chrome (HKLM-x32\...\Freecorder extension for Chrome) (Version: 7.0.2.0 - Applian Technologies, Inc.)
Geekbench 3 (HKLM-x32\...\Geekbench 3) (Version:  - Primate Labs Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.)
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP 3D DriveGuard (HKLM\...\{AB5BCC55-18E2-46C7-9405-FF61CB888F05}) (Version: 4.2.9.1 - Hewlett-Packard Company)
HP Connected Music (Meridian - installer) (HKLM-x32\...\StartHPConnectedMusic) (Version: v1.0 - Meridian Audio Ltd)
HP CoolSense (HKLM-x32\...\{11AF9A96-6D83-4C3B-8DCB-16EA2A358E3F}) (Version: 2.10.51 - Hewlett-Packard Company)
HP Customer Experience Enhancements (x32 Version: 6.0.1.7 - Hewlett-Packard) Hidden
HP Documentation (HKLM-x32\...\{7DE5085A-3665-40BC-9595-A1A209699137}) (Version: 1.1.0.0 - Hewlett-Packard)
HP Postscript Converter (Version: 3.1.3554 - Hewlett-Packard) Hidden
HP Quick Launch (HKLM-x32\...\{609B11CC-8CED-4116-AD8A-A72168894D39}) (Version: 3.0.4 - Hewlett-Packard Company)
HP Recovery Manager (x32 Version: 7.00 - Hewlett-Packard) Hidden
HP Registration Service (HKLM\...\{E4D6CCF2-0AAF-4B9C-9DE5-893EDC9B4BAA}) (Version: 1.0.5976.4186 - Hewlett-Packard)
HP SimplePass (HKLM-x32\...\{34C821CA-6B55-44A0-8A9B-2EF471D6019E}) (Version: 6.0.100.244 - Hewlett-Packard)
HP Software Framework (HKLM-x32\...\{94BB4B4F-BD6D-4166-A580-F868C8384CA6}) (Version: 4.6.8.1 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\...\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}) (Version: 7.4.45.4 - Hewlett-Packard Company)
HP Utility Center (HKLM-x32\...\{0C57987A-A03A-4B95-A309-D23F78F406CA}) (Version: 1.0.7 - Hewlett-Packard)
HP Wireless Button Driver (HKLM-x32\...\{941DE69D-6CEE-4171-8F1F-3D7E352AA498}) (Version: 1.0.6.1 - Hewlett-Packard Company)
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6418.0 - IDT)
Intel PROSet Wireless (Version:  - ) Hidden
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2817 - Intel Corporation)
Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (HKLM\...\{89478C31-5CE8-461A-9084-9A0AF059F84F}) (Version: 15.5.0.0344 - Intel Corporation)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{7854AA22-A2F0-4F29-A2E9-D0C5A2B685E7}) (Version: 2.5.0.0248 - Motorola Solutions, Inc)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.9.1002 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Intel(R) WiDi (HKLM\...\{EDBA2433-0910-4C72-8C5B-8FEDAE3EF18E}) (Version: 3.5.34.0 - Intel Corporation)
Intel® PROSet/Wireless WiFi-Software (HKLM\...\{99FDAE3B-6905-45A6-8F73-595363AAD3D1}) (Version: 15.05.1000.1411 - Intel Corporation)
Intel® Trusted Connect Service Client (Version: 1.24.388.1 - Intel Corporation) Hidden
Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.550 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{6F6873E3-5C92-4049-B511-231A138DD090}) (Version: 14.0.0.4651 - Kaspersky Lab)
Kaspersky Internet Security (x32 Version: 14.0.0.4651 - Kaspersky Lab) Hidden
Microsoft App Update for microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe (x64) (Version: 1.0.0.0 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.6120.5004 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Movie Mode (HKLM-x32\...\MovieMode) (Version: 2.6.65 - GenTechnologies Apps, LLC)
Movies Toolbar for Chrome (Dist. by Somoto Ltd.) (HKLM-x32\...\somotomoviestoolbar181CR) (Version: 1.8.1.0 - IAC Search and Media) <==== ATTENTION
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
NVIDIA Grafiktreiber 306.97 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 306.97 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.85.551 - NVIDIA Corporation) Hidden
NVIDIA Optimus 1.10.8 (Version: 1.10.8 - NVIDIA Corporation) Hidden
NVIDIA Systemsteuerung 306.97 (Version: 306.97 - NVIDIA Corporation) Hidden
NVIDIA Update 1.10.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.10.8 - NVIDIA Corporation)
NVIDIA Update Components (Version: 1.10.8 - NVIDIA Corporation) Hidden
OpenOffice 4.0.1 (HKLM-x32\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.2.612.2012 - Realtek)
Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.8400.29025 - Realtek Semiconductor Corp.)
RTL GAME CENTER (HKLM-x32\...\DSGPlayer) (Version: 1.0.0.46 - INTENIUM GmbH)
Saal Design Software (HKLM-x32\...\SaalDesignSoftware) (Version: 3.2.30 - Saal Digital Fotoservice GmbH)
Saal Design Software (x32 Version: 3.2.30 - Saal Digital Fotoservice GmbH) Hidden
Save Sense (remove only) (HKCU\...\Save Sense) (Version: 6.4.1.0 - SaveSense) <==== ATTENTION
savinshoop (HKLM-x32\...\{70BD2558-27DA-8B02-02D0-D8704ECD2EDF}) (Version:  - soaVianshopp)
Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.)
SopCast 2.0.4 (HKLM-x32\...\SopCast) (Version: 2.0.4 - SopCast.com)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.10.12 - Synaptics Incorporated)
TuicTaCoupon (HKLM-x32\...\{E370F69F-ED3F-925F-31FC-14D1329A713B}) (Version:  - TiicTaCoupOn) <==== ATTENTION
Validity WBF DDK (HKLM\...\{3820B6F2-2F6B-4237-9EE9-F0AC9A2185BC}) (Version: 4.4.227.0 - Validity Sensors, Inc.)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Language Selector (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Yahoo Community Smartbar (HKLM-x32\...\{74451556-4E0B-4082-B74C-583B7EDC3679}) (Version: 10.219.66.15259 - Linkury Inc.) <==== ATTENTION
Yahoo Community Smartbar Engine (HKCU\...\{628834ec-ce19-4fcf-b25d-cd83e8a06da6}) (Version: 10.219.66.15259 - Linkury Inc.) <==== ATTENTION
YTD Video Downloader 4.1 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 4.1 - GreenTree Applications SRL)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

09-07-2014 01:08:29 Windows Update
19-07-2014 23:53:22 Geplanter Prüfpunkt
23-07-2014 00:07:41 Wiederherstellungsvorgang

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2012-07-26 07:26 - 2012-07-26 07:26 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {003EF650-C9AE-4055-AD00-8929CDED34C8} - System32\Tasks\dafdid => C:\Users\hülya\AppData\Local\dafdid.bat [2014-06-29] ()
Task: {0048A787-968B-460A-B88F-3C94AA2E04F9} - System32\Tasks\icdytn => C:\Users\hülya\AppData\Local\icdytn.bat [2014-06-29] ()
Task: {011A7F85-F0F5-44FA-BF08-83D979C6774C} - System32\Tasks\iavic => C:\Users\hülya\AppData\Local\iavic.bat [2014-06-29] ()
Task: {02286E30-4471-40D2-B0F8-7805321F58C3} - System32\Tasks\kbxmda => C:\Users\hülya\AppData\Local\kbxmda.bat [2014-06-29] ()
Task: {0364B950-85C5-481D-A829-9A628ADAAC30} - System32\Tasks\kfujeuqf => C:\Users\hülya\AppData\Local\kfujeuqf.bat [2014-06-29] ()
Task: {03EAD8AB-37A3-48F5-B2EA-881F55414425} - System32\Tasks\vdksa => C:\Users\hülya\AppData\Local\utjiwdc.bat [2014-06-29] ()
Task: {0637404D-B93A-4D9B-B2EA-D2A001FD8F65} - System32\Tasks\tymrgl => C:\Users\hülya\AppData\Local\tymrgl.bat [2014-06-29] ()
Task: {06D66712-6AE9-44BF-B623-B919BF4FB857} - System32\Tasks\whpxpqi => C:\Users\hülya\AppData\Local\whpxpqi.bat [2014-07-01] ()
Task: {0769D298-B0CB-43F2-8F04-90E3719CA1C3} - System32\Tasks\ligdqolj => C:\Users\hülya\AppData\Local\ligdqolj.bat [2014-06-30] ()
Task: {077A8194-DB04-438F-AC1C-4F99D8069009} - System32\Tasks\psuprudi => C:\Users\hülya\AppData\Local\psuprudi.bat [2014-06-29] ()
Task: {09E80BA2-B44A-4C4C-8BCD-EB22D146CA0C} - System32\Tasks\acceyau => C:\Users\hülya\AppData\Local\acceyau.bat [2014-06-29] ()
Task: {09FBED9F-814A-4D63-8782-B2DE7B1924B9} - System32\Tasks\lxdiu => C:\Users\hülya\AppData\Local\lxdiu.bat [2014-06-29] ()
Task: {0BDC01C3-BD15-4DA2-9AB4-DA4D05899A00} - System32\Tasks\bkdpjboa => C:\Users\hülya\AppData\Local\bkdpjboa.bat [2014-06-29] ()
Task: {0D05368A-9BAE-4B28-996F-678D1560C042} - System32\Tasks\ljwusx => C:\Users\hülya\AppData\Local\ljwusx.bat [2014-06-30] ()
Task: {0EE38C35-6E13-4ECE-ACA5-7CBD7E3262D6} - System32\Tasks\eewxpph => C:\Users\hülya\AppData\Local\eewxpph.bat [2014-06-29] ()
Task: {10527A4B-BB8E-4180-93C1-5AF92EDD1D0E} - System32\Tasks\jfbdsujm => C:\Users\hülya\AppData\Local\jfbdsujm.bat [2014-06-29] ()
Task: {129D30FF-9F48-473D-B1A2-8E1EB5F7118A} - System32\Tasks\vdsbqhwf => C:\Users\hülya\AppData\Local\vdsbqhwf.bat [2014-06-29] ()
Task: {1429E26B-169C-4471-A478-B63F2510AA18} - System32\Tasks\ajcohkcp => C:\Users\hülya\AppData\Local\ajcohkcp.bat [2014-06-29] ()
Task: {1446D01F-A922-4D20-AF6F-A43E61DCC404} - System32\Tasks\dulcs => C:\Users\hülya\AppData\Local\dulcs.bat [2014-06-30] ()
Task: {14DBB9C6-89A7-4FE3-A3D6-D95561F7C903} - System32\Tasks\fxacscu => C:\Users\hülya\AppData\Local\fxacscu.bat [2014-06-30] ()
Task: {1562FD9D-97A7-4913-AFE4-34EB081C2924} - System32\Tasks\ydoalwbt => C:\Users\hülya\AppData\Local\ydoalwbt.bat [2014-06-29] ()
Task: {16BBD895-FC3F-40B1-BA0A-C04007D2351B} - System32\Tasks\aguiubo => C:\Users\hülya\AppData\Local\aguiubo.bat [2014-06-30] ()
Task: {177BED97-AD25-4CE4-BCDA-11854471EF5E} - System32\Tasks\khepmjn => C:\Users\hülya\AppData\Local\khepmjn.bat [2014-06-29] ()
Task: {18246448-D9EA-47AF-B53A-844D9909849A} - System32\Tasks\rdwbfa => C:\Users\hülya\AppData\Local\rdwbfa.bat [2014-06-29] ()
Task: {18FA95AA-1FC1-419F-A229-AA8EE22C0AB2} - System32\Tasks\hbunicup => C:\Users\hülya\AppData\Local\hbunicup.bat [2014-06-29] ()
Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {1AECBED2-B931-4E17-8AB3-21D3F36CABD1} - System32\Tasks\gwwoohh => C:\Users\hülya\AppData\Local\gwwoohh.bat [2014-06-30] ()
Task: {1B9B9E7B-12F6-4310-A691-F2097514050E} - System32\Tasks\Microsoft\Windows\Setup\Pre-staged GDR Notification => C:\Windows\system32\NotificationUI.exe [2014-04-19] (Microsoft Corporation)
Task: {1C78928A-EDB1-451B-B0C6-BFE0CCC14FEA} - System32\Tasks\cwtodhbp => C:\Users\hülya\AppData\Local\cwtodhbp.bat [2014-06-30] ()
Task: {1C91E375-4FEC-4256-A1BD-2F5553663358} - System32\Tasks\caebg => C:\Users\hülya\AppData\Local\caebg.bat [2014-06-30] ()
Task: {1D000CF2-84AF-4DC6-903B-4D2A4AED1FAE} - System32\Tasks\zlqcg => C:\Users\hülya\AppData\Local\zlqcg.bat [2014-06-30] ()
Task: {1E38087E-CAE4-4EE2-BF2B-87DE4F8A594E} - System32\Tasks\fsigct => C:\Users\hülya\AppData\Local\fsigct.bat [2014-06-30] ()
Task: {1E3C30C6-05E9-41C1-B0B7-262BE06949D2} - System32\Tasks\erawe => C:\Users\hülya\AppData\Local\erawe.bat [2014-06-30] ()
Task: {22CFDDA0-A38F-48E8-A6B4-E89AE13EC961} - System32\Tasks\jgjnrnq => C:\Users\hülya\AppData\Local\jgjnrnq.bat [2014-07-01] ()
Task: {2328EFA0-CA79-47CD-A546-45C815D6034B} - System32\Tasks\eqfcxnbw => C:\Users\hülya\AppData\Local\eqfcxnbw.bat [2014-07-01] ()
Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {2672E002-1FBE-4832-99F3-E16C3A8BFC52} - System32\Tasks\hztmgy => C:\Users\hülya\AppData\Local\hztmgy.bat [2014-06-29] ()
Task: {2A3AB0A9-A867-47C6-936C-9FCF75ADD932} - System32\Tasks\hajdc => C:\Users\hülya\AppData\Local\hajdc.bat [2014-06-29] ()
Task: {2AA7416D-00A6-4CD1-8E6C-68CA4ADC9042} - System32\Tasks\tsqpv => C:\Users\hülya\AppData\Local\tsqpv.bat [2014-06-30] ()
Task: {2CB3E91A-8BE6-46FF-BC60-50627B5B30C8} - System32\Tasks\koagcns => C:\Users\hülya\AppData\Local\koagcns.bat [2014-06-29] ()
Task: {2D2C2E52-8E0D-4114-91F2-5451D48BC145} - System32\Tasks\hqqbbcll => C:\Users\hülya\AppData\Local\hqqbbcll.bat [2014-06-30] ()
Task: {2DA9BFDD-2E89-4B84-8FCB-F5BB2CC9842C} - System32\Tasks\oqysbd => C:\Users\hülya\AppData\Local\oqysbd.bat [2014-06-29] ()
Task: {2F458A81-AD44-4EC6-B900-5EAF9A9CB104} - System32\Tasks\zfsdqf => C:\Users\hülya\AppData\Local\zfsdqf.bat [2014-06-29] ()
Task: {300F2C94-645A-4FCC-92F9-2D4722B44581} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {31246EB7-5578-40B6-88C4-C6796D047DA7} - System32\Tasks\oqyaks => C:\Users\hülya\AppData\Local\oqyaks.bat [2014-06-29] ()
Task: {323DDFC5-858C-4D95-B78C-5B133C7985E0} - System32\Tasks\kfdavzwl => C:\Users\hülya\AppData\Local\kfdavzwl.bat [2014-06-30] ()
Task: {3285401B-0DBA-4D35-ACCE-1216D8D46497} - System32\Tasks\whqaqs => C:\Users\hülya\AppData\Local\whqaqs.bat [2014-06-29] ()
Task: {332DAA72-08ED-4B22-8D29-4FF924AF622C} - System32\Tasks\pakteow => C:\Users\hülya\AppData\Local\pakteow.bat [2014-06-30] ()
Task: {33FA76A7-C5E8-4A9D-982E-76C6316FE805} - System32\Tasks\wgwfihhq => C:\Users\hülya\AppData\Local\wgwfihhq.bat [2014-07-01] ()
Task: {34103223-28D0-449F-85F7-FA778B3BCF0E} - System32\Tasks\kotimqn => C:\Users\hülya\AppData\Local\kotimqn.bat [2014-06-29] ()
Task: {344C6CC8-C3D1-45D2-88A6-BE8FC5379C40} - System32\Tasks\fdcaqonm => C:\Users\hülya\AppData\Local\fdcaqonm.bat [2014-06-29] ()
Task: {352A36F1-47E1-4BE6-9FCB-834C149C2CA2} - \SomotoUpdateCheckerAutoStart No Task File <==== ATTENTION
Task: {354F2D8D-A03A-420F-8F05-35B54AE92F9B} - System32\Tasks\ahubvcq => C:\Users\hülya\AppData\Local\ahubvcq.bat [2014-06-29] ()
Task: {35B00116-6481-44D4-BE07-FA4F958837A0} - System32\Tasks\awkfl => C:\Users\hülya\AppData\Local\awkfl.bat [2014-06-30] ()
Task: {39FBE809-DCB2-49D4-907A-85D693F7F309} - System32\Tasks\isnoa => C:\Users\hülya\AppData\Local\isnoa.bat [2014-06-29] ()
Task: {3B09D934-1BEE-4DE3-9796-F1B3A3D301B0} - \SaveSense No Task File <==== ATTENTION
Task: {3B95F581-4764-4404-974C-6A4D62C8EA7B} - System32\Tasks\pjddy => C:\Users\hülya\AppData\Local\pjddy.bat [2014-06-29] ()
Task: {3D3A4589-F8E7-4B7C-942E-795B004EABDD} - System32\Tasks\vveett => C:\Users\hülya\AppData\Local\vveett.bat [2014-06-30] ()
Task: {3DA985C0-FBEE-438C-BE0B-71EF3CD897AD} - System32\Tasks\lcbpv => C:\Users\hülya\AppData\Local\lcbpv.bat [2014-06-29] ()
Task: {40099843-EEB1-4EA0-BD57-9C98F0DD436F} - System32\Tasks\vwgfvve => C:\Users\hülya\AppData\Local\vwgfvve.bat [2014-06-29] ()
Task: {400EFF63-816F-4F99-BEA1-738978338F9C} - System32\Tasks\mffummlk => C:\Users\hülya\AppData\Local\mffummlk.bat [2014-06-29] ()
Task: {41BB76F5-03EE-4FE2-B56F-18AF23B1F308} - System32\Tasks\lrweaflq => C:\Users\hülya\AppData\Local\lrweaflq.bat [2014-06-30] ()
Task: {439D71DF-96C7-40CE-A86D-140FEF179C3A} - System32\Tasks\vggvgguf => C:\Users\hülya\AppData\Local\vggvgguf.bat [2014-06-30] ()
Task: {44452859-3C3B-4370-B2F5-22CF11C0F2EF} - System32\Tasks\jdauqmhd => C:\Users\hülya\AppData\Local\jdauqmhd.bat [2014-06-29] ()
Task: {45DA2CAC-06F3-4F1F-9C57-B3BCBC805DA2} - System32\Tasks\fjdoh => C:\Users\hülya\AppData\Local\fjdoh.bat [2014-06-29] ()
Task: {465C09A5-B819-4F1F-AD9E-D33E0C85505D} - System32\Tasks\quejuej => C:\Users\hülya\AppData\Local\quejuej.bat [2014-06-29] ()
Task: {46F60C73-0018-4120-8188-B8101EFE0507} - System32\Tasks\rxbycq => C:\Users\hülya\AppData\Local\rxbycq.bat [2014-06-29] ()
Task: {47746299-1C98-4034-8722-1A48C2E79341} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-08] (CyberLink)
Task: {48AB0022-7309-4679-BB24-2F803D2DA4F1} - System32\Tasks\ccbfv => C:\Users\hülya\AppData\Local\ccbfv.bat [2014-06-30] ()
Task: {49C497BA-182F-41D2-8CAE-216FDA93A569} - System32\Tasks\akcohzmg => C:\Users\hülya\AppData\Local\akcohzmg.bat [2014-06-29] ()
Task: {49F5BFAE-12BF-4887-9A55-AB75E522480C} - System32\Tasks\bocpdwd => C:\Users\hülya\AppData\Local\bocpdwd.bat [2014-06-29] ()
Task: {4D173E46-EEFB-4CAA-B130-4A13C026A37F} - System32\Tasks\tyfrx => C:\Users\hülya\AppData\Local\tyfrx.bat [2014-06-30] ()
Task: {4D8CBC81-3508-48B2-A844-90F3AC651F38} - System32\Tasks\khtpt => C:\Users\hülya\AppData\Local\khtpt.bat [2014-06-30] ()
Task: {50267BFA-CB71-4A7F-BBF8-CF4A11D92EA8} - System32\Tasks\tbfedip => C:\Users\hülya\AppData\Local\tbfedip.bat [2014-06-30] ()
Task: {5051F7B3-ABB0-41CF-BC9B-4432CF75EF8D} - System32\Tasks\beyuxlg => C:\Users\hülya\AppData\Local\beyuxlg.bat [2014-06-29] ()
Task: {5211772F-5E86-4242-9DA7-566B28C6598D} - \Rocket Updater No Task File <==== ATTENTION
Task: {533EAB30-0B6E-41DE-BE5C-34F1968787B1} - System32\Tasks\iddytni => C:\Users\hülya\AppData\Local\iddytni.bat [2014-06-29] ()
Task: {54C6A6D9-0130-4BD1-96FA-093CCF36262E} - System32\Tasks\gufetd => C:\Users\hülya\AppData\Local\gufetd.bat [2014-06-30] ()
Task: {5593D5EA-198A-4368-8759-7021E190032B} - System32\Tasks\vmddsj => C:\Users\hülya\AppData\Local\vmddsj.bat [2014-06-29] ()
Task: {598CBF17-CAA1-4966-8AE4-389B8482EFA0} - System32\Tasks\cfdfey => C:\Users\hülya\AppData\Local\cfdfey.bat [2014-06-30] ()
Task: {5A26F67A-BC7C-43DF-98D0-3040C2C7FD6E} - System32\Tasks\acxkgi => C:\Users\hülya\AppData\Local\acxkgi.bat [2014-06-30] ()
Task: {5ADA0060-A33F-4DB3-861D-7D4D0DE3F291} - System32\Tasks\nghxp => C:\Users\hülya\AppData\Local\nghxp.bat [2014-06-29] ()
Task: {5B0D54A1-C7F8-4AE5-B4F5-06482CE330F9} - System32\Tasks\edeaa => C:\Users\hülya\AppData\Local\edeaa.bat [2014-06-29] ()
Task: {5B5045A8-54CA-4811-BBA8-98C4DD1359D5} - System32\Tasks\bxthdr => C:\Users\hülya\AppData\Local\bxthdr.bat [2014-06-30] ()
Task: {5B82A7BD-4815-4E3C-868B-916B3FD4C6DE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2014-03-21] (Hewlett-Packard)
Task: {5B94D6D9-CE28-4611-8E2A-56D6342EB06C} - System32\Tasks\refju => C:\Users\hülya\AppData\Local\refju.bat [2014-06-29] ()
Task: {5CA89DF9-293E-45DE-9FC5-6370856853D6} - System32\Tasks\erawlaq => C:\Users\hülya\AppData\Local\erawlaq.bat [2014-06-29] ()
Task: {5EA5D5C7-DAF0-4EB2-96CA-E218ADC73286} - System32\Tasks\xaqscn => C:\Users\hülya\AppData\Local\xaqscn.bat [2014-06-29] ()
Task: {608D2455-F638-49E5-BFC8-216EB05FFD49} - System32\Tasks\fepha => C:\Users\hülya\AppData\Local\fepha.bat [2014-06-29] ()
Task: {60BBA233-9176-47DB-A765-449030913BC3} - System32\Tasks\vdksahw => C:\Users\hülya\AppData\Local\vdksahw.bat [2014-06-29] ()
Task: {620AE4F4-3D0C-4964-BE5B-BE9623917F44} - System32\Tasks\xizdef => C:\Users\hülya\AppData\Local\xizdef.bat [2014-06-29] ()
Task: {641B4E72-E5DF-478A-9EF4-A8C55FAC8DA8} - System32\Tasks\cokxm => C:\Users\hülya\AppData\Local\cokxm.bat [2014-06-29] ()
Task: {6461850E-562D-4D74-ABB8-52C278DF4932} - System32\Tasks\ebfol => C:\Users\hülya\AppData\Local\ebfol.bat [2014-06-30] ()
Task: {652F6D13-3A2C-456D-AA42-432E1C123848} - System32\Tasks\ljivt => C:\Users\hülya\AppData\Local\ljivt.bat [2014-06-30] ()
Task: {65D249B5-790E-4809-9A23-E0E031A76C6E} - System32\Tasks\iauhbv => C:\Users\hülya\AppData\Local\iauhbv.bat [2014-06-29] ()
Task: {67DD9472-CD9F-4B05-9A65-91B026C1E00F} - System32\Tasks\kwtxbhko => C:\Users\hülya\AppData\Local\kwtxbhko.bat [2014-06-29] ()
Task: {689D6BC5-814F-4873-AE60-376FA802D6C0} - System32\Tasks\prtvey => C:\Users\hülya\AppData\Local\prtvey.bat [2014-06-29] ()
Task: {68D478EC-2255-4ABD-907E-7DA1DDFD3BF6} - System32\Tasks\rdpsgibx => C:\Users\hülya\AppData\Local\rdpsgibx.bat [2014-06-29] ()
Task: {6A523003-2B95-4734-B337-00E53BB5F3DF} - \Desk 365 RunAsStdUser No Task File <==== ATTENTION
Task: {6B1CE9E7-DC6B-4CBD-9539-372749998F13} - System32\Tasks\fkvoal => C:\Users\hülya\AppData\Local\fkvoal.bat [2014-06-29] ()
Task: {6BEF5BBD-0389-44A0-A137-3BB25148AE3D} - System32\Tasks\auaco => C:\Users\hülya\AppData\Local\auaco.bat [2014-06-29] ()
Task: {6E66F62F-887B-4D08-8634-14C152C364F5} - System32\Tasks\lqgmrpu => C:\Users\hülya\AppData\Local\lqgmrpu.bat [2014-06-29] ()
Task: {6F60DFE7-72EA-43E6-8512-EA836BDB9A5C} - System32\Tasks\yldjcn => C:\Users\hülya\AppData\Local\yldjcn.bat [2014-06-30] ()
Task: {70FD000E-56DB-4600-8B32-16C44906BBE6} - System32\Tasks\kheaxbbv => C:\Users\hülya\AppData\Local\kheaxbbv.bat [2014-07-01] ()
Task: {71873A24-1BA2-4757-866B-E437FF2D9101} - System32\Tasks\aocpc => C:\Users\hülya\AppData\Local\aocpc.bat [2014-06-29] ()
Task: {71A4E787-2FD1-420A-8D77-752F6FAF1433} - System32\Tasks\lcbpfk => C:\Users\hülya\AppData\Local\lcbpfk.bat [2014-06-30] ()
Task: {71E79AB4-5716-4AD5-935B-7FA43345FF74} - System32\Tasks\thlrdkxu => C:\Users\hülya\AppData\Local\thlrdkxu.bat [2014-06-29] ()
Task: {720331C6-F046-47B8-9C1A-0995E2298293} - System32\Tasks\nfnnu => C:\Users\hülya\AppData\Local\nfnnu.bat [2014-06-30] ()
Task: {72E8992A-8EBB-458F-BD16-86E3D74296EF} - System32\Tasks\ruxjmqcg => C:\Users\hülya\AppData\Local\ruxjmqcg.bat [2014-06-29] ()
Task: {754469BD-4901-4721-AF23-DA6CABA4F5F2} - System32\Tasks\noohhij => C:\Users\hülya\AppData\Local\noohhij.bat [2014-06-30] ()
Task: {75E33068-8412-4DDA-BE8B-2C85664E47C1} - System32\Tasks\xrunfjc => C:\Users\hülya\AppData\Local\xrunfjc.bat [2014-06-29] ()
Task: {75E5ED00-EEB6-4281-99B9-C6DCC57FA701} - System32\Tasks\aocpcqer => C:\Users\hülya\AppData\Local\aocpcqer.bat [2014-06-29] ()
Task: {7653D511-83C9-4ADD-BD15-4E8752409E12} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2014-07-11] (Microsoft Corporation)
Task: {77719AA2-7EBA-4F18-9D4B-026FDDE7ACF1} - System32\Tasks\ruxcmqt => C:\Users\hülya\AppData\Local\ruxcmqt.bat [2014-06-30] ()
Task: {78649AB2-FFDD-445F-AFB2-2FE019C9AFAB} - System32\Tasks\fgnngg => C:\Users\hülya\AppData\Local\fgnngg.bat [2014-06-30] ()
Task: {78EE32A3-ADA0-444C-A4C9-775F688F4CA0} - System32\Tasks\wfoefpa => C:\Users\hülya\AppData\Local\wfoefpa.bat [2014-06-30] ()
Task: {79B98B05-AA76-4ABF-879D-EB9E5A9B23B0} - System32\Tasks\trxvdah => C:\Users\hülya\AppData\Local\trxvdah.bat [2014-06-29] ()
Task: {7ACE8D35-B669-4709-B111-DE0DA6EEA840} - System32\Tasks\zuhtgb => C:\Users\hülya\AppData\Local\zuhtgb.bat [2014-06-29] ()
Task: {7AD3995D-E230-4F42-884A-C437DA0A05A4} - System32\Tasks\thbbobwc => C:\Users\hülya\AppData\Local\thbbobwc.bat [2014-06-29] ()
Task: {7B0FF46C-493F-4460-B1FD-8E87D9B01048} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-10] (Google Inc.)
Task: {7BFBBD90-86CD-4913-AD37-C108A8484A8D} - System32\Tasks\wxxabbdl => C:\Users\hülya\AppData\Local\wxxabbdl.bat [2014-06-30] ()
Task: {7C1CE95D-69B2-4AF3-945D-9DBE43255C89} - System32\Tasks\reiba => C:\Users\hülya\AppData\Local\reiba.bat [2014-06-29] ()
Task: {7D8A7BD2-6688-4E31-B4A2-C785F0EA0B94} - System32\Tasks\kifbcee => C:\Users\hülya\AppData\Local\kifbcee.bat [2014-06-29] ()
Task: {7E1BEBF9-737C-4F94-B86E-D6EF4033AEA5} - System32\Tasks\dngoeo => C:\Users\hülya\AppData\Local\dngoeo.bat [2014-06-29] ()
Task: {800ACEB1-5D47-43E7-8357-4007D13BC60E} - System32\Tasks\sfzekgc => C:\Users\hülya\AppData\Local\sfzekgc.bat [2014-06-29] ()
Task: {8058F0C1-FC30-45F0-8AD7-E4DA497F8404} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-10] (Google Inc.)
Task: {8172037B-A046-4D16-89F4-5F951A66BB72} - System32\Tasks\aaunbtn => C:\Users\hülya\AppData\Local\aaunbtn.bat [2014-06-29] ()
Task: {824B71C5-D519-49E6-A71A-46EFB2B8BA9D} - System32\Tasks\ahubocp => C:\Users\hülya\AppData\Local\ahubocp.bat [2014-06-29] ()
Task: {838900BC-2D5D-4ADE-9B6F-ECD03BB60242} - System32\Tasks\ghpaijjd => C:\Users\hülya\AppData\Local\ghpaijjd.bat [2014-06-29] ()
Task: {861E4BC1-4DA2-443A-A0D2-1634B879BA99} - System32\Tasks\qmgcmikg => C:\Users\hülya\AppData\Local\qmgcmikg.bat [2014-06-30] ()
Task: {8946DDA9-4B3E-4547-8B6A-7C5BA99CB269} - System32\Tasks\ovfemt => C:\Users\hülya\AppData\Local\ovfemt.bat [2014-06-30] ()
Task: {8BCE2817-AF58-4C19-B43E-4DE057B0A6DE} - System32\Tasks\lkifm => C:\Users\hülya\AppData\Local\lkifm.bat [2014-06-29] ()
Task: {8E1497A2-7437-4852-81F9-D3B631490EDC} - System32\Tasks\ztyse => C:\Users\hülya\AppData\Local\ztyse.bat [2014-06-30] ()
Task: {8E6B65F0-B741-41A8-9C9B-1E3CEAB7DDB1} - System32\Tasks\tbglafes => C:\Users\hülya\AppData\Local\tbglafes.bat [2014-06-29] ()
Task: {8E79F07B-95CD-4645-942B-C3AE2D12E390} - System32\Tasks\piqzluev => C:\Users\hülya\AppData\Local\piqzluev.bat [2014-06-29] ()
Task: {8F169992-2BE0-4159-A0C6-7143D3E8D7D8} - System32\Tasks\fvngogw => C:\Users\hülya\AppData\Local\fvngogw.bat [2014-06-30] ()
Task: {8FC0A992-B71F-43F1-B90F-7FA86194027D} - System32\Tasks\aavaouj => C:\Users\hülya\AppData\Local\aavaouj.bat [2014-06-29] ()
Task: {926F1ACC-A8B5-41F5-A1F2-26A90172DF4B} - System32\Tasks\jehlnce => C:\Users\hülya\AppData\Local\jehlnce.bat [2014-06-30] ()
Task: {9349611F-B0E9-4DD6-B0C7-842A3486B928} - System32\Tasks\ajuhbdv => C:\Users\hülya\AppData\Local\ajuhbdv.bat [2014-06-29] ()
Task: {963968DC-D863-4CB2-BB6C-A7D127E8EDBE} - System32\Tasks\ccafn => C:\Users\hülya\AppData\Local\ccafn.bat [2014-06-29] ()
Task: {988EC6A3-A1C2-4904-964D-620FE01BF65E} - System32\Tasks\ifauytq => C:\Users\hülya\AppData\Local\ifauytq.bat [2014-06-29] ()
Task: {998331A9-9B82-42D4-9CA5-3130E6E17765} - System32\Tasks\ijlmopq => C:\Users\hülya\AppData\Local\ijlmopq.bat [2014-06-30] ()
Task: {99B953C5-8F47-4F20-AF56-398C4EDA0FF2} - System32\Tasks\rvaeitxc => C:\Users\hülya\AppData\Local\rvaeitxc.bat [2014-06-29] ()
Task: {9A50B2C4-399B-46E0-91D2-8EDCDF29B8AF} - System32\Tasks\numsabiy => C:\Users\hülya\AppData\Local\numsabiy.bat [2014-06-29] ()
Task: {9A5ED1F3-0FAA-47B5-8B83-C090F372D7DE} - System32\Tasks\oopqhiaa => C:\Users\hülya\AppData\Local\oopqhiaa.bat [2014-06-30] ()
Task: {9AB2D5C9-203A-4B74-9A05-7BCC813D73F2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {9AB5F8F0-D027-42AE-B50D-1DB2F2038AD4} - System32\Tasks\ilvab => C:\Users\hülya\AppData\Local\ilvab.bat [2014-06-29] ()
Task: {9B656019-8717-4F50-B307-FFD0E9EDFC59} - System32\Tasks\efqidtef => C:\Users\hülya\AppData\Local\efqidtef.bat [2014-06-29] ()
Task: {9D9A9DCE-F3E0-4E2E-8AFD-37EB13AC3109} - System32\Tasks\cxuqfu => C:\Users\hülya\AppData\Local\cxuqfu.bat [2014-06-29] ()
Task: {9DAB3329-4B8F-4E3E-8440-A4ACB03FE547} - System32\Tasks\cnaupdx => C:\Users\hülya\AppData\Local\cnaupdx.bat [2014-06-29] ()
Task: {A28DBF92-7557-489A-B963-6E03825A71A1} - System32\Tasks\gffffee => C:\Users\hülya\AppData\Local\gffffee.bat [2014-06-29] ()
Task: {A2C2E07E-BB93-4129-AE38-461AECF0E24D} - System32\Tasks\ubovd => C:\Users\hülya\AppData\Local\ubovd.bat [2014-06-29] ()
Task: {A3280C68-2EEC-4998-B3CE-2E02F7F6C3E9} - System32\Tasks\xgxiyqsd => C:\Users\hülya\AppData\Local\xgxiyqsd.bat [2014-07-01] ()
Task: {A4869F99-353C-4606-89A1-C223F6A54402} - System32\Tasks\nveck => C:\Users\hülya\AppData\Local\nveck.bat [2014-06-30] ()
Task: {A53A4869-6F74-4B7D-87B2-22EB4AFDF8E8} - System32\Tasks\ykvbmx => C:\Users\hülya\AppData\Local\ykvbmx.bat [2014-06-29] ()
Task: {A5944D10-25F0-464F-A68B-02953F7B9158} - System32\Tasks\eudbraxo => C:\Users\hülya\AppData\Local\eudbraxo.bat [2014-06-29] ()
Task: {A5D91D02-D5A1-4C59-9F92-1699AE788D25} - System32\Tasks\vveeettb => C:\Users\hülya\AppData\Local\vveeettb.bat [2014-06-29] ()
Task: {A606AD13-2436-440B-943D-F1AAABEDB934} - System32\Tasks\eulkcjbf => C:\Users\hülya\AppData\Local\eulkcjbf.bat [2014-06-30] ()
Task: {A67C9463-685A-4967-A41E-B3148CD6A6BC} - System32\Tasks\daechca => C:\Users\hülya\AppData\Local\daechca.bat [2014-06-29] ()
Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {A78C741A-A1E2-4789-9CDE-09B601CA7046} - System32\Tasks\qlgqlgjm => C:\Users\hülya\AppData\Local\qlgqlgjm.bat [2014-06-29] ()
Task: {A7E36B8D-396C-4483-A569-463DC93C724D} - System32\Tasks\aiwkxfb => C:\Users\hülya\AppData\Local\aiwkxfb.bat [2014-06-30] ()
Task: {A8B6E5A5-879A-4E85-A312-8458AE982583} - System32\Tasks\icreymhc => C:\Users\hülya\AppData\Local\icreymhc.bat [2014-06-29] ()
Task: {A8EE6C19-F511-4C55-8A38-02D4F813557A} - System32\Tasks\qnifi => C:\Users\hülya\AppData\Local\qnifi.bat [2014-06-29] ()
Task: {ACD534AC-70D7-4FB2-8DAF-74E987E6B4BA} - System32\Tasks\tbeerxvb => C:\Users\hülya\AppData\Local\tbeerxvb.bat [2014-06-30] ()
Task: {AEB92FBA-FC77-4DC6-BEDC-DC2F184B6E53} - System32\Tasks\gphqpz => C:\Users\hülya\AppData\Local\gphqpz.bat [2014-06-29] ()
Task: {B12D852B-B7BD-4568-9A6E-5ED8C309E513} - System32\Tasks\lqntf => C:\Users\hülya\AppData\Local\lqntf.bat [2014-06-30] ()
Task: {B20AB0DD-F8D5-42A5-89B6-7CD6FEBE6FAF} - System32\Tasks\kgjoch => C:\Users\hülya\AppData\Local\kgjoch.bat [2014-06-29] ()
Task: {B3B787E3-05EA-4AD7-8B5A-89B8C7FA9964} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company)
Task: {B5938A3A-F2F9-475E-93A7-1339BAFF886F} - System32\Tasks\sxdjht => C:\Users\hülya\AppData\Local\sxdjht.bat [2014-06-30] ()
Task: {B739F915-5653-4652-93A5-EF7D3D56624B} - System32\Tasks\vlmck => C:\Users\hülya\AppData\Local\vlmck.bat [2014-06-29] ()
Task: {B7991E7E-2E88-4323-8C28-3C79A94E8C58} - System32\Tasks\hwooghw => C:\Users\hülya\AppData\Local\hwooghw.bat [2014-06-29] ()
Task: {B906D8DE-FC0D-4F3D-80D7-287DD24F2397} - System32\Tasks\quwaeg => C:\Users\hülya\AppData\Local\quwaeg.bat [2014-06-30] ()
Task: {BB5B613D-6E5B-4A57-B329-99D4C1F0A432} - System32\Tasks\cfcfnrnj => C:\Users\hülya\AppData\Local\cfcfnrnj.bat [2014-06-30] ()
Task: {BC11C765-DABF-44B7-9176-DDEE82F271CA} - System32\Tasks\ubpckyn => C:\Users\hülya\AppData\Local\ubpckyn.bat [2014-06-30] ()
Task: {BC5F0EB1-874B-4EB5-A0ED-E07C6F5540F1} - System32\Tasks\hcdeabo => C:\Users\hülya\AppData\Local\hcdeabo.bat [2014-06-30] ()
Task: {BD9E1970-D1A5-4199-9F5D-E30E1B532365} - System32\Tasks\xiscnx => C:\Users\hülya\AppData\Local\xiscnx.bat [2014-06-29] ()
Task: {BE6402BD-4AFF-4B85-967C-5F46259D9EEF} - System32\Tasks\tbgmtf => C:\Users\hülya\AppData\Local\tbgmtf.bat [2014-06-29] ()
Task: {BE6D85C9-71F8-47D1-8A60-1181E70DD79E} - System32\Tasks\izuvpicd => C:\Users\hülya\AppData\Local\izuvpicd.bat [2014-06-30] ()
Task: {BF95E05D-4546-4260-98E9-CA6EBA502FAC} - System32\Tasks\trwucgl => C:\Users\hülya\AppData\Local\trwucgl.bat [2014-06-30] ()
Task: {C024E3F3-C6A4-443B-9B0A-672AC60F19D4} - System32\Tasks\abpicxr => C:\Users\hülya\AppData\Local\abpicxr.bat [2014-07-01] ()
Task: {C0A4DF78-8E7A-40D2-83B8-7893C0CDBE69} - System32\Tasks\aaoibwj => C:\Users\hülya\AppData\Local\aaoibwj.bat [2014-06-29] ()
Task: {C290259F-7C92-4D66-BEF8-9FE0009E8954} - System32\Tasks\dynshwc => C:\Users\hülya\AppData\Local\dynshwc.bat [2014-07-01] ()
Task: {C45574D8-9670-430E-9E13-43206805F7C4} - System32\Tasks\numttcsa => C:\Users\hülya\AppData\Local\numttcsa.bat [2014-06-29] ()
Task: {C47B8539-5F62-4D35-A61F-295F0B217258} - System32\Tasks\daetq => C:\Users\hülya\AppData\Local\daetq.bat [2014-06-29] ()
Task: {C5940CD4-FDE8-4B8E-9A71-53E8DC0FC454} - System32\Tasks\qdfrefk => C:\Users\hülya\AppData\Local\qdfrefk.bat [2014-06-29] ()
Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {C7B7DCEF-F9C4-4BF6-92AD-3CE332BF24D8} - System32\Tasks\nooffg => C:\Users\hülya\AppData\Local\nooffg.bat [2014-06-29] ()
Task: {C9650B7D-DCE4-41C1-AFDE-FD06AFE68E1D} - \SaveSenseLiveUpdateTaskMachineCore No Task File <==== ATTENTION
Task: {C9A895FD-1526-442B-BC8A-D445E17CA424} - System32\Tasks\kotxmqu => C:\Users\hülya\AppData\Local\kotxmqu.bat [2014-06-29] ()
Task: {CAD26C48-B6FE-4D24-9EE4-926880691377} - System32\Tasks\gofohwhp => C:\Users\hülya\AppData\Local\gofohwhp.bat [2014-06-29] ()
Task: {CC1E4D63-C63F-46F1-B6F4-E0D140BF649A} - System32\Tasks\kpmrotfu => C:\Users\hülya\AppData\Local\kpmrotfu.bat [2014-06-29] ()
Task: {CC48EE6F-CB41-4875-A85C-F9F8D32A9664} - System32\Tasks\ekhnlrhf => C:\Users\hülya\AppData\Local\ekhnlrhf.bat [2014-06-30] ()
Task: {CC9B1D1D-E51E-4C15-B8F2-8EB093517118} - System32\Tasks\mcbxwcs => C:\Users\hülya\AppData\Local\mcbxwcs.bat [2014-06-30] ()
Task: {CCD90FFF-114C-41F6-B82B-FBE83AE7D42C} - System32\Tasks\tqwtbw => C:\Users\hülya\AppData\Local\tqwtbw.bat [2014-06-30] ()
Task: {CD147F20-1A58-47A8-8A1B-3B5AED5571F7} - System32\Tasks\spuhd => C:\Users\hülya\AppData\Local\spuhd.bat [2014-06-30] ()
Task: {D15CC7EE-C8A2-470B-B325-84F205286FDB} - System32\Tasks\icwxl => C:\Users\hülya\AppData\Local\icwxl.bat [2014-06-29] ()
Task: {D1697C7E-8329-4A59-993F-9F34DAA8F64D} - System32\Tasks\quxbfilv => C:\Users\hülya\AppData\Local\quxbfilv.bat [2014-06-29] ()
Task: {D17A1BB3-25FC-43AF-A624-0A7FBA0C1D35} - System32\Tasks\jfjnqm => C:\Users\hülya\AppData\Local\jfjnqm.bat [2014-06-29] ()
Task: {D514C033-7349-4C69-A100-528356B5623F} - System32\Tasks\egqajsk => C:\Users\hülya\AppData\Local\egqajsk.bat [2014-06-29] ()
Task: {D5D84B94-6D3D-42A7-B15C-8ED8AE7228B5} - System32\Tasks\rvadoswa => C:\Users\hülya\AppData\Local\rvadoswa.bat [2014-06-29] ()
Task: {D608B439-DE2B-475F-A401-58BD7BDEE5A0} - System32\Tasks\rwimaepu => C:\Users\hülya\AppData\Local\rwimaepu.bat [2014-06-29] ()
Task: {D72D2678-9F94-4FB6-BD97-107A06FBC06F} - System32\Tasks\gfiaa => C:\Users\hülya\AppData\Local\gfiaa.bat [2014-06-29] ()
Task: {D8F85268-9F81-46B5-B111-92CBF3E99AC2} - System32\Tasks\prsudyb => C:\Users\hülya\AppData\Local\prsudyb.bat [2014-06-29] ()
Task: {D95314ED-9258-4DE5-8683-30EDA7B1220D} - System32\Tasks\lcbpg => C:\Users\hülya\AppData\Local\lcbpg.bat [2014-07-01] ()
Task: {D98236A6-4C09-4685-921C-0216D3F81C70} - System32\Tasks\ekaix => C:\Users\hülya\AppData\Local\ekaix.bat [2014-06-30] ()
Task: {D9C24D3D-1E96-4149-976B-C8A8E5671F56} - System32\Tasks\giqss => C:\Users\hülya\AppData\Local\giqss.bat [2014-06-29] ()
Task: {DA6F7414-D29C-49E6-AD75-B4872865D07A} - \Advanced System Protector_startup No Task File <==== ATTENTION
Task: {DA989872-1AF9-4DB3-A7CF-4E6DDC179D24} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2012-07-27] (CyberLink)
Task: {DAB84BA7-5B7B-473C-B15C-0F94AB0364BD} - System32\Tasks\dafwmja => C:\Users\hülya\AppData\Local\dafwmja.bat [2014-06-29] ()
Task: {DB5A7EA2-30C0-42F4-9D49-5288BB2D4964} - System32\Tasks\lbgcbx => C:\Users\hülya\AppData\Local\lbgcbx.bat [2014-06-30] ()
Task: {DFAE457B-126E-4477-8D22-6079C0E1E198} - System32\Tasks\gaiccbvd => C:\Users\hülya\AppData\Local\gaiccbvd.bat [2014-06-29] ()
Task: {E174B46C-B997-4207-B944-B2ECA9BEBA4E} - System32\Tasks\wnfne => C:\Users\hülya\AppData\Local\wnfne.bat [2014-06-29] ()
Task: {E2851220-AE28-4D68-BDD6-26CD4D8F8164} - System32\Tasks\fwhaxi => C:\Users\hülya\AppData\Local\fwhaxi.bat [2014-06-30] ()
Task: {E4477F93-AA4C-47FE-983A-13CD8F94D6EC} - System32\Tasks\hysdwpba => C:\Users\hülya\AppData\Local\hysdwpba.bat [2014-06-29] ()
Task: {E5819868-D1CD-4AAE-82C9-A76ABBE34F1D} - System32\Tasks\lbffbzeu => C:\Users\hülya\AppData\Local\lbffbzeu.bat [2014-06-29] ()
Task: {E84AA2A9-9FEA-4956-9A62-6018F2C14BF1} - System32\Tasks\jvrui => C:\Users\hülya\AppData\Local\jvrui.bat [2014-06-29] ()
Task: {E876E42D-D979-44EE-96B9-C390CAF41CA8} - System32\Tasks\jdymi => C:\Users\hülya\AppData\Local\jdymi.bat [2014-06-30] ()
Task: {EAF211DF-A62D-4E53-A997-01464CFAB412} - System32\Tasks\ulccqgwd => C:\Users\hülya\AppData\Local\ulccqgwd.bat [2014-06-30] ()
Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {ECB474BA-F4BD-461C-8E56-1F6EDFAC2F77} - System32\Tasks\ukbhckaa => C:\Users\hülya\AppData\Local\ukbhckaa.bat [2014-06-29] ()
Task: {EDB7FE91-125B-4011-AF13-55D430E81AB0} - System32\Tasks\gohgohh => C:\Users\hülya\AppData\Local\gohgohh.bat [2014-06-29] ()
Task: {EE28C521-6703-468E-A49C-2B80220A57E3} - System32\Tasks\xdmos => C:\Users\hülya\AppData\Local\xdmos.bat [2014-06-29] ()
Task: {F021A13B-3484-4959-81B4-AB215DA86CF6} - System32\Tasks\wgwgw => C:\Users\hülya\AppData\Local\wgwgw.bat [2014-06-29] ()
Task: {F0CE2F94-3C90-4951-8CC1-874C225E747B} - \SaveSenseLiveUpdateTaskMachineUA No Task File <==== ATTENTION
Task: {F1480B1B-BF14-470F-AE3B-5E8BCBF8247B} - System32\Tasks\fqcdnfrr => C:\Users\hülya\AppData\Local\fqcdnfrr.bat [2014-06-29] ()
Task: {F464C78B-BD13-471C-AC49-A0B54E800656} - System32\Tasks\reibflg => C:\Users\hülya\AppData\Local\reibflg.bat [2014-06-29] ()
Task: {F4BE6778-4098-4722-B633-B180C30DE00F} - System32\Tasks\qcuecu => C:\Users\hülya\AppData\Local\qcuecu.bat [2014-06-30] ()
Task: {F63CCB61-2DE5-41B2-9C6B-E922B3F8D885} - System32\Tasks\xdmoi => C:\Users\hülya\AppData\Local\xdmoi.bat [2014-06-30] ()
Task: {F67F34D6-3919-4295-8F60-55F8AA4C2429} - System32\Tasks\bdadk => C:\Users\hülya\AppData\Local\bdadk.bat [2014-06-30] ()
Task: {F6D10048-3DA6-4B44-B787-1E155421C58C} - System32\Tasks\dulctdar => C:\Users\hülya\AppData\Local\dulctdar.bat [2014-06-29] ()
Task: {F7889F20-093C-4080-A42D-7EC64D5188D6} - System32\Tasks\eddzr => C:\Users\hülya\AppData\Local\eddzr.bat [2014-06-29] ()
Task: {F8F4A4C1-A5FB-4788-B6F6-FFF191DFB75A} - System32\Tasks\rwbfruh => C:\Users\hülya\AppData\Local\rwbfruh.bat [2014-06-29] ()
Task: {F980B98C-2411-437F-B696-D94A7908B4CB} - System32\Tasks\idxsnplf => C:\Users\hülya\AppData\Local\idxsnplf.bat [2014-06-29] ()
Task: {FB156CEB-3C7B-4431-8D98-25DBF09DF1B5} - System32\Tasks\pxrbjdlu => C:\Users\hülya\AppData\Local\pxrbjdlu.bat [2014-06-29] ()
Task: {FC095D12-63A0-4BEE-8D1B-09D73CE6BE26} - System32\Tasks\cpdlguc => C:\Users\hülya\AppData\Local\cpdlguc.bat [2014-06-29] ()
Task: {FE5899FA-8A60-445F-8303-B4D11A39D522} - System32\Tasks\gxqja => C:\Users\hülya\AppData\Local\gxqja.bat [2014-06-29] ()
Task: {FE9ADDA0-AC34-4EF3-84F0-D3A05F8C3927} - System32\Tasks\eblbzi => C:\Users\hülya\AppData\Local\eblbzi.bat [2014-06-29] ()
Task: {FF52B84E-E9B5-4257-B6C4-867F279D4C9F} - System32\Tasks\beiuye => C:\Users\hülya\AppData\Local\beiuye.bat [2014-06-30] ()
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3460895242-2686779407-2708491527-1002Core.job => C:\Users\hülya\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForhülya.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Loaded Modules (whitelisted) =============

2012-07-18 07:55 - 2012-07-18 07:55 - 00028160 _____ () C:\Windows\system32\valWBFPolicyService.exe
2012-09-25 10:52 - 2012-07-28 02:31 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2012-08-10 01:36 - 2012-08-10 01:36 - 04073320 _____ () C:\Program Files (x86)\HP SimplePass\IEWebSiteLogon.exe
2013-06-17 13:35 - 2013-06-17 13:35 - 00478400 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\dblite.dll
2013-05-08 15:52 - 2013-05-08 15:52 - 01270464 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\kpcengine.2.3.dll
2012-09-25 11:16 - 2012-06-08 05:34 - 00627216 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll
2012-06-08 11:34 - 2012-06-08 11:34 - 00016400 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll
2014-02-21 14:12 - 2014-02-21 14:12 - 00017920 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\PSIClient\84687ccf62e0c74eca063ab0386f530f\PSIClient.ni.dll
2012-09-25 10:51 - 2012-06-25 20:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2014-06-18 19:36 - 2014-06-05 15:58 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\libglesv2.dll
2014-06-18 19:36 - 2014-06-05 15:58 - 00126280 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\libegl.dll
2014-06-18 19:36 - 2014-06-05 15:58 - 04217672 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll
2014-06-18 19:36 - 2014-06-05 15:58 - 00414536 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll
2014-06-18 19:36 - 2014-06-05 15:58 - 01732424 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ffmpegsumo.dll
2014-07-12 13:20 - 2014-07-08 08:18 - 14663856 _____ () C:\Users\hülya\AppData\Local\Google\Chrome\User Data\PepperFlash\14.0.0.145\pepflashplayer.dll
2012-08-10 01:36 - 2012-08-10 01:36 - 00018792 _____ () C:\Program Files (x86)\HP SimplePass\DownloadManager.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\Temp:223BB3A1

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

HKCU\...\StartupApproved\Run: => "Facebook Update"
HKCU\...\StartupApproved\Run: => "Skype"
HKCU\...\StartupApproved\Run: => "Optimizer Pro"
HKCU\...\StartupApproved\Run: => "FLV Player"

==================== Faulty Device Manager Devices =============

Name: USB-IF xHCI USB Host Controller
Description: USB-IF xHCI USB Host Controller
Class Guid: {8a2edc79-c759-46f2-88af-9d4efe3b5eee}
Manufacturer: Intel Corporation
Service: XHCIPort
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver

Name: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter
Description: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter
Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974}
Manufacturer: Intel Corporation
Service: BTHUSB
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (07/25/2014 05:14:02 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1437

Error: (07/25/2014 05:14:02 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1437

Error: (07/25/2014 05:14:02 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (07/24/2014 10:20:03 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: devmonsrv.exe, Version: 2.5.0.244, Zeitstempel: 0x50220e70
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00000000
ID des fehlerhaften Prozesses: 0x2e1c
Startzeit der fehlerhaften Anwendung: 0xdevmonsrv.exe0
Pfad der fehlerhaften Anwendung: devmonsrv.exe1
Pfad des fehlerhaften Moduls: devmonsrv.exe2
Berichtskennung: devmonsrv.exe3
Vollständiger Name des fehlerhaften Pakets: devmonsrv.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: devmonsrv.exe5


System errors:
=============
Error: (07/24/2014 10:20:05 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Bluetooth Device Monitor" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.


Microsoft Office Sessions:
=========================
Error: (07/25/2014 05:14:02 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1437

Error: (07/25/2014 05:14:02 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1437

Error: (07/25/2014 05:14:02 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (07/24/2014 10:20:03 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: devmonsrv.exe2.5.0.24450220e70unknown0.0.0.000000000c0000005000000002e1c01cfa77ab4f106a3C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exeunknowne470c0ee-136f-11e4-8049-a0b3cc484fc9


==================== Memory info =========================== 

Percentage of memory in use: 38%
Total physical RAM: 8081.27 MB
Available physical RAM: 4978.9 MB
Total Pagefile: 9297.27 MB
Available Pagefile: 5381.02 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:446.91 GB) (Free:368.81 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (RECOVERY) (Fixed) (Total:18.07 GB) (Free:2.27 GB) NTFS ==>[System with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 466 GB) (Disk ID: A50E1C7D)

Partition: GPT Partition Type.

==================== End Of Log ============================
         

Alt 25.07.2014, 22:52   #14
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
bat=exe konnte nicht gefunden werden. - Standard

bat=exe konnte nicht gefunden werden.



Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:
ATTFilter
HKLM-x32\...\Run: [fst_de_69] => [X]
HKLM-x32\...\Run: [AnyProtect Tray] => "C:\Program Files (x86)\AnyProtectEx\AnyProtectTrayIcon.exe"
HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\Policies\Explorer: [DisallowRun] 1
SearchScopes: HKLM - {52db1893-8a90-4192-aede-08e00b8f8473} URL = http://dts.search.ask.com/sr?src=ieb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms}
BHO: savinshoop -> {2ED8C2FC-2464-86BA-E541-740FB78AF4BD} -> C:\ProgramData\savinshoop\PRZ7D.x64.dll ()
BHO-x32: savinshoop -> {2ED8C2FC-2464-86BA-E541-740FB78AF4BD} -> C:\ProgramData\savinshoop\PRZ7D.dll ()
CHR DefaultSearchKeyword: ask.com
CHR DefaultSearchProvider: Ask.com
CHR DefaultSearchURL: http://dts.search.ask.com/sr?src=crb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms}
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
C:\Users\hülya\AppData\Local\*.bat
C:\Program Files (x86)\AnyProtectEx
C:\ProgramData\savinshoop
C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535_
C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535
C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51_
C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51
C:\Users\hülya\Downloads\9ED2tmp
C:\Users\hülya\Downloads\9E82tmp
C:\Users\hülya\Downloads\9E62tmp
C:\Users\hülya\Downloads\9E22tmp
C:\Users\hülya\Downloads\9E02tmp
C:\Users\hülya\Downloads\9DE2tmp
C:\Users\hülya\Downloads\9DC2tmp
C:\Users\hülya\Downloads\Setup (3).exe
C:\Users\hülya\Downloads\9EB2tmp
C:\Users\hülya\Downloads\55A4tmp
C:\Windows\system32\Tasks\dafdid
C:\Windows\system32\Tasks\icdytn
C:\Windows\system32\Tasks\iavic
C:\Windows\system32\Tasks\kbxmda
C:\Windows\system32\Tasks\kfujeuqf
C:\Windows\system32\Tasks\vdksa
C:\Windows\system32\Tasks\tymrgl
C:\Windows\system32\Tasks\whpxpqi
C:\Windows\system32\Tasks\ligdqolj
C:\Windows\system32\Tasks\psuprudi
C:\Windows\system32\Tasks\acceyau
C:\Windows\system32\Tasks\lxdiu
C:\Windows\system32\Tasks\bkdpjboa
C:\Windows\system32\Tasks\ljwusx
C:\Windows\system32\Tasks\eewxpph
C:\Windows\system32\Tasks\jfbdsujm
C:\Windows\system32\Tasks\vdsbqhwf
C:\Windows\system32\Tasks\ajcohkcp
C:\Windows\system32\Tasks\dulcs
C:\Windows\system32\Tasks\fxacscu
C:\Windows\system32\Tasks\ydoalwbt
C:\Windows\system32\Tasks\aguiubo
C:\Windows\system32\Tasks\khepmjn
C:\Windows\system32\Tasks\rdwbfa
C:\Windows\system32\Tasks\hbunicup
C:\Windows\system32\Tasks\gwwoohh
C:\Windows\system32\Tasks\cwtodhbp
C:\Windows\system32\Tasks\caebg
C:\Windows\system32\Tasks\zlqcg
C:\Windows\system32\Tasks\fsigct
C:\Windows\system32\Tasks\erawe
C:\Windows\system32\Tasks\jgjnrnq
C:\Windows\system32\Tasks\eqfcxnbw
C:\Windows\system32\Tasks\hztmgy
C:\Windows\system32\Tasks\hajdc
C:\Windows\system32\Tasks\tsqpv
C:\Windows\system32\Tasks\koagcns
C:\Windows\system32\Tasks\hqqbbcll
C:\Windows\system32\Tasks\oqysbd
C:\Windows\system32\Tasks\zfsdqf
C:\Windows\system32\Tasks\oqyaks
C:\Windows\system32\Tasks\kfdavzwl
C:\Windows\system32\Tasks\whqaqs
C:\Windows\system32\Tasks\pakteow
C:\Windows\system32\Tasks\wgwfihhq
C:\Windows\system32\Tasks\kotimqn
C:\Windows\system32\Tasks\fdcaqonm
C:\Windows\system32\Tasks\ahubvcq
C:\Windows\system32\Tasks\awkfl
C:\Windows\system32\Tasks\isnoa
C:\Windows\system32\Tasks\pjddy
C:\Windows\system32\Tasks\vveett
C:\Windows\system32\Tasks\lcbpv
C:\Windows\system32\Tasks\vwgfvve
C:\Windows\system32\Tasks\mffummlk
C:\Windows\system32\Tasks\lrweaflq
C:\Windows\system32\Tasks\vggvgguf
C:\Windows\system32\Tasks\jdauqmhd
C:\Windows\system32\Tasks\fjdoh
C:\Windows\system32\Tasks\quejuej
C:\Windows\system32\Tasks\rxbycq
C:\Windows\system32\Tasks\ccbfv
C:\Windows\system32\Tasks\akcohzmg
C:\Windows\system32\Tasks\bocpdwd
C:\Windows\system32\Tasks\tyfrx
C:\Windows\system32\Tasks\khtpt
C:\Windows\system32\Tasks\tbfedip
C:\Windows\system32\Tasks\beyuxlg
C:\Windows\system32\Tasks\iddytni
C:\Windows\system32\Tasks\gufetd
C:\Windows\system32\Tasks\vmddsj
C:\Windows\system32\Tasks\cfdfey
C:\Windows\system32\Tasks\acxkgi
C:\Windows\system32\Tasks\nghxp
C:\Windows\system32\Tasks\edeaa
C:\Windows\system32\Tasks\bxthdr
C:\Windows\system32\Tasks\refju
C:\Windows\system32\Tasks\erawlaq
C:\Windows\system32\Tasks\xaqscn
C:\Windows\system32\Tasks\fepha
C:\Windows\system32\Tasks\vdksahw
C:\Windows\system32\Tasks\xizdef
C:\Windows\system32\Tasks\cokxm
C:\Windows\system32\Tasks\ebfol
C:\Windows\system32\Tasks\ljivt
C:\Windows\system32\Tasks\iauhbv
C:\Windows\system32\Tasks\kwtxbhko
C:\Windows\system32\Tasks\prtvey
C:\Windows\system32\Tasks\rdpsgibx
C:\Windows\system32\Tasks\fkvoal
C:\Windows\system32\Tasks\auaco
C:\Windows\system32\Tasks\lqgmrpu
C:\Windows\system32\Tasks\yldjcn
C:\Windows\system32\Tasks\kheaxbbv
C:\Windows\system32\Tasks\aocpc
C:\Windows\system32\Tasks\lcbpfk
C:\Windows\system32\Tasks\thlrdkxu
C:\Windows\system32\Tasks\nfnnu
C:\Windows\system32\Tasks\ruxjmqcg
C:\Windows\system32\Tasks\noohhij
C:\Windows\system32\Tasks\xrunfjc
C:\Windows\system32\Tasks\aocpcqer
C:\Windows\system32\Tasks\ruxcmqt
C:\Windows\system32\Tasks\fgnngg
C:\Windows\system32\Tasks\wfoefpa
C:\Windows\system32\Tasks\trxvdah
C:\Windows\system32\Tasks\zuhtgb
C:\Windows\system32\Tasks\thbbobwc
C:\Windows\system32\Tasks\wxxabbdl
C:\Windows\system32\Tasks\reiba
C:\Windows\system32\Tasks\kifbcee
C:\Windows\system32\Tasks\dngoeo
C:\Windows\system32\Tasks\sfzekgc
C:\Windows\system32\Tasks\aaunbtn
C:\Windows\system32\Tasks\ahubocp
C:\Windows\system32\Tasks\ghpaijjd
C:\Windows\system32\Tasks\qmgcmikg
C:\Windows\system32\Tasks\ovfemt
C:\Windows\system32\Tasks\lkifm
C:\Windows\system32\Tasks\ztyse
C:\Windows\system32\Tasks\tbglafes
C:\Windows\system32\Tasks\piqzluev
C:\Windows\system32\Tasks\fvngogw
C:\Windows\system32\Tasks\aavaouj
C:\Windows\system32\Tasks\jehlnce
C:\Windows\system32\Tasks\ajuhbdv
C:\Windows\system32\Tasks\ccafn
C:\Windows\system32\Tasks\ifauytq
C:\Windows\system32\Tasks\ijlmopq
C:\Windows\system32\Tasks\rvaeitxc
C:\Windows\system32\Tasks\numsabiy
C:\Windows\system32\Tasks\oopqhiaa
C:\Windows\system32\Tasks\ilvab
C:\Windows\system32\Tasks\efqidtef
C:\Windows\system32\Tasks\cxuqfu
C:\Windows\system32\Tasks\cnaupdx
C:\Windows\system32\Tasks\gffffee
C:\Windows\system32\Tasks\ubovd
C:\Windows\system32\Tasks\xgxiyqsd
C:\Windows\system32\Tasks\nveck
C:\Windows\system32\Tasks\ykvbmx
C:\Windows\system32\Tasks\eudbraxo
C:\Windows\system32\Tasks\vveeettb
C:\Windows\system32\Tasks\eulkcjbf
C:\Windows\system32\Tasks\daechca
C:\Windows\system32\Tasks\qlgqlgjm
C:\Windows\system32\Tasks\aiwkxfb
C:\Windows\system32\Tasks\icreymhc
C:\Windows\system32\Tasks\qnifi
C:\Windows\system32\Tasks\tbeerxvb
C:\Windows\system32\Tasks\gphqpz
C:\Windows\system32\Tasks\lqntf
C:\Windows\system32\Tasks\kgjoch
C:\Windows\system32\Tasks\sxdjht
C:\Windows\system32\Tasks\vlmck
C:\Windows\system32\Tasks\hwooghw
C:\Windows\system32\Tasks\quwaeg
C:\Windows\system32\Tasks\cfcfnrnj
C:\Windows\system32\Tasks\ubpckyn
C:\Windows\system32\Tasks\hcdeabo
C:\Windows\system32\Tasks\xiscnx
C:\Windows\system32\Tasks\tbgmtf
C:\Windows\system32\Tasks\izuvpicd
C:\Windows\system32\Tasks\trwucgl
C:\Windows\system32\Tasks\abpicxr
C:\Windows\system32\Tasks\aaoibwj
C:\Windows\system32\Tasks\dynshwc
C:\Windows\system32\Tasks\numttcsa
C:\Windows\system32\Tasks\daetq
C:\Windows\system32\Tasks\qdfrefk
C:\Windows\system32\Tasks\nooffg
C:\Windows\system32\Tasks\kotxmqu
C:\Windows\system32\Tasks\gofohwhp
C:\Windows\system32\Tasks\kpmrotfu
C:\Windows\system32\Tasks\ekhnlrhf
C:\Windows\system32\Tasks\mcbxwcs
C:\Windows\system32\Tasks\tqwtbw
C:\Windows\system32\Tasks\spuhd
C:\Windows\system32\Tasks\icwxl
C:\Windows\system32\Tasks\quxbfilv
C:\Windows\system32\Tasks\jfjnqm
C:\Windows\system32\Tasks\egqajsk
C:\Windows\system32\Tasks\rvadoswa
C:\Windows\system32\Tasks\rwimaepu
C:\Windows\system32\Tasks\gfiaa
C:\Windows\system32\Tasks\prsudyb
C:\Windows\system32\Tasks\lcbpg
C:\Windows\system32\Tasks\ekaix
C:\Windows\system32\Tasks\giqss
C:\Windows\system32\Tasks\dafwmja
C:\Windows\system32\Tasks\lbgcbx
C:\Windows\system32\Tasks\gaiccbvd
C:\Windows\system32\Tasks\wnfne
C:\Windows\system32\Tasks\fwhaxi
C:\Windows\system32\Tasks\hysdwpba
C:\Windows\system32\Tasks\lbffbzeu
C:\Windows\system32\Tasks\jvrui
C:\Windows\system32\Tasks\jdymi
C:\Windows\system32\Tasks\ulccqgwd
C:\Windows\system32\Tasks\ukbhckaa
C:\Windows\system32\Tasks\gohgohh
C:\Windows\system32\Tasks\xdmos
C:\Windows\system32\Tasks\wgwgw
C:\Windows\system32\Tasks\fqcdnfrr
C:\Windows\system32\Tasks\reibflg
C:\Windows\system32\Tasks\qcuecu
C:\Windows\system32\Tasks\xdmoi
C:\Windows\system32\Tasks\bdadk
C:\Windows\system32\Tasks\dulctdar
C:\Windows\system32\Tasks\eddzr
C:\Windows\system32\Tasks\rwbfruh
C:\Windows\system32\Tasks\idxsnplf
C:\Windows\system32\Tasks\pxrbjdlu
C:\Windows\system32\Tasks\cpdlguc
C:\Windows\system32\Tasks\gxqja
C:\Windows\system32\Tasks\eblbzi
C:\Windows\system32\Tasks\beiuye
         

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.

__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Alt 25.07.2014, 23:52   #15
Romiero
 
bat=exe konnte nicht gefunden werden. - Standard

bat=exe konnte nicht gefunden werden.



Code:
ATTFilter
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 24-07-2014 01
Ran by hülya at 2014-07-25 23:50:43 Run:1
Running from C:\Users\hülya\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
HKLM-x32\...\Run: [fst_de_69] => [X]
HKLM-x32\...\Run: [AnyProtect Tray] => "C:\Program Files (x86)\AnyProtectEx\AnyProtectTrayIcon.exe"
HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\...\Policies\Explorer: [DisallowRun] 1
SearchScopes: HKLM - {52db1893-8a90-4192-aede-08e00b8f8473} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms}
BHO: savinshoop -> {2ED8C2FC-2464-86BA-E541-740FB78AF4BD} -> C:\ProgramData\savinshoop\PRZ7D.x64.dll ()
BHO-x32: savinshoop -> {2ED8C2FC-2464-86BA-E541-740FB78AF4BD} -> C:\ProgramData\savinshoop\PRZ7D.dll ()
CHR DefaultSearchKeyword: ask.com
CHR DefaultSearchProvider: Ask.com
CHR DefaultSearchURL: hxxp://dts.search.ask.com/sr?src=crb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms}
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
C:\Users\hülya\AppData\Local\*.bat
C:\Program Files (x86)\AnyProtectEx
C:\ProgramData\savinshoop
C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535_
C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535
C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51_
C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51
C:\Users\hülya\Downloads\9ED2tmp
C:\Users\hülya\Downloads\9E82tmp
C:\Users\hülya\Downloads\9E62tmp
C:\Users\hülya\Downloads\9E22tmp
C:\Users\hülya\Downloads\9E02tmp
C:\Users\hülya\Downloads\9DE2tmp
C:\Users\hülya\Downloads\9DC2tmp
C:\Users\hülya\Downloads\Setup (3).exe
C:\Users\hülya\Downloads\9EB2tmp
C:\Users\hülya\Downloads\55A4tmp
C:\Windows\system32\Tasks\dafdid
C:\Windows\system32\Tasks\icdytn
C:\Windows\system32\Tasks\iavic
C:\Windows\system32\Tasks\kbxmda
C:\Windows\system32\Tasks\kfujeuqf
C:\Windows\system32\Tasks\vdksa
C:\Windows\system32\Tasks\tymrgl
C:\Windows\system32\Tasks\whpxpqi
C:\Windows\system32\Tasks\ligdqolj
C:\Windows\system32\Tasks\psuprudi
C:\Windows\system32\Tasks\acceyau
C:\Windows\system32\Tasks\lxdiu
C:\Windows\system32\Tasks\bkdpjboa
C:\Windows\system32\Tasks\ljwusx
C:\Windows\system32\Tasks\eewxpph
C:\Windows\system32\Tasks\jfbdsujm
C:\Windows\system32\Tasks\vdsbqhwf
C:\Windows\system32\Tasks\ajcohkcp
C:\Windows\system32\Tasks\dulcs
C:\Windows\system32\Tasks\fxacscu
C:\Windows\system32\Tasks\ydoalwbt
C:\Windows\system32\Tasks\aguiubo
C:\Windows\system32\Tasks\khepmjn
C:\Windows\system32\Tasks\rdwbfa
C:\Windows\system32\Tasks\hbunicup
C:\Windows\system32\Tasks\gwwoohh
C:\Windows\system32\Tasks\cwtodhbp
C:\Windows\system32\Tasks\caebg
C:\Windows\system32\Tasks\zlqcg
C:\Windows\system32\Tasks\fsigct
C:\Windows\system32\Tasks\erawe
C:\Windows\system32\Tasks\jgjnrnq
C:\Windows\system32\Tasks\eqfcxnbw
C:\Windows\system32\Tasks\hztmgy
C:\Windows\system32\Tasks\hajdc
C:\Windows\system32\Tasks\tsqpv
C:\Windows\system32\Tasks\koagcns
C:\Windows\system32\Tasks\hqqbbcll
C:\Windows\system32\Tasks\oqysbd
C:\Windows\system32\Tasks\zfsdqf
C:\Windows\system32\Tasks\oqyaks
C:\Windows\system32\Tasks\kfdavzwl
C:\Windows\system32\Tasks\whqaqs
C:\Windows\system32\Tasks\pakteow
C:\Windows\system32\Tasks\wgwfihhq
C:\Windows\system32\Tasks\kotimqn
C:\Windows\system32\Tasks\fdcaqonm
C:\Windows\system32\Tasks\ahubvcq
C:\Windows\system32\Tasks\awkfl
C:\Windows\system32\Tasks\isnoa
C:\Windows\system32\Tasks\pjddy
C:\Windows\system32\Tasks\vveett
C:\Windows\system32\Tasks\lcbpv
C:\Windows\system32\Tasks\vwgfvve
C:\Windows\system32\Tasks\mffummlk
C:\Windows\system32\Tasks\lrweaflq
C:\Windows\system32\Tasks\vggvgguf
C:\Windows\system32\Tasks\jdauqmhd
C:\Windows\system32\Tasks\fjdoh
C:\Windows\system32\Tasks\quejuej
C:\Windows\system32\Tasks\rxbycq
C:\Windows\system32\Tasks\ccbfv
C:\Windows\system32\Tasks\akcohzmg
C:\Windows\system32\Tasks\bocpdwd
C:\Windows\system32\Tasks\tyfrx
C:\Windows\system32\Tasks\khtpt
C:\Windows\system32\Tasks\tbfedip
C:\Windows\system32\Tasks\beyuxlg
C:\Windows\system32\Tasks\iddytni
C:\Windows\system32\Tasks\gufetd
C:\Windows\system32\Tasks\vmddsj
C:\Windows\system32\Tasks\cfdfey
C:\Windows\system32\Tasks\acxkgi
C:\Windows\system32\Tasks\nghxp
C:\Windows\system32\Tasks\edeaa
C:\Windows\system32\Tasks\bxthdr
C:\Windows\system32\Tasks\refju
C:\Windows\system32\Tasks\erawlaq
C:\Windows\system32\Tasks\xaqscn
C:\Windows\system32\Tasks\fepha
C:\Windows\system32\Tasks\vdksahw
C:\Windows\system32\Tasks\xizdef
C:\Windows\system32\Tasks\cokxm
C:\Windows\system32\Tasks\ebfol
C:\Windows\system32\Tasks\ljivt
C:\Windows\system32\Tasks\iauhbv
C:\Windows\system32\Tasks\kwtxbhko
C:\Windows\system32\Tasks\prtvey
C:\Windows\system32\Tasks\rdpsgibx
C:\Windows\system32\Tasks\fkvoal
C:\Windows\system32\Tasks\auaco
C:\Windows\system32\Tasks\lqgmrpu
C:\Windows\system32\Tasks\yldjcn
C:\Windows\system32\Tasks\kheaxbbv
C:\Windows\system32\Tasks\aocpc
C:\Windows\system32\Tasks\lcbpfk
C:\Windows\system32\Tasks\thlrdkxu
C:\Windows\system32\Tasks\nfnnu
C:\Windows\system32\Tasks\ruxjmqcg
C:\Windows\system32\Tasks\noohhij
C:\Windows\system32\Tasks\xrunfjc
C:\Windows\system32\Tasks\aocpcqer
C:\Windows\system32\Tasks\ruxcmqt
C:\Windows\system32\Tasks\fgnngg
C:\Windows\system32\Tasks\wfoefpa
C:\Windows\system32\Tasks\trxvdah
C:\Windows\system32\Tasks\zuhtgb
C:\Windows\system32\Tasks\thbbobwc
C:\Windows\system32\Tasks\wxxabbdl
C:\Windows\system32\Tasks\reiba
C:\Windows\system32\Tasks\kifbcee
C:\Windows\system32\Tasks\dngoeo
C:\Windows\system32\Tasks\sfzekgc
C:\Windows\system32\Tasks\aaunbtn
C:\Windows\system32\Tasks\ahubocp
C:\Windows\system32\Tasks\ghpaijjd
C:\Windows\system32\Tasks\qmgcmikg
C:\Windows\system32\Tasks\ovfemt
C:\Windows\system32\Tasks\lkifm
C:\Windows\system32\Tasks\ztyse
C:\Windows\system32\Tasks\tbglafes
C:\Windows\system32\Tasks\piqzluev
C:\Windows\system32\Tasks\fvngogw
C:\Windows\system32\Tasks\aavaouj
C:\Windows\system32\Tasks\jehlnce
C:\Windows\system32\Tasks\ajuhbdv
C:\Windows\system32\Tasks\ccafn
C:\Windows\system32\Tasks\ifauytq
C:\Windows\system32\Tasks\ijlmopq
C:\Windows\system32\Tasks\rvaeitxc
C:\Windows\system32\Tasks\numsabiy
C:\Windows\system32\Tasks\oopqhiaa
C:\Windows\system32\Tasks\ilvab
C:\Windows\system32\Tasks\efqidtef
C:\Windows\system32\Tasks\cxuqfu
C:\Windows\system32\Tasks\cnaupdx
C:\Windows\system32\Tasks\gffffee
C:\Windows\system32\Tasks\ubovd
C:\Windows\system32\Tasks\xgxiyqsd
C:\Windows\system32\Tasks\nveck
C:\Windows\system32\Tasks\ykvbmx
C:\Windows\system32\Tasks\eudbraxo
C:\Windows\system32\Tasks\vveeettb
C:\Windows\system32\Tasks\eulkcjbf
C:\Windows\system32\Tasks\daechca
C:\Windows\system32\Tasks\qlgqlgjm
C:\Windows\system32\Tasks\aiwkxfb
C:\Windows\system32\Tasks\icreymhc
C:\Windows\system32\Tasks\qnifi
C:\Windows\system32\Tasks\tbeerxvb
C:\Windows\system32\Tasks\gphqpz
C:\Windows\system32\Tasks\lqntf
C:\Windows\system32\Tasks\kgjoch
C:\Windows\system32\Tasks\sxdjht
C:\Windows\system32\Tasks\vlmck
C:\Windows\system32\Tasks\hwooghw
C:\Windows\system32\Tasks\quwaeg
C:\Windows\system32\Tasks\cfcfnrnj
C:\Windows\system32\Tasks\ubpckyn
C:\Windows\system32\Tasks\hcdeabo
C:\Windows\system32\Tasks\xiscnx
C:\Windows\system32\Tasks\tbgmtf
C:\Windows\system32\Tasks\izuvpicd
C:\Windows\system32\Tasks\trwucgl
C:\Windows\system32\Tasks\abpicxr
C:\Windows\system32\Tasks\aaoibwj
C:\Windows\system32\Tasks\dynshwc
C:\Windows\system32\Tasks\numttcsa
C:\Windows\system32\Tasks\daetq
C:\Windows\system32\Tasks\qdfrefk
C:\Windows\system32\Tasks\nooffg
C:\Windows\system32\Tasks\kotxmqu
C:\Windows\system32\Tasks\gofohwhp
C:\Windows\system32\Tasks\kpmrotfu
C:\Windows\system32\Tasks\ekhnlrhf
C:\Windows\system32\Tasks\mcbxwcs
C:\Windows\system32\Tasks\tqwtbw
C:\Windows\system32\Tasks\spuhd
C:\Windows\system32\Tasks\icwxl
C:\Windows\system32\Tasks\quxbfilv
C:\Windows\system32\Tasks\jfjnqm
C:\Windows\system32\Tasks\egqajsk
C:\Windows\system32\Tasks\rvadoswa
C:\Windows\system32\Tasks\rwimaepu
C:\Windows\system32\Tasks\gfiaa
C:\Windows\system32\Tasks\prsudyb
C:\Windows\system32\Tasks\lcbpg
C:\Windows\system32\Tasks\ekaix
C:\Windows\system32\Tasks\giqss
C:\Windows\system32\Tasks\dafwmja
C:\Windows\system32\Tasks\lbgcbx
C:\Windows\system32\Tasks\gaiccbvd
C:\Windows\system32\Tasks\wnfne
C:\Windows\system32\Tasks\fwhaxi
C:\Windows\system32\Tasks\hysdwpba
C:\Windows\system32\Tasks\lbffbzeu
C:\Windows\system32\Tasks\jvrui
C:\Windows\system32\Tasks\jdymi
C:\Windows\system32\Tasks\ulccqgwd
C:\Windows\system32\Tasks\ukbhckaa
C:\Windows\system32\Tasks\gohgohh
C:\Windows\system32\Tasks\xdmos
C:\Windows\system32\Tasks\wgwgw
C:\Windows\system32\Tasks\fqcdnfrr
C:\Windows\system32\Tasks\reibflg
C:\Windows\system32\Tasks\qcuecu
C:\Windows\system32\Tasks\xdmoi
C:\Windows\system32\Tasks\bdadk
C:\Windows\system32\Tasks\dulctdar
C:\Windows\system32\Tasks\eddzr
C:\Windows\system32\Tasks\rwbfruh
C:\Windows\system32\Tasks\idxsnplf
C:\Windows\system32\Tasks\pxrbjdlu
C:\Windows\system32\Tasks\cpdlguc
C:\Windows\system32\Tasks\gxqja
C:\Windows\system32\Tasks\eblbzi
C:\Windows\system32\Tasks\beiuye
         
*****************

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\fst_de_69 => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\AnyProtect Tray => value deleted successfully.
HKU\S-1-5-21-3460895242-2686779407-2708491527-1002\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\DisallowRun => value deleted successfully.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{52db1893-8a90-4192-aede-08e00b8f8473}" => Key deleted successfully.
"HKCR\CLSID\{52db1893-8a90-4192-aede-08e00b8f8473}" => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2ED8C2FC-2464-86BA-E541-740FB78AF4BD}" => Key deleted successfully.
"HKCR\CLSID\{2ED8C2FC-2464-86BA-E541-740FB78AF4BD}" => Key deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2ED8C2FC-2464-86BA-E541-740FB78AF4BD}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{2ED8C2FC-2464-86BA-E541-740FB78AF4BD}" => Key deleted successfully.
CHR DefaultSearchKeyword: ask.com ==> The Chrome "Settings" can be used to fix the entry.
CHR DefaultSearchProvider: Ask.com ==> The Chrome "Settings" can be used to fix the entry.
CHR DefaultSearchURL: hxxp://dts.search.ask.com/sr?src=crb&gct=ds&appid=113&systemid=473&v=a13277-274&apn_uid=4481603545354040&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms} ==> The Chrome "Settings" can be used to fix the entry.
"HKLM\SOFTWARE\Policies\Google" => Key deleted successfully.
C:\Users\hülya\AppData\Local\*.bat => Moved successfully.
"C:\Program Files (x86)\AnyProtectEx" => File/Directory not found.
C:\ProgramData\savinshoop => Moved successfully.
C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535_ => Moved successfully.
C:\Users\hülya\AppData\Local\Temp77f534aa16759a6eed43e82088f04535 => Moved successfully.
C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51_ => Moved successfully.
C:\Users\hülya\AppData\Local\Temp3643f76cbb2e9e6f0774390096f84e51 => Moved successfully.
C:\Users\hülya\Downloads\9ED2tmp => Moved successfully.
C:\Users\hülya\Downloads\9E82tmp => Moved successfully.
C:\Users\hülya\Downloads\9E62tmp => Moved successfully.
C:\Users\hülya\Downloads\9E22tmp => Moved successfully.
C:\Users\hülya\Downloads\9E02tmp => Moved successfully.
C:\Users\hülya\Downloads\9DE2tmp => Moved successfully.
C:\Users\hülya\Downloads\9DC2tmp => Moved successfully.
C:\Users\hülya\Downloads\Setup (3).exe => Moved successfully.
C:\Users\hülya\Downloads\9EB2tmp => Moved successfully.
C:\Users\hülya\Downloads\55A4tmp => Moved successfully.
C:\Windows\system32\Tasks\dafdid => Moved successfully.
C:\Windows\system32\Tasks\icdytn => Moved successfully.
C:\Windows\system32\Tasks\iavic => Moved successfully.
C:\Windows\system32\Tasks\kbxmda => Moved successfully.
C:\Windows\system32\Tasks\kfujeuqf => Moved successfully.
C:\Windows\system32\Tasks\vdksa => Moved successfully.
C:\Windows\system32\Tasks\tymrgl => Moved successfully.
C:\Windows\system32\Tasks\whpxpqi => Moved successfully.
C:\Windows\system32\Tasks\ligdqolj => Moved successfully.
C:\Windows\system32\Tasks\psuprudi => Moved successfully.
C:\Windows\system32\Tasks\acceyau => Moved successfully.
C:\Windows\system32\Tasks\lxdiu => Moved successfully.
C:\Windows\system32\Tasks\bkdpjboa => Moved successfully.
C:\Windows\system32\Tasks\ljwusx => Moved successfully.
C:\Windows\system32\Tasks\eewxpph => Moved successfully.
C:\Windows\system32\Tasks\jfbdsujm => Moved successfully.
C:\Windows\system32\Tasks\vdsbqhwf => Moved successfully.
C:\Windows\system32\Tasks\ajcohkcp => Moved successfully.
C:\Windows\system32\Tasks\dulcs => Moved successfully.
C:\Windows\system32\Tasks\fxacscu => Moved successfully.
C:\Windows\system32\Tasks\ydoalwbt => Moved successfully.
C:\Windows\system32\Tasks\aguiubo => Moved successfully.
C:\Windows\system32\Tasks\khepmjn => Moved successfully.
C:\Windows\system32\Tasks\rdwbfa => Moved successfully.
C:\Windows\system32\Tasks\hbunicup => Moved successfully.
C:\Windows\system32\Tasks\gwwoohh => Moved successfully.
C:\Windows\system32\Tasks\cwtodhbp => Moved successfully.
C:\Windows\system32\Tasks\caebg => Moved successfully.
C:\Windows\system32\Tasks\zlqcg => Moved successfully.
C:\Windows\system32\Tasks\fsigct => Moved successfully.
C:\Windows\system32\Tasks\erawe => Moved successfully.
C:\Windows\system32\Tasks\jgjnrnq => Moved successfully.
C:\Windows\system32\Tasks\eqfcxnbw => Moved successfully.
C:\Windows\system32\Tasks\hztmgy => Moved successfully.
C:\Windows\system32\Tasks\hajdc => Moved successfully.
C:\Windows\system32\Tasks\tsqpv => Moved successfully.
C:\Windows\system32\Tasks\koagcns => Moved successfully.
C:\Windows\system32\Tasks\hqqbbcll => Moved successfully.
C:\Windows\system32\Tasks\oqysbd => Moved successfully.
C:\Windows\system32\Tasks\zfsdqf => Moved successfully.
C:\Windows\system32\Tasks\oqyaks => Moved successfully.
C:\Windows\system32\Tasks\kfdavzwl => Moved successfully.
C:\Windows\system32\Tasks\whqaqs => Moved successfully.
C:\Windows\system32\Tasks\pakteow => Moved successfully.
C:\Windows\system32\Tasks\wgwfihhq => Moved successfully.
C:\Windows\system32\Tasks\kotimqn => Moved successfully.
C:\Windows\system32\Tasks\fdcaqonm => Moved successfully.
C:\Windows\system32\Tasks\ahubvcq => Moved successfully.
C:\Windows\system32\Tasks\awkfl => Moved successfully.
C:\Windows\system32\Tasks\isnoa => Moved successfully.
C:\Windows\system32\Tasks\pjddy => Moved successfully.
C:\Windows\system32\Tasks\vveett => Moved successfully.
C:\Windows\system32\Tasks\lcbpv => Moved successfully.
C:\Windows\system32\Tasks\vwgfvve => Moved successfully.
C:\Windows\system32\Tasks\mffummlk => Moved successfully.
C:\Windows\system32\Tasks\lrweaflq => Moved successfully.
C:\Windows\system32\Tasks\vggvgguf => Moved successfully.
C:\Windows\system32\Tasks\jdauqmhd => Moved successfully.
C:\Windows\system32\Tasks\fjdoh => Moved successfully.
C:\Windows\system32\Tasks\quejuej => Moved successfully.
C:\Windows\system32\Tasks\rxbycq => Moved successfully.
C:\Windows\system32\Tasks\ccbfv => Moved successfully.
C:\Windows\system32\Tasks\akcohzmg => Moved successfully.
C:\Windows\system32\Tasks\bocpdwd => Moved successfully.
C:\Windows\system32\Tasks\tyfrx => Moved successfully.
C:\Windows\system32\Tasks\khtpt => Moved successfully.
C:\Windows\system32\Tasks\tbfedip => Moved successfully.
C:\Windows\system32\Tasks\beyuxlg => Moved successfully.
C:\Windows\system32\Tasks\iddytni => Moved successfully.
C:\Windows\system32\Tasks\gufetd => Moved successfully.
C:\Windows\system32\Tasks\vmddsj => Moved successfully.
C:\Windows\system32\Tasks\cfdfey => Moved successfully.
C:\Windows\system32\Tasks\acxkgi => Moved successfully.
C:\Windows\system32\Tasks\nghxp => Moved successfully.
C:\Windows\system32\Tasks\edeaa => Moved successfully.
C:\Windows\system32\Tasks\bxthdr => Moved successfully.
C:\Windows\system32\Tasks\refju => Moved successfully.
C:\Windows\system32\Tasks\erawlaq => Moved successfully.
C:\Windows\system32\Tasks\xaqscn => Moved successfully.
C:\Windows\system32\Tasks\fepha => Moved successfully.
C:\Windows\system32\Tasks\vdksahw => Moved successfully.
C:\Windows\system32\Tasks\xizdef => Moved successfully.
C:\Windows\system32\Tasks\cokxm => Moved successfully.
C:\Windows\system32\Tasks\ebfol => Moved successfully.
C:\Windows\system32\Tasks\ljivt => Moved successfully.
C:\Windows\system32\Tasks\iauhbv => Moved successfully.
C:\Windows\system32\Tasks\kwtxbhko => Moved successfully.
C:\Windows\system32\Tasks\prtvey => Moved successfully.
C:\Windows\system32\Tasks\rdpsgibx => Moved successfully.
C:\Windows\system32\Tasks\fkvoal => Moved successfully.
C:\Windows\system32\Tasks\auaco => Moved successfully.
C:\Windows\system32\Tasks\lqgmrpu => Moved successfully.
C:\Windows\system32\Tasks\yldjcn => Moved successfully.
C:\Windows\system32\Tasks\kheaxbbv => Moved successfully.
C:\Windows\system32\Tasks\aocpc => Moved successfully.
C:\Windows\system32\Tasks\lcbpfk => Moved successfully.
C:\Windows\system32\Tasks\thlrdkxu => Moved successfully.
C:\Windows\system32\Tasks\nfnnu => Moved successfully.
C:\Windows\system32\Tasks\ruxjmqcg => Moved successfully.
C:\Windows\system32\Tasks\noohhij => Moved successfully.
C:\Windows\system32\Tasks\xrunfjc => Moved successfully.
C:\Windows\system32\Tasks\aocpcqer => Moved successfully.
C:\Windows\system32\Tasks\ruxcmqt => Moved successfully.
C:\Windows\system32\Tasks\fgnngg => Moved successfully.
C:\Windows\system32\Tasks\wfoefpa => Moved successfully.
C:\Windows\system32\Tasks\trxvdah => Moved successfully.
C:\Windows\system32\Tasks\zuhtgb => Moved successfully.
C:\Windows\system32\Tasks\thbbobwc => Moved successfully.
C:\Windows\system32\Tasks\wxxabbdl => Moved successfully.
C:\Windows\system32\Tasks\reiba => Moved successfully.
C:\Windows\system32\Tasks\kifbcee => Moved successfully.
C:\Windows\system32\Tasks\dngoeo => Moved successfully.
C:\Windows\system32\Tasks\sfzekgc => Moved successfully.
C:\Windows\system32\Tasks\aaunbtn => Moved successfully.
C:\Windows\system32\Tasks\ahubocp => Moved successfully.
C:\Windows\system32\Tasks\ghpaijjd => Moved successfully.
C:\Windows\system32\Tasks\qmgcmikg => Moved successfully.
C:\Windows\system32\Tasks\ovfemt => Moved successfully.
C:\Windows\system32\Tasks\lkifm => Moved successfully.
C:\Windows\system32\Tasks\ztyse => Moved successfully.
C:\Windows\system32\Tasks\tbglafes => Moved successfully.
C:\Windows\system32\Tasks\piqzluev => Moved successfully.
C:\Windows\system32\Tasks\fvngogw => Moved successfully.
C:\Windows\system32\Tasks\aavaouj => Moved successfully.
C:\Windows\system32\Tasks\jehlnce => Moved successfully.
C:\Windows\system32\Tasks\ajuhbdv => Moved successfully.
C:\Windows\system32\Tasks\ccafn => Moved successfully.
C:\Windows\system32\Tasks\ifauytq => Moved successfully.
C:\Windows\system32\Tasks\ijlmopq => Moved successfully.
C:\Windows\system32\Tasks\rvaeitxc => Moved successfully.
C:\Windows\system32\Tasks\numsabiy => Moved successfully.
C:\Windows\system32\Tasks\oopqhiaa => Moved successfully.
C:\Windows\system32\Tasks\ilvab => Moved successfully.
C:\Windows\system32\Tasks\efqidtef => Moved successfully.
C:\Windows\system32\Tasks\cxuqfu => Moved successfully.
C:\Windows\system32\Tasks\cnaupdx => Moved successfully.
C:\Windows\system32\Tasks\gffffee => Moved successfully.
C:\Windows\system32\Tasks\ubovd => Moved successfully.
C:\Windows\system32\Tasks\xgxiyqsd => Moved successfully.
C:\Windows\system32\Tasks\nveck => Moved successfully.
C:\Windows\system32\Tasks\ykvbmx => Moved successfully.
C:\Windows\system32\Tasks\eudbraxo => Moved successfully.
C:\Windows\system32\Tasks\vveeettb => Moved successfully.
C:\Windows\system32\Tasks\eulkcjbf => Moved successfully.
C:\Windows\system32\Tasks\daechca => Moved successfully.
C:\Windows\system32\Tasks\qlgqlgjm => Moved successfully.
C:\Windows\system32\Tasks\aiwkxfb => Moved successfully.
C:\Windows\system32\Tasks\icreymhc => Moved successfully.
C:\Windows\system32\Tasks\qnifi => Moved successfully.
C:\Windows\system32\Tasks\tbeerxvb => Moved successfully.
C:\Windows\system32\Tasks\gphqpz => Moved successfully.
C:\Windows\system32\Tasks\lqntf => Moved successfully.
C:\Windows\system32\Tasks\kgjoch => Moved successfully.
C:\Windows\system32\Tasks\sxdjht => Moved successfully.
C:\Windows\system32\Tasks\vlmck => Moved successfully.
C:\Windows\system32\Tasks\hwooghw => Moved successfully.
C:\Windows\system32\Tasks\quwaeg => Moved successfully.
C:\Windows\system32\Tasks\cfcfnrnj => Moved successfully.
C:\Windows\system32\Tasks\ubpckyn => Moved successfully.
C:\Windows\system32\Tasks\hcdeabo => Moved successfully.
C:\Windows\system32\Tasks\xiscnx => Moved successfully.
C:\Windows\system32\Tasks\tbgmtf => Moved successfully.
C:\Windows\system32\Tasks\izuvpicd => Moved successfully.
C:\Windows\system32\Tasks\trwucgl => Moved successfully.
C:\Windows\system32\Tasks\abpicxr => Moved successfully.
C:\Windows\system32\Tasks\aaoibwj => Moved successfully.
C:\Windows\system32\Tasks\dynshwc => Moved successfully.
C:\Windows\system32\Tasks\numttcsa => Moved successfully.
C:\Windows\system32\Tasks\daetq => Moved successfully.
C:\Windows\system32\Tasks\qdfrefk => Moved successfully.
C:\Windows\system32\Tasks\nooffg => Moved successfully.
C:\Windows\system32\Tasks\kotxmqu => Moved successfully.
C:\Windows\system32\Tasks\gofohwhp => Moved successfully.
C:\Windows\system32\Tasks\kpmrotfu => Moved successfully.
C:\Windows\system32\Tasks\ekhnlrhf => Moved successfully.
C:\Windows\system32\Tasks\mcbxwcs => Moved successfully.
C:\Windows\system32\Tasks\tqwtbw => Moved successfully.
C:\Windows\system32\Tasks\spuhd => Moved successfully.
C:\Windows\system32\Tasks\icwxl => Moved successfully.
C:\Windows\system32\Tasks\quxbfilv => Moved successfully.
C:\Windows\system32\Tasks\jfjnqm => Moved successfully.
C:\Windows\system32\Tasks\egqajsk => Moved successfully.
C:\Windows\system32\Tasks\rvadoswa => Moved successfully.
C:\Windows\system32\Tasks\rwimaepu => Moved successfully.
C:\Windows\system32\Tasks\gfiaa => Moved successfully.
C:\Windows\system32\Tasks\prsudyb => Moved successfully.
C:\Windows\system32\Tasks\lcbpg => Moved successfully.
C:\Windows\system32\Tasks\ekaix => Moved successfully.
C:\Windows\system32\Tasks\giqss => Moved successfully.
C:\Windows\system32\Tasks\dafwmja => Moved successfully.
C:\Windows\system32\Tasks\lbgcbx => Moved successfully.
C:\Windows\system32\Tasks\gaiccbvd => Moved successfully.
C:\Windows\system32\Tasks\wnfne => Moved successfully.
C:\Windows\system32\Tasks\fwhaxi => Moved successfully.
C:\Windows\system32\Tasks\hysdwpba => Moved successfully.
C:\Windows\system32\Tasks\lbffbzeu => Moved successfully.
C:\Windows\system32\Tasks\jvrui => Moved successfully.
C:\Windows\system32\Tasks\jdymi => Moved successfully.
C:\Windows\system32\Tasks\ulccqgwd => Moved successfully.
C:\Windows\system32\Tasks\ukbhckaa => Moved successfully.
C:\Windows\system32\Tasks\gohgohh => Moved successfully.
C:\Windows\system32\Tasks\xdmos => Moved successfully.
C:\Windows\system32\Tasks\wgwgw => Moved successfully.
C:\Windows\system32\Tasks\fqcdnfrr => Moved successfully.
C:\Windows\system32\Tasks\reibflg => Moved successfully.
C:\Windows\system32\Tasks\qcuecu => Moved successfully.
C:\Windows\system32\Tasks\xdmoi => Moved successfully.
C:\Windows\system32\Tasks\bdadk => Moved successfully.
C:\Windows\system32\Tasks\dulctdar => Moved successfully.
C:\Windows\system32\Tasks\eddzr => Moved successfully.
C:\Windows\system32\Tasks\rwbfruh => Moved successfully.
C:\Windows\system32\Tasks\idxsnplf => Moved successfully.
C:\Windows\system32\Tasks\pxrbjdlu => Moved successfully.
C:\Windows\system32\Tasks\cpdlguc => Moved successfully.
C:\Windows\system32\Tasks\gxqja => Moved successfully.
C:\Windows\system32\Tasks\eblbzi => Moved successfully.
C:\Windows\system32\Tasks\beiuye => Moved successfully.

==== End of Fixlog ====
         
Vielen Dank Meister

Antwort

Themen zu bat=exe konnte nicht gefunden werden.
auf einmal, bat, dient, erklären, eurem, exe, fenster, freak, gefunde, knapp, konnte, kurzem, laptop, liebe, mitglieder, namen, windows, windows 8, öffnen



Ähnliche Themen: bat=exe konnte nicht gefunden werden.


  1. Fehlermeldung: bat=exe konnte nicht gefunden werden
    Log-Analyse und Auswertung - 16.10.2014 (21)
  2. Fehlermeldung bat=exe konnte nicht gefunden werden
    Log-Analyse und Auswertung - 06.08.2014 (3)
  3. Tbupdater.dll konnte nicht gefunden werden.
    Plagegeister aller Art und deren Bekämpfung - 29.03.2014 (17)
  4. msiexec.exe konnte nicht gefunden werden!
    Alles rund um Windows - 09.01.2010 (12)
  5. copy.exe konnte nicht gefunden werden.
    Log-Analyse und Auswertung - 31.10.2009 (1)
  6. Recycler konnte nicht gefunden werden!!!!
    Plagegeister aller Art und deren Bekämpfung - 30.09.2009 (10)
  7. Recycler konnte nicht gefunden werden
    Plagegeister aller Art und deren Bekämpfung - 17.05.2009 (8)
  8. Recycler\S konnte nicht gefunden werden
    Plagegeister aller Art und deren Bekämpfung - 15.05.2009 (20)
  9. Recycler konnte nicht gefunden werden
    Plagegeister aller Art und deren Bekämpfung - 09.05.2009 (11)
  10. Ein RECYCLER konnte nicht gefunden werden???
    Plagegeister aller Art und deren Bekämpfung - 21.03.2009 (3)
  11. Recycler konnte nicht gefunden werden
    Plagegeister aller Art und deren Bekämpfung - 20.03.2009 (17)
  12. vshost.exe konnte nicht gefunden werden
    Plagegeister aller Art und deren Bekämpfung - 22.02.2009 (0)
  13. recycler...konnte nicht gefunden werden
    Log-Analyse und Auswertung - 16.02.2009 (20)
  14. updater.exe konnte nicht gefunden werden
    Plagegeister aller Art und deren Bekämpfung - 17.10.2008 (6)
  15. sysinit32z.exe konnte nicht gefunden werden!!
    Plagegeister aller Art und deren Bekämpfung - 27.09.2005 (1)
  16. sysinit32z.exe konnte nicht gefunden werden!!
    Plagegeister aller Art und deren Bekämpfung - 10.09.2005 (23)
  17. sysinit32z.exe konnte nicht gefunden werden!!
    Log-Analyse und Auswertung - 09.09.2005 (2)

Zum Thema bat=exe konnte nicht gefunden werden. - Liebe Mitglieder, seit kurzem öffnen sich bei mir am Laptop wenn ich es einschalte ca 100 Fenster mit dem Namen Bat=Exe konnte nicht gefunden wernden. Kann mir jemand bitte kurz - bat=exe konnte nicht gefunden werden....
Archiv
Du betrachtest: bat=exe konnte nicht gefunden werden. auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.